Jump to content


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.

Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Pages keep getting redirected


  • This topic is locked This topic is locked
10 replies to this topic

#1 mikeypaddon

mikeypaddon

  • Members
  • 5 posts
  • OFFLINE
  •  
  • Local time:01:05 AM

Posted 15 January 2012 - 07:12 AM

Hi all, for about a month now, my internet search results come up fine, but when I click on them they sometimes redirect me to other sites, not always, but quite often. I have run Adaware, Malwarebytes, Spybot etc. but the problem still persists. I have followed the instructions on this site and have posted my HijackThis log below, regards.

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:08:15, on 15/01/2012
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16912)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskhost.exe
C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Windows\system32\igfxsrvc.exe
C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE
C:\Program Files\Canon\Solution Menu EX\CNSEMAIN.EXE
C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe
C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe
C:\Windows\system32\rundll32.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Windows\system32\NOTEPAD.EXE
C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = ${URL_SEARCHPAGE}
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.musicfrost.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = ${URL_SEARCHPAGE}
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll
O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll
O4 - HKLM\..\Run: [Driver Fetch] "C:\Program Files\Driver Fetch\2.3.0.5\DriverFetch.exe" --start-trayed
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] "C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS5.5ServiceManager] "C:\Program Files\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon
O4 - HKLM\..\Run: [CanonSolutionMenuEx] C:\Program Files\Canon\Solution Menu EX\CNSEMAIN.EXE /logon
O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [Malwarebytes Anti-Malware (reboot)] "C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Messenger (Yahoo!)] "C:\PROGRA~1\Yahoo!\Messenger\YahooMessenger.exe" -quiet
O4 - HKCU\..\Run: [eventCommsmon] rundll32.exe "C:\Users\Kieran's\AppData\Local\LibNetPath\eventCommsmon.dll",rasPadTask eventPathplugin
O4 - HKCU\..\RunOnce: [AgerecfgSnap] cmd.exe /c RD /S /Q "C:\Users\Kieran's\AppData\Local\DRMMouseEnum"
O4 - HKCU\..\RunOnce: [Smartcfgpnp] cmd.exe /c RD /S /Q "C:\Users\Kieran's\AppData\Local\acxcrtUI"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O8 - Extra context menu item: Free YouTube to MP3 Converter - C:\Users\Kieran's\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} (get_atlcom Class) - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe

BC AdBot (Login to Remove)

 


#2 RPMcMurphy

RPMcMurphy

    Bleeping *^#@%~


  • Malware Response Team
  • 3,530 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:09:05 PM

Posted 15 January 2012 - 02:03 PM

Hello and welcome. Please follow these guidelines while we work on your PC:
  • Malware removal is a sometimes lengthy and tedious process. Please stick with the thread until Iíve given you the ďAll clear.Ē Absence of symptoms does not mean your machine is clean!
  • Please do not run any scans or install/uninstall any applications without being directed to do so.
  • Any underlined text in my posts indicates a clickable link.
  • If you have any questions at all, please stop and ask before proceeding.
Posted Image Please download DDS by sUBs from one of the following links and save it to your desktop.

DDS.scr
DDS.com
DDS.pif
  • Disable any script blocking protection (How to Disable your Security Programs)
  • Double click DDS icon to run the tool (may take up to 3 minutes to run)
  • When done, DDS.txt will open.
  • After a few moments, attach.txt will open in a second window.
  • Save both reports to your desktop.
---------------------------------------------------
  • Post the contents of the DDS.txt report in your next reply
  • Attach the Attach.txt report to your post by scroling down to the Attachments area and then clicking Browse. Browse to where you saved the file, and click Open and then click UPLOAD.
Posted Image Download GMER Rootkit Scanner from here to your desktop.
  • Double click the exe file. If asked to allow gmer.sys driver to load, please consent .
  • If it gives you a warning about rootkit activity and asks if you want to run scan...click on NO.


    Posted Image
    Click the image to enlarge it


  • In the right panel, you will see several boxes that have been checked. Uncheck the following ...
    • IAT/EAT
    • Drives/Partition other than Systemdrive (typically C:\)
    • Show All (don't miss this one)
  • Then click the Scan button & wait for it to finish.
  • Once done click on the [Save..] button, and in the File name area, type in "Gmer.txt" or it will save as a .log file which cannot be uploaded to your post.
  • Save it where you can easily find it, such as your desktop, and post it in reply.
**Caution**
Rootkit scans often produce false positives. Do NOT take any action on any "<--- ROOKIT" entries


If you have trouble running GEMR:
  • Make sure that your security software is disabled
  • Uncheck the box next to "Files" this time also
  • If you still can't run it, try in the Safe Mode
Please include the following in your next post:
  • DDS.txt and Attach.txt logs
  • GMER log

Threads are closed after 5 days of inactivity.

ASAP & UNITE Member


The help you receive here is free. If you wish to show your appreciation, then you may btn_donate_SM.gif


#3 mikeypaddon

mikeypaddon
  • Topic Starter

  • Members
  • 5 posts
  • OFFLINE
  •  
  • Local time:01:05 AM

Posted 15 January 2012 - 06:53 PM

.
DDS (Ver_2011-08-26.01) - NTFSx86
Internet Explorer: 8.0.7600.16385
Run by Kieran's at 23:04:08 on 2012-01-15
Microsoft Windows 7 Ultimate 6.1.7600.0.1252.44.1033.18.2038.1157 [GMT 0:00]
.
AV: Lavasoft Ad-Watch Live! Anti-Virus *Disabled/Updated* {9FF26384-70D4-CE6B-3ECB-E759A6A40116}
SP: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: Lavasoft Ad-Watch Live! *Disabled/Updated* {24938260-56EE-C1E5-047B-DC2BDD234BAB}
.
============== Running Processes ===============
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\sppsvc.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE
C:\Program Files\Canon\Solution Menu EX\CNSEMAIN.EXE
C:\Windows\system32\igfxsrvc.exe
C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\System32\svchost.exe -k secsvcs
C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe
C:\Windows\system32\wuauclt.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Program Files\Windows NT\Accessories\wordpad.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\DllHost.exe
C:\Windows\system32\DllHost.exe
C:\Windows\system32\conhost.exe
C:\Windows\system32\wbem\wmiprvse.exe
.
============== Pseudo HJT Report ===============
.
uSearch Page = ${URL_SEARCHPAGE}
uStart Page = hxxp://search.musicfrost.com
mSearch Page = ${URL_SEARCHPAGE}
uInternet Settings,ProxyOverride = *.local
BHO: Canon Easy-WebPrint EX BHO: {3785d0ad-bfff-47f6-bf5b-a587c162fed9} - c:\program files\canon\easy-webprint ex\ewpexbho.dll
TB: Canon Easy-WebPrint EX: {759d9886-0c6f-4498-bab6-4a5f47c6c72f} - c:\program files\canon\easy-webprint ex\ewpexhlp.dll
EB: Canon Easy-WebPrint EX: {21347690-ec41-4f9a-8887-1f4aee672439} - c:\program files\canon\easy-webprint ex\ewpexhlp.dll
uRun: [DAEMON Tools Lite] "c:\program files\daemon tools lite\DTLite.exe" -autorun
uRun: [Messenger (Yahoo!)] "c:\progra~1\yahoo!\messenger\YahooMessenger.exe" -quiet
uRun: [AdobeBridge]
uRun: [WdPathMusic] rundll32.exe "c:\users\kieran's\appdata\local\systempadsvcs\WdPathMusic.dll",mfcMapRpl SyncPadNotifier
uRunOnce: [eventWeb80] cmd.exe /c RD /S /Q "c:\users\kieran's\appdata\local\AgereHelpspl"
mRun: [Driver Fetch] "c:\program files\driver fetch\2.3.0.5\DriverFetch.exe" --start-trayed
mRun: [IgfxTray] c:\windows\system32\igfxtray.exe
mRun: [HotKeysCmds] c:\windows\system32\hkcmd.exe
mRun: [Persistence] c:\windows\system32\igfxpers.exe
mRun: [AdobeAAMUpdater-1.0] "c:\program files\common files\adobe\oobe\pdapp\uwa\UpdaterStartupUtility.exe"
mRun: [SwitchBoard] c:\program files\common files\adobe\switchboard\SwitchBoard.exe
mRun: [AdobeCS5.5ServiceManager] "c:\program files\common files\adobe\cs5.5servicemanager\CS5.5ServiceManager.exe" -launchedbylogin
mRun: [CanonMyPrinter] c:\program files\canon\myprinter\BJMyPrt.exe /logon
mRun: [CanonSolutionMenuEx] c:\program files\canon\solution menu ex\CNSEMAIN.EXE /logon
mRun: [APSDaemon] "c:\program files\common files\apple\apple application support\APSDaemon.exe"
mRun: [Malwarebytes Anti-Malware (reboot)] "c:\program files\malwarebytes' anti-malware\mbam.exe" /runcleanupscript
uPolicies-explorer: NoViewOnDrive = 0 (0x0)
uPolicies-explorer: NoDevMgrUpdate = 0 (0x0)
uPolicies-explorer: NoWindowsUpdate = 0 (0x0)
uPolicies-system: NoDispAppearancePage = 0 (0x0)
uPolicies-system: NoDispSettingsPage = 0 (0x0)
mPolicies-explorer: NoViewOnDrive = 0 (0x0)
mPolicies-explorer: NoDevMgrUpdate = 0 (0x0)
mPolicies-explorer: NoWindowsUpdate = 0 (0x0)
mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)
mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
mPolicies-system: NoDispAppearancePage = 0 (0x0)
mPolicies-system: NoDispSettingsPage = 0 (0x0)
dPolicies-explorer: NoViewOnDrive = 0 (0x0)
dPolicies-explorer: NoDevMgrUpdate = 0 (0x0)
dPolicies-explorer: NoWindowsUpdate = 0 (0x0)
dPolicies-system: NoDispAppearancePage = 0 (0x0)
dPolicies-system: NoDispSettingsPage = 0 (0x0)
IE: Free YouTube to MP3 Converter - c:\users\kieran's\appdata\roaming\dvdvideosoftiehelpers\freeyoutubetomp3converter.htm
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
TCP: DhcpNameServer = 192.168.1.1
TCP: Interfaces\{219265FC-2F5C-4A1B-B102-EF54786B4856} : DhcpNameServer = 192.168.1.1
TCP: Interfaces\{219265FC-2F5C-4A1B-B102-EF54786B4856}\2456C6B696E6F5239353932444 : DhcpNameServer = 192.168.2.1
TCP: Interfaces\{219265FC-2F5C-4A1B-B102-EF54786B4856}\3495255535D20534F5E4564777F627B6 : DhcpNameServer = 192.168.0.1
TCP: Interfaces\{219265FC-2F5C-4A1B-B102-EF54786B4856}\35B4954363236343 : DhcpNameServer = 192.168.0.1
Notify: igfxcui - igfxdev.dll
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\users\kieran's\appdata\roaming\mozilla\firefox\profiles\2b781yj6.default\
FF - prefs.js: browser.search.defaulturl - hxxp://www.bing.com/search?FORM=IEFM1&q=
FF - prefs.js: browser.search.selectedEngine - MFGSearch.NET
FF - prefs.js: browser.startup.homepage - hxxp://www.google.com
FF - prefs.js: keyword.URL - chrome://browser-region/locale/region.properties
FF - plugin: c:\program files\canon\easy-photoprint ex\NPEZFFPI.DLL
FF - plugin: c:\program files\divx\divx plus web player\npdivx32.dll
FF - plugin: c:\program files\google\google earth\plugin\npgeplugin.dll
FF - plugin: c:\program files\google\update\1.3.21.79\npGoogleUpdate3.dll
FF - plugin: c:\program files\java\jre6\bin\new_plugin\npdeployJava1.dll
FF - plugin: c:\program files\microsoft silverlight\4.0.60310.0\npctrlui.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npdeployJava1.dll
FF - plugin: c:\users\kieran's\appdata\roaming\mozilla\plugins\np-mswmp.dll
.
============= SERVICES / DRIVERS ===============
.
R0 Lbd;Lbd;c:\windows\system32\drivers\Lbd.sys [2011-5-30 64512]
R1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\drivers\vwififlt.sys [2009-7-13 48128]
R2 SBSDWSCService;SBSD Security Center Service;c:\program files\spybot - search & destroy\SDWinSec.exe [2011-12-4 1153368]
R3 itecir;ITECIR Infrared Receiver;c:\windows\system32\drivers\itecir.sys [2010-1-25 63520]
R3 k57nd60x;Broadcom NetLink ™ Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\k57nd60x.sys [2009-7-13 229888]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 gupdate1cac5f586a7ae9e;Google Update Service (gupdate1cac5f586a7ae9e);c:\program files\google\update\GoogleUpdate.exe [2010-3-17 133104]
S2 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service;c:\program files\lavasoft\ad-aware\AAWService.exe [2011-5-25 2152152]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2009-7-13 229888]
S3 ggflt;SEMC USB Flash Driver Filter;c:\windows\system32\drivers\ggflt.sys [2011-12-27 13224]
S3 gupdatem;Google Update Service (gupdatem);c:\program files\google\update\GoogleUpdate.exe [2010-3-17 133104]
S3 Lavasoft Kernexplorer;Lavasoft helper driver;c:\program files\lavasoft\ad-aware\kernexplorer.sys [2011-5-25 15232]
S3 SwitchBoard;SwitchBoard;c:\program files\common files\adobe\switchboard\SwitchBoard.exe [2010-2-19 517096]
S3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\wat\WatAdminSvc.exe [2010-5-23 1343400]
.
=============== File Associations ===============
.
JSEFile="%SystemRoot%\System32\WScript.exe" "%1" %*
.
=============== Created Last 30 ================
.
2012-01-15 17:08:50 -------- d-----w- c:\users\kieran's\appdata\local\SystemPadSvcs
2012-01-15 15:11:34 -------- d-----w- c:\users\kieran's\appdata\local\AgereHelpspl
2012-01-15 14:50:58 56200 ----a-w- c:\programdata\microsoft\windows defender\definition updates\{3a9c5f01-a7ee-40e5-8823-e61ea043345d}\offreg.dll
2012-01-15 11:58:44 388096 ----a-r- c:\users\kieran's\appdata\roaming\microsoft\installer\{45a66726-69bc-466b-a7a4-12fcba4883d7}\HiJackThis.exe
2012-01-15 11:58:44 -------- d-----w- c:\program files\Trend Micro
2012-01-15 00:38:16 12872 ----a-w- c:\windows\system32\bootdelete.exe
2012-01-15 00:27:11 -------- d-----w- C:\TDSSKiller_Quarantine
2012-01-15 00:25:31 16968 ----a-w- c:\windows\system32\drivers\hitmanpro35.sys
2012-01-15 00:25:30 -------- d-----w- c:\program files\Hitman Pro 3.5
2012-01-15 00:23:25 -------- d-----w- c:\programdata\Hitman Pro
2012-01-14 23:59:41 -------- d--h--w- c:\programdata\CanonIJEGV
2012-01-14 22:42:58 23624 ----a-w- c:\windows\system32\drivers\hitmanpro36.sys
2012-01-14 22:42:22 -------- d-----w- c:\programdata\HitmanPro
2012-01-14 20:54:11 -------- d-----w- c:\program files\MSECache
2012-01-11 15:54:59 514560 ----a-w- c:\windows\system32\qdvd.dll
2012-01-11 15:54:59 1328640 ----a-w- c:\windows\system32\quartz.dll
2012-01-11 15:54:57 67072 ----a-w- c:\windows\system32\packager.dll
2012-01-11 15:54:56 1288984 ----a-w- c:\windows\system32\ntdll.dll
2012-01-09 12:54:48 -------- d-----w- c:\programdata\Spybot - Search & Destroy
2012-01-08 23:23:20 626688 ----a-w- c:\program files\mozilla firefox\msvcr80.dll
2012-01-08 23:23:20 548864 ----a-w- c:\program files\mozilla firefox\msvcp80.dll
2012-01-08 23:23:20 479232 ----a-w- c:\program files\mozilla firefox\msvcm80.dll
2012-01-08 23:23:20 43992 ----a-w- c:\program files\mozilla firefox\mozutils.dll
2012-01-04 14:54:55 -------- dc----w- c:\users\kieran's\appdata\local\MigWiz
2012-01-03 16:53:52 90112 ----a-w- c:\windows\system32\snymsico.dll
2012-01-03 16:53:52 48128 ----a-w- c:\windows\system32\drivers\rimmptsk.sys
2012-01-03 16:53:52 44544 ----a-w- c:\windows\system32\drivers\rimsptsk.sys
2012-01-03 16:53:52 38400 ----a-w- c:\windows\system32\drivers\rixdptsk.sys
2012-01-03 16:53:52 172032 ----a-w- c:\windows\system32\rixdicon.dll
2012-01-02 23:02:34 -------- d-----w- c:\programdata\xml_param
2012-01-02 23:00:43 892928 ----a-w- c:\windows\system32\iconv.dll
2012-01-02 23:00:43 675840 ----a-w- c:\windows\system32\ac3filter.ax
2012-01-02 23:00:43 496640 ----a-w- c:\windows\system32\xvid.ax
2012-01-02 23:00:37 -------- d-----w- c:\program files\Wondershare
2012-01-02 22:57:01 -------- d-----w- c:\programdata\CanonIJ
2012-01-02 22:33:08 -------- d-----w- c:\users\kieran's\appdata\roaming\Malwarebytes
2012-01-02 22:32:59 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2012-01-02 22:32:57 20952 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-01-02 22:32:57 -------- d-----w- c:\programdata\Malwarebytes
2012-01-02 22:32:57 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2012-01-02 18:10:48 -------- d-----w- c:\users\kieran's\dwhelper
2012-01-02 18:00:05 -------- d-----w- C:\my flashes
2012-01-02 17:58:43 246784 ----a-w- c:\windows\system32\sqlite3.dll
2012-01-02 17:58:40 -------- d-----w- c:\program files\Flash Saver
2012-01-02 17:57:07 -------- d-----w- c:\users\kieran's\appdata\roaming\GetRightToGo
2012-01-02 16:31:12 -------- d-----w- c:\users\kieran's\appdata\roaming\TuneUp Software
2012-01-02 16:29:43 -------- d-----w- c:\programdata\TuneUp Software
2012-01-02 16:29:33 -------- d-sh--w- c:\programdata\{32364CEA-7855-4A3C-B674-53D8E9B97936}
2012-01-01 05:56:31 0 ----a-w- c:\windows\system32\drivers\vadxasbv.sys
2012-01-01 05:37:32 6823496 ----a-w- c:\programdata\microsoft\windows defender\definition updates\{3a9c5f01-a7ee-40e5-8823-e61ea043345d}\mpengine.dll
2011-12-27 23:02:45 -------- d-----w- c:\program files\iPod
2011-12-27 23:02:16 -------- d-----w- c:\program files\iTunes
2011-12-27 22:26:53 -------- d-----w- c:\program files\Bonjour
2011-12-27 16:06:44 -------- d-----w- c:\users\kieran's\appdata\roaming\avidemux
2011-12-27 13:11:20 1112288 ----a-w- c:\windows\system32\WdfCoInstaller01007.dll
2011-12-27 13:11:19 25512 ----a-w- c:\windows\system32\drivers\ggsemc.sys
2011-12-27 13:11:19 13224 ----a-w- c:\windows\system32\drivers\ggflt.sys
2011-12-27 13:05:10 -------- d-----w- c:\windows\system32\appmgmt
2011-12-27 13:02:28 -------- d-----w- c:\program files\Intuwave Ltd
2011-12-27 12:17:38 -------- d-----w- c:\users\kieran's\appdata\roaming\Sony Ericsson
2011-12-24 18:08:22 443752 ----a-w- c:\windows\system32\d3dx10_34.dll
2011-12-24 18:08:22 3497832 ----a-w- c:\windows\system32\d3dx9_34.dll
2011-12-24 18:08:22 266088 ----a-w- c:\windows\system32\xactengine2_8.dll
2011-12-24 18:08:22 18280 ----a-w- c:\windows\system32\x3daudio1_2.dll
2011-12-24 18:08:22 1124720 ----a-w- c:\windows\system32\D3DCompiler_34.dll
2011-12-24 18:08:21 443752 ----a-w- c:\windows\system32\d3dx10_33.dll
2011-12-24 18:08:21 440080 ----a-w- c:\windows\system32\d3dx10.dll
2011-12-24 18:08:21 1123696 ----a-w- c:\windows\system32\D3DCompiler_33.dll
2011-12-24 18:04:36 -------- d--h--w- c:\windows\msdownld.tmp
2011-12-24 18:04:26 -------- d-----w- c:\windows\system32\directx
2011-12-19 01:52:30 -------- d-----w- c:\program files\Yahoo!
2011-12-18 21:29:12 -------- d-----w- C:\Application Data
2011-12-17 13:35:59 414368 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
.
==================== Find3M ====================
.
2012-01-14 23:53:53 445008 ----a-w- c:\windows\system32\drivers\Wdf01000.sys
2011-11-24 04:23:31 2340352 ----a-w- c:\windows\system32\win32k.sys
2011-11-05 04:35:50 981504 ----a-w- c:\windows\system32\wininet.dll
2011-11-05 04:34:15 44544 ----a-w- c:\windows\system32\licmgr10.dll
2011-11-05 04:30:11 2048 ----a-w- c:\windows\system32\tzres.dll
2011-11-05 03:28:41 386048 ----a-w- c:\windows\system32\html.iec
2011-11-05 02:55:38 1638912 ----a-w- c:\windows\system32\mshtml.tlb
2011-10-26 04:42:38 3901808 ----a-w- c:\windows\system32\ntoskrnl.exe
2011-10-26 04:42:37 3957104 ----a-w- c:\windows\system32\ntkrnlpa.exe
2011-10-26 04:25:28 38912 ----a-w- c:\windows\system32\csrsrv.dll
.
============= FINISH: 23:08:22.23 ===============


GMER 1.0.15.15641 - http://www.gmer.net
Rootkit scan 2012-01-15 23:47:54
Windows 6.1.7600 Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-0 Hitachi_HTS543216L9A300 rev.FB2OC40C
Running: w2r2lipp.exe; Driver: C:\Users\Kieran's\AppData\Local\Temp\uxtiafob.sys


---- Kernel code sections - GMER 1.0.15 ----

.text ntkrnlpa.exe!ZwSaveKeyEx + 13AD 82C945D9 1 Byte [06]
.text ntkrnlpa.exe!KiDispatchInterrupt + 5A2 82CB9092 19 Bytes [E0, 0F, BA, F0, 07, 73, 09, ...] {LOOPNZ 0x11; MOV EDX, 0x97307f0; MOV CR4, EAX; OR AL, 0x80; MOV CR4, EAX; RET ; MOV ECX, CR3}
.text sptd.sys 88A49000 8 Bytes [8E, FA, C1, 82, A0, D7, C1, ...]
.text sptd.sys 88A49009 23 Bytes [D7, C1, 82, A6, 71, C2, 82, ...]
.text sptd.sys 88A49024 4 Bytes [32, 55, B7, 88]
.text sptd.sys 88A4902C 20 Bytes [FB, 62, DF, 82, E8, EE, C8, ...]
.text sptd.sys 88A49041 179 Bytes [0B, C9, 82, DB, 83, DF, 82, ...]
.text ...
.sptd2 C:\Windows\System32\Drivers\sptd.sys entry point in ".sptd2" section [0x88B230AD]
? C:\Windows\System32\Drivers\sptd.sys The process cannot access the file because it is being used by another process.
.text USBPORT.SYS!DllUnload 8EC69CA0 5 Bytes JMP 85FF61C8
.text aty29jec.SYS 8ECBF000 24 Bytes [A0, D7, C1, 82, 44, F8, C1, ...]
.text aty29jec.SYS 8ECBF019 4 Bytes [D7, C1, 82, 00]
.text aty29jec.SYS 8ECBF01E 22 Bytes [00, 00, DE, 37, B6, 88, E6, ...]
.text aty29jec.SYS 8ECBF036 167 Bytes [00, 00, B0, EE, C8, 82, 88, ...]
.text aty29jec.SYS 8ECBF0DE 16 Bytes [00, 00, 00, 00, 00, 00, 4A, ...] {ADD [EAX], AL; ADD [EAX], AL; ADD [EAX], AL; DEC EDX; XOR EDX, ESI; DEC ESP; ADD [EAX], AL; ADD [EAX], AL; ADD AL, [EAX]}
.text ...
? C:\Users\Kieran's\AppData\Local\Temp\mbr.sys The system cannot find the file specified. !

---- User code sections - GMER 1.0.15 ----

.text C:\Program Files\Mozilla Firefox\plugin-container.exe[960] USER32.dll!SetWindowLongA 75F4B1E3 5 Bytes JMP 66A03A89 C:\Program Files\Mozilla Firefox\xul.dll (Mozilla Foundation)
.text C:\Program Files\Mozilla Firefox\plugin-container.exe[960] USER32.dll!SetWindowLongW 75F56614 5 Bytes JMP 66A03A1B C:\Program Files\Mozilla Firefox\xul.dll (Mozilla Foundation)
.text C:\Program Files\Mozilla Firefox\plugin-container.exe[960] USER32.dll!GetWindowInfo 75F56A82 5 Bytes JMP 667AC909 C:\Program Files\Mozilla Firefox\xul.dll (Mozilla Foundation)
.text C:\Program Files\Mozilla Firefox\plugin-container.exe[960] USER32.dll!TrackPopupMenu 75F74B3B 5 Bytes JMP 667ACEBD C:\Program Files\Mozilla Firefox\xul.dll (Mozilla Foundation)
.text C:\Program Files\Mozilla Firefox\firefox.exe[3600] ntdll.dll!LdrLoadDll 77AAF425 5 Bytes JMP 6662B750 C:\Program Files\Mozilla Firefox\xul.dll (Mozilla Foundation)

---- Devices - GMER 1.0.15 ----

Device \FileSystem\Ntfs \Ntfs 84E541E8
Device \FileSystem\fastfat \FatCdrom 871BF430
Device \Driver\NetBT \Device\NetBT_Tcpip_{EA5D4148-3DBF-406D-B905-BA3150D27ED2} 85FBE1E8
Device \Driver\usbuhci \Device\USBPDO-0 85EC61E8
Device \Driver\usbuhci \Device\USBPDO-1 85EC61E8
Device \Driver\usbehci \Device\USBPDO-2 85B27430
Device \Driver\usbuhci \Device\USBPDO-3 85EC61E8
Device \Driver\usbuhci \Device\USBPDO-4 85EC61E8
Device \Driver\usbuhci \Device\USBPDO-5 85EC61E8
Device \Driver\PCI_PNP8381 \Device\00000056 sptd.sys
Device \Driver\ACPI_HAL \Device\00000049 halmacpi.dll (Hardware Abstraction Layer DLL/Microsoft Corporation)
Device \Driver\usbehci \Device\USBPDO-6 85B27430

AttachedDevice \Driver\volmgr \Device\HarddiskVolume1 fvevol.sys (BitLocker Drive Encryption Driver/Microsoft Corporation)
AttachedDevice \Driver\volmgr \Device\HarddiskVolume2 fvevol.sys (BitLocker Drive Encryption Driver/Microsoft Corporation)

Device \Driver\cdrom \Device\CdRom0 85E9E430

AttachedDevice \Driver\volmgr \Device\HarddiskVolume3 fvevol.sys (BitLocker Drive Encryption Driver/Microsoft Corporation)

Device \Driver\atapi \Device\Ide\IdeDeviceP0T0L0-0 84E501E8
Device \Driver\atapi \Device\Ide\IdePort0 84E501E8
Device \Driver\atapi \Device\Ide\IdePort1 84E501E8
Device \Driver\atapi \Device\Ide\IdePort2 84E501E8
Device \Driver\atapi \Device\Ide\IdeDeviceP1T0L0-1 84E501E8
Device \Driver\msahci \Device\Ide\PciIde0Channel0 84E511E8
Device \Driver\msahci \Device\Ide\PciIde0Channel1 84E511E8
Device \Driver\msahci \Device\Ide\PciIde0Channel2 84E511E8
Device \Driver\cdrom \Device\CdRom1 85E9E430
Device \Driver\NetBT \Device\NetBt_Wins_Export 85FBE1E8
Device \Driver\NetBT \Device\NetBT_Tcpip_{219265FC-2F5C-4A1B-B102-EF54786B4856} 85FBE1E8
Device \Driver\usbuhci \Device\USBFDO-0 85EC61E8
Device \Driver\usbuhci \Device\USBFDO-1 85EC61E8
Device \Driver\usbehci \Device\USBFDO-2 85B27430
Device \Driver\usbuhci \Device\USBFDO-3 85EC61E8
Device \Driver\usbuhci \Device\USBFDO-4 85EC61E8
Device \Driver\usbuhci \Device\USBFDO-5 85EC61E8
Device \Driver\usbehci \Device\USBFDO-6 85B27430
Device \Driver\aty29jec \Device\Scsi\aty29jec1Port3Path0Target0Lun0 860E51E8
Device \Driver\aty29jec \Device\Scsi\aty29jec1 860E51E8
Device \FileSystem\fastfat \Fat 871BF430

AttachedDevice \FileSystem\fastfat \Fat fltmgr.sys (Microsoft Filesystem Filter Manager/Microsoft Corporation)

---- Registry - GMER 1.0.15 ----

Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg@s1 771343423
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg@s2 285507792
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg@h0 2
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@h0 0
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@ujdew 0x6A 0x8C 0xD6 0xC3 ...
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@p0 C:\Program Files\DAEMON Tools Lite\
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@h0 1
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@hdf12 0xA9 0xA6 0x17 0x32 ...
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001@a0 0xA0 0x02 0x00 0x00 ...
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001@hdf12 0xAC 0x24 0x19 0xE3 ...
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0@hdf12 0xFD 0x13 0x40 0xD9 ...
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@h0 0
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@ujdew 0x6A 0x8C 0xD6 0xC3 ...
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@p0 C:\Program Files\DAEMON Tools Lite\
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@h0 1
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@hdf12 0x9E 0xFB 0x06 0x14 ...
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001@a0 0xA0 0x02 0x00 0x00 ...
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001@hdf12 0xAC 0x24 0x19 0xE3 ...
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0@hdf12 0xFD 0x13 0x40 0xD9 ...

Attached Files


Edited by mikeypaddon, 15 January 2012 - 08:47 PM.


#4 RPMcMurphy

RPMcMurphy

    Bleeping *^#@%~


  • Malware Response Team
  • 3,530 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:09:05 PM

Posted 15 January 2012 - 08:51 PM

mikeypaddon:

Please do this next:

Posted Image P2P - I see you have P2P software (Vuze & Limewire) installed on your machine. We are not here to pass judgment on file-sharing as a concept. However, we will warn you that engaging in this activity and having this kind of software installed on your machine will always make you more susceptible to malware infections. Please see this post for more information. I recommend that you uninstall these now. You can do so via Control Panel >> Add or Remove Programs. If you choose to keep these applications, please do not use them until our fixes are complete.

Posted Image Download Combofix from either of the links below, and save it to your desktop.

Link 1
Link 2

**Note: It is important that it is saved directly to your desktop**

--------------------------------------------------------------------
IMPORTANT - Disable your AntiVirus and AntiSpyware applications, usually via a right click on the System Tray icon. They may otherwise interfere with our tools. If you have difficulty properly disabling your protective programs, refer to this link
--------------------------------------------------------------------

Double click on ComboFix.exe & follow the prompts.
  • If you have trouble, stop and post back. Do not try to repeatedly run comboFix!
  • When finished, it will produce a report for you.
.
Please include the following in your next post:
  • ComboFix log

Threads are closed after 5 days of inactivity.

ASAP & UNITE Member


The help you receive here is free. If you wish to show your appreciation, then you may btn_donate_SM.gif


#5 mikeypaddon

mikeypaddon
  • Topic Starter

  • Members
  • 5 posts
  • OFFLINE
  •  
  • Local time:01:05 AM

Posted 16 January 2012 - 06:18 AM

Hi I've uninstalled Vuze and Limewire, and here is the ComboFix log, thanks

ComboFix 12-01-16.02 - Kieran's 16/01/2012 10:52:23.1.2 - x86
Microsoft Windows 7 Ultimate 6.1.7600.0.1252.44.1033.18.2038.929 [GMT 0:00]
Running from: c:\users\Kieran's\Desktop\Combo-Fix.exe
AV: Lavasoft Ad-Watch Live! Anti-Virus *Disabled/Updated* {9FF26384-70D4-CE6B-3ECB-E759A6A40116}
SP: Lavasoft Ad-Watch Live! *Disabled/Updated* {24938260-56EE-C1E5-047B-DC2BDD234BAB}
SP: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\users\Kieran's\AppData\Local\confMainPath\eventCommsServ.dll
.
.
((((((((((((((((((((((((( Files Created from 2011-12-16 to 2012-01-16 )))))))))))))))))))))))))))))))
.
.
2012-01-16 11:09 . 2012-01-16 11:09 -------- d-----w- c:\users\Kieran's\AppData\Local\temp
2012-01-16 11:09 . 2012-01-16 11:09 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-01-16 10:27 . 2012-01-16 11:08 -------- d-----w- c:\users\Kieran's\AppData\Local\confMainPath
2012-01-16 10:23 . 2012-01-16 10:23 56200 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{3A9C5F01-A7EE-40E5-8823-E61EA043345D}\offreg.dll
2012-01-16 10:22 . 2012-01-16 10:27 -------- d-----w- c:\users\Kieran's\AppData\Local\AppHelpdrm
2012-01-15 17:08 . 2012-01-16 10:22 -------- d-----w- c:\users\Kieran's\AppData\Local\SystemPadSvcs
2012-01-15 11:58 . 2012-01-15 11:58 388096 ----a-r- c:\users\Kieran's\AppData\Roaming\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe
2012-01-15 11:58 . 2012-01-15 11:58 -------- d-----w- c:\program files\Trend Micro
2012-01-15 00:38 . 2012-01-15 00:38 12872 ----a-w- c:\windows\system32\bootdelete.exe
2012-01-15 00:27 . 2012-01-15 00:27 -------- d-----w- C:\TDSSKiller_Quarantine
2012-01-15 00:25 . 2012-01-15 00:31 16968 ----a-w- c:\windows\system32\drivers\hitmanpro35.sys
2012-01-15 00:25 . 2012-01-15 00:30 -------- d-----w- c:\program files\Hitman Pro 3.5
2012-01-15 00:23 . 2012-01-15 00:38 -------- d-----w- c:\programdata\Hitman Pro
2012-01-14 22:42 . 2012-01-14 23:03 23624 ----a-w- c:\windows\system32\drivers\hitmanpro36.sys
2012-01-14 22:42 . 2012-01-14 22:42 -------- d-----w- c:\programdata\HitmanPro
2012-01-14 20:54 . 2012-01-14 20:54 -------- d-----w- c:\program files\MSECache
2012-01-11 15:54 . 2011-10-26 04:28 1328640 ----a-w- c:\windows\system32\quartz.dll
2012-01-11 15:54 . 2011-10-26 04:28 514560 ----a-w- c:\windows\system32\qdvd.dll
2012-01-11 15:54 . 2011-11-19 14:06 67072 ----a-w- c:\windows\system32\packager.dll
2012-01-11 15:54 . 2011-11-17 05:41 1288984 ----a-w- c:\windows\system32\ntdll.dll
2012-01-09 12:54 . 2012-01-11 22:12 -------- d-----w- c:\programdata\Spybot - Search & Destroy
2012-01-02 23:02 . 2012-01-02 23:02 -------- d-----w- c:\programdata\xml_param
2012-01-02 23:00 . 2011-01-13 16:06 892928 ----a-w- c:\windows\system32\iconv.dll
2012-01-02 23:00 . 2011-01-13 16:06 675840 ----a-w- c:\windows\system32\ac3filter.ax
2012-01-02 23:00 . 2011-01-13 16:06 496640 ----a-w- c:\windows\system32\xvid.ax
2012-01-02 23:00 . 2012-01-02 23:12 -------- d-----w- c:\program files\Wondershare
2012-01-02 22:57 . 2012-01-02 22:57 -------- d-----w- c:\programdata\CanonIJ
2012-01-02 22:56 . 2012-01-02 22:56 -------- d-----w- c:\users\Kieran's\AppData\Roaming\Canon
2012-01-02 22:33 . 2012-01-02 22:33 -------- d-----w- c:\users\Kieran's\AppData\Roaming\Malwarebytes
2012-01-02 22:32 . 2010-04-29 15:39 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2012-01-02 22:32 . 2012-01-02 22:33 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2012-01-02 22:32 . 2012-01-02 22:32 -------- d-----w- c:\programdata\Malwarebytes
2012-01-02 22:32 . 2010-04-29 15:39 20952 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-01-02 18:10 . 2012-01-02 18:10 -------- d-----w- c:\users\Kieran's\dwhelper
2012-01-02 18:00 . 2012-01-02 18:00 -------- d-----w- C:\my flashes
2012-01-02 17:58 . 2005-03-29 08:34 246784 ----a-w- c:\windows\system32\sqlite3.dll
2012-01-02 17:58 . 2012-01-02 18:05 -------- d-----w- c:\program files\Flash Saver
2012-01-02 17:57 . 2012-01-02 17:58 -------- d-----w- c:\users\Kieran's\AppData\Roaming\GetRightToGo
2012-01-02 16:31 . 2012-01-02 16:31 -------- d-----w- c:\users\Kieran's\AppData\Roaming\TuneUp Software
2012-01-02 16:29 . 2012-01-12 12:23 -------- d-----w- c:\programdata\TuneUp Software
2012-01-02 16:29 . 2012-01-02 16:29 -------- d-sh--w- c:\programdata\{32364CEA-7855-4A3C-B674-53D8E9B97936}
2012-01-01 05:56 . 2012-01-01 05:56 0 ----a-w- c:\windows\system32\drivers\vadxasbv.sys
2012-01-01 05:37 . 2011-11-30 02:21 6823496 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{3A9C5F01-A7EE-40E5-8823-E61EA043345D}\mpengine.dll
2011-12-31 01:00 . 2011-12-31 01:00 -------- d-----w- c:\users\Kieran's\AppData\Roaming\Yahoo!
2011-12-27 23:02 . 2011-12-27 23:02 -------- d-----w- c:\program files\iPod
2011-12-27 23:02 . 2011-12-27 23:07 -------- d-----w- c:\program files\iTunes
2011-12-27 22:36 . 2011-12-27 22:36 -------- d-----w- c:\program files\Apple Software Update
2011-12-27 22:26 . 2011-12-27 22:26 -------- d-----w- c:\program files\Bonjour
2011-12-27 16:06 . 2011-12-27 16:07 -------- d-----w- c:\users\Kieran's\AppData\Roaming\avidemux
2011-12-27 13:11 . 2011-12-27 13:11 1112288 ----a-w- c:\windows\system32\WdfCoInstaller01007.dll
2011-12-27 13:11 . 2011-12-27 13:11 25512 ----a-w- c:\windows\system32\drivers\ggsemc.sys
2011-12-27 13:11 . 2011-12-27 13:11 13224 ----a-w- c:\windows\system32\drivers\ggflt.sys
2011-12-27 13:02 . 2011-12-27 13:02 -------- d-----w- c:\program files\Intuwave Ltd
2011-12-27 12:17 . 2011-12-27 12:17 -------- d-----w- c:\users\Kieran's\AppData\Roaming\Sony Ericsson
2011-12-24 18:08 . 2007-06-20 20:46 266088 ----a-w- c:\windows\system32\xactengine2_8.dll
2011-12-24 18:08 . 2007-06-20 20:45 18280 ----a-w- c:\windows\system32\x3daudio1_2.dll
2011-12-24 18:08 . 2007-05-16 16:45 443752 ----a-w- c:\windows\system32\d3dx10_34.dll
2011-12-24 18:08 . 2007-05-16 16:45 3497832 ----a-w- c:\windows\system32\d3dx9_34.dll
2011-12-24 18:08 . 2007-05-16 16:45 1124720 ----a-w- c:\windows\system32\D3DCompiler_34.dll
2011-12-24 18:08 . 2007-03-15 16:57 443752 ----a-w- c:\windows\system32\d3dx10_33.dll
2011-12-24 18:08 . 2007-03-12 16:42 1123696 ----a-w- c:\windows\system32\D3DCompiler_33.dll
2011-12-24 18:08 . 2006-11-29 13:06 440080 ----a-w- c:\windows\system32\d3dx10.dll
2011-12-24 18:04 . 2011-12-24 18:06 -------- d--h--w- c:\windows\msdownld.tmp
2011-12-19 01:56 . 2011-12-28 09:33 -------- d-----w- c:\programdata\Yahoo!
2011-12-19 01:52 . 2011-12-28 09:33 -------- d-----w- c:\program files\Yahoo!
2011-12-18 21:29 . 2011-12-18 21:29 -------- d-----w- C:\Application Data
2011-12-17 13:35 . 2011-12-19 01:58 414368 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-01-14 23:53 . 2009-07-13 23:11 445008 ----a-w- c:\windows\system32\drivers\Wdf01000.sys
2011-12-27 16:16 . 2010-02-14 22:56 2301208 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup\markup.dll
2011-12-27 16:16 . 2010-06-03 19:42 42776 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\dSM-2\StartResources.dll
2011-12-27 16:15 . 2010-02-14 22:55 710992 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll
2011-11-24 04:23 . 2011-12-14 09:22 2340352 ----a-w- c:\windows\system32\win32k.sys
2011-11-05 04:35 . 2011-12-14 09:23 981504 ----a-w- c:\windows\system32\wininet.dll
2011-11-05 04:34 . 2011-12-14 09:23 44544 ----a-w- c:\windows\system32\licmgr10.dll
2011-11-05 04:30 . 2011-12-14 09:22 2048 ----a-w- c:\windows\system32\tzres.dll
2011-11-05 03:28 . 2011-12-14 09:23 386048 ----a-w- c:\windows\system32\html.iec
2011-11-05 02:55 . 2011-12-14 09:23 1638912 ----a-w- c:\windows\system32\mshtml.tlb
2011-10-26 04:42 . 2011-12-14 09:22 3901808 ----a-w- c:\windows\system32\ntoskrnl.exe
2011-10-26 04:42 . 2011-12-14 09:22 3957104 ----a-w- c:\windows\system32\ntkrnlpa.exe
2011-10-26 04:25 . 2011-12-14 09:22 38912 ----a-w- c:\windows\system32\csrsrv.dll
2012-01-08 23:23 . 2012-01-03 11:06 121816 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\DTLite.exe" [2011-01-20 1305408]
"Messenger (Yahoo!)"="c:\progra~1\Yahoo!\Messenger\YahooMessenger.exe" [2011-11-23 6497592]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Driver Fetch"="c:\program files\Driver Fetch\2.3.0.5\DriverFetch.exe" [2010-03-24 799712]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2009-09-23 141848]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2009-09-23 173592]
"Persistence"="c:\windows\system32\igfxpers.exe" [2009-09-23 150552]
"AdobeAAMUpdater-1.0"="c:\program files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [2011-03-15 499608]
"SwitchBoard"="c:\program files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe" [2010-02-19 517096]
"AdobeCS5.5ServiceManager"="c:\program files\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe" [2011-01-12 1523360]
"CanonMyPrinter"="c:\program files\Canon\MyPrinter\BJMyPrt.exe" [2010-03-25 2516296]
"CanonSolutionMenuEx"="c:\program files\Canon\Solution Menu EX\CNSEMAIN.EXE" [2010-04-02 1185112]
"APSDaemon"="c:\program files\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2011-11-01 59240]
"Malwarebytes Anti-Malware (reboot)"="c:\program files\Malwarebytes' Anti-Malware\mbam.exe" [2010-04-29 1090952]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer]
"NoDevMgrUpdate"= 0 (0x0)
.
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"NoDevMgrUpdate"= 0 (0x0)
.
[HKEY_USERS\.default\software\microsoft\windows\currentversion\policies\explorer]
"NoDevMgrUpdate"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux1"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Lavasoft Ad-Aware Service]
@="Service"
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
@=""
.
[HKLM\~\startupfolder\C:^Users^Kieran's^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^LimeWire On Startup.lnk]
path=c:\users\Kieran's\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\LimeWire On Startup.lnk
backup=c:\windows\pss\LimeWire On Startup.lnk.Startup
backupExtension=.Startup
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
2009-12-11 14:57 948672 ----a-r- c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
2009-12-22 00:57 35760 ----a-w- c:\program files\Adobe\Reader 9.0\Reader\reader_sl.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DivXUpdate]
2010-03-05 15:32 1135912 ----a-w- c:\program files\DivX\DivX Update\DivXUpdate.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
2011-12-08 01:36 421736 ----a-w- c:\program files\iTunes\iTunesHelper.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
2010-11-29 17:38 421888 ----a-w- c:\program files\QuickTime\QTTask.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe"
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe"
.
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R2 gupdate1cac5f586a7ae9e;Google Update Service (gupdate1cac5f586a7ae9e);c:\program files\Google\Update\GoogleUpdate.exe [2010-03-17 133104]
R2 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service;c:\program files\Lavasoft\Ad-Aware\AAWService.exe [2011-11-30 2152152]
R3 ggflt;SEMC USB Flash Driver Filter;c:\windows\system32\DRIVERS\ggflt.sys [2011-12-27 13224]
R3 gupdatem;Google Update Service (gupdatem);c:\program files\Google\Update\GoogleUpdate.exe [2010-03-17 133104]
R3 Lavasoft Kernexplorer;Lavasoft helper driver;c:\program files\Lavasoft\Ad-Aware\KernExplorer.sys [2011-05-25 15232]
R3 SwitchBoard;SwitchBoard;c:\program files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
R3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\Wat\WatAdminSvc.exe [2010-05-23 1343400]
S0 Lbd;Lbd;c:\windows\system32\DRIVERS\Lbd.sys [2011-05-25 64512]
S0 sptd;sptd;c:\windows\\SystemRoot\System32\Drivers\sptd.sys [x]
S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [2009-07-13 48128]
S2 SBSDWSCService;SBSD Security Center Service;c:\program files\Spybot - Search & Destroy\SDWinSec.exe [2009-01-26 1153368]
S3 itecir;ITECIR Infrared Receiver;c:\windows\system32\DRIVERS\itecir.sys [2010-01-25 63520]
S3 k57nd60x;Broadcom NetLink ™ Gigabit Ethernet - NDIS 6.0;c:\windows\system32\DRIVERS\k57nd60x.sys [2009-07-13 229888]
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
getPlusHelper REG_MULTI_SZ getPlusHelper
.
Contents of the 'Scheduled Tasks' folder
.
2012-01-01 c:\windows\Tasks\Driver Fetch.job
- c:\program files\Driver Fetch\2.3.0.5\DriverFetch.exe [2010-03-27 10:51]
.
2012-01-16 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-03-17 17:15]
.
2012-01-07 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-03-17 17:15]
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://search.musicfrost.com
uInternet Settings,ProxyOverride = *.local
IE: Free YouTube to MP3 Converter - c:\users\Kieran's\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm
TCP: DhcpNameServer = 192.168.1.1
FF - ProfilePath - c:\users\Kieran's\AppData\Roaming\Mozilla\Firefox\Profiles\2b781yj6.default\
FF - prefs.js: browser.search.defaulturl - hxxp://www.bing.com/search?FORM=IEFM1&q=
FF - prefs.js: browser.search.selectedEngine - MFGSearch.NET
FF - prefs.js: browser.startup.homepage - hxxp://www.google.com
FF - prefs.js: keyword.URL - chrome://browser-region/locale/region.properties
.
.
------- File Associations -------
.
JSEFile="%SystemRoot%\System32\WScript.exe" "%1" %*
.
- - - - ORPHANS REMOVED - - - -
.
HKCU-Run-AdobeBridge - (no file)
HKCU-Run-eventCommsServ - c:\users\Kieran's\AppData\Local\confMainPath\eventCommsServ.dll
SafeBoot-69944362.sys
MSConfigStartUp-ClickPotatoLiteSA - c:\program files\ClickPotatoLite\bin\10.0.528.0\ClickPotatoLiteSA.exe
MSConfigStartUp-EA Core - c:\program files\Electronic Arts\EADM\Core.exe
.
.
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Completion time: 2012-01-16 11:14:26
ComboFix-quarantined-files.txt 2012-01-16 11:14
.
Pre-Run: 39,586,185,216 bytes free
Post-Run: 39,511,588,864 bytes free
.
- - End Of File - - 79D68142616DD1AF66050935A8BB5C29

#6 RPMcMurphy

RPMcMurphy

    Bleeping *^#@%~


  • Malware Response Team
  • 3,530 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:09:05 PM

Posted 16 January 2012 - 10:06 PM

mikeypaddon:

Please do this next:

Posted Image Open Notepad Go to Start> All Programs> Accessories> Notepad ( this will only work with Notepad ) and copy all the text inside the Codebox by highlighting it all and pressing CTRL C on your keyboard, then paste it into Notepad, make sure there is no space before and above http://

http://www.bleepingcomputer.com/forums/topic438211.html
Collect::
c:\windows\system32\drivers\vadxasbv.sys

Save this as CFScript to your desktop.

Then disable your security programs and drag the CFScript into ComboFix.exe as you see in the screenshot below.

Posted Image


This will start ComboFix again. After reboot, (in case it asks to reboot), post the contents of Combofix.txt in your next reply.

Posted Image You have this program installed, Malwarebytes' Anti-Malware (MBAM). Please update it and run a scan.

Open MBAM
  • Click the Update tab
  • Click Check for Updates
  • If an update is found, it will download and install the latest version.
  • The program will close to update and reopen.
  • Once the program has loaded, select "Perform Full Scan", then click Scan.
  • The scan may take some time to finish,so please be patient.
  • When the scan is complete, click OK, then Show Results to view the results.
  • Uncheck any entries from C:\System Volume Information or C:\Qoobox
  • Make sure that everything else is checked, and click Remove Selected.
  • When disinfection is completed, a log will open in Notepad and you may be prompted to Restart.(See Extra Note)
  • The log is automatically saved by MBAM and can be viewed by clicking the Logs tab in MBAM.
  • Copy&Paste the entire report in your next reply.
Extra Note:
If MBAM encounters a file that is difficult to remove,you will be presented with 1 of 2 prompts,click OK to either and let MBAM proceed with the disinfection process,if asked to restart the computer,please do so immediately.

Please include the following in your next post:
  • ComboFix log
  • MBAM log

Threads are closed after 5 days of inactivity.

ASAP & UNITE Member


The help you receive here is free. If you wish to show your appreciation, then you may btn_donate_SM.gif


#7 mikeypaddon

mikeypaddon
  • Topic Starter

  • Members
  • 5 posts
  • OFFLINE
  •  
  • Local time:01:05 AM

Posted 17 January 2012 - 03:29 PM

ComboFix 12-01-17.01 - Kieran's 17/01/2012 15:26:26.2.2 - x86
Microsoft Windows 7 Ultimate 6.1.7600.0.1252.44.1033.18.2038.1153 [GMT 0:00]
Running from: c:\users\Kieran's\Desktop\Combo-Fix.exe
Command switches used :: c:\users\Kieran's\Desktop\CFScript.txt
AV: Lavasoft Ad-Watch Live! Anti-Virus *Disabled/Updated* {9FF26384-70D4-CE6B-3ECB-E759A6A40116}
SP: Lavasoft Ad-Watch Live! *Disabled/Updated* {24938260-56EE-C1E5-047B-DC2BDD234BAB}
SP: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Created a new restore point
.
.
((((((((((((((((((((((((( Files Created from 2011-12-17 to 2012-01-17 )))))))))))))))))))))))))))))))
.
.
2012-01-17 15:43 . 2012-01-17 15:43 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-01-17 09:51 . 2012-01-17 09:51 56200 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{3A9C5F01-A7EE-40E5-8823-E61EA043345D}\offreg.dll
2012-01-16 11:14 . 2012-01-17 15:47 -------- d-----w- c:\users\Kieran's\AppData\Local\temp
2012-01-16 10:27 . 2012-01-16 11:08 -------- d-----w- c:\users\Kieran's\AppData\Local\confMainPath
2012-01-16 10:22 . 2012-01-16 10:27 -------- d-----w- c:\users\Kieran's\AppData\Local\AppHelpdrm
2012-01-15 17:08 . 2012-01-16 10:22 -------- d-----w- c:\users\Kieran's\AppData\Local\SystemPadSvcs
2012-01-15 11:58 . 2012-01-15 11:58 388096 ----a-r- c:\users\Kieran's\AppData\Roaming\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe
2012-01-15 11:58 . 2012-01-15 11:58 -------- d-----w- c:\program files\Trend Micro
2012-01-15 00:38 . 2012-01-15 00:38 12872 ----a-w- c:\windows\system32\bootdelete.exe
2012-01-15 00:27 . 2012-01-15 00:27 -------- d-----w- C:\TDSSKiller_Quarantine
2012-01-15 00:25 . 2012-01-15 00:31 16968 ----a-w- c:\windows\system32\drivers\hitmanpro35.sys
2012-01-15 00:25 . 2012-01-15 00:30 -------- d-----w- c:\program files\Hitman Pro 3.5
2012-01-15 00:23 . 2012-01-15 00:38 -------- d-----w- c:\programdata\Hitman Pro
2012-01-14 22:42 . 2012-01-14 23:03 23624 ----a-w- c:\windows\system32\drivers\hitmanpro36.sys
2012-01-14 22:42 . 2012-01-14 22:42 -------- d-----w- c:\programdata\HitmanPro
2012-01-14 20:54 . 2012-01-14 20:54 -------- d-----w- c:\program files\MSECache
2012-01-11 15:54 . 2011-10-26 04:28 1328640 ----a-w- c:\windows\system32\quartz.dll
2012-01-11 15:54 . 2011-10-26 04:28 514560 ----a-w- c:\windows\system32\qdvd.dll
2012-01-11 15:54 . 2011-11-19 14:06 67072 ----a-w- c:\windows\system32\packager.dll
2012-01-11 15:54 . 2011-11-17 05:41 1288984 ----a-w- c:\windows\system32\ntdll.dll
2012-01-09 12:54 . 2012-01-11 22:12 -------- d-----w- c:\programdata\Spybot - Search & Destroy
2012-01-02 23:02 . 2012-01-02 23:02 -------- d-----w- c:\programdata\xml_param
2012-01-02 23:00 . 2011-01-13 16:06 892928 ----a-w- c:\windows\system32\iconv.dll
2012-01-02 23:00 . 2011-01-13 16:06 675840 ----a-w- c:\windows\system32\ac3filter.ax
2012-01-02 23:00 . 2011-01-13 16:06 496640 ----a-w- c:\windows\system32\xvid.ax
2012-01-02 23:00 . 2012-01-02 23:12 -------- d-----w- c:\program files\Wondershare
2012-01-02 22:57 . 2012-01-02 22:57 -------- d-----w- c:\programdata\CanonIJ
2012-01-02 22:56 . 2012-01-02 22:56 -------- d-----w- c:\users\Kieran's\AppData\Roaming\Canon
2012-01-02 22:33 . 2012-01-02 22:33 -------- d-----w- c:\users\Kieran's\AppData\Roaming\Malwarebytes
2012-01-02 22:32 . 2010-04-29 15:39 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2012-01-02 22:32 . 2012-01-02 22:33 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2012-01-02 22:32 . 2012-01-02 22:32 -------- d-----w- c:\programdata\Malwarebytes
2012-01-02 22:32 . 2010-04-29 15:39 20952 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-01-02 18:10 . 2012-01-02 18:10 -------- d-----w- c:\users\Kieran's\dwhelper
2012-01-02 18:00 . 2012-01-02 18:00 -------- d-----w- C:\my flashes
2012-01-02 17:58 . 2005-03-29 08:34 246784 ----a-w- c:\windows\system32\sqlite3.dll
2012-01-02 17:58 . 2012-01-02 18:05 -------- d-----w- c:\program files\Flash Saver
2012-01-02 17:57 . 2012-01-02 17:58 -------- d-----w- c:\users\Kieran's\AppData\Roaming\GetRightToGo
2012-01-02 16:31 . 2012-01-02 16:31 -------- d-----w- c:\users\Kieran's\AppData\Roaming\TuneUp Software
2012-01-02 16:29 . 2012-01-12 12:23 -------- d-----w- c:\programdata\TuneUp Software
2012-01-02 16:29 . 2012-01-02 16:29 -------- d-sh--w- c:\programdata\{32364CEA-7855-4A3C-B674-53D8E9B97936}
2012-01-01 05:56 . 2012-01-01 05:56 0 ----a-w- c:\windows\system32\drivers\vadxasbv.sys
2012-01-01 05:37 . 2011-11-30 02:21 6823496 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{3A9C5F01-A7EE-40E5-8823-E61EA043345D}\mpengine.dll
2011-12-31 01:00 . 2011-12-31 01:00 -------- d-----w- c:\users\Kieran's\AppData\Roaming\Yahoo!
2011-12-27 23:02 . 2011-12-27 23:02 -------- d-----w- c:\program files\iPod
2011-12-27 23:02 . 2011-12-27 23:07 -------- d-----w- c:\program files\iTunes
2011-12-27 22:36 . 2011-12-27 22:36 -------- d-----w- c:\program files\Apple Software Update
2011-12-27 22:26 . 2011-12-27 22:26 -------- d-----w- c:\program files\Bonjour
2011-12-27 16:06 . 2011-12-27 16:07 -------- d-----w- c:\users\Kieran's\AppData\Roaming\avidemux
2011-12-27 13:11 . 2011-12-27 13:11 1112288 ----a-w- c:\windows\system32\WdfCoInstaller01007.dll
2011-12-27 13:11 . 2011-12-27 13:11 25512 ----a-w- c:\windows\system32\drivers\ggsemc.sys
2011-12-27 13:11 . 2011-12-27 13:11 13224 ----a-w- c:\windows\system32\drivers\ggflt.sys
2011-12-27 13:02 . 2011-12-27 13:02 -------- d-----w- c:\program files\Intuwave Ltd
2011-12-27 12:17 . 2011-12-27 12:17 -------- d-----w- c:\users\Kieran's\AppData\Roaming\Sony Ericsson
2011-12-24 18:08 . 2007-06-20 20:46 266088 ----a-w- c:\windows\system32\xactengine2_8.dll
2011-12-24 18:08 . 2007-06-20 20:45 18280 ----a-w- c:\windows\system32\x3daudio1_2.dll
2011-12-24 18:08 . 2007-05-16 16:45 443752 ----a-w- c:\windows\system32\d3dx10_34.dll
2011-12-24 18:08 . 2007-05-16 16:45 3497832 ----a-w- c:\windows\system32\d3dx9_34.dll
2011-12-24 18:08 . 2007-05-16 16:45 1124720 ----a-w- c:\windows\system32\D3DCompiler_34.dll
2011-12-24 18:08 . 2007-03-15 16:57 443752 ----a-w- c:\windows\system32\d3dx10_33.dll
2011-12-24 18:08 . 2007-03-12 16:42 1123696 ----a-w- c:\windows\system32\D3DCompiler_33.dll
2011-12-24 18:08 . 2006-11-29 13:06 440080 ----a-w- c:\windows\system32\d3dx10.dll
2011-12-24 18:04 . 2011-12-24 18:06 -------- d--h--w- c:\windows\msdownld.tmp
2011-12-19 01:56 . 2011-12-28 09:33 -------- d-----w- c:\programdata\Yahoo!
2011-12-19 01:52 . 2011-12-28 09:33 -------- d-----w- c:\program files\Yahoo!
2011-12-18 21:29 . 2011-12-18 21:29 -------- d-----w- C:\Application Data
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-01-14 23:53 . 2009-07-13 23:11 445008 ----a-w- c:\windows\system32\drivers\Wdf01000.sys
2011-12-27 16:16 . 2010-02-14 22:56 2301208 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup\markup.dll
2011-12-27 16:16 . 2010-06-03 19:42 42776 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\dSM-2\StartResources.dll
2011-12-27 16:15 . 2010-02-14 22:55 710992 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll
2011-12-19 01:58 . 2011-12-17 13:35 414368 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2011-11-24 04:23 . 2011-12-14 09:22 2340352 ----a-w- c:\windows\system32\win32k.sys
2011-11-05 04:35 . 2011-12-14 09:23 981504 ----a-w- c:\windows\system32\wininet.dll
2011-11-05 04:34 . 2011-12-14 09:23 44544 ----a-w- c:\windows\system32\licmgr10.dll
2011-11-05 04:30 . 2011-12-14 09:22 2048 ----a-w- c:\windows\system32\tzres.dll
2011-11-05 03:28 . 2011-12-14 09:23 386048 ----a-w- c:\windows\system32\html.iec
2011-11-05 02:55 . 2011-12-14 09:23 1638912 ----a-w- c:\windows\system32\mshtml.tlb
2011-10-26 04:42 . 2011-12-14 09:22 3901808 ----a-w- c:\windows\system32\ntoskrnl.exe
2011-10-26 04:42 . 2011-12-14 09:22 3957104 ----a-w- c:\windows\system32\ntkrnlpa.exe
2011-10-26 04:25 . 2011-12-14 09:22 38912 ----a-w- c:\windows\system32\csrsrv.dll
2012-01-08 23:23 . 2012-01-03 11:06 121816 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\DTLite.exe" [2011-01-20 1305408]
"Messenger (Yahoo!)"="c:\progra~1\Yahoo!\Messenger\YahooMessenger.exe" [2011-11-23 6497592]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Driver Fetch"="c:\program files\Driver Fetch\2.3.0.5\DriverFetch.exe" [2010-03-24 799712]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2009-09-23 141848]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2009-09-23 173592]
"Persistence"="c:\windows\system32\igfxpers.exe" [2009-09-23 150552]
"AdobeAAMUpdater-1.0"="c:\program files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [2011-03-15 499608]
"SwitchBoard"="c:\program files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe" [2010-02-19 517096]
"AdobeCS5.5ServiceManager"="c:\program files\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe" [2011-01-12 1523360]
"CanonMyPrinter"="c:\program files\Canon\MyPrinter\BJMyPrt.exe" [2010-03-25 2516296]
"CanonSolutionMenuEx"="c:\program files\Canon\Solution Menu EX\CNSEMAIN.EXE" [2010-04-02 1185112]
"APSDaemon"="c:\program files\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2011-11-01 59240]
"Malwarebytes Anti-Malware (reboot)"="c:\program files\Malwarebytes' Anti-Malware\mbam.exe" [2010-04-29 1090952]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer]
"NoDevMgrUpdate"= 0 (0x0)
.
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"NoDevMgrUpdate"= 0 (0x0)
.
[HKEY_USERS\.default\software\microsoft\windows\currentversion\policies\explorer]
"NoDevMgrUpdate"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux1"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Lavasoft Ad-Aware Service]
@="Service"
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
@=""
.
[HKLM\~\startupfolder\C:^Users^Kieran's^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^LimeWire On Startup.lnk]
path=c:\users\Kieran's\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\LimeWire On Startup.lnk
backup=c:\windows\pss\LimeWire On Startup.lnk.Startup
backupExtension=.Startup
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
2009-12-11 14:57 948672 ----a-r- c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
2009-12-22 00:57 35760 ----a-w- c:\program files\Adobe\Reader 9.0\Reader\reader_sl.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DivXUpdate]
2010-03-05 15:32 1135912 ----a-w- c:\program files\DivX\DivX Update\DivXUpdate.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
2011-12-08 01:36 421736 ----a-w- c:\program files\iTunes\iTunesHelper.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
2010-11-29 17:38 421888 ----a-w- c:\program files\QuickTime\QTTask.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe"
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe"
.
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R2 gupdate1cac5f586a7ae9e;Google Update Service (gupdate1cac5f586a7ae9e);c:\program files\Google\Update\GoogleUpdate.exe [2010-03-17 133104]
R3 ggflt;SEMC USB Flash Driver Filter;c:\windows\system32\DRIVERS\ggflt.sys [2011-12-27 13224]
R3 gupdatem;Google Update Service (gupdatem);c:\program files\Google\Update\GoogleUpdate.exe [2010-03-17 133104]
R3 Lavasoft Kernexplorer;Lavasoft helper driver;c:\program files\Lavasoft\Ad-Aware\KernExplorer.sys [2011-05-25 15232]
R3 SwitchBoard;SwitchBoard;c:\program files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
R3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\Wat\WatAdminSvc.exe [2010-05-23 1343400]
S0 Lbd;Lbd;c:\windows\system32\DRIVERS\Lbd.sys [2011-05-25 64512]
S0 sptd;sptd;c:\windows\\SystemRoot\System32\Drivers\sptd.sys [x]
S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [2009-07-13 48128]
S2 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service;c:\program files\Lavasoft\Ad-Aware\AAWService.exe [2011-11-30 2152152]
S2 SBSDWSCService;SBSD Security Center Service;c:\program files\Spybot - Search & Destroy\SDWinSec.exe [2009-01-26 1153368]
S3 itecir;ITECIR Infrared Receiver;c:\windows\system32\DRIVERS\itecir.sys [2010-01-25 63520]
S3 k57nd60x;Broadcom NetLink ™ Gigabit Ethernet - NDIS 6.0;c:\windows\system32\DRIVERS\k57nd60x.sys [2009-07-13 229888]
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
getPlusHelper REG_MULTI_SZ getPlusHelper
.
Contents of the 'Scheduled Tasks' folder
.
2012-01-17 c:\windows\Tasks\Ad-Aware Update (Weekly).job
- c:\program files\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe [2011-05-25 07:40]
.
2012-01-01 c:\windows\Tasks\Driver Fetch.job
- c:\program files\Driver Fetch\2.3.0.5\DriverFetch.exe [2010-03-27 10:51]
.
2012-01-17 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-03-17 17:15]
.
2012-01-07 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-03-17 17:15]
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://search.musicfrost.com
uInternet Settings,ProxyOverride = *.local
IE: Free YouTube to MP3 Converter - c:\users\Kieran's\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm
TCP: DhcpNameServer = 192.168.1.1
FF - ProfilePath - c:\users\Kieran's\AppData\Roaming\Mozilla\Firefox\Profiles\2b781yj6.default\
FF - prefs.js: browser.search.defaulturl - hxxp://www.bing.com/search?FORM=IEFM1&q=
FF - prefs.js: browser.search.selectedEngine - MFGSearch.NET
FF - prefs.js: browser.startup.homepage - hxxp://www.google.com
FF - prefs.js: keyword.URL - chrome://browser-region/locale/region.properties
.
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
------------------------ Other Running Processes ------------------------
.
c:\program files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
c:\program files\Bonjour\mDNSResponder.exe
c:\windows\system32\sppsvc.exe
c:\windows\system32\taskhost.exe
c:\windows\system32\wbem\unsecapp.exe
c:\program files\Lavasoft\Ad-Aware\AAWTray.exe
c:\windows\system32\conhost.exe
c:\windows\system32\igfxsrvc.exe
c:\program files\Windows Media Player\wmpnetwk.exe
c:\program files\Yahoo!\Messenger\ymsgr_tray.exe
.
**************************************************************************
.
Completion time: 2012-01-17 15:55:49 - machine was rebooted
ComboFix-quarantined-files.txt 2012-01-17 15:55
ComboFix2.txt 2012-01-16 11:14
.
Pre-Run: 38,359,703,552 bytes free
Post-Run: 38,317,694,976 bytes free
.
- - End Of File - - C6D62323CE934F0B0CEDD168B63FF5F3




Malwarebytes Anti-Malware 1.60.0.1800
www.malwarebytes.org

Database version: v2012.01.17.02

Windows 7 x86 NTFS
Internet Explorer 8.0.7600.16385
Kieran's :: KIERANS-PC [administrator]

17/01/2012 16:10:11
mbam-log-2012-01-17 (16-10-11).txt

Scan type: Full scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 474357
Time elapsed: 3 hour(s), 53 minute(s), 36 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 885
C:\Drivers\audio\R196492\AESTCom.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Drivers\audio\R196492\AESTECap.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Drivers\audio\R196492\stlang.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Drivers\input\R189395\OA001Pin.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Drivers\input\R189395\OA001Scd.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Drivers\input\R191022\ApMouCpl.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Drivers\input\R191022\Apoint.exe (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Drivers\network\R189417\bcmihvsrv.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Drivers\network\R189417\bcmihvui.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Drivers\storage\R181306\snymsico.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Drivers\video\R181156\hccutils.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Drivers\video\R181156\ig4dev32.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Drivers\video\R181156\ig4icd32.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Drivers\video\R181156\igdumd32.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Drivers\video\R181156\igfxdev.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Drivers\video\R181156\igfxdo.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Drivers\video\R181156\igfxpph.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Drivers\video\R181156\igfxress.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Drivers\video\R181156\igfxTMM.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Drivers\video\R181156\igxpco32.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Drivers\video\R181156\oemdspif.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Users\Kieran's\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\27\2309025b-54bd4ab4 (Trojan.Downloader.bh) -> Quarantined and deleted successfully.
C:\Users\Kieran's\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\54\1a209876-3af754fb-n\msvcp71.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Users\Kieran's\Documents\GameShadow\zlib.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Adobe\Reader 9.0\Reader\AdobeXMP.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Adobe\Reader 9.0\Reader\ACE.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Adobe\Reader 9.0\Reader\Acrofx32.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Adobe\Reader 9.0\Reader\AdobeLinguistic.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Adobe\Reader 9.0\Reader\icucnv36.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Adobe\Reader 9.0\Reader\JP2KLib.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Adobe\Reader 9.0\Reader\logsession.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Adobe\Reader 9.0\Reader\LogTransport2.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Adobe\Reader 9.0\Reader\pe.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Adobe\Reader 9.0\Reader\sqlite.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Adobe\Reader 9.0\Reader\ahclient.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Adobe\Reader 9.0\Reader\AXE8SharedExpat.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Adobe\Reader 9.0\Reader\AXSLE.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Adobe\Reader 9.0\Reader\BIBUtils.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Adobe\Reader 9.0\Reader\CoolType.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\ASIO4ALL v2\asio4all.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\AskBarDis\bar\bin\psvince.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Bonjour\mdnsNSP.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Cisco\Cisco EAP-FAST Module\CiscoEapFast.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Cisco\Cisco LEAP Module\CiscoEapLeap.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Cisco\Cisco PEAP Module\CiscoEapPeap.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\Apple\Mobile Device Support\bin\dnssd.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\Apple\Mobile Device Support\bin\ssleay32.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\Apple\Mobile Device Support\bin\libcurl.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\Apple\Mobile Device Support\bin\libtidy.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\Apple\Mobile Device Support\bin\zlib1.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\AVSMedia\ActiveX\AVSDVDAnalyzer.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\AVSMedia\ActiveX\AVSRMFile3.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\AVSMedia\ActiveX\AVSAudioDxPlayer4.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\AVSMedia\ActiveX\AVSAudioFile4.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\AVSMedia\ActiveX\AVSAudioTransformEx4.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\AVSMedia\ActiveX\AVSBluRayFiles.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\AVSMedia\ActiveX\AVSCoreCDFS.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\AVSMedia\ActiveX\AVSCoreDW.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\AVSMedia\ActiveX\AVSCoreSVCD.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\AVSMedia\ActiveX\AVSDataWriter3.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\AVSMedia\ActiveX\AVSMJPEGFile.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\AVSMedia\ActiveX\AVSMobileDevice2ActiveSync.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\AVSMedia\ActiveX\AVSMobileDevice2MTP.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\AVSMedia\ActiveX\AVSMobileDevice2ToshBT.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\AVSMedia\ActiveX\AVSMobileDevice2UMS.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\AVSMedia\ActiveX\AVSMobileDevice2Wire.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\AVSMedia\ActiveX\AVSMobileDevice2Wireless.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\AVSMedia\ActiveX\AVSMPEGCodecs.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\AVSMedia\ActiveX\AVSMPEGFile3.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\AVSMedia\ActiveX\AVSMPEGPSCore.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\AVSMedia\ActiveX\AVSOGMFile3.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\AVSMedia\ActiveX\AVSPSCore3.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\AVSMedia\ActiveX\AVSQuickTimeFile3.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\AVSMedia\ActiveX\AVSDVDDiskExt.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\AVSMedia\ActiveX\AVSDVDFile3.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\AVSMedia\ActiveX\AVSDVDSubpicture.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\AVSMedia\ActiveX\AVSDVDSubpictureManager.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\AVSMedia\ActiveX\AVSDVFile3.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\AVSMedia\ActiveX\AVSFlashBuilder3.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\AVSMedia\ActiveX\AVSFLICFile3.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\AVSMedia\ActiveX\AVSFLVFile3.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\AVSMedia\ActiveX\AVSH263Codec.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\AVSMedia\ActiveX\AVSSWFFile3.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\AVSMedia\ActiveX\AVSUniversalVideoConverter.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\AVSMedia\ActiveX\AVSVideoCompress3.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\AVSMedia\ActiveX\AVSVideoDVDMenu3.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\AVSMedia\ActiveX\AVSVideoFile3.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\AVSMedia\ActiveX\AVSVideoOutput3.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\AVSMedia\ActiveX\AVSVideoOverlay.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\AVSMedia\ActiveX\AVSVideoPlayer.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\AVSMedia\ActiveX\AVSVOBFile3.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\AVSMedia\ActiveX\AVSWMVFile3.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\AVSMedia\ActiveX\AVSIFOFiles.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\AVSMedia\ActiveX\AVSImageFile3.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\AVSMedia\ActiveX\AVSImageView4.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\AVSMedia\ActiveX\AVSM2TSFile3.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\AVSMedia\ActiveX\AVSm2vFile3.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\AVSMedia\ActiveX\AVSMatroskaFile3.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\AVSMedia\ActiveX\AVSMediaFormatSettings3.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\AVSMedia\ActiveX\RMBin\plugins\auth3260.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\AVSMedia\ActiveX\RMBin\plugins\basc3260.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\AVSMedia\ActiveX\RMBin\plugins\rn5a3260.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\AVSMedia\ActiveX\RMBin\plugins\sdpp3260.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\AVSMedia\ActiveX\RMBin\tools\enlv3260.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\AVSMedia\ActiveX\RMBin\tools\rmme3260.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\AVSMedia\ActiveX\RMBin\tools\rmto3260.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\InstallShield\engine\6\Intel 32\ctor.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\InstallShield\engine\6\Intel 32\ILog.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\InstallShield\engine\6\Intel 32\iuser.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\InstallShield\IScript\IScript.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\InstallShield\Professional\RunTime\09\01\Intel32\iKernel.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\InstallShield\Professional\RunTime\09\01\Intel32\iscript.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\InstallShield\Professional\RunTime\09\01\Intel32\iuser.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\InstallShield\Professional\RunTime\10\00\Intel32\iKernel.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\InstallShield\Professional\RunTime\10\00\Intel32\iscript.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\InstallShield\Professional\RunTime\10\00\Intel32\iuser.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\Java\Update\Base Images\jre1.6.0.b105\patch-jre1.6.0_07.b06\msvcr71.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\Java\Update\Base Images\jre1.6.0.b105\patch-jre1.6.0_07.b06\regutils.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\microsoft shared\OFFICE12\VS Runtime\ATL70.DLL (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\microsoft shared\OFFICE12\VS Runtime\MSVCP70.DLL (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\microsoft shared\OFFICE12\VS Runtime\MSVCR70.DLL (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\microsoft shared\OFFICE12\VS Runtime\MSVCR71.DLL (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\microsoft shared\OFFICE12\VS Runtime\VisualStudioTeamCore.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\microsoft shared\PROOF\MSTHES3.DLL (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\microsoft shared\TextConv\msvcr71.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\microsoft shared\TRANSLAT\MSB1STAR.DLL (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\microsoft shared\TRANSLAT\WTSP61MS.DLL (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\microsoft shared\TRANSLAT\ESEN\MSB1ESEN.DLL (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\microsoft shared\TRANSLAT\FREN\MSB1FREN.DLL (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\Reallusion\CT Player\ctframeplayerobject.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\Reallusion\CT Player\imagickrt.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\Reallusion\CT Player\rlcontentclass.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\Roxio Shared\10.0\Roxio Central36\Engine\msvcp71.DLL (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\Roxio Shared\10.0\Roxio Central36\Engine\msvcr71.DLL (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\Roxio Shared\10.0\Roxio Central36\Main\gdiplus.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\Roxio Shared\10.0\Roxio Central36\Main\msvcp70.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\Roxio Shared\10.0\Roxio Central36\Main\msvcp71.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\Roxio Shared\10.0\Roxio Central36\Main\msvcr70.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\Roxio Shared\10.0\Roxio Central36\Main\msvcr71.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\Roxio Shared\DLLShared\msvcp71.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\Roxio Shared\DLLShared\msvcr71.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\Sonic Shared\msvcp71.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\Sonic Shared\msvcr71.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\SureThing Shared\msvcr70.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Common Files\System\Ole DB\MSOLAP80.DLL (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Creative Live! Cam\AudioFX\CtAfxApp.exe (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Creative Live! Cam\AudioFX\CtAudFx.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Winamp\elevatorps.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Winamp\nscrt.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Winamp\Plugins\in_vorbis.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Winamp\Plugins\ml_transcode.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Winamp\Plugins\dsp_sps.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Winamp\Plugins\enc_flac.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Winamp\Plugins\enc_lame.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Winamp\Plugins\gen_dropbox.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Winamp\Plugins\gen_ff.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Winamp\Plugins\gen_ml.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Winamp\Plugins\in_cdda.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Winamp\Plugins\in_dshow.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Winamp\Plugins\in_flac.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Winamp\Plugins\in_flv.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Winamp\Plugins\in_midi.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Winamp\Plugins\in_mp3.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Winamp\Plugins\in_mp4.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Winamp\Plugins\in_nsv.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Winamp\Plugins\in_swf.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Winamp\Plugins\in_wave.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Winamp\Plugins\in_wm.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Winamp\Plugins\lame_enc.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Winamp\Plugins\ml_autotag.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Winamp\Plugins\ml_bookmarks.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Winamp\Plugins\ml_dash.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Winamp\Plugins\ml_disc.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Winamp\Plugins\ml_history.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Winamp\Plugins\ml_impex.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Winamp\Plugins\ml_local.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Winamp\Plugins\ml_nowplaying.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Winamp\Plugins\ml_online.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Winamp\Plugins\ml_orb.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Winamp\Plugins\ml_playlists.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Winamp\Plugins\ml_pmp.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Winamp\Plugins\ml_rg.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Winamp\Plugins\ml_wa2_scrobbler.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Winamp\Plugins\ml_wire.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Winamp\Plugins\nscrt.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Winamp\Plugins\nsvdec_vp6.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Winamp\Plugins\out_wave.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Winamp\Plugins\pmp_activesync.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Winamp\Plugins\pmp_ipod.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Winamp\Plugins\pmp_njb.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Winamp\Plugins\pmp_usb.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Winamp\Plugins\vis_avs.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Winamp\Plugins\Milkdrop2\data\vms_desktop.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Windows Live Favorites\SyncMXProxy.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\WinRAR\Formats\7zxa.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Yahoo!\Messenger\ylog.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Yahoo!\Messenger\clientmanager.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Yahoo!\Messenger\ft60.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Yahoo!\Messenger\kdu_v32R.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Yahoo!\Messenger\libexpat.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Yahoo!\Messenger\nspr4.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Yahoo!\Messenger\PhotoShare.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Yahoo!\Messenger\RGX.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Yahoo!\Messenger\StpWd.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Yahoo!\Messenger\yacscom.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Yahoo!\Messenger\yacsui.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Yahoo!\Messenger\YahooBridgeLib.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Yahoo!\Messenger\yalertcenterM.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Yahoo!\Messenger\YCPSSL.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Yahoo!\Messenger\YHTTP.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Yahoo!\Messenger\YImage.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Yahoo!\Messenger\Yml.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Yahoo!\Messenger\ymsglite.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Yahoo!\Messenger\YPluginRegistry.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Yahoo!\Messenger\yvoiceui.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Yahoo!\Messenger\ywcupl.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Yahoo!\Messenger\ywcvwr.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Internet Download Manager\NP_IDM.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Internet Explorer\Plugins\npqtplugin.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Internet Explorer\Plugins\npqtplugin2.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Internet Explorer\Plugins\npqtplugin3.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Internet Explorer\Plugins\npqtplugin4.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Internet Explorer\Plugins\npqtplugin5.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Internet Explorer\Plugins\npqtplugin6.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Internet Explorer\Plugins\npqtplugin7.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Java\jre1.6.0_07\bin\j2pkcs11.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Java\jre1.6.0_07\bin\jpioji.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Java\jre1.6.0_07\bin\npjava32.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Java\jre1.6.0_07\bin\axbridge.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Java\jre1.6.0_07\bin\cmm.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Java\jre1.6.0_07\bin\dcpr.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Java\jre1.6.0_07\bin\dt_shmem.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Java\jre1.6.0_07\bin\dt_socket.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Java\jre1.6.0_07\bin\eula.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Java\jre1.6.0_07\bin\fontmanager.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Java\jre1.6.0_07\bin\hpi.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Java\jre1.6.0_07\bin\hprof.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Java\jre1.6.0_07\bin\instrument.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Java\jre1.6.0_07\bin\ioser12.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Java\jre1.6.0_07\bin\j2pcsc.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Java\jre1.6.0_07\bin\jaas_nt.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Java\jre1.6.0_07\bin\java.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Java\jre1.6.0_07\bin\java_crw_demo.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Java\jre1.6.0_07\bin\jawt.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Java\jre1.6.0_07\bin\JdbcOdbc.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Java\jre1.6.0_07\bin\jdwp.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Java\jre1.6.0_07\bin\jli.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Java\jre1.6.0_07\bin\jpeg.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Java\jre1.6.0_07\bin\jpicom.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Java\jre1.6.0_07\bin\jpiexp.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Java\jre1.6.0_07\bin\jpinscp.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Java\jre1.6.0_07\bin\jpishare.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Java\jre1.6.0_07\bin\jsound.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Java\jre1.6.0_07\bin\jsoundds.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Java\jre1.6.0_07\bin\management.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Java\jre1.6.0_07\bin\mlib_image.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Java\jre1.6.0_07\bin\msvcr71.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Java\jre1.6.0_07\bin\net.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Java\jre1.6.0_07\bin\nio.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Java\jre1.6.0_07\bin\npjava11.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Java\jre1.6.0_07\bin\npjava12.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Java\jre1.6.0_07\bin\npjava13.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Java\jre1.6.0_07\bin\npjava14.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Java\jre1.6.0_07\bin\npoji610.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Java\jre1.6.0_07\bin\npt.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Java\jre1.6.0_07\bin\regutils.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Java\jre1.6.0_07\bin\rmi.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Java\jre1.6.0_07\bin\splashscreen.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Java\jre1.6.0_07\bin\sunmscapi.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Java\jre1.6.0_07\bin\unpack.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Java\jre1.6.0_07\bin\unpack200.exe (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Java\jre1.6.0_07\bin\verify.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Java\jre1.6.0_07\bin\wsdetect.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Java\jre1.6.0_07\bin\zip.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Java\jre1.6.0_07\bin\client\jvm.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\AAS_Mgr.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\Accessary_GSM.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\AddLibrary.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\AddLibrary3G.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\base.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\BTADPT_BlueSoleil.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\BTADPT_BTW.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\BTADPT_Toshiba.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\BTADPT_XPSP2.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\CDBurnMgr.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\CommMgr.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\Common.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\Comm_IF.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\computil.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\Contents_3G.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\cximagecrtu.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\DataManagerU.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\DBConnector.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\DBConnector3G.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\DbManagerExUs.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\DB_IF.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\DeviceManagerExU.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\ExternOutlookConnector.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\ExternOutlookExConnector.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\FindProcess.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\gdiplus.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\GraceNoteMgr.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\LGPhoneConnector_KC910.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\LGPhoneConnector_KU580.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\LGPhoneConnector_TU575.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\LibBAP.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\libLGBTCon.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\libOBEX.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\libSerialPort.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\LogWriterExDll.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\M5_EmuHw.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\M5_EmuSmw5.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\Message_3G.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\Movie_GSM.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\MsgTool.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\msvcp71d.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\msvcr71.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\msvcr71d.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\MTP.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\MultiLangDllEx.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\MultiLangDllExU.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\Music_3GSM.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\ObexUART_ExDLL_V6.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\Outlook.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\PhotoEditor.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\PlayController.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\PNGLIB.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\PODParser.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\RegRunningMode.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\rt_audio_f.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\rt_parser_std.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\rt_player_4.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\rt_synth_4.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\Schedule_GSM.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\SMS_GSM.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\tmp_video.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\TNFrameEx.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\tnwac.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\ToolkitPro1112vc60U.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\TranferDLL.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\Transfer_Layer.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\dll\tmp.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\dll\tmp_image.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\dll\tmp_video.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\dll\tmp_volume.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\GN_DLL\CddbCdda.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\NoniaPlayer\tnad_wma.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\NoniaPlayer\tnid.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\NoniaPlayer\tnunite.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\NoniaPlayer\tnvis.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LG PC Suite II\NoniaPlayer\tnwac.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LimeWire\lib\jacob-1.15-M1-lw-x86.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LimeWire\lib\jdic.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LimeWire\lib\jdshow.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LimeWire\lib\SystemUtilities.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\LimeWire\lib\SystemUtilitiesA.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Microsoft Office\OFFICE11\BIDI32.DLL (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Microsoft Office\Office12\ADDINS\MSVCR71.DLL (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Microsoft SQL Server Compact Edition\v3.1\sqlcecompact30.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Microsoft SQL Server Compact Edition\v3.1\sqlcese30.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Opera\opera.exe (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Opera\program\plugins\npqtplugin.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Opera\program\plugins\npqtplugin2.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Opera\program\plugins\npqtplugin3.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Opera\program\plugins\npqtplugin4.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Opera\program\plugins\npqtplugin5.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Opera\program\plugins\npqtplugin6.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Opera\program\plugins\npqtplugin7.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\PowerISO\PWRISOSH.DLL (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\QuickTime\PictureViewer.exe (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\QuickTime\QTTask.exe (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\QuickTime\PictureViewer.Resources\PictureViewer.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\QuickTime\PictureViewer.Resources\en.lproj\PictureViewerLocalized.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\QuickTime\Plugins\npqtplugin.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\QuickTime\Plugins\npqtplugin2.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\QuickTime\Plugins\npqtplugin3.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\QuickTime\Plugins\npqtplugin4.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\QuickTime\Plugins\npqtplugin5.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\QuickTime\Plugins\npqtplugin6.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\QuickTime\Plugins\npqtplugin7.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\QuickTime\QTSystem\QTCF.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\QuickTime\QTSystem\QTMLClient.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\QuickTime\QTSystem\QuickTimeUpdateHelper.exe (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\QuickTime\QTSystem\QTJNative.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\QuickTime\QTSystem\QuickTimeStreaming.Resources\en.lproj\QuickTimeStreamingLocalized.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\QuickTime\QTSystem\QuickTimeWebHelper.Resources\QuickTimeWebHelper.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\QuickTime\QTSystem\QuickTimeWebHelper.Resources\en.lproj\QuickTimeWebHelperLocalized.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\QuickTime\QTSystem\QuickTime.Resources\QuickTime.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\QuickTime\QTSystem\QuickTime.Resources\en.lproj\QuickTimeLocalized.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\QuickTime\QTSystem\QuickTimeAudioSupport.Resources\en.lproj\QuickTimeAudioSupportLocalized.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\QuickTime\QTSystem\QuickTimeAuthoring.Resources\en.lproj\QuickTimeAuthoringLocalized.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Research In Motion\BlackBerry Media Sync\BBLogging.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\RocketDock\RocketDock.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\RocketDock\Docklets\RocketClock\RocketClock.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Roxio\Lfpng13n.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Roxio\lttw213n.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Roxio\msvcr70.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\SecondLife\nssckbi.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\SecondLife\freebl3.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\SecondLife\gksvggdiplus.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\SecondLife\js3250.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\SecondLife\libeay32.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\SecondLife\llkdu.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\SecondLife\msvcp71.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\SecondLife\msvcr71.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\SecondLife\nspr4.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\SecondLife\nss3.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\SecondLife\openjpeg.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\SecondLife\plds4.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\SecondLife\smime3.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\SecondLife\softokn3.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\SecondLife\ssl3.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\SecondLife\ssleay32.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\SecondLife\xpcom.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\SecondLife\xul.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\SecondLife\app_settings\mozilla\components\auth.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\SecondLife\app_settings\mozilla\components\autoconfig.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\SecondLife\app_settings\mozilla\components\pipboot.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\SecondLife\app_settings\mozilla\components\pipnss.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\SecondLife\app_settings\mozilla\components\pippki.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\SecondLife\app_settings\mozilla\components\transformiix.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\SecondLife\app_settings\mozilla\components\universalchardet.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\SecondLife\app_settings\mozilla\components\websrvcs.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\SecondLife\app_settings\mozilla\components\xmlextras.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\SecondLife\app_settings\mozilla\components\xulutil.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\SecondLife\app_settings\mozilla\plugins\npnul32.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\SopCast\SopCast.exe (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\SopCast\StreamServer\msvcr71.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\SpeedTouch\Dr SpeedTouch\drstdc.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\SpeedTouch\Dr SpeedTouch\drstdchost.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\SpeedTouch\Dr SpeedTouch\drstdcstETH.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\SpeedTouch\Dr SpeedTouch\drstdcstUSB.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\SpeedTouch\Dr SpeedTouch\drstdiag.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\SpeedTouch\Dr SpeedTouch\drstguimanager.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\SpeedTouch\Dr SpeedTouch\drsthelp.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\SpeedTouch\Dr SpeedTouch\drststatex.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\SpeedTouch\Dr SpeedTouch\drstsystray.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\SpeedTouch\Dr SpeedTouch\php4ts.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Tiscali\Tiscali Internet\dlls\dialer.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Tiscali\Tiscali Internet\dlls\SatelliteDialer.de-DE.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Tiscali\Tiscali Internet\dlls\SatelliteDialer.en-GB.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Tiscali\Tiscali Internet\dlls\SatelliteDialer.it-IT.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Tiscali\Tiscali Internet\dlls\SatelliteDialer.nl-NL.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Tiscali\Tiscali Internet\dlls\tiscalifilter.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Tiscali\Tiscali Internet\dlls\update.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\VSO\ConvertX\4\QTMLClient.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Vuze\msvcr71.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Intel\Intel Matrix Storage Manager\Iaamon_ENU.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Intel\Intel Matrix Storage Manager\MigrStatus_ENU.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Intel\Intel Matrix Storage Manager\Pi_imsm.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Intel\Intel Matrix Storage Manager\RAIDWizC.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Intel\Intel Matrix Storage Manager\PlugInRAID_ENU.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Intel\Intel Matrix Storage Manager\PlugInSATA_ENU.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Intel\Intel Matrix Storage Manager\RAIDWizCFE.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Intel\Intel Matrix Storage Manager\RAIDWizCFE_ENU.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Intel\Intel Matrix Storage Manager\RaidWizCnG.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Intel\Intel Matrix Storage Manager\RAIDWizCnG_ENU.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Intel\Intel Matrix Storage Manager\RAIDWizC_ENU.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Intel\Intel Matrix Storage Manager\RAIDWizD.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Intel\Intel Matrix Storage Manager\RAIDWizD_ENU.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Intel\Intel Matrix Storage Manager\RAIDWizM.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Intel\Intel Matrix Storage Manager\RAIDWizM_ENU.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Intel\Intel Matrix Storage Manager\RAIDWizR.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Intel\Intel Matrix Storage Manager\RAIDWizR_ENU.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Intel\Intel Matrix Storage Manager\Shell_ENU.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Online Services\Internet From BT\X86\IsConnected.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Online Services\Internet From BT\X86\YSaveUser.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Microsoft Works\msvcr71.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Mozilla Firefox\freebl3.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Mozilla Firefox\softokn3.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Mozilla Firefox\plugins\libdivx.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Mozilla Firefox\plugins\npqtplugin.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Mozilla Firefox\plugins\npqtplugin2.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Mozilla Firefox\plugins\npqtplugin3.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Mozilla Firefox\plugins\npqtplugin4.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Mozilla Firefox\plugins\npqtplugin5.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Mozilla Firefox\plugins\npqtplugin6.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Mozilla Firefox\plugins\npqtplugin7.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Mozilla Firefox\plugins\ssldivx.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\NCH Software\Debut\screencapture.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell\BAE\BAE.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell\Dell Wireless WLAN Card\Driver\bcmihvsrv.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell\Dell Wireless WLAN Card\Driver\bcmihvui.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell\MediaDirect\atl71.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell\MediaDirect\fwnet.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell\MediaDirect\msvcp71.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell\MediaDirect\msvcr71.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell\MediaDirect\Kernel\Movie\clds.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell\MediaDirect\Kernel\Movie\CLVistaAudioMixer.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell\MediaDirect\Kernel\Movie\WebUpdate.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell\MediaDirect\Kernel\music\CLMediaLibrary.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell\MediaDirect\Kernel\music\CLMediaPlayer.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell\MediaDirect\Kernel\photo\autofix.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell\MediaDirect\Kernel\photo\EffectLibrary.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell\MediaDirect\Kernel\photo\HIGHGUI.DLL (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell\MediaDirect\Kernel\photo\Lfpng13n.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell\MediaDirect\Kernel\photo\TrEffectLib.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell\MediaDirect\Kernel\Video\CLEvr.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell\MediaDirect\Kernel\Video\CLMedia.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell\MediaDirect\Kernel\Video\CLVistaAudioMixer.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell\MediaDirect\Koan\_allocator.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell\MediaDirect\Koan\python24.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell\MediaDirect\Koan\_font.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell\MediaDirect\Koan\_rdgdiplus.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell\MediaDirect\mm\EvoParser.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell\MediaDirect\mm\_AudioMixer.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell\MediaDirect\mm\_BigBang.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell\MediaDirect\mm\_CLDKAWrap.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell\MediaDirect\mm\_Effect.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell\MediaDirect\mm\_HWCommunicator.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell\MediaDirect\mm\_ImageEditor.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell\MediaDirect\mm\_Ripper.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell\MediaDirect\mm\_SWCommunicator.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell\MediaDirect\mm\_UserCap.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell\MediaDirect\mm\_WMLibrary.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell\MediaDirect\mm\_WMPlayer.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Support Center\bin\libeay32.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Support Center\bin\ssleay32.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Support Center\HWDiag\bin\Ata.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Support Center\HWDiag\bin\CommandLine.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Support Center\HWDiag\bin\libModuleCommon.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Support Center\HWDiag\bin\libNetwork.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Support Center\HWDiag\bin\Matrix.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Support Center\HWDiag\bin\DataStore.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Support Center\HWDiag\bin\Engine.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Support Center\HWDiag\bin\Enumerator.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Support Center\HWDiag\bin\Http.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Support Center\HWDiag\bin\Nfca.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Support Center\HWDiag\bin\NFCommon.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Support Center\HWDiag\bin\OSWindows.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Support Center\HWDiag\bin\Scsi2.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Support Center\HWDiag\bin\Sisapi.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Support Center\HWDiag\bin\Smart.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Support Center\HWDiag\bin\SmartLog.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Support Center\HWDiag\bin\Smbios2.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Support Center\HWDiag\bin\Sysinfo.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Support Center\HWDiag\bin\SysSpace.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Support Center\HWDiag\bin\Regex.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Support Center\HWDiag\bin\Pci2.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Support Center\HWDiag\bin\Policy.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Support Center\HWDiag\bin\Quip.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Support Center\HWDiag\bin\pcdrmodemui.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Support Center\HWDiag\bin\Pcd5Services.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Dell Webcam Central\CTAudEp.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Dell Webcam Central\CTAvatar.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Dell Webcam Central\CTCabu.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Dell Webcam Central\CTCaptureDe.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Dell Webcam Central\CTCtrVdu.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Dell Webcam Central\CTDOMemHelper.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Dell Webcam Central\CTExtendModule.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Dell Webcam Central\CTFramePlayerObjectU.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Dell Webcam Central\CTIVBasicU.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Dell Webcam Central\CTLiveEffects.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Dell Webcam Central\CTPanT.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Dell Webcam Central\CtPinMgr.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Dell Webcam Central\CtPinReg.exe (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Dell Webcam Central\CTPlayerObjectU.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Dell Webcam Central\CTPreview.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Dell Webcam Central\CTPrintU.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Dell Webcam Central\CTPVViewEngU.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Dell Webcam Central\CTSUSDKu.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Dell Webcam Central\CTTDViewU.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Dell Webcam Central\CTVidFX.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Dell Webcam Central\CTVidManU.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Dell Webcam Central\CTView.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Dell Webcam Central\CTWebUpload.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Dell Webcam Central\FTrack.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Dell Webcam Central\FXFilters.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Dell Webcam Central\FXLayers.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Dell Webcam Central\FXPens.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Dell Webcam Central\HookWndU.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Dell Webcam Central\IMagickRT.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Dell Webcam Central\CtAudIfc.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Dell Webcam Central\CTLiveSettings.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Dell Webcam Central\msvcp71.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Dell Webcam Central\msvcr71.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Dell Webcam Central\MxLibu.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Dell Webcam Central\RLFileManagerU.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Dell Webcam Central\RLResource.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Dell Webcam Central\RLSyncRTPlug.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Dell Webcam Central\ShareEmailU.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Live! Cam Avatar Creator\CT Program\4PointsFitting.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Live! Cam Avatar Creator\CT Program\AVIExporter.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Live! Cam Avatar Creator\CT Program\ByUpdate.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Live! Cam Avatar Creator\CT Program\ContentClass.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Live! Cam Avatar Creator\CT Program\crazytalk4res.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Live! Cam Avatar Creator\CT Program\CTFramePlayerObject.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Live! Cam Avatar Creator\CT Program\CTIResource.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Live! Cam Avatar Creator\CT Program\CTTimeline.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Live! Cam Avatar Creator\CT Program\CTTTSEditor.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Live! Cam Avatar Creator\CT Program\CTTTSEditor4.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Live! Cam Avatar Creator\CT Program\CTTTSEditor5.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Live! Cam Avatar Creator\CT Program\gifopt.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Live! Cam Avatar Creator\CT Program\HelixExporter.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Live! Cam Avatar Creator\CT Program\IMagickRT.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Live! Cam Avatar Creator\CT Program\MPEG4Exporter.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Live! Cam Avatar Creator\CT Program\OpenDMLAviExporterRes.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Live! Cam Avatar Creator\CT Program\RLContentClass.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Live! Cam Avatar Creator\CT Program\RLContentLayout.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Live! Cam Avatar Creator\CT Program\RLFileManager.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Live! Cam Avatar Creator\CT Program\RLImagePreProcess.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Live! Cam Avatar Creator\CT Program\RLImagePreProcessRes.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Live! Cam Avatar Creator\CT Program\RLMediaExporter.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Live! Cam Avatar Creator\CT Program\RLPlayBarCtrl.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Live! Cam Avatar Creator\CT Program\RLResource.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Live! Cam Avatar Creator\CT Program\rlvideodecompressor.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Live! Cam Avatar Creator\CT Program\RLWaveRecordDialog.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Live! Cam Avatar Creator\CT Program\RLWaveRecorderRes.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Live! Cam Avatar Creator\CT Program\WMVExporter.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Live! Cam Avatar Creator\CT Program\FramePlayer\FrameLaunchRes.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Live! Cam Avatar Creator\CT Program\FramePlayer\preinsres_cht.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Live! Cam Avatar Creator\CT Program\frameplayersa\CTFramePlayerObject.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Live! Cam Avatar Creator\CT Program\frameplayersa\imagickrt.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Live! Cam Avatar Creator\CT Program\frameplayersa\rlcontentclass.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Live! Cam Avatar Creator\CT Program\HelixBin\common\encn3260.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Live! Cam Avatar Creator\CT Program\HelixBin\common\remb3260.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Live! Cam Avatar Creator\CT Program\HelixBin\plugins\auth3260.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Live! Cam Avatar Creator\CT Program\HelixBin\plugins\basc3260.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Live! Cam Avatar Creator\CT Program\HelixBin\plugins\rn5a3260.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Live! Cam Avatar Creator\CT Program\HelixBin\plugins\sdpp3260.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Live! Cam Avatar Creator\CT Program\HelixBin\tools\enlv3260.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Live! Cam Avatar Creator\CT Program\HelixBin\tools\rbsbroadcast.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Live! Cam Avatar Creator\CT Program\HelixBin\tools\rmme3260.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Dell Webcam\Live! Cam Avatar Creator\CT Program\HelixBin\tools\rmto3260.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\DellTPad\ApMouCpl.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\DellTPad\Apoint.exe (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\DivX\DivX Web Player\libdivx.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\DivX\DivX Web Player\ssldivx.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Electronic Arts\SPORE\Sporebin\msvcr71.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\FOX Video Converter\fox.video.converter.7.9.0.5-patch.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Google\Google Desktop Search\GoogleDesktopHyper.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Google\Google Desktop Search\GoogleDesktopIE.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Google\Google Desktop Search\GoogleDesktopMail.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Google\Google Desktop Search\GoogleDesktopNetwork3.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Google\Google Desktop Search\GoogleDesktopSSD.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Google\Google Desktop Search\GoogleServices.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Google\Google Desktop Search\GoogleUIEngine.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Google\Google Earth\client\libexpatw.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Google\Google Earth\plugin\boost_thread-vc80-mt-1_33_1.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Google\Google Earth\plugin\libexpatw.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Google\Google Updater\2.4.1487.6512\ci.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Google\Google Updater\2.4.1487.6512\npCIDetect13.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\IDT\WDM\AESTCom.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\IDT\WDM\AEstEcap.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\IDT\WDM\stlang.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Image-Line\Downloader\FLDownload.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Image-Line\FL Studio 9\ds2wav.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Image-Line\FL Studio 9\dsp_ipp.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Image-Line\FL Studio 9\oggio.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Image-Line\FL Studio 9\Reverb.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Image-Line\FL Studio 9\REX Shared Library.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Image-Line\FL Studio 9\Speaker.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Image-Line\FL Studio 9\wavpackdll.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Image-Line\FL Studio 9\ZeroX_AS.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Image-Line\FL Studio 9\Plugins\Fruity\Effects\Buzz Effect Adapter\Buzz Effect Adapter.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Image-Line\FL Studio 9\Plugins\Fruity\Effects\Buzz Effect Adapter\FSM PhatMan.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Image-Line\FL Studio 9\Plugins\Fruity\Effects\Buzz Effect Adapter\FSM WahPro2.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Image-Line\FL Studio 9\Plugins\Fruity\Effects\Buzz Effect Adapter\Rymix StereoBox Pro.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Image-Line\FL Studio 9\Plugins\Fruity\Effects\Buzz Effect Adapter\Zephod Blue Filter.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Image-Line\FL Studio 9\Plugins\Fruity\Effects\Buzz Effect Adapter\Zephod Green Filter.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Image-Line\FL Studio 9\Plugins\Fruity\Effects\Buzz Effect Adapter\Zephod ITCH!.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Image-Line\FL Studio 9\Plugins\Fruity\Effects\Buzz Effect Adapter\Zephod Orange Filter.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Image-Line\FL Studio 9\Plugins\Fruity\Effects\Buzz Effect Adapter\Zephod Yellow Filter.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Image-Line\FL Studio 9\Plugins\Fruity\Effects\Buzz Effect Adapter\FSM PanzerDelay.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Image-Line\FL Studio 9\Plugins\Fruity\Effects\Fruity Multiband Compressor\Comp_Eng.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Image-Line\FL Studio 9\Plugins\Fruity\Effects\Fruity Scratcher\Fruity Scratcher.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Image-Line\FL Studio 9\Plugins\Fruity\Effects\SynthMaker\SynthMaker.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Image-Line\FL Studio 9\Plugins\Fruity\Generators\BooBass\BooBass_Eng.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Image-Line\FL Studio 9\Plugins\Fruity\Generators\Buzz Generator Adapter\Buzz Generator Adapter.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Image-Line\FL Studio 9\Plugins\Fruity\Generators\Buzz Generator Adapter\FSM Infector.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Image-Line\FL Studio 9\Plugins\Fruity\Generators\Buzz Generator Adapter\Muon Synth.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Image-Line\FL Studio 9\Plugins\Fruity\Generators\Buzz Generator Adapter\Zephod MX7.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Image-Line\FL Studio 9\Plugins\Fruity\Generators\Buzz Generator Adapter\Zephod VoidBass II.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Image-Line\FL Studio 9\Plugins\Fruity\Generators\Buzz Generator Adapter\Zephod VoidSynth II.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Image-Line\FL Studio 9\Plugins\Fruity\Generators\DirectWave\DirectWave.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Image-Line\FL Studio 9\Plugins\Fruity\Generators\DirectWave\REX Shared Library.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Image-Line\FL Studio 9\Plugins\Fruity\Generators\FL Slayer\Slayer_Engine.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Image-Line\FL Studio 9\Plugins\Fruity\Generators\Fruity DrumSynth Live\DrumSynth_Eng.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Image-Line\FL Studio 9\Plugins\Fruity\Generators\SimSynth\SimSynth_Eng.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Image-Line\FL Studio 9\Plugins\Fruity\Generators\SynthMaker\SynthMaker.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Image-Line\FL Studio 9\Plugins\Fruity\Generators\Wasp\Wasp_Eng.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Image-Line\FL Studio 9\Plugins\Fruity\Generators\Wasp XT\Wasp_eng.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Image-Line\FL Studio 9\Plugins\Fruity\Generators\Wave Traveller\Wave Traveller.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Image-Line\FL Studio 9\Plugins\VST\Fruity Blood Overdrive.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Image-Line\FL Studio 9\Plugins\VST\Fruity Compressor.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Image-Line\FL Studio 9\Plugins\VST\Fruity Flanger.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Image-Line\FL Studio 9\Plugins\VST\Fruity Phaser.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Image-Line\FL Studio 9\Plugins\VST\Fruity Reeverb.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\Image-Line\FL Studio 9\System\Plugin\ReWire\ReWire.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\InstallShield Installation Information\{88564CEF-20A5-4EF2-A05F-309F2EBA9B06}\CTCABEX.DLL (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Program Files\InstallShield Installation Information\{BC12448A-0B41-4E11-B242-B1129512F5B7}\CTCABEX.DLL (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Users\Kieran'Mayte\AppData\Local\Temp\OpenCandy\OCSetupHlp.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Users\Kieran'Mayte\AppData\Roaming\IMVUClient\audiere.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Users\Kieran'Mayte\AppData\Roaming\IMVUClient\boost_python.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Users\Kieran'Mayte\AppData\Roaming\IMVUClient\cal3d.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Users\Kieran'Mayte\AppData\Roaming\IMVUClient\CallStack.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Users\Kieran'Mayte\AppData\Roaming\IMVUClient\MemoryHook.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Users\Kieran'Mayte\AppData\Roaming\IMVUClient\mozctl.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Users\Kieran'Mayte\AppData\Roaming\IMVUClient\mozctlx.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Users\Kieran'Mayte\AppData\Roaming\IMVUClient\nspr4.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Users\Kieran'Mayte\AppData\Roaming\IMVUClient\nss3.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Users\Kieran'Mayte\AppData\Roaming\IMVUClient\nssckbi.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Users\Kieran'Mayte\AppData\Roaming\IMVUClient\nssdbm3.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Users\Kieran'Mayte\AppData\Roaming\IMVUClient\nssutil3.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Users\Kieran'Mayte\AppData\Roaming\IMVUClient\plc4.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Users\Kieran'Mayte\AppData\Roaming\IMVUClient\freebl3.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Users\Kieran'Mayte\AppData\Roaming\IMVUClient\js3250.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Users\Kieran'Mayte\AppData\Roaming\IMVUClient\python26.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Users\Kieran'Mayte\AppData\Roaming\IMVUClient\pythoncom26.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Users\Kieran'Mayte\AppData\Roaming\IMVUClient\pywintypes26.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Users\Kieran'Mayte\AppData\Roaming\IMVUClient\smime3.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Users\Kieran'Mayte\AppData\Roaming\IMVUClient\softokn3.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Users\Kieran'Mayte\AppData\Roaming\IMVUClient\ssleay32.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Users\Kieran'Mayte\AppData\Roaming\IMVUClient\xpcom.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Users\Kieran'Mayte\AppData\Roaming\IMVUClient\xul.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Users\Kieran'Mayte\AppData\Roaming\IMVUClient\plds4.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Users\Kieran'Mayte\AppData\Roaming\IMVUClient\ui\plugins\nphwndproxy.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Users\Kieran'Mayte\AppData\Roaming\IMVUClient\ui\plugins\npvivoxproxy.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Users\Kieran'Mayte\AppData\Roaming\LimeWire\browser\xulrunner\freebl3.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Users\Kieran'Mayte\AppData\Roaming\LimeWire\browser\xulrunner\javaxpcomglue.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Users\Kieran'Mayte\AppData\Roaming\LimeWire\browser\xulrunner\js3250.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Users\Kieran'Mayte\AppData\Roaming\LimeWire\browser\xulrunner\mozctl.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Users\Kieran'Mayte\AppData\Roaming\LimeWire\browser\xulrunner\mozctlx.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Users\Kieran'Mayte\AppData\Roaming\LimeWire\browser\xulrunner\MSVCP71.DLL (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Users\Kieran'Mayte\AppData\Roaming\LimeWire\browser\xulrunner\msvcr71.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Users\Kieran'Mayte\AppData\Roaming\LimeWire\browser\xulrunner\nspr4.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Users\Kieran'Mayte\AppData\Roaming\LimeWire\browser\xulrunner\nss3.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Users\Kieran'Mayte\AppData\Roaming\LimeWire\browser\xulrunner\nssckbi.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Users\Kieran'Mayte\AppData\Roaming\LimeWire\browser\xulrunner\nssdbm3.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Users\Kieran'Mayte\AppData\Roaming\LimeWire\browser\xulrunner\nssutil3.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Users\Kieran'Mayte\AppData\Roaming\LimeWire\browser\xulrunner\plc4.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Users\Kieran'Mayte\AppData\Roaming\LimeWire\browser\xulrunner\plds4.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Users\Kieran'Mayte\AppData\Roaming\LimeWire\browser\xulrunner\smime3.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Users\Kieran'Mayte\AppData\Roaming\LimeWire\browser\xulrunner\softokn3.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Users\Kieran'Mayte\AppData\Roaming\LimeWire\browser\xulrunner\sqlite3.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Users\Kieran'Mayte\AppData\Roaming\LimeWire\browser\xulrunner\ssl3.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Users\Kieran'Mayte\AppData\Roaming\LimeWire\browser\xulrunner\xpcom.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Users\Kieran'Mayte\AppData\Roaming\LimeWire\browser\xulrunner\components\autoconfig.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Users\Kieran'Mayte\AppData\Roaming\LimeWire\browser\xulrunner\components\pippki.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Users\Kieran'Mayte\AppData\Roaming\LimeWire\browser\xulrunner\components\pipnss.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Users\Kieran'Mayte\AppData\Roaming\LimeWire\browser\xulrunner\components\transformiix.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Users\Kieran'Mayte\AppData\Roaming\LimeWire\browser\xulrunner\components\universalchardet.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Users\Kieran'Mayte\AppData\Roaming\LimeWire\browser\xulrunner\components\websrvcs.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Users\Kieran'Mayte\AppData\Roaming\LimeWire\browser\xulrunner\components\xmlextras.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Users\Kieran'Mayte\AppData\Roaming\LimeWire\browser\xulrunner\components\xulutil.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Users\Kieran'Mayte\AppData\Roaming\LimeWire\browser\xulrunner\plugins\npnul32.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\CtDrvInstall\{6f613030-32766964-0000000000000000}\OA002Cfg.exe (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\CtDrvInstall\{6f613030-32766964-0000000000000000}\OA002Pin.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\CtDrvInstall\{6f613030-32766964-0000000000000000}\OA002Srv.exe (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\Downloaded Program Files\isetup.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\System32\propsys.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\System32\srchadmin.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\System32\AESTCom.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\System32\aestecap.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\System32\atl71.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\System32\bcmttls.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\System32\dnssd.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\System32\hccutils.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\System32\ig4dev32.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\System32\ig4icd32.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\System32\igdumd32.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\System32\msshsq.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\System32\mssvp.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\System32\mstime.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\System32\msvcp70.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\System32\msvcp71.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\System32\msvcr70.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\System32\msvcr71.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\System32\OA001Pin.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\System32\OA002Aor.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\System32\oemdspif.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\System32\printfilterpipelineprxy.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\System32\rewire.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\System32\snymsico.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\System32\stlang.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\System32\urlmon.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\System32\vp7vfw.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\System32\WindowsCodecs.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\System32\wltrynt.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\System32\igfxCoIn_v1437.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\System32\igfxdev.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\System32\igfxdo.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\System32\igfxpph.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\System32\igfxress.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\System32\igfxTMM.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\System32\DriverStore\FileRepository\apfiltr.inf_729f63f2\ApMouCpl.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\System32\DriverStore\FileRepository\apfiltr.inf_729f63f2\Apoint.exe (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\System32\DriverStore\FileRepository\bcmwl6.inf_4eaf62ce\bcmihvsrv.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\System32\DriverStore\FileRepository\bcmwl6.inf_4eaf62ce\bcmihvui.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\System32\DriverStore\FileRepository\oa001vid.inf_c17e419e\OA001Pin.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\System32\DriverStore\FileRepository\oa002vid.inf_af94941b\OA002Cfg.exe (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\System32\DriverStore\FileRepository\oa002vid.inf_af94941b\OA002Pin.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\System32\DriverStore\FileRepository\oa002vid.inf_af94941b\OA002Srv.exe (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\System32\DriverStore\FileRepository\rimsptsk.inf_8826e972\snymsico.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\System32\DriverStore\FileRepository\stwrt.inf_2ba5baa4\AESTCom.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\System32\DriverStore\FileRepository\stwrt.inf_2ba5baa4\AEstEcap.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\System32\DriverStore\FileRepository\stwrt.inf_2ba5baa4\stlang.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\System32\DriverStore\FileRepository\igdlh.inf_982f122f\hccutils.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\System32\DriverStore\FileRepository\igdlh.inf_982f122f\ig4dev32.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\System32\DriverStore\FileRepository\igdlh.inf_982f122f\ig4icd32.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\System32\DriverStore\FileRepository\igdlh.inf_982f122f\igdumd32.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\System32\DriverStore\FileRepository\igdlh.inf_982f122f\igfxdev.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\System32\DriverStore\FileRepository\igdlh.inf_982f122f\igfxdo.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\System32\DriverStore\FileRepository\igdlh.inf_982f122f\igfxpph.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\System32\DriverStore\FileRepository\igdlh.inf_982f122f\igfxress.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\System32\DriverStore\FileRepository\igdlh.inf_982f122f\igfxTMM.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\System32\DriverStore\FileRepository\igdlh.inf_982f122f\igxpco32.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\System32\DriverStore\FileRepository\igdlh.inf_982f122f\oemdspif.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\InstallTemp\20090417235850586.0\ATL80.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_desktop_shell-search-srchadmin_31bf3856ad364e35_7.0.6001.16503_none_13fcab3737a334c2\srchadmin.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft-windows-c..complus-eventsystem_31bf3856ad364e35_6.0.6000.20818_none_0b8e318c6db592d2\es.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft-windows-c..complus-eventsystem_31bf3856ad364e35_6.0.6001.22162_none_0d385cf46b0a1a47\es.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft-windows-ehome-devices-ehreplay_31bf3856ad364e35_6.0.6000.20821_none_13463890bbb92b06\ehReplay.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft-windows-ehome-devices-ehreplay_31bf3856ad364e35_6.0.6001.22165_none_150536c8b8fc93f0\ehReplay.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft-windows-ehome-ehglid_31bf3856ad364e35_6.0.6000.20821_none_2dca9af686286baf\ehglid.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft-windows-ehome-ehglid_31bf3856ad364e35_6.0.6001.22165_none_2f89992e836bd499\ehglid.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft-windows-ehome-ehpresenter_31bf3856ad364e35_6.0.6000.20821_none_255758157e0081a3\ehPresenter.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft-windows-ehome-ehpresenter_31bf3856ad364e35_6.0.6001.22165_none_2716564d7b43ea8d\ehPresenter.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft-windows-gameexplorer_31bf3856ad364e35_6.0.6000.20788_none_40553023dd6dba94\gameux.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft-windows-gameexplorer_31bf3856ad364e35_6.0.6000.20949_none_408173e9dd4c5e75\gameux.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6000.16830_none_b2dc6d3dd9bba883\urlmon.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6000.20777_none_b341c892f2f36f24\urlmon.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6000.20823_none_b373d8ecf2ce7b3a\urlmon.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6000.20868_none_b34d9aaef2ea69b1\urlmon.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft-windows-i..mlrenderingadvanced_31bf3856ad364e35_6.0.6000.16830_none_debefc067f6467f2\mstime.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft-windows-i..mlrenderingadvanced_31bf3856ad364e35_6.0.6000.20777_none_df24575b989c2e93\mstime.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft-windows-i..mlrenderingadvanced_31bf3856ad364e35_6.0.6000.20823_none_df5667b598773aa9\mstime.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft-windows-i..mlrenderingadvanced_31bf3856ad364e35_6.0.6000.20868_none_df30297798932920\mstime.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft-windows-i..mlrenderingadvanced_31bf3856ad364e35_6.0.6000.20937_none_df4f9ad7987bb91d\mstime.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft-windows-i..mlrenderingadvanced_31bf3856ad364e35_6.0.6000.20996_none_df0dbb0598ad476c\mstime.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft-windows-i..mlrenderingadvanced_31bf3856ad364e35_6.0.6000.21023_none_df5641bd98776b12\mstime.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft-windows-i..mlrenderingadvanced_31bf3856ad364e35_6.0.6001.22212_none_e14675fd95969652\mstime.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft-windows-m..nts-mdac-rds-ce-dll_31bf3856ad364e35_6.0.6000.20825_none_6083b6385dc1f24b\msadce.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft-windows-m..nts-mdac-rds-ce-dll_31bf3856ad364e35_6.0.6001.22169_none_6242b4705b055b35\msadce.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft-windows-mediafoundation_31bf3856ad364e35_6.0.6000.20864_none_9ac5b0e728e5c385\mfps.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft-windows-n..n_service_datastore_31bf3856ad364e35_6.0.6000.16830_none_cf27e60e38f17483\iasdatastore.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft-windows-n..n_service_datastore_31bf3856ad364e35_6.0.6000.21023_none_cfbf2bc5520477a3\iasdatastore.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft-windows-ole-automation_31bf3856ad364e35_6.0.6000.20734_none_bb871a171785fb30\oleaut32.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft-windows-p..oler-filterpipeline_31bf3856ad364e35_6.0.6000.16830_none_29a6eeebde589a97\printfilterpipelineprxy.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft-windows-p..oler-filterpipeline_31bf3856ad364e35_6.0.6000.21023_none_2a3e34a2f76b9db7\printfilterpipelineprxy.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft-windows-p..oler-filterpipeline_31bf3856ad364e35_6.0.6001.18226_none_2b9dff39db71a7a1\printfilterpipelineprxy.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft-windows-p..oler-filterpipeline_31bf3856ad364e35_6.0.6001.22389_none_2be9bd5af4bd3b16\printfilterpipelineprxy.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft-windows-propsys_31bf3856ad364e35_7.0.6001.16503_none_f3d11aeeb9526bbb\propsys.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft-windows-rpc-local_31bf3856ad364e35_6.0.6001.22156_none_b4542e025e5512e8\rpcrt4.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft-windows-scripting_31bf3856ad364e35_6.0.6001.22175_none_48ab41df19abd38f\dispex.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft.vc80.atl_1fc8b3b9a1e18e3b_8.0.50727.42_none_dc990e4797f81af1\ATL80.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft.vc80.atl_1fc8b3b9a1e18e3b_8.0.50727.762_none_11ecb0ab9b2caf3c\ATL80.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.6001.18000_none_8dc69d3f62cbf39a\GdiPlus.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6000.16386_none_9ea0ac9ec96e7127\GdiPlus.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6000.16683_none_9ea0f08ac96e2537\GdiPlus.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6000.20826_none_87cd0392e31b3a67\GdiPlus.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6001.18000_none_9e752e5ac9c619f3\GdiPlus.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6001.18065_none_9e7abe2ec9c13222\GdiPlus.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6001.22170_none_87ae89a0e3672b5a\GdiPlus.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.6000.16386_none_8df21b8362744ace\GdiPlus.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.6000.16683_none_8df25f6f6273fede\GdiPlus.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.6000.20826_none_771e72777c21140e\GdiPlus.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.6001.18065_none_8dcc2d1362c70bc9\GdiPlus.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.6001.22170_none_76fff8857c6d0501\GdiPlus.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_netfx-ado_net_diag_b03f5f7f11d50a3a_6.0.6000.16386_none_6d869912e7931eda\AdoNetDiag.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_windowssearchengine-structuredquery_31bf3856ad364e35_7.0.6001.16503_none_98586419f9103903\msshsq.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_windowssearchengine_31bf3856ad364e35_7.0.6001.16503_none_3b8c27e8ba3dd3dd\mssvp.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6000.20937_none_b36d0c0ef2d2f9ae\urlmon.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6000.20996_none_b32b2c3cf30487fd\urlmon.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6000.21023_none_b373b2f4f2ceaba3\urlmon.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6001.18023_none_b4d078e1d6d76f3a\urlmon.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft-windows-i..mlrenderingadvanced_31bf3856ad364e35_6.0.6001.22389_none_e101ca7595c90871\mstime.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft-windows-i..mlrenderingadvanced_31bf3856ad364e35_6.0.6001.18023_none_e0b307aa7c802ea9\mstime.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft-windows-i..mlrenderingadvanced_31bf3856ad364e35_6.0.6001.18226_none_e0b60c547c7d74fc\mstime.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft-windows-i..mlrenderingadvanced_31bf3856ad364e35_6.0.6001.22120_none_e139a39795a0826e\mstime.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft-windows-i..mlrenderingadvanced_31bf3856ad364e35_6.0.6001.22167_none_e11565ed95baa393\mstime.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft-windows-windowscodec_31bf3856ad364e35_6.0.6000.20867_none_94eb3a03bd3f8302\WindowsCodecs.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft-windows-windowscodec_31bf3856ad364e35_6.0.6001.22211_none_97018689ba42f034\WindowsCodecs.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6001.18226_none_b4d37d8bd6d4b58d\urlmon.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6001.22120_none_b55714ceeff7c2ff\urlmon.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6001.22167_none_b532d724f011e424\urlmon.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6001.22212_none_b563e734efedd6e3\urlmon.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_netfx-clr_sys_entservcs_thunk_dll_b03f5f7f11d50a3a_6.0.6000.16386_none_528b86b0b782b897\System.EnterpriseServices.Thunk.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\winsxs\x86_microsoft.vc80.openmp_1fc8b3b9a1e18e3b_8.0.50727.762_none_7b33aa7d218504d2\vcomp.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\Installer\$PatchCache$\Managed\68AB67CA7DA73301B7449A0100000010\9.1.0\JP2KLib.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\Installer\{73A4F29F-31AC-4EBD-AA1B-0CC5F18C8F83}\RoxioCentral.exe (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\Installer\{ED439A64-F018-4DD4-8BA5-328D85AB09AB}\RoxioCentral.exe (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\Installer\{B6A26DE5-F2B5-4D58-9570-4FC760E00FCD}\RoxioCentral.exe (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\Installer\{08E81ABD-79F7-49C2-881F-FD6CB0975693}\RoxioCentral.exe (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Windows.old\Windows\Installer\{1F54DAFA-9261-4A62-B59D-6C9F26B48FE4}\RoxioCentral.exe (Virus.Ramnit) -> Quarantined and deleted successfully.

(end)

#8 RPMcMurphy

RPMcMurphy

    Bleeping *^#@%~


  • Malware Response Team
  • 3,530 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:09:05 PM

Posted 17 January 2012 - 10:17 PM

The Win32/Ramnit infection that MBAM detected is a file infector with IRCBot functionality which infects files, and opens a back door that compromises your computer. Using this backdoor, a remote attacker can access and instruct the infected computer to download and execute more malicious files. With this particular infection the only sure way to remove it effectively is to reformat and reinstall the OS. This is because the malware injects code in legitimate files similar to the Virut virus and in most cases the infected files (which could number in the thousands) cannot be disinfected properly. When disinfection is attempted, the files often become corrupted and the system may become totally unusable. There is no way to be sure the computer can ever be trusted again without doing a reformat/reinstall . It is dangerous and incorrect to assume the computer is secure even if your anti-virus reports that the malware appears to have been removed.

I'm sorry I don't have better news for you, but reformatting is really your only sensible option.

Threads are closed after 5 days of inactivity.

ASAP & UNITE Member


The help you receive here is free. If you wish to show your appreciation, then you may btn_donate_SM.gif


#9 mikeypaddon

mikeypaddon
  • Topic Starter

  • Members
  • 5 posts
  • OFFLINE
  •  
  • Local time:01:05 AM

Posted 18 January 2012 - 04:09 AM

Okay, thanks for all your help over the last couple of days, it's appreciated, I'll reinstall the OS, regards.

#10 RPMcMurphy

RPMcMurphy

    Bleeping *^#@%~


  • Malware Response Team
  • 3,530 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:09:05 PM

Posted 18 January 2012 - 05:26 PM

You're welcome. I'm sorry we didn't have a better outcome. Take care.

Threads are closed after 5 days of inactivity.

ASAP & UNITE Member


The help you receive here is free. If you wish to show your appreciation, then you may btn_donate_SM.gif


#11 RPMcMurphy

RPMcMurphy

    Bleeping *^#@%~


  • Malware Response Team
  • 3,530 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:09:05 PM

Posted 19 January 2012 - 12:24 PM

It appears that this issue is resolved, therefore I am closing the topic. If that is not the case and you need or wish to continue with this topic, please send me or any Moderator a Personal Message (PM) that you would like this topic re-opened.

Threads are closed after 5 days of inactivity.

ASAP & UNITE Member


The help you receive here is free. If you wish to show your appreciation, then you may btn_donate_SM.gif





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users