Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Only working in safe mode


  • This topic is locked This topic is locked
34 replies to this topic

#1 sawz

sawz

  • Members
  • 138 posts
  • OFFLINE
  •  
  • Local time:08:26 AM

Posted 09 January 2012 - 12:45 PM

Hello again forum I am back with another problem my sister has asked me to take a look at her laptop as she put it the thing is just so so slow it seems broken :)The machine in question is an HP G61 laptop with the windows 7 product number-{EDIT removed possible product key}
well when I first turned it on it took all of about one hour before I could open a home page to do any thing at all she had no virus protection at all and pop ups and such were taking over so I loaded up malwarebytes anti malware and ran the quick scan 896 problems were found and I let mabam take care of that I then installed AVG free version and started to run that scan well at the same time the microsoft updates window packs and some others that I know nothing about decide to auto update 30 of them to be exact well once they started the whole thing shut down and now nothing will work I fear that I made this worse for her well actually I did . I can get it started in safe mode only so can this be put back to a working state from there I noticed she has like twenty folders with pics and stuff so I really dont want to lose them on her and she just cant afford another laptop at this time any help would be greatly appreciated thanks everyone, sawz.

Edited by boopme, 09 January 2012 - 01:30 PM.


BC AdBot (Login to Remove)

 


#2 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,573 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:08:26 AM

Posted 09 January 2012 - 01:35 PM

Hello, I moved this from WIN7 to thr Am I INfected forum.

Please download MiniToolBox, save it to your desktop and run it.

Checkmark the following checkboxes:
  • Flush DNS
  • Report IE Proxy Settings
  • Reset IE Proxy Settings
  • Report FF Proxy Settings
  • Reset FF Proxy Settings
  • List content of Hosts
  • List IP configuration
  • List Winsock Entries
  • List last 10 Event Viewer log
  • List Installed Programs
  • List Devices
  • List Users, Partitions and Memory size.
  • List Minidump Files
Click Go and post the result (Result.txt). A copy of Result.txt will be saved in the same directory the tool is run.

Note: When using "Reset FF Proxy Settings" option Firefox should be closed.

>>>>>>

Please download TDSSKiller.zip and and extract it.
  • Run TDSSKiller.exe.
  • Click Start scan.
  • When it is finished the utility outputs a list of detected objects with description.
    The utility automatically selects an action (Cure or Delete) for malicious objects.
    The utility prompts the user to select an action to apply to suspicious objects (Skip, by default). Let the options as it is and click Continue
  • Let reboot if needed and tell me if the tool needed a reboot.
  • Click on Report and post the contents of the text file that will open.

    Note: By default, the utility outputs the log into system disk (it is usually the disk with installed operating system, C:\) root folder. The Log have a name like: TDSSKiller.Version_Date_Time_log.txt.



If TDSSKiller does not run, try renaming it. To do this, right-click on TDSSKiller.exe, select Rename and give it a random name with the .com file extension (i.e. 123abc.com). If you do not see the file extension, please refer to these[/color] instructions. In some cases it may be necessary to redownload TDSSKiller and randomly rename it before downloading and saving to the computer.

>>>
Reboot into Safe Mode with Networking
How to start Windows 7 in Safe Mode



Next run Superantisypware (SAS):

Download and scan with SUPERAntiSpyware Free for Home Users
  • Double-click SUPERAntiSpyware.exe and use the default settings for installation.
  • An icon will be created on your desktop. Double-click that icon to launch the program.
  • If asked to update the program definitions, click "Yes". If not, update the definitions before scanning by selecting "Check for Updates". (If you encounter any problems while downloading the updates, manually download them from here. Double-click on the hyperlink for Download Installer and save SASDEFINITIONS.EXE to your desktop. Then double-click on SASDEFINITIONS.EXE to install the definitions.)
  • In the Main Menu, click the Preferences... button.
  • Click the Scanning Control tab.
  • Under Scanner Options make sure the following are checked (leave all others unchecked):
    • Close browsers before scanning.
    • Scan for tracking cookies.
    • Terminate memory threats before quarantining.
  • Click the "Close" button to leave the control center screen.
  • Back on the main screen, under "Scan for Harmful Software" click Scan your computer.
  • On the left, make sure you check C:\Fixed Drive.
  • On the right, under "Complete Scan", choose Perform Complete Scan.
  • Click "Next" to start the scan. Please be patient while it scans your computer.
  • After the scan is complete, a Scan Summary box will appear with potentially harmful items that were detected. Click "OK".
  • Make sure everything has a checkmark next to it and click "Next".
  • A notification will appear that "Quarantine and Removal is Complete". Click "OK" and then click the "Finish" button to return to the main menu.
  • If asked if you want to reboot, click "Yes".
  • To retrieve the removal information after reboot, launch SUPERAntispyware again.
    • Click Preferences, then click the Statistics/Logs tab.
    • Under Scanner Logs, double-click SUPERAntiSpyware Scan Log.
    • If there are several logs, click the current dated log and press View log. A text file will open in your default text editor.
    • Please copy and paste the Scan Log results in your next reply.
  • Click Close to exit the program.
If you have a problem downloading, installing or getting SAS to run, try downloading and using the SUPERAntiSpyware Portable Scanner instead. Save the randomly named file (i.e. SAS_1710895.COM) to a usb drive or CD and transfer to the infected computer. Then double-click on it to launch and scan. The file is randomly named to help keep malware from blocking the scanner.


Rerun MBAM (MalwareBytes) like this:

Open MBAM in normal mode and click Update tab, select Check for Updates,when done
click Scanner tab,select Quick scan and scan (normal mode).
After scan click Remove Selected, [color="#8B0000"]Post new scan log
and Reboot into normal mode.

Please ask any needed questions,post logs and Let us know how the PC is running now.
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#3 sawz

sawz
  • Topic Starter

  • Members
  • 138 posts
  • OFFLINE
  •  
  • Local time:08:26 AM

Posted 09 January 2012 - 04:46 PM

Thanks for all of your help but I cant get the infected unit to do anything except start in safe mode, I am on my laptop at this time I will attempt to start the injured piece up again.

#4 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,573 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:08:26 AM

Posted 09 January 2012 - 04:53 PM

You cannot get to the desktop or from the desktop you cannot run the tools?
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#5 sawz

sawz
  • Topic Starter

  • Members
  • 138 posts
  • OFFLINE
  •  
  • Local time:08:26 AM

Posted 09 January 2012 - 04:55 PM

You cannot get to the desktop or from the desktop you cannot run the tools?

So far no it just shuts down I am trying to start er up in safe mode right now, thanks.safe mode screen just says - Please wait... not too much more happening, its trying to get started but cant seem to get going.

Edited by sawz, 09 January 2012 - 04:59 PM.


#6 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,573 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:08:26 AM

Posted 09 January 2012 - 05:04 PM

Ok, I will ask someone that handles this situation to reply here.
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#7 sawz

sawz
  • Topic Starter

  • Members
  • 138 posts
  • OFFLINE
  •  
  • Local time:08:26 AM

Posted 09 January 2012 - 05:05 PM

OK I am on the injured unit right now and it is in safe mode but it is running.

#8 sawz

sawz
  • Topic Starter

  • Members
  • 138 posts
  • OFFLINE
  •  
  • Local time:08:26 AM

Posted 09 January 2012 - 05:13 PM

I tried to run the very first part of your fix mini tool box by farbar, ticked everything and clicked go reply I got back was/is A Big RED X followed by - The ordinal 1108 could not be located in the dynamic library WSOCK32.dll.

#9 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,573 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:08:26 AM

Posted 09 January 2012 - 05:15 PM

Please click Start > Run, type inetcpl.cpl in the runbox and press enter.
Click the Connections tab and click the LAN settings option.
Verify if "Use a proxy..." is checked, if so, UNcheck it and click OK/OK to exit.
Now check if the internet is working again.

OR

Go to Start ... Run and type in cmd
A dos Window will appear.
Type in the dos window: netsh winsock reset
Click on the enter key.

Reboot your system to complete the process.

Reboot in Safe mode with Ntworking and skip Mini and move to the scan.
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#10 sawz

sawz
  • Topic Starter

  • Members
  • 138 posts
  • OFFLINE
  •  
  • Local time:08:26 AM

Posted 09 January 2012 - 05:50 PM

17:38:31.0817 2556 TDSS rootkit removing tool 2.6.25.0 Dec 23 2011 14:51:16
17:38:32.0160 2556 ============================================================
17:38:32.0160 2556 Current date / time: 2012/01/09 17:38:32.0160
17:38:32.0160 2556 SystemInfo:
17:38:32.0160 2556
17:38:32.0160 2556 OS Version: 6.1.7600 ServicePack: 0.0
17:38:32.0160 2556 Product type: Workstation
17:38:32.0160 2556 ComputerName: MARIA-PC
17:38:32.0160 2556 UserName: maria
17:38:32.0160 2556 Windows directory: C:\Windows
17:38:32.0160 2556 System windows directory: C:\Windows
17:38:32.0160 2556 Running under WOW64
17:38:32.0160 2556 Processor architecture: Intel x64
17:38:32.0160 2556 Number of processors: 1
17:38:32.0160 2556 Page size: 0x1000
17:38:32.0160 2556 Boot type: Safe boot with network
17:38:32.0176 2556 ============================================================
17:38:33.0720 2556 Initialize success
17:38:37.0230 2592 ============================================================
17:38:37.0230 2592 Scan started
17:38:37.0230 2592 Mode: Manual;
17:38:37.0230 2592 ============================================================
17:38:39.0851 2592 1394ohci (1b00662092f9f9568b995902f0cc40d5) C:\Windows\system32\DRIVERS\1394ohci.sys
17:38:39.0867 2592 1394ohci - ok
17:38:39.0960 2592 ACPI (6f11e88748cdefd2f76aa215f97ddfe5) C:\Windows\system32\DRIVERS\ACPI.sys
17:38:39.0960 2592 ACPI - ok
17:38:40.0023 2592 AcpiPmi (63b05a0420ce4bf0e4af6dcc7cada254) C:\Windows\system32\DRIVERS\acpipmi.sys
17:38:40.0023 2592 AcpiPmi - ok
17:38:40.0116 2592 adp94xx (2f6b34b83843f0c5118b63ac634f5bf4) C:\Windows\system32\DRIVERS\adp94xx.sys
17:38:40.0147 2592 adp94xx - ok
17:38:40.0179 2592 adpahci (597f78224ee9224ea1a13d6350ced962) C:\Windows\system32\DRIVERS\adpahci.sys
17:38:40.0194 2592 adpahci - ok
17:38:40.0241 2592 adpu320 (e109549c90f62fb570b9540c4b148e54) C:\Windows\system32\DRIVERS\adpu320.sys
17:38:40.0241 2592 adpu320 - ok
17:38:40.0366 2592 AFD (6ef20ddf3172e97d69f596fb90602f29) C:\Windows\system32\drivers\afd.sys
17:38:40.0366 2592 AFD - ok
17:38:40.0459 2592 AgereSoftModem (af4748ef93416159459769a24a0053af) C:\Windows\system32\DRIVERS\agrsm64.sys
17:38:40.0506 2592 AgereSoftModem - ok
17:38:40.0600 2592 agp440 (608c14dba7299d8cb6ed035a68a15799) C:\Windows\system32\DRIVERS\agp440.sys
17:38:40.0600 2592 agp440 - ok
17:38:40.0662 2592 aliide (5812713a477a3ad7363c7438ca2ee038) C:\Windows\system32\DRIVERS\aliide.sys
17:38:40.0662 2592 aliide - ok
17:38:40.0693 2592 amdide (1ff8b4431c353ce385c875f194924c0c) C:\Windows\system32\DRIVERS\amdide.sys
17:38:40.0693 2592 amdide - ok
17:38:40.0709 2592 AmdK8 (7024f087cff1833a806193ef9d22cda9) C:\Windows\system32\DRIVERS\amdk8.sys
17:38:40.0740 2592 AmdK8 - ok
17:38:40.0756 2592 AmdPPM (1e56388b3fe0d031c44144eb8c4d6217) C:\Windows\system32\DRIVERS\amdppm.sys
17:38:40.0771 2592 AmdPPM - ok
17:38:40.0834 2592 amdsata (ec7ebab00a4d8448bab68d1e49b4beb9) C:\Windows\system32\drivers\amdsata.sys
17:38:40.0834 2592 amdsata - ok
17:38:40.0896 2592 amdsbs (f67f933e79241ed32ff46a4f29b5120b) C:\Windows\system32\DRIVERS\amdsbs.sys
17:38:40.0912 2592 amdsbs - ok
17:38:40.0974 2592 amdxata (db27766102c7bf7e95140a2aa81d042e) C:\Windows\system32\drivers\amdxata.sys
17:38:40.0974 2592 amdxata - ok
17:38:40.0990 2592 AppID (42fd751b27fa0e9c69bb39f39e409594) C:\Windows\system32\drivers\appid.sys
17:38:40.0990 2592 AppID - ok
17:38:41.0099 2592 arc (c484f8ceb1717c540242531db7845c4e) C:\Windows\system32\DRIVERS\arc.sys
17:38:41.0130 2592 arc - ok
17:38:41.0146 2592 arcsas (019af6924aefe7839f61c830227fe79c) C:\Windows\system32\DRIVERS\arcsas.sys
17:38:41.0146 2592 arcsas - ok
17:38:41.0208 2592 AsyncMac (769765ce2cc62867468cea93969b2242) C:\Windows\system32\DRIVERS\asyncmac.sys
17:38:41.0208 2592 AsyncMac - ok
17:38:41.0224 2592 atapi (02062c0b390b7729edc9e69c680a6f3c) C:\Windows\system32\DRIVERS\atapi.sys
17:38:41.0224 2592 atapi - ok
17:38:41.0302 2592 athr (38562a6a9cb10844759eaf2b01a7fcd3) C:\Windows\system32\DRIVERS\athrx.sys
17:38:41.0349 2592 athr - ok
17:38:41.0442 2592 AtiHdmiService (3b9014fb7ce9e20fd726321c7db7d8b0) C:\Windows\system32\drivers\AtiHdmi.sys
17:38:41.0442 2592 AtiHdmiService - ok
17:38:41.0598 2592 atikmdag (a29087680a1c3b049e3c05438e8ff2b8) C:\Windows\system32\DRIVERS\atikmdag.sys
17:38:41.0707 2592 atikmdag - ok
17:38:41.0739 2592 AtiPcie (7c5d273e29dcc5505469b299c6f29163) C:\Windows\system32\DRIVERS\AtiPcie.sys
17:38:41.0739 2592 AtiPcie - ok
17:38:41.0863 2592 AVGIDSDriver (e29ea1a0ec7ab9fa2dc7e75a03f12a4f) C:\Windows\system32\DRIVERS\AVGIDSDriver.Sys
17:38:41.0863 2592 AVGIDSDriver - ok
17:38:41.0910 2592 AVGIDSEH (f823d184b8e8ffb8da3ead45dbf5bd6a) C:\Windows\system32\DRIVERS\AVGIDSEH.Sys
17:38:41.0910 2592 AVGIDSEH - ok
17:38:41.0973 2592 AVGIDSFilter (ed2b25bd7fe35d1944211968842d30da) C:\Windows\system32\DRIVERS\AVGIDSFilter.Sys
17:38:41.0973 2592 AVGIDSFilter - ok
17:38:42.0035 2592 Avgldx64 (979cf8912449a10b987218bff80a1fa3) C:\Windows\system32\DRIVERS\avgldx64.sys
17:38:42.0035 2592 Avgldx64 - ok
17:38:42.0097 2592 Avgmfx64 (36b1a5843695766eac714daffc5b84d1) C:\Windows\system32\DRIVERS\avgmfx64.sys
17:38:42.0097 2592 Avgmfx64 - ok
17:38:42.0238 2592 Avgrkx64 (1102239fb724527f1febbbbccf6bf313) C:\Windows\system32\DRIVERS\avgrkx64.sys
17:38:42.0253 2592 Avgrkx64 - ok
17:38:42.0409 2592 Avgtdia (11f36d3ea82d9db9aa05a476a210551b) C:\Windows\system32\DRIVERS\avgtdia.sys
17:38:42.0409 2592 Avgtdia - ok
17:38:42.0519 2592 b06bdrv (3e5b191307609f7514148c6832bb0842) C:\Windows\system32\DRIVERS\bxvbda.sys
17:38:42.0550 2592 b06bdrv - ok
17:38:42.0628 2592 b57nd60a (b5ace6968304a3900eeb1ebfd9622df2) C:\Windows\system32\DRIVERS\b57nd60a.sys
17:38:42.0628 2592 b57nd60a - ok
17:38:42.0675 2592 Beep (16a47ce2decc9b099349a5f840654746) C:\Windows\system32\drivers\Beep.sys
17:38:42.0690 2592 Beep - ok
17:38:42.0893 2592 BHDrvx64 (0163c18a9ebc4a76542790cec49f5120) C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_17.0.0.136\Definitions\BASHDefs\20110309.001\BHDrvx64.sys
17:38:42.0924 2592 BHDrvx64 - ok
17:38:43.0002 2592 blbdrive (61583ee3c3a17003c4acd0475646b4d3) C:\Windows\system32\DRIVERS\blbdrive.sys
17:38:43.0002 2592 blbdrive - ok
17:38:43.0127 2592 bowser (19d20159708e152267e53b66677a4995) C:\Windows\system32\DRIVERS\bowser.sys
17:38:43.0127 2592 bowser - ok
17:38:43.0143 2592 BrFiltLo (f09eee9edc320b5e1501f749fde686c8) C:\Windows\system32\DRIVERS\BrFiltLo.sys
17:38:43.0143 2592 BrFiltLo - ok
17:38:43.0174 2592 BrFiltUp (b114d3098e9bdb8bea8b053685831be6) C:\Windows\system32\DRIVERS\BrFiltUp.sys
17:38:43.0174 2592 BrFiltUp - ok
17:38:43.0236 2592 Brserid (43bea8d483bf1870f018e2d02e06a5bd) C:\Windows\System32\Drivers\Brserid.sys
17:38:43.0236 2592 Brserid - ok
17:38:43.0267 2592 BrSerWdm (a6eca2151b08a09caceca35c07f05b42) C:\Windows\System32\Drivers\BrSerWdm.sys
17:38:43.0283 2592 BrSerWdm - ok
17:38:43.0299 2592 BrUsbMdm (b79968002c277e869cf38bd22cd61524) C:\Windows\System32\Drivers\BrUsbMdm.sys
17:38:43.0299 2592 BrUsbMdm - ok
17:38:43.0314 2592 BrUsbSer (a87528880231c54e75ea7a44943b38bf) C:\Windows\System32\Drivers\BrUsbSer.sys
17:38:43.0314 2592 BrUsbSer - ok
17:38:43.0377 2592 BTHMODEM (9da669f11d1f894ab4eb69bf546a42e8) C:\Windows\system32\DRIVERS\bthmodem.sys
17:38:43.0377 2592 BTHMODEM - ok
17:38:43.0486 2592 ccHP (da66e851e76766d2c84502fe682ab175) C:\Windows\system32\drivers\NISx64\1108000.005\ccHPx64.sys
17:38:43.0501 2592 ccHP - ok
17:38:43.0533 2592 cdfs (b8bd2bb284668c84865658c77574381a) C:\Windows\system32\DRIVERS\cdfs.sys
17:38:43.0564 2592 cdfs - ok
17:38:43.0579 2592 cdrom (83d2d75e1efb81b3450c18131443f7db) C:\Windows\system32\DRIVERS\cdrom.sys
17:38:43.0595 2592 cdrom - ok
17:38:43.0611 2592 circlass (d7cd5c4e1b71fa62050515314cfb52cf) C:\Windows\system32\DRIVERS\circlass.sys
17:38:43.0611 2592 circlass - ok
17:38:43.0673 2592 CLFS (fe1ec06f2253f691fe36217c592a0206) C:\Windows\system32\CLFS.sys
17:38:43.0704 2592 CLFS - ok
17:38:43.0813 2592 CmBatt (0840155d0bddf1190f84a663c284bd33) C:\Windows\system32\DRIVERS\CmBatt.sys
17:38:43.0813 2592 CmBatt - ok
17:38:43.0829 2592 cmdide (e19d3f095812725d88f9001985b94edd) C:\Windows\system32\DRIVERS\cmdide.sys
17:38:43.0829 2592 cmdide - ok
17:38:43.0907 2592 CNG (f95fd4cb7da00ba2a63ce9f6b5c053e1) C:\Windows\system32\Drivers\cng.sys
17:38:43.0907 2592 CNG - ok
17:38:43.0954 2592 Compbatt (102de219c3f61415f964c88e9085ad14) C:\Windows\system32\DRIVERS\compbatt.sys
17:38:43.0954 2592 Compbatt - ok
17:38:43.0969 2592 CompositeBus (f26b3a86f6fa87ca360b879581ab4123) C:\Windows\system32\DRIVERS\CompositeBus.sys
17:38:43.0969 2592 CompositeBus - ok
17:38:44.0016 2592 crcdisk (1c827878a998c18847245fe1f34ee597) C:\Windows\system32\DRIVERS\crcdisk.sys
17:38:44.0016 2592 crcdisk - ok
17:38:44.0063 2592 DfsC (9c253ce7311ca60fc11c774692a13208) C:\Windows\system32\Drivers\dfsc.sys
17:38:44.0063 2592 DfsC - ok
17:38:44.0110 2592 discache (13096b05847ec78f0977f2c0f79e9ab3) C:\Windows\system32\drivers\discache.sys
17:38:44.0110 2592 discache - ok
17:38:44.0125 2592 Disk (9819eee8b5ea3784ec4af3b137a5244c) C:\Windows\system32\DRIVERS\disk.sys
17:38:44.0125 2592 Disk - ok
17:38:44.0188 2592 drmkaud (9b19f34400d24df84c858a421c205754) C:\Windows\system32\drivers\drmkaud.sys
17:38:44.0188 2592 drmkaud - ok
17:38:44.0281 2592 DXGKrnl (1633b9abf52784a1331476397a48cbef) C:\Windows\System32\drivers\dxgkrnl.sys
17:38:44.0328 2592 DXGKrnl - ok
17:38:44.0437 2592 ebdrv (dc5d737f51be844d8c82c695eb17372f) C:\Windows\system32\DRIVERS\evbda.sys
17:38:44.0500 2592 ebdrv - ok
17:38:44.0578 2592 eeCtrl (066108ae4c35835081598827a1a7d08d) C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys
17:38:44.0593 2592 eeCtrl - ok
17:38:44.0671 2592 elxstor (0e5da5369a0fcaea12456dd852545184) C:\Windows\system32\DRIVERS\elxstor.sys
17:38:44.0718 2592 elxstor - ok
17:38:44.0796 2592 EraserUtilRebootDrv (12866876e3851f1e5d462b2a83e25578) C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys
17:38:44.0796 2592 EraserUtilRebootDrv - ok
17:38:44.0827 2592 ErrDev (34a3c54752046e79a126e15c51db409b) C:\Windows\system32\DRIVERS\errdev.sys
17:38:44.0827 2592 ErrDev - ok
17:38:44.0905 2592 exfat (a510c654ec00c1e9bdd91eeb3a59823b) C:\Windows\system32\drivers\exfat.sys
17:38:44.0937 2592 exfat - ok
17:38:44.0983 2592 fastfat (0adc83218b66a6db380c330836f3e36d) C:\Windows\system32\drivers\fastfat.sys
17:38:45.0015 2592 fastfat - ok
17:38:45.0093 2592 fdc (d765d19cd8ef61f650c384f62fac00ab) C:\Windows\system32\DRIVERS\fdc.sys
17:38:45.0093 2592 fdc - ok
17:38:45.0139 2592 FileInfo (655661be46b5f5f3fd454e2c3095b930) C:\Windows\system32\drivers\fileinfo.sys
17:38:45.0139 2592 FileInfo - ok
17:38:45.0171 2592 Filetrace (5f671ab5bc87eea04ec38a6cd5962a47) C:\Windows\system32\drivers\filetrace.sys
17:38:45.0171 2592 Filetrace - ok
17:38:45.0202 2592 flpydisk (c172a0f53008eaeb8ea33fe10e177af5) C:\Windows\system32\DRIVERS\flpydisk.sys
17:38:45.0202 2592 flpydisk - ok
17:38:45.0249 2592 FltMgr (f7866af72abbaf84b1fa5aa195378c59) C:\Windows\system32\drivers\fltmgr.sys
17:38:45.0264 2592 FltMgr - ok
17:38:45.0295 2592 FsDepends (d43703496149971890703b4b1b723eac) C:\Windows\system32\drivers\FsDepends.sys
17:38:45.0295 2592 FsDepends - ok
17:38:45.0342 2592 Fs_Rec (e95ef8547de20cf0603557c0cf7a9462) C:\Windows\system32\drivers\Fs_Rec.sys
17:38:45.0342 2592 Fs_Rec - ok
17:38:45.0405 2592 fvevol (ae87ba80d0ec3b57126ed2cdc15b24ed) C:\Windows\system32\DRIVERS\fvevol.sys
17:38:45.0420 2592 fvevol - ok
17:38:45.0467 2592 gagp30kx (8c778d335c9d272cfd3298ab02abe3b6) C:\Windows\system32\DRIVERS\gagp30kx.sys
17:38:45.0467 2592 gagp30kx - ok
17:38:45.0545 2592 GEARAspiWDM (e403aacf8c7bb11375122d2464560311) C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
17:38:45.0545 2592 GEARAspiWDM - ok
17:38:45.0592 2592 hcw85cir (f2523ef6460fc42405b12248338ab2f0) C:\Windows\system32\drivers\hcw85cir.sys
17:38:45.0592 2592 hcw85cir - ok
17:38:45.0639 2592 HdAudAddService (6410f6f415b2a5a9037224c41da8bf12) C:\Windows\system32\drivers\HdAudio.sys
17:38:45.0654 2592 HdAudAddService - ok
17:38:45.0670 2592 HDAudBus (0a49913402747a0b67de940fb42cbdbb) C:\Windows\system32\DRIVERS\HDAudBus.sys
17:38:45.0701 2592 HDAudBus - ok
17:38:45.0717 2592 HidBatt (78e86380454a7b10a5eb255dc44a355f) C:\Windows\system32\DRIVERS\HidBatt.sys
17:38:45.0717 2592 HidBatt - ok
17:38:45.0732 2592 HidBth (7fd2a313f7afe5c4dab14798c48dd104) C:\Windows\system32\DRIVERS\hidbth.sys
17:38:45.0732 2592 HidBth - ok
17:38:45.0779 2592 HidIr (0a77d29f311b88cfae3b13f9c1a73825) C:\Windows\system32\DRIVERS\hidir.sys
17:38:45.0779 2592 HidIr - ok
17:38:45.0810 2592 HidUsb (b3bf6b5b50006def50b66306d99fcf6f) C:\Windows\system32\DRIVERS\hidusb.sys
17:38:45.0810 2592 HidUsb - ok
17:38:45.0935 2592 HpqKbFiltr (9af482d058be59cc28bce52e7c4b747c) C:\Windows\system32\DRIVERS\HpqKbFiltr.sys
17:38:45.0935 2592 HpqKbFiltr - ok
17:38:45.0966 2592 HpSAMD (0886d440058f203eba0e1825e4355914) C:\Windows\system32\DRIVERS\HpSAMD.sys
17:38:45.0966 2592 HpSAMD - ok
17:38:46.0029 2592 HTTP (cee049cac4efa7f4e1e4ad014414a5d4) C:\Windows\system32\drivers\HTTP.sys
17:38:46.0044 2592 HTTP - ok
17:38:46.0091 2592 hwpolicy (f17766a19145f111856378df337a5d79) C:\Windows\system32\drivers\hwpolicy.sys
17:38:46.0091 2592 hwpolicy - ok
17:38:46.0122 2592 i8042prt (fa55c73d4affa7ee23ac4be53b4592d3) C:\Windows\system32\DRIVERS\i8042prt.sys
17:38:46.0122 2592 i8042prt - ok
17:38:46.0200 2592 iaStorV (b75e45c564e944a2657167d197ab29da) C:\Windows\system32\drivers\iaStorV.sys
17:38:46.0200 2592 iaStorV - ok
17:38:46.0419 2592 IDSVia64 (6f9b281bc4afff5fe784d7da699d347f) C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_17.0.0.136\Definitions\IPSDefs\20110310.002\IDSvia64.sys
17:38:46.0434 2592 IDSVia64 - ok

#11 sawz

sawz
  • Topic Starter

  • Members
  • 138 posts
  • OFFLINE
  •  
  • Local time:08:26 AM

Posted 09 January 2012 - 06:34 PM

I am having too many shutdowns, everytime I try to run anything this unit just wants to shut down, I will keep trying thanks forum I do appreciate the help offered here it is awesome.

#12 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,573 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:08:26 AM

Posted 09 January 2012 - 07:52 PM

Can you post the old MBAM log
The log is automatically saved and can be viewed by clicking the Logs tab in MBAM.
Copy and paste the contents of that report in your next reply. Be sure to post the complete log to include the top portion which shows MBAM's database version and your operating system.

How long before it crashes. 10 minutes? That mau be log enough to run a MBAM quick scan.

Rerun MBAM (MalwareBytes) like this:

Open MBAM in normal mode and click Update tab, select Check for Updates,when done
click Scanner tab,select Quick scan and scan (normal mode).
After scan click Remove Selected, Post new scan log and Reboot into normal mode.
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#13 sawz

sawz
  • Topic Starter

  • Members
  • 138 posts
  • OFFLINE
  •  
  • Local time:08:26 AM

Posted 09 January 2012 - 08:13 PM

Can you post the old MBAM log
The log is automatically saved and can be viewed by clicking the Logs tab in MBAM.
Copy and paste the contents of that report in your next reply. Be sure to post the complete log to include the top portion which shows MBAM's database version and your operating system.

How long before it crashes. 10 minutes? That mau be log enough to run a MBAM quick scan.

Rerun MBAM (MalwareBytes) like this:

Open MBAM in normal mode and click Update tab, select Check for Updates,when done
click Scanner tab,select Quick scan and scan (normal mode).
After scan click Remove Selected, Post new scan log and Reboot into normal mode.

I cant cant into normal mode at all only safe mode Ill look for the log file, thanks again

#14 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,573 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:08:26 AM

Posted 09 January 2012 - 08:34 PM

OK
Reboot into Safe Mode with Networking
How to start Windows 7 in Safe Mode
Try to update abd scan. If that fails try just runnning the Quick scan again.
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#15 sawz

sawz
  • Topic Starter

  • Members
  • 138 posts
  • OFFLINE
  •  
  • Local time:08:26 AM

Posted 09 January 2012 - 08:35 PM

here is the first mbam log:
Malwarebytes Anti-Malware 1.60.0.1800
www.malwarebytes.org

Database version: v2012.01.09.04

Windows 7 x64 NTFS
Internet Explorer 8.0.7600.16385
maria :: MARIA-PC [administrator]

1/9/2012 1:37:46 AM
mbam-log-2012-01-09 (01-37-46).txt

Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 188509
Time elapsed: 9 minute(s), 7 second(s)

Memory Processes Detected: 1
C:\Users\maria\AppData\Roaming\D1EeDTv6kWOaIHk\eoldSeHt9Hv.exe (Backdoor.Bot) -> 3476 -> Delete on reboot.

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 19
HKCR\Typelib\{B035BA6B-57CD-4F72-B545-65BE465FCAF6} (Adware.ShoppingReport2) -> Quarantined and deleted successfully.
HKCR\Typelib\{D44FD6F0-9746-484E-B5C4-C66688393872} (Adware.ShoppingReport2) -> Quarantined and deleted successfully.
HKCR\Interface\{0EB3F101-224A-4B2B-9E5B-DF720857529C} (Adware.ShoppingReport2) -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{DB38E21A-0133-419D-92AD-ECDFD5244D6D} (Adware.ShoppingReport2) -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{EB620C54-E229-4942-87CE-E717109FC8C6} (Adware.ShoppingReport2) -> Quarantined and deleted successfully.
HKCR\ShoppingReport2.HbAx (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKCR\ShoppingReport2.HbAx.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKCR\ShoppingReport2.HbInfoBand (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKCR\ShoppingReport2.HbInfoBand.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKCR\ShoppingReport2.IEButton (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKCR\ShoppingReport2.IEButton.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKCR\ShoppingReport2.IEButtonA (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKCR\ShoppingReport2.IEButtonA.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKCR\ShoppingReport2.RprtCtrl (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKCR\ShoppingReport2.RprtCtrl.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKCU\Software\ShoppingReport2 (Adware.ShoppingReport2) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\QuestBrowse (Adware.QuestBrowse) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\ShoppingReport2 (Adware.ShoppingReport2) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ShoppingReport2 (Adware.Hotbar) -> Quarantined and deleted successfully.

Registry Values Detected: 267
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|zIf3zwE3xC8234A (Backdoor.Bot) -> Data: C:\Users\maria\AppData\Roaming\D1EeDTv6kWOaIHk\eoldSeHt9Hv.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|KRZ9hYXwjVlBP8234A (Backdoor.Bot) -> Data: C:\Windows\system32\VsWJELhon4sJ.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|tWJ7fEL8gZhwUrO8234A (Backdoor.Bot) -> Data: C:\Windows\system32\GEjYCwlNtPuSDoG.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|PxA1uvS2oFpGaJ8234A (Backdoor.Bot) -> Data: C:\Windows\system32\g8fRZ9hTXjClBzN.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|UZqhYXwkUeOtPy8234A (Backdoor.Bot) -> Data: C:\Windows\system32\avD3onF4aHsJdLg.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|IvS2obF3pGaJdKf8234A (Backdoor.Bot) -> Data: C:\Windows\system32\AEK8fRZ9wUeIryA.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|WfEL8hltx8234A (Backdoor.Bot) -> Data: C:\Windows\system32\wS1ibD3on4m6J.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|bobF3pmaQ6WR9T08234A (Backdoor.Bot) -> Data: C:\Windows\system32\HRZ9hTXwjClBzNx.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|vD3onFamHsJdLgZ8234A (Backdoor.Bot) -> Data: C:\Windows\system32\rxP0ycS1i.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|F9gTXqjYCkVNx0c8234A (Backdoor.Bot) -> Data: C:\Windows\system32\kS2ibF3pn5Q6W7R.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|ozPNycA1uDb4m5Q8234A (Backdoor.Bot) -> Data: C:\Windows\system32\DvpmH5sQE8U.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|tqhYXklOBz0vFZY8234A (Backdoor.Bot) -> Data: C:\Windows\system32\vS1ivD3on45W7E8.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|WH6sWJ7fE8TqYwU8234A (Backdoor.Bot) -> Data: C:\Windows\system32\HrlONtxP0c1b3n4.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|jCwkIVrlOSi3nsg8234A (Backdoor.Bot) -> Data: C:\Windows\system32\uQH6sWK7fLgZ.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|F5aQJ6WKfLhX8234A (Backdoor.Bot) -> Data: C:\Windows\system32\FERZ9hwerN1SoFp.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|vvD3onF4aHsJE8234A (Backdoor.Bot) -> Data: C:\Windows\system32\R7fEL8gqCOy.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|PCwkUrlOBx0c1vn8234A (Backdoor.Bot) -> Data: C:\Windows\system32\fnG4amH6sJfLgZh.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|hF4pmG5sQ6E8R9T8234A (Backdoor.Bot) -> Data: C:\Windows\system32\ZwjUVelIBzNc1v2.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|VH6dWK7fR9TqYeI8234A (Backdoor.Bot) -> Data: C:\Windows\system32\pdWKRhTqCkr2FGa.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|IAuvS2obFpaJdKR8234A (Backdoor.Bot) -> Data: C:\Windows\system32\TelIBrzPy.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|KP0ycS1iDaZYwUe8234A (Backdoor.Bot) -> Data: C:\Windows\system32\EA0ucS2ibTHwU.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|i0ycA1iD2n4JdKg8234A (Backdoor.Bot) -> Data: C:\Windows\system32\hVrxD3onFHsJdLR.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|PdgYVBPcvo45d8Z8234A (Backdoor.Bot) -> Data: C:\Windows\system32\nGms7LZCUlxcDna.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|ZDnas7ghwVlzc1D8234A (Backdoor.Bot) -> Data: C:\Windows\system32\RFGQ8LTjerNu23G.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|VwBxS58Xz8234A (Backdoor.Bot) -> Data: C:\Windows\system32\Uc2Hd9jzu4Q.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|qnQs7qwrN0SD8234A (Backdoor.Bot) -> Data: C:\Windows\system32\BIBrN0H79qCVN02.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|v3Gas7ETjkVNPG78234A (Backdoor.Bot) -> Data: C:\Windows\system32\ObpGQWf9XjkrtAu.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|ukrBPyHWd8RhXUl8234A (Backdoor.Bot) -> Data: C:\Windows\system32\mOtu1Do4HJf8Z.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|KkrNAu23GQ6K9ZY8234A (Backdoor.Bot) -> Data: C:\Windows\system32\LXjkOxuSFnaHKRg.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|lu1DoaHWf8Tq8234A (Backdoor.Bot) -> Data: C:\Windows\system32\YqCVzDpas7LTjwr.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|kXUeBzy1Do4m5J8234A (Backdoor.Bot) -> Data: C:\Windows\system32\oc1Dn4msJE8.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|gDp4Hs7LTqOPciD8234A (Backdoor.Bot) -> Data: C:\Windows\system32\en5Hd7LgqYkrOx0.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|W2ngXUlBPc1o8234A (Backdoor.Bot) -> Data: C:\Windows\system32\W5sWJ7dERYwUlAi.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|hONtxP0uc1b3n4H8234A (Backdoor.Bot) -> Data: C:\Windows\system32\GXYIOAnQsf9ZYkV.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|GiDGQEL9qYwIrOt8234A (Backdoor.Bot) -> Data: C:\Windows\system32\A2Fn5Qd79XYkVzt.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|jUVelIBtzNc1v2b8234A (Backdoor.Bot) -> Data: C:\Windows\system32\ZpmH5sQJ7E8R9Yw.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|QelOBtzP0c1v2nm8234A (Backdoor.Bot) -> Data: C:\Windows\system32\jJ7dEL8gRqYwU.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|meBzci2Fms7KRhX8234A (Backdoor.Bot) -> Data: C:\Windows\system32\sv3onF4a5WdLgZ.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|WqjYCkIVrOtPuSi8234A (Backdoor.Bot) -> Data: C:\Windows\system32\yD3pnG4aQ6W7E9T.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|mkIBrzONyAuSi8234A (Backdoor.Bot) -> Data: C:\Windows\system32\t5aQJ6dWKfLhXjC.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|mK8gRZ9hYwUeItP8234A (Backdoor.Bot) -> Data: C:\Windows\system32\tcA1ivD2oFpHsJd.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|czNx0viFp8234A (Backdoor.Bot) -> Data: C:\Windows\system32\YoFpGa6W8R9TqUe.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|hVOtPySiD8234A (Backdoor.Bot) -> Data: C:\Windows\system32\sCkVltPuSiDoGa6.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|DeIrOx0c2b3n4Qs8234A (Backdoor.Bot) -> Data: C:\Windows\system32\wn5Q6WfLgX.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|nE9ZjCkVl8234A (Backdoor.Bot) -> Data: C:\Windows\system32\PkVOtAuSiDpGaHW.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|LSiDo4m6JfLgZh8234A (Backdoor.Bot) -> Data: C:\Windows\system32\TJE8TqYwUlBP.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|QZjCkVlNPu1TwVl8234A (Backdoor.Bot) -> Data: C:\Windows\system32\CKfLgqYeIrG6W7E.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|K7RgqYeIrNx0c8234A (Backdoor.Bot) -> Data: C:\Windows\system32\gBzNxiFpGaH.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|YeeekIIBrzONxAu8234A (Backdoor.Bot) -> Data: C:\Windows\system32\UKKK8ffRL9hXqU.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|agTTXXqjYCekIrO8234A (Backdoor.Bot) -> Data: C:\Windows\system32\KQHH66dWK7fR9.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|LXqqjjYCekI8234A (Backdoor.Bot) -> Data: C:\Windows\system32\RaaQQH66dWKfR9g.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|hIVVrrzONtxAuc28234A (Backdoor.Bot) -> Data: C:\Windows\system32\WggTTXqqjYCk.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|b7ffEEL9gTZqjCk8234A (Backdoor.Bot) -> Data: C:\Windows\system32\pbbDD3ppnG4QHsW.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|a777fELgZq8234A (Backdoor.Bot) -> Data: C:\Windows\system32\EONNttxP0u.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|G4aammH6sW8234A (Backdoor.Bot) -> Data: C:\Windows\system32\QxxxP00ucS1bDon.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|zTTTZqqhYCwkVrO8234A (Backdoor.Bot) -> Data: C:\Windows\system32\xaammH66sW7fE8.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|BnnnF4aamH5WJdE8234A (Backdoor.Bot) -> Data: C:\Windows\system32\CYYYCCwkUVryc1D.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|XJJ66dEEK8fZ9TX8234A (Backdoor.Bot) -> Data: C:\Windows\system32\CvDD22obF4pm5s.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|KyyyxAA1uv8234A (Backdoor.Bot) -> Data: C:\Windows\system32\fhTTXXwjUCelIrP.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|cGG55dWK8fRLhTq8234A (Backdoor.Bot) -> Data: C:\Windows\system32\DAAA1uuvS2ob3p.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|cQHH66dWK7RL9TX8234A (Backdoor.Bot) -> Data: C:\Windows\system32\IiibbF33pnGa.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|NqqqjYYCekIVzO8234A (Backdoor.Bot) -> Data: C:\Windows\system32\KfffRL99gT.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|OppnnG4aQH6sW7E8234A (Backdoor.Bot) -> Data: C:\Windows\system32\PNttxxA0ucS2bD.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|j77ffELL9gTqjCw8234A (Backdoor.Bot) -> Data: C:\Windows\system32\L44aaQHH6sW.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|QrrrlOONtxP0cS8234A (Backdoor.Bot) -> Data: C:\Windows\system32\zjjYYCwwkI.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|WHHH6ssWK7fE9gZ8234A (Backdoor.Bot) -> Data: C:\Windows\system32\wtttxAA0ucD3pG4.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|lLL88gTZZqYCwUr8234A (Backdoor.Bot) -> Data: C:\Windows\system32\TmmmH66sWJ7E.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|JnFF44amH8234A (Backdoor.Bot) -> Data: C:\Windows\system32\WBBBtxPP0yc1iD3.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|p77ddELL8gZqhXw8234A (Backdoor.Bot) -> Data: C:\Windows\system32\cFFF4aamH5sW.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|EonnFF4pmH5sJ8234A (Backdoor.Bot) -> Data: C:\Windows\system32\gOOBBtzzP0yA1vD.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|JEELL8ggR8234A (Backdoor.Bot) -> Data: C:\Windows\system32\E333onnF4amHsW7.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|RNNyycAA1uv2oF8234A (Backdoor.Bot) -> Data: C:\Windows\system32\veellIBBtz.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|r2oobbF4p8234A (Backdoor.Bot) -> Data: C:\Windows\system32\GllIIBttzPycAuv.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|PXwwjjUCelIBrP8234A (Backdoor.Bot) -> Data: C:\Windows\system32\KfffRZZ9hT.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|NKKK8ffRL9h8234A (Backdoor.Bot) -> Data: C:\Windows\system32\x22oobF3pmG5aJd.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|VCCeekIIBrzNyA08234A (Backdoor.Bot) -> Data: C:\Windows\system32\BWWK8ffL9hTqj.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|nAAA1iivD2on4pH8234A (Backdoor.Bot) -> Data: C:\Windows\system32\QkkUUVeelOBzPy.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|bPNNyycA1uvD2b48234A (Backdoor.Bot) -> Data: C:\Windows\system32\tXXwwjUVVlIBt.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|hjjUUCeek8234A (Backdoor.Bot) -> Data: C:\Windows\system32\wJJJ66dWK8fR9hX.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|ByyyxAA0uvSibFn8234A (Backdoor.Bot) -> Data: C:\Windows\system32\TjUUCeekIBzO.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|kjjjCCekIrzOxA8234A (Backdoor.Bot) -> Data: C:\Windows\system32\DQQQH66dWK7RLgT.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|YAAA0uS2iD8234A (Backdoor.Bot) -> Data: C:\Windows\system32\wXXqqjYCCkIVrOt.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|XVVrrOONtxcSbWL8234A (Backdoor.Bot) -> Data: C:\Windows\system32\wfLgXjYCeI.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|qLL8ggRZqhYXwUe8234A (Backdoor.Bot) -> Data: C:\Windows\system32\yD33onnF4am5sW7.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|QVOtyi4HWdL8234A (Backdoor.Bot) -> Data: C:\Windows\system32\LoGm6WfLgZY.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|s1v2n4m5JdKgZhX8234A (Backdoor.Bot) -> Data: C:\Windows\system32\um5W7E8RqXkVlBz.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|jnnFF4ppmH5QJdE8234A (Backdoor.Bot) -> Data: C:\Windows\system32\meBzyAvvD2.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|KppmmH55Q7dE8R98234A (Backdoor.Bot) -> Data: C:\Windows\system32\mccAA1iivD2nF.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|jEEEL99gTZqjCwI8234A (Backdoor.Bot) -> Data: C:\Windows\system32\BGGG4aaQH6sW7.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|IEELL9gTTqjY8234A (Backdoor.Bot) -> Data: C:\Windows\system32\usssWKK7f.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|lzzzP00ycA1iD2n8234A (Backdoor.Bot) -> Data: C:\Windows\system32\xqqhhYXXwkVelB.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|ljjUUVVelIBzPyc8234A (Backdoor.Bot) -> Data: C:\Windows\system32\dpmHH5J77K8gZhX.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|ARRZZ9hhTXwUClI8234A (Backdoor.Bot) -> Data: C:\Windows\system32\v444pmmG5sQJdE8.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|j66ddWKK8f8234A (Backdoor.Bot) -> Data: C:\Windows\system32\evvvS22obF3pG5Q.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|Z7ffEEL9g8234A (Backdoor.Bot) -> Data: C:\Windows\system32\YbbDD3ppnG4QHsW.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|k99ggTZZqjYwkV8234A (Backdoor.Bot) -> Data: C:\Windows\system32\ennnG44aQH6sK7E.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|TCkVOtPy1v3n4m58234A (Backdoor.Bot) -> Data: C:\Windows\system32\FGaHs7E8T.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|g4m5W7LgZhX8234A (Backdoor.Bot) -> Data: C:\Windows\system32\pE8ZhCkVlBPySiD.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|ruDo4m5Q68234A (Backdoor.Bot) -> Data: C:\Windows\system32\g5Q7E8ZhXjVlBzN.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|gNx1voFpGaJdKfL8234A (Backdoor.Bot) -> Data: C:\Windows\system32\KE8R9TwUlB.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|YCkBzNAuSi8234A (Backdoor.Bot) -> Data: C:\Windows\system32\R3m5QdKfLhX.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|xtAuSi3n4Q6W7E98234A (Backdoor.Bot) -> Data: C:\Windows\system32\Y3n5Q6KfLgXjCkV.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|ypGaHW7E9TqYkVO8234A (Backdoor.Bot) -> Data: C:\Windows\system32\UfLgqYeIrNx0c2.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|zIrOx0cn4msJf8234A (Backdoor.Bot) -> Data: C:\Windows\system32\uDp4Q6KfLgZY.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|n0c1DoFaHsJd8234A (Backdoor.Bot) -> Data: C:\Windows\system32\JW7E8TqYwUrO.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|zlBPyAi2n48234A (Backdoor.Bot) -> Data: C:\Windows\system32\waHsJdLRqY.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|P2n4m5Q7E8ZhXjV8234A (Backdoor.Bot) -> Data: C:\Windows\system32\XJdLgqYwUeOtPyA.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|AhXUeItPyAuD8234A (Backdoor.Bot) -> Data: C:\Windows\system32\r1v2n4m5JdKg.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|SPyAuDoFpG8234A (Backdoor.Bot) -> Data: C:\Windows\system32\Cn4m5Q7EgZhXjVl.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|uQ6E8R9XjClB8234A (Backdoor.Bot) -> Data: C:\Windows\system32\kYwUeItPyAuDo4m.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|TrOy0v2FpGa68234A (Backdoor.Bot) -> Data: C:\Windows\system32\Oy1vopaJW8R9XjC.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|mQ6WfLgZYwIrO8234A (Backdoor.Bot) -> Data: C:\Windows\system32\mR9XjeIrNx0ciDp.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|q0c1b3naHsJf8234A (Backdoor.Bot) -> Data: C:\Windows\system32\sGaHsKf9TqYwIrO.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|dyAiDom57E8R9Xj8234A (Backdoor.Bot) -> Data: C:\Windows\system32\VOx0S3asEgZYVlB.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|bwVlBz0c1v2n4ms8234A (Backdoor.Bot) -> Data: C:\Windows\system32\RSiDoFaHsJE8Rq.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|nb4m5QdKfZhj8234A (Backdoor.Bot) -> Data: C:\Windows\system32\DsJdKg9YwUeItP1.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|Ix0c2b3n4HsKfLg8234A (Backdoor.Bot) -> Data: C:\Windows\system32\EFp5Q6WfLgXjeIr.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|rjCkNPi3naWfLTq8234A (Backdoor.Bot) -> Data: C:\Windows\system32\I3naHs7E9.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|CTqYwUrBx0c8234A (Backdoor.Bot) -> Data: C:\Windows\system32\KrOtPuSiDn4m6W7.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|DgZjkrOtPuSb3n48234A (Backdoor.Bot) -> Data: C:\Windows\system32\lkrOtAu2b3n4QsK.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|cTjCklNx0ciD8234A (Backdoor.Bot) -> Data: C:\Windows\system32\bu2bpGaHW7E.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|YfqYwUrOtP8234A (Backdoor.Bot) -> Data: C:\Windows\system32\ikVlNx0c1DoGaHs.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|tDoaHsJE8RqYwUe8234A (Backdoor.Bot) -> Data: C:\Windows\system32\hWfLgZhCkVlBx0S.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|Lm5Q6E8R9TjClBz8234A (Backdoor.Bot) -> Data: C:\Windows\system32\oE8R9YwUeItNc1v.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|Bx1v2FpGQ6W8R9X8234A (Backdoor.Bot) -> Data: C:\Windows\system32\L4m5QdKfZhXUeIr.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|YVzNx0c2Dp8234A (Backdoor.Bot) -> Data: C:\Windows\system32\Hv2b3GaHdKfLTqY.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|dQ6W7R9TjCkVzNx8234A (Backdoor.Bot) -> Data: C:\Windows\system32\OjCkBzNAuSiFp.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|Ct0c1Do4m6Jf8qC8234A (Backdoor.Bot) -> Data: C:\Windows\system32\Pui3n4QsKE9ZjkV.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|moFp5Q6KfZTwU8234A (Backdoor.Bot) -> Data: C:\Windows\system32\UKg9YjVltPy.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|rubn5HdKR9XYerO8234A (Backdoor.Bot) -> Data: C:\Windows\system32\BGJ8LhXCBN.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|R9ZYVlNuSb3nas78234A (Backdoor.Bot) -> Data: C:\Windows\system32\wqCrxSDaHW.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|ls7E9TqCkVlN8234A (Backdoor.Bot) -> Data: C:\Windows\system32\fqYeIrOt0c2b3na.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|TxuSiDn4m6WfLgZ8234A (Backdoor.Bot) -> Data: C:\Windows\system32\nfLTqYwIl.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|vRqYkVlBz0c1v2n8234A (Backdoor.Bot) -> Data: C:\Windows\system32\IVlBx0ciDoFaHs7.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|Xx0v2FpGaH8234A (Backdoor.Bot) -> Data: C:\Windows\system32\HpGaJdKf9TqUeIr.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|no4m5QdKg9YwUlB8234A (Backdoor.Bot) -> Data: C:\Windows\system32\rWdLgZhXkeOz0ci.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|ZDoFpHs7E8R98234A (Backdoor.Bot) -> Data: C:\Windows\system32\ysJdLgqYwUeOz0c.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|Kc1voFpGsJd8R8234A (Backdoor.Bot) -> Data: C:\Windows\system32\vn4HsJdKg9YwVlt.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|veIrNx1v2FpGa8234A (Backdoor.Bot) -> Data: C:\Windows\system32\poFpGsJE8R9T.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|cLhXjCIrO8234A (Backdoor.Bot) -> Data: C:\Windows\system32\UIrPx1v2b3m5QdK.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|n6W7LgZhC8234A (Backdoor.Bot) -> Data: C:\Windows\system32\xTqYkVlNxuSiDoG.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|ZZhXjClrP8234A (Backdoor.Bot) -> Data: C:\Windows\system32\L1v2b4m5QdK.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|XrPy1v2b3m5Q6W88234A (Backdoor.Bot) -> Data: C:\Windows\system32\voFpGsJd8R9TwUe.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|W6KfLTqUkBzy8234A (Backdoor.Bot) -> Data: C:\Windows\system32\RIrPx1voFpG.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|BFpGa6W7RT8234A (Backdoor.Bot) -> Data: C:\Windows\system32\L6W8LhXjCkBOyAv.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|eHsKfLTqYwIrOtP8234A (Backdoor.Bot) -> Data: C:\Windows\system32\jzNx0c2b3n.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|x6KfLgZjCkrOtP8234A (Backdoor.Bot) -> Data: C:\Windows\system32\ueIrNAuSi3n4.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|qOtPy1voF8234A (Backdoor.Bot) -> Data: C:\Windows\system32\Y1DoFm5W7E8ZhXU.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|IIzNx1v2b8234A (Backdoor.Bot) -> Data: C:\Windows\system32\SNc1v2FpGs6E8Rh.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|CCkrOtPc1v38234A (Backdoor.Bot) -> Data: C:\Windows\system32\qVlNPc1b3Gm6Wfg.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|ByAuDoFp5Q6E88234A (Backdoor.Bot) -> Data: C:\Windows\system32\x5Q7E9YjVlB.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|hy1v2b3GaJd8R9T8234A (Backdoor.Bot) -> Data: C:\Windows\system32\p8R9XjClr.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|si3n5Q6W7LgXjC8234A (Backdoor.Bot) -> Data: C:\Windows\system32\QaJd8RhXjeIrNAu.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|NIrOtAu2b3n8234A (Backdoor.Bot) -> Data: C:\Windows\system32\Un5Q6KfLgXj.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|wPu1o4Hs7LgZY8234A (Backdoor.Bot) -> Data: C:\Windows\system32\jb3naHsKf9TqCkr.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|oXUrPx1SobF8234A (Backdoor.Bot) -> Data: C:\Windows\system32\Q1v2FpG6E8R.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|BhCUrOtPc1voFms8234A (Backdoor.Bot) -> Data: C:\Windows\system32\kIrOt0co4m6WfLg.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|dBzy1vopGaJd8234A (Backdoor.Bot) -> Data: C:\Windows\system32\Ju2b4msJd8RhXjC.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|wuSi3n4Hs78234A (Backdoor.Bot) -> Data: C:\Windows\system32\ADnaHW7LgqYwIlN.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|Z4m5JdKf9TwU8234A (Backdoor.Bot) -> Data: C:\Windows\system32\Gd8R9YwUlBzNc1D.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|YQ6KfLgXqYeVz8234A (Backdoor.Bot) -> Data: C:\Windows\system32\IUeBzNx0v2b3.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|Em6JfEELTqYwV8234A (Backdoor.Bot) -> Data: C:\Windows\system32\o9TqYwIlNx0c1Do.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|Oc1v3FaHsJd8R8234A (Backdoor.Bot) -> Data: C:\Windows\system32\R4msJfLgZhCUrOt.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|Ko4m5QdKgZYwUeB8234A (Backdoor.Bot) -> Data: C:\Windows\system32\iW7EgZYwUlBz0ci.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|UXjIrNxuSb3naH8234A (Backdoor.Bot) -> Data: C:\Windows\system32\LwCzy1v2Fp5JdKR.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|D5Jd8ZYwVlty1v28234A (Backdoor.Bot) -> Data: C:\Windows\system32\Dns7ghCrBx0cv3F.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|D7799gTqjYC8234A (Backdoor.Bot) -> Data: C:\Windows\system32\vqCCkrNAu2iFp6d.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|l77fE8hUrlOtx0y8234A (Backdoor.Bot) -> Data: C:\Windows\system32\xONttx0uSiD3Ga6.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|essQQJddEKgR9Y8234A (Backdoor.Bot) -> Data: C:\Windows\system32\WyyycAA1ivDon4p.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|vOOONyyxA0ui56W8234A (Backdoor.Bot) -> Data: C:\Windows\system32\U8R99hTTXjUCeIr.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|HK88fRRL9hTqjCe8234A (Backdoor.Bot) -> Data: C:\Windows\system32\v3ppmmG5aQJ6W.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|c555aQQH6dWKfR98234A (Backdoor.Bot) -> Data: C:\Windows\system32\lvvSS2ibbFpn.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|rL99hhTXqjUC8234A (Backdoor.Bot) -> Data: C:\Windows\system32\WWWWK88fR.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|T777ffRL98234A (Backdoor.Bot) -> Data: C:\Windows\system32\yvS2ibF3p5aH6W.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|sD33onnG4am8234A (Backdoor.Bot) -> Data: C:\Windows\system32\cCwwwIVONtxuc1i.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|eXXwwkUUVeOBtP8234A (Backdoor.Bot) -> Data: C:\Windows\system32\X88ggRZqqY.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|LCCCellIBrz8234A (Backdoor.Bot) -> Data: C:\Windows\system32\NJ66ddEK8fR9hXw.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|RAA00uvvS2b8234A (Backdoor.Bot) -> Data: C:\Windows\system32\gqqqjUUCekIBzOy.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|prrrzOONy8234A (Backdoor.Bot) -> Data: C:\Windows\system32\ZfffRLL9hTXjUek.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|JS22ibbF3pnGaQ68234A (Backdoor.Bot) -> Data: C:\Windows\system32\FrzzzONyxA0u.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|B2Dp4QfgZYCIrON8234A (Backdoor.Bot) -> Data: C:\Windows\system32\oTTqjYYCekIVzN0.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|K5sWJ77dEL8gZqY8234A (Backdoor.Bot) -> Data: C:\Windows\system32\TwwUlOt0S1voF4m.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|HUUVVelIBtPNcA8234A (Backdoor.Bot) -> Data: C:\Windows\system32\YsQJ7ddEK8gZhYw.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|cFF33pmGG5QJ6W88234A (Backdoor.Bot) -> Data: C:\Windows\system32\urrrzPPNyxAuvSo.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|gaaQQJ6ddW8fR9T8234A (Backdoor.Bot) -> Data: C:\Windows\system32\qAAA1uuvS2ob3pG.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|cKKK8ffRL9hXqjC8234A (Backdoor.Bot) -> Data: C:\Windows\system32\J2oobbF3pmG5QJd.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|YBBBrrzONyxAu8234A (Backdoor.Bot) -> Data: C:\Windows\system32\w88ffRLL9hXqjCe.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|IuuvvS2ibF3pn5Q8234A (Backdoor.Bot) -> Data: C:\Windows\system32\NeeekkIBrzONxA.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|fONNttxA0ucSib38234A (Backdoor.Bot) -> Data: C:\Windows\system32\zRRRL9gTXqjCeVr.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|GxxxP0yycS1vD8234A (Backdoor.Bot) -> Data: C:\Windows\system32\Q6WfLghkUOB.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|h3oonnF4amH5WJd8234A (Backdoor.Bot) -> Data: C:\Windows\system32\WPP00yccS1iD.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|wGGG5ssQJ6dK8RZ8234A (Backdoor.Bot) -> Data: C:\Windows\system32\YlIIzNA11vD2oFp.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|SOOONyyxA0uv2iF8234A (Backdoor.Bot) -> Data: C:\Windows\system32\NjjjUCCekBr.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|cVVVrllON8234A (Backdoor.Bot) -> Data: C:\Windows\system32\WKK77fEEL9TZqYk.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|lLLL8ggRZqhY8234A (Backdoor.Bot) -> Data: C:\Windows\system32\F33oonnF4am5sJ7.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|e77ddEK8R9YXjUe8234A (Backdoor.Bot) -> Data: C:\Windows\system32\OoonnF44pmHsQ.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|HmmGG5aQQJd8234A (Backdoor.Bot) -> Data: C:\Windows\system32\QNNNyxxA1uvSob3.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|VcSS22ibD3pnGaH8234A (Backdoor.Bot) -> Data: C:\Windows\system32\OCCCekkIVrzNtA0.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|Y444am5sWJ7dLgZ8234A (Backdoor.Bot) -> Data: C:\Windows\system32\RwwkUVVrtx0cSDn.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|LXXwwjUUVel8234A (Backdoor.Bot) -> Data: C:\Windows\system32\lppmm5ssJdE8gZh.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|OSb3m55Jd8RhTqj8234A (Backdoor.Bot) -> Data: C:\Windows\system32\k88ffRZZ9TwClPx.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|jWWKK7ffRL8234A (Backdoor.Bot) -> Data: C:\Windows\system32\e222ibbF3pnGaQ6.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|OZqqhhYCwk8234A (Backdoor.Bot) -> Data: C:\Windows\system32\t444aHH6sWJfE8g.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|X55ssQJJ7dK8g8234A (Backdoor.Bot) -> Data: C:\Windows\system32\ytzPPycA1v2on4m.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|g3ppmmG5aQJ6WKf8234A (Backdoor.Bot) -> Data: C:\Windows\system32\mfZTwUeIrPyxu2b.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|EXXXqCekIBrzNyA8234A (Backdoor.Bot) -> Data: C:\Windows\system32\yKKK8fRRL9h.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|d99ggTZZq8234A (Backdoor.Bot) -> Data: C:\Windows\system32\VnnnG44aQH6sK7E.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|BkVlBPc1Do4HsJd8234A (Backdoor.Bot) -> Data: C:\Windows\system32\pPPyc1D3FHs7Egq.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|dAuSoFpGa8234A (Backdoor.Bot) -> Data: C:\Windows\system32\bpGsJdKf9TwUlBz.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|IuvvDD2obF4pm5Q8234A (Backdoor.Bot) -> Data: C:\Windows\system32\NeeelIIBtzPNcA.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|XXXXwjjUCe8234A (Backdoor.Bot) -> Data: C:\Windows\system32\j5ssQQJ6dEK8fZh.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|RPNNNyxA1uvS2b38234A (Backdoor.Bot) -> Data: C:\Windows\system32\aXwwjjUCelIBz.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|QxxAA0uvS2i8234A (Backdoor.Bot) -> Data: C:\Windows\system32\CTXXqqjUCekIrzN.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|fbbbF33pmG5aJ6W8234A (Backdoor.Bot) -> Data: C:\Windows\system32\XPPPNyyxA1uv2.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|vBBBrzzONy8234A (Backdoor.Bot) -> Data: C:\Windows\system32\K88ffRLL9hXqjCk.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|bVVrrzOONtA0uS8234A (Backdoor.Bot) -> Data: C:\Windows\system32\pfffRLL9gTXjYCk.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|uSS22ibDD8234A (Backdoor.Bot) -> Data: C:\Windows\system32\KeeekIIVrzONxAu.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|iggTTXqqjY8234A (Backdoor.Bot) -> Data: C:\Windows\system32\LGGG5aaQH6dW7fL.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|kxxAA0uucS2Dpn48234A (Backdoor.Bot) -> Data: C:\Windows\system32\rXXXqjjYCekIrzN.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|pNttxPc37LTYwUr8234A (Backdoor.Bot) -> Data: C:\Windows\system32\q4Q6WfLgTqjYwkr.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|r1iiivD3o8234A (Backdoor.Bot) -> Data: C:\Windows\system32\GkkkUVVrlOBtP0c.exe -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|v1lRsvrq6n8234A (Backdoor.Bot) -> Data: C:\Users\maria\AppData\Roaming\T55aHs5sQHQn\c2Do2Sub5gTCOco.exe -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|d6WgqwlzA36gU278234A (Backdoor.Bot) -> Data: C:\Users\maria\AppData\Roaming\OBy2GWK99RfWHpp\hXEFAIqfmnDu.exe -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|xQjc5ZynTtm9OHh8234A (Backdoor.Bot) -> Data: C:\Users\maria\AppData\Roaming\ZPXEFAIqfmnDuAy\SA4aH7ghUINca.exe -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|eY1aqy5TNnYyQCp8234A (Backdoor.Bot) -> Data: C:\Users\maria\AppData\Roaming\OBy2GWK99RfWHpp\a0XEFAIqfmnDuAy.exe -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|Vh1KN6kAdgec8234A (Backdoor.Bot) -> Data: C:\Users\maria\AppData\Roaming\aPXEFAIqfmnDuAy\HcFaH7ghUIN.exe -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|gXfpio220BX8234A (Backdoor.Bot) -> Data: C:\Users\maria\AppData\Roaming\SA4aH7ghUINca\jAak1dB4Vi6etSs.exe -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|uRE5NOPzVYfauVf8234A (Backdoor.Bot) -> Data: C:\Users\maria\AppData\Roaming\SA4aH7ghUINca\enY37IFH9O2KBb.exe -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|ZjqjLJFOhQbPXmB8234A (Backdoor.Bot) -> Data: C:\Users\maria\AppData\Roaming\SA4aH7ghUINca\O37IFH9O2KBbg.exe -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|rukLp0rgoU4lJrK8234A (Backdoor.Bot) -> Data: C:\Users\maria\AppData\Roaming\NBuFpQJL9wCku3Q\O37IFH9O2KBbg.exe -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|jrKSgcK0LOpqxaZ8234A (Backdoor.Bot) -> Data: C:\Users\maria\AppData\Roaming\LFyCLp0VRE5NOPz\u3NZQbNUd.exe -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|JKxJr6NHj39rodB8234A (Backdoor.Bot) -> Data: C:\Users\maria\AppData\Roaming\zZPGLr4hoTiUJ\SVTQ2tYgJcBzIrU.exe -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|TpY1fzGTlnfIu478234A (Backdoor.Bot) -> Data: C:\Users\maria\AppData\Roaming\fyj74xI8JptkV\IfauVf51l6xg3Xo.exe -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|bQznVGk3gPGBK1j8234A (Backdoor.Bot) -> Data: C:\Users\maria\AppData\Roaming\fyj74xI8JptkV\UlRncUfmATFIst.exe -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|jrngyRnVJzKP9Sr8234A (Backdoor.Bot) -> Data: C:\Users\maria\AppData\Roaming\cU6mQaaouB9muIZ\U1JqODmEARO.exe -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|wjnk7v92CpIgbwg8234A (Backdoor.Bot) -> Data: C:\Users\maria\AppData\Roaming\cU6mQaaouB9muIZ\ak1JqODmEAROstW.exe -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|ozKxhGkaOEyC4Oj8234A (Backdoor.Bot) -> Data: C:\Users\maria\AppData\Roaming\dOEPJr6NHj39\DFQNKVml6k3.exe -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|soXDk5zXoV9pk38234A (Backdoor.Bot) -> Data: C:\Users\maria\AppData\Roaming\IduZcENfPHliKIS\g8UFU3q2XiEB4TF.exe -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|DxgDw70T5Sqiqv8234A (Backdoor.Bot) -> Data: C:\Users\maria\AppData\Roaming\kzU6mQaaouB9muI\NdB27kB19i7.exe -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|gaO6OCmPCHl5laz8234A (Backdoor.Bot) -> Data: C:\Users\maria\AppData\Roaming\dOEPJr6NHj39\eQNKVml6k3R.exe -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|zAX3hvZSZi8xLnt8234A (Backdoor.Bot) -> Data: C:\Users\maria\AppData\Roaming\B3BYd30YbCHzQxg\NdB27kB19i7.exe -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|gEaiekVzx24sJ58234A (Backdoor.Bot) -> Data: C:\Users\maria\AppData\Roaming\LTZqjYCwkVrtxu\LuUeBOAvSibD0B.exe -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|YbxITkVzx24sJ5g8234A (Backdoor.Bot) -> Data: C:\Users\maria\AppData\Roaming\LTZqjYCwkVrtxu\f4am6sW7fE8ThFt.exe -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|QTuS1bG67328Rhw8234A (Backdoor.Bot) -> Data: C:\Users\maria\AppData\Roaming\LPlX7oNkgkz\w2GCUX8gRh.exe -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|EK8gRZhYweItP8234A (Backdoor.Bot) -> Data: C:\Users\maria\AppData\Roaming\JbbFF3pnG\ySPU84vzqkrtuD.exe -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|a3D8gRZhYjeItPy8234A (Backdoor.Bot) -> Data: C:\Users\maria\AppData\Roaming\ySxUK41BXkzxSn\tsHgRZhYXUlBzNc.exe -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|TDv8gRZhYjeItPy8234A (Backdoor.Bot) -> Data: C:\Users\maria\AppData\Roaming\JbbFF3pnG\ySxUK41BXkzxSn.exe -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|u8gRZhYweItPcd08234A (Backdoor.Bot) -> Data: C:\Users\maria\AppData\Roaming\JbbFF3pnG\x1PUK41BXkzxSn.exe -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|TAvSibF3p5HdKfA8234A (Backdoor.Bot) -> Data: C:\Users\maria\AppData\Roaming\C5ulWCIzxvSin3\RuS1bnHJVBKgZh.exe -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|XAvSibF3p5HdKfA8234A (Backdoor.Bot) -> Data: C:\Users\maria\AppData\Roaming\vU841rqkVNuD6\RuS1bnHJVBKgZh.exe -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|aAvSibF3p5HdKfA8234A (Backdoor.Bot) -> Data: C:\Users\maria\AppData\Roaming\Y3VKNDoG4H6W7Eg\q7TuS1bnHfdQ8Rh.exe -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|EkUlBxP0Sv3qvnm8234A (Backdoor.Bot) -> Data: C:\Users\maria\AppData\Roaming\JbbFF3pnG\x1PV84vzqkrtuD.exe -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|xyfqUP358gcF6T8234A (Backdoor.Bot) -> Data: C:\Users\maria\AppData\Roaming\fpjkY8gRZhYwe\mYwkIVrlOtPuYkl.exe -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|jwBuh2Hgr1BsU8234A (Backdoor.Bot) -> Data: C:\Users\maria\AppData\Roaming\JbbFF3pnG\x10V84vzqkrtuD.exe -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|jwBuhiHgr1BsU8234A (Backdoor.Bot) -> Data: C:\Users\maria\AppData\Roaming\lX7kVzxS3jUw\RuS1bnHJVBKgZh.exe -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|wgz4KUcflS6q6rW8234A (Backdoor.Bot) -> Data: C:\Users\maria\AppData\Roaming\lgc3oG4am6W7Egh\B9TZqYwkIrOtPuY.exe -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|YyYpCWrdV3lZk8234A (Backdoor.Bot) -> Data: C:\Users\maria\AppData\Roaming\ibexFRTuSb4WBBK\GcF6hly5UnLklLm.exe -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|cRNaPntHlmGeWtE8234A (Backdoor.Bot) -> Data: C:\Users\maria\AppData\Roaming\fnCUX8gRZhYwe\ShfqV24Kqf.exe -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|fo33D1o54S8234A (Backdoor.Bot) -> Data: C:\Users\maria\AppData\Roaming\HYBjrA2pJ86RqrD\tXxGLrT3rGUvg.exe -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|Gb33D1o54SWqT8234A (Backdoor.Bot) -> Data: C:\Users\maria\AppData\Roaming\zWHgRZhYXUlBzNc\RKjfBsgCrSF.exe -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|K4J3D1o54SWqTRV8234A (Backdoor.Bot) -> Data: C:\Users\maria\AppData\Roaming\zWHgRZhYXUlBzNc\TRDhajGquLaL1dN.exe -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|KFJ3D1o54SWqTRV8234A (Backdoor.Bot) -> Data: C:\Users\maria\AppData\Roaming\W2qFWqNDy\zrT3rnUvgyYpC.exe -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|HGbRYhhloBSg5S8234A (Backdoor.Bot) -> Data: C:\Users\maria\AppData\Roaming\bXTuS1bnHfd\yRNaPntHlmGeWt.exe -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|ayB1626ledzhNfZ8234A (Backdoor.Bot) -> Data: C:\Users\maria\AppData\Roaming\bXTuS1bnHfd\FcdN66z9cZ7o.exe -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|V5A38pVjKdRWKTh8234A (Backdoor.Bot) -> Data: C:\Users\maria\AppData\Roaming\bXTuS1bnHfd\OcdN66z9cZ7oE.exe -> Quarantined and deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings|ProxyServer (PUM.Bad.Proxy) -> Data: http=127.0.0.1:62970 -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|TbD3onG4a8234A (Trojan.FakeAlert.CLGen) -> Data: C:\Windows\system32\zwkIVrlONx0c1.exe -> Quarantined and deleted successfully.

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 3
C:\Program Files (x86)\ShoppingReport2 (Adware.ShoppingReport2) -> Quarantined and deleted successfully.
C:\Program Files (x86)\ShoppingReport2\Bin (Adware.ShoppingReport2) -> Quarantined and deleted successfully.
C:\Program Files (x86)\ShoppingReport2\Bin\2.7.34 (Adware.ShoppingReport2) -> Quarantined and deleted successfully.

Files Detected: 595
C:\Users\maria\AppData\Roaming\D1EeDTv6kWOaIHk\eoldSeHt9Hv.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\VsWJELhon4sJ.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\GEjYCwlNtPuSDoG.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\g8fRZ9hTXjClBzN.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\avD3onF4aHsJdLg.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\AEK8fRZ9wUeIryA.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\wS1ibD3on4m6J.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\HRZ9hTXwjClBzNx.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\rxP0ycS1i.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\kS2ibF3pn5Q6W7R.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\DvpmH5sQE8U.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\vS1ivD3on45W7E8.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\HrlONtxP0c1b3n4.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\uQH6sWK7fLgZ.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\FERZ9hwerN1SoFp.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\R7fEL8gqCOy.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\fnG4amH6sJfLgZh.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\ZwjUVelIBzNc1v2.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\pdWKRhTqCkr2FGa.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\TelIBrzPy.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\EA0ucS2ibTHwU.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\hVrxD3onFHsJdLR.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\nGms7LZCUlxcDna.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\RFGQ8LTjerNu23G.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\Uc2Hd9jzu4Q.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\BIBrN0H79qCVN02.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\ObpGQWf9XjkrtAu.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\mOtu1Do4HJf8Z.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\LXjkOxuSFnaHKRg.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\YqCVzDpas7LTjwr.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\oc1Dn4msJE8.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\en5Hd7LgqYkrOx0.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\W5sWJ7dERYwUlAi.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\GXYIOAnQsf9ZYkV.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\A2Fn5Qd79XYkVzt.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\ZpmH5sQJ7E8R9Yw.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\jJ7dEL8gRqYwU.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\sv3onF4a5WdLgZ.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\yD3pnG4aQ6W7E9T.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\t5aQJ6dWKfLhXjC.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\tcA1ivD2oFpHsJd.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\YoFpGa6W8R9TqUe.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\sCkVltPuSiDoGa6.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\wn5Q6WfLgX.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\PkVOtAuSiDpGaHW.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\TJE8TqYwUlBP.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\CKfLgqYeIrG6W7E.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\gBzNxiFpGaH.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\UKKK8ffRL9hXqU.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\KQHH66dWK7fR9.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\RaaQQH66dWKfR9g.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\WggTTXqqjYCk.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\pbbDD3ppnG4QHsW.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\EONNttxP0u.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\QxxxP00ucS1bDon.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\xaammH66sW7fE8.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\CYYYCCwkUVryc1D.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\CvDD22obF4pm5s.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\fhTTXXwjUCelIrP.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\DAAA1uuvS2ob3p.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\IiibbF33pnGa.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\KfffRL99gT.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\PNttxxA0ucS2bD.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\L44aaQHH6sW.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\zjjYYCwwkI.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\wtttxAA0ucD3pG4.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\TmmmH66sWJ7E.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\WBBBtxPP0yc1iD3.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\cFFF4aamH5sW.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\gOOBBtzzP0yA1vD.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\E333onnF4amHsW7.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\veellIBBtz.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\GllIIBttzPycAuv.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\KfffRZZ9hT.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\x22oobF3pmG5aJd.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\BWWK8ffL9hTqj.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\QkkUUVeelOBzPy.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\tXXwwjUVVlIBt.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\wJJJ66dWK8fR9hX.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\TjUUCeekIBzO.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\DQQQH66dWK7RLgT.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\wXXqqjYCCkIVrOt.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\wfLgXjYCeI.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\yD33onnF4am5sW7.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\LoGm6WfLgZY.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\um5W7E8RqXkVlBz.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\meBzyAvvD2.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\mccAA1iivD2nF.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\BGGG4aaQH6sW7.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\usssWKK7f.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\xqqhhYXXwkVelB.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\dpmHH5J77K8gZhX.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\v444pmmG5sQJdE8.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\evvvS22obF3pG5Q.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\YbbDD3ppnG4QHsW.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\ennnG44aQH6sK7E.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\FGaHs7E8T.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\pE8ZhCkVlBPySiD.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\g5Q7E8ZhXjVlBzN.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\KE8R9TwUlB.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\R3m5QdKfLhX.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\Y3n5Q6KfLgXjCkV.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\UfLgqYeIrNx0c2.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\uDp4Q6KfLgZY.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\JW7E8TqYwUrO.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\waHsJdLRqY.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\XJdLgqYwUeOtPyA.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\r1v2n4m5JdKg.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\Cn4m5Q7EgZhXjVl.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\kYwUeItPyAuDo4m.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\Oy1vopaJW8R9XjC.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\mR9XjeIrNx0ciDp.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\sGaHsKf9TqYwIrO.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\VOx0S3asEgZYVlB.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\RSiDoFaHsJE8Rq.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\DsJdKg9YwUeItP1.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\EFp5Q6WfLgXjeIr.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\I3naHs7E9.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\KrOtPuSiDn4m6W7.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\lkrOtAu2b3n4QsK.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\bu2bpGaHW7E.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\ikVlNx0c1DoGaHs.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\hWfLgZhCkVlBx0S.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\oE8R9YwUeItNc1v.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\L4m5QdKfZhXUeIr.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\Hv2b3GaHdKfLTqY.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\OjCkBzNAuSiFp.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\Pui3n4QsKE9ZjkV.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\UKg9YjVltPy.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\BGJ8LhXCBN.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\wqCrxSDaHW.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\fqYeIrOt0c2b3na.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\nfLTqYwIl.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\IVlBx0ciDoFaHs7.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\HpGaJdKf9TqUeIr.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\rWdLgZhXkeOz0ci.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\ysJdLgqYwUeOz0c.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\vn4HsJdKg9YwVlt.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\poFpGsJE8R9T.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\UIrPx1v2b3m5QdK.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\xTqYkVlNxuSiDoG.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\L1v2b4m5QdK.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\voFpGsJd8R9TwUe.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\RIrPx1voFpG.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\L6W8LhXjCkBOyAv.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\jzNx0c2b3n.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\ueIrNAuSi3n4.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\Y1DoFm5W7E8ZhXU.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\SNc1v2FpGs6E8Rh.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\qVlNPc1b3Gm6Wfg.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\x5Q7E9YjVlB.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\p8R9XjClr.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\QaJd8RhXjeIrNAu.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\Un5Q6KfLgXj.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\jb3naHsKf9TqCkr.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\Q1v2FpG6E8R.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\kIrOt0co4m6WfLg.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\Ju2b4msJd8RhXjC.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\ADnaHW7LgqYwIlN.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\Gd8R9YwUlBzNc1D.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\IUeBzNx0v2b3.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\o9TqYwIlNx0c1Do.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\R4msJfLgZhCUrOt.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\iW7EgZYwUlBz0ci.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\LwCzy1v2Fp5JdKR.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\Dns7ghCrBx0cv3F.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\vqCCkrNAu2iFp6d.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\xONttx0uSiD3Ga6.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\WyyycAA1ivDon4p.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\U8R99hTTXjUCeIr.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\v3ppmmG5aQJ6W.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\lvvSS2ibbFpn.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\WWWWK88fR.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\yvS2ibF3p5aH6W.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\cCwwwIVONtxuc1i.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\X88ggRZqqY.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\NJ66ddEK8fR9hXw.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\gqqqjUUCekIBzOy.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\ZfffRLL9hTXjUek.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\FrzzzONyxA0u.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\oTTqjYYCekIVzN0.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\TwwUlOt0S1voF4m.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\YsQJ7ddEK8gZhYw.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\urrrzPPNyxAuvSo.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\qAAA1uuvS2ob3pG.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\J2oobbF3pmG5QJd.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\w88ffRLL9hXqjCe.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\NeeekkIBrzONxA.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\zRRRL9gTXqjCeVr.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\Q6WfLghkUOB.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\WPP00yccS1iD.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\YlIIzNA11vD2oFp.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\NjjjUCCekBr.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\WKK77fEEL9TZqYk.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\F33oonnF4am5sJ7.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\OoonnF44pmHsQ.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\QNNNyxxA1uvSob3.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\OCCCekkIVrzNtA0.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\RwwkUVVrtx0cSDn.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\lppmm5ssJdE8gZh.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\k88ffRZZ9TwClPx.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\e222ibbF3pnGaQ6.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\t444aHH6sWJfE8g.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\ytzPPycA1v2on4m.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\mfZTwUeIrPyxu2b.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\yKKK8fRRL9h.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\VnnnG44aQH6sK7E.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\pPPyc1D3FHs7Egq.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\bpGsJdKf9TwUlBz.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\NeeelIIBtzPNcA.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\j5ssQQJ6dEK8fZh.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\aXwwjjUCelIBz.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\CTXXqqjUCekIrzN.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\XPPPNyyxA1uv2.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\K88ffRLL9hXqjCk.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\pfffRLL9gTXjYCk.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\KeeekIIVrzONxAu.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\LGGG5aaQH6dW7fL.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\rXXXqjjYCekIrzN.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\q4Q6WfLgTqjYwkr.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\GkkkUVVrlOBtP0c.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\T55aHs5sQHQn\c2Do2Sub5gTCOco.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\OBy2GWK99RfWHpp\hXEFAIqfmnDu.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\ZPXEFAIqfmnDuAy\SA4aH7ghUINca.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\OBy2GWK99RfWHpp\a0XEFAIqfmnDuAy.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\aPXEFAIqfmnDuAy\HcFaH7ghUIN.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\SA4aH7ghUINca\jAak1dB4Vi6etSs.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\SA4aH7ghUINca\enY37IFH9O2KBb.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\SA4aH7ghUINca\O37IFH9O2KBbg.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\NBuFpQJL9wCku3Q\O37IFH9O2KBbg.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\LFyCLp0VRE5NOPz\u3NZQbNUd.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\zZPGLr4hoTiUJ\SVTQ2tYgJcBzIrU.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\fyj74xI8JptkV\IfauVf51l6xg3Xo.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\fyj74xI8JptkV\UlRncUfmATFIst.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\cU6mQaaouB9muIZ\U1JqODmEARO.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\cU6mQaaouB9muIZ\ak1JqODmEAROstW.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\dOEPJr6NHj39\DFQNKVml6k3.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\IduZcENfPHliKIS\g8UFU3q2XiEB4TF.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\kzU6mQaaouB9muI\NdB27kB19i7.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\dOEPJr6NHj39\eQNKVml6k3R.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\B3BYd30YbCHzQxg\NdB27kB19i7.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\LTZqjYCwkVrtxu\LuUeBOAvSibD0B.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\LTZqjYCwkVrtxu\f4am6sW7fE8ThFt.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\LPlX7oNkgkz\w2GCUX8gRh.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\JbbFF3pnG\ySPU84vzqkrtuD.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\ySxUK41BXkzxSn\tsHgRZhYXUlBzNc.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\JbbFF3pnG\ySxUK41BXkzxSn.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\JbbFF3pnG\x1PUK41BXkzxSn.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\C5ulWCIzxvSin3\RuS1bnHJVBKgZh.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\vU841rqkVNuD6\RuS1bnHJVBKgZh.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\Y3VKNDoG4H6W7Eg\q7TuS1bnHfdQ8Rh.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\JbbFF3pnG\x1PV84vzqkrtuD.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\fpjkY8gRZhYwe\mYwkIVrlOtPuYkl.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\JbbFF3pnG\x10V84vzqkrtuD.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\lX7kVzxS3jUw\RuS1bnHJVBKgZh.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\lgc3oG4am6W7Egh\B9TZqYwkIrOtPuY.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\ibexFRTuSb4WBBK\GcF6hly5UnLklLm.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\fnCUX8gRZhYwe\ShfqV24Kqf.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\HYBjrA2pJ86RqrD\tXxGLrT3rGUvg.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\zWHgRZhYXUlBzNc\RKjfBsgCrSF.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\zWHgRZhYXUlBzNc\TRDhajGquLaL1dN.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\W2qFWqNDy\zrT3rnUvgyYpC.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\bXTuS1bnHfd\yRNaPntHlmGeWt.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\bXTuS1bnHfd\FcdN66z9cZ7o.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\bXTuS1bnHfd\OcdN66z9cZ7oE.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\chrome.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\iexplore.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\java.exe (Backdoor.Bot) -> Delete on reboot.
C:\Users\maria\AppData\Roaming\AlmXudzQr\l3ZS81LPgiZ1f1h.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\AsJ9kBPlwqTj8E7\ZjBciSc2J.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\Azi33pnG5QH6\mybdzZuS1D.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\B3BYd30YbCHzQxg\sLrxvXFLcg2.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\BWrFUnhcQI5knjb\BnqAYoX2Tojae.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\BWrFUnhcQI5knjb\tqAYoX2Toj.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\bXTuS1bnHfd\jdN66z9cZ7oE6.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\bXTuS1bnHfd\jgxHcH0QtsQIf0g.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\bXTuS1bnHfd\JN66z9cZ7.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\bXTuS1bnHfd\JsUvs9t6XxGLrTp.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\bXTuS1bnHfd\jtw1Z0WORDhaj5q.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\bXTuS1bnHfd\wdN66z9cZ7oE6.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\bXTuS1bnHfd\WrbKkKtw1q0WORD.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\C5ulWCIzxvSin3\LvSibF3pna6.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\cU6mQaaouB9muIZ\o7k1JqODmEAROst.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\cWJ7dE8gRhXwUVl\iBBBtzPP0yA1v.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\dVWiU7bxC9anSzB\HmF4ovNVChwIrBz.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\DXa0w4t7tsPKu93\sarHlsBszjW2qa.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\ECybfTuS1D\v4KqfBsgCOSFJdz.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\F0kL4itTdFAIZW3\U8JbIW2xkgW.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\f95ve6OqHc\E1kL4cV8soPjK.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\FB49A6ln9\kSSbvooSvS14Fv1.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\fK8gRZhYweItP\Kr1lsUvs9t6XxGL.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\fK8gRZhYweItP\SHgr1lsUvQ.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\fOYkVzxS3jUw8Rh\ShfqV24Kqf.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\fpCUX8gRZhYwe\mYwkIVrlOtPuYkl.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\fUeBeeCYOzBey2D\gssJ9kBPlwqTj8.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\fUeBeeCYOzBey2D\Vn7Zw9dJQsanDvm.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\g3nG46sfTrNui46\QP0vnmEhXklt0A2.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\g3nG46sfTrNui46\YBP0vnmEhXklt0A.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\HYBjrA2pJ86RqrD\WrbKkKtw1q0WORD.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\IcX6yq5tT\rJxqGOqmSeKol8p.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\iLWWG4whKW\smm3na4n4pGbut.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\JbbFF3pnG\y1PUK41BXkrtu3.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\JbbFF3pnG\y1PUK41BXkrxSn.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\JbbFF3pnG\y1PUK41BXkzxSn.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\JbbFF3pnG\YbxITkVzx24sJ5g.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\JbbFF3pnG\ySPUK41BqkrtuD.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\JbbFF3pnG\ySPUK41BXkrtuD.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\JbbFF3pnG\ySPUK4vzqkrtuD.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\jvSibF3pna6W7R4\j9t6XxGLrTnlGUv.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\jvSibF3pna6W7R4\SHgr1lsUvQ.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\KoCyFfTuSb4WBBK\GcF6hly5UnLklLm.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\KpUGIQrpXbqoq\JHzslDK1W.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\L578hwPADF5Jf9w\pppmmG55aQ6dW8R.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\lbnG46sfTrNui46\dwrBP0vnm.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\lbnG46sfTrNui46\zrBP0vnmEhXkl.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\LFyCLp0VRE5NOPz\IfauVf51l6xg3Xo.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\lgc3oG4am6W7Egh\bXTuS1bnHfd.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\lgc3oG4am6W7Egh\fK8gRZhYweItP.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\lgc3oG4am6W7Egh\H8gRZhYweItPcd.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\lgc3oG4am6W7Egh\q7TuS1bnHfdQ8Rh.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\lgc3oG4am6W7Egh\RuS1bnHJVBKgZh.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\lgc3oG4am6W7Egh\vTuS1bG67328Rhw.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\lmG5aQJ6dKfLXjC\zrzONyxA0v2pGaH.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\mP819GzRbVWx708\QezTaSkdoIfpr72.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\mRtHk3qSdydIF9v\EKNHI4k4X2k4jbw.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\mYwkIVrlOtPuYkl\FDaKqfBsgCOSFJd.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\mYwkIVrlOtPuYkl\W2qFWqNDy.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\nBeeCYOBe\oOuiD4JRVD7YTjt.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\nhYXwkUVelOBzPy\gAAA1ivDm5QJdE8.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\oU3XSLP7tJl\AJzQrduLu.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\pGbS1nb33pGv\qwhKWjhRZ.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\PXwwkUVelOBtP0c\T11ivDnm5QJ7EKg.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\PzkYgLRwUjCwCZ8\qwhKWjhRZ.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\Q3qSdydIF9vR0K\hI4k4X2k4jbwFIH.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\Qa4n4pGbut1\vpoStxcnGJjVt.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\rkybGWTUcbKLYVl\iPm9tGRB3j1dloK.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\rPPP0yycA1vDm5J\GdddEKK8gRZhY.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\rPPP0yycA1vDm5Q\m7ddEEK8gRZ9Y.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\rqat9okaVszZ3W2\dnPhQyq5tTWbck7.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\RuS1bnHJVBKgZh\GcF6hly5UnLklLm.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\RuS1bnHJVBKgZh\W2qFWqNDy.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\S5NLpIHNLydcg\zemrdxEDldDl8br.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\ShfqV24Kqf\zrT3rnUvgyYpC.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\SJ7dE8gRZhXwUVl\iBBBtzPP0yA1v.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\SoaJfrA1vU\EG7kybGWTUcbKLY.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\Ty9prW2Yn\HvZ2X4emrdxEDld.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\UdE8gRZhYwkVeOB\rPPP0yycA1vDm5Q.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\ViZ1R2w3B\jt7Pf0LcKDP9neW.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\vK41BXkVzx24sJ5\HYBjrA2pJ86RqrD.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\wNqCIzxvSi\EK8gRZhYweItP.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\wNqCIzxvSi\fK8gRZhYweItP.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\wNqCIzxvSi\H8gRZhYweItPcd.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\wNqCIzxvSi\O8gRZhYweI.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\wygRZhYXUeItPys\HYBjrA2pJ86RqrD.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\YeIrxvS2in3cxVg\I9TZqYwkIrOtPuY.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\YeIrxvS2in3cxVg\ShfqV24Kqf.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\YyzCTwUYhRf67\KkNuSXzubsYz2FQ.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\zR3t7iZ1R2w3BWx\tPf0LcKDP9neW3r.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\zWHgRZhYXUlBzNc\abKkKtw1Z0.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\zWHgRZhYXUlBzNc\BsORDhajGquLa.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\zWHgRZhYXUlBzNc\GcF6hly5UnLklLm.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\zWHgRZhYXUlBzNc\gqFWqNDy7OndYP.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\zWHgRZhYXUlBzNc\olRDhajGquLaL1d.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\zWHgRZhYXUlBzNc\pKkKtw1Z0WORDha.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\zWHgRZhYXUlBzNc\rvZmXbgxH.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Roaming\zWHgRZhYXUlBzNc\YFWqNDy7endYP.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\fJJ66dEEK8fZ9.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\A2Fn5Qd79XYkVzt.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\ADnaHW7LgqYwIlN.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\AEK8fRZ9wUeIryA.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\avD3onF4aHsJdLg.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\aXwwjjUCelIBz.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\BGGG4aaQH6sW7.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\BGJ8LhXCBN.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\BIBrN0H79qCVN02.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\bpGsJdKf9TwUlBz.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\bu2bpGaHW7E.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\BWWK8ffL9hTqj.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\cCwwwIVONtxuc1i.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\cFFF4aamH5sW.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\CKfLgqYeIrG6W7E.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\Cn4m5Q7EgZhXjVl.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\CTXXqqjUCekIrzN.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\CvDD22obF4pm5s.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\CYYYCCwkUVryc1D.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\DAAA1uuvS2ob3p.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\Dns7ghCrBx0cv3F.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\dpmHH5J77K8gZhX.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\DQQQH66dWK7RLgT.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\DsJdKg9YwUeItP1.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\DvpmH5sQE8U.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\e222ibbF3pnGaQ6.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\E333onnF4amHsW7.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\EA0ucS2ibTHwU.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\EFp5Q6WfLgXjeIr.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\en5Hd7LgqYkrOx0.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\ennnG44aQH6sK7E.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\EONNttxP0u.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\evvvS22obF3pG5Q.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\F33oonnF4am5sJ7.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\FERZ9hwerN1SoFp.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\FGaHs7E8T.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\fhTTXXwjUCelIrP.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\fJJ66dEEK8fZ9.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\fnG4amH6sJfLgZh.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\fqYeIrOt0c2b3na.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\FrzzzONyxA0u.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\g5Q7E8ZhXjVlBzN.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\g8fRZ9hTXjClBzN.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\gBzNxiFpGaH.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\Gd8R9YwUlBzNc1D.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\GEjYCwlNtPuSDoG.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\GkkkUVVrlOBtP0c.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\GllIIBttzPycAuv.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\gOOBBtzzP0yA1vD.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\gqqqjUUCekIBzOy.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\GXYIOAnQsf9ZYkV.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\HpGaJdKf9TqUeIr.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\HrlONtxP0c1b3n4.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\HRZ9hTXwjClBzNx.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\Hv2b3GaHdKfLTqY.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\hVrxD3onFHsJdLR.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\hWfLgZhCkVlBx0S.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\I3naHs7E9.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\IiibbF33pnGa.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\ikVlNx0c1DoGaHs.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\IUeBzNx0v2b3.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\IVlBx0ciDoFaHs7.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\iW7EgZYwUlBz0ci.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\J2oobbF3pmG5QJd.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\j5ssQQJ6dEK8fZh.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\jb3naHsKf9TqCkr.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\jJ7dEL8gRqYwU.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\Ju2b4msJd8RhXjC.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\JW7E8TqYwUrO.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\jzNx0c2b3n.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\K88ffRLL9hXqjCk.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\k88ffRZZ9TwClPx.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\KE8R9TwUlB.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\KeeekIIVrzONxAu.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\KfffRL99gT.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\KfffRZZ9hT.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\kIrOt0co4m6WfLg.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\KQHH66dWK7fR9.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\KrOtPuSiDn4m6W7.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\kS2ibF3pn5Q6W7R.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\kYwUeItPyAuDo4m.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\L1v2b4m5QdK.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\L44aaQHH6sW.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\L4m5QdKfZhXUeIr.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\L6W8LhXjCkBOyAv.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\LGGG5aaQH6dW7fL.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\lkrOtAu2b3n4QsK.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\LoGm6WfLgZY.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\lppmm5ssJdE8gZh.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\lvvSS2ibbFpn.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\LwCzy1v2Fp5JdKR.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\LXjkOxuSFnaHKRg.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\mccAA1iivD2nF.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\meBzyAvvD2.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\mfZTwUeIrPyxu2b.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\mOtu1Do4HJf8Z.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\mR9XjeIrNx0ciDp.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\NeeekkIBrzONxA.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\NeeelIIBtzPNcA.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\nfLTqYwIl.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\nGms7LZCUlxcDna.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\NJ66ddEK8fR9hXw.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\NjjjUCCekBr.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\o9TqYwIlNx0c1Do.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\ObpGQWf9XjkrtAu.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\oc1Dn4msJE8.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\OCCCekkIVrzNtA0.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\oE8R9YwUeItNc1v.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\OjCkBzNAuSiFp.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\OoonnF44pmHsQ.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\oTTqjYYCekIVzN0.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\Oy1vopaJW8R9XjC.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\p8R9XjClr.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\pbbDD3ppnG4QHsW.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\pdWKRhTqCkr2FGa.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\pE8ZhCkVlBPySiD.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\pfffRLL9gTXjYCk.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\PkVOtAuSiDpGaHW.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\PNttxxA0ucS2bD.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\poFpGsJE8R9T.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\pPPyc1D3FHs7Egq.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\Pui3n4QsKE9ZjkV.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\Q1v2FpG6E8R.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\q4Q6WfLgTqjYwkr.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\Q6WfLghkUOB.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\qAAA1uuvS2ob3pG.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\QaJd8RhXjeIrNAu.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\QkkUUVeelOBzPy.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\QNNNyxxA1uvSob3.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\qVlNPc1b3Gm6Wfg.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\QxxxP00ucS1bDon.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\r1v2n4m5JdKg.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\R3m5QdKfLhX.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\R4msJfLgZhCUrOt.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\R7fEL8gqCOy.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\RaaQQH66dWKfR9g.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\RFGQ8LTjerNu23G.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\RIrPx1voFpG.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\RSiDoFaHsJE8Rq.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\rWdLgZhXkeOz0ci.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\RwwkUVVrtx0cSDn.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\rxP0ycS1i.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\rXXXqjjYCekIrzN.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\sCkVltPuSiDoGa6.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\sGaHsKf9TqYwIrO.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\SNc1v2FpGs6E8Rh.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\sv3onF4a5WdLgZ.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\t444aHH6sWJfE8g.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\t5aQJ6dWKfLhXjC.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\tcA1ivD2oFpHsJd.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\TelIBrzPy.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\TJE8TqYwUlBP.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\TjUUCeekIBzO.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\TmmmH66sWJ7E.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\TwwUlOt0S1voF4m.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\tXXwwjUVVlIBt.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\U8R99hTTXjUCeIr.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\Uc2Hd9jzu4Q.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\uDp4Q6KfLgZY.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\ueIrNAuSi3n4.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\UfLgqYeIrNx0c2.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\UIrPx1v2b3m5QdK.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\UKg9YjVltPy.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\UKKK8ffRL9hXqU.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\um5W7E8RqXkVlBz.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\Un5Q6KfLgXj.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\uQH6sWK7fLgZ.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\urrrzPPNyxAuvSo.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\usssWKK7f.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\v3ppmmG5aQJ6W.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\v444pmmG5sQJdE8.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\veellIBBtz.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\vn4HsJdKg9YwVlt.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\VnnnG44aQH6sK7E.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\voFpGsJd8R9TwUe.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\VOx0S3asEgZYVlB.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\vqCCkrNAu2iFp6d.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\vS1ivD3on45W7E8.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\VsWJELhon4sJ.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\W5sWJ7dERYwUlAi.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\w88ffRLL9hXqjCe.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\waHsJdLRqY.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\WBBBtxPP0yc1iD3.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\wfLgXjYCeI.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\WggTTXqqjYCk.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\wJJJ66dWK8fR9hX.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\WKK77fEEL9TZqYk.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\wn5Q6WfLgX.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\WPP00yccS1iD.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\wqCrxSDaHW.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\wS1ibD3on4m6J.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\wtttxAA0ucD3pG4.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\WWWWK88fR.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\wXXqqjYCCkIVrOt.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\WyyycAA1ivDon4p.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\x22oobF3pmG5aJd.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\x5Q7E9YjVlB.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\X88ggRZqqY.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\xaammH66sW7fE8.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\XJdLgqYwUeOtPyA.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\xONttx0uSiD3Ga6.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\XPPPNyyxA1uv2.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\xqqhhYXXwkVelB.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\xTqYkVlNxuSiDoG.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\Y1DoFm5W7E8ZhXU.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\Y3n5Q6KfLgXjCkV.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\YbbDD3ppnG4QHsW.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\yD33onnF4am5sW7.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\yD3pnG4aQ6W7E9T.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\yKKK8fRRL9h.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\YlIIzNA11vD2oFp.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\YoFpGa6W8R9TqUe.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\YqCVzDpas7LTjwr.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\ysJdLgqYwUeOz0c.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\YsQJ7ddEK8gZhYw.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\ytzPPycA1v2on4m.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\yvS2ibF3p5aH6W.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\ZfffRLL9hTXjUek.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\zjjYYCwwkI.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\ZpmH5sQJ7E8R9Yw.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\zRRRL9gTXqjCeVr.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\ZwjUVelIBzNc1v2.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Local\Temp\0.4941119037413878.exe (Rootkit.0Access) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Local\Temp\0.4988598387599029.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Local\Temp\jgd.dll (Rootkit.0Access) -> Quarantined and deleted successfully.
C:\Users\maria\AppData\Local\Temp\yxbehknqtw (Rootkit.0Access) -> Quarantined and deleted successfully.
C:\Users\maria\Local Settings\Temporary Internet Files\Content.IE5\JS4FV7BC\file[1].exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Windows\System32\zwkIVrlONx0c1.exe (Trojan.FakeAlert.CLGen) -> Quarantined and deleted successfully.
C:\Program Files (x86)\ShoppingReport2\Uninst.exe (Adware.ShoppingReport2) -> Quarantined and deleted successfully.

(end)




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users