Page 3 of 5 FirstFirst 12345 LastLast
Results 21 to 30 of 48

Thread: Back Again...HELP!

  1. #21
    Member
    Join Date
    Sep 2007
    Posts
    43

    Default

    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-3.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-30.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-31.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-32.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-33.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-34.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-35.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-36.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-37.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-38.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-39.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-4.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-40.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-41.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-42.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-43.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-44.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-45.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-46.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-47.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-48.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-49.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-5.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-50.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-51.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-52.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-53.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-54.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-55.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-56.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-57.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-58.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-59.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-6.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-60.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-61.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-62.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-63.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-64.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-65.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-66.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-67.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-68.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-69.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-7.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-70.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-71.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-72.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-73.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-74.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-75.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-76.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-77.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-78.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-79.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-8.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-80.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-81.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-82.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-83.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-84.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-85.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-86.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-87.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-88.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-89.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-9.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-90.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-91.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-92.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-93.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-94.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-95.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-96.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-97.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-98.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1522\snapshot\MFEX-99.DAT Infected: Trojan.Win32.Pakes.kqc 1

  2. #22
    Member
    Join Date
    Sep 2007
    Posts
    43

    Default

    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0200990.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0200997.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0200998.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0200999.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201000.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201001.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201002.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201003.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201004.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201005.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201006.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201007.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201008.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201009.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201010.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201011.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201012.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201013.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201026.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201027.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201028.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201031.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201032.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201035.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201036.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201037.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201038.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201039.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201040.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201041.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201042.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201043.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201044.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201045.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201046.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201047.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201048.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201049.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201050.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201051.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201052.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201053.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201054.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201055.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201056.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201057.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201058.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201059.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201060.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201061.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201062.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201063.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201064.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201065.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201066.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201067.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201068.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201069.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201070.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201071.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201072.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201073.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201074.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201075.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201076.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201077.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201078.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201079.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201080.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201081.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201082.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201083.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201084.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201085.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201086.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201087.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\A0201088.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-1.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-10.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-100.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-101.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-102.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-103.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-104.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-105.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-106.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-107.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-108.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-109.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-11.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-110.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-111.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-112.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-113.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-114.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-115.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-116.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-117.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-118.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-119.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-12.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-120.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-121.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-122.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-123.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-124.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-125.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-126.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-127.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-128.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-129.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-13.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-130.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-131.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-132.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-133.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-134.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-135.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-136.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-137.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-138.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-139.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-14.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-140.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-141.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-142.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-143.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-144.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-145.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-146.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-147.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-148.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-15.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-16.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-17.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-18.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-19.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-2.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-20.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-21.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-22.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-23.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-24.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-25.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-26.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-27.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-28.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-29.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-3.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-30.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-31.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-32.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-33.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-34.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-35.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-36.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-37.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-38.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-39.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-4.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-40.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-41.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-42.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-43.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-44.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-45.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-46.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-47.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-48.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-49.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-5.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-50.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-51.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-52.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-53.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-54.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-55.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-56.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-57.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-58.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-59.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-6.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-60.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-61.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-62.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-63.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-64.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-65.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-66.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-67.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-68.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-69.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-7.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-70.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-71.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-72.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-73.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-74.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-75.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-76.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-77.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-78.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-79.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-8.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-80.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-81.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-82.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-83.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-84.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-85.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-86.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-87.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-88.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-89.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-9.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-90.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-91.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-92.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-93.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-94.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-95.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-96.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-97.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-98.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1523\snapshot\MFEX-99.DAT Infected: Trojan.Win32.Pakes.kqc 1

  3. #23
    Member
    Join Date
    Sep 2007
    Posts
    43

    Default

    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201089.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201094.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201096.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201098.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201101.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201103.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201105.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201107.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201109.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201112.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201114.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201115.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201116.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201117.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201118.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201119.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201120.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201121.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201122.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201123.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201124.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201125.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201126.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201127.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201128.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201129.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201130.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201131.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201132.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201133.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201134.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201135.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201136.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201137.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201138.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201139.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201140.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201141.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201142.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201143.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201144.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201145.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201146.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201147.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201148.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201149.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201150.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201151.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201152.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201153.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201154.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201155.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201156.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201205.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201206.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201207.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201208.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201209.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201210.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201211.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201212.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201213.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201245.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\A0201247.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-1.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-10.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-100.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-101.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-102.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-103.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-104.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-105.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-106.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-107.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-108.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-109.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-11.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-110.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-111.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-112.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-113.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-114.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-115.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-116.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-117.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-118.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-119.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-12.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-120.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-121.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-122.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-123.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-124.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-125.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-126.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-127.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-128.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-129.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-13.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-130.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-131.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-132.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-133.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-134.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-135.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-136.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-137.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-138.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-139.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-14.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-140.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-141.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-142.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-143.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-144.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-145.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-146.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-147.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-148.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-149.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-15.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-150.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-151.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-152.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-153.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-154.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-155.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-156.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-157.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-158.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-159.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-16.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-160.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-161.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-162.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-163.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-164.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-165.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-166.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-167.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-168.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-169.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-17.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-170.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-171.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-172.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-173.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-174.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-175.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-176.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-177.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-178.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-179.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-18.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-180.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-181.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-182.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-183.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-184.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-185.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-186.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-187.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-188.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-189.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-19.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-190.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-191.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-192.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-193.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-194.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-195.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-196.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-197.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-198.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-199.DAT Infected: Trojan.Win32.Pakes.kqc 1

  4. #24
    Member
    Join Date
    Sep 2007
    Posts
    43

    Default

    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-2.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-20.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-200.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-201.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-202.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-203.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-204.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-205.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-206.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-207.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-208.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-209.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-21.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-210.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-211.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-212.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-213.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-214.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-215.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-216.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-217.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-218.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-219.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-22.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-220.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-221.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-222.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-223.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-224.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-225.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-226.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-227.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-228.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-229.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-23.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-230.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-231.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-232.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-233.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-234.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-235.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-236.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-237.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-238.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-239.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-24.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-240.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-241.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-242.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-243.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-244.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-245.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-246.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-247.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-248.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-249.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-25.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-250.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-251.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-252.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-253.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-254.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-255.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-256.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-257.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-258.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-259.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-26.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-27.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-28.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-29.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-3.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-30.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-31.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-32.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-33.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-34.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-35.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-36.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-37.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-38.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-39.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-4.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-40.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-41.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-42.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-43.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-44.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-45.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-46.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-47.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-48.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-49.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-5.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-50.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-51.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-52.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-53.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-54.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-55.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-56.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-57.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-58.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-59.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-6.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-60.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-61.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-62.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-63.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-64.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-65.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-66.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-67.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-68.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-69.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-7.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-70.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-71.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-72.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-73.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-74.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-75.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-76.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-77.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-78.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-79.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-8.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-80.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-81.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-82.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-83.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-84.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-85.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-86.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-87.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-88.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-89.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-9.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-90.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-91.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-92.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-93.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-94.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-95.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-96.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-97.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-98.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1524\snapshot\MFEX-99.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\A0201254.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\A0201290.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\A0201291.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\A0201292.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\A0201295.dll Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\A0201297.dll Infected: Trojan.Win32.BHO.haf 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-1.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-10.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-100.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-101.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-102.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-103.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-104.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-105.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-106.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-107.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-108.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-109.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-11.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-110.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-111.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-112.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-113.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-114.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-115.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-116.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-117.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-118.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-119.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-12.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-120.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-121.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-122.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-123.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-124.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-125.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-126.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-127.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-128.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-129.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-13.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-130.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-131.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-132.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-133.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-134.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-135.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-136.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-137.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-138.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-139.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-14.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-140.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-141.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-142.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-143.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-144.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-145.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-146.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-147.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-148.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-149.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-15.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-150.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-151.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-152.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-153.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-154.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-155.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-156.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-157.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-158.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-159.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-16.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-160.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-161.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-162.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-163.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-164.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-165.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-166.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-167.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-168.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-169.DAT Infected: Trojan.Win32.Pakes.kqc 1

  5. #25
    Member
    Join Date
    Sep 2007
    Posts
    43

    Default

    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-17.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-170.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-171.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-172.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-173.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-174.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-175.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-176.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-177.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-178.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-179.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-18.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-180.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-181.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-182.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-183.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-184.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-185.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-186.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-187.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-188.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-189.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-19.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-190.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-191.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-192.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-193.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-194.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-195.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-196.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-197.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-198.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-199.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-2.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-20.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-200.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-201.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-202.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-203.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-204.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-205.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-206.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-207.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-208.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-209.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-21.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-210.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-211.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-212.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-213.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-214.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-215.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-216.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-217.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-218.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-219.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-22.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-220.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-221.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-222.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-223.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-224.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-225.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-226.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-227.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-228.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-229.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-23.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-230.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-231.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-232.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-233.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-234.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-235.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-236.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-237.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-238.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-239.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-24.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-240.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-241.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-242.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-243.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-244.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-245.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-246.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-247.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-248.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-249.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-25.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-250.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-251.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-252.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-253.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-254.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-255.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-256.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-257.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-258.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-259.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-26.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-260.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-261.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-262.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-263.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-264.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-265.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-266.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-267.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-268.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-269.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-27.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-270.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-271.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-272.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-273.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-274.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-275.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-276.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-277.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-278.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-279.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-28.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-280.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-281.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-282.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-283.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-284.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-285.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-286.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-287.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-288.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-289.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-29.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-290.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-291.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-292.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-293.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-294.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-295.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-296.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-297.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-298.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-299.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-3.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-30.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-300.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-301.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-302.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-303.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-304.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-305.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-306.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-307.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-308.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-309.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-31.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-310.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-311.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-312.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-313.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-314.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-315.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-316.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-317.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-318.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-319.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-32.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-320.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-321.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-322.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-323.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-324.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-325.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-326.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-327.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-328.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-329.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-33.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-330.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-331.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-332.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-333.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-334.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-335.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-336.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-337.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-338.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-339.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-34.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-340.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-341.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-342.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-343.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-344.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-345.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-346.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-347.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-348.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-349.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-35.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-350.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-351.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-352.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-353.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-36.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-37.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-38.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-39.DAT Infected: Trojan.Win32.Pakes.kqc

  6. #26
    Member
    Join Date
    Sep 2007
    Posts
    43

    Default

    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-4.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-40.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-41.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-42.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-43.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-44.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-45.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-46.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-47.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-48.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-49.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-5.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-50.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-51.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-52.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-53.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-54.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-55.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-56.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-57.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-58.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-59.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-6.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-60.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-61.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-62.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-63.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-64.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-65.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-66.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-67.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-68.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-69.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-7.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-70.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-71.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-72.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-73.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-74.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-75.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-76.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-77.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-78.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-79.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-8.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-80.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-81.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-82.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-83.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-84.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-85.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-86.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-87.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-88.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-89.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-9.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-90.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-91.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-92.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-93.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-94.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-95.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-96.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-97.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-98.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\System Volume Information\_restore{7DCA1BE4-D752-48D6-A25E-C722C8FD1BC4}\RP1525\snapshot\MFEX-99.DAT Infected: Trojan.Win32.Pakes.kqc 1
    C:\WINNT\system32\drivers\etc\1.hosts Infected: Trojan.Win32.Qhost.mg 1
    C:\WINNT\system32\drivers\etc\hosts.20070921-204540.backup Infected: Trojan.Win32.Qhost.mg 1
    C:\WINNT\system32\drivers\etc\hosts.20070921-204541.backup Infected: Trojan.Win32.Qhost.mg 1
    C:\WINNT\system32\drivers\etc\hosts.20070921-204542.backup Infected: Trojan.Win32.Qhost.mg 1
    C:\WINNT\system32\drivers\etc\hosts.20070921-204543.backup Infected: Trojan.Win32.Qhost.mg 1
    C:\WINNT\system32\drivers\etc\hosts.20070921-204544.backup Infected: Trojan.Win32.Qhost.mg 1
    C:\WINNT\system32\drivers\etc\hosts.20070921-204545.backup Infected: Trojan.Win32.Qhost.mg 1

    The selected area was scanned.

  7. #27
    Member
    Join Date
    Sep 2007
    Posts
    43

    Default

    HJT LOG



    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 2:56:48 PM, on 10/25/2008
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
    Boot mode: Normal

    Running processes:
    C:\WINNT\System32\smss.exe
    C:\WINNT\system32\winlogon.exe
    C:\WINNT\system32\services.exe
    C:\WINNT\system32\lsass.exe
    C:\WINNT\system32\svchost.exe
    C:\WINNT\System32\svchost.exe
    C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
    C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
    C:\WINNT\Explorer.EXE
    C:\WINNT\system32\spoolsv.exe
    C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
    C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
    C:\Program Files\Bonjour\mDNSResponder.exe
    C:\Program Files\LeapFrog\LeapFrog Connect\CommandService.exe
    C:\Program Files\Gateway\Gateway Ink Monitor\GWInkMonitor.exe
    C:\WINNT\SM1BG.EXE
    C:\WINNT\System32\hkcmd.exe
    C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe
    C:\WINNT\system32\LxrJD31s.exe
    C:\Program Files\HP\HP Software Update\HPWuSchd.exe
    C:\WINNT\System32\svchost.exe
    C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
    C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe
    C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
    C:\Program Files\LeapFrog\LeapFrog Connect\Monitor.exe
    C:\Program Files\MSN Messenger\msnmsgr.exe
    C:\WINNT\System32\svchost.exe
    C:\WINNT\system32\wuauclt.exe
    C:\Program Files\Internet Explorer\IEXPLORE.EXE
    C:\PROGRA~1\COMMON~1\SYMANT~1\CCPD-LC\symlcsvc.exe
    C:\PROGRA~1\HEWLET~1\HPSHAR~1\hpgs2wnf.exe
    C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://us.rd.yahoo.com/customize/yco.../www.yahoo.com
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
    R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn3\yt.dll
    O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn3\yt.dll
    O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
    O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O2 - BHO: NCO 2.0 IE BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files\Common Files\Symantec Shared\coShared\Browser\2.5\coIEPlg.dll
    O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\PROGRA~1\COMMON~1\SYMANT~1\IDS\IPSBHO.dll
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
    O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn3\yt.dll
    O3 - Toolbar: Show Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Common Files\Symantec Shared\coShared\Browser\2.5\CoIEPlg.dll
    O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
    O4 - HKLM\..\Run: [Gateway Ink Monitor] "C:\Program Files\Gateway\Gateway Ink Monitor\GWInkMonitor.exe"
    O4 - HKLM\..\Run: [SM1BG] C:\WINNT\SM1BG.EXE
    O4 - HKLM\..\Run: [NeroCheck] C:\WINNT\System32\NeroCheck.exe
    O4 - HKLM\..\Run: [IgfxTray] C:\WINNT\System32\igfxtray.exe
    O4 - HKLM\..\Run: [HotKeysCmds] C:\WINNT\System32\hkcmd.exe
    O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe
    O4 - HKLM\..\Run: [HP Software Update] "C:\Program Files\HP\HP Software Update\HPWuSchd.exe"
    O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
    O4 - HKLM\..\Run: [YSearchProtection] "C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe"
    O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
    O4 - HKLM\..\Run: [osCheck] "C:\Program Files\Norton Internet Security\osCheck.exe"
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [Monitor] "C:\Program Files\LeapFrog\LeapFrog Connect\Monitor.exe"
    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
    O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
    O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_9 -reboot 1
    O4 - HKUS\S-1-5-18\..\Run: [ALUAlert] C:\Program Files\Symantec\LiveUpdate\ALUNotify.exe (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [ALUAlert] C:\Program Files\Symantec\LiveUpdate\ALUNotify.exe (User 'Default user')
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
    O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes0411.dll
    O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes0411.dll
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
    O9 - Extra button: Share in Hello - {B13B4423-2647-4cfc-A4B3-C7D56CB83487} - C:\Program Files\Hello\PicasaCapture.dll
    O9 - Extra 'Tools' menuitem: Share in H&ello - {B13B4423-2647-4cfc-A4B3-C7D56CB83487} - C:\Program Files\Hello\PicasaCapture.dll
    O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINNT\System32\Shdocvw.dll
    O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O16 - DPF: {05D44720-58E3-49E6-BDF6-D00330E511D3} (StagingUI Object) - http://zone.msn.com/binFrameWork/v10...I.cab55579.cab
    O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/english...an_unicode.cab
    O16 - DPF: {3BB54395-5982-4788-8AF4-B5388FFDD0D8} (MSN Games – Buddy Invite) - http://sympatico.zone.msn.com/BinFra...y.cab55579.cab
    O16 - DPF: {5736C456-EA94-4AAC-BB08-917ABDD035B3} (ZonePAChat Object) - http://sympatico.zone.msn.com/binfra...t.cab55579.cab
    O16 - DPF: {A17E30C4-A9BA-11D4-8673-60DB54C10000} (YahooYMailTo Class) - http://us.dl1.yimg.com/download.yaho...ymmapi_416.dll
    O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://cdn2.zone.msn.com/binFramewor...o.cab56649.cab
    O16 - DPF: {DA2AA6CF-5C7A-4B71-BC3B-C771BB369937} (MSN Games – Game Communicator) - http://sympatico.zone.msn.com/binfra...y.cab55579.cab
    O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) - http://download.mcafee.com/molbin/is...36/mcfscan.cab
    O16 - DPF: {FF3C5A9F-5A99-4930-80E8-4709194C2AD3} (MSN Games – Backgammon) - http://sympatico.zone.msn.com/bingam...n.cab64162.cab
    O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
    O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
    O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
    O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
    O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
    O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
    O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
    O23 - Service: COM Host (comHost) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe
    O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
    O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: LeapFrog Connect Device Service - Unknown owner - C:\Program Files\LeapFrog\LeapFrog Connect\CommandService.exe
    O23 - Service: LiveUpdate - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\LuComServer_3_4.EXE
    O23 - Service: LiveUpdate Notice - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
    O23 - Service: Lexar JD31 (LxrJD31s) - Unknown owner - C:\WINNT\SYSTEM32\LxrJD31s.exe
    O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - C:\Program Files\Intel\NCS\Sync\NetSvc.exe
    O23 - Service: Pml Driver HPZ12 - HP - C:\WINNT\system32\HPZipm12.exe
    O23 - Service: Symantec Core LC - Unknown owner - C:\PROGRA~1\COMMON~1\SYMANT~1\CCPD-LC\symlcsvc.exe

    --
    End of file - 10433 bytes

  8. #28
    Member
    Join Date
    Sep 2007
    Posts
    43

    Default

    Combo Fix Log


    ComboFix 08-10-24.02 - Owner 2008-10-25 7:17:05.3 - NTFSx86
    Microsoft Windows XP Home Edition 5.1.2600.2.1252.1.1033.18.1925 [GMT -5:00]
    Running from: C:\Documents and Settings\Owner\Desktop\ComboFix.exe
    Command switches used :: C:\Documents and Settings\Owner\Desktop\CFScript.txt
    * Created a new restore point

    FILE ::
    C:\Documents and Settings\Owner\xl00555.exe
    C:\WINNT\system32\append.dll
    C:\WINNT\system32\xlib254.dll
    .

    ((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
    .

    C:\Documents and Settings\Owner\xl00555.exe
    E:\Autorun.inf

    .
    ((((((((((((((((((((((((( Files Created from 2008-09-25 to 2008-10-25 )))))))))))))))))))))))))))))))
    .

    2008-10-20 19:27 . 2008-10-20 20:04 <DIR> d-------- C:\WINNT\system32\CatRoot_bak
    2008-10-17 18:32 . 2008-06-13 08:10 272,128 --------- C:\WINNT\system32\dllcache\bthport.sys
    2008-10-17 18:31 . 2008-05-01 09:30 331,776 --------- C:\WINNT\system32\dllcache\msadce.dll
    2008-10-14 22:06 . 2008-10-14 22:06 <DIR> d-------- C:\WINNT\system32\xlib254.dll
    2008-10-14 22:06 . 2008-10-14 22:06 <DIR> d-------- C:\WINNT\system32\append.dll
    2008-10-12 09:12 . 2008-10-12 16:28 711 --a------ C:\WINNT\wininit.ini
    2008-10-04 08:31 . 2008-10-04 08:31 <DIR> d-------- C:\Program Files\Lavasoft
    2008-10-04 08:31 . 2008-10-04 08:35 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Lavasoft

    .
    (((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
    .
    2008-10-24 11:43 --------- d-----w C:\Program Files\Common Files\Symantec Shared
    2008-10-17 23:28 --------- d-----w C:\Documents and Settings\All Users\Application Data\Symantec
    2008-10-12 21:58 --------- d-----w C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
    2008-10-12 13:00 --------- d-----w C:\Program Files\Spybot - Search & Destroy
    2008-10-04 13:28 --------- d-----w C:\Program Files\Common Files\Wise Installation Wizard
    2008-09-17 22:08 12,518 ----a-w C:\Documents and Settings\Mary\Application Data\wklnhst.dat
    2008-09-09 01:28 --------- d-----w C:\Program Files\Apple Software Update
    2008-09-06 22:17 --------- d-----w C:\Program Files\DIFX
    2008-09-06 22:16 --------- d-----w C:\Program Files\LeapFrog
    2008-09-06 22:10 --------- d-----w C:\Documents and Settings\All Users\Application Data\Leapfrog
    2008-09-04 21:09 18,560 ----a-w C:\WINNT\system32\drivers\FlyUsb.sys
    2008-08-28 10:04 333,056 ----a-w C:\WINNT\system32\drivers\srv.sys
    2008-08-25 01:40 --------- d-----w C:\Documents and Settings\Owner\Application Data\U3
    2007-05-28 21:42 28,608 ----a-w C:\Documents and Settings\Owner\Application Data\wklnhst.dat
    2004-10-02 02:00 57,256 ----a-w C:\Documents and Settings\Owner\Application Data\GDIPFONTCACHEV1.DAT
    2003-08-27 20:19 36,963 ----a-r C:\Program Files\Common Files\SM1updtr.dll
    2003-03-31 12:00 94,784 --sh--w C:\WINNT\twain.dll
    2004-08-04 07:56 50,688 --sh--w C:\WINNT\twain_32.dll
    2004-08-04 07:56 1,028,096 --sha-w C:\WINNT\system32\mfc42.dll
    2004-08-04 07:56 54,784 --sh--w C:\WINNT\system32\msvcirt.dll
    2004-08-04 07:56 413,696 --sha-w C:\WINNT\system32\msvcp60.dll
    2004-08-04 07:56 343,040 --sha-w C:\WINNT\system32\msvcrt.dll
    2007-05-17 11:28 549,376 --sh--w C:\WINNT\system32\oleaut32.dll
    2004-08-04 07:56 83,456 --sh--w C:\WINNT\system32\olepro32.dll
    2004-08-04 07:56 11,776 --sh--w C:\WINNT\system32\regsvr32.exe
    .

    ((((((((((((((((((((((((((((( snapshot@2008-10-17_18.42.03.60 )))))))))))))))))))))))))))))))))))))))))
    .
    + 2007-12-18 14:32:13 450,560 ----a-w C:\WINNT\$hf_mig$\KB944338-v2\SP2QFE\jscript.dll
    + 2007-12-18 14:32:13 417,792 ----a-w C:\WINNT\$hf_mig$\KB944338-v2\SP2QFE\vbscript.dll
    + 2007-03-06 01:22:36 14,048 ----a-w C:\WINNT\$hf_mig$\KB944338-v2\spmsg.dll
    + 2007-03-06 01:22:41 213,216 ----a-w C:\WINNT\$hf_mig$\KB944338-v2\spuninst.exe
    + 2007-03-06 01:22:34 22,752 ----a-w C:\WINNT\$hf_mig$\KB944338-v2\update\spcustom.dll
    + 2007-03-06 01:22:59 716,000 ----a-w C:\WINNT\$hf_mig$\KB944338-v2\update\update.exe
    + 2007-03-06 01:23:51 371,424 ----a-w C:\WINNT\$hf_mig$\KB944338-v2\update\updspapi.dll
    + 2008-01-23 04:56:21 554,008 ----a-w C:\WINNT\$hf_mig$\KB950749\SP2QFE\dao360.dll
    + 2007-12-10 12:41:11 518,944 ----a-w C:\WINNT\$hf_mig$\KB950749\SP2QFE\msexch40.dll
    + 2007-12-10 12:41:11 326,432 ----a-w C:\WINNT\$hf_mig$\KB950749\SP2QFE\msexcl40.dll
    + 2007-12-10 12:41:11 1,516,568 ----a-w C:\WINNT\$hf_mig$\KB950749\SP2QFE\msjet40.dll
    + 2007-12-10 12:41:11 355,112 ----a-w C:\WINNT\$hf_mig$\KB950749\SP2QFE\msjetol1.dll
    + 2008-03-27 07:39:13 151,583 ----a-w C:\WINNT\$hf_mig$\KB950749\SP2QFE\msjint40.dll
    + 2007-12-10 12:41:12 60,192 ----a-w C:\WINNT\$hf_mig$\KB950749\SP2QFE\msjter40.dll
    + 2007-12-10 12:41:12 248,608 ----a-w C:\WINNT\$hf_mig$\KB950749\SP2QFE\msjtes40.dll
    + 2007-12-10 12:41:12 219,936 ----a-w C:\WINNT\$hf_mig$\KB950749\SP2QFE\msltus40.dll
    + 2007-12-10 12:41:12 355,104 ----a-w C:\WINNT\$hf_mig$\KB950749\SP2QFE\mspbde40.dll
    + 2007-12-10 12:41:13 432,928 ----a-w C:\WINNT\$hf_mig$\KB950749\SP2QFE\msrd2x40.dll
    + 2007-12-10 12:41:13 322,336 ----a-w C:\WINNT\$hf_mig$\KB950749\SP2QFE\msrd3x40.dll
    + 2007-12-10 12:41:13 559,904 ----a-w C:\WINNT\$hf_mig$\KB950749\SP2QFE\msrepl40.dll
    + 2007-12-10 12:41:13 264,992 ----a-w C:\WINNT\$hf_mig$\KB950749\SP2QFE\mstext40.dll
    + 2007-12-10 12:41:13 838,432 ----a-w C:\WINNT\$hf_mig$\KB950749\SP2QFE\mswdat10.dll
    + 2007-12-10 12:41:14 621,344 ----a-w C:\WINNT\$hf_mig$\KB950749\SP2QFE\mswstr10.dll
    + 2007-12-10 12:41:14 355,104 ----a-w C:\WINNT\$hf_mig$\KB950749\SP2QFE\msxbde40.dll
    + 2007-03-06 01:22:36 14,048 ----a-w C:\WINNT\$hf_mig$\KB950749\spmsg.dll
    + 2007-03-06 01:22:41 213,216 ----a-w C:\WINNT\$hf_mig$\KB950749\spuninst.exe
    + 2007-03-06 01:22:34 22,752 ----a-w C:\WINNT\$hf_mig$\KB950749\update\spcustom.dll
    + 2007-03-06 01:22:59 716,000 ----a-w C:\WINNT\$hf_mig$\KB950749\update\update.exe
    + 2007-03-06 01:23:51 371,424 ----a-w C:\WINNT\$hf_mig$\KB950749\update\updspapi.dll
    + 2008-07-07 20:06:43 253,952 ----a-w C:\WINNT\$hf_mig$\KB950974\SP2QFE\es.dll
    + 2008-07-07 20:26:58 253,952 ----a-w C:\WINNT\$hf_mig$\KB950974\SP3GDR\es.dll
    + 2008-07-07 20:23:18 253,952 ----a-w C:\WINNT\$hf_mig$\KB950974\SP3QFE\es.dll
    + 2007-11-30 12:39:22 17,272 ----a-w C:\WINNT\$hf_mig$\KB950974\spmsg.dll
    + 2007-11-30 12:39:22 231,288 ----a-w C:\WINNT\$hf_mig$\KB950974\spuninst.exe
    + 2007-11-30 12:39:22 26,488 ----a-w C:\WINNT\$hf_mig$\KB950974\update\spcustom.dll
    + 2007-11-30 12:39:18 755,576 ----a-w C:\WINNT\$hf_mig$\KB950974\update\update.exe
    + 2007-11-30 12:39:19 382,840 ----a-w C:\WINNT\$hf_mig$\KB950974\update\updspapi.dll
    + 2008-07-14 11:03:00 62,976 ----a-w C:\WINNT\$hf_mig$\KB951072-v2\SP2QFE\tzchange.exe
    + 2008-07-11 12:42:28 62,976 ----a-w C:\WINNT\$hf_mig$\KB951072-v2\SP3GDR\tzchange.exe
    + 2008-07-11 12:51:51 62,976 ----a-w C:\WINNT\$hf_mig$\KB951072-v2\SP3QFE\tzchange.exe
    + 2007-11-30 11:18:51 17,272 ----a-w C:\WINNT\$hf_mig$\KB951072-v2\spmsg.dll
    + 2007-11-30 11:18:51 231,288 ----a-w C:\WINNT\$hf_mig$\KB951072-v2\spuninst.exe
    + 2007-11-30 11:18:51 26,488 ----a-w C:\WINNT\$hf_mig$\KB951072-v2\update\spcustom.dll
    + 2007-11-30 12:39:22 755,576 ----a-w C:\WINNT\$hf_mig$\KB951072-v2\update\update.exe
    + 2007-11-30 12:39:22 382,840 ----a-w C:\WINNT\$hf_mig$\KB951072-v2\update\updspapi.dll
    + 2008-05-07 04:55:40 1,288,192 ----a-w C:\WINNT\$hf_mig$\KB951698\SP2QFE\quartz.dll
    + 2008-05-07 05:12:40 1,288,192 ----a-w C:\WINNT\$hf_mig$\KB951698\SP3GDR\quartz.dll
    + 2008-05-07 05:04:15 1,288,192 ----a-w C:\WINNT\$hf_mig$\KB951698\SP3QFE\quartz.dll
    + 2007-11-30 11:18:51 17,272 ----a-w C:\WINNT\$hf_mig$\KB951698\spmsg.dll
    + 2007-11-30 11:18:51 231,288 ----a-w C:\WINNT\$hf_mig$\KB951698\spuninst.exe
    + 2007-11-30 11:18:51 26,488 ----a-w C:\WINNT\$hf_mig$\KB951698\update\spcustom.dll
    + 2007-11-30 12:39:22 755,576 ----a-w C:\WINNT\$hf_mig$\KB951698\update\update.exe
    + 2007-11-30 12:39:22 382,840 ----a-w C:\WINNT\$hf_mig$\KB951698\update\updspapi.dll
    + 2006-08-16 12:08:32 100,352 ----a-w C:\WINNT\$hf_mig$\KB951748\SP2QFE\6to4svc.dll
    + 2008-06-20 10:44:08 138,368 ----a-w C:\WINNT\$hf_mig$\KB951748\SP2QFE\afd.sys
    + 2008-06-20 17:36:11 147,968 ----a-w C:\WINNT\$hf_mig$\KB951748\SP2QFE\dnsapi.dll
    + 2008-06-20 17:36:11 245,248 ----a-w C:\WINNT\$hf_mig$\KB951748\SP2QFE\mswsock.dll
    + 2008-06-20 10:44:42 360,960 ----a-w C:\WINNT\$hf_mig$\KB951748\SP2QFE\tcpip.sys
    + 2008-06-20 09:32:39 225,920 ----a-w C:\WINNT\$hf_mig$\KB951748\SP2QFE\tcpip6.sys
    + 2008-06-20 11:40:08 138,496 ----a-w C:\WINNT\$hf_mig$\KB951748\SP3GDR\afd.sys
    + 2008-06-20 17:46:57 147,968 ----a-w C:\WINNT\$hf_mig$\KB951748\SP3GDR\dnsapi.dll
    + 2008-06-20 17:46:57 245,248 ----a-w C:\WINNT\$hf_mig$\KB951748\SP3GDR\mswsock.dll
    + 2008-06-20 11:51:12 361,600 ----a-w C:\WINNT\$hf_mig$\KB951748\SP3GDR\tcpip.sys
    + 2008-06-20 11:08:27 225,856 ----a-w C:\WINNT\$hf_mig$\KB951748\SP3GDR\tcpip6.sys
    + 2008-06-20 11:48:03 138,496 ----a-w C:\WINNT\$hf_mig$\KB951748\SP3QFE\afd.sys
    + 2008-06-20 17:43:05 147,968 ----a-w C:\WINNT\$hf_mig$\KB951748\SP3QFE\dnsapi.dll
    + 2008-06-20 17:43:05 245,248 ----a-w C:\WINNT\$hf_mig$\KB951748\SP3QFE\mswsock.dll
    + 2008-06-20 11:59:02 361,600 ----a-w C:\WINNT\$hf_mig$\KB951748\SP3QFE\tcpip.sys
    + 2008-06-20 11:16:44 225,856 ----a-w C:\WINNT\$hf_mig$\KB951748\SP3QFE\tcpip6.sys
    + 2007-11-30 12:39:22 17,272 ----a-w C:\WINNT\$hf_mig$\KB951748\spmsg.dll
    + 2007-11-30 12:39:22 231,288 ----a-w C:\WINNT\$hf_mig$\KB951748\spuninst.exe
    + 2007-11-30 12:39:22 26,488 ----a-w C:\WINNT\$hf_mig$\KB951748\update\spcustom.dll
    + 2007-11-30 12:39:18 755,576 ----a-w C:\WINNT\$hf_mig$\KB951748\update\update.exe
    + 2007-11-30 12:39:19 382,840 ----a-w C:\WINNT\$hf_mig$\KB951748\update\updspapi.dll
    + 2008-06-24 16:28:00 74,240 ----a-w C:\WINNT\$hf_mig$\KB952954\SP2QFE\mscms.dll
    + 2008-06-24 16:43:16 74,240 ----a-w C:\WINNT\$hf_mig$\KB952954\SP3GDR\mscms.dll
    + 2008-06-24 16:53:10 74,240 ----a-w C:\WINNT\$hf_mig$\KB952954\SP3QFE\mscms.dll
    + 2007-11-30 12:39:22 17,272 ----a-w C:\WINNT\$hf_mig$\KB952954\spmsg.dll
    + 2007-11-30 12:39:22 231,288 ----a-w C:\WINNT\$hf_mig$\KB952954\spuninst.exe
    + 2007-11-30 12:39:22 26,488 ----a-w C:\WINNT\$hf_mig$\KB952954\update\spcustom.dll
    + 2007-11-30 12:39:22 755,576 ----a-w C:\WINNT\$hf_mig$\KB952954\update\update.exe
    + 2007-11-30 12:39:22 382,840 ----a-w C:\WINNT\$hf_mig$\KB952954\update\updspapi.dll
    + 2008-08-20 05:33:19 1,024,000 ----a-w C:\WINNT\$hf_mig$\KB956390\SP2QFE\browseui.dll
    + 2008-08-20 05:33:17 151,040 ----a-w C:\WINNT\$hf_mig$\KB956390\SP2QFE\cdfview.dll
    + 2008-08-20 05:33:18 1,054,208 ----a-w C:\WINNT\$hf_mig$\KB956390\SP2QFE\danim.dll
    + 2008-08-20 05:33:18 357,888 ----a-w C:\WINNT\$hf_mig$\KB956390\SP2QFE\dxtmsft.dll
    + 2008-08-20 05:33:18 205,312 ----a-w C:\WINNT\$hf_mig$\KB956390\SP2QFE\dxtrans.dll
    + 2008-08-20 05:33:18 55,808 ----a-w C:\WINNT\$hf_mig$\KB956390\SP2QFE\extmgr.dll
    + 2008-08-19 09:38:57 18,432 ----a-w C:\WINNT\$hf_mig$\KB956390\SP2QFE\iedw.exe
    + 2008-08-20 05:33:18 251,904 ----a-w C:\WINNT\$hf_mig$\KB956390\SP2QFE\iepeers.dll
    + 2008-08-20 05:33:18 96,256 ----a-w C:\WINNT\$hf_mig$\KB956390\SP2QFE\inseng.dll
    + 2008-08-20 05:33:19 16,384 ----a-w C:\WINNT\$hf_mig$\KB956390\SP2QFE\jsproxy.dll
    + 2008-08-20 05:33:20 3,067,392 ----a-w C:\WINNT\$hf_mig$\KB956390\SP2QFE\mshtml.dll
    + 2008-08-20 05:33:19 449,024 ----a-w C:\WINNT\$hf_mig$\KB956390\SP2QFE\mshtmled.dll
    + 2008-08-20 05:33:18 146,432 ----a-w C:\WINNT\$hf_mig$\KB956390\SP2QFE\msrating.dll
    + 2008-08-20 05:33:18 532,480 ----a-w C:\WINNT\$hf_mig$\KB956390\SP2QFE\mstime.dll
    + 2008-08-20 05:33:18 39,424 ----a-w C:\WINNT\$hf_mig$\KB956390\SP2QFE\pngfilt.dll
    + 2008-08-20 05:33:19 1,499,136 ----a-w C:\WINNT\$hf_mig$\KB956390\SP2QFE\shdocvw.dll
    + 2008-08-20 05:33:19 474,112 ----a-w C:\WINNT\$hf_mig$\KB956390\SP2QFE\shlwapi.dll
    + 2008-08-20 05:33:19 619,008 ----a-w C:\WINNT\$hf_mig$\KB956390\SP2QFE\urlmon.dll
    + 2008-08-20 05:33:19 667,648 ----a-w C:\WINNT\$hf_mig$\KB956390\SP2QFE\wininet.dll
    + 2008-08-19 09:20:32 351,744 ----a-w C:\WINNT\$hf_mig$\KB956390\SP2QFE\xpsp3res.dll
    + 2008-08-20 05:30:53 3,067,904 ----a-w C:\WINNT\$hf_mig$\KB956390\SP3GDR\mshtml.dll
    + 2008-08-20 05:30:51 1,499,136 ----a-w C:\WINNT\$hf_mig$\KB956390\SP3GDR\shdocvw.dll
    + 2008-08-20 05:30:52 619,520 ----a-w C:\WINNT\$hf_mig$\KB956390\SP3GDR\urlmon.dll
    + 2008-08-20 05:30:51 666,112 ----a-w C:\WINNT\$hf_mig$\KB956390\SP3GDR\wininet.dll
    + 2008-08-20 04:58:54 3,067,904 ----a-w C:\WINNT\$hf_mig$\KB956390\SP3QFE\mshtml.dll
    + 2008-08-20 04:58:47 1,499,136 ----a-w C:\WINNT\$hf_mig$\KB956390\SP3QFE\shdocvw.dll
    + 2008-08-20 04:58:50 620,032 ----a-w C:\WINNT\$hf_mig$\KB956390\SP3QFE\urlmon.dll
    + 2008-08-20 04:58:48 666,624 ----a-w C:\WINNT\$hf_mig$\KB956390\SP3QFE\wininet.dll
    + 2007-11-30 11:18:51 17,272 ----a-w C:\WINNT\$hf_mig$\KB956390\spmsg.dll
    + 2007-11-30 11:18:51 231,288 ----a-w C:\WINNT\$hf_mig$\KB956390\spuninst.exe
    + 2007-11-30 11:18:51 26,488 ----a-w C:\WINNT\$hf_mig$\KB956390\update\spcustom.dll
    + 2007-11-30 12:39:22 755,576 ----a-w C:\WINNT\$hf_mig$\KB956390\update\update.exe
    + 2007-11-30 12:39:22 382,840 ----a-w C:\WINNT\$hf_mig$\KB956390\update\updspapi.dll
    - 2003-10-06 20:55:24 7,168 ----a-w C:\WINNT\assembly\GAC\IEExecRemote\1.0.5000.0__b03f5f7f11d50a3a\IEExecRemote.dll
    + 2008-10-18 11:54:13 8,192 ----a-w C:\WINNT\assembly\GAC\IEExecRemote\1.0.5000.0__b03f5f7f11d50a3a\IEExecRemote.dll
    - 2003-10-06 20:55:16 32,768 ----a-w C:\WINNT\assembly\GAC\IEHost\1.0.5000.0__b03f5f7f11d50a3a\IEHost.dll
    + 2008-10-18 11:54:14 32,768 ----a-w C:\WINNT\assembly\GAC\IEHost\1.0.5000.0__b03f5f7f11d50a3a\IEHost.dll
    - 2003-10-06 20:55:08 716,800 ----a-w C:\WINNT\assembly\GAC\Microsoft.JScript\7.0.5000.0__b03f5f7f11d50a3a\Microsoft.JScript.dll
    + 2008-10-18 11:54:22 720,896 ----a-w C:\WINNT\assembly\GAC\Microsoft.JScript\7.0.5000.0__b03f5f7f11d50a3a\Microsoft.JScript.dll
    - 2003-10-06 20:55:10 299,008 ----a-w C:\WINNT\assembly\GAC\Microsoft.VisualBasic\7.0.5000.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll
    + 2008-10-18 11:54:15 299,008 ----a-w C:\WINNT\assembly\GAC\Microsoft.VisualBasic\7.0.5000.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll
    - 2003-10-06 20:55:24 32,768 ----a-w C:\WINNT\assembly\GAC\Regcode\1.0.5000.0__b03f5f7f11d50a3a\RegCode.dll
    + 2008-10-18 11:54:20 32,768 ----a-w C:\WINNT\assembly\GAC\Regcode\1.0.5000.0__b03f5f7f11d50a3a\RegCode.dll
    - 2003-10-06 20:55:26 299,008 ----a-w C:\WINNT\assembly\GAC\System.Data.OracleClient\1.0.5000.0__b77a5c561934e089\System.Data.OracleClient.dll
    + 2008-10-18 11:54:18 303,104 ----a-w C:\WINNT\assembly\GAC\System.Data.OracleClient\1.0.5000.0__b77a5c561934e089\System.Data.OracleClient.dll
    - 2003-10-06 20:55:20 1,290,240 ----a-w C:\WINNT\assembly\GAC\System.Data\1.0.5000.0__b77a5c561934e089\System.Data.dll
    + 2008-10-18 11:54:21 1,294,336 ----a-w C:\WINNT\assembly\GAC\System.Data\1.0.5000.0__b77a5c561934e089\System.Data.dll
    - 2003-10-06 20:55:20 1,699,840 ----a-w C:\WINNT\assembly\GAC\System.Design\1.0.5000.0__b03f5f7f11d50a3a\System.Design.dll
    + 2008-10-18 11:54:13 1,703,936 ----a-w C:\WINNT\assembly\GAC\System.Design\1.0.5000.0__b03f5f7f11d50a3a\System.Design.dll
    - 2003-10-06 20:55:20 86,016 ----a-w C:\WINNT\assembly\GAC\System.DirectoryServices\1.0.5000.0__b03f5f7f11d50a3a\System.DirectoryServices.dll
    + 2008-10-18 11:54:22 90,112 ----a-w C:\WINNT\assembly\GAC\System.DirectoryServices\1.0.5000.0__b03f5f7f11d50a3a\System.DirectoryServices.dll
    - 2003-10-06 20:55:22 466,944 ----a-w C:\WINNT\assembly\GAC\System.Drawing\1.0.5000.0__b03f5f7f11d50a3a\System.Drawing.dll
    + 2008-10-18 11:54:18 466,944 ----a-w C:\WINNT\assembly\GAC\System.Drawing\1.0.5000.0__b03f5f7f11d50a3a\System.Drawing.dll
    - 2003-10-06 20:55:20 241,664 ----a-w C:\WINNT\assembly\GAC\System.EnterpriseServices\1.0.5000.0__b03f5f7f11d50a3a\System.EnterpriseServices.dll
    + 2008-10-18 11:54:16 241,664 ----a-w C:\WINNT\assembly\GAC\System.EnterpriseServices\1.0.5000.0__b03f5f7f11d50a3a\System.EnterpriseServices.dll
    - 2003-10-06 20:55:20 64,000 ----a-w C:\WINNT\assembly\GAC\System.EnterpriseServices\1.0.5000.0__b03f5f7f11d50a3a\System.EnterpriseServices.Thunk.dll
    + 2008-10-18 11:54:16 66,560 ----a-w C:\WINNT\assembly\GAC\System.EnterpriseServices\1.0.5000.0__b03f5f7f11d50a3a\System.EnterpriseServices.Thunk.dll
    - 2003-10-06 20:55:22 368,640 ----a-w C:\WINNT\assembly\GAC\System.Management\1.0.5000.0__b03f5f7f11d50a3a\System.Management.dll
    + 2008-10-18 11:54:20 372,736 ----a-w C:\WINNT\assembly\GAC\System.Management\1.0.5000.0__b03f5f7f11d50a3a\System.Management.dll
    - 2003-10-06 20:55:22 241,664 ----a-w C:\WINNT\assembly\GAC\System.Messaging\1.0.5000.0__b03f5f7f11d50a3a\System.Messaging.dll
    + 2008-10-18 11:54:23 241,664 ----a-w C:\WINNT\assembly\GAC\System.Messaging\1.0.5000.0__b03f5f7f11d50a3a\System.Messaging.dll
    - 2003-10-06 20:55:22 323,584 ----a-w C:\WINNT\assembly\GAC\System.Runtime.Remoting\1.0.5000.0__b77a5c561934e089\System.Runtime.Remoting.dll
    + 2008-10-18 11:54:19 323,584 ----a-w C:\WINNT\assembly\GAC\System.Runtime.Remoting\1.0.5000.0__b77a5c561934e089\System.Runtime.Remoting.dll
    - 2003-10-06 20:55:22 131,072 ----a-w C:\WINNT\assembly\GAC\System.Runtime.Serialization.Formatters.Soap\1.0.5000.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
    + 2008-10-18 11:54:16 131,072 ----a-w C:\WINNT\assembly\GAC\System.Runtime.Serialization.Formatters.Soap\1.0.5000.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
    - 2003-10-06 20:55:22 77,824 ----a-w C:\WINNT\assembly\GAC\System.Security\1.0.5000.0__b03f5f7f11d50a3a\System.Security.dll
    + 2008-10-18 11:54:17 77,824 ----a-w C:\WINNT\assembly\GAC\System.Security\1.0.5000.0__b03f5f7f11d50a3a\System.Security.dll
    - 2003-10-06 20:55:22 126,976 ----a-w C:\WINNT\assembly\GAC\System.ServiceProcess\1.0.5000.0__b03f5f7f11d50a3a\System.ServiceProcess.dll
    + 2008-10-18 11:54:21 126,976 ----a-w C:\WINNT\assembly\GAC\System.ServiceProcess\1.0.5000.0__b03f5f7f11d50a3a\System.ServiceProcess.dll
    - 2003-10-06 20:55:24 819,200 ----a-w C:\WINNT\assembly\GAC\System.Web.Mobile\1.0.5000.0__b03f5f7f11d50a3a\System.Web.Mobile.dll
    + 2008-10-18 11:54:12 819,200 ----a-w C:\WINNT\assembly\GAC\System.Web.Mobile\1.0.5000.0__b03f5f7f11d50a3a\System.Web.Mobile.dll
    - 2003-10-06 20:55:24 57,344 ----a-w C:\WINNT\assembly\GAC\System.Web.RegularExpressions\1.0.5000.0__b03f5f7f11d50a3a\System.Web.RegularExpressions.dll
    + 2008-10-18 11:54:15 57,344 ----a-w C:\WINNT\assembly\GAC\System.Web.RegularExpressions\1.0.5000.0__b03f5f7f11d50a3a\System.Web.RegularExpressions.dll
    - 2003-10-06 20:55:24 569,344 ----a-w C:\WINNT\assembly\GAC\System.Web.Services\1.0.5000.0__b03f5f7f11d50a3a\System.Web.Services.dll
    + 2008-10-18 11:54:14 573,440 ----a-w C:\WINNT\assembly\GAC\System.Web.Services\1.0.5000.0__b03f5f7f11d50a3a\System.Web.Services.dll
    - 2003-10-06 20:55:22 1,245,184 ----a-w C:\WINNT\assembly\GAC\System.Web\1.0.5000.0__b03f5f7f11d50a3a\System.Web.dll
    + 2008-10-19 13:24:05 1,265,664 ----a-w C:\WINNT\assembly\GAC\System.Web\1.0.5000.0__b03f5f7f11d50a3a\System.Web.dll
    - 2003-10-06 20:55:24 2,039,808 ----a-w C:\WINNT\assembly\GAC\System.Windows.Forms\1.0.5000.0__b77a5c561934e089\System.Windows.Forms.dll
    + 2008-10-18 11:54:17 2,052,096 ----a-w C:\WINNT\assembly\GAC\System.Windows.Forms\1.0.5000.0__b77a5c561934e089\System.Windows.Forms.dll
    - 2003-10-06 20:55:24 1,335,296 ----a-w C:\WINNT\assembly\GAC\System.Xml\1.0.5000.0__b77a5c561934e089\System.Xml.dll
    + 2008-10-18 11:54:19 1,339,392 ----a-w C:\WINNT\assembly\GAC\System.Xml\1.0.5000.0__b77a5c561934e089\System.XML.dll
    - 2003-10-06 20:55:22 1,216,512 ----a-w C:\WINNT\assembly\GAC\System\1.0.5000.0__b77a5c561934e089\System.dll
    + 2008-10-19 13:24:06 1,232,896 ----a-w C:\WINNT\assembly\GAC\System\1.0.5000.0__b77a5c561934e089\System.dll
    + 2008-10-19 13:25:15 118,784 ----a-w C:\WINNT\assembly\NativeImages1_v1.1.4322\CustomMarshalers\1.0.5000.0__b03f5f7f11d50a3a_3c70468c\CustomMarshalers.dll
    + 2008-10-19 13:24:30 61,440 ----a-w C:\WINNT\assembly\NativeImages1_v1.1.4322\CustomMarshalers\1.0.5000.0__b03f5f7f11d50a3a_823f542b\CustomMarshalers.dll
    + 2008-10-19 13:25:06 3,391,488 ----a-w C:\WINNT\assembly\NativeImages1_v1.1.4322\mscorlib\1.0.5000.0__b77a5c561934e089_8c4ba4cc\mscorlib.dll
    + 2008-10-19 13:25:33 8,908,800 ----a-w C:\WINNT\assembly\NativeImages1_v1.1.4322\mscorlib\1.0.5000.0__b77a5c561934e089_afb89633\mscorlib.dll
    + 2008-10-19 13:25:00 1,470,464 ----a-w C:\WINNT\assembly\NativeImages1_v1.1.4322\System.Design\1.0.5000.0__b03f5f7f11d50a3a_9be6b5e0\System.Design.dll
    + 2008-10-19 13:25:27 3,395,584 ----a-w C:\WINNT\assembly\NativeImages1_v1.1.4322\System.Design\1.0.5000.0__b03f5f7f11d50a3a_ccc5b975\System.Design.dll
    + 2008-10-19 13:25:16 192,512 ----a-w C:\WINNT\assembly\NativeImages1_v1.1.4322\System.Drawing.Design\1.0.5000.0__b03f5f7f11d50a3a_150831fb\System.Drawing.Design.dll
    + 2008-10-19 13:24:33 90,112 ----a-w C:\WINNT\assembly\NativeImages1_v1.1.4322\System.Drawing.Design\1.0.5000.0__b03f5f7f11d50a3a_cf002509\System.Drawing.Design.dll
    + 2008-10-19 13:25:28 2,244,608 ----a-w C:\WINNT\assembly\NativeImages1_v1.1.4322\System.Drawing\1.0.5000.0__b03f5f7f11d50a3a_389620bd\System.Drawing.dll
    + 2008-10-19 13:25:03 835,584 ----a-w C:\WINNT\assembly\NativeImages1_v1.1.4322\System.Drawing\1.0.5000.0__b03f5f7f11d50a3a_88637c62\System.Drawing.dll
    + 2008-10-19 13:25:20 7,884,800 ----a-w C:\WINNT\assembly\NativeImages1_v1.1.4322\System.Windows.Forms\1.0.5000.0__b77a5c561934e089_baa29096\System.Windows.Forms.dll
    + 2008-10-19 13:24:45 3,018,752 ----a-w C:\WINNT\assembly\NativeImages1_v1.1.4322\System.Windows.Forms\1.0.5000.0__b77a5c561934e089_d25551e3\System.Windows.Forms.dll
    + 2008-10-19 13:24:54 2,088,960 ----a-w C:\WINNT\assembly\NativeImages1_v1.1.4322\System.Xml\1.0.5000.0__b77a5c561934e089_31748a9a\System.Xml.dll
    + 2008-10-19 13:25:24 5,513,216 ----a-w C:\WINNT\assembly\NativeImages1_v1.1.4322\System.Xml\1.0.5000.0__b77a5c561934e089_890a6aab\System.Xml.dll
    + 2008-10-19 13:24:27 1,966,080 ----a-w C:\WINNT\assembly\NativeImages1_v1.1.4322\System\1.0.5000.0__b77a5c561934e089_607631ff\System.dll
    + 2008-10-19 13:25:14 4,788,224 ----a-w C:\WINNT\assembly\NativeImages1_v1.1.4322\System\1.0.5000.0__b77a5c561934e089_b6940f22\System.dll
    + 2008-06-13 13:10:50 272,128 ------w C:\WINNT\Driver Cache\i386\bthport.sys
    - 2007-02-28 09:08:48 2,136,064 ------w C:\WINNT\Driver Cache\i386\ntkrnlmp.exe
    + 2008-08-14 09:58:27 2,136,064 ------w C:\WINNT\Driver Cache\i386\ntkrnlmp.exe
    - 2007-02-28 08:38:55 2,057,600 ------w C:\WINNT\Driver Cache\i386\ntkrnlpa.exe
    + 2008-08-14 09:22:13 2,057,728 ------w C:\WINNT\Driver Cache\i386\ntkrnlpa.exe
    - 2007-02-28 08:38:57 2,015,744 ------w C:\WINNT\Driver Cache\i386\ntkrpamp.exe
    + 2008-08-14 09:22:14 2,015,744 ------w C:\WINNT\Driver Cache\i386\ntkrpamp.exe
    - 2007-02-28 09:10:57 2,180,352 ------w C:\WINNT\Driver Cache\i386\ntoskrnl.exe
    + 2008-08-14 10:00:45 2,180,352 ------w C:\WINNT\Driver Cache\i386\ntoskrnl.exe
    - 2003-02-21 01:19:32 253,952 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\aspnet_isapi.dll
    + 2007-04-14 02:30:52 258,048 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\aspnet_isapi.dll
    - 2003-02-21 01:19:34 20,480 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\aspnet_regiis.exe
    + 2004-07-15 06:49:18 20,480 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\aspnet_regiis.exe
    - 2003-02-21 01:19:38 32,768 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\aspnet_state.exe
    + 2004-07-15 06:49:26 32,768 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\aspnet_state.exe
    - 2003-02-21 01:19:36 32,768 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\aspnet_wp.exe
    + 2007-04-14 02:30:52 32,768 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\aspnet_wp.exe
    - 2003-02-21 01:09:08 77,824 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\CORPerfMonExt.dll
    + 2007-04-14 01:57:52 81,920 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\CORPerfMonExt.dll
    - 2003-02-21 16:20:44 49,152 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\csc.exe
    + 2004-07-15 16:23:28 49,152 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\csc.exe
    - 2003-02-21 16:21:00 626,688 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\cscomp.dll
    + 2004-07-15 16:23:44 626,688 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\cscomp.dll
    - 2003-02-21 01:06:20 282,624 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\fusion.dll
    + 2004-07-15 05:24:30 282,624 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\fusion.dll
    + 2003-10-08 19:30:14 81,920 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\gacutil.exe
    - 2003-02-21 13:24:38 7,168 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\IEExecRemote.dll
    + 2004-07-15 19:31:00 8,192 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\IEExecRemote.dll
    - 2003-02-21 13:24:40 32,768 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\IEHost.dll
    + 2004-07-15 19:31:04 32,768 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\IEHost.dll
    - 2003-02-21 01:09:40 196,608 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\ilasm.exe
    + 2004-07-15 05:35:30 196,608 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\ilasm.exe
    - 2003-02-21 13:26:36 716,800 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\Microsoft.JScript.dll
    + 2004-07-15 19:28:58 720,896 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\Microsoft.JScript.dll
    - 2003-02-21 13:26:38 299,008 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\Microsoft.VisualBasic.dll
    + 2004-07-15 19:28:56 299,008 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\Microsoft.VisualBasic.dll
    - 2003-02-21 13:25:04 49,152 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\MigPol.exe
    + 2004-07-15 19:28:50 49,152 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\MigPol.exe
    - 2003-02-21 13:25:04 49,152 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\MigPolWin.exe
    + 2004-07-15 19:28:50 49,152 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\MigPolWin.exe
    - 2003-02-21 01:09:12 77,824 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\mscordbc.dll
    + 2004-07-15 05:32:44 86,016 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\mscordbc.dll
    - 2003-02-21 01:09:12 233,472 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\mscordbi.dll
    + 2004-07-15 05:32:46 233,472 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\mscordbi.dll
    - 2003-02-21 01:09:14 86,016 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\mscorie.dll
    + 2007-04-14 01:57:58 86,016 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\mscorie.dll
    - 2003-02-21 01:06:32 311,296 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\mscorjit.dll
    + 2007-04-14 01:56:30 315,392 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\mscorjit.dll
    - 2003-02-21 01:09:16 98,304 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\mscorld.dll
    + 2007-04-14 01:58:00 102,400 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\mscorld.dll
    - 2003-02-21 13:26:34 2,088,960 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\mscorlib.dll
    + 2007-04-14 01:50:46 2,142,208 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\mscorlib.dll
    - 2003-02-21 01:09:18 143,360 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\mscorrc.dll
    + 2004-07-15 05:33:22 143,360 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\mscorrc.dll
    - 2003-02-21 01:09:18 81,920 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\mscorsec.dll
    + 2004-07-15 05:33:24 81,920 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\mscorsec.dll
    - 2003-02-21 01:09:18 77,824 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\mscorsn.dll
    + 2007-04-14 01:58:02 77,824 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\mscorsn.dll
    - 2003-02-21 01:07:34 2,494,464 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\mscorsvr.dll
    + 2007-04-14 01:57:00 2,523,136 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\mscorsvr.dll
    - 2003-02-21 01:08:32 2,482,176 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\mscorwks.dll
    + 2007-04-14 01:57:28 2,514,944 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\mscorwks.dll
    + 2007-01-15 21:11:26 73,728 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\netfxupdate.exe
    - 2003-02-21 01:09:30 90,112 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\PerfCounter.dll
    + 2004-07-15 05:34:50 94,208 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\PerfCounter.dll
    - 2003-02-21 13:26:46 32,768 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\RegCode.dll
    + 2004-07-15 19:28:48 32,768 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\RegCode.dll
    + 2004-07-15 06:49:16 258,048 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\SHADOW2076\_aspnet_isapi.dll
    + 2004-07-15 05:32:22 81,920 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\SHADOW2076\_CORPerfMonExt.dll
    + 2004-07-15 05:24:30 282,624 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\SHADOW2076\_fusion.dll
    + 2004-07-15 05:25:06 315,392 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\SHADOW2076\_mscorjit.dll
    + 2004-07-15 19:29:02 2,138,112 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\SHADOW2076\_mscorlib.dll
    + 2003-02-21 01:09:18 77,824 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\SHADOW2076\_mscorsn.dll
    + 2004-07-15 05:26:52 2,510,848 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\SHADOW2076\_mscorsvr.dll
    + 2004-07-15 05:28:34 2,502,656 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\SHADOW2076\_mscorwks.dll
    + 2003-02-21 10:42:22 348,160 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\SHADOW2076\_msvcr71.dll
    + 2004-07-15 05:34:50 94,208 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\SHADOW2076\_PerfCounter.dll
    - 2003-02-21 01:09:34 319,488 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\SOS.dll
    + 2004-07-15 05:35:04 319,488 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\SOS.dll
    - 2003-02-21 13:26:38 1,290,240 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\System.Data.dll
    + 2004-07-15 19:32:00 1,294,336 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\System.Data.dll
    - 2003-02-21 13:25:42 299,008 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\System.Data.OracleClient.dll
    + 2004-07-15 19:31:14 303,104 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\System.Data.OracleClient.dll
    - 2003-02-21 13:26:42 1,699,840 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\System.Design.dll
    + 2004-07-15 19:29:02 1,703,936 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\System.Design.dll
    - 2003-02-21 13:26:44 86,016 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\System.DirectoryServices.dll
    + 2004-07-15 19:28:54 90,112 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\System.DirectoryServices.dll
    - 2003-02-21 13:26:46 1,216,512 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\System.dll
    + 2007-04-14 02:35:38 1,232,896 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\System.dll
    - 2003-02-21 13:26:50 466,944 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\System.Drawing.dll
    + 2004-07-15 19:28:58 466,944 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\System.Drawing.dll
    - 2003-02-21 13:26:50 241,664 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\System.EnterpriseServices.dll
    + 2004-07-15 19:28:56 241,664 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\System.EnterpriseServices.dll
    - 2003-02-21 01:09:36 64,000 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\System.EnterpriseServices.Thunk.dll
    + 2004-07-15 05:35:12 66,560 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\System.EnterpriseServices.Thunk.dll
    - 2003-02-21 13:26:52 368,640 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\System.Management.dll
    + 2004-07-15 19:31:58 372,736 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\System.Management.dll
    - 2003-02-21 13:26:54 241,664 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\System.Messaging.dll
    + 2004-07-15 19:31:12 241,664 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\System.Messaging.dll
    - 2003-02-21 13:26:56 323,584 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\System.Runtime.Remoting.dll
    + 2004-07-15 19:28:58 323,584 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\System.Runtime.Remoting.dll
    - 2003-02-21 13:26:56 131,072 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\System.Runtime.Serialization.Formatters.Soap.dll
    + 2004-07-15 19:31:54 131,072 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\System.Runtime.Serialization.Formatters.Soap.dll
    - 2003-02-21 13:26:58 77,824 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\System.Security.dll
    + 2004-07-15 19:28:52 77,824 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\System.Security.dll
    - 2003-02-21 13:27:00 126,976 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\System.ServiceProcess.dll
    + 2004-07-15 19:28:54 126,976 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\System.ServiceProcess.dll
    - 2003-02-21 13:27:02 1,245,184 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\System.Web.dll
    + 2007-04-14 02:35:46 1,265,664 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\System.Web.dll
    - 2003-02-21 13:27:06 819,200 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\System.Web.Mobile.dll
    + 2004-07-15 19:28:58 819,200 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\System.Web.Mobile.dll
    - 2003-02-21 13:24:18 57,344 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\System.Web.RegularExpressions.dll
    + 2004-07-15 19:28:52 57,344 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\System.Web.RegularExpressions.dll
    - 2003-02-21 13:27:06 569,344 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\System.Web.Services.dll
    + 2004-07-15 19:31:16 573,440 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\System.Web.Services.dll
    - 2003-02-21 13:27:08 2,039,808 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\System.Windows.Forms.dll
    + 2004-07-15 19:32:02 2,052,096 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\System.Windows.Forms.dll
    - 2003-02-21 13:27:10 1,335,296 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\System.XML.dll
    + 2004-07-15 19:29:00 1,339,392 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\System.XML.dll
    + 2004-06-22 18:51:38 53,248 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe
    - 2003-02-21 16:20:38 737,280 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\vbc.exe
    + 2004-07-15 16:23:20 737,280 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\vbc.exe
    - 2003-02-21 11:04:18 1,032,192 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\VsaVb7rt.dll
    + 2004-07-15 13:15:14 1,032,192 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\VsaVb7rt.dll
    - 2003-02-21 02:10:40 31,744 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\WMINet_Utils.dll
    + 2004-07-15 07:11:56 31,744 ----a-w C:\WINNT\Microsoft.NET\Framework\v1.1.4322\WMINet_Utils.dll
    - 2007-06-14 18:09:18 1,023,488 ----a-w C:\WINNT\system32\browseui.dll
    + 2008-08-20 05:38:45 1,023,488 ----a-w C:\WINNT\system32\browseui.dll
    - 2007-06-14 18:09:18 151,040 ----a-w C:\WINNT\system32\cdfview.dll
    + 2008-08-20 05:38:39 151,040 ----a-w C:\WINNT\system32\cdfview.dll
    - 2007-06-14 18:09:18 1,054,208 ----a-w C:\WINNT\system32\danim.dll
    + 2008-08-20 05:38:40 1,054,208 ----a-w C:\WINNT\system32\danim.dll
    + 2008-08-14 09:51:43 138,368 ------w C:\WINNT\system32\dllcache\afd.sys
    - 2007-06-14 18:09:18 1,023,488 ------w C:\WINNT\system32\dllcache\browseui.dll
    + 2008-08-20 05:38:45 1,023,488 ------w C:\WINNT\system32\dllcache\browseui.dll
    - 2007-06-14 18:09:18 151,040 ------w C:\WINNT\system32\dllcache\cdfview.dll
    + 2008-08-20 05:38:39 151,040 ------w C:\WINNT\system32\dllcache\cdfview.dll
    - 2007-06-14 18:09:18 1,054,208 ------w C:\WINNT\system32\dllcache\danim.dll
    + 2008-08-20 05:38:40 1,054,208 ------w C:\WINNT\system32\dllcache\danim.dll
    + 2008-03-25 04:50:25 554,008 ------w C:\WINNT\system32\dllcache\dao360.dll
    - 2006-06-26 17:37:10 148,480 ------w C:\WINNT\system32\dllcache\dnsapi.dll
    + 2008-06-20 17:41:10 148,992 ----a-w C:\WINNT\system32\dllcache\dnsapi.dll
    - 2007-06-14 18:09:18 357,888 ------w C:\WINNT\system32\dllcache\dxtmsft.dll
    + 2008-08-20 05:38:40 357,888 ------w C:\WINNT\system32\dllcache\dxtmsft.dll
    - 2007-06-14 18:09:19 205,312 ------w C:\WINNT\system32\dllcache\dxtrans.dll
    + 2008-08-20 05:38:40 205,312 ------w C:\WINNT\system32\dllcache\dxtrans.dll
    + 2008-07-07 20:32:22 253,952 ------w C:\WINNT\system32\dllcache\es.dll
    - 2007-06-14 18:09:19 55,808 ------w C:\WINNT\system32\dllcache\extmgr.dll
    + 2008-08-20 05:38:40 55,808 ------w C:\WINNT\system32\dllcache\extmgr.dll
    - 2007-06-14 14:07:24 18,432 ------w C:\WINNT\system32\dllcache\iedw.exe
    + 2008-08-19 09:30:39 18,432 ------w C:\WINNT\system32\dllcache\iedw.exe
    - 2007-06-14 18:09:19 251,392 ------w C:\WINNT\system32\dllcache\iepeers.dll
    + 2008-08-20 05:38:41 251,392 ------w C:\WINNT\system32\dllcache\iepeers.dll
    - 2007-05-16 15:12:02 683,520 ------w C:\WINNT\system32\dllcache\inetcomm.dll
    + 2008-04-11 18:50:43 683,520 ------w C:\WINNT\system32\dllcache\inetcomm.dll
    - 2007-06-14 18:09:19 96,256 ------w C:\WINNT\system32\dllcache\inseng.dll
    + 2008-08-20 05:38:41 96,256 ------w C:\WINNT\system32\dllcache\inseng.dll
    - 2006-05-18 05:24:25 450,560 ------w C:\WINNT\system32\dllcache\jscript.dll
    + 2007-12-18 14:40:58 450,560 ------w C:\WINNT\system32\dllcache\jscript.dll
    - 2007-06-14 18:09:19 16,384 ------w C:\WINNT\system32\dllcache\jsproxy.dll
    + 2008-08-20 05:38:44 16,384 ------w C:\WINNT\system32\dllcache\jsproxy.dll
    + 2008-06-24 16:23:05 74,240 ------w C:\WINNT\system32\dllcache\mscms.dll
    + 2008-03-25 04:50:28 518,944 ------w C:\WINNT\system32\dllcache\msexch40.dll
    + 2008-03-25 04:50:30 326,432 ------w C:\WINNT\system32\dllcache\msexcl40.dll
    - 2007-06-14 18:09:20 3,058,688 ------w C:\WINNT\system32\dllcache\mshtml.dll
    + 2008-08-20 05:38:47 3,060,224 ------w C:\WINNT\system32\dllcache\mshtml.dll
    - 2007-06-14 18:09:19 449,024 ------w C:\WINNT\system32\dllcache\mshtmled.dll
    + 2008-08-20 05:38:43 449,024 ------w C:\WINNT\system32\dllcache\mshtmled.dll
    + 2008-03-25 04:50:34 1,516,568 ------w C:\WINNT\system32\dllcache\msjet40.dll
    - 2004-03-01 18:52:15 358,976 ----a-w C:\WINNT\system32\dllcache\msjetol1.dll
    + 2008-03-25 04:50:40 355,112 ----a-w C:\WINNT\system32\dllcache\msjetol1.dll
    + 2008-03-27 08:12:54 151,583 ------w C:\WINNT\system32\dllcache\msjint40.dll
    + 2008-03-25 04:50:42 60,192 ------w C:\WINNT\system32\dllcache\msjter40.dll
    + 2008-03-25 04:50:42 248,608 ------w C:\WINNT\system32\dllcache\msjtes40.dll
    + 2008-03-25 04:50:44 219,936 ------w C:\WINNT\system32\dllcache\msltus40.dll
    + 2008-03-25 04:50:45 355,104 ------w C:\WINNT\system32\dllcache\mspbde40.dll
    - 2007-06-14 18:09:19 146,432 ------w C:\WINNT\system32\dllcache\msrating.dll
    + 2008-08-20 05:38:41 146,432 ------w C:\WINNT\system32\dllcache\msrating.dll
    + 2008-03-25 04:50:47 432,928 ------w C:\WINNT\system32\dllcache\msrd2x40.dll
    + 2008-03-25 04:50:49 322,336 ------w C:\WINNT\system32\dllcache\msrd3x40.dll
    + 2008-03-25 04:50:52 559,904 ------w C:\WINNT\system32\dllcache\msrepl40.dll
    + 2008-03-25 04:50:55 264,992 ------w C:\WINNT\system32\dllcache\mstext40.dll
    - 2007-06-14 18:09:20 532,480 ------w C:\WINNT\system32\dllcache\mstime.dll
    + 2008-08-20 05:38:41 532,480 ------w C:\WINNT\system32\dllcache\mstime.dll
    + 2008-03-25 04:50:57 838,432 ------w C:\WINNT\system32\dllcache\mswdat10.dll
    + 2008-06-20 17:41:10 245,248 ------w C:\WINNT\system32\dllcache\mswsock.dll
    + 2008-03-25 04:50:58 621,344 ------w C:\WINNT\system32\dllcache\mswstr10.dll
    + 2008-03-25 04:50:58 355,104 ------w C:\WINNT\system32\dllcache\msxbde40.dll
    - 2006-08-17 12:28:27 332,288 ------w C:\WINNT\system32\dllcache\netapi32.dll
    + 2008-10-15 16:57:55 332,800 ------w C:\WINNT\system32\dllcache\netapi32.dll
    - 2007-02-28 09:08:48 2,136,064 ------w C:\WINNT\system32\dllcache\ntkrnlmp.exe
    + 2008-08-14 09:58:27 2,136,064 ------w C:\WINNT\system32\dllcache\ntkrnlmp.exe
    - 2007-02-28 08:38:55 2,057,600 ------w C:\WINNT\system32\dllcache\ntkrnlpa.exe
    + 2008-08-14 09:22:13 2,057,728 ------w C:\WINNT\system32\dllcache\ntkrnlpa.exe
    - 2007-02-28 08:38:57 2,015,744 ------w C:\WINNT\system32\dllcache\ntkrpamp.exe
    + 2008-08-14 09:22:14 2,015,744 ------w C:\WINNT\system32\dllcache\ntkrpamp.exe
    - 2007-02-28 09:10:57 2,180,352 ------w C:\WINNT\system32\dllcache\ntoskrnl.exe
    + 2008-08-14 10:00:45 2,180,352 ------w C:\WINNT\system32\dllcache\ntoskrnl.exe
    - 2007-06-14 18:09:20 39,424 ------w C:\WINNT\system32\dllcache\pngfilt.dll
    + 2008-08-20 05:38:41 39,424 ------w C:\WINNT\system32\dllcache\pngfilt.dll
    + 2008-05-07 05:18:48 1,287,680 ------w C:\WINNT\system32\dllcache\quartz.dll
    - 2006-07-13 08:48:58 202,240 ----a-w C:\WINNT\system32\dllcache\rmcast.sys
    + 2008-05-08 12:28:49 202,752 ----a-w C:\WINNT\system32\dllcache\rmcast.sys
    - 2007-06-14 18:09:20 1,494,528 ------w C:\WINNT\system32\dllcache\shdocvw.dll
    + 2008-08-20 05:38:42 1,494,528 ------w C:\WINNT\system32\dllcache\shdocvw.dll
    - 2007-06-14 18:09:20 474,112 ------w C:\WINNT\system32\dllcache\shlwapi.dll
    + 2008-08-20 05:38:44 474,112 ------w C:\WINNT\system32\dllcache\shlwapi.dll
    - 2006-08-14 10:34:41 332,928 ------w C:\WINNT\system32\dllcache\srv.sys
    + 2008-08-28 10:04:17 333,056 ------w C:\WINNT\system32\dllcache\srv.sys
    - 2006-04-20 11:51:50 359,808 ------w C:\WINNT\system32\dllcache\tcpip.sys
    + 2008-06-20 10:45:13 360,320 ----a-w C:\WINNT\system32\dllcache\tcpip.sys
    - 2006-08-16 09:37:30 225,664 ------w C:\WINNT\system32\dllcache\tcpip6.sys
    + 2008-06-20 09:52:06 225,920 ----a-w C:\WINNT\system32\dllcache\tcpip6.sys
    - 2007-06-14 18:09:20 615,424 ------w C:\WINNT\system32\dllcache\urlmon.dll
    + 2008-08-20 05:38:45 615,936 ------w C:\WINNT\system32\dllcache\urlmon.dll
    + 2007-12-18 14:40:58 417,792 ------w C:\WINNT\system32\dllcache\vbscript.dll
    - 2007-03-08 13:47:48 1,843,584 ------w C:\WINNT\system32\dllcache\win32k.sys
    + 2008-09-15 11:57:41 1,846,016 ------w C:\WINNT\system32\dllcache\win32k.sys
    - 2007-06-26 14:09:10 658,944 ------w C:\WINNT\system32\dllcache\wininet.dll
    + 2008-08-20 05:38:43 659,456 ------w C:\WINNT\system32\dllcache\wininet.dll
    - 2005-01-28 19:44:28 224,768 ----a-w C:\WINNT\system32\dllcache\wmasf.dll
    + 2007-10-27 22:40:06 227,328 ----a-w C:\WINNT\system32\dllcache\wmasf.dll
    - 2006-06-26 17:37:10 148,480 ----a-w C:\WINNT\system32\dnsapi.dll
    + 2008-06-20 17:41:10 148,992 ----a-w C:\WINNT\system32\dnsapi.dll
    - 2004-08-04 06:14:14 138,496 ----a-w C:\WINNT\system32\drivers\afd.sys
    + 2008-08-14 09:51:43 138,368 ----a-w C:\WINNT\system32\drivers\afd.sys
    - 2004-08-04 06:10:37 274,304 ------w C:\WINNT\system32\drivers\bthport.sys
    + 2008-06-13 13:10:50 272,128 ------w C:\WINNT\system32\drivers\bthport.sys
    - 2006-07-13 08:48:58 202,240 ----a-w C:\WINNT\system32\drivers\rmcast.sys
    + 2008-05-08 12:28:49 202,752 ----a-w C:\WINNT\system32\drivers\rmcast.sys
    - 2006-04-20 11:51:50 359,808 ----a-w C:\WINNT\system32\drivers\tcpip.sys
    + 2008-06-20 10:45:13 360,320 ----a-w C:\WINNT\system32\drivers\tcpip.sys
    - 2006-08-16 09:37:30 225,664 ----a-w C:\WINNT\system32\drivers\tcpip6.sys
    + 2008-06-20 09:52:06 225,920 ----a-w C:\WINNT\system32\drivers\tcpip6.sys
    - 2007-06-14 18:09:18 357,888 ----a-w C:\WINNT\system32\dxtmsft.dll
    + 2008-08-20 05:38:40 357,888 ----a-w C:\WINNT\system32\dxtmsft.dll
    - 2007-06-14 18:09:19 205,312 ----a-w C:\WINNT\system32\dxtrans.dll
    + 2008-08-20 05:38:40 205,312 ----a-w C:\WINNT\system32\dxtrans.dll
    - 2005-07-26 04:39:45 243,200 ----a-w C:\WINNT\system32\es.dll
    + 2008-07-07 20:32:22 253,952 ----a-w C:\WINNT\system32\es.dll
    - 2007-06-14 18:09:19 55,808 ----a-w C:\WINNT\system32\extmgr.dll
    + 2008-08-20 05:38:40 55,808 ----a-w C:\WINNT\system32\extmgr.dll
    - 2007-04-05 10:53:02 250,288 ----a-w C:\WINNT\system32\FNTCACHE.DAT
    + 2008-10-18 12:05:21 250,288 ----a-w C:\WINNT\system32\FNTCACHE.DAT
    - 2007-06-14 18:09:19 251,392 ----a-w C:\WINNT\system32\iepeers.dll
    + 2008-08-20 05:38:41 251,392 ----a-w C:\WINNT\system32\iepeers.dll
    - 2007-05-16 15:12:02 683,520 ----a-w C:\WINNT\system32\inetcomm.dll
    + 2008-04-11 18:50:43 683,520 ----a-w C:\WINNT\system32\inetcomm.dll
    - 2007-06-14 18:09:19 96,256 ----a-w C:\WINNT\system32\inseng.dll
    + 2008-08-20 05:38:41 96,256 ----a-w C:\WINNT\system32\inseng.dll
    - 2006-05-18 05:24:25 450,560 ----a-w C:\WINNT\system32\jscript.dll
    + 2007-12-18 14:40:58 450,560 ----a-w C:\WINNT\system32\jscript.dll
    - 2007-06-14 18:09:19 16,384 ----a-w C:\WINNT\system32\jsproxy.dll
    + 2008-08-20 05:38:44 16,384 ----a-w C:\WINNT\system32\jsproxy.dll
    - 2005-06-29 01:46:00 74,240 ----a-w C:\WINNT\system32\mscms.dll
    + 2008-06-24 16:23:05 74,240 ----a-w C:\WINNT\system32\mscms.dll
    - 2003-02-21 01:06:24 155,648 ----a-w C:\WINNT\system32\mscoree.dll
    + 2006-12-22 17:28:14 271,360 ----a-w C:\WINNT\system32\mscoree.dll
    - 2003-02-21 00:43:38 16,896 ----a-w C:\WINNT\system32\mscorier.dll
    + 2004-07-15 04:34:06 16,896 ----a-w C:\WINNT\system32\mscorier.dll
    - 2004-08-04 07:56:43 512,029 ----a-w C:\WINNT\system32\msexch40.dll
    + 2008-03-25 04:50:28 518,944 ----a-w C:\WINNT\system32\msexch40.dll
    - 2004-08-04 07:56:43 319,517 ----a-w C:\WINNT\system32\msexcl40.dll
    + 2008-03-25 04:50:30 326,432 ----a-w C:\WINNT\system32\msexcl40.dll
    - 2007-06-14 18:09:20 3,058,688 ----a-w C:\WINNT\system32\mshtml.dll
    + 2008-08-20 05:38:47 3,060,224 ----a-w C:\WINNT\system32\mshtml.dll
    - 2007-06-14 18:09:19 449,024 ----a-w C:\WINNT\system32\mshtmled.dll
    + 2008-08-20 05:38:43 449,024 ----a-w C:\WINNT\system32\mshtmled.dll
    - 2004-08-04 07:56:43 1,507,356 ----a-w C:\WINNT\system32\msjet40.dll
    + 2008-03-25 04:50:34 1,516,568 ----a-w C:\WINNT\system32\msjet40.dll
    - 2004-03-01 18:52:15 358,976 ----a-w C:\WINNT\system32\msjetoledb40.dll
    + 2008-03-25 04:50:40 355,112 ----a-w C:\WINNT\system32\msjetoledb40.dll
    - 2004-08-04 07:56:43 151,583 ----a-w C:\WINNT\system32\msjint40.dll
    + 2008-03-27 08:12:54 151,583 ----a-w C:\WINNT\system32\msjint40.dll
    - 2004-08-04 07:56:43 53,279 ----a-w C:\WINNT\system32\msjter40.dll
    + 2008-03-25 04:50:42 60,192 ----a-w C:\WINNT\system32\msjter40.dll
    - 2004-08-04 07:56:43 241,693 ----a-w C:\WINNT\system32\msjtes40.dll
    + 2008-03-25 04:50:42 248,608 ----a-w C:\WINNT\system32\msjtes40.dll
    - 2004-08-04 07:56:43 213,023 ----a-w C:\WINNT\system32\msltus40.dll
    + 2008-03-25 04:50:44 219,936 ----a-w C:\WINNT\system32\msltus40.dll
    - 2004-08-04 07:56:43 348,189 ----a-w C:\WINNT\system32\mspbde40.dll
    + 2008-03-25 04:50:45 355,104 ----a-w C:\WINNT\system32\mspbde40.dll
    - 2007-06-14 18:09:19 146,432 ----a-w C:\WINNT\system32\msrating.dll
    + 2008-08-20 05:38:41 146,432 ----a-w C:\WINNT\system32\msrating.dll
    - 2004-08-04 07:56:43 421,919 ----a-w C:\WINNT\system32\msrd2x40.dll
    + 2008-03-25 04:50:47 432,928 ----a-w C:\WINNT\system32\msrd2x40.dll
    - 2004-08-04 07:56:43 315,423 ----a-w C:\WINNT\system32\msrd3x40.dll
    + 2008-03-25 04:50:49 322,336 ----a-w C:\WINNT\system32\msrd3x40.dll
    - 2004-08-04 07:56:43 552,989 ----a-w C:\WINNT\system32\msrepl40.dll
    + 2008-03-25 04:50:52 559,904 ----a-w C:\WINNT\system32\msrepl40.dll
    - 2004-08-04 07:56:43 258,077 ----a-w C:\WINNT\system32\mstext40.dll
    + 2008-03-25 04:50:55 264,992 ----a-w C:\WINNT\system32\mstext40.dll
    - 2007-06-14 18:09:20 532,480 ----a-w C:\WINNT\system32\mstime.dll
    + 2008-08-20 05:38:41 532,480 ----a-w C:\WINNT\system32\mstime.dll
    - 2004-08-04 07:56:44 831,519 ----a-w C:\WINNT\system32\mswdat10.dll
    + 2008-03-25 04:50:57 838,432 ----a-w C:\WINNT\system32\mswdat10.dll
    - 2004-08-04 07:56:44 245,248 ----a-w C:\WINNT\system32\mswsock.dll
    + 2008-06-20 17:41:10 245,248 ----a-w C:\WINNT\system32\mswsock.dll
    - 2004-08-04 07:56:44 614,429 ----a-w C:\WINNT\system32\mswstr10.dll
    + 2008-03-25 04:50:58 621,344 ----a-w C:\WINNT\system32\mswstr10.dll
    - 2004-08-04 07:56:44 348,189 ----a-w C:\WINNT\system32\msxbde40.dll
    + 2008-03-25 04:50:58 355,104 ----a-w C:\WINNT\system32\msxbde40.dll
    + 2006-12-22 18:02:36 6,144 ----a-w C:\WINNT\system32\mui\0409\mscorees.dll
    - 2006-08-17 12:28:27 332,288 ----a-w C:\WINNT\system32\netapi32.dll
    + 2008-10-15 16:57:55 332,800 ----a-w C:\WINNT\system32\netapi32.dll
    - 2007-02-28 08:38:57 2,015,744 ----a-w C:\WINNT\system32\ntkrnlpa.exe
    + 2008-08-14 09:22:14 2,015,744 ----a-w C:\WINNT\system32\ntkrnlpa.exe
    - 2007-02-28 09:08:48 2,136,064 ----a-w C:\WINNT\system32\ntoskrnl.exe
    + 2008-08-14 09:58:27 2,136,064 ----a-w C:\WINNT\system32\ntoskrnl.exe
    - 2008-09-06 22:31:01 53,608 ----a-w C:\WINNT\system32\perfc009.dat
    + 2008-10-18 11:54:03 53,608 ----a-w C:\WINNT\system32\perfc009.dat
    - 2008-09-06 22:31:01 383,254 ----a-w C:\WINNT\system32\perfh009.dat
    + 2008-10-18 11:54:03 383,254 ----a-w C:\WINNT\system32\perfh009.dat
    - 2007-06-14 18:09:20 39,424 ----a-w C:\WINNT\system32\pngfilt.dll
    + 2008-08-20 05:38:41 39,424 ----a-w C:\WINNT\system32\pngfilt.dll
    - 2005-08-30 03:54:26 1,287,168 ----a-w C:\WINNT\system32\quartz.dll
    + 2008-05-07 05:18:48 1,287,680 ----a-w C:\WINNT\system32\quartz.dll
    - 2007-06-14 18:09:20 1,494,528 ----a-w C:\WINNT\system32\shdocvw.dll
    + 2008-08-20 05:38:42 1,494,528 ----a-w C:\WINNT\system32\shdocvw.dll
    - 2007-06-14 18:09:20 474,112 ----a-w C:\WINNT\system32\shlwapi.dll
    + 2008-08-20 05:38:44 474,112 ----a-w C:\WINNT\system32\shlwapi.dll
    - 2007-03-06 01:22:36 14,048 ------w C:\WINNT\system32\spmsg.dll
    + 2007-11-30 11:18:51 17,272 ------w C:\WINNT\system32\spmsg.dll
    - 2007-07-18 12:42:22 60,416 ------w C:\WINNT\system32\tzchange.exe
    + 2008-07-14 11:09:18 62,976 ------w C:\WINNT\system32\tzchange.exe
    - 2007-06-14 18:09:20 615,424 ----a-w C:\WINNT\system32\urlmon.dll
    + 2008-08-20 05:38:45 615,936 ----a-w C:\WINNT\system32\urlmon.dll
    - 2004-08-04 07:56:46 417,792 ----a-w C:\WINNT\system32\vbscript.dll
    + 2007-12-18 14:40:58 417,792 ----a-w C:\WINNT\system32\vbscript.dll
    - 2007-03-08 13:47:48 1,843,584 ----a-w C:\WINNT\system32\win32k.sys
    + 2008-09-15 11:57:41 1,846,016 ----a-w C:\WINNT\system32\win32k.sys
    - 2007-06-26 14:09:10 658,944 ----a-w C:\WINNT\system32\wininet.dll
    + 2008-08-20 05:38:43 659,456 ----a-w C:\WINNT\system32\wininet.dll
    - 2005-01-28 19:44:28 224,768 ----a-w C:\WINNT\system32\wmasf.dll
    + 2007-10-27 22:40:06 227,328 ----a-w C:\WINNT\system32\wmasf.dll
    - 2007-06-14 13:39:54 115,712 ----a-w C:\WINNT\system32\xpsp3res.dll
    + 2008-08-19 09:20:32 351,744 ----a-w C:\WINNT\system32\xpsp3res.dll
    + 2008-04-15 17:54:19 1,724,416 ----a-w C:\WINNT\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.2600.3352_x-ww_81af8e88\GdiPlus.dll
    .
    -- Snapshot reset to current date --
    .
    ((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
    .
    .
    *Note* empty entries & legit default entries are not shown
    REGEDIT4

    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "msnmsgr"="C:\Program Files\MSN Messenger\msnmsgr.exe" [2007-01-19 5674352]
    "updateMgr"="C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" [2006-03-30 313472]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "Gateway Ink Monitor"="C:\Program Files\Gateway\Gateway Ink Monitor\GWInkMonitor.exe" [2003-11-05 303180]
    "SM1BG"="C:\WINNT\SM1BG.EXE" [2003-08-27 94208]
    "NeroCheck"="C:\WINNT\System32\NeroCheck.exe" [2001-07-09 155648]
    "IgfxTray"="C:\WINNT\System32\igfxtray.exe" [2003-11-18 155648]
    "HotKeysCmds"="C:\WINNT\System32\hkcmd.exe" [2003-11-18 118784]
    "Microsoft Works Update Detection"="C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe" [2003-06-07 50688]
    "HP Software Update"="C:\Program Files\HP\HP Software Update\HPWuSchd.exe" [2003-08-04 49152]
    "HP Component Manager"="C:\Program Files\HP\hpcoretech\hpcmpmgr.exe" [2003-12-22 241664]
    "YSearchProtection"="C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe" [2007-06-08 224248]
    "ccApp"="C:\Program Files\Common Files\Symantec Shared\ccApp.exe" [2008-01-25 51048]
    "osCheck"="C:\Program Files\Norton Internet Security\osCheck.exe" [2008-02-07 718704]
    "QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [2008-05-27 413696]
    "Monitor"="C:\Program Files\LeapFrog\LeapFrog Connect\Monitor.exe" [2008-09-04 344064]

    [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
    "ALUAlert"="C:\Program Files\Symantec\LiveUpdate\ALUNotify.exe" [2008-02-09 152952]

    [HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk]
    path=C:\Documents and Settings\All Users\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk
    backup=C:\WINNT\pss\HP Digital Imaging Monitor.lnkCommon Startup

    [HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Image Transfer.lnk]
    path=C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Image Transfer.lnk
    backup=C:\WINNT\pss\Image Transfer.lnkCommon Startup

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CXMon]
    --a------ 2001-08-13 16:18 45056 C:\Program Files\Hewlett-Packard\PhotoSmart\Photo Imaging\Hpi_monitor.exe

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Microsoft Location Finder]
    --a------ 2005-08-24 18:25 101080 C:\Program Files\Microsoft Location Finder\LocationFinder.exe

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\mmtask]
    --a------ 2003-12-12 19:55 53248 C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mmtask.exe

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PicasaNet]
    --a------ 2005-01-11 21:09 2572288 C:\Program Files\Hello\Hello.exe

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
    --a------ 2008-05-27 10:50 413696 C:\Program Files\QuickTime\QTTask.exe

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Share-to-Web Namespace Daemon]
    --a------ 2001-08-02 14:11 69632 C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe

    [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
    "DisableMonitoring"=dword:00000001

    [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
    "DisableMonitoring"=dword:00000001

    [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
    "DisableMonitoring"=dword:00000001

    [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
    "EnableFirewall"= 0 (0x0)

    [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
    "C:\\Program Files\\Bonjour\\mDNSResponder.exe"=

    R2 LeapFrog Connect Device Service;LeapFrog Connect Device Service;C:\Program Files\LeapFrog\LeapFrog Connect\CommandService.exe [2008-09-04 991232]
    R2 LiveUpdate Notice;LiveUpdate Notice;C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe [2008-01-25 149864]
    S3 COH_Mon;COH_Mon;C:\WINNT\system32\Drivers\COH_Mon.sys [2008-07-30 23888]
    S3 FlyUsb;FLY Fusion;C:\WINNT\system32\DRIVERS\FlyUsb.sys [2008-09-04 18560]

    [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{2227d0e8-6bb3-11dc-bf5f-000cf1b8a2aa}]
    \Shell\AutoRun\command - F:\LaunchU3.exe -a

    [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{5cda9869-5115-11da-bec4-00038a000015}]
    \Shell\AutoRun\command - E:\JDSecure\Windows\JDSecure31.exe

    [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{5cda986c-5115-11da-bec4-00038a000015}]
    \Shell\AutoRun\command - F:\JDSecure\Windows\JDSecure31.exe

    *Newly Created Service* - COMHOST
    .
    Contents of the 'Scheduled Tasks' folder

    2008-10-12 C:\WINNT\Tasks\AppleSoftwareUpdate.job
    - C:\Program Files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 12:34]

    2008-10-21 C:\WINNT\Tasks\Norton Internet Security - Run Full System Scan - Owner.job
    - C:\Program Files\Norton Internet Security\Norton AntiVirus\Navw32.exe [2008-02-07 09:05]
    .

    **************************************************************************

    catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
    Rootkit scan 2008-10-25 07:23:55
    Windows 5.1.2600 Service Pack 2 NTFS

    scanning hidden processes ...

    scanning hidden autostart entries ...

    scanning hidden files ...

    scan completed successfully
    hidden files: 0

    **************************************************************************
    .
    ------------------------ Other Running Processes ------------------------
    .
    C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
    C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
    C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
    C:\Program Files\Bonjour\mDNSResponder.exe
    C:\WINNT\system32\LxrJD31s.exe
    C:\WINNT\system32\wdfmgr.exe
    .
    **************************************************************************
    .
    Completion time: 2008-10-25 7:31:10 - machine was rebooted
    ComboFix-quarantined-files.txt 2008-10-25 12:31:06
    ComboFix2.txt 2008-10-17 23:42:35
    ComboFix3.txt 2007-10-02 00:09:02

    Pre-Run: 35,330,310,144 bytes free
    Post-Run: 35,451,215,872 bytes free

    676 --- E O F --- 2008-10-25 12:09:05

  9. #29
    Security Expert: Emeritus Blade81's Avatar
    Join Date
    Oct 2006
    Location
    Finland
    Posts
    25,288

    Default

    Hi

    Looks like most Kaspersky findings are in system restore. Those will be cleaned when system restore is resetted. We'll do that a bit later



    We need to execute an OTMoveIt3 script
    1. Please download OTMoveIt3 by OldTimer and save it to your desktop.
    2. Double click theOTMoveIt3 icon on your desktop.
    3. Paste the following code under the Paste Fix Here area. Do not include the word
      Code
      .
      Code:
      :Files
      C:\WINNT\system32\drivers\etc\1.hosts
      C:\WINNT\system32\drivers\etc\hosts.20070921-204540.backup
      C:\WINNT\system32\drivers\etc\hosts.20070921-204541.backup
      C:\WINNT\system32\drivers\etc\hosts.20070921-204542.backup
      C:\WINNT\system32\drivers\etc\hosts.20070921-204543.backup
      C:\WINNT\system32\drivers\etc\hosts.20070921-204544.backup
      C:\WINNT\system32\drivers\etc\hosts.20070921-204545.backup
      C:\WINNT\system32\xlib254.dll
      C:\WINNT\system32\append.dll
    4. Push the large MoveIt button.
    5. OTMI3 may ask to reboot the machine. Please do so if asked.
    6. Copy/Paste the contents under the Results line here in your next reply with a fresh hjt log. How's the system running?
    7. If you are unable to copy/paste from this window (as will be the case if the machine was rebooted), open Notepad (Start->All Programs->Accessories->Notepad), click File->Open, in the File Name box enter *.log and press the Enter key, navigate to the C:\_OTMoveIt\MovedFiles folder, and open the newest .log file present, and copy/paste the contents of that document back here in your next post.
    Microsoft Windows Insider MVP 2016-2020
    Microsoft MVP Consumer Security 2008-2015
    UNITE member since 2006

    If you have problems create a thread in the forum, please.

    Malware removal instructions are for the correspondent user's case only.

  10. #30
    Member
    Join Date
    Sep 2007
    Posts
    43

    Default

    My system seems to be running better. The pop ups have stopped but I am getting a message stating,"Some items cannot be shown..there is not enough room on the start menu...". Is this happening due to malware/spyware/virus?


    OTMoveIt3 Results

    ========== FILES ==========
    C:\WINNT\system32\drivers\etc\1.hosts moved successfully.
    C:\WINNT\system32\drivers\etc\hosts.20070921-204540.backup moved successfully.
    C:\WINNT\system32\drivers\etc\hosts.20070921-204541.backup moved successfully.
    C:\WINNT\system32\drivers\etc\hosts.20070921-204542.backup moved successfully.
    C:\WINNT\system32\drivers\etc\hosts.20070921-204543.backup moved successfully.
    C:\WINNT\system32\drivers\etc\hosts.20070921-204544.backup moved successfully.
    C:\WINNT\system32\drivers\etc\hosts.20070921-204545.backup moved successfully.
    C:\WINNT\system32\xlib254.dll moved successfully.
    C:\WINNT\system32\append.dll moved successfully.

    OTMoveIt3 by OldTimer - Version 1.0.5.0 log created on 10272008_181941


    New HijackThis Log

    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 7:22:03 PM, on 10/27/2008
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
    Boot mode: Normal

    Running processes:
    C:\WINNT\System32\smss.exe
    C:\WINNT\system32\winlogon.exe
    C:\WINNT\system32\services.exe
    C:\WINNT\system32\lsass.exe
    C:\WINNT\system32\svchost.exe
    C:\WINNT\System32\svchost.exe
    C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
    C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
    C:\WINNT\Explorer.EXE
    C:\WINNT\system32\spoolsv.exe
    C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
    C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
    C:\Program Files\Bonjour\mDNSResponder.exe
    C:\Program Files\LeapFrog\LeapFrog Connect\CommandService.exe
    C:\Program Files\Gateway\Gateway Ink Monitor\GWInkMonitor.exe
    C:\WINNT\SM1BG.EXE
    C:\WINNT\System32\hkcmd.exe
    C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe
    C:\WINNT\system32\LxrJD31s.exe
    C:\Program Files\HP\HP Software Update\HPWuSchd.exe
    C:\WINNT\System32\svchost.exe
    C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
    C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe
    C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
    C:\Program Files\LeapFrog\LeapFrog Connect\Monitor.exe
    C:\Program Files\MSN Messenger\msnmsgr.exe
    C:\WINNT\System32\svchost.exe
    C:\PROGRA~1\COMMON~1\SYMANT~1\CCPD-LC\symlcsvc.exe
    C:\Program Files\Internet Explorer\IEXPLORE.EXE
    C:\WINNT\system32\winlogon.exe
    C:\WINNT\system32\wuauclt.exe
    C:\Program Files\Internet Explorer\IEXPLORE.EXE
    C:\Documents and Settings\Owner\Desktop\OTMoveIt3.exe
    C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://us.rd.yahoo.com/customize/yco.../www.yahoo.com
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
    R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn3\yt.dll
    O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn3\yt.dll
    O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
    O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O2 - BHO: NCO 2.0 IE BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files\Common Files\Symantec Shared\coShared\Browser\2.5\coIEPlg.dll
    O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\PROGRA~1\COMMON~1\SYMANT~1\IDS\IPSBHO.dll
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
    O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn3\yt.dll
    O3 - Toolbar: Show Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Common Files\Symantec Shared\coShared\Browser\2.5\CoIEPlg.dll
    O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
    O4 - HKLM\..\Run: [Gateway Ink Monitor] "C:\Program Files\Gateway\Gateway Ink Monitor\GWInkMonitor.exe"
    O4 - HKLM\..\Run: [SM1BG] C:\WINNT\SM1BG.EXE
    O4 - HKLM\..\Run: [NeroCheck] C:\WINNT\System32\NeroCheck.exe
    O4 - HKLM\..\Run: [IgfxTray] C:\WINNT\System32\igfxtray.exe
    O4 - HKLM\..\Run: [HotKeysCmds] C:\WINNT\System32\hkcmd.exe
    O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe
    O4 - HKLM\..\Run: [HP Software Update] "C:\Program Files\HP\HP Software Update\HPWuSchd.exe"
    O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
    O4 - HKLM\..\Run: [YSearchProtection] "C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe"
    O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
    O4 - HKLM\..\Run: [osCheck] "C:\Program Files\Norton Internet Security\osCheck.exe"
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [Monitor] "C:\Program Files\LeapFrog\LeapFrog Connect\Monitor.exe"
    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
    O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
    O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_9 -reboot 1
    O4 - HKUS\S-1-5-21-2636122371-3335116143-1671642677-1006\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background (User 'Mary')
    O4 - HKUS\S-1-5-21-2636122371-3335116143-1671642677-1006\..\Run: [Yahoo! Pager] C:\Program Files\Yahoo!\Messenger\ypager.exe -quiet (User 'Mary')
    O4 - HKUS\S-1-5-21-2636122371-3335116143-1671642677-1006\..\Run: [MoneyAgent] "C:\Program Files\Microsoft Money\System\mnyexpr.exe" (User 'Mary')
    O4 - HKUS\S-1-5-21-2636122371-3335116143-1671642677-1006\..\Run: [Spoolsv] C:\WINNT\system32\spoolvs.exe (User 'Mary')
    O4 - HKUS\S-1-5-21-2636122371-3335116143-1671642677-1006\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe (User 'Mary')
    O4 - HKUS\S-1-5-18\..\Run: [ALUAlert] C:\Program Files\Symantec\LiveUpdate\ALUNotify.exe (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [ALUAlert] C:\Program Files\Symantec\LiveUpdate\ALUNotify.exe (User 'Default user')
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
    O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes0411.dll
    O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes0411.dll
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
    O9 - Extra button: Share in Hello - {B13B4423-2647-4cfc-A4B3-C7D56CB83487} - C:\Program Files\Hello\PicasaCapture.dll
    O9 - Extra 'Tools' menuitem: Share in H&ello - {B13B4423-2647-4cfc-A4B3-C7D56CB83487} - C:\Program Files\Hello\PicasaCapture.dll
    O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINNT\System32\Shdocvw.dll
    O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O16 - DPF: {05D44720-58E3-49E6-BDF6-D00330E511D3} (StagingUI Object) - http://zone.msn.com/binFrameWork/v10...I.cab55579.cab
    O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/english...an_unicode.cab
    O16 - DPF: {3BB54395-5982-4788-8AF4-B5388FFDD0D8} (MSN Games – Buddy Invite) - http://sympatico.zone.msn.com/BinFra...y.cab55579.cab
    O16 - DPF: {5736C456-EA94-4AAC-BB08-917ABDD035B3} (ZonePAChat Object) - http://sympatico.zone.msn.com/binfra...t.cab55579.cab
    O16 - DPF: {A17E30C4-A9BA-11D4-8673-60DB54C10000} (YahooYMailTo Class) - http://us.dl1.yimg.com/download.yaho...ymmapi_416.dll
    O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://cdn2.zone.msn.com/binFramewor...o.cab56649.cab
    O16 - DPF: {DA2AA6CF-5C7A-4B71-BC3B-C771BB369937} (MSN Games – Game Communicator) - http://sympatico.zone.msn.com/binfra...y.cab55579.cab
    O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) - http://download.mcafee.com/molbin/is...36/mcfscan.cab
    O16 - DPF: {FF3C5A9F-5A99-4930-80E8-4709194C2AD3} (MSN Games – Backgammon) - http://sympatico.zone.msn.com/bingam...n.cab64162.cab
    O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
    O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
    O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
    O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
    O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
    O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
    O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
    O23 - Service: COM Host (comHost) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe
    O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
    O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: LeapFrog Connect Device Service - Unknown owner - C:\Program Files\LeapFrog\LeapFrog Connect\CommandService.exe
    O23 - Service: LiveUpdate - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\LuComServer_3_4.EXE
    O23 - Service: LiveUpdate Notice - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
    O23 - Service: Lexar JD31 (LxrJD31s) - Unknown owner - C:\WINNT\SYSTEM32\LxrJD31s.exe
    O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - C:\Program Files\Intel\NCS\Sync\NetSvc.exe
    O23 - Service: Pml Driver HPZ12 - HP - C:\WINNT\system32\HPZipm12.exe
    O23 - Service: Symantec Core LC - Unknown owner - C:\PROGRA~1\COMMON~1\SYMANT~1\CCPD-LC\symlcsvc.exe

    --
    End of file - 11258 bytes

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •