Jump to content


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.

Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Total Takeover, This Is The Motherload Of Them All! Help Asap!


  • This topic is locked This topic is locked
58 replies to this topic

#16 Buckeye_Sam

Buckeye_Sam

    Malware Expert


  • Malware Response Team
  • 17,382 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Pickerington, Ohio
  • Local time:05:07 PM

Posted 24 December 2007 - 01:04 PM

Ok, now we're making some progress. Let's see if combofix will continue to cooperate with us.

Copy and paste ALL the following text in the Quote box below into Notepad.
Click on File(in the menu at the top)>Save as../Save as Type: 'All Files' /File name: CFScript to your desktop.


File::
C:\WINDOWS\medichi.exe
C:\WINDOWS\system32\shovth.exe
C:\WINDOWS\medichi2.exe
C:\WINDOWS\murka.dat
C:\WINDOWS\system32\winsn.exe
C:\WINDOWS\system32\winsos.exe
C:\WINDOWS\system32\drivers\drivers.exe
C:\WINDOWS\system32\config\systemprofile\systemprofile.exe
C:\WINDOWS\system\system.exe
C:\0047F358.exe
C:\WINDOWS\system32\eiteofgo.tmp
C:\lich.exe
C:\lich.sys
C:\WINDOWS\system32\lich.dat
C:\WINDOWS\wsystmp_yiw.exe
C:\WINDOWS\system32\dllgh8jkd1q5.exe
C:\WINDOWS\system32\dllgh8jkd1q1.exe
C:\WINDOWS\system32\dllgh8jkd1q8.exe
C:\WINDOWS\wsystmp_oah.exe
C:\autorun.inf
C:\WINDOWS\system32\user32.dat
C:\WINDOWS\wsystmp_wmh.exe
C:\WINDOWS\windisk.dll
C:\WINDOWS\trayicons.exe
C:\WINDOWS\AppPatch\MUI\0414\0414.exe
C:\WINDOWS\AppPatch\AppPatch.exe

Folder::
C:\Program Files\EliteProtector

Registry::
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Medichi2"=-
"sis32"=-
"winroot"=-
"Medichi"=-

Now drag then drop the CFScript file onto ComboFix.exe as seen in the image below.

Posted Image

This will start ComboFix again.
After reboot, (in case it asks to reboot), post the contents of Combofix.txt in your next reply along with a new HijackThis log.
Posted Image If I have helped you in any way, please consider a donation to help me continue the fight against malware.


Failing to respond back to the person that is giving up their own time to help you not only is insensitive and disrespectful, but it guarantees that you will never receive help from me again. Please thank your helpers and there will always be help here when you need it!


========================================================

BC AdBot (Login to Remove)

 


#17 Buckeye_Sam

Buckeye_Sam

    Malware Expert


  • Malware Response Team
  • 17,382 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Pickerington, Ohio
  • Local time:05:07 PM

Posted 24 December 2007 - 01:06 PM

can i safely use system restore and restore it to an earlier stage ? should i do this in safe mode or normal mode ?
but i guess i should dl some antivirus and antimalware progs and run a scan first incase there are leftovers....


Let's see where we can get cleaning it up first. Often a system restore will still restore infected files. So let's use it as a last resort if that's ok.
Posted Image If I have helped you in any way, please consider a donation to help me continue the fight against malware.


Failing to respond back to the person that is giving up their own time to help you not only is insensitive and disrespectful, but it guarantees that you will never receive help from me again. Please thank your helpers and there will always be help here when you need it!


========================================================

#18 sec

sec
  • Topic Starter

  • Members
  • 40 posts
  • OFFLINE
  •  
  • Local time:11:07 PM

Posted 24 December 2007 - 01:22 PM

alright done
here is combofix log :

ComboFix 07-12-21.4 - Hamze 2007-12-25 11:29:03.2 - NTFSx86 MINIMAL
Microsoft Windows XP Professional 5.1.2600.2.1252.1.1033.18.787 [GMT 1:00]
Running from: C:\cf.exe
Command switches used :: C:\CFScript.txt

FILE
C:\0047F358.exe
C:\autorun.inf
C:\lich.exe
C:\lich.sys
C:\WINDOWS\AppPatch\AppPatch.exe
C:\WINDOWS\AppPatch\MUI\0414\0414.exe
C:\WINDOWS\medichi.exe
C:\WINDOWS\medichi2.exe
C:\WINDOWS\murka.dat
C:\WINDOWS\system\system.exe
C:\WINDOWS\system32\config\systemprofile\systemprofile.exe
C:\WINDOWS\system32\dllgh8jkd1q1.exe
C:\WINDOWS\system32\dllgh8jkd1q5.exe
C:\WINDOWS\system32\dllgh8jkd1q8.exe
C:\WINDOWS\system32\drivers\drivers.exe
C:\WINDOWS\system32\eiteofgo.tmp
C:\WINDOWS\system32\lich.dat
C:\WINDOWS\system32\shovth.exe
C:\WINDOWS\system32\user32.dat
C:\WINDOWS\system32\winsn.exe
C:\WINDOWS\system32\winsos.exe
C:\WINDOWS\trayicons.exe
C:\WINDOWS\windisk.dll
C:\WINDOWS\wsystmp_oah.exe
C:\WINDOWS\wsystmp_wmh.exe
C:\WINDOWS\wsystmp_yiw.exe
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

C:\.exe
C:\0047F358.exe
C:\autorun.inf
C:\lich.exe
C:\lich.sys
C:\Program Files\EliteProtector
C:\WINDOWS\AppPatch\AppPatch.exe
C:\WINDOWS\AppPatch\MUI\0414\0414.exe
C:\WINDOWS\medichi.exe
C:\WINDOWS\medichi2.exe
C:\WINDOWS\murka.dat
C:\WINDOWS\system\system.exe
C:\WINDOWS\system32\config\systemprofile\systemprofile.exe
C:\WINDOWS\system32\dllgh8jkd1q1.exe
C:\WINDOWS\system32\dllgh8jkd1q5.exe
C:\WINDOWS\system32\dllgh8jkd1q8.exe
C:\WINDOWS\system32\drivers\drivers.exe
C:\WINDOWS\system32\eiteofgo.tmp
C:\WINDOWS\system32\lich.dat
C:\WINDOWS\system32\shovth.exe
C:\WINDOWS\system32\user32.dat
C:\WINDOWS\system32\winsn.exe
C:\WINDOWS\system32\winsos.exe
C:\WINDOWS\trayicons.exe
C:\WINDOWS\windisk.dll
C:\WINDOWS\wsystmp_oah.exe
C:\WINDOWS\wsystmp_wmh.exe
C:\WINDOWS\wsystmp_yiw.exe
D:\Autorun.inf
G:\Autorun.inf

.
((((((((((((((((((((((((( Files Created from 2007-11-25 to 2007-12-25 )))))))))))))))))))))))))))))))
.

2007-12-25 10:00 . 2007-12-24 02:05 1,478,778 --a------ C:\cf.exe
2007-12-23 16:34 . 2007-12-23 17:18 <DIR> d-------- C:\Program Files\RegCleaner
2007-12-23 16:32 . 2007-12-23 16:33 <DIR> d-------- C:\Program Files\SpywareGuard
2007-12-23 16:32 . 2007-12-23 16:32 <DIR> d-------- C:\Program Files\SpywareBlaster
2007-12-23 16:32 . 2005-08-25 18:18 118,784 --a------ C:\WINDOWS\system32\MSSTDFMT.DLL
2007-12-23 16:31 . 2007-12-23 16:31 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
2007-12-23 16:30 . 2007-12-23 16:30 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Grisoft
2007-12-23 16:22 . 2007-12-23 16:34 <DIR> d-------- C:\Program Files\CCleaner
2007-12-23 00:49 . 2007-12-23 00:49 <DIR> d--h----- C:\WINDOWS\system32\GroupPolicy
2007-12-22 20:12 . 2007-12-23 01:21 <DIR> d-------- C:\PerfLogs
2007-12-22 19:54 . 2004-08-10 15:00 14,336 --a------ C:\WINDOWS\system32\svchost.exe.tmp
2007-12-22 19:54 . 2004-08-10 15:00 14,336 --a------ C:\WINDOWS\system32\svchost.exe
2007-12-22 19:54 . 2004-08-10 15:00 14,336 --a------ C:\WINDOWS\system32\dllcache\svchost.exe
2007-12-22 13:55 . 2007-09-05 23:22 289,144 --a------ C:\WINDOWS\system32\VCCLSID.exe
2007-12-22 13:55 . 2006-04-27 16:49 288,417 --a------ C:\WINDOWS\system32\SrchSTS.exe
2007-12-22 13:55 . 2007-12-20 23:11 81,920 --a------ C:\WINDOWS\system32\IEDFix.exe
2007-12-22 13:55 . 2003-06-05 20:13 53,248 --a------ C:\WINDOWS\system32\Process.exe
2007-12-22 13:55 . 2004-07-31 17:50 51,200 --a------ C:\WINDOWS\system32\dumphive.exe
2007-12-22 13:55 . 2007-10-03 23:36 25,600 --a------ C:\WINDOWS\system32\WS2Fix.exe
2007-12-22 13:30 . 2007-12-22 23:24 4,120 --a------ C:\WINDOWS\system32\tmp.reg
2007-12-07 15:38 . 2007-12-07 15:38 <DIR> d-------- C:\Program Files\R-Drive Image
2007-11-30 19:06 . 2007-11-30 19:06 54,156 --ah----- C:\WINDOWS\QTFont.qfn
2007-11-30 19:06 . 2007-11-30 19:06 1,409 --a------ C:\WINDOWS\QTFont.for
2007-11-30 18:48 . 2007-12-07 15:24 <DIR> d-------- C:\Program Files\EASEUS
2007-11-30 17:31 . 2007-12-07 16:02 <DIR> d-a------ C:\Documents and Settings\All Users\Application Data\TEMP
2007-11-30 17:30 . 2007-11-30 17:31 <DIR> d-------- C:\Program Files\Active Data Recovery Software
2007-11-30 15:29 . 2007-11-30 15:29 <DIR> d-------- C:\Program Files\Restorer2000 Pro
2007-11-29 13:20 . 2007-11-29 13:20 <DIR> d-------- C:\Program Files\FILERECOVERY PRO
2007-11-29 13:20 . 2007-11-29 13:20 286,720 --a------ C:\WINDOWS\iun507.exe

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2007-12-23 16:00 --------- d-----w C:\Program Files\Windows Live Toolbar
2007-12-23 16:00 --------- d-----w C:\Program Files\Windows Desktop Search
2007-12-23 00:22 37,888 ----a-w C:\WINDOWS\system32\drivers\beep.sys
2007-12-23 00:22 37,888 ----a-w C:\WINDOWS\system32\dllcache\beep.sys
2007-12-22 03:56 89,088 --sha-w C:\WINDOWS\Help\Tours\WindowsMediaPlayer\Img\WMarks\WMarks.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\Web\Web.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\Web\printers\printers.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\Web\printers\images\images.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\Web\mui\0414\0414.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\Tasks\Tasks.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\srchasst\srchasst.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\srchasst\mui\0414\0414.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\srchasst\mui\0409\0409.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\srchasst\chars\chars.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\Registration\Registration.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\UploadLB\Config\Config.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\UploadLB\Binaries\Binaries.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\MUI\0414\0414.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\Remote Assistance.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\Escalation\Unsolicited\Unsolicited.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\Escalation\Email\Email.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\Escalation\Common\Common.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\Css\Css.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\Common\Common.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\UpdateCtr\UpdateCtr.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\System.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\sysinfo\sysinfo.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\sysinfo\graphics\graphics.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\sysinfo\graphics\47x24pie\47x24pie.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\sysinfo\graphics\33x16pie\33x16pie.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\scripts\scripts.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\Remote Assistance\Remote Assistance.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\Remote Assistance\Interaction\Server\Server.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\Remote Assistance\Interaction\Common\Common.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\Remote Assistance\Interaction\Client\Client.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\Remote Assistance\Css\Css.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\Remote Assistance\Common\Common.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\rc\rc.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\panels\subpanels\subpanels.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\panels\panels.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\NetDiag\NetDiag.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\images\images.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\images\Expando\Expando.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\images\Centers\Centers.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\images\48x48\48x48.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\images\32x32\32x32.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\images\24x24\24x24.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\images\16x16\16x16.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\errors\errors.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\ErrMsg\ErrMsg.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\DVDUpgrd\DVDUpgrd.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\dialogs\dialogs.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\css\css.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\CompatCtr\CompatCtr.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\blurbs\blurbs.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\PackageStore\PackageStore.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\OfflineCache\Professional_32#0414\Professional_32#0414.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\OfflineCache\Professional_32#0409\Professional_32#0409.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\OfflineCache\OfflineCache.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\Logs\Logs.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\Remote Assistance.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\Escalation\Unsolicited\Unsolicited.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\Escalation\Email\Email.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\Escalation\Common\Common.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\Css\Css.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\Common\Common.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\UpdateCtr\UpdateCtr.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\System.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\sysinfo\sysinfo.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\sysinfo\graphics\graphics.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\sysinfo\graphics\47x24pie\47x24pie.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\sysinfo\graphics\33x16pie\33x16pie.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\scripts\scripts.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\Remote Assistance\Remote Assistance.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\Remote Assistance\Interaction\Server\Server.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\Remote Assistance\Interaction\Common\Common.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\Remote Assistance\Interaction\Client\Client.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\Remote Assistance\Css\Css.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\Remote Assistance\Common\Common.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\rc\rc.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\panels\subpanels\subpanels.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\panels\panels.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\NetDiag\NetDiag.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\images\images.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\images\Expando\Expando.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\images\Centers\Centers.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\images\48x48\48x48.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\images\32x32\32x32.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\images\24x24\24x24.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\images\16x16\16x16.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\errors\errors.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\ErrMsg\ErrMsg.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\DVDUpgrd\DVDUpgrd.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\dialogs\dialogs.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\css\css.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\CompatCtr\CompatCtr.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\blurbs\blurbs.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\Indices\Indices.exe
.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"MsnMsgr"="C:\Program Files\MSN Messenger\MsnMsgr.exe" [2007-01-19 12:54]
"Steam"="d:\games\counter strike source\steam.exe" [2007-11-30 08:19]
"swg"="C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2007-07-14 10:36]
"DAEMON Tools"="C:\Program Files\DAEMON Tools\daemon.exe" [2007-09-18 15:16]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="C:\Program Files\Common Files\Nero\Lib\NMBgMonitor.exe" [2007-10-23 14:18]
"SpybotSD TeaTimer"="C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe" [2005-05-31 01:04]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe" [2007-09-25 01:11]
"BluetoothAuthenticationAgent"="bthprops.cpl" [2004-08-10 15:00 C:\WINDOWS\system32\bthprops.cpl]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [2006-11-30 18:29]
"nod32kui"="C:\Program Files\Eset\nod32kui.exe" [2007-04-19 21:41]
"StartCCC"="C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2006-11-10 11:35]
"NeroFilterCheck"="C:\Program Files\Common Files\Nero\Lib\NeroCheck.exe" [2007-03-01 14:57]
"!AVG Anti-Spyware"="C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" [2007-06-11 10:25]
"ISUSPM Startup"="C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe" []
"ISUSScheduler"="C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" []
"MsgCenterExe"="C:\Program Files\Common Files\Real\Update_OB\RealOneMessageCenter.exe" []

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE" [2004-08-10 15:00]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"RunNarrator"="Narrator.exe" [2004-08-10 15:00 C:\WINDOWS\system32\narrator.exe]

C:\Documents and Settings\Hamze\Start Menu\Programs\Startup\
SpywareGuard.lnk - C:\Program Files\SpywareGuard\sgmain.exe [2003-08-29 19:05:35]

C:\Documents and Settings\All Users\Start Menu\Programs\Startup\
Bluetooth Manager.lnk - C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtMng1.exe [2004-12-21 20:42:36]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"InstallVisualStyle"= C:\WINDOWS\Resources\Themes\Royale\Royale.msstyles
"InstallTheme"= C:\WINDOWS\Resources\Themes\Royale.theme

[hkey_local_machine\software\microsoft\windows\currentversion\explorer\shellexecutehooks]
"{56F9679E-7826-4C84-81F3-532071A8BCC5}"= C:\Program Files\Windows Desktop Search\MSNLNamespaceMgr.dll [2006-03-13 13:11 233472]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\WB]
C:\Program Files\AlienGUIse\fastload.dll 2001-12-20 23:34 24576 C:\Program Files\AlienGUIse\fastload.dll

S0 viamraid;viamraid;C:\WINDOWS\system32\DRIVERS\viamraid.sys [2006-05-29 13:03]
S2 Nero BackItUp Scheduler 3;Nero BackItUp Scheduler 3;C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe [2007-09-20 08:51]
S2 SrvCDEject;SrvCDEject;C:\Program Files\Packard Bell\SrvCDEject.exe [2006-07-25 10:48]
S2 Vcs;Vcs support;C:\WINDOWS\system32\Drivers\Vcs.sys [2004-11-14 13:01]
S3 DrvSnSht;DrvSnSht;C:\Program Files\R-Drive Image\DrvSnSht.sys [2007-11-11 13:17]
S3 ICAM8USB;Intel® PC Camera CS120;C:\WINDOWS\system32\Drivers\Icm8D2.SYS [2001-07-12 12:23]
S3 RTSTOR;USB Mass Stroage Device;C:\WINDOWS\system32\drivers\RTSTOR.SYS [2005-12-21 22:27]
S3 StMp3Rec;Player Recovery Device Control Driver;C:\WINDOWS\system32\Drivers\StMp3Rec.sys [2007-02-15 13:14]
S3 ZZZdrv_lich;ZZZdrv_lich;C:\lich.sys []
S4 FFI;FFI;C:\WINDOWS\system32\svchost.exe:exm.exe []
S4 ZZZsvc_lich;ZZZsvc_lich;C:\lich.exe []

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\C]
\Shell\AutoRun\command - C:\
\Shell\open\Command - C:\0047F358.exe

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\D]
\Shell\AutoRun\command - D:\
\Shell\open\Command - D:\708FDE68.exe

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\G]
\Shell\AutoRun\command - G:\
\Shell\open\Command - G:\C0361F71.exe

.
Contents of the 'Scheduled Tasks' folder
"2007-12-22 03:36:00 C:\WINDOWS\Tasks\Se etter oppdateringer for Windows Live Toolbar.job"
- C:\Program Files\Windows Live Toolbar\MSNTBUP.EXE
.
**************************************************************************

catchme 0.3.1333 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2007-12-25 11:32:31
Windows 5.1.2600 Service Pack 2 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully
hidden files: 0

**************************************************************************

[HKEY_LOCAL_MACHINE\system\ControlSet003\Services\FFI]
"ImagePath"="C:\WINDOWS\system32\svchost.exe:exm.exe"
.
Completion time: 2007-12-25 11:33:43
C:\ComboFix2.txt ... 2007-12-25 10:45
.
2007-12-21 15:03:50 --- E O F ---
______________________________________________________________

and here is a new hijack log :



Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:34:40, on 25.12.2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Safe mode

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\explorer.exe
C:\DOCUME~1\Hamze\LOCALS~1\Temp\Rar$EX00.172\HijackThis.exe

O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: SpywareGuard Download Protection - {4A368E80-174F-4872-96B5-0B27DDD11DB2} - C:\Program Files\SpywareGuard\dlprotect.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Nero\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [MsgCenterExe] "C:\Program Files\Common Files\Real\Update_OB\RealOneMessageCenter.exe" -osboot
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [Steam] "d:\games\counter strike source\steam.exe" -silent
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Nero\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETTVERKSTJENESTE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [RunNarrator] Narrator.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [RunNarrator] Narrator.exe (User 'Default user')
O4 - Startup: SpywareGuard.lnk = C:\Program Files\SpywareGuard\sgmain.exe
O4 - Global Startup: AutorunsDisabled
O4 - Global Startup: Bluetooth Manager.lnk = ?
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: SrvCDEject - Unknown owner - C:\Program Files\Packard Bell\SrvCDEject.exe
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
O24 - Desktop Component AutorunsDisabled: (no name) - (no file)

--
End of file - 5202 bytes

#19 Buckeye_Sam

Buckeye_Sam

    Malware Expert


  • Malware Response Team
  • 17,382 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Pickerington, Ohio
  • Local time:05:07 PM

Posted 24 December 2007 - 01:45 PM

We are definitely making progress.

Download & run this tool - http://www.techsupportforum.com/sectools/CleanX-II.exe

Then post the log it produces in your next reply along with a new log from Combofix.
Posted Image If I have helped you in any way, please consider a donation to help me continue the fight against malware.


Failing to respond back to the person that is giving up their own time to help you not only is insensitive and disrespectful, but it guarantees that you will never receive help from me again. Please thank your helpers and there will always be help here when you need it!


========================================================

#20 sec

sec
  • Topic Starter

  • Members
  • 40 posts
  • OFFLINE
  •  
  • Local time:11:07 PM

Posted 24 December 2007 - 01:46 PM

combofix with CFSScript ? or without the script ?

#21 Buckeye_Sam

Buckeye_Sam

    Malware Expert


  • Malware Response Team
  • 17,382 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Pickerington, Ohio
  • Local time:05:07 PM

Posted 24 December 2007 - 01:50 PM

Without the script. Just run the tool normally like the first log that you posted.
Posted Image If I have helped you in any way, please consider a donation to help me continue the fight against malware.


Failing to respond back to the person that is giving up their own time to help you not only is insensitive and disrespectful, but it guarantees that you will never receive help from me again. Please thank your helpers and there will always be help here when you need it!


========================================================

#22 sec

sec
  • Topic Starter

  • Members
  • 40 posts
  • OFFLINE
  •  
  • Local time:11:07 PM

Posted 24 December 2007 - 01:58 PM

ok all done
im not sure if im supposed to restart my pc again into safe mode since there WAS text under the Run Analysis section ?

here is the log :

#######################################################################

Brontok Worm Removal Tool - (Version - 06.08.14)
by sUBs

#######################################################################

Current date: 25.12.2007 Current time: 12:08:00,18

=== PRE RUN ANALYSIS ===================================

...............



=== POST RUN ANALYSIS ==================================



NOTE
The post-run analysis portion should be empty. If it's not, reboot and run the tool a second time.

======================================================


and here is combofix again :



ComboFix 07-12-21.4 - Hamze 2007-12-25 12:09:11.3 - NTFSx86 MINIMAL
Running from: C:\cf.exe
.

((((((((((((((((((((((((( Files Created from 2007-11-25 to 2007-12-25 )))))))))))))))))))))))))))))))
.

2007-12-25 10:00 . 2007-12-24 02:05 1,478,778 --a------ C:\cf.exe
2007-12-23 16:34 . 2007-12-23 17:18 <DIR> d-------- C:\Program Files\RegCleaner
2007-12-23 16:32 . 2007-12-23 16:33 <DIR> d-------- C:\Program Files\SpywareGuard
2007-12-23 16:32 . 2007-12-23 16:32 <DIR> d-------- C:\Program Files\SpywareBlaster
2007-12-23 16:32 . 2005-08-25 18:18 118,784 --a------ C:\WINDOWS\system32\MSSTDFMT.DLL
2007-12-23 16:31 . 2007-12-23 16:31 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
2007-12-23 16:30 . 2007-12-23 16:30 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Grisoft
2007-12-23 16:22 . 2007-12-23 16:34 <DIR> d-------- C:\Program Files\CCleaner
2007-12-23 00:49 . 2007-12-23 00:49 <DIR> d--h----- C:\WINDOWS\system32\GroupPolicy
2007-12-22 20:12 . 2007-12-23 01:21 <DIR> d-------- C:\PerfLogs
2007-12-22 19:54 . 2004-08-10 15:00 14,336 --a------ C:\WINDOWS\system32\svchost.exe.tmp
2007-12-22 19:54 . 2004-08-10 15:00 14,336 --a------ C:\WINDOWS\system32\svchost.exe
2007-12-22 19:54 . 2004-08-10 15:00 14,336 --a------ C:\WINDOWS\system32\dllcache\svchost.exe
2007-12-22 13:55 . 2007-09-05 23:22 289,144 --a------ C:\WINDOWS\system32\VCCLSID.exe
2007-12-22 13:55 . 2006-04-27 16:49 288,417 --a------ C:\WINDOWS\system32\SrchSTS.exe
2007-12-22 13:55 . 2007-12-20 23:11 81,920 --a------ C:\WINDOWS\system32\IEDFix.exe
2007-12-22 13:55 . 2003-06-05 20:13 53,248 --a------ C:\WINDOWS\system32\Process.exe
2007-12-22 13:55 . 2004-07-31 17:50 51,200 --a------ C:\WINDOWS\system32\dumphive.exe
2007-12-22 13:55 . 2007-10-03 23:36 25,600 --a------ C:\WINDOWS\system32\WS2Fix.exe
2007-12-22 13:30 . 2007-12-22 23:24 4,120 --a------ C:\WINDOWS\system32\tmp.reg
2007-12-07 15:38 . 2007-12-07 15:38 <DIR> d-------- C:\Program Files\R-Drive Image
2007-11-30 19:06 . 2007-11-30 19:06 54,156 --ah----- C:\WINDOWS\QTFont.qfn
2007-11-30 19:06 . 2007-11-30 19:06 1,409 --a------ C:\WINDOWS\QTFont.for
2007-11-30 18:48 . 2007-12-07 15:24 <DIR> d-------- C:\Program Files\EASEUS
2007-11-30 17:31 . 2007-12-07 16:02 <DIR> d-a------ C:\Documents and Settings\All Users\Application Data\TEMP
2007-11-30 17:30 . 2007-11-30 17:31 <DIR> d-------- C:\Program Files\Active Data Recovery Software
2007-11-30 15:29 . 2007-11-30 15:29 <DIR> d-------- C:\Program Files\Restorer2000 Pro
2007-11-29 13:20 . 2007-11-29 13:20 <DIR> d-------- C:\Program Files\FILERECOVERY PRO
2007-11-29 13:20 . 2007-11-29 13:20 286,720 --a------ C:\WINDOWS\iun507.exe

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2007-12-23 16:00 --------- d-----w C:\Program Files\Windows Live Toolbar
2007-12-23 16:00 --------- d-----w C:\Program Files\Windows Desktop Search
2007-12-23 00:22 37,888 ----a-w C:\WINDOWS\system32\drivers\beep.sys
2007-12-23 00:22 37,888 ----a-w C:\WINDOWS\system32\dllcache\beep.sys
2007-12-22 03:56 89,088 --sha-w C:\WINDOWS\Help\Tours\WindowsMediaPlayer\Img\WMarks\WMarks.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\Web\Web.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\Web\printers\printers.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\Web\printers\images\images.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\Web\mui\0414\0414.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\Tasks\Tasks.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\srchasst\srchasst.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\srchasst\mui\0414\0414.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\srchasst\mui\0409\0409.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\srchasst\chars\chars.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\Registration\Registration.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\UploadLB\Config\Config.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\UploadLB\Binaries\Binaries.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\MUI\0414\0414.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\Remote Assistance.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\Escalation\Unsolicited\Unsolicited.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\Escalation\Email\Email.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\Escalation\Common\Common.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\Css\Css.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\Common\Common.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\UpdateCtr\UpdateCtr.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\System.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\sysinfo\sysinfo.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\sysinfo\graphics\graphics.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\sysinfo\graphics\47x24pie\47x24pie.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\sysinfo\graphics\33x16pie\33x16pie.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\scripts\scripts.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\Remote Assistance\Remote Assistance.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\Remote Assistance\Interaction\Server\Server.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\Remote Assistance\Interaction\Common\Common.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\Remote Assistance\Interaction\Client\Client.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\Remote Assistance\Css\Css.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\Remote Assistance\Common\Common.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\rc\rc.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\panels\subpanels\subpanels.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\panels\panels.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\NetDiag\NetDiag.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\images\images.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\images\Expando\Expando.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\images\Centers\Centers.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\images\48x48\48x48.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\images\32x32\32x32.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\images\24x24\24x24.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\images\16x16\16x16.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\errors\errors.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\ErrMsg\ErrMsg.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\DVDUpgrd\DVDUpgrd.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\dialogs\dialogs.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\css\css.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\CompatCtr\CompatCtr.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\System\blurbs\blurbs.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\PackageStore\PackageStore.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\OfflineCache\Professional_32#0414\Professional_32#0414.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\OfflineCache\Professional_32#0409\Professional_32#0409.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\OfflineCache\OfflineCache.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\Logs\Logs.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\Remote Assistance.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\Escalation\Unsolicited\Unsolicited.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\Escalation\Email\Email.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\Escalation\Common\Common.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\Css\Css.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\Common\Common.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\UpdateCtr\UpdateCtr.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\System.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\sysinfo\sysinfo.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\sysinfo\graphics\graphics.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\sysinfo\graphics\47x24pie\47x24pie.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\sysinfo\graphics\33x16pie\33x16pie.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\scripts\scripts.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\Remote Assistance\Remote Assistance.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\Remote Assistance\Interaction\Server\Server.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\Remote Assistance\Interaction\Common\Common.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\Remote Assistance\Interaction\Client\Client.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\Remote Assistance\Css\Css.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\Remote Assistance\Common\Common.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\rc\rc.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\panels\subpanels\subpanels.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\panels\panels.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\NetDiag\NetDiag.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\images\images.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\images\Expando\Expando.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\images\Centers\Centers.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\images\48x48\48x48.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\images\32x32\32x32.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\images\24x24\24x24.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\images\16x16\16x16.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\errors\errors.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\ErrMsg\ErrMsg.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\DVDUpgrd\DVDUpgrd.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\dialogs\dialogs.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\css\css.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\CompatCtr\CompatCtr.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\blurbs\blurbs.exe
2007-12-22 03:56 89,088 ---h--w C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\Indices\Indices.exe
.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"MsnMsgr"="C:\Program Files\MSN Messenger\MsnMsgr.exe" [2007-01-19 12:54]
"Steam"="d:\games\counter strike source\steam.exe" [2007-11-30 08:19]
"swg"="C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2007-07-14 10:36]
"DAEMON Tools"="C:\Program Files\DAEMON Tools\daemon.exe" [2007-09-18 15:16]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="C:\Program Files\Common Files\Nero\Lib\NMBgMonitor.exe" [2007-10-23 14:18]
"SpybotSD TeaTimer"="C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe" [2005-05-31 01:04]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe" [2007-09-25 01:11]
"BluetoothAuthenticationAgent"="bthprops.cpl" [2004-08-10 15:00 C:\WINDOWS\system32\bthprops.cpl]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [2006-11-30 18:29]
"nod32kui"="C:\Program Files\Eset\nod32kui.exe" [2007-04-19 21:41]
"StartCCC"="C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2006-11-10 11:35]
"NeroFilterCheck"="C:\Program Files\Common Files\Nero\Lib\NeroCheck.exe" [2007-03-01 14:57]
"!AVG Anti-Spyware"="C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" [2007-06-11 10:25]
"ISUSPM Startup"="C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe" []
"ISUSScheduler"="C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" []
"MsgCenterExe"="C:\Program Files\Common Files\Real\Update_OB\RealOneMessageCenter.exe" []

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE" [2004-08-10 15:00]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"RunNarrator"="Narrator.exe" [2004-08-10 15:00 C:\WINDOWS\system32\narrator.exe]

C:\Documents and Settings\Hamze\Start Menu\Programs\Startup\
SpywareGuard.lnk - C:\Program Files\SpywareGuard\sgmain.exe [2003-08-29 19:05:35]

C:\Documents and Settings\All Users\Start Menu\Programs\Startup\
Bluetooth Manager.lnk - C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtMng1.exe [2004-12-21 20:42:36]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"InstallVisualStyle"= C:\WINDOWS\Resources\Themes\Royale\Royale.msstyles
"InstallTheme"= C:\WINDOWS\Resources\Themes\Royale.theme

[hkey_local_machine\software\microsoft\windows\currentversion\explorer\shellexecutehooks]
"{56F9679E-7826-4C84-81F3-532071A8BCC5}"= C:\Program Files\Windows Desktop Search\MSNLNamespaceMgr.dll [2006-03-13 13:11 233472]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\WB]
C:\Program Files\AlienGUIse\fastload.dll 2001-12-20 23:34 24576 C:\Program Files\AlienGUIse\fastload.dll

S0 viamraid;viamraid;C:\WINDOWS\system32\DRIVERS\viamraid.sys [2006-05-29 13:03]
S2 Nero BackItUp Scheduler 3;Nero BackItUp Scheduler 3;C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe [2007-09-20 08:51]
S2 SrvCDEject;SrvCDEject;C:\Program Files\Packard Bell\SrvCDEject.exe [2006-07-25 10:48]
S2 Vcs;Vcs support;C:\WINDOWS\system32\Drivers\Vcs.sys [2004-11-14 13:01]
S3 DrvSnSht;DrvSnSht;C:\Program Files\R-Drive Image\DrvSnSht.sys [2007-11-11 13:17]
S3 ICAM8USB;Intel® PC Camera CS120;C:\WINDOWS\system32\Drivers\Icm8D2.SYS [2001-07-12 12:23]
S3 RTSTOR;USB Mass Stroage Device;C:\WINDOWS\system32\drivers\RTSTOR.SYS [2005-12-21 22:27]
S3 StMp3Rec;Player Recovery Device Control Driver;C:\WINDOWS\system32\Drivers\StMp3Rec.sys [2007-02-15 13:14]
S3 ZZZdrv_lich;ZZZdrv_lich;C:\lich.sys []
S4 FFI;FFI;C:\WINDOWS\system32\svchost.exe:exm.exe []
S4 ZZZsvc_lich;ZZZsvc_lich;C:\lich.exe []

.
Contents of the 'Scheduled Tasks' folder
"2007-12-22 03:36:00 C:\WINDOWS\Tasks\Se etter oppdateringer for Windows Live Toolbar.job"
- C:\Program Files\Windows Live Toolbar\MSNTBUP.EXE
.
**************************************************************************

catchme 0.3.1333 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2007-12-25 12:10:11
Windows 5.1.2600 Service Pack 2 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully
hidden files: 0

**************************************************************************

[HKEY_LOCAL_MACHINE\system\ControlSet003\Services\FFI]
"ImagePath"="C:\WINDOWS\system32\svchost.exe:exm.exe"
.
Completion time: 2007-12-25 12:11:02
C:\ComboFix2.txt ... 2007-12-25 11:33
C:\ComboFix3.txt ... 2007-12-25 10:45
.
2007-12-21 15:03:50 --- E O F ---

#23 Buckeye_Sam

Buckeye_Sam

    Malware Expert


  • Malware Response Team
  • 17,382 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Pickerington, Ohio
  • Local time:05:07 PM

Posted 24 December 2007 - 02:19 PM

You've got a lot of infected files on your computer. We could go through and start deleting them with Combofix, but that might take a long time to get them all. So let's try this virus scan and it should take care of it for us.

Download Dr.Web CureIt to the desktop:
ftp://ftp.drweb.com/pub/drweb/cureit/drweb-cureit.exe
  • Doubleclick the drweb-cureit.exe file and Allow to run the express scan
  • This will scan the files currently running in memory and when something is found, click the yes button when it asks you if you want to cure it. This is only a short scan.
  • Once the short scan has finished, mark the drives that you want to scan.
  • Select all drives. A red dot shows which drives have been chosen.
  • Click the green arrow at the right, and the scan will start.
  • Click 'Yes to all' if it asks if you want to cure/move the file.
  • When the scan has finished, in the menu, click file and choose save report list
  • Save the report to your desktop. The report will be called DrWeb.csv
  • Close Dr.Web Cureit.

Post the log from DrWeb in your next reply.
Let me know how your computer is working. What kind of issues are you still experiencing?
Posted Image If I have helped you in any way, please consider a donation to help me continue the fight against malware.


Failing to respond back to the person that is giving up their own time to help you not only is insensitive and disrespectful, but it guarantees that you will never receive help from me again. Please thank your helpers and there will always be help here when you need it!


========================================================

#24 sec

sec
  • Topic Starter

  • Members
  • 40 posts
  • OFFLINE
  •  
  • Local time:11:07 PM

Posted 24 December 2007 - 02:48 PM

the prog is still scanning both my drives, looks like this is taking a while to complete i guess 30 more min.

#25 sec

sec
  • Topic Starter

  • Members
  • 40 posts
  • OFFLINE
  •  
  • Local time:11:07 PM

Posted 24 December 2007 - 06:13 PM

took some hours....it deleted alot of files, some system restore files as well...and many others, will my OS work fine ? what about my restore points will they be deleted ?
also there were files that were found but neither deleted or moved, about 5 of them. not sure wich since the list was huge.
As i mentioned earlier, this laptop that im using to post and surf the internet is plugged into an external drive were i dl the programs to that you provide me, then i polug the external drive to the infected pc and work on it there and save the logfiles on the external so i can post them here again....is there any danger that my external drive might be infected ?
and im abit concerned about all those deleted files......what if after all this is complete and my pc is free of viruses....will i be able to successfully use system restore to say 3 weeks back ?

here's the log :





708FDE68.exe;D:\;Trojan.MulDrop.9985;Deleted.;
Hentai.exe;D:\Backup\Hentai;Trojan.MulDrop.9985;Deleted.;
Ah! My Goddess - Heavenly bodies.exe;D:\Backup\Hentai\Ah! My Goddess\Ah! My Goddess - Heavenly bodies;Trojan.MulDrop.9985;Deleted.;
Hentai Manga - Ah! My Goddess - The Novel Goddesses - RAW.exe;D:\Backup\Hentai\Ah! My Goddess\Ah! My Goddess - The novel goddesses\Hentai Manga - Ah! My Goddess - The Novel Goddesses - RAW;Trojan.MulDrop.9985;Deleted.;
Ah! My Goddess - Wedding bells.exe;D:\Backup\Hentai\Ah! My Goddess\Ah! My Goddess - Wedding bells;Trojan.MulDrop.9985;Deleted.;
Oh my sadness 04 - Oh my Goddess.exe;D:\Backup\Hentai\Ah! My Goddess\Oh My Goddess - Oh My Sadness 04 - Hentai Manga\Oh my sadness 04 - Oh my Goddess;Trojan.MulDrop.9985;Deleted.;
Bible Black.exe;D:\Backup\Hentai\Bible Black;Trojan.MulDrop.9985;Deleted.;
Blood Shadow.exe;D:\Backup\Hentai\Blood Shadow;Trojan.MulDrop.9985;Deleted.;
Girl next door.exe;D:\Backup\Hentai\Girl next door;Trojan.MulDrop.9985;Deleted.;
Heat for all seasons.exe;D:\Backup\Hentai\Heat for all seasons;Trojan.MulDrop.9985;Deleted.;
Midnight Sleazy Train.exe;D:\Backup\Hentai\Midnight Sleazy Train;Trojan.MulDrop.9985;Deleted.;
Mija-Beautiful Demon.exe;D:\Backup\Hentai\Mija-Beautiful Demon;Trojan.MulDrop.9985;Deleted.;
Teachers Pet (hentai).exe;D:\Backup\Hentai\Teachers Pet (hentai);Trojan.MulDrop.9985;Deleted.;
Words Worth.exe;D:\Backup\Hentai\Words Worth;Trojan.MulDrop.9985;Deleted.;
cf85f5c182aff0d4e2eca295979e3299.exe;D:\cf85f5c182aff0d4e2eca295979e3299;Trojan.MulDrop.9985;Deleted.;
Counter Strike Source.exe;D:\Games\Counter Strike Source;Trojan.MulDrop.9985;Deleted.;
appcache.exe;D:\Games\Counter Strike Source\appcache;Trojan.MulDrop.9985;Deleted.;
bin.exe;D:\Games\Counter Strike Source\bin;Trojan.MulDrop.9985;Deleted.;
config.exe;D:\Games\Counter Strike Source\config;Trojan.MulDrop.9985;Deleted.;
friends.exe;D:\Games\Counter Strike Source\friends;Trojan.MulDrop.9985;Deleted.;
Graphics.exe;D:\Games\Counter Strike Source\Graphics;Trojan.MulDrop.9985;Deleted.;
Public.exe;D:\Games\Counter Strike Source\Public;Trojan.MulDrop.9985;Deleted.;
resource.exe;D:\Games\Counter Strike Source\resource;Trojan.MulDrop.9985;Deleted.;
borders.exe;D:\Games\Counter Strike Source\resource\borders;Trojan.MulDrop.9985;Deleted.;
servers.exe;D:\Games\Counter Strike Source\servers;Trojan.MulDrop.9985;Deleted.;
Friends.exe;D:\Games\Counter Strike Source\skins\Flat - Grey\Friends;Trojan.MulDrop.9985;Deleted.;
Graphics.exe;D:\Games\Counter Strike Source\skins\Flat - Grey\Graphics;Trojan.MulDrop.9985;Deleted.;
Resource.exe;D:\Games\Counter Strike Source\skins\Flat - Grey\Resource;Trojan.MulDrop.9985;Deleted.;
Servers.exe;D:\Games\Counter Strike Source\skins\Flat - Grey\Servers;Trojan.MulDrop.9985;Deleted.;
cached.exe;D:\Games\Counter Strike Source\skins\Flat - Grey\Steam\cached;Trojan.MulDrop.9985;Deleted.;
Friends.exe;D:\Games\Counter Strike Source\skins\Flat - Ice\Friends;Trojan.MulDrop.9985;Deleted.;
Graphics.exe;D:\Games\Counter Strike Source\skins\Flat - Ice\Graphics;Trojan.MulDrop.9985;Deleted.;
Resource.exe;D:\Games\Counter Strike Source\skins\Flat - Ice\Resource;Trojan.MulDrop.9985;Deleted.;
Servers.exe;D:\Games\Counter Strike Source\skins\Flat - Ice\Servers;Trojan.MulDrop.9985;Deleted.;
cached.exe;D:\Games\Counter Strike Source\skins\Flat - Ice\Steam\cached;Trojan.MulDrop.9985;Deleted.;
Friends.exe;D:\Games\Counter Strike Source\skins\Flat - Obsidian\Friends;Trojan.MulDrop.9985;Deleted.;
Graphics.exe;D:\Games\Counter Strike Source\skins\Flat - Obsidian\Graphics;Trojan.MulDrop.9985;Deleted.;
Resource.exe;D:\Games\Counter Strike Source\skins\Flat - Obsidian\Resource;Trojan.MulDrop.9985;Deleted.;
Servers.exe;D:\Games\Counter Strike Source\skins\Flat - Obsidian\Servers;Trojan.MulDrop.9985;Deleted.;
cached.exe;D:\Games\Counter Strike Source\skins\Flat - Obsidian\Steam\cached;Trojan.MulDrop.9985;Deleted.;
Friends.exe;D:\Games\Counter Strike Source\skins\Flat - Sand\Friends;Trojan.MulDrop.9985;Deleted.;
Graphics.exe;D:\Games\Counter Strike Source\skins\Flat - Sand\Graphics;Trojan.MulDrop.9985;Deleted.;
Resource.exe;D:\Games\Counter Strike Source\skins\Flat - Sand\Resource;Trojan.MulDrop.9985;Deleted.;
Servers.exe;D:\Games\Counter Strike Source\skins\Flat - Sand\Servers;Trojan.MulDrop.9985;Deleted.;
cached.exe;D:\Games\Counter Strike Source\skins\Flat - Sand\Steam\cached;Trojan.MulDrop.9985;Deleted.;
cached.exe;D:\Games\Counter Strike Source\steam\cached;Trojan.MulDrop.9985;Deleted.;
games.exe;D:\Games\Counter Strike Source\steam\games;Trojan.MulDrop.9985;Deleted.;
SteamApps.exe;D:\Games\Counter Strike Source\SteamApps;Trojan.MulDrop.9985;Deleted.;
counter-strike source.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source;Trojan.MulDrop.9985;Deleted.;
bin.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\bin;Trojan.MulDrop.9985;Deleted.;
cstrike.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike;Trojan.MulDrop.9985;Deleted.;
bin.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\bin;Trojan.MulDrop.9985;Deleted.;
cache.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\cache;Trojan.MulDrop.9985;Deleted.;
cfg.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\cfg;Trojan.MulDrop.9985;Deleted.;
DownloadLists.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\DownloadLists;Trojan.MulDrop.9985;Deleted.;
downloads.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\downloads;Trojan.MulDrop.9985;Deleted.;
maps.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\maps;Trojan.MulDrop.9985;Deleted.;
soundcache.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\maps\soundcache;Trojan.MulDrop.9985;Deleted.;
csbase.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\materials\csbase;Trojan.MulDrop.9985;Deleted.;
30plus.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\materials\decals\custom\30plus;Trojan.MulDrop.9985;Deleted.;
mani_admin_plugin.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\materials\decals\custom\mani_admin_plugin;Trojan.MulDrop.9985;Deleted.;
ndw.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\materials\decals\custom\ndw;Trojan.MulDrop.9985;Deleted.;
xlteam_net.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\materials\decals\custom\xlteam_net;Trojan.MulDrop.9985;Deleted.;
gs.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\materials\decals\gs;Trojan.MulDrop.9985;Deleted.;
de_contra.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\materials\de_contra;Trojan.MulDrop.9985;Deleted.;
etk.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\materials\etk;Trojan.MulDrop.9985;Deleted.;
bobafett.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\materials\models\player\b4p\bobafett;Trojan.MulDrop.9985;Deleted.;
c3po.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\materials\models\player\b4p\c3po;Trojan.MulDrop.9985;Deleted.;
chewbacca.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\materials\models\player\b4p\chewbacca;Trojan.MulDrop.9985;Deleted.;
imperial.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\materials\models\player\b4p\imperial;Trojan.MulDrop.9985;Deleted.;
jawa.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\materials\models\player\b4p\jawa;Trojan.MulDrop.9985;Deleted.;
rebel.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\materials\models\player\b4p\rebel;Trojan.MulDrop.9985;Deleted.;
snowtrooper.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\materials\models\player\b4p\snowtrooper;Trojan.MulDrop.9985;Deleted.;
stormt.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\materials\models\player\b4p\stormt;Trojan.MulDrop.9985;Deleted.;
tusken.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\materials\models\player\b4p\tusken;Trojan.MulDrop.9985;Deleted.;
vader.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\materials\models\player\b4p\vader;Trojan.MulDrop.9985;Deleted.;
yoda.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\materials\models\player\b4p\yoda;Trojan.MulDrop.9985;Deleted.;
ct_urban_v2.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\materials\models\player\ct_urban_v2;Trojan.MulDrop.9985;Deleted.;
t_arctic1_gizzmo.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\materials\models\player\custom_plugin\t_arctic1;Trojan.MulDrop.9985;Deleted.;
delta_ct.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\materials\models\player\delta-elite\delta_ct;Trojan.MulDrop.9985;Deleted.;
jawa_admin_v2.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\materials\models\player\gog\jawa_admin_v2;Trojan.MulDrop.9985;Deleted.;
vader_v2.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\materials\models\player\gog\vader_v2;Trojan.MulDrop.9985;Deleted.;
admin_ct_fixed.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\materials\models\player\ics\admin_ct_fixed;Trojan.MulDrop.9985;Deleted.;
admin_t_fixed.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\materials\models\player\ics\admin_t_fixed;Trojan.MulDrop.9985;Deleted.;
ct_gign_admin.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\materials\models\player\ics\ct_gign_admin;Trojan.MulDrop.9985;Deleted.;
ct_gsg9_admin.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\materials\models\player\ics\ct_gsg9_admin;Trojan.MulDrop.9985;Deleted.;
ct_lara.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\materials\models\player\ics\ct_lara;Trojan.MulDrop.9985;Deleted.;
ct_sas_admin.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\materials\models\player\ics\ct_sas_admin;Trojan.MulDrop.9985;Deleted.;
fbi_ct_v2.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\materials\models\player\ics\fbi_ct_v2;Trojan.MulDrop.9985;Deleted.;
hellknight_red.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\materials\models\player\ics\hellknight_red;Trojan.MulDrop.9985;Deleted.;
predator.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\materials\models\player\ics\predator;Trojan.MulDrop.9985;Deleted.;
skull_admin_v2.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\materials\models\player\ics\skull_admin_v2;Trojan.MulDrop.9985;Deleted.;
soccer_arsenal_henry.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\materials\models\player\ics\soccer_arsenal_henr;Trojan.MulDrop.9985;Deleted.;
soccer_barca_ronald.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\materials\models\player\ics\soccer_barca_ronald;Trojan.MulDrop.9985;Deleted.;
soccer_madrid_zidane.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\materials\models\player\ics\soccer_madrid_zidan;Trojan.MulDrop.9985;Deleted.;
soccer_manu_ferd.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\materials\models\player\ics\soccer_manu_ferd;Trojan.MulDrop.9985;Deleted.;
t_arctic_admin.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\materials\models\player\ics\t_arctic_admin;Trojan.MulDrop.9985;Deleted.;
t_guerilla_admin.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\materials\models\player\ics\t_guerilla_admin;Trojan.MulDrop.9985;Deleted.;
t_leet_admin.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\materials\models\player\ics\t_leet_admin;Trojan.MulDrop.9985;Deleted.;
adminctv1.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\materials\models\player\lduke\adminctv1;Trojan.MulDrop.9985;Deleted.;
admintv1.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\materials\models\player\lduke\admintv1;Trojan.MulDrop.9985;Deleted.;
islamic_v1.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\materials\models\player\rascal\terrorist\islami;Trojan.MulDrop.9985;Deleted.;
homer_v2.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\materials\models\player\slow\homer_v2;Trojan.MulDrop.9985;Deleted.;
mario.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\materials\models\player\slow\mario;Trojan.MulDrop.9985;Deleted.;
shiban_naruto.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\materials\models\player\slow\shiban_naruto;Trojan.MulDrop.9985;Deleted.;
zh.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\materials\models\player\zh;Trojan.MulDrop.9985;Deleted.;
reo.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\materials\overlays\reo;Trojan.MulDrop.9985;Deleted.;
overviews.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\materials\overviews;Trojan.MulDrop.9985;Deleted.;
skybox.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\materials\skybox;Trojan.MulDrop.9985;Deleted.;
spb.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\materials\spb;Trojan.MulDrop.9985;Deleted.;
temp.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\materials\temp;Trojan.MulDrop.9985;Deleted.;
UI.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\materials\VGUI\logos\UI;Trojan.MulDrop.9985;Deleted.;
b4p_bobafett.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\models\player\b4p\b4p_bobafett;Trojan.MulDrop.9985;Deleted.;
b4p_c3po.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\models\player\b4p\b4p_c3po;Trojan.MulDrop.9985;Deleted.;
b4p_chewbacca.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\models\player\b4p\b4p_chewbacca;Trojan.MulDrop.9985;Deleted.;
b4p_imperial.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\models\player\b4p\b4p_imperial;Trojan.MulDrop.9985;Deleted.;
b4p_jawa.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\models\player\b4p\b4p_jawa;Trojan.MulDrop.9985;Deleted.;
b4p_rebel.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\models\player\b4p\b4p_rebel;Trojan.MulDrop.9985;Deleted.;
b4p_snowtrooper.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\models\player\b4p\b4p_snowtrooper;Trojan.MulDrop.9985;Deleted.;
b4p_stormt.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\models\player\b4p\b4p_stormt;Trojan.MulDrop.9985;Deleted.;
b4p_tusken.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\models\player\b4p\b4p_tusken;Trojan.MulDrop.9985;Deleted.;
b4p_vader.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\models\player\b4p\b4p_vader;Trojan.MulDrop.9985;Deleted.;
b4p_yoda.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\models\player\b4p\b4p_yoda;Trojan.MulDrop.9985;Deleted.;
t_arctic1_gizzmo.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\models\player\custom_plugin\t_arctic1_gizzmo;Trojan.MulDrop.9985;Deleted.;
delta_ct.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\models\player\delta-elite\delta_ct;Trojan.MulDrop.9985;Deleted.;
jawa_admin_v2.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\models\player\gog\jawa_admin_v2;Trojan.MulDrop.9985;Deleted.;
vader_v2.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\models\player\gog\vader_v2;Trojan.MulDrop.9985;Deleted.;
admin_ct_fixed.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\models\player\ics\admin_ct_fixed;Trojan.MulDrop.9985;Deleted.;
admin_t_fixed.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\models\player\ics\admin_t_fixed;Trojan.MulDrop.9985;Deleted.;
ct_gign_admin.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\models\player\ics\ct_gign_admin;Trojan.MulDrop.9985;Deleted.;
ct_gsg9_admin.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\models\player\ics\ct_gsg9_admin;Trojan.MulDrop.9985;Deleted.;
ct_lara.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\models\player\ics\ct_lara;Trojan.MulDrop.9985;Deleted.;
ct_sas_admin.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\models\player\ics\ct_sas_admin;Trojan.MulDrop.9985;Deleted.;
fbi_ct_v2.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\models\player\ics\fbi_ct_v2;Trojan.MulDrop.9985;Deleted.;
hellknight_red.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\models\player\ics\hellknight_red;Trojan.MulDrop.9985;Deleted.;
predator_rawr.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\models\player\ics\predator_rawr;Trojan.MulDrop.9985;Deleted.;
skull_admin_v2.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\models\player\ics\skull_admin_v2;Trojan.MulDrop.9985;Deleted.;
soccer_arsenal_henry.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\models\player\ics\soccer_arsenal_henry;Trojan.MulDrop.9985;Deleted.;
soccer_barca_ronald.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\models\player\ics\soccer_barca_ronald;Trojan.MulDrop.9985;Deleted.;
soccer_madrid_zidane.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\models\player\ics\soccer_madrid_zidane;Trojan.MulDrop.9985;Deleted.;
soccer_manu_ferd.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\models\player\ics\soccer_manu_ferd;Trojan.MulDrop.9985;Deleted.;
t_arctic_admin.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\models\player\ics\t_arctic_admin;Trojan.MulDrop.9985;Deleted.;
t_guerilla_admin.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\models\player\ics\t_guerilla_admin;Trojan.MulDrop.9985;Deleted.;
t_leet_admin.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\models\player\ics\t_leet_admin;Trojan.MulDrop.9985;Deleted.;
adminctv1.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\models\player\lduke\adminctv1;Trojan.MulDrop.9985;Deleted.;
admintv1.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\models\player\lduke\admintv1;Trojan.MulDrop.9985;Deleted.;
islamic_v1.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\models\player\rascal\terrorist\islamic_v1;Trojan.MulDrop.9985;Deleted.;
homer_v2.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\models\player\slow\homer_v2;Trojan.MulDrop.9985;Deleted.;
mario.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\models\player\slow\mario;Trojan.MulDrop.9985;Deleted.;
shiban_naruto.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\models\player\slow\shiban_naruto;Trojan.MulDrop.9985;Deleted.;
zh.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\models\player\zh;Trojan.MulDrop.9985;Deleted.;
resource.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\resource;Trojan.MulDrop.9985;Deleted.;
overviews.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\resource\overviews;Trojan.MulDrop.9985;Deleted.;
screenshots.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\screenshots;Trojan.MulDrop.9985;Deleted.;
30plus.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\sound\30plus;Trojan.MulDrop.9985;Deleted.;
admin_plugin.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\sound\admin_plugin;Trojan.MulDrop.9985;Deleted.;
actions.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\sound\admin_plugin\actions;Trojan.MulDrop.9985;Deleted.;
agony.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\sound\admin_plugin\agony;Trojan.MulDrop.9985;Deleted.;
ease.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\sound\admin_plugin\ease;Trojan.MulDrop.9985;Deleted.;
lyde.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\sound\admin_plugin\lyde;Trojan.MulDrop.9985;Deleted.;
quake.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\sound\admin_plugin\quake;Trojan.MulDrop.9985;Deleted.;
rus.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\sound\admin_plugin\rus;Trojan.MulDrop.9985;Deleted.;
sil.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\sound\admin_plugin\sil;Trojan.MulDrop.9985;Deleted.;
slippers.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\sound\admin_plugin\slippers;Trojan.MulDrop.9985;Deleted.;
misc.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\sound\ambient\misc;Trojan.MulDrop.9985;Deleted.;
zombiemod.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\sound\ambient\zombiemod;Trojan.MulDrop.9985;Deleted.;
bombtimer.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\sound\bombtimer;Trojan.MulDrop.9985;Deleted.;
cleverpig.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\sound\cleverpig;Trojan.MulDrop.9985;Deleted.;
dragonnetgames.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\sound\dragonnetgames;Trojan.MulDrop.9985;Deleted.;
ed2ksounds.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\sound\ed2ksounds;Trojan.MulDrop.9985;Deleted.;
futurama.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\sound\futurama;Trojan.MulDrop.9985;Deleted.;
gungame.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\sound\gungame;Trojan.MulDrop.9985;Deleted.;
kh-clan.com.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\sound\kh-clan.com;Trojan.MulDrop.9985;Deleted.;
lastman.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\sound\lastman;Trojan.MulDrop.9985;Deleted.;
misc.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\sound\misc;Trojan.MulDrop.9985;Deleted.;
prophets.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\sound\prophets;Trojan.MulDrop.9985;Deleted.;
ql.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\sound\ql;Trojan.MulDrop.9985;Deleted.;
quake.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\sound\quake;Trojan.MulDrop.9985;Deleted.;
female.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\sound\quake\female;Trojan.MulDrop.9985;Deleted.;
sexy.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\sound\quake\sexy;Trojan.MulDrop.9985;Deleted.;
server_sounds.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\sound\server_sounds;Trojan.MulDrop.9985;Deleted.;
sexy_quake.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\sound\sexy_quake;Trojan.MulDrop.9985;Deleted.;
sounds.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\sound\sounds;Trojan.MulDrop.9985;Deleted.;
sp.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\sound\sp;Trojan.MulDrop.9985;Deleted.;
say.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\sound\sp\say;Trojan.MulDrop.9985;Deleted.;
statsme.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\sound\statsme;Trojan.MulDrop.9985;Deleted.;
xlteam_net.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\sound\xlteam_net;Trojan.MulDrop.9985;Deleted.;
actions.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\cstrike\sound\xlteam_net\actions;Trojan.MulDrop.9985;Deleted.;
cfg.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\hl2\cfg;Trojan.MulDrop.9985;Deleted.;
resource.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\hl2\resource;Trojan.MulDrop.9985;Deleted.;
config.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\counter-strike source\platform\config;Trojan.MulDrop.9985;Deleted.;
day of defeat source.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\day of defeat source;Trojan.MulDrop.9985;Deleted.;
bin.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\day of defeat source\bin;Trojan.MulDrop.9985;Deleted.;
dod.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\day of defeat source\dod;Trojan.MulDrop.9985;Deleted.;
cache.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\day of defeat source\dod\cache;Trojan.MulDrop.9985;Deleted.;
cfg.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\day of defeat source\dod\cfg;Trojan.MulDrop.9985;Deleted.;
downloads.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\day of defeat source\dod\downloads;Trojan.MulDrop.9985;Deleted.;
mapDesc.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\day of defeat source\dod\materials\mapDesc;Trojan.MulDrop.9985;Deleted.;
resource.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\day of defeat source\dod\resource;Trojan.MulDrop.9985;Deleted.;
maphtml.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\day of defeat source\dod\resource\maphtml;Trojan.MulDrop.9985;Deleted.;
actions.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\day of defeat source\dod\sound\admin_plugin\actions;Trojan.MulDrop.9985;Deleted.;
cfg.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\day of defeat source\hl2\cfg;Trojan.MulDrop.9985;Deleted.;
media.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\day of defeat source\hl2\media;Trojan.MulDrop.9985;Deleted.;
resource.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\day of defeat source\hl2\resource;Trojan.MulDrop.9985;Deleted.;
half-life 2 deathmatch.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\half-life 2 deathmatch;Trojan.MulDrop.9985;Deleted.;
bin.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\half-life 2 deathmatch\bin;Trojan.MulDrop.9985;Deleted.;
cfg.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\half-life 2 deathmatch\hl2\cfg;Trojan.MulDrop.9985;Deleted.;
media.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\half-life 2 deathmatch\hl2\media;Trojan.MulDrop.9985;Deleted.;
resource.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\half-life 2 deathmatch\hl2\resource;Trojan.MulDrop.9985;Deleted.;
hl2mp.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\half-life 2 deathmatch\hl2mp;Trojan.MulDrop.9985;Deleted.;
cache.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\half-life 2 deathmatch\hl2mp\cache;Trojan.MulDrop.9985;Deleted.;
cfg.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\half-life 2 deathmatch\hl2mp\cfg;Trojan.MulDrop.9985;Deleted.;
downloads.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\half-life 2 deathmatch\hl2mp\downloads;Trojan.MulDrop.9985;Deleted.;
maps.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\half-life 2 deathmatch\hl2mp\maps;Trojan.MulDrop.9985;Deleted.;
graphs.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\half-life 2 deathmatch\hl2mp\maps\graphs;Trojan.MulDrop.9985;Deleted.;
soundcache.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\half-life 2 deathmatch\hl2mp\maps\soundcache;Trojan.MulDrop.9985;Deleted.;
mani_admin_plugin.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\half-life 2 deathmatch\hl2mp\materials\decals\custom\mani_admin_plugin;Trojan.MulDrop.9985;Deleted.;
resource.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\half-life 2 deathmatch\hl2mp\resource;Trojan.MulDrop.9985;Deleted.;
admin_plugin.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\half-life 2 deathmatch\hl2mp\sound\admin_plugin;Trojan.MulDrop.9985;Deleted.;
actions.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\half-life 2 deathmatch\hl2mp\sound\admin_plugin\actions;Trojan.MulDrop.9985;Deleted.;
quake.exe;D:\Games\Counter Strike Source\SteamApps\hamza125\half-life 2 deathmatch\hl2mp\sound\quake;Trojan.MulDrop.9985;Deleted.;
IKKE SLETT.exe;D:\IKKE SLETT;Trojan.MulDrop.9985;Deleted.;
Cabelas_Big_Game_Hunter_2007_10th_Anniversary_Edition-Razor1911[www.moviex.info].exe;D:\IKKE SLETT\Cabelas_Big_Game_Hunter_2007_10th_Anniversary_Edition-Razor1911[www.moviex.info];Trojan.MulDrop.9985;Deleted.;
Crysis-Razor1911.exe;D:\IKKE SLETT\Crysis-Razor1911;Trojan.MulDrop.9985;Deleted.;
DirectX 9 [NOV.2007] MUST HAVE TO GAME [dopeman].exe;D:\IKKE SLETT\DirectX 9 [NOV.2007] MUST HAVE TO GAME [dopeman];Trojan.MulDrop.9985;Deleted.;
Enemy.Territory.Quake.Wars-RELOADED.exe;D:\IKKE SLETT\Enemy.Territory.Quake.Wars-RELOADED;Trojan.MulDrop.9985;Deleted.;
Season 1.exe;D:\IKKE SLETT\Heroes - Season 1\Season 1;Trojan.MulDrop.9985;Deleted.;
Season 2.exe;D:\IKKE SLETT\Heroes - Season 1\Season 2;Trojan.MulDrop.9985;Deleted.;
Heroes.S02E06.HDTV.XviD-LOL.exe;D:\IKKE SLETT\Heroes - Season 1\Season 2\Heroes.S02E06.HDTV.XviD-LOL;Trojan.MulDrop.9985;Deleted.;
Sample.exe;D:\IKKE SLETT\Heroes - Season 1\Season 2\Heroes.S02E06.HDTV.XviD-LOL\Sample;Trojan.MulDrop.9985;Deleted.;
Heroes.S02E07.HDTV.XviD-LOL.exe;D:\IKKE SLETT\Heroes - Season 1\Season 2\Heroes.S02E07.HDTV.XviD-LOL;Trojan.MulDrop.9985;Deleted.;
Sample.exe;D:\IKKE SLETT\Heroes - Season 1\Season 2\Heroes.S02E07.HDTV.XviD-LOL\Sample;Trojan.MulDrop.9985;Deleted.;
Hoyle.Casino.2008-ViTALiTY.exe;D:\IKKE SLETT\Hoyle.Casino.2008-ViTALiTY;Trojan.MulDrop.9985;Deleted.;
IsoBuster Pro 2.2.0.1 Final + WORKING Keygen [DXO].exe;D:\IKKE SLETT\IsoBuster Pro 2.2.0.1 Final + WORKING Keygen [DXO];Trojan.MulDrop.9985;Deleted.;
Madden.NFL.07-RELOADED.exe;D:\IKKE SLETT\Madden.NFL.07-RELOADED;Trojan.MulDrop.9985;Deleted.;
medal of honor airborn.exe;D:\IKKE SLETT\medal of honor airborn;Trojan.MulDrop.9985;Deleted.;
Here_First!!.exe;D:\IKKE SLETT\medal of honor airborn\Here_First!!;Trojan.MulDrop.9985;Deleted.;
DirectX.exe;D:\IKKE SLETT\medal of honor airborn\Here_First!!\DirectX;Trojan.MulDrop.9985;Deleted.;
Nero 8 Ultra Edition 8.1.1.3.exe;D:\IKKE SLETT\Nero 8 Ultra Edition 8.1.1.3;Trojan.MulDrop.9985;Deleted.;
PC_PubKwonho-Fist.of.Heroes (Online-KickBoxing)-ToeD.exe;D:\IKKE SLETT\PC_PubKwonho-Fist.of.Heroes (Online-KickBoxing)-ToeD;Trojan.MulDrop.9985;Deleted.;
PC_Wings.of.Honor-Red.Baron -.english.fixed.-ToeD.exe;D:\IKKE SLETT\PC_Wings.of.Honor-Red.Baron -.english.fixed.-ToeD;Trojan.MulDrop.9985;Deleted.;
another amazing small game just for fun!.exe;D:\IKKE SLETT\PC_Wings.of.Honor-Red.Baron -.english.fixed.-ToeD\another amazing small game just for fun!;Trojan.MulDrop.9985;Deleted.;
another amazing small game just for fun!.exe;D:\IKKE SLETT\PC_Wings.of.Honor-Red.Baron -.english.fixed.-ToeD\another amazing small game just for fun!\JustforFun\another ama;Trojan.MulDrop.9985;Deleted.;
hurrican.exe;D:\IKKE SLETT\PC_Wings.of.Honor-Red.Baron -.english.fixed.-ToeD\another amazing small game just for fun!\JustforFun\another ama;Trojan.MulDrop.9985;Deleted.;
ooops-one more.exe;D:\IKKE SLETT\PC_Wings.of.Honor-Red.Baron -.english.fixed.-ToeD\another amazing small game just for fun!\JustforFun\another ama;Trojan.MulDrop.9985;Deleted.;
Crack.exe;D:\IKKE SLETT\PC_Wings.of.Honor-Red.Baron -.english.fixed.-ToeD\Crack;Trojan.MulDrop.9985;Deleted.;
Setup.exe;D:\IKKE SLETT\PC_Wings.of.Honor-Red.Baron -.english.fixed.-ToeD\Setup;Trojan.MulDrop.9985;Deleted.;
Wings of Honour - Battles of the Red Baron Arcade savegames.exe;D:\IKKE SLETT\PC_Wings.of.Honor-Red.Baron -.english.fixed.-ToeD\Wings of Honour - Battles of the Red Baron Arcade savegames;Trojan.MulDrop.9985;Deleted.;
Reno.911!-Miami[2007][Unrated.Edition]DvDrip.AC3[Eng]-aXXo.exe;D:\IKKE SLETT\Reno.911!-Miami[2007][Unrated.Edition]DvDrip.AC3[Eng]-aXXo;Trojan.MulDrop.9985;Deleted.;
Spiderman.Friend.For.Foe-RELOADED.exe;D:\IKKE SLETT\Spiderman.Friend.For.Foe-RELOADED;Trojan.MulDrop.9985;Deleted.;
stranglehold.exe;D:\IKKE SLETT\stranglehold;Trojan.MulDrop.9985;Deleted.;
TimeShift-FLT.exe;D:\IKKE SLETT\TimeShift-FLT;Trojan.MulDrop.9985;Deleted.;
VCS Diamond55.exe;D:\IKKE SLETT\VCS Diamond55;Trojan.MulDrop.9985;Deleted.;
Av Voice Changer Software Diamond 4.0.41 Fullll.exe;D:\IKKE SLETT\VCS Diamond55\Av Voice Changer Software Diamond 4.0.41 Fullll;Trojan.MulDrop.9985;Deleted.;
!crack.exe;D:\IKKE SLETT\VCS Diamond55\Av Voice Changer Software Diamond 4.0.41 Fullll\!crack;Trojan.MulDrop.9985;Deleted.;
Effects.exe;D:\IKKE SLETT\VCS Diamond55\Av Voice Changer Software Diamond 4.0.41 Fullll\Effects;Trojan.MulDrop.9985;Deleted.;
Nickvoices.exe;D:\IKKE SLETT\VCS Diamond55\Av Voice Changer Software Diamond 4.0.41 Fullll\Nickvoices;Trojan.MulDrop.9985;Deleted.;
Skins.exe;D:\IKKE SLETT\VCS Diamond55\Av Voice Changer Software Diamond 4.0.41 Fullll\Skins;Trojan.MulDrop.9985;Deleted.;
߽ ߬ߴ update.exe;D:\IKKE SLETT\VCS Diamond55\Av Voice Changer Software Diamond 4.0.41 Fullll\߽ ߬ߴ update;Trojan.MulDrop.9985;Deleted.;
A0131123.exe;D:\System Volume Information\_restore{5FED904E-6E1E-4B49-8681-D5C017BB5784}\RP194;BackDoor.Danton.46;Deleted.;
A0136942.exe;D:\System Volume Information\_restore{5FED904E-6E1E-4B49-8681-D5C017BB5784}\RP199;Trojan.MulDrop.9985;Deleted.;
A0137942.exe;D:\System Volume Information\_restore{5FED904E-6E1E-4B49-8681-D5C017BB5784}\RP199;Trojan.MulDrop.9985;Deleted.;
A0139943.exe;D:\System Volume Information\_restore{5FED904E-6E1E-4B49-8681-D5C017BB5784}\RP199;Trojan.MulDrop.9985;Deleted.;
A0140943.exe;D:\System Volume Information\_restore{5FED904E-6E1E-4B49-8681-D5C017BB5784}\RP199;Trojan.MulDrop.9985;Deleted.;
A0141943.exe;D:\System Volume Information\_restore{5FED904E-6E1E-4B49-8681-D5C017BB5784}\RP199;Trojan.MulDrop.9985;Deleted.;
A0142943.exe;D:\System Volume Information\_restore{5FED904E-6E1E-4B49-8681-D5C017BB5784}\RP199;Trojan.MulDrop.9985;Deleted.;
A0142945.exe;D:\System Volume Information\_restore{5FED904E-6E1E-4B49-8681-D5C017BB5784}\RP199;Trojan.MulDrop.9985;Deleted.;
A0143945.exe;D:\System Volume Information\_restore{5FED904E-6E1E-4B49-8681-D5C017BB5784}\RP199;Trojan.MulDrop.9985;Deleted.;
A0144945.exe;D:\System Volume Information\_restore{5FED904E-6E1E-4B49-8681-D5C017BB5784}\RP199;Trojan.MulDrop.9985;Deleted.;
Aero cursors.exe;C:\Aero cursors;Trojan.MulDrop.9985;Deleted.;
APPS.exe;C:\APPS;Trojan.MulDrop.9985;Deleted.;
DATASEC.exe;C:\APPS\DATASEC;Trojan.MulDrop.9985;Deleted.;
01.exe;C:\APPS\DATASEC\Help\01;Trojan.MulDrop.9985;Deleted.;
02.exe;C:\APPS\DATASEC\Help\02;Trojan.MulDrop.9985;Deleted.;
03.exe;C:\APPS\DATASEC\Help\03;Trojan.MulDrop.9985;Deleted.;
04.exe;C:\APPS\DATASEC\Help\04;Trojan.MulDrop.9985;Deleted.;
05.exe;C:\APPS\DATASEC\Help\05;Trojan.MulDrop.9985;Deleted.;
06.exe;C:\APPS\DATASEC\Help\06;Trojan.MulDrop.9985;Deleted.;
07.exe;C:\APPS\DATASEC\Help\07;Trojan.MulDrop.9985;Deleted.;
08.exe;C:\APPS\DATASEC\Help\08;Trojan.MulDrop.9985;Deleted.;
09.exe;C:\APPS\DATASEC\Help\09;Trojan.MulDrop.9985;Deleted.;
10.exe;C:\APPS\DATASEC\Help\10;Trojan.MulDrop.9985;Deleted.;
16.exe;C:\APPS\DATASEC\Help\16;Trojan.MulDrop.9985;Deleted.;
01.exe;C:\APPS\DATASEC\Help\NONE\01;Trojan.MulDrop.9985;Deleted.;
02.exe;C:\APPS\DATASEC\Help\NONE\02;Trojan.MulDrop.9985;Deleted.;
03.exe;C:\APPS\DATASEC\Help\NONE\03;Trojan.MulDrop.9985;Deleted.;
04.exe;C:\APPS\DATASEC\Help\NONE\04;Trojan.MulDrop.9985;Deleted.;
05.exe;C:\APPS\DATASEC\Help\NONE\05;Trojan.MulDrop.9985;Deleted.;
06.exe;C:\APPS\DATASEC\Help\NONE\06;Trojan.MulDrop.9985;Deleted.;
07.exe;C:\APPS\DATASEC\Help\NONE\07;Trojan.MulDrop.9985;Deleted.;
08.exe;C:\APPS\DATASEC\Help\NONE\08;Trojan.MulDrop.9985;Deleted.;
09.exe;C:\APPS\DATASEC\Help\NONE\09;Trojan.MulDrop.9985;Deleted.;
16.exe;C:\APPS\DATASEC\Help\NONE\16;Trojan.MulDrop.9985;Deleted.;
static.exe;C:\APPS\DATASEC\Help\NONE\static;Trojan.MulDrop.9985;Deleted.;
Common.exe;C:\APPS\DATASEC\Help\NONE\static\Common;Trojan.MulDrop.9985;Deleted.;
01.exe;C:\APPS\DATASEC\Help\PBE\01;Trojan.MulDrop.9985;Deleted.;
02.exe;C:\APPS\DATASEC\Help\PBE\02;Trojan.MulDrop.9985;Deleted.;
03.exe;C:\APPS\DATASEC\Help\PBE\03;Trojan.MulDrop.9985;Deleted.;
04.exe;C:\APPS\DATASEC\Help\PBE\04;Trojan.MulDrop.9985;Deleted.;
05.exe;C:\APPS\DATASEC\Help\PBE\05;Trojan.MulDrop.9985;Deleted.;
06.exe;C:\APPS\DATASEC\Help\PBE\06;Trojan.MulDrop.9985;Deleted.;
07.exe;C:\APPS\DATASEC\Help\PBE\07;Trojan.MulDrop.9985;Deleted.;
08.exe;C:\APPS\DATASEC\Help\PBE\08;Trojan.MulDrop.9985;Deleted.;
09.exe;C:\APPS\DATASEC\Help\PBE\09;Trojan.MulDrop.9985;Deleted.;
16.exe;C:\APPS\DATASEC\Help\PBE\16;Trojan.MulDrop.9985;Deleted.;
static.exe;C:\APPS\DATASEC\Help\PBE\static;Trojan.MulDrop.9985;Deleted.;
Common.exe;C:\APPS\DATASEC\Help\PBE\static\Common;Trojan.MulDrop.9985;Deleted.;
static.exe;C:\APPS\DATASEC\Help\static;Trojan.MulDrop.9985;Deleted.;
Common.exe;C:\APPS\DATASEC\Help\static\Common;Trojan.MulDrop.9985;Deleted.;
DESKTOP.exe;C:\APPS\DESKTOP;Trojan.MulDrop.9985;Deleted.;
pictures.exe;C:\APPS\DESKTOP\pictures;Trojan.MulDrop.9985;Deleted.;
DOC.exe;C:\APPS\DOC;Trojan.MulDrop.9985;Deleted.;
16.exe;C:\APPS\DOC\16;Trojan.MulDrop.9985;Deleted.;
Brand.exe;C:\APPS\DOC\16\Brand;Trojan.MulDrop.9985;Deleted.;
guides.exe;C:\APPS\DOC\16\Brand\guides;Trojan.MulDrop.9985;Deleted.;
Header.exe;C:\APPS\DOC\16\Brand\Header;Trojan.MulDrop.9985;Deleted.;
16haht07.exe;C:\APPS\DOC\16\Brand\Howto\16haht07;Trojan.MulDrop.9985;Deleted.;
16soft06.exe;C:\APPS\DOC\16\Brand\Howto\16soft06;Trojan.MulDrop.9985;Deleted.;
Acrobat.exe;C:\APPS\DOC\16\Brand\Howto\screens\Acrobat;Trojan.MulDrop.9985;Deleted.;
PowerCinema.exe;C:\APPS\DOC\16\Brand\Howto\screens\PowerCinema;Trojan.MulDrop.9985;Deleted.;
SRestore.exe;C:\APPS\DOC\16\Brand\Howto\screens\SRestore;Trojan.MulDrop.9985;Deleted.;
website.exe;C:\APPS\DOC\16\Brand\Howto\screens\website;Trojan.MulDrop.9985;Deleted.;
Windows.exe;C:\APPS\DOC\16\Brand\Howto\screens\Windows;Trojan.MulDrop.9985;Deleted.;
Navigate.exe;C:\APPS\DOC\16\Brand\Navigate;Trojan.MulDrop.9985;Deleted.;
16ex009b.exe;C:\APPS\DOC\16\Common\acsry\16ex009b;Trojan.MulDrop.9985;Deleted.;
16ex020a.exe;C:\APPS\DOC\16\Common\acsry\16ex020a;Trojan.MulDrop.9985;Deleted.;
16ex022a.exe;C:\APPS\DOC\16\Common\acsry\16ex022a;Trojan.MulDrop.9985;Deleted.;
16ex023a.exe;C:\APPS\DOC\16\Common\acsry\16ex023a;Trojan.MulDrop.9985;Deleted.;
16ex024a.exe;C:\APPS\DOC\16\Common\acsry\16ex024a;Trojan.MulDrop.9985;Deleted.;
16ex025a.exe;C:\APPS\DOC\16\Common\acsry\16ex025a;Trojan.MulDrop.9985;Deleted.;
16ex027a.exe;C:\APPS\DOC\16\Common\acsry\16ex027a;Trojan.MulDrop.9985;Deleted.;
16ex028a.exe;C:\APPS\DOC\16\Common\acsry\16ex028a;Trojan.MulDrop.9985;Deleted.;
16ex029a.exe;C:\APPS\DOC\16\Common\acsry\16ex029a;Trojan.MulDrop.9985;Deleted.;
16co000a.exe;C:\APPS\DOC\16\Common\Controls\16co000a;Trojan.MulDrop.9985;Deleted.;
16kb000a.exe;C:\APPS\DOC\16\Common\Controls\16kb000a;Trojan.MulDrop.9985;Deleted.;
16ch000a.exe;C:\APPS\DOC\16\Common\Desktop\16ch000a;Trojan.MulDrop.9985;Deleted.;
16mb000a.exe;C:\APPS\DOC\16\Common\Desktop\16mb000a;Trojan.MulDrop.9985;Deleted.;
16rd000a.exe;C:\APPS\DOC\16\Common\Desktop\16rd000a;Trojan.MulDrop.9985;Deleted.;
16ug000a.exe;C:\APPS\DOC\16\Common\Desktop\16ug000a;Trojan.MulDrop.9985;Deleted.;
16ug000x.exe;C:\APPS\DOC\16\Common\Desktop\16ug000x;Trojan.MulDrop.9985;Deleted.;
16vd000a.exe;C:\APPS\DOC\16\Common\Desktop\16vd000a;Trojan.MulDrop.9985;Deleted.;
Drives.exe;C:\APPS\DOC\16\Common\Drives;Trojan.MulDrop.9985;Deleted.;
16dr000a.exe;C:\APPS\DOC\16\Common\Drives\16dr000a;Trojan.MulDrop.9985;Deleted.;
16fd001a.exe;C:\APPS\DOC\16\Common\Drives\16fd001a;Trojan.MulDrop.9985;Deleted.;
16hd001a.exe;C:\APPS\DOC\16\Common\Drives\16hd001a;Trojan.MulDrop.9985;Deleted.;
glossary.exe;C:\APPS\DOC\16\Common\glossary;Trojan.MulDrop.9985;Deleted.;
16cdwht.exe;C:\APPS\DOC\16\Common\Howto\16cdwht;Trojan.MulDrop.9985;Deleted.;
16cmht02.exe;C:\APPS\DOC\16\Common\Howto\16cmht02;Trojan.MulDrop.9985;Deleted.;
16cmht07.exe;C:\APPS\DOC\16\Common\Howto\16cmht07;Trojan.MulDrop.9985;Deleted.;
16cmht08.exe;C:\APPS\DOC\16\Common\Howto\16cmht08;Trojan.MulDrop.9985;Deleted.;
16haht01.exe;C:\APPS\DOC\16\Common\Howto\16haht01;Trojan.MulDrop.9985;Deleted.;
16haht02.exe;C:\APPS\DOC\16\Common\Howto\16haht02;Trojan.MulDrop.9985;Deleted.;
16haht03.exe;C:\APPS\DOC\16\Common\Howto\16haht03;Trojan.MulDrop.9985;Deleted.;
16haht04.exe;C:\APPS\DOC\16\Common\Howto\16haht04;Trojan.MulDrop.9985;Deleted.;
16haht05.exe;C:\APPS\DOC\16\Common\Howto\16haht05;Trojan.MulDrop.9985;Deleted.;
16haht08.exe;C:\APPS\DOC\16\Common\Howto\16haht08;Trojan.MulDrop.9985;Deleted.;
16haht09.exe;C:\APPS\DOC\16\Common\Howto\16haht09;Trojan.MulDrop.9985;Deleted.;
16haht11.exe;C:\APPS\DOC\16\Common\Howto\16haht11;Trojan.MulDrop.9985;Deleted.;
16haht12.exe;C:\APPS\DOC\16\Common\Howto\16haht12;Trojan.MulDrop.9985;Deleted.;
16heht00.exe;C:\APPS\DOC\16\Common\Howto\16heht00;Trojan.MulDrop.9985;Deleted.;
16heht03.exe;C:\APPS\DOC\16\Common\Howto\16heht03;Trojan.MulDrop.9985;Deleted.;
16heht04.exe;C:\APPS\DOC\16\Common\Howto\16heht04;Trojan.MulDrop.9985;Deleted.;
16hwht01.exe;C:\APPS\DOC\16\Common\Howto\16hwht01;Trojan.MulDrop.9985;Deleted.;
16hwht03.exe;C:\APPS\DOC\16\Common\Howto\16hwht03;Trojan.MulDrop.9985;Deleted.;
16hwht04.exe;C:\APPS\DOC\16\Common\Howto\16hwht04;Trojan.MulDrop.9985;Deleted.;
16ic001a.exe;C:\APPS\DOC\16\Common\Howto\16ic001a;Trojan.MulDrop.9985;Deleted.;
16ic002a.exe;C:\APPS\DOC\16\Common\Howto\16ic002a;Trojan.MulDrop.9985;Deleted.;
16ic003a.exe;C:\APPS\DOC\16\Common\Howto\16ic003a;Trojan.MulDrop.9985;Deleted.;
16ic004a.exe;C:\APPS\DOC\16\Common\Howto\16ic004a;Trojan.MulDrop.9985;Deleted.;
16ic006a.exe;C:\APPS\DOC\16\Common\Howto\16ic006a;Trojan.MulDrop.9985;Deleted.;
16ic007a.exe;C:\APPS\DOC\16\Common\Howto\16ic007a;Trojan.MulDrop.9985;Deleted.;
16ic008a.exe;C:\APPS\DOC\16\Common\Howto\16ic008a;Trojan.MulDrop.9985;Deleted.;
16is001a.exe;C:\APPS\DOC\16\Common\Howto\16is001a;Trojan.MulDrop.9985;Deleted.;
16is003b.exe;C:\APPS\DOC\16\Common\Howto\16is003b;Trojan.MulDrop.9985;Deleted.;
16is005b.exe;C:\APPS\DOC\16\Common\Howto\16is005b;Trojan.MulDrop.9985;Deleted.;
16soft01.exe;C:\APPS\DOC\16\Common\Howto\16soft01;Trojan.MulDrop.9985;Deleted.;
16soft02.exe;C:\APPS\DOC\16\Common\Howto\16soft02;Trojan.MulDrop.9985;Deleted.;
16soft03.exe;C:\APPS\DOC\16\Common\Howto\16soft03;Trojan.MulDrop.9985;Deleted.;
16soft04.exe;C:\APPS\DOC\16\Common\Howto\16soft04;Trojan.MulDrop.9985;Deleted.;
16soft05.exe;C:\APPS\DOC\16\Common\Howto\16soft05;Trojan.MulDrop.9985;Deleted.;
16soft09.exe;C:\APPS\DOC\16\Common\Howto\16soft09;Trojan.MulDrop.9985;Deleted.;
16soft10.exe;C:\APPS\DOC\16\Common\Howto\16soft10;Trojan.MulDrop.9985;Deleted.;
16xpht01.exe;C:\APPS\DOC\16\Common\Howto\16xpht01;Trojan.MulDrop.9985;Deleted.;
16xpht02.exe;C:\APPS\DOC\16\Common\Howto\16xpht02;Trojan.MulDrop.9985;Deleted.;
16xpht04.exe;C:\APPS\DOC\16\Common\Howto\16xpht04;Trojan.MulDrop.9985;Deleted.;
16xpht08.exe;C:\APPS\DOC\16\Common\Howto\16xpht08;Trojan.MulDrop.9985;Deleted.;
16xpht09.exe;C:\APPS\DOC\16\Common\Howto\16xpht09;Trojan.MulDrop.9985;Deleted.;
16xpht10.exe;C:\APPS\DOC\16\Common\Howto\16xpht10;Trojan.MulDrop.9985;Deleted.;
16xpht11.exe;C:\APPS\DOC\16\Common\Howto\16xpht11;Trojan.MulDrop.9985;Deleted.;
16xpmt01.exe;C:\APPS\DOC\16\Common\Howto\16xpmt01;Trojan.MulDrop.9985;Deleted.;
16xpmt02.exe;C:\APPS\DOC\16\Common\Howto\16xpmt02;Trojan.MulDrop.9985;Deleted.;
16xpmt03.exe;C:\APPS\DOC\16\Common\Howto\16xpmt03;Trojan.MulDrop.9985;Deleted.;
16xpmt04.exe;C:\APPS\DOC\16\Common\Howto\16xpmt04;Trojan.MulDrop.9985;Deleted.;
16xpmt05.exe;C:\APPS\DOC\16\Common\Howto\16xpmt05;Trojan.MulDrop.9985;Deleted.;
16xpmt06.exe;C:\APPS\DOC\16\Common\Howto\16xpmt06;Trojan.MulDrop.9985;Deleted.;
16xpmt07.exe;C:\APPS\DOC\16\Common\Howto\16xpmt07;Trojan.MulDrop.9985;Deleted.;
16xpmt10.exe;C:\APPS\DOC\16\Common\Howto\16xpmt10;Trojan.MulDrop.9985;Deleted.;
RecordNow.exe;C:\APPS\DOC\16\Common\Howto\screens\RecordNow;Trojan.MulDrop.9985;Deleted.;
Recovery.exe;C:\APPS\DOC\16\Common\Howto\screens\Recovery;Trojan.MulDrop.9985;Deleted.;
SRestore.exe;C:\APPS\DOC\16\Common\Howto\screens\SRestore;Trojan.MulDrop.9985;Deleted.;
16mn000a.exe;C:\APPS\DOC\16\Common\Monitor\16mn000a;Trojan.MulDrop.9985;Deleted.;
16mn040a.exe;C:\APPS\DOC\16\Common\Monitor\16mn040a;Trojan.MulDrop.9985;Deleted.;
16mn041a.exe;C:\APPS\DOC\16\Common\Monitor\16mn041a;Trojan.MulDrop.9985;Deleted.;
16pb000a.exe;C:\APPS\DOC\16\Common\NBstatic\16pb000a;Trojan.MulDrop.9985;Deleted.;
16pw000a.exe;C:\APPS\DOC\16\Common\NBstatic\16pw000a;Trojan.MulDrop.9985;Deleted.;
16sp000a.exe;C:\APPS\DOC\16\Common\NBstatic\16sp000a;Trojan.MulDrop.9985;Deleted.;
16tl000a.exe;C:\APPS\DOC\16\Common\NBstatic\16tl000a;Trojan.MulDrop.9985;Deleted.;
16wa000a.exe;C:\APPS\DOC\16\Common\NBstatic\16wa000a;Trojan.MulDrop.9985;Deleted.;
16po000a.exe;C:\APPS\DOC\16\Common\Ports\16po000a;Trojan.MulDrop.9985;Deleted.;
16po001a.exe;C:\APPS\DOC\16\Common\Ports\16po001a;Trojan.MulDrop.9985;Deleted.;
search.exe;C:\APPS\DOC\16\Common\search;Trojan.MulDrop.9985;Deleted.;
swishej.exe;C:\APPS\DOC\16\Common\search\swishej;Trojan.MulDrop.9985;Deleted.;
16sk001a.exe;C:\APPS\DOC\16\Common\speakers\16sk001a;Trojan.MulDrop.9985;Deleted.;
16sk002a.exe;C:\APPS\DOC\16\Common\speakers\16sk002a;Trojan.MulDrop.9985;Deleted.;
16sk002b.exe;C:\APPS\DOC\16\Common\speakers\16sk002b;Trojan.MulDrop.9985;Deleted.;
16sk003a.exe;C:\APPS\DOC\16\Common\speakers\16sk003a;Trojan.MulDrop.9985;Deleted.;
16sk004a.exe;C:\APPS\DOC\16\Common\speakers\16sk004a;Trojan.MulDrop.9985;Deleted.;
16sk005a.exe;C:\APPS\DOC\16\Common\speakers\16sk005a;Trojan.MulDrop.9985;Deleted.;
16sk006a.exe;C:\APPS\DOC\16\Common\speakers\16sk006a;Trojan.MulDrop.9985;Deleted.;
16kb013a.exe;C:\APPS\DOC\16\Hardware\Keyboard\16kb013a;Trojan.MulDrop.9985;Deleted.;
16mb065a.exe;C:\APPS\DOC\16\Hardware\Mobo\16mb065a;Trojan.MulDrop.9985;Deleted.;
16dr052a.exe;C:\APPS\DOC\16\Hardware\Storage\16dr052a;Trojan.MulDrop.9985;Deleted.;
16vd057c.exe;C:\APPS\DOC\16\Hardware\Video\16vd057c;Trojan.MulDrop.9985;Deleted.;
SETUP.exe;C:\APPS\DOC\SETUP;Trojan.MulDrop.9985;Deleted.;
16.exe;C:\APPS\DOC\SETUP\16;Trojan.MulDrop.9985;Deleted.;
Brand.exe;C:\APPS\DOC\SETUP\16\Brand;Trojan.MulDrop.9985;Deleted.;
guides.exe;C:\APPS\DOC\SETUP\16\Brand\guides;Trojan.MulDrop.9985;Deleted.;
Header.exe;C:\APPS\DOC\SETUP\16\Brand\Header;Trojan.MulDrop.9985;Deleted.;
16haht07.exe;C:\APPS\DOC\SETUP\16\Brand\Howto\16haht07;Trojan.MulDrop.9985;Deleted.;
16soft06.exe;C:\APPS\DOC\SETUP\16\Brand\Howto\16soft06;Trojan.MulDrop.9985;Deleted.;
Acrobat.exe;C:\APPS\DOC\SETUP\16\Brand\Howto\screens\Acrobat;Trojan.MulDrop.9985;Deleted.;
PowerCinema.exe;C:\APPS\DOC\SETUP\16\Brand\Howto\screens\PowerCinema;Trojan.MulDrop.9985;Deleted.;
SRestore.exe;C:\APPS\DOC\SETUP\16\Brand\Howto\screens\SRestore;Trojan.MulDrop.9985;Deleted.;
website.exe;C:\APPS\DOC\SETUP\16\Brand\Howto\screens\website;Trojan.MulDrop.9985;Deleted.;
Windows.exe;C:\APPS\DOC\SETUP\16\Brand\Howto\screens\Windows;Trojan.MulDrop.9985;Deleted.;
Navigate.exe;C:\APPS\DOC\SETUP\16\Brand\Navigate;Trojan.MulDrop.9985;Deleted.;
16ex009b.exe;C:\APPS\DOC\SETUP\16\Common\acsry\16ex009b;Trojan.MulDrop.9985;Deleted.;
16ex020a.exe;C:\APPS\DOC\SETUP\16\Common\acsry\16ex020a;Trojan.MulDrop.9985;Deleted.;
16ex022a.exe;C:\APPS\DOC\SETUP\16\Common\acsry\16ex022a;Trojan.MulDrop.9985;Deleted.;
16ex023a.exe;C:\APPS\DOC\SETUP\16\Common\acsry\16ex023a;Trojan.MulDrop.9985;Deleted.;
16ex024a.exe;C:\APPS\DOC\SETUP\16\Common\acsry\16ex024a;Trojan.MulDrop.9985;Deleted.;
16ex025a.exe;C:\APPS\DOC\SETUP\16\Common\acsry\16ex025a;Trojan.MulDrop.9985;Deleted.;
16ex027a.exe;C:\APPS\DOC\SETUP\16\Common\acsry\16ex027a;Trojan.MulDrop.9985;Deleted.;
16ex028a.exe;C:\APPS\DOC\SETUP\16\Common\acsry\16ex028a;Trojan.MulDrop.9985;Deleted.;
16ex029a.exe;C:\APPS\DOC\SETUP\16\Common\acsry\16ex029a;Trojan.MulDrop.9985;Deleted.;
16co000a.exe;C:\APPS\DOC\SETUP\16\Common\Controls\16co000a;Trojan.MulDrop.9985;Deleted.;
16kb000a.exe;C:\APPS\DOC\SETUP\16\Common\Controls\16kb000a;Trojan.MulDrop.9985;Deleted.;
16ch000a.exe;C:\APPS\DOC\SETUP\16\Common\Desktop\16ch000a;Trojan.MulDrop.9985;Deleted.;
16mb000a.exe;C:\APPS\DOC\SETUP\16\Common\Desktop\16mb000a;Trojan.MulDrop.9985;Deleted.;
16rd000a.exe;C:\APPS\DOC\SETUP\16\Common\Desktop\16rd000a;Trojan.MulDrop.9985;Deleted.;
16ug000a.exe;C:\APPS\DOC\SETUP\16\Common\Desktop\16ug000a;Trojan.MulDrop.9985;Deleted.;
16ug000x.exe;C:\APPS\DOC\SETUP\16\Common\Desktop\16ug000x;Trojan.MulDrop.9985;Deleted.;
16vd000a.exe;C:\APPS\DOC\SETUP\16\Common\Desktop\16vd000a;Trojan.MulDrop.9985;Deleted.;
Drives.exe;C:\APPS\DOC\SETUP\16\Common\Drives;Trojan.MulDrop.9985;Deleted.;
16dr000a.exe;C:\APPS\DOC\SETUP\16\Common\Drives\16dr000a;Trojan.MulDrop.9985;Deleted.;
16fd001a.exe;C:\APPS\DOC\SETUP\16\Common\Drives\16fd001a;Trojan.MulDrop.9985;Deleted.;
16hd001a.exe;C:\APPS\DOC\SETUP\16\Common\Drives\16hd001a;Trojan.MulDrop.9985;Deleted.;
glossary.exe;C:\APPS\DOC\SETUP\16\Common\glossary;Trojan.MulDrop.9985;Deleted.;
16cdwht.exe;C:\APPS\DOC\SETUP\16\Common\Howto\16cdwht;Trojan.MulDrop.9985;Deleted.;
16cmht02.exe;C:\APPS\DOC\SETUP\16\Common\Howto\16cmht02;Trojan.MulDrop.9985;Deleted.;
16cmht07.exe;C:\APPS\DOC\SETUP\16\Common\Howto\16cmht07;Trojan.MulDrop.9985;Deleted.;
16cmht08.exe;C:\APPS\DOC\SETUP\16\Common\Howto\16cmht08;Trojan.MulDrop.9985;Deleted.;
16haht01.exe;C:\APPS\DOC\SETUP\16\Common\Howto\16haht01;Trojan.MulDrop.9985;Deleted.;
16haht02.exe;C:\APPS\DOC\SETUP\16\Common\Howto\16haht02;Trojan.MulDrop.9985;Deleted.;
16haht03.exe;C:\APPS\DOC\SETUP\16\Common\Howto\16haht03;Trojan.MulDrop.9985;Deleted.;
16haht04.exe;C:\APPS\DOC\SETUP\16\Common\Howto\16haht04;Trojan.MulDrop.9985;Deleted.;
16haht05.exe;C:\APPS\DOC\SETUP\16\Common\Howto\16haht05;Trojan.MulDrop.9985;Deleted.;
16haht08.exe;C:\APPS\DOC\SETUP\16\Common\Howto\16haht08;Trojan.MulDrop.9985;Deleted.;
16haht09.exe;C:\APPS\DOC\SETUP\16\Common\Howto\16haht09;Trojan.MulDrop.9985;Deleted.;
16haht11.exe;C:\APPS\DOC\SETUP\16\Common\Howto\16haht11;Trojan.MulDrop.9985;Deleted.;
16haht12.exe;C:\APPS\DOC\SETUP\16\Common\Howto\16haht12;Trojan.MulDrop.9985;Deleted.;
16heht00.exe;C:\APPS\DOC\SETUP\16\Common\Howto\16heht00;Trojan.MulDrop.9985;Deleted.;
16heht03.exe;C:\APPS\DOC\SETUP\16\Common\Howto\16heht03;Trojan.MulDrop.9985;Deleted.;
16heht04.exe;C:\APPS\DOC\SETUP\16\Common\Howto\16heht04;Trojan.MulDrop.9985;Deleted.;
16hwht01.exe;C:\APPS\DOC\SETUP\16\Common\Howto\16hwht01;Trojan.MulDrop.9985;Deleted.;
16hwht03.exe;C:\APPS\DOC\SETUP\16\Common\Howto\16hwht03;Trojan.MulDrop.9985;Deleted.;
16hwht04.exe;C:\APPS\DOC\SETUP\16\Common\Howto\16hwht04;Trojan.MulDrop.9985;Deleted.;
16ic001a.exe;C:\APPS\DOC\SETUP\16\Common\Howto\16ic001a;Trojan.MulDrop.9985;Deleted.;
16ic002a.exe;C:\APPS\DOC\SETUP\16\Common\Howto\16ic002a;Trojan.MulDrop.9985;Deleted.;
16ic003a.exe;C:\APPS\DOC\SETUP\16\Common\Howto\16ic003a;Trojan.MulDrop.9985;Deleted.;
16ic004a.exe;C:\APPS\DOC\SETUP\16\Common\Howto\16ic004a;Trojan.MulDrop.9985;Deleted.;
16ic006a.exe;C:\APPS\DOC\SETUP\16\Common\Howto\16ic006a;Trojan.MulDrop.9985;Deleted.;
16ic007a.exe;C:\APPS\DOC\SETUP\16\Common\Howto\16ic007a;Trojan.MulDrop.9985;Deleted.;
16ic008a.exe;C:\APPS\DOC\SETUP\16\Common\Howto\16ic008a;Trojan.MulDrop.9985;Deleted.;
16is001a.exe;C:\APPS\DOC\SETUP\16\Common\Howto\16is001a;Trojan.MulDrop.9985;Deleted.;
16is003b.exe;C:\APPS\DOC\SETUP\16\Common\Howto\16is003b;Trojan.MulDrop.9985;Deleted.;
16is005b.exe;C:\APPS\DOC\SETUP\16\Common\Howto\16is005b;Trojan.MulDrop.9985;Deleted.;
16soft01.exe;C:\APPS\DOC\SETUP\16\Common\Howto\16soft01;Trojan.MulDrop.9985;Deleted.;
16soft02.exe;C:\APPS\DOC\SETUP\16\Common\Howto\16soft02;Trojan.MulDrop.9985;Deleted.;
16soft03.exe;C:\APPS\DOC\SETUP\16\Common\Howto\16soft03;Trojan.MulDrop.9985;Deleted.;
16soft04.exe;C:\APPS\DOC\SETUP\16\Common\Howto\16soft04;Trojan.MulDrop.9985;Deleted.;
16soft05.exe;C:\APPS\DOC\SETUP\16\Common\Howto\16soft05;Trojan.MulDrop.9985;Deleted.;
16soft09.exe;C:\APPS\DOC\SETUP\16\Common\Howto\16soft09;Trojan.MulDrop.9985;Deleted.;
16soft10.exe;C:\APPS\DOC\SETUP\16\Common\Howto\16soft10;Trojan.MulDrop.9985;Deleted.;
16xpht01.exe;C:\APPS\DOC\SETUP\16\Common\Howto\16xpht01;Trojan.MulDrop.9985;Deleted.;
16xpht02.exe;C:\APPS\DOC\SETUP\16\Common\Howto\16xpht02;Trojan.MulDrop.9985;Deleted.;
16xpht04.exe;C:\APPS\DOC\SETUP\16\Common\Howto\16xpht04;Trojan.MulDrop.9985;Deleted.;
16xpht08.exe;C:\APPS\DOC\SETUP\16\Common\Howto\16xpht08;Trojan.MulDrop.9985;Deleted.;
16xpht09.exe;C:\APPS\DOC\SETUP\16\Common\Howto\16xpht09;Trojan.MulDrop.9985;Deleted.;
16xpht10.exe;C:\APPS\DOC\SETUP\16\Common\Howto\16xpht10;Trojan.MulDrop.9985;Deleted.;
16xpht11.exe;C:\APPS\DOC\SETUP\16\Common\Howto\16xpht11;Trojan.MulDrop.9985;Deleted.;
16xpmt01.exe;C:\APPS\DOC\SETUP\16\Common\Howto\16xpmt01;Trojan.MulDrop.9985;Deleted.;
16xpmt02.exe;C:\APPS\DOC\SETUP\16\Common\Howto\16xpmt02;Trojan.MulDrop.9985;Deleted.;
16xpmt03.exe;C:\APPS\DOC\SETUP\16\Common\Howto\16xpmt03;Trojan.MulDrop.9985;Deleted.;
16xpmt04.exe;C:\APPS\DOC\SETUP\16\Common\Howto\16xpmt04;Trojan.MulDrop.9985;Deleted.;
16xpmt05.exe;C:\APPS\DOC\SETUP\16\Common\Howto\16xpmt05;Trojan.MulDrop.9985;Deleted.;
16xpmt06.exe;C:\APPS\DOC\SETUP\16\Common\Howto\16xpmt06;Trojan.MulDrop.9985;Deleted.;
16xpmt07.exe;C:\APPS\DOC\SETUP\16\Common\Howto\16xpmt07;Trojan.MulDrop.9985;Deleted.;
16xpmt10.exe;C:\APPS\DOC\SETUP\16\Common\Howto\16xpmt10;Trojan.MulDrop.9985;Deleted.;
RecordNow.exe;C:\APPS\DOC\SETUP\16\Common\Howto\screens\RecordNow;Trojan.MulDrop.9985;Deleted.;
Recovery.exe;C:\APPS\DOC\SETUP\16\Common\Howto\screens\Recovery;Trojan.MulDrop.9985;Deleted.;
SRestore.exe;C:\APPS\DOC\SETUP\16\Common\Howto\screens\SRestore;Trojan.MulDrop.9985;Deleted.;
16mn000a.exe;C:\APPS\DOC\SETUP\16\Common\Monitor\16mn000a;Trojan.MulDrop.9985;Deleted.;
16mn040a.exe;C:\APPS\DOC\SETUP\16\Common\Monitor\16mn040a;Trojan.MulDrop.9985;Deleted.;
16mn041a.exe;C:\APPS\DOC\SETUP\16\Common\Monitor\16mn041a;Trojan.MulDrop.9985;Deleted.;
16pb000a.exe;C:\APPS\DOC\SETUP\16\Common\NBstatic\16pb000a;Trojan.MulDrop.9985;Deleted.;
16pw000a.exe;C:\APPS\DOC\SETUP\16\Common\NBstatic\16pw000a;Trojan.MulDrop.9985;Deleted.;
16sp000a.exe;C:\APPS\DOC\SETUP\16\Common\NBstatic\16sp000a;Trojan.MulDrop.9985;Deleted.;
16tl000a.exe;C:\APPS\DOC\SETUP\16\Common\NBstatic\16tl000a;Trojan.MulDrop.9985;Deleted.;
16wa000a.exe;C:\APPS\DOC\SETUP\16\Common\NBstatic\16wa000a;Trojan.MulDrop.9985;Deleted.;
16po000a.exe;C:\APPS\DOC\SETUP\16\Common\Ports\16po000a;Trojan.MulDrop.9985;Deleted.;
16po001a.exe;C:\APPS\DOC\SETUP\16\Common\Ports\16po001a;Trojan.MulDrop.9985;Deleted.;
search.exe;C:\APPS\DOC\SETUP\16\Common\search;Trojan.MulDrop.9985;Deleted.;
swishej.exe;C:\APPS\DOC\SETUP\16\Common\search\swishej;Trojan.MulDrop.9985;Deleted.;
16sk001a.exe;C:\APPS\DOC\SETUP\16\Common\speakers\16sk001a;Trojan.MulDrop.9985;Deleted.;
16sk002a.exe;C:\APPS\DOC\SETUP\16\Common\speakers\16sk002a;Trojan.MulDrop.9985;Deleted.;
16sk002b.exe;C:\APPS\DOC\SETUP\16\Common\speakers\16sk002b;Trojan.MulDrop.9985;Deleted.;
16sk003a.exe;C:\APPS\DOC\SETUP\16\Common\speakers\16sk003a;Trojan.MulDrop.9985;Deleted.;
16sk004a.exe;C:\APPS\DOC\SETUP\16\Common\speakers\16sk004a;Trojan.MulDrop.9985;Deleted.;
16sk005a.exe;C:\APPS\DOC\SETUP\16\Common\speakers\16sk005a;Trojan.MulDrop.9985;Deleted.;
16sk006a.exe;C:\APPS\DOC\SETUP\16\Common\speakers\16sk006a;Trojan.MulDrop.9985;Deleted.;
16ch024a.exe;C:\APPS\DOC\SETUP\16\Hardware\Chassis\16ch024a;Trojan.MulDrop.9985;Deleted.;
16ch025a.exe;C:\APPS\DOC\SETUP\16\Hardware\Chassis\16ch025a;Trojan.MulDrop.9985;Deleted.;
16ch026a.exe;C:\APPS\DOC\SETUP\16\Hardware\Chassis\16ch026a;Trojan.MulDrop.9985;Deleted.;
16ch026b.exe;C:\APPS\DOC\SETUP\16\Hardware\Chassis\16ch026b;Trojan.MulDrop.9985;Deleted.;
16ch029a.exe;C:\APPS\DOC\SETUP\16\Hardware\Chassis\16ch029a;Trojan.MulDrop.9985;Deleted.;
16ch029b.exe;C:\APPS\DOC\SETUP\16\Hardware\Chassis\16ch029b;Trojan.MulDrop.9985;Deleted.;
16ch029c.exe;C:\APPS\DOC\SETUP\16\Hardware\Chassis\16ch029c;Trojan.MulDrop.9985;Deleted.;
16ch029d.exe;C:\APPS\DOC\SETUP\16\Hardware\Chassis\16ch029d;Trojan.MulDrop.9985;Deleted.;
16ch031a.exe;C:\APPS\DOC\SETUP\16\Hardware\Chassis\16ch031a;Trojan.MulDrop.9985;Deleted.;
16ch031b.exe;C:\APPS\DOC\SETUP\16\Hardware\Chassis\16ch031b;Trojan.MulDrop.9985;Deleted.;
16ch032a.exe;C:\APPS\DOC\SETUP\16\Hardware\Chassis\16ch032a;Trojan.MulDrop.9985;Deleted.;
16ch033a.exe;C:\APPS\DOC\SETUP\16\Hardware\Chassis\16ch033a;Trojan.MulDrop.9985;Deleted.;
16fm017a.exe;C:\APPS\DOC\SETUP\16\Hardware\FaxModem\16fm017a;Trojan.MulDrop.9985;Deleted.;
16fm017b.exe;C:\APPS\DOC\SETUP\16\Hardware\FaxModem\16fm017b;Trojan.MulDrop.9985;Deleted.;
16kb009a.exe;C:\APPS\DOC\SETUP\16\Hardware\Keyboard\16kb009a;Trojan.MulDrop.9985;Deleted.;
16kb010a.exe;C:\APPS\DOC\SETUP\16\Hardware\Keyboard\16kb010a;Trojan.MulDrop.9985;Deleted.;
16kb011a.exe;C:\APPS\DOC\SETUP\16\Hardware\Keyboard\16kb011a;Trojan.MulDrop.9985;Deleted.;
16kb013a.exe;C:\APPS\DOC\SETUP\16\Hardware\Keyboard\16kb013a;Trojan.MulDrop.9985;Deleted.;
16kb014a.exe;C:\APPS\DOC\SETUP\16\Hardware\Keyboard\16kb014a;Trojan.MulDrop.9985;Deleted.;
16kb014b.exe;C:\APPS\DOC\SETUP\16\Hardware\Keyboard\16kb014b;Trojan.MulDrop.9985;Deleted.;
16kb015a.exe;C:\APPS\DOC\SETUP\16\Hardware\Keyboard\16kb015a;Trojan.MulDrop.9985;Deleted.;
16kb016a.exe;C:\APPS\DOC\SETUP\16\Hardware\Keyboard\16kb016a;Trojan.MulDrop.9985;Deleted.;
16kb017a.exe;C:\APPS\DOC\SETUP\16\Hardware\Keyboard\16kb017a;Trojan.MulDrop.9985;Deleted.;
16mb045a.exe;C:\APPS\DOC\SETUP\16\Hardware\Mobo\16mb045a;Trojan.MulDrop.9985;Deleted.;
16mb053a.exe;C:\APPS\DOC\SETUP\16\Hardware\Mobo\16mb053a;Trojan.MulDrop.9985;Deleted.;
16mb055a.exe;C:\APPS\DOC\SETUP\16\Hardware\Mobo\16mb055a;Trojan.MulDrop.9985;Deleted.;
16mb057a.exe;C:\APPS\DOC\SETUP\16\Hardware\Mobo\16mb057a;Trojan.MulDrop.9985;Deleted.;
16mb059a.exe;C:\APPS\DOC\SETUP\16\Hardware\Mobo\16mb059a;Trojan.MulDrop.9985;Deleted.;
16mb060a.exe;C:\APPS\DOC\SETUP\16\Hardware\Mobo\16mb060a;Trojan.MulDrop.9985;Deleted.;
16mb061a.exe;C:\APPS\DOC\SETUP\16\Hardware\Mobo\16mb061a;Trojan.MulDrop.9985;Deleted.;
16mb062a.exe;C:\APPS\DOC\SETUP\16\Hardware\Mobo\16mb062a;Trojan.MulDrop.9985;Deleted.;
16mb063a.exe;C:\APPS\DOC\SETUP\16\Hardware\Mobo\16mb063a;Trojan.MulDrop.9985;Deleted.;
16mb064a.exe;C:\APPS\DOC\SETUP\16\Hardware\Mobo\16mb064a;Trojan.MulDrop.9985;Deleted.;
16mb065a.exe;C:\APPS\DOC\SETUP\16\Hardware\Mobo\16mb065a;Trojan.MulDrop.9985;Deleted.;
16mb066a.exe;C:\APPS\DOC\SETUP\16\Hardware\Mobo\16mb066a;Trojan.MulDrop.9985;Deleted.;
16mb067a.exe;C:\APPS\DOC\SETUP\16\Hardware\Mobo\16mb067a;Trojan.MulDrop.9985;Deleted.;
16rd007a.exe;C:\APPS\DOC\SETUP\16\Hardware\Readers\16rd007a;Trojan.MulDrop.9985;Deleted.;
16rd008a.exe;C:\APPS\DOC\SETUP\16\Hardware\Readers\16rd008a;Trojan.MulDrop.9985;Deleted.;
16rd009a.exe;C:\APPS\DOC\SETUP\16\Hardware\Readers\16rd009a;Trojan.MulDrop.9985;Deleted.;
16rd010a.exe;C:\APPS\DOC\SETUP\16\Hardware\Readers\16rd010a;Trojan.MulDrop.9985;Deleted.;
16rd011a.exe;C:\APPS\DOC\SETUP\16\Hardware\Readers\16rd011a;Trojan.MulDrop.9985;Deleted.;
16dr033a.exe;C:\APPS\DOC\SETUP\16\Hardware\Storage\16dr033a;Trojan.MulDrop.9985;Deleted.;
16dr040a.exe;C:\APPS\DOC\SETUP\16\Hardware\Storage\16dr040a;Trojan.MulDrop.9985;Deleted.;
16dr044a.exe;C:\APPS\DOC\SETUP\16\Hardware\Storage\16dr044a;Trojan.MulDrop.9985;Deleted.;
16dr045a.exe;C:\APPS\DOC\SETUP\16\Hardware\Storage\16dr045a;Trojan.MulDrop.9985;Deleted.;
16dr046a.exe;C:\APPS\DOC\SETUP\16\Hardware\Storage\16dr046a;Trojan.MulDrop.9985;Deleted.;
16dr047a.exe;C:\APPS\DOC\SETUP\16\Hardware\Storage\16dr047a;Trojan.MulDrop.9985;Deleted.;
16dr048a.exe;C:\APPS\DOC\SETUP\16\Hardware\Storage\16dr048a;Trojan.MulDrop.9985;Deleted.;
16dr049a.exe;C:\APPS\DOC\SETUP\16\Hardware\Storage\16dr049a;Trojan.MulDrop.9985;Deleted.;
16dr049b.exe;C:\APPS\DOC\SETUP\16\Hardware\Storage\16dr049b;Trojan.MulDrop.9985;Deleted.;
16dr050a.exe;C:\APPS\DOC\SETUP\16\Hardware\Storage\16dr050a;Trojan.MulDrop.9985;Deleted.;
16dr051a.exe;C:\APPS\DOC\SETUP\16\Hardware\Storage\16dr051a;Trojan.MulDrop.9985;Deleted.;
16dr052a.exe;C:\APPS\DOC\SETUP\16\Hardware\Storage\16dr052a;Trojan.MulDrop.9985;Deleted.;
16dr053a.exe;C:\APPS\DOC\SETUP\16\Hardware\Storage\16dr053a;Trojan.MulDrop.9985;Deleted.;
16dr054a.exe;C:\APPS\DOC\SETUP\16\Hardware\Storage\16dr054a;Trojan.MulDrop.9985;Deleted.;
16dr055a.exe;C:\APPS\DOC\SETUP\16\Hardware\Storage\16dr055a;Trojan.MulDrop.9985;Deleted.;
16tv005b.exe;C:\APPS\DOC\SETUP\16\Hardware\TVtuner\16tv005b;Trojan.MulDrop.9985;Deleted.;
16tv006a.exe;C:\APPS\DOC\SETUP\16\Hardware\TVtuner\16tv006a;Trojan.MulDrop.9985;Deleted.;
16tv009a.exe;C:\APPS\DOC\SETUP\16\Hardware\TVtuner\16tv009a;Trojan.MulDrop.9985;Deleted.;
16tv010a.exe;C:\APPS\DOC\SETUP\16\Hardware\TVtuner\16tv010a;Trojan.MulDrop.9985;Deleted.;
16tv011a.exe;C:\APPS\DOC\SETUP\16\Hardware\TVtuner\16tv011a;Trojan.MulDrop.9985;Deleted.;
16tv013a.exe;C:\APPS\DOC\SETUP\16\Hardware\TVtuner\16tv013a;Trojan.MulDrop.9985;Deleted.;
16vd038a.exe;C:\APPS\DOC\SETUP\16\Hardware\Video\16vd038a;Trojan.MulDrop.9985;Deleted.;
16vd043a.exe;C:\APPS\DOC\SETUP\16\Hardware\Video\16vd043a;Trojan.MulDrop.9985;Deleted.;
16vd043b.exe;C:\APPS\DOC\SETUP\16\Hardware\Video\16vd043b;Trojan.MulDrop.9985;Deleted.;
16vd045a.exe;C:\APPS\DOC\SETUP\16\Hardware\Video\16vd045a;Trojan.MulDrop.9985;Deleted.;
16vd045b.exe;C:\APPS\DOC\SETUP\16\Hardware\Video\16vd045b;Trojan.MulDrop.9985;Deleted.;
16vd047a.exe;C:\APPS\DOC\SETUP\16\Hardware\Video\16vd047a;Trojan.MulDrop.9985;Deleted.;
16vd047b.exe;C:\APPS\DOC\SETUP\16\Hardware\Video\16vd047b;Trojan.MulDrop.9985;Deleted.;
16vd047c.exe;C:\APPS\DOC\SETUP\16\Hardware\Video\16vd047c;Trojan.MulDrop.9985;Deleted.;
16vd047d.exe;C:\APPS\DOC\SETUP\16\Hardware\Video\16vd047d;Trojan.MulDrop.9985;Deleted.;
16vd048a.exe;C:\APPS\DOC\SETUP\16\Hardware\Video\16vd048a;Trojan.MulDrop.9985;Deleted.;
16vd048b.exe;C:\APPS\DOC\SETUP\16\Hardware\Video\16vd048b;Trojan.MulDrop.9985;Deleted.;
16vd049a.exe;C:\APPS\DOC\SETUP\16\Hardware\Video\16vd049a;Trojan.MulDrop.9985;Deleted.;
16vd049b.exe;C:\APPS\DOC\SETUP\16\Hardware\Video\16vd049b;Trojan.MulDrop.9985;Deleted.;
16vd049c.exe;C:\APPS\DOC\SETUP\16\Hardware\Video\16vd049c;Trojan.MulDrop.9985;Deleted.;
16vd049d.exe;C:\APPS\DOC\SETUP\16\Hardware\Video\16vd049d;Trojan.MulDrop.9985;Deleted.;
16vd050a.exe;C:\APPS\DOC\SETUP\16\Hardware\Video\16vd050a;Trojan.MulDrop.9985;Deleted.;
16vd050b.exe;C:\APPS\DOC\SETUP\16\Hardware\Video\16vd050b;Trojan.MulDrop.9985;Deleted.;
16vd050c.exe;C:\APPS\DOC\SETUP\16\Hardware\Video\16vd050c;Trojan.MulDrop.9985;Deleted.;
16vd050d.exe;C:\APPS\DOC\SETUP\16\Hardware\Video\16vd050d;Trojan.MulDrop.9985;Deleted.;
16vd050e.exe;C:\APPS\DOC\SETUP\16\Hardware\Video\16vd050e;Trojan.MulDrop.9985;Deleted.;
16vd051a.exe;C:\APPS\DOC\SETUP\16\Hardware\Video\16vd051a;Trojan.MulDrop.9985;Deleted.;
16vd052a.exe;C:\APPS\DOC\SETUP\16\Hardware\Video\16vd052a;Trojan.MulDrop.9985;Deleted.;
16vd052b.exe;C:\APPS\DOC\SETUP\16\Hardware\Video\16vd052b;Trojan.MulDrop.9985;Deleted.;
16vd052c.exe;C:\APPS\DOC\SETUP\16\Hardware\Video\16vd052c;Trojan.MulDrop.9985;Deleted.;
16vd052d.exe;C:\APPS\DOC\SETUP\16\Hardware\Video\16vd052d;Trojan.MulDrop.9985;Deleted.;
16vd053a.exe;C:\APPS\DOC\SETUP\16\Hardware\Video\16vd053a;Trojan.MulDrop.9985;Deleted.;
16vd054a.exe;C:\APPS\DOC\SETUP\16\Hardware\Video\16vd054a;Trojan.MulDrop.9985;Deleted.;
16vd055a.exe;C:\APPS\DOC\SETUP\16\Hardware\Video\16vd055a;Trojan.MulDrop.9985;Deleted.;
16vd055b.exe;C:\APPS\DOC\SETUP\16\Hardware\Video\16vd055b;Trojan.MulDrop.9985;Deleted.;
16vd055c.exe;C:\APPS\DOC\SETUP\16\Hardware\Video\16vd055c;Trojan.MulDrop.9985;Deleted.;
16vd055d.exe;C:\APPS\DOC\SETUP\16\Hardware\Video\16vd055d;Trojan.MulDrop.9985;Deleted.;
16vd056a.exe;C:\APPS\DOC\SETUP\16\Hardware\Video\16vd056a;Trojan.MulDrop.9985;Deleted.;
16vd057a.exe;C:\APPS\DOC\SETUP\16\Hardware\Video\16vd057a;Trojan.MulDrop.9985;Deleted.;
16vd057b.exe;C:\APPS\DOC\SETUP\16\Hardware\Video\16vd057b;Trojan.MulDrop.9985;Deleted.;
16vd057c.exe;C:\APPS\DOC\SETUP\16\Hardware\Video\16vd057c;Trojan.MulDrop.9985;Deleted.;
16vd058a.exe;C:\APPS\DOC\SETUP\16\Hardware\Video\16vd058a;Trojan.MulDrop.9985;Deleted.;
16vd058b.exe;C:\APPS\DOC\SETUP\16\Hardware\Video\16vd058b;Trojan.MulDrop.9985;Deleted.;
16vd058c.exe;C:\APPS\DOC\SETUP\16\Hardware\Video\16vd058c;Trojan.MulDrop.9985;Deleted.;
16ArgoX.exe;C:\APPS\DOC\SETUP\16\Notebook\16ArgoX;Trojan.MulDrop.9985;Deleted.;
16bi038a.exe;C:\APPS\DOC\SETUP\16\Notebook\16ArgoX\16bi038a;Trojan.MulDrop.9985;Deleted.;
16co038a.exe;C:\APPS\DOC\SETUP\16\Notebook\16ArgoX\16co038a;Trojan.MulDrop.9985;Deleted.;
16in038a.exe;C:\APPS\DOC\SETUP\16\Notebook\16ArgoX\16in038a;Trojan.MulDrop.9985;Deleted.;
16po038a.exe;C:\APPS\DOC\SETUP\16\Notebook\16ArgoX\16po038a;Trojan.MulDrop.9985;Deleted.;
16pw038a.exe;C:\APPS\DOC\SETUP\16\Notebook\16ArgoX\16pw038a;Trojan.MulDrop.9985;Deleted.;
16sp038a.exe;C:\APPS\DOC\SETUP\16\Notebook\16ArgoX\16sp038a;Trojan.MulDrop.9985;Deleted.;
16tr038a.exe;C:\APPS\DOC\SETUP\16\Notebook\16ArgoX\16tr038a;Trojan.MulDrop.9985;Deleted.;
16AtlasS.exe;C:\APPS\DOC\SETUP\16\Notebook\16AtlasS;Trojan.MulDrop.9985;Deleted.;
16bi032a.exe;C:\APPS\DOC\SETUP\16\Notebook\16AtlasS\16bi032a;Trojan.MulDrop.9985;Deleted.;
16co032a.exe;C:\APPS\DOC\SETUP\16\Notebook\16AtlasS\16co032a;Trojan.MulDrop.9985;Deleted.;
16in032a.exe;C:\APPS\DOC\SETUP\16\Notebook\16AtlasS\16in032a;Trojan.MulDrop.9985;Deleted.;
16po032a.exe;C:\APPS\DOC\SETUP\16\Notebook\16AtlasS\16po032a;Trojan.MulDrop.9985;Deleted.;
16pw032a.exe;C:\APPS\DOC\SETUP\16\Notebook\16AtlasS\16pw032a;Trojan.MulDrop.9985;Deleted.;
16sp032a.exe;C:\APPS\DOC\SETUP\16\Notebook\16AtlasS\16sp032a;Trojan.MulDrop.9985;Deleted.;
16tr032a.exe;C:\APPS\DOC\SETUP\16\Notebook\16AtlasS\16tr032a;Trojan.MulDrop.9985;Deleted.;
16Drgn.exe;C:\APPS\DOC\SETUP\16\Notebook\16Drgn;Trojan.MulDrop.9985;Deleted.;
16bi031c.exe;C:\APPS\DOC\SETUP\16\Notebook\16Drgn\16bi031c;Trojan.MulDrop.9985;Deleted.;
16co031c.exe;C:\APPS\DOC\SETUP\16\Notebook\16Drgn\16co031c;Trojan.MulDrop.9985;Deleted.;
16in031c.exe;C:\APPS\DOC\SETUP\16\Notebook\16Drgn\16in031c;Trojan.MulDrop.9985;Deleted.;
16po031c.exe;C:\APPS\DOC\SETUP\16\Notebook\16Drgn\16po031c;Trojan.MulDrop.9985;Deleted.;
16pw031c.exe;C:\APPS\DOC\SETUP\16\Notebook\16Drgn\16pw031c;Trojan.MulDrop.9985;Deleted.;
16sp031c.exe;C:\APPS\DOC\SETUP\16\Notebook\16Drgn\16sp031c;Trojan.MulDrop.9985;Deleted.;
16tr031c.exe;C:\APPS\DOC\SETUP\16\Notebook\16Drgn\16tr031c;Trojan.MulDrop.9985;Deleted.;
16Drgn2.exe;C:\APPS\DOC\SETUP\16\Notebook\16Drgn2;Trojan.MulDrop.9985;Deleted.;
16bi035a.exe;C:\APPS\DOC\SETUP\16\Notebook\16Drgn2\16bi035a;Trojan.MulDrop.9985;Deleted.;
16co035a.exe;C:\APPS\DOC\SETUP\16\Notebook\16Drgn2\16co035a;Trojan.MulDrop.9985;Deleted.;
16in035a.exe;C:\APPS\DOC\SETUP\16\Notebook\16Drgn2\16in035a;Trojan.MulDrop.9985;Deleted.;
16po035a.exe;C:\APPS\DOC\SETUP\16\Notebook\16Drgn2\16po035a;Trojan.MulDrop.9985;Deleted.;
16pw035a.exe;C:\APPS\DOC\SETUP\16\Notebook\16Drgn2\16pw035a;Trojan.MulDrop.9985;Deleted.;
16sp035a.exe;C:\APPS\DOC\SETUP\16\Notebook\16Drgn2\16sp035a;Trojan.MulDrop.9985;Deleted.;
16tr035a.exe;C:\APPS\DOC\SETUP\16\Notebook\16Drgn2\16tr035a;Trojan.MulDrop.9985;Deleted.;
16K2.exe;C:\APPS\DOC\SETUP\16\Notebook\16K2;Trojan.MulDrop.9985;Deleted.;
16bi023b.exe;C:\APPS\DOC\SETUP\16\Notebook\16K2\16bi023b;Trojan.MulDrop.9985;Deleted.;
16co023b.exe;C:\APPS\DOC\SETUP\16\Notebook\16K2\16co023b;Trojan.MulDrop.9985;Deleted.;
16in023b.exe;C:\APPS\DOC\SETUP\16\Notebook\16K2\16in023b;Trojan.MulDrop.9985;Deleted.;
16po023b.exe;C:\APPS\DOC\SETUP\16\Notebook\16K2\16po023b;Trojan.MulDrop.9985;Deleted.;
16pw023b.exe;C:\APPS\DOC\SETUP\16\Notebook\16K2\16pw023b;Trojan.MulDrop.9985;Deleted.;
16sp023b.exe;C:\APPS\DOC\SETUP\16\Notebook\16K2\16sp023b;Trojan.MulDrop.9985;Deleted.;
16tr023b.exe;C:\APPS\DOC\SETUP\16\Notebook\16K2\16tr023b;Trojan.MulDrop.9985;Deleted.;
16RheaA.exe;C:\APPS\DOC\SETUP\16\Notebook\16RheaA;Trojan.MulDrop.9985;Deleted.;
16bi026a.exe;C:\APPS\DOC\SETUP\16\Notebook\16RheaA\16bi026a;Trojan.MulDrop.9985;Deleted.;
16co026a.exe;C:\APPS\DOC\SETUP\16\Notebook\16RheaA\16co026a;Trojan.MulDrop.9985;Deleted.;
16in026a.exe;C:\APPS\DOC\SETUP\16\Notebook\16RheaA\16in026a;Trojan.MulDrop.9985;Deleted.;
16po026a.exe;C:\APPS\DOC\SETUP\16\Notebook\16RheaA\16po026a;Trojan.MulDrop.9985;Deleted.;
16pw026a.exe;C:\APPS\DOC\SETUP\16\Notebook\16RheaA\16pw026a;Trojan.MulDrop.9985;Deleted.;
16sp026a.exe;C:\APPS\DOC\SETUP\16\Notebook\16RheaA\16sp026a;Trojan.MulDrop.9985;Deleted.;
16tr026a.exe;C:\APPS\DOC\SETUP\16\Notebook\16RheaA\16tr026a;Trojan.MulDrop.9985;Deleted.;
16rheab.exe;C:\APPS\DOC\SETUP\16\Notebook\16rheab;Trojan.MulDrop.9985;Deleted.;
16bi026b.exe;C:\APPS\DOC\SETUP\16\Notebook\16rheab\16bi026b;Trojan.MulDrop.9985;Deleted.;
16co026b.exe;C:\APPS\DOC\SETUP\16\Notebook\16rheab\16co026b;Trojan.MulDrop.9985;Deleted.;
16in026b.exe;C:\APPS\DOC\SETUP\16\Notebook\16rheab\16in026b;Trojan.MulDrop.9985;Deleted.;
16po026b.exe;C:\APPS\DOC\SETUP\16\Notebook\16rheab\16po026b;Trojan.MulDrop.9985;Deleted.;
16pw026b.exe;C:\APPS\DOC\SETUP\16\Notebook\16rheab\16pw026b;Trojan.MulDrop.9985;Deleted.;
16sp026b.exe;C:\APPS\DOC\SETUP\16\Notebook\16rheab\16sp026b;Trojan.MulDrop.9985;Deleted.;
16tr026b.exe;C:\APPS\DOC\SETUP\16\Notebook\16rheab\16tr026b;Trojan.MulDrop.9985;Deleted.;
16rheaS.exe;C:\APPS\DOC\SETUP\16\Notebook\16rheaS;Trojan.MulDrop.9985;Deleted.;
16bi026c.exe;C:\APPS\DOC\SETUP\16\Notebook\16rheaS\16bi026c;Trojan.MulDrop.9985;Deleted.;
16co026c.exe;C:\APPS\DOC\SETUP\16\Notebook\16rheaS\16co026c;Trojan.MulDrop.9985;Deleted.;
16in026c.exe;C:\APPS\DOC\SETUP\16\Notebook\16rheaS\16in026c;Trojan.MulDrop.9985;Deleted.;
16po026c.exe;C:\APPS\DOC\SETUP\16\Notebook\16rheaS\16po026c;Trojan.MulDrop.9985;Deleted.;
16pw026c.exe;C:\APPS\DOC\SETUP\16\Notebook\16rheaS\16pw026c;Trojan.MulDrop.9985;Deleted.;
16sp026c.exe;C:\APPS\DOC\SETUP\16\Notebook\16rheaS\16sp026c;Trojan.MulDrop.9985;Deleted.;
16tr026c.exe;C:\APPS\DOC\SETUP\16\Notebook\16rheaS\16tr026c;Trojan.MulDrop.9985;Deleted.;
16SableX.exe;C:\APPS\DOC\SETUP\16\Notebook\16SableX;Trojan.MulDrop.9985;Deleted.;
16bi034a.exe;C:\APPS\DOC\SETUP\16\Notebook\16SableX\16bi034a;Trojan.MulDrop.9985;Deleted.;
16co034a.exe;C:\APPS\DOC\SETUP\16\Notebook\16SableX\16co034a;Trojan.MulDrop.9985;Deleted.;
16in034a.exe;C:\APPS\DOC\SETUP\16\Notebook\16SableX\16in034a;Trojan.MulDrop.9985;Deleted.;
16po034a.exe;C:\APPS\DOC\SETUP\16\Notebook\16SableX\16po034a;Trojan.MulDrop.9985;Deleted.;
16pw034a.exe;C:\APPS\DOC\SETUP\16\Notebook\16SableX\16pw034a;Trojan.MulDrop.9985;Deleted.;
16sp034a.exe;C:\APPS\DOC\SETUP\16\Notebook\16SableX\16sp034a;Trojan.MulDrop.9985;Deleted.;
16tr034a.exe;C:\APPS\DOC\SETUP\16\Notebook\16SableX\16tr034a;Trojan.MulDrop.9985;Deleted.;
16Scrpn.exe;C:\APPS\DOC\SETUP\16\Notebook\16Scrpn;Trojan.MulDrop.9985;Deleted.;
16bi036a.exe;C:\APPS\DOC\SETUP\16\Notebook\16Scrpn\16bi036a;Trojan.MulDrop.9985;Deleted.;
16co036a.exe;C:\APPS\DOC\SETUP\16\Notebook\16Scrpn\16co036a;Trojan.MulDrop.9985;Deleted.;
16in036a.exe;C:\APPS\DOC\SETUP\16\Notebook\16Scrpn\16in036a;Trojan.MulDrop.9985;Deleted.;
16po036a.exe;C:\APPS\DOC\SETUP\16\Notebook\16Scrpn\16po036a;Trojan.MulDrop.9985;Deleted.;
16pw036a.exe;C:\APPS\DOC\SETUP\16\Notebook\16Scrpn\16pw036a;Trojan.MulDrop.9985;Deleted.;
16sp036a.exe;C:\APPS\DOC\SETUP\16\Notebook\16Scrpn\16sp036a;Trojan.MulDrop.9985;Deleted.;
16tr036a.exe;C:\APPS\DOC\SETUP\16\Notebook\16Scrpn\16tr036a;Trojan.MulDrop.9985;Deleted.;
16T12ajax.exe;C:\APPS\DOC\SETUP\16\Notebook\16T12ajax;Trojan.MulDrop.9985;Deleted.;
16bi037a.exe;C:\APPS\DOC\SETUP\16\Notebook\16T12ajax\16bi037a;Trojan.MulDrop.9985;Deleted.;
16co037a.exe;C:\APPS\DOC\SETUP\16\Notebook\16T12ajax\16co037a;Trojan.MulDrop.9985;Deleted.;
16in037a.exe;C:\APPS\DOC\SETUP\16\Notebook\16T12ajax\16in037a;Trojan.MulDrop.9985;Deleted.;
16po037a.exe;C:\APPS\DOC\SETUP\16\Notebook\16T12ajax\16po037a;Trojan.MulDrop.9985;Deleted.;
16pw037a.exe;C:\APPS\DOC\SETUP\16\Notebook\16T12ajax\16pw037a;Trojan.MulDrop.9985;Deleted.;
16sp037a.exe;C:\APPS\DOC\SETUP\16\Notebook\16T12ajax\16sp037a;Trojan.MulDrop.9985;Deleted.;
16tr037a.exe;C:\APPS\DOC\SETUP\16\Notebook\16T12ajax\16tr037a;Trojan.MulDrop.9985;Deleted.;
16T19.exe;C:\APPS\DOC\SETUP\16\Notebook\16T19;Trojan.MulDrop.9985;Deleted.;
16bi033a.exe;C:\APPS\DOC\SETUP\16\Notebook\16T19\16bi033a;Trojan.MulDrop.9985;Deleted.;
16co033a.exe;C:\APPS\DOC\SETUP\16\Notebook\16T19\16co033a;Trojan.MulDrop.9985;Deleted.;
16in033a.exe;C:\APPS\DOC\SETUP\16\Notebook\16T19\16in033a;Trojan.MulDrop.9985;Deleted.;
16po033a.exe;C:\APPS\DOC\SETUP\16\Notebook\16T19\16po033a;Trojan.MulDrop.9985;Deleted.;
16pw033a.exe;C:\APPS\DOC\SETUP\16\Notebook\16T19\16pw033a;Trojan.MulDrop.9985;Deleted.;
16sp033a.exe;C:\APPS\DOC\SETUP\16\Notebook\16T19\16sp033a;Trojan.MulDrop.9985;Deleted.;
16tr033a.exe;C:\APPS\DOC\SETUP\16\Notebook\16T19\16tr033a;Trojan.MulDrop.9985;Deleted.;
STATIC.exe;C:\APPS\DOC\SETUP\STATIC;Trojan.MulDrop.9985;Deleted.;
Brand.exe;C:\APPS\DOC\SETUP\STATIC\Brand;Trojan.MulDrop.9985;Deleted.;
Header.exe;C:\APPS\DOC\SETUP\STATIC\Brand\Header;Trojan.MulDrop.9985;Deleted.;
PBLibrary.exe;C:\APPS\DOC\SETUP\STATIC\Brand\howto\PBLibrary;Trojan.MulDrop.9985;Deleted.;
PDA.exe;C:\APPS\DOC\SETUP\STATIC\Brand\howto\PDA;Trojan.MulDrop.9985;Deleted.;
Platform.exe;C:\APPS\DOC\SETUP\STATIC\Brand\howto\Platform;Trojan.MulDrop.9985;Deleted.;
Menu.exe;C:\APPS\DOC\SETUP\STATIC\Brand\Menu;Trojan.MulDrop.9985;Deleted.;
Common.exe;C:\APPS\DOC\SETUP\STATIC\Common;Trojan.MulDrop.9985;Deleted.;
ex009b.exe;C:\APPS\DOC\SETUP\STATIC\Common\acsry\ex009b;Trojan.MulDrop.9985;Deleted.;
ex020a.exe;C:\APPS\DOC\SETUP\STATIC\Common\acsry\ex020a;Trojan.MulDrop.9985;Deleted.;
ex022a.exe;C:\APPS\DOC\SETUP\STATIC\Common\acsry\ex022a;Trojan.MulDrop.9985;Deleted.;
ex023a.exe;C:\APPS\DOC\SETUP\STATIC\Common\acsry\ex023a;Trojan.MulDrop.9985;Deleted.;
ex024a.exe;C:\APPS\DOC\SETUP\STATIC\Common\acsry\ex024a;Trojan.MulDrop.9985;Deleted.;
ex025a.exe;C:\APPS\DOC\SETUP\STATIC\Common\acsry\ex025a;Trojan.MulDrop.9985;Deleted.;
ex027a.exe;C:\APPS\DOC\SETUP\STATIC\Common\acsry\ex027a;Trojan.MulDrop.9985;Deleted.;
ex028a.exe;C:\APPS\DOC\SETUP\STATIC\Common\acsry\ex028a;Trojan.MulDrop.9985;Deleted.;
ex029a.exe;C:\APPS\DOC\SETUP\STATIC\Common\acsry\ex029a;Trojan.MulDrop.9985;Deleted.;
ex030a.exe;C:\APPS\DOC\SETUP\STATIC\Common\acsry\ex030a;Trojan.MulDrop.9985;Deleted.;
ex031a.exe;C:\APPS\DOC\SETUP\STATIC\Common\acsry\ex031a;Trojan.MulDrop.9985;Deleted.;
media.exe;C:\APPS\DOC\SETUP\STATIC\Common\acsry\media;Trojan.MulDrop.9985;Deleted.;
kb.exe;C:\APPS\DOC\SETUP\STATIC\Common\Controls\kb000a\kb;Trojan.MulDrop.9985;Deleted.;
kc.exe;C:\APPS\DOC\SETUP\STATIC\Common\Controls\kb000a\kc;Trojan.MulDrop.9985;Deleted.;
kk.exe;C:\APPS\DOC\SETUP\STATIC\Common\Controls\kb000a\kk;Trojan.MulDrop.9985;Deleted.;
countries.exe;C:\APPS\DOC\SETUP\STATIC\Common\countries;Trojan.MulDrop.9985;Deleted.;
dr000a.exe;C:\APPS\DOC\SETUP\STATIC\Common\Drives\dr000a;Trojan.MulDrop.9985;Deleted.;
FD001A.exe;C:\APPS\DOC\SETUP\STATIC\Common\Drives\FD001A;Trojan.MulDrop.9985;Deleted.;
HD001A.exe;C:\APPS\DOC\SETUP\STATIC\Common\Drives\HD001A;Trojan.MulDrop.9985;Deleted.;
Acrobat.exe;C:\APPS\DOC\SETUP\STATIC\Common\Howto\Acrobat;Trojan.MulDrop.9985;Deleted.;
Boxtopper.exe;C:\APPS\DOC\SETUP\STATIC\Common\Howto\Boxtopper;Trojan.MulDrop.9985;Deleted.;
Cards.exe;C:\APPS\DOC\SETUP\STATIC\Common\Howto\Cards;Trojan.MulDrop.9985;Deleted.;
CDtransfer.exe;C:\APPS\DOC\SETUP\STATIC\Common\Howto\CDtransfer;Trojan.MulDrop.9985;Deleted.;
Emoticons.exe;C:\APPS\DOC\SETUP\STATIC\Common\Howto\Emoticons;Trojan.MulDrop.9985;Deleted.;
Icons.exe;C:\APPS\DOC\SETUP\STATIC\Common\Howto\Icons;Trojan.MulDrop.9985;Deleted.;
IE.exe;C:\APPS\DOC\SETUP\STATIC\Common\Howto\IE;Trojan.MulDrop.9985;Deleted.;
Internet.exe;C:\APPS\DOC\SETUP\STATIC\Common\Howto\Internet;Trojan.MulDrop.9985;Deleted.;
Outlook.exe;C:\APPS\DOC\SETUP\STATIC\Common\Howto\Outlook;Trojan.MulDrop.9985;Deleted.;
Ports.exe;C:\APPS\DOC\SETUP\STATIC\Common\Howto\Ports;Trojan.MulDrop.9985;Deleted.;
PowerCinema.exe;C:\APPS\DOC\SETUP\STATIC\Common\Howto\PowerCinema;Trojan.MulDrop.9985;Deleted.;
Printing.exe;C:\APPS\DOC\SETUP\STATIC\Common\Howto\Printing;Trojan.MulDrop.9985;Deleted.;
RealPlayer.exe;C:\APPS\DOC\SETUP\STATIC\Common\Howto\RealPlayer;Trojan.MulDrop.9985;Deleted.;
RecordNow.exe;C:\APPS\DOC\SETUP\STATIC\Common\Howto\RecordNow;Trojan.MulDrop.9985;Deleted.;
SRestore.exe;C:\APPS\DOC\SETUP\STATIC\Common\Howto\SRestore;Trojan.MulDrop.9985;Deleted.;
Windows.exe;C:\APPS\DOC\SETUP\STATIC\Common\Howto\Windows;Trojan.MulDrop.9985;Deleted.;
mn000a.exe;C:\APPS\DOC\SETUP\STATIC\Common\Monitor\mn000a;Trojan.MulDrop.9985;Deleted.;
mn040a.exe;C:\APPS\DOC\SETUP\STATIC\Common\Monitor\mn040a;Trojan.MulDrop.9985;Deleted.;
mn041a.exe;C:\APPS\DOC\SETUP\STATIC\Common\Monitor\mn041a;Trojan.MulDrop.9985;Deleted.;
mn042a.exe;C:\APPS\DOC\SETUP\STATIC\Common\Monitor\mn042a;Trojan.MulDrop.9985;Deleted.;
mn047a.exe;C:\APPS\DOC\SETUP\STATIC\Common\Monitor\mn047a;Trojan.MulDrop.9985;Deleted.;
mn048a.exe;C:\APPS\DOC\SETUP\STATIC\Common\Monitor\mn048a;Trojan.MulDrop.9985;Deleted.;
mn049a.exe;C:\APPS\DOC\SETUP\STATIC\Common\Monitor\mn049a;Trojan.MulDrop.9985;Deleted.;
mn050a.exe;C:\APPS\DOC\SETUP\STATIC\Common\Monitor\mn050a;Trojan.MulDrop.9985;Deleted.;
mn051a.exe;C:\APPS\DOC\SETUP\STATIC\Common\Monitor\mn051a;Trojan.MulDrop.9985;Deleted.;
po000a.exe;C:\APPS\DOC\SETUP\STATIC\Common\Ports\po000a;Trojan.MulDrop.9985;Deleted.;
sk001a.exe;C:\APPS\DOC\SETUP\STATIC\Common\speakers\sk001a;Trojan.MulDrop.9985;Deleted.;
sk002a.exe;C:\APPS\DOC\SETUP\STATIC\Common\speakers\sk002a;Trojan.MulDrop.9985;Deleted.;
sk002b.exe;C:\APPS\DOC\SETUP\STATIC\Common\speakers\sk002b;Trojan.MulDrop.9985;Deleted.;
sk003a.exe;C:\APPS\DOC\SETUP\STATIC\Common\speakers\sk003a;Trojan.MulDrop.9985;Deleted.;
sk004a.exe;C:\APPS\DOC\SETUP\STATIC\Common\speakers\sk004a;Trojan.MulDrop.9985;Deleted.;
sk005a.exe;C:\APPS\DOC\SETUP\STATIC\Common\speakers\sk005a;Trojan.MulDrop.9985;Deleted.;
sk006a.exe;C:\APPS\DOC\SETUP\STATIC\Common\speakers\sk006a;Trojan.MulDrop.9985;Deleted.;
ug000a.exe;C:\APPS\DOC\SETUP\STATIC\Common\Upgrades\ug000a;Trojan.MulDrop.9985;Deleted.;
ch000a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Chassis\ch000a;Trojan.MulDrop.9985;Deleted.;
ch000c.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Chassis\ch000c;Trojan.MulDrop.9985;Deleted.;
ch024a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Chassis\ch024a;Trojan.MulDrop.9985;Deleted.;
ch025a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Chassis\ch025a;Trojan.MulDrop.9985;Deleted.;
ch026a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Chassis\ch026a;Trojan.MulDrop.9985;Deleted.;
ch026b.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Chassis\ch026b;Trojan.MulDrop.9985;Deleted.;
ch027a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Chassis\ch027a;Trojan.MulDrop.9985;Deleted.;
ch028a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Chassis\ch028a;Trojan.MulDrop.9985;Deleted.;
ch029a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Chassis\ch029a;Trojan.MulDrop.9985;Deleted.;
ch029b.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Chassis\ch029b;Trojan.MulDrop.9985;Deleted.;
ch029c.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Chassis\ch029c;Trojan.MulDrop.9985;Deleted.;
ch029d.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Chassis\ch029d;Trojan.MulDrop.9985;Deleted.;
ch030a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Chassis\ch030a;Trojan.MulDrop.9985;Deleted.;
ch031a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Chassis\ch031a;Trojan.MulDrop.9985;Deleted.;
ch031b.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Chassis\ch031b;Trojan.MulDrop.9985;Deleted.;
ch032a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Chassis\ch032a;Trojan.MulDrop.9985;Deleted.;
ch033a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Chassis\ch033a;Trojan.MulDrop.9985;Deleted.;
fm017a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\FaxModem\fm017a;Trojan.MulDrop.9985;Deleted.;
kb.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Keyboard\kb000a\kb;Trojan.MulDrop.9985;Deleted.;
kc.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Keyboard\kb000a\kc;Trojan.MulDrop.9985;Deleted.;
kk.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Keyboard\kb000a\kk;Trojan.MulDrop.9985;Deleted.;
kr.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Keyboard\kb000a\kr;Trojan.MulDrop.9985;Deleted.;
ka.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Keyboard\kb009a\ka;Trojan.MulDrop.9985;Deleted.;
kb.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Keyboard\kb009a\kb;Trojan.MulDrop.9985;Deleted.;
kc.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Keyboard\kb009a\kc;Trojan.MulDrop.9985;Deleted.;
kk.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Keyboard\kb009a\kk;Trojan.MulDrop.9985;Deleted.;
kr.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Keyboard\kb009a\kr;Trojan.MulDrop.9985;Deleted.;
kb.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Keyboard\kb010a\kb;Trojan.MulDrop.9985;Deleted.;
kc.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Keyboard\kb010a\kc;Trojan.MulDrop.9985;Deleted.;
kk.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Keyboard\kb010a\kk;Trojan.MulDrop.9985;Deleted.;
kb.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Keyboard\kb011a\kb;Trojan.MulDrop.9985;Deleted.;
kc.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Keyboard\kb011a\kc;Trojan.MulDrop.9985;Deleted.;
kk.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Keyboard\kb011a\kk;Trojan.MulDrop.9985;Deleted.;
kb013a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Keyboard\kb013a;Trojan.MulDrop.9985;Deleted.;
kb.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Keyboard\kb013a\kb;Trojan.MulDrop.9985;Deleted.;
kc.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Keyboard\kb013a\kc;Trojan.MulDrop.9985;Deleted.;
kk.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Keyboard\kb013a\kk;Trojan.MulDrop.9985;Deleted.;
kb.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Keyboard\kb014a\kb;Trojan.MulDrop.9985;Deleted.;
kc.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Keyboard\kb014a\kc;Trojan.MulDrop.9985;Deleted.;
kk.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Keyboard\kb014a\kk;Trojan.MulDrop.9985;Deleted.;
kb014b.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Keyboard\kb014b;Trojan.MulDrop.9985;Deleted.;
kb015a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Keyboard\kb015a;Trojan.MulDrop.9985;Deleted.;
kf.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Keyboard\kb015a\kf;Trojan.MulDrop.9985;Deleted.;
kk.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Keyboard\kb015a\kk;Trojan.MulDrop.9985;Deleted.;
kb016a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Keyboard\kb016a;Trojan.MulDrop.9985;Deleted.;
kf.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Keyboard\kb016a\kf;Trojan.MulDrop.9985;Deleted.;
kk.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Keyboard\kb016a\kk;Trojan.MulDrop.9985;Deleted.;
kb.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Keyboard\kb017a\kb;Trojan.MulDrop.9985;Deleted.;
kc.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Keyboard\kb017a\kc;Trojan.MulDrop.9985;Deleted.;
kk.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Keyboard\kb017a\kk;Trojan.MulDrop.9985;Deleted.;
mb000a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Mobo\mb000a;Trojan.MulDrop.9985;Deleted.;
mb045a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Mobo\mb045a;Trojan.MulDrop.9985;Deleted.;
mb053a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Mobo\mb053a;Trojan.MulDrop.9985;Deleted.;
mb055a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Mobo\mb055a;Trojan.MulDrop.9985;Deleted.;
mb056a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Mobo\mb056a;Trojan.MulDrop.9985;Deleted.;
mb057a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Mobo\mb057a;Trojan.MulDrop.9985;Deleted.;
mb059a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Mobo\mb059a;Trojan.MulDrop.9985;Deleted.;
mb060a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Mobo\mb060a;Trojan.MulDrop.9985;Deleted.;
mb061a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Mobo\mb061a;Trojan.MulDrop.9985;Deleted.;
mb062a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Mobo\mb062a;Trojan.MulDrop.9985;Deleted.;
mb063a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Mobo\mb063a;Trojan.MulDrop.9985;Deleted.;
mb064a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Mobo\mb064a;Trojan.MulDrop.9985;Deleted.;
mb065a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Mobo\mb065a;Trojan.MulDrop.9985;Deleted.;
mb066a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Mobo\mb066a;Trojan.MulDrop.9985;Deleted.;
mb067a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Mobo\mb067a;Trojan.MulDrop.9985;Deleted.;
rd007a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Readers\rd007a;Trojan.MulDrop.9985;Deleted.;
rd008a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Readers\rd008a;Trojan.MulDrop.9985;Deleted.;
rd009a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Readers\rd009a;Trojan.MulDrop.9985;Deleted.;
rd010a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Readers\rd010a;Trojan.MulDrop.9985;Deleted.;
rd011a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Readers\rd011a;Trojan.MulDrop.9985;Deleted.;
Storage.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Storage;Trojan.MulDrop.9985;Deleted.;
dr000a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Storage\dr000a;Trojan.MulDrop.9985;Deleted.;
dr033a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Storage\dr033a;Trojan.MulDrop.9985;Deleted.;
dr040a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Storage\dr040a;Trojan.MulDrop.9985;Deleted.;
dr044a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Storage\dr044a;Trojan.MulDrop.9985;Deleted.;
dr045a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Storage\dr045a;Trojan.MulDrop.9985;Deleted.;
dr046a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Storage\dr046a;Trojan.MulDrop.9985;Deleted.;
dr047a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Storage\dr047a;Trojan.MulDrop.9985;Deleted.;
dr048a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Storage\dr048a;Trojan.MulDrop.9985;Deleted.;
dr049a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Storage\dr049a;Trojan.MulDrop.9985;Deleted.;
dr049b.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Storage\dr049b;Trojan.MulDrop.9985;Deleted.;
dr050a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Storage\dr050a;Trojan.MulDrop.9985;Deleted.;
dr051a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Storage\dr051a;Trojan.MulDrop.9985;Deleted.;
dr052a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Storage\dr052a;Trojan.MulDrop.9985;Deleted.;
dr053a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Storage\dr053a;Trojan.MulDrop.9985;Deleted.;
dr054a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Storage\dr054a;Trojan.MulDrop.9985;Deleted.;
dr055a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Storage\dr055a;Trojan.MulDrop.9985;Deleted.;
tv005b.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\TVtuner\tv005b;Trojan.MulDrop.9985;Deleted.;
tv006a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\TVtuner\tv006a;Trojan.MulDrop.9985;Deleted.;
tv009a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\TVtuner\tv009a;Trojan.MulDrop.9985;Deleted.;
tv010a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\TVtuner\tv010a;Trojan.MulDrop.9985;Deleted.;
tv011a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\TVtuner\tv011a;Trojan.MulDrop.9985;Deleted.;
tv012a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\TVtuner\tv012a;Trojan.MulDrop.9985;Deleted.;
tv013a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\TVtuner\tv013a;Trojan.MulDrop.9985;Deleted.;
vd000a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Video\vd000a;Trojan.MulDrop.9985;Deleted.;
vd038a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Video\vd038a;Trojan.MulDrop.9985;Deleted.;
vd043a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Video\vd043a;Trojan.MulDrop.9985;Deleted.;
vd043b.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Video\vd043b;Trojan.MulDrop.9985;Deleted.;
vd044a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Video\vd044a;Trojan.MulDrop.9985;Deleted.;
vd045a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Video\vd045a;Trojan.MulDrop.9985;Deleted.;
vd045b.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Video\vd045b;Trojan.MulDrop.9985;Deleted.;
vd046a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Video\vd046a;Trojan.MulDrop.9985;Deleted.;
vd047a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Video\vd047a;Trojan.MulDrop.9985;Deleted.;
vd047b.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Video\vd047b;Trojan.MulDrop.9985;Deleted.;
vd047c.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Video\vd047c;Trojan.MulDrop.9985;Deleted.;
vd047d.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Video\vd047d;Trojan.MulDrop.9985;Deleted.;
vd048a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Video\vd048a;Trojan.MulDrop.9985;Deleted.;
vd048b.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Video\vd048b;Trojan.MulDrop.9985;Deleted.;
vd049a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Video\vd049a;Trojan.MulDrop.9985;Deleted.;
vd049b.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Video\vd049b;Trojan.MulDrop.9985;Deleted.;
vd049c.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Video\vd049c;Trojan.MulDrop.9985;Deleted.;
vd049d.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Video\vd049d;Trojan.MulDrop.9985;Deleted.;
vd050a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Video\vd050a;Trojan.MulDrop.9985;Deleted.;
vd050b.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Video\vd050b;Trojan.MulDrop.9985;Deleted.;
vd050c.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Video\vd050c;Trojan.MulDrop.9985;Deleted.;
vd050d.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Video\vd050d;Trojan.MulDrop.9985;Deleted.;
vd050e.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Video\vd050e;Trojan.MulDrop.9985;Deleted.;
vd051a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Video\vd051a;Trojan.MulDrop.9985;Deleted.;
vd052a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Video\vd052a;Trojan.MulDrop.9985;Deleted.;
vd052b.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Video\vd052b;Trojan.MulDrop.9985;Deleted.;
vd052c.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Video\vd052c;Trojan.MulDrop.9985;Deleted.;
vd052d.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Video\vd052d;Trojan.MulDrop.9985;Deleted.;
vd053a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Video\vd053a;Trojan.MulDrop.9985;Deleted.;
vd054a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Video\vd054a;Trojan.MulDrop.9985;Deleted.;
vd055a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Video\vd055a;Trojan.MulDrop.9985;Deleted.;
vd055b.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Video\vd055b;Trojan.MulDrop.9985;Deleted.;
vd055c.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Video\vd055c;Trojan.MulDrop.9985;Deleted.;
vd055d.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Video\vd055d;Trojan.MulDrop.9985;Deleted.;
vd056a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Video\vd056a;Trojan.MulDrop.9985;Deleted.;
vd057a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Video\vd057a;Trojan.MulDrop.9985;Deleted.;
vd057b.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Video\vd057b;Trojan.MulDrop.9985;Deleted.;
vd057c.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Video\vd057c;Trojan.MulDrop.9985;Deleted.;
vd058a.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Video\vd058a;Trojan.MulDrop.9985;Deleted.;
vd058b.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Video\vd058b;Trojan.MulDrop.9985;Deleted.;
vd058c.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Video\vd058c;Trojan.MulDrop.9985;Deleted.;
vd058d.exe;C:\APPS\DOC\SETUP\STATIC\Hardware\Video\vd058d;Trojan.MulDrop.9985;Deleted.;
co038a.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\ArgoX\co038a;Trojan.MulDrop.9985;Deleted.;
in038a.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\ArgoX\in038a;Trojan.MulDrop.9985;Deleted.;
po038a.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\ArgoX\po038a;Trojan.MulDrop.9985;Deleted.;
pw038a.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\ArgoX\pw038a;Trojan.MulDrop.9985;Deleted.;
tr038a.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\ArgoX\tr038a;Trojan.MulDrop.9985;Deleted.;
co032.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\Atlas\co032;Trojan.MulDrop.9985;Deleted.;
in032.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\Atlas\in032;Trojan.MulDrop.9985;Deleted.;
po032.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\Atlas\po032;Trojan.MulDrop.9985;Deleted.;
pw032.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\Atlas\pw032;Trojan.MulDrop.9985;Deleted.;
tr032.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\Atlas\tr032;Trojan.MulDrop.9985;Deleted.;
co031.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\Drgn\co031;Trojan.MulDrop.9985;Deleted.;
in031.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\Drgn\in031;Trojan.MulDrop.9985;Deleted.;
po031.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\Drgn\po031;Trojan.MulDrop.9985;Deleted.;
pw031.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\Drgn\pw031;Trojan.MulDrop.9985;Deleted.;
tr031.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\Drgn\tr031;Trojan.MulDrop.9985;Deleted.;
co035.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\Drgn2\co035;Trojan.MulDrop.9985;Deleted.;
in035.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\Drgn2\in035;Trojan.MulDrop.9985;Deleted.;
po035.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\Drgn2\po035;Trojan.MulDrop.9985;Deleted.;
pw035.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\Drgn2\pw035;Trojan.MulDrop.9985;Deleted.;
tr035.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\Drgn2\tr035;Trojan.MulDrop.9985;Deleted.;
co023.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\K2\co023;Trojan.MulDrop.9985;Deleted.;
in023.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\K2\in023;Trojan.MulDrop.9985;Deleted.;
po023.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\K2\po023;Trojan.MulDrop.9985;Deleted.;
pw023.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\K2\pw023;Trojan.MulDrop.9985;Deleted.;
tr023.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\K2\tr023;Trojan.MulDrop.9985;Deleted.;
co.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\NBstatic\co;Trojan.MulDrop.9985;Deleted.;
dd.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\NBstatic\dd;Trojan.MulDrop.9985;Deleted.;
in.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\NBstatic\in;Trojan.MulDrop.9985;Deleted.;
Legal.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\NBstatic\Legal;Trojan.MulDrop.9985;Deleted.;
po.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\NBstatic\po;Trojan.MulDrop.9985;Deleted.;
pw.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\NBstatic\pw;Trojan.MulDrop.9985;Deleted.;
po026.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\RheaA\po026;Trojan.MulDrop.9985;Deleted.;
tr026.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\RheaA\tr026;Trojan.MulDrop.9985;Deleted.;
co026.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\rheaB\co026;Trojan.MulDrop.9985;Deleted.;
in026.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\rheaB\in026;Trojan.MulDrop.9985;Deleted.;
po026.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\rheaB\po026;Trojan.MulDrop.9985;Deleted.;
pw026.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\rheaB\pw026;Trojan.MulDrop.9985;Deleted.;
tr026.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\rheaB\tr026;Trojan.MulDrop.9985;Deleted.;
co026.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\RheaS\co026;Trojan.MulDrop.9985;Deleted.;
in026.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\RheaS\in026;Trojan.MulDrop.9985;Deleted.;
po026.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\RheaS\po026;Trojan.MulDrop.9985;Deleted.;
pw026.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\RheaS\pw026;Trojan.MulDrop.9985;Deleted.;
tr026.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\RheaS\tr026;Trojan.MulDrop.9985;Deleted.;
co034.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\SableX\co034;Trojan.MulDrop.9985;Deleted.;
in034.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\SableX\in034;Trojan.MulDrop.9985;Deleted.;
po034.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\SableX\po034;Trojan.MulDrop.9985;Deleted.;
pw034.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\SableX\pw034;Trojan.MulDrop.9985;Deleted.;
tr034.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\SableX\tr034;Trojan.MulDrop.9985;Deleted.;
co036.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\Scrpn\co036;Trojan.MulDrop.9985;Deleted.;
in036.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\Scrpn\in036;Trojan.MulDrop.9985;Deleted.;
po036.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\Scrpn\po036;Trojan.MulDrop.9985;Deleted.;
pw036.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\Scrpn\pw036;Trojan.MulDrop.9985;Deleted.;
tr036.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\Scrpn\tr036;Trojan.MulDrop.9985;Deleted.;
T12ajax.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\T12ajax;Trojan.MulDrop.9985;Deleted.;
co037.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\T12ajax\co037;Trojan.MulDrop.9985;Deleted.;
in037.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\T12ajax\in037;Trojan.MulDrop.9985;Deleted.;
po037.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\T12ajax\po037;Trojan.MulDrop.9985;Deleted.;
pw037.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\T12ajax\pw037;Trojan.MulDrop.9985;Deleted.;
tr037.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\T12ajax\tr037;Trojan.MulDrop.9985;Deleted.;
T19.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\T19;Trojan.MulDrop.9985;Deleted.;
co033.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\T19\co033;Trojan.MulDrop.9985;Deleted.;
in033.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\T19\in033;Trojan.MulDrop.9985;Deleted.;
po033.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\T19\po033;Trojan.MulDrop.9985;Deleted.;
pw033.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\T19\pw033;Trojan.MulDrop.9985;Deleted.;
tr033.exe;C:\APPS\DOC\SETUP\STATIC\Notebook\T19\tr033;Trojan.MulDrop.9985;Deleted.;
Static.exe;C:\APPS\DOC\Static;Trojan.MulDrop.9985;Deleted.;
Brand.exe;C:\APPS\DOC\Static\Brand;Trojan.MulDrop.9985;Deleted.;
Header.exe;C:\APPS\DOC\Static\Brand\Header;Trojan.MulDrop.9985;Deleted.;
PBLibrary.exe;C:\APPS\DOC\Static\Brand\howto\PBLibrary;Trojan.MulDrop.9985;Deleted.;
PDA.exe;C:\APPS\DOC\Static\Brand\howto\PDA;Trojan.MulDrop.9985;Deleted.;
Platform.exe;C:\APPS\DOC\Static\Brand\howto\Platform;Trojan.MulDrop.9985;Deleted.;
Menu.exe;C:\APPS\DOC\Static\Brand\Menu;Trojan.MulDrop.9985;Deleted.;
Common.exe;C:\APPS\DOC\Static\Common;Trojan.MulDrop.9985;Deleted.;
ex009b.exe;C:\APPS\DOC\Static\Common\acsry\ex009b;Trojan.MulDrop.9985;Deleted.;
ex020a.exe;C:\APPS\DOC\Static\Common\acsry\ex020a;Trojan.MulDrop.9985;Deleted.;
ex022a.exe;C:\APPS\DOC\Static\Common\acsry\ex022a;Trojan.MulDrop.9985;Deleted.;
ex023a.exe;C:\APPS\DOC\Static\Common\acsry\ex023a;Trojan.MulDrop.9985;Deleted.;
ex024a.exe;C:\APPS\DOC\Static\Common\acsry\ex024a;Trojan.MulDrop.9985;Deleted.;
ex025a.exe;C:\APPS\DOC\Static\Common\acsry\ex025a;Trojan.MulDrop.9985;Deleted.;
ex027a.exe;C:\APPS\DOC\Static\Common\acsry\ex027a;Trojan.MulDrop.9985;Deleted.;
ex028a.exe;C:\APPS\DOC\Static\Common\acsry\ex028a;Trojan.MulDrop.9985;Deleted.;
ex029a.exe;C:\APPS\DOC\Static\Common\acsry\ex029a;Trojan.MulDrop.9985;Deleted.;
ex030a.exe;C:\APPS\DOC\Static\Common\acsry\ex030a;Trojan.MulDrop.9985;Deleted.;
ex031a.exe;C:\APPS\DOC\Static\Common\acsry\ex031a;Trojan.MulDrop.9985;Deleted.;
media.exe;C:\APPS\DOC\Static\Common\acsry\media;Trojan.MulDrop.9985;Deleted.;
kb.exe;C:\APPS\DOC\Static\Common\Controls\kb000a\kb;Trojan.MulDrop.9985;Deleted.;
kc.exe;C:\APPS\DOC\Static\Common\Controls\kb000a\kc;Trojan.MulDrop.9985;Deleted.;
kk.exe;C:\APPS\DOC\Static\Common\Controls\kb000a\kk;Trojan.MulDrop.9985;Deleted.;
countries.exe;C:\APPS\DOC\Static\Common\countries;Trojan.MulDrop.9985;Deleted.;
dr000a.exe;C:\APPS\DOC\Static\Common\Drives\dr000a;Trojan.MulDrop.9985;Deleted.;
FD001A.exe;C:\APPS\DOC\Static\Common\Drives\FD001A;Trojan.MulDrop.9985;Deleted.;
HD001A.exe;C:\APPS\DOC\Static\Common\Drives\HD001A;Trojan.MulDrop.9985;Deleted.;
Acrobat.exe;C:\APPS\DOC\Static\Common\Howto\Acrobat;Trojan.MulDrop.9985;Deleted.;
Boxtopper.exe;C:\APPS\DOC\Static\Common\Howto\Boxtopper;Trojan.MulDrop.9985;Deleted.;
Cards.exe;C:\APPS\DOC\Static\Common\Howto\Cards;Trojan.MulDrop.9985;Deleted.;
CDtransfer.exe;C:\APPS\DOC\Static\Common\Howto\CDtransfer;Trojan.MulDrop.9985;Deleted.;
Emoticons.exe;C:\APPS\DOC\Static\Common\Howto\Emoticons;Trojan.MulDrop.9985;Deleted.;
Icons.exe;C:\APPS\DOC\Static\Common\Howto\Icons;Trojan.MulDrop.9985;Deleted.;
IE.exe;C:\APPS\DOC\Static\Common\Howto\IE;Trojan.MulDrop.9985;Deleted.;
Internet.exe;C:\APPS\DOC\Static\Common\Howto\Internet;Trojan.MulDrop.9985;Deleted.;
Outlook.exe;C:\APPS\DOC\Static\Common\Howto\Outlook;Trojan.MulDrop.9985;Deleted.;
Ports.exe;C:\APPS\DOC\Static\Common\Howto\Ports;Trojan.MulDrop.9985;Deleted.;
PowerCinema.exe;C:\APPS\DOC\Static\Common\Howto\PowerCinema;Trojan.MulDrop.9985;Deleted.;
Printing.exe;C:\APPS\DOC\Static\Common\Howto\Printing;Trojan.MulDrop.9985;Deleted.;
RealPlayer.exe;C:\APPS\DOC\Static\Common\Howto\RealPlayer;Trojan.MulDrop.9985;Deleted.;
RecordNow.exe;C:\APPS\DOC\Static\Common\Howto\RecordNow;Trojan.MulDrop.9985;Deleted.;
SRestore.exe;C:\APPS\DOC\Static\Common\Howto\SRestore;Trojan.MulDrop.9985;Deleted.;
Windows.exe;C:\APPS\DOC\Static\Common\Howto\Windows;Trojan.MulDrop.9985;Deleted.;
mn000a.exe;C:\APPS\DOC\Static\Common\Monitor\mn000a;Trojan.MulDrop.9985;Deleted.;
mn040a.exe;C:\APPS\DOC\Static\Common\Monitor\mn040a;Trojan.MulDrop.9985;Deleted.;
mn041a.exe;C:\APPS\DOC\Static\Common\Monitor\mn041a;Trojan.MulDrop.9985;Deleted.;
mn042a.exe;C:\APPS\DOC\Static\Common\Monitor\mn042a;Trojan.MulDrop.9985;Deleted.;
mn047a.exe;C:\APPS\DOC\Static\Common\Monitor\mn047a;Trojan.MulDrop.9985;Deleted.;
mn048a.exe;C:\APPS\DOC\Static\Common\Monitor\mn048a;Trojan.MulDrop.9985;Deleted.;
mn049a.exe;C:\APPS\DOC\Static\Common\Monitor\mn049a;Trojan.MulDrop.9985;Deleted.;
mn050a.exe;C:\APPS\DOC\Static\Common\Monitor\mn050a;Trojan.MulDrop.9985;Deleted.;
mn051a.exe;C:\APPS\DOC\Static\Common\Monitor\mn051a;Trojan.MulDrop.9985;Deleted.;
po000a.exe;C:\APPS\DOC\Static\Common\Ports\po000a;Trojan.MulDrop.9985;Deleted.;
sk001a.exe;C:\APPS\DOC\Static\Common\speakers\sk001a;Trojan.MulDrop.9985;Deleted.;
sk002a.exe;C:\APPS\DOC\Static\Common\speakers\sk002a;Trojan.MulDrop.9985;Deleted.;
sk002b.exe;C:\APPS\DOC\Static\Common\speakers\sk002b;Trojan.MulDrop.9985;Deleted.;
sk003a.exe;C:\APPS\DOC\Static\Common\speakers\sk003a;Trojan.MulDrop.9985;Deleted.;
sk004a.exe;C:\APPS\DOC\Static\Common\speakers\sk004a;Trojan.MulDrop.9985;Deleted.;
sk005a.exe;C:\APPS\DOC\Static\Common\speakers\sk005a;Trojan.MulDrop.9985;Deleted.;
sk006a.exe;C:\APPS\DOC\Static\Common\speakers\sk006a;Trojan.MulDrop.9985;Deleted.;
ug000a.exe;C:\APPS\DOC\Static\Common\Upgrades\ug000a;Trojan.MulDrop.9985;Deleted.;
ch000a.exe;C:\APPS\DOC\Static\Hardware\Chassis\ch000a;Trojan.MulDrop.9985;Deleted.;
ch000c.exe;C:\APPS\DOC\Static\Hardware\Chassis\ch000c;Trojan.MulDrop.9985;Deleted.;
ch024a.exe;C:\APPS\DOC\Static\Hardware\Chassis\ch024a;Trojan.MulDrop.9985;Deleted.;
ch025a.exe;C:\APPS\DOC\Static\Hardware\Chassis\ch025a;Trojan.MulDrop.9985;Deleted.;
ch026a.exe;C:\APPS\DOC\Static\Hardware\Chassis\ch026a;Trojan.MulDrop.9985;Deleted.;
ch026b.exe;C:\APPS\DOC\Static\Hardware\Chassis\ch026b;Trojan.MulDrop.9985;Deleted.;
ch027a.exe;C:\APPS\DOC\Static\Hardware\Chassis\ch027a;Trojan.MulDrop.9985;Deleted.;
ch028a.exe;C:\APPS\DOC\Static\Hardware\Chassis\ch028a;Trojan.MulDrop.9985;Deleted.;
ch029a.exe;C:\APPS\DOC\Static\Hardware\Chassis\ch029a;Trojan.MulDrop.9985;Deleted.;
ch029b.exe;C:\APPS\DOC\Static\Hardware\Chassis\ch029b;Trojan.MulDrop.9985;Deleted.;
ch029c.exe;C:\APPS\DOC\Static\Hardware\Chassis\ch029c;Trojan.MulDrop.9985;Deleted.;
ch029d.exe;C:\APPS\DOC\Static\Hardware\Chassis\ch029d;Trojan.MulDrop.9985;Deleted.;
ch030a.exe;C:\APPS\DOC\Static\Hardware\Chassis\ch030a;Trojan.MulDrop.9985;Deleted.;
ch031a.exe;C:\APPS\DOC\Static\Hardware\Chassis\ch031a;Trojan.MulDrop.9985;Deleted.;
ch031b.exe;C:\APPS\DOC\Static\Hardware\Chassis\ch031b;Trojan.MulDrop.9985;Deleted.;
ch032a.exe;C:\APPS\DOC\Static\Hardware\Chassis\ch032a;Trojan.MulDrop.9985;Deleted.;
ch033a.exe;C:\APPS\DOC\Static\Hardware\Chassis\ch033a;Trojan.MulDrop.9985;Deleted.;
fm017a.exe;C:\APPS\DOC\Static\Hardware\FaxModem\fm017a;Trojan.MulDrop.9985;Deleted.;
kb.exe;C:\APPS\DOC\Static\Hardware\Keyboard\kb000a\kb;Trojan.MulDrop.9985;Deleted.;
kc.exe;C:\APPS\DOC\Static\Hardware\Keyboard\kb000a\kc;Trojan.MulDrop.9985;Deleted.;
kk.exe;C:\APPS\DOC\Static\Hardware\Keyboard\kb000a\kk;Trojan.MulDrop.9985;Deleted.;
kr.exe;C:\APPS\DOC\Static\Hardware\Keyboard\kb000a\kr;Trojan.MulDrop.9985;Deleted.;
ka.exe;C:\APPS\DOC\Static\Hardware\Keyboard\kb009a\ka;Trojan.MulDrop.9985;Deleted.;
kb.exe;C:\APPS\DOC\Static\Hardware\Keyboard\kb009a\kb;Trojan.MulDrop.9985;Deleted.;
kc.exe;C:\APPS\DOC\Static\Hardware\Keyboard\kb009a\kc;Trojan.MulDrop.9985;Deleted.;
kk.exe;C:\APPS\DOC\Static\Hardware\Keyboard\kb009a\kk;Trojan.MulDrop.9985;Deleted.;
kr.exe;C:\APPS\DOC\Static\Hardware\Keyboard\kb009a\kr;Trojan.MulDrop.9985;Deleted.;
kb.exe;C:\APPS\DOC\Static\Hardware\Keyboard\kb010a\kb;Trojan.MulDrop.9985;Deleted.;
kc.exe;C:\APPS\DOC\Static\Hardware\Keyboard\kb010a\kc;Trojan.MulDrop.9985;Deleted.;
kk.exe;C:\APPS\DOC\Static\Hardware\Keyboard\kb010a\kk;Trojan.MulDrop.9985;Deleted.;
kb.exe;C:\APPS\DOC\Static\Hardware\Keyboard\kb011a\kb;Trojan.MulDrop.9985;Deleted.;
kc.exe;C:\APPS\DOC\Static\Hardware\Keyboard\kb011a\kc;Trojan.MulDrop.9985;Deleted.;
kk.exe;C:\APPS\DOC\Static\Hardware\Keyboard\kb011a\kk;Trojan.MulDrop.9985;Deleted.;
kb013a.exe;C:\APPS\DOC\Static\Hardware\Keyboard\kb013a;Trojan.MulDrop.9985;Deleted.;
kb.exe;C:\APPS\DOC\Static\Hardware\Keyboard\kb013a\kb;Trojan.MulDrop.9985;Deleted.;
kc.exe;C:\APPS\DOC\Static\Hardware\Keyboard\kb013a\kc;Trojan.MulDrop.9985;Deleted.;
kk.exe;C:\APPS\DOC\Static\Hardware\Keyboard\kb013a\kk;Trojan.MulDrop.9985;Deleted.;
kb.exe;C:\APPS\DOC\Static\Hardware\Keyboard\kb014a\kb;Trojan.MulDrop.9985;Deleted.;
kc.exe;C:\APPS\DOC\Static\Hardware\Keyboard\kb014a\kc;Trojan.MulDrop.9985;Deleted.;
kk.exe;C:\APPS\DOC\Static\Hardware\Keyboard\kb014a\kk;Trojan.MulDrop.9985;Deleted.;
kb014b.exe;C:\APPS\DOC\Static\Hardware\Keyboard\kb014b;Trojan.MulDrop.9985;Deleted.;
kb015a.exe;C:\APPS\DOC\Static\Hardware\Keyboard\kb015a;Trojan.MulDrop.9985;Deleted.;
kf.exe;C:\APPS\DOC\Static\Hardware\Keyboard\kb015a\kf;Trojan.MulDrop.9985;Deleted.;
kk.exe;C:\APPS\DOC\Static\Hardware\Keyboard\kb015a\kk;Trojan.MulDrop.9985;Deleted.;
kb016a.exe;C:\APPS\DOC\Static\Hardware\Keyboard\kb016a;Trojan.MulDrop.9985;Deleted.;
kf.exe;C:\APPS\DOC\Static\Hardware\Keyboard\kb016a\kf;Trojan.MulDrop.9985;Deleted.;
kk.exe;C:\APPS\DOC\Static\Hardware\Keyboard\kb016a\kk;Trojan.MulDrop.9985;Deleted.;
kb.exe;C:\APPS\DOC\Static\Hardware\Keyboard\kb017a\kb;Trojan.MulDrop.9985;Deleted.;
kc.exe;C:\APPS\DOC\Static\Hardware\Keyboard\kb017a\kc;Trojan.MulDrop.9985;Deleted.;
kk.exe;C:\APPS\DOC\Static\Hardware\Keyboard\kb017a\kk;Trojan.MulDrop.9985;Deleted.;
mb000a.exe;C:\APPS\DOC\Static\Hardware\Mobo\mb000a;Trojan.MulDrop.9985;Deleted.;
mb045a.exe;C:\APPS\DOC\Static\Hardware\Mobo\mb045a;Trojan.MulDrop.9985;Deleted.;
mb053a.exe;C:\APPS\DOC\Static\Hardware\Mobo\mb053a;Trojan.MulDrop.9985;Deleted.;
mb055a.exe;C:\APPS\DOC\Static\Hardware\Mobo\mb055a;Trojan.MulDrop.9985;Deleted.;
mb056a.exe;C:\APPS\DOC\Static\Hardware\Mobo\mb056a;Trojan.MulDrop.9985;Deleted.;
mb057a.exe;C:\APPS\DOC\Static\Hardware\Mobo\mb057a;Trojan.MulDrop.9985;Deleted.;
mb059a.exe;C:\APPS\DOC\Static\Hardware\Mobo\mb059a;Trojan.MulDrop.9985;Deleted.;
mb060a.exe;C:\APPS\DOC\Static\Hardware\Mobo\mb060a;Trojan.MulDrop.9985;Deleted.;
mb061a.exe;C:\APPS\DOC\Static\Hardware\Mobo\mb061a;Trojan.MulDrop.9985;Deleted.;
mb062a.exe;C:\APPS\DOC\Static\Hardware\Mobo\mb062a;Trojan.MulDrop.9985;Deleted.;
mb063a.exe;C:\APPS\DOC\Static\Hardware\Mobo\mb063a;Trojan.MulDrop.9985;Deleted.;
mb064a.exe;C:\APPS\DOC\Static\Hardware\Mobo\mb064a;Trojan.MulDrop.9985;Deleted.;
mb065a.exe;C:\APPS\DOC\Static\Hardware\Mobo\mb065a;Trojan.MulDrop.9985;Deleted.;
mb066a.exe;C:\APPS\DOC\Static\Hardware\Mobo\mb066a;Trojan.MulDrop.9985;Deleted.;
mb067a.exe;C:\APPS\DOC\Static\Hardware\Mobo\mb067a;Trojan.MulDrop.9985;Deleted.;
rd007a.exe;C:\APPS\DOC\Static\Hardware\Readers\rd007a;Trojan.MulDrop.9985;Deleted.;
rd008a.exe;C:\APPS\DOC\Static\Hardware\Readers\rd008a;Trojan.MulDrop.9985;Deleted.;
rd009a.exe;C:\APPS\DOC\Static\Hardware\Readers\rd009a;Trojan.MulDrop.9985;Deleted.;
rd010a.exe;C:\APPS\DOC\Static\Hardware\Readers\rd010a;Trojan.MulDrop.9985;Deleted.;
rd011a.exe;C:\APPS\DOC\Static\Hardware\Readers\rd011a;Trojan.MulDrop.9985;Deleted.;
Storage.exe;C:\APPS\DOC\Static\Hardware\Storage;Trojan.MulDrop.9985;Deleted.;
dr000a.exe;C:\APPS\DOC\Static\Hardware\Storage\dr000a;Trojan.MulDrop.9985;Deleted.;
dr033a.exe;C:\APPS\DOC\Static\Hardware\Storage\dr033a;Trojan.MulDrop.9985;Deleted.;
dr040a.exe;C:\APPS\DOC\Static\Hardware\Storage\dr040a;Trojan.MulDrop.9985;Deleted.;
dr044a.exe;C:\APPS\DOC\Static\Hardware\Storage\dr044a;Trojan.MulDrop.9985;Deleted.;
dr045a.exe;C:\APPS\DOC\Static\Hardware\Storage\dr045a;Trojan.MulDrop.9985;Deleted.;
dr046a.exe;C:\APPS\DOC\Static\Hardware\Storage\dr046a;Trojan.MulDrop.9985;Deleted.;
dr047a.exe;C:\APPS\DOC\Static\Hardware\Storage\dr047a;Trojan.MulDrop.9985;Deleted.;
dr048a.exe;C:\APPS\DOC\Static\Hardware\Storage\dr048a;Trojan.MulDrop.9985;Deleted.;
dr049a.exe;C:\APPS\DOC\Static\Hardware\Storage\dr049a;Trojan.MulDrop.9985;Deleted.;
dr049b.exe;C:\APPS\DOC\Static\Hardware\Storage\dr049b;Trojan.MulDrop.9985;Deleted.;
dr050a.exe;C:\APPS\DOC\Static\Hardware\Storage\dr050a;Trojan.MulDrop.9985;Deleted.;
dr051a.exe;C:\APPS\DOC\Static\Hardware\Storage\dr051a;Trojan.MulDrop.9985;Deleted.;
dr052a.exe;C:\APPS\DOC\Static\Hardware\Storage\dr052a;Trojan.MulDrop.9985;Deleted.;
dr053a.exe;C:\APPS\DOC\Static\Hardware\Storage\dr053a;Trojan.MulDrop.9985;Deleted.;
dr054a.exe;C:\APPS\DOC\Static\Hardware\Storage\dr054a;Trojan.MulDrop.9985;Deleted.;
dr055a.exe;C:\APPS\DOC\Static\Hardware\Storage\dr055a;Trojan.MulDrop.9985;Deleted.;
tv005b.exe;C:\APPS\DOC\Static\Hardware\TVtuner\tv005b;Trojan.MulDrop.9985;Deleted.;
tv006a.exe;C:\APPS\DOC\Static\Hardware\TVtuner\tv006a;Trojan.MulDrop.9985;Deleted.;
tv009a.exe;C:\APPS\DOC\Static\Hardware\TVtuner\tv009a;Trojan.MulDrop.9985;Deleted.;
tv010a.exe;C:\APPS\DOC\Static\Hardware\TVtuner\tv010a;Trojan.MulDrop.9985;Deleted.;
tv011a.exe;C:\APPS\DOC\Static\Hardware\TVtuner\tv011a;Trojan.MulDrop.9985;Deleted.;
tv012a.exe;C:\APPS\DOC\Static\Hardware\TVtuner\tv012a;Trojan.MulDrop.9985;Deleted.;
tv013a.exe;C:\APPS\DOC\Static\Hardware\TVtuner\tv013a;Trojan.MulDrop.9985;Deleted.;
vd000a.exe;C:\APPS\DOC\Static\Hardware\Video\vd000a;Trojan.MulDrop.9985;Deleted.;
vd038a.exe;C:\APPS\DOC\Static\Hardware\Video\vd038a;Trojan.MulDrop.9985;Deleted.;
vd043a.exe;C:\APPS\DOC\Static\Hardware\Video\vd043a;Trojan.MulDrop.9985;Deleted.;
vd043b.exe;C:\APPS\DOC\Static\Hardware\Video\vd043b;Trojan.MulDrop.9985;Deleted.;
vd044a.exe;C:\APPS\DOC\Static\Hardware\Video\vd044a;Trojan.MulDrop.9985;Deleted.;
vd045a.exe;C:\APPS\DOC\Static\Hardware\Video\vd045a;Trojan.MulDrop.9985;Deleted.;
vd045b.exe;C:\APPS\DOC\Static\Hardware\Video\vd045b;Trojan.MulDrop.9985;Deleted.;
vd046a.exe;C:\APPS\DOC\Static\Hardware\Video\vd046a;Trojan.MulDrop.9985;Deleted.;
vd047a.exe;C:\APPS\DOC\Static\Hardware\Video\vd047a;Trojan.MulDrop.9985;Deleted.;
vd047b.exe;C:\APPS\DOC\Static\Hardware\Video\vd047b;Trojan.MulDrop.9985;Deleted.;
vd047c.exe;C:\APPS\DOC\Static\Hardware\Video\vd047c;Trojan.MulDrop.9985;Deleted.;
vd047d.exe;C:\APPS\DOC\Static\Hardware\Video\vd047d;Trojan.MulDrop.9985;Deleted.;
vd048a.exe;C:\APPS\DOC\Static\Hardware\Video\vd048a;Trojan.MulDrop.9985;Deleted.;
vd048b.exe;C:\APPS\DOC\Static\Hardware\Video\vd048b;Trojan.MulDrop.9985;Deleted.;
vd049a.exe;C:\APPS\DOC\Static\Hardware\Video\vd049a;Trojan.MulDrop.9985;Deleted.;
vd049b.exe;C:\APPS\DOC\Static\Hardware\Video\vd049b;Trojan.MulDrop.9985;Deleted.;
vd049c.exe;C:\APPS\DOC\Static\Hardware\Video\vd049c;Trojan.MulDrop.9985;Deleted.;
vd049d.exe;C:\APPS\DOC\Static\Hardware\Video\vd049d;Trojan.MulDrop.9985;Deleted.;
vd050a.exe;C:\APPS\DOC\Static\Hardware\Video\vd050a;Trojan.MulDrop.9985;Deleted.;
vd050b.exe;C:\APPS\DOC\Static\Hardware\Video\vd050b;Trojan.MulDrop.9985;Deleted.;
vd050c.exe;C:\APPS\DOC\Static\Hardware\Video\vd050c;Trojan.MulDrop.9985;Deleted.;
vd050d.exe;C:\APPS\DOC\Static\Hardware\Video\vd050d;Trojan.MulDrop.9985;Deleted.;
vd050e.exe;C:\APPS\DOC\Static\Hardware\Video\vd050e;Trojan.MulDrop.9985;Deleted.;
vd051a.exe;C:\APPS\DOC\Static\Hardware\Video\vd051a;Trojan.MulDrop.9985;Deleted.;
vd052a.exe;C:\APPS\DOC\Static\Hardware\Video\vd052a;Trojan.MulDrop.9985;Deleted.;
vd052b.exe;C:\APPS\DOC\Static\Hardware\Video\vd052b;Trojan.MulDrop.9985;Deleted.;
vd052c.exe;C:\APPS\DOC\Static\Hardware\Video\vd052c;Trojan.MulDrop.9985;Deleted.;
vd052d.exe;C:\APPS\DOC\Static\Hardware\Video\vd052d;Trojan.MulDrop.9985;Deleted.;
vd053a.exe;C:\APPS\DOC\Static\Hardware\Video\vd053a;Trojan.MulDrop.9985;Deleted.;
vd054a.exe;C:\APPS\DOC\Static\Hardware\Video\vd054a;Trojan.MulDrop.9985;Deleted.;
vd055a.exe;C:\APPS\DOC\Static\Hardware\Video\vd055a;Trojan.MulDrop.9985;Deleted.;
vd055b.exe;C:\APPS\DOC\Static\Hardware\Video\vd055b;Trojan.MulDrop.9985;Deleted.;
vd055c.exe;C:\APPS\DOC\Static\Hardware\Video\vd055c;Trojan.MulDrop.9985;Deleted.;
vd055d.exe;C:\APPS\DOC\Static\Hardware\Video\vd055d;Trojan.MulDrop.9985;Deleted.;
vd056a.exe;C:\APPS\DOC\Static\Hardware\Video\vd056a;Trojan.MulDrop.9985;Deleted.;
vd057a.exe;C:\APPS\DOC\Static\Hardware\Video\vd057a;Trojan.MulDrop.9985;Deleted.;
vd057b.exe;C:\APPS\DOC\Static\Hardware\Video\vd057b;Trojan.MulDrop.9985;Deleted.;
vd057c.exe;C:\APPS\DOC\Static\Hardware\Video\vd057c;Trojan.MulDrop.9985;Deleted.;
vd058a.exe;C:\APPS\DOC\Static\Hardware\Video\vd058a;Trojan.MulDrop.9985;Deleted.;
vd058b.exe;C:\APPS\DOC\Static\Hardware\Video\vd058b;Trojan.MulDrop.9985;Deleted.;
vd058c.exe;C:\APPS\DOC\Static\Hardware\Video\vd058c;Trojan.MulDrop.9985;Deleted.;
vd058d.exe;C:\APPS\DOC\Static\Hardware\Video\vd058d;Trojan.MulDrop.9985;Deleted.;
co038a.exe;C:\APPS\DOC\Static\Notebook\ArgoX\co038a;Trojan.MulDrop.9985;Deleted.;
in038a.exe;C:\APPS\DOC\Static\Notebook\ArgoX\in038a;Trojan.MulDrop.9985;Deleted.;
po038a.exe;C:\APPS\DOC\Static\Notebook\ArgoX\po038a;Trojan.MulDrop.9985;Deleted.;
pw038a.exe;C:\APPS\DOC\Static\Notebook\ArgoX\pw038a;Trojan.MulDrop.9985;Deleted.;
tr038a.exe;C:\APPS\DOC\Static\Notebook\ArgoX\tr038a;Trojan.MulDrop.9985;Deleted.;
co032.exe;C:\APPS\DOC\Static\Notebook\Atlas\co032;Trojan.MulDrop.9985;Deleted.;
in032.exe;C:\APPS\DOC\Static\Notebook\Atlas\in032;Trojan.MulDrop.9985;Deleted.;
po032.exe;C:\APPS\DOC\Static\Notebook\Atlas\po032;Trojan.MulDrop.9985;Deleted.;
pw032.exe;C:\APPS\DOC\Static\Notebook\Atlas\pw032;Trojan.MulDrop.9985;Deleted.;
tr032.exe;C:\APPS\DOC\Static\Notebook\Atlas\tr032;Trojan.MulDrop.9985;Deleted.;
co031.exe;C:\APPS\DOC\Static\Notebook\Drgn\co031;Trojan.MulDrop.9985;Deleted.;
in031.exe;C:\APPS\DOC\Static\Notebook\Drgn\in031;Trojan.MulDrop.9985;Deleted.;
po031.exe;C:\APPS\DOC\Static\Notebook\Drgn\po031;Trojan.MulDrop.9985;Deleted.;
pw031.exe;C:\APPS\DOC\Static\Notebook\Drgn\pw031;Trojan.MulDrop.9985;Deleted.;
tr031.exe;C:\APPS\DOC\Static\Notebook\Drgn\tr031;Trojan.MulDrop.9985;Deleted.;
co035.exe;C:\APPS\DOC\Static\Notebook\Drgn2\co035;Trojan.MulDrop.9985;Deleted.;
in035.exe;C:\APPS\DOC\Static\Notebook\Drgn2\in035;Trojan.MulDrop.9985;Deleted.;
po035.exe;C:\APPS\DOC\Static\Notebook\Drgn2\po035;Trojan.MulDrop.9985;Deleted.;
pw035.exe;C:\APPS\DOC\Static\Notebook\Drgn2\pw035;Trojan.MulDrop.9985;Deleted.;
tr035.exe;C:\APPS\DOC\Static\Notebook\Drgn2\tr035;Trojan.MulDrop.9985;Deleted.;
co023.exe;C:\APPS\DOC\Static\Notebook\K2\co023;Trojan.MulDrop.9985;Deleted.;
in023.exe;C:\APPS\DOC\Static\Notebook\K2\in023;Trojan.MulDrop.9985;Deleted.;
po023.exe;C:\APPS\DOC\Static\Notebook\K2\po023;Trojan.MulDrop.9985;Deleted.;
pw023.exe;C:\APPS\DOC\Static\Notebook\K2\pw023;Trojan.MulDrop.9985;Deleted.;
tr023.exe;C:\APPS\DOC\Static\Notebook\K2\tr023;Trojan.MulDrop.9985;Deleted.;
co.exe;C:\APPS\DOC\Static\Notebook\NBstatic\co;Trojan.MulDrop.9985;Deleted.;
dd.exe;C:\APPS\DOC\Static\Notebook\NBstatic\dd;Trojan.MulDrop.9985;Deleted.;
in.exe;C:\APPS\DOC\Static\Notebook\NBstatic\in;Trojan.MulDrop.9985;Deleted.;
Legal.exe;C:\APPS\DOC\Static\Notebook\NBstatic\Legal;Trojan.MulDrop.9985;Deleted.;
po.exe;C:\APPS\DOC\Static\Notebook\NBstatic\po;Trojan.MulDrop.9985;Deleted.;
pw.exe;C:\APPS\DOC\Static\Notebook\NBstatic\pw;Trojan.MulDrop.9985;Deleted.;
po026.exe;C:\APPS\DOC\Static\Notebook\RheaA\po026;Trojan.MulDrop.9985;Deleted.;
tr026.exe;C:\APPS\DOC\Static\Notebook\RheaA\tr026;Trojan.MulDrop.9985;Deleted.;
co026.exe;C:\APPS\DOC\Static\Notebook\rheaB\co026;Trojan.MulDrop.9985;Deleted.;
in026.exe;C:\APPS\DOC\Static\Notebook\rheaB\in026;Trojan.MulDrop.9985;Deleted.;
po026.exe;C:\APPS\DOC\Static\Notebook\rheaB\po026;Trojan.MulDrop.9985;Deleted.;
pw026.exe;C:\APPS\DOC\Static\Notebook\rheaB\pw026;Trojan.MulDrop.9985;Deleted.;
tr026.exe;C:\APPS\DOC\Static\Notebook\rheaB\tr026;Trojan.MulDrop.9985;Deleted.;
co026.exe;C:\APPS\DOC\Static\Notebook\RheaS\co026;Trojan.MulDrop.9985;Deleted.;
in026.exe;C:\APPS\DOC\Static\Notebook\RheaS\in026;Trojan.MulDrop.9985;Deleted.;
po026.exe;C:\APPS\DOC\Static\Notebook\RheaS\po026;Trojan.MulDrop.9985;Deleted.;
pw026.exe;C:\APPS\DOC\Static\Notebook\RheaS\pw026;Trojan.MulDrop.9985;Deleted.;
tr026.exe;C:\APPS\DOC\Static\Notebook\RheaS\tr026;Trojan.MulDrop.9985;Deleted.;
co034.exe;C:\APPS\DOC\Static\Notebook\SableX\co034;Trojan.MulDrop.9985;Deleted.;
in034.exe;C:\APPS\DOC\Static\Notebook\SableX\in034;Trojan.MulDrop.9985;Deleted.;
po034.exe;C:\APPS\DOC\Static\Notebook\SableX\po034;Trojan.MulDrop.9985;Deleted.;
pw034.exe;C:\APPS\DOC\Static\Notebook\SableX\pw034;Trojan.MulDrop.9985;Deleted.;
tr034.exe;C:\APPS\DOC\Static\Notebook\SableX\tr034;Trojan.MulDrop.9985;Deleted.;
co036.exe;C:\APPS\DOC\Static\Notebook\Scrpn\co036;Trojan.MulDrop.9985;Deleted.;
in036.exe;C:\APPS\DOC\Static\Notebook\Scrpn\in036;Trojan.MulDrop.9985;Deleted.;
po036.exe;C:\APPS\DOC\Static\Notebook\Scrpn\po036;Trojan.MulDrop.9985;Deleted.;
pw036.exe;C:\APPS\DOC\Static\Notebook\Scrpn\pw036;Trojan.MulDrop.9985;Deleted.;
tr036.exe;C:\APPS\DOC\Static\Notebook\Scrpn\tr036;Trojan.MulDrop.9985;Deleted.;
T12ajax.exe;C:\APPS\DOC\Static\Notebook\T12ajax;Trojan.MulDrop.9985;Deleted.;
co037.exe;C:\APPS\DOC\Static\Notebook\T12ajax\co037;Trojan.MulDrop.9985;Deleted.;
in037.exe;C:\APPS\DOC\Static\Notebook\T12ajax\in037;Trojan.MulDrop.9985;Deleted.;
po037.exe;C:\APPS\DOC\Static\Notebook\T12ajax\po037;Trojan.MulDrop.9985;Deleted.;
pw037.exe;C:\APPS\DOC\Static\Notebook\T12ajax\pw037;Trojan.MulDrop.9985;Deleted.;
tr037.exe;C:\APPS\DOC\Static\Notebook\T12ajax\tr037;Trojan.MulDrop.9985;Deleted.;
T19.exe;C:\APPS\DOC\Static\Notebook\T19;Trojan.MulDrop.9985;Deleted.;
co033.exe;C:\APPS\DOC\Static\Notebook\T19\co033;Trojan.MulDrop.9985;Deleted.;
in033.exe;C:\APPS\DOC\Static\Notebook\T19\in033;Trojan.MulDrop.9985;Deleted.;
po033.exe;C:\APPS\DOC\Static\Notebook\T19\po033;Trojan.MulDrop.9985;Deleted.;
pw033.exe;C:\APPS\DOC\Static\Notebook\T19\pw033;Trojan.MulDrop.9985;Deleted.;
tr033.exe;C:\APPS\DOC\Static\Notebook\T19\tr033;Trojan.MulDrop.9985;Deleted.;
EmailChecker.exe;C:\APPS\EmailChecker;Trojan.MulDrop.9985;Deleted.;
HDReg.exe;C:\APPS\HDReg;Trojan.MulDrop.9985;Deleted.;
Images.exe;C:\APPS\HDReg\Images;Trojan.MulDrop.9985;Deleted.;
ICO.exe;C:\APPS\ICO;Trojan.MulDrop.9985;Deleted.;
PBLINKS.exe;C:\APPS\ICO\PBLINKS;Trojan.MulDrop.9985;Deleted.;
OFFLINE.exe;C:\APPS\IE\OFFLINE;Trojan.MulDrop.9985;Deleted.;
IMAGES.exe;C:\APPS\IE\OFFLINE\IMAGES;Trojan.MulDrop.9985;Deleted.;
PowerDVD.exe;C:\APPS\PowerDVD;Trojan.MulDrop.9985;Deleted.;
AudioFilter.exe;C:\APPS\PowerDVD\AudioFilter;Trojan.MulDrop.9985;Deleted.;
AVSettings.exe;C:\APPS\PowerDVD\AVSettings;Trojan.MulDrop.9985;Deleted.;
Images.exe;C:\APPS\PowerDVD\AVSettings\Images;Trojan.MulDrop.9985;Deleted.;
Languages.exe;C:\APPS\PowerDVD\AVSettings\Languages;Trojan.MulDrop.9985;Deleted.;
Sounds.exe;C:\APPS\PowerDVD\AVSettings\Sounds;Trojan.MulDrop.9985;Deleted.;
InterActual.exe;C:\APPS\PowerDVD\InterActual;Trojan.MulDrop.9985;Deleted.;
NavFilter.exe;C:\APPS\PowerDVD\NavFilter;Trojan.MulDrop.9985;Deleted.;
OLRSubmission.exe;C:\APPS\PowerDVD\OLRSubmission;Trojan.MulDrop.9985;Deleted.;
pdvd6-dlx-audiopack.exe;C:\APPS\PowerDVD\pdvd6-dlx-audiopack;Trojan.MulDrop.9985;Deleted.;
images.exe;C:\APPS\PowerDVD\pdvd6-dlx-audiopack\images;Trojan.MulDrop.9985;Deleted.;
pdvd6-dlx-dts.exe;C:\APPS\PowerDVD\pdvd6-dlx-dts;Trojan.MulDrop.9985;Deleted.;
images.exe;C:\APPS\PowerDVD\pdvd6-dlx-dts\images;Trojan.MulDrop.9985;Deleted.;
pdvd6-interactual.exe;C:\APPS\PowerDVD\pdvd6-interactual;Trojan.MulDrop.9985;Deleted.;
images.exe;C:\APPS\PowerDVD\pdvd6-interactual\images;Trojan.MulDrop.9985;Deleted.;
pdvd6-mobility.exe;C:\APPS\PowerDVD\pdvd6-mobility;Trojan.MulDrop.9985;Deleted.;
images.exe;C:\APPS\PowerDVD\pdvd6-mobility\images;Trojan.MulDrop.9985;Deleted.;
Crystal.exe;C:\APPS\PowerDVD\Skins\Crystal;Trojan.MulDrop.9985;Deleted.;
Glow.exe;C:\APPS\PowerDVD\Skins\Glow;Trojan.MulDrop.9985;Deleted.;
Oscar.exe;C:\APPS\PowerDVD\Skins\Oscar;Trojan.MulDrop.9985;Deleted.;
Trial.exe;C:\APPS\PowerDVD\Trial;Trojan.MulDrop.9985;Deleted.;
VideoFilter.exe;C:\APPS\PowerDVD\VideoFilter;Trojan.MulDrop.9985;Deleted.;
phone.exe;C:\APPS\skype\phone;Trojan.MulDrop.9985;Deleted.;
SMP.exe;C:\APPS\SMP;Trojan.MulDrop.9985;Deleted.;
BMP.exe;C:\APPS\SMP\BMP;Trojan.MulDrop.9985;Deleted.;
PBCARE.EXE;C:\APPS\SMP\PBCARE;Trojan.MulDrop.9985;Deleted.;
MISC.exe;C:\APPS\SMP\PBCARE\MISC;Trojan.MulDrop.9985;Deleted.;
T2.exe;C:\APPS\T2;Trojan.MulDrop.9985;Deleted.;
Ulead PhotoImpact 10 SE.exe;C:\APPS\UPI10\Ulead Systems\Ulead PhotoImpact 10 SE;Trojan.MulDrop.9985;Deleted.;
Background.exe;C:\APPS\UPI10\Ulead Systems\Ulead PhotoImpact 10 SE\Background;Trojan.MulDrop.9985;Deleted.;
COLORMAP.exe;C:\APPS\UPI10\Ulead Systems\Ulead PhotoImpact 10 SE\COLORMAP;Trojan.MulDrop.9985;Deleted.;
ColorPanel.exe;C:\APPS\UPI10\Ulead Systems\Ulead PhotoImpact 10 SE\ColorPanel;Trojan.MulDrop.9985;Deleted.;
fio.exe;C:\APPS\UPI10\Ulead Systems\Ulead PhotoImpact 10 SE\fio;Trojan.MulDrop.9985;Deleted.;
Frmmask.exe;C:\APPS\UPI10\Ulead Systems\Ulead PhotoImpact 10 SE\Frmmask;Trojan.MulDrop.9985;Deleted.;
MATERIAL.exe;C:\APPS\UPI10\Ulead Systems\Ulead PhotoImpact 10 SE\MATERIAL;Trojan.MulDrop.9985;Deleted.;
PAPER.exe;C:\APPS\UPI10\Ulead Systems\Ulead PhotoImpact 10 SE\PAPER;Trojan.MulDrop.9985;Deleted.;
plugin.exe;C:\APPS\UPI10\Ulead Systems\Ulead PhotoImpact 10 SE\plugin;Trojan.MulDrop.9985;Deleted.;
digimarc.exe;C:\APPS\UPI10\Ulead Systems\Ulead PhotoImpact 10 SE\plugin\digimarc;Trojan.MulDrop.9985;Deleted.;
TxArtScreening.exe;C:\APPS\UPI10\Ulead Systems\Ulead PhotoImpact 10 SE\plugin\TxArtScreening;Trojan.MulDrop.9985;Deleted.;
TxContourDraw.exe;C:\APPS\UPI10\Ulead Systems\Ulead PhotoImpact 10 SE\plugin\TxContourDraw;Trojan.MulDrop.9985;Deleted.;
TxEmboss.exe;C:\APPS\UPI10\Ulead Systems\Ulead PhotoImpact 10 SE\plugin\TxEmboss;Trojan.MulDrop.9985;Deleted.;
TxGlass.exe;C:\APPS\UPI10\Ulead Systems\Ulead PhotoImpact 10 SE\plugin\TxGlass;Trojan.MulDrop.9985;Deleted.;
TxImpress.exe;C:\APPS\UPI10\Ulead Systems\Ulead PhotoImpact 10 SE\plugin\TxImpress;Trojan.MulDrop.9985;Deleted.;
TxMosaic.exe;C:\APPS\UPI10\Ulead Systems\Ulead PhotoImpact 10 SE\plugin\TxMosaic;Trojan.MulDrop.9985;Deleted.;
Profiles.exe;C:\APPS\UPI10\Ulead Systems\Ulead PhotoImpact 10 SE\Profiles;Trojan.MulDrop.9985;Deleted.;
Samples.exe;C:\APPS\UPI10\Ulead Systems\Ulead PhotoImpact 10 SE\Samples;Trojan.MulDrop.9985;Deleted.;
HDR.exe;C:\APPS\UPI10\Ulead Systems\Ulead PhotoImpact 10 SE\Samples\HDR;Trojan.MulDrop.9985;Deleted.;
linkobj.exe;C:\APPS\UPI10\Ulead Systems\Ulead PhotoImpact 10 SE\Samples\linkobj;Trojan.MulDrop.9985;Deleted.;
Photo Correction.exe;C:\APPS\UPI10\Ulead Systems\Ulead PhotoImpact 10 SE\Samples\Photo Correction;Trojan.MulDrop.9985;Deleted.;
Scanpp.exe;C:\APPS\UPI10\Ulead Systems\Ulead PhotoImpact 10 SE\Scanpp;Trojan.MulDrop.9985;Deleted.;
seplugin.exe;C:\APPS\UPI10\Ulead Systems\Ulead PhotoImpact 10 SE\seplugin;Trojan.MulDrop.9985;Deleted.;
stamps.exe;C:\APPS\UPI10\Ulead Systems\Ulead PhotoImpact 10 SE\stamps;Trojan.MulDrop.9985;Deleted.;
TEXTURES.exe;C:\APPS\UPI10\Ulead Systems\Ulead PhotoImpact 10 SE\TEXTURES;Trojan.MulDrop.9985;Deleted.;
Ulead.dat.exe;C:\APPS\UPI10\Ulead Systems\Ulead PhotoImpact 10 SE\Ulead.dat;Trojan.MulDrop.9985;Deleted.;
Image Library.exe;C:\APPS\UPI10\Ulead Systems\Ulead PhotoImpact 10 SE\Ulead.dat\Image Library;Trojan.MulDrop.9985;Deleted.;
Mask Library.exe;C:\APPS\UPI10\Ulead Systems\Ulead PhotoImpact 10 SE\Ulead.dat\Mask Library;Trojan.MulDrop.9985;Deleted.;
My Library.exe;C:\APPS\UPI10\Ulead Systems\Ulead PhotoImpact 10 SE\Ulead.dat\My Library;Trojan.MulDrop.9985;Deleted.;
Outline Library.exe;C:\APPS\UPI10\Ulead Systems\Ulead PhotoImpact 10 SE\Ulead.dat\Outline Library;Trojan.MulDrop.9985;Deleted.;
Path Library.exe;C:\APPS\UPI10\Ulead Systems\Ulead PhotoImpact 10 SE\Ulead.dat\Path Library;Trojan.MulDrop.9985;Deleted.;
Shape Library.exe;C:\APPS\UPI10\Ulead Systems\Ulead PhotoImpact 10 SE\Ulead.dat\Shape Library;Trojan.MulDrop.9985;Deleted.;
Task.exe;C:\APPS\UPI10\Ulead Systems\Ulead PhotoImpact 10 SE\Ulead.dat\Task;Trojan.MulDrop.9985;Deleted.;
Text Library.exe;C:\APPS\UPI10\Ulead Systems\Ulead PhotoImpact 10 SE\Ulead.dat\Text Library;Trojan.MulDrop.9985;Deleted.;
upp.exe;C:\APPS\UPI10\Ulead Systems\Ulead PhotoImpact 10 SE\upp;Trojan.MulDrop.9985;Deleted.;
GAP.exe;C:\APPS\UPI10\Ulead Systems\Ulead PhotoImpact 10 SE\upp\GAP;Trojan.MulDrop.9985;Deleted.;
wsData.exe;C:\APPS\UPI10\Ulead Systems\Ulead PhotoImpact 10 SE\wsData;Trojan.MulDrop.9985;Deleted.;
WINPEN.exe;C:\APPS\WINPEN;Trojan.MulDrop.9985;Deleted.;
DRIVERS.exe;C:\APPS\WINPEN\DRIVERS;Trojan.MulDrop.9985;Deleted.;
GUIDE.exe;C:\APPS\WINPEN\GUIDE;Trojan.MulDrop.9985;Deleted.;
01.exe;C:\APPS\WINPEN\GUIDE\01;Trojan.MulDrop.9985;Deleted.;
02.exe;C:\APPS\WINPEN\GUIDE\02;Trojan.MulDrop.9985;Deleted.;
03.exe;C:\APPS\WINPEN\GUIDE\03;Trojan.MulDrop.9985;Deleted.;
04.exe;C:\APPS\WINPEN\GUIDE\04;Trojan.MulDrop.9985;Deleted.;
05.exe;C:\APPS\WINPEN\GUIDE\05;Trojan.MulDrop.9985;Deleted.;
06.exe;C:\APPS\WINPEN\GUIDE\06;Trojan.MulDrop.9985;Deleted.;
10.exe;C:\APPS\WINPEN\GUIDE\10;Trojan.MulDrop.9985;Deleted.;
Static.exe;C:\APPS\WINPEN\GUIDE\Static;Trojan.MulDrop.9985;Deleted.;
Driver.exe;C:\ATI\SUPPORT\7-10_xp32_dd_53250\Driver;Trojan.MulDrop.9985;Deleted.;
XP_INF.exe;C:\ATI\SUPPORT\7-10_xp32_dd_53250\Driver\XP_INF;Trojan.MulDrop.9985;Deleted.;
B_53901.exe;C:\ATI\SUPPORT\7-10_xp32_dd_53250\Driver\XP_INF\B_53901;Trojan.MulDrop.9985;Deleted.;
Driver.exe;C:\ATI\SUPPORT\7-10_xp32_dd_ccc_wdm_enu_53250\Driver;Trojan.MulDrop.9985;Deleted.;
BIN.exe;C:\ATI\SUPPORT\7-10_xp32_dd_ccc_wdm_enu_53250\Driver\BIN;Trojan.MulDrop.9985;Deleted.;
CatalystRegistration.exe;C:\ATI\SUPPORT\7-10_xp32_dd_ccc_wdm_enu_53250\Driver\CatalystRegistration;Trojan.MulDrop.9985;Deleted.;
CCC.exe;C:\ATI\SUPPORT\7-10_xp32_dd_ccc_wdm_enu_53250\Driver\CCC;Trojan.MulDrop.9985;Deleted.;
Core-Implementation.exe;C:\ATI\SUPPORT\7-10_xp32_dd_ccc_wdm_enu_53250\Driver\CCC\Core-Implementation;Trojan.MulDrop.9985;Deleted.;
Core-PreInstall.exe;C:\ATI\SUPPORT\7-10_xp32_dd_ccc_wdm_enu_53250\Driver\CCC\Core-PreInstall;Trojan.MulDrop.9985;Deleted.;
Core-Static.exe;C:\ATI\SUPPORT\7-10_xp32_dd_ccc_wdm_enu_53250\Driver\CCC\Core-Static;Trojan.MulDrop.9985;Deleted.;
Graphics-Full-Existing.exe;C:\ATI\SUPPORT\7-10_xp32_dd_ccc_wdm_enu_53250\Driver\CCC\Graphics-Full-Existing;Trojan.MulDrop.9985;Deleted.;
Graphics-Full-New.exe;C:\ATI\SUPPORT\7-10_xp32_dd_ccc_wdm_enu_53250\Driver\CCC\Graphics-Full-New;Trojan.MulDrop.9985;Deleted.;
Graphics-Light.exe;C:\ATI\SUPPORT\7-10_xp32_dd_ccc_wdm_enu_53250\Driver\CCC\Graphics-Light;Trojan.MulDrop.9985;Deleted.;
Graphics-Previews-Common.exe;C:\ATI\SUPPORT\7-10_xp32_dd_ccc_wdm_enu_53250\Driver\CCC\Graphics-Previews-Common;Trojan.MulDrop.9985;Deleted.;
en-us.exe;C:\ATI\SUPPORT\7-10_xp32_dd_ccc_wdm_enu_53250\Driver\CCC\Help\en-us;Trojan.MulDrop.9985;Deleted.;
Skins.exe;C:\ATI\SUPPORT\7-10_xp32_dd_ccc_wdm_enu_53250\Driver\CCC\Skins;Trojan.MulDrop.9985;Deleted.;
Utility.exe;C:\ATI\SUPPORT\7-10_xp32_dd_ccc_wdm_enu_53250\Driver\CCC\Utility;Trojan.MulDrop.9985;Deleted.;
Utility64.exe;C:\ATI\SUPPORT\7-10_xp32_dd_ccc_wdm_enu_53250\Driver\CCC\Utility64;Trojan.MulDrop.9985;Deleted.;
Driver.exe;C:\ATI\SUPPORT\7-10_xp32_dd_ccc_wdm_enu_53250\Driver\Driver;Trojan.MulDrop.9985;Deleted.;
XP_INF.exe;C:\ATI\SUPPORT\7-10_xp32_dd_ccc_wdm_enu_53250\Driver\Driver\XP_INF;Trojan.MulDrop.9985;Deleted.;
B_53901.exe;C:\ATI\SUPPORT\7-10_xp32_dd_ccc_wdm_enu_53250\Driver\Driver\XP_INF\B_53901;Trojan.MulDrop.9985;Deleted.;
SBDrv.exe;C:\ATI\SUPPORT\7-10_xp32_dd_ccc_wdm_enu_53250\Driver\SBDrv;Trojan.MulDrop.9985;Deleted.;
IDE.exe;C:\ATI\SUPPORT\7-10_xp32_dd_ccc_wdm_enu_53250\Driver\SBDrv\IDE;Trojan.MulDrop.9985;Deleted.;
IDEATA133.exe;C:\ATI\SUPPORT\7-10_xp32_dd_ccc_wdm_enu_53250\Driver\SBDrv\IDEATA133;Trojan.MulDrop.9985;Deleted.;
RAID.exe;C:\ATI\SUPPORT\7-10_xp32_dd_ccc_wdm_enu_53250\Driver\SBDrv\RAID;Trojan.MulDrop.9985;Deleted.;
amd64.exe;C:\ATI\SUPPORT\7-10_xp32_dd_ccc_wdm_enu_53250\Driver\SBDrv\RAID\amd64;Trojan.MulDrop.9985;Deleted.;
i386.exe;C:\ATI\SUPPORT\7-10_xp32_dd_ccc_wdm_enu_53250\Driver\SBDrv\RAID\i386;Trojan.MulDrop.9985;Deleted.;
SATARAID.exe;C:\ATI\SUPPORT\7-10_xp32_dd_ccc_wdm_enu_53250\Driver\SBDrv\SATARAID;Trojan.MulDrop.9985;Deleted.;
SMBUS.exe;C:\ATI\SUPPORT\7-10_xp32_dd_ccc_wdm_enu_53250\Driver\SBDrv\SMBUS;Trojan.MulDrop.9985;Deleted.;
SRAID64a.exe;C:\ATI\SUPPORT\7-10_xp32_dd_ccc_wdm_enu_53250\Driver\SBDrv\SRAID64a;Trojan.MulDrop.9985;Deleted.;
steam.exe;C:\ATI\SUPPORT\7-10_xp32_dd_ccc_wdm_enu_53250\Driver\steam;Trojan.MulDrop.9985;Deleted.;
SteamShortcut.exe;C:\ATI\SUPPORT\7-10_xp32_dd_ccc_wdm_enu_53250\Driver\SteamShortcut;Trojan.MulDrop.9985;Deleted.;
vc8.exe;C:\ATI\SUPPORT\7-10_xp32_dd_ccc_wdm_enu_53250\Driver\vc8;Trojan.MulDrop.9985;Deleted.;
WDM_ALL.exe;C:\ATI\SUPPORT\7-10_xp32_dd_ccc_wdm_enu_53250\Driver\WDM_ALL;Trojan.MulDrop.9985;Deleted.;
AVS_T200.exe;C:\ATI\SUPPORT\7-10_xp32_dd_ccc_wdm_enu_53250\Driver\WDM_ALL\AVS_T200;Trojan.MulDrop.9985;Deleted.;
XP.exe;C:\ATI\SUPPORT\7-10_xp32_dd_ccc_wdm_enu_53250\Driver\WDM_ALL\AVS_T200\XP;Trojan.MulDrop.9985;Deleted.;
XP64A.exe;C:\ATI\SUPPORT\7-10_xp32_dd_ccc_wdm_enu_53250\Driver\WDM_ALL\AVS_T200\XP64A;Trojan.MulDrop.9985;Deleted.;
tree135.gmt;C:\Documents and Settings\Hamze\My Documents\Azureus Downloads\[PC] RACE 07 [COMPLETE] [dopeman]\RACE 07\GameData\Locations\Por;Modification of Win95.Azuo.1044;Moved.;
NOD32 Antivirus 2.70.31.exe;C:\Documents and Settings\Hamze\My Documents\My Pictures\NOD32_Antivirus_2.70.31;Trojan.Packed.158;Deleted.;
POSTOOBE.NEC;C:\DRIVERS;VBS.Generic.278;Deleted.;
My Downloads.exe;C:\My Downloads;Trojan.MulDrop.9985;Deleted.;
PerfLogs.exe;C:\PerfLogs;Trojan.MulDrop.9985;Deleted.;
Vcs4ProvMgr.dll;C:\Program Files\AV Vcs 5.5 DIAMOND;Probably MULDROP.Trojan;;
FND18D.NFI;C:\Program Files\ESET\cache;Trojan.Fakealert;Deleted.;
FND18E.NFI;C:\Program Files\ESET\cache;Trojan.Fakealert.357;Deleted.;
FND1FB.NFI;C:\Program Files\ESET\cache;Dialer.Maxd;Deleted.;
FNDB6.NFI;C:\Program Files\ESET\cache;Trojan.Funweb;Deleted.;
FNDB7.NFI;C:\Program Files\ESET\cache;Trojan.Funweb;Deleted.;
D4EFMMBA.NQF;C:\Program Files\ESET\infected;Trojan.Funweb;Deleted.;
OEJ135CA.NQF;C:\Program Files\ESET\infected;Trojan.Proxy.origin;Incurable.Moved.;
VDVABPCA.NQF;C:\Program Files\ESET\infected;Dialer.Maxd;Deleted.;
VH0ZLUAA.NQF;C:\Program Files\ESET\infected;Trojan.Fakealert.357;Deleted.;
HurricanStarter.exe;C:\Program Files\Hurrican;Probably DLOADER.Trojan;;
.exe.vir;C:\qoobox\Quarantine\C;Trojan.MulDrop.9985;Deleted.;
0047F358.exe.vir;C:\qoobox\Quarantine\C;Trojan.MulDrop.9985;Deleted.;
lich.exe.vir;C:\qoobox\Quarantine\C;Trojan.PWS.LDPinch.2488;Deleted.;
lich.sys.vir;C:\qoobox\Quarantine\C;Trojan.NtRootKit.472;Deleted.;
bot.dll;C:\qoobox\Quarantine\C\Documents and Settings\All Users\Documents\Settings.vir;Trojan.Spambot.2552;Deleted.;
murka.dat.vir;C:\qoobox\Quarantine\C\WINDOWS;Trojan.Proxy.1739;Deleted.;
windisk.dll.vir;C:\qoobox\Quarantine\C\WINDOWS;Probably DLOADER.Trojan;;
WINDOWS.exe.vir;C:\qoobox\Quarantine\C\WINDOWS;Trojan.MulDrop.9985;Deleted.;
wsystmp_oah.exe.vir;C:\qoobox\Quarantine\C\WINDOWS;Trojan.MulDrop.9985;Deleted.;
AppPatch.exe.vir;C:\qoobox\Quarantine\C\WINDOWS\AppPatch;Trojan.MulDrop.9985;Deleted.;
0414.exe.vir;C:\qoobox\Quarantine\C\WINDOWS\AppPatch\MUI\0414;Trojan.MulDrop.9985;Deleted.;
1033.exe.vir;C:\qoobox\Quarantine\C\WINDOWS\Resources\1033;Trojan.MulDrop.9985;Deleted.;
system.exe.vir;C:\qoobox\Quarantine\C\WINDOWS\system;Trojan.MulDrop.9985;Deleted.;
m1ax1d1213216143v.exe.vir;C:\qoobox\Quarantine\C\WINDOWS\system32;Trojan.DownLoader.based;Deleted.;
max1d11643v.exe.vir;C:\qoobox\Quarantine\C\WINDOWS\system32;Dialer.Maxd;Deleted.;
shovth.exe.vir;C:\qoobox\Quarantine\C\WINDOWS\system32;Trojan.MulDrop.9985;Deleted.;
system32.exe.vir;C:\qoobox\Quarantine\C\WINDOWS\system32;Trojan.MulDrop.9985;Deleted.;
vedxg3am1et3.exe.vir;C:\qoobox\Quarantine\C\WINDOWS\system32;Trojan.Ascesso;Deleted.;
vedxga3me2.exe.vir;C:\qoobox\Quarantine\C\WINDOWS\system32;Trojan.DownLoader.31981;Deleted.;
vedxga4me1.exe.vir;C:\qoobox\Quarantine\C\WINDOWS\system32;Trojan.Spambot.2552;Deleted.;
vedxga5me3.exe.vir;C:\qoobox\Quarantine\C\WINDOWS\system32;Trojan.DownLoader.15909;Deleted.;
winsn.exe.vir;C:\qoobox\Quarantine\C\WINDOWS\system32;Trojan.MulDrop.9985;Deleted.;
winsos.exe.vir;C:\qoobox\Quarantine\C\WINDOWS\system32;Trojan.Alert;Deleted.;
1033.exe.vir;C:\qoobox\Quarantine\C\WINDOWS\system32\1033;Trojan.MulDrop.9985;Deleted.;
systemprofile.exe.vir;C:\qoobox\Quarantine\C\WINDOWS\system32\config\systemprofile;Trojan.MulDrop.9985;Deleted.;
drivers.exe.vir;C:\qoobox\Quarantine\C\WINDOWS\system32\drivers;Trojan.MulDrop.9985;Deleted.;
Nwr58.sys.vir;C:\qoobox\Quarantine\C\WINDOWS\system32\drivers;Trojan.Sentinel;Deleted.;
Ryj48.sys.vir;C:\qoobox\Quarantine\C\WINDOWS\system32\drivers;Trojan.Sentinel;Deleted.;
Restore.exe.vir;C:\qoobox\Quarantine\C\WINDOWS\system32\Restore;Trojan.MulDrop.9985;Deleted.;
Dc3.exe;C:\RECYCLER\S-1-5-21-391518563-3017603296-3343825356-500;Trojan.MulDrop.9985;Deleted.;
Dc4.exe;C:\RECYCLER\S-1-5-21-391518563-3017603296-3343825356-500;Trojan.MulDrop.9985;Deleted.;
A0108686.exe;C:\System Volume Information\_restore{5FED904E-6E1E-4B49-8681-D5C017BB5784}\RP137;Trojan.Click.4761;Deleted.;
A0108688.exe;C:\System Volume Information\_restore{5FED904E-6E1E-4B49-8681-D5C017BB5784}\RP137;Trojan.Fakealert.289;Deleted.;
A0108689.exe;C:\System Volume Information\_restore{5FED904E-6E1E-4B49-8681-D5C017BB5784}\RP137;Trojan.DownLoader.35463;Deleted.;
A0109687.exe;C:\System Volume Information\_restore{5FED904E-6E1E-4B49-8681-D5C017BB5784}\RP137;Trojan.Click.4761;Deleted.;
A0110760.exe;C:\System Volume Information\_restore{5FED904E-6E1E-4B49-8681-D5C017BB5784}\RP137;Trojan.Click.4761;Deleted.;
A0110768.exe;C:\System Volume Information\_restore{5FED904E-6E1E-4B49-8681-D5C017BB5784}\RP137;Trojan.Fakealert.289;Deleted.;
A0110769.exe;C:\System Volume Information\_restore{5FED904E-6E1E-4B49-8681-D5C017BB5784}\RP137;Trojan.DownLoader.35463;Deleted.;
A0110781.exe;C:\System Volume Information\_restore{5FED904E-6E1E-4B49-8681-D5C017BB5784}\RP137;Trojan.Click.4761;Deleted.;
A0110810.exe;C:\System Volume Information\_restore{5FED904E-6E1E-4B49-8681-D5C017BB5784}\RP138;Trojan.DownLoader.25873;Deleted.;
A0111053.exe;C:\System Volume Information\_restore{5FED904E-6E1E-4B49-8681-D5C017BB5784}\RP140;Trojan.DownLoader.25873;Deleted.;
A0111063.exe;C:\System Volume Information\_restore{5FED904E-6E1E-4B49-8681-D5C017BB5784}\RP140;Trojan.Click.4761;Deleted.;
A0111082.exe;C:\System Volume Information\_restore{5FED904E-6E1E-4B49-8681-D5C017BB5784}\RP141;Trojan.Click.4761;Deleted.;
A0111088.exe;C:\System Volume Information\_restore{5FED904E-6E1E-4B49-8681-D5C017BB5784}\RP141;Trojan.DownLoader.25873;Deleted.;
A0111102.exe;C:\System Volume Information\_restore{5FED904E-6E1E-4B49-8681-D5C017BB5784}\RP141;Trojan.DownLoader.35463;Deleted.;
A0111107.exe;C:\System Volume Information\_restore{5FED904E-6E1E-4B49-8681-D5C017BB5784}\RP141;Trojan.DownLoader.35463;Deleted.;
A0111108.exe;C:\System Volume Information\_restore{5FED904E-6E1E-4B49-8681-D5C017BB5784}\RP141;Trojan.Fakealert.289;Deleted.;
A0111118.exe;C:\System Volume Information\_restore{5FED904E-6E1E-4B49-8681-D5C017BB5784}\RP141;Trojan.Fakealert.311;Deleted.;
A0111124.exe;C:\System Volume Information\_restore{5FED904E-6E1E-4B49-8681-D5C017BB5784}\RP141;Trojan.DownLoader.25873;Deleted.;
A0117733.exe;C:\System Volume Information\_restore{5FED904E-6E1E-4B49-8681-D5C017BB5784}\RP154;Adware.Spysheriff;;
A0135981.sys;C:\System Volume Information\_restore{5FED904E-6E1E-4B49-8681-D5C017BB5784}\RP199;Trojan.NtRootKit.472;Deleted.;
A0135982.exe:exm.exe;C:\System Volume Information\_restore{5FED904E-6E1E-4B49-8681-D5C017BB5784}\RP199;BackDoor.Bolg.origin;Incurable.Moved.;
cs120_XP.exe;C:\temp\cs120_XP;Trojan.MulDrop.9985;Deleted.;
vcs5BGEffects.exe;C:\vcs5BGEffects;Trojan.MulDrop.9985;Deleted.;
x86_System.EnterpriseServices_b03f5f7f11d50a3a_2.0.0.0_x-ww_7d5f3790.exe;C:\WINDOWS\assembly\GAC_32\System.EnterpriseServices\2.0.0.0__b03f5f7f11d50a3a;Trojan.MulDrop.9985;Deleted.;
Cursors.exe;C:\WINDOWS\Cursors;Trojan.MulDrop.9985;Deleted.;
Aero Cursors.exe;C:\WINDOWS\Cursors\Aero Cursors;Trojan.MulDrop.9985;Deleted.;
Debug.exe;C:\WINDOWS\Debug;Trojan.MulDrop.9985;Deleted.;
UserMode.exe;C:\WINDOWS\Debug\UserMode;Trojan.MulDrop.9985;Deleted.;
WPD.exe;C:\WINDOWS\Debug\WPD;Trojan.MulDrop.9985;Deleted.;
{1CF6A75F-C57D-4BB1-BF0C-70A9D9187D4E}.exe;C:\WINDOWS\Downloaded Installations\{1CF6A75F-C57D-4BB1-BF0C-70A9D9187D4E};Trojan.MulDrop.9985;Deleted.;
{8DCDF8EE-7784-4FC2-8A9A-DD9061FC99F1}.exe;C:\WINDOWS\Downloaded Installations\{8DCDF8EE-7784-4FC2-8A9A-DD9061FC99F1};Trojan.MulDrop.9985;Deleted.;
Downloaded Program Files.exe;C:\WINDOWS\Downloaded Program Files;Trojan.MulDrop.9985;Deleted.;
i386.exe;C:\WINDOWS\Driver Cache\i386;Trojan.MulDrop.9985;Deleted.;
ehome.exe;C:\WINDOWS\ehome;Trojan.MulDrop.9985;Deleted.;
CreateDisc.exe;C:\WINDOWS\ehome\CreateDisc;Trojan.MulDrop.9985;Deleted.;
tables.exe;C:\WINDOWS\ehome\CreateDisc\Components\tables;Trojan.MulDrop.9985;Deleted.;
Filters.exe;C:\WINDOWS\ehome\CreateDisc\Filters;Trojan.MulDrop.9985;Deleted.;
Sfxplugins.exe;C:\WINDOWS\ehome\CreateDisc\Sfxplugins;Trojan.MulDrop.9985;Deleted.;
SonicResources.exe;C:\WINDOWS\ehome\CreateDisc\SonicResources;Trojan.MulDrop.9985;Deleted.;
Symphony.exe;C:\WINDOWS\ehome\CreateDisc\Styles\NTSC\Symphony;Trojan.MulDrop.9985;Deleted.;
CacheDataFiles.exe;C:\WINDOWS\ehome\CreateDisc\Styles\NTSC\Symphony\Cache\CacheDataFiles;Trojan.MulDrop.9985;Deleted.;
Symphony.exe;C:\WINDOWS\ehome\CreateDisc\Styles\NTSC\Symphony\Symphony;Trojan.MulDrop.9985;Deleted.;
Symphony.exe;C:\WINDOWS\ehome\CreateDisc\Styles\PAL\Symphony;Trojan.MulDrop.9985;Deleted.;
CacheDataFiles.exe;C:\WINDOWS\ehome\CreateDisc\Styles\PAL\Symphony\Cache\CacheDataFiles;Trojan.MulDrop.9985;Deleted.;
Symphony.exe;C:\WINDOWS\ehome\CreateDisc\Styles\PAL\Symphony\Symphony;Trojan.MulDrop.9985;Deleted.;
TranscoderPlugins.exe;C:\WINDOWS\ehome\CreateDisc\TranscoderPlugins;Trojan.MulDrop.9985;Deleted.;
cs.exe;C:\WINDOWS\ehome\cs;Trojan.MulDrop.9985;Deleted.;
da.exe;C:\WINDOWS\ehome\da;Trojan.MulDrop.9985;Deleted.;
de.exe;C:\WINDOWS\ehome\de;Trojan.MulDrop.9985;Deleted.;
ehHelp.exe;C:\WINDOWS\ehome\ehHelp;Trojan.MulDrop.9985;Deleted.;
EHTS.exe;C:\WINDOWS\ehome\ehHelp\EHTS;Trojan.MulDrop.9985;Deleted.;
files.exe;C:\WINDOWS\ehome\ehHelp\files;Trojan.MulDrop.9985;Deleted.;
es.exe;C:\WINDOWS\ehome\es;Trojan.MulDrop.9985;Deleted.;
fi.exe;C:\WINDOWS\ehome\fi;Trojan.MulDrop.9985;Deleted.;
fr.exe;C:\WINDOWS\ehome\fr;Trojan.MulDrop.9985;Deleted.;
it.exe;C:\WINDOWS\ehome\it;Trojan.MulDrop.9985;Deleted.;
ja.exe;C:\WINDOWS\ehome\ja;Trojan.MulDrop.9985;Deleted.;
ko.exe;C:\WINDOWS\ehome\ko;Trojan.MulDrop.9985;Deleted.;
nl.exe;C:\WINDOWS\ehome\nl;Trojan.MulDrop.9985;Deleted.;
no.exe;C:\WINDOWS\ehome\no;Trojan.MulDrop.9985;Deleted.;
pl.exe;C:\WINDOWS\ehome\pl;Trojan.MulDrop.9985;Deleted.;
pt.exe;C:\WINDOWS\ehome\pt;Trojan.MulDrop.9985;Deleted.;
ru.exe;C:\WINDOWS\ehome\ru;Trojan.MulDrop.9985;Deleted.;
sv.exe;C:\WINDOWS\ehome\sv;Trojan.MulDrop.9985;Deleted.;
tr.exe;C:\WINDOWS\ehome\tr;Trojan.MulDrop.9985;Deleted.;
zh-chs.exe;C:\WINDOWS\ehome\zh-chs;Trojan.MulDrop.9985;Deleted.;
zh-cht.exe;C:\WINDOWS\ehome\zh-cht;Trojan.MulDrop.9985;Deleted.;
Fonts.exe;C:\WINDOWS\Fonts;Trojan.MulDrop.9985;Deleted.;
Help.exe;C:\WINDOWS\Help;Trojan.MulDrop.9985;Deleted.;
MUI.exe;C:\WINDOWS\Help\MUI;Trojan.MulDrop.9985;Deleted.;
0414.exe;C:\WINDOWS\Help\MUI\0414;Trojan.MulDrop.9985;Deleted.;
Training.exe;C:\WINDOWS\Help\SBSI\Training;Trojan.MulDrop.9985;Deleted.;
Database.exe;C:\WINDOWS\Help\SBSI\Training\Database;Trojan.MulDrop.9985;Deleted.;
WXPPRO.exe;C:\WINDOWS\Help\SBSI\Training\WXPPRO;Trojan.MulDrop.9985;Deleted.;
CBO.exe;C:\WINDOWS\Help\SBSI\Training\WXPPRO\CBO;Trojan.MulDrop.9985;Deleted.;
Cbz.exe;C:\WINDOWS\Help\SBSI\Training\WXPPRO\Content\Cbz;Trojan.MulDrop.9985;Deleted.;
Lib.exe;C:\WINDOWS\Help\SBSI\Training\WXPPRO\Content\Lib;Trojan.MulDrop.9985;Deleted.;
Wave.exe;C:\WINDOWS\Help\SBSI\Training\WXPPRO\Content\Wave;Trojan.MulDrop.9985;Deleted.;
htmlTour.exe;C:\WINDOWS\Help\Tours\htmlTour;Trojan.MulDrop.9985;Deleted.;
0414.exe;C:\WINDOWS\Help\Tours\htmlTour\mui\0414;Trojan.MulDrop.9985;Deleted.;
mmTour.exe;C:\WINDOWS\Help\Tours\mmTour;Trojan.MulDrop.9985;Deleted.;
0414.exe;C:\WINDOWS\Help\Tours\mmTour\mui\0414;Trojan.MulDrop.9985;Deleted.;
WindowsMediaPlayer.exe;C:\WINDOWS\Help\Tours\WindowsMediaPlayer;Trojan.MulDrop.9985;Deleted.;
Audio.exe;C:\WINDOWS\Help\Tours\WindowsMediaPlayer\Audio;Trojan.MulDrop.9985;Deleted.;
Wav.exe;C:\WINDOWS\Help\Tours\WindowsMediaPlayer\Audio\Wav;Trojan.MulDrop.9985;Deleted.;
Cnt.exe;C:\WINDOWS\Help\Tours\WindowsMediaPlayer\Cnt;Trojan.MulDrop.9985;Deleted.;
Css.exe;C:\WINDOWS\Help\Tours\WindowsMediaPlayer\Css;Trojan.MulDrop.9985;Deleted.;
Img.exe;C:\WINDOWS\Help\Tours\WindowsMediaPlayer\Img;Trojan.MulDrop.9985;Deleted.;
Btn.exe;C:\WINDOWS\Help\Tours\WindowsMediaPlayer\Img\Btn;Trojan.MulDrop.9985;Deleted.;
0414.exe;C:\WINDOWS\Help\Tours\WindowsMediaPlayer\MUI\0414;Trojan.MulDrop.9985;Deleted.;
Audio.exe;C:\WINDOWS\Help\Tours\WindowsMediaPlayer\MUI\0414\Audio;Trojan.MulDrop.9985;Deleted.;
Wav.exe;C:\WINDOWS\Help\Tours\WindowsMediaPlayer\MUI\0414\Audio\Wav;Trojan.MulDrop.9985;Deleted.;
Cnt.exe;C:\WINDOWS\Help\Tours\WindowsMediaPlayer\MUI\0414\Cnt;Trojan.MulDrop.9985;Deleted.;
Css.exe;C:\WINDOWS\Help\Tours\WindowsMediaPlayer\MUI\0414\Css;Trojan.MulDrop.9985;Deleted.;
Img.exe;C:\WINDOWS\Help\Tours\WindowsMediaPlayer\MUI\0414\Img;Trojan.MulDrop.9985;Deleted.;
Btn.exe;C:\WINDOWS\Help\Tours\WindowsMediaPlayer\MUI\0414\Img\Btn;Trojan.MulDrop.9985;Deleted.;
WMarks.exe;C:\WINDOWS\Help\Tours\WindowsMediaPlayer\MUI\0414\Img\WMarks;Trojan.MulDrop.9985;Deleted.;
Scr.exe;C:\WINDOWS\Help\Tours\WindowsMediaPlayer\MUI\0414\Scr;Trojan.MulDrop.9985;Deleted.;
Video.exe;C:\WINDOWS\Help\Tours\WindowsMediaPlayer\MUI\0414\Video;Trojan.MulDrop.9985;Deleted.;
Scr.exe;C:\WINDOWS\Help\Tours\WindowsMediaPlayer\Scr;Trojan.MulDrop.9985;Deleted.;
Video.exe;C:\WINDOWS\Help\Tours\WindowsMediaPlayer\Video;Trojan.MulDrop.9985;Deleted.;
I386.exe;C:\WINDOWS\I386;Trojan.MulDrop.9985;Deleted.;
DEFAULT.exe;C:\WINDOWS\I386\ASMS\1\DEFAULT;Trojan.MulDrop.9985;Deleted.;
GDIPLUS.exe;C:\WINDOWS\I386\ASMS\10\MSFT\WINDOWS\GDIPLUS;Trojan.MulDrop.9985;Deleted.;
GDIPLUS.exe;C:\WINDOWS\I386\ASMS\10\POLICY\MSFT\WINDOWS\GDIPLUS;Trojan.MulDrop.9985;Deleted.;
GDIPLUS.exe;C:\WINDOWS\I386\ASMS\1000\MSFT\WINDOWS\GDIPLUS;Trojan.MulDrop.9985;Deleted.;
DEFAULT.exe;C:\WINDOWS\I386\ASMS\2\DEFAULT;Trojan.MulDrop.9985;Deleted.;
DEFAULT.exe;C:\WINDOWS\I386\ASMS\5100\MSFT\WINDOWS\SYSTEM\DEFAULT;Trojan.MulDrop.9985;Deleted.;
DXMRTP.exe;C:\WINDOWS\I386\ASMS\52\MSFT\WINDOWS\NET\DXMRTP;Trojan.MulDrop.9985;Deleted.;
RTCDLL.exe;C:\WINDOWS\I386\ASMS\52\MSFT\WINDOWS\NET\RTCDLL;Trojan.MulDrop.9985;Deleted.;
RTCRES.exe;C:\WINDOWS\I386\ASMS\52\MSFT\WINDOWS\NET\RTCRES;Trojan.MulDrop.9985;Deleted.;
CONTROLS.exe;C:\WINDOWS\I386\ASMS\60\MSFT\WINDOWS\COMMON\CONTROLS;Trojan.MulDrop.9985;Deleted.;
COMCTL.exe;C:\WINDOWS\I386\ASMS\60\POLICY\60\COMCTL;Trojan.MulDrop.9985;Deleted.;
VCRTL.exe;C:\WINDOWS\I386\ASMS\6000\MSFT\VCRTL;Trojan.MulDrop.9985;Deleted.;
CONTROLS.exe;C:\WINDOWS\I386\ASMS\6000\MSFT\WINDOWS\COMMON\CONTROLS;Trojan.MulDrop.9985;Deleted.;
MSWINCRT.exe;C:\WINDOWS\I386\ASMS\70\MSFT\WINDOWS\MSWINCRT;Trojan.MulDrop.9985;Deleted.;
MSWINCRT.exe;C:\WINDOWS\I386\ASMS\70\POLICY\MSFT\MSWINCRT;Trojan.MulDrop.9985;Deleted.;
MSWINCRT.exe;C:\WINDOWS\I386\ASMS\7000\MSFT\WINDOWS\MSWINCRT;Trojan.MulDrop.9985;Deleted.;
COMPDATA.exe;C:\WINDOWS\I386\COMPDATA;Trojan.MulDrop.9985;Deleted.;
DRW.exe;C:\WINDOWS\I386\DRW;Trojan.MulDrop.9985;Deleted.;
1033.exe;C:\WINDOWS\I386\DRW\1033;Trojan.MulDrop.9985;Deleted.;
LANG.exe;C:\WINDOWS\I386\LANG;Trojan.MulDrop.9985;Deleted.;
SYSTEM32.exe;C:\WINDOWS\I386\SYSTEM32;Trojan.MulDrop.9985;Deleted.;
WINNTUPG.exe;C:\WINDOWS\I386\WINNTUPG;Trojan.MulDrop.9985;Deleted.;
ENTINF.exe;C:\WINDOWS\I386\WINNTUPG\ENTINF;Trojan.MulDrop.9985;Deleted.;
MODEMSHR.exe;C:\WINDOWS\I386\WINNTUPG\MS\MODEMSHR;Trojan.MulDrop.9985;Deleted.;
SNA.exe;C:\WINDOWS\I386\WINNTUPG\MS\SNA;Trojan.MulDrop.9985;Deleted.;
ASYNC.exe;C:\WINDOWS\I386\WINNTUPG\OEM\DIGI\ASYNC;Trojan.MulDrop.9985;Deleted.;
BRI.exe;C:\WINDOWS\I386\WINNTUPG\OEM\DIGI\ISDN\BRI;Trojan.MulDrop.9985;Deleted.;
PRI.exe;C:\WINDOWS\I386\WINNTUPG\OEM\DIGI\ISDN\PRI;Trojan.MulDrop.9985;Deleted.;
REALPORT.exe;C:\WINDOWS\I386\WINNTUPG\OEM\DIGI\REALPORT;Trojan.MulDrop.9985;Deleted.;
EICON.exe;C:\WINDOWS\I386\WINNTUPG\OEM\EICON;Trojan.MulDrop.9985;Deleted.;
EQN.exe;C:\WINDOWS\I386\WINNTUPG\OEM\EQN;Trojan.MulDrop.9985;Deleted.;
MPS.exe;C:\WINDOWS\I386\WINNTUPG\OEM\SPX\MPS;Trojan.MulDrop.9985;Deleted.;
TIGERJET.exe;C:\WINDOWS\I386\WINNTUPG\OEM\TIGERJET;Trojan.MulDrop.9985;Deleted.;
PERINF.exe;C:\WINDOWS\I386\WINNTUPG\PERINF;Trojan.MulDrop.9985;Deleted.;
SRVINF.exe;C:\WINDOWS\I386\WINNTUPG\SRVINF;Trojan.MulDrop.9985;Deleted.;
ime.exe;C:\WINDOWS\ime;Trojan.MulDrop.9985;Deleted.;
APPLETS.exe;C:\WINDOWS\ime\CHSIME\APPLETS;Trojan.MulDrop.9985;Deleted.;
Applets.exe;C:\WINDOWS\ime\CHTIME\Applets;Trojan.MulDrop.9985;Deleted.;
IMJP8_1.exe;C:\WINDOWS\ime\IMJP8_1;Trojan.MulDrop.9985;Deleted.;
APPLETS.exe;C:\WINDOWS\ime\IMJP8_1\APPLETS;Trojan.MulDrop.9985;Deleted.;
DICTS.exe;C:\WINDOWS\ime\IMJP8_1\DICTS;Trojan.MulDrop.9985;Deleted.;
HELP.exe;C:\WINDOWS\ime\IMJP8_1\HELP;Trojan.MulDrop.9985;Deleted.;
IMKR6_1.exe;C:\WINDOWS\ime\IMKR6_1;Trojan.MulDrop.9985;Deleted.;
Applets.exe;C:\WINDOWS\ime\IMKR6_1\Applets;Trojan.MulDrop.9985;Deleted.;
Dicts.exe;C:\WINDOWS\ime\IMKR6_1\Dicts;Trojan.MulDrop.9985;Deleted.;
HELP.exe;C:\WINDOWS\ime\IMKR6_1\HELP;Trojan.MulDrop.9985;Deleted.;
SHARED.exe;C:\WINDOWS\ime\SHARED;Trojan.MulDrop.9985;Deleted.;
RES.exe;C:\WINDOWS\ime\SHARED\RES;Trojan.MulDrop.9985;Deleted.;
inf.exe;C:\WINDOWS\inf;Trojan.MulDrop.9985;Deleted.;
Media.exe;C:\WINDOWS\Media;Trojan.MulDrop.9985;Deleted.;
1.0.2902.0.exe;C:\WINDOWS\Microsoft.NET\DirectX for Managed Code\1.0.2902.0;Trojan.MulDrop.9985;Deleted.;
1.0.2903.0.exe;C:\WINDOWS\Microsoft.NET\DirectX for Managed Code\1.0.2903.0;Trojan.MulDrop.9985;Deleted.;
1.0.2904.0.exe;C:\WINDOWS\Microsoft.NET\DirectX for Managed Code\1.0.2904.0;Trojan.MulDrop.9985;Deleted.;
1.0.2905.0.exe;C:\WINDOWS\Microsoft.NET\DirectX for Managed Code\1.0.2905.0;Trojan.MulDrop.9985;Deleted.;
1.0.2906.0.exe;C:\WINDOWS\Microsoft.NET\DirectX for Managed Code\1.0.2906.0;Trojan.MulDrop.9985;Deleted.;
1.0.2907.0.exe;C:\WINDOWS\Microsoft.NET\DirectX for Managed Code\1.0.2907.0;Trojan.MulDrop.9985;Deleted.;
1.0.2908.0.exe;C:\WINDOWS\Microsoft.NET\DirectX for Managed Code\1.0.2908.0;Trojan.MulDrop.9985;Deleted.;
1.0.2909.0.exe;C:\WINDOWS\Microsoft.NET\DirectX for Managed Code\1.0.2909.0;Trojan.MulDrop.9985;Deleted.;
1.0.2910.0.exe;C:\WINDOWS\Microsoft.NET\DirectX for Managed Code\1.0.2910.0;Trojan.MulDrop.9985;Deleted.;
1.0.2911.0.exe;C:\WINDOWS\Microsoft.NET\DirectX for Managed Code\1.0.2911.0;Trojan.MulDrop.9985;Deleted.;
Framework.exe;C:\WINDOWS\Microsoft.NET\Framework;Trojan.MulDrop.9985;Deleted.;
v1.0.3705.exe;C:\WINDOWS\Microsoft.NET\Framework\v1.0.3705;Trojan.MulDrop.9985;Deleted.;
1028.exe;C:\WINDOWS\Microsoft.NET\Framework\v1.0.3705\1028;Trojan.MulDrop.9985;Deleted.;
1031.exe;C:\WINDOWS\Microsoft.NET\Framework\v1.0.3705\1031;Trojan.MulDrop.9985;Deleted.;
1033.exe;C:\WINDOWS\Microsoft.NET\Framework\v1.0.3705\1033;Trojan.MulDrop.9985;Deleted.;
1036.exe;C:\WINDOWS\Microsoft.NET\Framework\v1.0.3705\1036;Trojan.MulDrop.9985;Deleted.;
1040.exe;C:\WINDOWS\Microsoft.NET\Framework\v1.0.3705\1040;Trojan.MulDrop.9985;Deleted.;
1041.exe;C:\WINDOWS\Microsoft.NET\Framework\v1.0.3705\1041;Trojan.MulDrop.9985;Deleted.;
1042.exe;C:\WINDOWS\Microsoft.NET\Framework\v1.0.3705\1042;Trojan.MulDrop.9985;Deleted.;
2052.exe;C:\WINDOWS\Microsoft.NET\Framework\v1.0.3705\2052;Trojan.MulDrop.9985;Deleted.;
3082.exe;C:\WINDOWS\Microsoft.NET\Framework\v1.0.3705\3082;Trojan.MulDrop.9985;Deleted.;
ASP.NETClientFiles.exe;C:\WINDOWS\Microsoft.NET\Framework\v1.0.3705\ASP.NETClientFiles;Trojan.MulDrop.9985;Deleted.;
CONFIG.exe;C:\WINDOWS\Microsoft.NET\Framework\v1.0.3705\CONFIG;Trojan.MulDrop.9985;Deleted.;
DE.exe;C:\WINDOWS\Microsoft.NET\Framework\v1.0.3705\DE;Trojan.MulDrop.9985;Deleted.;
es.exe;C:\WINDOWS\Microsoft.NET\Framework\v1.0.3705\es;Trojan.MulDrop.9985;Deleted.;
fr.exe;C:\WINDOWS\Microsoft.NET\Framework\v1.0.3705\fr;Trojan.MulDrop.9985;Deleted.;
it.exe;C:\WINDOWS\Microsoft.NET\Framework\v1.0.3705\it;Trojan.MulDrop.9985;Deleted.;
JA.exe;C:\WINDOWS\Microsoft.NET\Framework\v1.0.3705\JA;Trojan.MulDrop.9985;Deleted.;
ko.exe;C:\WINDOWS\Microsoft.NET\Framework\v1.0.3705\ko;Trojan.MulDrop.9985;Deleted.;
zh-CHS.exe;C:\WINDOWS\Microsoft.NET\Framework\v1.0.3705\zh-CHS;Trojan.MulDrop.9985;Deleted.;
zh-CHT.exe;C:\WINDOWS\Microsoft.NET\Framework\v1.0.3705\zh-CHT;Trojan.MulDrop.9985;Deleted.;
v1.1.4322.exe;C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322;Trojan.MulDrop.9985;Deleted.;
1033.exe;C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\1033;Trojan.MulDrop.9985;Deleted.;
1044.exe;C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\1044;Trojan.MulDrop.9985;Deleted.;
ASP.NETClientFiles.exe;C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\ASP.NETClientFiles;Trojan.MulDrop.9985;Deleted.;
CONFIG.exe;C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\CONFIG;Trojan.MulDrop.9985;Deleted.;
ko.exe;C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\ko;Trojan.MulDrop.9985;Deleted.;
0409.exe;C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\MUI\0409;Trojan.MulDrop.9985;Deleted.;
0414.exe;C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\MUI\0414;Trojan.MulDrop.9985;Deleted.;
no.exe;C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\no;Trojan.MulDrop.9985;Deleted.;
SHADOW832.exe;C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\SHADOW832;Trojan.MulDrop.9985;Deleted.;
Updates.exe;C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates;Trojan.MulDrop.9985;Deleted.;
M928366.exe;C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\M928366;Trojan.MulDrop.9985;Deleted.;
v2.0.50727.exe;C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727;Trojan.MulDrop.9985;Deleted.;
1033.exe;C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\1033;Trojan.MulDrop.9985;Deleted.;
1044.exe;C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\1044;Trojan.MulDrop.9985;Deleted.;
ASP.NETWebAdminFiles.exe;C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles;Trojan.MulDrop.9985;Deleted.;
AppConfig.exe;C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\AppConfig;Trojan.MulDrop.9985;Deleted.;
App_LocalResources.exe;C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\AppConfig\App_LocalResources;Trojan.MulDrop.9985;Deleted.;
App_Code.exe;C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\App_Code;Trojan.MulDrop.9985;Deleted.;
App_Data.exe;C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\App_Data;Trojan.MulDrop.9985;Deleted.;
App_GlobalResources.exe;C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\App_GlobalResources;Trojan.MulDrop.9985;Deleted.;
App_LocalResources.exe;C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\App_LocalResources;Trojan.MulDrop.9985;Deleted.;
Images.exe;C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\Images;Trojan.MulDrop.9985;Deleted.;
Providers.exe;C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\Providers;Trojan.MulDrop.9985;Deleted.;
App_LocalResources.exe;C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\Providers\App_LocalResources;Trojan.MulDrop.9985;Deleted.;
Security.exe;C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\Security;Trojan.MulDrop.9985;Deleted.;
App_LocalResources.exe;C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\Security\App_LocalResources;Trojan.MulDrop.9985;Deleted.;
Permissions.exe;C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\Security\Permissions;Trojan.MulDrop.9985;Deleted.;
App_LocalResources.exe;C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\Security\Permissions\App_LocalResources;Trojan.MulDrop.9985;Deleted.;
Roles.exe;C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\Security\Roles;Trojan.MulDrop.9985;Deleted.;
App_LocalResources.exe;C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\Security\Roles\App_LocalResources;Trojan.MulDrop.9985;Deleted.;
Users.exe;C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\Security\Users;Trojan.MulDrop.9985;Deleted.;
App_LocalResources.exe;C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\Security\Users\App_LocalResources;Trojan.MulDrop.9985;Deleted.;
Wizard.exe;C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\Security\Wizard;Trojan.MulDrop.9985;Deleted.;
App_LocalResources.exe;C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\Security\Wizard\App_LocalResources;Trojan.MulDrop.9985;Deleted.;
CONFIG.exe;C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\CONFIG;Trojan.MulDrop.9985;Deleted.;
Browsers.exe;C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\CONFIG\Browsers;Trojan.MulDrop.9985;Deleted.;
NO.exe;C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\GAC\NO;Trojan.MulDrop.9985;Deleted.;
Microsoft .NET Framework 2.0.exe;C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft .NET Framework 2.0;Trojan.MulDrop.9985;Deleted.;
Microsoft .NET Framework 2.0 Language Pack - NOR.exe;C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft .NET Framework 2.0 Language Pack - NOR;Trojan.MulDrop.9985;Deleted.;
MSBuild.exe;C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\MSBuild;Trojan.MulDrop.9985;Deleted.;
0409.exe;C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\MUI\0409;Trojan.MulDrop.9985;Deleted.;
0414.exe;C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\MUI\0414;Trojan.MulDrop.9985;Deleted.;
no.exe;C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\no;Trojan.MulDrop.9985;Deleted.;
RedistList.exe;C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\RedistList;Trojan.MulDrop.9985;Deleted.;
msagent.exe;C:\WINDOWS\msagent;Trojan.MulDrop.9985;Deleted.;
chars.exe;C:\WINDOWS\msagent\chars;Trojan.MulDrop.9985;Deleted.;
intl.exe;C:\WINDOWS\msagent\intl;Trojan.MulDrop.9985;Deleted.;
mui.exe;C:\WINDOWS\mui;Trojan.MulDrop.9985;Deleted.;
0414.exe;C:\WINDOWS\mui\fallback\0414;Trojan.MulDrop.9985;Deleted.;
UserDumps.exe;C:\WINDOWS\pchealth\ERRORREP\UserDumps;Trojan.MulDrop.9985;Deleted.;
binaries.exe;C:\WINDOWS\pchealth\helpctr\binaries;Trojan.MulDrop.9985;Deleted.;
Config.exe;C:\WINDOWS\pchealth\helpctr\Config;Trojan.MulDrop.9985;Deleted.;
Cache.exe;C:\WINDOWS\pchealth\helpctr\Config\Cache;Trojan.MulDrop.9985;Deleted.;
News.exe;C:\WINDOWS\pchealth\helpctr\Config\News;Trojan.MulDrop.9985;Deleted.;
Database.exe;C:\WINDOWS\pchealth\helpctr\Database;Trojan.MulDrop.9985;Deleted.;
Indices.exe;C:\WINDOWS\pchealth\helpctr\Indices;Trojan.MulDrop.9985;Deleted.;
Database.exe;C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\Database;Trojan.MulDrop.9985;Deleted.;
Indices.exe;C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\Indices;Trojan.MulDrop.9985;Deleted.;
System.exe;C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System;Trojan.MulDrop.9985;Deleted.;
blurbs.exe;C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\blurbs;Trojan.MulDrop.9985;Deleted.;
CompatCtr.exe;C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\CompatCtr;Trojan.MulDrop.9985;Deleted.;
css.exe;C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\css;Trojan.MulDrop.9985;Deleted.;
dialogs.exe;C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\dialogs;Trojan.MulDrop.9985;Deleted.;
DVDUpgrd.exe;C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\DVDUpgrd;Trojan.MulDrop.9985;Deleted.;
ErrMsg.exe;C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\ErrMsg;Trojan.MulDrop.9985;Deleted.;
errors.exe;C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\errors;Trojan.MulDrop.9985;Deleted.;
images.exe;C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\images;Trojan.MulDrop.9985;Deleted.;
16x16.exe;C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\images\16x16;Trojan.MulDrop.9985;Deleted.;
24x24.exe;C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\images\24x24;Trojan.MulDrop.9985;Deleted.;
32x32.exe;C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\images\32x32;Trojan.MulDrop.9985;Deleted.;
48x48.exe;C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\images\48x48;Trojan.MulDrop.9985;Deleted.;
Centers.exe;C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\images\Centers;Trojan.MulDrop.9985;Deleted.;
Expando.exe;C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\images\Expando;Trojan.MulDrop.9985;Deleted.;
NetDiag.exe;C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\NetDiag;Trojan.MulDrop.9985;Deleted.;
panels.exe;C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\panels;Trojan.MulDrop.9985;Deleted.;
subpanels.exe;C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\panels\subpanels;Trojan.MulDrop.9985;Deleted.;
rc.exe;C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\rc;Trojan.MulDrop.9985;Deleted.;
Remote Assistance.exe;C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\Remote Assistance;Trojan.MulDrop.9985;Deleted.;
Common.exe;C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\Remote Assistance\Common;Trojan.MulDrop.9985;Deleted.;
Css.exe;C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\Remote Assistance\Css;Trojan.MulDrop.9985;Deleted.;
Client.exe;C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\Remote Assistance\Interaction\Client;Trojan.MulDrop.9985;Deleted.;
Common.exe;C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\Remote Assistance\Interaction\Common;Trojan.MulDrop.9985;Deleted.;
Server.exe;C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\Remote Assistance\Interaction\Server;Trojan.MulDrop.9985;Deleted.;
scripts.exe;C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\scripts;Trojan.MulDrop.9985;Deleted.;
sysinfo.exe;C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\sysinfo;Trojan.MulDrop.9985;Deleted.;
graphics.exe;C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\sysinfo\graphics;Trojan.MulDrop.9985;Deleted.;
33x16pie.exe;C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\sysinfo\graphics\33x16pie;Trojan.MulDrop.9985;Deleted.;
47x24pie.exe;C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\sysinfo\graphics\47x24pie;Trojan.MulDrop.9985;Deleted.;
UpdateCtr.exe;C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\System\UpdateCtr;Trojan.MulDrop.9985;Deleted.;
CN=Microsoft Corporation,L=Redmond,S=Washington,C=US.exe;C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US;Trojan.MulDrop.9985;Deleted.;
Remote Assistance.exe;C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Rem;Trojan.MulDrop.9985;Deleted.;
Common.exe;C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Rem;Trojan.MulDrop.9985;Deleted.;
Css.exe;C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Rem;Trojan.MulDrop.9985;Deleted.;
Common.exe;C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Rem;Trojan.MulDrop.9985;Deleted.;
Email.exe;C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Rem;Trojan.MulDrop.9985;Deleted.;
Unsolicited.exe;C:\WINDOWS\pchealth\helpctr\InstalledSKUs\Professional_32_0414\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Rem;Trojan.MulDrop.9985;Deleted.;
Logs.exe;C:\WINDOWS\pchealth\helpctr\Logs;Trojan.MulDrop.9985;Deleted.;
OfflineCache.exe;C:\WINDOWS\pchealth\helpctr\OfflineCache;Trojan.MulDrop.9985;Deleted.;
Professional_32#0409.exe;C:\WINDOWS\pchealth\helpctr\OfflineCache\Professional_32#0409;Trojan.MulDrop.9985;Deleted.;
Professional_32#0414.exe;C:\WINDOWS\pchealth\helpctr\OfflineCache\Professional_32#0414;Trojan.MulDrop.9985;Deleted.;
PackageStore.exe;C:\WINDOWS\pchealth\helpctr\PackageStore;Trojan.MulDrop.9985;Deleted.;
System.exe;C:\WINDOWS\pchealth\helpctr\System;Trojan.MulDrop.9985;Deleted.;
blurbs.exe;C:\WINDOWS\pchealth\helpctr\System\blurbs;Trojan.MulDrop.9985;Deleted.;
CompatCtr.exe;C:\WINDOWS\pchealth\helpctr\System\CompatCtr;Trojan.MulDrop.9985;Deleted.;
css.exe;C:\WINDOWS\pchealth\helpctr\System\css;Trojan.MulDrop.9985;Deleted.;
dialogs.exe;C:\WINDOWS\pchealth\helpctr\System\dialogs;Trojan.MulDrop.9985;Deleted.;
DVDUpgrd.exe;C:\WINDOWS\pchealth\helpctr\System\DVDUpgrd;Trojan.MulDrop.9985;Deleted.;
ErrMsg.exe;C:\WINDOWS\pchealth\helpctr\System\ErrMsg;Trojan.MulDrop.9985;Deleted.;
errors.exe;C:\WINDOWS\pchealth\helpctr\System\errors;Trojan.MulDrop.9985;Deleted.;
images.exe;C:\WINDOWS\pchealth\helpctr\System\images;Trojan.MulDrop.9985;Deleted.;
16x16.exe;C:\WINDOWS\pchealth\helpctr\System\images\16x16;Trojan.MulDrop.9985;Deleted.;
24x24.exe;C:\WINDOWS\pchealth\helpctr\System\images\24x24;Trojan.MulDrop.9985;Deleted.;
32x32.exe;C:\WINDOWS\pchealth\helpctr\System\images\32x32;Trojan.MulDrop.9985;Deleted.;
48x48.exe;C:\WINDOWS\pchealth\helpctr\System\images\48x48;Trojan.MulDrop.9985;Deleted.;
Centers.exe;C:\WINDOWS\pchealth\helpctr\System\images\Centers;Trojan.MulDrop.9985;Deleted.;
Expando.exe;C:\WINDOWS\pchealth\helpctr\System\images\Expando;Trojan.MulDrop.9985;Deleted.;
NetDiag.exe;C:\WINDOWS\pchealth\helpctr\System\NetDiag;Trojan.MulDrop.9985;Deleted.;
panels.exe;C:\WINDOWS\pchealth\helpctr\System\panels;Trojan.MulDrop.9985;Deleted.;
subpanels.exe;C:\WINDOWS\pchealth\helpctr\System\panels\subpanels;Trojan.MulDrop.9985;Deleted.;
rc.exe;C:\WINDOWS\pchealth\helpctr\System\rc;Trojan.MulDrop.9985;Deleted.;
Remote Assistance.exe;C:\WINDOWS\pchealth\helpctr\System\Remote Assistance;Trojan.MulDrop.9985;Deleted.;
Common.exe;C:\WINDOWS\pchealth\helpctr\System\Remote Assistance\Common;Trojan.MulDrop.9985;Deleted.;
Css.exe;C:\WINDOWS\pchealth\helpctr\System\Remote Assistance\Css;Trojan.MulDrop.9985;Deleted.;
Client.exe;C:\WINDOWS\pchealth\helpctr\System\Remote Assistance\Interaction\Client;Trojan.MulDrop.9985;Deleted.;
Common.exe;C:\WINDOWS\pchealth\helpctr\System\Remote Assistance\Interaction\Common;Trojan.MulDrop.9985;Deleted.;
Server.exe;C:\WINDOWS\pchealth\helpctr\System\Remote Assistance\Interaction\Server;Trojan.MulDrop.9985;Deleted.;
scripts.exe;C:\WINDOWS\pchealth\helpctr\System\scripts;Trojan.MulDrop.9985;Deleted.;
sysinfo.exe;C:\WINDOWS\pchealth\helpctr\System\sysinfo;Trojan.MulDrop.9985;Deleted.;
graphics.exe;C:\WINDOWS\pchealth\helpctr\System\sysinfo\graphics;Trojan.MulDrop.9985;Deleted.;
33x16pie.exe;C:\WINDOWS\pchealth\helpctr\System\sysinfo\graphics\33x16pie;Trojan.MulDrop.9985;Deleted.;
47x24pie.exe;C:\WINDOWS\pchealth\helpctr\System\sysinfo\graphics\47x24pie;Trojan.MulDrop.9985;Deleted.;
UpdateCtr.exe;C:\WINDOWS\pchealth\helpctr\System\UpdateCtr;Trojan.MulDrop.9985;Deleted.;
CN=Microsoft Corporation,L=Redmond,S=Washington,C=US.exe;C:\WINDOWS\pchealth\helpctr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US;Trojan.MulDrop.9985;Deleted.;
Remote Assistance.exe;C:\WINDOWS\pchealth\helpctr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance;Trojan.MulDrop.9985;Deleted.;
Common.exe;C:\WINDOWS\pchealth\helpctr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\Common;Trojan.MulDrop.9985;Deleted.;
Css.exe;C:\WINDOWS\pchealth\helpctr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\Css;Trojan.MulDrop.9985;Deleted.;
Common.exe;C:\WINDOWS\pchealth\helpctr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\Escalation\Common;Trojan.MulDrop.9985;Deleted.;
Email.exe;C:\WINDOWS\pchealth\helpctr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\Escalation\Email;Trojan.MulDrop.9985;Deleted.;
Unsolicited.exe;C:\WINDOWS\pchealth\helpctr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\Escalation\Unsolicit;Trojan.MulDrop.9985;Deleted.;
0414.exe;C:\WINDOWS\pchealth\MUI\0414;Trojan.MulDrop.9985;Deleted.;
Binaries.exe;C:\WINDOWS\pchealth\UploadLB\Binaries;Trojan.MulDrop.9985;Deleted.;
Config.exe;C:\WINDOWS\pchealth\UploadLB\Config;Trojan.MulDrop.9985;Deleted.;
PeerNet.exe;C:\WINDOWS\PeerNet;Trojan.MulDrop.9985;Deleted.;
Schemas.exe;C:\WINDOWS\Provisioning\Schemas;Trojan.MulDrop.9985;Deleted.;
{077ACEC7-979C-40AB-9835-435BA1511E0D}.exe;C:\WINDOWS\RegisteredPackages\{077ACEC7-979C-40AB-9835-435BA1511E0D};Trojan.MulDrop.9985;Deleted.;
System.exe;C:\WINDOWS\RegisteredPackages\{077ACEC7-979C-40AB-9835-435BA1511E0D}$BACKUP$\System;Trojan.MulDrop.9985;Deleted.;
{30C7234B-6482-4A55-A11D-ECD9030313F2}.exe;C:\WINDOWS\RegisteredPackages\{30C7234B-6482-4A55-A11D-ECD9030313F2};Trojan.MulDrop.9985;Deleted.;
System.exe;C:\WINDOWS\RegisteredPackages\{30C7234B-6482-4A55-A11D-ECD9030313F2}$BACKUP$\System;Trojan.MulDrop.9985;Deleted.;
{3695EB93-6443-448D-8E2E-1F6F4FC79BC1}.exe;C:\WINDOWS\RegisteredPackages\{3695EB93-6443-448D-8E2E-1F6F4FC79BC1};Trojan.MulDrop.9985;Deleted.;
{89FDAB62-6F46-4C7E-A559-E00B9A0BACB6}.exe;C:\WINDOWS\RegisteredPackages\{89FDAB62-6F46-4C7E-A559-E00B9A0BACB6};Trojan.MulDrop.9985;Deleted.;
{981FB688-E76B-4246-987B-92083185B90A}.exe;C:\WINDOWS\RegisteredPackages\{981FB688-E76B-4246-987B-92083185B90A};Trojan.MulDrop.9985;Deleted.;
System.exe;C:\WINDOWS\RegisteredPackages\{981FB688-E76B-4246-987B-92083185B90A}$BACKUP$\System;Trojan.MulDrop.9985;Deleted.;
{A47B3654-48EE-48A5-B629-97D70175E58F}.exe;C:\WINDOWS\RegisteredPackages\{A47B3654-48EE-48A5-B629-97D70175E58F};Trojan.MulDrop.9985;Deleted.;
System.exe;C:\WINDOWS\RegisteredPackages\{A47B3654-48EE-48A5-B629-97D70175E58F}$BACKUP$\System;Trojan.MulDrop.9985;Deleted.;
{AAC1D942-0B38-4E37-9E4E-5B96A9DD2170}.exe;C:\WINDOWS\RegisteredPackages\{AAC1D942-0B38-4E37-9E4E-5B96A9DD2170};Trojan.MulDrop.9985;Deleted.;
System.exe;C:\WINDOWS\RegisteredPackages\{AAC1D942-0B38-4E37-9E4E-5B96A9DD2170}$BACKUP$\System;Trojan.MulDrop.9985;Deleted.;
{C5B8FBE9-645E-4484-A7AA-E8DA9A70DD77}.exe;C:\WINDOWS\RegisteredPackages\{C5B8FBE9-645E-4484-A7AA-E8DA9A70DD77};Trojan.MulDrop.9985;Deleted.;
System.exe;C:\WINDOWS\RegisteredPackages\{C5B8FBE9-645E-4484-A7AA-E8DA9A70DD77}$BACKUP$\System;Trojan.MulDrop.9985;Deleted.;
Registration.exe;C:\WINDOWS\Registration;Trojan.MulDrop.9985;Deleted.;
REPAIR.exe;C:\WINDOWS\REPAIR;Trojan.MulDrop.9985;Deleted.;
Themes.exe;C:\WINDOWS\Resources\Themes;Trojan.MulDrop.9985;Deleted.;
Aquarium.exe;C:\WINDOWS\Resources\Themes\Aquarium;Trojan.MulDrop.9985;Deleted.;
DaVinci.exe;C:\WINDOWS\Resources\Themes\DaVinci;Trojan.MulDrop.9985;Deleted.;
Luna.exe;C:\WINDOWS\Resources\Themes\Luna;Trojan.MulDrop.9985;Deleted.;
0414.exe;C:\WINDOWS\Resources\Themes\Luna\MUI\0414;Trojan.MulDrop.9985;Deleted.;
Homestead.exe;C:\WINDOWS\Resources\Themes\Luna\Shell\Homestead;Trojan.MulDrop.9985;Deleted.;
0414.exe;C:\WINDOWS\Resources\Themes\Luna\Shell\Homestead\MUI\0414;Trojan.MulDrop.9985;Deleted.;
Metallic.exe;C:\WINDOWS\Resources\Themes\Luna\Shell\Metallic;Trojan.MulDrop.9985;Deleted.;
0414.exe;C:\WINDOWS\Resources\Themes\Luna\Shell\Metallic\MUI\0414;Trojan.MulDrop.9985;Deleted.;
NormalColor.exe;C:\WINDOWS\Resources\Themes\Luna\Shell\NormalColor;Trojan.MulDrop.9985;Deleted.;
0414.exe;C:\WINDOWS\Resources\Themes\Luna\Shell\NormalColor\MUI\0414;Trojan.MulDrop.9985;Deleted.;
PB.exe;C:\WINDOWS\Resources\Themes\Luna\Shell\PB;Trojan.MulDrop.9985;Deleted.;
Nature.exe;C:\WINDOWS\Resources\Themes\Nature;Trojan.MulDrop.9985;Deleted.;
Royale.exe;C:\WINDOWS\Resources\Themes\Royale;Trojan.MulDrop.9985;Deleted.;
NormalColor.exe;C:\WINDOWS\Resources\Themes\Royale\Shell\NormalColor;Trojan.MulDrop.9985;Deleted.;
Space.exe;C:\WINDOWS\Resources\Themes\Space;Trojan.MulDrop.9985;Deleted.;
Database.exe;C:\WINDOWS\security\Database;Trojan.MulDrop.9985;Deleted.;
templates.exe;C:\WINDOWS\security\templates;Trojan.MulDrop.9985;Deleted.;
SoftwareDistribution.exe;C:\WINDOWS\SoftwareDistribution;Trojan.MulDrop.9985;Deleted.;
AuthCabs.exe;C:\WINDOWS\SoftwareDistribution\AuthCabs;Trojan.MulDrop.9985;Deleted.;
7971f918-a847-4430-9279-4a52d1efe18d.exe;C:\WINDOWS\SoftwareDistribution\AuthCabs\7971f918-a847-4430-9279-4a52d1efe18d;Trojan.MulDrop.9985;Deleted.;
DataStore.exe;C:\WINDOWS\SoftwareDistribution\DataStore;Trojan.MulDrop.9985;Deleted.;
Logs.exe;C:\WINDOWS\SoftwareDistribution\DataStore\Logs;Trojan.MulDrop.9985;Deleted.;
Download.exe;C:\WINDOWS\SoftwareDistribution\Download;Trojan.MulDrop.9985;Deleted.;
26a7ba71936ef28fcb3bb73b860e289e.exe;C:\WINDOWS\SoftwareDistribution\Download\26a7ba71936ef28fcb3bb73b860e289e;Trojan.MulDrop.9985;Deleted.;
sp2gdr.exe;C:\WINDOWS\SoftwareDistribution\Download\26a7ba71936ef28fcb3bb73b860e289e\sp2gdr;Trojan.MulDrop.9985;Deleted.;
sp2qfe.exe;C:\WINDOWS\SoftwareDistribution\Download\26a7ba71936ef28fcb3bb73b860e289e\sp2qfe;Trojan.MulDrop.9985;Deleted.;
update.exe;C:\WINDOWS\SoftwareDistribution\Download\26a7ba71936ef28fcb3bb73b860e289e\update;Trojan.MulDrop.9985;Deleted.;
3049c6005e80c7b3312fd80fbee860e4.exe;C:\WINDOWS\SoftwareDistribution\Download\3049c6005e80c7b3312fd80fbee860e4;Trojan.MulDrop.9985;Deleted.;
sp2gdr.exe;C:\WINDOWS\SoftwareDistribution\Download\3049c6005e80c7b3312fd80fbee860e4\sp2gdr;Trojan.MulDrop.9985;Deleted.;
sp2qfe.exe;C:\WINDOWS\SoftwareDistribution\Download\3049c6005e80c7b3312fd80fbee860e4\sp2qfe;Trojan.MulDrop.9985;Deleted.;
update.exe;C:\WINDOWS\SoftwareDistribution\Download\3049c6005e80c7b3312fd80fbee860e4\update;Trojan.MulDrop.9985;Deleted.;
3a4c74ad66aac0b11d953bbcf3937ae6.exe;C:\WINDOWS\SoftwareDistribution\Download\3a4c74ad66aac0b11d953bbcf3937ae6;Trojan.MulDrop.9985;Deleted.;
sp2qfe.exe;C:\WINDOWS\SoftwareDistribution\Download\3a4c74ad66aac0b11d953bbcf3937ae6\sp2qfe;Trojan.MulDrop.9985;Deleted.;
update.exe;C:\WINDOWS\SoftwareDistribution\Download\3a4c74ad66aac0b11d953bbcf3937ae6\update;Trojan.MulDrop.9985;Deleted.;
493760be868721503b9abd615f71e312.exe;C:\WINDOWS\SoftwareDistribution\Download\493760be868721503b9abd615f71e312;Trojan.MulDrop.9985;Deleted.;
sp2qfe.exe;C:\WINDOWS\SoftwareDistribution\Download\493760be868721503b9abd615f71e312\sp2qfe;Trojan.MulDrop.9985;Deleted.;
update.exe;C:\WINDOWS\SoftwareDistribution\Download\493760be868721503b9abd615f71e312\update;Trojan.MulDrop.9985;Deleted.;
4ef3d14045039d25ac205cb37a6ae575.exe;C:\WINDOWS\SoftwareDistribution\Download\4ef3d14045039d25ac205cb37a6ae575;Trojan.MulDrop.9985;Deleted.;
sp2gdr.exe;C:\WINDOWS\SoftwareDistribution\Download\4ef3d14045039d25ac205cb37a6ae575\sp2gdr;Trojan.MulDrop.9985;Deleted.;
sp2qfe.exe;C:\WINDOWS\SoftwareDistribution\Download\4ef3d14045039d25ac205cb37a6ae575\sp2qfe;Trojan.MulDrop.9985;Deleted.;
update.exe;C:\WINDOWS\SoftwareDistribution\Download\4ef3d14045039d25ac205cb37a6ae575\update;Trojan.MulDrop.9985;Deleted.;
4fb06badf893aaaff075a5955e07f0f6.exe;C:\WINDOWS\SoftwareDistribution\Download\4fb06badf893aaaff075a5955e07f0f6;Trojan.MulDrop.9985;Deleted.;
emerald.exe;C:\WINDOWS\SoftwareDistribution\Download\4fb06badf893aaaff075a5955e07f0f6\emerald;Trojan.MulDrop.9985;Deleted.;
update.exe;C:\WINDOWS\SoftwareDistribution\Download\4fb06badf893aaaff075a5955e07f0f6\update;Trojan.MulDrop.9985;Deleted.;
wmp10.exe;C:\WINDOWS\SoftwareDistribution\Download\4fb06badf893aaaff075a5955e07f0f6\wmp10;Trojan.MulDrop.9985;Deleted.;
wmp11.exe;C:\WINDOWS\SoftwareDistribution\Download\4fb06badf893aaaff075a5955e07f0f6\wmp11;Trojan.MulDrop.9985;Deleted.;
wmp9l.exe;C:\WINDOWS\SoftwareDistribution\Download\4fb06badf893aaaff075a5955e07f0f6\wmp9l;Trojan.MulDrop.9985;Deleted.;
wmp9nl.exe;C:\WINDOWS\SoftwareDistribution\Download\4fb06badf893aaaff075a5955e07f0f6\wmp9nl;Trojan.MulDrop.9985;Deleted.;
6d16348987bfa3ee3fd983361ac371cb.exe;C:\WINDOWS\SoftwareDistribution\Download\6d16348987bfa3ee3fd983361ac371cb;Trojan.MulDrop.9985;Deleted.;
sp2gdr.exe;C:\WINDOWS\SoftwareDistribution\Download\6d16348987bfa3ee3fd983361ac371cb\sp2gdr;Trojan.MulDrop.9985;Deleted.;
sp2qfe.exe;C:\WINDOWS\SoftwareDistribution\Download\6d16348987bfa3ee3fd983361ac371cb\sp2qfe;Trojan.MulDrop.9985;Deleted.;
update.exe;C:\WINDOWS\SoftwareDistribution\Download\6d16348987bfa3ee3fd983361ac371cb\update;Trojan.MulDrop.9985;Deleted.;
aa23f1c18895fd721870de4beeed4ad5.exe;C:\WINDOWS\SoftwareDistribution\Download\aa23f1c18895fd721870de4beeed4ad5;Trojan.MulDrop.9985;Deleted.;
sp2gdr.exe;C:\WINDOWS\SoftwareDistribution\Download\aa23f1c18895fd721870de4beeed4ad5\sp2gdr;Trojan.MulDrop.9985;Deleted.;
sp2qfe.exe;C:\WINDOWS\SoftwareDistribution\Download\aa23f1c18895fd721870de4beeed4ad5\sp2qfe;Trojan.MulDrop.9985;Deleted.;
update.exe;C:\WINDOWS\SoftwareDistribution\Download\aa23f1c18895fd721870de4beeed4ad5\update;Trojan.MulDrop.9985;Deleted.;
c1835c8cb0bb13f938a8a983ca5edea4.exe;C:\WINDOWS\SoftwareDistribution\Download\c1835c8cb0bb13f938a8a983ca5edea4;Trojan.MulDrop.9985;Deleted.;
sp2gdr.exe;C:\WINDOWS\SoftwareDistribution\Download\c1835c8cb0bb13f938a8a983ca5edea4\sp2gdr;Trojan.MulDrop.9985;Deleted.;
sp2qfe.exe;C:\WINDOWS\SoftwareDistribution\Download\c1835c8cb0bb13f938a8a983ca5edea4\sp2qfe;Trojan.MulDrop.9985;Deleted.;
update.exe;C:\WINDOWS\SoftwareDistribution\Download\c1835c8cb0bb13f938a8a983ca5edea4\update;Trojan.MulDrop.9985;Deleted.;
e50981864c541bdea07741b88d379a52.exe;C:\WINDOWS\SoftwareDistribution\Download\e50981864c541bdea07741b88d379a52;Trojan.MulDrop.9985;Deleted.;
sp2gdr.exe;C:\WINDOWS\SoftwareDistribution\Download\e50981864c541bdea07741b88d379a52\sp2gdr;Trojan.MulDrop.9985;Deleted.;
sp2qfe.exe;C:\WINDOWS\SoftwareDistribution\Download\e50981864c541bdea07741b88d379a52\sp2qfe;Trojan.MulDrop.9985;Deleted.;
update.exe;C:\WINDOWS\SoftwareDistribution\Download\e50981864c541bdea07741b88d379a52\update;Trojan.MulDrop.9985;Deleted.;
e858ee913d8b8f3c06a5389f57403189.exe;C:\WINDOWS\SoftwareDistribution\Download\e858ee913d8b8f3c06a5389f57403189;Trojan.MulDrop.9985;Deleted.;
update.exe;C:\WINDOWS\SoftwareDistribution\Download\e858ee913d8b8f3c06a5389f57403189\update;Trojan.MulDrop.9985;Deleted.;
fa58243222bcfe35e5467668df396003.exe;C:\WINDOWS\SoftwareDistribution\Download\fa58243222bcfe35e5467668df396003;Trojan.MulDrop.9985;Deleted.;
sp2qfe.exe;C:\WINDOWS\SoftwareDistribution\Download\fa58243222bcfe35e5467668df396003\sp2qfe;Trojan.MulDrop.9985;Deleted.;
update.exe;C:\WINDOWS\SoftwareDistribution\Download\fa58243222bcfe35e5467668df396003\update;Trojan.MulDrop.9985;Deleted.;
EventCache.exe;C:\WINDOWS\SoftwareDistribution\EventCache;Trojan.MulDrop.9985;Deleted.;
Default.exe;C:\WINDOWS\SoftwareDistribution\SelfUpdate\Default;Trojan.MulDrop.9985;Deleted.;
Registered.exe;C:\WINDOWS\SoftwareDistribution\SelfUpdate\Registered;Trojan.MulDrop.9985;Deleted.;
WebSetup.exe;C:\WINDOWS\SoftwareDistribution\WebSetup;Trojan.MulDrop.9985;Deleted.;
7971F918-A847-4430-9279-4A52D1EFE18D.exe;C:\WINDOWS\SoftwareDistribution\WuRedir\7971F918-A847-4430-9279-4A52D1EFE18D;Trojan.MulDrop.9985;Deleted.;
9482F4B4-E343-43B6-B170-9A65BC822C77.exe;C:\WINDOWS\SoftwareDistribution\WuRedir\9482F4B4-E343-43B6-B170-9A65BC822C77;Trojan.MulDrop.9985;Deleted.;
srchasst.exe;C:\WINDOWS\srchasst;Trojan.MulDrop.9985;Deleted.;
chars.exe;C:\WINDOWS\srchasst\chars;Trojan.MulDrop.9985;Deleted.;
0409.exe;C:\WINDOWS\srchasst\mui\0409;Trojan.MulDrop.9985;Deleted.;
0414.exe;C:\WINDOWS\srchasst\mui\0414;Trojan.MulDrop.9985;Deleted.;
Process.exe;C:\WINDOWS\system32;Tool.Prockill;;
AG1011.exe;C:\WINDOWS\system32\AGEIA\AG1011;Trojan.MulDrop.9985;Deleted.;
AG1021.exe;C:\WINDOWS\system32\AGEIA\AG1021;Trojan.MulDrop.9985;Deleted.;
{127D0A1D-4EF2-11D1-8608-00C04FC295EE}.exe;C:\WINDOWS\system32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE};Trojan.MulDrop.9985;Deleted.;
{F750E6C3-38EE-11D1-85E5-00C04FC295EE}.exe;C:\WINDOWS\system32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE};Trojan.MulDrop.9985;Deleted.;
CatRoot2.exe;C:\WINDOWS\system32\CatRoot2;Trojan.MulDrop.9985;Deleted.;
{127D0A1D-4EF2-11D1-8608-00C04FC295EE}.exe;C:\WINDOWS\system32\CatRoot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE};Trojan.MulDrop.9985;Deleted.;
{F750E6C3-38EE-11D1-85E5-00C04FC295EE}.exe;C:\WINDOWS\system32\CatRoot2\{F750E6C3-38EE-11D1-85E5-00C04FC295EE};Trojan.MulDrop.9985;Deleted.;
Com.exe;C:\WINDOWS\system32\Com;Trojan.MulDrop.9985;Deleted.;
config.exe;C:\WINDOWS\system32\config;Trojan.MulDrop.9985;Deleted.;
Dinput.exe;C:\WINDOWS\system32\DirectX\Dinput;Trojan.MulDrop.9985;Deleted.;
etc.exe;C:\WINDOWS\system32\drivers\etc;Trojan.MulDrop.9985;Deleted.;
ias.exe;C:\WINDOWS\system32\ias;Trojan.MulDrop.9985;Deleted.;
icsxml.exe;C:\WINDOWS\system32\icsxml;Trojan.MulDrop.9985;Deleted.;
CINTLGNT.exe;C:\WINDOWS\system32\IME\CINTLGNT;Trojan.MulDrop.9985;Deleted.;
PINTLGNT.exe;C:\WINDOWS\system32\IME\PINTLGNT;Trojan.MulDrop.9985;Deleted.;
TINTLGNT.exe;C:\WINDOWS\system32\IME\TINTLGNT;Trojan.MulDrop.9985;Deleted.;
HTTPERR.exe;C:\WINDOWS\system32\LogFiles\HTTPERR;Trojan.MulDrop.9985;Deleted.;
Common.exe;C:\WINDOWS\system32\Macromed\Common;Trojan.MulDrop.9985;Deleted.;
Director.exe;C:\WINDOWS\system32\Macromed\Director;Trojan.MulDrop.9985;Deleted.;
Flash.exe;C:\WINDOWS\system32\Macromed\Flash;Trojan.MulDrop.9985;Deleted.;
Shockwave 10.exe;C:\WINDOWS\system32\Macromed\Shockwave 10;Trojan.MulDrop.9985;Deleted.;
Xtras.exe;C:\WINDOWS\system32\Macromed\Shockwave 10\Xtras;Trojan.MulDrop.9985;Deleted.;
MsDtc.exe;C:\WINDOWS\system32\MsDtc;Trojan.MulDrop.9985;Deleted.;
Trace.exe;C:\WINDOWS\system32\MsDtc\Trace;Trojan.MulDrop.9985;Deleted.;
0009.exe;C:\WINDOWS\system32\mui\0009;Trojan.MulDrop.9985;Deleted.;
0401.exe;C:\WINDOWS\system32\mui\0401;Trojan.MulDrop.9985;Deleted.;
0402.exe;C:\WINDOWS\system32\mui\0402;Trojan.MulDrop.9985;Deleted.;
0404.exe;C:\WINDOWS\system32\mui\0404;Trojan.MulDrop.9985;Deleted.;
0405.exe;C:\WINDOWS\system32\mui\0405;Trojan.MulDrop.9985;Deleted.;
0406.exe;C:\WINDOWS\system32\mui\0406;Trojan.MulDrop.9985;Deleted.;
0407.exe;C:\WINDOWS\system32\mui\0407;Trojan.MulDrop.9985;Deleted.;
0408.exe;C:\WINDOWS\system32\mui\0408;Trojan.MulDrop.9985;Deleted.;
0409.exe;C:\WINDOWS\system32\mui\0409;Trojan.MulDrop.9985;Deleted.;
040b.exe;C:\WINDOWS\system32\mui\040b;Trojan.MulDrop.9985;Deleted.;
040C.exe;C:\WINDOWS\system32\mui\040C;Trojan.MulDrop.9985;Deleted.;
040D.exe;C:\WINDOWS\system32\mui\040D;Trojan.MulDrop.9985;Deleted.;
040e.exe;C:\WINDOWS\system32\mui\040e;Trojan.MulDrop.9985;Deleted.;
0410.exe;C:\WINDOWS\system32\mui\0410;Trojan.MulDrop.9985;Deleted.;
0411.exe;C:\WINDOWS\system32\mui\0411;Trojan.MulDrop.9985;Deleted.;
0412.exe;C:\WINDOWS\system32\mui\0412;Trojan.MulDrop.9985;Deleted.;
0413.exe;C:\WINDOWS\system32\mui\0413;Trojan.MulDrop.9985;Deleted.;
0414.exe;C:\WINDOWS\system32\mui\0414;Trojan.MulDrop.9985;Deleted.;
0415.exe;C:\WINDOWS\system32\mui\0415;Trojan.MulDrop.9985;Deleted.;
0416.exe;C:\WINDOWS\system32\mui\0416;Trojan.MulDrop.9985;Deleted.;
0418.exe;C:\WINDOWS\system32\mui\0418;Trojan.MulDrop.9985;Deleted.;
0419.exe;C:\WINDOWS\system32\mui\0419;Trojan.MulDrop.9985;Deleted.;
041a.exe;C:\WINDOWS\system32\mui\041a;Trojan.MulDrop.9985;Deleted.;
041b.exe;C:\WINDOWS\system32\mui\041b;Trojan.MulDrop.9985;Deleted.;
041D.exe;C:\WINDOWS\system32\mui\041D;Trojan.MulDrop.9985;Deleted.;
041e.exe;C:\WINDOWS\system32\mui\041e;Trojan.MulDrop.9985;Deleted.;
041f.exe;C:\WINDOWS\system32\mui\041f;Trojan.MulDrop.9985;Deleted.;
0424.exe;C:\WINDOWS\system32\mui\0424;Trojan.MulDrop.9985;Deleted.;
0425.exe;C:\WINDOWS\system32\mui\0425;Trojan.MulDrop.9985;Deleted.;
0426.exe;C:\WINDOWS\system32\mui\0426;Trojan.MulDrop.9985;Deleted.;
0427.exe;C:\WINDOWS\system32\mui\0427;Trojan.MulDrop.9985;Deleted.;
0804.exe;C:\WINDOWS\system32\mui\0804;Trojan.MulDrop.9985;Deleted.;
0816.exe;C:\WINDOWS\system32\mui\0816;Trojan.MulDrop.9985;Deleted.;
0C0A.exe;C:\WINDOWS\system32\mui\0C0A;Trojan.MulDrop.9985;Deleted.;
npp.exe;C:\WINDOWS\system32\npp;Trojan.MulDrop.9985;Deleted.;
oobe.exe;C:\WINDOWS\system32\oobe;Trojan.MulDrop.9985;Deleted.;
actsetup.exe;C:\WINDOWS\system32\oobe\actsetup;Trojan.MulDrop.9985;Deleted.;
error.exe;C:\WINDOWS\system32\oobe\error;Trojan.MulDrop.9985;Deleted.;
dslmain.exe;C:\WINDOWS\system32\oobe\html\dslmain;Trojan.MulDrop.9985;Deleted.;
iconnect.exe;C:\WINDOWS\system32\oobe\html\iconnect;Trojan.MulDrop.9985;Deleted.;
isptype.exe;C:\WINDOWS\system32\oobe\html\isptype;Trojan.MulDrop.9985;Deleted.;
mouse.exe;C:\WINDOWS\system32\oobe\html\mouse;Trojan.MulDrop.9985;Deleted.;
images.exe;C:\WINDOWS\system32\oobe\html\mouse\images;Trojan.MulDrop.9985;Deleted.;
sconnect.exe;C:\WINDOWS\system32\oobe\html\sconnect;Trojan.MulDrop.9985;Deleted.;
icserror.exe;C:\WINDOWS\system32\oobe\icserror;Trojan.MulDrop.9985;Deleted.;
images.exe;C:\WINDOWS\system32\oobe\images;Trojan.MulDrop.9985;Deleted.;
isperror.exe;C:\WINDOWS\system32\oobe\isperror;Trojan.MulDrop.9985;Deleted.;
0414.exe;C:\WINDOWS\system32\oobe\MUI\0414;Trojan.MulDrop.9985;Deleted.;
actsetup.exe;C:\WINDOWS\system32\oobe\MUI\0414\actsetup;Trojan.MulDrop.9985;Deleted.;
error.exe;C:\WINDOWS\system32\oobe\MUI\0414\error;Trojan.MulDrop.9985;Deleted.;
iconnect.exe;C:\WINDOWS\system32\oobe\MUI\0414\html\iconnect;Trojan.MulDrop.9985;Deleted.;
icserror.exe;C:\WINDOWS\system32\oobe\MUI\0414\icserror;Trojan.MulDrop.9985;Deleted.;
images.exe;C:\WINDOWS\system32\oobe\MUI\0414\images;Trojan.MulDrop.9985;Deleted.;
isperror.exe;C:\WINDOWS\system32\oobe\MUI\0414\isperror;Trojan.MulDrop.9985;Deleted.;
regerror.exe;C:\WINDOWS\system32\oobe\MUI\0414\regerror;Trojan.MulDrop.9985;Deleted.;
Setup.exe;C:\WINDOWS\system32\oobe\MUI\0414\Setup;Trojan.MulDrop.9985;Deleted.;
regerror.exe;C:\WINDOWS\system32\oobe\regerror;Trojan.MulDrop.9985;Deleted.;
setup.exe;C:\WINDOWS\system32\oobe\setup;Trojan.MulDrop.9985;Deleted.;
wxp_x86_0409_v1.exe;C:\WINDOWS\system32\PreInstall\WinSE\wxp_x86_0409_v1;Trojan.MulDrop.9985;Deleted.;
QuickTime.exe;C:\WINDOWS\system32\QuickTime;Trojan.MulDrop.9985;Deleted.;
ras.exe;C:\WINDOWS\system32\ras;Trojan.MulDrop.9985;Deleted.;
DriverFiles.exe;C:\WINDOWS\system32\ReinstallBackups\0000\DriverFiles;Trojan.MulDrop.9985;Deleted.;
i386.exe;C:\WINDOWS\system32\ReinstallBackups\0000\DriverFiles\i386;Trojan.MulDrop.9985;Deleted.;
DriverFiles.exe;C:\WINDOWS\system32\ReinstallBackups\0001\DriverFiles;Trojan.MulDrop.9985;Deleted.;
RTCOM.exe;C:\WINDOWS\system32\RTCOM;Trojan.MulDrop.9985;Deleted.;
Setup.exe;C:\WINDOWS\system32\Setup;Trojan.MulDrop.9985;Deleted.;
5.8.0.2469.exe;C:\WINDOWS\system32\SoftwareDistribution\Setup\ServiceStartup\wups.dll\5.8.0.2469;Trojan.MulDrop.9985;Deleted.;
7.0.6000.374.exe;C:\WINDOWS\system32\SoftwareDistribution\Setup\ServiceStartup\wups.dll\7.0.6000.374;Trojan.MulDrop.9985;Deleted.;
7.0.6000.381.exe;C:\WINDOWS\system32\SoftwareDistribution\Setup\ServiceStartup\wups.dll\7.0.6000.381;Trojan.MulDrop.9985;Deleted.;
7.0.6000.374.exe;C:\WINDOWS\system32\SoftwareDistribution\Setup\ServiceStartup\wups2.dll\7.0.6000.374;Trojan.MulDrop.9985;Deleted.;
7.0.6000.381.exe;C:\WINDOWS\system32\SoftwareDistribution\Setup\ServiceStartup\wups2.dll\7.0.6000.381;Trojan.MulDrop.9985;Deleted.;
color.exe;C:\WINDOWS\system32\spool\drivers\color;Trojan.MulDrop.9985;Deleted.;
3.exe;C:\WINDOWS\system32\spool\drivers\w32x86\3;Trojan.MulDrop.9985;Deleted.;
hpdeskjet_f300_seriedfce.exe;C:\WINDOWS\system32\spool\drivers\w32x86\hpdeskjet_f300_seriedfce;Trojan.MulDrop.9985;Deleted.;
w32x86.exe;C:\WINDOWS\system32\spool\prtprocs\w32x86;Trojan.MulDrop.9985;Deleted.;
URTTemp.exe;C:\WINDOWS\system32\URTTemp;Trojan.MulDrop.9985;Deleted.;
usmt.exe;C:\WINDOWS\system32\usmt;Trojan.MulDrop.9985;Deleted.;
wbem.exe;C:\WINDOWS\system32\wbem;Trojan.MulDrop.9985;Deleted.;
AutoRecover.exe;C:\WINDOWS\system32\wbem\AutoRecover;Trojan.MulDrop.9985;Deleted.;
Logs.exe;C:\WINDOWS\system32\wbem\Logs;Trojan.MulDrop.9985;Deleted.;
0414.exe;C:\WINDOWS\system32\wbem\MUI\0414;Trojan.MulDrop.9985;Deleted.;
Performance.exe;C:\WINDOWS\system32\wbem\Performance;Trojan.MulDrop.9985;Deleted.;
Repository.exe;C:\WINDOWS\system32\wbem\Repository;Trojan.MulDrop.9985;Deleted.;
xml.exe;C:\WINDOWS\system32\wbem\xml;Trojan.MulDrop.9985;Deleted.;
server.exe;C:\WINDOWS\system32\windows media\server;Trojan.MulDrop.9985;Deleted.;
Tasks.exe;C:\WINDOWS\Tasks;Trojan.MulDrop.9985;Deleted.;
twain_32.exe;C:\WINDOWS\twain_32;Trojan.MulDrop.9985;Deleted.;
hpsj_0001.exe;C:\WINDOWS\twain_32\hpsj_0001;Trojan.MulDrop.9985;Deleted.;
usb.exe;C:\WINDOWS\twain_32\intel\usb;Trojan.MulDrop.9985;Deleted.;
Web.exe;C:\WINDOWS\Web;Trojan.MulDrop.9985;Deleted.;
0414.exe;C:\WINDOWS\Web\mui\0414;Trojan.MulDrop.9985;Deleted.;
printers.exe;C:\WINDOWS\Web\printers;Trojan.MulDrop.9985;Deleted.;
images.exe;C:\WINDOWS\Web\printers\images;Trojan.MulDrop.9985;Deleted.;
Manifests.exe;C:\WINDOWS\WinSxS\Manifests;Trojan.MulDrop.9985;Deleted.;
x86_policy.1.0.Microsoft.Windows.GdiPlus_6595b64144ccf1df_x-ww_4e8510ac.exe;C:\WINDOWS\WinSxS\Policies\x86_policy.1.0.Microsoft.Windows.GdiPlus_6595b64144ccf1df_x-ww_4e8510ac;Trojan.MulDrop.9985;Deleted.;
x86_policy.4.20.Microsoft.MSXML2_6bd6b9abf345378f_x-ww_88e8eab8.exe;C:\WINDOWS\WinSxS\Policies\x86_policy.4.20.Microsoft.MSXML2_6bd6b9abf345378f_x-ww_88e8eab8;Trojan.MulDrop.9985;Deleted.;
x86_policy.5.1.Microsoft.Windows.SystemCompatible_6595b64144ccf1df_x-ww_a0111510.exe;C:\WINDOWS\WinSxS\Policies\x86_policy.5.1.Microsoft.Windows.SystemCompatible_6595b64144ccf1df_x-ww_a0111510;Trojan.MulDrop.9985;Deleted.;
x86_policy.5.2.Microsoft.Windows.Networking.Dxmrtp_6595b64144ccf1df_x-ww_362e60dd.exe;C:\WINDOWS\WinSxS\Policies\x86_policy.5.2.Microsoft.Windows.Networking.Dxmrtp_6595b64144ccf1df_x-ww_362e60dd;Trojan.MulDrop.9985;Deleted.;
x86_policy.5.2.Microsoft.Windows.Networking.Rtcdll_6595b64144ccf1df_x-ww_c7b7206f.exe;C:\WINDOWS\WinSxS\Policies\x86_policy.5.2.Microsoft.Windows.Networking.Rtcdll_6595b64144ccf1df_x-ww_c7b7206f;Trojan.MulDrop.9985;Deleted.;
x86_policy.6.0.Microsoft.Tools.VisualCPlusPlus.Runtime-Libraries_6595b64144ccf1df_x-ww_527a1c68.exe;C:\WINDOWS\WinSxS\Policies\x86_policy.6.0.Microsoft.Tools.VisualCPlusPlus.Runtime-Libraries_6595b64144ccf1df_x-ww_527a1c68;Trojan.MulDrop.9985;Deleted.;
x86_policy.6.0.Microsoft.Windows.Common-Controls_6595b64144ccf1df_x-ww_5ddad775.exe;C:\WINDOWS\WinSxS\Policies\x86_policy.6.0.Microsoft.Windows.Common-Controls_6595b64144ccf1df_x-ww_5ddad775;Trojan.MulDrop.9985;Deleted.;
x86_policy.7.0.Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_x-ww_a317e4b3.exe;C:\WINDOWS\WinSxS\Policies\x86_policy.7.0.Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_x-ww_a317e4b3;Trojan.MulDrop.9985;Deleted.;
x86_policy.8.0.Microsoft.VC80.ATL_1fc8b3b9a1e18e3b_x-ww_5f0bbcff.exe;C:\WINDOWS\WinSxS\Policies\x86_policy.8.0.Microsoft.VC80.ATL_1fc8b3b9a1e18e3b_x-ww_5f0bbcff;Trojan.MulDrop.9985;Deleted.;
x86_policy.8.0.Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_x-ww_77c24773.exe;C:\WINDOWS\WinSxS\Policies\x86_policy.8.0.Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_x-ww_77c24773;Trojan.MulDrop.9985;Deleted.;
x86_policy.8.0.Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_x-ww_caeee150.exe;C:\WINDOWS\WinSxS\Policies\x86_policy.8.0.Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_x-ww_caeee150;Trojan.MulDrop.9985;Deleted.;
x86_policy.8.0.Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_x-ww_0f75c32e.exe;C:\WINDOWS\WinSxS\Policies\x86_policy.8.0.Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_x-ww_0f75c32e;Trojan.MulDrop.9985;Deleted.;
x86_policy.8.0.Microsoft.VC80.OpenMP_1fc8b3b9a1e18e3b_x-ww_7d81c9f9.exe;C:\WINDOWS\WinSxS\Policies\x86_policy.8.0.Microsoft.VC80.OpenMP_1fc8b3b9a1e18e3b_x-ww_7d81c9f9;Trojan.MulDrop.9985;Deleted.;
x86_Microsoft.MSXML2R_6bd6b9abf345378f_4.1.0.0_x-ww_29c3ad6a.exe;C:\WINDOWS\WinSxS\x86_Microsoft.MSXML2R_6bd6b9abf345378f_4.1.0.0_x-ww_29c3ad6a;Trojan.MulDrop.9985;Deleted.;
x86_Microsoft.MSXML2_6bd6b9abf345378f_4.20.9818.0_x-ww_8ff50c5d.exe;C:\WINDOWS\WinSxS\x86_Microsoft.MSXML2_6bd6b9abf345378f_4.20.9818.0_x-ww_8ff50c5d;Trojan.MulDrop.9985;Deleted.;
x86_Microsoft.MSXML2_6bd6b9abf345378f_4.20.9848.0_x-ww_1b897e9a.exe;C:\WINDOWS\WinSxS\x86_Microsoft.MSXML2_6bd6b9abf345378f_4.20.9848.0_x-ww_1b897e9a;Trojan.MulDrop.9985;Deleted.;
x86_Microsoft.Tools.VisualCPlusPlus.Runtime-Libraries_6595b64144ccf1df_6.0.0.0_x-ww_ff9986d7.exe;C:\WINDOWS\WinSxS\x86_Microsoft.Tools.VisualCPlusPlus.Runtime-Libraries_6595b64144ccf1df_6.0.0.0_x-ww_ff9986d7;Trojan.MulDrop.9985;Deleted.;
x86_Microsoft.Tools.VisualCPlusPlus.Runtime-Libraries_6595b64144ccf1df_6.0.9792.0_x-ww_08a6620a.exe;C:\WINDOWS\WinSxS\x86_Microsoft.Tools.VisualCPlusPlus.Runtime-Libraries_6595b64144ccf1df_6.0.9792.0_x-ww_08a6620a;Trojan.MulDrop.9985;Deleted.;
x86_Microsoft.VC80.ATL_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_6e805841.exe;C:\WINDOWS\WinSxS\x86_Microsoft.VC80.ATL_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_6e805841;Trojan.MulDrop.9985;Deleted.;
x86_Microsoft.VC80.ATL_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_cbb27474.exe;C:\WINDOWS\WinSxS\x86_Microsoft.VC80.ATL_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_cbb27474;Trojan.MulDrop.9985;Deleted.;
x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.163_x-ww_681e29fb.exe;C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.163_x-ww_681e29fb;Trojan.MulDrop.9985;Deleted.;
x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_0de06acd.exe;C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_0de06acd;Trojan.MulDrop.9985;Deleted.;
x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_6b128700.exe;C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_6b128700;Trojan.MulDrop.9985;Deleted.;
x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_3415f6d0.exe;C:\WINDOWS\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_3415f6d0;Trojan.MulDrop.9985;Deleted.;
x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_91481303.exe;C:\WINDOWS\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_91481303;Trojan.MulDrop.9985;Deleted.;
x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_dec6ddd2.exe;C:\WINDOWS\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_dec6ddd2;Trojan.MulDrop.9985;Deleted.;
x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_3bf8fa05.exe;C:\WINDOWS\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_3bf8fa05;Trojan.MulDrop.9985;Deleted.;
x86_Microsoft.VC80.OpenMP_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_0ee63867.exe;C:\WINDOWS\WinSxS\x86_Microsoft.VC80.OpenMP_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_0ee63867;Trojan.MulDrop.9985;Deleted.;
x86_Microsoft.VC80.OpenMP_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_6c18549a.exe;C:\WINDOWS\WinSxS\x86_Microsoft.VC80.OpenMP_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_6c18549a;Trojan.MulDrop.9985;Deleted.;
x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.0.0_x-ww_1382d70a.exe;C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.0.0_x-ww_1382d70a;Trojan.MulDrop.9985;Deleted.;
x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9.exe;C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9;Trojan.MulDrop.9985;Deleted.;
x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03.exe;C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03;Trojan.MulDrop.9985;Deleted.;
x86_Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_7.0.0.0_x-ww_2726e76a.exe;C:\WINDOWS\WinSxS\x86_Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_7.0.0.0_x-ww_2726e76a;Trojan.MulDrop.9985;Deleted.;
x86_Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_7.0.2600.2180_x-ww_b2505ed9.exe;C:\WINDOWS\WinSxS\x86_Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_7.0.2600.2180_x-ww_b2505ed9;Trojan.MulDrop.9985;Deleted.;
x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.0.0_x-ww_8d353f13.exe;C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.0.0_x-ww_8d353f13;Trojan.MulDrop.9985;Deleted.;
x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.2600.2180_x-ww_522f9f82.exe;C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.2600.2180_x-ww_522f9f82;Trojan.MulDrop.9985;Deleted.;
x86_Microsoft.Windows.Networking.Dxmrtp_6595b64144ccf1df_5.2.2.3_x-ww_468466a7.exe;C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Networking.Dxmrtp_6595b64144ccf1df_5.2.2.3_x-ww_468466a7;Trojan.MulDrop.9985;Deleted.;
x86_Microsoft.Windows.Networking.RtcDll_6595b64144ccf1df_5.2.2.3_x-ww_d6bd8b95.exe;C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Networking.RtcDll_6595b64144ccf1df_5.2.2.3_x-ww_d6bd8b95;Trojan.MulDrop.9985;Deleted.;
x86_Microsoft.Windows.Networking.RtcRes_6595b64144ccf1df_5.2.2.3_en_16a24bc0.exe;C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Networking.RtcRes_6595b64144ccf1df_5.2.2.3_en_16a24bc0;Trojan.MulDrop.9985;Deleted.;

#26 Buckeye_Sam

Buckeye_Sam

    Malware Expert


  • Malware Response Team
  • 17,382 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Pickerington, Ohio
  • Local time:05:07 PM

Posted 24 December 2007 - 10:28 PM

took some hours....it deleted alot of files, some system restore files as well...and many others, will my OS work fine ? what about my restore points will they be deleted ?
also there were files that were found but neither deleted or moved, about 5 of them. not sure wich since the list was huge.
As i mentioned earlier, this laptop that im using to post and surf the internet is plugged into an external drive were i dl the programs to that you provide me, then i polug the external drive to the infected pc and work on it there and save the logfiles on the external so i can post them here again....is there any danger that my external drive might be infected ?
and im abit concerned about all those deleted files......what if after all this is complete and my pc is free of viruses....will i be able to successfully use system restore to say 3 weeks back ?

Your restore points are infected and so you definitely would not want to restore from those files. You'd be right back where we started from. Best case scenario is that we get you cleaned up and you flush all old infected restore data out and set a new clean restore point. Your external drive should be safe, but if depends on how you use it. If you are backing up infected files to your external drive then that would be a problem.

Let's see where we're at now. Can you post a new hijackthis log and a new log from Combofix?
Is your computer behaving any better now?
Posted Image If I have helped you in any way, please consider a donation to help me continue the fight against malware.


Failing to respond back to the person that is giving up their own time to help you not only is insensitive and disrespectful, but it guarantees that you will never receive help from me again. Please thank your helpers and there will always be help here when you need it!


========================================================

#27 sec

sec
  • Topic Starter

  • Members
  • 40 posts
  • OFFLINE
  •  
  • Local time:11:07 PM

Posted 25 December 2007 - 10:12 AM

i only use the external for reading, the only writing to it im doing are the log files, so no backup from the infected pc is on it.
its sad to know i cant escape thru the system restore, but hopefully i can manage things by cleaning up. Wont most of my programs and games stop working ? becouse many files were deleted from them......i guess reinstalling them wont exactly be a big problem ....i just want to get rid of tihs thing.
Here are the logs :



Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 07:58:37, on 26.12.2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Safe mode

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\shovth.exe
C:\DOCUME~1\Hamze\LOCALS~1\Temp\Rar$EX00.656\HijackThis.exe
C:\WINDOWS\system32\reg.exe

O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: SpywareGuard Download Protection - {4A368E80-174F-4872-96B5-0B27DDD11DB2} - C:\Program Files\SpywareGuard\dlprotect.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Nero\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [MsgCenterExe] "C:\Program Files\Common Files\Real\Update_OB\RealOneMessageCenter.exe" -osboot
O4 - HKLM\..\Run: [Medichi] medichi.exe
O4 - HKLM\..\Run: [Medichi2] medichi2.exe
O4 - HKLM\..\Run: [sis32] C:\WINDOWS\system32\winsos.exe
O4 - HKLM\..\Run: [winroot] C:\WINDOWS\system32\winsn.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [Steam] "d:\games\counter strike source\steam.exe" -silent
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Nero\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETTVERKSTJENESTE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [RunNarrator] Narrator.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [RunNarrator] Narrator.exe (User 'Default user')
O4 - Startup: SpywareGuard.lnk = C:\Program Files\SpywareGuard\sgmain.exe
O4 - Global Startup: AutorunsDisabled
O4 - Global Startup: Bluetooth Manager.lnk = ?
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O20 - AppInit_DLLs: murka.dat
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: SrvCDEject - Unknown owner - C:\Program Files\Packard Bell\SrvCDEject.exe
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
O24 - Desktop Component AutorunsDisabled: (no name) - (no file)

--
End of file - 5495 bytes
__________________________________________________________________________________________________________

Combofix log :



ComboFix 07-12-21.4 - Hamze 2007-12-26 7:59:41.4 - NTFSx86 MINIMAL
Microsoft Windows XP Professional 5.1.2600.2.1252.1.1033.18.809 [GMT 1:00]
Running from: C:\cf.exe
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

C:\.exe
C:\Autorun.inf
D:\Autorun.inf
G:\Autorun.inf

.
((((((((((((((((((((((((( Files Created from 2007-11-26 to 2007-12-26 )))))))))))))))))))))))))))))))
.

2007-12-26 07:57 . 2007-12-22 04:56 89,088 ---hs---- C:\WINDOWS\system32\winsn.exe
2007-12-26 07:57 . 2007-12-22 04:56 89,088 ---hs---- C:\WINDOWS\system32\shovth.exe
2007-12-26 07:57 . 2007-12-22 04:56 89,088 ---hs---- C:\0047F358.exe
2007-12-26 07:57 . 2007-12-26 07:57 28,929 --a------ C:\WINDOWS\system32\winsos.exe
2007-12-26 07:42 . 2007-12-26 08:07 8,192 --a------ C:\WINDOWS\medichi2.exe
2007-12-26 07:42 . 2007-12-26 08:07 6,144 --a------ C:\WINDOWS\murka.dat
2007-12-26 07:42 . 2007-12-26 08:07 5,632 --a------ C:\WINDOWS\medichi.exe
2007-12-25 12:41 . 2007-12-25 12:41 <DIR> d-------- C:\Documents and Settings\Hamze\DoctorWeb
2007-12-25 10:00 . 2007-12-24 02:05 1,478,778 --a------ C:\cf.exe
2007-12-23 16:34 . 2007-12-23 17:18 <DIR> d-------- C:\Program Files\RegCleaner
2007-12-23 16:32 . 2007-12-23 16:33 <DIR> d-------- C:\Program Files\SpywareGuard
2007-12-23 16:32 . 2007-12-23 16:32 <DIR> d-------- C:\Program Files\SpywareBlaster
2007-12-23 16:32 . 2005-08-25 18:18 118,784 --a------ C:\WINDOWS\system32\MSSTDFMT.DLL
2007-12-23 16:31 . 2007-12-23 16:31 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
2007-12-23 16:30 . 2007-12-23 16:30 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Grisoft
2007-12-23 16:22 . 2007-12-23 16:34 <DIR> d-------- C:\Program Files\CCleaner
2007-12-23 00:49 . 2007-12-23 00:49 <DIR> d--h----- C:\WINDOWS\system32\GroupPolicy
2007-12-22 20:12 . 2007-12-25 14:54 <DIR> d-------- C:\PerfLogs
2007-12-22 19:54 . 2004-08-10 15:00 14,336 --a------ C:\WINDOWS\system32\svchost.exe.tmp
2007-12-22 19:54 . 2004-08-10 15:00 14,336 --a------ C:\WINDOWS\system32\svchost.exe
2007-12-22 19:54 . 2004-08-10 15:00 14,336 --a------ C:\WINDOWS\system32\dllcache\svchost.exe
2007-12-22 13:55 . 2007-09-05 23:22 289,144 --a------ C:\WINDOWS\system32\VCCLSID.exe
2007-12-22 13:55 . 2006-04-27 16:49 288,417 --a------ C:\WINDOWS\system32\SrchSTS.exe
2007-12-22 13:55 . 2007-12-20 23:11 81,920 --a------ C:\WINDOWS\system32\IEDFix.exe
2007-12-22 13:55 . 2003-06-05 20:13 53,248 --a------ C:\WINDOWS\system32\Process.exe
2007-12-22 13:55 . 2004-07-31 17:50 51,200 --a------ C:\WINDOWS\system32\dumphive.exe
2007-12-22 13:55 . 2007-10-03 23:36 25,600 --a------ C:\WINDOWS\system32\WS2Fix.exe
2007-12-22 13:30 . 2007-12-22 23:24 4,120 --a------ C:\WINDOWS\system32\tmp.reg
2007-12-07 15:38 . 2007-12-07 15:38 <DIR> d-------- C:\Program Files\R-Drive Image
2007-11-30 19:06 . 2007-11-30 19:06 54,156 --ah----- C:\WINDOWS\QTFont.qfn
2007-11-30 19:06 . 2007-11-30 19:06 1,409 --a------ C:\WINDOWS\QTFont.for
2007-11-30 18:48 . 2007-12-07 15:24 <DIR> d-------- C:\Program Files\EASEUS
2007-11-30 17:31 . 2007-12-07 16:02 <DIR> d-a------ C:\Documents and Settings\All Users\Application Data\TEMP
2007-11-30 17:30 . 2007-11-30 17:31 <DIR> d-------- C:\Program Files\Active Data Recovery Software
2007-11-30 15:29 . 2007-11-30 15:29 <DIR> d-------- C:\Program Files\Restorer2000 Pro
2007-11-29 13:20 . 2007-11-29 13:20 <DIR> d-------- C:\Program Files\FILERECOVERY PRO
2007-11-29 13:20 . 2007-11-29 13:20 286,720 --a------ C:\WINDOWS\iun507.exe

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2007-12-25 15:24 --------- d-----w C:\Program Files\Hurrican
2007-12-25 15:24 --------- d-----w C:\Program Files\AV Vcs 5.5 DIAMOND
2007-12-23 16:00 --------- d-----w C:\Program Files\Windows Live Toolbar
2007-12-23 16:00 --------- d-----w C:\Program Files\Windows Desktop Search
2007-12-23 00:22 37,888 ----a-w C:\WINDOWS\system32\drivers\beep.sys
2007-12-21 20:55 --------- d-----w C:\Program Files\Azureus
2007-12-21 20:55 --------- d-----w C:\Documents and Settings\Hamze\Application Data\Azureus
2007-12-20 20:46 --------- d-----w C:\Program Files\Java
2007-12-07 14:24 --------- d--h--w C:\Program Files\InstallShield Installation Information
2007-12-03 21:48 --------- d-----w C:\Documents and Settings\Hamze\Application Data\Hoyle Casino
2007-12-03 21:47 --------- d-----w C:\Documents and Settings\Hamze\Application Data\Bioshock
2007-11-28 17:23 --------- d-----w C:\Program Files\DC++
2007-11-24 19:21 --------- d-----w C:\Program Files\Activision
2007-11-17 13:29 --------- d-----w C:\Program Files\DivX
2007-11-15 17:01 --------- d-----w C:\Program Files\Google
2007-11-15 02:01 --------- d-----w C:\Program Files\MSXML 4.0
2007-11-14 00:13 --------- d-----w C:\Documents and Settings\Hamze\Application Data\Nero
2007-11-14 00:12 --------- d-----w C:\Program Files\Common Files\Nero
2007-11-14 00:11 --------- d-----w C:\Program Files\Nero
2007-11-14 00:11 --------- d-----w C:\Documents and Settings\All Users\Application Data\Nero
2007-11-13 22:42 --------- d-----w C:\Program Files\Electronic Arts
2007-11-13 10:25 20,480 ----a-w C:\WINDOWS\system32\drivers\secdrv.sys
2007-11-12 16:06 --------- d-----w C:\Program Files\Sierra Entertainment
2007-11-12 16:04 --------- d-----w C:\Documents and Settings\Hamze\Application Data\InstallShield
2007-11-11 16:00 --------- d-----w C:\Program Files\Easy GIF Animator
2007-11-10 04:24 --------- d-----w C:\Program Files\Common Files\Wise Installation Wizard
2007-11-10 04:24 --------- d-----w C:\Program Files\AGEIA Technologies
2007-11-10 04:00 --------- d-----w C:\Program Files\Colin McRae Rally 2005
2007-11-08 02:42 --------- d-----w C:\Program Files\AV Vcs 6.0 DIAMOND
2007-11-06 17:05 --------- d-----w C:\Program Files\AlienGUIse
2007-11-06 17:01 --------- d-----w C:\Program Files\Common Files\Stardock
2007-11-05 02:29 --------- d-----w C:\Program Files\Common Files\Hewlett-Packard
2007-11-05 02:27 --------- d-----w C:\Program Files\HP
2007-10-31 23:04 --------- d-----w C:\Program Files\U_KwonHoOnline
2007-10-31 20:13 --------- d--h--r C:\Documents and Settings\Hamze\Application Data\SecuROM
2007-10-31 19:38 --------- d-----w C:\Program Files\Speedco
2007-10-31 19:31 --------- d-----w C:\Documents and Settings\All Users\Application Data\Trymedia
2007-10-31 19:27 --------- d-----w C:\Program Files\Monster Truck Fury
2007-10-31 18:55 --------- d-----w C:\Program Files\Oberon Media
2007-10-31 18:55 --------- d-----w C:\Program Files\Common Files\Oberon Media
2007-10-31 15:56 --------- d-----w C:\Program Files\eGames
2007-10-30 22:21 --------- d-----w C:\Documents and Settings\Hamze\Application Data\Activision
2007-10-30 22:21 --------- d-----w C:\Documents and Settings\All Users\Application Data\Activision
2007-10-30 22:01 --------- d-----w C:\Program Files\EA SPORTS
2007-10-30 21:30 --------- d-----w C:\Documents and Settings\Hamze\Application Data\Hoyle FaceCreator
2007-10-30 21:13 --------- d-----w C:\Program Files\Encore
2007-10-30 17:33 --------- d-----w C:\Program Files\Smart Projects
2007-10-30 17:27 --------- d-----w C:\Program Files\id Software
2007-10-30 17:22 --------- d-----w C:\Program Files\DAEMON Tools
2007-10-30 17:16 685,816 ----a-w C:\WINDOWS\system32\drivers\sptd.sys
2007-10-27 16:47 --------- d-----w C:\Documents and Settings\Hamze\Application Data\CyberLink
2007-10-27 16:47 --------- d-----w C:\Documents and Settings\All Users\Application Data\CyberLink
2007-10-27 08:56 --------- d-----w C:\Documents and Settings\Hamze\Application Data\ATI
2007-10-27 08:56 --------- d-----w C:\Documents and Settings\All Users\Application Data\ATI
2007-10-27 08:54 --------- d-----w C:\Program Files\ATI Technologies
2007-10-27 08:52 --------- d-----w C:\Documents and Settings\Administrator\Application Data\ATI
2007-10-26 04:48 --------- d-----w C:\Program Files\Admiresoft
2007-10-23 13:20 972,072 ----a-w C:\WINDOWS\UNNeroMediaHome.exe
2007-10-22 07:51 972,072 ----a-w C:\WINDOWS\UNRecode.exe
.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"MsnMsgr"="C:\Program Files\MSN Messenger\MsnMsgr.exe" [2007-01-19 12:54]
"Steam"="d:\games\counter strike source\steam.exe" [2007-11-30 08:19]
"swg"="C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2007-07-14 10:36]
"DAEMON Tools"="C:\Program Files\DAEMON Tools\daemon.exe" [2007-09-18 15:16]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="C:\Program Files\Common Files\Nero\Lib\NMBgMonitor.exe" [2007-10-23 14:18]
"SpybotSD TeaTimer"="C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe" [2005-05-31 01:04]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe" [2007-09-25 01:11]
"BluetoothAuthenticationAgent"="bthprops.cpl" [2004-08-10 15:00 C:\WINDOWS\system32\bthprops.cpl]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [2006-11-30 18:29]
"nod32kui"="C:\Program Files\Eset\nod32kui.exe" [2007-04-19 21:41]
"StartCCC"="C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2006-11-10 11:35]
"NeroFilterCheck"="C:\Program Files\Common Files\Nero\Lib\NeroCheck.exe" [2007-03-01 14:57]
"!AVG Anti-Spyware"="C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" [2007-06-11 10:25]
"ISUSPM Startup"="C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe" []
"ISUSScheduler"="C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" []
"MsgCenterExe"="C:\Program Files\Common Files\Real\Update_OB\RealOneMessageCenter.exe" []
"Medichi"="medichi.exe" [2007-12-26 08:07 C:\WINDOWS\medichi.exe]
"Medichi2"="medichi2.exe" [2007-12-26 08:07 C:\WINDOWS\medichi2.exe]
"sis32"="C:\WINDOWS\system32\winsos.exe" [2007-12-26 07:57]
"winroot"="C:\WINDOWS\system32\winsn.exe" [2007-12-22 04:56]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE" [2004-08-10 15:00]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"RunNarrator"="Narrator.exe" [2004-08-10 15:00 C:\WINDOWS\system32\narrator.exe]

C:\Documents and Settings\Hamze\Start Menu\Programs\Startup\
SpywareGuard.lnk - C:\Program Files\SpywareGuard\sgmain.exe [2003-08-29 19:05:35]

C:\Documents and Settings\All Users\Start Menu\Programs\Startup\
Bluetooth Manager.lnk - C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtMng1.exe [2004-12-21 20:42:36]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"InstallVisualStyle"= C:\WINDOWS\Resources\Themes\Royale\Royale.msstyles
"InstallTheme"= C:\WINDOWS\Resources\Themes\Royale.theme

[hkey_local_machine\software\microsoft\windows\currentversion\explorer\shellexecutehooks]
"{56F9679E-7826-4C84-81F3-532071A8BCC5}"= C:\Program Files\Windows Desktop Search\MSNLNamespaceMgr.dll [2006-03-13 13:11 233472]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\WB]
C:\Program Files\AlienGUIse\fastload.dll 2001-12-20 23:34 24576 C:\Program Files\AlienGUIse\fastload.dll

S0 viamraid;viamraid;C:\WINDOWS\system32\DRIVERS\viamraid.sys [2006-05-29 13:03]
S2 Nero BackItUp Scheduler 3;Nero BackItUp Scheduler 3;C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe [2007-09-20 08:51]
S2 SrvCDEject;SrvCDEject;C:\Program Files\Packard Bell\SrvCDEject.exe [2006-07-25 10:48]
S2 Vcs;Vcs support;C:\WINDOWS\system32\Drivers\Vcs.sys [2004-11-14 13:01]
S3 DrvSnSht;DrvSnSht;C:\Program Files\R-Drive Image\DrvSnSht.sys [2007-11-11 13:17]
S3 ICAM8USB;Intel® PC Camera CS120;C:\WINDOWS\system32\Drivers\Icm8D2.SYS [2001-07-12 12:23]
S3 RTSTOR;USB Mass Stroage Device;C:\WINDOWS\system32\drivers\RTSTOR.SYS [2005-12-21 22:27]
S3 StMp3Rec;Player Recovery Device Control Driver;C:\WINDOWS\system32\Drivers\StMp3Rec.sys [2007-02-15 13:14]
S3 ZZZdrv_lich;ZZZdrv_lich;C:\lich.sys []
S4 FFI;FFI;C:\WINDOWS\system32\svchost.exe:exm.exe []
S4 ZZZsvc_lich;ZZZsvc_lich;C:\lich.exe []

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\G]
\Shell\AutoRun\command - G:\
\Shell\open\Command - G:\C0361F71.exe

.
Contents of the 'Scheduled Tasks' folder
"2007-12-22 03:36:00 C:\WINDOWS\Tasks\Se etter oppdateringer for Windows Live Toolbar.job"
- C:\Program Files\Windows Live Toolbar\MSNTBUP.EXE
.
**************************************************************************

catchme 0.3.1333 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2007-12-26 08:15:26
Windows 5.1.2600 Service Pack 2 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully
hidden files: 0

**************************************************************************

[HKEY_LOCAL_MACHINE\system\ControlSet003\Services\FFI]
"ImagePath"="C:\WINDOWS\system32\svchost.exe:exm.exe"
.
Completion time: 2007-12-26 8:16:52 - machine was rebooted
C:\ComboFix2.txt ... 2007-12-25 12:11
C:\ComboFix3.txt ... 2007-12-25 11:33
.
2007-12-21 15:03:50 --- E O F ---

#28 Buckeye_Sam

Buckeye_Sam

    Malware Expert


  • Malware Response Team
  • 17,382 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Pickerington, Ohio
  • Local time:05:07 PM

Posted 25 December 2007 - 05:04 PM

Download SDFix and save it to your Desktop.

Double click SDFix.exe and it will extract the files to %systemdrive%
(Drive that contains the Windows Directory, typically C:\SDFix)

Make sure that you are in safe mode before following these next steps.
  • Open the extracted SDFix folder and double click RunThis.bat to start the script.
  • Type Y to begin the cleanup process.
  • It will remove any Trojan Services and Registry Entries that it finds then prompt you to press any key to Reboot.
  • Press any Key and it will restart the PC.
  • When the PC restarts the Fixtool will run again and complete the removal process then display Finished, press any key to end the script and load your desktop icons.
  • Once the desktop icons load the SDFix report will open on screen and also save into the SDFix folder as Report.txt
    (Report.txt will also be copied to Clipboard ready for posting back on the forum).
  • Finally paste the contents of the Report.txt back on the forum with a new HijackThis log

Posted Image If I have helped you in any way, please consider a donation to help me continue the fight against malware.


Failing to respond back to the person that is giving up their own time to help you not only is insensitive and disrespectful, but it guarantees that you will never receive help from me again. Please thank your helpers and there will always be help here when you need it!


========================================================

#29 sec

sec
  • Topic Starter

  • Members
  • 40 posts
  • OFFLINE
  •  
  • Local time:11:07 PM

Posted 27 December 2007 - 10:24 AM

Hi, happy holidays

lets get this on with, i will now run SDfix and i will report back in 10 min

#30 sec

sec
  • Topic Starter

  • Members
  • 40 posts
  • OFFLINE
  •  
  • Local time:11:07 PM

Posted 27 December 2007 - 10:55 AM

I ran SDFix under safe mode and pressed a key so it would restart my pc, on restart i entered safe mode again and i was prompted if i wanted to continue using safe mode by pressing "yes" or enter System Restore by pressing " no " as usual under Safe Mode, the first time i pressed NO so i could enter windows and so that the desktop items could load up and for the SDFix to continue after the restart but nothing happend, i checked taskmanager but the program wasnt listed, i deleted the Repport.txt and ran SDFix a second time and restarted my pc after pressing a key, botted in safe mode and was prompted with the same "yes" "no" option as usual so i waited for a respond from SDFix but nothing i even checked taskmanager there was nothing there. Should i paste the report that was made ? or is there another way to make the program continue its task?




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users