Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Hijack log


  • Please log in to reply
17 replies to this topic

#1 rhett

rhett

  • Members
  • 14 posts
  • OFFLINE
  •  
  • Local time:05:26 AM

Posted 18 November 2008 - 08:58 PM

My wifes 18 yr old cousin spent a month with us and now my computer is jacked up. The infections that have been found by spybot include virtumonde, websearch, home search assistant as well as others. Can someone please help me. I am getting popups galore, kicked out of explorer, and when I am playing any online game, I keep getting kicked to the desktop (like something is opening, but never does), then I have to click on the game tab to get back in.


Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\SnVzdGlu\command.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\iaantmon.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Ideazon\ZEngine\Zboard.exe
C:\WINDOWS\system32\qcntssdl.exe
C:\Documents and Settings\Justin\Application Data\Twain\Twain.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Trend Micro\Internet Security\TMAS_OE\TMAS_OEMon.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Documents and Settings\Justin\Application Data\gadcom\gadcom.exe
C:\WINDOWS\system32\dlcdcoms.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\Ilkt0c82.exe
C:\Program Files\Adobe\Acrobat 7.0\Reader\AcroRd32.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
O3 - Toolbar: (no name) - {BA52B914-B692-46c4-B683-905236F6F655} - (no file)
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [Zboard] C:\Program Files\Ideazon\ZEngine\Zboard.exe
O4 - HKLM\..\Run: [UfSeAgnt.exe] "C:\Program Files\Trend Micro\Internet Security\UfSeAgnt.exe"
O4 - HKLM\..\Run: [negizufoyo] Rundll32.exe "C:\WINDOWS\system32\vaketapa.dll",s
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [DLCDCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\DLCDtime.dll,_RunDLLEntry@16
O4 - HKLM\..\Run: [ExploreUpdSched] C:\WINDOWS\system32\qcntssdl.exe DWmmm01
O4 - HKCU\..\Run: [Twain] C:\Documents and Settings\Justin\Application Data\Twain\Twain.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [OE] C:\Program Files\Trend Micro\Internet Security\TMAS_OE\TMAS_OEMon.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [gadcom] "C:\Documents and Settings\Justin\Application Data\gadcom\gadcom.exe" 61A847B5BBF72815308B2B27128065E9C084320161C4661227A755E9C2933154389A
O4 - HKCU\..\Run: [RegistryMechanic] C:\Program Files\Registry Mechanic\RegMech.exe /H
O4 - HKUS\S-1-5-19\..\Run: [negizufoyo] Rundll32.exe "C:\WINDOWS\system32\vaketapa.dll",s (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [OE] C:\Program Files\Trend Micro\Internet Security\TMAS_OE\TMAS_OEMon.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [negizufoyo] Rundll32.exe "C:\WINDOWS\system32\vaketapa.dll",s (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-1838663641-187409221-1526913029-1006\..\Run: [Yahoo! Pager] "C:\PROGRA~1\Yahoo!\MESSEN~1\ypager.exe" -quiet (User 'Crystal')
O4 - HKUS\S-1-5-21-1838663641-187409221-1526913029-500\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe (User 'Administrator')
O4 - HKUS\S-1-5-18\..\Run: [OE] C:\Program Files\Trend Micro\Internet Security\TMAS_OE\TMAS_OEMon.exe (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [FlashPlayerUpdate] C:\WINDOWS\system32\Macromed\Flash\FlashUtil9f.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [OE] C:\Program Files\Trend Micro\Internet Security\TMAS_OE\TMAS_OEMon.exe (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [FlashPlayerUpdate] C:\WINDOWS\system32\Macromed\Flash\FlashUtil9f.exe (User 'Default user')
O16 - DPF: {1663ed61-23eb-11d2-b92f-008048fdd814} (MeadCo ScriptX Advanced) - http://www.stonyfield.com/coupons/scriptX/smsx.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} -
O16 - DPF: {406B5949-7190-4245-91A9-30A17DE16AD0} (Snapfish Activia) - http://photos.walmart.com/WalmartActivia.cab
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} - http://download.divx.com/player/DivXBrowserPlugin.cab
O16 - DPF: {7D4733C0-C43B-4A81-AF43-F9B20D1F8348} - http://www.octoshape.com/test/ax/octoshape.cab
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.5.0) - http://javadl-esd.sun.com/update/1.5.0/jin...indows-i586.cab
O16 - DPF: {9600F64D-755F-11D4-A47F-0001023E6D5A} (Shutterfly Picture Upload Plugin) - http://web1.shutterfly.com/downloads/Uploader.cab
O16 - DPF: {A90A5822-F108-45AD-8482-9BC8B12DD539} (Crucial cpcScan) - http://www.crucial.com/controls/cpcScanner.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - https://fpdownload.macromedia.com/get/shock...ash/swflash.cab
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter hijack: text/html - {fabc2370-757a-4f3a-ae57-25cdc0011a1a} - C:\WINDOWS\system32\mst120.dll
O20 - AppInit_DLLs: C:\WINDOWS\system32\zufayoye.dll c:\windows\system32\hupetetu.dll epdkqk.dll uqikvg.dll efaryy.dll
O21 - SSODL: SSODL - {EC43E3FD-5C60-46a6-97D7-E0B85DBDD6C4} - (no file)
O22 - SharedTaskScheduler: STS - {EC43E3FD-5C60-46a6-97D7-E0B85DBDD6C4} - (no file)
O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe (file missing)
O23 - Service: dlcd_device - Unknown owner - C:\WINDOWS\system32\dlcdcoms.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Intel® Matrix Storage Event Monitor (IAANTMon) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\iaantmon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Roxio UPnP Renderer 9 - Sonic Solutions - C:\Program Files\Roxio\Digital Home 9\RoxioUPnPRenderer9.exe
O23 - Service: Roxio Upnp Server 9 - Sonic Solutions - C:\Program Files\Roxio\Digital Home 9\RoxioUpnpService9.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe

--
End of file - 7936 bytes

BC AdBot (Login to Remove)

 


#2 kahdah

kahdah

  • Security Colleague
  • 11,138 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Florida
  • Local time:07:26 AM

Posted 18 November 2008 - 09:13 PM

Hello rhett

Welcome to BleepingComputer :thumbsup:
========================
  • Download random's system information tool (RSIT) by random/random from here and save it to your desktop.
  • Double click on RSIT.exe to run RSIT.
  • Click Continue at the disclaimer screen.
  • Once it has finished, two logs will open. Please post the contents of both log.txt (<<will be maximized) and info.txt (<<will be minimized)

Please do not pm for help, post it in the forums instead.

If I am helping you and have not responded for 48 hours please send me a pm as I don't always get notifications.

My help is always free, however, if you would like to make a donation to me for the help I have provided please click here Posted Image

#3 rhett

rhett
  • Topic Starter

  • Members
  • 14 posts
  • OFFLINE
  •  
  • Local time:05:26 AM

Posted 18 November 2008 - 10:09 PM

The first time I ran it, there were 2 logs. Then I got booted out of explorer before I could post. Now only one log shows up.



Logfile of random's system information tool 1.04 (written by random/random)
Run by Justin at 2008-11-18 21:08:14
Microsoft Windows XP Professional Service Pack 3
System drive C: has 112 GB (76%) free of 148 GB
Total RAM: 2046 MB (75% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 9:08:19 PM, on 11/18/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16735)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\iaantmon.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\dllhost.exe
C:\Program Files\Ideazon\ZEngine\Zboard.exe
C:\WINDOWS\system32\qcntssdl.exe
C:\Documents and Settings\Justin\Application Data\Twain\Twain.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Trend Micro\Internet Security\TMAS_OE\TMAS_OEMon.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Documents and Settings\Justin\Application Data\gadcom\gadcom.exe
C:\WINDOWS\system32\dlcdcoms.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Justin\Desktop\RSIT.exe
C:\Program Files\Trend Micro\HijackThis\Justin.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
O2 - BHO: (no name) - {173D8134-AB44-4D60-8F15-521FDBF10584} - (no file)
O2 - BHO: (no name) - {3887FDBF-A9A4-423F-B315-7613F587096D} - C:\WINDOWS\system32\avwa.dll (file missing)
O2 - BHO: (no name) - {5C3CC654-AB97-47A5-83E0-AE9E9ABC9279} - C:\WINDOWS\system32\efcBqnop.dll
O2 - BHO: (no name) - {5dddfd1b-954a-4b48-9cd0-0247b54fe1a3} - C:\WINDOWS\system32\mwgcls.dll
O2 - BHO: (no name) - {9ea16949-73fa-45a1-ab70-84891d81bd3e} - C:\WINDOWS\system32\yufetipa.dll
O2 - BHO: (no name) - {A63E645F-13BD-45ED-B15F-6E8C1BD57279} - C:\WINDOWS\system32\jkkJbyvS.dll
O2 - BHO: (no name) - {B02671F0-5ED3-4852-85E1-B978D539C72D} - (no file)
O3 - Toolbar: (no name) - {BA52B914-B692-46c4-B683-905236F6F655} - (no file)
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [Zboard] C:\Program Files\Ideazon\ZEngine\Zboard.exe
O4 - HKLM\..\Run: [UfSeAgnt.exe] "C:\Program Files\Trend Micro\Internet Security\UfSeAgnt.exe"
O4 - HKLM\..\Run: [negizufoyo] Rundll32.exe "C:\WINDOWS\system32\vaketapa.dll",s
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [ExploreUpdSched] C:\WINDOWS\system32\qcntssdl.exe DWmmm01
O4 - HKLM\..\Run: [SigmatelSysTrayApp] stsystra.exe
O4 - HKLM\..\Run: [DLCDCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\DLCDtime.dll,_RunDLLEntry@16
O4 - HKCU\..\Run: [Twain] C:\Documents and Settings\Justin\Application Data\Twain\Twain.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [OE] C:\Program Files\Trend Micro\Internet Security\TMAS_OE\TMAS_OEMon.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [gadcom] "C:\Documents and Settings\Justin\Application Data\gadcom\gadcom.exe" 61A847B5BBF72815308B2B27128065E9C084320161C4661227A755E9C2933154389A
O4 - HKCU\..\Run: [RegistryMechanic] C:\Program Files\Registry Mechanic\RegMech.exe /H
O4 - HKUS\S-1-5-19\..\Run: [negizufoyo] Rundll32.exe "C:\WINDOWS\system32\vaketapa.dll",s (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [OE] C:\Program Files\Trend Micro\Internet Security\TMAS_OE\TMAS_OEMon.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [negizufoyo] Rundll32.exe "C:\WINDOWS\system32\vaketapa.dll",s (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-1838663641-187409221-1526913029-1006\..\Run: [Yahoo! Pager] "C:\PROGRA~1\Yahoo!\MESSEN~1\ypager.exe" -quiet (User 'Crystal')
O4 - HKUS\S-1-5-21-1838663641-187409221-1526913029-500\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe (User 'Administrator')
O4 - HKUS\S-1-5-18\..\Run: [OE] C:\Program Files\Trend Micro\Internet Security\TMAS_OE\TMAS_OEMon.exe (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [FlashPlayerUpdate] C:\WINDOWS\system32\Macromed\Flash\FlashUtil9f.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [OE] C:\Program Files\Trend Micro\Internet Security\TMAS_OE\TMAS_OEMon.exe (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [FlashPlayerUpdate] C:\WINDOWS\system32\Macromed\Flash\FlashUtil9f.exe (User 'Default user')
O4 - Startup: Deewoo.lnk = C:\WINDOWS\system32\qcntssdl.exe
O16 - DPF: {1663ed61-23eb-11d2-b92f-008048fdd814} (MeadCo ScriptX Advanced) - http://www.stonyfield.com/coupons/scriptX/smsx.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} -
O16 - DPF: {406B5949-7190-4245-91A9-30A17DE16AD0} (Snapfish Activia) - http://photos.walmart.com/WalmartActivia.cab
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} - http://download.divx.com/player/DivXBrowserPlugin.cab
O16 - DPF: {7D4733C0-C43B-4A81-AF43-F9B20D1F8348} - http://www.octoshape.com/test/ax/octoshape.cab
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.5.0) - http://javadl-esd.sun.com/update/1.5.0/jin...indows-i586.cab
O16 - DPF: {9600F64D-755F-11D4-A47F-0001023E6D5A} (Shutterfly Picture Upload Plugin) - http://web1.shutterfly.com/downloads/Uploader.cab
O16 - DPF: {A90A5822-F108-45AD-8482-9BC8B12DD539} (Crucial cpcScan) - http://www.crucial.com/controls/cpcScanner.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - https://fpdownload.macromedia.com/get/shock...ash/swflash.cab
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter hijack: text/html - {fabc2370-757a-4f3a-ae57-25cdc0011a1a} - C:\WINDOWS\system32\mst120.dll
O20 - AppInit_DLLs: C:\WINDOWS\system32\zufayoye.dll c:\windows\system32\hupetetu.dll epdkqk.dll uqikvg.dll efaryy.dll mwgcls.dll
O21 - SSODL: SSODL - {EC43E3FD-5C60-46a6-97D7-E0B85DBDD6C4} - (no file)
O22 - SharedTaskScheduler: STS - {EC43E3FD-5C60-46a6-97D7-E0B85DBDD6C4} - (no file)
O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe (file missing)
O23 - Service: dlcd_device - Unknown owner - C:\WINDOWS\system32\dlcdcoms.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Intel® Matrix Storage Event Monitor (IAANTMon) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\iaantmon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Roxio UPnP Renderer 9 - Sonic Solutions - C:\Program Files\Roxio\Digital Home 9\RoxioUPnPRenderer9.exe
O23 - Service: Roxio Upnp Server 9 - Sonic Solutions - C:\Program Files\Roxio\Digital Home 9\RoxioUpnpService9.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe

--
End of file - 8297 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\At1.job
C:\WINDOWS\tasks\At10.job
C:\WINDOWS\tasks\At11.job
C:\WINDOWS\tasks\At12.job
C:\WINDOWS\tasks\At13.job
C:\WINDOWS\tasks\At14.job
C:\WINDOWS\tasks\At15.job
C:\WINDOWS\tasks\At16.job
C:\WINDOWS\tasks\At17.job
C:\WINDOWS\tasks\At18.job
C:\WINDOWS\tasks\At19.job
C:\WINDOWS\tasks\At2.job
C:\WINDOWS\tasks\At20.job
C:\WINDOWS\tasks\At21.job
C:\WINDOWS\tasks\At22.job
C:\WINDOWS\tasks\At23.job
C:\WINDOWS\tasks\At24.job
C:\WINDOWS\tasks\At25.job
C:\WINDOWS\tasks\At26.job
C:\WINDOWS\tasks\At27.job
C:\WINDOWS\tasks\At28.job
C:\WINDOWS\tasks\At29.job
C:\WINDOWS\tasks\At3.job
C:\WINDOWS\tasks\At30.job
C:\WINDOWS\tasks\At31.job
C:\WINDOWS\tasks\At32.job
C:\WINDOWS\tasks\At33.job
C:\WINDOWS\tasks\At34.job
C:\WINDOWS\tasks\At35.job
C:\WINDOWS\tasks\At36.job
C:\WINDOWS\tasks\At37.job
C:\WINDOWS\tasks\At38.job
C:\WINDOWS\tasks\At39.job
C:\WINDOWS\tasks\At4.job
C:\WINDOWS\tasks\At40.job
C:\WINDOWS\tasks\At41.job
C:\WINDOWS\tasks\At42.job
C:\WINDOWS\tasks\At43.job
C:\WINDOWS\tasks\At44.job
C:\WINDOWS\tasks\At45.job
C:\WINDOWS\tasks\At46.job
C:\WINDOWS\tasks\At47.job
C:\WINDOWS\tasks\At48.job
C:\WINDOWS\tasks\At5.job
C:\WINDOWS\tasks\At6.job
C:\WINDOWS\tasks\At7.job
C:\WINDOWS\tasks\At8.job
C:\WINDOWS\tasks\At9.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{173D8134-AB44-4D60-8F15-521FDBF10584}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3887FDBF-A9A4-423F-B315-7613F587096D}]
C:\WINDOWS\system32\avwa.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C3CC654-AB97-47A5-83E0-AE9E9ABC9279}]
C:\WINDOWS\system32\efcBqnop.dll [2008-11-12 313856]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5dddfd1b-954a-4b48-9cd0-0247b54fe1a3}]
C:\WINDOWS\system32\mwgcls.dll [2008-11-18 124928]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9ea16949-73fa-45a1-ab70-84891d81bd3e}]
C:\WINDOWS\system32\yufetipa.dll [2008-08-07 60928]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A63E645F-13BD-45ED-B15F-6E8C1BD57279}]
C:\WINDOWS\system32\jkkJbyvS.dll [2008-11-12 25600]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B02671F0-5ED3-4852-85E1-B978D539C72D}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{BA52B914-B692-46c4-B683-905236F6F655}
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - &Google - c:\program files\google\googletoolbar1.dll [2007-08-08 2403392]
{EF99BD32-C1FB-11D2-892F-0090271D4F88} - Yahoo! Toolbar - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll [2006-10-26 440384]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Zboard"=C:\Program Files\Ideazon\ZEngine\Zboard.exe [2008-06-27 53248]
"UfSeAgnt.exe"=C:\Program Files\Trend Micro\Internet Security\UfSeAgnt.exe [2008-11-15 970808]
"negizufoyo"=C:\WINDOWS\system32\vaketapa.dll [2008-08-07 60928]
"QuickTime Task"=C:\Program Files\QuickTime\qttask.exe [2007-10-24 98304]
"ExploreUpdSched"=C:\WINDOWS\system32\qcntssdl.exe [2008-11-18 548928]
"SigmatelSysTrayApp"=C:\WINDOWS\stsystra.exe [2005-03-22 339968]
"DLCDCATS"=rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\DLCDtime.dll []

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Twain"=C:\Documents and Settings\Justin\Application Data\Twain\Twain.exe [2008-11-13 61440]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-13 15360]
"OE"=C:\Program Files\Trend Micro\Internet Security\TMAS_OE\TMAS_OEMon.exe [2008-11-15 497008]
"SpybotSD TeaTimer"=C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe [2008-09-16 1833296]
"gadcom"=C:\Documents and Settings\Justin\Application Data\gadcom\gadcom.exe [2008-11-16 56832]
"RegistryMechanic"=C:\Program Files\Registry Mechanic\RegMech.exe [2008-07-08 2828184]

C:\Documents and Settings\Justin\Start Menu\Programs\Startup
Deewoo.lnk - C:\WINDOWS\system32\qcntssdl.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLS"="C:\WINDOWS\system32\zufayoye.dll c:\windows\system32\hupetetu.dll epdkqk.dll uqikvg.dll efaryy.dll mwgcls.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
SSODL - {EC43E3FD-5C60-46a6-97D7-E0B85DBDD6C4}

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\explorer\SharedTaskScheduler]
STS - {EC43E3FD-5C60-46a6-97D7-E0B85DBDD6C4}

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{A63E645F-13BD-45ED-B15F-6E8C1BD57279}"=C:\WINDOWS\system32\jkkJbyvS.dll [2008-11-12 25600]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"authentication packages"=msv1_0
C:\WINDOWS\system32\efcBqnop
"notification packages"=scecli
C:\WINDOWS\system32\zufayoye.dll

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll, msansspc.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aawservice]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\LMouKE.Sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\aawservice]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LMouKE.Sys]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"InstallVisualStyle"=C:\WINDOWS\Resources\Themes\Royale\Royale.msstyles
"InstallTheme"=C:\WINDOWS\Resources\Themes\Royale.theme

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=157
"ForceClassicControlPanel"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\WINDOWS\system32\winlogon.exe"="C:\WINDOWS\system32\winlogon.exe:*:Enabled:winlogon"
"C:\Program Files\Ventrilo\Ventrilo.exe"="C:\Program Files\Ventrilo\Ventrilo.exe:*:Enabled:Ventrilo.exe"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"

======List of files/folders created in the last 1 months======

2008-11-18 20:57:08 ----D---- C:\rsit
2008-11-18 20:54:53 ----A---- C:\WINDOWS\system32\mwgcls.dll
2008-11-18 20:54:51 ----A---- C:\WINDOWS\system32\ebybwisc.dll
2008-11-18 20:30:46 ----D---- C:\Program Files\Ventrilo
2008-11-18 20:30:39 ----A---- C:\WINDOWS\{789289CA-F73A-4A16-A331-54D498CE069F}_WiseFW.ini
2008-11-18 19:38:04 ----ASH---- C:\WINDOWS\system32\ponqBcfe.ini2
2008-11-18 17:06:54 ----A---- C:\WINDOWS\system32\efaryy.dll
2008-11-18 17:06:53 ----A---- C:\WINDOWS\system32\nukamqmb.dll
2008-11-18 17:03:54 ----A---- C:\WINDOWS\system32\cnmcodiu.dll
2008-11-18 17:03:23 ----D---- C:\Documents and Settings\Justin\Application Data\Roxio
2008-11-18 16:58:47 ----D---- C:\WINDOWS\system32\DLA
2008-11-18 16:58:47 ----A---- C:\WINDOWS\system32\DLAAPI_W.DLL
2008-11-18 16:58:47 ----A---- C:\WINDOWS\DLA.EXE
2008-11-18 16:58:12 ----D---- C:\Documents and Settings\All Users\Application Data\Sonic
2008-11-18 16:58:04 ----D---- C:\Program Files\Common Files\SureThing Shared
2008-11-18 16:55:10 ----D---- C:\Documents and Settings\All Users\Application Data\Roxio
2008-11-18 16:54:57 ----D---- C:\Program Files\Roxio
2008-11-18 16:54:44 ----D---- C:\Program Files\Common Files\Roxio Shared
2008-11-18 06:48:27 ----A---- C:\WINDOWS\system32\ganmoevltx.exe
2008-11-18 06:48:21 ----A---- C:\WINDOWS\system32\qcntssdl.exe
2008-11-18 06:48:20 ----A---- C:\WINDOWS\system32\g85.exe
2008-11-17 20:06:00 ----HD---- C:\WINDOWS\system32\GroupPolicy
2008-11-17 19:55:49 ----A---- C:\WINDOWS\system32\ljJCuTLF.dll
2008-11-17 19:55:49 ----A---- C:\WINDOWS\system32\ddcAsPFw.dll
2008-11-17 19:47:34 ----A---- C:\WINDOWS\system32\vemuolhazinp.exe
2008-11-17 19:47:28 ----D---- C:\WINDOWS\system32\sip
2008-11-17 19:47:28 ----D---- C:\WINDOWS\system32\im
2008-11-17 19:47:28 ----D---- C:\WINDOWS\system32\ed
2008-11-17 19:47:28 ----D---- C:\WINDOWS\system32\cdx
2008-11-17 19:47:20 ----A---- C:\WINDOWS\system32\jkkJYOhE.dll
2008-11-17 19:47:20 ----A---- C:\WINDOWS\system32\hgGwtqol.dll
2008-11-17 19:47:19 ----A---- C:\WINDOWS\faceback.exe
2008-11-17 19:47:16 ----A---- C:\WINDOWS\system32\prunnet.exe
2008-11-17 17:30:55 ----A---- C:\WINDOWS\system32\STKIT432.DLL
2008-11-17 17:30:53 ----D---- C:\Program Files\Registry Mechanic
2008-11-17 17:05:27 ----A---- C:\WINDOWS\system32\xmudyrnb.dll
2008-11-17 17:05:27 ----A---- C:\WINDOWS\system32\uqikvg.dll
2008-11-17 17:03:30 ----A---- C:\WINDOWS\system32\ajtgbigj.dll
2008-11-16 19:32:50 ----D---- C:\Documents and Settings\Justin\Application Data\gadcom
2008-11-16 19:32:34 ----A---- C:\WINDOWS\system32\yayvwvWm.dll
2008-11-16 19:32:34 ----A---- C:\WINDOWS\system32\ljJBQkkH.dll
2008-11-16 19:10:51 ----A---- C:\WINDOWS\system32\kdfvmgr.exe
2008-11-16 19:10:51 ----A---- C:\WINDOWS\system32\kdfapi.dll
2008-11-16 15:38:37 ----A---- C:\WINDOWS\system32\ulpsinki.dll
2008-11-16 15:32:39 ----A---- C:\WINDOWS\system32\epdkqk.dll
2008-11-16 15:32:37 ----A---- C:\WINDOWS\system32\cwtmvkua.dll
2008-11-16 12:29:02 ----D---- C:\Documents and Settings\All Users\Application Data\Yahoo! Companion
2008-11-16 10:29:45 ----D---- C:\Program Files\CCleaner
2008-11-15 13:52:14 ----D---- C:\Program Files\Spybot - Search & Destroy
2008-11-15 13:52:14 ----D---- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
2008-11-15 09:22:37 ----A---- C:\WINDOWS\system32\xgfqik.dll
2008-11-15 09:22:36 ----A---- C:\WINDOWS\system32\wacpfuwu.dll
2008-11-15 09:19:03 ----A---- C:\WINDOWS\system32\ljqxfbjr.dll
2008-11-15 06:57:08 ----N---- C:\WINDOWS\system32\rukksers.dll
2008-11-15 06:54:09 ----A---- C:\WINDOWS\system32\uydcoq.dll
2008-11-15 06:54:08 ----A---- C:\WINDOWS\system32\hxepbgbu.dll
2008-11-15 00:54:15 ----D---- C:\Documents and Settings\All Users\Application Data\Trend Micro
2008-11-15 00:53:47 ----D---- C:\Program Files\Trend Micro
2008-11-14 20:25:35 ----A---- C:\WINDOWS\system32\wini108025.exe
2008-11-14 19:43:17 ----A---- C:\WINDOWS\system32\alog.txt
2008-11-14 19:39:41 ----A---- C:\WINDOWS\system32\savec32.dll
2008-11-14 19:39:41 ----A---- C:\WINDOWS\system32\ekd.txt
2008-11-14 19:39:12 ----A---- C:\WINDOWS\system32\TDSSlxcp.dll
2008-11-14 19:39:12 ----A---- C:\WINDOWS\system32\TDSScfmm.dll
2008-11-14 06:53:58 ----N---- C:\WINDOWS\system32\hjqanpwd.dll
2008-11-14 06:52:03 ----A---- C:\WINDOWS\system32\hbovec.dll
2008-11-14 06:52:00 ----A---- C:\WINDOWS\system32\rdxnpuhu.dll
2008-11-13 18:20:25 ----SHD---- C:\WINDOWS\SnVzdGlu
2008-11-13 18:10:19 ----D---- C:\Documents and Settings\Justin\Application Data\SpeedRunner
2008-11-13 18:05:18 ----D---- C:\Documents and Settings\Justin\Application Data\Twain
2008-11-13 18:00:20 ----D---- C:\Program Files\Webtools
2008-11-13 17:55:16 ----D---- C:\Program Files\Mjcore
2008-11-12 20:21:34 ----A---- C:\WINDOWS\system32\fjcayd.dll
2008-11-12 20:21:33 ----A---- C:\WINDOWS\system32\yeewruuk.dll
2008-11-12 20:19:20 ----A---- C:\WINDOWS\system32\3301b0cc-.txt
2008-11-12 20:18:33 ----ASH---- C:\WINDOWS\system32\ponqBcfe.ini
2008-11-12 20:18:28 ----A---- C:\WINDOWS\system32\efcBqnop.dll
2008-11-12 20:13:24 ----A---- C:\WINDOWS\system32\xxyxVmkl.dll
2008-11-12 20:13:24 ----A---- C:\WINDOWS\system32\jkkJbyvS.dll
2008-11-12 20:13:22 ----A---- C:\WINDOWS\system32\msansspc.dll
2008-11-12 20:13:21 ----A---- C:\WINDOWS\~.exe
2008-11-08 07:38:12 ----D---- C:\WINDOWS\system32\Service
2008-11-08 06:47:40 ----D---- C:\WINDOWS\pss
2008-11-08 06:26:31 ----A---- C:\WINDOWS\system32\ativtmxx.dll
2008-11-07 20:23:17 ----A---- C:\WINDOWS\DCEBoot.exe
2008-11-07 19:59:46 ----D---- C:\WINDOWS\SxsCaPendDel
2008-11-05 23:12:13 ----AD---- C:\Documents and Settings\All Users\Application Data\TEMP
2008-11-05 23:12:04 ----D---- C:\Program Files\Spyware Doctor
2008-11-05 23:08:02 ----D---- C:\Documents and Settings\All Users\Application Data\SITEguard
2008-11-05 23:04:59 ----D---- C:\Program Files\Common Files\iS3
2008-11-05 23:04:59 ----D---- C:\Documents and Settings\All Users\Application Data\STOPzilla!
2008-11-05 22:40:47 ----D---- C:\Program Files\Mozilla Firefox
2008-11-05 20:12:18 ----A---- C:\WINDOWS\system32\javaws.exe
2008-11-05 20:12:18 ----A---- C:\WINDOWS\system32\javaw.exe
2008-11-05 20:12:18 ----A---- C:\WINDOWS\system32\java.exe
2008-11-05 20:11:51 ----D---- C:\Program Files\Java
2008-11-05 20:11:32 ----D---- C:\Program Files\Common Files\Java
2008-11-05 19:34:49 ----A---- C:\WINDOWS\system32\cimimizeve.exe
2008-11-05 19:34:49 ----A---- C:\WINDOWS\system32\bywyc.dll
2008-11-05 19:34:49 ----A---- C:\WINDOWS\iwarevype.bat
2008-11-05 19:34:49 ----A---- C:\Documents and Settings\All Users\Application Data\zufusiw.vbs
2008-11-05 18:16:16 ----D---- C:\Program Files\Common
2008-11-05 07:37:52 ----A---- C:\WINDOWS\system32\reset5e.dll
2008-11-05 03:00:32 ----HDC---- C:\WINDOWS\$NtUninstallKB951978$
2008-11-03 18:47:17 ----D---- C:\WINDOWS\Prefetch
2008-11-03 18:45:23 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$
2008-11-03 18:45:15 ----HDC---- C:\WINDOWS\$NtUninstallKB957095$
2008-11-03 18:45:07 ----HDC---- C:\WINDOWS\$NtUninstallKB956841$
2008-11-03 18:44:59 ----HDC---- C:\WINDOWS\$NtUninstallKB956803$
2008-11-03 18:44:49 ----HDC---- C:\WINDOWS\$NtUninstallKB954211$
2008-11-03 18:44:40 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2008-11-03 18:44:29 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2008-11-03 18:44:18 ----HDC---- C:\WINDOWS\$NtUninstallKB951748$
2008-11-03 18:44:10 ----HDC---- C:\WINDOWS\$NtUninstallKB951698$
2008-11-03 18:44:02 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2008-11-03 18:43:55 ----HDC---- C:\WINDOWS\$NtUninstallKB951376$
2008-11-03 18:43:46 ----HDC---- C:\WINDOWS\$NtUninstallKB951066$
2008-11-03 18:43:39 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2008-11-03 18:43:32 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2008-11-03 18:43:24 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2008-11-03 18:43:18 ----HDC---- C:\WINDOWS\$NtUninstallKB938464$
2008-11-03 18:38:47 ----D---- C:\WINDOWS\system32\scripting
2008-11-03 18:38:46 ----D---- C:\WINDOWS\system32\en
2008-11-03 18:38:46 ----D---- C:\WINDOWS\system32\bits
2008-11-03 18:38:46 ----D---- C:\WINDOWS\l2schemas
2008-11-03 18:37:00 ----D---- C:\WINDOWS\ServicePackFiles
2008-11-03 18:32:35 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2008-11-03 17:45:56 ----A---- C:\WINDOWS\vuralapat.bat
2008-11-03 17:45:56 ----A---- C:\Program Files\Common Files\zoxysa.bat
2008-11-03 17:45:56 ----A---- C:\Documents and Settings\Justin\Application Data\osewimo.com
2008-11-03 17:45:55 ----A---- C:\Program Files\Common Files\hawir.bat
2008-11-03 17:45:55 ----A---- C:\Documents and Settings\Justin\Application Data\qoha.dll
2008-11-03 17:45:55 ----A---- C:\Documents and Settings\Justin\Application Data\nefaqeze.dll
2008-11-03 17:45:55 ----A---- C:\Documents and Settings\Justin\Application Data\ezibojuz.com
2008-11-03 17:45:09 ----A---- C:\WINDOWS\system32\Ilkt0c82.exe.a_a
2008-11-03 17:44:55 ----A---- C:\WINDOWS\system32\Knmv6e58.dll
2008-11-03 17:44:35 ----A---- C:\WINDOWS\system32\wini10255.exe
2008-11-02 17:41:41 ----A---- C:\WINDOWS\system32\Ilkt0c82.exe
2008-11-02 17:28:50 ----A---- C:\WINDOWS\system32\36DWI3VQ.exe.a_a
2008-11-02 17:28:50 ----A---- C:\WINDOWS\system32\36DWI3VQ.exe
2008-11-01 03:37:06 ----A---- C:\WINDOWS\system32\uqjntprimt.dll
2008-10-30 20:32:24 ----A---- C:\WINDOWS\system32\mst120.dll
2008-10-29 17:26:00 ----A---- C:\Documents and Settings\All Users\Application Data\efiqur.bat
2008-10-29 17:01:54 ----A---- C:\WINDOWS\system32\wini10801.exe
2008-10-29 09:51:03 ----A---- C:\WINDOWS\brastk.exe
2008-10-29 09:45:05 ----A---- C:\WINDOWS\system32\TDSSespm.dll
2008-10-29 09:45:04 ----A---- C:\WINDOWS\system32\TDSSxjfu.dll
2008-10-29 09:45:00 ----A---- C:\WINDOWS\system32\TDSSugxy.dll
2008-10-25 02:00:38 ----HDC---- C:\WINDOWS\$NtUninstallKB958644_0$

======List of files/folders modified in the last 1 months======

2008-11-18 21:06:21 ----D---- C:\WINDOWS
2008-11-18 21:06:15 ----D---- C:\Program Files\Dl_cats
2008-11-18 21:06:08 ----D---- C:\WINDOWS\Temp
2008-11-18 21:06:03 ----D---- C:\WINDOWS\Registration
2008-11-18 21:05:59 ----A---- C:\WINDOWS\ModemLog_Intel® 537EP V9x DF PCI Modem.txt
2008-11-18 21:04:43 ----A---- C:\WINDOWS\SchedLgU.Txt
2008-11-18 21:00:00 ----D---- C:\WINDOWS\system32
2008-11-18 20:51:01 ----D---- C:\WINDOWS\system32\drivers
2008-11-18 20:50:58 ----HD---- C:\WINDOWS\inf
2008-11-18 20:32:49 ----D---- C:\Documents and Settings\Justin\Application Data\Ventrilo
2008-11-18 20:30:49 ----SHD---- C:\WINDOWS\Installer
2008-11-18 20:30:46 ----RD---- C:\Program Files
2008-11-18 20:30:26 ----D---- C:\Program Files\Common Files\Wise Installation Wizard
2008-11-18 17:01:56 ----D---- C:\WINDOWS\system32\CatRoot2
2008-11-18 16:58:48 ----A---- C:\WINDOWS\wininit.ini
2008-11-18 16:58:27 ----D---- C:\WINDOWS\WinSxS
2008-11-18 16:58:04 ----D---- C:\Program Files\Common Files
2008-11-18 16:57:58 ----D---- C:\Program Files\Common Files\Sonic Shared
2008-11-18 16:56:47 ----SD---- C:\WINDOWS\Downloaded Program Files
2008-11-18 16:56:41 ----RSD---- C:\WINDOWS\Fonts
2008-11-18 16:54:15 ----D---- C:\temp
2008-11-18 16:39:25 ----D---- C:\JUSTIN
2008-11-17 18:54:48 ----SD---- C:\WINDOWS\Tasks
2008-11-17 17:59:20 ----D---- C:\Program Files\Lavasoft
2008-11-17 17:32:04 ----RASH---- C:\boot.ini
2008-11-16 21:04:40 ----A---- C:\WINDOWS\win.ini
2008-11-16 20:02:53 ----D---- C:\My Music
2008-11-16 19:48:27 ----D---- C:\Documents and Settings\All Users\Application Data\GTek
2008-11-16 19:48:17 ----D---- C:\Program Files\UniUploader
2008-11-16 19:47:19 ----D---- C:\Program Files\Sonic
2008-11-16 19:35:01 ----D---- C:\i386
2008-11-16 10:43:06 ----D---- C:\WINDOWS\Minidump
2008-11-16 10:43:06 ----D---- C:\WINDOWS\Debug
2008-11-16 10:29:57 ----D---- C:\Program Files\Yahoo!
2008-11-15 02:09:31 ----RSHD---- C:\WINDOWS\system32\dllcache
2008-11-15 00:56:46 ----D---- C:\WINDOWS\system32\CatRoot
2008-11-14 19:32:30 ----D---- C:\Program Files\Internet Explorer
2008-11-13 20:05:01 ----D---- C:\Documents and Settings\Justin\Application Data\Mozilla
2008-11-13 19:37:48 ----N---- C:\WINDOWS\SYSTEM.INI
2008-11-13 19:23:42 ----D---- C:\Program Files\World of Warcraft
2008-11-08 07:08:08 ----HD---- C:\Program Files\InstallShield Installation Information
2008-11-08 07:08:03 ----D---- C:\Program Files\Electronic Arts
2008-11-08 07:03:54 ----D---- C:\Documents and Settings\Justin\Application Data\Skype
2008-11-08 07:02:19 ----AH---- C:\WINDOWS\system32\FFASTLOG.TXT
2008-11-08 06:26:12 ----D---- C:\Program Files\ATI Technologies
2008-11-07 22:34:39 ----ASH---- C:\WINDOWS\system32\mozobasu.dll
2008-11-07 22:34:39 ----ASH---- C:\WINDOWS\system32\gasowihu.dll
2008-11-07 21:53:35 ----D---- C:\WINDOWS\system32\o02PrEz
2008-11-07 17:42:05 ----D---- C:\WINDOWS\system32\config
2008-11-07 10:34:35 ----N---- C:\WINDOWS\system32\wekinimu.dll
2008-11-07 10:34:34 ----ASH---- C:\WINDOWS\system32\hinujeta.dll
2008-11-05 23:13:21 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2008-11-05 18:42:23 ----D---- C:\Documents and Settings\All Users\Application Data\Lavasoft
2008-11-04 04:40:10 ----HD---- C:\WINDOWS\$hf_mig$
2008-11-03 18:46:42 ----D---- C:\WINDOWS\system32\Setup
2008-11-03 18:46:41 ----D---- C:\WINDOWS\system32\wbem
2008-11-03 18:46:41 ----D---- C:\WINDOWS\AppPatch
2008-11-03 18:46:03 ----D---- C:\WINDOWS\security
2008-11-03 18:41:38 ----RSD---- C:\WINDOWS\assembly
2008-11-03 18:38:53 ----D---- C:\WINDOWS\system32\inetsrv
2008-11-03 18:38:53 ----D---- C:\WINDOWS\network diagnostic
2008-11-03 18:38:53 ----D---- C:\WINDOWS\ime
2008-11-03 18:38:53 ----D---- C:\WINDOWS\Help
2008-11-03 18:38:47 ----D---- C:\WINDOWS\system32\usmt
2008-11-03 18:38:47 ----D---- C:\WINDOWS\system32\en-US
2008-11-03 18:38:46 ----D---- C:\WINDOWS\PeerNet
2008-11-03 18:38:46 ----D---- C:\Program Files\Movie Maker
2008-11-03 18:36:53 ----D---- C:\WINDOWS\system32\Restore
2008-11-03 18:36:53 ----D---- C:\WINDOWS\system32\npp
2008-11-03 18:36:53 ----D---- C:\WINDOWS\mui
2008-11-03 18:36:52 ----D---- C:\WINDOWS\msagent
2008-11-03 18:36:51 ----D---- C:\WINDOWS\srchasst
2008-11-03 18:36:50 ----D---- C:\Program Files\NetMeeting
2008-11-03 18:36:47 ----D---- C:\WINDOWS\system32\Com
2008-11-03 18:36:44 ----D---- C:\Program Files\Windows NT
2008-11-03 18:36:43 ----D---- C:\Program Files\Outlook Express
2008-11-03 18:36:42 ----D---- C:\Program Files\Common Files\System
2008-11-03 18:36:34 ----D---- C:\WINDOWS\system32\oobe
2008-11-03 18:36:33 ----D---- C:\WINDOWS\system
2008-11-03 18:32:29 ----D---- C:\WINDOWS\ehome
2008-11-03 18:25:07 ----D---- C:\Program Files\DivX
2008-11-03 18:24:50 ----D---- C:\Program Files\Coupons

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 Ad-Watch Connect Filter;Ad-Watch Connect Kernel Filter; \??\C:\WINDOWS\system32\drivers\NSDriver.sys []
R1 cdrbsdrv;cdrbsdrv; C:\WINDOWS\system32\drivers\cdrbsdrv.sys [2004-03-08 13567]
R1 DLACDBHM;DLACDBHM; C:\WINDOWS\System32\Drivers\DLACDBHM.SYS [2006-09-15 12920]
R1 DLARTL_M;DLARTL_M; C:\WINDOWS\System32\Drivers\DLARTL_M.SYS [2006-09-15 28184]
R1 intelppm;Intel Processor Driver; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-13 36352]
R1 kbdhid;Keyboard HID Driver; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-13 14592]
R1 LMouKE;Logitech SetPoint Mouse Filter Driver; C:\WINDOWS\system32\DRIVERS\LMouKE.Sys [2008-11-16 8512]
R1 omci;OMCI WDM Device Driver; C:\WINDOWS\system32\DRIVERS\omci.sys [2002-11-08 17217]
R2 ASCTRM;ASCTRM; C:\WINDOWS\system32\drivers\ASCTRM.sys [2005-09-17 8552]
R2 DLABMFSM;DLABMFSM; C:\WINDOWS\System32\DLA\DLABMFSM.SYS [2006-11-01 35064]
R2 DLABOIOM;DLABOIOM; C:\WINDOWS\System32\DLA\DLABOIOM.SYS [2006-11-01 32472]
R2 DLADResM;DLADResM; C:\WINDOWS\System32\DLA\DLADResM.SYS [2006-11-01 9400]
R2 DLAIFS_M;DLAIFS_M; C:\WINDOWS\System32\DLA\DLAIFS_M.SYS [2006-11-01 104760]
R2 DLAOPIOM;DLAOPIOM; C:\WINDOWS\System32\DLA\DLAOPIOM.SYS [2006-11-01 26744]
R2 DLAPoolM;DLAPoolM; C:\WINDOWS\System32\DLA\DLAPoolM.SYS [2006-11-01 14520]
R2 DLAUDF_M;DLAUDF_M; C:\WINDOWS\System32\DLA\DLAUDF_M.SYS [2006-11-01 98104]
R2 DLAUDFAM;DLAUDFAM; C:\WINDOWS\System32\DLA\DLAUDFAM.SYS [2006-11-01 94648]
R2 drvnddm;drvnddm; C:\WINDOWS\System32\Drivers\DRVNDDM.SYS [2006-09-15 51768]
R3 Alpham1;Ideazon Merc USB Human Interface Device; C:\WINDOWS\system32\DRIVERS\Alpham1.sys [2007-07-23 42624]
R3 Alpham2;Ideazon Merc MM USB Human Interface Device; C:\WINDOWS\system32\DRIVERS\Alpham2.sys [2007-03-20 18432]
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2005-03-30 1035264]
R3 E100B;Intel® PRO Network Connection Driver; C:\WINDOWS\system32\DRIVERS\e100b325.sys [2007-11-16 165496]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 HidUsb;Microsoft HID Class Driver; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 IntelC51;IntelC51; C:\WINDOWS\system32\DRIVERS\IntelC51.sys [2005-05-06 1339776]
R3 IntelC52;IntelC52; C:\WINDOWS\system32\DRIVERS\IntelC52.sys [2006-03-01 618880]
R3 IntelC53;IntelC53; C:\WINDOWS\system32\DRIVERS\IntelC53.sys [2005-05-06 47360]
R3 MODEMCSA;Unimodem Streaming Filter Device; C:\WINDOWS\system32\drivers\MODEMCSA.sys [2001-08-17 16128]
R3 mohfilt;mohfilt; C:\WINDOWS\system32\DRIVERS\mohfilt.sys [2005-05-06 36880]
R3 mouhid;Mouse HID Driver; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-08-17 12160]
R3 STHDA;High Definition Audio Driver (WDM) - SigmaTel CODEC; C:\WINDOWS\system32\drivers\sthda.sys [2005-03-31 180096]
R3 usbccgp;Microsoft USB Generic Parent Driver; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
R3 usbehci;Microsoft USB 2.0 Enhanced Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-13 30208]
R3 usbhub;USB2 Enabled Hub; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-13 59520]
R3 usbprint;Microsoft USB PRINTER Class; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
R3 usbscan;USB Scanner Driver; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
R3 USBSTOR;USB Mass Storage Driver; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
R3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
S1 DSproct;DSproct; \??\C:\Program Files\Dell Support\GTAction\triggers\DSproct.sys []
S3 61883;61883 Unit Device; C:\WINDOWS\system32\DRIVERS\61883.sys [2008-04-13 48128]
S3 Alpham;Ideazon Merc Composite Keyboard Driver; C:\WINDOWS\system32\DRIVERS\Alpham.sys [2005-12-04 34944]
S3 Arp1394;1394 ARP Client Protocol; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-13 60800]
S3 Avc;AVC Device; C:\WINDOWS\system32\DRIVERS\avc.sys [2008-04-13 38912]
S3 bvrp_pci;bvrp_pci; C:\WINDOWS\system32\drivers\bvrp_pci.sys []
S3 CCDECODE;Closed Caption Decoder; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
S3 ICAM3NT5;Intel USB Video Camera III; C:\WINDOWS\System32\Drivers\Icam3.sys [2001-08-17 141056]
S3 LHidUsbK;Logitech SetPoint USB Receiver device driver; C:\WINDOWS\System32\Drivers\LHidUsbK.Sys [2005-07-22 36608]
S3 MHNDRV;MHN driver; C:\WINDOWS\system32\DRIVERS\mhndrv.sys [2004-08-10 11008]
S3 MSDV;Microsoft DV Camera and VCR; C:\WINDOWS\system32\DRIVERS\msdv.sys [2008-04-13 51200]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
S3 NAL;Nal Service ; \??\C:\WINDOWS\system32\Drivers\iqvw32.sys []
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-13 10880]
S3 neokdss;neokdss; C:\WINDOWS\system32\Drivers\neokdss.sys []
S3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-13 61824]
S3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2004-08-03 1897408]
S3 slabbus;CP210x USB Composite Device driver (WDM); C:\WINDOWS\system32\DRIVERS\slabbus.sys [2004-12-16 55312]
S3 slabser;CP210x USB to UART Bridge Controller Drivers; C:\WINDOWS\system32\DRIVERS\slabser.sys [2004-12-16 89808]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-13 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-13 15232]
S3 wanatw;WAN Miniport (ATW); C:\WINDOWS\system32\DRIVERS\wanatw4.sys []
S3 WSTCODEC;World Standard Teletext Codec; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]
S4 agp440;Intel AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\agp440.sys [2008-04-13 42368]
S4 agpCPQ;Compaq AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\agpCPQ.sys [2008-04-13 44928]
S4 alim1541;ALI AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\alim1541.sys [2008-04-13 42752]
S4 amdagp;AMD AGP Bus Filter Driver; C:\WINDOWS\system32\DRIVERS\amdagp.sys [2008-04-13 43008]
S4 cbidf;cbidf; C:\WINDOWS\system32\DRIVERS\cbidf2k.sys [2001-08-17 13952]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\DRIVERS\intelide.sys [2008-04-13 5504]
S4 RxFilter;RxFilter; C:\WINDOWS\system32\DRIVERS\RxFilter.sys [2006-12-02 50688]
S4 sisagp;SIS AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\sisagp.sys [2008-04-13 40960]
S4 viaagp;VIA AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\viaagp.sys [2008-04-13 42240]
S4 WS2IFSL;Windows Socket 2.0 Non-IFS Service Provider Support Environment; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2004-08-10 12032]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 aawservice;Lavasoft Ad-Aware Service; C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe [2008-09-10 611664]
R2 ehRecvr;Media Center Receiver Service; C:\WINDOWS\eHome\ehRecvr.exe [2004-09-28 195584]
R2 ehSched;Media Center Scheduler Service; C:\WINDOWS\eHome\ehSched.exe [2004-08-10 102912]
R2 IAANTMon;Intel® Matrix Storage Event Monitor; C:\Program Files\Intel\Intel Matrix Storage Manager\iaantmon.exe [2005-04-25 86142]
R3 dlcd_device;dlcd_device; C:\WINDOWS\system32\dlcdcoms.exe [2005-06-21 491520]
S2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe []
S2 Fax;Fax; C:\WINDOWS\system32\fxssvc.exe [2008-04-13 267776]
S2 Roxio Upnp Server 9;Roxio Upnp Server 9; C:\Program Files\Roxio\Digital Home 9\RoxioUpnpService9.exe [2006-12-13 294912]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2005-09-23 29896]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2005-09-23 66240]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2007-08-08 138168]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728]
S3 MHN;MHN; C:\WINDOWS\System32\svchost.exe [2008-04-13 14336]
S3 Roxio UPnP Renderer 9;Roxio UPnP Renderer 9; C:\Program Files\Roxio\Digital Home 9\RoxioUPnPRenderer9.exe [2006-12-13 57344]
S3 RoxMediaDB9;RoxMediaDB9; C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe [2007-01-16 880640]
S3 stllssvr;stllssvr; C:\Program Files\Common Files\SureThing Shared\stllssvr.exe [2007-01-15 73728]
S3 UMWdf;Windows User Mode Driver Framework; C:\WINDOWS\system32\wdfmgr.exe [2005-01-28 38912]
S4 DomainService;DomainService; C:\WINDOWS\system32\dbsqkjkt.exe /service []

-----------------EOF-----------------

#4 kahdah

kahdah

  • Security Colleague
  • 11,138 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Florida
  • Local time:07:26 AM

Posted 18 November 2008 - 11:13 PM

While TeaTimer is an excellent tool for the prevention of spyware, it can sometimes prevent HijackThis from fixing certain things.
Please disable TeaTimer for now until you are clean. TeaTimer can be re-activated once your HijackThis log is clean.
  • Open Spybot Search & Destroy.
  • In the Mode menu click "Advanced mode" if not already selected.
  • Choose "Yes" at the Warning prompt.
  • Expand the "Tools" menu.
  • Click "Resident".
  • Uncheck the "Resident "TeaTimer" (Protection of overall system settings) active." box.
  • In the File menu click "Exit" to exit Spybot Search & Destroy.
==========
Please download the OTMoveIt3 by OldTimer.
  • Save it to your desktop.
  • Please double-click OTMoveIt3.exe to run it. (Note: If you are running on Vista, right-click on the file and choose Run As Administrator).
  • Copy the lines in the codebox below to the clipboard by highlighting ALL of them and pressing CTRL + C (or, after highlighting, right-click and choose Copy):

    :processes
    explorer.exe
    
    :files
    C:\WINDOWS\system32\efcBqnop.dll
    C:\WINDOWS\system32\mwgcls.dll
    C:\WINDOWS\system32\yufetipa.dll
    C:\WINDOWS\system32\jkkJbyvS.dll
    C:\WINDOWS\system32\vaketapa.dll
    C:\WINDOWS\system32\qcntssdl.exe 
    C:\Documents and Settings\Justin\Application Data\Twain
    C:\Documents and Settings\Justin\Application Data\gadcom
    C:\WINDOWS\system32\zufayoye.dll
    c:\windows\system32\hupetetu.dll
    c:\windows\system32\epdkqk.dll 
    c:\windows\system32\uqikvg.dll
    c:\windows\system32\efaryy.dll 
    c:\windows\system32\mwgcls.dll
    C:\WINDOWS\system32\nukamqmb.dll
    C:\WINDOWS\system32\cnmcodiu.dll
    C:\WINDOWS\system32\ganmoevltx.exe
    C:\WINDOWS\system32\g85.exe
    C:\WINDOWS\system32\ljJCuTLF.dll
    C:\WINDOWS\system32\ddcAsPFw.dll
    C:\WINDOWS\system32\vemuolhazinp.exe
    C:\WINDOWS\system32\sip
    C:\WINDOWS\system32\im
    C:\WINDOWS\system32\ed
    C:\WINDOWS\system32\cdx
    C:\WINDOWS\system32\jkkJYOhE.dll
    C:\WINDOWS\system32\hgGwtqol.dll
    C:\WINDOWS\faceback.exe
    C:\WINDOWS\system32\prunnet.exe
    C:\WINDOWS\system32\xmudyrnb.dll
    C:\WINDOWS\system32\uqikvg.dll
    C:\WINDOWS\system32\ajtgbigj.dll
    C:\Documents and Settings\Justin\Application Data\gadcom
    C:\WINDOWS\system32\yayvwvWm.dll
    C:\WINDOWS\system32\ljJBQkkH.dll
    C:\WINDOWS\system32\ulpsinki.dll
    C:\WINDOWS\system32\epdkqk.dll
    C:\WINDOWS\system32\cwtmvkua.dll
    C:\WINDOWS\system32\xgfqik.dll
    C:\WINDOWS\system32\wacpfuwu.dll
    C:\WINDOWS\system32\ljqxfbjr.dll
    C:\WINDOWS\system32\rukksers.dll
    C:\WINDOWS\system32\uydcoq.dll
    C:\WINDOWS\system32\hxepbgbu.dll
    C:\WINDOWS\system32\wini108025.exe
    C:\WINDOWS\system32\alog.txt
    C:\WINDOWS\system32\savec32.dll
    C:\WINDOWS\system32\ekd.txt
    C:\WINDOWS\system32\TDSSlxcp.dll
    C:\WINDOWS\system32\TDSScfmm.dll
    C:\WINDOWS\system32\hjqanpwd.dll
    C:\WINDOWS\system32\hbovec.dll
    C:\WINDOWS\system32\rdxnpuhu.dll
    C:\WINDOWS\SnVzdGlu
    C:\Documents and Settings\Justin\Application Data\Twain
    C:\Program Files\Mjcore
    C:\WINDOWS\system32\fjcayd.dll
    C:\WINDOWS\system32\yeewruuk.dll
    C:\WINDOWS\system32\3301b0cc-.txt
    C:\WINDOWS\system32\ponqBcfe.ini
    C:\WINDOWS\system32\efcBqnop.dll
    C:\WINDOWS\system32\xxyxVmkl.dll
    C:\WINDOWS\system32\jkkJbyvS.dll
    C:\WINDOWS\~.exe
    C:\WINDOWS\system32\cimimizeve.exe
    C:\WINDOWS\system32\bywyc.dll
    C:\WINDOWS\iwarevype.bat
    C:\Documents and Settings\All Users\Application Data\zufusiw.vbs
    C:\WINDOWS\vuralapat.bat
    C:\Program Files\Common Files\zoxysa.bat
    C:\Documents and Settings\Justin\Application Data\osewimo.com
    C:\Program Files\Common Files\hawir.bat
    C:\Documents and Settings\Justin\Application Data\qoha.dll
    C:\Documents and Settings\Justin\Application Data\nefaqeze.dll
    C:\Documents and Settings\Justin\Application Data\ezibojuz.com
    C:\WINDOWS\system32\Ilkt0c82.exe.a_a
    C:\WINDOWS\system32\Knmv6e58.dll
    C:\WINDOWS\system32\wini10255.exe
    C:\WINDOWS\system32\Ilkt0c82.exe
    C:\WINDOWS\system32\36DWI3VQ.exe.a_a
    C:\WINDOWS\system32\36DWI3VQ.exe
    C:\WINDOWS\system32\uqjntprimt.dll
    C:\Documents and Settings\All Users\Application Data\efiqur.bat
    C:\WINDOWS\system32\wini10801.exe
    C:\WINDOWS\brastk.exe
    C:\WINDOWS\system32\TDSSespm.dll
    C:\WINDOWS\system32\TDSSxjfu.dll
    C:\WINDOWS\system32\TDSSugxy.dll
    C:\Program Files\Coupons
    C:\WINDOWS\system32\dbsqkjkt.exe 
    C:\WINDOWS\tasks\At1.job
    C:\WINDOWS\tasks\At10.job
    C:\WINDOWS\tasks\At11.job
    C:\WINDOWS\tasks\At12.job
    C:\WINDOWS\tasks\At13.job
    C:\WINDOWS\tasks\At14.job
    C:\WINDOWS\tasks\At15.job
    C:\WINDOWS\tasks\At16.job
    C:\WINDOWS\tasks\At17.job
    C:\WINDOWS\tasks\At18.job
    C:\WINDOWS\tasks\At19.job
    C:\WINDOWS\tasks\At2.job
    C:\WINDOWS\tasks\At20.job
    C:\WINDOWS\tasks\At21.job
    C:\WINDOWS\tasks\At22.job
    C:\WINDOWS\tasks\At23.job
    C:\WINDOWS\tasks\At24.job
    C:\WINDOWS\tasks\At25.job
    C:\WINDOWS\tasks\At26.job
    C:\WINDOWS\tasks\At27.job
    C:\WINDOWS\tasks\At28.job
    C:\WINDOWS\tasks\At29.job
    C:\WINDOWS\tasks\At3.job
    C:\WINDOWS\tasks\At30.job
    C:\WINDOWS\tasks\At31.job
    C:\WINDOWS\tasks\At32.job
    C:\WINDOWS\tasks\At33.job
    C:\WINDOWS\tasks\At34.job
    C:\WINDOWS\tasks\At35.job
    C:\WINDOWS\tasks\At36.job
    C:\WINDOWS\tasks\At37.job
    C:\WINDOWS\tasks\At38.job
    C:\WINDOWS\tasks\At39.job
    C:\WINDOWS\tasks\At4.job
    C:\WINDOWS\tasks\At40.job
    C:\WINDOWS\tasks\At41.job
    C:\WINDOWS\tasks\At42.job
    C:\WINDOWS\tasks\At43.job
    C:\WINDOWS\tasks\At44.job
    C:\WINDOWS\tasks\At45.job
    C:\WINDOWS\tasks\At46.job
    C:\WINDOWS\tasks\At47.job
    C:\WINDOWS\tasks\At48.job
    C:\WINDOWS\tasks\At5.job
    C:\WINDOWS\tasks\At6.job
    C:\WINDOWS\tasks\At7.job
    C:\WINDOWS\tasks\At8.job
    C:\WINDOWS\tasks\At9.job
    C:\Documents and Settings\Justin\Start Menu\Programs\Startup\Deewoo.lnk 
    
    :reg
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
    "AppInit_DLLS"=""
    
    
    :commands
    [emptytemp]
    [start explorer]
  • Return to OTMoveIt3, right click in the "Paste Instructions for Items to be Moved" window (under the yellow bar) and choose Paste.
  • Click the red Moveit! button.
  • Copy everything in the Results window (under the green bar) to the clipboard by highlighting ALL of them and pressing CTRL + C (or, after highlighting, right-click and choose copy), and paste it in your next reply.
  • Close OTMoveIt3
Note: If a file or folder cannot be moved immediately you may be asked to reboot the machine to finish the move process. If you are asked to reboot the machine choose Yes. In this case, after the reboot, open Notepad (Start->All Programs->Accessories->Notepad), click File->Open, in the File Name box enter *.log and press the Enter key, navigate to the C:\_OTMoveIt\MovedFiles folder, and open the newest .log file present, and copy/paste the contents of that document back here in your next post.
===================================
Download ComboFix from one of these locations:

Link 1
Link 2
Link 3


* IMPORTANT !!! Save ComboFix.exe to your Desktop

  • Disable your AntiVirus and AntiSpyware applications, usually via a right click on the System Tray icon. They may otherwise interfere with our tools

  • Double click on ComboFix.exe & follow the prompts.

  • As part of it's process, ComboFix will check to see if the Microsoft Windows Recovery Console is installed. With malware infections being as they are today, it's strongly recommended to have this pre-installed on your machine before doing any malware removal. It will allow you to boot up into a special recovery/repair mode that will allow us to more easily help you should your computer have a problem after an attempted removal of malware.

  • Follow the prompts to allow ComboFix to download and install the Microsoft Windows Recovery Console, and when prompted, agree to the End-User License Agreement to install the Microsoft Windows Recovery Console.

**Please note: If the Microsoft Windows Recovery Console is already installed, ComboFix will continue it's malware removal procedures.


Posted Image



Once the Microsoft Windows Recovery Console is installed using ComboFix, you should see the following message:

Posted Image


Click on Yes, to continue scanning for malware.

When finished, it shall produce a log for you. Please include the C:\ComboFix.txt in your next reply.
Please do not pm for help, post it in the forums instead.

If I am helping you and have not responded for 48 hours please send me a pm as I don't always get notifications.

My help is always free, however, if you would like to make a donation to me for the help I have provided please click here Posted Image

#5 rhett

rhett
  • Topic Starter

  • Members
  • 14 posts
  • OFFLINE
  •  
  • Local time:05:26 AM

Posted 19 November 2008 - 12:21 AM

Hey kha, does the combo fix take awhile? Its been sitting at the C:\ screen for bout 5 mins now.

#6 rhett

rhett
  • Topic Starter

  • Members
  • 14 posts
  • OFFLINE
  •  
  • Local time:05:26 AM

Posted 19 November 2008 - 12:50 AM

I believe my computer is already running faster after this fix.


========== PROCESSES ==========
Process explorer.exe killed successfully.
========== FILES ==========
DllUnregisterServer procedure not found in C:\WINDOWS\system32\efcBqnop.dll
C:\WINDOWS\system32\efcBqnop.dll NOT unregistered.
C:\WINDOWS\system32\efcBqnop.dll moved successfully.
DllUnregisterServer procedure not found in C:\WINDOWS\system32\mwgcls.dll
C:\WINDOWS\system32\mwgcls.dll NOT unregistered.
C:\WINDOWS\system32\mwgcls.dll moved successfully.
DllUnregisterServer procedure not found in C:\WINDOWS\system32\yufetipa.dll
C:\WINDOWS\system32\yufetipa.dll NOT unregistered.
C:\WINDOWS\system32\yufetipa.dll moved successfully.
DllUnregisterServer procedure not found in C:\WINDOWS\system32\jkkJbyvS.dll
C:\WINDOWS\system32\jkkJbyvS.dll NOT unregistered.
File move failed. C:\WINDOWS\system32\jkkJbyvS.dll scheduled to be moved on reboot.
DllUnregisterServer procedure not found in C:\WINDOWS\system32\vaketapa.dll
C:\WINDOWS\system32\vaketapa.dll NOT unregistered.
C:\WINDOWS\system32\vaketapa.dll moved successfully.
C:\WINDOWS\system32\qcntssdl.exe moved successfully.
C:\Documents and Settings\Justin\Application Data\Twain moved successfully.
C:\Documents and Settings\Justin\Application Data\gadcom moved successfully.
DllUnregisterServer procedure not found in C:\WINDOWS\system32\zufayoye.dll
C:\WINDOWS\system32\zufayoye.dll NOT unregistered.
C:\WINDOWS\system32\zufayoye.dll moved successfully.
File/Folder c:\windows\system32\hupetetu.dll not found.
DllUnregisterServer procedure not found in c:\windows\system32\epdkqk.dll
c:\windows\system32\epdkqk.dll NOT unregistered.
c:\windows\system32\epdkqk.dll moved successfully.
DllUnregisterServer procedure not found in c:\windows\system32\uqikvg.dll
c:\windows\system32\uqikvg.dll NOT unregistered.
c:\windows\system32\uqikvg.dll moved successfully.
DllUnregisterServer procedure not found in c:\windows\system32\efaryy.dll
c:\windows\system32\efaryy.dll NOT unregistered.
c:\windows\system32\efaryy.dll moved successfully.
File/Folder c:\windows\system32\mwgcls.dll not found.
DllUnregisterServer procedure not found in C:\WINDOWS\system32\nukamqmb.dll
C:\WINDOWS\system32\nukamqmb.dll NOT unregistered.
C:\WINDOWS\system32\nukamqmb.dll moved successfully.
DllUnregisterServer procedure not found in C:\WINDOWS\system32\cnmcodiu.dll
C:\WINDOWS\system32\cnmcodiu.dll NOT unregistered.
C:\WINDOWS\system32\cnmcodiu.dll moved successfully.
C:\WINDOWS\system32\ganmoevltx.exe moved successfully.
C:\WINDOWS\system32\g85.exe moved successfully.
DllUnregisterServer procedure not found in C:\WINDOWS\system32\ljJCuTLF.dll
C:\WINDOWS\system32\ljJCuTLF.dll NOT unregistered.
C:\WINDOWS\system32\ljJCuTLF.dll moved successfully.
DllUnregisterServer procedure not found in C:\WINDOWS\system32\ddcAsPFw.dll
C:\WINDOWS\system32\ddcAsPFw.dll NOT unregistered.
C:\WINDOWS\system32\ddcAsPFw.dll moved successfully.
C:\WINDOWS\system32\vemuolhazinp.exe moved successfully.
C:\WINDOWS\system32\sip moved successfully.
C:\WINDOWS\system32\im moved successfully.
C:\WINDOWS\system32\ed moved successfully.
C:\WINDOWS\system32\cdx moved successfully.
DllUnregisterServer procedure not found in C:\WINDOWS\system32\jkkJYOhE.dll
C:\WINDOWS\system32\jkkJYOhE.dll NOT unregistered.
C:\WINDOWS\system32\jkkJYOhE.dll moved successfully.
DllUnregisterServer procedure not found in C:\WINDOWS\system32\hgGwtqol.dll
C:\WINDOWS\system32\hgGwtqol.dll NOT unregistered.
C:\WINDOWS\system32\hgGwtqol.dll moved successfully.
C:\WINDOWS\faceback.exe moved successfully.
C:\WINDOWS\system32\prunnet.exe moved successfully.
DllUnregisterServer procedure not found in C:\WINDOWS\system32\xmudyrnb.dll
C:\WINDOWS\system32\xmudyrnb.dll NOT unregistered.
C:\WINDOWS\system32\xmudyrnb.dll moved successfully.
File/Folder C:\WINDOWS\system32\uqikvg.dll not found.
DllUnregisterServer procedure not found in C:\WINDOWS\system32\ajtgbigj.dll
C:\WINDOWS\system32\ajtgbigj.dll NOT unregistered.
C:\WINDOWS\system32\ajtgbigj.dll moved successfully.
File/Folder C:\Documents and Settings\Justin\Application Data\gadcom not found.
DllUnregisterServer procedure not found in C:\WINDOWS\system32\yayvwvWm.dll
C:\WINDOWS\system32\yayvwvWm.dll NOT unregistered.
C:\WINDOWS\system32\yayvwvWm.dll moved successfully.
DllUnregisterServer procedure not found in C:\WINDOWS\system32\ljJBQkkH.dll
C:\WINDOWS\system32\ljJBQkkH.dll NOT unregistered.
C:\WINDOWS\system32\ljJBQkkH.dll moved successfully.
DllUnregisterServer procedure not found in C:\WINDOWS\system32\ulpsinki.dll
C:\WINDOWS\system32\ulpsinki.dll NOT unregistered.
C:\WINDOWS\system32\ulpsinki.dll moved successfully.
File/Folder C:\WINDOWS\system32\epdkqk.dll not found.
DllUnregisterServer procedure not found in C:\WINDOWS\system32\cwtmvkua.dll
C:\WINDOWS\system32\cwtmvkua.dll NOT unregistered.
C:\WINDOWS\system32\cwtmvkua.dll moved successfully.
DllUnregisterServer procedure not found in C:\WINDOWS\system32\xgfqik.dll
C:\WINDOWS\system32\xgfqik.dll NOT unregistered.
C:\WINDOWS\system32\xgfqik.dll moved successfully.
DllUnregisterServer procedure not found in C:\WINDOWS\system32\wacpfuwu.dll
C:\WINDOWS\system32\wacpfuwu.dll NOT unregistered.
C:\WINDOWS\system32\wacpfuwu.dll moved successfully.
LoadLibrary failed for C:\WINDOWS\system32\ljqxfbjr.dll
C:\WINDOWS\system32\ljqxfbjr.dll NOT unregistered.
C:\WINDOWS\system32\ljqxfbjr.dll moved successfully.
DllUnregisterServer procedure not found in C:\WINDOWS\system32\rukksers.dll
C:\WINDOWS\system32\rukksers.dll NOT unregistered.
C:\WINDOWS\system32\rukksers.dll moved successfully.
DllUnregisterServer procedure not found in C:\WINDOWS\system32\uydcoq.dll
C:\WINDOWS\system32\uydcoq.dll NOT unregistered.
C:\WINDOWS\system32\uydcoq.dll moved successfully.
DllUnregisterServer procedure not found in C:\WINDOWS\system32\hxepbgbu.dll
C:\WINDOWS\system32\hxepbgbu.dll NOT unregistered.
C:\WINDOWS\system32\hxepbgbu.dll moved successfully.
C:\WINDOWS\system32\wini108025.exe moved successfully.
C:\WINDOWS\system32\alog.txt moved successfully.
LoadLibrary failed for C:\WINDOWS\system32\savec32.dll
C:\WINDOWS\system32\savec32.dll NOT unregistered.
C:\WINDOWS\system32\savec32.dll moved successfully.
C:\WINDOWS\system32\ekd.txt moved successfully.
LoadLibrary failed for C:\WINDOWS\system32\TDSSlxcp.dll
C:\WINDOWS\system32\TDSSlxcp.dll NOT unregistered.
C:\WINDOWS\system32\TDSSlxcp.dll moved successfully.
DllUnregisterServer procedure not found in C:\WINDOWS\system32\TDSScfmm.dll
C:\WINDOWS\system32\TDSScfmm.dll NOT unregistered.
C:\WINDOWS\system32\TDSScfmm.dll moved successfully.
DllUnregisterServer procedure not found in C:\WINDOWS\system32\hjqanpwd.dll
C:\WINDOWS\system32\hjqanpwd.dll NOT unregistered.
C:\WINDOWS\system32\hjqanpwd.dll moved successfully.
DllUnregisterServer procedure not found in C:\WINDOWS\system32\hbovec.dll
C:\WINDOWS\system32\hbovec.dll NOT unregistered.
C:\WINDOWS\system32\hbovec.dll moved successfully.
DllUnregisterServer procedure not found in C:\WINDOWS\system32\rdxnpuhu.dll
C:\WINDOWS\system32\rdxnpuhu.dll NOT unregistered.
C:\WINDOWS\system32\rdxnpuhu.dll moved successfully.
C:\WINDOWS\SnVzdGlu moved successfully.
File/Folder C:\Documents and Settings\Justin\Application Data\Twain not found.
C:\Program Files\Mjcore moved successfully.
DllUnregisterServer procedure not found in C:\WINDOWS\system32\fjcayd.dll
C:\WINDOWS\system32\fjcayd.dll NOT unregistered.
C:\WINDOWS\system32\fjcayd.dll moved successfully.
DllUnregisterServer procedure not found in C:\WINDOWS\system32\yeewruuk.dll
C:\WINDOWS\system32\yeewruuk.dll NOT unregistered.
C:\WINDOWS\system32\yeewruuk.dll moved successfully.
C:\WINDOWS\system32\3301b0cc-.txt moved successfully.
C:\WINDOWS\system32\ponqBcfe.ini moved successfully.
File/Folder C:\WINDOWS\system32\efcBqnop.dll not found.
DllUnregisterServer procedure not found in C:\WINDOWS\system32\xxyxVmkl.dll
C:\WINDOWS\system32\xxyxVmkl.dll NOT unregistered.
C:\WINDOWS\system32\xxyxVmkl.dll moved successfully.
DllUnregisterServer procedure not found in C:\WINDOWS\system32\jkkJbyvS.dll
C:\WINDOWS\system32\jkkJbyvS.dll NOT unregistered.
File move failed. C:\WINDOWS\system32\jkkJbyvS.dll scheduled to be moved on reboot.
C:\WINDOWS\~.exe moved successfully.
C:\WINDOWS\system32\cimimizeve.exe moved successfully.
LoadLibrary failed for C:\WINDOWS\system32\bywyc.dll
C:\WINDOWS\system32\bywyc.dll NOT unregistered.
C:\WINDOWS\system32\bywyc.dll moved successfully.
C:\WINDOWS\iwarevype.bat moved successfully.
C:\Documents and Settings\All Users\Application Data\zufusiw.vbs moved successfully.
C:\WINDOWS\vuralapat.bat moved successfully.
C:\Program Files\Common Files\zoxysa.bat moved successfully.
C:\Documents and Settings\Justin\Application Data\osewimo.com moved successfully.
C:\Program Files\Common Files\hawir.bat moved successfully.
LoadLibrary failed for C:\Documents and Settings\Justin\Application Data\qoha.dll
C:\Documents and Settings\Justin\Application Data\qoha.dll NOT unregistered.
C:\Documents and Settings\Justin\Application Data\qoha.dll moved successfully.
LoadLibrary failed for C:\Documents and Settings\Justin\Application Data\nefaqeze.dll
C:\Documents and Settings\Justin\Application Data\nefaqeze.dll NOT unregistered.
C:\Documents and Settings\Justin\Application Data\nefaqeze.dll moved successfully.
C:\Documents and Settings\Justin\Application Data\ezibojuz.com moved successfully.
C:\WINDOWS\system32\Ilkt0c82.exe.a_a moved successfully.
LoadLibrary failed for C:\WINDOWS\system32\Knmv6e58.dll
C:\WINDOWS\system32\Knmv6e58.dll NOT unregistered.
C:\WINDOWS\system32\Knmv6e58.dll moved successfully.
C:\WINDOWS\system32\wini10255.exe moved successfully.
C:\WINDOWS\system32\Ilkt0c82.exe moved successfully.
C:\WINDOWS\system32\36DWI3VQ.exe.a_a moved successfully.
C:\WINDOWS\system32\36DWI3VQ.exe moved successfully.
C:\WINDOWS\system32\uqjntprimt.dll unregistered successfully.
C:\WINDOWS\system32\uqjntprimt.dll moved successfully.
C:\Documents and Settings\All Users\Application Data\efiqur.bat moved successfully.
C:\WINDOWS\system32\wini10801.exe moved successfully.
C:\WINDOWS\brastk.exe moved successfully.
LoadLibrary failed for C:\WINDOWS\system32\TDSSespm.dll
C:\WINDOWS\system32\TDSSespm.dll NOT unregistered.
C:\WINDOWS\system32\TDSSespm.dll moved successfully.
DllUnregisterServer procedure not found in C:\WINDOWS\system32\TDSSxjfu.dll
C:\WINDOWS\system32\TDSSxjfu.dll NOT unregistered.
C:\WINDOWS\system32\TDSSxjfu.dll moved successfully.
DllUnregisterServer procedure not found in C:\WINDOWS\system32\TDSSugxy.dll
C:\WINDOWS\system32\TDSSugxy.dll NOT unregistered.
C:\WINDOWS\system32\TDSSugxy.dll moved successfully.
C:\Program Files\Coupons moved successfully.
File/Folder C:\WINDOWS\system32\dbsqkjkt.exe not found.
C:\WINDOWS\tasks\At1.job moved successfully.
C:\WINDOWS\tasks\At10.job moved successfully.
C:\WINDOWS\tasks\At11.job moved successfully.
C:\WINDOWS\tasks\At12.job moved successfully.
C:\WINDOWS\tasks\At13.job moved successfully.
C:\WINDOWS\tasks\At14.job moved successfully.
C:\WINDOWS\tasks\At15.job moved successfully.
C:\WINDOWS\tasks\At16.job moved successfully.
C:\WINDOWS\tasks\At17.job moved successfully.
C:\WINDOWS\tasks\At18.job moved successfully.
C:\WINDOWS\tasks\At19.job moved successfully.
C:\WINDOWS\tasks\At2.job moved successfully.
C:\WINDOWS\tasks\At20.job moved successfully.
C:\WINDOWS\tasks\At21.job moved successfully.
C:\WINDOWS\tasks\At22.job moved successfully.
C:\WINDOWS\tasks\At23.job moved successfully.
C:\WINDOWS\tasks\At24.job moved successfully.
C:\WINDOWS\tasks\At25.job moved successfully.
C:\WINDOWS\tasks\At26.job moved successfully.
C:\WINDOWS\tasks\At27.job moved successfully.
C:\WINDOWS\tasks\At28.job moved successfully.
C:\WINDOWS\tasks\At29.job moved successfully.
C:\WINDOWS\tasks\At3.job moved successfully.
C:\WINDOWS\tasks\At30.job moved successfully.
C:\WINDOWS\tasks\At31.job moved successfully.
C:\WINDOWS\tasks\At32.job moved successfully.
C:\WINDOWS\tasks\At33.job moved successfully.
C:\WINDOWS\tasks\At34.job moved successfully.
C:\WINDOWS\tasks\At35.job moved successfully.
C:\WINDOWS\tasks\At36.job moved successfully.
C:\WINDOWS\tasks\At37.job moved successfully.
C:\WINDOWS\tasks\At38.job moved successfully.
C:\WINDOWS\tasks\At39.job moved successfully.
C:\WINDOWS\tasks\At4.job moved successfully.
C:\WINDOWS\tasks\At40.job moved successfully.
C:\WINDOWS\tasks\At41.job moved successfully.
C:\WINDOWS\tasks\At42.job moved successfully.
C:\WINDOWS\tasks\At43.job moved successfully.
C:\WINDOWS\tasks\At44.job moved successfully.
C:\WINDOWS\tasks\At45.job moved successfully.
C:\WINDOWS\tasks\At46.job moved successfully.
C:\WINDOWS\tasks\At47.job moved successfully.
C:\WINDOWS\tasks\At48.job moved successfully.
C:\WINDOWS\tasks\At5.job moved successfully.
C:\WINDOWS\tasks\At6.job moved successfully.
C:\WINDOWS\tasks\At7.job moved successfully.
C:\WINDOWS\tasks\At8.job moved successfully.
C:\WINDOWS\tasks\At9.job moved successfully.
C:\Documents and Settings\Justin\Start Menu\Programs\Startup\Deewoo.lnk moved successfully.
========== REGISTRY ==========
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\\"AppInit_DLLS"|"" /E : value set successfully!
========== COMMANDS ==========
File delete failed. C:\DOCUME~1\Justin\LOCALS~1\Temp\msi_setup\3964.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\Justin\LOCALS~1\Temp\JET6349.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\Justin\LOCALS~1\Temp\~DF110F.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\Justin\LOCALS~1\Temp\~DF111A.tmp scheduled to be deleted on reboot.
User's Temp folder emptied.
User's Temporary Internet Files folder emptied.
User's Internet Explorer cache folder emptied.
Local Service Temp folder emptied.
File delete failed. C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat scheduled to be deleted on reboot.
Local Service Temporary Internet Files folder emptied.
Windows Temp folder emptied.
Java cache emptied.
Temp folders emptied.
Explorer started successfully

OTMoveIt3 by OldTimer - Version 1.0.7.1 log created on 11182008_230942

Files moved on Reboot...
DllUnregisterServer procedure not found in C:\WINDOWS\system32\jkkJbyvS.dll
C:\WINDOWS\system32\jkkJbyvS.dll NOT unregistered.
File move failed. C:\WINDOWS\system32\jkkJbyvS.dll scheduled to be moved on reboot.
File move failed. C:\DOCUME~1\Justin\LOCALS~1\Temp\msi_setup\3964.tmp scheduled to be moved on reboot.
File move failed. C:\DOCUME~1\Justin\LOCALS~1\Temp\JET6349.tmp scheduled to be moved on reboot.
C:\DOCUME~1\Justin\LOCALS~1\Temp\~DF110F.tmp moved successfully.
C:\DOCUME~1\Justin\LOCALS~1\Temp\~DF111A.tmp moved successfully.
File move failed. C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat scheduled to be moved on reboot.

Files moved on Reboot...
DllUnregisterServer procedure not found in C:\WINDOWS\system32\jkkJbyvS.dll
C:\WINDOWS\system32\jkkJbyvS.dll NOT unregistered.
File move failed. C:\WINDOWS\system32\jkkJbyvS.dll scheduled to be moved on reboot.
File move failed. C:\DOCUME~1\Justin\LOCALS~1\Temp\msi_setup\3964.tmp scheduled to be moved on reboot.
File move failed. C:\DOCUME~1\Justin\LOCALS~1\Temp\JET6349.tmp scheduled to be moved on reboot.
File C:\DOCUME~1\Justin\LOCALS~1\Temp\~DF110F.tmp not found!
File C:\DOCUME~1\Justin\LOCALS~1\Temp\~DF111A.tmp not found!
File move failed. C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat scheduled to be moved on reboot.

















ComboFix 08-11-18.04 - Justin 2008-11-18 23:35:27.1 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.1650 [GMT -6:00]
Running from: c:\documents and settings\Justin\Desktop\ComboFix.exe
* Created a new restore point
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

C:\bold.log
c:\documents and settings\All Users\Application Data\salesmonitor
c:\documents and settings\Justin\Application Data\DriveCleaner Free
c:\documents and settings\Justin\Application Data\DriveCleaner Free\Logs\update.log
c:\documents and settings\Justin\Application Data\SpeedRunner
c:\documents and settings\Justin\Application Data\SpeedRunner\config.cfg
c:\documents and settings\Justin\Local Settings\Temporary Internet Files\bestwiner.stt
c:\documents and settings\Justin\Local Settings\Temporary Internet Files\fbk.sts
c:\documents and settings\Justin\ResErrors.log
c:\documents and settings\NetworkService\Application Data\gadcom
c:\documents and settings\NetworkService\Local Settings\Application Data\Microsoft\Windows Media\10.0\WMSDKNSD.XML
c:\documents and settings\NetworkService\Local Settings\Temporary Internet Files\CPV.stt
c:\documents and settings\NetworkService\Local Settings\Temporary Internet Files\fbk.sts
c:\program files\Common\helper.dll
c:\program files\Common\helper.sig
c:\program files\winpop
c:\temp\tn3
C:\userinit.exe
c:\windows\cookies.ini
c:\windows\Fonts\acrsecB.fon
c:\windows\Fonts\acrsecI.fon
c:\windows\hosts
c:\windows\retadpu.exe.bin
c:\windows\system32\AaIjknpo.ini
c:\windows\system32\AaIjknpo.ini2
c:\windows\system32\aappyqqq.ini
c:\windows\system32\abadd.bak1
c:\windows\system32\abadd.bak2
c:\windows\system32\abadd.ini
c:\windows\system32\abadd.ini2
c:\windows\system32\abadd.tmp
c:\windows\system32\adnvxryy.ini
c:\windows\system32\ajuvtswd.ini
c:\windows\system32\av.dat
c:\windows\system32\bocnvves.ini
c:\windows\system32\boeexacf.ini
c:\windows\system32\byhbbtlh.ini
c:\windows\system32\cmycixtt.ini
c:\windows\system32\cpbxsbrj.ini
c:\windows\system32\crkcrpee.ini
c:\windows\system32\crpthkul.ini
c:\windows\system32\cscwiela.ini
c:\windows\system32\csjchcif.ini
c:\windows\system32\dgwmiwdu.ini
c:\windows\system32\docoakun.ini
c:\windows\system32\dpykcjyq.ini
c:\windows\system32\drivers\services.exe
c:\windows\system32\Drivers\TDSSjull.sys
c:\windows\system32\drivers\tdssserv.sys
c:\windows\system32\dumxltjm.ini
c:\windows\system32\ebybwisc.dll
c:\windows\system32\eoixqgjs.ini
c:\windows\system32\erjwufbd.ini
c:\windows\system32\espxpovm.ini
c:\windows\system32\fbvjebnh.ini
c:\windows\system32\fcicrtes.ini
c:\windows\system32\fnkrusfe.ini
c:\windows\system32\foakmlvm.ini
c:\windows\system32\fsdsolqr.ini
c:\windows\system32\gasowihu.dll
c:\windows\system32\gfofuplw.ini
c:\windows\system32\gjtgvabn.ini
c:\windows\system32\gotguotc.ini
c:\windows\system32\gqwbtawr.ini
c:\windows\system32\gtsjfwfe.ini
c:\windows\system32\hinujeta.dll
c:\windows\system32\hjrcxvys.ini
c:\windows\system32\hkjfulau.ini
c:\windows\system32\hlsigfbr.ini
c:\windows\system32\hxpbbjmj.ini
c:\windows\system32\iachuxbs.ini
c:\windows\system32\igapbcpu.ini
c:\windows\system32\jkkJbyvS.dll
c:\windows\system32\jpbvojrg.ini
c:\windows\system32\k86.bin
c:\windows\system32\kbvkesrl.ini
c:\windows\system32\kdobfqrj.ini
c:\windows\system32\ketjksvh.ini
c:\windows\system32\kgefkhon.ini
c:\windows\system32\krruwcjq.ini
c:\windows\system32\kxlghqfl.ini
c:\windows\system32\lahitsgq.ini
c:\windows\system32\lstqboij.ini
c:\windows\system32\mcrh.tmp
c:\windows\system32\mhbbgtle.ini
c:\windows\system32\mlymkgjj.ini
c:\windows\system32\moigkeet.ini
c:\windows\system32\momteytl.ini
c:\windows\system32\mozobasu.dll
c:\windows\system32\msansspc.dll
c:\windows\system32\MSINET.oca
c:\windows\system32\mst120.dll
c:\windows\system32\nhiwkcbc.ini
c:\windows\system32\o02PrEz
c:\windows\system32\ogbbpwrs.ini
c:\windows\system32\ogimxymb.ini
c:\windows\system32\ohifjcxw.ini
c:\windows\system32\ohvpwxre.ini
c:\windows\system32\ohxfwkls.ini
c:\windows\system32\opeciwus.ini
c:\windows\system32\opnkjIaA.dll
c:\windows\system32\ponqBcfe.ini2
c:\windows\system32\poobnmcv.ini
c:\windows\system32\prlcedrv.dll
c:\windows\system32\pxnpyvpg.ini
c:\windows\system32\qochupov.ini
c:\windows\system32\qxkqfswl.ini
c:\windows\system32\qxpjdcbp.ini
c:\windows\system32\reset5e.dll
c:\windows\system32\rfchcout.ini
c:\windows\system32\rfdyllea.ini
c:\windows\system32\rqsaitgv.ini
c:\windows\system32\rtqqiqjn.ini
c:\windows\system32\S2
c:\windows\system32\S3
c:\windows\system32\S4
c:\windows\system32\S5
c:\windows\system32\S9
c:\windows\system32\skitgeko.ini
c:\windows\system32\sukkvyya.ini
c:\windows\system32\TDSSadw.dll
c:\windows\system32\tdssl.dll
c:\windows\system32\TDSSlog.dll
c:\windows\system32\TDSSmain.dll
c:\windows\system32\TDSSqswu.dat
c:\windows\system32\tdssservers.dat
c:\windows\system32\tjgxncmq.ini
c:\windows\system32\touaxshe.ini
c:\windows\system32\tuoncvgx.ini
c:\windows\system32\uaoetuoo.ini
c:\windows\system32\uhougbmg.ini
c:\windows\system32\uiyvxbqy.ini
c:\windows\system32\wetcqkfq.ini
c:\windows\system32\win
c:\windows\system32\winpfz33.sys
c:\windows\system32\wpotlypg.ini
c:\windows\system32\wsiqdres.ini
c:\windows\system32\wuismixq.ini
c:\windows\system32\xmyiwaci.ini
c:\windows\system32\xwxyqxbl.ini
c:\windows\system32\xxsadxla.ini
c:\windows\system32\ygpmrukx.ini
c:\windows\system32\yhlptujg.ini
c:\windows\system32\yjdgcqdh.ini
c:\windows\system32\yvmlrx.dll
c:\windows\system32\zxdnt3d.cfg
c:\windows\wiaserviv.log

.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.

-------\Legacy_CMDSERVICE
-------\Legacy_DOMAINSERVICE
-------\Legacy_NETWORK_MONITOR
-------\Service_DomainService


((((((((((((((((((((((((( Files Created from 2008-10-19 to 2008-11-19 )))))))))))))))))))))))))))))))
.

2008-11-18 23:09 . 2008-11-18 23:09 <DIR> d-------- C:\_OTMoveIt
2008-11-18 20:57 . 2008-11-18 20:57 <DIR> d-------- C:\rsit
2008-11-18 20:30 . 2008-11-18 20:30 <DIR> d-------- c:\program files\Ventrilo
2008-11-18 20:30 . 2008-11-18 20:30 262 --a------ c:\windows\{789289CA-F73A-4A16-A331-54D498CE069F}_WiseFW.ini
2008-11-18 17:03 . 2008-11-18 17:03 <DIR> d-------- c:\documents and settings\LocalService\Application Data\Roxio
2008-11-18 17:03 . 2008-11-18 17:26 <DIR> d-------- c:\documents and settings\Justin\Application Data\Roxio
2008-11-18 16:58 . 2008-11-18 17:00 <DIR> d-------- c:\windows\system32\DLA
2008-11-18 16:58 . 2008-11-18 16:58 <DIR> d-------- c:\program files\Common Files\SureThing Shared
2008-11-18 16:58 . 2008-11-18 16:58 <DIR> d-------- c:\documents and settings\All Users\Application Data\Sonic
2008-11-18 16:58 . 2006-10-25 08:22 99,816 --a------ c:\windows\system32\drivers\DRVMCDB.SYS
2008-11-18 16:58 . 2006-11-01 08:58 92,920 --a------ c:\windows\DLA.EXE
2008-11-18 16:58 . 2006-11-01 08:58 56,056 --a------ c:\windows\system32\DLAAPI_W.DLL
2008-11-18 16:58 . 2006-09-15 09:42 51,768 --a------ c:\windows\system32\drivers\DRVNDDM.SYS
2008-11-18 16:58 . 2006-09-15 09:45 28,184 --a------ c:\windows\system32\drivers\DLARTL_M.SYS
2008-11-18 16:58 . 2006-09-15 09:45 12,920 --a------ c:\windows\system32\drivers\DLACDBHM.SYS
2008-11-18 16:55 . 2008-11-18 16:55 <DIR> d-------- c:\documents and settings\All Users\Application Data\Roxio
2008-11-18 16:54 . 2008-11-18 16:58 <DIR> d-------- c:\program files\Roxio
2008-11-18 16:54 . 2008-11-18 16:57 <DIR> d-------- c:\program files\Common Files\Roxio Shared
2008-11-17 20:06 . 2008-11-17 20:06 <DIR> d--h----- c:\windows\system32\GroupPolicy
2008-11-17 20:00 . 2008-11-17 20:00 <DIR> d-------- c:\documents and settings\NetworkService\Application Data\IUpd721
2008-11-17 19:55 . 2008-11-17 19:55 <DIR> d-------- c:\documents and settings\NetworkService\Application Data\NI.GSCNS
2008-11-17 18:36 . 2008-11-16 19:36 8,512 --a------ c:\windows\system32\drivers\LMouKE.Sys
2008-11-16 20:00 . 2008-11-18 23:22 7 --a------ c:\windows\system32\tmcontrol.bin
2008-11-16 19:36 . 2008-11-16 19:36 22,137 --a------ c:\windows\system32\swapdm.dll
2008-11-16 19:36 . 2008-11-16 19:36 8,512 --a------ c:\windows\system32\swapm.sys
2008-11-16 19:32 . 2008-11-16 19:32 26,624 --a------ c:\documents and settings\Justin\~.exe
2008-11-16 19:10 . 2008-11-16 19:10 192,512 --a------ c:\windows\system32\kdfvmgr.exe
2008-11-16 19:10 . 2008-11-16 19:10 77,824 --a------ c:\windows\system32\kdfapi.dll
2008-11-16 12:29 . 2008-11-16 12:29 <DIR> d-------- c:\documents and settings\All Users\Application Data\Yahoo! Companion
2008-11-16 10:29 . 2008-11-16 10:29 <DIR> d-------- c:\program files\CCleaner
2008-11-15 13:52 . 2008-11-16 20:00 <DIR> d-------- c:\program files\Spybot - Search & Destroy
2008-11-15 13:52 . 2008-11-18 18:41 <DIR> d-------- c:\documents and settings\All Users\Application Data\Spybot - Search & Destroy
2008-11-15 00:54 . 2008-11-15 08:46 <DIR> d-------- c:\documents and settings\All Users\Application Data\Trend Micro
2008-11-15 00:54 . 2008-11-15 00:52 49,680 --a------ c:\windows\system32\drivers\tmevtmgr.sys
2008-11-15 00:53 . 2008-11-18 19:37 <DIR> d-------- c:\program files\Trend Micro
2008-11-15 00:52 . 2008-11-15 00:52 661,808 --a------ c:\windows\system32\UfWSC.cpl
2008-11-14 19:39 . 2008-11-14 19:39 527 --a------ c:\windows\system32\TDSSmtve.dat
2008-11-14 19:38 . 2008-11-16 19:36 54,156 --ah----- c:\windows\QTFont.qfn
2008-11-14 19:38 . 2008-11-14 19:38 1,409 --a------ c:\windows\QTFont.for
2008-11-13 18:00 . 2008-11-15 01:46 <DIR> d-------- c:\program files\Webtools
2008-11-12 17:27 . 2008-11-12 17:27 303 --a------ c:\windows\ST6UNST.000
2008-11-08 07:38 . 2008-11-13 19:25 <DIR> d-------- c:\windows\system32\Service
2008-11-08 06:26 . 2008-04-13 18:11 32,768 --a------ c:\windows\system32\dllcache\ativtmxx.dll
2008-11-08 06:26 . 2008-04-13 18:11 32,768 --a------ c:\windows\system32\ativtmxx.dll
2008-11-08 06:26 . 2008-04-13 18:12 23,040 --a------ c:\windows\system32\dllcache\ativmvxx.ax
2008-11-08 06:26 . 2008-04-13 18:12 23,040 --a------ c:\windows\system32\ativmvxx.ax
2008-11-08 06:26 . 2008-04-13 18:12 9,728 --a------ c:\windows\system32\dllcache\ativdaxx.ax
2008-11-08 06:26 . 2008-04-13 18:12 9,728 --a------ c:\windows\system32\ativdaxx.ax
2008-11-07 20:23 . 2008-11-15 13:34 16,384 --a------ c:\windows\DCEBoot.exe
2008-11-07 19:59 . 2008-11-07 20:04 <DIR> d-------- c:\windows\SxsCaPendDel
2008-11-05 23:12 . 2008-11-06 18:34 <DIR> d-------- c:\program files\Spyware Doctor
2008-11-05 23:12 . 2008-11-18 23:40 <DIR> d-a------ c:\documents and settings\All Users\Application Data\TEMP
2008-11-05 23:08 . 2008-11-05 23:08 <DIR> d-------- c:\documents and settings\All Users\Application Data\SITEguard
2008-11-05 23:04 . 2008-11-05 23:04 <DIR> d-------- c:\program files\Common Files\iS3
2008-11-05 23:04 . 2008-11-07 19:58 <DIR> d-------- c:\documents and settings\All Users\Application Data\STOPzilla!
2008-11-05 22:41 . 2008-11-05 22:48 <DIR> d-------- c:\documents and settings\Crystal\.housecall6.6
2008-11-05 21:27 . 2008-11-05 21:27 <DIR> d-------- c:\documents and settings\Crystal\Application Data\Ventrilo
2008-11-05 20:12 . 2008-11-15 05:42 <DIR> d-------- c:\documents and settings\Justin\.housecall6.6
2008-11-05 20:12 . 2005-04-13 03:48 49,265 --a------ c:\windows\system32\jpicpl32.cpl
2008-11-05 20:11 . 2008-11-05 20:12 <DIR> d-------- c:\program files\Java
2008-11-05 20:11 . 2008-11-05 20:11 <DIR> d-------- c:\program files\Common Files\Java
2008-11-05 19:34 . 2008-11-05 19:34 19,427 --a------ c:\windows\alijikafud.inf
2008-11-05 19:34 . 2008-11-05 19:34 19,246 --a------ c:\windows\ygyp.pif
2008-11-05 19:34 . 2008-11-05 19:34 18,278 --a------ c:\documents and settings\All Users\Application Data\sevory.bin
2008-11-05 19:34 . 2008-11-05 19:34 17,089 --a------ c:\windows\ybyqyjep.db
2008-11-05 19:34 . 2008-11-05 19:34 16,777 --a------ c:\windows\ocyxijed.pif
2008-11-05 19:34 . 2008-11-05 19:34 11,326 --a------ c:\windows\system32\enefinyxyl.bin
2008-11-05 18:16 . 2008-11-18 23:35 <DIR> d-------- c:\program files\Common
2008-11-03 18:38 . 2008-11-03 18:38 <DIR> d-------- c:\windows\system32\scripting
2008-11-03 18:38 . 2008-11-03 18:38 <DIR> d-------- c:\windows\system32\en
2008-11-03 18:38 . 2008-11-03 18:38 <DIR> d-------- c:\windows\system32\bits
2008-11-03 18:38 . 2008-11-03 18:38 <DIR> d-------- c:\windows\l2schemas
2008-11-03 18:37 . 2008-11-03 18:37 <DIR> d-------- c:\windows\ServicePackFiles
2008-11-03 17:45 . 2008-11-03 17:45 18,969 --a------ c:\windows\system32\fypymo._dl
2008-11-03 17:45 . 2008-11-03 17:45 18,874 --a------ c:\program files\Common Files\urego.reg
2008-11-03 17:45 . 2008-11-03 17:45 17,830 --a------ c:\documents and settings\All Users\Application Data\qotibaco.reg
2008-11-03 17:45 . 2008-11-03 17:45 17,468 --a------ c:\windows\jocezoz.sys
2008-11-03 17:45 . 2008-11-03 17:45 17,116 --a------ c:\program files\Common Files\ekinu.dat
2008-11-03 17:45 . 2008-11-03 17:45 13,060 --a------ c:\windows\system32\viwegecip.bin
2008-11-03 17:45 . 2008-11-03 17:45 12,132 --a------ c:\program files\Common Files\usukuwohy.bin
2008-11-03 17:45 . 2008-11-03 17:45 10,857 --a------ c:\windows\akuhefuj.ban
2008-11-03 04:02 . 2008-11-03 04:02 <DIR> d-------- c:\documents and settings\NetworkService\Application Data\AdobeUM
2008-10-29 17:26 . 2008-10-29 17:26 18,659 --a------ c:\documents and settings\All Users\Application Data\cyly.bin
2008-10-29 17:26 . 2008-10-29 17:26 14,058 --a------ c:\documents and settings\All Users\Application Data\rawufyp.dat
2008-10-29 17:26 . 2008-10-29 17:26 12,996 --a------ c:\documents and settings\All Users\Application Data\ofuj.scr
2008-10-26 13:01 . 2008-10-26 13:01 <DIR> d-------- c:\documents and settings\Crystal\Application Data\ATI
2008-10-24 02:58 . 2008-10-15 10:34 337,408 --------- c:\windows\system32\dllcache\netapi32.dll

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-11-19 05:40 --------- d-----w c:\program files\Dl_cats
2008-11-19 02:32 --------- d-----w c:\documents and settings\Justin\Application Data\Ventrilo
2008-11-19 02:30 --------- d-----w c:\program files\Common Files\Wise Installation Wizard
2008-11-18 22:57 --------- d-----w c:\program files\Common Files\Sonic Shared
2008-11-17 23:59 --------- d-----w c:\program files\Lavasoft
2008-11-17 01:48 --------- d-----w c:\program files\UniUploader
2008-11-17 01:48 --------- d-----w c:\documents and settings\All Users\Application Data\GTek
2008-11-17 01:47 --------- d-----w c:\program files\Sonic
2008-11-16 16:29 --------- d-----w c:\program files\Yahoo!
2008-11-14 01:23 --------- d-----w c:\program files\World of Warcraft
2008-11-08 13:08 --------- d--h--w c:\program files\InstallShield Installation Information
2008-11-08 13:08 --------- d-----w c:\program files\Electronic Arts
2008-11-08 13:03 --------- d-----w c:\documents and settings\Justin\Application Data\Skype
2008-11-08 12:26 --------- d-----w c:\program files\ATI Technologies
2008-11-06 00:42 --------- d-----w c:\documents and settings\All Users\Application Data\Lavasoft
2008-11-04 00:25 --------- d-----w c:\program files\DivX
2008-10-16 05:58 --------- d-----w c:\documents and settings\All Users\Application Data\Blizzard
2008-09-29 23:26 --------- d-----w c:\program files\EA Games
2008-09-29 01:51 --------- d-----w c:\documents and settings\Justin\Application Data\ATI
2008-09-29 01:51 --------- d-----w c:\documents and settings\All Users\Application Data\ATI
2008-09-28 21:57 --------- d-----w c:\program files\Intel
2008-09-28 19:22 --------- d-----w c:\program files\Logitech
2008-09-28 19:13 --------- d-----w c:\program files\Octoshape Streaming Services
2008-09-28 19:05 --------- d--h--w c:\documents and settings\Justin\Application Data\Gtek
2008-09-28 19:05 --------- d--h--w c:\documents and settings\Crystal\Application Data\Gtek
2008-09-28 19:05 --------- d-----w c:\documents and settings\Administrator\Application Data\Gtek
2008-09-28 19:01 --------- d-----w c:\documents and settings\Justin\Application Data\MSNInstaller
2008-09-28 19:00 --------- d-----w c:\documents and settings\All Users\Application Data\Yahoo!
2008-09-28 18:59 --------- d-----w c:\program files\Common Files\Scanner
2008-09-28 18:49 --------- d-----w c:\program files\Common Files\Intuit
2008-09-27 04:19 --------- d-----w c:\program files\Digital Line Detect
2008-09-24 02:10 --------- d-----w c:\documents and settings\Justin\Application Data\Corel
2008-09-24 02:03 --------- d-----w c:\documents and settings\All Users\Application Data\WinZipSE
.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2008-04-13 15360]
"OE"="c:\program files\Trend Micro\Internet Security\TMAS_OE\TMAS_OEMon.exe" [2008-11-15 497008]
"RegistryMechanic"="c:\program files\Registry Mechanic\RegMech.exe" [2008-07-08 2828184]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Zboard"="c:\program files\Ideazon\ZEngine\Zboard.exe" [2008-06-27 53248]
"UfSeAgnt.exe"="c:\program files\Trend Micro\Internet Security\UfSeAgnt.exe" [2008-11-15 970808]
"QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2007-10-24 98304]
"DLCDCATS"="c:\windows\System32\spool\DRIVERS\W32X86\3\DLCDtime.dll" [2005-06-07 69632]
"SigmatelSysTrayApp"="stsystra.exe" [2005-03-22 c:\windows\stsystra.exe]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"OE"="c:\program files\Trend Micro\Internet Security\TMAS_OE\TMAS_OEMon.exe" [2008-11-15 497008]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"FlashPlayerUpdate"="c:\windows\system32\Macromed\Flash\FlashUtil9f.exe" [2008-03-24 218496]

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"ForceClassicControlPanel"= 1 (0x1)

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\swapdm]
2008-11-16 19:36 22137 c:\windows\system32\swapdm.dll

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=c:\windows\system32\zufayoye.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\LMouKE.Sys]
@="Driver"

[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusDisableNotify"=dword:00000001
"UpdatesDisableNotify"=dword:00000001

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\WINDOWS\\system32\\winlogon.exe"=
"c:\\Program Files\\Ventrilo\\Ventrilo.exe"=

R0 tfoxrcoc;tfoxrcoc;c:\windows\system32\drivers\qkafogpd.dat []
R1 DLARTL_M;DLARTL_M;c:\windows\system32\Drivers\DLARTL_M.SYS [2008-11-18 28184]
R3 Alpham1;Ideazon Merc USB Human Interface Device;c:\windows\system32\DRIVERS\Alpham1.sys [2007-07-23 42624]
R3 Alpham2;Ideazon Merc MM USB Human Interface Device;c:\windows\system32\DRIVERS\Alpham2.sys [2007-03-20 18432]
R3 dlcd_device;dlcd_device;c:\windows\system32\dlcdcoms.exe -service []
S3 Alpham;Ideazon Merc Composite Keyboard Driver;c:\windows\system32\DRIVERS\Alpham.sys [2005-12-04 34944]
S3 ICAM3NT5;Intel USB Video Camera III;c:\windows\system32\Drivers\Icam3.sys [2007-07-13 141056]
S3 NAL;Nal Service ;\??\c:\windows\system32\Drivers\iqvw32.sys [2008-07-29 30816]
.
- - - - ORPHANS REMOVED - - - -

BHO-{173D8134-AB44-4D60-8F15-521FDBF10584} - (no file)
BHO-{355932CF-6DC3-4854-AA0A-2A1C269DEC2B} - c:\windows\system32\opnkjIaA.dll
BHO-{3887FDBF-A9A4-423F-B315-7613F587096D} - c:\windows\system32\avwa.dll
BHO-{5C3CC654-AB97-47A5-83E0-AE9E9ABC9279} - c:\windows\system32\efcBqnop.dll
BHO-{5dddfd1b-954a-4b48-9cd0-0247b54fe1a3} - c:\windows\system32\mwgcls.dll
BHO-{62257d28-5962-4238-af41-c06ef009d950} - c:\windows\system32\yvmlrx.dll
BHO-{9ea16949-73fa-45a1-ab70-84891d81bd3e} - c:\windows\system32\yufetipa.dll
BHO-{B02671F0-5ED3-4852-85E1-B978D539C72D} - (no file)
HKLM-Run-negizufoyo - c:\windows\system32\vaketapa.dll
Notify-ddaba - c:\windows\system32\ddaba.dll


.
------- Supplementary Scan -------
.
uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
uStart Page = hxxp://www.google.com/
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
Handler: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - c:\program files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll

- c:\windows\Downloaded Program Files\smsx.inf

O16 -: {7D4733C0-C43B-4A81-AF43-F9B20D1F8348} - hxxp://www.octoshape.com/test/ax/octoshape.cab
c:\windows\Downloaded Program Files\octoshape.inf
.

**************************************************************************

catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-11-18 23:40:23
Windows 5.1.2600 Service Pack 3 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

HKLM\Software\Microsoft\Windows\CurrentVersion\Run
DLCDCATS = rundll32 c:\windows\System32\spool\DRIVERS\W32X86\3\DLCDtime.dll,_RunDLLEntry@16???????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????

scanning hidden files ...

scan completed successfully
hidden files: 0

**************************************************************************

[HKEY_LOCAL_MACHINE\System\ControlSet004\Services\tfoxrcoc]
"ImagePath"="system32\drivers\qkafogpd.dat"
.
------------------------ Other Running Processes ------------------------
.
c:\program files\Lavasoft\Ad-Aware\aawservice.exe
c:\windows\ehome\ehRecvr.exe
c:\windows\ehome\ehSched.exe
c:\program files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
c:\windows\system32\dllhost.exe
c:\windows\system32\dlcdcoms.exe
.
**************************************************************************
.
Completion time: 2008-11-18 23:44:05 - machine was rebooted
ComboFix-quarantined-files.txt 2008-11-19 05:44:01

Pre-Run: 117,837,983,744 bytes free
Post-Run: 118,792,466,432 bytes free

WindowsXP-KB310994-SP2-Pro-BootDisk-ENU.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(2)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
multi(0)disk(0)rdisk(0)partition(2)\WINDOWS="Windows XP Media Center Edition" /fastdetect /NoExecute=OptIn

389 --- E O F --- 2008-11-05 09:00:40

#7 kahdah

kahdah

  • Security Colleague
  • 11,138 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Florida
  • Local time:07:26 AM

Posted 19 November 2008 - 07:26 AM

1. Please open Notepad
  • Click Start , then Run
  • type in notepad in the Run Box then hit ok.
2. Now copy/paste the entire content of the codebox below into the Notepad window:

Driver::
tfoxrcoc

File::
c:\windows\system32\drivers\qkafogpd.dat 
c:\documents and settings\Justin\~.exe
c:\windows\system32\TDSSmtve.dat
c:\windows\alijikafud.inf
c:\windows\ygyp.pif
c:\documents and settings\All Users\Application Data\sevory.bin
c:\windows\ybyqyjep.db
c:\windows\ocyxijed.pif
c:\windows\system32\enefinyxyl.bin
c:\windows\system32\fypymo._dl
c:\program files\Common Files\urego.reg
c:\documents and settings\All Users\Application Data\qotibaco.reg
c:\windows\jocezoz.sys
c:\program files\Common Files\ekinu.dat
c:\windows\system32\viwegecip.bin
c:\program files\Common Files\usukuwohy.bin
c:\windows\akuhefuj.ban
c:\documents and settings\All Users\Application Data\cyly.bin
c:\documents and settings\All Users\Application Data\rawufyp.dat
c:\documents and settings\All Users\Application Data\ofuj.scr
c:\windows\system32\swapdm.dll
c:\windows\system32\zufayoye.dll

Registry::
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\swapdm]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=""

Folder::
c:\documents and settings\NetworkService\Application Data\IUpd721
c:\documents and settings\NetworkService\Application Data\NI.GSCNS


3. Save the above as CFScript.txt

4. Then drag the CFScript.txt into ComboFix.exe as depicted in the animation below. This will start ComboFix again.

Posted Image


5. After reboot, (in case it asks to reboot), please post the following reports/logs into your next reply:
  • Combofix.txt
  • A new HijackThis log.

Please do not pm for help, post it in the forums instead.

If I am helping you and have not responded for 48 hours please send me a pm as I don't always get notifications.

My help is always free, however, if you would like to make a donation to me for the help I have provided please click here Posted Image

#8 rhett

rhett
  • Topic Starter

  • Members
  • 14 posts
  • OFFLINE
  •  
  • Local time:05:26 AM

Posted 19 November 2008 - 08:44 PM

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 7:44:19 PM, on 11/19/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16735)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\iaantmon.exe
C:\Program Files\Ideazon\ZEngine\Zboard.exe
C:\Program Files\QuickTime\qttask.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Trend Micro\Internet Security\TMAS_OE\TMAS_OEMon.exe
C:\Program Files\Registry Mechanic\RegMech.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\dlcdcoms.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\explorer.exe
C:\WINDOWS\system32\notepad.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
O2 - BHO: (no name) - {3887FDBF-A9A4-423F-B315-7613F587096D} - C:\WINDOWS\system32\avwa.dll (file missing)
O3 - Toolbar: (no name) - {BA52B914-B692-46c4-B683-905236F6F655} - (no file)
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [Zboard] C:\Program Files\Ideazon\ZEngine\Zboard.exe
O4 - HKLM\..\Run: [UfSeAgnt.exe] "C:\Program Files\Trend Micro\Internet Security\UfSeAgnt.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [SigmatelSysTrayApp] stsystra.exe
O4 - HKLM\..\Run: [DLCDCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\DLCDtime.dll,_RunDLLEntry@16
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [OE] C:\Program Files\Trend Micro\Internet Security\TMAS_OE\TMAS_OEMon.exe
O4 - HKCU\..\Run: [RegistryMechanic] C:\Program Files\Registry Mechanic\RegMech.exe /H
O4 - HKUS\S-1-5-19\..\Run: [negizufoyo] Rundll32.exe "C:\WINDOWS\system32\vaketapa.dll",s (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [OE] C:\Program Files\Trend Micro\Internet Security\TMAS_OE\TMAS_OEMon.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [negizufoyo] Rundll32.exe "C:\WINDOWS\system32\vaketapa.dll",s (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-1838663641-187409221-1526913029-1006\..\Run: [Yahoo! Pager] "C:\PROGRA~1\Yahoo!\MESSEN~1\ypager.exe" -quiet (User 'Crystal')
O4 - HKUS\S-1-5-21-1838663641-187409221-1526913029-500\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe (User 'Administrator')
O4 - HKUS\S-1-5-18\..\Run: [OE] C:\Program Files\Trend Micro\Internet Security\TMAS_OE\TMAS_OEMon.exe (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [FlashPlayerUpdate] C:\WINDOWS\system32\Macromed\Flash\FlashUtil9f.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [OE] C:\Program Files\Trend Micro\Internet Security\TMAS_OE\TMAS_OEMon.exe (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [FlashPlayerUpdate] C:\WINDOWS\system32\Macromed\Flash\FlashUtil9f.exe (User 'Default user')
O16 - DPF: {1663ed61-23eb-11d2-b92f-008048fdd814} (MeadCo ScriptX Advanced) - http://www.stonyfield.com/coupons/scriptX/smsx.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} -
O16 - DPF: {406B5949-7190-4245-91A9-30A17DE16AD0} (Snapfish Activia) - http://photos.walmart.com/WalmartActivia.cab
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} - http://download.divx.com/player/DivXBrowserPlugin.cab
O16 - DPF: {7D4733C0-C43B-4A81-AF43-F9B20D1F8348} - http://www.octoshape.com/test/ax/octoshape.cab
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.5.0) - http://javadl-esd.sun.com/update/1.5.0/jin...indows-i586.cab
O16 - DPF: {9600F64D-755F-11D4-A47F-0001023E6D5A} (Shutterfly Picture Upload Plugin) - http://web1.shutterfly.com/downloads/Uploader.cab
O16 - DPF: {A90A5822-F108-45AD-8482-9BC8B12DD539} (Crucial cpcScan) - http://www.crucial.com/controls/cpcScanner.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - https://fpdownload.macromedia.com/get/shock...ash/swflash.cab
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe (file missing)
O23 - Service: dlcd_device - Unknown owner - C:\WINDOWS\system32\dlcdcoms.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Intel® Matrix Storage Event Monitor (IAANTMon) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\iaantmon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Roxio UPnP Renderer 9 - Sonic Solutions - C:\Program Files\Roxio\Digital Home 9\RoxioUPnPRenderer9.exe
O23 - Service: Roxio Upnp Server 9 - Sonic Solutions - C:\Program Files\Roxio\Digital Home 9\RoxioUpnpService9.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe

--
End of file - 6378 bytes






ComboFix 08-11-18.04 - Justin 2008-11-19 19:31:07.2 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.1635 [GMT -6:00]
Running from: c:\documents and settings\Justin\Desktop\ComboFix.exe
Command switches used :: c:\justin\cfscript.txt
* Created a new restore point

FILE ::
c:\documents and settings\All Users\Application Data\cyly.bin
c:\documents and settings\All Users\Application Data\ofuj.scr
c:\documents and settings\All Users\Application Data\qotibaco.reg
c:\documents and settings\All Users\Application Data\rawufyp.dat
c:\documents and settings\All Users\Application Data\sevory.bin
c:\documents and settings\Justin\~.exe
c:\program files\Common Files\ekinu.dat
c:\program files\Common Files\urego.reg
c:\program files\Common Files\usukuwohy.bin
c:\windows\akuhefuj.ban
c:\windows\alijikafud.inf
c:\windows\jocezoz.sys
c:\windows\ocyxijed.pif
c:\windows\system32\drivers\qkafogpd.dat
c:\windows\system32\enefinyxyl.bin
c:\windows\system32\fypymo._dl
c:\windows\system32\swapdm.dll
c:\windows\system32\TDSSmtve.dat
c:\windows\system32\viwegecip.bin
c:\windows\system32\zufayoye.dll
c:\windows\ybyqyjep.db
c:\windows\ygyp.pif
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\documents and settings\All Users\Application Data\cyly.bin
c:\documents and settings\All Users\Application Data\ofuj.scr
c:\documents and settings\All Users\Application Data\qotibaco.reg
c:\documents and settings\All Users\Application Data\rawufyp.dat
c:\documents and settings\All Users\Application Data\sevory.bin
c:\documents and settings\Justin\~.exe
c:\documents and settings\NetworkService\Application Data\IUpd721
c:\documents and settings\NetworkService\Application Data\IUpd721\Logs\scns.log
c:\documents and settings\NetworkService\Application Data\NI.GSCNS
c:\documents and settings\NetworkService\Application Data\NI.GSCNS\dl.ini
c:\documents and settings\NetworkService\Application Data\NI.GSCNS\IUpd721.exe
c:\documents and settings\NetworkService\Application Data\NI.GSCNS\settings.ini
c:\program files\Common Files\ekinu.dat
c:\program files\Common Files\urego.reg
c:\program files\Common Files\usukuwohy.bin
c:\windows\akuhefuj.ban
c:\windows\alijikafud.inf
c:\windows\jocezoz.sys
c:\windows\ocyxijed.pif
c:\windows\system32\drivers\qkafogpd.dat
c:\windows\system32\enefinyxyl.bin
c:\windows\system32\fypymo._dl
c:\windows\system32\swapdm.dll
c:\windows\system32\TDSSmtve.dat
c:\windows\system32\viwegecip.bin
c:\windows\ybyqyjep.db
c:\windows\ygyp.pif

.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.

-------\Legacy_TFOXRCOC
-------\Service_tfoxrcoc


((((((((((((((((((((((((( Files Created from 2008-10-20 to 2008-11-20 )))))))))))))))))))))))))))))))
.

2008-11-19 00:02 . 2008-11-19 00:03 1,393 --a------ c:\windows\imsins.BAK
2008-11-18 23:43 . 2008-10-24 05:21 455,296 --------- c:\windows\system32\dllcache\mrxsmb.sys
2008-11-18 23:42 . 2008-09-04 11:15 1,106,944 --------- c:\windows\system32\dllcache\msxml3.dll
2008-11-18 23:09 . 2008-11-18 23:09 <DIR> d-------- C:\_OTMoveIt
2008-11-18 20:57 . 2008-11-18 20:57 <DIR> d-------- C:\rsit
2008-11-18 20:30 . 2008-11-18 20:30 <DIR> d-------- c:\program files\Ventrilo
2008-11-18 20:30 . 2008-11-18 20:30 262 --a------ c:\windows\{789289CA-F73A-4A16-A331-54D498CE069F}_WiseFW.ini
2008-11-18 17:03 . 2008-11-18 17:03 <DIR> d-------- c:\documents and settings\LocalService\Application Data\Roxio
2008-11-18 17:03 . 2008-11-18 17:26 <DIR> d-------- c:\documents and settings\Justin\Application Data\Roxio
2008-11-18 16:58 . 2008-11-18 17:00 <DIR> d-------- c:\windows\system32\DLA
2008-11-18 16:58 . 2008-11-18 16:58 <DIR> d-------- c:\program files\Common Files\SureThing Shared
2008-11-18 16:58 . 2008-11-18 16:58 <DIR> d-------- c:\documents and settings\All Users\Application Data\Sonic
2008-11-18 16:58 . 2006-10-25 08:22 99,816 --a------ c:\windows\system32\drivers\DRVMCDB.SYS
2008-11-18 16:58 . 2006-11-01 08:58 92,920 --a------ c:\windows\DLA.EXE
2008-11-18 16:58 . 2006-11-01 08:58 56,056 --a------ c:\windows\system32\DLAAPI_W.DLL
2008-11-18 16:58 . 2006-09-15 09:42 51,768 --a------ c:\windows\system32\drivers\DRVNDDM.SYS
2008-11-18 16:58 . 2006-09-15 09:45 28,184 --a------ c:\windows\system32\drivers\DLARTL_M.SYS
2008-11-18 16:58 . 2006-09-15 09:45 12,920 --a------ c:\windows\system32\drivers\DLACDBHM.SYS
2008-11-18 16:55 . 2008-11-18 16:55 <DIR> d-------- c:\documents and settings\All Users\Application Data\Roxio
2008-11-18 16:54 . 2008-11-18 16:58 <DIR> d-------- c:\program files\Roxio
2008-11-18 16:54 . 2008-11-18 16:57 <DIR> d-------- c:\program files\Common Files\Roxio Shared
2008-11-17 20:06 . 2008-11-17 20:06 <DIR> d--h----- c:\windows\system32\GroupPolicy
2008-11-16 20:00 . 2008-11-18 23:22 7 --a------ c:\windows\system32\tmcontrol.bin
2008-11-16 19:36 . 2008-11-16 19:36 8,512 --a------ c:\windows\system32\swapm.sys
2008-11-16 19:10 . 2008-11-16 19:10 192,512 --a------ c:\windows\system32\kdfvmgr.exe
2008-11-16 19:10 . 2008-11-16 19:10 77,824 --a------ c:\windows\system32\kdfapi.dll
2008-11-16 12:29 . 2008-11-16 12:29 <DIR> d-------- c:\documents and settings\All Users\Application Data\Yahoo! Companion
2008-11-16 10:29 . 2008-11-16 10:29 <DIR> d-------- c:\program files\CCleaner
2008-11-15 13:52 . 2008-11-16 20:00 <DIR> d-------- c:\program files\Spybot - Search & Destroy
2008-11-15 13:52 . 2008-11-18 18:41 <DIR> d-------- c:\documents and settings\All Users\Application Data\Spybot - Search & Destroy
2008-11-15 00:54 . 2008-11-15 08:46 <DIR> d-------- c:\documents and settings\All Users\Application Data\Trend Micro
2008-11-15 00:54 . 2008-11-15 00:52 49,680 --a------ c:\windows\system32\drivers\tmevtmgr.sys
2008-11-15 00:53 . 2008-11-18 19:37 <DIR> d-------- c:\program files\Trend Micro
2008-11-15 00:52 . 2008-11-15 00:52 661,808 --a------ c:\windows\system32\UfWSC.cpl
2008-11-14 19:38 . 2008-11-16 19:36 54,156 --ah----- c:\windows\QTFont.qfn
2008-11-14 19:38 . 2008-11-14 19:38 1,409 --a------ c:\windows\QTFont.for
2008-11-13 18:00 . 2008-11-15 01:46 <DIR> d-------- c:\program files\Webtools
2008-11-12 17:27 . 2008-11-12 17:27 303 --a------ c:\windows\ST6UNST.000
2008-11-08 07:38 . 2008-11-13 19:25 <DIR> d-------- c:\windows\system32\Service
2008-11-08 06:26 . 2008-04-13 18:11 32,768 --a------ c:\windows\system32\dllcache\ativtmxx.dll
2008-11-08 06:26 . 2008-04-13 18:11 32,768 --a------ c:\windows\system32\ativtmxx.dll
2008-11-08 06:26 . 2008-04-13 18:12 23,040 --a------ c:\windows\system32\dllcache\ativmvxx.ax
2008-11-08 06:26 . 2008-04-13 18:12 23,040 --a------ c:\windows\system32\ativmvxx.ax
2008-11-08 06:26 . 2008-04-13 18:12 9,728 --a------ c:\windows\system32\dllcache\ativdaxx.ax
2008-11-08 06:26 . 2008-04-13 18:12 9,728 --a------ c:\windows\system32\ativdaxx.ax
2008-11-07 20:23 . 2008-11-15 13:34 16,384 --a------ c:\windows\DCEBoot.exe
2008-11-07 19:59 . 2008-11-07 20:04 <DIR> d-------- c:\windows\SxsCaPendDel
2008-11-05 23:12 . 2008-11-06 18:34 <DIR> d-------- c:\program files\Spyware Doctor
2008-11-05 23:12 . 2008-11-19 19:35 <DIR> d-a------ c:\documents and settings\All Users\Application Data\TEMP
2008-11-05 23:08 . 2008-11-05 23:08 <DIR> d-------- c:\documents and settings\All Users\Application Data\SITEguard
2008-11-05 23:04 . 2008-11-05 23:04 <DIR> d-------- c:\program files\Common Files\iS3
2008-11-05 23:04 . 2008-11-07 19:58 <DIR> d-------- c:\documents and settings\All Users\Application Data\STOPzilla!
2008-11-05 22:41 . 2008-11-05 22:48 <DIR> d-------- c:\documents and settings\Crystal\.housecall6.6
2008-11-05 21:27 . 2008-11-05 21:27 <DIR> d-------- c:\documents and settings\Crystal\Application Data\Ventrilo
2008-11-05 20:12 . 2008-11-15 05:42 <DIR> d-------- c:\documents and settings\Justin\.housecall6.6
2008-11-05 20:12 . 2005-04-13 03:48 49,265 --a------ c:\windows\system32\jpicpl32.cpl
2008-11-05 20:11 . 2008-11-05 20:12 <DIR> d-------- c:\program files\Java
2008-11-05 20:11 . 2008-11-05 20:11 <DIR> d-------- c:\program files\Common Files\Java
2008-11-05 18:16 . 2008-11-18 23:35 <DIR> d-------- c:\program files\Common
2008-11-03 18:38 . 2008-11-03 18:38 <DIR> d-------- c:\windows\system32\scripting
2008-11-03 18:38 . 2008-11-03 18:38 <DIR> d-------- c:\windows\system32\en
2008-11-03 18:38 . 2008-11-03 18:38 <DIR> d-------- c:\windows\system32\bits
2008-11-03 18:38 . 2008-11-03 18:38 <DIR> d-------- c:\windows\l2schemas
2008-11-03 18:37 . 2008-11-03 18:37 <DIR> d-------- c:\windows\ServicePackFiles
2008-11-03 04:02 . 2008-11-03 04:02 <DIR> d-------- c:\documents and settings\NetworkService\Application Data\AdobeUM
2008-10-26 13:01 . 2008-10-26 13:01 <DIR> d-------- c:\documents and settings\Crystal\Application Data\ATI
2008-10-24 02:58 . 2008-10-15 10:34 337,408 --------- c:\windows\system32\dllcache\netapi32.dll

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-11-20 01:35 --------- d-----w c:\program files\Dl_cats
2008-11-19 02:32 --------- d-----w c:\documents and settings\Justin\Application Data\Ventrilo
2008-11-19 02:30 --------- d-----w c:\program files\Common Files\Wise Installation Wizard
2008-11-18 22:57 --------- d-----w c:\program files\Common Files\Sonic Shared
2008-11-17 23:59 --------- d-----w c:\program files\Lavasoft
2008-11-17 01:48 --------- d-----w c:\program files\UniUploader
2008-11-17 01:48 --------- d-----w c:\documents and settings\All Users\Application Data\GTek
2008-11-17 01:47 --------- d-----w c:\program files\Sonic
2008-11-16 16:29 --------- d-----w c:\program files\Yahoo!
2008-11-14 01:23 --------- d-----w c:\program files\World of Warcraft
2008-11-08 13:08 --------- d--h--w c:\program files\InstallShield Installation Information
2008-11-08 13:08 --------- d-----w c:\program files\Electronic Arts
2008-11-08 13:03 --------- d-----w c:\documents and settings\Justin\Application Data\Skype
2008-11-08 12:26 --------- d-----w c:\program files\ATI Technologies
2008-11-06 00:42 --------- d-----w c:\documents and settings\All Users\Application Data\Lavasoft
2008-11-04 00:25 --------- d-----w c:\program files\DivX
2008-10-24 11:21 455,296 ----a-w c:\windows\system32\drivers\mrxsmb.sys
2008-10-16 05:58 --------- d-----w c:\documents and settings\All Users\Application Data\Blizzard
2008-09-29 23:26 --------- d-----w c:\program files\EA Games
2008-09-29 01:51 --------- d-----w c:\documents and settings\Justin\Application Data\ATI
2008-09-29 01:51 --------- d-----w c:\documents and settings\All Users\Application Data\ATI
2008-09-28 21:57 --------- d-----w c:\program files\Intel
2008-09-28 19:22 --------- d-----w c:\program files\Logitech
2008-09-28 19:13 --------- d-----w c:\program files\Octoshape Streaming Services
2008-09-28 19:05 --------- d--h--w c:\documents and settings\Justin\Application Data\Gtek
2008-09-28 19:05 --------- d--h--w c:\documents and settings\Crystal\Application Data\Gtek
2008-09-28 19:05 --------- d-----w c:\documents and settings\Administrator\Application Data\Gtek
2008-09-28 19:01 --------- d-----w c:\documents and settings\Justin\Application Data\MSNInstaller
2008-09-28 19:00 --------- d-----w c:\documents and settings\All Users\Application Data\Yahoo!
2008-09-28 18:59 --------- d-----w c:\program files\Common Files\Scanner
2008-09-28 18:49 --------- d-----w c:\program files\Common Files\Intuit
2008-09-27 04:19 --------- d-----w c:\program files\Digital Line Detect
2008-09-24 02:10 --------- d-----w c:\documents and settings\Justin\Application Data\Corel
2008-09-24 02:03 --------- d-----w c:\documents and settings\All Users\Application Data\WinZipSE
.

((((((((((((((((((((((((((((( snapshot@2008-11-18_23.43.34.95 )))))))))))))))))))))))))))))))))))))))))
.
+ 2008-09-10 01:10:56 1,379,840 ----a-w c:\windows\$hf_mig$\KB954459\SP3QFE\msxml6.dll
+ 2007-11-30 12:39:22 17,272 ----a-w c:\windows\$hf_mig$\KB954459\spmsg.dll
+ 2007-11-30 12:39:22 231,288 ----a-w c:\windows\$hf_mig$\KB954459\spuninst.exe
+ 2007-11-30 12:39:22 26,488 ----a-w c:\windows\$hf_mig$\KB954459\update\spcustom.dll
+ 2007-11-30 12:39:22 755,576 ----a-w c:\windows\$hf_mig$\KB954459\update\update.exe
+ 2007-11-30 12:39:22 382,840 ----a-w c:\windows\$hf_mig$\KB954459\update\updspapi.dll
+ 2008-10-24 11:21:09 455,296 ------w c:\windows\Driver Cache\i386\mrxsmb.sys
+ 2008-11-19 06:02:49 32,768 ----a-r c:\windows\Installer\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}\icon.exe
- 2008-04-14 00:12:01 1,306,624 ------w c:\windows\system32\dllcache\msxml6.dll
+ 2008-09-10 01:14:56 1,307,648 ------w c:\windows\system32\dllcache\msxml6.dll
+ 2008-11-03 22:10:26 17,318,336 ----a-w c:\windows\system32\MRT.exe
- 2008-04-14 00:12:01 1,104,896 ----a-w c:\windows\system32\msxml3.dll
+ 2008-09-04 17:15:04 1,106,944 ----a-w c:\windows\system32\msxml3.dll
- 2007-05-08 20:03:04 1,275,392 ----a-w c:\windows\system32\msxml4.dll
+ 2008-09-30 22:43:34 1,286,152 ----a-w c:\windows\system32\msxml4.dll
- 2008-04-14 00:12:01 1,306,624 ----a-w c:\windows\system32\msxml6.dll
+ 2008-09-10 01:14:56 1,307,648 ----a-w c:\windows\system32\msxml6.dll
- 2008-11-06 05:13:22 63,016 ----a-w c:\windows\system32\perfc009.dat
+ 2008-11-20 01:25:00 63,016 ----a-w c:\windows\system32\perfc009.dat
- 2008-11-06 05:13:22 402,406 ----a-w c:\windows\system32\perfh009.dat
+ 2008-11-20 01:25:00 402,406 ----a-w c:\windows\system32\perfh009.dat
- 2007-11-30 12:39:22 17,272 ----a-w c:\windows\system32\spmsg.dll
+ 2008-07-08 13:02:01 17,272 ------w c:\windows\system32\spmsg.dll
+ 2008-09-30 22:42:08 1,286,152 ----a-w c:\windows\WinSxS\x86_Microsoft.MSXML2_6bd6b9abf345378f_4.20.9870.0_x-ww_a32d74cf\msxml4.dll
+ 2008-09-30 22:45:12 91,656 ----a-w c:\windows\WinSxS\x86_Microsoft.MSXML2R_6bd6b9abf345378f_4.1.1.0_x-ww_2a41bceb\msxml4r.dll
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{3887FDBF-A9A4-423F-B315-7613F587096D}]
c:\windows\system32\avwa.dll [BU]

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2008-04-13 15360]
"OE"="c:\program files\Trend Micro\Internet Security\TMAS_OE\TMAS_OEMon.exe" [2008-11-15 497008]
"RegistryMechanic"="c:\program files\Registry Mechanic\RegMech.exe" [2008-07-08 2828184]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Zboard"="c:\program files\Ideazon\ZEngine\Zboard.exe" [2008-06-27 53248]
"UfSeAgnt.exe"="c:\program files\Trend Micro\Internet Security\UfSeAgnt.exe" [2008-11-15 970808]
"QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2007-10-24 98304]
"DLCDCATS"="c:\windows\System32\spool\DRIVERS\W32X86\3\DLCDtime.dll" [2005-06-07 69632]
"SigmatelSysTrayApp"="stsystra.exe" [2005-03-22 c:\windows\stsystra.exe]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"OE"="c:\program files\Trend Micro\Internet Security\TMAS_OE\TMAS_OEMon.exe" [2008-11-15 497008]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"FlashPlayerUpdate"="c:\windows\system32\Macromed\Flash\FlashUtil9f.exe" [2008-03-24 218496]

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"ForceClassicControlPanel"= 1 (0x1)

[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusDisableNotify"=dword:00000001
"UpdatesDisableNotify"=dword:00000001

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\WINDOWS\\system32\\winlogon.exe"=
"c:\\Program Files\\Ventrilo\\Ventrilo.exe"=

R1 DLARTL_M;DLARTL_M;c:\windows\system32\Drivers\DLARTL_M.SYS [2008-11-18 28184]
R3 Alpham1;Ideazon Merc USB Human Interface Device;c:\windows\system32\DRIVERS\Alpham1.sys [2007-07-23 42624]
R3 Alpham2;Ideazon Merc MM USB Human Interface Device;c:\windows\system32\DRIVERS\Alpham2.sys [2007-03-20 18432]
R3 dlcd_device;dlcd_device;c:\windows\system32\dlcdcoms.exe -service []
S3 Alpham;Ideazon Merc Composite Keyboard Driver;c:\windows\system32\DRIVERS\Alpham.sys [2005-12-04 34944]
S3 ICAM3NT5;Intel USB Video Camera III;c:\windows\system32\Drivers\Icam3.sys [2007-07-13 141056]
S3 NAL;Nal Service ;\??\c:\windows\system32\Drivers\iqvw32.sys [2008-07-29 30816]
.
- - - - ORPHANS REMOVED - - - -

Notify-swapdm - swapdm.dll



**************************************************************************

catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-11-19 19:35:00
Windows 5.1.2600 Service Pack 3 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully
hidden files: 0

**************************************************************************
.
------------------------ Other Running Processes ------------------------
.
c:\program files\Lavasoft\Ad-Aware\aawservice.exe
c:\windows\ehome\ehRecvr.exe
c:\windows\ehome\ehSched.exe
c:\program files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
c:\windows\system32\dlcdcoms.exe
c:\windows\system32\dllhost.exe
.
**************************************************************************
.
Completion time: 2008-11-19 19:37:53 - machine was rebooted
ComboFix-quarantined-files.txt 2008-11-20 01:37:50
ComboFix2.txt 2008-11-19 05:44:07

Pre-Run: 118,693,011,456 bytes free
Post-Run: 118,709,751,808 bytes free

265 --- E O F --- 2008-11-19 06:04:21

#9 kahdah

kahdah

  • Security Colleague
  • 11,138 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Florida
  • Local time:07:26 AM

Posted 19 November 2008 - 10:40 PM

Please download Malwarebytes' Anti-Malware from Here or Here

Double Click mbam-setup.exe to install the application.
  • Make sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.
  • If an update is found, it will download and install the latest version.
  • Once the program has loaded, select "Perform Quick Scan", then click Scan.
  • The scan may take some time to finish,so please be patient.
  • When the scan is complete, click OK, then Show Results to view the results.
  • Make sure that everything is checked, and click Remove Selected.
  • When disinfection is completed, a log will open in Notepad and you may be prompted to Restart.(See Extra Note)
  • The log is automatically saved by MBAM and can be viewed by clicking the Logs tab in MBAM.
  • Copy&Paste the entire report in your next reply.
Extra Note:
If MBAM encounters a file that is difficult to remove,you will be presented with 1 of 2 prompts,click OK to either and let MBAM proceed with the disinfection process,if asked to restart the computer,please do so immediatley.
=========================
Please post these logs in your next reply:
  • Malware Bytes log
  • New Rsit log

Please do not pm for help, post it in the forums instead.

If I am helping you and have not responded for 48 hours please send me a pm as I don't always get notifications.

My help is always free, however, if you would like to make a donation to me for the help I have provided please click here Posted Image

#10 rhett

rhett
  • Topic Starter

  • Members
  • 14 posts
  • OFFLINE
  •  
  • Local time:05:26 AM

Posted 20 November 2008 - 12:38 AM

Logfile of random's system information tool 1.04 (written by random/random)
Run by Justin at 2008-11-19 23:37:47
Microsoft Windows XP Professional Service Pack 3
System drive C: has 113 GB (77%) free of 148 GB
Total RAM: 2046 MB (78% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:37:48 PM, on 11/19/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16735)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\iaantmon.exe
C:\Program Files\Ideazon\ZEngine\Zboard.exe
C:\Program Files\QuickTime\qttask.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Trend Micro\Internet Security\TMAS_OE\TMAS_OEMon.exe
C:\Program Files\Registry Mechanic\RegMech.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\dlcdcoms.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\explorer.exe
C:\Program Files\internet explorer\iexplore.exe
C:\Documents and Settings\Justin\Desktop\RSIT.exe
C:\Program Files\Trend Micro\HijackThis\Justin.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
O2 - BHO: (no name) - {3887FDBF-A9A4-423F-B315-7613F587096D} - C:\WINDOWS\system32\avwa.dll (file missing)
O3 - Toolbar: (no name) - {BA52B914-B692-46c4-B683-905236F6F655} - (no file)
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [Zboard] C:\Program Files\Ideazon\ZEngine\Zboard.exe
O4 - HKLM\..\Run: [UfSeAgnt.exe] "C:\Program Files\Trend Micro\Internet Security\UfSeAgnt.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [SigmatelSysTrayApp] stsystra.exe
O4 - HKLM\..\Run: [DLCDCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\DLCDtime.dll,_RunDLLEntry@16
O4 - HKLM\..\RunOnce: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [OE] C:\Program Files\Trend Micro\Internet Security\TMAS_OE\TMAS_OEMon.exe
O4 - HKCU\..\Run: [RegistryMechanic] C:\Program Files\Registry Mechanic\RegMech.exe /H
O4 - HKUS\S-1-5-19\..\Run: [negizufoyo] Rundll32.exe "C:\WINDOWS\system32\vaketapa.dll",s (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [OE] C:\Program Files\Trend Micro\Internet Security\TMAS_OE\TMAS_OEMon.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [negizufoyo] Rundll32.exe "C:\WINDOWS\system32\vaketapa.dll",s (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-1838663641-187409221-1526913029-1006\..\Run: [Yahoo! Pager] "C:\PROGRA~1\Yahoo!\MESSEN~1\ypager.exe" -quiet (User 'Crystal')
O4 - HKUS\S-1-5-21-1838663641-187409221-1526913029-500\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe (User 'Administrator')
O4 - HKUS\S-1-5-18\..\Run: [OE] C:\Program Files\Trend Micro\Internet Security\TMAS_OE\TMAS_OEMon.exe (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [FlashPlayerUpdate] C:\WINDOWS\system32\Macromed\Flash\FlashUtil9f.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [OE] C:\Program Files\Trend Micro\Internet Security\TMAS_OE\TMAS_OEMon.exe (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [FlashPlayerUpdate] C:\WINDOWS\system32\Macromed\Flash\FlashUtil9f.exe (User 'Default user')
O16 - DPF: {1663ed61-23eb-11d2-b92f-008048fdd814} (MeadCo ScriptX Advanced) - http://www.stonyfield.com/coupons/scriptX/smsx.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} -
O16 - DPF: {406B5949-7190-4245-91A9-30A17DE16AD0} (Snapfish Activia) - http://photos.walmart.com/WalmartActivia.cab
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} - http://download.divx.com/player/DivXBrowserPlugin.cab
O16 - DPF: {7D4733C0-C43B-4A81-AF43-F9B20D1F8348} - http://www.octoshape.com/test/ax/octoshape.cab
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.5.0) - http://javadl-esd.sun.com/update/1.5.0/jin...indows-i586.cab
O16 - DPF: {9600F64D-755F-11D4-A47F-0001023E6D5A} (Shutterfly Picture Upload Plugin) - http://web1.shutterfly.com/downloads/Uploader.cab
O16 - DPF: {A90A5822-F108-45AD-8482-9BC8B12DD539} (Crucial cpcScan) - http://www.crucial.com/controls/cpcScanner.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - https://fpdownload.macromedia.com/get/shock...ash/swflash.cab
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe (file missing)
O23 - Service: dlcd_device - Unknown owner - C:\WINDOWS\system32\dlcdcoms.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Intel® Matrix Storage Event Monitor (IAANTMon) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\iaantmon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Roxio UPnP Renderer 9 - Sonic Solutions - C:\Program Files\Roxio\Digital Home 9\RoxioUPnPRenderer9.exe
O23 - Service: Roxio Upnp Server 9 - Sonic Solutions - C:\Program Files\Roxio\Digital Home 9\RoxioUpnpService9.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe

--
End of file - 6518 bytes

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3887FDBF-A9A4-423F-B315-7613F587096D}]
C:\WINDOWS\system32\avwa.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{BA52B914-B692-46c4-B683-905236F6F655}
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - &Google - c:\program files\google\googletoolbar1.dll [2007-08-08 2403392]
{EF99BD32-C1FB-11D2-892F-0090271D4F88} - Yahoo! Toolbar - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll [2006-10-26 440384]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Zboard"=C:\Program Files\Ideazon\ZEngine\Zboard.exe [2008-06-27 53248]
"UfSeAgnt.exe"=C:\Program Files\Trend Micro\Internet Security\UfSeAgnt.exe [2008-11-15 970808]
"QuickTime Task"=C:\Program Files\QuickTime\qttask.exe [2007-10-24 98304]
"SigmatelSysTrayApp"=C:\WINDOWS\stsystra.exe [2005-03-22 339968]
"DLCDCATS"=rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\DLCDtime.dll []

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Malwarebytes' Anti-Malware"=C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe [2008-10-22 399504]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-13 15360]
"OE"=C:\Program Files\Trend Micro\Internet Security\TMAS_OE\TMAS_OEMon.exe [2008-11-15 497008]
"RegistryMechanic"=C:\Program Files\Registry Mechanic\RegMech.exe [2008-07-08 2828184]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2007-03-15 236928]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aawservice]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\aawservice]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"InstallVisualStyle"=C:\WINDOWS\Resources\Themes\Royale\Royale.msstyles
"InstallTheme"=C:\WINDOWS\Resources\Themes\Royale.theme

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"ForceClassicControlPanel"=1
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=
"NoDrives"=
"NoDriveAutoRun"=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\WINDOWS\system32\winlogon.exe"="C:\WINDOWS\system32\winlogon.exe:*:Enabled:winlogon"
"C:\Program Files\Ventrilo\Ventrilo.exe"="C:\Program Files\Ventrilo\Ventrilo.exe:*:Enabled:Ventrilo.exe"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"

======List of files/folders created in the last 1 months======

2008-11-19 23:31:58 ----D---- C:\Documents and Settings\Justin\Application Data\Malwarebytes
2008-11-19 23:31:53 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2008-11-19 23:31:53 ----D---- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2008-11-19 19:37:54 ----D---- C:\WINDOWS\temp
2008-11-19 19:37:54 ----A---- C:\ComboFix.txt
2008-11-19 19:30:28 ----D---- C:\ComboFix
2008-11-19 00:03:13 ----A---- C:\WINDOWS\system32\MRT.exe
2008-11-19 00:03:07 ----HDC---- C:\WINDOWS\$NtUninstallKB957097$
2008-11-19 00:03:01 ----HDC---- C:\WINDOWS\$NtUninstallKB954459$
2008-11-19 00:02:57 ----A---- C:\WINDOWS\imsins.BAK
2008-11-19 00:02:54 ----HDC---- C:\WINDOWS\$NtUninstallKB955069$
2008-11-18 23:34:19 ----A---- C:\Boot.bak
2008-11-18 23:34:06 ----RASHD---- C:\cmdcons
2008-11-18 23:33:48 ----A---- C:\WINDOWS\system32\3301b0cc-.txt
2008-11-18 23:32:59 ----A---- C:\WINDOWS\zip.exe
2008-11-18 23:32:59 ----A---- C:\WINDOWS\VFIND.exe
2008-11-18 23:32:59 ----A---- C:\WINDOWS\SWXCACLS.exe
2008-11-18 23:32:59 ----A---- C:\WINDOWS\SWSC.exe
2008-11-18 23:32:59 ----A---- C:\WINDOWS\SWREG.exe
2008-11-18 23:32:59 ----A---- C:\WINDOWS\sed.exe
2008-11-18 23:32:59 ----A---- C:\WINDOWS\NIRCMD.exe
2008-11-18 23:32:59 ----A---- C:\WINDOWS\grep.exe
2008-11-18 23:32:59 ----A---- C:\WINDOWS\fdsv.exe
2008-11-18 23:17:34 ----D---- C:\WINDOWS\ERDNT
2008-11-18 23:17:34 ----D---- C:\Qoobox
2008-11-18 23:09:42 ----D---- C:\_OTMoveIt
2008-11-18 20:57:08 ----D---- C:\rsit
2008-11-18 20:30:46 ----D---- C:\Program Files\Ventrilo
2008-11-18 20:30:39 ----A---- C:\WINDOWS\{789289CA-F73A-4A16-A331-54D498CE069F}_WiseFW.ini
2008-11-18 17:03:23 ----D---- C:\Documents and Settings\Justin\Application Data\Roxio
2008-11-18 16:58:47 ----D---- C:\WINDOWS\system32\DLA
2008-11-18 16:58:47 ----A---- C:\WINDOWS\system32\DLAAPI_W.DLL
2008-11-18 16:58:47 ----A---- C:\WINDOWS\DLA.EXE
2008-11-18 16:58:12 ----D---- C:\Documents and Settings\All Users\Application Data\Sonic
2008-11-18 16:58:04 ----D---- C:\Program Files\Common Files\SureThing Shared
2008-11-18 16:55:10 ----D---- C:\Documents and Settings\All Users\Application Data\Roxio
2008-11-18 16:54:57 ----D---- C:\Program Files\Roxio
2008-11-18 16:54:44 ----D---- C:\Program Files\Common Files\Roxio Shared
2008-11-17 20:06:00 ----HD---- C:\WINDOWS\system32\GroupPolicy
2008-11-17 17:30:55 ----A---- C:\WINDOWS\system32\STKIT432.DLL
2008-11-17 17:30:53 ----D---- C:\Program Files\Registry Mechanic
2008-11-16 19:10:51 ----A---- C:\WINDOWS\system32\kdfvmgr.exe
2008-11-16 19:10:51 ----A---- C:\WINDOWS\system32\kdfapi.dll
2008-11-16 12:29:02 ----D---- C:\Documents and Settings\All Users\Application Data\Yahoo! Companion
2008-11-16 10:29:45 ----D---- C:\Program Files\CCleaner
2008-11-15 13:52:14 ----D---- C:\Program Files\Spybot - Search & Destroy
2008-11-15 13:52:14 ----D---- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
2008-11-15 00:54:15 ----D---- C:\Documents and Settings\All Users\Application Data\Trend Micro
2008-11-15 00:53:47 ----D---- C:\Program Files\Trend Micro
2008-11-08 07:38:12 ----D---- C:\WINDOWS\system32\Service
2008-11-08 06:47:40 ----D---- C:\WINDOWS\pss
2008-11-08 06:26:31 ----A---- C:\WINDOWS\system32\ativtmxx.dll
2008-11-07 20:23:17 ----A---- C:\WINDOWS\DCEBoot.exe
2008-11-07 19:59:46 ----D---- C:\WINDOWS\SxsCaPendDel
2008-11-05 23:12:13 ----AD---- C:\Documents and Settings\All Users\Application Data\TEMP
2008-11-05 23:12:04 ----D---- C:\Program Files\Spyware Doctor
2008-11-05 23:08:02 ----D---- C:\Documents and Settings\All Users\Application Data\SITEguard
2008-11-05 23:04:59 ----D---- C:\Program Files\Common Files\iS3
2008-11-05 23:04:59 ----D---- C:\Documents and Settings\All Users\Application Data\STOPzilla!
2008-11-05 22:40:47 ----D---- C:\Program Files\Mozilla Firefox
2008-11-05 20:12:18 ----A---- C:\WINDOWS\system32\javaws.exe
2008-11-05 20:12:18 ----A---- C:\WINDOWS\system32\javaw.exe
2008-11-05 20:12:18 ----A---- C:\WINDOWS\system32\java.exe
2008-11-05 20:11:51 ----D---- C:\Program Files\Java
2008-11-05 20:11:32 ----D---- C:\Program Files\Common Files\Java
2008-11-05 18:16:16 ----D---- C:\Program Files\Common
2008-11-05 03:00:32 ----HDC---- C:\WINDOWS\$NtUninstallKB951978$
2008-11-03 18:47:17 ----D---- C:\WINDOWS\Prefetch
2008-11-03 18:45:23 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$
2008-11-03 18:45:15 ----HDC---- C:\WINDOWS\$NtUninstallKB957095$
2008-11-03 18:45:07 ----HDC---- C:\WINDOWS\$NtUninstallKB956841$
2008-11-03 18:44:59 ----HDC---- C:\WINDOWS\$NtUninstallKB956803$
2008-11-03 18:44:49 ----HDC---- C:\WINDOWS\$NtUninstallKB954211$
2008-11-03 18:44:40 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2008-11-03 18:44:29 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2008-11-03 18:44:18 ----HDC---- C:\WINDOWS\$NtUninstallKB951748$
2008-11-03 18:44:10 ----HDC---- C:\WINDOWS\$NtUninstallKB951698$
2008-11-03 18:44:02 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2008-11-03 18:43:55 ----HDC---- C:\WINDOWS\$NtUninstallKB951376$
2008-11-03 18:43:46 ----HDC---- C:\WINDOWS\$NtUninstallKB951066$
2008-11-03 18:43:39 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2008-11-03 18:43:32 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2008-11-03 18:43:24 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2008-11-03 18:43:18 ----HDC---- C:\WINDOWS\$NtUninstallKB938464$
2008-11-03 18:38:47 ----D---- C:\WINDOWS\system32\scripting
2008-11-03 18:38:46 ----D---- C:\WINDOWS\system32\en
2008-11-03 18:38:46 ----D---- C:\WINDOWS\system32\bits
2008-11-03 18:38:46 ----D---- C:\WINDOWS\l2schemas
2008-11-03 18:37:00 ----D---- C:\WINDOWS\ServicePackFiles
2008-11-03 18:32:35 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2008-10-25 02:00:38 ----HDC---- C:\WINDOWS\$NtUninstallKB958644_0$

======List of files/folders modified in the last 1 months======

2008-11-19 23:36:05 ----RD---- C:\Program Files
2008-11-19 23:36:05 ----D---- C:\WINDOWS\system32
2008-11-19 23:31:56 ----D---- C:\WINDOWS\system32\drivers
2008-11-19 20:40:38 ----A---- C:\WINDOWS\ModemLog_Intel® 537EP V9x DF PCI Modem.txt
2008-11-19 19:48:14 ----HD---- C:\WINDOWS\inf
2008-11-19 19:37:54 ----D---- C:\WINDOWS
2008-11-19 19:37:24 ----D---- C:\WINDOWS\system32\CatRoot2
2008-11-19 19:35:51 ----D---- C:\WINDOWS\Registration
2008-11-19 19:35:50 ----D---- C:\Program Files\Dl_cats
2008-11-19 19:34:45 ----A---- C:\WINDOWS\system.ini
2008-11-19 19:33:25 ----D---- C:\WINDOWS\system32\config
2008-11-19 19:32:48 ----D---- C:\WINDOWS\AppPatch
2008-11-19 19:32:48 ----D---- C:\Program Files\Common Files
2008-11-19 19:31:04 ----D---- C:\JUSTIN
2008-11-19 19:30:52 ----A---- C:\WINDOWS\SchedLgU.Txt
2008-11-19 19:25:00 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2008-11-19 00:04:17 ----A---- C:\WINDOWS\system32\MRT.INI
2008-11-19 00:03:08 ----RSHD---- C:\WINDOWS\system32\dllcache
2008-11-19 00:03:06 ----HD---- C:\WINDOWS\$hf_mig$
2008-11-19 00:02:49 ----SHD---- C:\WINDOWS\Installer
2008-11-19 00:02:49 ----D---- C:\WINDOWS\WinSxS
2008-11-18 23:36:16 ----RSD---- C:\WINDOWS\Fonts
2008-11-18 23:35:47 ----D---- C:\temp
2008-11-18 23:34:20 ----RASH---- C:\boot.ini
2008-11-18 23:09:55 ----SD---- C:\WINDOWS\Tasks
2008-11-18 20:32:49 ----D---- C:\Documents and Settings\Justin\Application Data\Ventrilo
2008-11-18 20:30:26 ----D---- C:\Program Files\Common Files\Wise Installation Wizard
2008-11-18 16:58:48 ----A---- C:\WINDOWS\wininit.ini
2008-11-18 16:57:58 ----D---- C:\Program Files\Common Files\Sonic Shared
2008-11-18 16:56:47 ----SD---- C:\WINDOWS\Downloaded Program Files
2008-11-17 17:59:20 ----D---- C:\Program Files\Lavasoft
2008-11-16 21:04:40 ----A---- C:\WINDOWS\win.ini
2008-11-16 20:02:53 ----D---- C:\My Music
2008-11-16 19:48:27 ----D---- C:\Documents and Settings\All Users\Application Data\GTek
2008-11-16 19:48:17 ----D---- C:\Program Files\UniUploader
2008-11-16 19:47:19 ----D---- C:\Program Files\Sonic
2008-11-16 19:35:01 ----D---- C:\i386
2008-11-16 10:43:06 ----D---- C:\WINDOWS\Minidump
2008-11-16 10:43:06 ----D---- C:\WINDOWS\Debug
2008-11-16 10:29:57 ----D---- C:\Program Files\Yahoo!
2008-11-15 00:56:46 ----D---- C:\WINDOWS\system32\CatRoot
2008-11-14 19:32:30 ----D---- C:\Program Files\Internet Explorer
2008-11-13 20:05:01 ----D---- C:\Documents and Settings\Justin\Application Data\Mozilla
2008-11-13 19:23:42 ----D---- C:\Program Files\World of Warcraft
2008-11-08 07:08:08 ----HD---- C:\Program Files\InstallShield Installation Information
2008-11-08 07:08:03 ----D---- C:\Program Files\Electronic Arts
2008-11-08 07:03:54 ----D---- C:\Documents and Settings\Justin\Application Data\Skype
2008-11-08 07:02:19 ----AH---- C:\WINDOWS\system32\FFASTLOG.TXT
2008-11-08 06:26:12 ----D---- C:\Program Files\ATI Technologies
2008-11-05 18:42:23 ----D---- C:\Documents and Settings\All Users\Application Data\Lavasoft
2008-11-03 18:46:42 ----D---- C:\WINDOWS\system32\Setup
2008-11-03 18:46:41 ----D---- C:\WINDOWS\system32\wbem
2008-11-03 18:46:03 ----D---- C:\WINDOWS\security
2008-11-03 18:41:38 ----RSD---- C:\WINDOWS\assembly
2008-11-03 18:38:53 ----D---- C:\WINDOWS\system32\inetsrv
2008-11-03 18:38:53 ----D---- C:\WINDOWS\network diagnostic
2008-11-03 18:38:53 ----D---- C:\WINDOWS\ime
2008-11-03 18:38:53 ----D---- C:\WINDOWS\Help
2008-11-03 18:38:47 ----D---- C:\WINDOWS\system32\usmt
2008-11-03 18:38:47 ----D---- C:\WINDOWS\system32\en-US
2008-11-03 18:38:46 ----D---- C:\WINDOWS\PeerNet
2008-11-03 18:38:46 ----D---- C:\Program Files\Movie Maker
2008-11-03 18:36:53 ----D---- C:\WINDOWS\system32\Restore
2008-11-03 18:36:53 ----D---- C:\WINDOWS\system32\npp
2008-11-03 18:36:53 ----D---- C:\WINDOWS\mui
2008-11-03 18:36:52 ----D---- C:\WINDOWS\msagent
2008-11-03 18:36:51 ----D---- C:\WINDOWS\srchasst
2008-11-03 18:36:50 ----D---- C:\Program Files\NetMeeting
2008-11-03 18:36:47 ----D---- C:\WINDOWS\system32\Com
2008-11-03 18:36:44 ----D---- C:\Program Files\Windows NT
2008-11-03 18:36:43 ----D---- C:\Program Files\Outlook Express
2008-11-03 18:36:42 ----D---- C:\Program Files\Common Files\System
2008-11-03 18:36:34 ----D---- C:\WINDOWS\system32\oobe
2008-11-03 18:36:33 ----D---- C:\WINDOWS\system
2008-11-03 18:32:29 ----D---- C:\WINDOWS\ehome
2008-11-03 18:25:07 ----D---- C:\Program Files\DivX

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 Ad-Watch Connect Filter;Ad-Watch Connect Kernel Filter; \??\C:\WINDOWS\system32\drivers\NSDriver.sys []
R1 cdrbsdrv;cdrbsdrv; C:\WINDOWS\system32\drivers\cdrbsdrv.sys [2004-03-08 13567]
R1 DLACDBHM;DLACDBHM; C:\WINDOWS\System32\Drivers\DLACDBHM.SYS [2006-09-15 12920]
R1 DLARTL_M;DLARTL_M; C:\WINDOWS\System32\Drivers\DLARTL_M.SYS [2006-09-15 28184]
R1 intelppm;Intel Processor Driver; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-13 36352]
R1 kbdhid;Keyboard HID Driver; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-13 14592]
R1 omci;OMCI WDM Device Driver; C:\WINDOWS\system32\DRIVERS\omci.sys [2002-11-08 17217]
R2 ASCTRM;ASCTRM; C:\WINDOWS\system32\drivers\ASCTRM.sys [2005-09-17 8552]
R2 DLABMFSM;DLABMFSM; C:\WINDOWS\System32\DLA\DLABMFSM.SYS [2006-11-01 35064]
R2 DLABOIOM;DLABOIOM; C:\WINDOWS\System32\DLA\DLABOIOM.SYS [2006-11-01 32472]
R2 DLADResM;DLADResM; C:\WINDOWS\System32\DLA\DLADResM.SYS [2006-11-01 9400]
R2 DLAIFS_M;DLAIFS_M; C:\WINDOWS\System32\DLA\DLAIFS_M.SYS [2006-11-01 104760]
R2 DLAOPIOM;DLAOPIOM; C:\WINDOWS\System32\DLA\DLAOPIOM.SYS [2006-11-01 26744]
R2 DLAPoolM;DLAPoolM; C:\WINDOWS\System32\DLA\DLAPoolM.SYS [2006-11-01 14520]
R2 DLAUDF_M;DLAUDF_M; C:\WINDOWS\System32\DLA\DLAUDF_M.SYS [2006-11-01 98104]
R2 DLAUDFAM;DLAUDFAM; C:\WINDOWS\System32\DLA\DLAUDFAM.SYS [2006-11-01 94648]
R2 drvnddm;drvnddm; C:\WINDOWS\System32\Drivers\DRVNDDM.SYS [2006-09-15 51768]
R3 Alpham1;Ideazon Merc USB Human Interface Device; C:\WINDOWS\system32\DRIVERS\Alpham1.sys [2007-07-23 42624]
R3 Alpham2;Ideazon Merc MM USB Human Interface Device; C:\WINDOWS\system32\DRIVERS\Alpham2.sys [2007-03-20 18432]
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2005-03-30 1035264]
R3 E100B;Intel® PRO Network Connection Driver; C:\WINDOWS\system32\DRIVERS\e100b325.sys [2007-11-16 165496]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 HidUsb;Microsoft HID Class Driver; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 IntelC51;IntelC51; C:\WINDOWS\system32\DRIVERS\IntelC51.sys [2005-05-06 1339776]
R3 IntelC52;IntelC52; C:\WINDOWS\system32\DRIVERS\IntelC52.sys [2006-03-01 618880]
R3 IntelC53;IntelC53; C:\WINDOWS\system32\DRIVERS\IntelC53.sys [2005-05-06 47360]
R3 MODEMCSA;Unimodem Streaming Filter Device; C:\WINDOWS\system32\drivers\MODEMCSA.sys [2001-08-17 16128]
R3 mohfilt;mohfilt; C:\WINDOWS\system32\DRIVERS\mohfilt.sys [2005-05-06 36880]
R3 mouhid;Mouse HID Driver; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-08-17 12160]
R3 STHDA;High Definition Audio Driver (WDM) - SigmaTel CODEC; C:\WINDOWS\system32\drivers\sthda.sys [2005-03-31 180096]
R3 usbccgp;Microsoft USB Generic Parent Driver; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
R3 usbehci;Microsoft USB 2.0 Enhanced Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-13 30208]
R3 usbhub;USB2 Enabled Hub; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-13 59520]
R3 usbprint;Microsoft USB PRINTER Class; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
R3 usbscan;USB Scanner Driver; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
R3 USBSTOR;USB Mass Storage Driver; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
R3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
S1 DSproct;DSproct; \??\C:\Program Files\Dell Support\GTAction\triggers\DSproct.sys []
S3 61883;61883 Unit Device; C:\WINDOWS\system32\DRIVERS\61883.sys [2008-04-13 48128]
S3 Alpham;Ideazon Merc Composite Keyboard Driver; C:\WINDOWS\system32\DRIVERS\Alpham.sys [2005-12-04 34944]
S3 Arp1394;1394 ARP Client Protocol; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-13 60800]
S3 Avc;AVC Device; C:\WINDOWS\system32\DRIVERS\avc.sys [2008-04-13 38912]
S3 bvrp_pci;bvrp_pci; C:\WINDOWS\system32\drivers\bvrp_pci.sys []
S3 catchme;catchme; \??\C:\ComboFix\catchme.sys []
S3 CCDECODE;Closed Caption Decoder; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
S3 ICAM3NT5;Intel USB Video Camera III; C:\WINDOWS\System32\Drivers\Icam3.sys [2001-08-17 141056]
S3 LHidUsbK;Logitech SetPoint USB Receiver device driver; C:\WINDOWS\System32\Drivers\LHidUsbK.Sys [2005-07-22 36608]
S3 MHNDRV;MHN driver; C:\WINDOWS\system32\DRIVERS\mhndrv.sys [2004-08-10 11008]
S3 MSDV;Microsoft DV Camera and VCR; C:\WINDOWS\system32\DRIVERS\msdv.sys [2008-04-13 51200]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
S3 NAL;Nal Service ; \??\C:\WINDOWS\system32\Drivers\iqvw32.sys []
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-13 10880]
S3 neokdss;neokdss; C:\WINDOWS\system32\Drivers\neokdss.sys []
S3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-13 61824]
S3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2004-08-03 1897408]
S3 slabbus;CP210x USB Composite Device driver (WDM); C:\WINDOWS\system32\DRIVERS\slabbus.sys [2004-12-16 55312]
S3 slabser;CP210x USB to UART Bridge Controller Drivers; C:\WINDOWS\system32\DRIVERS\slabser.sys [2004-12-16 89808]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-13 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-13 15232]
S3 wanatw;WAN Miniport (ATW); C:\WINDOWS\system32\DRIVERS\wanatw4.sys []
S3 WSTCODEC;World Standard Teletext Codec; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]
S4 agp440;Intel AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\agp440.sys [2008-04-13 42368]
S4 agpCPQ;Compaq AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\agpCPQ.sys [2008-04-13 44928]
S4 alim1541;ALI AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\alim1541.sys [2008-04-13 42752]
S4 amdagp;AMD AGP Bus Filter Driver; C:\WINDOWS\system32\DRIVERS\amdagp.sys [2008-04-13 43008]
S4 cbidf;cbidf; C:\WINDOWS\system32\DRIVERS\cbidf2k.sys [2001-08-17 13952]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\DRIVERS\intelide.sys [2008-04-13 5504]
S4 RxFilter;RxFilter; C:\WINDOWS\system32\DRIVERS\RxFilter.sys [2006-12-02 50688]
S4 sisagp;SIS AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\sisagp.sys [2008-04-13 40960]
S4 viaagp;VIA AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\viaagp.sys [2008-04-13 42240]
S4 WS2IFSL;Windows Socket 2.0 Non-IFS Service Provider Support Environment; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2004-08-10 12032]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 aawservice;Lavasoft Ad-Aware Service; C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe [2008-09-10 611664]
R2 ehRecvr;Media Center Receiver Service; C:\WINDOWS\eHome\ehRecvr.exe [2004-09-28 195584]
R2 ehSched;Media Center Scheduler Service; C:\WINDOWS\eHome\ehSched.exe [2004-08-10 102912]
R2 IAANTMon;Intel® Matrix Storage Event Monitor; C:\Program Files\Intel\Intel Matrix Storage Manager\iaantmon.exe [2005-04-25 86142]
R3 dlcd_device;dlcd_device; C:\WINDOWS\system32\dlcdcoms.exe [2005-06-21 491520]
S2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe []
S2 Fax;Fax; C:\WINDOWS\system32\fxssvc.exe [2008-04-13 267776]
S2 Roxio Upnp Server 9;Roxio Upnp Server 9; C:\Program Files\Roxio\Digital Home 9\RoxioUpnpService9.exe [2006-12-13 294912]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2005-09-23 29896]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2005-09-23 66240]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2007-08-08 138168]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728]
S3 MHN;MHN; C:\WINDOWS\System32\svchost.exe [2008-04-13 14336]
S3 Roxio UPnP Renderer 9;Roxio UPnP Renderer 9; C:\Program Files\Roxio\Digital Home 9\RoxioUPnPRenderer9.exe [2006-12-13 57344]
S3 RoxMediaDB9;RoxMediaDB9; C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe [2007-01-16 880640]
S3 stllssvr;stllssvr; C:\Program Files\Common Files\SureThing Shared\stllssvr.exe [2007-01-15 73728]
S3 UMWdf;Windows User Mode Driver Framework; C:\WINDOWS\system32\wdfmgr.exe [2005-01-28 38912]

-----------------EOF-----------------






Malwarebytes' Anti-Malware 1.30
Database version: 1412
Windows 5.1.2600 Service Pack 3

11/19/2008 11:36:05 PM
mbam-log-2008-11-19 (23-36-05).txt

Scan type: Quick Scan
Objects scanned: 56528
Time elapsed: 3 minute(s), 22 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 13
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 1
Files Infected: 4

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
HKEY_CLASSES_ROOT\Interface\{17e44256-51e0-4d46-a0c8-44e80ab4ba5b} (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{892b2785-b0d0-4aa2-ae6a-0ed60b00a979} (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{87255c51-cd7d-4506-b9ad-97606daf53f3} (Adware.Coupons) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Typelib\{e0f01490-dcf3-4357-95aa-169a8c2b2190} (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Typelib\{00476c87-a276-49bf-86bc-ff005732430b} (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\AppID\{80ef304a-b1c4-425c-8535-95ab6f1eefb8} (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\AppID\{e81cf86b-f683-422a-b742-3f2427ea9d6a} (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{a87a6eb3-8880-6e42-cb3a-27e967e4c3e1} (Adware.Rotator) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{a87a6eb3-8880-6e42-cb3a-27e967e4c3e1} (Adware.Rotator) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\AppID\BHO_MyJavaCore.DLL (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\antispywarexp2009 (Rogue.AntispywareXP) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\antiviruspro2009 (Rogue.Antivirus2008) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\xpre (Trojan.Downloader) -> Quarantined and deleted successfully.

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
C:\Program Files\Webtools (Trojan.Agent) -> Quarantined and deleted successfully.

Files Infected:
C:\WINDOWS\system32\wekinimu.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\zrbrasxuglcvtej.dll (Adware.Rotator) -> Quarantined and deleted successfully.
C:\Program Files\Mozilla Firefox\Components\srff.dll (Trojan.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\ClickToFindandFixErrors_US.ico (Malware.Trace) -> Quarantined and deleted successfully.

#11 kahdah

kahdah

  • Security Colleague
  • 11,138 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Florida
  • Local time:07:26 AM

Posted 20 November 2008 - 07:28 AM

Please download ATF Cleaner by Atribune.Double-click ATF-Cleaner.exe to run the program.
Under Main choose: Select All
Click the Empty Selected button.
If you use Firefox browserClick Firefox at the top and choose: Select All
Click the Empty Selected button.
NOTE: If you would like to keep your saved passwords, please click No at the prompt.
If you use Opera browserClick Opera at the top and choose: Select All
Click the Empty Selected button.
NOTE: If you would like to keep your saved passwords, please click No at the prompt.
Click Exit on the Main menu to close the program.
For Technical Support, double-click the e-mail address located at the bottom of each menu.
==============================================
Please do a scan with Kaspersky Online Scanner

Note: If you are using Windows Vista, open your browser by right-clicking on its icon and select 'Run as administrator' to perform this scan.

Click on the Accept button and install any components it needs.
  • The program will install and then begin downloading the latest definition files.
  • After the files have been downloaded on the left side of the page in the Scan section select My Computer
  • This will start the program and scan your system.
  • The scan will take a while, so be patient and let it run.
  • Once the scan is complete, click on View scan report
  • Now, click on the Save Report as button.
  • Save the file to your desktop.
  • Copy and paste that information in your next post.

Please do not pm for help, post it in the forums instead.

If I am helping you and have not responded for 48 hours please send me a pm as I don't always get notifications.

My help is always free, however, if you would like to make a donation to me for the help I have provided please click here Posted Image

#12 rhett

rhett
  • Topic Starter

  • Members
  • 14 posts
  • OFFLINE
  •  
  • Local time:05:26 AM

Posted 20 November 2008 - 08:13 PM

kaspersky scan

#13 rhett

rhett
  • Topic Starter

  • Members
  • 14 posts
  • OFFLINE
  •  
  • Local time:05:26 AM

Posted 20 November 2008 - 08:16 PM

KASPERSKY ONLINE SCANNER 7 REPORT
Thursday, November 20, 2008
Operating System: Microsoft Windows XP Professional Service Pack 3 (build 2600)
Kaspersky Online Scanner 7 version: 7.0.25.0
Program database last update: Thursday, November 20, 2008 20:06:26
Records in database: 1397677


Scan settings
Scan using the following database extended
Scan archives yes
Scan mail databases yes

Scan area My Computer
C:\
D:\
E:\
F:\

Scan statistics
Files scanned 65069
Threat name 47
Infected objects 1921
Suspicious objects 1
Duration of the scan 00:51:04

File name Threat name Threats count
C:\Program Files\Trend Micro\Internet Security\Quarantine\157[1].net Infected: Trojan-Downloader.Win32.Agent.aogd 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\19.tmp Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\1D.tmp Infected: Trojan-Downloader.Win32.Agent.alda 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\1D2.tmp Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\1E.tmp Infected: Trojan.Win32.Monder.ypv 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\1F.tmp Infected: Backdoor.Win32.TDSS.asz 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\20.tmp Infected: Backdoor.Win32.TDSS.atb 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\21.tmp Infected: Trojan-Downloader.Win32.Agent.aldb 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\23.tmp Infected: Backdoor.Win32.UltimateDefender.a 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\24.tmp Infected: Backdoor.Win32.UltimateDefender.a 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\25.tmp Infected: Backdoor.Win32.TDSS.bkw 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\26.tmp Infected: Backdoor.Win32.TDSS.blh 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\27.tmp Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\beep.sys Infected: Backdoor.Win32.UltimateDefender.a 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\beep_e60.VIR Infected: Backdoor.Win32.UltimateDefender.a 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna.dat Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_1c4.V10 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_1c4.V11 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_1c4.V12 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_1c4.V13 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_1c4.V14 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_1c4.V15 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_1c4.V16 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_1c4.V17 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_1c4.V18 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_1c4.V19 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_1c4.V20 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_1c4.V21 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_1c4.V22 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_1c4.V23 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_1c4.V24 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_1c4.V25 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_1c4.V26 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_1c4.V27 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_1c4.V28 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_1c4.V29 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_1c4.V30 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_1c4.V31 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_1c4.V32 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_1c4.V33 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_1c4.V34 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_1c4.V35 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_1c4.V36 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_1c4.V37 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_1c4.V38 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_1c4.VI0 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\KARNA_1c4.VI1 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_1c4.VI2 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_1c4.VI3 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_1c4.VI4 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_1c4.VI5 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\KARNA_1c4.VI6 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_1c4.VI7 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_1c4.VI8 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_1c4.VI9 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_1c4.VIR Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_540.V10 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_540.V11 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_540.V12 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_540.V13 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_540.V14 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_540.V15 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_540.V16 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_540.V17 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_540.V18 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_540.V19 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_540.V20 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_540.V21 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_540.V22 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_540.V23 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_540.V24 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_540.V25 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_540.V26 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_540.V27 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_540.V28 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_540.V29 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_540.V30 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_540.V31 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_540.V32 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_540.V33 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_540.V34 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_540.V35 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_540.V36 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_540.V37 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_540.V38 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_540.V39 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_540.VI0 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_540.VI1 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_540.VI2 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_540.VI3 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_540.VI4 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_540.VI5 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_540.VI6 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_540.VI7 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_540.VI8 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_540.VI9 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_540.VIR Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_648.VI0 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_648.VI1 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_648.VI2 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_648.VI3 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_648.VI4 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_648.VI5 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_648.VIR Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_79c.V10 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_79c.V11 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_79c.V12 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_79c.V13 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_79c.V14 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_79c.V15 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_79c.V16 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_79c.V17 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_79c.V18 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_79c.V19 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_79c.V20 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_79c.V21 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_79c.V22 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_79c.V23 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_79c.V24 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_79c.V25 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_79c.V26 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_79c.V27 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_79c.V28 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_79c.V29 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_79c.V30 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_79c.V31 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_79c.V32 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_79c.V33 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_79c.V34 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_79c.V35 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_79c.V36 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_79c.V37 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_79c.V38 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\KARNA_79c.V39 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_79c.V40 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_79c.VI0 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_79c.VI1 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_79c.VI2 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_79c.VI3 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_79c.VI4 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_79c.VI5 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_79c.VI6 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_79c.VI7 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_79c.VI8 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_79c.VI9 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_79c.VIR Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_964.V10 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_964.V11 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_964.V12 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_964.V13 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_964.V14 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_964.V15 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_964.V16 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_964.V17 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_964.V18 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_964.V19 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_964.V20 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_964.V21 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_964.V22 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_964.V23 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_964.V24 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_964.V25 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_964.V26 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_964.V27 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_964.V28 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_964.V29 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_964.V30 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_964.V31 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_964.V32 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_964.V33 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_964.V34 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_964.V35 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_964.V36 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_964.V37 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_964.V38 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_964.V39 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\KARNA_964.V40 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_964.V41 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_964.V42 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_964.V43 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_964.V44 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_964.V45 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_964.V46 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_964.V47 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_964.VI0 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_964.VI1 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_964.VI2 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_964.VI3 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_964.VI4 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_964.VI5 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_964.VI6 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_964.VI7 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_964.VI8 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_964.VI9 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_964.VIR Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V10 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V11 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V12 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V13 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V14 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V15 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V16 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V17 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V18 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V19 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V20 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V21 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V22 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V23 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V24 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V25 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V26 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V27 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V28 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V29 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V30 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V31 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V32 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V33 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V34 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V35 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V36 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V37 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V38 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V39 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V40 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V41 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V42 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V43 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V44 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V45 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V46 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V47 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V48 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V49 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V50 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V51 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V52 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V53 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V54 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V55 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V56 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V57 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V58 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V59 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V60 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V61 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V62 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V63 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V64 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V65 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V66 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V67 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V68 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V69 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V70 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V71 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V72 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V73 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V74 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V75 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V76 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V77 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V78 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V79 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V80 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V81 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V82 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V83 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V84 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V85 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V86 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V87 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V88 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.V89 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.VI0 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.VI1 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.VI2 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.VI3 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.VI4 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.VI5 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.VI6 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.VI7 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.VI8 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.VI9 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_97c.VIR Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_a3c.V10 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_a3c.V11 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_a3c.V12 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_a3c.V13 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_a3c.V14 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_a3c.V15 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_a3c.V16 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_a3c.V17 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_a3c.V18 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_a3c.V19 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_a3c.V20 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_a3c.V21 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_a3c.V22 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_a3c.V23 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_a3c.V24 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_a3c.V25 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_a3c.V26 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_a3c.V27 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_a3c.V28 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_a3c.V29 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_a3c.V30 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_a3c.V31 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_a3c.V32 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_a3c.V33 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_a3c.V34 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_a3c.V35 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_a3c.V36 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_a3c.V37 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_a3c.V38 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\KARNA_a3c.V39 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_a3c.V40 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_a3c.V41 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_a3c.V42 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_a3c.V43 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_a3c.V44 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_a3c.V45 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_a3c.V46 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_a3c.V47 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\KARNA_a3c.V48 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\KARNA_a3c.VI0 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\KARNA_a3c.VI1 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_a3c.VI2 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_a3c.VI3 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_a3c.VI4 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_a3c.VI5 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_a3c.VI6 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_a3c.VI7 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_a3c.VI8 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_a3c.VI9 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_a3c.VIR Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V10 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V11 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V12 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V13 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V14 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V15 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V16 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V17 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V18 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V19 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V20 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V21 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V22 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V23 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V24 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V25 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V26 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V27 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V28 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V29 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V30 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V31 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V32 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V33 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V34 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V35 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V36 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V37 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V38 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V39 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V40 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V41 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V42 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V43 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V44 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V45 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V46 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V47 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V48 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V49 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V50 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V51 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V52 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V53 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V54 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V55 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V56 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V57 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V58 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V59 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V60 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V61 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V62 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V63 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V64 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V65 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V66 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V67 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V68 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V69 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V70 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V71 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V72 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V73 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V74 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V75 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V76 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V77 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V78 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V79 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V80 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V81 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V82 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V83 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V84 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V85 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V86 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V87 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V88 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V89 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V90 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V91 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V92 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V93 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V94 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V95 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V96 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V97 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V98 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.V99 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.VI0 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.VI1 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.VI2 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.VI3 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.VI4 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.VI5 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.VI6 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.VI7 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.VI8 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.VI9 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_b48.VIR Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_c48.VI0 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_c48.VIR Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_c4c.VI0 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_c4c.VIR Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_c50.VIR Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_c54.VI0 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_c54.VIR Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_c58.VI0 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_c58.VI1 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_c58.VI2 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_c58.VIR Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_c5c.VI0 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_c5c.VI1 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_c5c.VI2 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_c5c.VIR Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_c60.VI0 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_c60.VI1 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_c60.VI2 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_c60.VI3 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_c60.VI4 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_c60.VIR Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_c64.VI0 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_c64.VIR Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_c68.VIR Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V10 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V11 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V12 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V13 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V14 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V15 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V16 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V17 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V18 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V19 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V20 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V21 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V22 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V23 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V24 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V25 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V26 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V27 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V28 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V29 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V30 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V31 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V32 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V33 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V34 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V35 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V36 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V37 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V38 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V39 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V40 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V41 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V42 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V43 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V44 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V45 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V46 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V47 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V48 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V49 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V50 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V51 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V52 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V53 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V54 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V55 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V56 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V57 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V58 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V59 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V60 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V61 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V62 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V63 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V64 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V65 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V66 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V67 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V68 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V69 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V70 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V71 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V72 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V73 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V74 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V75 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V76 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V77 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V78 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V79 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V80 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V81 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V82 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V83 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V84 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V85 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V86 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V87 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V88 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V89 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V90 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V91 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V92 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V93 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V94 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V95 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V96 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V97 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V98 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.V99 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.VI0 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.VI1 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.VI2 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.VI3 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.VI4 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.VI5 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.VI6 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.VI7 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.VI8 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.VI9 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e24.VIR Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V10 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\KARNA_e2c.V11 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V12 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V13 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V14 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V15 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V16 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V17 Infected: Backdoor.Win32.Small.gjm 1

#14 rhett

rhett
  • Topic Starter

  • Members
  • 14 posts
  • OFFLINE
  •  
  • Local time:05:26 AM

Posted 20 November 2008 - 08:17 PM

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V18 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V19 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V20 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V21 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V22 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V23 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V24 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V25 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V26 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V27 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V28 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V29 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V30 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V31 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V32 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V33 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V34 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V35 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V36 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V37 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V38 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V39 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V40 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V41 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V42 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V43 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V44 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V45 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V46 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V47 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V48 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V49 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V50 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V51 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V52 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V53 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V54 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V55 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V56 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V57 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V58 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V59 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V60 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V61 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V62 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V63 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V64 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V65 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V66 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V67 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V68 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V69 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V70 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V71 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V72 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V73 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V74 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V75 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V76 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V77 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V78 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V79 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V80 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V81 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V82 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V83 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V84 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V85 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.V86 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.VI0 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.VI1 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.VI2 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.VI3 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.VI4 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.VI5 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.VI6 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\KARNA_e2c.VI7 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.VI8 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.VI9 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e2c.VIR Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\KARNA_e30.V10 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V11 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V12 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V13 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V14 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V15 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V16 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V17 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V18 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V19 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V20 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V21 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V22 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V23 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V24 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V25 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V26 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V27 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V28 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V29 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V30 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V31 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V32 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V33 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V34 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V35 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V36 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V37 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V38 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V39 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V40 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V41 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V42 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V43 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V44 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V45 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V46 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V47 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V48 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V49 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V50 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V51 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V52 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V53 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V54 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V55 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V56 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V57 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V58 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V59 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V60 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V61 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V62 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V63 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V64 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V65 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V66 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V67 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V68 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V69 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V70 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V71 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V72 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V73 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V74 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V75 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V76 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V77 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V78 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V79 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V80 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V81 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V82 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V83 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V84 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V85 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V86 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V87 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V88 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V89 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V90 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V91 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V92 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V93 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V94 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.V95 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.VI0 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.VI1 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.VI2 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.VI3 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.VI4 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.VI5 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.VI6 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.VI7 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.VI8 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.VI9 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e30.VIR Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\KARNA_e44.V10 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V11 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V12 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V13 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V14 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V15 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V16 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V17 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V18 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V19 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V20 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V21 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V22 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V23 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V24 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V25 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V26 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V27 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V28 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V29 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V30 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V31 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V32 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V33 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V34 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V35 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V36 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V37 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V38 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V39 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V40 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V41 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V42 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V43 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V44 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V45 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V46 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V47 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V48 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V49 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V50 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V51 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V52 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V53 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V54 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V55 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V56 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V57 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V58 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V59 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V60 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V61 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V62 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V63 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V64 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V65 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V66 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V67 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V68 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V69 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V70 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V71 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V72 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V73 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V74 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V75 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V76 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V77 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V78 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V79 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.V80 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.VI0 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.VI1 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.VI2 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.VI3 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.VI4 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.VI5 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.VI6 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.VI7 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.VI8 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.VI9 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e44.VIR Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V10 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V11 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V12 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V13 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V14 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V15 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V16 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V17 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V18 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V19 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V20 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V21 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V22 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V23 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V24 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V25 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V26 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V27 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V28 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V29 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V30 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V31 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V32 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V33 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V34 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V35 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V36 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V37 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V38 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V39 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V40 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V41 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V42 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V43 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V44 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V45 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V46 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V47 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V48 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V49 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V50 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V51 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V52 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V53 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V54 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V55 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V56 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V57 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\KARNA_e50.V58 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V59 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V60 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V61 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V62 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V63 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V64 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V65 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V66 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V67 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V68 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V69 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V70 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V71 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V72 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V73 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V74 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V75 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V76 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V77 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V78 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V79 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V80 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V81 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V82 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V83 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V84 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V85 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V86 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V87 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V88 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V89 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.V90 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.VI0 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.VI1 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.VI2 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.VI3 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\KARNA_e50.VI4 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.VI5 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.VI6 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.VI7 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.VI8 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.VI9 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e50.VIR Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V10 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V11 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V12 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V13 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V14 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V15 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V16 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V17 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V18 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V19 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V20 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V21 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V22 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V23 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V24 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V25 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V26 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V27 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V28 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V29 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V30 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V31 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V32 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V33 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V34 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V35 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V36 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V37 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V38 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V39 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V40 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V41 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V42 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V43 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V44 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V45 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V46 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V47 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V48 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V49 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V50 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V51 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V52 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V53 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V54 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V55 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V56 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V57 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V58 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V59 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V60 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V61 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V62 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V63 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V64 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V65 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V66 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V67 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V68 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V69 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V70 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V71 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V72 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V73 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V74 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V75 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V76 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V77 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V78 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V79 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V80 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V81 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V82 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V83 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V84 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V85 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V86 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V87 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V88 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V89 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V90 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V91 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V92 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V93 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V94 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V95 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V96 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V97 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.V98 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.VI0 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\KARNA_e54.VI1 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.VI2 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.VI3 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.VI4 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.VI5 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.VI6 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.VI7 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.VI8 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.VI9 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e54.VIR Infected: Backdoor.Win32.Small.gjm 1

#15 rhett

rhett
  • Topic Starter

  • Members
  • 14 posts
  • OFFLINE
  •  
  • Local time:05:26 AM

Posted 20 November 2008 - 08:18 PM

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V10 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V11 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V12 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V13 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V14 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V15 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V16 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V17 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V18 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V19 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V20 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V21 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V22 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V23 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V24 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V25 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V26 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V27 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V28 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V29 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V30 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V31 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V32 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V33 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V34 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V35 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V36 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V37 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V38 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V39 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V40 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V41 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V42 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V43 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V44 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V45 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V46 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V47 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V48 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V49 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V50 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V51 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V52 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V53 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V54 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V55 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V56 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V57 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V58 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V59 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V60 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V61 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V62 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V63 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V64 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V65 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V66 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V67 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V68 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V69 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V70 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V71 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V72 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V73 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V74 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V75 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V76 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V77 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V78 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V79 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V80 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V81 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V82 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V83 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V84 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V85 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V86 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V87 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V88 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V89 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.V90 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.VI0 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.VI1 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.VI2 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.VI3 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.VI4 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.VI5 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.VI6 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.VI7 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.VI8 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e5c.VI9 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\KARNA_e5c.VIR Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V10 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V11 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V12 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V13 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V14 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V15 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V16 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V17 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V18 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V19 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V20 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V21 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V22 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V23 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V24 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V25 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V26 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V27 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V28 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V29 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V30 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V31 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V32 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V33 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V34 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V35 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V36 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V37 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V38 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V39 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V40 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V41 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V42 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V43 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V44 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V45 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V46 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V47 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V48 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V49 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V50 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V51 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V52 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V53 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V54 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V55 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V56 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V57 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V58 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V59 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V60 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V61 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V62 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V63 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V64 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V65 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V66 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V67 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V68 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V69 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V70 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V71 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V72 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V73 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V74 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V75 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V76 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V77 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V78 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V79 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V80 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V81 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V82 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V83 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V84 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V85 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V86 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V87 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V88 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V89 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V90 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V91 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V92 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V93 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V94 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V95 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V96 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V97 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V98 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.V99 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.VI0 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.VI1 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.VI2 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.VI3 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.VI4 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.VI5 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.VI6 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.VI7 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.VI8 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e60.VI9 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\KARNA_e60.VIR Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e64.V10 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e64.V11 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e64.V12 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e64.V13 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e64.V14 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e64.V15 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e64.V16 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e64.V17 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e64.V18 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e64.V19 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e64.V20 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e64.V21 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e64.V22 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e64.V23 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e64.V24 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e64.V25 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e64.V26 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e64.V27 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e64.V28 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e64.V29 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e64.V30 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e64.V31 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e64.V32 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e64.V33 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e64.V34 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e64.V35 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e64.V36 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e64.V37 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e64.V38 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e64.V39 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e64.V40 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e64.V41 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e64.V42 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e64.V43 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e64.V44 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e64.V45 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e64.V46 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e64.V47 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e64.V48 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e64.V49 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e64.V50 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e64.VI0 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e64.VI1 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e64.VI2 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e64.VI3 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e64.VI4 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e64.VI5 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e64.VI6 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e64.VI7 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e64.VI8 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e64.VI9 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e64.VIR Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e7c.V10 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e7c.V11 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e7c.V12 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e7c.V13 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e7c.V14 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e7c.V15 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e7c.V16 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\KARNA_e7c.V17 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e7c.V18 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e7c.V19 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e7c.V20 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e7c.V21 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e7c.V22 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e7c.V23 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e7c.V24 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e7c.V25 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e7c.V26 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e7c.V27 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e7c.V28 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e7c.V29 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e7c.V30 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e7c.V31 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e7c.V32 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e7c.V33 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e7c.V34 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e7c.V35 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e7c.V36 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e7c.V37 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e7c.V38 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e7c.V39 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e7c.V40 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e7c.V41 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e7c.V42 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e7c.V43 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e7c.V44 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e7c.V45 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e7c.VI0 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e7c.VI1 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e7c.VI2 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e7c.VI3 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e7c.VI4 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e7c.VI5 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e7c.VI6 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e7c.VI7 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e7c.VI8 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e7c.VI9 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e7c.VIR Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e88.V10 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e88.V11 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e88.V12 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e88.V13 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e88.V14 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e88.V15 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e88.V16 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e88.V17 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e88.V18 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e88.V19 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e88.V20 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\KARNA_e88.V21 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e88.V22 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e88.V23 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e88.V24 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e88.V25 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e88.V26 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e88.V27 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e88.V28 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e88.V29 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e88.V30 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e88.V31 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e88.V32 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e88.V33 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e88.V34 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e88.V35 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e88.V36 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e88.V37 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e88.V38 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e88.V39 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e88.V40 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e88.V41 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e88.V42 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e88.V43 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e88.V44 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e88.V45 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e88.V46 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e88.V47 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e88.V48 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e88.V49 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e88.V50 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e88.V51 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e88.V52 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e88.V53 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e88.V54 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e88.VI0 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e88.VI1 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e88.VI2 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e88.VI3 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e88.VI4 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e88.VI5 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e88.VI6 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e88.VI7 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e88.VI8 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e88.VI9 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e88.VIR Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.V10 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.V11 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.V12 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.V13 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.V14 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.V15 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.V16 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.V17 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.V18 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.V19 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.V20 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.V21 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.V22 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.V23 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.V24 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.V25 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.V26 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.V27 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.V28 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.V29 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.V30 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.V31 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.V32 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.V33 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.V34 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.V35 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.V36 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.V37 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.V38 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.V39 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.V40 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.V41 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.V42 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.V43 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.V44 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.V45 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.V46 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.V47 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.V48 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.V49 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.V50 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.V51 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.V52 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.V53 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.V54 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.V55 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.V56 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.V57 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.V58 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.V59 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.V60 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.V61 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.V62 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.V63 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.VI0 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.VI1 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.VI2 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.VI3 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.VI4 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.VI5 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.VI6 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.VI7 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.VI8 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.VI9 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e90.VIR Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e94.V10 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e94.V11 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e94.V12 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e94.V13 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e94.V14 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e94.V15 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e94.V16 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e94.V17 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e94.V18 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e94.V19 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e94.V20 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e94.V21 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e94.V22 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e94.V23 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e94.V24 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e94.V25 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e94.V26 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e94.V27 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e94.V28 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e94.V29 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e94.V30 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e94.V31 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e94.V32 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e94.V33 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e94.V34 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e94.V35 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e94.V36 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e94.V37 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e94.V38 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e94.V39 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e94.V40 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e94.V41 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e94.V42 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e94.V43 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e94.V44 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e94.V45 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e94.V46 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e94.V47 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e94.V48 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e94.VI0 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e94.VI1 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e94.VI2 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e94.VI3 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e94.VI4 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e94.VI5 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e94.VI6 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e94.VI7 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e94.VI8 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e94.VI9 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e94.VIR Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e98.V10 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e98.V11 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e98.V12 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e98.V13 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e98.V14 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e98.V15 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e98.V16 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e98.V17 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e98.V18 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e98.V19 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e98.V20 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e98.V21 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e98.V22 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e98.V23 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e98.V24 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e98.V25 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e98.V26 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e98.V27 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e98.V28 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e98.V29 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e98.V30 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e98.V31 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e98.V32 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e98.V33 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e98.V34 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e98.V35 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e98.V36 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e98.V37 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e98.V38 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e98.V39 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e98.V40 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e98.V41 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e98.V42 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e98.V43 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e98.V44 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e98.V45 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e98.VI0 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e98.VI1 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e98.VI2 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e98.VI3 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e98.VI4 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e98.VI5 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e98.VI6 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e98.VI7 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e98.VI8 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e98.VI9 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_e98.VIR Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ea0.V10 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ea0.V11 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ea0.V12 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ea0.V13 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ea0.V14 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ea0.V15 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ea0.V16 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ea0.V17 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ea0.V18 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ea0.V19 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ea0.V20 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ea0.V21 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ea0.V22 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ea0.V23 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ea0.V24 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ea0.V25 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ea0.V26 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ea0.V27 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ea0.V28 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ea0.V29 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ea0.V30 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ea0.V31 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ea0.V32 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ea0.V33 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ea0.V34 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ea0.V35 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ea0.V36 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ea0.V37 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ea0.V38 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ea0.VI0 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ea0.VI1 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ea0.VI2 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ea0.VI3 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ea0.VI4 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ea0.VI5 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ea0.VI6 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ea0.VI7 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ea0.VI8 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ea0.VI9 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ea0.VIR Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_eac.V10 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_eac.V11 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_eac.V12 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_eac.V13 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_eac.V14 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_eac.V15 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_eac.V16 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_eac.V17 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_eac.V18 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_eac.V19 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_eac.V20 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_eac.V21 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_eac.V22 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_eac.V23 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_eac.V24 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_eac.V25 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_eac.V26 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_eac.V27 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_eac.V28 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_eac.V29 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_eac.V30 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_eac.V31 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_eac.V32 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_eac.V33 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_eac.V34 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_eac.V35 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_eac.V36 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_eac.V37 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_eac.V38 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_eac.V39 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_eac.V40 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_eac.V41 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_eac.V42 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_eac.V43 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_eac.VI0 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_eac.VI1 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_eac.VI2 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_eac.VI3 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_eac.VI4 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_eac.VI5 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_eac.VI6 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_eac.VI7 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_eac.VI8 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_eac.VI9 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_eac.VIR Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ee8.V10 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ee8.V11 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ee8.V12 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ee8.V13 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ee8.V14 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ee8.V15 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ee8.V16 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ee8.V17 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ee8.V18 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ee8.V19 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ee8.V20 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ee8.V21 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ee8.V22 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ee8.V23 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ee8.V24 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ee8.V25 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ee8.V26 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ee8.V27 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ee8.V28 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ee8.V29 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ee8.V30 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ee8.V31 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ee8.V32 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ee8.V33 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ee8.V34 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ee8.V35 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ee8.V36 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ee8.V37 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ee8.V38 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ee8.V39 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ee8.V40 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ee8.V41 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ee8.V42 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ee8.V43 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ee8.V44 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ee8.V45 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ee8.V46 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ee8.V47 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ee8.V48 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ee8.VI0 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ee8.VI1 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ee8.VI2 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ee8.VI3 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ee8.VI4 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ee8.VI5 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ee8.VI6 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ee8.VI7 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ee8.VI8 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ee8.VI9 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\KARNA_ee8.VIR Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ef0.V10 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ef0.V11 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ef0.V12 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ef0.V13 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ef0.V14 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ef0.V15 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ef0.V16 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ef0.V17 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ef0.V18 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ef0.V19 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ef0.V20 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ef0.V21 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ef0.V22 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ef0.V23 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ef0.V24 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ef0.V25 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ef0.V26 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ef0.V27 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ef0.V28 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ef0.V29 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ef0.V30 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ef0.V31 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ef0.V32 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ef0.VI0 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ef0.VI1 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ef0.VI2 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ef0.VI3 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ef0.VI4 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ef0.VI5 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ef0.VI6 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ef0.VI7 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ef0.VI8 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ef0.VI9 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_ef0.VIR Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fb0.V10 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fb0.V11 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fb0.V12 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fb0.V13 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fb0.V14 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fb0.V15 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fb0.V16 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fb0.V17 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fb0.V18 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fb0.V19 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fb0.V20 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fb0.V21 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fb0.V22 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fb0.V23 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fb0.V24 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fb0.V25 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fb0.V26 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fb0.V27 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fb0.V28 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fb0.V29 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fb0.V30 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fb0.V31 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fb0.V32 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fb0.VI0 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fb0.VI1 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fb0.VI2 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fb0.VI3 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fb0.VI4 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\KARNA_fb0.VI5 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fb0.VI6 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fb0.VI7 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fb0.VI8 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fb0.VI9 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fb0.VIR Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fd8.V10 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fd8.V11 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fd8.V12 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fd8.V13 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fd8.V14 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fd8.V15 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fd8.V16 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fd8.V17 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fd8.V18 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fd8.V19 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fd8.V20 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fd8.V21 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fd8.V22 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fd8.V23 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fd8.V24 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fd8.V25 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fd8.V26 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fd8.V27 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\KARNA_fd8.V28 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fd8.V29 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fd8.V30 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fd8.V31 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fd8.V32 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fd8.V33 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fd8.V34 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fd8.V35 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fd8.V36 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fd8.V37 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fd8.V38 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fd8.V39 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fd8.V40 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fd8.V41 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fd8.V42 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fd8.V43 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fd8.V44 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fd8.V45 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fd8.V46 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fd8.V47 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\KARNA_fd8.VI0 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fd8.VI1 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\KARNA_fd8.VI2 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fd8.VI3 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fd8.VI4 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fd8.VI5 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fd8.VI6 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fd8.VI7 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fd8.VI8 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fd8.VI9 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fd8.VIR Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fe0.V10 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fe0.V11 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fe0.V12 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fe0.V13 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fe0.V14 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fe0.V15 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fe0.V16 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fe0.V17 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fe0.V18 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fe0.V19 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fe0.V20 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fe0.V21 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fe0.V22 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fe0.V23 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fe0.V24 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fe0.V25 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fe0.V26 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fe0.V27 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fe0.V28 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fe0.V29 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fe0.V30 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fe0.V31 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fe0.V32 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fe0.V33 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fe0.V34 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fe0.V35 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fe0.V36 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fe0.V37 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fe0.VI0 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fe0.VI1 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fe0.VI2 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\KARNA_fe0.VI3 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fe0.VI4 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fe0.VI5 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fe0.VI6 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fe0.VI7 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fe0.VI8 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fe0.VI9 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fe0.VIR Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fec.V10 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fec.V11 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fec.V12 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fec.V13 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fec.V14 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fec.V15 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fec.V16 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fec.V17 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fec.V18 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fec.V19 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fec.V20 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fec.V21 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fec.V22 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fec.V23 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fec.V24 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fec.V25 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fec.V26 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fec.V27 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fec.V28 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fec.V29 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fec.V30 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fec.V31 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fec.V32 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fec.V33 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fec.V34 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fec.V35 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fec.V36 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fec.V37 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fec.VI0 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fec.VI1 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fec.VI2 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fec.VI3 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fec.VI4 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fec.VI5 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fec.VI6 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fec.VI7 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fec.VI8 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fec.VI9 Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\karna_fec.VIR Infected: Backdoor.Win32.Small.gjm 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\__1A.tmp Infected: Trojan-Downloader.Win32.Agent.aogd 1

C:\Program Files\Trend Micro\Internet Security\Quarantine\__1B.tmp Infected: Trojan-Downloader.Win32.Agent.nfz 1

C:\Qoobox\Quarantine\C\Documents and Settings\NetworkService\Application Data\NI.GSCNS\IUpd721.exe.vir Infected: Trojan-Downloader.Win32.FraudLoad.vdjv 1

C:\Qoobox\Quarantine\C\WINDOWS\system32\av.dat.vir Infected: Hoax.Win32.Renos.vavf 1

C:\Qoobox\Quarantine\C\WINDOWS\system32\drivers\TDSSjull.sys.vir Infected: Rootkit.Win32.Pakes.ax 1

C:\Qoobox\Quarantine\C\WINDOWS\system32\drivers\tdssserv.sys.vir Infected: Backdoor.Win32.TDSS.bkw 1

C:\Qoobox\Quarantine\C\WINDOWS\system32\drivers\_qkafogpd_.dat.zip Infected: Rootkit.Win32.Agent.aap 1

C:\Qoobox\Quarantine\C\WINDOWS\system32\jkkJbyvS.dll.vir Infected: Trojan.Win32.Monderb.wsx 1

C:\Qoobox\Quarantine\C\WINDOWS\system32\msansspc.dll.vir Infected: Trojan.Win32.Agent.aojh 1

C:\Qoobox\Quarantine\C\WINDOWS\system32\mst120.dll.vir Infected: Trojan-Downloader.Win32.DlKroha.m 1

C:\Qoobox\Quarantine\C\WINDOWS\system32\reset5e.dll.vir Infected: Trojan-Downloader.Win32.Suurch.gk 1

C:\Qoobox\Quarantine\C\WINDOWS\system32\tdssl.dll.vir Infected: Backdoor.Win32.TDSS.blh 1

C:\Qoobox\Quarantine\C\WINDOWS\system32\tdsslog.dll.vir Infected: Backdoor.Win32.TDSS.atb 1

C:\Qoobox\Quarantine\C\WINDOWS\system32\tdssmain.dll.vir Infected: Backdoor.Win32.TDSS.asz 1

C:\Qoobox\Quarantine\C\WINDOWS\system32\_swapdm_.dll.zip Infected: Trojan-Spy.Win32.Goldun.bga 1

C:\WINDOWS\system32\drivers\dbjlvxyd.dat Infected: Rootkit.Win32.Agent.lk 1

C:\WINDOWS\system32\drivers\dbjlvxyd.sys Infected: Trojan.Win32.BHO.gy 1

C:\WINDOWS\system32\drivers\qkafogpd.sys Infected: Trojan.Win32.BHO.gy 1

C:\WINDOWS\system32\_uqjntprimt.dll Infected: Trojan-Clicker.Win32.Agent.bty 1

C:\_OTMoveIt\MovedFiles\11182008_230942\Documents and Settings\Justin\Application Data\gadcom\gadcom.exe Infected: Trojan.Win32.Agent.amyy 1

C:\_OTMoveIt\MovedFiles\11182008_230942\Documents and Settings\Justin\Application Data\Twain\Twain.exe Infected: Trojan.Win32.Agent.amwr 1

C:\_OTMoveIt\MovedFiles\11182008_230942\WINDOWS\brastk.exe Infected: Trojan-Downloader.Win32.Small.agdo 1

C:\_OTMoveIt\MovedFiles\11182008_230942\WINDOWS\faceback.exe Infected: Trojan-Downloader.Win32.Agent.agzq 1

C:\_OTMoveIt\MovedFiles\11182008_230942\WINDOWS\SnVzdGlu\asappsrv.dll Infected: not-a-virus:AdWare.Win32.CommAd.a 1

C:\_OTMoveIt\MovedFiles\11182008_230942\WINDOWS\SnVzdGlu\command.exe Infected: not-a-virus:AdWare.Win32.CommAd.a 1

C:\_OTMoveIt\MovedFiles\11182008_230942\WINDOWS\system32\ajtgbigj.dll Infected: Trojan.Win32.Monder.zac 1

C:\_OTMoveIt\MovedFiles\11182008_230942\WINDOWS\system32\cwtmvkua.dll Infected: Trojan.Win32.Monder.ywf 1

C:\_OTMoveIt\MovedFiles\11182008_230942\WINDOWS\system32\ddcAsPFw.dll Infected: Trojan.Win32.Agent.anyk 1

C:\_OTMoveIt\MovedFiles\11182008_230942\WINDOWS\system32\ed\btgCG24.exe Infected: Trojan-Downloader.Win32.Agent.afzg 1

C:\_OTMoveIt\MovedFiles\11182008_230942\WINDOWS\system32\epdkqk.dll Infected: Trojan.Win32.Monder.ywf 1

C:\_OTMoveIt\MovedFiles\11182008_230942\WINDOWS\system32\fjcayd.dll Infected: Trojan.Win32.Monder.ywb 1

C:\_OTMoveIt\MovedFiles\11182008_230942\WINDOWS\system32\g85.exe Infected: Trojan-Clicker.Win32.Agent.bty 1

C:\_OTMoveIt\MovedFiles\11182008_230942\WINDOWS\system32\hbovec.dll Infected: Trojan.Win32.Monder.ywf 1

C:\_OTMoveIt\MovedFiles\11182008_230942\WINDOWS\system32\hgGwtqol.dll Infected: Trojan.Win32.Agent.anyk 1

C:\_OTMoveIt\MovedFiles\11182008_230942\WINDOWS\system32\hjqanpwd.dll Infected: Backdoor.Win32.Agent.ugx 1

C:\_OTMoveIt\MovedFiles\11182008_230942\WINDOWS\system32\hxepbgbu.dll Infected: Trojan.Win32.Monder.ywf 1

C:\_OTMoveIt\MovedFiles\11182008_230942\WINDOWS\system32\Ilkt0c82.exe Infected: Trojan-Downloader.Win32.Agent.apfg 1

C:\_OTMoveIt\MovedFiles\11182008_230942\WINDOWS\system32\im\RTAE3ai.exe Infected: Trojan-Downloader.Win32.Small.buy 1

C:\_OTMoveIt\MovedFiles\11182008_230942\WINDOWS\system32\jkkJYOhE.dll Infected: Trojan.Win32.Agent.anyk 1

C:\_OTMoveIt\MovedFiles\11182008_230942\WINDOWS\system32\Knmv6e58.dll Infected: Trojan.Win32.Agent.aljf 1

C:\_OTMoveIt\MovedFiles\11182008_230942\WINDOWS\system32\ljJBQkkH.dll Infected: Trojan.Win32.Monderb.wxt 1

C:\_OTMoveIt\MovedFiles\11182008_230942\WINDOWS\system32\ljJCuTLF.dll Infected: Trojan.Win32.Agent.anyk 1

C:\_OTMoveIt\MovedFiles\11182008_230942\WINDOWS\system32\prunnet.exe Suspicious: PECompact 1

C:\_OTMoveIt\MovedFiles\11182008_230942\WINDOWS\system32\qcntssdl.exe Infected: not-a-virus:AdWare.Win32.ZenoSearch.ca 1

C:\_OTMoveIt\MovedFiles\11182008_230942\WINDOWS\system32\rdxnpuhu.dll Infected: Trojan.Win32.Monder.ywf 1

C:\_OTMoveIt\MovedFiles\11182008_230942\WINDOWS\system32\rukksers.dll Infected: Backdoor.Win32.Agent.ugx 1

C:\_OTMoveIt\MovedFiles\11182008_230942\WINDOWS\system32\sip\pxNT4I19.exe Infected: not-a-virus:AdWare.Win32.Agent.hkj 1

C:\_OTMoveIt\MovedFiles\11182008_230942\WINDOWS\system32\TDSSugxy.dll Infected: Backdoor.Win32.TDSS.blj 1

C:\_OTMoveIt\MovedFiles\11182008_230942\WINDOWS\system32\TDSSxjfu.dll Infected: Backdoor.Win32.TDSS.bli 1

C:\_OTMoveIt\MovedFiles\11182008_230942\WINDOWS\system32\ulpsinki.dll Infected: Backdoor.Win32.Agent.ugx 1

C:\_OTMoveIt\MovedFiles\11182008_230942\WINDOWS\system32\uqikvg.dll Infected: Trojan.Win32.Monder.zab 1

C:\_OTMoveIt\MovedFiles\11182008_230942\WINDOWS\system32\uqjntprimt.dll Infected: Trojan-Clicker.Win32.Agent.eyh 1

C:\_OTMoveIt\MovedFiles\11182008_230942\WINDOWS\system32\uydcoq.dll Infected: Trojan.Win32.Monder.ywf 1

C:\_OTMoveIt\MovedFiles\11182008_230942\WINDOWS\system32\wacpfuwu.dll Infected: Trojan.Win32.Monder.ywf 1

C:\_OTMoveIt\MovedFiles\11182008_230942\WINDOWS\system32\wini10255.exe Infected: Trojan.Win32.Pakes.lnh 1

C:\_OTMoveIt\MovedFiles\11182008_230942\WINDOWS\system32\wini10801.exe Infected: Trojan.Win32.FraudPack.gsr 1

C:\_OTMoveIt\MovedFiles\11182008_230942\WINDOWS\system32\xgfqik.dll Infected: Trojan.Win32.Monder.ywf 1

C:\_OTMoveIt\MovedFiles\11182008_230942\WINDOWS\system32\xmudyrnb.dll Infected: Trojan.Win32.Monder.zab 1

C:\_OTMoveIt\MovedFiles\11182008_230942\WINDOWS\system32\xxyxVmkl.dll Infected: Trojan.Win32.Monderb.wsx 1

C:\_OTMoveIt\MovedFiles\11182008_230942\WINDOWS\system32\yayvwvWm.dll Infected: Trojan.Win32.Monderb.wxt 1

C:\_OTMoveIt\MovedFiles\11182008_230942\WINDOWS\system32\yeewruuk.dll Infected: Trojan.Win32.Monder.ywb 1

The selected area was scanned.




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users