Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

System Hijacked by Trojan/Virus


  • This topic is locked This topic is locked
57 replies to this topic

#1 media prime

media prime

  • Members
  • 34 posts
  • OFFLINE
  •  
  • Local time:03:04 PM

Posted 02 November 2010 - 05:25 PM

Hello

I have caught I nasty little virus that my normal tricks aren't fixing so hoping someone can help.

Description of Problems:
1. Locked out of regedit.exe (warning message: Registry editing has been disabled by your administrator).
2. Multiple trojan/virus files showing up in my temp folder ex. yawghd72y7huhd.tmp & heuhf8ijdkfjidfd.tmp. As soon as I remove these tmp files they reappear almost immediately.
3. Did a full system scan with Malwarebytes in safemode, found all kinds of trojans/virus but wasn't able to remove many of them.
4. Firefox homepage hijacked with this address http://fl.iamwired.net/
5. Yahoo email account is receiving constant spam emails and is sending out emails to people on my mailing list without my knowledge.

OS:
Windows Vista 64

DDS Log:


DDS (Ver_10-11-01.01) - NTFS_AMD64  
Run by thrasherstudios77 at  7:50:18.79 on Tue 11/02/2010
Internet Explorer: 7.0.6001.18000 BrowserJavaVersion: 1.6.0_19
Microsoft® Windows Vista™ Home Premium   6.0.6001.1.1252.1.1033.18.4062.1640 [GMT -7:00]

AV: Paladin Antivirus *On-access scanning enabled* (Outdated)   {28e00e3b-806e-4533-925c-f4c3d79514b9}
SP: Windows Defender *enabled* (Updated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46}

============== Running Processes ===============

C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k rpcss
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_bd5387da\STacSV64.exe
C:\Windows\system32\SLsvc.exe
C:\Windows\system32\rundll32.exe
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\Hpservice.exe
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\taskeng.exe
C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_bd5387da\AESTSr64.exe
C:\Windows\system32\agr64svc.exe
C:\Windows\SysWOW64\svchost.exe -k Akamai
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files (x86)\Common Files\Autodesk Shared\Service\AdskScSrv.exe
C:\Program Files (x86)\Bonjour\mDNSResponder.exe
C:\Program Files (x86)\Spyware Doctor\BDT\BDTUpdateService.exe
C:\Windows\system32\svchost.exe -k bthsvcs
C:\Program Files (x86)\Autodesk\3ds Max 2011\mentalimages\satellite\raysat_3dsmax2011_32server.exe
C:\Program Files (x86)\Norton Internet Security\Engine\16.8.0.41\ccSvcHst.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Program Files (x86)\SMINST\BLService.exe
C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
C:\Program Files (x86)\Hewlett-Packard\Media\TV\Kernel\TV\TVCapSvc.exe
C:\Program Files (x86)\Hewlett-Packard\Media\TV\Kernel\TV\TVSched.exe
C:\Windows\System32\svchost.exe -k WerSvcGroup
C:\Windows\system32\SearchIndexer.exe
C:\Program Files (x86)\Norton Internet Security\Engine\16.8.0.41\ccSvcHst.exe
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskeng.exe
C:\Windows\Explorer.EXE
C:\Program Files (x86)\Google\Update\1.2.183.39\GoogleCrashHandler.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\IDT\WDM\sttray64.exe
C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe
C:\Program Files\TortoiseSVN\bin\TSVNCache.exe
C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe
C:\Windows\ehome\ehtray.exe
C:\Users\thrasherstudios77\AppData\Local\Temp\win.exe
C:\Users\thrasherstudios77\AppData\Local\Temp\gdi32.exe
C:\Users\thrasherstudios77\AppData\Local\Temp\win32.exe
C:\Users\thrasherstudios77\AppData\Local\Temp\taskmgr.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Users\thrasherstudios77\AppData\Local\Temp\system.exe
C:\Users\thrasherstudios77\AppData\Local\Temp\user.exe
"C:\Users\thrasherstudios77\AppData\Local\Temp\svchost.exe" 
C:\Windows\win.exe
C:\Windows\taskmgr.exe
"C:\Users\thrasherstudios77\AppData\Local\Temp\svchost.exe" 
C:\Users\thrasherstudios77\AppData\Local\Temp\system.exe
C:\Windows\wininst.exe
C:\Windows\spoolsv.exe
C:\Users\thrasherstudios77\AppData\Local\Temp\win32.exe
C:\Users\thrasherstudios77\AppData\Local\Temp\taskmgr.exe
C:\Windows\system.exe
C:\Windows\sysedit.exe
C:\Windows\winamp.exe
C:\Users\thrasherstudios77\AppData\Local\Temp\gdi32.exe
C:\Users\thrasherstudios77\AppData\Local\Temp\user.exe
C:\Windows\setup.exe
C:\Windows\win16.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\TSMAgent.exe
C:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe
C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Hp\HP Software Update\hpwuSchd2.exe
C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Program Files (x86)\Hewlett-Packard\HP Wireless Elite Desktop\HPKEYBOARDg.EXE
C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\acrotray.exe
C:\Program Files (x86)\Winamp\winampa.exe
C:\Users\thrasherstudios77\AppData\Local\Temp\win.exe
C:\Users\thrasherstudios77\AppData\Local\Temp\gdi32.exe
C:\Users\Administrator\AppData\Local\Temp\taskmgr.exe
C:\Users\thrasherstudios77\AppData\Local\Temp\win32.exe
C:\Users\thrasherstudios77\AppData\Local\Temp\taskmgr.exe
C:\Users\thrasherstudios77\AppData\Local\Temp\system.exe
C:\Users\thrasherstudios77\AppData\Local\Temp\user.exe
C:\Program Files (x86)\Hewlett-Packard\HP wireless Assistant\WiFiMsg.EXE
C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
C:\Program Files (x86)\Hewlett-Packard\Shared\HpqToaster.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
"C:\Users\thrasherstudios77\AppData\Local\Temp\svchost.exe" 
C:\Windows\win.exe
C:\Windows\taskmgr.exe
C:\Users\thrasherstudios77\AppData\Local\Temp\system.exe
"C:\Users\thrasherstudios77\AppData\Local\Temp\svchost.exe" 
C:\Windows\wininst.exe
C:\Users\Administrator\AppData\Local\Temp\taskmgr.exe
C:\Windows\ehome\ehmsas.exe
C:\Windows\spoolsv.exe
C:\Users\thrasherstudios77\AppData\Local\Temp\win32.exe
C:\Users\thrasherstudios77\AppData\Local\Temp\taskmgr.exe
C:\Users\thrasherstudios77\AppData\Local\Temp\win.exe
C:\Windows\system.exe
C:\Windows\sysedit.exe
C:\Windows\winamp.exe
C:\Users\thrasherstudios77\AppData\Local\Temp\gdi32.exe
C:\Users\thrasherstudios77\AppData\Local\Temp\user.exe
C:\Windows\setup.exe
C:\Windows\win16.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Users\thrasherstudios77\AppData\Local\Google\Update\1.2.183.39\GoogleCrashHandler.exe
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Windows\system32\wuauclt.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Windows\splwow64.exe
c:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe
C:\Users\THRASH~1\AppData\Local\Temp\sysedit.exe
C:\Windows\win32.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\thrasherstudios77\Virus Removal instructions\DDS\dds.scr
C:\Windows\system32\wbem\wmiprvse.exe

============== Pseudo HJT Report ===============

uStart Page = hxxp://www.startpage.com/
uDefault_Page_URL = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=en_us&c=91&bd=Pavilion&pf=cnnb
mStart Page = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=en_us&c=91&bd=Pavilion&pf=cnnb
mDefault_Page_URL = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=en_us&c=91&bd=Pavilion&pf=cnnb
uInternet Settings,ProxyServer = http=127.0.0.1:6092
uInternet Settings,ProxyOverride = <local>
uWinlogon: Shell=C:\Users\thrasherstudios77\AppData\Roaming\hotfix.exe
BHO: Symantec NCO BHO: {602adb0e-4aff-4217-8aa1-95dac4dfa408} - C:\Program Files (x86)\Norton Internet Security\Engine\16.8.0.41\coIEPlg.dll
BHO: Symantec Intrusion Prevention: {6d53ec84-6aae-4787-aeee-f4628f01010c} - C:\Program Files (x86)\Norton Internet Security\Engine\16.8.0.41\IPSBHO.DLL
TB: Norton Toolbar: {7febefe3-6b19-4349-98d2-ffb09d4b49ca} - C:\Program Files (x86)\Norton Internet Security\Engine\16.8.0.41\coIEPlg.dll
TB: Microsoft Live Search Toolbar: {1e61ed7c-7cb8-49d6-b9e9-ab4c880c8414} - c:\Program Files (x86)\MSN\Toolbar\3.0.0541.0\msneshellx.dll
TB: Adobe PDF: {47833539-d0c5-4125-9fa8-0819e2eaac93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
TB: Contribute Toolbar: {517bdde4-e3a7-4570-b21e-2b52b6139fc7} - C:\Program Files (x86)\Adobe\/Adobe Contribute CS4/contributeieplugin.dll
TB: PC Tools Browser Guard: {472734ea-242a-422b-adf8-83d1e48cc825} - C:\Program Files (x86)\Spyware Doctor\BDT\PCTBrowserDefender.dll
TB: {604BC32A-9680-40D1-9AC6-E06B23A1BA4C} - No File
TB: {8FF5E180-ABDE-46EB-B09E-D2AAB95CABE3} - No File
EB: IE Developer Toolbar: {a202b231-ef71-4a08-bdb9-4ce5ae8bde0a} - C:\Program Files (x86)\Microsoft\Internet Explorer Developer Toolbar\IEDevToolbar.dll
uRun: [LightScribe Control Panel] C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
uRun: [HPAdvisor] C:\Program Files (x86)\Hewlett-Packard\HP Advisor\HPAdvisor.exe autorun=AUTORUN
uRun: [ehTray.exe] C:\Windows\ehome\ehTray.exe
uRun: [uTorrent] "C:\Program Files (x86)\uTorrent\uTorrent.exe"
uRun: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /nosplash /minimized
uRun: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe"
uRun: [Google Update] "C:\Users\thrasherstudios77\AppData\Local\Google\Update\GoogleUpdate.exe" /c
uRun: [AdobeBridge] 
uRun: [WMPNSCFG] C:\Program Files (x86)\Windows Media Player\WMPNSCFG.exe
uRun: [Livedrive] "C:\Program Files (x86)\Livedrive\Livedrive.exe"
uRun: [wibwegcp] C:\Users\thrasherstudios77\AppData\Local\hefbhssbs\dthmqnotssd.exe
uRun: [dnqnjtmh] C:\Users\thrasherstudios77\AppData\Local\hoftpggbv\xjqcrbgtssd.exe
uRun: [yhyrdvve] C:\Users\thrasherstudios77\AppData\Local\mlcqcpmpw\focprckuqiw.exe
uRun: [LvSWPiejlYiL] C:\Users\THRASH~1\AppData\Local\Temp\if72tptap0.exe
uRun: [LvSWPiejlqc] C:\Users\THRASH~1\AppData\Local\Temp\win.exe
uRun: [LvSWPiejlupc] C:\Users\THRASH~1\AppData\Local\Temp\sysedit.exe
uRun: [LvSWPiejlqb] C:\Users\THRASH~1\AppData\Local\Temp\winamp.exe
uRun: [LvSWPiejlora] C:\Users\THRASH~1\AppData\Local\Temp\iexplarer.exe
uRun: [LvSWPiejlk+] C:\Users\THRASH~1\AppData\Local\Temp\gdi32.exe
uRun: [LvSWPiejlprc] C:\Users\THRASH~1\AppData\Local\Temp\install.exe
uRun: [LvSWPiejlppf] C:\Users\THRASH~1\AppData\Local\Temp\services.exe
uRun: [LvSWPiejlna] C:\Users\THRASH~1\AppData\Local\Temp\login.exe
uRun: [LvSWPiejlYiLd.com/dw/dw.php?id=%s&ver=d01] C:\Users\THRASH~1\AppData\Local\Temp\if72tptap0.exe
uRun: [LvSWPiejlrxc] C:\Users\THRASH~1\AppData\Local\Temp\spoolsv.exe
uRun: [LvSWPiejlq+] C:\Users\THRASH~1\AppData\Local\Temp\win32.exe
uRun: [LvSWPiejlmc] C:\Users\THRASH~1\AppData\Local\Temp\mdm.exe
uRun: [LvSWPiejlqW] C:\Users\THRASH~1\AppData\Local\Temp\drweb.exe
uRun: [LvSWPiejlotc] C:\Users\THRASH~1\AppData\Local\Temp\hexdump.exe
uRun: [LvSWPiejlo+] C:\Users\THRASH~1\AppData\Local\Temp\avp32.exe
uRun: [LvSWPiejlpsc] C:\Users\THRASH~1\AppData\Local\Temp\taskmgr.exe
uRun: [LvSWPiejlqse] C:\Users\THRASH~1\AppData\Local\Temp\winlogon.exe
uRun: [LvSWPiejlsPc] C:\Users\THRASH~1\AppData\Local\Temp\nvsvc32.exe
uRun: [LvSWPiejlkc] C:\Users\THRASH~1\AppData\Local\Temp\cmd.exe
uRun: [LvSWPiejloc] C:\Users\THRASH~1\AppData\Local\Temp\avp.exe
uRun: [LvSWPiejlhb] C:\Users\THRASH~1\AppData\Local\Temp\debug.exe
uRun: [LvSWPiejlqe] C:\Users\THRASH~1\AppData\Local\Temp\setup.exe
uRun: [LvSWPiejlud] C:\Users\THRASH~1\AppData\Local\Temp\system.exe
uRun: [LvSWPiejlqf] C:\Users\THRASH~1\AppData\Local\Temp\user.exe
uRun: [DokterWatson.exe] C:\Users\thrasherstudios77\AppData\Local\Temp\DokterWatson.exe
uRun: [uPc+kt0NlXJsiv] rundll32.exe C:\Windows\system32\uccaj.dll, SystemServer
uRun: [LvSWPiejlVP] C:\Users\THRASH~1\AppData\Local\Temp\b4ct5.exe
uRun: [mainfull70707.exe] C:\Users\thrasherstudios77\AppData\Roaming\1BD10055D5F54E8CC636C7B86923BD4D\mainfull70707.exe
uRun: [LvSWPiejlonc] C:\Users\THRASH~1\AppData\Local\Temp\qbrhfkef.exe
uRun: [uPc+kt0NnKJsiv] rundll32.exe C:\Windows\system32\jseg0.dll, SystemServer
uRun: [LvSWPiejlprc(Windows; U; Windows NT 6.0; en-US; rv:1.9.0.3) Gecko/2008092417 Firefox/3.0.3] C:\Users\THRASH~1\AppData\Local\Temp\install.exe
uRun: [LvSWPiejlqvc] C:\Users\THRASH~1\AppData\Local\Temp\svchost.exe
uRun: [Mqva] C:\Windows\win.exe
uRun: [Mqqoc] C:\Windows\debug.exe
uRun: [Mqurb] C:\Windows\taskmgr.exe
uRun: [LvqozrChfngtrf] C:\Users\thrasherstudios77\AppData\Local\Temp\svchost.exe
uRun: [LvqozrChfnguuc] C:\Users\thrasherstudios77\AppData\Local\Temp\system.exe
uRun: [Lvbsufhfngosf] C:\Users\Administrator\AppData\Local\Temp\taskmgr.exe
uRun: [Lvbsufhfngob] C:\Users\Administrator\AppData\Local\Temp\drweb.exe
uRun: [Lvbsufhfngmtd] C:\Users\Administrator\AppData\Local\Temp\iexplarer.exe
uRun: [Mqvsc] C:\Windows\winlogon.exe
uRun: [Mqvre] C:\Windows\wininst.exe
uRun: [Mqug] C:\Windows\smss.exe
uRun: [Mquuf] C:\Windows\spoolsv.exe
uRun: [LvSWPiejlne] C:\Users\THRASH~1\AppData\Local\Temp\lsass.exe
uRun: [LvSWPiejlrf] C:\Users\THRASH~1\AppData\Local\Temp\smss.exe
uRun: [LvqozrChfngrA] C:\Users\thrasherstudios77\AppData\Local\Temp\win32.exe
uRun: [LvqozrChfngmve] C:\Users\thrasherstudios77\AppData\Local\Temp\hexdump.exe
uRun: [LvqozrChfngosf] C:\Users\thrasherstudios77\AppData\Local\Temp\taskmgr.exe
uRun: [LvqozrChfngqd] C:\Users\thrasherstudios77\AppData\Local\Temp\lsass.exe
uRun: [LvqozrChfngre] C:\Users\thrasherstudios77\AppData\Local\Temp\win.exe
uRun: [Mquxe] C:\Windows\system.exe
uRun: [Mqsuc] C:\Windows\lsass.exe
uRun: [Mqutc] C:\Windows\sysedit.exe
uRun: [LvSWPiejlpe] C:\Users\THRASH~1\AppData\Local\Temp\csrss.exe
uRun: [Mqvpe] C:\Windows\winamp.exe
uRun: [Mqrtc] C:\Windows\hexdump.exe
uRun: [LvqozrChfngl/] C:\Users\thrasherstudios77\AppData\Local\Temp\gdi32.exe
uRun: [LvqozrChfngne] C:\Users\thrasherstudios77\AppData\Local\Temp\mdm.exe
uRun: [LvqozrChfngta] C:\Users\thrasherstudios77\AppData\Local\Temp\user.exe
uRun: [LvqozrChfngoh] C:\Users\thrasherstudios77\AppData\Local\Temp\csrss.exe
uRun: [Mquvc] C:\Windows\setup.exe
uRun: [MqvPc] C:\Windows\win16.exe
uRun: [LvSWPiejl9z+ASH~1\AppData\Local\Temp\407262271.exe] C:\Users\THRASH~1\AppData\Local\Temp\407262271.exe
uRun: [Mqruqc] C:\Windows\iexplarer.exe
uRun: [LvqozrChfngotd] C:\Users\thrasherstudios77\AppData\Local\Temp\install.exe
uRun: [LvqozrChfngob] C:\Users\thrasherstudios77\AppData\Local\Temp\drweb.exe
uRun: [LvqozrChfngsfP] C:\Users\thrasherstudios77\AppData\Local\Temp\nvsvc32.exe
uRun: [LvqozrChfngnb] C:\Users\thrasherstudios77\AppData\Local\Temp\cmd.exe
uRun: [LvqozrChfngph] C:\Users\thrasherstudios77\AppData\Local\Temp\setup.exe
uRun: [MqsZ] C:\Windows\mdm.exe
uRun: [Mquta] C:\Windows\services.exe
uRun: [Mqpe] C:\Windows\avp.exe
uRun: [MqpSc] C:\Windows\avp32.exe
mRun: [DVDAgent] "C:\Program Files (x86)\Hewlett-Packard\Media\DVD\DVDAgent.exe"
mRun: [TSMAgent] "C:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\TSMAgent.exe"
mRun: [CLMLServer for HP TouchSmart] "C:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe"
mRun: [TVAgent] "C:\Program Files (x86)\Hewlett-Packard\Media\TV\TVAgent.exe"
mRun: [UCam_Menu] "C:\Program Files (x86)\Hewlett-Packard\Media\Webcam\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Hewlett-Packard\Media\Webcam" update "Software\Hewlett-Packard\Media\Webcam"
mRun: [UpdateLBPShortCut] "C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\LabelPrint" UpdateWithCreateOnce "Software\CyberLink\LabelPrint\2.5"
mRun: [QlbCtrl.exe] "C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe" /Start
mRun: [UpdateP2GoShortCut] "C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"
mRun: [UpdatePDIRShortCut] "C:\Program Files (x86)\CyberLink\PowerDirector\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\PowerDirector" UpdateWithCreateOnce "SOFTWARE\CyberLink\PowerDirector\7.0"
mRun: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
mRun: [HP Health Check Scheduler] c:\Program Files (x86)\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
mRun: [HP Software Update] C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe
mRun: [hpWirelessAssistant] C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
mRun: [HP KEYBOARDg] "C:\Program Files (x86)\Hewlett-Packard\HP Wireless Elite Desktop\HPKEYBOARDg.EXE"
mRun: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
mRun: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
mRun: [AdobeCS4ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe" -launchedbylogin
mRun: [Adobe Acrobat Speed Launcher] "C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrobat_sl.exe"
mRun: [<NO NAME>] 
mRun: [Acrobat Assistant 8.0] "C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe"
mRun: [Adobe_ID0ENQBO] C:\PROGRA~2\COMMON~1\Adobe\ADOBEV~1\Server\bin\VERSIO~2.EXE
mRun: [SBAMTray] C:\Program Files (x86)\Sunbelt Software\VIPRE\SBAMTray.exe
mRun: [WinampAgent] "C:\Program Files (x86)\Winamp\winampa.exe"
mRun: [LvSWPiejlYiL] C:\Users\THRASH~1\AppData\Local\Temp\if72tptap0.exe
mRun: [LvSWPiejlqc] C:\Users\THRASH~1\AppData\Local\Temp\win.exe
mRun: [LvSWPiejlupc] C:\Users\THRASH~1\AppData\Local\Temp\sysedit.exe
mRun: [LvSWPiejlqb] C:\Users\THRASH~1\AppData\Local\Temp\winamp.exe
mRun: [LvSWPiejlora] C:\Users\THRASH~1\AppData\Local\Temp\iexplarer.exe
mRun: [LvSWPiejlk+] C:\Users\THRASH~1\AppData\Local\Temp\gdi32.exe
mRun: [LvSWPiejlprc] C:\Users\THRASH~1\AppData\Local\Temp\install.exe
mRun: [LvSWPiejlppf] C:\Users\THRASH~1\AppData\Local\Temp\services.exe
mRun: [LvSWPiejlna] C:\Users\THRASH~1\AppData\Local\Temp\login.exe
mRun: [LvSWPiejlYiLd.com/dw/dw.php?id=%s&ver=d01] C:\Users\THRASH~1\AppData\Local\Temp\if72tptap0.exe
mRun: [LvLXPiejlupc] C:\Users\ADMINI~1\AppData\Local\Temp\sysedit.exe
mRun: [LvLXPiejlpsc] C:\Users\ADMINI~1\AppData\Local\Temp\taskmgr.exe
mRun: [LvLXPiejlqc] C:\Users\ADMINI~1\AppData\Local\Temp\win.exe
mRun: [LvLXPiejlo+] C:\Users\ADMINI~1\AppData\Local\Temp\avp32.exe
mRun: [LvLXPiejlqvc] C:\Users\ADMINI~1\AppData\Local\Temp\wininst.exe
mRun: [LvSWPiejlrxc] C:\Users\THRASH~1\AppData\Local\Temp\spoolsv.exe
mRun: [LvSWPiejlq+] C:\Users\THRASH~1\AppData\Local\Temp\win32.exe
mRun: [LvSWPiejlmc] C:\Users\THRASH~1\AppData\Local\Temp\mdm.exe
mRun: [LvSWPiejlqW] C:\Users\THRASH~1\AppData\Local\Temp\drweb.exe
mRun: [LvSWPiejlotc] C:\Users\THRASH~1\AppData\Local\Temp\hexdump.exe
mRun: [LvSWPiejlo+] C:\Users\THRASH~1\AppData\Local\Temp\avp32.exe
mRun: [LvSWPiejlpsc] C:\Users\THRASH~1\AppData\Local\Temp\taskmgr.exe
mRun: [LvSWPiejlsPc] C:\Users\THRASH~1\AppData\Local\Temp\nvsvc32.exe
mRun: [LvSWPiejlkc] C:\Users\THRASH~1\AppData\Local\Temp\cmd.exe
mRun: [LvSWPiejloc] C:\Users\THRASH~1\AppData\Local\Temp\avp.exe
mRun: [LvSWPiejlhb] C:\Users\THRASH~1\AppData\Local\Temp\debug.exe
mRun: [LvSWPiejlqe] C:\Users\THRASH~1\AppData\Local\Temp\setup.exe
mRun: [LvSWPiejlud] C:\Users\THRASH~1\AppData\Local\Temp\system.exe
mRun: [LvSWPiejlqf] C:\Users\THRASH~1\AppData\Local\Temp\user.exe
mRun: [uPc+kt0NlXJsiv] rundll32.exe C:\Windows\system32\uccaj.dll, SystemServer
mRun: [LvSWPiejlVP] C:\Users\THRASH~1\AppData\Local\Temp\b4ct5.exe
mRun: [LvSWPiejlonc] C:\Users\THRASH~1\AppData\Local\Temp\qbrhfkef.exe
mRun: [uPc+kt0NnKJsiv] rundll32.exe C:\Windows\system32\jseg0.dll, SystemServer
mRun: [msclle.exe] "C:\Users\THRASH~1\AppData\Local\Temp\msclle.exe"
mRun: [LvSWPiejlprc(Windows; U; Windows NT 6.0; en-US; rv:1.9.0.3) Gecko/2008092417 Firefox/3.0.3] C:\Users\THRASH~1\AppData\Local\Temp\install.exe
mRun: [AdobeCS5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
mRun: [SwitchBoard] "C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe"
mRun: [LvSWPiejlqvc] C:\Users\THRASH~1\AppData\Local\Temp\svchost.exe
mRun: [Mqva] C:\Windows\win.exe
mRun: [Mqqoc] C:\Windows\debug.exe
mRun: [Mqurb] C:\Windows\taskmgr.exe
mRun: [LvqozrChfnguuc] C:\Users\thrasherstudios77\AppData\Local\Temp\system.exe
mRun: [LvqozrChfngtrf] C:\Users\thrasherstudios77\AppData\Local\Temp\svchost.exe
mRun: [LvLXPiejlqW] C:\Users\ADMINI~1\AppData\Local\Temp\drweb.exe
mRun: [LvLXPiejlora] C:\Users\ADMINI~1\AppData\Local\Temp\iexplarer.exe
mRun: [Mqvre] C:\Windows\wininst.exe
mRun: [Mqvsc] C:\Windows\winlogon.exe
mRun: [Lvbsufhfngosf] C:\Users\Administrator\AppData\Local\Temp\taskmgr.exe
mRun: [Lvbsufhfngob] C:\Users\Administrator\AppData\Local\Temp\drweb.exe
mRun: [Lvbsufhfngmtd] C:\Users\Administrator\AppData\Local\Temp\iexplarer.exe
mRun: [Mqug] C:\Windows\smss.exe
mRun: [Mquuf] C:\Windows\spoolsv.exe
mRun: [LvSWPiejlne] C:\Users\THRASH~1\AppData\Local\Temp\lsass.exe
mRun: [LvSWPiejlrf] C:\Users\THRASH~1\AppData\Local\Temp\smss.exe
mRun: [LvqozrChfngrA] C:\Users\thrasherstudios77\AppData\Local\Temp\win32.exe
mRun: [LvqozrChfngmve] C:\Users\thrasherstudios77\AppData\Local\Temp\hexdump.exe
mRun: [LvqozrChfngosf] C:\Users\thrasherstudios77\AppData\Local\Temp\taskmgr.exe
mRun: [LvqozrChfngqd] C:\Users\thrasherstudios77\AppData\Local\Temp\lsass.exe
mRun: [LvqozrChfngre] C:\Users\thrasherstudios77\AppData\Local\Temp\win.exe
mRun: [Mquxe] C:\Windows\system.exe
mRun: [Mqsuc] C:\Windows\lsass.exe
mRun: [Mqutc] C:\Windows\sysedit.exe
mRun: [LvSWPiejlpe] C:\Users\THRASH~1\AppData\Local\Temp\csrss.exe
mRun: [Mqvpe] C:\Windows\winamp.exe
mRun: [Mqrtc] C:\Windows\hexdump.exe
mRun: [LvqozrChfngl/] C:\Users\thrasherstudios77\AppData\Local\Temp\gdi32.exe
mRun: [LvqozrChfngne] C:\Users\thrasherstudios77\AppData\Local\Temp\mdm.exe
mRun: [LvqozrChfngta] C:\Users\thrasherstudios77\AppData\Local\Temp\user.exe
mRun: [LvqozrChfngoh] C:\Users\thrasherstudios77\AppData\Local\Temp\csrss.exe
mRun: [Mquvc] C:\Windows\setup.exe
mRun: [MqvPc] C:\Windows\win16.exe
mRun: [LvSWPiejl9z+ASH~1\AppData\Local\Temp\407262271.exe] C:\Users\THRASH~1\AppData\Local\Temp\407262271.exe
mRun: [Mqruqc] C:\Windows\iexplarer.exe
mRun: [LvqozrChfngotd] C:\Users\thrasherstudios77\AppData\Local\Temp\install.exe
mRun: [LvqozrChfngob] C:\Users\thrasherstudios77\AppData\Local\Temp\drweb.exe
mRun: [LvqozrChfngsfP] C:\Users\thrasherstudios77\AppData\Local\Temp\nvsvc32.exe
mRun: [LvqozrChfngnb] C:\Users\thrasherstudios77\AppData\Local\Temp\cmd.exe
mRun: [LvqozrChfngph] C:\Users\thrasherstudios77\AppData\Local\Temp\setup.exe
mRun: [MqsZ] C:\Windows\mdm.exe
mRun: [Mquta] C:\Windows\services.exe
mRun: [Mqpe] C:\Windows\avp.exe
mRun: [MqpSc] C:\Windows\avp32.exe
StartupFolder: C:\Users\THRASH~1\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\MSNMSN~1.LNK - C:\Users\thrasherstudios77\AppData\Local\Temp\DokterWatson.exe
StartupFolder: C:\Users\thrasherstudios77\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote Table Of Contents.onetoc2
StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\BLUETO~1.LNK - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
uPolicies-explorer: NoFolderOptions = 1 (0x1)
uPolicies-system: DisableRegistryTools = 1 (0x1)
mPolicies-explorer: NoActiveDesktop = 1 (0x1)
mPolicies-system: EnableLUA = 0 (0x0)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
IE: Append Link Target to Existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
IE: Append to Existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html
IE: Convert Link Target to Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
IE: Convert to Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html
IE: E&xport to Microsoft Excel - C:\PROGRA~2\MICROS~2\Office12\EXCEL.EXE/3000
IE: Send image to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
IE: Send page to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
IE: Sothink SWF Catcher - C:\Program Files (x86)\Common Files\SourceTec\SWF Catcher\InternetExplorer.htm
IE: {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
IE: {E19ADC6E-3909-43E4-9A89-B7B676377EE3} - C:\Program Files (x86)\Common Files\SourceTec\SWF Catcher\InternetExplorer.htm
IE: {48FFE35F-36D9-44bd-A6CC-1D34414EAC0D} - {CC962137-2E78-4F94-975E-FC0C07DBD78F} - C:\Program Files (x86)\Microsoft\Internet Explorer Developer Toolbar\IEDevToolbar.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - C:\PROGRA~2\MICROS~2\Office12\REFIEBAR.DLL
LSP: C:\Program Files (x86)\Common Files\PC Tools\Lsp\PCTLsp.dll
DPF: {166B1BCA-3F9C-11CF-8075-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
DPF: {4871A87A-BFDD-4106-8153-FFDE2BAC2967} - hxxp://dlm.tools.akamai.com/dlmanager/versions/activex/dlm-activex-2.2.5.0.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_19-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0019-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_19-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_19-windows-i586.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
Handler: symres - {AA1061FE-6C41-421f-9344-69640C9732AB} - C:\Program Files (x86)\Norton Internet Security\Engine\16.8.0.41\CoIEPlg.dll
STS: C:\Windows\SysWow64\m9uhzzg2.dll: {b1ba40a2-75f2-51bd-f413-04b13a2c8953} - C:\Windows\SysWow64\m9uhzzg2.dll
STS: C:\Windows\SysWow64\n1weqnxybj.dll: {b1ba40a1-75f2-51bd-f313-04b03a2c8953} - C:\Windows\SysWow64\n1weqnxybj.dll
mASetup: {10880D85-AAD9-4558-ABDC-2AB1552D831F} - "C:\Program Files (x86)\Common Files\LightScribe\LSRunOnce.exe"

================= FIREFOX ===================

FF - ProfilePath - C:\Users\THRASH~1\AppData\Roaming\Mozilla\Firefox\Profiles\778cdypt.default\
FF - prefs.js: browser.search.defaulturl - hxxp://fl.iamwired.net/websearch.php?src=tops&search=
FF - prefs.js: browser.search.selectedEngine - Search
FF - prefs.js: browser.startup.homepage - hxxp://fl.iamwired.net/
FF - component: C:\Program Files (x86)\Mozilla Firefox\extensions\{AB2CE124-6272-4b12-94A9-7303C7397BD1}\components\SkypeFfComponent.dll
FF - component: C:\Program Files (x86)\Spyware Doctor\BDT\FireFox\platform\WINNT_x86-msvc\components\libheuristic.dll
FF - component: C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\coFFPlgn\components\coFFPlgn.dll
FF - component: C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\IPSFFPlgn\components\IPSFFPl.dll
FF - component: C:\Users\thrasherstudios77\AppData\Roaming\Mozilla\Firefox\Profiles\778cdypt.default\extensions\{FCAB6FDD-5585-425b-95C1-5ED856F3FD08}\components\nsCatcher.dll
FF - plugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll
FF - plugin: C:\Program Files (x86)\Google\Update\1.2.183.13\npGoogleOneClick8.dll
FF - plugin: C:\Program Files (x86)\Google\Update\1.2.183.17\npGoogleOneClick8.dll
FF - plugin: C:\Program Files (x86)\Google\Update\1.2.183.23\npGoogleOneClick8.dll
FF - plugin: C:\Program Files (x86)\Google\Update\1.2.183.27\npGoogleOneClick8.dll
FF - plugin: C:\Program Files (x86)\Google\Update\1.2.183.39\npGoogleOneClick8.dll
FF - plugin: C:\Program Files (x86)\Mozilla Firefox\plugins\npwachk.dll
FF - plugin: C:\Users\thrasherstudios77\AppData\Local\Google\Update\1.2.183.39\npGoogleOneClick8.dll
FF - plugin: C:\Users\thrasherstudios77\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll
FF - plugin: C:\Users\thrasherstudios77\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll
FF - plugin: C:\Users\thrasherstudios77\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll
FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
FF - HiddenExtension: Java Console: No Registry Reference - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0019-ABCDEFFEDCBA}

---- FIREFOX POLICIES ----
C:\Program Files (x86)\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgbaam7a8h", true); 
C:\Program Files (x86)\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--fiqz9s", true); // Traditional
C:\Program Files (x86)\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--fiqs8s", true); // Simplified
C:\Program Files (x86)\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--j6w193g", true);
C:\Program Files (x86)\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgberp4a5d4ar", true); 
C:\Program Files (x86)\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgberp4a5d4a87g", true);
C:\Program Files (x86)\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgbqly7c0a67fbc", true);
C:\Program Files (x86)\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgbqly7cvafr", true);
C:\Program Files (x86)\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--kpry57d", true);  // Traditional
C:\Program Files (x86)\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--kprw13d", true);  // Simplified

============= SERVICES / DRIVERS ===============

R0 PCTCore;PCTools KDS;C:\Windows\System32\drivers\PCTCore64.sys [2010-3-3 218056]
R0 PxHlpa64;PxHlpa64;C:\Windows\System32\drivers\PxHlpa64.sys [2010-2-25 55024]
R0 SymEFA;Symantec Extended File Attributes;C:\Windows\System32\drivers\NISx64\1008000.029\SymEFA64.sys [2010-1-27 402992]
R1 BHDrvx64;Symantec Heuristics Driver;C:\Windows\System32\drivers\NISx64\1008000.029\BHDrvx64.sys [2010-1-27 334384]
R1 CbFs;CbFs;C:\Windows\System32\drivers\cbfs.sys [2010-4-6 191960]
R1 ccHP;Symantec Hash Provider;C:\Windows\System32\drivers\NISx64\1008000.029\cchpx64.sys [2010-1-27 583296]
R1 IDSVia64;IDSVia64;C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\IPSDefs\20090604.001\IDSvia64.sys [2009-6-10 396848]
R1 sbtis;sbtis;C:\Windows\System32\drivers\sbtis.sys [2010-2-25 82992]
R2 {55662437-DA8C-40c0-AADA-2C816A897A49};{55662437-DA8C-40c0-AADA-2C816A897A49};C:\Program Files (x86)\Hewlett-Packard\Media\DVD\000.fcl [2008-9-26 27632]
R2 AESTFilters;Andrea ST Filters Service;C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_bd5387da\AESTSr64.exe [2009-3-18 89088]
R2 Akamai;Akamai NetSession Interface;C:\Windows\System32\svchost.exe -k Akamai [2008-1-20 27648]
R2 Browser Defender Update Service;Browser Defender Update Service;C:\Program Files (x86)\Spyware Doctor\BDT\BDTUpdateService.exe [2010-3-3 198608]
R2 hpsrv;HP Service;C:\Windows\System32\hpservice.exe [2008-3-18 23040]
R2 mi-raysat_3dsmax2011_32;mental ray 3.8 Satellite for Autodesk 3ds Max 2011 32-bit 32-bit;C:\Program Files (x86)\Autodesk\3ds Max 2011\mentalimages\satellite\raysat_3dsmax2011_32server.exe [2010-3-10 86016]
R2 Norton Internet Security;Norton Internet Security;C:\Program Files (x86)\Norton Internet Security\Engine\16.8.0.41\ccSvcHst.exe [2010-1-27 117640]
R2 NPF;NetGroup Packet Filter Driver;C:\Windows\System32\drivers\npf.sys [2009-10-20 47632]
R2 Recovery Service for Windows;Recovery Service for Windows;C:\Program Files (x86)\SMINST\BLService.exe [2008-10-20 365904]
R2 sbapifs;sbapifs;C:\Windows\System32\drivers\sbapifs.sys [2009-8-10 63536]
R2 TVCapSvc;TV Background Capture Service (TVBCS);C:\Program Files (x86)\Hewlett-Packard\Media\TV\Kernel\TV\TVCapSvc.exe [2008-9-24 296320]
R2 TVSched;TV Task Scheduler (TVTS);C:\Program Files (x86)\Hewlett-Packard\Media\TV\Kernel\TV\TVSched.exe [2008-9-24 116096]
R3 Com4QLBEx;Com4QLBEx;C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [2008-10-19 193840]
R3 enecir;ENE CIR Receiver;C:\Windows\System32\drivers\enecir.sys [2008-4-28 64000]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv;C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2009-6-4 131632]
R3 NETw5v64;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit;C:\Windows\System32\drivers\NETw5v64.sys [2009-3-18 4745216]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver;C:\Windows\System32\drivers\nvhda64v.sys [2008-8-5 56352]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
S2 gupdate;Google Update Service (gupdate);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2008-9-4 133104]
S2 mi-raysat_3dsMax2009_64;mental ray 3.6 Satellite for Autodesk 3ds Max 2009 64-bit 64-bit;C:\Program Files\Autodesk\3ds Max 2009\mentalray\satellite\raysat_3dsMax2009_64server.exe [2008-3-10 65536]
S2 SBAMSvc;VIPRE Antivirus + Antispyware;C:\Program Files (x86)\Sunbelt Software\VIPRE\SBAMSvc.exe [2009-9-7 1012040]
S3 Adobe Version Cue CS4;Adobe Version Cue CS4;C:\Program Files (x86)\Common Files\Adobe\Adobe Version Cue CS4\Server\bin\VersionCueCS4.exe [2008-8-15 284016]
S3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64;C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2009-10-21 1315592]
S3 JMCR;JMCR;C:\Windows\System32\drivers\jmcr.sys [2008-7-21 145496]
S3 NETw3v64;Intel(R) PRO/Wireless 3945ABG Adapter Driver for Windows Vista 64 Bit;C:\Windows\System32\drivers\NETw3v64.sys [2008-1-20 3154432]
S3 PerfHost;Performance Counter DLL Host;C:\Windows\SysWOW64\perfhost.exe [2008-1-20 19968]
S3 sdAuxService;PC Tools Auxiliary Service;C:\Program Files (x86)\Spyware Doctor\pctsAuxs.exe [2010-3-3 365280]
S3 sdCoreService;PC Tools Security Service;C:\Program Files (x86)\Spyware Doctor\pctsSvc.exe [2010-3-3 1141712]
S3 SwitchBoard;Adobe SwitchBoard;C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-2-19 517096]
S3 USBAAPL64;Apple Mobile USB Driver;C:\Windows\System32\drivers\usbaapl64.sys [2009-8-28 49152]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-3-18 1020768]
S3 yukonx64;NDIS6.0 Miniport Driver for Marvell Yukon Ethernet Controller;C:\Windows\System32\drivers\yk60x64.sys [2006-11-2 273408]
S4 clr_optimization_v2.0.50727_64;Microsoft .NET Framework NGEN v2.0.50727_X64;C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe [2009-8-26 93184]

=============== Created Last 30 ================

2010-11-02 06:28:03	21636	---h--w-	C:\Windows\avp32.exe
2010-11-02 04:27:37	21636	---h--w-	C:\Windows\win32.exe
2010-11-02 02:37:05	21636	---h--w-	C:\Windows\avp.exe
2010-11-02 02:27:02	21636	---h--w-	C:\Windows\services.exe
2010-11-02 02:27:02	21636	---h--w-	C:\Windows\mdm.exe
2010-10-28 04:50:07	21636	---h--w-	C:\Windows\iexplarer.exe
2010-10-27 17:44:54	21636	---h--w-	C:\Windows\win16.exe
2010-10-27 17:44:53	21636	---h--w-	C:\Windows\setup.exe
2010-10-26 19:19:40	32256	----a-w-	C:\Windows\System32\Apphlpdm.dll
2010-10-26 19:19:40	28672	----a-w-	C:\Windows\SysWow64\Apphlpdm.dll
2010-10-26 19:19:38	4240384	----a-w-	C:\Windows\SysWow64\GameUXLegacyGDFs.dll
2010-10-26 19:19:37	4240384	----a-w-	C:\Windows\System32\GameUXLegacyGDFs.dll
2010-10-25 08:33:13	21636	---h--w-	C:\Windows\hexdump.exe
2010-10-25 06:41:34	21636	---h--w-	C:\Windows\winamp.exe
2010-10-25 06:41:33	21636	---h--w-	C:\Windows\sysedit.exe
2010-10-25 03:49:51	21636	---h--w-	C:\Windows\lsass.exe
2010-10-25 03:49:50	21636	---h--w-	C:\Windows\system.exe
2010-10-24 07:20:49	21636	---h--w-	C:\Windows\spoolsv.exe
2010-10-24 07:20:48	21636	---h--w-	C:\Windows\smss.exe
2010-10-24 05:20:58	--------	d-----w-	C:\Program Files (x86)\Chaos Group
2010-10-24 05:16:01	21636	---h--w-	C:\Windows\winlogon.exe
2010-10-24 05:16:00	21636	---h--w-	C:\Windows\wininst.exe
2010-10-19 23:22:14	21636	---h--w-	C:\Windows\taskmgr.exe
2010-10-19 23:22:13	21636	---h--w-	C:\Windows\win.exe
2010-10-19 23:22:13	21636	---h--w-	C:\Windows\debug.exe
2010-10-17 22:13:20	--------	d-----w-	C:\Program Files\Common Files\ChaosGroup
2010-10-17 22:13:01	--------	d-----w-	C:\Program Files\Chaos Group
2010-10-17 17:53:38	--------	d-----w-	C:\Program Files (x86)\Common Files\ChaosGroup
2010-10-17 17:01:13	--------	d-----w-	C:\Program Files (x86)\Common Files\Alias Shared
2010-10-17 16:52:04	--------	d-----w-	C:\FLEXLM
2010-10-15 17:17:58	--------	d-----w-	C:\Program Files (x86)\Common Files\Autodesk Shared
2010-10-14 15:15:35	--------	d-----w-	C:\PROGRA~3\regid.1986-12.com.adobe
2010-10-14 14:24:23	--------	d-----w-	C:\Program Files (x86)\Common Files\Akamai
2010-10-14 07:32:12	531968	----a-w-	C:\Windows\SysWow64\comctl32.dll
2010-10-14 07:32:09	633856	----a-w-	C:\Windows\System32\comctl32.dll
2010-10-13 10:12:18	316416	----a-w-	C:\Windows\System32\msshsq.dll
2010-10-13 10:12:18	231936	----a-w-	C:\Windows\SysWow64\msshsq.dll
2010-10-13 07:04:28	1923584	----a-w-	C:\Windows\System32\ole32.dll
2010-10-13 07:04:27	408064	----a-w-	C:\Program Files\Windows NT\Accessories\wordpad.exe
2010-10-13 07:04:27	339968	----a-w-	C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe
2010-10-13 07:04:27	1315840	----a-w-	C:\Windows\SysWow64\ole32.dll
2010-10-13 07:04:24	954752	----a-w-	C:\Windows\SysWow64\mfc40.dll
2010-10-13 07:04:24	954288	----a-w-	C:\Windows\SysWow64\mfc40u.dll
2010-10-13 07:04:22	189952	----a-w-	C:\Windows\System32\t2embed.dll
2010-10-13 07:04:22	157184	----a-w-	C:\Windows\SysWow64\t2embed.dll
2010-10-13 07:04:11	2751488	----a-w-	C:\Windows\System32\win32k.sys
2010-10-13 07:03:54	171008	----a-w-	C:\Program Files\Windows Media Player\wmplayer.exe
2010-10-13 07:03:54	168960	----a-w-	C:\Program Files (x86)\Windows Media Player\wmplayer.exe
2010-10-13 07:03:52	8147968	----a-w-	C:\Windows\System32\wmploc.DLL
2010-10-13 07:03:52	8147456	----a-w-	C:\Windows\SysWow64\wmploc.DLL
2010-10-13 07:01:45	343040	----a-w-	C:\Windows\System32\schannel.dll
2010-10-13 07:01:45	274432	----a-w-	C:\Windows\SysWow64\schannel.dll
2010-10-13 07:01:42	866816	----a-w-	C:\Windows\SysWow64\wmpmde.dll
2010-10-13 07:01:42	1090048	----a-w-	C:\Windows\System32\wmpmde.dll
2010-10-12 15:24:40	--------	d-----w-	C:\Program Files (x86)\MadeByPi
2010-10-04 14:56:15	--------	d-----w-	C:\Users\THRASH~1\AppData\Local\Adobe

==================== Find3M  ====================

2010-09-27 09:54:40	141	----a-w-	C:\Users\THRASH~1\AppData\Roaming\hgksfg.bat
2010-09-27 09:54:32	30000	----a-w-	C:\Windows\SysWow64\n1weqnxybj.dll
2010-09-27 09:54:32	30000	----a-w-	C:\Windows\SysWow64\jseg0.dll
2010-09-27 09:33:09	30000	----a-w-	C:\Windows\SysWow64\uccaj.dll
2010-09-27 09:33:08	30000	----a-w-	C:\Windows\SysWow64\xa8re7o.dll
2010-09-12 08:27:00	30000	----a-w-	C:\Windows\SysWow64\m9uhzzg2.dll
2010-09-08 17:26:59	833024	----a-w-	C:\Windows\SysWow64\wininet.dll
2010-09-08 17:23:42	78336	----a-w-	C:\Windows\SysWow64\ieencode.dll
2010-09-08 16:46:38	1032704	----a-w-	C:\Windows\System32\wininet.dll
2010-09-08 16:43:11	86528	----a-w-	C:\Windows\System32\ieencode.dll
2010-09-08 15:53:07	389632	----a-w-	C:\Windows\SysWow64\html.iec
2010-09-08 15:28:29	1383424	----a-w-	C:\Windows\SysWow64\mshtml.tlb
2010-09-08 15:26:20	485376	----a-w-	C:\Windows\System32\html.iec
2010-09-08 15:00:33	1383424	----a-w-	C:\Windows\System32\mshtml.tlb
2010-09-06 16:24:40	9728	----a-w-	C:\Windows\SysWow64\sscore.dll
2010-09-06 16:23:14	17920	----a-w-	C:\Windows\SysWow64\netevent.dll
2010-09-06 15:59:19	179712	----a-w-	C:\Windows\System32\srvsvc.dll
2010-09-06 15:59:19	12288	----a-w-	C:\Windows\System32\sscore.dll
2010-09-06 15:57:48	17920	----a-w-	C:\Windows\System32\netevent.dll
2010-09-06 13:44:39	461824	----a-w-	C:\Windows\System32\drivers\srv.sys
2010-09-06 13:44:17	144896	----a-w-	C:\Windows\System32\drivers\srvnet.sys
2010-09-06 13:44:14	175104	----a-w-	C:\Windows\System32\drivers\srv2.sys
2010-08-26 16:21:44	331776	----a-w-	C:\Windows\apppatch\AppPatch64\AcLayers.dll
2010-08-26 16:21:44	100352	----a-w-	C:\Windows\apppatch\AppPatch64\acspecfc.dll
2010-08-26 16:21:43	281600	----a-w-	C:\Windows\apppatch\AppPatch64\AcGenral.dll
2010-08-26 16:01:35	173056	----a-w-	C:\Windows\apppatch\AcXtrnal.dll
2010-08-26 16:01:33	459776	----a-w-	C:\Windows\apppatch\AcSpecfc.dll
2010-08-26 16:01:32	541696	----a-w-	C:\Windows\apppatch\AcLayers.dll
2010-08-26 16:01:32	2153984	----a-w-	C:\Windows\apppatch\AcGenral.dll
2010-08-17 14:04:48	267776	----a-w-	C:\Windows\System32\spoolsv.exe
2010-06-12 04:29:57	36868	----a-w-	C:\Program Files (x86)\uninst-Echospace.exe
2010-06-12 04:29:01	36868	----a-w-	C:\Program Files (x86)\uninst-SoundKeys.exe
2009-05-15 05:15:24	5719400	----a-w-	C:\Program Files\Common Files\adlmint_libFNP.dll
2009-05-15 05:15:24	4397928	----a-w-	C:\Program Files\Common Files\adlmint.dll
2010-03-05 19:55:40	196608	--sha-w-	C:\Windows\SysWOW64\config\systemprofile\AppData\Local\av.exe
2010-03-05 19:55:40	196608	--sha-w-	C:\Windows\SysWOW64\config\systemprofile\AppData\Local\MSASCui.exe
2010-03-05 19:55:40	196608	--sha-w-	C:\Windows\SysWOW64\config\systemprofile\AppData\Local\mtg.exe
2010-03-05 19:55:41	196608	--sha-w-	C:\Windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows Defender\av.exe
2010-03-05 19:55:41	196608	--sha-w-	C:\Windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows Defender\MSASCui.exe
2010-03-05 19:55:41	196608	--sha-w-	C:\Windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows Defender\mtg.exe
2010-03-05 19:55:32	196608	--sha-w-	C:\Windows\SysWOW64\config\systemprofile\AppData\Local\mtg\av.exe
2010-03-05 19:55:27	196608	--sha-w-	C:\Windows\SysWOW64\config\systemprofile\AppData\Local\mtg\MSASCui.exe

============= FINISH:  7:52:01.67 ===============

Below is my GMER Log. I did notice something while running a scan most of the options (System, Sections, Devices, Modules ect) for the scan were grayed out uncheckable, so not sure I did a complete scan of my system (took 4 hours though to complete) see attached screenshot for reference



GMER 1.0.15.15477 - http://www.gmer.net
Rootkit scan 2010-11-02 14:51:41
Windows 6.0.6001 Service Pack 1
Running: gmer.exe


---- Registry - GMER 1.0.15 ----

Reg HKLM\SYSTEM\CurrentControlSet\Services\BTHPORT\Parameters\Keys\002186b84546
Reg HKLM\SYSTEM\CurrentControlSet\Services\BTHPORT\Parameters\Keys\00247e37ec85
Reg HKLM\SYSTEM\ControlSet035\Services\BTHPORT\Parameters\Keys\002186b84546 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet035\Services\BTHPORT\Parameters\Keys\00247e37ec85 (not active ControlSet)
Reg HKCU\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\{BBB8669B-D490-FD5D-219A-42805D565AAE}
Reg HKCU\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\{BBB8669B-D490-FD5D-219A-42805D565AAE}@hajokapfadlfkmea 0x6B 0x61 0x6F 0x69 ...

---- EOF - GMER 1.0.15 ----

Sorry I forgot to attach these files

1. GMER screenshot showing the grayed out areas when trying to run a scan screenshot.gif

2. DDS Attach.zip

EDIT: Posts merged ~BP

Attached Files


Edited by Budapest, 03 November 2010 - 04:06 PM.


BC AdBot (Login to Remove)

 


#2 Elise

Elise

    Bleepin' Blonde


  • Malware Study Hall Admin
  • 61,065 posts
  • ONLINE
  •  
  • Gender:Female
  • Location:Romania
  • Local time:11:04 PM

Posted 11 November 2010 - 08:38 AM

Hello ,
And :welcome: to the Bleeping Computer Malware Removal Forum
. My name is Elise and I'll be glad to help you with your computer problems.


I will be working on your malware issues, this may or may not solve other issues you may have with your machine.

Please note that whatever repairs we make, are for fixing your computer problems only and by no means should be used on another computer.
  • The cleaning process is not instant. Logs can take some time to research, so please be patient with me. I know that you need your computer working as quickly as possible, and I will work hard to help see that happen.
  • Please reply using the Add/Reply button in the lower right hand corner of your screen. Do not start a new topic.
  • The logs that you post should be pasted directly into the reply. Only attach them if requested or if they do not fit into the post.
  • Unfortunately, if I do not hear back from you within 5 days, I will be forced to close your topic. If you still need help after I have closed your topic, send me or a moderator a personal message with the address of the thread or feel free to create a new one.
You may want to keep the link to this topic in your favorites. Alternatively, you can click the button at the top bar of this topic and Track this Topic, where you can choose email notifications. The topics you are tracking are shown here.
-----------------------------------------------------------

If you have since resolved the original problem you were having, we would appreciate you letting us know. If not please perform the following steps below so we can have a look at the current condition of your machine.

If you have not done so, include a clear description of the problems you're having, along with any steps you may have performed so far.

If you have already posted a log, please do so again, as your situation may have changed.
Use the 'Add Reply' and add the new log to this thread.

We need to see some information about what is happening in your machine. Please perform the following scan:
  • Please download OTL from one of the following mirrors:
  • Save it to your desktop.
  • Double click on the Posted Image icon on your desktop.
  • Click the "Scan All Users" checkbox.
  • Push the Quick Scan button.
  • Two reports will open, copy and paste them in a reply here:
    • OTListIt.txt <-- Will be opened
    • Extra.txt <-- Will be minimized

Please Download Rootkit Unhooker Save it to your desktop.
  • extract RKUnhooker to your desktop
    Note** it is zipped up in a .rar file - If you do not have a program to unzip this type of file -
    you can get a free one from here - http://www.7-zip.org/
  • Now double-click on RKUnhookerLE.exe to run it.
  • Click the Report tab, then click Scan.
  • Check (Tick) Drivers, Stealth,. Uncheck the rest. then Click OK.
  • Wait till the scanner has finished and then click File, Save Report.
  • Save the report somewhere where you can find it. Click Close.
Copy the entire contents of the report and paste it in a reply here.

Note** you may get this warning it is ok, just ignore

"Rootkit Unhooker has detected a parasite inside itself!
It is recommended to remove parasite, okay?"


"just click on Cancel, then Accept".

-------------------------------------------------------------
In the meantime please, do NOT install any new programs or update anything unless told to do so while we are fixing your problem

If you still need help, please include the following in your next reply
  • A detailed description of your problems
  • A new OTL log (don't forget extra.txt)
  • RKU log

Thanks and again sorry for the delay.

regards, Elise


"Now faith is the substance of things hoped for, the evidence of things not seen."

 

Follow BleepingComputer on: Facebook | Twitter | Google+ | lockerdome

 

Malware analyst @ Emsisoft


#3 media prime

media prime
  • Topic Starter

  • Members
  • 34 posts
  • OFFLINE
  •  
  • Local time:03:04 PM

Posted 11 November 2010 - 12:29 PM

Hello Elise

Thank you for taking the time to help me with my computer. The issues are the same as below but I will re-list them:

Description of Problems:
1. Locked out of regedit.exe (warning message: Registry editing has been disabled by your administrator).
2. Multiple trojan/virus files showing up in my temp folder ex. yawghd72y7huhd.tmp & heuhf8ijdkfjidfd.tmp. As soon as I remove these tmp files they reappear almost immediately.
3. Did a full system scan with Malwarebytes in safemode, found all kinds of trojans/virus but wasn't able to remove many of them.
4. Firefox homepage hijacked with this address http://fl.iamwired.net/
5. Yahoo email account is receiving constant spam emails and is sending out emails to people on my mailing list without my knowledge.

OS:
Windows Vista 64

I will start running scans with OTL and RootKit and paste the logs when they complete, probably later today.

thanks again B)

#4 Elise

Elise

    Bleepin' Blonde


  • Malware Study Hall Admin
  • 61,065 posts
  • ONLINE
  •  
  • Gender:Female
  • Location:Romania
  • Local time:11:04 PM

Posted 11 November 2010 - 12:43 PM

Okay, I'll wait for the OTL logs. RKU will most likely not run since you have a 64 bit system.

regards, Elise


"Now faith is the substance of things hoped for, the evidence of things not seen."

 

Follow BleepingComputer on: Facebook | Twitter | Google+ | lockerdome

 

Malware analyst @ Emsisoft


#5 media prime

media prime
  • Topic Starter

  • Members
  • 34 posts
  • OFFLINE
  •  
  • Local time:03:04 PM

Posted 11 November 2010 - 02:04 PM

Would it be better to run the OTL scan in SafeMode?

I have some work to do today on the infected computer and wondering if it makes a difference if I have Photoshop, Flash, Outlook Express, Firefox ect open while running the scan?

#6 Elise

Elise

    Bleepin' Blonde


  • Malware Study Hall Admin
  • 61,065 posts
  • ONLINE
  •  
  • Gender:Female
  • Location:Romania
  • Local time:11:04 PM

Posted 11 November 2010 - 02:15 PM

Close all programs and run it in Normal Mode. No need to run it in safe mode.

regards, Elise


"Now faith is the substance of things hoped for, the evidence of things not seen."

 

Follow BleepingComputer on: Facebook | Twitter | Google+ | lockerdome

 

Malware analyst @ Emsisoft


#7 media prime

media prime
  • Topic Starter

  • Members
  • 34 posts
  • OFFLINE
  •  
  • Local time:03:04 PM

Posted 12 November 2010 - 01:59 AM

OTL logfile created on: 11/11/2010 11:35:11 PM - Run 1
OTL by OldTimer - Version 3.2.17.3 Folder = C:\Users\thrasherstudios77\Virus Removal instructions\OTL
64bit-Windows Vista Home Premium Edition Service Pack 1 (Version = 6.0.6001) - Type = NTWorkstation
Internet Explorer (Version = 7.0.6001.18000)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

4.00 Gb Total Physical Memory | 2.00 Gb Available Physical Memory | 60.00% Memory free
8.00 Gb Paging File | 6.00 Gb Available in Paging File | 72.00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 284.11 Gb Total Space | 43.11 Gb Free Space | 15.17% Space Free | Partition Type: NTFS
Drive D: | 13.98 Gb Total Space | 2.13 Gb Free Space | 15.21% Space Free | Partition Type: NTFS
Drive F: | 232.83 Gb Total Space | 31.49 Gb Free Space | 13.52% Space Free | Partition Type: FAT32

Computer Name: EAGLE | User Name: thrasherstudios77 | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2010/11/11 10:25:13 | 000,575,488 | ---- | M] (OldTimer Tools) -- C:\Users\thrasherstudios77\Virus Removal instructions\OTL\OTL.exe
PRC - [2010/11/11 03:18:34 | 000,034,820 | -H-- | M] (Microsoft Corporation) -- C:\Users\thrasherstudios77\AppData\Local\Temp\win32.exe
PRC - [2010/11/11 03:18:33 | 000,034,820 | -H-- | M] (Microsoft Corporation) -- C:\Windows\nvsvc32.exe
PRC - [2010/11/11 03:18:33 | 000,034,820 | -H-- | M] (Microsoft Corporation) -- C:\Users\thrasherstudios77\AppData\Local\Temp\lsass.exe
PRC - [2010/11/11 03:18:31 | 000,034,820 | -H-- | M] (Microsoft Corporation) -- C:\Windows\sysedit.exe
PRC - [2010/11/03 09:59:53 | 000,021,636 | -H-- | M] (Microsoft Corporation) -- C:\Windows\win16.exe
PRC - [2010/11/03 09:59:52 | 000,021,636 | -H-- | M] (Microsoft Corporation) -- C:\Windows\hexdump.exe
PRC - [2010/11/03 08:08:44 | 000,021,636 | -H-- | M] (Microsoft Corporation) -- C:\Users\thrasherstudios77\AppData\Local\Temp\smss.exe
PRC - [2010/11/03 08:08:42 | 000,021,636 | -H-- | M] (Microsoft Corporation) -- C:\Windows\winamp.exe
PRC - [2010/11/01 14:36:03 | 000,974,904 | ---- | M] (Google Inc.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
PRC - [2010/10/19 14:24:37 | 000,134,808 | ---- | M] (Google Inc.) -- C:\Program Files (x86)\Google\Update\1.2.183.39\GoogleCrashHandler.exe
PRC - [2010/10/15 12:58:21 | 000,134,808 | ---- | M] (Google Inc.) -- C:\Users\thrasherstudios77\AppData\Local\Google\Update\1.2.183.39\GoogleCrashHandler.exe
PRC - [2010/10/15 10:19:07 | 000,079,360 | ---- | M] (Autodesk) -- C:\Program Files (x86)\Common Files\Autodesk Shared\Service\AdskScSrv.exe
PRC - [2010/07/14 18:51:02 | 000,198,608 | ---- | M] (Threat Expert Ltd.) -- C:\Program Files (x86)\Spyware Doctor\BDT\BDTUpdateService.exe
PRC - [2010/03/10 02:10:38 | 000,086,016 | ---- | M] () -- C:\Program Files (x86)\Autodesk\3ds Max 2011\mentalimages\satellite\raysat_3dsmax2011_32server.exe
PRC - [2010/01/13 15:44:52 | 000,037,888 | ---- | M] (Nullsoft, Inc.) -- C:\Program Files (x86)\Winamp\winampa.exe
PRC - [2009/09/07 14:04:44 | 000,959,784 | ---- | M] (Sunbelt Software) -- C:\Program Files (x86)\Sunbelt Software\VIPRE\SBAMTray.exe
PRC - [2009/08/22 00:21:19 | 000,117,640 | R--- | M] (Symantec Corporation) -- C:\Program Files (x86)\Norton Internet Security\Engine\16.8.0.41\ccSvcHst.exe
PRC - [2008/11/07 13:47:28 | 000,492,816 | ---- | M] (Hewlett-Packard) -- C:\Program Files (x86)\Hewlett-Packard\HP Wireless Elite Desktop\HPKEYBOARDg.EXE
PRC - [2008/09/26 02:36:40 | 001,148,200 | ---- | M] (CyberLink Corp.) -- C:\Program Files (x86)\Hewlett-Packard\Media\DVD\DVDAgent.exe
PRC - [2008/09/25 18:42:24 | 000,189,736 | ---- | M] (CyberLink) -- C:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe
PRC - [2008/09/25 18:41:44 | 001,152,296 | ---- | M] (CyberLink Corp.) -- C:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\TSMAgent.exe
PRC - [2008/09/24 18:08:26 | 000,296,320 | ---- | M] () -- C:\Program Files (x86)\Hewlett-Packard\Media\TV\Kernel\TV\TVCapSvc.exe
PRC - [2008/09/24 18:08:26 | 000,116,096 | ---- | M] () -- C:\Program Files (x86)\Hewlett-Packard\Media\TV\Kernel\TV\TVSched.exe
PRC - [2008/09/23 12:18:52 | 000,365,904 | ---- | M] () -- C:\Program Files (x86)\SMINST\BLService.exe
PRC - [2008/06/11 22:43:26 | 000,640,376 | ---- | M] (Adobe Systems Inc.) -- C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\acrotray.exe
PRC - [2008/03/10 00:08:42 | 000,065,536 | ---- | M] () -- C:\Program Files\Autodesk\3ds Max 2009\mentalray\satellite\raysat_3dsMax2009_64server.exe


========== Modules (SafeList) ==========

MOD - [2010/11/11 10:25:13 | 000,575,488 | ---- | M] (OldTimer Tools) -- C:\Users\thrasherstudios77\Virus Removal instructions\OTL\OTL.exe
MOD - [2010/08/31 08:39:57 | 001,684,480 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6001.18523_none_5cdd65e20837faf2\comctl32.dll


========== Win32 Services (SafeList) ==========

SRV:64bit: - [2009/10/21 21:49:32 | 001,315,592 | ---- | M] (Acresso Software Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe -- (FLEXnet Licensing Service 64)
SRV:64bit: - [2008/09/11 04:53:00 | 000,279,040 | ---- | M] () [Auto | Running] -- C:\Windows\SysNative\DriverStore\FileRepository\stwrt64.inf_bd5387da\STacSV64.exe -- (STacSV)
SRV:64bit: - [2008/06/27 08:53:06 | 000,089,088 | ---- | M] () [Auto | Running] -- C:\Windows\SysNative\DriverStore\FileRepository\stwrt64.inf_bd5387da\AESTSr64.exe -- (AESTFilters)
SRV:64bit: - [2008/03/18 16:25:40 | 000,023,040 | ---- | M] () [Auto | Running] -- C:\Windows\SysNative\Hpservice.exe -- (hpsrv)
SRV:64bit: - [2008/03/10 00:08:42 | 000,065,536 | ---- | M] () [Auto | Running] -- C:\Program Files\Autodesk\3ds Max 2009\mentalray\satellite\raysat_3dsMax2009_64server.exe -- (mi-raysat_3dsMax2009_64)
SRV:64bit: - [2008/01/20 19:47:32 | 000,383,544 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2007/12/11 12:11:30 | 000,015,872 | ---- | M] () [Auto | Running] -- C:\Windows\SysNative\agr64svc.exe -- (AgereModemAudio)
SRV - [2010/11/10 19:57:07 | 003,019,352 | ---- | M] () [Auto | Running] -- c:\Program Files (x86)\Common Files\Akamai\netsession_win_4176eef.dll -- (Akamai)
SRV - [2010/10/23 22:06:58 | 001,045,256 | ---- | M] (Acresso Software Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
SRV - [2010/10/15 10:19:07 | 000,079,360 | ---- | M] (Autodesk) [Auto | Running] -- C:\Program Files (x86)\Common Files\Autodesk Shared\Service\AdskScSrv.exe -- (Autodesk Licensing Service)
SRV - [2010/07/14 18:51:02 | 000,198,608 | ---- | M] (Threat Expert Ltd.) [Auto | Running] -- C:\Program Files (x86)\Spyware Doctor\BDT\BDTUpdateService.exe -- (Browser Defender Update Service)
SRV - [2010/03/18 13:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2010/03/10 02:10:38 | 000,086,016 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\Autodesk\3ds Max 2011\mentalimages\satellite\raysat_3dsmax2011_32server.exe -- (mi-raysat_3dsmax2011_32)
SRV - [2010/02/19 13:37:14 | 000,517,096 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe -- (SwitchBoard)
SRV - [2010/01/18 14:14:24 | 001,141,712 | ---- | M] (PC Tools) [On_Demand | Stopped] -- C:\Program Files (x86)\Spyware Doctor\pctsSvc.exe -- (sdCoreService)
SRV - [2009/12/09 15:23:34 | 000,365,280 | ---- | M] (PC Tools) [On_Demand | Stopped] -- C:\Program Files (x86)\Spyware Doctor\pctsAuxs.exe -- (sdAuxService)
SRV - [2009/10/20 11:19:48 | 000,117,264 | ---- | M] (CACE Technologies, Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\WinPcap\rpcapd.exe -- (rpcapd) Remote Packet Capture Protocol v.0 (experimental)
SRV - [2009/09/07 14:02:36 | 001,012,040 | ---- | M] (Sunbelt Software) [Auto | Stopped] -- C:\Program Files (x86)\Sunbelt Software\VIPRE\SBAMSvc.exe -- (SBAMSvc)
SRV - [2009/08/22 00:21:19 | 000,117,640 | R--- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files (x86)\Norton Internet Security\Engine\16.8.0.41\ccSvcHst.exe -- (Norton Internet Security)
SRV - [2008/09/24 18:08:26 | 000,296,320 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\Hewlett-Packard\Media\TV\Kernel\TV\TVCapSvc.exe -- (TVCapSvc) TV Background Capture Service (TVBCS)
SRV - [2008/09/24 18:08:26 | 000,116,096 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\Hewlett-Packard\Media\TV\Kernel\TV\TVSched.exe -- (TVSched) TV Task Scheduler (TVTS)
SRV - [2008/09/23 12:18:52 | 000,365,904 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\SMINST\BLService.exe -- (Recovery Service for Windows)
SRV - [2008/08/15 05:46:20 | 000,284,016 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Adobe\Adobe Version Cue CS4\Server\bin\VersionCueCS4.exe -- (Adobe Version Cue CS4)
SRV - [2008/07/27 11:03:13 | 000,069,632 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)


========== Driver Services (SafeList) ==========

DRV:64bit: - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\NISx64\1000000.07D\SYMREDRV.SYS -- (SYMREDRV)
DRV:64bit: - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\NISx64\1005000.087\SYMNDISV.SYS -- (SYMNDISV)
DRV:64bit: - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\NISx64\1005000.087\SYMFW.SYS -- (SYMFW)
DRV:64bit: - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\NISx64\1000000.07D\SYMDNS.SYS -- (SYMDNS)
DRV:64bit: - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\nwlnkfwd.sys -- (NwlnkFwd)
DRV:64bit: - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\nwlnkflt.sys -- (NwlnkFlt)
DRV:64bit: - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\ipinip.sys -- (IpInIp)
DRV:64bit: - [2010/01/27 16:56:08 | 000,583,296 | ---- | M] () [Kernel | System | Running] -- C:\Windows\SysNative\Drivers\NISx64\1008000.029\ccHPx64.sys -- (ccHP)
DRV:64bit: - [2009/10/20 11:19:54 | 000,047,632 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\npf.sys -- (NPF)
DRV:64bit: - [2009/10/05 13:39:58 | 000,191,960 | ---- | M] () [Kernel | System | Running] -- C:\Windows\SysNative\drivers\cbfs.sys -- (CbFs)
DRV:64bit: - [2009/09/23 16:10:04 | 000,218,056 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\PCTCore64.sys -- (PCTCore)
DRV:64bit: - [2009/09/11 08:41:49 | 000,172,592 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\SYMEVENT64x86.SYS -- (SymEvent)
DRV:64bit: - [2009/08/28 19:42:52 | 000,049,152 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\usbaapl64.sys -- (USBAAPL64)
DRV:64bit: - [2009/08/22 00:21:19 | 000,476,720 | ---- | M] () [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\NISx64\1008000.029\SRTSP64.SYS -- (SRTSP)
DRV:64bit: - [2009/08/22 00:21:19 | 000,402,992 | ---- | M] () [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\NISx64\1008000.029\SYMEFA64.SYS -- (SymEFA)
DRV:64bit: - [2009/08/22 00:21:19 | 000,334,384 | ---- | M] () [Kernel | System | Running] -- C:\Windows\SysNative\Drivers\NISx64\1008000.029\BHDrvx64.sys -- (BHDrvx64)
DRV:64bit: - [2009/08/22 00:21:19 | 000,278,576 | ---- | M] () [Kernel | System | Running] -- C:\Windows\SysNative\Drivers\NISx64\1008000.029\SYMTDI.SYS -- (SYMTDI)
DRV:64bit: - [2009/08/22 00:21:19 | 000,032,304 | ---- | M] () [Kernel | System | Running] -- C:\Windows\SysNative\drivers\NISx64\1008000.029\SRTSPX64.SYS -- (SRTSPX) Symantec Real Time Storage Protection (PEL)
DRV:64bit: - [2009/08/22 00:21:19 | 000,031,280 | R--- | M] () [Kernel | System | Running] -- C:\Windows\SysNative\DRIVERS\SymIMv.sys -- (SymIM)
DRV:64bit: - [2009/08/10 20:06:26 | 000,063,536 | ---- | M] () [File_System | Auto | Running] -- C:\Windows\SysNative\DRIVERS\sbapifs.sys -- (sbapifs)
DRV:64bit: - [2009/07/15 09:17:56 | 000,082,992 | ---- | M] () [Kernel | System | Running] -- C:\Windows\SysNative\drivers\sbtis.sys -- (sbtis)
DRV:64bit: - [2009/05/18 14:17:08 | 000,034,152 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV:64bit: - [2009/04/28 13:20:06 | 000,055,024 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\SysNative\Drivers\PxHlpa64.sys -- (PxHlpa64)
DRV:64bit: - [2008/09/11 04:54:44 | 000,465,408 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\stwrt64.sys -- (STHDA)
DRV:64bit: - [2008/08/28 16:57:24 | 004,745,216 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\NETw5v64.sys -- (NETw5v64) Intel®
DRV:64bit: - [2008/08/05 20:29:26 | 000,056,352 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nvhda64v.sys -- (NVHDA)
DRV:64bit: - [2008/07/22 08:42:34 | 000,170,496 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\Rtlh64.sys -- (RTL8169)
DRV:64bit: - [2008/07/21 03:53:04 | 000,145,496 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\jmcr.sys -- (JMCR)
DRV:64bit: - [2008/06/23 04:54:02 | 000,099,368 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btwavdt.sys -- (btwavdt)
DRV:64bit: - [2008/06/23 04:54:02 | 000,091,176 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btwaudio.sys -- (btwaudio)
DRV:64bit: - [2008/06/23 04:54:02 | 000,019,752 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\btwrchid.sys -- (btwrchid)
DRV:64bit: - [2008/04/28 18:55:32 | 000,064,000 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\enecir.sys -- (enecir)
DRV:64bit: - [2008/03/27 12:10:56 | 000,026,984 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\SysNative\DRIVERS\hpdskflt.sys -- (hpdskflt)
DRV:64bit: - [2008/03/27 12:10:14 | 000,040,296 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\Accelerometer.sys -- (Accelerometer)
DRV:64bit: - [2008/02/29 15:59:32 | 001,252,352 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\agrsm64.sys -- (AgereSoftModem)
DRV:64bit: - [2008/01/20 19:46:57 | 003,154,432 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\NETw3v64.sys -- (NETw3v64) Intel®
DRV:64bit: - [2008/01/20 19:46:55 | 000,111,104 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\sdbus.sys -- (sdbus)
DRV:64bit: - [2008/01/18 04:31:30 | 000,320,560 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\SynTP.sys -- (SynTP)
DRV:64bit: - [2007/06/18 17:13:12 | 000,018,432 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\HpqKbFiltr.sys -- (HpqKbFiltr)
DRV:64bit: - [2006/10/03 18:45:36 | 000,273,408 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\yk60x64.sys -- (yukonx64)
DRV:64bit: - [2006/09/18 14:36:24 | 000,000,308 | ---- | M] () [File_System | On_Demand | Running] -- C:\Windows\SysNative\Wbem\ntfs.mof -- (Ntfs)
DRV - [2009/06/04 01:47:28 | 001,461,808 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Stopped] -- C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\VirusDefs\20090610.002\ex64.sys -- (NAVEX15)
DRV - [2009/06/04 01:47:28 | 000,475,696 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys -- (eeCtrl)
DRV - [2009/06/04 01:47:28 | 000,136,752 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Stopped] -- C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\VirusDefs\20090610.002\eng64.sys -- (NAVENG)
DRV - [2009/06/04 01:47:28 | 000,131,632 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys -- (EraserUtilRebootDrv)
DRV - [2009/01/29 14:50:10 | 000,396,848 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\IPSDefs\20090604.001\IDSvia64.sys -- (IDSVia64)
DRV - [2008/09/26 02:36:34 | 000,027,632 | ---- | M] (Cyberlink Corp.) [Kernel | Auto | Running] -- C:\Program Files (x86)\Hewlett-Packard\Media\DVD\000.fcl -- ({55662437-DA8C-40c0-AADA-2C816A897A49})
DRV - [2008/08/14 07:57:42 | 000,074,720 | ---- | M] (Adobe Systems, Inc.) [Kernel | Auto | Running] -- C:\Windows\SysWow64\drivers\adfs.sys -- (adfs)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=en_us&c=91&bd=Pavilion&pf=cnnb
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=en_us&c=91&bd=Pavilion&pf=cnnb
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=en_us&c=91&bd=Pavilion&pf=cnnb
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=en_us&c=91&bd=Pavilion&pf=cnnb


IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



IE - HKU\S-1-5-21-2809757283-84445543-848142124-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=en_us&c=91&bd=Pavilion&pf=cnnb
IE - HKU\S-1-5-21-2809757283-84445543-848142124-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.startpage.com/
IE - HKU\S-1-5-21-2809757283-84445543-848142124-1000\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKU\S-1-5-21-2809757283-84445543-848142124-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-2809757283-84445543-848142124-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = <local>
IE - HKU\S-1-5-21-2809757283-84445543-848142124-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = http=127.0.0.1:6092

========== FireFox ==========

FF - prefs.js..browser.search.defaultenginename: "Search"
FF - prefs.js..browser.search.defaulturl: "http://fl.iamwired.net/websearch.php?src=tops&search="
FF - prefs.js..browser.search.selectedEngine: "Search"
FF - prefs.js..browser.startup.homepage: "http://fl.iamwired.net/"
FF - prefs.js..extensions.enabledItems: {cb84136f-9c44-433a-9048-c5cd9df1dc16}:2.0.1
FF - prefs.js..extensions.enabledItems: firebug@software.joehewitt.com:1.4.3
FF - prefs.js..extensions.enabledItems: {AB2CE124-6272-4b12-94A9-7303C7397BD1}:4.2.0.5198
FF - prefs.js..extensions.enabledItems: {FCAB6FDD-5585-425b-95C1-5ED856F3FD08}:5.7
FF - prefs.js..network.proxy.no_proxies_on: "*.local"

FF - HKLM\software\mozilla\Firefox\Extensions\\{7BA52691-1876-45ce-9EE6-54BCB3B04BBC}: C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\coFFPlgn\ [2010/04/25 10:13:18 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\{cb84136f-9c44-433a-9048-c5cd9df1dc16}: C:\Program Files (x86)\Spyware Doctor\BDT\FireFox\ [2010/06/23 21:57:52 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.5.15\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2010/11/02 09:43:17 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.5.15\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2010/11/02 09:43:17 | 000,000,000 | ---D | M]

[2009/10/22 18:33:15 | 000,000,000 | ---D | M] -- C:\Users\thrasherstudios77\AppData\Roaming\Mozilla\Extensions
[2010/11/11 17:56:17 | 000,000,000 | ---D | M] -- C:\Users\thrasherstudios77\AppData\Roaming\Mozilla\Firefox\Profiles\778cdypt.default\extensions
[2009/10/22 18:34:45 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Users\thrasherstudios77\AppData\Roaming\Mozilla\Firefox\Profiles\778cdypt.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2010/04/15 16:20:45 | 000,000,000 | ---D | M] (Sothink Web Video Downloader for Firefox) -- C:\Users\thrasherstudios77\AppData\Roaming\Mozilla\Firefox\Profiles\778cdypt.default\extensions\{FCAB6FDD-5585-425b-95C1-5ED856F3FD08}
[2009/10/22 18:35:31 | 000,000,000 | ---D | M] -- C:\Users\thrasherstudios77\AppData\Roaming\Mozilla\Firefox\Profiles\778cdypt.default\extensions\firebug@software.joehewitt.com
[2010/09/12 00:51:59 | 000,000,259 | ---- | M] () -- C:\Users\thrasherstudios77\AppData\Roaming\Mozilla\Firefox\Profiles\778cdypt.default\searchplugins\Search.xml
[2010/11/11 17:56:17 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2010/04/02 08:24:52 | 000,000,000 | ---D | M] (Skype extension for Firefox) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{AB2CE124-6272-4b12-94A9-7303C7397BD1}
[2010/01/13 15:46:00 | 000,063,488 | ---- | M] (Nullsoft, Inc.) -- C:\Program Files (x86)\Mozilla Firefox\plugins\npwachk.dll
[2010/09/21 05:08:08 | 000,002,074 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\searchplugins\google_search.xml

O1 HOSTS File: ([2010/02/24 19:31:50 | 000,001,293 | ---- | M]) - C:\Windows\SysNative\drivers\etc\Hosts
O1 - Hosts: 127.0.0.1 adobeereg.com
O1 - Hosts: 127.0.0.1 adobereg.com
O1 - Hosts: 127.0.0.1 activate.adobe.com
O1 - Hosts: 127.0.0.1 practivate.adobe.com
O1 - Hosts: 127.0.0.1 ereg.adobe.com
O1 - Hosts: 127.0.0.1 activate.wip3.adobe.com
O1 - Hosts: 127.0.0.1 wip3.adobe.com
O1 - Hosts: 127.0.0.1 3dns-3.adobe.com
O1 - Hosts: 127.0.0.1 3dns-2.adobe.com
O1 - Hosts: 127.0.0.1 adobe-dns.adobe.com
O1 - Hosts: 127.0.0.1 adobe-dns-2.adobe.com
O1 - Hosts: 127.0.0.1 adobe-dns-3.adobe.com
O1 - Hosts: 127.0.0.1 ereg.wip3.adobe.com
O1 - Hosts: 127.0.0.1 activate-sea.adobe.com
O1 - Hosts: 127.0.0.1 wwis-dubc1-vip60.adobe.com
O1 - Hosts: 127.0.0.1 activate-sjc0.adobe.com
O1 - Hosts: 127.0.0.1 wwis-dubc1-vip60.adobe.com
O1 - Hosts: ::1 localhost
O2:64bit: - BHO: (BrowserHelper Class) - {EDF48A39-1442-463F-9F4E-F376A78D034A} - C:\Program Files (x86)\Livedrive\LivedriveExplorerExtensions.dll (Livedrive Internet Ltd)
O2 - BHO: (Symantec NCO BHO) - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine\16.8.0.41\CoIEPlg.dll (Symantec Corporation)
O2 - BHO: (Symantec Intrusion Prevention) - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Engine\16.8.0.41\IPSBHO.dll (Symantec Corporation)
O3 - HKLM\..\Toolbar: (Microsoft Live Search Toolbar) - {1E61ED7C-7CB8-49d6-B9E9-AB4C880C8414} - c:\Program Files (x86)\MSN\Toolbar\3.0.0541.0\msneshellx.dll (Microsoft Corp.)
O3 - HKLM\..\Toolbar: (PC Tools Browser Guard) - {472734EA-242A-422B-ADF8-83D1E48CC825} - C:\Program Files (x86)\Spyware Doctor\BDT\PCTBrowserDefender.dll (Threat Expert Ltd.)
O3 - HKLM\..\Toolbar: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKLM\..\Toolbar: (Contribute Toolbar) - {517BDDE4-E3A7-4570-B21E-2B52B6139FC7} - C:\Program Files (x86)\Adobe\/Adobe Contribute CS4/contributeieplugin.dll ()
O3 - HKLM\..\Toolbar: (Norton Toolbar) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\16.8.0.41\CoIEPlg.dll (Symantec Corporation)
O3 - HKU\S-1-5-21-2809757283-84445543-848142124-1000\..\Toolbar\WebBrowser: (PC Tools Browser Guard) - {472734EA-242A-422B-ADF8-83D1E48CC825} - C:\Program Files (x86)\Spyware Doctor\BDT\PCTBrowserDefender.dll (Threat Expert Ltd.)
O3 - HKU\S-1-5-21-2809757283-84445543-848142124-1000\..\Toolbar\WebBrowser: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKU\S-1-5-21-2809757283-84445543-848142124-1000\..\Toolbar\WebBrowser: (Norton Toolbar) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\16.8.0.41\CoIEPlg.dll (Symantec Corporation)
O4:64bit: - HKLM..\Run: [AdobeAAMUpdater-1.0] C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe (Adobe Systems Incorporated)
O4:64bit: - HKLM..\Run: [NvCplDaemon] C:\Windows\SysNative\NvCpl.DLL ()
O4:64bit: - HKLM..\Run: [NvMediaCenter] C:\Windows\SysNative\NvMcTray.DLL ()
O4:64bit: - HKLM..\Run: [SmartMenu] C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe (Hewlett-Packard)
O4:64bit: - HKLM..\Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray64.exe (IDT, Inc.)
O4:64bit: - HKLM..\Run: [Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [Acrobat Assistant 8.0] C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe (Adobe Systems Inc.)
O4 - HKLM..\Run: [Adobe Acrobat Speed Launcher] C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrobat_sl.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [Adobe_ID0ENQBO] C:\Program Files (x86)\Common Files\Adobe\Adobe Version Cue CS4\Server\bin\VersionCueCS4Tray.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [AdobeCS4ServiceManager] C:\Program Files (x86)\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [AdobeCS5ServiceManager] C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [CLMLServer for HP TouchSmart] C:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe (CyberLink)
O4 - HKLM..\Run: [DVDAgent] C:\Program Files (x86)\Hewlett-Packard\Media\DVD\DVDAgent.exe (CyberLink Corp.)
O4 - HKLM..\Run: [HP Health Check Scheduler] c:\Program Files (x86)\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe (Hewlett-Packard)
O4 - HKLM..\Run: [HP KEYBOARDg] C:\Program Files (x86)\Hewlett-Packard\HP Wireless Elite Desktop\HPKEYBOARDg.EXE (Hewlett-Packard)
O4 - HKLM..\Run: [LvLXPiejlo+] C:\Users\ADMINI~1\AppData\Local\Temp\avp32.exe File not found
O4 - HKLM..\Run: [LvLXPiejlora] C:\Users\ADMINI~1\AppData\Local\Temp\iexplarer.exe File not found
O4 - HKLM..\Run: [LvLXPiejlpsc] C:\Users\ADMINI~1\AppData\Local\Temp\taskmgr.exe File not found
O4 - HKLM..\Run: [LvLXPiejlqc] C:\Users\ADMINI~1\AppData\Local\Temp\win.exe File not found
O4 - HKLM..\Run: [LvLXPiejlqvc] C:\Users\ADMINI~1\AppData\Local\Temp\wininst.exe File not found
O4 - HKLM..\Run: [LvLXPiejlqW] C:\Users\ADMINI~1\AppData\Local\Temp\drweb.exe File not found
O4 - HKLM..\Run: [LvLXPiejlupc] C:\Users\ADMINI~1\AppData\Local\Temp\sysedit.exe File not found
O4 - HKLM..\Run: [LvqozrChfngqd] C:\Users\thrasherstudios77\AppData\Local\Temp\lsass.exe (Microsoft Corporation)
O4 - HKLM..\Run: [LvqozrChfngre] C:\Users\thrasherstudios77\AppData\Local\Temp\smss.exe (Microsoft Corporation)
O4 - HKLM..\Run: [LvqozrChfngreo&p=R0lGODlhyAA8APcAAAAAAIAAAACAAICAAAAAgIAAgACAgICAgMDAwP8AAAD/AP//AAAA//8A/wD/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] C:\Users\thrasherstudios77\AppData\Local\Temp\smss.exe (Microsoft Corporation)
O4 - HKLM..\Run: [LvSWPiejl9z+ASH~1\AppData\Local\Temp\407262271.exe] C:\Users\THRASH~1\AppData\Local\Temp\407262271.exe File not found
O4 - HKLM..\Run: [LvSWPiejlhb] C:\Users\THRASH~1\AppData\Local\Temp\debug.exe File not found
O4 - HKLM..\Run: [LvSWPiejlk+] C:\Users\THRASH~1\AppData\Local\Temp\gdi32.exe File not found
O4 - HKLM..\Run: [LvSWPiejlkc] C:\Users\THRASH~1\AppData\Local\Temp\cmd.exe File not found
O4 - HKLM..\Run: [LvSWPiejlmc] C:\Users\THRASH~1\AppData\Local\Temp\mdm.exe File not found
O4 - HKLM..\Run: [LvSWPiejlna] C:\Users\THRASH~1\AppData\Local\Temp\login.exe File not found
O4 - HKLM..\Run: [LvSWPiejlne] C:\Users\thrasherstudios77\AppData\Local\Temp\lsass.exe (Microsoft Corporation)
O4 - HKLM..\Run: [LvSWPiejlo+] C:\Users\THRASH~1\AppData\Local\Temp\avp32.exe File not found
O4 - HKLM..\Run: [LvSWPiejloc] C:\Users\THRASH~1\AppData\Local\Temp\avp.exe File not found
O4 - HKLM..\Run: [LvSWPiejlonc] C:\Users\THRASH~1\AppData\Local\Temp\qbrhfkef.exe File not found
O4 - HKLM..\Run: [LvSWPiejlora] C:\Users\THRASH~1\AppData\Local\Temp\iexplarer.exe File not found
O4 - HKLM..\Run: [LvSWPiejlotc] C:\Users\THRASH~1\AppData\Local\Temp\hexdump.exe File not found
O4 - HKLM..\Run: [LvSWPiejlppf] C:\Users\THRASH~1\AppData\Local\Temp\services.exe File not found
O4 - HKLM..\Run: [LvSWPiejlppfcom&p=R0lGODlhyAA8APcAAAAAAIAAAACAAICAAAAAgIAAgACAgICAgMDAwP8AAAD/AP//AAAA//8A/wD/
/////wAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAMwAAZgAAmQAAzAAA/wAzAAAzMwAzZgAzmQAzzAAz/wBm
AABmMwBmZgBmmQBmzABm/wCZAACZMwCZZgCZmQCZzACZ/wDMAADMMwDMZgDMmQDMzADM/wD/AAD/
MwD/ZgD/mQD/zAD//zMAADMAMzMAZjMAmTMAzDMA/zMzADMzMzMzZjMzmTMzzDMz/zNmADNmMzNm
ZjNmmTNmzDNm/zOZADOZMzOZZjOZmTOZzDOZ/zPMADPMMzPMZjPMmTPMzDPM/zP/ADP/MzP/ZjP/
mTP/zDP//2YAAGYAM2YAZmYAmWYAzGYA/2YzAGYzM2YzZmYzmWYzzGYz/2ZmAGZmM2ZmZmZmmWZm
zGZm/2aZAGaZM2aZZmaZmWaZzGaZ/2bMAGbMM2bMZmbMmWbMzGbM/2b/AGb/M2b/Zmb/mWb/zGb/
/5kAAJkAM5kAZpkAmZkAzJkA/5kzAJkzM5kzZpkzmZkzzJkz/5lmAJlmM5lmZplmmZlmzJlm/5mZ
AJmZM5mZZpmZmZmZzJmZ/5nMAJnMM5nMZpnMmZnMzJnM/5n/AJn/M5n/Zpn/mZn/zJn//8wAAMwA
M8wAZswAmcwAzMwA/8wzAMwzM8wzZswzmcwzzMwz/8xmAMxmM8xmZsxmmcxmzMxm/8yZAMyZM8yZ
ZsyZmcyZzMyZ/8zMAMzMM8zMZszMmczMzMzM/8z/AMz/M8z/Zsz/mcz/zMz///8AAP8AM/8AZv8A
mf8AzP8A//8zAP8zM/8zZv8zmf8zzP8z//9mAP9mM/9mZv9mmf9mzP9m//+ZAP+ZM/+ZZv+Zmf+Z
zP+Z///MAP/MM//MZv/Mmf/MzP/M////AP//M///Zv//mf//zP///yH5BAEAABAALAAAAADIADwA
AAj/AP8JHEiwoMGDCBMqXMiwocOG1FIlpPawosWLDile1PhPo8SBFENiRCiS40iHqahRTPmx4z+J
HE2eNJiqpsqZFmXmHNgS506fByMeTCkSaEGVLIUafVgS5MSJQnUedSpQZdOrLotmdUkQ6U2SPKU6
RRrUYtKaDMUurVpR61G1GW/ChUi149ehddnqtTv3aE2ia9dKnWv1bkSrdMEWVhtz7NarVgGDZSsz
ZVeefwHfDbwX42CuC0PebInYqOi+TDeDvgz38NmpnAOrflsa9GCTsxWi9so4b1XSYbFSzhrRpleQ
n/cShtrYc2q3NId3ll04bW6eUF8vjz21aM/EP4lr//2OeDHT0GOrE7S8+i3IzJq3GowZ1bdu5Kf5
gvbj5yTMxwBiBdl3rLXHnXkMnfVfUHI5FhSB3QF4GXLRpTVZcraVtdiGcnHo4XXDfVaeemhJJ1lz
tBnWoHkIZqibRial0h9qZcXWU34FGtTfRqOpxmJu7N1XoHBLqeUHhOc5pxx2021I2Vc7WujXaDYt
qGJt84nHV24thtgWigLtGGR4nCHZ3VcN8vhXh1i6KCF+633ZG2NwRWmmfXZNl2Vb7Mno55GAWnba
YW1OKdl783mo5UssUhUkijRmiGN7FM0o0JgPukaopmdx6mmnCoLKqZ81HblmeYwmlSdrgsrXVWkw
uv8KnVLc6bmlH5vi+iGIadZI6UJ3uhlmqpsOamlkpZJq2RT86TQoeb/u6WBBRG0qaqciRTmQtmSW
GWlH1UIIY1PUKkcNf/y9FKipfwpqmKvc2tqWQ/EG+1RXj/pK2J2ZTUGUjPH+RmtVhZmZCrNT2NZr
pX4u1i676b4pJMEoDfWtfVNkvBRpmsrE33/siSbtpVtWd266R4oMW0L/fQVfT6UyBlOk5AE6kkwR
oTAFhmBS23FdIQHcrF3xVTZaiiplvLNKgProapbjFsesqe+ud5i8CHFLDQpc62wgegZNgULAL2VM
IFLVgosSuim7ZByaXP01I60roRvjkRPei5BEfjD/G5GpeFF40tZci22vvttyHeulYu/8UpXX3UiS
3X8humVLSZ0McEh9N7vStjJG6xu5bG/7sU2PXaxw137oTPZIGXN7sM4sPXS45rh5RF6bBQPa90du
1Y7TyR79HbDq8+mccN8oHD4yQa2jsJKMXOP6Ncv09k0t3mH+G9XVJf/N7D8fp9wg4NKtnTLwH78q
sK2zEu546+NvlJDhYYr9emh3ItX+9uar3O6wZLf2tE00qCMXy06mtf8VzGWHulDGUDCQxjlvZZeZ
IPn0hzVbAQdGLUGX2jrSObatS2jt+tfU1IWupJSPKFPbnJamxzmb/YY/S3tZcZoEta5xRX/784zy
//CHkwWtiicRY+H6RtOftikEh+7Km05MdUIFret0f/rY3+ADMWVRUVvUaFxBXHfBvLGmcWPDGdji
Jrj9aE9o3EObdyw1rKrETiTVEpFLPOfCPxWnhagT2qQm9qrCHYVrwpvX/ar3vOewjG2SQcsO94K3
0JkuiXCaC+TwaBPf+c0rLVzZt7YmNpzRjnz2y9IExSasNaZEa2HBofVedTXUQe9RYdSeGs3DkpfZ
cYmwmloJOwctaQmHlF1jlmVSoThGKfIgE2Rm/W7GkQGeS4YmehzJLvUR45Dvf1arXQI9dZd4+W+W
kXncn26mvIOhUWmlROUzCxLNf4hxI5haJhOPNP+1Xr1kPRLxE2bkVkIvZoWLeURSEjVit1jRcY/l
455udEZBgvGna1y7FKQm05V6lq15X2IQmtqHKxH6zFEBrVJmSpc+3jhTbsskX3FeViossoumOM3M
uToaz6DcM4gjSxoRBUJRX7Uxakw7mb8Yei5/6eVfOXUmR5QGq00qTFHO5IoJTxclVGkFUjCl6AuT
VRML3nRxHO0IRb8jzWBhqjYMjNhNmng6OQLUjDe8KaOQl6dJsa2a63yolNSlTFKFbWzbnBiakCk5
e+osfjfCFEh+J0c4suurblqTjGJYqqcFTlJ3qSnlnNVVuKLHYwL9h/Iet9EaIROtjAOpYjaj2Vz/
Ye6V6YLWCW0YGddQC3jXkydz8urAI54NRG0xXDf1hrNzobUwhdvVikzGIc0wbWgjys+gZjqz7cqI
uj8qCXgd5jnpmpdD+vFu9ZzUwTjJy539eRt0MJhYihUwnQpR1UD3g1CbSbSMYlGPRteI16HAbI3V
3EpOLagaIyowR/Y0YUAJRirAOgaBLAMuElG42+MWKr2I89KSfqMj28FnptlJ60VmxOGrTiu/Bivj
em7aLvGWeLCadJaZuLvcERMnWK0VZZgq1VRdaSlIVGys1b7mRKe9SLvTe+FuwViyVnZ1P93SG1hk
fJnO/u3Jvy0RTcQsn1F6VsX1NeznCvxP7KkY/3xJ2psUZ1iQOOrnRZIN1F4qFyJLBmhhM5HcfPca
N1i6Fzwbu3CCuEyVyGXmN2SO04MRnaAjPqhClSawUTdNMfBcbTv0xRJtadxdxPhZvJj1sRSZNudD
BW3OegFq9vyc6YfMslZPsfFnoRZcNItLKpFeiKwtslU9Abdn6pJsbFD9W3VFCMKNid9nHvrWYYG6
zbjeqpj0ViVcT/pejL4PanY0MKcwetiEtJAJ63e3EXIUQ0/6MJud3Wu8EonZjUFnhoxoO2TjuicR
lShQvm27g6Ab1ucZ9GRPcnDFbNo7BeKbSSNF8Hn7RuA0rDfBUk1fEiu63Bp/D18H3t7QVLxIEHAK
Nm1mAnINDU7ZcWZzZWRl8lkh+OZPzZrLHf4iNtt54xIzeJGyzOuR2yjlyMVnQ2Ss8HDv7YLQQhVn
jF7nS3drJbAVeirhZZrg4IkrCsc1UJAkZuTthtZGcTqeXa7GjMSZ6nnDOJM0jeb6UhxPUgkIADs===] C:\Users\THRASH~1\AppData\Local\Temp\services.exe File not found
O4 - HKLM..\Run: [LvSWPiejlprc] C:\Users\THRASH~1\AppData\Local\Temp\install.exe File not found
O4 - HKLM..\Run: [LvSWPiejlprc(Windows; U; Windows NT 6.0; en-US; rv:1.9.0.3) Gecko/2008092417 Firefox/3.0.3] C:\Users\THRASH~1\AppData\Local\Temp\install.exe File not found
O4 - HKLM..\Run: [LvSWPiejlprcfo&p=R0lGODlhyAA8APcAAAAAAIAAAACAAICAAAAAgIAAgACAgICAgMDAwP8AAAD/AP//AAAA//8A/wD/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] C:\Users\THRASH~1\AppData\Local\Temp\install.exe File not found
O4 - HKLM..\Run: [LvSWPiejlprct.com&p=R0lGODlhyAA8APcAAAAAAIAAAACAAICAAAAAgIAAgACAgICAgMDAwP8AAAD/AP//AAAA//8A/wD/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] C:\Users\THRASH~1\AppData\Local\Temp\install.exe File not found
O4 - HKLM..\Run: [LvSWPiejlpsc] C:\Users\THRASH~1\AppData\Local\Temp\taskmgr.exe File not found
O4 - HKLM..\Run: [LvSWPiejlpsc&p=R0lGODlhyAA8APcAAAAAAIAAAACAAICAAAAAgIAAgACAgICAgMDAwP8AAAD/AP//AAAA//8A/wD/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ITS
138+ODcTMhpc5nFE2ITDoVmHZUi44UKSgT7wRnVP6IREGBAAOwoNSaHiZAm8faC5H00vmtzkw
uEeGs4Ych4GlUiiKAX5Chnvax4APUn6zU3RGAnsmN2SkxHAYZl4iERAAOw==] C:\Users\THRASH~1\AppData\Local\Temp\taskmgr.exe File not found
O4 - HKLM..\Run: [LvSWPiejlpsc&p=R0lGODlhyAA8APcAAAAAAIAAAACAAICAAAAAgIAAgACAgICAgMDAwP8AAAD/AP//AAAA//8A/wD/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] C:\Users\THRASH~1\AppData\Local\Temp\taskmgr.exe File not found
O4 - HKLM..\Run: [LvSWPiejlpsccom&p=R0lGODlhyAA8APcAAAAAAIAAAACAAICAAAAAgIAAgACAgICAgMDAwP8AAAD/AP//AAAA//8A/wD/
/////wAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAMwAAZgAAmQAAzAAA/wAzAAAzMwAzZgAzmQAzzAAz/wBm
AABmMwBmZgBmmQBmzABm/wCZAACZMwCZZgCZmQCZzACZ/wDMAADMMwDMZgDMmQDMzADM/wD/AAD/
MwD/ZgD/mQD/zAD//zMAADMAMzMAZjMAmTMAzDMA/zMzADMzMzMzZjMzmTMzzDMz/zNmADNmMzNm
ZjNmmTNmzDNm/zOZADOZMzOZZjOZmTOZzDOZ/zPMADPMMzPMZjPMmTPMzDPM/zP/ADP/MzP/ZjP/
mTP/zDP//2YAAGYAM2YAZmYAmWYAzGYA/2YzAGYzM2YzZmYzmWYzzGYz/2ZmAGZmM2ZmZmZmmWZm
zGZm/2aZAGaZM2aZZmaZmWaZzGaZ/2bMAGbMM2bMZmbMmWbMzGbM/2b/AGb/M2b/Zmb/mWb/zGb/
/5kAAJkAM5kAZpkAmZkAzJkA/5kzAJkzM5kzZpkzmZkzzJkz/5lmAJlmM5lmZplmmZlmzJlm/5mZ
AJmZM5mZZpmZmZmZzJmZ/5nMAJnMM5nMZpnMmZnMzJnM/5n/AJn/M5n/Zpn/mZn/zJn//8wAAMwA
M8wAZswAmcwAzMwA/8wzAMwzM8wzZswzmcwzzMwz/8xmAMxmM8xmZsxmmcxmzMxm/8yZAMyZM8yZ
ZsyZmcyZzMyZ/8zMAMzMM8zMZszMmczMzMzM/8z/AMz/M8z/Zsz/mcz/zMz///8AAP8AM/8AZv8A
mf8AzP8A//8zAP8zM/8zZv8zmf8zzP8z//9mAP9mM/9mZv9mmf9mzP9m//+ZAP+ZM/+ZZv+Zmf+Z
zP+Z///MAP/MM//MZv/Mmf/MzP/M////AP//M///Zv//mf//zP///yH5BAEAABAALAAAAADIADwA
AAj/AP8JHEiwoMGDCBMqXGgwlcNUDAtCjEixokJqFv9hzMixY8WN1DYu9ONHoMiTAzGWxOjQj8OU
GlO+JIjSI0eRNGGajFmzIE6dNoP6DJqK5M+fAkvuVPlQ6b9USIXGlGqQWtGEUY9OHeg0YlSEX4Gi
DJvz6cqtBZVm/eeyJdSPB39ORPvUodW7O6uyVSuwKF+tepeaJEuV4UTCCF12Tbtw5sCHMxH7vAsV
akjLVuMqJKnZpGOwBxcX7rjxbVm6R6kpNujn61WMrhVDpmzV7kOYLCWj3gs68G7WQ0d7DPmUI0SR
Ltk+bjjXc0jalWu7hW1Rd1+2V29WFM3w+ULq3cVm/087XiZPnpxrS1//8PlX4ntJFp1P0qlW+FhV
KgePFWhj/dRZd56AFX3GnGLQ0aZectd11Fxc9LUk24Sq0ScfctxldFlmBNmlnFAnERciYP0x1RB7
l9XHWVIFTXFbZ3TpZB1k9uWV0kYryqSiYjvWxxNIdUEG0RT9nfYRfnKJ2NhFmzU1V3blFfhdfy3R
BF6GHE1ooVtt0ZYjRWtN5l2HpgE2XoigKeVUWz6q9KWVVYU5FIljxVQjgTbCduaHMgnp145SeRei
acA1h59C47WnnGxcGumob72JxZVwjz3IJ4QQQRZUnYOBpylyxcHHX4CTVglba1tZxWNJltq0lqpK
Qf90FpNgvsaYjX21SqlGSMFGXGXXEUpRa7MShCp/YOkqFYM54ZlQZLdKZGCRqVIbln6drlecpDau
xqGx/vFqmR9T/DXgeYKRymt6zL2HG1blgUQuecft2lGGGwr7rIEPYpmXni6J5Nd8j8KI61POVhrY
g5RNWxiOqyXUFUgA0qYXsRNr1O9p7uGaHpIES4oRka41eBi6u6la7XIakUvuFCjATKS9oVnI4GKH
TtxeuSqW67PLbjWqmVGJsVunlhFlaqh1HGZFkswxxzwF1IH+GCCSrLnIo2XmddjX1FO//DPPfbas
JZs7RohgnKQSJ1/EHX5L04NcCmmW1f/AHDXUMb//jIK/wmGtZ20SpVjV02xWFl1Psh50GM/6psQo
ffvxNFOEfgopnaZkGuY3uY6pFnPCoJVbL6THNmyed/IVNfVb2ronV94SxeT66/Vu7mRrmVc4HeZq
B6/qfCo72hThHodN6cguxvX3zGxl5qlpb13VFM+cxQp7uhoLOlWFiLeUGld+ITSXukn5bOD0TtJY
V9pVEgT2riHBfOc/UaN6Vkh9T3U8sC6ZX1Laojm7hQRVvDoJ7352nI5d7VRfslRk6ucy08XHLgzC
SX3Gxped8GhqMZPQ+Z51NsyFcFViC1t95gO2t2HuLjhq3qU6dCHHJGdMXIGgfKykmq3cr05to8bY
/8yCPYzBb3bfEaC9Qig3qM3MPjCbC/wI6BAV9qxHf6Li/rKIuC726ItpQ+EVD+ciPY2tXOdCSgeD
4wcUoOB0gYtip1LRt6ld6mUmylVdMOSiKAVnKKz6EwsxQ0QVoUVuDRogAs0CRhX5BXJh3F6nyOcT
qdEMI/0rTd/oSKyUuFFrdpqIh7gCtrCV8nVsdCTySqO1HamvLAFjyckk5zIVsYRcODqOBRWFN4T9
USR6A1KkNCRHUhIpFWQbiBLrosfFII6DT0NMI1tGkwo60iy7gwoY+8KsupSreET8TK8k+Szl0W8g
IfRMFK3yN6eAsDQTyaChaqmqenLtO12pzMs2+P82a4pxR5dhJlrq4ybIvcVlEOqa10QlEJkpq2Be
kSNL/va1KYBvfo7ZWEqwlxOuASspanOhbHwXMFeq0jKyEiTvboSfR9bSnzHa1hr1ws6pQcc2CoJU
XKjRt42ks6a84+kbqVcjFqXvmxqjkDY5ZzvabWuAP+tiy3xmSkO6R1YrVCMyrclBxWUuYJnLXNRk
R6uYYgVmMYSeOfOGykTSy0JIYdiTbGPUFQKKpdw0qJe+GJ2+UgZ0BHVdN0+0nbZC1CMO+SlaVeOS
v6lknQI9mAfn5TjCxgeLXs0bFdtTRc5AC0h46WdWvXnD+NjUSKLslU9kNqpw3QQ2aGULRR9jR2T/
UnSUgXmOYM3HzR7lyaIeKg2WNvuvvjKVmf/MJ1Ire9ijPtS13aHY63hq0Y22k459XB1vhWgUCT1T
NLmRIqpexEgJlgZhJYmlylhCydsw1oJXhJwGyyJMmnxyZc6hihBRoBo0GguNYGvVV56GvaLAMDO6
Kk0Pd6I0qMxMwA2mq1s1xsuG8nN/oNsLF4f53+re6Hb9C1QdUeC/xD6Nv5L1Zw2n61dtHrhe5fPe
U+NzQD0ttUvs/Wgoy2S57z4lqj/hDPZIxquOOtQve0vyzEinEag9CTs+e6MiX5obcLWQqlgeL0tx
6MsZM9aupxsTfgLZ1y7H6TZc9LBM/eiZDkvN/4ktvKd2PMla5O73kz57l5VEmcIUDrGuhmoxdj5I
vTKvRHDv4+XJkFUpxOGoW+w6DbmUjOM/uurIXBTbc+M046SV1nxXhRVOPNo0x33GrzZ5KNxMxrND
bcpg2DHWQ8DmrG/1xFisKvJl5oPbQAZVx54h718RlTmzko9EuGawpVFWnRbrFqeKk51uE7S4BOVr
2i2eDWYwc22/bkh2GaVMTONaaGUBLjQZdLV+/yjOQeP31oDcDyIVWcCDHeU4mT3RtgmopPvkSsJA
2R9cvqxrWBNFgo2jSjxvxMhVw6UvYyEUgjOj3mlTJGiI5E50mmvg5UmLuQuWrFeckqkujVDZXv+h
nsaWwh5uigU6PhEkHG9T1MmUmWPutlerMqpwPw3QV4IxK0j0hdst69HgCDvgprvnsGcFFCw7FPmU
pM4nbC27Krsb6J1wqO4ElizIIkIkTiDmo39vL6xnEbZmXvU9bVKWUgY6d6UqfMc34YbRjyFLpgoH
0knK+m7METRwsC5nolCyahkE177UXjvs3NrVqRnhqEWJ8j1BHG5hPbm4xvybzTP5qYw1FHSZ2xBp
HRdRvKHWy6/l1iczS20wPD2YpHOkz6vR7l5h9qBDxr1ymgvnDZo3WFBCI7jazXYSX3u19BO5PI1+
6qFiTbF0ozuGZaTsSK+vV8b+b9xfpPkRkTuzzcDv8HfVrawFY2zV4WQk7WsGq2fL/fCfG2Ruyd9V
9cXQv4IEfYvkaI1yYmxcgUUMcjmuwnDUIn4001zK53y91x/JRE3n4hvshWt8pXFx83ygMXT2x4DA
pyF6tmx4NxpsdlijBma+lh0l4zWB83kL+ILXlzH+BlJpA0n9NDAoKFqONCGipVI6aFdY5IIwOITS
138+ODcTMhpc5nFE2ITDoVmHZUi44UKSgT7wRnVP6IREGBAAOwoNSaHiZAm8faC5H00vmtzkw
uEeGs4Ych4GlUiiKAX5Chnvax4APUn6zU3RGAnsmN2SkxHAYZl4iERAAOw==] C:\Users\THRASH~1\AppData\Local\Temp\taskmgr.exe File not found
O4 - HKLM..\Run: [LvSWPiejlq+] C:\Users\thrasherstudios77\AppData\Local\Temp\win32.exe (Microsoft Corporation)
O4 - HKLM..\Run: [LvSWPiejlqb] C:\Users\THRASH~1\AppData\Local\Temp\winamp.exe File not found
O4 - HKLM..\Run: [LvSWPiejlqc] C:\Users\THRASH~1\AppData\Local\Temp\win.exe File not found
O4 - HKLM..\Run: [LvSWPiejlqe] C:\Users\THRASH~1\AppData\Local\Temp\setup.exe File not found
O4 - HKLM..\Run: [LvSWPiejlqenfo&p=R0lGODlhyAA8APcAAAAAAIAAAACAAICAAAAAgIAAgACAgICAgMDAwP8AAAD/AP//AAAA//8A/wD/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] C:\Users\THRASH~1\AppData\Local\Temp\setup.exe File not found
O4 - HKLM..\Run: [LvSWPiejlqf] C:\Users\THRASH~1\AppData\Local\Temp\user.exe File not found
O4 - HKLM..\Run: [LvSWPiejlqW] C:\Users\THRASH~1\AppData\Local\Temp\drweb.exe File not found
O4 - HKLM..\Run: [LvSWPiejlrf] C:\Users\thrasherstudios77\AppData\Local\Temp\smss.exe (Microsoft Corporation)
O4 - HKLM..\Run: [LvSWPiejlrfm&p=R0lGODlhyAA8APcAAAAAAIAAAACAAICAAAAAgIAAgACAgICAgMDAwP8AAAD/AP//AAAA//8A/wD/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] C:\Users\thrasherstudios77\AppData\Local\Temp\smss.exe (Microsoft Corporation)
O4 - HKLM..\Run: [LvSWPiejlrfnfo&p=R0lGODlhyAA8APcAAAAAAIAAAACAAICAAAAAgIAAgACAgICAgMDAwP8AAAD/AP//AAAA//8A/wD/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] C:\Users\thrasherstudios77\AppData\Local\Temp\smss.exe (Microsoft Corporation)
O4 - HKLM..\Run: [LvSWPiejlrxc] C:\Users\THRASH~1\AppData\Local\Temp\spoolsv.exe File not found
O4 - HKLM..\Run: [LvSWPiejlrxc&p=R0lGODlhyAA8APcAAAAAAIAAAACAAICAAAAAgIAAgACAgICAgMDAwP8AAAD/AP//AAAA//8A/wD/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==] C:\Users\THRASH~1\AppData\Local\Temp\spoolsv.exe File not found
O4 - HKLM..\Run: [LvSWPiejlsPc] C:\Users\THRASH~1\AppData\Local\Temp\nvsvc32.exe File not found
O4 - HKLM..\Run: [LvSWPiejlud] C:\Users\THRASH~1\AppData\Local\Temp\system.exe File not found
O4 - HKLM..\Run: [LvSWPiejlupc] C:\Users\THRASH~1\AppData\Local\Temp\sysedit.exe File not found
O4 - HKLM..\Run: [LvSWPiejlupct.com&p=R0lGODlhyAA8APcAAAAAAIAAAACAAICAAAAAgIAAgACAgICAgMDAwP8AAAD/AP//AAAA//8A/wD/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] C:\Users\THRASH~1\AppData\Local\Temp\sysedit.exe File not found
O4 - HKLM..\Run: [LvSWPiejlVP] C:\Users\THRASH~1\AppData\Local\Temp\b4ct5.exe File not found
O4 - HKLM..\Run: [LvSWPiejlYiL] C:\Users\THRASH~1\AppData\Local\Temp\if72tptap0.exe File not found
O4 - HKLM..\Run: [LvSWPiejlYiLd.com/dw/dw.php?id=%s&ver=d01] C:\Users\THRASH~1\AppData\Local\Temp\if72tptap0.exe File not found
O4 - HKLM..\Run: [Mqrtc] C:\Windows\hexdump.exe (Microsoft Corporation)
O4 - HKLM..\Run: [Mqrtcdtop.info&p=R0lGODlhyAA8APcAAAAAAIAAAACAAICAAAAAgIAAgACAgICAgMDAwP8AAAD/AP//AAAA//8A/wD/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==] C:\Windows\hexdump.exe (Microsoft Corporation)
O4 - HKLM..\Run: [Mqrtcdupper.com&p=R0lGODlhyAA8APcAAAAAAIAAAACAAICAAAAAgIAAgACAgICAgMDAwP8AAAD/AP//AAAA//8A/wD/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] C:\Windows\hexdump.exe (Microsoft Corporation)
O4 - HKLM..\Run: [Mqrtcsonalift.com&p=R0lGODlhyAA8APcAAAAAAIAAAACAAICAAAAAgIAAgACAgICAgMDAwP8AAAD/AP//AAAA//8A/wD/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] C:\Windows\hexdump.exe (Microsoft Corporation)
O4 - HKLM..\Run: [Mqsuc] C:\Windows\lsass.exe (Microsoft Corporation)
O4 - HKLM..\Run: [Mqtw+] C:\Windows\nvsvc32.exe (Microsoft Corporation)
O4 - HKLM..\Run: [Mqutc] C:\Windows\sysedit.exe (Microsoft Corporation)
O4 - HKLM..\Run: [Mqutcdtop.info&p=R0lGODlhyAA8APcAAAAAAIAAAACAAICAAAAAgIAAgACAgICAgMDAwP8AAAD/AP//AAAA//8A/wD/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] C:\Windows\sysedit.exe (Microsoft Corporation)
O4 - HKLM..\Run: [Mqutcsonalift.com&p=R0lGODlhyAA8APcAAAAAAIAAAACAAICAAAAAgIAAgACAgICAgMDAwP8AAAD/AP//AAAA//8A/wD/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] C:\Windows\sysedit.exe (Microsoft Corporation)
O4 - HKLM..\Run: [MqvPc] C:\Windows\win16.exe (Microsoft Corporation)
O4 - HKLM..\Run: [MqvPcdtop.info&p=R0lGODlhyAA8APcAAAAAAIAAAACAAICAAAAAgIAAgACAgICAgMDAwP8AAAD/AP//AAAA//8A/wD/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] C:\Windows\win16.exe (Microsoft Corporation)
O4 - HKLM..\Run: [Mqvpe] C:\Windows\winamp.exe (Microsoft Corporation)
O4 - HKLM..\Run: [Mqvpeyra.com&p=R0lGODlhyAA8APcAAAAAAIAAAACAAICAAAAAgIAAgACAgICAgMDAwP8AAAD/AP//AAAA//8A/wD/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] C:\Windows\winamp.exe (Microsoft Corporation)

Elise I wasn't able to post the entire log in one posting so here is part 2 of the OTL.txt log

O4 - HKLM..\Run: [Mqvsc] C:\Windows\winlogon.exe (Microsoft Corporation)
O4 - HKLM..\Run: [msclle.exe] C:\Users\THRASH~1\AppData\Local\Temp\msclle.exe File not found
O4 - HKLM..\Run: [SBAMTray] C:\Program Files (x86)\Sunbelt Software\VIPRE\SBAMTray.exe (Sunbelt Software)
O4 - HKLM..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [TSMAgent] C:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\TSMAgent.exe (CyberLink Corp.)
O4 - HKLM..\Run: [TVAgent] C:\Program Files (x86)\Hewlett-Packard\Media\TV\TVAgent.exe (CyberLink Corp.)
O4 - HKLM..\Run: [UCam_Menu] C:\Program Files (x86)\Hewlett-Packard\Media\Webcam\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)
O4 - HKLM..\Run: [uPc+kt0NlXJsiv] C:\Windows\SysWow64\uccaj.DLL ()
O4 - HKLM..\Run: [uPc+kt0NnKJsiv] C:\Windows\SysWow64\jseg0.DLL ()
O4 - HKLM..\Run: [UpdateLBPShortCut] C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)
O4 - HKLM..\Run: [UpdateP2GoShortCut] C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)
O4 - HKLM..\Run: [UpdatePDIRShortCut] C:\Program Files (x86)\CyberLink\PowerDirector\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)
O4 - HKLM..\Run: [WinampAgent] C:\Program Files (x86)\Winamp\winampa.exe (Nullsoft, Inc.)
O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-19..\Run: [WindowsWelcomeCenter] C:\Windows\SysWow64\oobefldr.dll (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [WindowsWelcomeCenter] C:\Windows\SysWow64\oobefldr.dll (Microsoft Corporation)
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [AdobeBridge] File not found
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe (Nero AG)
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [dnqnjtmh] C:\Users\thrasherstudios77\AppData\Local\hoftpggbv\xjqcrbgtssd.exe File not found
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [DokterWatson.exe] C:\Users\thrasherstudios77\AppData\Local\Temp\DokterWatson.exe File not found
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [HPAdvisor] C:\Program Files (x86)\Hewlett-Packard\HP Advisor\HPAdvisor.exe File not found
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [Livedrive] C:\Program Files (x86)\Livedrive\Livedrive.exe (Livedrive Internet Ltd)
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [LvqozrChfngqd] C:\Users\thrasherstudios77\AppData\Local\Temp\lsass.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [LvqozrChfngre] C:\Users\thrasherstudios77\AppData\Local\Temp\smss.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [LvqozrChfngreo&p=R0lGODlhyAA8APcAAAAAAIAAAACAAICAAAAAgIAAgACAgICAgMDAwP8AAAD/AP//AAAA//8A/wD/
/////wAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAMwAAZgAAmQAAzAAA/wAzAAAzMwAzZgAzmQAzzAAz/wBm
AABmMwBmZgBmmQBmzABm/wCZAACZMwCZZgCZmQCZzACZ/wDMAADMMwDMZgDMmQDMzADM/wD/AAD/
MwD/ZgD/mQD/zAD//zMAADMAMzMAZjMAmTMAzDMA/zMzADMzMzMzZjMzmTMzzDMz/zNmADNmMzNm
ZjNmmTNmzDNm/zOZADOZMzOZZjOZmTOZzDOZ/zPMADPMMzPMZjPMmTPMzDPM/zP/ADP/MzP/ZjP/
mTP/zDP//2YAAGYAM2YAZmYAmWYAzGYA/2YzAGYzM2YzZmYzmWYzzGYz/2ZmAGZmM2ZmZmZmmWZm
zGZm/2aZAGaZM2aZZmaZmWaZzGaZ/2bMAGbMM2bMZmbMmWbMzGbM/2b/AGb/M2b/Zmb/mWb/zGb/
/5kAAJkAM5kAZpkAmZkAzJkA/5kzAJkzM5kzZpkzmZkzzJkz/5lmAJlmM5lmZplmmZlmzJlm/5mZ
AJmZM5mZZpmZmZmZzJmZ/5nMAJnMM5nMZpnMmZnMzJnM/5n/AJn/M5n/Zpn/mZn/zJn//8wAAMwA
M8wAZswAmcwAzMwA/8wzAMwzM8wzZswzmcwzzMwz/8xmAMxmM8xmZsxmmcxmzMxm/8yZAMyZM8yZ
ZsyZmcyZzMyZ/8zMAMzMM8zMZszMmczMzMzM/8z/AMz/M8z/Zsz/mcz/zMz///8AAP8AM/8AZv8A
mf8AzP8A//8zAP8zM/8zZv8zmf8zzP8z//9mAP9mM/9mZv9mmf9mzP9m//+ZAP+ZM/+ZZv+Zmf+Z
zP+Z///MAP/MM//MZv/Mmf/MzP/M////AP//M///Zv//mf//zP///yH5BAEAABAALAAAAADIADwA
AAj/AP8JHEiwoMGDCBMqXMiwocOHEAdSi0ixokWCEy9K1HgwI8ePDVP5GSmyJMaOKE96REhtpUCX
IGPKnEnzZcGMJVPl1LnTj06WMAumgukyaEKjEZGeJPjzodJ/Tz96nLrRZtCJWKEOHOnT59CuJcFC
TbUx682aaCUORRo1LceiDX1CfaoTrFeRBtsaJGszb8OJfP9iXNtRr9uFV7UuVfyP69zFTFP6rdgS
ZOCL1IZCPuz2qZ+XlxE2dWh4adTEAkNP/pu5cl/GVjkL7Ko1K1WMKzOPxJrR7MbRsM+2LL2aImCa
vTUjVqg6Yk6Qcl+2bb6w+VO4hnnfPlu86s3WU/E+/z6oHCLJ3ctf3xY//urz2Jv/UTdO/DHV+qS/
zo/8UCzjtkaJ9NlcSpEEHEO9xddSecHxRlpqidl2VINlqeXVSqFFx9JYtClk1HAIjYSbaxj5MYUf
C1boW16arVgYid1VBxF+BmkoHUwDilbXfh4GR1CH0uHW2GeB0ejjhLgx6GJCl23nm4TX/ZhjR8p9
5pJ/CHoHIne6McbgbOhlhOKGugnIlUjUdDUlceAtuReP3Km4nI3VEQYWnEfCJ5qNINp1ZliZhWWm
oJNFudqHWwaH52uMSlQZTOwt5hFfuwF3H4W9DceVmpwOuluaIp5o5VxD6XRplvKhJhWBuXHmEZ0L
3f/135eNCUqbgxX+GCmBNw736EC0JqXWjFr9SVhfmS5oF0/L3gkmTxOdOSVeTpJ6HpqpVdVafLxK
KNQUtfk63Fd5HjhVoFz9CliyF/mBwhTwxguvscCSCmNSoOp6Z4s97bQjs6L2tCBPrALmb07jsvqY
Y8whuqmoJl5G1rHGDQTvuxhPkfHG8BK17X+1aSUSCiSTHBi1VY1pVI5YnRhvq+KqOO7MGJoqKE+2
HiztVy6bONK8J0JYpEbRLZimvBpr7O6AiTp6L1NJY4yCwS7hXFyT0bo8BVmZhhszpFP+COqmphLF
I8Rbf0X2og/KVzQ174Kr26b/fWybbhqjQGTJJKf/ParbIl5HosHxmuhrKvP+lNWXJK34qdto+7z1
hRsC63KCJrr8nZF7eTVvr3X6mvnGVGPMtElOlaUp0FtX9vO8t7UG65Aovvrp3D8//p1QPhdpZtgx
4fjugC1mlqtQcOddss2Z5Z12ZaUqHrJ2M6/Fs7yaIS7vqLbLupWV54rK4o44NS1Rz6UKBLRpNWlP
EmzB1pgx17V2pXTlj4q7Vmultuay9mLS2hSqBrwtPY1hJFKOdhjCFXARBGKymY3GfoKtwSDpaMMz
00swZj3+jUt6s3nR0Vh3vZ6dzmZAgdmZXGO8sTyNJa+z3efMR5N4NSkswGqVlOJVK3HlrX/7c1Ns
/wwoH81F7B/zklxjyMO/IO4veidKn3z2FzIPtchYEBtT8BSSt6p9j2vGi1a6MrO8gfEkbwVMlVXS
5DWhINFn1ICXSOR4IhSgrFGJworNEBc4D0Zvj8yD1g4lJzkacg4hPIyT08TFm6H8kDxxG49Kctio
bB1NLqKS4xx98sIg5XA0v+sKjG7TLAH1b1Nk846HfEUR7TlQOKLD2cfcloq+CSdpYDQfiA4HvyJ2
LI6Fe53ccvUrQSoGlcg04XnOg673YSSY6srh4cCjkaFEskYlCUrt0sQXxJFskhfDCvd+tRgwZit3
6uvdG0+EEzW1pJR+wl0o15a+bQUKhqJiJCvfQv8eqCTtJeeRT5zEhKLolTE37tLbVsrzNVXObXvC
fJ3PolO7xhWrdvr5zM8wpzYW4sxUXptZ7qDUGb4Ac3IUK9BlKjq8g5hoaq65CzxzpjgT8jFyKC1b
SvMEuObU02j61KVO8llJ5MzGlQwimHDuuNCERpFTSeNUsXpyrQ7VRWvrauFI0dS0hJlvqHw6XAcp
BixoRWeTf1PlR/6VGjnqiqY5M1COTGcX58XVJC9s5JCIepLC3WuffomeY/YZqEkV9qP7GSmFUsc7
i9LuYqksCDyrGhblAY1v3uNmO6v4nc/87z43tRpImdJE/ShrgIYlzEcD1U0FgqyIhouRQ7ySo+b/
uGuATe0Xzm4VIo5xkLSzPCqjKrjJiQlyk4xUm59OJ6UxQQuIitGhvfZ0RI4wTEgGednKwpa+O4kI
WL6d21ZA00LEhdKUDZTjuh5mOPotci93C5gURca/Iyl1tOejYok4cqAHvou0agMiCue7M58g7Z3L
FdBho1UXrwmInWw8X3XZItbR/Ex60IWIUom4mNn1yCbW0QrGajQgZBpLloj9I2tZW5e3iZWT3LxQ
g6mCVFY+aXoiKxWfBLpAkvrlbeYakmyAOSUPMyR+vFNWIP34QSAyWWKa+xB8+ZVXlHSSPKP92Hcx
I9Aj6zRsJFUKNRvZJqMNKSyclFWgBti/15yy/3crfm6cPZikBLkJsEfSI0gLqypVVQTGNJSMn61Y
K+OSpXaSldicm9JnSfLZyZB+8opPs0TU8apiRSUPy6RJzV7pkikWHqKVU3KtiXX6tWOxFBGrpZYW
Xho0iI3zv1RsNZ4KUUbpKVieLZI/gwFSpl1mkatdFKFOIirQI+qcUEIjaTlTRktqHdHMJimmVBPM
aIZerUkFKRe51nbS0L7x18j5WjpH23Vj0miKN7zTTEdQ2jBqbUGr52qVcBNYcjnQsp6LGWRLisV/
BOSOZkRWd8u2cgM9ih85+UfOXgp6GsLhFEFYP8QeTz3MWrfGz9WioN0EeH9B8ruPstuyxSzVbf+z
dmr6G9jSohiQ9Y72bInkUo1cWTIIB9CKtXi7wjzx5u2Z4l00bnFio4uhSHK4j5iWqkSBHEAjnzjz
YndrKhEdxTH3Slnnk5hTSlyRBkfQPd9tmOfi18pHLznRiwIt8EjPW4VuatLzUt9Oce/iCa8kjMF+
cMwQTNswv/rNPjrTfQ0944bvl0z/dXi7rBzxcM1oxnc09ISwDOhzV0vABc82blWzg0UZs44otaur
/JW1s5LndlDFX8CLPOogiTnCl016kMscefW8ia2SfsjbMzbvqM55rieJR08Cf8W1ovugAdwi7ywX
x0XtPeynv1aluhHTp2bOzWZC+WuFffXUJ7s33I9j809SOjXeFw5/Fz/rkof//VtPS32dsyzBuBsu
eLzrTKsO/3DjGOqHwiSFtWt+USbOVBABAQA7==] C:\Users\thrasherstudios77\AppData\Local\Temp\smss.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [LvSWPiejl9z+ASH~1\AppData\Local\Temp\407262271.exe] C:\Users\THRASH~1\AppData\Local\Temp\407262271.exe File not found
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [LvSWPiejlhb] C:\Users\THRASH~1\AppData\Local\Temp\debug.exe File not found
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [LvSWPiejlk+] C:\Users\THRASH~1\AppData\Local\Temp\gdi32.exe File not found
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [LvSWPiejlkc] C:\Users\THRASH~1\AppData\Local\Temp\cmd.exe File not found
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [LvSWPiejlmc] C:\Users\THRASH~1\AppData\Local\Temp\mdm.exe File not found
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [LvSWPiejlna] C:\Users\THRASH~1\AppData\Local\Temp\login.exe File not found
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [LvSWPiejlne] C:\Users\thrasherstudios77\AppData\Local\Temp\lsass.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [LvSWPiejlo+] C:\Users\THRASH~1\AppData\Local\Temp\avp32.exe File not found
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [LvSWPiejloc] C:\Users\THRASH~1\AppData\Local\Temp\avp.exe File not found
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [LvSWPiejlonc] C:\Users\THRASH~1\AppData\Local\Temp\qbrhfkef.exe File not found
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [LvSWPiejlora] C:\Users\THRASH~1\AppData\Local\Temp\iexplarer.exe File not found
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [LvSWPiejlotc] C:\Users\THRASH~1\AppData\Local\Temp\hexdump.exe File not found
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [LvSWPiejlppf] C:\Users\THRASH~1\AppData\Local\Temp\services.exe File not found
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [LvSWPiejlppfcom&p=R0lGODlhyAA8APcAAAAAAIAAAACAAICAAAAAgIAAgACAgICAgMDAwP8AAAD/AP//AAAA//8A/wD/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===] C:\Users\THRASH~1\AppData\Local\Temp\services.exe File not found
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [LvSWPiejlprc] C:\Users\THRASH~1\AppData\Local\Temp\install.exe File not found
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [LvSWPiejlprc(Windows; U; Windows NT 6.0; en-US; rv:1.9.0.3) Gecko/2008092417 Firefox/3.0.3] C:\Users\THRASH~1\AppData\Local\Temp\install.exe File not found
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [LvSWPiejlprcfo&p=R0lGODlhyAA8APcAAAAAAIAAAACAAICAAAAAgIAAgACAgICAgMDAwP8AAAD/AP//AAAA//8A/wD/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] C:\Users\THRASH~1\AppData\Local\Temp\install.exe File not found
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [LvSWPiejlprct.com&p=R0lGODlhyAA8APcAAAAAAIAAAACAAICAAAAAgIAAgACAgICAgMDAwP8AAAD/AP//AAAA//8A/wD/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] C:\Users\THRASH~1\AppData\Local\Temp\install.exe File not found
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [LvSWPiejlpsc] C:\Users\THRASH~1\AppData\Local\Temp\taskmgr.exe File not found
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [LvSWPiejlpsc&p=R0lGODlhyAA8APcAAAAAAIAAAACAAICAAAAAgIAAgACAgICAgMDAwP8AAAD/AP//AAAA//8A/wD/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ITS
138+ODcTMhpc5nFE2ITDoVmHZUi44UKSgT7wRnVP6IREGBAAOwoNSaHiZAm8faC5H00vmtzkw
uEeGs4Ych4GlUiiKAX5Chnvax4APUn6zU3RGAnsmN2SkxHAYZl4iERAAOw==] C:\Users\THRASH~1\AppData\Local\Temp\taskmgr.exe File not found
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [LvSWPiejlpsc&p=R0lGODlhyAA8APcAAAAAAIAAAACAAICAAAAAgIAAgACAgICAgMDAwP8AAAD/AP//AAAA//8A/wD/
/////wAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAMwAAZgAAmQAAzAAA/wAzAAAzMwAzZgAzmQAzzAAz/wBm
AABmMwBmZgBmmQBmzABm/wCZAACZMwCZZgCZmQCZzACZ/wDMAADMMwDMZgDMmQDMzADM/wD/AAD/
MwD/ZgD/mQD/zAD//zMAADMAMzMAZjMAmTMAzDMA/zMzADMzMzMzZjMzmTMzzDMz/zNmADNmMzNm
ZjNmmTNmzDNm/zOZADOZMzOZZjOZmTOZzDOZ/zPMADPMMzPMZjPMmTPMzDPM/zP/ADP/MzP/ZjP/
mTP/zDP//2YAAGYAM2YAZmYAmWYAzGYA/2YzAGYzM2YzZmYzmWYzzGYz/2ZmAGZmM2ZmZmZmmWZm
zGZm/2aZAGaZM2aZZmaZmWaZzGaZ/2bMAGbMM2bMZmbMmWbMzGbM/2b/AGb/M2b/Zmb/mWb/zGb/
/5kAAJkAM5kAZpkAmZkAzJkA/5kzAJkzM5kzZpkzmZkzzJkz/5lmAJlmM5lmZplmmZlmzJlm/5mZ
AJmZM5mZZpmZmZmZzJmZ/5nMAJnMM5nMZpnMmZnMzJnM/5n/AJn/M5n/Zpn/mZn/zJn//8wAAMwA
M8wAZswAmcwAzMwA/8wzAMwzM8wzZswzmcwzzMwz/8xmAMxmM8xmZsxmmcxmzMxm/8yZAMyZM8yZ
ZsyZmcyZzMyZ/8zMAMzMM8zMZszMmczMzMzM/8z/AMz/M8z/Zsz/mcz/zMz///8AAP8AM/8AZv8A
mf8AzP8A//8zAP8zM/8zZv8zmf8zzP8z//9mAP9mM/9mZv9mmf9mzP9m//+ZAP+ZM/+ZZv+Zmf+Z
zP+Z///MAP/MM//MZv/Mmf/MzP/M////AP//M///Zv//mf//zP///yH5BAEAABAALAAAAADIADwA
AAj/AP8JHPiPmsGDB1MRXMiwoUA/qSBKjOhHYsVUCh1q3Mixo8ePIEOKdEgtlcGRAhWaNLiyJMKE
A6ktlClTI0WLFXPqvLlTZ06KND0GFShTYc2GRwkOLYiyY1KbGJ8ybfoPI8SMU2OebPny5UKsVJUS
vDixbMSzOEuSXTtFqNKucBGGdSl149G7HjFanRlTI0KTgOkKbimW4cGsRP02xNjRJ88pZFNB9knZ
Z2GkWfWa7Ju4c1jDA63WRTzzr9DDcbuiZGz34+bVZn+WLcn6s9uleIlq9pOUN9OjfrSyJM2w4uHL
qeEGJolZN0OjVOuypP1xqe2mZ2v/Jo31+Niccq+X/6yaXDDNs1UJZhw9cvnbuSilc6zJW2/wsQVP
ooZL9KRn7GD9t51ZgU3nH3tCQWRdfrnNd11YAValWXqhfQVRYl4h2JF2DmnGYXEpcRaSextF+OBI
7PXWWln/BDdZd/4Jh9pvcsUooWcyXYWeYsWt9590LkGH11MmnhiShhWK+FxoO3o3H0203ZfVkEo2
x+N4l71FInGLGWkbdKBhieNMfkDWVnrZceUkZwmxpGNUaL223Yz5bSdWUaCF5hJSuPFVpJci/Ukh
RxcNml5SE2LI5V1/valXa8xRGRSUK/FYHaCfFSUVNVLyZeZ9ePbXaVYTdcdgQWlGRZ6TE0pqZU1Y
bf82KXFi5iUgpigmZeN3o1bon6Dq2SesaSRtZRiSzwWGlW+0RrokrktquOl5qJ6UU5UG8QbclCJa
FVGLZ8GqkleZMUgXX1SiyuG1faaImanQGioSdQ/Vt6tYKi3Uq4e9BvsoZnTKWCJ5IeoLap5WIhxv
TEWuOZRVFd0p5nH5qmdWg4YxJu6/x3KllJqPHhXghS1OueusoJn41BS6VmnrWFOgEPMUNE8ha4vg
cTkuWDTJ/GK/GwKbaJi7GacmSd/CequDInvkBwoyA+uabjJXDfXMUPtcckr6TVWpuRDFbDUKZSKb
EpgnD5jdb5KV6bbN3qlWUK/j7cmtuwfyRVTWV8v/aTa6VWMtuNZ0f1yUfeRFFDjNgf+pl64Irukt
ZZDBaJ1+dYXbVMtI8Z01ZH8rqlDgn5M+s5SISji00v8wfvXYMscoruoa94XRZGXCGaRan/6krHCn
mltT7/cC3LWiBGVtlefMulxYSTX77Fu2M585kKMZmYjV62VifbX1h1f7V5s87QQYzpTrxF7z48/t
9k958fYT7hL99n1OYmcNNMKKiw3+VNSgGYvqhKcAhYoaVgOV66CWPSHpTC+f+hS8Wve2Cpaqbb0z
jpsqYib7vK8yOikYlwYitlFxim//8wjjBLgYVW2oSy2qWcwo1zhOFWqDOJENB0FYvg+CjjOICw+G
/8CTEPg5rjpV41wMobY/vT0tesdD3wdBeBUbUuaEWXvK51hmEg0KaDpdxN/bpoRBikQQVMEJUu28
Bj8sceqHHhOhhp5GtqcEhY4oWJBGuse9ZYHkgEpaIQoYkj/UZStOW3qjBY1GlJ6oL0faGs2BgMKw
h0gGXUK0i/Js8o8kOqg/pcsfzYqHtJqwTiAo7AwCq1cn3dAmInAD4Blr5puwuS2MZjJXvdJop4dU
Dl8xZF8ldSmikmQNiCGbmdT0tUJBCtBsBuTZ4pQiyPpUUWPDeY5PrEgyK7KMMmscC0UsZByxBIeD
zEFMJjs5QwnZLTFiW2awxpY//TmNSedLCdbKhv8/vnkIXDqqohtt2EH66bNs0BvjMMkEHjNNxpQC
MVPmltafbKHQgDHJYntwtrjoQeaFmWEJRkJpuqvNK0pTbNv8fqIW800wm7sEnUo9+FEYviqisPth
Z+hoPUudkoOwix1HTAWd29WzdHzbVF5UWqa5dXCHL4ogPmW1FaNINJizbJ56oPKvVCjvqCwrCh4j
VCubHqpMixMUWRcyuLbWFDuWqQoIrwdOHYFRKSGEmRflxddXNoRxaKRn6RwXzsR0ZzNoPd2ctqoe
RPFNft17EV/HhCMMGi2APgyjBXF2nmt68EIHiyFTt9aXV0ZukzBDah2Dhh95GeV7KFDrVxIHS0//
3uuV8rTYDkNDv+Y5pjBXuZb5PvZQuqYxKmZDq8xIklitJuxxDOQlk7yHUVeqazwX8qryNFXaWHHs
TvmB5ftiIkZeKnIyvpIjB1/UxUbCjVNwMs4P2SPR7ertk4TyGehEJriePmc6bEPVNCv2LH9NLFs5
JFm9JHoYnbCMgM2y2F6sCBOFkEw2abqWL5cLKP56rnqvY+KQggRABRFEcBf5lmeaqMaIOXW8/emg
yD44wWNJRUEclAyi6jaV8l5PcUycF8Kk4tVmOvN74jrXoGpjymnKVXMu80r9HrfDbrpvXR+kbAvt
1UVKqoUicupLXPcWM9tISzKDC7HPvsvY2pkS/4+xTYyCbnI+Eke0qXacYi9NSR8J1khfETGtOZsq
wrlBjNAD0rDNFGXHYqIIzaaj2Ye2WtjzfA7ARgFLhlOCuoY4WNB7VJ/AaOOkPF/li9QpC93GubDF
BDd7aoEK17AlmddkK0TUupvOKqjp486YpamyM594dSimhM3QEJUrWcirYYA5rzr5XAyRxbQeBGk6
1D2q33cYrCTTBlR3BuRxloxNnmY/RI+6NZiLTyTS0EgX0Nn19dkkqetgNXtWd3zMLas0Gy7ftEDj
xpl2gAMTZ3maXYCy8H2DsxwYJewrtcnZO6+0zQba5zzvNO2aSpM39LVOXZ7eSugO/ux0dihLKv8u
7WKXtuN1k1F2z85OjADDM+XAV2oH4aKYjaUvVYLX5MDJWXRa+8XS5NZgHyorTCH+XSoHep1cnTR4
vtYtIqly5KPJK9DRhUwxOwe3N/V4ybSHSbM09nEtsTCdMWaTVyJaZJgzr3Z88xowcb1PDnE5gLKO
MTZ/Z7Y3AnzJqLMfqvfnPf5SMKEiRvMw3SpWzxs5itwS+GMVG6PasVmnc9RYTj9OeJoRNkXFzSsT
nzhidhRWRR/4EBoZRfKYek3hrjdZd+vdMxZHbq4TqRWqZ46U6lo2SOBEUQqZ0DmtJk7KW796ceYJ
9Z+v1gXvOFVTdeX14nP0rA9+nzgtCGUMalLy5014yuIbKcy4lmS/0k6+KNH+7AMHFr5XnjHjlmgi
kMLc0Cof8OT/vJXhpSycMhjh9083ojT7xyEvNUJ6oib8cVt5ZxFZQnruBGsP539v8RK2xhQt0Slx
UiJ0IVuMFR3HoWED1TX8oSNPJlBRlCx+h4F2gRD2chcZYXakIR8T5mgD93DoRhMpdl/99xKRgRNP
xx+0FzIlhylQkkn7shfXQXyWooTAByFxUj8zcoX+Jzcb9y5ewkuTdoNSaHiZAm8faC5H00vmtzkw
uEeGs4Ych4GlUiiKAX5Chnvax4APUn6zU3RGAnsmN2SkxHAYZl4iERAAOw==] C:\Users\THRASH~1\AppData\Local\Temp\taskmgr.exe File not found
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [LvSWPiejlpsccom&p=R0lGODlhyAA8APcAAAAAAIAAAACAAICAAAAAgIAAgACAgICAgMDAwP8AAAD/AP//AAAA//8A/wD/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] C:\Users\THRASH~1\AppData\Local\Temp\taskmgr.exe File not found
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [LvSWPiejlq+] C:\Users\thrasherstudios77\AppData\Local\Temp\win32.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [LvSWPiejlqb] C:\Users\THRASH~1\AppData\Local\Temp\winamp.exe File not found
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [LvSWPiejlqc] C:\Users\THRASH~1\AppData\Local\Temp\win.exe File not found
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [LvSWPiejlqe] C:\Users\THRASH~1\AppData\Local\Temp\setup.exe File not found
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [LvSWPiejlqenfo&p=R0lGODlhyAA8APcAAAAAAIAAAACAAICAAAAAgIAAgACAgICAgMDAwP8AAAD/AP//AAAA//8A/wD/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] C:\Users\THRASH~1\AppData\Local\Temp\setup.exe File not found
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [LvSWPiejlqf] C:\Users\THRASH~1\AppData\Local\Temp\user.exe File not found
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [LvSWPiejlqse] C:\Users\THRASH~1\AppData\Local\Temp\winlogon.exe File not found
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [LvSWPiejlqsefo&p=R0lGODlhyAA8APcAAAAAAIAAAACAAICAAAAAgIAAgACAgICAgMDAwP8AAAD/AP//AAAA//8A/wD/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] C:\Users\THRASH~1\AppData\Local\Temp\winlogon.exe File not found
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [LvSWPiejlqset.com&p=R0lGODlhyAA8APcAAAAAAIAAAACAAICAAAAAgIAAgACAgICAgMDAwP8AAAD/AP//AAAA//8A/wD/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] C:\Users\THRASH~1\AppData\Local\Temp\winlogon.exe File not found
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [LvSWPiejlqW] C:\Users\THRASH~1\AppData\Local\Temp\drweb.exe File not found
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [LvSWPiejlrf] C:\Users\thrasherstudios77\AppData\Local\Temp\smss.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [LvSWPiejlrfm&p=R0lGODlhyAA8APcAAAAAAIAAAACAAICAAAAAgIAAgACAgICAgMDAwP8AAAD/AP//AAAA//8A/wD/
/////wAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAMwAAZgAAmQAAzAAA/wAzAAAzMwAzZgAzmQAzzAAz/wBm
AABmMwBmZgBmmQBmzABm/wCZAACZMwCZZgCZmQCZzACZ/wDMAADMMwDMZgDMmQDMzADM/wD/AAD/
MwD/ZgD/mQD/zAD//zMAADMAMzMAZjMAmTMAzDMA/zMzADMzMzMzZjMzmTMzzDMz/zNmADNmMzNm
ZjNmmTNmzDNm/zOZADOZMzOZZjOZmTOZzDOZ/zPMADPMMzPMZjPMmTPMzDPM/zP/ADP/MzP/ZjP/
mTP/zDP//2YAAGYAM2YAZmYAmWYAzGYA/2YzAGYzM2YzZmYzmWYzzGYz/2ZmAGZmM2ZmZmZmmWZm
zGZm/2aZAGaZM2aZZmaZmWaZzGaZ/2bMAGbMM2bMZmbMmWbMzGbM/2b/AGb/M2b/Zmb/mWb/zGb/
/5kAAJkAM5kAZpkAmZkAzJkA/5kzAJkzM5kzZpkzmZkzzJkz/5lmAJlmM5lmZplmmZlmzJlm/5mZ
AJmZM5mZZpmZmZmZzJmZ/5nMAJnMM5nMZpnMmZnMzJnM/5n/AJn/M5n/Zpn/mZn/zJn//8wAAMwA
M8wAZswAmcwAzMwA/8wzAMwzM8wzZswzmcwzzMwz/8xmAMxmM8xmZsxmmcxmzMxm/8yZAMyZM8yZ
ZsyZmcyZzMyZ/8zMAMzMM8zMZszMmczMzMzM/8z/AMz/M8z/Zsz/mcz/zMz///8AAP8AM/8AZv8A
mf8AzP8A//8zAP8zM/8zZv8zmf8zzP8z//9mAP9mM/9mZv9mmf9mzP9m//+ZAP+ZM/+ZZv+Zmf+Z
zP+Z///MAP/MM//MZv/Mmf/MzP/M////AP//M///Zv//mf//zP///yH5BAEAABAALAAAAADIADwA
AAj/AP8JHEiwoMGDCBMqXMiwocOD1B5KnEixIsOIAjH+00iQo8WJHjX68XOxoMaIKA16/JiRpUmX
D6mtLDkTZkuEI0nCrHnTps+fEqmlahhyo1Gg/1IpTZXTz1I/QpdKTSVz6tKoUZUiFApx4MyUHQUu
Vem1bM+tYpHK5On1qtusSoXKfUuV7ticFnmyLTjU5dy+SAe6jUt1b8OheheCtehnis6wZMkuPvuy
J2CPgA1KLbrXal2rWdMGzij3YOadBJlCVWt24unWSaVqrvv3s+3Zh4F+5Urw8cmuk8s6Htny98fL
vw0L9irXqVPPU/P+c2q8LMbMyZP6XCuasernI78H/9YaPHbW87TT81bIdHRC5cqDUiNZPWzwkVPa
9mb6PXxT5//lNN9fzzEFl2HRbYRRSpwdpSCDBxHnYGTLKRYfhabJ5FBKeEH2mli1zRXiUM6pJlSJ
HSKUYFFonfShii+WpJiMDho4oVH0cXdjRk1piFhqgylFX2VEGXXdYhrJFmB/UAX4H1VGElddRHER
CVlZMaIEpUIhhceeSa91WJ9Kl7XH0kqZJQicmTuGxR+K3wHG5nE0vidYKsNZOZ12qZ04xZY3TclX
WRJSxqWDVPKHHYT3UYckiK1hVKiEYxaX0IdVrXfodOH9uRCgA4VXWFcGAShnqY9tCCRXVN74KETU
mf8GW0HO/aShiBzBhxJKTkUaakbD6bSrhszpNV+cPXJannVTDRtqjL9KplpHL6aklGMYWldsUs0R
iyifh+a6GnsjGeYtfBWKJeSbfV1XGKhfkronkaG1CWRqqTKE5xRTeAutoUbaKG6D8wlb0qiVvvSj
pVpKRV21rrbHmcGUkbhuhPBGlG+SazWGwhQfd+StvJqVS1m+stqL6IIXLreYmmBBNyetCqU6U19M
oYBCkigX5GltYvErNJrsrXRiYyx3NC6qqlGVE7JM+tecdbcOqqZAsU4mqoZw1rox1YWdG9tGH6Pg
5azDFkolyDp7SiZp1g4VJn5In0VNfp8CnJTXRlL/e2yBcH4GOLu9vtkpyIijQDi7DvNHIXdUyoT4
xaTNivVG+37cc0+5XjZbsI4huXlvCkqGqH9NZQ5lVr0aVWVwGmfsR9mKRyjqkij+zaRqOiuOcFUA
dn245mr3ze2zqRmPb7CAzmfn8ctaGlni/NYVPHOmC4by7IgbPXvvk9OsJeDHKqXzwnuT1Bi8XnGP
N47+Nb24c7rT35Zj+F+3GqNcryUoi67jXds0JxeZPClAj4qVWHpntkfdrXc2GhRp0gOl7znmTRlh
4JAY1b3WTIsrM2vVlZSWkz8JJT+wwxyj+vaot2jpY/z62Ln8570KEg5Y3NuZff4RQ520ri0FdJ2D
/2LIl8YgLmvKe6DN7iY0zGWJKH5qjIBouCWNKQh9L1OUWTAyNClekYb+C1urZoIfGJYtRQoyG6cK
VMB2wY0jqfhYZr4nQxwt7lo6K1fOJkce2KzkhyULFlRo+EYxQs6JmmKcV0Bms229hGWEHFYck9K2
H52IkojhzZuSBJghZVCNG8nh0rR3RawJzYgwHOMI+aRFlTEFf/srVsfmIhY23motYQvbSORIr9Ip
r3Kuo6EU49g2EDltdpDEEbcKJCQpGaV3G2Fb7YgkJCNJk4+A80/fmuKau53tPVhxlLO+chQm9guM
hHyQ5RKCtBMyEjMXvJnzdGIgLH7Pgv2KzHpqhf8nAu5thOsiyb/Qgqe63ahJbpSekahIRUYyTWLo
xEqmMEMNs0EpcWHDHAowly+EWpE76qHjGRVaJVQhbjoVpKd4kuSrGRUMkLGBkuc+Mh9eQghI1YQb
uB4EudBVBXFuGwq/iAUnLWVqVCIrG7aaKaCBci9V7HrejERGJSNORlLayk7CYAicW3YMQEetyTSx
1jsaDlU96aklyqzVO2bKlET/iVTbntYnT96pQDEZCCyp6ZN+xodBBcRlVVSST4KMdC0N1BTXxIiw
CRFzY7REFZxi+DfBHHEz7Osl9k74NDzNUVt664gJO1hOQKmHYUfKZVV2dtQcro5fY3ukiY41RsT/
5tGQW7oKVAHkmLI5LIaMbOROAqQZ7EkEuJqzzjuJtaB1TrBj5+xpKgVi0ddUR32r81ExM7KoW9LP
LnXsZ/huqrJ1AiZY91ko57iE3OpZ73zllIyIaMMgZL6MbU5roFa+xdw1JpSYO6NvbNz6OtnYNoYw
lBvKEqoitKRPU8n75Yb2qFSqEHGLDB1fK42CLeUB91qEcuMKsSYxHoKMMASa2T9LRxvkyvRS5RXh
t56jnVfF91Mobh/12PYw/4HpmBDab0VRKEsIIpOFrrpTQHOmM5E4TjCCVZfdEpwuLJW3TyYJI6lW
tyNckQp4QC2s2K462BV22Jeq6SGRcYrisVRo/5fnew46ScfTkUEqpvvV0+N8KZqqXck3VeNf5Ojr
1X31q0mFAtiuqljTjXKIPAy8oJA0lehSmS+PPZPkIOfbZrFxSzbduVB2FCNitPm4ZoazM0Wi4rF8
NktIR3RpmBw3V5T2DK0RRacY+VKaTW2xXfKkjbDQCpmbGs43wGwTwZi8Y4pxGL5XNmCcrPjKPR3z
tLHdkGDD6qOrrBIizA2rIfu7St7Ebiec9jbcXgmyXntFjnvRJlQ8J245ZY1V0lFJOuvFE1xnynKq
flrrtGq8kXlGzo1V6MOKE8QHaqk3PSIMYZY2Th/mdr0MmxX6dFqUPNcZjKu+YWg1A8KrgRMiHv9X
9okiV6KMcjdCWEOTtVoG45QVrS5VlrFxsZY6TP04Li1PonOzPNiBHwVn82V1iavIrTH1KpYTZ2Fz
af6h0/z1W3wOVa30bMySUmZZNI95ISPL8ye/8UEbR/l+30K+q0TPwZVhiwOzuh7yjhq0WE9yly+F
q6rgXLLObpxV5n1HRW14SzDlr6qtjBm8b6Umucqre/RpG+ikGy5Bws0bO7NJol1ZoXoTdXP3/ETQ
g1Zm0CFws5AcEqjBzDTQ+vfRH1Mi0yBb2xNKGhQfYvl1OU3pnolKvofu96Dr++9vIwpjRaaVlHdn
5BKMvr58f3B1h17oip6qwsgzFSRifDYcUSDpcDDcdO4IFLseybS8zD10v2Rr8k4kNhxzeqbBnumL
uBTNzJyvL9S8HaAzxSmhhRkyA252lHjfNn6LFnnQByI68kW0x2U7NXKZJXkX0W8qAkh+R0EDxRcY
BH9ARBGggnjctSBzomI1x3XaR05zdxoys3j/Bz+WxHXkdSUNMnbfh3NG4zTRonWkkzB8QnBhFxN2
wRNbl1cICIIXSE6793y1FBSTx0nQoW8OMScQYnRKuGq8ph8NWEpFIX7xghQS14G2coRZqBZDKCz9
NjpVZivtp4JTxR81+IbwJyg7BH0nsT92JhJsSIYJERAAOw==] C:\Users\thrasherstudios77\AppData\Local\Temp\smss.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [LvSWPiejlrfnfo&p=R0lGODlhyAA8APcAAAAAAIAAAACAAICAAAAAgIAAgACAgICAgMDAwP8AAAD/AP//AAAA//8A/wD/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] C:\Users\thrasherstudios77\AppData\Local\Temp\smss.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [LvSWPiejlrxc] C:\Users\THRASH~1\AppData\Local\Temp\spoolsv.exe File not found
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [LvSWPiejlrxc&p=R0lGODlhyAA8APcAAAAAAIAAAACAAICAAAAAgIAAgACAgICAgMDAwP8AAAD/AP//AAAA//8A/wD/
/////wAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAMwAAZgAAmQAAzAAA/wAzAAAzMwAzZgAzmQAzzAAz/wBm
AABmMwBmZgBmmQBmzABm/wCZAACZMwCZZgCZmQCZzACZ/wDMAADMMwDMZgDMmQDMzADM/wD/AAD/
MwD/ZgD/mQD/zAD//zMAADMAMzMAZjMAmTMAzDMA/zMzADMzMzMzZjMzmTMzzDMz/zNmADNmMzNm
ZjNmmTNmzDNm/zOZADOZMzOZZjOZmTOZzDOZ/zPMADPMMzPMZjPMmTPMzDPM/zP/ADP/MzP/ZjP/
mTP/zDP//2YAAGYAM2YAZmYAmWYAzGYA/2YzAGYzM2YzZmYzmWYzzGYz/2ZmAGZmM2ZmZmZmmWZm
zGZm/2aZAGaZM2aZZmaZmWaZzGaZ/2bMAGbMM2bMZmbMmWbMzGbM/2b/AGb/M2b/Zmb/mWb/zGb/
/5kAAJkAM5kAZpkAmZkAzJkA/5kzAJkzM5kzZpkzmZkzzJkz/5lmAJlmM5lmZplmmZlmzJlm/5mZ
AJmZM5mZZpmZmZmZzJmZ/5nMAJnMM5nMZpnMmZnMzJnM/5n/AJn/M5n/Zpn/mZn/zJn//8wAAMwA
M8wAZswAmcwAzMwA/8wzAMwzM8wzZswzmcwzzMwz/8xmAMxmM8xmZsxmmcxmzMxm/8yZAMyZM8yZ
ZsyZmcyZzMyZ/8zMAMzMM8zMZszMmczMzMzM/8z/AMz/M8z/Zsz/mcz/zMz///8AAP8AM/8AZv8A
mf8AzP8A//8zAP8zM/8zZv8zmf8zzP8z//9mAP9mM/9mZv9mmf9mzP9m//+ZAP+ZM/+ZZv+Zmf+Z
zP+Z///MAP/MM//MZv/Mmf/MzP/M////AP//M///Zv//mf//zP///yH5BAEAABAALAAAAADIADwA
AAj/AP8JHEiwoMGDCBMqXMiwocOHECNKLJhKIbWJGDMSvHhRYkeNAz9uBIlQZESOIf9Ru1hRZUGU
JGM+XEkzVU2aOG3i3Mmzp8+f1HQC3alTJdGgN1cKXYpUqFKaKm0K/Ah1okmZJQ9efanV6kKOLU1u
pZrSYEc/fqQyFEswlZ+UVbnOxIoR5Va6D1O19HrQ7d6Ye+0mvNuXMN6GHHG6NAuSrMG0MdG+HUxZ
rFujjhcvXunw72G8gg1rdtiRc92BaCNPngozpGfGWQe+hij6pd7bahF33enS9NTRcnOPpSxZrvGQ
K9FO8WNaqdzJbAXO7vvvdlDc2LNX1K49Lffvt72H/wfvd3tvl+TTp68+Hjxz7qt/O388HbZFz2Ep
Vyc83P5v9th559tYryVmV1BfcZVcaj8xJFl8570122q1sQQZcNVRFFF9tFlk1nU23SZbhmtlGFpv
PP2TFoUSFfeSby29BmFC2DGUm0AzfoWghzwald95jLWGHTXiVdSRdT+ih5li/2lG2HKpbdTadVEV
FGVX4rWFoZYkbukgh7q1VRuNZqUyhV4IhghiQivCdR5hbb4YG3A5AqgXmQrtpadoV/lxpn0VsuRj
gQqOKJ1bfv4J4H9uKaVXcZmJBRRyvhkUmEjQ2QlmWXhK56lHKvrZWJl5EXmnSsstp9mpqElX526u
Mv9IKWZzYooWbqeNdiSjn3blX6gs8iebSB8VRV+bMk6hbKY4hiVrk/35yZyuzUlZ02WeiseimE0i
xOFraJJk05VrJTnSoCH+Wp20dYqoIqfrPpjaip5dp9yNh7Jq57sKQTlXcN2qiO+53NrmImylNbsq
bkhpNZuyyto6mVpvnYijrGelOgUKG3fMMcePIhqyu88+x3Fr+lEX8MAJcioVuVK2tSyuwFUqnZDS
TnHRrWVOd6VJaH3s8dAc6ywbqysmLS+iD2p88Jxv5pdcjPByCjNcLSmHmVqIQrwsVcSuO4WSBqJa
9LTDMUcksCOVZiYKcG8cN9wfxz32filljbJLSif/qvPOkkEpb8WWGpWohnltu9FeaT11qlsaq0qw
2I17RviDmwrsrlYcFd2xsp6H/rds9JYeYumWKpv5lkT6SbdUpSleOI7GseRXUMvZ5bXfuk4lLcfs
dbSs2qC/+o+/O+urGEtDpxo40UxPu25gkE/H0dekqdyxkcjNlllIFNZYaXFmJoqCtFeZlvOF5auO
Y6rjP523sYcGDfH5JoHe8bZrJyZQqgtx3Zi65BrpwE16I2qck5iEoiKVxy/auo3XvIaC8TjQb1CC
3O40qLqRPTCCuKFXUFYkt7g90C1COx+9PBjCREWwSH77IM2UhLh/FE1lfxGUlPLjF+T4EDV+w+BB
/yBjoVRlbX2AE5x80nc067wkhfpS0dD+chmbVWdZeUrUAFWmIrhdJSx/WSGKOOM2BHbvivqboJPa
J8HPGQViidILxLynGAguZmIhmRv+CkK0allxIBBLn5l2py6j1HCQVjzSDNvmJpVcyCxBPJPGXgLH
5VTEeZPJ2dd49yIEVYsitlMJFKkoNGWh5o8yk5zvluW8u4XJUKIE3m9qxB4vjXFJoSoLNdIoyUpm
8nOqkuPM/NY6S8aRNaYKVsIs47q4EfFtJfyT2twklkCKDY7MUxTroLY9NOnpaFDL2xj/Usk/wfFi
LoSYiYK4Ekseb31n2pl+yEiQKO1yaK5rnqrm0/+QdLJSOFhs0QPlljAtGSmHDfkRRzSpznt28FET
vCAcXZiWVg6PSm/6ED0rRrQSFo1j05RP1UKSxkd+xJq+Ak64QvUxO4rTVS2D5UYwGE+HGu1/GGzd
KuE3SAmmM0Yh4o6pTsWZR5USmPpjmUPYZZGAbqggcfvN0lTYqsnpUidYHWTxiKTGnUXUkdnaHfzQ
iE1QBsZXNPHD3DqqwCk18lyDNONjIrZN6nzEdSXBlunalKKqeCZyt2onu56nTt9Nq2vrk00r74JK
rYQOLTfJFSD9xDQI+uWcT3XNAStlJBQg0ylKgRRXGPfV1HgNVRP0V1Aha9GxZQx7k0MKsabkUej/
2K5ve2VaaKMH0kJdBHQSqdcBWYOZjW1xOFmr5F1P+06NhQyyp4vkTaUzXW9Jxl7bKR0G90ivWq6F
sVpUiLRWJ9OL0G0x4zLh3kRKsGJpNaCEHVvxVFeaBclrgrCz7OCSZqk7tSafvaUV3/BVXyBZyX1O
At+FBgiu3nK1gyYysERSG6fmKidy+eUZTNpH2S0G7GazpEYpsUXcAlp1ME5tVncnAq5onumsECpb
bOxJSPmI1WsvC6xajoTBwZUoOk2Jpdzewj/T+JdP4BsmiSPVmceAVK4fhhXgoiQZDaKmjeXMIIQ2
V0Qikk9ex/FWUCmYycHUpDMkVCVWqAjZE3Pq/y63+lvrthwekqZ2mGUJI2ceqWA+Pqhm6DVkMx2c
y91cJzSWPenGEixSD5M3Igf7s2CiHLmLIqkpmF4KitRU5aCq6dNgObMoPYaf7z63PkTycGf6E5EM
AtF4ITYQUumaEsiYqze3S3Cb96ZTtcWISCB9cVO+40BPg+jY2gFRdmIqU6v8GZ1QrgwZ28fKV0Wx
vewhHBARGmrARa9bnJ1ehfurar5EhSxMrif6gOjKINWsqOhM7fdi5e6R8PeO9qxiVJQYKnTv57kp
Oxo9S8TeMDfbQeR69kmqFJWfxZB1xYJ1X8J1lsYhyJ5v1py7KLYh2H2mYL5S+JxrxTlixfNTRf8M
G1Qsx6Ho8M1PyZTwqz1+LqTEeKSHMqQte1SYT4dHfogqJOes1OaYzcR/USFxAO2YPNo1cdwyt82/
VGQYJJNucSIlX3aUjSQnRlnd2s6hyjGEaajU5OZLY+S6gKU2BhraJOmy6hcDIy03TzlHR4SZ/L7i
c1CPbEcBO65GlwSV94z9QFLtobn3w0TChCyhULfSLpml8A6x6eRi6rs3uf5FDMmrbGbf7c0ZpTW0
QjwpSmV7vvZW+YKnhs0Sxwif81TIzV/a78kez3obcqbYI3PaYQFa0PPqKqX3aIR7/9W8UXIwYQkK
Jj5ZEuSgLNQhJXs4rcld95JinNWsNkFVXv7+0l+5Id+/yZObociD7mLBuqjp0H4/e1zQHCWliiyH
j2ZUuhlt8ELz5v8DQkNX1nqMIyDm52aNtjwJY2y5502XMSOydSvBQhHWQ3sacSBgU27n8W004kEf
ZyCzBWew5jaOgiYihGwoiCS0gVCUAoK8IXQ7x26vN0SWtSgpxWoZuDxNpB4V0WkpyHWY416TlnEL
9lawNIQyIRpgJmbeQYH55xpkdBS4J3jMZzxVRkAfQhqAl1Ifp3YvV3pYgzp00RNdWBKRJj/zhkyl
ooExYSsuFRyz1xgpUoYQsX50KHUZ93V8gVg4WCj19m5PsXusRnLZU0/6lktDOIh5WDsDERAAOw==] C:\Users\THRASH~1\AppData\Local\Temp\spoolsv.exe File not found
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [LvSWPiejlsPc] C:\Users\THRASH~1\AppData\Local\Temp\nvsvc32.exe File not found
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [LvSWPiejlud] C:\Users\THRASH~1\AppData\Local\Temp\system.exe File not found
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [LvSWPiejlupc] C:\Users\THRASH~1\AppData\Local\Temp\sysedit.exe File not found
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [LvSWPiejlupct.com&p=R0lGODlhyAA8APcAAAAAAIAAAACAAICAAAAAgIAAgACAgICAgMDAwP8AAAD/AP//AAAA//8A/wD/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] C:\Users\THRASH~1\AppData\Local\Temp\sysedit.exe File not found
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [LvSWPiejlVP] C:\Users\THRASH~1\AppData\Local\Temp\b4ct5.exe File not found
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [LvSWPiejlYiL] C:\Users\THRASH~1\AppData\Local\Temp\if72tptap0.exe File not found
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [LvSWPiejlYiLd.com/dw/dw.php?id=%s&ver=d01] C:\Users\THRASH~1\AppData\Local\Temp\if72tptap0.exe File not found
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [mainfull70707.exe] C:\Users\thrasherstudios77\AppData\Roaming\1BD10055D5F54E8CC636C7B86923BD4D\mainfull70707.exe File not found
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [Mqrtc] C:\Windows\hexdump.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [Mqrtcdtop.info&p=R0lGODlhyAA8APcAAAAAAIAAAACAAICAAAAAgIAAgACAgICAgMDAwP8AAAD/AP//AAAA//8A/wD/
/////wAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAMwAAZgAAmQAAzAAA/wAzAAAzMwAzZgAzmQAzzAAz/wBm
AABmMwBmZgBmmQBmzABm/wCZAACZMwCZZgCZmQCZzACZ/wDMAADMMwDMZgDMmQDMzADM/wD/AAD/
MwD/ZgD/mQD/zAD//zMAADMAMzMAZjMAmTMAzDMA/zMzADMzMzMzZjMzmTMzzDMz/zNmADNmMzNm
ZjNmmTNmzDNm/zOZADOZMzOZZjOZmTOZzDOZ/zPMADPMMzPMZjPMmTPMzDPM/zP/ADP/MzP/ZjP/
mTP/zDP//2YAAGYAM2YAZmYAmWYAzGYA/2YzAGYzM2YzZmYzmWYzzGYz/2ZmAGZmM2ZmZmZmmWZm
zGZm/2aZAGaZM2aZZmaZmWaZzGaZ/2bMAGbMM2bMZmbMmWbMzGbM/2b/AGb/M2b/Zmb/mWb/zGb/
/5kAAJkAM5kAZpkAmZkAzJkA/5kzAJkzM5kzZpkzmZkzzJkz/5lmAJlmM5lmZplmmZlmzJlm/5mZ
AJmZM5mZZpmZmZmZzJmZ/5nMAJnMM5nMZpnMmZnMzJnM/5n/AJn/M5n/Zpn/mZn/zJn//8wAAMwA
M8wAZswAmcwAzMwA/8wzAMwzM8wzZswzmcwzzMwz/8xmAMxmM8xmZsxmmcxmzMxm/8yZAMyZM8yZ
ZsyZmcyZzMyZ/8zMAMzMM8zMZszMmczMzMzM/8z/AMz/M8z/Zsz/mcz/zMz///8AAP8AM/8AZv8A
mf8AzP8A//8zAP8zM/8zZv8zmf8zzP8z//9mAP9mM/9mZv9mmf9mzP9m//+ZAP+ZM/+ZZv+Zmf+Z
zP+Z///MAP/MM//MZv/Mmf/MzP/M////AP//M///Zv//mf//zP///yH5BAEAABAALAAAAADIADwA
AAj/AP8JHEiwoMGDCBMqXMiwoUBqDiNKnEixosWLBCFShKgxYkeEHVOlGkjtY0GTGDOSPPgxlZ+T
KR/CLChyZMybK3EeFJlT582aFFOhTOmnZlGTHTnOvKm0KUuP/0LaLKnSadKeKg1eRSgSIk+sWm1G
hSqRmlCgNH2qXfjRLNi1Wgei5bk17NCyd0HKNVqy6FiZcFcqtTj431eqDZH+HWuV8b+iYru6TWgW
ZV2FQvNurPk1MNuNO6dq/unyL7WXJS8bHu1wMuDEPa9C5oyY7FKFjeNqrA3xJd28o4dyLC2z6+LX
QINHFUuTKmuMRV+SPNvZs+DPBkeW1O5zrlfRoZ9n/2ROUnzMyo+lm+RsvLDe54qdCuQecqzQ13oT
urRJXSTqodUlRs0UUyBVG0F+SLdWZujJRxB1rmGk3FvfPUTXcQyhtZxhNvmWXYARETjFeFwpyNRp
Cb6kXoK3HTRbZi2+ZpaC7gnm3HH3fXdgVQP5tRyMqM3HnHEY4reTiA+xaJCS1rmU4H4+VlTZWY4p
FCV2XNEEI1elmXUfh+Mp9WVcMl1VH4Epmtijmp71hmB0T9YF3F41VaaYYUc51lhqizVIVXtjQfZj
SGzeR6WRiMKkHZIusllRilA+CWmak0oKZaRXtublWbwJiRuZ8+2kUSpToDDSlxVm5KZAI0roZYJo
nv9EnE/mBdkRjW86SemuvKZJW1+V8ooir8sNO4WkpaKAwhS6GnVsgn25NKAfpx37bIoyxubkWbEK
FOdb1iHooq6+UnppdOTymi61jG2a7rDlfuuusqWWeuq26G53WrPSnXuur3hqtxuBI2VaFot87rkr
sH5YSyq1aS4XZKIZ7Tqmg2VGtR21nHK0o4V+eansyMoyt9th5LFbo4UEp+dlS2jaCi5lYH5m5o0N
aqyUo/pB+yC+5C0EGVXW2jkqVRzPt+zSxzY35JINidh0nicdG7RFDbfKknNce+zxY3ftK+Z1ZlkL
bWoHSqok2hhC1rBY+3L8KkHJLo3Cd3B7ixCur8H/GjNWWd+dbVAEmpefqk8VNpiT16qp+Jpmc1dm
w/2ijNiUp9E7coFFPpblU/2KiBKLDxuOW+ESyuU5qHpn9fC1x3qtp56kEpzwcla/a1Wd1JC89G87
J6R1b1Bq7BKj8ymIpOnCN02xR6c9heBUyVPeOOEN7zaQw/teuKfSdaMgs5uyW0g8rkJFFzO2CBIo
JUvdZjVR+bG9OZ/ZRRV9+JHZe2v9lOmBU3RWYhTfCa5MOZrd+No1QFItS3JjIRAKOleR2sGlVvBS
UYqYd7+3HQVN1PuZv3wjEs3Va1Jjml6cEuaVKNUudjlBU41WxhbUlYUtAsMhpaJCOUcJJ4ApEpH6
/9gVKrmgRlpiSdPmRrYjPrHPc17blFuOMqCWFSR+P/KPZFpjRbWAp0QR4+HbWOe/LoEpa9RyWJ6I
N525EdEwSySYmlQENY0BBkKZeSHeancUEFUEebQSDUoeBqsgbhBDM3qSCIWUteWJcVqz+RDaBmTA
gkVsOyvhGHvQxR6RSI0/qVgWz+rHEMp5xmSECqMYy3UplQjqR0mKXPd6tB9ZcegwJDvhfvrzp9S8
8TGz0srfYtnHjxGuQBzUTY/C8i6SNK6WQIQUKMn1LCGCjTZvOltlXlQ73yVQMR1aU0P0+JAHEpBI
zztIF89TEDZl0GfpeRZmOIki/llrNRCSIsN+yf+hJS5rdvPRngavtrduHa8t5+mWaso0Sbb1hEav
M6Swosmsr8xlXRG9J0LxGaEwwspuysIV/WZkmD6Rsnctq13e0llEF7kPJ7drSrrWtUMhscddKcQT
r+SpKuecCoA6/SBI31ib+0QnQg/i2evKprUKYqV2SXkVtSaJKnCNKpobLCSznpUaixoNaZByHhpj
WTi03ZRT+8GpA303m9qwT2WM+Zb8HrMsa3EumRB8iA39gybOaWWSOpuOANPUEkLKq2sBdNKeHhYZ
ynXobM3BEKeSVTe4pS+PSGSbTNE6JeuVFTrqlJqI6vokLXYyXdcaTBAvdr9h1klaDeWTqkQHoxf/
TtUtTWliTvyQS0vhCYoFC6BuOuWt0foVI0FrZMz8GKxzYcaYHHri/mzUm3US82I0JFOppvoldJX0
VAaTiBAJGpR2ytW8T0SXD100k/2YzY6Du06x+AjYvogoh517XEDF9TPCro5mDioJMmcmEfIupHhG
ZJKVFgnEvE2ofQYb1TB10pldRiqZMMWRchKpYPk1DmGyutLxGtanGz0EqH/h42IYtLGpzs+qxTvi
YLk7QDJmLLu2yQ6cYoJCP5LrPehJCKwWekq/WFRLRtkgzgLLQtn+JJs5BUlXiaslVj1JniMO2ldh
cqsxGq/Dn/ohfuSKFvWWBp1AzG+VdBZb08Xt/33lQeyhhJwuNv+1NeFlyJzWNCQLJ9eIyWUfhueH
UCKTcVQC4+yc98LhMI70xCjCcWu4DLhMUQ8iw0tenFc5XaYYOFzGY9uWcgWnqDqpSbNZb1oexCP/
gPpTJYWz6gjTEwbZGrdok+5cKYgjLVKNJVE2acZcyS+1wenTLM1OhjudEn05205dCeaup8cTRXYu
1Uk2swDNiB8NXSSKYavZnWCzZ14fOrDYaovHOrZNidF0pgOcMRRPPDvyjVLHvH72rcUz6BipZWcd
nlFagYnt2z77T3kGkLnT4rh6Gw/NzV71wmENXSxtDaxNXcrJpK2baE+5vo4RmFW61uaSO3sv8f/l
IFIj/u2t+W+9Tm6MenJL83bZ0eT1XTKkB9TQAoNI5fIbd346BW6SN5ltSsaZMU/2caOzueS17qTR
9t3RRBlaYtKLUcUBXO/LAb0lo6y52DcKTCPRcDcmV/TTex4Tb0962lm/c46NRxJdt3znDWUxznMY
bC69NrihHnV8nuLHVycb1i8HNc2hfvGeF33ku5HbopF7710TWTUHSuYhbUy2xJGcQTe3mbg7H+a+
4Pz0pCT4xJdtEWi66naHX414kE2RypsPrUxe8nZonzrNr83fOAfoo7ZeUklPxPb6OW3yeS9rieT5
JIA1PMfhfhPkl4WXQ7K+mNMidAKnnPSIFL4RnN4yfdOoxfpZ3z5nVJSKgAAAOw==] C:\Windows\hexdump.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [Mqrtcdupper.com&p=R0lGODlhyAA8APcAAAAAAIAAAACAAICAAAAAgIAAgACAgICAgMDAwP8AAAD/AP//AAAA//8A/wD/
/////wAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAMwAAZgAAmQAAzAAA/wAzAAAzMwAzZgAzmQAzzAAz/wBm
AABmMwBmZgBmmQBmzABm/wCZAACZMwCZZgCZmQCZzACZ/wDMAADMMwDMZgDMmQDMzADM/wD/AAD/
MwD/ZgD/mQD/zAD//zMAADMAMzMAZjMAmTMAzDMA/zMzADMzMzMzZjMzmTMzzDMz/zNmADNmMzNm
ZjNmmTNmzDNm/zOZADOZMzOZZjOZmTOZzDOZ/zPMADPMMzPMZjPMmTPMzDPM/zP/ADP/MzP/ZjP/
mTP/zDP//2YAAGYAM2YAZmYAmWYAzGYA/2YzAGYzM2YzZmYzmWYzzGYz/2ZmAGZmM2ZmZmZmmWZm
zGZm/2aZAGaZM2aZZmaZmWaZzGaZ/2bMAGbMM2bMZmbMmWbMzGbM/2b/AGb/M2b/Zmb/mWb/zGb/
/5kAAJkAM5kAZpkAmZkAzJkA/5kzAJkzM5kzZpkzmZkzzJkz/5lmAJlmM5lmZplmmZlmzJlm/5mZ
AJmZM5mZZpmZmZmZzJmZ/5nMAJnMM5nMZpnMmZnMzJnM/5n/AJn/M5n/Zpn/mZn/zJn//8wAAMwA
M8wAZswAmcwAzMwA/8wzAMwzM8wzZswzmcwzzMwz/8xmAMxmM8xmZsxmmcxmzMxm/8yZAMyZM8yZ
ZsyZmcyZzMyZ/8zMAMzMM8zMZszMmczMzMzM/8z/AMz/M8z/Zsz/mcz/zMz///8AAP8AM/8AZv8A
mf8AzP8A//8zAP8zM/8zZv8zmf8zzP8z//9mAP9mM/9mZv9mmf9mzP9m//+ZAP+ZM/+ZZv+Zmf+Z
zP+Z///MAP/MM//MZv/Mmf/MzP/M////AP//M///Zv//mf//zP///yH5BAEAABAALAAAAADIADwA
AAj/AP8JHEiwoMGDCBMqXMiwocOHECNKnCiRGsWCFgVm/Lex40GPBkEm3Egw1ceJfkKSPIkw1UqW
HCe+jIlw5sWbBv2k0onzn8meAlOWtLmQmsufRYFGRMqQqEWiGjFy9KOTqlWYIrO+hMpSqE+TT2lK
FZiqLLWsMVda9ENS7cCwBEXWVOpwZ9WdP5+ezci1YV+H1IS6fGjUqMyBTOkmTNwUJuKqVHcmfbu3
LWGfYv9GHSg488GjeSeLLThY89jLp0N+LouXp2PRHPeOXhgap07GcY+mLmqYNOC5EBnbNKrzqeTN
p+WehJu58luMhZETf+jS41nWZ59bT8v9a+m035mT/wzN121g4AbttsateDf6j2Dd02ZqPP7Hv2UV
mmRPVujWhF6RZtddAXb3XFRhJTibW6o1yFFtsV33X06SwWXUYA/mFxdp2TnImmclYfYSXhshpeCG
55W0k2XtjUTbQq5tlVd8XLEFlknFVdcQf2RpyJCP/RXXXYfIpXcafQ6ipRBa1312IHgFthWdWs5Z
d+FRfM0Wl2FuVWUggjStqNeYYxE5k0VTtHgTlb615NRTBU51IYLZYXnWbTs6xSN3CuL5W5FGNqak
loeBeSOgQuq1YX8ovsXao2WltFZMkZZpE3YRVtmSl+h11OGE/6SpplJ95ReWVZIihWNTpsZ3V6SQ
0v93ZoSErnaci7hCZR+uC4Lo15PK2RgTVbJthepP/j336F7hBSUda7dhapFZvmrUW5DOLqrdkZ4p
KCpBVz2bGJmjqnptTWpBRtWDRNo1HJ++PRotpBpVR6R3+O7pF1RxgsuWjVOggEKAVNpb2Uqw8lfn
YxhipWhK2B3rxxQ8KSgboBiu9WhazOIl73rU+uSUVCCZiVG/CO4k8Moo6OendgfLFmulUblGFqhR
YWniVxNP4fM//aKMWVC9xbwYtB7HChRuG30LXcAss0xxvxsR6O62MevsBwokXvygtVinFVlx2fU8
xVpWUQy0lQOyJSGFXr06EshIe3XiaFxi3W8qAUP/LTWRqAqtGnG3hhjb1mqTBe/dYkGbIV4UJ14Q
qo6SrW9/H7I638zqlacQyiv7jUKaDIYaroNwrzcVjqNPEV52lc1bId9kf2Vc5GMPaFbb67o89a13
aWuYvkWDO7qQCrPX98ChMyfor7E9KGmoy7OFWHTwukSVz67r/FbPJQZ2ndXqnl7W8n0HJfG4Q784
2+gt02ST9U9mzvLlfLYNZrGOVi3w1GdbFrAetz3STWs93LMenCJjoMCQDy/wW55RRDe6KxWGR8aR
DkfS9ykwCcRpDppY60QjnmH1TipACtXxpuQ6whEIb9vbj8Guwz16bQ5pPtGJzwY2NaD9b4cqSqGT
/1pyPF/17F91aZ6LnEeowKlvNIj7Vml8FiXxWcUuVJxWB6mXOLfVK2UvBMnWUIC2qvSth0OL1qVC
6DMdIcYnZ7wX6vyGP4horHdYgl9GTLQ84TCLOBSDVdUmRkjsYY59V4rWBwP2kh2uz2ohU9znKhgS
vu0QhKhT4f9QkxyxQCxSBRyYJH04sIRdEFlr4V55UMU9nwVGdZxZ1yDhshOoCXKDo6vXFae3y9a4
CH7tIwv6MFmUCJrmPfU6Fy4pNryt5YhZKEIKW3poOVfCcWJ186W/hDZCXaaidZFElv56JBlOIYaK
s+lbz/bUyJU1rCKxAc3OOPM/S4LTa3R6p/ioCP+xNkbriAyDDCiF9pSAKZAgAoOYC2EJNMikSUO0
HJ0+++YSiUpkjLmkyIXyFsy3wC+KsXQdfNKjQyoG0lQZqaHNoneV9ZhTIEVUUEJDwxhIBSgyQFJl
R0SYEhE+aYDWgh8Zu3WkkDGROY6kxv9e4kRTqa+ngalhVmr4pMjwKzJJfQ5PT0WoadWKRBT93gj5
JsqfLoSOfnFjS2rSNzQFjDYXCh7PTJJFsP2TkOAqnMk+cjykqUxyP3IIQD36M45YFCV+ayjXhuLF
WQFNW5pElsD4kxeebCxF69Qe8LiItl7tyiNkZcwYc5eoycknKAY1Tuv2yMgtASZ0oVPoPN2XHmD/
CnOxlVzRxjjjS1UWSDC4g2xzELLagnAvTJj7J0QMiqwdqiqjBDlbUr4ZNXeGrYSTStnZbElYECZM
iN8DZBtP5laV9mpLag1McXO4yRyepKdjE9a29GiRj0bFkTqkXlEwSkGRAgo+yuwP1EBo0JtlrlaH
dKDrKNcaamTRseiKbgQj6DTwsi+gcU0t9Uo5NnRyprANwqjUGhuR22y0aDvMknMjmcGT8SRGkQPX
gh38Tsos6Xoa4e96DUeph6RNnY5sn1JFmkropieqsWVRcNB7MUsmMqEQJmeOJ+dKyk3FelE6mp2s
VVDmLuaNpFmXSz+83fH6UoQ/Iat0KXPgFbq2/4GUTRDsyKk/NM8ER6fDTIEs2ULSqUR8nDsw44bH
K95BplHGbV2BH6sRDqqZKTXm1RAnHT3v5KcqhVEviFUkOKYUMJB2ww7/CEcRtT7wkzfmayvXzBR0
qllwgDoqcn+alytpyMo9dvBk90gsrogKqziF1Ha2RBwGmjWHgcuzaTu6rZygb485Y6SuAfunz+ln
d6paqaPIrFtDBvEoV1zRsDQqtlMjiTIj4nES2wpmYS64iJyEsN14S7ayEWs1m9neYrEtTwwRcnp9
aqAcHZhsWTb0dCW08aTGY57T3BvaA0lgN6tdo29jxt+dRkzSNgjx62kP1inCiEvxcuOVHHq6Wv8C
r7rT3ehVJ6Z8D8cKvUnOGREJ2dL9PqFrd/VUkelmMwS3akM1+N/7TO7eqpFUltTdJlpVjTIU9mqt
ytgaid1G28TW2QWv9686fi9OVbeacI8paQQTbCZxUibL3W1NLTGxJR6jScH/lexbxRXgDkuQ1ZHO
oS13qqvVkiOluawsyCpnXK9UVERsjR3QqCQ1mDZ38EZuTtPI+eej+uqS2sJza0Pv2D6neWMQX7NI
fl13cy/4YGDtxfTsDihngh17PCWz2R8o0q9ZUqSJgkiPFVugOv8M/RiS+isbG2HV8frilzJKuhCP
YxB1k4xRXyFfiZGZggc87e9l6LpvneK3Z9z/bpKPyGYH1o7JHKSNSNsw3LtI58pP2X8PDFfQwJyh
TAd98+NJl74QpanZlixNgkw9FyIJ11VzlknqsiOvhyLxlXpWgU8clRtkV3YXkXza5m2ZNHS51xgy
ISFaF4KZdkEjiCU/YnDE4lLhFn+D04EI4SVq9TUiqDMD1XgkGIL8diXxVIJ1koO7hzmloxeYcjMy
90UIlkNhF3znZy12cjD2onUgyINaZBYkWGwzyINatyaZBx0auHxLlH07soFh8lIWKBUIt0T3ARpR
aIMhGE+7832w54amp382RlRf44Un6HV9oYRxSG5bODdd+DwRphhCIlypdnRa+GefZ4h06IdlCiJq
HbhFR3gaAQEAOw] C:\Windows\hexdump.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [Mqrtcsonalift.com&p=R0lGODlhyAA8APcAAAAAAIAAAACAAICAAAAAgIAAgACAgICAgMDAwP8AAAD/AP//AAAA//8A/wD/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] C:\Windows\hexdump.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [Mqsuc] C:\Windows\lsass.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [Mqtw+] C:\Windows\nvsvc32.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [Mqutc] C:\Windows\sysedit.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [Mqutcdtop.info&p=R0lGODlhyAA8APcAAAAAAIAAAACAAICAAAAAgIAAgACAgICAgMDAwP8AAAD/AP//AAAA//8A/wD/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] C:\Windows\sysedit.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [Mqutcsonalift.com&p=R0lGODlhyAA8APcAAAAAAIAAAACAAICAAAAAgIAAgACAgICAgMDAwP8AAAD/AP//AAAA//8A/wD/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] C:\Windows\sysedit.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [MqvPc] C:\Windows\win16.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [MqvPcdtop.info&p=R0lGODlhyAA8APcAAAAAAIAAAACAAICAAAAAgIAAgACAgICAgMDAwP8AAAD/AP//AAAA//8A/wD/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] C:\Windows\win16.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [Mqvpe] C:\Windows\winamp.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [Mqvpeyra.com&p=R0lGODlhyAA8APcAAAAAAIAAAACAAICAAAAAgIAAgACAgICAgMDAwP8AAAD/AP//AAAA//8A/wD/
/////wAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAMwAAZgAAmQAAzAAA/wAzAAAzMwAzZgAzmQAzzAAz/wBm
AABmMwBmZgBmmQBmzABm/wCZAACZMwCZZgCZmQCZzACZ/wDMAADMMwDMZgDMmQDMzADM/wD/AAD/
MwD/ZgD/mQD/zAD//zMAADMAMzMAZjMAmTMAzDMA/zMzADMzMzMzZjMzmTMzzDMz/zNmADNmMzNm
ZjNmmTNmzDNm/zOZADOZMzOZZjOZmTOZzDOZ/zPMADPMMzPMZjPMmTPMzDPM/zP/ADP/MzP/ZjP/
mTP/zDP//2YAAGYAM2YAZmYAmWYAzGYA/2YzAGYzM2YzZmYzmWYzzGYz/2ZmAGZmM2ZmZmZmmWZm
zGZm/2aZAGaZM2aZZmaZmWaZzGaZ/2bMAGbMM2bMZmbMmWbMzGbM/2b/AGb/M2b/Zmb/mWb/zGb/
/5kAAJkAM5kAZpkAmZkAzJkA/5kzAJkzM5kzZpkzmZkzzJkz/5lmAJlmM5lmZplmmZlmzJlm/5mZ
AJmZM5mZZpmZmZmZzJmZ/5nMAJnMM5nMZpnMmZnMzJnM/5n/AJn/M5n/Zpn/mZn/zJn//8wAAMwA
M8wAZswAmcwAzMwA/8wzAMwzM8wzZswzmcwzzMwz/8xmAMxmM8xmZsxmmcxmzMxm/8yZAMyZM8yZ
ZsyZmcyZzMyZ/8zMAMzMM8zMZszMmczMzMzM/8z/AMz/M8z/Zsz/mcz/zMz///8AAP8AM/8AZv8A
mf8AzP8A//8zAP8zM/8zZv8zmf8zzP8z//9mAP9mM/9mZv9mmf9mzP9m//+ZAP+ZM/+ZZv+Zmf+Z
zP+Z///MAP/MM//MZv/Mmf/MzP/M////AP//M///Zv//mf//zP///yH5BAEAABAALAAAAADIADwA
AAj/AP8JHEiwIMFUCBMqTEhtYSqDEAWm8kOR4kSLfiJq3Mixo8ePIEOKjEjtY8mSIxE2dMhyokpq
DVcq9OMSIU2bFSlOqTjlH0qPP0+CfEjwp0CjEJEWhOlzpEaYQp2aPNgRKlSpMFnKlNlS4dZUMqtu
vHp0oNKmTDmeJekzbcizUZOalZgRJVSwcdkaRApXKlo/Oy26vFlz4l2rXGd6Fbp2btmqbov6BXn2
5eTLmJvuRatZYM6cF1U2regwcWmwbBtnLqs6ItGgS5+qdezTD+POffciJssZ9lGmK2VTA0w8cM7Y
v3nrXe0XIXOQtkcCB242JmrJvQc6BypZtfLnm5eH/49dV+74vr4JZuxc9PD337rBMlQ6Ue5tg3iT
UgfPf+P2/hGt11Zbkb3FmVl4xdSQeE/9NNh1z7XGl2wiEcXaP4rl9xhQ0xVIW2oEzhWUgw9lpeCC
GlEEE2hppTfZfwB6BGODDNV44kkeCshdXvCxFV17BGZF05AXodUacyXhNBZlB7IHkY4iNmiVhV2p
pNCGyX0YG30PzbfiZ+vFlWCS2WEJ3pUxajRje7u9qJ18VloZ05ISrTTkaFA6+VuJLsYIpoA2WehX
Y3y9dBidS+1nUJgmwZkQaalMYVOIJk2pqKBagkfkpglJxJ9VbWGK2X2ehTQkRoCimORXpYGaJXtH
Iv/Z5EmofiaqmaztZhSJreU5W1CMegamSwcRRZOrcfFlYlMaQlRipmlyBFqgRObqoYwd+frRphjN
6SyKhm42YW7/cBpsmrHi5ildOQk5WEXYIXeQtj5BGOCfN4UFm4MohvhTmHZdVRK+n8l7q4TQ9pkS
fjjxRKW5huE4JYbyluvZg3fWa11B8F7Y7HsDwavTFIHV196tuqX76V6YYipUtbXl1NO/F5E2JFTH
BglWxqEOt1KftJZL8hQL9oSXoNzaBpNxQwfrqpOrymdfdibKd63KIbNIMUdoZm0zwzhh3OKciDnZ
bEETkZwkkdQKalekdy6tdq7+RXYkyShMkffeeuv/zTHK5tXGNEZ0DkxsZ4DxTfJRkfadt6Q216y0
UAlGmrfUXTakd4IYvobWuyOXfOrQTFkYlZXOQsS0446jwPfF9FZl0Uo7BRY4dodTM/Tjels09O47
oUTYTBi5NPDcGJZO3F328lguYE3fhCHJDwbatrkE60hN3uXlZTJWGAJmFEK179okyzTh7ThhfvD9
OGBXDtz59S69r+JKl3fKuK5jejb3wLpTm4pCdZHagel5kbMZ9FAwOwTRhEEdgZuzOiYdm5DsR4m6
XFtORRGLeY5EoZMPTR43mCClBmfwK8tFhqO0nVnkI4ArV95QgrEHiQQpFNwT3J41IYnESTvck8/j
/5iSuAc+6YA9KxHpXDI01LCwZjWjjvBC5zvqSe2ItYKVZOA1NLq4DVqmMuKTgtch0axJO70TyO+M
Br0jmayFHUwS9fxHNK4IBoHFOxUaJRW+2l1QZUTaSX1qZpYgxnA241GjGGGTNocESWKU2t7idMc7
hOztfI45FlHwYkC8pY2BOvmM6B60r+n9zjYWnCOPxoVHMMHkcRQa1QCrA6cXTgVYk/wdCkrSt0m5
ZjhGElBOeGec1CHnUcwKoKRgAz0MSutOt0of69zXk1Ed5Y/zMQv8DllKgZAwcX2zzSUvtp1HfQlM
dbwI34xlK58xLlFXlGR50II3gN3GOGN7TH2GQ/9N9+XwhjH551IEeUaPtI9oa7wc6dppGMQhKEmb
DGeZvGgb7V1RPcjTTBu/1xCBls6HghoiKjnntdjp0HRwa0wjO0eb9DzLk5ekJhmtJrDRuLNc+xwI
3nCjqLQQzYUbkiMKvthGYe3kVUvJnVk25y09YUagbxrgPNW0NYnoMiON82R+kgWcK54ReiB6qFGG
pcbFzaWZ9RFjUhhCEg0e8jLDOWqKtrmgNUktMuCcoSldd1TeSEx4zztaTcE6nmw67zo8Mevz5sga
e43Gic5L3LL8pNal2LJOWUme6RwjSVh683eO9VBH1+WV2jDQQ/HEmTGLcsHREc01FuKZp/LSPqz/
RittdrHsLEnLlQFtKBWPY2C9DjrDp21Ik7VZVkeBK1fmjWlXzsRUcVqb0iipxzn7os51+GoxdO1W
t1CK50Ga2hS+KW16e1sLDWMbMoudJG2CrJe4HhkdFJFmj/FtDDRRJqqlDbVfAFphUOH2I/1VB3c0
dVx1+NannLV3NN29ZmttKaGKBkaKAfxRi9QDJQBnqiEarAvWQkJgwRRQRc+CIC2VWV+rKrYoX/3b
QfSWW6VVZELHidLS1uSgyiIIpNYJchdd5tQblrSTxJFencKD3f21aSHjcbBj7NXB32iwRzgzTsce
oj1/DTdOw/PKQvq1K6b0rakjch5W7GQZ/WiJ/6Y9IonVtEMvGqINUP85C2miJqfKBZmtLDUSjgJU
ncjkx6SyqpujpiMa8k4tWTXJrZm8N2arPap8ljbeOb9bnYwVKGCI4bJjWebbaHHnMUGuKUQtzWjr
NJrVmfbzzuApuTmj7U0lQuXX4obJsVjqPQAeMZOCmjAfTolKFNsN5sy5aK28JGeOguyNTURtnClI
zJMbzokH6Oig5ihMfMoskCoWo41Vm6ZZsTWbSme6v+rqK4IWlI1iHadMLwuZF2Jhu1jpnw9BFpJn
qreri+Wd9X51n1NCJSLDrG1oC9zAUy3U7GoUJzLJbNTy8rGAolI2U2tGZas2jY/zXeQHf8WO0v8q
uRi1Z6dECUxy2NJO4NR8anWdrEDWexS+N9w5KZMckqYpbXtXHRonDr2lhH5SxMosMVGeD1DC0gmE
aA7X66TbwJWqF5Ww7mpWZ0l++HGWI9+adJJ3bWpRp+Ag7wXFHMcSV2jG1e3YI5r5OTJeS6rp1lTa
8IK63F/G9SLgVB31kuHdPKCpJmQ+VvV5e7hYVYUhM21+a63fjFRKOa9BAf137yHxMlCmtnWF4zOW
+HBWkk6qbDHZ4WRTTUTaxXfnZ+6akScP1EfzGqKCctHJJhJtQfZPDFPMNbKHffY9hLHxSu4U2bNp
XaMVdneC0x+FxSbcc6/UimYFK1KxyYY7QvqadX0O4bKIGGHZ93gEkRp+NRNKSr3+st+l0jVfIVrF
/FZXssTv1Am5TVkAx380FCsA+Eif1nNtlhkPhDJV9n7qJyu3cS0VAlAIc1jDEy129oDgAXTT0R00
cii4YXzfQYCUElVh8XtY8T0aaGTet2Ln5h6B128gIn30x3nWBHYrKBzJBGt/xlN5IYHy4iCcBTLu
h0hDMX8s6BEBAQA7==] C:\Windows\winamp.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [Mqvsc] C:\Windows\winlogon.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [uPc+kt0NlXJsiv] C:\Windows\SysWow64\uccaj.DLL ()
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [uPc+kt0NnKJsiv] C:\Windows\SysWow64\jseg0.DLL ()
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [uTorrent] C:\Program Files (x86)\uTorrent\uTorrent.exe (BitTorrent, Inc.)
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [wibwegcp] C:\Users\thrasherstudios77\AppData\Local\hefbhssbs\dthmqnotssd.exe File not found
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [WMPNSCFG] C:\Program Files (x86)\Windows Media Player\WMPNSCFG.exe File not found
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\Run: [yhyrdvve] C:\Users\thrasherstudios77\AppData\Local\mlcqcpmpw\focprckuqiw.exe File not found
O4 - HKU\S-1-5-21-2809757283-84445543-848142124-1000..\RunOnce: [FlashPlayerUpdate] C:\Windows\SysWOW64\Macromed\Flash\FlashUtil10g_ActiveX.exe (Adobe Systems, Inc.)
O4 - Startup: C:\Users\thrasherstudios77\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\msnmsngr.ink.lnk = C:\Users\thrasherstudios77\AppData\Local\Temp\DokterWatson.exe File not found
O4 - Startup: C:\Users\thrasherstudios77\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote Table Of Contents.onetoc2 ()
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O7 - HKU\S-1-5-21-2809757283-84445543-848142124-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoFolderOptions = 1
O7 - HKU\S-1-5-21-2809757283-84445543-848142124-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 1
O8:64bit: - Extra context menu item: Append Link Target to Existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:64bit: - Extra context menu item: Append to Existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:64bit: - Extra context menu item: Convert Link Target to Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:64bit: - Extra context menu item: Convert to Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:64bit: - Extra context menu item: Send image to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm ()
O8:64bit: - Extra context menu item: Send page to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O8:64bit: - Extra context menu item: Sothink SWF Catcher - C:\Program Files (x86)\Common Files\SourceTec\SWF Catcher\InternetExplorer.htm ()
O8 - Extra context menu item: Append Link Target to Existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Append to Existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Convert Link Target to Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Convert to Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Send image to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm ()
O8 - Extra context menu item: Send page to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O8 - Extra context menu item: Sothink SWF Catcher - C:\Program Files (x86)\Common Files\SourceTec\SWF Catcher\InternetExplorer.htm ()
O9:64bit: - Extra Button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9:64bit: - Extra 'Tools' menuitem : @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra Button: IE Developer Toolbar - {48FFE35F-36D9-44bd-A6CC-1D34414EAC0D} - C:\Program Files (x86)\Microsoft\Internet Explorer Developer Toolbar\IEDevToolbar.dll (Microsoft Corporation)
O9 - Extra Button: Send To Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra 'Tools' menuitem : Send to &Bluetooth Device... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra Button: Sothink SWF Catcher - {E19ADC6E-3909-43E4-9A89-B7B676377EE3} - C:\Program Files (x86)\Common Files\SourceTec\SWF Catcher\InternetExplorer.htm ()
O9 - Extra 'Tools' menuitem : Sothink SWF Catcher - {E19ADC6E-3909-43E4-9A89-B7B676377EE3} - C:\Program Files (x86)\Common Files\SourceTec\SWF Catcher\InternetExplorer.htm ()
O10:64bit: - NameSpace_Catalog5\Catalog_Entries\000000000008 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Computer, Inc.)
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Program Files (x86)\Common Files\PC Tools\Lsp\PCTLsp.dll (PC Tools Research Pty Ltd.)
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Program Files (x86)\Common Files\PC Tools\Lsp\PCTLsp.dll (PC Tools Research Pty Ltd.)
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Program Files (x86)\Common Files\PC Tools\Lsp\PCTLsp.dll (PC Tools Research Pty Ltd.)
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000015 - C:\Program Files (x86)\Common Files\PC Tools\Lsp\PCTLsp.dll (PC Tools Research Pty Ltd.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000008 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Computer, Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Program Files (x86)\Common Files\PC Tools\Lsp\PCTLsp.dll (PC Tools Research Pty Ltd.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Program Files (x86)\Common Files\PC Tools\Lsp\PCTLsp.dll (PC Tools Research Pty Ltd.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Program Files (x86)\Common Files\PC Tools\Lsp\PCTLsp.dll (PC Tools Research Pty Ltd.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000015 - C:\Program Files (x86)\Common Files\PC Tools\Lsp\PCTLsp.dll (PC Tools Research Pty Ltd.)
O13 - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab (Shockwave ActiveX Control)
O16 - DPF: {4871A87A-BFDD-4106-8153-FFDE2BAC2967} http://dlm.tools.akamai.com/dlmanager/versions/activex/dlm-activex-2.2.5.0.cab (DLM Control)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_19-windows-i586.cab (Java Plug-in 1.6.0_19)
O16 - DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab (Java Plug-in 1.6.0_07)
O16 - DPF: {CAFEEFAC-0016-0000-0019-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_19-windows-i586.cab (Java Plug-in 1.6.0_19)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_19-windows-i586.cab (Java Plug-in 1.6.0_19)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 68.105.28.11 68.105.29.11 68.105.28.12
O18:64bit: - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\ms-itss {0A9007C0-4076-11D3-8789-0000F8105754} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\symres {AA1061FE-6C41-421f-9344-69640C9732AB} - Reg Error: Key error. File not found
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\symres {AA1061FE-6C41-421f-9344-69640C9732AB} - C:\Program Files (x86)\Norton Internet Security\Engine\16.8.0.41\CoIEPlg.dll (Symantec Corporation)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKU\S-1-5-21-2809757283-84445543-848142124-1000 Winlogon: Shell - (C:\Users\thrasherstudios77\AppData\Roaming\hotfix.exe) - C:\Users\thrasherstudios77\AppData\Roaming\hotfix.exe File not found
O22 - SharedTaskScheduler: {B1BA40A1-75F2-51BD-F313-04B03A2C8953} - jsfsue98jfi8dfjijse - C:\Windows\SysWOW64\n1weqnxybj.dll ()
O22 - SharedTaskScheduler: {B1BA40A2-75F2-51BD-F413-04B13A2C8953} - hasf87hdfuidhfiudfhdiu - C:\Windows\SysWOW64\m9uhzzg2.dll ()
O24 - Desktop WallPaper: C:\Windows\Web\Wallpaper\Bronze3.jpg
O24 - Desktop BackupWallPaper: C:\Windows\Web\Wallpaper\Bronze3.jpg
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2010/10/23 21:28:03 | 000,000,000 | ---D | M] - C:\Autodesk -- [ NTFS ]
O33 - MountPoints2\L\Shell\Open\command - "" =
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

========== Files/Folders - Created Within 30 Days ==========

[2010/11/11 23:32:55 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\RootKitUnHook
[2010/10/26 15:39:57 | 000,955,272 | ---- | C] (Skype Technologies S.A.) -- C:\Users\thrasherstudios77\Desktop\SkypeSetup.exe
[2010/10/23 22:20:58 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Chaos Group
[2010/10/23 22:07:09 | 000,000,000 | ---D | C] -- C:\Users\thrasherstudios77\Documents\Inventor
[2010/10/17 15:13:20 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\ChaosGroup
[2010/10/17 15:13:01 | 000,000,000 | ---D | C] -- C:\Program Files\Chaos Group
[2010/10/17 10:53:38 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\ChaosGroup
[2010/10/17 10:01:13 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Alias Shared
[2010/10/17 09:52:04 | 000,000,000 | ---D | C] -- C:\FLEXLM
[2010/10/15 10:17:58 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Autodesk Shared
[2010/10/14 08:15:35 | 000,000,000 | ---D | C] -- C:\ProgramData\regid.1986-12.com.adobe
[2010/10/14 07:45:50 | 000,000,000 | ---D | C] -- C:\Users\thrasherstudios77\Desktop\Flash Pro CS5
[2010/10/14 07:24:23 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Akamai
[2009/05/14 22:15:24 | 005,719,400 | ---- | C] (Acresso Software Inc.) -- C:\Program Files\Common Files\adlmint_libFNP.dll
[2009/05/14 22:15:24 | 004,397,928 | ---- | C] (Autodesk) -- C:\Program Files\Common Files\adlmint.dll

========== Files - Modified Within 30 Days ==========

[2010/11/11 23:29:00 | 000,000,920 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2010/11/11 23:03:00 | 000,000,956 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2809757283-84445543-848142124-1000UA.job
[2010/11/11 22:02:11 | 000,003,216 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2010/11/11 22:02:11 | 000,003,216 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2010/11/11 14:29:00 | 000,000,916 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2010/11/11 13:03:00 | 000,000,904 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2809757283-84445543-848142124-1000Core.job
[2010/11/10 20:05:03 | 000,307,341 | ---- | M] () -- C:\ProgramData\nvModes.dat
[2010/11/10 20:05:03 | 000,307,341 | ---- | M] () -- C:\ProgramData\nvModes.001
[2010/11/10 20:01:46 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2010/11/10 20:01:13 | 4260,319,232 | -HS- | M] () -- C:\hiberfil.sys
[2010/11/05 20:18:45 | 000,000,012 | ---- | M] () -- C:\Windows\bthservsdp.dat
[2010/11/05 12:58:10 | 000,006,641 | ---- | M] () -- C:\Users\thrasherstudios77\Desktop\HTML_FORMAT.html
[2010/11/04 19:29:38 | 000,000,069 | ---- | M] () -- C:\Windows\NeroDigital.ini
[2010/11/04 19:29:35 | 000,013,312 | ---- | M] () -- C:\Users\thrasherstudios77\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/11/02 19:13:04 | 000,001,356 | ---- | M] () -- C:\Users\thrasherstudios77\AppData\Local\d3d9caps.dat
[2010/11/01 18:23:26 | 005,812,056 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2010/11/01 17:16:50 | 000,001,907 | ---- | M] () -- C:\Users\thrasherstudios77\Application Data\Microsoft\Internet Explorer\Quick Launch\Autodesk 3ds Max 2011 32-bit.lnk
[2010/11/01 16:04:18 | 000,002,397 | ---- | M] () -- C:\Users\thrasherstudios77\Application Data\Microsoft\Internet Explorer\Quick Launch\Skype.lnk
[2010/10/26 15:39:42 | 000,955,272 | ---- | M] (Skype Technologies S.A.) -- C:\Users\thrasherstudios77\Desktop\SkypeSetup.exe
[2010/10/23 22:03:21 | 000,001,883 | ---- | M] () -- C:\Users\Public\Desktop\Autodesk 3ds Max 2011 32-bit.lnk
[2010/10/21 17:39:42 | 010,492,512 | ---- | M] () -- C:\Users\thrasherstudios77\Desktop\electronics.pdf
[2010/10/19 19:08:32 | 000,707,392 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2010/10/19 19:08:32 | 000,607,406 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2010/10/19 19:08:32 | 000,105,014 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2010/10/17 10:04:02 | 000,001,945 | ---- | M] () -- C:\Users\thrasherstudios77\Application Data\Microsoft\Internet Explorer\Quick Launch\Autodesk Maya 2009 (64-bit).lnk
[2010/10/15 10:18:16 | 000,001,881 | ---- | M] () -- C:\Users\Public\Desktop\Autodesk 3ds Max 2009 64-bit.lnk
[2010/10/14 07:23:43 | 000,351,816 | ---- | M] () -- C:\Users\thrasherstudios77\Desktop\Adobe_Flash_Professional_CS5-AkamaiDLM.exe

========== Files Created - No Company Name ==========

[2010/11/05 12:58:17 | 000,006,641 | ---- | C] () -- C:\Users\thrasherstudios77\Desktop\HTML_FORMAT.html
[2010/11/03 05:58:07 | 4260,319,232 | -HS- | C] () -- C:\hiberfil.sys
[2010/11/02 04:53:20 | 000,001,356 | ---- | C] () -- C:\Users\thrasherstudios77\AppData\Local\d3d9caps.dat
[2010/11/01 17:16:50 | 000,001,907 | ---- | C] () -- C:\Users\thrasherstudios77\Application Data\Microsoft\Internet Explorer\Quick Launch\Autodesk 3ds Max 2011 32-bit.lnk
[2010/10/26 12:19:40 | 000,032,256 | ---- | C] () -- C:\Windows\SysNative\Apphlpdm.dll
[2010/10/26 12:19:37 | 004,240,384 | ---- | C] () -- C:\Windows\SysNative\GameUXLegacyGDFs.dll
[2010/10/23 22:03:21 | 000,001,883 | ---- | C] () -- C:\Users\Public\Desktop\Autodesk 3ds Max 2011 32-bit.lnk
[2010/10/23 21:39:14 | 000,424,876 | ---- | C] () -- C:\Users\thrasherstudios77\AppData\Local\dd_vcredistMSI4029.txt
[2010/10/23 21:39:12 | 000,013,666 | ---- | C] () -- C:\Users\thrasherstudios77\AppData\Local\dd_vcredistUI4029.txt
[2010/10/21 17:39:24 | 010,492,512 | ---- | C] () -- C:\Users\thrasherstudios77\Desktop\electronics.pdf
[2010/10/17 10:04:02 | 000,001,945 | ---- | C] () -- C:\Users\thrasherstudios77\Application Data\Microsoft\Internet Explorer\Quick Launch\Autodesk Maya 2009 (64-bit).lnk
[2010/10/15 10:18:16 | 000,001,881 | ---- | C] () -- C:\Users\Public\Desktop\Autodesk 3ds Max 2009 64-bit.lnk
[2010/10/15 10:14:02 | 000,007,173 | ---- | C] () -- C:\Users\thrasherstudios77\AppData\Local\dd_depcheck_NETFX20_EXP_35.txt
[2010/10/15 10:13:56 | 000,000,754 | ---- | C] () -- C:\Users\thrasherstudios77\AppData\Local\dd_dotnetfx20error.txt
[2010/10/15 10:13:55 | 000,040,966 | ---- | C] () -- C:\Users\thrasherstudios77\AppData\Local\dd_dotnetfx20install.txt
[2010/10/15 10:13:55 | 000,016,922 | ---- | C] () -- C:\Users\thrasherstudios77\AppData\Local\uxeventlog.txt
[2010/10/14 07:23:43 | 000,351,816 | ---- | C] () -- C:\Users\thrasherstudios77\Desktop\Adobe_Flash_Professional_CS5-AkamaiDLM.exe
[2010/10/14 00:32:09 | 000,633,856 | ---- | C] () -- C:\Windows\SysNative\comctl32.dll
[2010/10/13 03:12:18 | 000,316,416 | ---- | C] () -- C:\Windows\SysNative\msshsq.dll
[2010/10/13 00:04:28 | 001,923,584 | ---- | C] () -- C:\Windows\SysNative\ole32.dll
[2010/10/13 00:04:22 | 000,189,952 | ---- | C] () -- C:\Windows\SysNative\t2embed.dll
[2010/10/13 00:04:11 | 002,751,488 | ---- | C] () -- C:\Windows\SysNative\win32k.sys
[2010/10/13 00:04:01 | 013,425,152 | ---- | C] () -- C:\Windows\SysNative\wmp.dll
[2010/10/13 00:03:52 | 008,147,968 | ---- | C] () -- C:\Windows\SysNative\wmploc.DLL
[2010/10/13 00:02:38 | 007,015,424 | ---- | C] () -- C:\Windows\SysNative\ieframe.dll
[2010/10/13 00:02:36 | 005,692,928 | ---- | C] () -- C:\Windows\SysNative\mshtml.dll
[2010/10/13 00:02:34 | 000,590,848 | ---- | C] () -- C:\Windows\SysNative\msfeeds.dll
[2010/10/13 00:02:32 | 000,758,784 | ---- | C] () -- C:\Windows\SysNative\mshtmled.dll
[2010/10/13 00:02:30 | 001,426,944 | ---- | C] () -- C:\Windows\SysNative\urlmon.dll
[2010/10/13 00:02:30 | 001,129,984 | ---- | C] () -- C:\Windows\SysNative\mstime.dll
[2010/10/13 00:02:30 | 001,032,704 | ---- | C] () -- C:\Windows\SysNative\wininet.dll
[2010/10/13 00:02:30 | 000,485,376 | ---- | C] () -- C:\Windows\SysNative\html.iec
[2010/10/13 00:02:30 | 000,267,776 | ---- | C] () -- C:\Windows\SysNative\ieaksie.dll
[2010/10/13 00:02:29 | 000,480,256 | ---- | C] () -- C:\Windows\SysNative\iedkcs32.dll
[2010/10/13 00:02:29 | 000,375,296 | ---- | C] () -- C:\Windows\SysNative\iertutil.dll
[2010/10/13 00:02:29 | 000,249,856 | ---- | C] () -- C:\Windows\SysNative\iepeers.dll
[2010/10/13 00:02:29 | 000,208,896 | ---- | C] () -- C:\Windows\SysNative\occache.dll
[2010/10/13 00:02:28 | 001,383,424 | ---- | C] () -- C:\Windows\SysNative\mshtml.tlb
[2010/10/13 00:02:28 | 000,422,400 | ---- | C] () -- C:\Windows\SysNative\ieapfltr.dll
[2010/10/13 00:02:28 | 000,086,528 | ---- | C] () -- C:\Windows\SysNative\ieencode.dll
[2010/10/13 00:02:28 | 000,032,256 | ---- | C] () -- C:\Windows\SysNative\jsproxy.dll
[2010/10/13 00:02:18 | 000,461,824 | ---- | C] () -- C:\Windows\SysNative\drivers\srv.sys
[2010/10/13 00:02:17 | 000,179,712 | ---- | C] () -- C:\Windows\SysNative\srvsvc.dll
[2010/10/13 00:02:17 | 000,175,104 | ---- | C] () -- C:\Windows\SysNative\drivers\srv2.sys
[2010/10/13 00:02:17 | 000,144,896 | ---- | C] () -- C:\Windows\SysNative\drivers\srvnet.sys
[2010/10/13 00:02:16 | 000,012,288 | ---- | C] () -- C:\Windows\SysNative\sscore.dll
[2010/10/13 00:02:14 | 000,017,920 | ---- | C] () -- C:\Windows\SysNative\netevent.dll
[2010/10/13 00:01:45 | 000,343,040 | ---- | C] () -- C:\Windows\SysNative\schannel.dll
[2010/10/13 00:01:42 | 001,090,048 | ---- | C] () -- C:\Windows\SysNative\wmpmde.dll
[2010/10/04 18:11:25 | 000,000,000 | ---- | C] () -- C:\Users\thrasherstudios77\AppData\Local\QSwitch.txt
[2010/10/04 18:11:25 | 000,000,000 | ---- | C] () -- C:\Users\thrasherstudios77\AppData\Local\DSwitch.txt
[2010/10/04 18:11:25 | 000,000,000 | ---- | C] () -- C:\Users\thrasherstudios77\AppData\Local\AtStart.txt
[2010/10/04 17:58:27 | 000,013,312 | ---- | C] () -- C:\Users\thrasherstudios77\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/09/27 02:54:32 | 000,030,000 | ---- | C] () -- C:\Windows\SysWow64\n1weqnxybj.dll
[2010/09/27 02:54:32 | 000,030,000 | ---- | C] () -- C:\Windows\SysWow64\jseg0.dll
[2010/09/27 02:33:09 | 000,030,000 | ---- | C] () -- C:\Windows\SysWow64\uccaj.dll
[2010/09/27 02:33:08 | 000,030,000 | ---- | C] () -- C:\Windows\SysWow64\xa8re7o.dll
[2010/09/27 02:32:48 | 000,000,141 | ---- | C] () -- C:\Users\thrasherstudios77\AppData\Roaming\hgksfg.bat
[2010/09/12 01:27:00 | 000,030,000 | ---- | C] () -- C:\Windows\SysWow64\m9uhzzg2.dll
[2010/09/12 00:51:47 | 001,044,480 | ---- | C] () -- C:\Users\thrasherstudios77\AppData\Roaming\chrtmp
[2010/06/11 21:29:57 | 000,036,868 | ---- | C] () -- C:\Program Files (x86)\uninst-Echospace.exe
[2010/06/11 21:29:01 | 000,036,868 | ---- | C] () -- C:\Program Files (x86)\uninst-SoundKeys.exe
[2010/03/09 03:18:05 | 000,709,336 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2010/03/03 20:08:18 | 000,000,069 | ---- | C] () -- C:\Windows\NeroDigital.ini
[2010/03/03 16:43:34 | 000,767,952 | ---- | C] () -- C:\Windows\BDTSupport.dll.old
[2010/03/03 16:43:34 | 000,767,928 | ---- | C] () -- C:\Windows\BDTSupport.dll
[2010/03/03 02:41:42 | 000,008,850 | -HS- | C] () -- C:\Users\thrasherstudios77\AppData\Local\g0kGW74PfDq4
[2010/02/25 03:21:06 | 000,000,023 | ---- | C] () -- C:\Windows\SWFDecompiler.INI
[2009/11/08 22:10:03 | 000,000,644 | ---- | C] () -- C:\Users\thrasherstudios77\AppData\Roaming\wklnhst.dat
[2009/11/08 22:06:28 | 000,000,032 | ---- | C] () -- C:\Windows\MS Office 2007 Pro Plus & Expression Web.INI
[2009/10/22 18:31:52 | 000,000,600 | ---- | C] () -- C:\Users\thrasherstudios77\AppData\Roaming\winscp.rnd
[2009/10/20 11:19:30 | 000,053,299 | ---- | C] () -- C:\Windows\SysWow64\pthreadVC.dll
[2009/06/04 10:27:45 | 000,307,341 | ---- | C] () -- C:\ProgramData\nvModes.001
[2009/06/04 10:20:05 | 000,307,341 | ---- | C] () -- C:\ProgramData\nvModes.dat
[2009/06/01 18:33:27 | 002,463,976 | ---- | C] () -- C:\Windows\SysWow64\NPSWF32.dll
[2009/03/18 15:49:09 | 000,000,105 | ---- | C] () -- C:\ProgramData\{d36dd326-7280-11d8-97c8-000129760cbe}.log
[2009/03/18 15:49:01 | 000,000,032 | ---- | C] () -- C:\ProgramData\{051B9612-4D82-42AC-8C63-CD2DCEDC1CB3}.log
[2009/03/18 15:48:39 | 000,000,032 | ---- | C] () -- C:\ProgramData\{9867824A-C86D-4A83-8F3C-E7A86BE0AFD3}.log
[2009/03/18 15:48:11 | 000,000,032 | ---- | C] () -- C:\ProgramData\{23F3DA62-2D9E-4A69-B8D5-BE8E9E148092}.log
[2009/03/18 15:46:25 | 000,000,032 | ---- | C] () -- C:\ProgramData\{4FC670EB-5F02-4B07-90DB-022B86BFEFD0}.log
[2008/10/28 22:38:05 | 000,819,200 | ---- | C] () -- C:\Windows\SysWow64\xvidcore.dll
[2008/10/28 22:38:05 | 000,180,224 | ---- | C] () -- C:\Windows\SysWow64\xvidvfw.dll
[2008/10/20 00:26:34 | 000,000,109 | ---- | C] () -- C:\ProgramData\{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}.log
[2008/10/20 00:21:32 | 000,000,110 | ---- | C] () -- C:\ProgramData\{CB099890-1D5F-11D5-9EA9-0050BAE317E1}.log
[2008/10/20 00:19:58 | 000,000,105 | ---- | C] () -- C:\ProgramData\{40BF1E83-20EB-11D8-97C5-0009C5020658}.log
[2008/10/20 00:18:46 | 000,000,107 | ---- | C] () -- C:\ProgramData\{C59C179C-668D-49A9-B6EA-0121CCFC1243}.log
[2008/01/20 19:50:05 | 000,060,124 | ---- | C] () -- C:\Windows\SysWow64\tcpmon.ini
[2008/01/20 19:49:49 | 000,368,640 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll
[2007/06/27 17:13:51 | 000,516,096 | ---- | C] () -- C:\Windows\SysWow64\RegisterDialog.dll

========== LOP Check ==========

[2010/03/03 14:00:22 | 000,000,000 | ---D | M] -- C:\Users\Administrator\AppData\Roaming\com.adobe.ExMan
[2010/02/14 22:43:23 | 000,000,000 | ---D | M] -- C:\Users\Administrator\AppData\Roaming\Subversion
[2010/10/23 22:07:10 | 000,000,000 | ---D | M] -- C:\Users\thrasherstudios77\AppData\Roaming\Autodesk
[2010/02/25 15:45:56 | 000,000,000 | ---D | M] -- C:\Users\thrasherstudios77\AppData\Roaming\com.adobe.ExMan
[2010/11/10 15:11:46 | 000,000,000 | ---D | M] -- C:\Users\thrasherstudios77\AppData\Roaming\FileZilla
[2010/09/27 02:33:26 | 000,000,000 | ---D | M] -- C:\Users\thrasherstudios77\AppData\Roaming\Genieo
[2010/05/28 04:03:41 | 000,000,000 | ---D | M] -- C:\Users\thrasherstudios77\AppData\Roaming\MainType
[2009/08/28 17:05:21 | 000,000,000 | ---D | M] -- C:\Users\thrasherstudios77\AppData\Roaming\muvee Technologies
[2009/12/12 12:39:34 | 000,000,000 | ---D | M] -- C:\Users\thrasherstudios77\AppData\Roaming\NetMedia Providers
[2009/12/12 12:39:34 | 000,000,000 | ---D | M] -- C:\Users\thrasherstudios77\AppData\Roaming\Publish Providers
[2010/06/27 13:07:20 | 000,000,000 | ---D | M] -- C:\Users\thrasherstudios77\AppData\Roaming\Softplicity
[2009/12/12 12:39:33 | 000,000,000 | ---D | M] -- C:\Users\thrasherstudios77\AppData\Roaming\Sony
[2008/10/11 15:56:33 | 000,000,000 | ---D | M] -- C:\Users\thrasherstudios77\AppData\Roaming\Subversion
[2009/11/08 22:10:04 | 000,000,000 | ---D | M] -- C:\Users\thrasherstudios77\AppData\Roaming\Template
[2010/10/02 05:51:56 | 000,000,000 | ---D | M] -- C:\Users\thrasherstudios77\AppData\Roaming\Tibo Software
[2010/05/25 00:40:49 | 000,000,000 | ---D | M] -- C:\Users\thrasherstudios77\AppData\Roaming\Tramontána
[2010/09/16 15:27:26 | 000,000,000 | ---D | M] -- C:\Users\thrasherstudios77\AppData\Roaming\Unity
[2010/11/10 20:05:54 | 000,000,000 | ---D | M] -- C:\Users\thrasherstudios77\AppData\Roaming\uTorrent
[2010/09/27 07:34:44 | 000,000,000 | RHSD | M] -- C:\Users\thrasherstudios77\AppData\Roaming\WinDir
[2010/05/30 04:18:11 | 000,000,000 | ---D | M] -- C:\Users\thrasherstudios77\AppData\Roaming\Xilisoft
[2010/11/05 20:18:50 | 000,032,620 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT

========== Purity Check ==========



========== Alternate Data Streams ==========

@Alternate Data Stream - 198 bytes -> C:\ProgramData\Temp:0C1EFF69
@Alternate Data Stream - 167 bytes -> C:\ProgramData\Temp:DFC5A2B2
@Alternate Data Stream - 105 bytes -> C:\ProgramData\Temp:430C6D84
@Alternate Data Stream - 103 bytes -> C:\ProgramData\Temp:A8ADE5D8

< End of report >

#8 media prime

media prime
  • Topic Starter

  • Members
  • 34 posts
  • OFFLINE
  •  
  • Local time:03:04 PM

Posted 12 November 2010 - 02:02 AM

Extras.txt


OTL Extras logfile created on: 11/11/2010 11:35:12 PM - Run 1
OTL by OldTimer - Version 3.2.17.3 Folder = C:\Users\thrasherstudios77\Virus Removal instructions\OTL
64bit-Windows Vista Home Premium Edition Service Pack 1 (Version = 6.0.6001) - Type = NTWorkstation
Internet Explorer (Version = 7.0.6001.18000)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

4.00 Gb Total Physical Memory | 2.00 Gb Available Physical Memory | 60.00% Memory free
8.00 Gb Paging File | 6.00 Gb Available in Paging File | 72.00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 284.11 Gb Total Space | 43.11 Gb Free Space | 15.17% Space Free | Partition Type: NTFS
Drive D: | 13.98 Gb Total Space | 2.13 Gb Free Space | 15.21% Space Free | Partition Type: NTFS
Drive F: | 232.83 Gb Total Space | 31.49 Gb Free Space | 13.52% Space Free | Partition Type: FAT32

Computer Name: EAGLE | User Name: thrasherstudios77 | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)

[HKEY_USERS\S-1-5-21-2809757283-84445543-848142124-1000\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found

========== Shell Spawning ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %* File not found
cmdfile [open] -- "%1" %* File not found
comfile [open] -- "%1" %* File not found
exefile [open] -- "%1" %* File not found
helpfile [open] -- Reg Error: Key error.
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" ()
piffile [open] -- "%1" %* File not found
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1" File not found
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l ()
scrfile [open] -- "%1" /S File not found
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 File not found
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [Bridge] -- C:\Program Files (x86)\Adobe\Adobe Bridge CS5\Bridge.exe "%L" (Adobe Systems, Inc.)
Directory [cmd] -- cmd.exe /s /k pushd "%V" ()
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Directory [Winamp.Bookmark] -- "C:\Program Files (x86)\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.)
Directory [Winamp.Enqueue] -- "C:\Program Files (x86)\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.)
Directory [Winamp.Play] -- "C:\Program Files (x86)\Winamp\winamp.exe" "%1" (Nullsoft, Inc.)
Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [Bridge] -- C:\Program Files (x86)\Adobe\Adobe Bridge CS5\Bridge.exe "%L" (Adobe Systems, Inc.)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Directory [Winamp.Bookmark] -- "C:\Program Files (x86)\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.)
Directory [Winamp.Enqueue] -- "C:\Program Files (x86)\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.)
Directory [Winamp.Play] -- "C:\Program Files (x86)\Winamp\winamp.exe" "%1" (Nullsoft, Inc.)
Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 0

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
"VistaSp1" = 9F 9E 16 8C DC 5B C8 01 [binary data]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"AntiVirusDisableNotify" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"oobe_av" = 1

========== System Restore Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows NT\SystemRestore]
"DisableSR" = 1

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows NT\SystemRestore]
"DisableSR" = 1

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 0
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 0
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 0
"DisableNotifications" = 0

========== Authorized Applications List ==========


========== Vista Active Open Ports Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{03F3A52D-0EAA-430E-81A1-F2190BC65B09}" = lport=5353 | protocol=6 | dir=in | name=adobe csi cs4 |
"{19FFE6F5-FE24-4CDD-A790-0A7B78CC2AE7}" = lport=50900 | protocol=6 | dir=in | name=adobe version cue cs3 server |
"{2F82207D-1715-4281-9781-ABF1A8174856}" = lport=49159 | protocol=6 | dir=in | name=akamai netsession interface |
"{37D10128-80BB-4C7F-BE9E-4C4541EAD833}" = lport=49164 | protocol=6 | dir=in | name=akamai netsession interface |
"{3A76826A-0AAB-4677-853E-D2BF15C21D2B}" = lport=3704 | protocol=6 | dir=in | name=adobe version cue cs4 server |
"{3D5B2B95-6593-4690-8A79-796A25F74AF3}" = lport=51001 | protocol=6 | dir=in | name=adobe version cue cs4 server |
"{42118AA0-F3BC-4439-AF14-4E66AF280ED7}" = lport=5000 | protocol=17 | dir=in | name=akamai netsession interface |
"{554CAD5B-B2F1-4153-BBB8-75C75D3C54A5}" = lport=3704 | protocol=6 | dir=in | name=adobe version cue cs3 server |
"{5F57DF32-21DF-4A46-8E90-614E90E9A3F8}" = lport=51000 | protocol=6 | dir=in | name=adobe version cue cs4 server |
"{671205C0-2CA5-436C-9DB4-4F5235BB77E6}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\outlook.exe |
"{68CD55FE-20D4-42E9-A4D6-131A89256AF8}" = lport=3703 | protocol=6 | dir=in | name=adobe version cue cs3 server |
"{6AA53227-C3C9-4AFD-A194-B624AF75B2E0}" = lport=50901 | protocol=6 | dir=in | name=adobe version cue cs3 server |
"{74560DCF-7953-4A16-9A81-5C0225AF62BF}" = lport=5000 | protocol=17 | dir=in | name=akamai netsession interface |
"{A438CF63-E5F6-4A6F-9E50-AF014ACC09B1}" = lport=3703 | protocol=6 | dir=in | name=adobe version cue cs4 server |
"{D0B7B443-B249-4D87-AB59-3BC6AD993BB0}" = lport=5353 | protocol=6 | dir=in | name=adobe csi cs4 |

========== Vista Active Application Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0026DF0F-8199-4EF9-8A80-D17A3C1EB7EC}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{00D35D91-1CDE-4576-AC4D-1B259FEC241C}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe |
"{017EE982-614E-4042-B790-50EE2678287A}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{047F50F9-BD80-4B48-9B6F-2484E0C55699}" = protocol=6 | dir=in | app=c:\program files (x86)\skype\plugin manager\skypepm.exe |
"{05CB1BD9-40B6-4973-B554-D018A11AAFBF}" = dir=in | app=c:\program files (x86)\hewlett-packard\media\dvd\hptouchsmartmusic.exe |
"{0935C6D6-5C03-4650-9A3A-AE9C4A79E605}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{0E51B84F-F396-407C-ADC8-DBE5ED9F53A9}" = protocol=17 | dir=in | app=c:\program files (x86)\skype\plugin manager\skypepm.exe |
"{18771748-D619-4875-AA92-BDC3E346B288}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{1AF674DF-3CC7-41F4-BDB1-19359E7DC8C8}" = protocol=6 | dir=in | app=c:\users\thrasherstudios77\appdata\local\google\google talk plugin\googletalkplugin.dll |
"{1CDF8376-E655-4641-B071-DA0823C12B78}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{2040E1B1-7F58-4426-9A82-E5798171681B}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{21252EEB-57B2-425C-BAEF-2FBD7770DE51}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{2165B5F7-B172-4C8E-9093-D680DE716806}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{2EEEA6B3-E8FE-461E-8751-D71BD9720753}" = dir=in | app=c:\program files (x86)\cyberlink\powerdirector\pdr.exe |
"{304C2BE3-D5CC-48FE-A67C-2198564D633C}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe |
"{30789AFB-7A45-4BD0-9B0E-64B716A972AC}" = protocol=17 | dir=in | app=c:\program files (x86)\autodesk\backburner\monitor.exe |
"{30B0C5EF-0EDB-4097-B182-80856B703A76}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{31C53C79-AF46-445F-A1F3-186AEE623C51}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{3248B224-BA1C-4864-892A-4A0825028929}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{3433A644-512B-4181-9FA6-C8E0C41BD0AB}" = protocol=17 | dir=in | app=c:\program files (x86)\autodesk\backburner\manager.exe |
"{35E51849-CC76-498B-A00B-3402B73FAA19}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{36387908-7653-413A-A93D-639162A17ECC}" = dir=in | app=c:\program files (x86)\hewlett-packard\touchsmart\media\kernel\clml\clmlsvc.exe |
"{38DE1BE1-FA26-4E62-A2C7-AC6BD44D8767}" = protocol=17 | dir=in | app=c:\program files (x86)\autodesk\backburner\server.exe |
"{3B5C5E0F-4DAC-4F9D-97BD-C4B654D4BBF2}" = dir=in | app=c:\program files (x86)\hewlett-packard\touchsmart\media\hptouchsmartvideo.exe |
"{47074D39-9EAB-404C-8D6C-ABE7BA41D229}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{47288020-A039-4D58-9916-4B4307F14CA7}" = protocol=6 | dir=in | app=c:\program files (x86)\common files\adobe\cs4servicemanager\cs4servicemanager.exe |
"{474D3142-A868-42A6-9965-73B1EBEE4BA7}" = protocol=17 | dir=in | app=c:\program files (x86)\common files\adobe\adobe version cue cs4\server\bin\versioncuecs4.exe |
"{4950FF63-125E-48B6-85B3-0A65B531AC42}" = dir=in | app=c:\program files (x86)\hewlett-packard\touchsmart\media\hptouchsmartphoto.exe |
"{531AE24C-4F1E-4162-BBB5-011683BDE1C9}" = dir=in | app=c:\program files (x86)\hewlett-packard\touchsmart\media\tsmagent.exe |
"{532A3D58-A734-447B-8821-69CDF49BE2B4}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{54056DBA-0272-4C41-991E-4E6027C15706}" = protocol=6 | dir=in | app=c:\program files (x86)\autodesk\3ds max 2011\3dsmax.exe |
"{5628C699-7170-46DC-953D-B21D29601E25}" = protocol=6 | dir=in | app=c:\program files\autodesk\3ds max 2009\3dsmax.exe |
"{59ECC124-D2D4-4380-A6CA-C440BAC72F9E}" = protocol=6 | dir=in | app=c:\program files (x86)\autodesk\3ds max 2011\mentalimages\satellite\raysat_3dsmax2011_32server.exe |
"{5E036EF8-6093-449B-93E1-7280FE411BF8}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{616DDDF1-9968-461A-A4FA-23CF05AE3F03}" = protocol=6 | dir=in | app=c:\program files (x86)\autodesk\backburner\monitor.exe |
"{61DF3A68-C4AC-4DB2-AA16-B55F18FA4CC9}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{64518F84-7899-42BC-B09E-6C221113352B}" = protocol=17 | dir=in | app=c:\program files (x86)\autodesk\backburner\server.exe |
"{65F26C92-684B-412C-AF4D-1569A945D260}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{669284C0-BEA9-4642-A0D8-FADADDD289A6}" = protocol=17 | dir=in | app=c:\users\thrasherstudios77\appdata\local\google\google talk plugin\googletalkplugin.exe |
"{6A071134-12DC-4A76-A334-4F9915EDA9E1}" = protocol=17 | dir=in | app=c:\program files (x86)\autodesk\backburner\manager.exe |
"{71CC0FDB-A84D-4537-BE3B-C250F8D3522A}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{75C9DFEC-CC52-4306-89A7-E1AD1F752CD9}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{76E62AF0-8010-4212-B81B-6E6457E63B66}" = dir=in | app=c:\program files (x86)\hewlett-packard\media\tv\qpservice.exe |
"{7D09BC68-4C06-4FDC-A39D-D3C89F780331}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{7D2B8D6C-2FBB-41AD-8B32-2CAAF36FF357}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{7F7AFD74-C433-4707-BD07-5BE76C61FCCD}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{7FBB5B37-A453-4F51-9497-0BCA385C1A65}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{832F4B78-E630-420A-9B5E-4EDC8DE1864F}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{86C238A8-645C-47DD-AD84-301406635909}" = protocol=6 | dir=in | app=c:\program files (x86)\autodesk\backburner\monitor.exe |
"{878D68BE-740B-4FAB-9FE5-B7A20AD00063}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{8A9B7027-4596-41DC-8094-90B8492D55C3}" = protocol=6 | dir=in | app=c:\program files (x86)\autodesk\backburner\server.exe |
"{8AB26B9F-4C50-431D-BCF1-E584755801D7}" = protocol=6 | dir=in | app=c:\program files (x86)\common files\adobe\adobe version cue cs4\server\bin\versioncuecs4.exe |
"{8F0840F1-BC59-4330-BD68-BF583BE7480F}" = protocol=6 | dir=in | app=c:\program files (x86)\common files\adobe\adobe version cue cs3\server\bin\versioncuecs3.exe |
"{97499285-9845-4860-997D-CB1A33352629}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{995F579C-2827-4543-919D-12C94DD9FFA6}" = protocol=6 | dir=in | app=c:\program files (x86)\autodesk\backburner\manager.exe |
"{9A069C85-711B-41EB-A345-69D3D642D357}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{9A1D4786-F019-43C9-9F05-99AFB2E4F858}" = dir=in | app=c:\program files (x86)\hewlett-packard\media\dvd\tsmagent.exe |
"{9B2C9414-3ED9-436C-88C0-D71759FD4B23}" = protocol=6 | dir=in | app=c:\program files (x86)\autodesk\3ds max 2011\mentalimages\satellite\raysat_3dsmax2011_32.exe |
"{9FB7188D-E902-44CB-9C64-3AA717B79995}" = protocol=17 | dir=in | app=c:\program files (x86)\autodesk\3ds max 2011\mentalimages\satellite\raysat_3dsmax2011_32.exe |
"{A5549FCC-5273-4421-8A6E-43BBAA1415D7}" = dir=in | app=c:\program files (x86)\hewlett-packard\media\tv\qp.exe |
"{AE4F4771-9831-443A-852B-B5C760D4C195}" = dir=in | app=c:\program files (x86)\hewlett-packard\media\dvd\kernel\clml\clmlsvc.exe |
"{B0D56C72-4B12-4C80-BA43-5007A18D7AF7}" = protocol=17 | dir=in | app=c:\program files (x86)\autodesk\3ds max 2011\3dsmax.exe |
"{B27EB382-DCE8-4492-850D-4F88A1663B2B}" = protocol=6 | dir=in | app=c:\program files (x86)\itunes\itunes.exe |
"{B55DFB93-43AF-4897-A2BA-2EBC5316DA19}" = protocol=17 | dir=in | app=c:\program files (x86)\common files\adobe\cs4servicemanager\cs4servicemanager.exe |
"{B8CE1B9F-57DA-4E5D-AEF1-913B3C04D906}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{BAE0BE79-F7E0-43DC-8BD1-8C855D38309C}" = dir=in | app=c:\program files (x86)\hewlett-packard\touchsmart\media\hptouchsmartmusic.exe |
"{C2064DAD-01D4-4D96-99B2-D0353BBCA84B}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{C38BD26C-7045-4307-A9C8-506D529C6AB2}" = protocol=17 | dir=in | app=c:\program files (x86)\skype\plugin manager\skypepm.exe |
"{C7ECA1DD-FB7D-469D-8B0F-862B1512165B}" = protocol=17 | dir=in | app=c:\users\thrasherstudios77\appdata\local\google\google talk plugin\googletalkplugin.dll |
"{C947CCD1-A53F-4935-9229-901552504E69}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{CA2700AA-368C-4391-957F-709F32402E5E}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{CA4A4813-C14D-46E2-847B-96C9B92B73B2}" = protocol=17 | dir=in | app=c:\program files (x86)\itunes\itunes.exe |
"{CB3A3DB4-5D86-498D-A6B6-37DE9A87CE93}" = protocol=17 | dir=in | app=c:\program files (x86)\autodesk\3ds max 2011\mentalimages\satellite\raysat_3dsmax2011_32server.exe |
"{CB3DFFF1-A97F-4BB4-A931-C1DD9501EDBC}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{CCB9F7FF-43B1-4FD8-B0D5-05C2564DC4C3}" = protocol=6 | dir=in | app=c:\program files (x86)\common files\adobe\cs4servicemanager\cs4servicemanager.exe |
"{D0F788B9-0033-45EB-9D1C-4A29FD7B96DD}" = dir=in | app=c:\program files (x86)\hewlett-packard\media\dvd\hptouchsmartvideo.exe |
"{D638E873-2774-47B2-A016-A80D4AC08563}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{D81827F0-B269-4ED1-8996-E87BC2C0C04D}" = protocol=17 | dir=in | app=c:\program files (x86)\common files\adobe\adobe version cue cs3\server\bin\versioncuecs3.exe |
"{DCA116D5-4BE2-4E98-B0E5-0516B0488347}" = protocol=17 | dir=in | app=c:\program files (x86)\common files\adobe\cs4servicemanager\cs4servicemanager.exe |
"{DFC65058-6E7D-46C8-9F7E-469ABBC14A6A}" = protocol=6 | dir=in | app=c:\program files (x86)\autodesk\backburner\manager.exe |
"{E40D6DD1-41D9-43D1-BE1B-464B74B12B2C}" = protocol=17 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe |
"{E75F3A35-0D3A-4F38-AF53-834DDC86CF4B}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{E7730551-F244-41B9-9146-E7327CA7A4B0}" = protocol=6 | dir=in | app=c:\users\thrasherstudios77\appdata\local\google\google talk plugin\googletalkplugin.exe |
"{E8CCD8F3-9525-4A01-860B-364DFD39592D}" = protocol=17 | dir=in | app=c:\program files (x86)\autodesk\backburner\monitor.exe |
"{EBA4BC5E-5B56-491A-98CD-BCAD0C25537A}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{EEE93417-2C5E-40A4-8E0E-C201321BAF43}" = dir=in | app=c:\program files (x86)\hewlett-packard\media\dvd\hptouchsmartphoto.exe |
"{EFC842CA-08DC-41BB-A598-1F67A09C19C0}" = protocol=6 | dir=in | app=c:\program files (x86)\autodesk\backburner\server.exe |
"{F021F512-E0C5-43EA-9ED5-4FBB589079F9}" = dir=in | app=c:\program files (x86)\hewlett-packard\media\dvd\hpdvdsmart.exe |
"{F1368BEB-BC97-461E-A7C8-51684C5B0819}" = protocol=17 | dir=in | app=c:\program files\autodesk\3ds max 2009\3dsmax.exe |
"{F536C824-CD9E-4BAD-8A1A-3986D17D9353}" = protocol=6 | dir=in | app=c:\program files (x86)\skype\plugin manager\skypepm.exe |
"{F780DE8A-1711-4E82-816D-02895B80F24D}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{F9299A42-025F-49FF-8EE9-C76CE72039BC}" = protocol=6 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe |
"{FEB52FBE-FD48-4FDF-B6F5-378B77ACE9CE}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |

========== HKEY_LOCAL_MACHINE Uninstall List ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{03D1988F-469F-4843-8E6E-E5FE9D17889D}" = HP Integrated Module with Bluetooth wireless technology 6.0.1.6204
"{071c9b48-7c32-4621-a0ac-3f809523288f}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{155AB5E8-9913-0409-A7E7-D076DDE2AA6C}" = Autodesk 3ds Max 2009 64-bit Architectural Materials Library
"{227B4E66-B95F-46B8-8E86-740D5CBFC65C}" = Maya 2009 (64-bit)
"{284B452E-075E-4C7B-B8EE-E4A798CC3772}" = Maya 2010 (64-bit)
"{295CFB7C-A57E-4313-93E7-68E7CE1D0332}" = Adobe WinSoft Linguistics Plugin x64
"{2B80C356-CA93-433D-814C-BF4CBF3195C2}" = Maya 2010 (64-bit) Documentation (en_US)
"{2D74E972-5A85-44DC-9193-8A302BA8C181}" = Photoshop Camera Raw_x64
"{2F97CE84-9C33-4631-821B-85EA371EA254}" = ProtectSmart Hard Drive Protection
"{4FFA2088-8317-3B14-93CD-4C699DB37843}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729
"{5BD1364B-58D6-0409-8633-9B8E8D0AD52F}" = Autodesk 3ds Max 2009 64-bit ProMaterials™ Library
"{6631325A-9B1B-4EE7-8E64-8CC4A6F10643}" = Adobe Fonts All x64
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{8875A1C0-6308-4790-8CF6-D34E89880052}" = Adobe Linguistics CS4 x64
"{887797BF-37A5-4199-B0C9-0D38D6196E9A}" = Adobe Anchor Service x64 CS4
"{8C8D673B-20FB-43E6-BCB7-9B3F78F2E762}" = Adobe Type Support x64 CS4
"{8DAA31EB-6830-4006-A99F-4DF8AB24714F}" = Adobe CSI CS4 x64
"{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007
"{90120000-002A-0409-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (English) 2007
"{90120000-0116-0409-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2007
"{90BA8112-80B3-4617-A3C1-BD2771B60F74}" = Adobe CMaps x64 CS4
"{92A3CA0D-55CD-4C5D-BA95-5C2600C20F26}" = Microsoft_VC90_CRT_x86_x64
"{9EFC40E3-5F31-4F75-8445-286273F74D8E}" = Apple Mobile Device Support
"{A3454894-144A-4D80-B605-C128FE0D7329}" = Adobe Drive CS4 x64
"{B37A99DD-88E2-4ED0-80B4-1E054AB354BF}" = Adobe InDesign CS4 Icon Handler x64
"{C9C243B9-03BD-44BA-A592-AB09630AE2D2}" = iTunes
"{CD853BA5-AA85-0409-85DC-A805D779DCA8}" = Autodesk 3ds Max 2009 64-bit Additional Maps and Material Libraries
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{D2F7994F-661E-46D1-A1DF-67F2887AAA7E}" = HP MediaSmart SmartMenu
"{D40172D6-CE2D-4B72-BF5F-26A04A900B7B}" = Adobe Photoshop CS4 (64 Bit)
"{D44BCDFB-817B-4C14-8551-915E8B9DDD8B}" = Maya 2009 (64-bit) Documentation (en_US)
"{DAE239CE-EB9D-4EB3-B0D4-528D6BAA48FD}" = Bonjour
"{DFFABE78-8173-4E97-9C5C-22FB26192FC5}" = Adobe PDF Library Files x64 CS4
"{EC2280DF-BBAF-0409-9359-BCCD15545FFB}" = Autodesk 3ds Max 2009 64-bit
"{EC4EBC45-30AF-4F3C-B2B5-2FAF3FF9A1D1}" = Autodesk DirectConnect 2009 (64-bit)
"{F234D312-1121-4252-9679-06CA1A937615}" = Livedrive
"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
"{F862F297-2252-47E7-986B-B3EC02ADBF65}" = TortoiseSVN 1.6.5.16974 (64 bit)
"Agere Systems Soft Modem" = Agere Systems HDA Modem
"B30ECD0209A21D638611F893829C8AF3A483A302" = Windows Driver Package - ENE (enecir) HIDClass (04/29/2008 2.5.0.0)
"FBX Plugin 2009.0 for Max 2009 64" = FBX Plugin 2009.0 for Max 2009 64
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"NVIDIA Drivers" = NVIDIA Drivers
"SynTPDeinstKey" = Synaptics Pointing Device Driver
"V-Ray for Maya 2009 for x64" = V-Ray for Maya 2009 for x64

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{004685F7-9FB6-4789-812F-59ABB34A55AF}" = Adobe Setup
"{0054A0F6-00C9-4498-B821-B5C9578F433E}" = HP Help and Support
"{00ADFB20-AE75-46F4-AD2C-F48B15AC3100}" = Adobe Color NA Recommended Settings CS4
"{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = HP MediaSmart Webcam
"{0224CACC-994D-45F8-B973-D65056EA9C2F}" = Adobe XMP DVA Panels CS3
"{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}" = Microsoft_VC90_ATL_x86
"{05308C4E-7285-4066-BAE3-6B50DA6ED755}" = Adobe Update Manager CS4
"{054EFA56-2AC1-48F4-A883-0AB89874B972}" = Adobe Extension Manager CS4
"{082702D5-5DD8-4600-BCE5-48B15174687F}" = HP Doc Viewer
"{08B32819-6EEF-4057-AEDA-5AB681A36A23}" = Adobe Bridge Start Meeting
"{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86
"{098727E1-775A-4450-B573-3F441F1CA243}" = kuler
"{0D2DBE8A-43D0-7830-7AE7-CA6C99A832E7}" = Adobe Community Help
"{0D6013AB-A0C7-41DC-973C-E93129C9A29F}" = Adobe Color JA Extra Settings CS4
"{0E7DBD52-B097-4F2B-A7C7-F105B0D20FDB}" = LightScribe System Software 1.14.17.1
"{0F3647F8-E51D-4FCC-8862-9A8D0C5ACF25}" = Microsoft_VC80_ATL_x86
"{0F723FC1-7606-4867-866C-CE80AD292DAF}" = Adobe CSI CS4
"{10B39DCD-0325-49FE-BFBC-8EC011CB7CA8}" = ACID Pro 7.0
"{121634B0-2F4B-11D3-ADA3-00C04F52DD52}" = Windows Installer Clean Up
"{1451DE6B-ABE1-4F62-BE9A-B363A17588A2}" = QuickTime
"{149BBCB8-674F-48D2-969C-9D0EA88DA7D6}" = HP User Guides 0129
"{14F70205-1940-4000-88C7-BE799A6B2CAD}" = Adobe Soundbooth CS4
"{15BC8CD0-A65B-47D0-A2DD-90A824590FA8}" = Microsoft Works
"{15BF7AAF-846C-4A6D-80E1-5D1FC7FB461B}" = Adobe SGM CS4
"{1618734A-3957-4ADD-8199-F973763109A8}" = Adobe Anchor Service CS4
"{16E16F01-2E2D-4248-A42F-76261C147B6C}" = Adobe Drive CS4
"{16E6D2C1-7C90-4309-8EC4-D2212690AAA4}" = AdobeColorCommonSetRGB
"{184CE391-7E0E-4C63-9935-D7A10EDFD3C6}" = Adobe WinSoft Linguistics Plugin
"{193EAFD0-1BAF-4FB4-B18F-79D5D6A4B285}" = Adobe After Effects CS3 Presets
"{1B7C06E1-4888-47A6-992A-0990B9683486}" = Adobe Version Cue CS4 Server
"{1DCA3EAA-6EB5-4563-A970-EA14D75037BA}" = Adobe InDesign CS4
"{1E04CB54-AF4E-4AC3-B4B7-C0A160BE57F1}" = Adobe InDesign CS4 Icon Handler
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{2168245A-B5AD-40D8-A641-48E3E070B5B6}" = Adobe Flash CS4 STI-en
"{254C37AA-6B72-4300-84F6-98A82419187E}" = Hewlett-Packard Active Check for Health Check
"{26604C7E-A313-4D12-867F-7C6E7820BE4C}" = JMicron JMB38X Flash Media Controller
"{26A24AE4-039D-4CA4-87B4-2F83216019FF}" = Java™ 6 Update 19
"{297190A1-4B0D-4CD6-8B9F-3907F15C3FD8}" = Adobe CS4 American English Speech Analysis Models
"{29E5EA97-5F74-4A57-B8B2-D4F169117183}" = Adobe Stock Photos CS3
"{2BAF2B96-7560-48B4-87D4-10178DDBE217}" = Adobe InDesign CS4 Application Feature Set Files (Roman)
"{30C8AA56-4088-426F-91D1-0EDFD3A25678}" = Adobe Dreamweaver CS4
"{30D3B7BC-5798-45D9-822D-05CA18F39E99}" = HPTCSSetup
"{3248F0A8-6813-11D6-A77B-00B0D0160070}" = Java™ 6 Update 7
"{34D2AB40-150D-475D-AE32-BD23FB5EE355}" = HP Quick Launch Buttons 6.40 H2
"{35D94F92-1D3A-43C5-8605-EA268B1A7BD9}" = PDF Settings CS4
"{3877C901-7B90-4727-A639-B6ED2DD59D43}" = ESU for Microsoft Vista
"{39F3977A-B30F-5A73-2F13-6885083CB4E8}" = FontAssetCreator
"{39F6E2B4-CFE8-C30A-66E8-489651F0F34C}" = Adobe Media Player
"{3A4E8896-C2E7-4084-A4A4-B8FD1894E739}" = Adobe XMP Panels CS4
"{3D2C9DE6-9ADE-4252-A241-E43723B0CE02}" = Adobe Color - Photoshop Specific CS4
"{3D347E6D-5A03-4342-B5BA-6A771885F379}" = Autodesk Backburner 2008.1
"{3DA8DF9A-044E-46C4-8531-DEDBB0EE37FF}" = Adobe WinSoft Linguistics Plugin
"{3FA365DF-2D68-45ED-8F83-8C8A33E65143}" = Apple Application Support
"{40BF1E83-20EB-11D8-97C5-0009C5020658}" = Power2Go
"{415521FE-30CB-0EDF-A648-D406D885D5FD}" = IMD3004_TP_AyanRay
"{4286E640-B5FB-11DF-AC4B-005056C00008}" = Google Earth
"{428FDF9F-E010-4C4C-A8BB-156960AFCA1C}" = Adobe Fireworks CS4
"{43509E18-076E-40FE-AF38-CA5ED400A5A9}" = Pixel Bender Toolkit
"{4458C442-7376-4CF9-AF58-E8CEA6722363}" = Adobe Setup
"{44E240EC-2224-4078-A88B-2CEE0D3016EF}" = Adobe After Effects CS4 Presets
"{45A136EC-88BF-4B95-99F5-C45D3930E1CC}" = HP MULTIPLE MODEM INSTALLER for VISTA
"{45EC816C-0771-4C14-AE6D-72D1B578F4C8}" = Adobe After Effects CS4
"{4943EFF5-229F-435D-BEA9-BE3CAEA783A7}" = Adobe Service Manager Extension
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4A52555C-032A-4083-BDD9-6A85ABFB39A8}" = Adobe SING CS4
"{52232EF4-CC12-4C21-ABCF-ADB79618302D}" = Adobe Soundbooth CS4 Codecs
"{53FA9A9F-3C19-4D43-AD6B-DEF365D469BA}" = Camtasia Studio 7
"{54793AA1-5001-42F4-ABB6-C364617C6078}" = Adobe Linguistics CS3
"{5570C7F0-43D0-4916-8A9E-AEDD52FA86F4}" = Adobe Color EU Extra Settings CS4
"{561968FD-56A1-49FD-9ED0-F55482C7C5BC}" = Adobe Media Encoder CS4 Exporter
"{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
"{57A5AEC1-97FC-474D-92C4-908FCC2253D4}" = HP Customer Experience Enhancements
"{58F58158-8DFE-31DA-AC1F-7E5D89A0F74F}" = Google Talk Plugin
"{5DAA9C36-8F8B-462F-8CCA-E205BC3751F5}" = HP Active Support Library
"{5EAD5443-7194-46CC-A055-428E6ABB1BAF}" = Adobe Encore CS4
"{60DB5894-B5A1-4B62-B0F3-669A22C0EE5D}" = Adobe Dynamiclink Support
"{61D6891E-E822-4448-9F9A-0AAAAEB6AF6C}" = Adobe Creative Suite 4 Master Collection
"{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}" = Microsoft_VC90_MFC_x86
"{63C24A08-70F3-4C8E-B9FB-9F21A903801D}" = Adobe Color Video Profiles CS CS4
"{63E5CDBF-8214-4F03-84F8-CD3CE48639AD}" = Adobe Photoshop CS4 Support
"{65DA2EC9-0642-47E9-AAE2-B5267AA14D75}" = Activation Assistant for the 2007 Microsoft Office suites
"{669D4A35-146B-4314-89F1-1AC3D7B88367}" = Hewlett-Packard Asset Agent for Health Check
"{67574624-BF0F-0409-AF6D-19FBD86FF7F7}" = Autodesk 3ds Max 2011 32-bit
"{67626E09-5366-4480-8F1E-93FADF50CA15}" = HP MediaSmart TV
"{67A9747A-E1F5-4E9A-81CC-12B5D5B81B6E}" = Adobe After Effects CS4 Third Party Content
"{67F0E67A-8E93-4C2C-B29D-47C48262738A}" = Adobe Device Central CS4
"{68243FF8-83CA-466B-B2B8-9F99DA5479C4}" = AdobeColorCommonSetCMYK
"{6956856F-B6B3-4BE0-BA0B-8F495BE32033}" = Apple Software Update
"{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin
"{6A370610-3778-44AF-9AAC-69B2FD1A3356}" = Microsoft Live Search Toolbar
"{6B52140A-F189-4945-BFFC-DB3F00B8C589}" = Adobe Flash CS3
"{6BBAA81D-6A7E-43AD-8889-2F002DCAAFDD}" = AHV content for Acrobat and Flash
"{6E9EF98E-259E-416D-B5F8-0ABDB99942CE}" = Adobe Flash Player 10 ActiveX
"{6FF5DD7A-FE28-4439-B8CF-1E9AF4EA0A61}" = Adobe Asset Services CS3
"{72373D02-7E80-4261-91B7-E6F38541D629}" = VIPRE Antivirus + Antispyware
"{7406DF60-016D-476B-A2C7-55D997592047}" = Adobe OnLocation CS4
"{762EBEC5-7ADC-48DC-ADDE-882616730050}" = TransType Pro
"{793D1D88-6141-43DE-BE58-59BCE31B4090}" = Adobe Flash CS4 Extension - Flash Lite STI en
"{7ACFB90E-8FD0-4397-AD3A-5195412623A3}" = Adobe Help Viewer CS3
"{7CC7BDD5-6F10-4724-96A1-EAC7D9F2831C}" = Adobe InDesign CS4 Common Base Files
"{7ECEF10B-F1C2-4FD5-861F-A3FCB4653304}" = Adobe After Effects CS3 Third Party Content
"{8186FF34-D389-4B7E-9A2F-C197585BCFBD}" = Adobe Media Encoder CS4 Importer
"{820D3F45-F6EE-4AAF-81EF-CE21FF21D230}" = Adobe Type Support CS4
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{83877DB1-8B77-45BC-AB43-2BAC22E093E0}" = Adobe Bridge CS4
"{842B4B72-9E8F-4962-B3C1-1C422A5C4434}" = Suite Shared Configuration CS4
"{8718DC03-D066-4957-94E5-50C3C5042E8E}" = Adobe Creative Suite 3 Master Collection
"{87532CAB-7932-4F84-8937-823337622807}" = Adobe Illustrator CS4
"{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek 8169 8168 8101E 8102E Ethernet Driver
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8D2BA474-F406-4710-9AE4-D4F22D21F0DD}" = Adobe Device Central CS3
"{90120000-0011-0000-0000-0000000FF1CE}" = Microsoft Office Professional Plus 2007
"{90120000-0015-0409-0000-0000000FF1CE}" = Microsoft Office Access MUI (English) 2007
"{90120000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2007
"{90120000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2007
"{90120000-0019-0409-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (English) 2007
"{90120000-001A-0409-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (English) 2007
"{90120000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
"{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007
"{90120000-0020-0409-0000-0000000FF1CE}" = Compatibility Pack for the 2007 Office system
"{90120000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2007
"{90120000-0044-0409-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (English) 2007
"{90120000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2007
"{90120000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2007
"{90120000-0117-0409-0000-0000000FF1CE}" = Microsoft Office Access Setup Metadata MUI (English) 2007
"{90176341-0A8B-4CCC-A78D-F862228A6B95}" = Adobe Anchor Service CS3
"{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86
"{931AB7EA-3656-4BB7-864D-022B09E3DD67}" = Adobe Linguistics CS4
"{94D398EB-D2FD-4FD1-B8C4-592635E8A191}" = Adobe CMaps CS4
"{95120000-00AF-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint Viewer 2007 (English)
"{981029E0-7FC9-4CF3-AB39-6F133621921A}" = Skype Toolbars
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9ADABDDE-9644-461B-9E73-83FA3EFCAB50}" = HP Wireless Assistant
"{9C9824D9-9000-4373-A6A5-D0E5D4831394}" = Adobe Bridge CS3
"{9DEABCB6-B759-4D52-92F8-51B34A2B4D40}" = Autodesk Material Library 2011
"{A6EC82A0-1414-475D-8AFD-469089F3080D}" = Adobe Contribute CS4
"{A78FE97A-C0C8-49CE-89D0-EDD524A17392}" = PDF Settings CS5
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AC76BA86-1033-F400-7760-000000000004}" = Adobe Acrobat 9 Pro - English, Français, Deutsch
"{B05DE7B7-0B40-4411-BD4B-222CAE2D8F15}" = Adobe MotionPicture Color Files CS4
"{B07EA8AD-650E-47E4-B1D4-851C9AD75A10}" = Autodesk 3ds Max 2011 32-bit Trial Update
"{B15381DD-FF97-4FCD-A881-ED4DB0975500}" = Adobe Color Video Profiles AE CS4
"{B169BC97-B8AA-4ACA-9CF2-9D0FF5BABDF7}" = Adobe Premiere Pro CS4 Functional Content
"{B194272D-1F92-46DF-99EB-8D5CE91CB4EC}" = Adobe AIR
"{B29AD377-CC12-490A-A480-1452337C618D}" = Connect
"{B2EE25B9-5B00-4ACF-94F0-92433C28C39E}" = HP MediaSmart Music/Photo/Video
"{B3BF6689-A81D-40D8-9A86-4AC4ACD9FC1C}" = Adobe Camera Raw 4.0
"{B65BA85C-0A27-4BC0-A22D-A66F0E5B9494}" = Adobe Photoshop CS4
"{B671CBFD-4109-4D35-9252-3062D3CCB7B2}" = Adobe SING CS3
"{B73CFB12-C814-4638-AFFD-7E3AAFAF0B4E}" = Adobe BridgeTalk Plugin CS3
"{B9F4561A-924D-4510-A85A-BB0960C338CB}" = Adobe Asset Services CS4
"{BA0073D7-8EB1-3A19-2ED9-665AA6843468}" = Images Converter
"{BB4E33EC-8181-4685-96F7-8554293DEC6A}" = Adobe Output Module
"{BC41C09D-FAA9-4346-9FE6-1E0017BC551A}" = Adobe Flash Player 10 Plugin
"{BCDB856C-D247-4DEE-9132-89C02F4D6B8C}_is1" = Sothink SWF Decompiler
"{BE5F3842-8309-4754-92D5-83E02E6077A3}" = Adobe Extension Manager CS3
"{BE9CEAAA-F069-4331-BF2F-8D350F6504F4}" = Adobe Media Encoder CS4 Additional Exporter
"{C2D69781-F392-4118-A5A7-C7E9C38DBFC2}" = Adobe ExtendScript Toolkit 2
"{C52E3EC1-048C-45E1-8D53-10B0C6509683}" = Adobe Default Language CS4
"{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = LabelPrint
"{C5BD220A-EFE8-48A5-B70E-9503D535FACE}" = Adobe WAS CS3
"{C86E7C99-E4AD-79C7-375B-1AEF9A91EC2B}" = Acrobat.com
"{C8FD5BC1-92EF-4C15-92A9-F9AC7F61985F}" = HP Update
"{C938BE91-3BB5-4B84-9EF6-88F0505D0038}" = Adobe Premiere Pro CS4 Third Party Content
"{CAAB0192-5704-469F-A0BE-2D842D70E93B}_is1" = Sothink FLV Player
"{CB099890-1D5F-11D5-9EA9-0050BAE317E1}" = PowerDirector
"{CC75AB5C-2110-4A7F-AF52-708680D22FE8}" = Photoshop Camera Raw
"{CF097717-F174-4144-954A-FBC4BF301033}" = Nero 7 Ultra Edition
"{CFC9F871-7C40-40B6-BE4A-B98A5B309716}" = Adobe Flash Professional CS5
"{D0DFF92A-492E-4C40-B862-A74A173C25C5}" = Adobe Version Cue CS3 Client
"{D103C4BA-F905-437A-8049-DB24763BBE36}" = Skype™ 4.2
"{D1A19B02-817E-4296-A45B-07853FD74D57}" = Microsoft_VC80_MFC_x86
"{D36DD326-7280-11D8-97C8-000129760CBE}" = PhotoNow!
"{D499F8DE-3F31-4900-9157-61061613704B}" = Adobe Premiere Pro CS4
"{D5A31AB1-345D-47C7-A87B-036A669F6DF1}" = Adobe XMP Panels CS3
"{D6E4E5D6-7693-4BB4-95BA-21F38FAFEE90}" = Safari
"{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}" = Microsoft_VC80_MFCLOC_x86
"{DCCAD079-F92C-44DA-B258-624FC6517A5A}" = HP MediaSmart DVD
"{DEB90B8E-0DCB-48CE-B90E-8842A2BD643E}" = Adobe Media Encoder CS4
"{E1E502E2-C006-49DB-9C0C-F2196E51826F}_is1" = Rootkit Unhooker LE 3.8 SR 2
"{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}" = IDT Audio
"{E69AE897-9E0B-485C-8552-7841F48D42D8}" = Adobe Update Manager CS3
"{E7081891-BC7F-43F9-9CE6-B5DD2F497156}" = Internet Explorer Developer Toolbar
"{E8EE9410-8AC4-4F43-A626-DDECA75C79F3}" = Adobe Setup
"{EA7B3CC4-366D-4CF6-8350-FD7A7034116E}" = Adobe InDesign CS3 Icon Handler
"{EB0202F7-016A-410C-ADE4-40F848CCC661}" = Adobe After Effects CS3
"{EE353798-E875-42E0-B58D-7E6696182EA8}" = Adobe Media Encoder CS4 Dolby
"{F0E64E2E-3A60-40D8-A55D-92F6831875DA}" = Adobe Search for Help
"{F6E99614-F042-4459-82B7-8B38B2601356}" = Adobe Flash CS4
"{F8EF2B3F-C345-4F20-8FE4-791A20333CD5}" = Adobe ExtendScript Toolkit CS4
"{F93C84A6-0DC6-42AF-89FA-776F7C377353}" = Adobe PDF Library Files CS4
"{FB2A5FCC-B81B-48C2-A009-7804694D83E9}" = Adobe Encore CS4 Codecs
"{FCDD51BB-CAD0-4BB1-B7DF-CE86D1032794}" = Adobe Fonts All
"{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
"Activation Assistant for the 2007 Microsoft Office suites" = Activation Assistant for the 2007 Microsoft Office suites
"Adobe AIR" = Adobe AIR
"Adobe Shockwave Player" = Adobe Shockwave Player 11.5
"Adobe_3675c95c239b992d5d0ee8fce969b9e" = Adobe After Effects CS3 Third Party Content
"Adobe_4dcfd9b7e901b57f81f667144603236" = Add or Remove Adobe Creative Suite 3 Master Collection
"Adobe_b2d6abde968e6f277ddbfd501383e02" = Adobe Creative Suite 4 Master Collection
"Akamai" = Akamai NetSession Interface
"Autodesk FBX Plug-in 2011.1 - 3ds Max 2011" = Autodesk FBX Plug-in 2011.1 - 3ds Max 2011
"Browser Defender_is1" = Browser Defender 3.0.0.11
"chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Community Help
"com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Media Player
"com.adobe.example.IMD3004-TP-AyanRay.A8E8F84CF2F440486ACC6430681B7A47A2397C44.1" = IMD3004_TP_AyanRay
"com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Acrobat.com
"dBpoweramp DSP Effects" = dBpoweramp DSP Effects
"dBpoweramp Music Converter" = dBpoweramp Music Converter
"FileZilla Client" = FileZilla Client 3.3.1
"FlashDevelop" = FlashDevelop 3.0.6
"Flv Recorder_is1" = FlvRecorder
"FLVTube Player" = FLVTube Player
"FontAssetCreator.E63CFD916955DC6EE813CE2DABAED9E82B43FF4F.1" = FontAssetCreator
"Google Chrome" = Google Chrome
"HP Wireless Elite Desktop_is1" = HP Wireless Elite Desktop
"ImagesConveter" = Images Converter
"InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = HP MediaSmart Webcam
"InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}" = Power2Go
"InstallShield_{67626E09-5366-4480-8F1E-93FADF50CA15}" = HP MediaSmart TV
"InstallShield_{B2EE25B9-5B00-4ACF-94F0-92433C28C39E}" = HP MediaSmart Music/Photo/Video
"InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = LabelPrint
"InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1}" = PowerDirector
"InstallShield_{D36DD326-7280-11D8-97C8-000129760CBE}" = PhotoNow!
"InstallShield_{DCCAD079-F92C-44DA-B258-624FC6517A5A}" = HP MediaSmart DVD
"IsoBuster_is1" = IsoBuster 2.6
"MainType3_is1" = High-Logic MainType 3.0
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"Mozilla Firefox (3.5.15)" = Mozilla Firefox (3.5.15)
"NIS" = Norton Internet Security
"PROPLUS" = Microsoft Office Professional Plus 2007
"Spyware Doctor" = Spyware Doctor 7.0
"SWiSH Max2" = SWiSH Max2
"Total Audio Converter_is1" = TotalAudioConverter
"Trapcode 3DStroke" = Trapcode 3DStroke
"Trapcode Form" = Trapcode Form
"Trapcode Horizon" = Trapcode Horizon
"Trapcode Lux" = Trapcode Lux
"Trapcode Particular" = Trapcode Particular
"Trapcode Shine" = Trapcode Shine
"Trapcode Starglow" = Trapcode Starglow
"uTorrent" = µTorrent
"VLC media player" = VLC media player 1.0.2
"V-Ray for 3dsmax 2010 for x86" = V-Ray for 3dsmax 2010 for x86
"Winamp" = Winamp
"WinPcapInst" = WinPcap 4.1.1
"WinRAR archiver" = WinRAR archiver
"Xilisoft FLV to MOV Converter" = Xilisoft FLV to MOV Converter 6
"Xvid_is1" = Xvid 1.2.2 final uninstall

========== HKEY_USERS Uninstall List ==========

[HKEY_USERS\S-1-5-21-2809757283-84445543-848142124-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"GoToMeeting" = GoToMeeting 4.1.0.366
"myHomey" = Homey
"UnityWebPlayer" = Unity Web Player
"Winamp Detect" = Winamp Detector Plug-in

========== Last 10 Event Log Errors ==========

[ Application Events ]
Error - 11/2/2010 1:51:24 AM | Computer Name = Eagle | Source = Application Error | ID = 1000
Description = Faulting application mdm.exe, version 1.0.0.0, time stamp 0x21475346,
faulting module mdm.exe, version 1.0.0.0, time stamp 0x21475346, exception code
0xc0000005, fault offset 0x00002dbe, process id 0x1240, application start time 0x01cb7a356eed9f4e.

Error - 11/2/2010 8:29:21 AM | Computer Name = Eagle | Source = Application Error | ID = 1000
Description = Faulting application rundll32.exe, version 6.0.6000.16386, time stamp
0x4549b0e1, faulting module uccaj.dll, version 0.0.0.0, time stamp 0x4c97903b,
exception code 0xc0000005, fault offset 0x000018de, process id 0x13c8, application
start time 0x01cb7a2cdd135efe.

Error - 11/2/2010 12:12:54 PM | Computer Name = Eagle | Source = Application Hang | ID = 1002
Description = The program 3dsmax.exe version 13.0.0.94 stopped interacting with
Windows and was closed. To see if more information about the problem is available,
check the problem history in the Problem Reports and Solutions control panel. Process
ID: 23d8 Start Time: 01cb7aa8373bee40 Termination Time: 413

Error - 11/2/2010 5:19:39 PM | Computer Name = Eagle | Source = Microsoft-Windows-CAPI2 | ID = 131083
Description =

Error - 11/2/2010 5:19:41 PM | Computer Name = Eagle | Source = Microsoft-Windows-CAPI2 | ID = 131083
Description =

Error - 11/2/2010 5:20:34 PM | Computer Name = Eagle | Source = Microsoft-Windows-CAPI2 | ID = 131083
Description =

Error - 11/2/2010 6:50:41 PM | Computer Name = Eagle | Source = Application Error | ID = 1000
Description = Faulting application iexplorer.exe, version 0.0.0.0, time stamp 0x21475346,
faulting module jscript.dll_unloaded, version 0.0.0.0, time stamp 0x4a27bf20, exception
code 0xc0000005, fault offset 0x6a185315, process id 0x2684, application start time
0x01cb7adef9fe92d0.

Error - 11/2/2010 8:22:36 PM | Computer Name = Eagle | Source = WinMgmt | ID = 10
Description =

Error - 11/2/2010 9:10:29 PM | Computer Name = Eagle | Source = EventSystem | ID = 4609
Description =

Error - 11/3/2010 8:59:34 AM | Computer Name = Eagle | Source = WinMgmt | ID = 10
Description =

[ Media Center Events ]
Error - 9/11/2009 6:01:40 AM | Computer Name = Eagle | Source = MCUpdate | ID = 0
Description = Failed to wait on MCUpdate mutex with exception: 'The wait completed
due to an abandoned mutex.'.

Error - 9/17/2009 6:01:40 AM | Computer Name = Eagle | Source = MCUpdate | ID = 0
Description = Failed to wait on MCUpdate mutex with exception: 'The wait completed
due to an abandoned mutex.'.

[ OSession Events ]
Error - 7/16/2010 12:25:43 PM | Computer Name = Eagle | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version:
12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 249337
seconds with 3060 seconds of active time. This session ended with a crash.

Error - 8/14/2010 4:23:06 AM | Computer Name = Eagle | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 42
seconds with 0 seconds of active time. This session ended with a crash.

Error - 8/14/2010 5:06:46 AM | Computer Name = Eagle | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 2595
seconds with 120 seconds of active time. This session ended with a crash.

Error - 8/14/2010 5:07:39 AM | Computer Name = Eagle | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 45
seconds with 0 seconds of active time. This session ended with a crash.

Error - 8/14/2010 5:09:29 AM | Computer Name = Eagle | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 82
seconds with 60 seconds of active time. This session ended with a crash.

Error - 8/14/2010 5:10:17 AM | Computer Name = Eagle | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 41
seconds with 0 seconds of active time. This session ended with a crash.

Error - 8/17/2010 7:08:21 PM | Computer Name = Eagle | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 44
seconds with 0 seconds of active time. This session ended with a crash.

Error - 8/17/2010 7:32:56 PM | Computer Name = Eagle | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 6
seconds with 0 seconds of active time. This session ended with a crash.

Error - 8/18/2010 7:31:48 PM | Computer Name = Eagle | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 154
seconds with 60 seconds of active time. This session ended with a crash.

Error - 8/31/2010 1:05:45 PM | Computer Name = Eagle | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version:
12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 409359
seconds with 11520 seconds of active time. This session ended with a crash.

[ System Events ]
Error - 11/10/2010 11:04:12 PM | Computer Name = Eagle | Source = Service Control Manager | ID = 7000
Description =

Error - 11/10/2010 11:04:46 PM | Computer Name = Eagle | Source = DCOM | ID = 10005
Description =

Error - 11/10/2010 11:04:46 PM | Computer Name = Eagle | Source = Service Control Manager | ID = 7009
Description =

Error - 11/10/2010 11:04:46 PM | Computer Name = Eagle | Source = Service Control Manager | ID = 7000
Description =

Error - 11/10/2010 11:05:52 PM | Computer Name = Eagle | Source = PlugPlayManager | ID = 12
Description = The device 'JMB38X SD/MMC Host Controller' (PCI\VEN_197B&DEV_2382&SUBSYS_30F4103C&REV_00\4&120488ab&0&01E4)
disappeared from the system without first being prepared for removal.

Error - 11/10/2010 11:05:52 PM | Computer Name = Eagle | Source = PlugPlayManager | ID = 12
Description = The device 'JMB38X SD Host Controller' (PCI\VEN_197B&DEV_2381&SUBSYS_30F4103C&REV_00\4&120488ab&0&02E4)
disappeared from the system without first being prepared for removal.

Error - 11/10/2010 11:05:52 PM | Computer Name = Eagle | Source = PlugPlayManager | ID = 12
Description = The device 'JMB38X MS Host Controller' (PCI\VEN_197B&DEV_2383&SUBSYS_30F4103C&REV_00\4&120488ab&0&03E4)
disappeared from the system without first being prepared for removal.

Error - 11/10/2010 11:05:52 PM | Computer Name = Eagle | Source = PlugPlayManager | ID = 12
Description = The device 'JMB38X xD Host Controller' (PCI\VEN_197B&DEV_2384&SUBSYS_30F4103C&REV_00\4&120488ab&0&04E4)
disappeared from the system without first being prepared for removal.

Error - 11/10/2010 11:09:31 PM | Computer Name = Eagle | Source = Service Control Manager | ID = 7022
Description =

Error - 11/11/2010 11:58:30 AM | Computer Name = Eagle | Source = Service Control Manager | ID = 7034
Description =


< End of report >

#9 Elise

Elise

    Bleepin' Blonde


  • Malware Study Hall Admin
  • 61,065 posts
  • ONLINE
  •  
  • Gender:Female
  • Location:Romania
  • Local time:11:04 PM

Posted 12 November 2010 - 06:54 AM

Hi there, lets start fixing some things here. Let me know how things are afterwards.

OTL FIX
------------
We need to run an OTL Fix
  • Please reopen Posted Image on your desktop.
  • Copy and Paste the following code into the Posted Image textbox.
    :otl
    IE - HKU\S-1-5-21-2809757283-84445543-848142124-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = http=127.0.0.1:6092
    FF - prefs.js..browser.search.defaulturl: "http://fl.iamwired.net/websearch.php?src=tops&search="
    FF - prefs.js..browser.startup.homepage: "http://fl.iamwired.net/"
    
    :commands
    [emptytemp]
    [resethosts]
    
    
  • Push Posted Image
  • OTL may ask to reboot the machine. Please do so if asked.
  • Click Posted Image.
  • A report will open. Copy and Paste that report in your next reply.

I cannot create a script for all of it, because it would be huge. I'm hoping MBAM will pick up some.

Please launch Malwarebytes Antimalware, update it and run a full scan. Post me the resulting log.

regards, Elise


"Now faith is the substance of things hoped for, the evidence of things not seen."

 

Follow BleepingComputer on: Facebook | Twitter | Google+ | lockerdome

 

Malware analyst @ Emsisoft


#10 media prime

media prime
  • Topic Starter

  • Members
  • 34 posts
  • OFFLINE
  •  
  • Local time:03:04 PM

Posted 12 November 2010 - 11:42 AM

I forgot to mention 1 other problem I have, on restart 2 windows popup showing DLL Load Errors which are:

Error loading C:\Windows\system32\jseg0.dll
The specified module could not be found

Error loading C:\Windows\system32\uccaj.dll
The specified module could not be found

And here is my OTL Log

All processes killed
========== OTL ==========
HKU\S-1-5-21-2809757283-84445543-848142124-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyServer| /E : value set successfully!
Prefs.js: "http://fl.iamwired.net/websearch.php?src=tops&search=" removed from browser.search.defaulturl
Prefs.js: "http://fl.iamwired.net/" removed from browser.startup.homepage
========== COMMANDS ==========

[EMPTYTEMP]

User: Administrator
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 17723803 bytes
->Java cache emptied: 0 bytes
->Apple Safari cache emptied: 13182976 bytes
->Flash cache emptied: 4859 bytes

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
->Flash cache emptied: 56504 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: Public

User: thrasherstudios77
->Temp folder emptied: 3392988883 bytes
->Temporary Internet Files folder emptied: 47159783 bytes
->Java cache emptied: 670467 bytes
->FireFox cache emptied: 79015259 bytes
->Google Chrome cache emptied: 248520314 bytes
->Apple Safari cache emptied: 14232576 bytes
->Flash cache emptied: 2312347 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 128226023 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 33170 bytes
RecycleBin emptied: 10469569982 bytes

Total Files Cleaned = 13,746.00 mb

File move failed. C:\Windows\System32\drivers\etc\Hosts scheduled to be moved on reboot.
HOSTS file reset successfully

OTL by OldTimer - Version 3.2.17.3 log created on 11122010_090840

Files\Folders moved on Reboot...
C:\Users\thrasherstudios77\AppData\Local\Temp\ehmsas.txt moved successfully.
File\Folder C:\Windows\temp\JETD7B8.tmp not found!
File move failed. C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TEUFVARG\desktop.ini scheduled to be moved on reboot.
File move failed. C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TBCDSPYY\desktop.ini scheduled to be moved on reboot.
File move failed. C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\PLQSVQP0\desktop.ini scheduled to be moved on reboot.
File move failed. C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6WNVUZOJ\desktop.ini scheduled to be moved on reboot.
File move failed. C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\desktop.ini scheduled to be moved on reboot.
File move failed. C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\desktop.ini scheduled to be moved on reboot.
File move failed. C:\Windows\System32\drivers\etc\Hosts scheduled to be moved on reboot.

Registry entries deleted on Reboot...

#11 Elise

Elise

    Bleepin' Blonde


  • Malware Study Hall Admin
  • 61,065 posts
  • ONLINE
  •  
  • Gender:Female
  • Location:Romania
  • Local time:11:04 PM

Posted 12 November 2010 - 12:03 PM

I will wait for this log. :)

Please launch Malwarebytes Antimalware, update it and run a full scan. Post me the resulting log.


regards, Elise


"Now faith is the substance of things hoped for, the evidence of things not seen."

 

Follow BleepingComputer on: Facebook | Twitter | Google+ | lockerdome

 

Malware analyst @ Emsisoft


#12 media prime

media prime
  • Topic Starter

  • Members
  • 34 posts
  • OFFLINE
  •  
  • Local time:03:04 PM

Posted 12 November 2010 - 12:18 PM

yep on it...just takes about 4 hours to run a full scan with Malwarebytes

#13 Elise

Elise

    Bleepin' Blonde


  • Malware Study Hall Admin
  • 61,065 posts
  • ONLINE
  •  
  • Gender:Female
  • Location:Romania
  • Local time:11:04 PM

Posted 12 November 2010 - 12:30 PM

No problem, I'll wait for the log.

regards, Elise


"Now faith is the substance of things hoped for, the evidence of things not seen."

 

Follow BleepingComputer on: Facebook | Twitter | Google+ | lockerdome

 

Malware analyst @ Emsisoft


#14 media prime

media prime
  • Topic Starter

  • Members
  • 34 posts
  • OFFLINE
  •  
  • Local time:03:04 PM

Posted 12 November 2010 - 08:39 PM

Wow that took a long time 7.5 hours. Do you have any tricks to shortening the time to run a full scan with MalwareBytes, I see it scanning folders I know don't need it. Would help us if we need to do any future scans...thanks


Here is my Malwarebtyes log

Malwarebytes' Anti-Malware 1.46
www.malwarebytes.org

Database version: 5100

Windows 6.0.6001 Service Pack 1
Internet Explorer 7.0.6001.18000

11/12/2010 6:34:11 PM
mbam-log-2010-11-12 (18-34-11).txt

Scan type: Full scan (C:\|)
Objects scanned: 1169067
Time elapsed: 7 hour(s), 37 minute(s), 30 second(s)

Memory Processes Infected: 5
Memory Modules Infected: 2
Registry Keys Infected: 8
Registry Values Infected: 139
Registry Data Items Infected: 2
Folders Infected: 0
Files Infected: 30

Memory Processes Infected:
C:\Windows\winamp.exe (Trojan.Downloader) -> No action taken.
C:\Windows\winlogon.exe (Trojan.Downloader) -> No action taken.
C:\Windows\hexdump.exe (Trojan.Downloader) -> No action taken.
C:\Windows\lsass.exe (Trojan.Downloader) -> No action taken.
C:\Windows\win16.exe (Trojan.Downloader) -> No action taken.

Memory Modules Infected:
C:\Windows\System32\uccaj.dll (Trojan.Downloader) -> No action taken.
C:\Windows\System32\jseg0.dll (Trojan.Downloader) -> No action taken.

Registry Keys Infected:
HKEY_CLASSES_ROOT\CLSID\{b1ba40a1-75f2-51bd-f313-04b03a2c8953} (Trojan.Ertfor) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{b1ba40a2-75f2-51bd-f413-04b13a2c8953} (Trojan.Ertfor) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{b1ba40a2-75f2-51bd-f413-04b13a2c8953} (Trojan.Ertfor) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{fe4c2c37-edc8-4c00-b864-3c38cf3ba834} (Adware.Adshot) -> No action taken.
HKEY_CURRENT_USER\Software\avsuite (Rogue.AntivirusSuite) -> No action taken.
HKEY_CURRENT_USER\Software\SolutionAV (Rogue.AntivirSolutionPro) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\wnxmal (Rogue.SecuritySuite) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\avsuite (Rogue.AntivirusSuite) -> No action taken.

Registry Values Infected:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\upc+kt0nlxjsiv (Trojan.Downloader) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\upc+kt0nlxjsiv (Trojan.Downloader) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\upc+kt0nnkjsiv (Trojan.Downloader) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\upc+kt0nnkjsiv (Trojan.Downloader) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\mqvpe (Trojan.Downloader) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\mqvpeyra.com&p=r0lgodlhyaa8apcaaaaaaiaaaacaaicaaaaagiaagacagicagmdawp8aaad/ap//aaaa//8a/wd/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 (Trojan.Downloader) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\mqvpe (Trojan.Downloader) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\mqvpeyra.com&p=r0lgodlhyaa8apcaaaaaaiaaaacaaicaaaaagiaagacagicagmdawp8aaad/ap//aaaa//8a/wd/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 (Trojan.Downloader) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\mqvsc (Trojan.Downloader) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\mqvscla/5.0 (windows; u; windows nt 5.1; en-us; rv:1.9) gecko/2008052906 firefox/3.0 (Trojan.Downloader) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\mqvsc (Trojan.Downloader) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\mqvscla/5.0 (windows; u; windows nt 5.1; en-us; rv:1.9) gecko/2008052906 firefox/3.0 (Trojan.Downloader) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\mqrtc (Trojan.Downloader) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\mqrtcsonalift.com&p=r0lgodlhyaa8apcaaaaaaiaaaacaaicaaaaagiaagacagicagmdawp8aaad/ap//aaaa//8a/wd/
/////waaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaa
aaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaamwaazgaamqaazaaa/wazaaazmwazzgazmqazzaaz/wbm
aabmmwbmzgbmmqbmzabm/wczaaczmwczzgczmqczzacz/wdmaadmmwdmzgdmmqdmzadm/wd/aad/
mwd/zgd/mqd/zad//zmaadmamzmazjmamtmazdma/zmzadmzmzmzzjmzmtmzzdmz/znmadnmmznm
zjnmmtnmzdnm/zozadozmzozzjozmtozzdoz/zpmadpmmzpmzjpmmtpmzdpm/zp/adp/mzp/zjp/
mtp/zdp//2yaagyam2yazmyamwyazgya/2yzagyzm2yzzmyzmwyzzgyz/2zmagzmm2zmzmzmmwzm
zgzm/2azagazm2azzmazmwazzgaz/2bmagbmm2bmzmbmmwbmzgbm/2b/agb/m2b/zmb/mwb/zgb/
/5kaajkam5kazpkamzkazjka/5kzajkzm5kzzpkzmzkzzjkz/5lmajlmm5lmzplmmzlmzjlm/5mz
ajmzm5mzzpmzmzmzzjmz/5nmajnmm5nmzpnmmznmzjnm/5n/ajn/m5n/zpn/mzn/zjn//8waamwa
m8wazswamcwazmwa/8wzamwzm8wzzswzmcwzzmwz/8xmamxmm8xmzsxmmcxmzmxm/8yzamyzm8yz
zsyzmcyzzmyz/8zmamzmm8zmzszmmczmzmzm/8z/amz/m8z/zsz/mcz/zmz///8aap8am/8azv8a
mf8azp8a//8zap8zm/8zzv8zmf8zzp8z//9map9mm/9mzv9mmf9mzp9m//+zap+zm/+zzv+zmf+z
zp+z///map/mm//mzv/mmf/mzp/m////ap//m///zv//mf//zp///yh5baeaabaalaaaaadiadwa
aaj/ap8jheiwomgdcax68zowocohecnklein2sslgc1ibkixoezqqagtjnhxi8ssb1gavklwocub
h1pbnlmr5b+pncm2/bcyzewjmnmkrshyyvgxixp+hhrr5kyhhz0knmjwpswkpzfenflvquehur1s
xtjwd1wbyvfevqlyk9qnbum+dpu27le1ta++1pp1ykqswaugzwvqtyqkhl8ybztxmcikj33kjvx4
cty1bwcxppwxmskglbevpjy06d3mnungjrq5ndafkb9l3yqxj9pshvluttj1jucbohgnjhh4mumz
h2mrv+4znmwjue0x9fowm0/dwa1ardpwt/xh/xrp/37dpgt511pzjj85wbvvvm6lczu8uaxmwhgr
m7e/xhni5fcnf2b9ec1ml0idtrqxwo/5dsbtibvxeeovkrdzsjghskftgnggfmpggzwaho59f6jc
8evumoehdszffvm59ubwiyfg3f+gjqjxitbwx2bmvwge22yqdytceogl6ffv9hhv2ozhcxyvinur
rt9q7efujfe0uyclgu6pgkrxowqmoe06kkmcx1c6xnlfa2l30jgb0snrwfcpv6adurfkz0p/afen
diptd12hcij0megjkvymb36yscglgnjj6xo7nwymdh2liaggfkgg42h+yqrnz4meiunt0q3ky5s5
xf8kpueukvstp18lxivjia5luysowhylurww2+wunebokgfk5hjxyvnmgck0u0yhkxvy2gwaq5lp
antkzkeu6gawhukbwb3hygxcpfmbgrtwvosct14sukq563eukyl6cawzwooilahn34i0rybrrtsj
ndfg25wvuy4ln2alyuttto9adu1xfcdl77deoxivqhjuanvemmkbr7tuhllryh/7gz5u0jply4fp
jgutvf0vh3jnt5e27dbed+3qr3tygfk0jqa738mvo8vy0fg+yxnp+b4iulfi8dtwwsaxxfhvqrhd
o7fonzu0y/amrm1eamlke9nahddfrwzhahdbec7/jtdvvpvnsujf39d0sxghxvcn40ivmlxu8cvy
mlmssvdnddv8huebbs7mou6+g2lpprn9if04nwxwtv+attpmcp/8z9dwdslts0n/ekoilculam4m
/no5sckxpmumtaymwnnsllajvoh2bb7dq0euhebmrdnnqtzh7kyxemr79nvnwuk7njpxow9j6fwb
fa0wqb6ut7qfg+p+7x6ngucqorwtn2tpnef6j7ypyqpu8gir5rygvscpskeycvck1pk4251qdlyj
efpcbzjzpez1zntmmlkbmenfz2mdnfatwjtcafxjhcv6u2dezr7o+iz9odvx1w4hvxqxhs1b+9rd
/8ljlga2rocfod/fonpbax5qisrk14ce4jai4klr0onj1jaxkvrnyzbl4uzlkighu9goesbzdfya
5zqpekwwa6nay8jkeezpdckeyljkshjfxz3mhs45f4ikfbpqyqvhexmurjrtoyohssno3bcz60k2
yitoynfuyfhoc8ch1w1o/1ndhug2izbyphjzog7gcmosuylqykrc3se0ur19bqkl5rkhafsggkda
rynuqj+esjiy0sxfj3xswn9yukwp7sgm3btk86rekkymhfkejakad/axrwwuibidn9e+ceqz1eml
tagyuyivmxzvko/cco4zo/esqlnmkb9ifcxpw/+oqoeqchjyhzcfekryrdahzskgeyyukpgmlyrk
iafljktf82rfif6zhhffasallc472gom0ao2wucojcq4cadfvmmqjmhwaumywvwy50rmcmstwctd
yaifga9algsa4uv1ioousbleoqwk1e3grzdcrezwomfzrdsfrrh4z1jz9eporza0c/rnt9yjiqga
u7n7icqarosomkxle8mc7kh7iqr0ajm1g9lqzknu4uqbp7p5hwknw/eqxekwmowas0wik+cbbrub
xcfzqkykjv5g6rpetoypwmnzwrszoehbdabumrfyadqcrbufvwopoe75brjqtc8uflxmw/bcy1t/
kksinulafjnu0jcyzbktc2vvjfk+m1ztigtucmqwi5zeocg6fwebyeccmyzvkszsmm3y7ntfmqwx
mjhdfnkmplypviusiljzt0pjius0znucnavbxlmvrdspdidrmazs2bugfy1odber8hbkutf1kenw
8tzyzhmspe5paxazjmkuojq1xckx3qwi6rqixxbd8r+j3wp+rppjb2ogtyq9heuo2zczpfhzmisi
wpt71moixlhzeznrwnmz44mul5ez4fg0mlcrmncy21wnogajpxqagec4qvfhjqeesrn2s6gxtfmw
r0urhcyar+wkugzjw62hmmg3vmiz/erlikyt/zn/6qfgjnrepsc1ufqivzcsbndcrty0owsmktml
pglncezkiy6ha0uqkekgkjbj3kc8o6jdmdjkwrlnvtmgwzfx+jsucuyco5ted206ytqnyrffuerj
qoygt/qduuy0mdecrkrupymzpjiwx26grbsmlxamjdujgfha0m3txxxnq4nqz9gs5rcshuuaw7dr
2tgomjclk6kwlwxbp5yyw2lmyymkeg5gzspsyf1g9njhgbhcgruq5eyzbdqzdcj2ou7zxkhd9mf+
xs4j6wjjyigjcx1+opmevu3cznnfvck1w5jti4xzasutuo9tnemzfwcnslt6yqqh1bnrfjpxf/+i
tlcglkfcbqnitt6ppujjyk1y2tw0kylrfuuczg1e47yr52efmkkn8mbnzkbhzcf5rr4u96hx+rep
yisk9uxa5ley+tkddjq9m0npw296nautdfz4lepm1hnegtebovvqjh5g8u2ubik6lgrolam5gwzv
6ut7uz2zdjzm+kz4gafz5wn7o40adnbgcjmwusijzbvfj3ldbgarunsrnc95pdve4mchk2oeuyb2
jbpapt8jzlmowthalvmubztr85ij4sw9rhjzm+wps/vep8cot7s9kvc+idy2cgg+wn0+5rrxqkce
5d1weiufpfqw+94xol/+uowuhhfdv1/aj0wdv8o/eytrxvfkny7z099xiqqfr7nnp+rjl/+hbaqa
ow (Trojan.Downloader) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\mqrtcdtop.info&p=r0lgodlhyaa8apcaaaaaaiaaaacaaicaaaaagiaagacagicagmdawp8aaad/ap//aaaa//8a/wd/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== (Trojan.Downloader) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\mqrtcdupper.com&p=r0lgodlhyaa8apcaaaaaaiaaaacaaicaaaaagiaagacagicagmdawp8aaad/ap//aaaa//8a/wd/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 (Trojan.Downloader) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\mqrtc (Trojan.Downloader) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\mqrtcsonalift.com&p=r0lgodlhyaa8apcaaaaaaiaaaacaaicaaaaagiaagacagicagmdawp8aaad/ap//aaaa//8a/wd/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 (Trojan.Downloader) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\mqrtcdtop.info&p=r0lgodlhyaa8apcaaaaaaiaaaacaaicaaaaagiaagacagicagmdawp8aaad/ap//aaaa//8a/wd/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== (Trojan.Downloader) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\mqrtcdupper.com&p=r0lgodlhyaa8apcaaaaaaiaaaacaaicaaaaagiaagacagicagmdawp8aaad/ap//aaaa//8a/wd/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 (Trojan.Downloader) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\mqsuc (Trojan.Downloader) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\mqsuc (Trojan.Downloader) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\mqvpc (Trojan.Downloader) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\mqvpcdtop.info&p=r0lgodlhyaa8apcaaaaaaiaaaacaaicaaaaagiaagacagicagmdawp8aaad/ap//aaaa//8a/wd/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 (Trojan.Downloader) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\mqvpc (Trojan.Downloader) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\mqvpcdtop.info&p=r0lgodlhyaa8apcaaaaaaiaaaacaaicaaaaagiaagacagicagmdawp8aaad/ap//aaaa//8a/wd/
/////waaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaa
aaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaamwaazgaamqaazaaa/wazaaazmwazzgazmqazzaaz/wbm
aabmmwbmzgbmmqbmzabm/wczaaczmwczzgczmqczzacz/wdmaadmmwdmzgdmmqdmzadm/wd/aad/
mwd/zgd/mqd/zad//zmaadmamzmazjmamtmazdma/zmzadmzmzmzzjmzmtmzzdmz/znmadnmmznm
zjnmmtnmzdnm/zozadozmzozzjozmtozzdoz/zpmadpmmzpmzjpmmtpmzdpm/zp/adp/mzp/zjp/
mtp/zdp//2yaagyam2yazmyamwyazgya/2yzagyzm2yzzmyzmwyzzgyz/2zmagzmm2zmzmzmmwzm
zgzm/2azagazm2azzmazmwazzgaz/2bmagbmm2bmzmbmmwbmzgbm/2b/agb/m2b/zmb/mwb/zgb/
/5kaajkam5kazpkamzkazjka/5kzajkzm5kzzpkzmzkzzjkz/5lmajlmm5lmzplmmzlmzjlm/5mz
ajmzm5mzzpmzmzmzzjmz/5nmajnmm5nmzpnmmznmzjnm/5n/ajn/m5n/zpn/mzn/zjn//8waamwa
m8wazswamcwazmwa/8wzamwzm8wzzswzmcwzzmwz/8xmamxmm8xmzsxmmcxmzmxm/8yzamyzm8yz
zsyzmcyzzmyz/8zmamzmm8zmzszmmczmzmzm/8z/amz/m8z/zsz/mcz/zmz///8aap8am/8azv8a
mf8azp8a//8zap8zm/8zzv8zmf8zzp8z//9map9mm/9mzv9mmf9mzp9m//+zap+zm/+zzv+zmf+z
zp+z///map/mm//mzv/mmf/mzp/m////ap//m///zv//mf//zp///yh5baeaabaalaaaaadiadwa
aaj/ap8jheiwomgdcbmk9kowocohecnkneixoswlcqkn9mpwn0achzf6tbgsocasbu+mhalspmux
mcdyjimw40qanfhi3mlz5bsbfxwy/ddzpncwao8ofao0479uf1wgbnozjlcjvadcrbpzk9evuvmw
lei1ibwztmnuvgor6tsbvhvss0wxwlawtg36keuqbuo/bbl+pev3imq9dyhyvty3csq7enuoryqw
5fzakfwohus01d69sq0hfnxttnsdi7xwjxxzaelifgex/pyylohbg1mfbf31sw/hbd1vxvi65+nd
betuvezz8+zmhmfq9npuucg3oa8h93177tkfwyfd/x4ppihpgtdr1uyou3f4kpb1o26s0ctt2mu5
e38yfmfz2vdrrztbcyhvmygaszaurgsevjzkkbhg3w2f/vdaujcr19ztfopm2vz/sbcbvksvbqj3
wc33m4tz7swccaxsagbmdv0giukvzybef86fdnvplpvinyqddlebuu8jvftm6e01hxucmcqjx9hd
cfondmxik48geozal6s5vukewenvzyv06yeekrs16v56hwkfvpuigsjrfd99dfenrbq5opemzvsj
fked+cewpenfo5s26ajvt5+jlppgie0zz44c+oenclnw6mmlkjagzw0dpnverr6il+wkhmw4gitn
if+mjeicltpzkdhhmtrpqto0apgobnupsmf6yqmaj/hp4lnl7crrqzhqbtsy3gmhggd2dbrvskiq
bnwzfn4z5ycxfpmksxj2kh5efnja6bvuhgsxs91law9s4y5juzgtxuoij4nd1iqls+p54qomykuu
pnj2l5bxttvm3l2havrsxeds25yjbgkhqz4r6flvv14k6ufasnq26uwksstewj6jetzadfmm55oq
6eijni4y7bpw9rb7lst0bixctfaskposupz55iwl3dwwlrtx+k9+bbkzitrtyixkrme9rgl+2nv8
cbl2zhntuvlskcz3bp67c2hamkcd18nspyrzbbh/govayxk66zndic3zgovsk66s6z5ejbsenptz
slxweudijw0iutjwbpyawor/5bhdu5edg2gtbqdpu2odtpouwqeoj7qi5+qrxoxupbds86y9f6rw
zpsdsw8+jfbnyxwl0aywbi34wfgulcwjvgxhsob5krqyr91thnlosm/tkrgn2rly9tsebabeat5f
hyptoxcbwz+etxjsrkkmyei339k1xd/5wllkq7gt/a9aeagtr+b1s2ini3etcdgqejs62l1mbgqt
hnjwravfqqokngqqvto1ro6871n4gp6spmywiemtsw9tg2cmaj+w/i1xerkysriov+juhymxha7i
/5kuwckdrnnqwx6ecsyg/0fqk9es0+duprku1yv020oi9bscgqky0ejm+dpc4jushckpryjscaq0
ps8vnuuobslytl5wmsd1styl7n9gqouw5atkhftzdvzi1dsvfecjq1sybx+mpudas1jae5qqmqce
lpwfia7po0l8chyxyw+nwwphy/jhj+uasnuldkdxzhgdtarufmgzsiri17jxdezlz3wl0rxvvosy
bhcd+wy86nkylitelvvegyawz7+gya6wx/ymld4incfbxtpeittooobkax6mt63atw4k+uplcnnl
nzmmxdrpij0+hzl67gwe7jmvgvqqkvddwbihv/8sokppyb8bipfkdrjmuixk7wrlxgqnsujbdzc5
i522ngnadompxwps0luk1re0qbahzxsyrh6eqtfxckeqalxm2nsom92yzkte6shxla0ajuty4onv
mjrntpmt5uk2eizfnhix2evkz+2dy2a2prc5nrrkggzlqdb4t5uddwesw46hvisqfbquqsfuhp06
eymtgg9xq+nie11ymtlykkodrozsliozj8mtbig7lwlbkql35y4jierxxd06eonii42ke5jsnueb
1rugotfat7aixzks5ngxlprpgpvftiqddwquip14lmgpcevrpgvivk65nuu8wyd4xgxqo7vorpb/
3rvv7jkdi2sin7jwda+7kwviypqp/tfkaofcvsfcrrfjhiiazkqc2jadngcu7rwsnw2wcgxfqzwt
stuy1fsikz0tzrcrlvgc4k7bneddmmvpuwgl5ye10ojil5bbf/cydcxi7dnq7mkwqrnvrqgtslij
4zp1hjc1mrisndjujfcuqwdczo5hht3cmiwylyaxd6oj8m5g6co5vvgnhn858yj92vwgdq6l8gvs
egumncaiq5kjrz3rfgu2rcu3o+qaidztrjxj9q2upyohderzgydjlazhrnriacrjqvb4dykrwdj+
oyu/6cbiwmhhx9cws60y9vk3naxkpinkphgp/ynibeonqfezmmgfaxr88tgpzjzfuu3hcg0jvsqx
ngfz7gj9gdw0ihxj9hkmvqpb8znfmhhd4jmrrogjwrmorhdtrw7rkedrciwymektqkwzppruefgr
ofmw/5iwgpkk1bkgrzzkjra/ors2ausmlw351maaskevueuavmen2iyhrlwyyktgvncvp4qaxk27
y8dl8heobrrxritw3pnsp2/c1uzblzqu65z0zirrqo/ta7/dgzc3nairwzs/cdxpm20kgilrwwtr
do641nmqdr15ehxbn+kci22ighqo7rvitmlga60zxj6chviitjowukd5led1ed0brnzcqsyc6/+a
t1y4pgsming83tvqqoyhxwbjpnbuvjsifh7xpkx73r5qocstjvizvtlus44wzqmywhxod81ohqds
cswxluypdxpsiax5int8vtzf8+z2oe/tnlshw0zx5phj4hj246gz2pthnz+xtta9dzbry52wykfl
ucbmtektgewsfsl0vpzbjewzheelnhwyjqxcooez8bqp1xifsdwv913spmsna3568n3goehnyxm2
963rvr6rar8yqqktnkluirtwwlvimhcesdcbfs0cztgtax0nxywrkzreg8vf/zb4zdjikqj5ii6i
4ygvc8ewg+hgpr/nha+nufxznuatojpzxf07rx5ee0rtvmypxslfjxdg4eelodqccorp31ce1d8i
5d8/tadoy5gsvnosou39j2bczkvjj2qazxyveraaow (Trojan.Downloader) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{b1ba40a1-75f2-51bd-f313-04b03a2c8953} (Trojan.Ertfor) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{b1ba40a2-75f2-51bd-f413-04b13a2c8953} (Trojan.Ertfor) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlppf (Password.Stealer) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlppfcom&p=r0lgodlhyaa8apcaaaaaaiaaaacaaicaaaaagiaagacagicagmdawp8aaad/ap//aaaa//8a/wd/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=== (Password.Stealer) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlppf (Password.Stealer) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlppfcom&p=r0lgodlhyaa8apcaaaaaaiaaaacaaicaaaaagiaagacagicagmdawp8aaad/ap//aaaa//8a/wd/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=== (Password.Stealer) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\mqug (Trojan.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\mqug (Trojan.Agent) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\shell (Trojan.Agent) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\nofolderoptions (Hijack.FolderOptions) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\wibwegcp (Rogue.AntivirusSuite.Gen) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\dnqnjtmh (Rogue.AntivirusSuite.Gen) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlne (Trojan.Agent) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvqozrchfngqd (Trojan.Agent) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlrf (Trojan.Agent) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlrfm&p=r0lgodlhyaa8apcaaaaaaiaaaacaaicaaaaagiaagacagicagmdawp8aaad/ap//aaaa//8a/wd/
/////waaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaa
aaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaamwaazgaamqaazaaa/wazaaazmwazzgazmqazzaaz/wbm
aabmmwbmzgbmmqbmzabm/wczaaczmwczzgczmqczzacz/wdmaadmmwdmzgdmmqdmzadm/wd/aad/
mwd/zgd/mqd/zad//zmaadmamzmazjmamtmazdma/zmzadmzmzmzzjmzmtmzzdmz/znmadnmmznm
zjnmmtnmzdnm/zozadozmzozzjozmtozzdoz/zpmadpmmzpmzjpmmtpmzdpm/zp/adp/mzp/zjp/
mtp/zdp//2yaagyam2yazmyamwyazgya/2yzagyzm2yzzmyzmwyzzgyz/2zmagzmm2zmzmzmmwzm
zgzm/2azagazm2azzmazmwazzgaz/2bmagbmm2bmzmbmmwbmzgbm/2b/agb/m2b/zmb/mwb/zgb/
/5kaajkam5kazpkamzkazjka/5kzajkzm5kzzpkzmzkzzjkz/5lmajlmm5lmzplmmzlmzjlm/5mz
ajmzm5mzzpmzmzmzzjmz/5nmajnmm5nmzpnmmznmzjnm/5n/ajn/m5n/zpn/mzn/zjn//8waamwa
m8wazswamcwazmwa/8wzamwzm8wzzswzmcwzzmwz/8xmamxmm8xmzsxmmcxmzmxm/8yzamyzm8yz
zsyzmcyzzmyz/8zmamzmm8zmzszmmczmzmzm/8z/amz/m8z/zsz/mcz/zmz///8aap8am/8azv8a
mf8azp8a//8zap8zm/8zzv8zmf8zzp8z//9map9mm/9mzv9mmf9mzp9m//+zap+zm/+zzv+zmf+z
zp+z///map/mm//mzv/mmf/mzp/m////ap//m///zv//mf//zp///yh5baeaabaalaaaaadiadwa
aaj/ap8jheiwomgdcbmqxmiwocod1b5kneixisoiajh+00iqo8wjhjx68xoxomaika16/jirpumx
d6mtldktzkuei0ncrhntps+feqmlahhyo1gg/1iptzxtz1i/qpdktsvz6tkouzuifapx4myuhquu
vem1bm+typhk5on1qtussoxkfuuv7ticfnmyltju5dy+sae6jut1b8ohehectehnis6wzmkupvuy
j2cpga1klbrxal2rwdmgzij3yoadbjlcvwt24unwsavqrvv3s+3zh4f+5urw8cmuk8s6htny98fl
vw0l9irxqvppu/p+c2q8lmbmyzp6xcuaserni78h/9yaphbw87tt81bidhrc5cqduinzpwzwkvpa
9mb6pxxt5//lnn9fzzefl2hrbyrrspwdpscdbxhnygtlkryfhabj5fbkeeh2mli1zrxium6pjlsj
hskuyffonfshii+wpjimdho4ovh0cxdjrk1pifhqgylfx2vegxxdyhrjfmb/uax4h1vgelddrher
cvlzmaiepuihhceesa91wj9kl7xh0kqzjqicmtugxr+k3whg5ne0vidyksnzoz12qz04xzy3tclx
wrjsxqwdvpkhhyt3uyckik1hvkieyxax0idvrxfodoh9urcga4vxwfcgashnqy9tccrxvn74ketu
mf8gw0ho/ashibzbhxjktkuaakbd6bsrhszpnv+cpxjannvtdrtqjl9kplphl6aklgmywldsus0r
iyifh+a6gnsjgeytfbwkjesbfv1xgkhfkronkag1cwrqqtke5xrteautoubakg6d8wlb0qivvvsj
pvpkrv21rrbhmcgukbhuhpbglg+sazwgwhqfd+stvjqvs1m+stql6iixlreymmbbnyetcqu6u19m
oybckigx5gltyvernjrsrxriyyx3nc6qqlgve7jm+tecdbcoqqzasu4mqozw1rox1ywdg9tgh6pg
5azdfkolydp7sizp1g4vjn5in0vnfp8cnjtxrll/e2ybch4golu9vtkpyiijqdi7dvnhixduyot4
xatnivvg+37cc0+5xjzbsi4huxlvckqgqh9nzq5lvr0avwvwgmfsr9mkryjqkij+zarqoiuocfua
dn245mr3ze2zqrmpb7cazmfn8ctaglni/nyvphomc4by7igbpxvvk9osjedhkqxzwnut1bi8xngp
n47+nb24c7rt35zj+f+3gqncryuoi67jxds0jxezpclaj4qvwhpntkfdrxc2ghrp0gol7znmtrlh
4jay1b3wtisrm2vvlzswkz8jjt+wwxyj+vaot2jpy/z62ln8570keg5y3nuzff4rq520ri0fdj2d
/2lil8yglmvke6dn7iy0zgwjkh5qjiboucwnkqh9l1ouwtaynclekyb+c1urzoifgjytrqoyg6ck
vmb2wy0jqfhyzr4nqxwt7lo6k1fojkce2kzkhyulflro+eyxqs6jmmkcv0bms229hgwehfyck9k2
h52ikojhzzusbjghzvcng8nh0rr3rawjzygwhomi+arflteff/srvsfmihy23motyqvbsorir9ip
r3kuo6eu49g2edltdpdeebckjcqpgav3g2fb7ygkjcnjk4+a80/fmukau53tpvhxllo+chqm9gum
hhyq5rkctbmyejmxvjnzdgiglh7pgv2kzhpqhf8nau5thosiyb/qgqe63ahjbpsekahiruyytwlo
xeqmmemns0epcwhdhaowly+ewpe76qhjgrvajvqhbjovpkd4kusrgrumklgbkuc+mh9eqghi1yqb
ub4eudbvbxfugwq/iaunlwvqvcirg7aakacbci9v7hrejergjsnorllayk7cyaicw3ymqeetytsx
1jsadlu96aklyqzvo2bklet/ivtbntynt96pqdezccyp6zn+xodbbcrlvvsst4kmdc0n1btxxiiw
crfzy7refzxi+dfbhhez7osl9k74ndznuvt664gjo1hoqkmhyufkzvv2dtqcro5fy3ukiy41rst/
5tgqw7okvahkmli5liamboroaqqz7ekeujqzzjujtab1trbj5+xpkgvi0ddur32r81exm7kow9lp
lnxsz/huqrj1aizy91ko57ie3opz73zlliyiammgzl6mbu5rofa+xdw1jpsyo6nvbnz6otnynoyw
lbvkeqoitkrpu8n75yb2qfsqehgldb1fk42cleub91qecumkssyxhokmmasa2t9lrxvkyvrs5rxh
t56jnvff91mobh/12pyw/4hpmbdab0vrkesiipofrrptqhomm5e4tjccvzfdepwuljw3tyyji6lw
tynckqp4qc2s2k462bv22jeq6sgrcyrisvro/5fnew46scftkueqpvvv0+n8kzqqxck3venf5ojr
1x31q0mfatiuqljtjxkipay8oja0lehsms+ppzpkiofbzrfxszbduvb2fcnitpm4zoazm0wi4rf8
nktir3rpmbw3v5t2dk0rracy+vkatw2xxfkkjbdqcpmbgs43wgwtwzi8y4pxgl5xnmccrpjkpr3z
tlhdkgdd6qorrbiiza2rifu7st7ebiec9jbcxgmyxntfjnvrjlq8j245zy1v0lfjouvfe1xnynkq
flrrtgq8kxlgzo1v6moke8qhaqk3psimyzy2th/mdr0mmxx6dfqupnczjku+ywg1a8krgrmihv9x
9okiv6kmcjdcweottvog45qvrs5vlrfxszy6tp04li1ponozpnibhwvn82v1iavirth1kpytz2fz
af6h0/z1w3wova30bmysumzzni95ispl8ye/8uebr/l+30k+q0tpwzvhiwozuh7yjhq0we9yly+f
q6rgxllobpxv5n1hrw14szdlr6qtjbm8b6umucqre/rpg+ikgy5bws0bo7njol1zoxotdxp3/etq
g1zm0cfws5aceqjbzdtq+vfrh1mi0ybb2xnkghqfyvl1ou3pnolkvofu96dr++9viwpjraavlhdn
5bkmvr58f3b1h17oip6qwsgzfsrifdycusdpcddcdo4iflseybs8zd10v2rr8k4knhxzeqbbnuml
ubtnzjyvl9s8haazxsmhhrkya252lhjfnn6lfnnqbyi68kw0x2u7nxkzjxkx0w8qakh+r0edxrcy
bh9arbgggnjctsbzomi1x3xar05zdxoys3j/bz+wxhxkdsunmnbfh3ng4ztronwkkzb8qnbhfxn2
wrnbl1ciciixse6793y1fbstx0nqow8omscqynrkugq8ph8nwepfix7xghqs14g2corzqbzdkcz9
njpvzivtp4jtxr81+ibwjyg7bh0nst92jhjssiyjeraaow== (Trojan.Agent) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlrfnfo&p=r0lgodlhyaa8apcaaaaaaiaaaacaaicaaaaagiaagacagicagmdawp8aaad/ap//aaaa//8a/wd/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 (Trojan.Agent) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvqozrchfngre (Trojan.Agent) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvqozrchfngreo&p=r0lgodlhyaa8apcaaaaaaiaaaacaaicaaaaagiaagacagicagmdawp8aaad/ap//aaaa//8a/wd/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 (Trojan.Agent) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlyil (Trojan.Downloader.Gen) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlqc (Trojan.Downloader.Gen) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlupc (Trojan.Downloader.Gen) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlqb (Trojan.Downloader.Gen) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlora (Trojan.Downloader.Gen) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlk+ (Trojan.Downloader.Gen) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlprc (Trojan.Downloader.Gen) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlna (Trojan.Downloader.Gen) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlyild.com/dw/dw.php?id=%s&ver=d01 (Trojan.Downloader.Gen) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlupct.com&p=r0lgodlhyaa8apcaaaaaaiaaaacaaicaaaaagiaagacagicagmdawp8aaad/ap//aaaa//8a/wd/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 (Trojan.Downloader.Gen) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlrxc (Trojan.Downloader.Gen) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlq+ (Trojan.Downloader.Gen) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlmc (Trojan.Downloader.Gen) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlqw (Trojan.Downloader.Gen) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlotc (Trojan.Downloader.Gen) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlo+ (Trojan.Downloader.Gen) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlpsc (Trojan.Downloader.Gen) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlqse (Trojan.Downloader.Gen) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlrxc&p=r0lgodlhyaa8apcaaaaaaiaaaacaaicaaaaagiaagacagicagmdawp8aaad/ap//aaaa//8a/wd/
/////waaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaa
aaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaamwaazgaamqaazaaa/wazaaazmwazzgazmqazzaaz/wbm
aabmmwbmzgbmmqbmzabm/wczaaczmwczzgczmqczzacz/wdmaadmmwdmzgdmmqdmzadm/wd/aad/
mwd/zgd/mqd/zad//zmaadmamzmazjmamtmazdma/zmzadmzmzmzzjmzmtmzzdmz/znmadnmmznm
zjnmmtnmzdnm/zozadozmzozzjozmtozzdoz/zpmadpmmzpmzjpmmtpmzdpm/zp/adp/mzp/zjp/
mtp/zdp//2yaagyam2yazmyamwyazgya/2yzagyzm2yzzmyzmwyzzgyz/2zmagzmm2zmzmzmmwzm
zgzm/2azagazm2azzmazmwazzgaz/2bmagbmm2bmzmbmmwbmzgbm/2b/agb/m2b/zmb/mwb/zgb/
/5kaajkam5kazpkamzkazjka/5kzajkzm5kzzpkzmzkzzjkz/5lmajlmm5lmzplmmzlmzjlm/5mz
ajmzm5mzzpmzmzmzzjmz/5nmajnmm5nmzpnmmznmzjnm/5n/ajn/m5n/zpn/mzn/zjn//8waamwa
m8wazswamcwazmwa/8wzamwzm8wzzswzmcwzzmwz/8xmamxmm8xmzsxmmcxmzmxm/8yzamyzm8yz
zsyzmcyzzmyz/8zmamzmm8zmzszmmczmzmzm/8z/amz/m8z/zsz/mcz/zmz///8aap8am/8azv8a
mf8azp8a//8zap8zm/8zzv8zmf8zzp8z//9map9mm/9mzv9mmf9mzp9m//+zap+zm/+zzv+zmf+z
zp+z///map/mm//mzv/mmf/mzp/m////ap//m///zv//mf//zp///yh5baeaabaalaaaaadiadwa
aaj/ap8jheiwomgdcbmqxmiwocohecnkljhkibwjgdmsvhhrykenaz9ubilqzesoif9ru1hrzugu
jgm+xekzvu2aog3i3mmzp8+f1hqc3altjdggn1ckxypuqfkakm0k/ah1okmzjq9efanv6kkolu1u
pzrsyec/fqqyfeswlz+uvbnoxior5va6d1o19hrq7d6ye+0mvnuxmn6ghhg6nausrmg0mdg+huxz
rfujjhcvxunw72g8gg1rdtirc92bacnpngozpgfgwqe+hij6pd7bahf33ens9ntrcnoppsxzrvgq
k9fo8wnaqdzjbaxo7vvvdldc2lnx1k49lffvt72h/wfvd3tvl+ttp68+hjxz7qt/o388hbzfz2ep
vyc83p5v9th559tyryvmv1bfczvcaj8xjfl8570122q1sqqzcnvrfff9tflk1nu23szbhmtlgfpv
pp2tfousffesby29bmfc2dgum0azfowghzwald95jlwghtxivdsrdt+ih5li/2lg2hkpbdtadvev
fgvx4rwfozykbukgh7q1vrunzquyhv4ihghiqivcdr5hbb4yg3a5aqgxmqrtpadov/lxpn0vsurj
gqqokj1bfv4j4h9ukavxczmjbrryvhkumejq2qlmwxhk56lhkvrzwjl5exmnssstp9mpqelx526u
mv9ikwzzyoowbqendisjn3blx6gs8iebsb8vrv+bmk6hbky4hivrk/35yzyuzulz02weiseime0i
xofrajjk05vrjtnsoch+wp20dyqoiqfrppjaip5dp9ynh7jq57skqtlxcn2qio+53nrmimylnbsq
bkhpnzuyyto6mvpvnyijrgelogukg3fmmcepihqyu88+x3fr+lex8majciovuvk2tsyuwfuqnzds
tnhrrwvod6vjah3s8dac6ywbqysmls+id2p88jxv5pdcjpbycjnclsmhmvqiqrwsvcsuo4wsbqja
9ltdmuckscovziykcg8cn9wfxz32filljbjlsif/qvpokkepb8wwgpwohnltu9feat11qlsaq0qw
2i17rvidmwrsrlycfd2xsp6h/rds9jyeyumwkpv5lkt6sbdupsleoi7gserxumvz5bxfuk4llcfs
dbss2qc/+o+/o+urgetdpxo40uxpu25gke/h0dekqdyxkcjnlllifnzyaxfmjoqctfezlvof5auo
y6rjp523sycgdfh5johe8bzrjyzqqgtx3zi65brpwe16i2qck5ieoikvxy/auo3xviac8tjqb1cc
3o40qlqrptccukfxufykt7g90c1cox+9pbjcrewwsh77im2uhlh/fe1lfxgulpljf+t4edv+w+bb
/ybjovrlbx2ae5x80nc067wkhfps0dd+chmbvwdzeuruafwmirhdjsx/wsgkoom2bhbvivqbojpa
j8hpgqviidilxlyngaguzmihmrv+ckk0allxibbln5l2py6j1hcqvjzsdnvmjpvcycxbpjpgxglh
5vteezpj2dd49yievysitlmjfkkongwh5o8yk5zvluw8u4xjukie3m9qxb4vjxfjosolndioyupm
8noqkupm/ny6s8arnaykvsis47q4efftjfyt2twklkckdy7muxtroly9nonpafdl2xj/usk/wffi
losyiyk4ekseb31n2pl+yeiqko1yak5rnqrm0/+qdljsofhs0qplljatgsmhdfkrrzspznt28fet
vcacxziwvg6psm/6ed0rrrqsfo1j05rp1uksxkd+xjq+ak64qvuxo4rtvs2d5uywge+hgu1/ggzd
kue3sammm0yh4o6ptswzr5usmppjmupyzzgabqggcfvn0ltyqsnpuidyhwtxiktgnuxukdnahfzq
ie1qbszxnphd3dqqwck18lydnonjirzn6nzedsxblunalkkqeczyt2onu56ntt9nq2vrk00r74jk
ryqoltfjfsd9xdqi+uwct3xnastljbqg0ylkgrrxgpfv1hgnvrp0v1aha9gxzqx7k0mksabkuej/
2k5ve2vaakmh0kjdbhqsqdcbwyozjw1xofmr5f1p+06nhqyyp4vktauzxw9jxl7bkr0g90ivwq6f
svpuilrwj9ol0g0x4zlh3krksgjpnacehvvxvfeabclrgrcz7ocszqk7tsafvauv3/bvxybzyx1o
at+fbgiu3nk1gyyysersg6fmkidy+euztnph2s0g7gazpeypsuxcalp1me5tvncnaq5onumsecpb
boxjspmi1wsvc6xajotbwzuook2jpdzewj/t+jdp4bsmispvmceavk4fhhxgoiqzdakmjexmiiq2
v0qikk9ex/fwucmyychupdmkvcvwqajze3pq/y63+lvrthwekqz2mguji2ceqwa+pqhm6dvkmx2c
y91cjzswpengeixsd5m3igf7s2cihlmliqkpmf4kitru5acq6dngobmopyaf7z63pktycgf6e5em
atf4ityquumaesiyqze3s3cb96zttcwiscb9cvo+40bpg+jy2gfrdmiqu6v8gz1qrgwz28fkv0wx
vewhhbargmrara9bnj1ehfurar5ehsxmrif6gojkinwsqohm7fdi5e6r8peo9qxivjqykntv57kp
oxo9s8temdfbqer69kmqfjwfxzb1xyj1x8j1lsyhyj5v1py7klyh2h2myl5s+jxrxtlixfntrf8m
g1qsx6ho8m1pyztwqz1+lqteekshmqqte1syt4dhfogqjoes1oayzcr/usfxao2ypno1cdwyt82/
vgqyjjnucsilx3aujsqnrlnd2s6hyjgeaaju5ozly+s6gku2bhrajomy6hcdiy03tzlhr4sz/l7i
c1cpbecbo65glwsv94z9qfltobn3w0tchcyhulfslpml8a6x6eri6rs3uf5fdmmrbgbf7c0zptw0
qjwpsmv7vvzw+yknhs0sxwif81tizv/a78kez3obcqbyi3payqfa0ppqkqx3air7/9w8uxiwyqkk
jj5zeusglnqhjxs4rcld95jinnwsnkfvxv7+0l+5id+/yzobocid7mlbuqjp0h4/e1zqhcwliiyh
j2zuuhlt8elz5v8dqknx1nqmiydm52antjwjy2y5502xmsoydsvbqhhwq3sacsbgu27n8w004kef
zyczbwew5jaogiyihgwoics0gvcuaok8ixq7x26vn0swtsgpxwozudxnpb4v0wkpyhwy416tlnel
9lawniqyirpgjmbeqyh55xpkdbs4j3jmzzxvrkafqhqal1ifp3yvv3pygzp00rndwbkrjj/zhkyl
ooexyssufryz1xgpuoyqsx50khuz93v8gvg4wcj19m5psxusrnlzu0/6lktdoih5wdsderaaow== (Trojan.Downloader.Gen) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlspc (Trojan.Downloader.Gen) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlkc (Trojan.Downloader.Gen) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejloc (Trojan.Downloader.Gen) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlhb (Trojan.Downloader.Gen) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlprcfo&p=r0lgodlhyaa8apcaaaaaaiaaaacaaicaaaaagiaagacagicagmdawp8aaad/ap//aaaa//8a/wd/
/////waaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaa
aaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaamwaazgaamqaazaaa/wazaaazmwazzgazmqazzaaz/wbm
aabmmwbmzgbmmqbmzabm/wczaaczmwczzgczmqczzacz/wdmaadmmwdmzgdmmqdmzadm/wd/aad/
mwd/zgd/mqd/zad//zmaadmamzmazjmamtmazdma/zmzadmzmzmzzjmzmtmzzdmz/znmadnmmznm
zjnmmtnmzdnm/zozadozmzozzjozmtozzdoz/zpmadpmmzpmzjpmmtpmzdpm/zp/adp/mzp/zjp/
mtp/zdp//2yaagyam2yazmyamwyazgya/2yzagyzm2yzzmyzmwyzzgyz/2zmagzmm2zmzmzmmwzm
zgzm/2azagazm2azzmazmwazzgaz/2bmagbmm2bmzmbmmwbmzgbm/2b/agb/m2b/zmb/mwb/zgb/
/5kaajkam5kazpkamzkazjka/5kzajkzm5kzzpkzmzkzzjkz/5lmajlmm5lmzplmmzlmzjlm/5mz
ajmzm5mzzpmzmzmzzjmz/5nmajnmm5nmzpnmmznmzjnm/5n/ajn/m5n/zpn/mzn/zjn//8waamwa
m8wazswamcwazmwa/8wzamwzm8wzzswzmcwzzmwz/8xmamxmm8xmzsxmmcxmzmxm/8yzamyzm8yz
zsyzmcyzzmyz/8zmamzmm8zmzszmmczmzmzm/8z/amz/m8z/zsz/mcz/zmz///8aap8am/8azv8a
mf8azp8a//8zap8zm/8zzv8zmf8zzp8z//9map9mm/9mzv9mmf9mzp9m//+zap+zm/+zzv+zmf+z
zp+z///map/mm//mzv/mmf/mzp/m////ap//m///zv//mf//zp///yh5baeaabaalaaaaadiadwa
aaj/ap8jheiwomgda6khxmiwocohecnkneixoksfajfo1ohqo8eg1ejw5gixpmmtkfmwjfkylz+d
qf6xvemzpk2zegcsnmktz0edfl4sdcruilvur0uqjklzpu+nn6ncjjkzatocrdme9omsjm6ruspe
pcox5selcdnmdoququcxvhtq5fp0z8kqiqv+q4sqrniuzkts5qpxite+a7n6xziqmei8fvn+nyww
8e7iejeqtewtkfyibluo7drut2frc3swhovwooa8oa9tnt0xkuxmsr/kxeu3se+xvv9+tok4p0jj
tfsit8vrst3vrnuz340bsmbqsfu/zonz8l/xipu+/wu7/cnbkcvrznqo0jj7sfmhun29vgnu+rel
l5qmobnx78ir99z/wnm2mxlqxryaam8tujjlohlwhwb03rcfrwse6bpsfjvwxnijmfyvrtonlrbp
22nexmnlifjdiqt9bldjhkwmg17ujygwq5ivban/mbnk1o7jntaau/fblabwsg25eokybhdlhkch
d1lifu7y334/ekmil9jthxonmc5m5hejochgws0a5rlrenl1zny+rtnjub+jian1ruj3uhmyovtj
d9xdoj5ahtivjpfrykxlo0shpxcv6rnoqfatniafliql5uf1r2gqy2a4peukuchogialim5ff4kf
bv91fjy0zgmtuj+9uddjlu6q5krn3rwqjczdx1iwjhkblpypxvnpfm4adahdecbjfjvtqgvwodod
2kjlsyrkflj+yretr2dzotymlqlp6pzmdvcmarw6zgerxeq6w4e7gohqr76jypbz/s12q232gohh
aj2hvy1wigpea5wglimtkg5ogwoq0xjkphaviuwiozfewk/ao0fyh5jsaiiyurz+eol56augocss
e9goj+hn8s50pyaqzio9yxxruiqh9xjps48ke7ieu+swe7ft5ue22cl55wzkmuajrtntlvw5amwl
jv9koohrxztdjfxucl3siawrve1zim+x3f+tenb/fhfqgo87vxayoqztwzhkjc/i1llpql7nkcz1
upf165f1ggcd6e46r735pgn39xz4xpz5vm/zvowtrr4ltwj5zwlr9supx1erz3fdhafcu+u71nuv
oxjyzp3vd53hf2d9n3u6z+etow8d5qckwde5v1cks62t0kqtxpnmdag/1+xpgwju2brjcniknevk
y6x3idxpwfilrhxu7y4ek9saw6t5fgthxuvkd7xc/ap54hni7lalpngni4cmqrw0epav7ikoustz
wlwwxzhq+wpbfxfeztbdvextjhwt815g1oa3tzjmzafajksw5ldkfwlmsamb8kz0rptpdloxtiqe
/36skakfpcilmutxdec0ssmtb81xvcycylyocg415wkiixqnlbphqu54+k7n8nk13ucoan17vkju
a5liitejtdwet1wxwdojkghl09wjidq14uvokktb04gwddlg8lbbh1mxs0xho8mdj2iwtnolc9mb
wrkfyawrwlwiysfncm16bunkkppkwps1swjwwpa9cukqlmofa1cjlxq2kdxvltfehvkdt7y1fklq
7uzv+xqdv9abtxfrqbce4yh/nqimaa5bifytlc2wgviljgsdywki7tyzwr2rlvlzjkgmzsak/xcj
fjnloroyvyacceb6czch6dlcuxgmuy80terwxp+/ftakyioyi8mafdir9o4w+jhfuj41ovdz7w2q
ipd0/jliiy7wwuqdwf0cw0cu6hfljpnld0fqtojxsce/ezhrluaww+kqkkcsz87kpc8prez24ctb
7kjzzyphqpoitz+9ivkkj1wpmd/uixaftuu0geamjbkptpcck97gjmcn8wbaeixrc0auhusc5tpx
c71brqr4nbwop0thibhctnoaw6nhcdqvmojgrt1saep+5hiyxaro8+pcguzkjid6jkbfiamyf2lw
p85iqp56jnmowqvipa6l64nurlyxv/htsomkidjnbtq6aptwoth73osobutpdnspvksmekdqwgl/
6q1anzndmhv2votrdhouwezme5eyng6rgkubdmsurlxpiqtwdzoiautwneboal5tk4roajkxoh2q
togjo0tdvmctabfla9nne8b0jwhhzvm4grplwugrrkegfa27xo9clqwczbskv7ibxq+rxjwyth8n
hchhpuq/bmomlyxpelyeeibp9utjxyzt+t5ljgdz84tpkmxwfsjb8sksqdm16xbpddyywcdbw82h
b11zv47c0zujo92j7jdnlg2xnzvl6zpkexjczopt9x0s/2lzysgs1ic7o10ri9bcgdlusdoxcwfd
sczwzmtdar1a2r62gyft0taoadifcfwps16f/2kg6tgbwgdbp5j1qvpmf+cwmrghgkqkwrenyz/q
mk8hktclrhj2cuqleyqmpmt0i5vwr6dwvg5/ywjgldfbioyhyjavwq6e3lo8hs1qk/nt2rvxorie
kcygnqicu1w157ywpqokqnha0jumttxvinsybtpazaz1rjzsysnrmkfgpmsvxmhjaanv4gyeawba
vpuk32hpkz8esyfsrow2lrftaclmcddee5c9vqs0crdpaotgclri8qvhu5bgbvvzihm8uzjnnigp
lqynyknvww9qzsafftqyfb2oxclmwplw++yuqrdxyfem3xkb0dtcmb3hv4w+o7etw638edjw0v/b
xyultd67rtdfw83lrgxetraw5j6z5uwtly2qag3lew80dg/ufsvlgxzdcmt5q+c7zkeqqtl2doo4
wtb1rzumi1sc85v8jlynignjn0w6wkt2wddrm+lprbi4zuvnmsnvtvgbtpu7dpfjqc4n//66dnzi
kkgv1tuhfpqyxz71rjivusj3djftusp5l+zvqwqvovpotptoxladw7r8qk10w649pgejwtp1c+gp
kd3bxoyo5wdcgh4sqter7i5/veiycyw45272r7judcfmc/zzvpyludvisqhqnj/3wlngm5p24zf/
+tof6tnrlm7so2ttfoz9pwe0kdelcenbjrlznmjnbjumnltchccz2m1+kq8z/ylsfqg+32ar4xl4
yyk3twpfojp/2vpsqug1msunnxmrmn36znkxexizyijmfxt+cwzdr3saobtrjwldxcyiqlqyfohr
5oewedr0fx7r5fvkkn0juoajtcsaiolajxabaqa7 (Trojan.Downloader.Gen) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlqe (Trojan.Downloader.Gen) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlqenfo&p=r0lgodlhyaa8apcaaaaaaiaaaacaaicaaaaagiaagacagicagmdawp8aaad/ap//aaaa//8a/wd/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 (Trojan.Downloader.Gen) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlud (Trojan.Downloader.Gen) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlqf (Trojan.Downloader.Gen) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlqsefo&p=r0lgodlhyaa8apcaaaaaaiaaaacaaicaaaaagiaagacagicagmdawp8aaad/ap//aaaa//8a/wd/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 (Trojan.Downloader.Gen) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlqset.com&p=r0lgodlhyaa8apcaaaaaaiaaaacaaicaaaaagiaagacagicagmdawp8aaad/ap//aaaa//8a/wd/
/////waaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaa
aaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaamwaazgaamqaazaaa/wazaaazmwazzgazmqazzaaz/wbm
aabmmwbmzgbmmqbmzabm/wczaaczmwczzgczmqczzacz/wdmaadmmwdmzgdmmqdmzadm/wd/aad/
mwd/zgd/mqd/zad//zmaadmamzmazjmamtmazdma/zmzadmzmzmzzjmzmtmzzdmz/znmadnmmznm
zjnmmtnmzdnm/zozadozmzozzjozmtozzdoz/zpmadpmmzpmzjpmmtpmzdpm/zp/adp/mzp/zjp/
mtp/zdp//2yaagyam2yazmyamwyazgya/2yzagyzm2yzzmyzmwyzzgyz/2zmagzmm2zmzmzmmwzm
zgzm/2azagazm2azzmazmwazzgaz/2bmagbmm2bmzmbmmwbmzgbm/2b/agb/m2b/zmb/mwb/zgb/
/5kaajkam5kazpkamzkazjka/5kzajkzm5kzzpkzmzkzzjkz/5lmajlmm5lmzplmmzlmzjlm/5mz
ajmzm5mzzpmzmzmzzjmz/5nmajnmm5nmzpnmmznmzjnm/5n/ajn/m5n/zpn/mzn/zjn//8waamwa
m8wazswamcwazmwa/8wzamwzm8wzzswzmcwzzmwz/8xmamxmm8xmzsxmmcxmzmxm/8yzamyzm8yz
zsyzmcyzzmyz/8zmamzmm8zmzszmmczmzmzm/8z/amz/m8z/zsz/mcz/zmz///8aap8am/8azv8a
mf8azp8a//8zap8zm/8zzv8zmf8zzp8z//9map9mm/9mzv9mmf9mzp9m//+zap+zm/+zzv+zmf+z
zp+z///map/mm//mzv/mmf/mzp/m////ap//m///zv//mf//zp///yh5baeaabaalaaaaadiadwa
aaj/ap8jheiwomgdcbmqxmiwocohecnknpipmki/gdnq3ohncsd/gj0qtciq5ektju8enils5cic
fltkllmyibvuofpgtehziu6cfn6meihui89uhjmitrquqvomsctshcqvosoepn/uxjoszs2uvwts
i2lskfckakn5eqmwimuwogt6firro92mdy2gplux49y1palqrtg2lm2yha2yhcjvifqzn3heboyv
cktaxhunziq2kv+jjc1nnnyy8fjljp28brs51c6grv0zlrpz6uyuiykuzri1ouzaccvt/qozoeng
pq8kl6nwrnahvx1ibu5wigar0xxppj78dfckooov/+4uxur00bxn526bvv3zpsu3g3yimhvc0+tv
j8vi9hbxxdkrdn1/99e3m1awyvbufc/11pjmvpfg1hcdrzgcgdu9kj5pskmi2krqirthvii19nm/
rjk43emd3kybssid6gj1qyvnihjijwbjsg9zcnnn5ae3lo8sumwhhgpxr9xoa/4nphxxfrqva4fd
1nmvgwezvx3dneygkihfiz5xa3qzzi3levlvrxi2kvrztf0uz4jzypltkuhkh1ikvk2liknnjgkl
yv6qwsfcsrap41kezylmnywnmjmh1texiio+lmxwiyms1cgjxjfylvrqexnteqva52kzowl3h2yt
iv9iyjosrcctfv59uz+pqh3en40+jrrjjs6obyjgzh3qwkjwtxfyvlglrglzk/vh4pbgdgebwgz1
fchx1aaw2bbukvppcyecuarbu0ybwoouxetsuaaacm5ymwkx6eqr7qvzqr21o4wki/nx1og5kdwt
u+1cnm28p0h8qv614fciwzjm9fpognvkmfrncudzxd4kjjfmo0jizcznxzygtu6imlbzeddsugtl
qnqzxyjjvpnquezi05t/psjwu7crruv+drbm6gnpgxriancx7dqkwetwnvymuqhdx4rwjojndmum
grdqcsssl/s2+s/a9il90lykmvydvdrpwlpepkp/ypc3chhtg0p+zmin2udjffsulobhznoeutow
mhhwh1s7bw3uqv5cjtqumn4onulmfnayimgstwer0vi3xnbmketyiteoczjw4npkhprdfplkmbod
uvu5afjja5dzk1ekx2jdyyyspmhuffrricveblnkcyhzwakt65a3lk80zflvdrq7uzbp79q+gj+e
pmyw3mnd1ossx2dtfvfwbutxpuk6zlvrhekm0dyjmcwjbioixtz2gggitv3asrl+bgmx1hfqslml
hwapyqvbke5mbnwv4i6oqqwiilytmlnhiii5z/npvapjub0c1jej9wdeg0hr2cxittlfjwkdrf+n
/5rtmzhvqhos6qjisjutg7bleyciznh2fyuhim1o3ovduvqzquv9asj02g/8jpqpez6mmhc6vxpu
td+gzqwji8yzdjfzrqgj7hicmwn3flc1nxtgvjeiyplmazqwhqdxzlkhxudxq530exqb45xqtjza
qlwobtaxw9z6aymojexjfrseigi2rlkyr2cqa8i+scgtzhelmu8ac+kmmjuzmgdtsfode+x0trjl
yx+wa1qgbrcmwolglznjhgutabuenqtbykohjsivh8vfk0uhpgtn6lshngysmic7jusqrz13ndkq
q9io+76ptzuash7geokptyihuviqdkuqtnisgp+x/ifzcy/cfmogsbzyatkctlrpknqjruc55o7e
q58botjhgrvrtlclzezwt0ldje+rnzqbvlsillnixzwitnfpvte6/7x0bor7dmiymk3lgwsqm/jx
qpgzwxogmklgg1g93necbgifhbhtismgfcdptzjappkeuph5oq5rrkcvpraprarft/3tsdmpt0m8
1buabm4wfctfyy4ns6/fzjyjy0lnhghoplfdk7fdtpuk2bdemucwkfirusayosuzq2+9jfljsak4
jeqggcny5qne1dj1atovobne2g45gzpude7grehvbrthw5hjl4lkkny4lzkbpiiqmyqjkeijmsf/
kq1pwuqijpvxmzx5b4qtbzpqn3eylqhvmy89joycbrcojg1i+dhgfoegen/z6hzdxeqf6axb37sg
zqnk52nlp1sklm1s2bwiwnqkkupzskew4tb37ukrs02khe4bpbdknhltswqydkjsirylo8s+yhwf
g8+vfgywdrlunno5kez/1feunc1kslovagelozbyy0xvqrxphck4xhhkejd9soknvbd3liuzs/xo
m0ecquhusyoqaa9+ofmztzyiaqns7c18wz7lfugtohtihfevrlcwtnqr+sdlhxscregvrpe6gqrg
nbkzykuum2pmzxpt1nytdiiers59cmwam4nv/zg+wurpome3wo61yrg1qluwkmlyja1fcmqsplck
so1wsv2/ivj547ybtwifkge2dpbogsm2yweoqpzxc9tjjeipj8fnnvs6rjetybwmtsoyenzlo8nq
owsgkaltytywz6k4500aq/kyhklm3xx5uedzlzy8m8x0inlcu0rlukoz587rzecavhfkarxpr6mj
sgimoeubnok55c6yfepgqzloyqlzmk8bi9txrgw2br2smwe+nrn6gs9r2ml54uyd4zb8zp7mzzgd
facbdgmoltkuvgrmtqwqte2gnbhqvxzkydpds3tooiqugqzjnlarhilrjbr6irylu9ywv8wj1f8k
jyn0esve9ijd/zltm9jn5ipxosicjynvr6ns8dc60svrwekeh6gubrt876bnd2pux7ldpecbiaya
y9vgcrhgmfzklqfyfv+3euxouvn15ezdn6/b3dq0cjudxzb0f91rx7budn9qbhtur5nrq8ts9ebj
nchpunejbct78hx0i4gn8gv3igdkndnztoz8kxs3pw/iqkxbxmdjqrhzz36vhwke0c4nlcmaltah
9w3xhgpmfq+zeiwf3wp4rjnbhz8teme89q1su7gro7fll57snrf7u9mk8tu/xd7ymr3qw8/85vsk
3m7nddajn3qaub/yrlr+woo+fo17/76m/34d13mufhm2+vzot7/6zwjdmq3//fbvdsql5e/xbaqa
owoyzjbrwut5/4xf98thruwrev3fssx609bg9s3frg3fopxd+lxmeennuamb/my7au1pnr4dh
asurbxfson0eqymq4xqhuj8vmxosf1zhkjd6z2cmuwomsx9yuiku0x30d4n2i3sf54ondbkock9a
z3kbnyyvgijui3boal3snod39yzmvrhcqyli9ydizxmc5m/o5hvot3fheovbrnreixtyghyhvh5u
bik3modmkoxtq4b7msxfr3tvcofsfxgm9j/ic38nm3/fmv9dmhlaezr0eiiimiggaimddxabaqea
ow (Trojan.Downloader.Gen) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlvp (Trojan.Downloader.Gen) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlonc (Trojan.Downloader.Gen) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlprc(windows; u; windows nt 6.0; en-us; rv:1.9.0.3) gecko/2008092417 firefox/3.0.3 (Trojan.Downloader.Gen) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlprct.com&p=r0lgodlhyaa8apcaaaaaaiaaaacaaicaaaaagiaagacagicagmdawp8aaad/ap//aaaa//8a/wd/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 (Trojan.Downloader.Gen) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlpsc&p=r0lgodlhyaa8apcaaaaaaiaaaacaaicaaaaagiaagacagicagmdawp8aaad/ap//aaaa//8a/wd/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 (Trojan.Downloader.Gen) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlpsccom&p=r0lgodlhyaa8apcaaaaaaiaaaacaaicaaaaagiaagacagicagmdawp8aaad/ap//aaaa//8a/wd/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 (Trojan.Downloader.Gen) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlpsc&p=r0lgodlhyaa8apcaaaaaaiaaaacaaicaaaaagiaagacagicagmdawp8aaad/ap//aaaa//8a/wd/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its
138+odctmhpc5nfe2itdovmhzui44uksgt7wrnvp6iregbaaowonsahizam8fac5h00vmtzkw
ueegs4ych4gluiikax5chnvax4apun6zu3rgansmn2skxhayzl4ieraaow== (Trojan.Downloader.Gen) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejl9z+ash~1\appdata\local\temp\407262271.exe (Trojan.Downloader.Gen) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\mainfull70707.exe (Trojan.FakeAlert) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\mqtw+ (Trojan.Downloader) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\mqutc (Trojan.Downloader) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\7bde84a2-f58f-46ec-9eac-f1f90fead080 (Malware.Trace) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlne (Trojan.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvqozrchfngqd (Trojan.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlrf (Trojan.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlrfm&p=r0lgodlhyaa8apcaaaaaaiaaaacaaicaaaaagiaagacagicagmdawp8aaad/ap//aaaa//8a/wd/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 (Trojan.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlrfnfo&p=r0lgodlhyaa8apcaaaaaaiaaaacaaicaaaaagiaagacagicagmdawp8aaad/ap//aaaa//8a/wd/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 (Trojan.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvqozrchfngre (Trojan.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvqozrchfngreo&p=r0lgodlhyaa8apcaaaaaaiaaaacaaicaaaaagiaagacagicagmdawp8aaad/ap//aaaa//8a/wd/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 (Trojan.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvlxpiejlupc (Trojan.Downloader) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvlxpiejlpsc (Trojan.Downloader) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvlxpiejlqc (Trojan.Downloader) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvlxpiejlo+ (Trojan.Downloader) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvlxpiejlqvc (Trojan.Downloader) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvlxpiejlqw (Trojan.Downloader) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvlxpiejlora (Trojan.Downloader) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlyil (Trojan.Downloader.Gen) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlqc (Trojan.Downloader.Gen) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlupc (Trojan.Downloader.Gen) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlqb (Trojan.Downloader.Gen) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlora (Trojan.Downloader.Gen) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlk+ (Trojan.Downloader.Gen) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlprc (Trojan.Downloader.Gen) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlna (Trojan.Downloader.Gen) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlyild.com/dw/dw.php?id=%s&ver=d01 (Trojan.Downloader.Gen) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlupct.com&p=r0lgodlhyaa8apcaaaaaaiaaaacaaicaaaaagiaagacagicagmdawp8aaad/ap//aaaa//8a/wd/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 (Trojan.Downloader.Gen) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlrxc (Trojan.Downloader.Gen) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlq+ (Trojan.Downloader.Gen) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlmc (Trojan.Downloader.Gen) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlqw (Trojan.Downloader.Gen) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlotc (Trojan.Downloader.Gen) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlo+ (Trojan.Downloader.Gen) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlpsc (Trojan.Downloader.Gen) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlrxc&p=r0lgodlhyaa8apcaaaaaaiaaaacaaicaaaaagiaagacagicagmdawp8aaad/ap//aaaa//8a/wd/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== (Trojan.Downloader.Gen) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlspc (Trojan.Downloader.Gen) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlkc (Trojan.Downloader.Gen) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejloc (Trojan.Downloader.Gen) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlhb (Trojan.Downloader.Gen) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlprcfo&p=r0lgodlhyaa8apcaaaaaaiaaaacaaicaaaaagiaagacagicagmdawp8aaad/ap//aaaa//8a/wd/
/////waaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaa
aaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaamwaazgaamqaazaaa/wazaaazmwazzgazmqazzaaz/wbm
aabmmwbmzgbmmqbmzabm/wczaaczmwczzgczmqczzacz/wdmaadmmwdmzgdmmqdmzadm/wd/aad/
mwd/zgd/mqd/zad//zmaadmamzmazjmamtmazdma/zmzadmzmzmzzjmzmtmzzdmz/znmadnmmznm
zjnmmtnmzdnm/zozadozmzozzjozmtozzdoz/zpmadpmmzpmzjpmmtpmzdpm/zp/adp/mzp/zjp/
mtp/zdp//2yaagyam2yazmyamwyazgya/2yzagyzm2yzzmyzmwyzzgyz/2zmagzmm2zmzmzmmwzm
zgzm/2azagazm2azzmazmwazzgaz/2bmagbmm2bmzmbmmwbmzgbm/2b/agb/m2b/zmb/mwb/zgb/
/5kaajkam5kazpkamzkazjka/5kzajkzm5kzzpkzmzkzzjkz/5lmajlmm5lmzplmmzlmzjlm/5mz
ajmzm5mzzpmzmzmzzjmz/5nmajnmm5nmzpnmmznmzjnm/5n/ajn/m5n/zpn/mzn/zjn//8waamwa
m8wazswamcwazmwa/8wzamwzm8wzzswzmcwzzmwz/8xmamxmm8xmzsxmmcxmzmxm/8yzamyzm8yz
zsyzmcyzzmyz/8zmamzmm8zmzszmmczmzmzm/8z/amz/m8z/zsz/mcz/zmz///8aap8am/8azv8a
mf8azp8a//8zap8zm/8zzv8zmf8zzp8z//9map9mm/9mzv9mmf9mzp9m//+zap+zm/+zzv+zmf+z
zp+z///map/mm//mzv/mmf/mzp/m////ap//m///zv//mf//zp///yh5baeaabaalaaaaadiadwa
aaj/ap8jheiwomgda6khxmiwocohecnkneixoksfajfo1ohqo8eg1ejw5gixpmmtkfmwjfkylz+d
qf6xvemzpk2zegcsnmktz0edfl4sdcruilvur0uqjklzpu+nn6ncjjkzatocrdme9omsjm6ruspe
pcox5selcdnmdoququcxvhtq5fp0z8kqiqv+q4sqrniuzkts5qpxite+a7n6xziqmei8fvn+nyww
8e7iejeqtewtkfyibluo7drut2frc3swhovwooa8oa9tnt0xkuxmsr/kxeu3se+xvv9+tok4p0jj
tfsit8vrst3vrnuz340bsmbqsfu/zonz8l/xipu+/wu7/cnbkcvrznqo0jj7sfmhun29vgnu+rel
l5qmobnx78ir99z/wnm2mxlqxryaam8tujjlohlwhwb03rcfrwse6bpsfjvwxnijmfyvrtonlrbp
22nexmnlifjdiqt9bldjhkwmg17ujygwq5ivban/mbnk1o7jntaau/fblabwsg25eokybhdlhkch
d1lifu7y334/ekmil9jthxonmc5m5hejochgws0a5rlrenl1zny+rtnjub+jian1ruj3uhmyovtj
d9xdoj5ahtivjpfrykxlo0shpxcv6rnoqfatniafliql5uf1r2gqy2a4peukuchogialim5ff4kf
bv91fjy0zgmtuj+9uddjlu6q5krn3rwqjczdx1iwjhkblpypxvnpfm4adahdecbjfjvtqgvwodod
2kjlsyrkflj+yretr2dzotymlqlp6pzmdvcmarw6zgerxeq6w4e7gohqr76jypbz/s12q232gohh
aj2hvy1wigpea5wglimtkg5ogwoq0xjkphaviuwiozfewk/ao0fyh5jsaiiyurz+eol56augocss
e9goj+hn8s50pyaqzio9yxxruiqh9xjps48ke7ieu+swe7ft5ue22cl55wzkmuajrtntlvw5amwl
jv9koohrxztdjfxucl3siawrve1zim+x3f+tenb/fhfqgo87vxayoqztwzhkjc/i1llpql7nkcz1
upf165f1ggcd6e46r735pgn39xz4xpz5vm/zvowtrr4ltwj5zwlr9supx1erz3fdhafcu+u71nuv
oxjyzp3vd53hf2d9n3u6z+etow8d5qckwde5v1cks62t0kqtxpnmdag/1+xpgwju2brjcniknevk
y6x3idxpwfilrhxu7y4ek9saw6t5fgthxuvkd7xc/ap54hni7lalpngni4cmqrw0epav7ikoustz
wlwwxzhq+wpbfxfeztbdvextjhwt815g1oa3tzjmzafajksw5ldkfwlmsamb8kz0rptpdloxtiqe
/36skakfpcilmutxdec0ssmtb81xvcycylyocg415wkiixqnlbphqu54+k7n8nk13ucoan17vkju
a5liitejtdwet1wxwdojkghl09wjidq14uvokktb04gwddlg8lbbh1mxs0xho8mdj2iwtnolc9mb
wrkfyawrwlwiysfncm16bunkkppkwps1swjwwpa9cukqlmofa1cjlxq2kdxvltfehvkdt7y1fklq
7uzv+xqdv9abtxfrqbce4yh/nqimaa5bifytlc2wgviljgsdywki7tyzwr2rlvlzjkgmzsak/xcj
fjnloroyvyacceb6czch6dlcuxgmuy80terwxp+/ftakyioyi8mafdir9o4w+jhfuj41ovdz7w2q
ipd0/jliiy7wwuqdwf0cw0cu6hfljpnld0fqtojxsce/ezhrluaww+kqkkcsz87kpc8prez24ctb
7kjzzyphqpoitz+9ivkkj1wpmd/uixaftuu0geamjbkptpcck97gjmcn8wbaeixrc0auhusc5tpx
c71brqr4nbwop0thibhctnoaw6nhcdqvmojgrt1saep+5hiyxaro8+pcguzkjid6jkbfiamyf2lw
p85iqp56jnmowqvipa6l64nurlyxv/htsomkidjnbtq6aptwoth73osobutpdnspvksmekdqwgl/
6q1anzndmhv2votrdhouwezme5eyng6rgkubdmsurlxpiqtwdzoiautwneboal5tk4roajkxoh2q
togjo0tdvmctabfla9nne8b0jwhhzvm4grplwugrrkegfa27xo9clqwczbskv7ibxq+rxjwyth8n
hchhpuq/bmomlyxpelyeeibp9utjxyzt+t5ljgdz84tpkmxwfsjb8sksqdm16xbpddyywcdbw82h
b11zv47c0zujo92j7jdnlg2xnzvl6zpkexjczopt9x0s/2lzysgs1ic7o10ri9bcgdlusdoxcwfd
sczwzmtdar1a2r62gyft0taoadifcfwps16f/2kg6tgbwgdbp5j1qvpmf+cwmrghgkqkwrenyz/q
mk8hktclrhj2cuqleyqmpmt0i5vwr6dwvg5/ywjgldfbioyhyjavwq6e3lo8hs1qk/nt2rvxorie
kcygnqicu1w157ywpqokqnha0jumttxvinsybtpazaz1rjzsysnrmkfgpmsvxmhjaanv4gyeawba
vpuk32hpkz8esyfsrow2lrftaclmcddee5c9vqs0crdpaotgclri8qvhu5bgbvvzihm8uzjnnigp
lqynyknvww9qzsafftqyfb2oxclmwplw++yuqrdxyfem3xkb0dtcmb3hv4w+o7etw638edjw0v/b
xyultd67rtdfw83lrgxetraw5j6z5uwtly2qag3lew80dg/ufsvlgxzdcmt5q+c7zkeqqtl2doo4
wtb1rzumi1sc85v8jlynignjn0w6wkt2wddrm+lprbi4zuvnmsnvtvgbtpu7dpfjqc4n//66dnzi
kkgv1tuhfpqyxz71rjivusj3djftusp5l+zvqwqvovpotptoxladw7r8qk10w649pgejwtp1c+gp
kd3bxoyo5wdcgh4sqter7i5/veiycyw45272r7judcfmc/zzvpyludvisqhqnj/3wlngm5p24zf/
+tof6tnrlm7so2ttfoz9pwe0kdelcenbjrlznmjnbjumnltchccz2m1+kq8z/ylsfqg+32ar4xl4
yyk3twpfojp/2vpsqug1msunnxmrmn36znkxexizyijmfxt+cwzdr3saobtrjwldxcyiqlqyfohr
5oewedr0fx7r5fvkkn0juoajtcsaiolajxabaqa7 (Trojan.Downloader.Gen) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlqe (Trojan.Downloader.Gen) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlqenfo&p=r0lgodlhyaa8apcaaaaaaiaaaacaaicaaaaagiaagacagicagmdawp8aaad/ap//aaaa//8a/wd/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 (Trojan.Downloader.Gen) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlud (Trojan.Downloader.Gen) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlqf (Trojan.Downloader.Gen) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlvp (Trojan.Downloader.Gen) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlonc (Trojan.Downloader.Gen) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlprc(windows; u; windows nt 6.0; en-us; rv:1.9.0.3) gecko/2008092417 firefox/3.0.3 (Trojan.Downloader.Gen) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlprct.com&p=r0lgodlhyaa8apcaaaaaaiaaaacaaicaaaaagiaagacagicagmdawp8aaad/ap//aaaa//8a/wd/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 (Trojan.Downloader.Gen) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlpsc&p=r0lgodlhyaa8apcaaaaaaiaaaacaaicaaaaagiaagacagicagmdawp8aaad/ap//aaaa//8a/wd/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 (Trojan.Downloader.Gen) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlpsccom&p=r0lgodlhyaa8apcaaaaaaiaaaacaaicaaaaagiaagacagicagmdawp8aaad/ap//aaaa//8a/wd/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 (Trojan.Downloader.Gen) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejlpsc&p=r0lgodlhyaa8apcaaaaaaiaaaacaaicaaaaagiaagacagicagmdawp8aaad/ap//aaaa//8a/wd/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its
138+odctmhpc5nfe2itdovmhzui44uksgt7wrnvp6iregbaaowonsahizam8fac5h00vmtzkw
ueegs4ych4gluiikax5chnvax4apun6zu3rgansmn2skxhayzl4ieraaow== (Trojan.Downloader.Gen) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lvswpiejl9z+ash~1\appdata\local\temp\407262271.exe (Trojan.Downloader.Gen) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\mqtw+ (Trojan.Downloader) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\mqutc (Trojan.Downloader) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\msclle.exe (Trojan.Downloader) -> No action taken.

Registry Data Items Infected:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\DisableRegistryTools (Hijack.Regedit) -> Bad: (1) Good: (0) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command\(default) (Hijack.StartMenuInternet) -> Bad: ("C:\Users\thrasherstudios77\AppData\Local\av.exe" /START "C:\Program Files (x86)\Internet Explorer\iexplore.exe") Good: (iexplore.exe) -> No action taken.

Folders Infected:
(No malicious items detected)

Files Infected:
C:\Windows\System32\uccaj.dll (Trojan.Downloader) -> No action taken.
C:\Windows\System32\jseg0.dll (Trojan.Downloader) -> No action taken.
C:\Windows\winamp.exe (Trojan.Downloader) -> No action taken.
C:\Windows\winlogon.exe (Trojan.Downloader) -> No action taken.
C:\Windows\hexdump.exe (Trojan.Downloader) -> No action taken.
C:\Windows\lsass.exe (Trojan.Downloader) -> No action taken.
C:\Windows\win16.exe (Trojan.Downloader) -> No action taken.
C:\Windows\SysWOW64\n1weqnxybj.dll (Trojan.Ertfor) -> No action taken.
C:\Windows\SysWOW64\m9uhzzg2.dll (Trojan.Ertfor) -> No action taken.
C:\ProgramData\Update\seupd.exe (Trojan.Clicker) -> No action taken.
C:\Users\thrasherstudios77\AppData\Local\Temp\iexplorer.exe (Malware.Packer.Gen) -> No action taken.
C:\Users\thrasherstudios77\Documents\Downloads\Adobe CS4 Master Collection\Adobe CS4 Master Collection\Adobe CS4 Master Collection Windows\Adobe CS4 Master Collection\MAZUKi\adobe-master-cs4pre-keygen.exe (Trojan.Agent.CK) -> No action taken.
C:\Windows\win32.exe (Trojan.Downloader) -> No action taken.
C:\Windows\System32\m9uhzzg2.dll (Trojan.Downloader) -> No action taken.
C:\Windows\System32\n1weqnxybj.dll (Trojan.Agent) -> No action taken.
C:\Windows\System32\xa8re7o.dll (Trojan.Agent) -> No action taken.
C:\Windows\SysWOW64\jseg0.dll (Trojan.Downloader) -> No action taken.
C:\Windows\SysWOW64\uccaj.dll (Trojan.Downloader) -> No action taken.
C:\Windows\SysWOW64\xa8re7o.dll (Trojan.Agent) -> No action taken.
C:\Windows\System32\WinDir\svchost.exe (Backdoor.SpyNet) -> No action taken.
C:\Users\thrasherstudios77\AppData\Local\Temp\services.exe (Password.Stealer) -> No action taken.
C:\Windows\System32\config\systemprofile\AppData\Local\av.exe (Rogue.MultipleAV) -> No action taken.
C:\Windows\smss.exe (Trojan.Agent) -> No action taken.
C:\Users\thrasherstudios77\AppData\Local\Temp\sysedit.exe (Trojan.Downloader.Gen) -> No action taken.
C:\Users\thrasherstudios77\AppData\Local\Temp\mdm.exe (Trojan.Downloader.Gen) -> No action taken.
C:\Users\thrasherstudios77\AppData\Local\Temp\nvsvc32.exe (Trojan.Downloader.Gen) -> No action taken.
C:\Users\thrasherstudios77\AppData\Local\Temp\cmd.exe (Trojan.Downloader.Gen) -> No action taken.
C:\Users\thrasherstudios77\AppData\Local\Temp\setup.exe (Trojan.Downloader.Gen) -> No action taken.
C:\Windows\nvsvc32.exe (Trojan.Downloader) -> No action taken.
C:\Windows\sysedit.exe (Trojan.Downloader) -> No action taken.

#15 Elise

Elise

    Bleepin' Blonde


  • Malware Study Hall Admin
  • 61,065 posts
  • ONLINE
  •  
  • Gender:Female
  • Location:Romania
  • Local time:11:04 PM

Posted 13 November 2010 - 08:34 AM

A full scan takes more time than a quick scan. Usually a quick scan is enough, but since your computer is quite infected, I wanted to run a full scan first.

Did you remove all found items?

If so, please perform a quick scan so we can see if things were successfully deleted or got recreated.

regards, Elise


"Now faith is the substance of things hoped for, the evidence of things not seen."

 

Follow BleepingComputer on: Facebook | Twitter | Google+ | lockerdome

 

Malware analyst @ Emsisoft





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users