Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Periodic lag while gaming


  • Please log in to reply
11 replies to this topic

#1 Beru

Beru

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:10:16 AM

Posted 13 May 2016 - 04:19 PM

Hello everyone, first time posting.

 

I am not tech savy and am seeking help/suggestions. I am not sure if I am infected or my issues are my hardware. 

 

I am having problems with lag while playing games. Its not normal internet lag, its whole computer lag. Everything slows down. These symptoms have only appeared recently and only when playing games. I play older online games, Neverwinter Nights and Everquest. I have played them for years on this computer and the new lag is currently affecting both games. On average these lag spikes last 1-4 mins and then everything snaps back to normal speed. The lag spikes seem random but I get usually around 5 or 6 an hour. 

 

I have dealt with a similar problem in the past. An accumulation of dust had been slowing down my computer fan. After cleaning my problems disappeared. Once this new lag appeared I cleaned my fan(which needed to be cleaned) and figured the problems would go away, which they did not. My desktop is 6-7 years old and is generic off the shelf. 

 

I have run AVG 2015 virus protection, Malwarebytes, Spybot, and Superantispyware hoping to clean out my system. It did remove some things but the problem persists. 

 

Maybe my computer is getting old and cant handle the load anymore? Not sure if this helps but I have a Ram and CPU meter and while the lag spikes happen the meter does not record any change in performance. 

 

Seeking any advise. 

Thanks,

Beru

 

 



BC AdBot (Login to Remove)

 


#2 InadequateInfirmity

InadequateInfirmity

    I Gots Me A Certified Edumication


  • Banned
  • 5,180 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:12:16 PM

Posted 13 May 2016 - 04:50 PM

Lets have a look at some logs. But please uninstall spybot prior to running these scans. :) 

 

Adware Cleaner Scan.

 

Please download AdwCleaner by Xplode onto your desktop.

  • Close all open programs and internet browsers.
  • Double click on adwcleaner.exe to run the tool.
  • Click on Scan button.
  • When the scan has finished click on Clean button.
  • Your computer will be rebooted automatically. A text file will open after the restart.
  • Please post the contents of that logfile with your next reply.
  • You can find the logfile at C:\AdwCleaner[S1].txt as well.

 

JRT Scan.

Please download Junkware Removal Tool and save it on your desktop.

 

  • Shut down your anti-virus, anti-spyware, and firewall software now to avoid potential conflicts.
  • Run the tool by double-clicking it. If you are using Windows Vista or Windows 7, right-click it and select Run as administrator.
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete depending on your system's specifications.
  • On completion, a log is saved to your desktop and will automatically open.
  • Please post the JRT log.
  •  

Adware Removal Tool Scan.

 

Download Adware removal tool to your desktop, right click the icon and select Run as Administrator.

 

 

LOr0Gd7.png

 

Hit Ok.

 

sYFsqHx.png

 

Hit next make sure to leave all items checked, for removal.

 

8NcZjGc.png

 

 

The Program will close all open programs to complete the removal, so save any work and hit OK. Then hit OK after the removal process is complete, thenOK again to finish up. Post log generated by tool.

 

ZHP Scan.

Please download Zhp Cleaner  to your desktop.  Right Click the icon and select run as administrator.

 http://nicolascoolman.com/download/zhpcleaner

 

 

2. Once you have started the program, you will need to click the scanner button.

EgsT69u.png

The program will close all open browsers!

3. Once the scan is completed, the you will want to click the Repair button.

6QJjV50.png

At the end of the process you may be asked to reboot your machine. After you reboot a report will open on your desktop.

Copy and paste the report here in your next reply.

 Zemana Scan

 

 

Run a full scan with Zemana AntiMalware!

Install and select deep scan.

jdmyscF.jpg

Remove any infections found.

Then click on the icon in the pic below.

DOLGyto.jpg

Double click on the scan log, copy and paste here in your reply


Edited by InadequateInfirmity, 13 May 2016 - 04:51 PM.


#3 Beru

Beru
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:10:16 AM

Posted 14 May 2016 - 05:24 PM

Adware Cleaner Scan.

 

# AdwCleaner v5.116 - Logfile created 13/05/2016 at 14:56:44
# Updated 09/05/2016 by Xplode
# Database : 2016-05-13.1 [Server]
# Operating system : Windows 7 Home Premium Service Pack 1 (X64)
# Username : Kevin - KEVIN-PC
# Running from : C:\Users\Kevin\Downloads\adwcleaner_5.116.exe
# Option : Clean
 
***** [ Services ] *****
 
 
***** [ Folders ] *****
 
[-] Folder Deleted : C:\Users\Kevin\AppData\Local\Google\Chrome\User Data\Default\Extensions\fopdddcinljmpmioaklghcalngfhbaen
[-] Folder Deleted : C:\Users\Kevin\AppData\Local\Google\Chrome\User Data\Default\Extensions\lkadffjmnaiokkdncgdlecdegajoiemi
 
***** [ Files ] *****
 
[-] File Deleted : C:\Users\Kevin\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\fopdddcinljmpmioaklghcalngfhbaen
[#] File Deleted : C:\Users\Kevin\AppData\Local\Google\Chrome\User Data\Default\databases\chrome-extension_lkadffjmnaiokkdncgdlecdegajoiemi_0
[-] File Deleted : C:\Users\Kevin\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_st.chatango.com_0.localstorage
 
***** [ DLLs ] *****
 
 
***** [ WMI ] *****
 
 
***** [ Shortcuts ] *****
 
 
***** [ Scheduled tasks ] *****
 
 
***** [ Registry ] *****
 
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{10921475-03CE-4E04-90CE-E2E7EF20C814}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{10921475-03CE-4E04-90CE-E2E7EF20C814}
 
***** [ Web browsers ] *****
 
[-] [C:\Users\Kevin\AppData\Local\Google\Chrome\User Data\Default\Web Data] [Search Provider] Deleted : ask.com_
[-] [C:\Users\Kevin\AppData\Local\Google\Chrome\User Data\Default\Web Data] [Search Provider] Deleted : mysearch.avg.com
[-] [C:\Users\Kevin\AppData\Local\Google\Chrome\User Data\Default\Web Data] [Search Provider] Deleted : netflix.com
[-] [C:\Users\Kevin\AppData\Local\Google\Chrome\User Data\Default\Web Data] [Search Provider] Deleted : aol.com
[-] [C:\Users\Kevin\AppData\Local\Google\Chrome\User Data\Default\Web Data] [Search Provider] Deleted : ask.com
[-] [C:\Users\Kevin\AppData\Local\Google\Chrome\User Data\Default\Web Data] [Search Provider] Deleted : modloader-for-minecraft.en.softonic.com
[-] [C:\Users\Kevin\AppData\Local\Google\Chrome\User Data\Default\Web Data] [Search Provider] Deleted : majesty-gold.en.softonic.com
[-] [C:\Users\Kevin\AppData\Local\Google\Chrome\User Data\Default\Web Data] [Search Provider] Deleted : utorrent.en.softonic.com
[-] [C:\Users\Kevin\AppData\Local\Google\Chrome\User Data\Default\Web Data] [Search Provider] Deleted : age-of-empires_ii.en.softonic.com
[-] [C:\Users\Kevin\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] Deleted : fopdddcinljmpmioaklghcalngfhbaen
[-] [C:\Users\Kevin\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] Deleted : lkadffjmnaiokkdncgdlecdegajoiemi
 
*************************
 
:: "Tracing" keys deleted
:: Winsock settings cleared
 
*************************
 
C:\AdwCleaner\AdwCleaner[C1].txt - [7965 bytes] - [03/05/2016 16:52:01]
C:\AdwCleaner\AdwCleaner[C2].txt - [3390 bytes] - [13/05/2016 14:56:44]
C:\AdwCleaner\AdwCleaner[S1].txt - [8172 bytes] - [03/05/2016 16:47:19]
C:\AdwCleaner\AdwCleaner[S2].txt - [3406 bytes] - [13/05/2016 14:54:30]
 
########## EOF - C:\AdwCleaner\AdwCleaner[C2].txt - [3609 bytes] ##########
 
JRT Scan.

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 8.0.6 (04.25.2016)
Operating System: Windows 7 Home Premium x64 
Ran by Kevin (Administrator) on Fri 05/13/2016 at 15:13:09.29
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 
 
 
 
File System: 59 
 
Failed to delete: C:\Program Files (x86)\iobit\driver booster (Folder) 
Successfully deleted: C:\ProgramData\1434696177.bdinstall.bin (File) 
Successfully deleted: C:\ProgramData\1434696304.bdinstall.bin (File) 
Successfully deleted: C:\ProgramData\1434696352.bdinstall.bin (File) 
Successfully deleted: C:\ProgramData\1434760106.bdinstall.bin (File) 
Successfully deleted: C:\ProgramData\productdata (Folder) 
Successfully deleted: C:\ProgramData\Start Menu\Programs\driver booster 2 (Folder) 
Successfully deleted: C:\Users\Kevin\AppData\Local\{3C3AC54F-134A-416A-998F-0ED286B70715} (Empty Folder)
Successfully deleted: C:\Users\Kevin\AppData\Local\{4A6F468E-8DD1-4A0D-B8EE-5FA96337EC2B} (Empty Folder)
Successfully deleted: C:\Users\Kevin\AppData\Local\{53ABCB7A-DD52-4DF3-8198-8978E51976AC} (Empty Folder)
Successfully deleted: C:\Users\Kevin\AppData\Local\{55293A0F-3979-495F-9169-D363DE3ADD47} (Empty Folder)
Successfully deleted: C:\Users\Kevin\AppData\Local\{58C63BAB-E905-475D-8DE9-EF94BB2F3A93} (Empty Folder)
Successfully deleted: C:\Users\Kevin\AppData\Local\{62272A26-55A5-4057-AF50-F2D5C2A2A155} (Empty Folder)
Successfully deleted: C:\Users\Kevin\AppData\Local\{6B124083-D75F-4D78-962C-5C067F535512} (Empty Folder)
Successfully deleted: C:\Users\Kevin\AppData\Local\{75B0B09B-69FB-4A69-81F7-13832E03E684} (Empty Folder)
Successfully deleted: C:\Users\Kevin\AppData\Local\{A7CC876A-9B6A-46DD-8694-C36469DDE1D6} (Empty Folder)
Successfully deleted: C:\Users\Kevin\AppData\Local\{F00EC258-4675-4012-8A7B-55D28C4AEF2C} (Empty Folder)
Successfully deleted: C:\Users\Kevin\AppData\Local\{F35599D0-9A33-4ADD-9870-9C70A4DBDDA7} (Empty Folder)
Successfully deleted: C:\Users\Kevin\AppData\Local\Google\Chrome\User Data\Default\Extensions\fopdddcinljmpmioaklghcalngfhbaen (Folder) 
Successfully deleted: C:\Users\Kevin\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_toolbar.avg.com_0.localstorage (File) 
Successfully deleted: C:\Users\Kevin\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.lyricsfreak.com_0.localstorage (File) 
Successfully deleted: C:\Users\Kevin\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.metrolyrics.com_0.localstorage (File) 
Successfully deleted: C:\Users\Kevin\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.saveur.com_0.localstorage (File) 
Successfully deleted: C:\Users\Kevin\AppData\Roaming\iobit\driver booster (Folder) 
Successfully deleted: C:\Users\Kevin\AppData\Roaming\Mozilla\Firefox\Profiles\d2oxmme0.default\searchplugins\bing-zugo.xml (File) 
Successfully deleted: C:\Users\Kevin\AppData\Roaming\Mozilla\Firefox\Profiles\d2oxmme0.default\user.js (File) 
Successfully deleted: C:\Users\Kevin\AppData\Roaming\productdata (Folder) 
Successfully deleted: C:\Windows\system32\Tasks\Driver Booster Scan (Task)
Successfully deleted: C:\Windows\system32\Tasks\Driver Booster SkipUAC (Kevin) (Task)
Successfully deleted: C:\Windows\system32\Tasks\Driver Booster SkipUAC (SYSTEM) (Task)
Successfully deleted: C:\Windows\system32\Tasks\Driver Booster Update (Task)
Successfully deleted: C:\Windows\system32\Tasks\Google Update (Task)
Successfully deleted: C:\Windows\system32\Tasks\SmartDefrag4_Startup (Task)
Successfully deleted: C:\Windows\system32\Tasks\Uninstaller_SkipUac_Kevin (Task)
Successfully deleted: C:\Windows\wininit.ini (File) 
Successfully deleted: C:\Users\Kevin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0PS72R2M (Temporary Internet Files Folder) 
Successfully deleted: C:\Users\Kevin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\43G8FG5N (Temporary Internet Files Folder) 
Successfully deleted: C:\Users\Kevin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5PGYWF8P (Temporary Internet Files Folder) 
Successfully deleted: C:\Users\Kevin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\62AXOPQ5 (Temporary Internet Files Folder) 
Successfully deleted: C:\Users\Kevin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\74M1W7M7 (Temporary Internet Files Folder) 
Successfully deleted: C:\Users\Kevin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\CM3YDBZT (Temporary Internet Files Folder) 
Successfully deleted: C:\Users\Kevin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FZG8CKJ5 (Temporary Internet Files Folder) 
Successfully deleted: C:\Users\Kevin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LIXMVQOA (Temporary Internet Files Folder) 
Successfully deleted: C:\Users\Kevin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LJWYSMMK (Temporary Internet Files Folder) 
Successfully deleted: C:\Users\Kevin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\MNDCB7NC (Temporary Internet Files Folder) 
Successfully deleted: C:\Users\Kevin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NOBZA4RV (Temporary Internet Files Folder) 
Successfully deleted: C:\Users\Kevin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\THDV74I1 (Temporary Internet Files Folder) 
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0PS72R2M (Temporary Internet Files Folder) 
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\43G8FG5N (Temporary Internet Files Folder) 
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5PGYWF8P (Temporary Internet Files Folder) 
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\62AXOPQ5 (Temporary Internet Files Folder) 
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\74M1W7M7 (Temporary Internet Files Folder) 
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\CM3YDBZT (Temporary Internet Files Folder) 
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FZG8CKJ5 (Temporary Internet Files Folder) 
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LIXMVQOA (Temporary Internet Files Folder) 
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LJWYSMMK (Temporary Internet Files Folder) 
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\MNDCB7NC (Temporary Internet Files Folder) 
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NOBZA4RV (Temporary Internet Files Folder) 
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\THDV74I1 (Temporary Internet Files Folder) 
 
Deleted the following from C:\Users\Kevin\AppData\Roaming\Mozilla\Firefox\Profiles\d2oxmme0.default\prefs.js
user_pref(extensions.searchtoolbar@zugo.com.install-event-fired, true);
 
 
 
Registry: 5 
 
Successfully deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\GoogleChromeAutoLaunch_585CBC2D9CEE64E85FE3A6084EF9DC86 (Registry Value) 
Successfully deleted: HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} (Registry Key)
Successfully deleted: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{10921475-03CE-4E04-90CE-E2E7EF20C814} (Registry Key)
Successfully deleted: HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} (Registry Key)
Successfully deleted: HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{10921475-03CE-4E04-90CE-E2E7EF20C814} (Registry Key)
 
 
 
 
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Fri 05/13/2016 at 15:18:09.84
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 

Adware Removal Tool Scan.

[-] Repaired ->> File ->> C:\Users\Kevin\AppData\Roaming\Mozilla\Firefox\Profiles\d2oxmme0.default\prefs.js
[-] Repaired ->> File ->> C:\Users\Kevin\AppData\Local\Google\Chrome\User Data\Default\Preferences
[-] Deleted ->> Registry Key ->> HKEY_CURRENT_USER\SOFTWARE\DT Soft
[-] Deleted ->> Registry Key ->> HKEY_LOCAL_MACHINE\SOFTWARE\DT Soft
[-] Deleted ->> Registry Key ->> HKEY_LOCAL_MACHINE\Software\WOW6432Node\DT Soft
 
ZHP Scan.

~ ZHPCleaner v2016.5.13.66 by Nicolas Coolman (2016/05/13)
~ Run by Kevin (Administrator)  (13/05/2016 15:55:37)
~ State version : Version OK
~ Type : Repair
~ Report : C:\Users\Kevin\Desktop\ZHPCleaner.txt
~ Quarantine : C:\Users\Kevin\AppData\Roaming\ZHP\ZHPCleaner_Quarantine.txt
~ UAC : Deactivate
~ Boot Mode : Normal (Normal boot)
Windows 7 Home Premium, 64-bit Service Pack 1 (Build 7601)
 
 
---\\  Services (0)
~ No malicious or unnecessary items found.
 
 
---\\  Browser internet (1)
REPLACED IE Params: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page [http://www.bing.com/?pc=ZUGO&form=ZGAPHP]  =>PUP.Optional.Zugo
 
 
---\\  Hosts file (0)
~ No malicious or unnecessary items found.
 
 
---\\  Scheduled automatic tasks. (0)
~ No malicious or unnecessary items found.
 
 
---\\  Explorer ( File, Folder) (103)
MOVED file: C:\Users\Kevin\Downloads\Drop_Lit_Torches_in_Combat-3429 (1).zip    =>.Superfluous.Torch
MOVED file: C:\Users\Kevin\Downloads\Drop_Lit_Torches_in_Combat-3429.zip    =>.Superfluous.Torch
MOVED file: C:\Users\Kevin\Downloads\iLivid_Setup.exe [iLivid.com - iLivid Download Manager Setup]  =>PUP.Optional.Bandoo
MOVED file: C:\Users\Kevin\Downloads\Joe[www.savevid.com].flv    =>PUP.Optional.Bandoo
MOVED file: C:\Users\Kevin\Downloads\NWNEnglish1.69HotUUpdate (1).exe    =>PUP.Optional.Wajam
MOVED file: C:\Users\Kevin\Downloads\NWNEnglish1.69HotUUpdate (2).exe    =>PUP.Optional.Wajam
MOVED file: C:\Users\Kevin\Downloads\NWNEnglish1.69HotUUpdate (3).exe    =>PUP.Optional.Wajam
MOVED file: C:\Users\Kevin\Downloads\NWNEnglish1.69HotUUpdate (4).exe    =>PUP.Optional.Wajam
MOVED file: C:\Users\Kevin\Downloads\NWNEnglish1.69HotUUpdate (5).exe    =>PUP.Optional.Wajam
MOVED file: C:\Users\Kevin\Downloads\NWNEnglish1.69HotUUpdate (6).exe    =>PUP.Optional.Wajam
MOVED file: C:\Users\Kevin\Downloads\NWNEnglish1.69HotUUpdate.exe    =>PUP.Optional.Wajam
MOVED file: C:\Users\Kevin\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_d23716qn9q7omq.cloudfront.net_0.localstorage    =>.Superfluous.CloudfrontNet
MOVED file: C:\Users\Kevin\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_d3l3lkinz3f56t.cloudfront.net_0.localstorage    =>.Superfluous.CloudfrontNet
MOVED file: C:\Users\Kevin\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.olark.com_0.localstorage    =>PUP.Optional.Generic
MOVED file: C:\Users\Kevin\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_d3l3lkinz3f56t.cloudfront.net_0.localstorage    =>.Superfluous.CloudfrontNet
MOVED file: C:\Users\Kevin\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_putlocker.is_0.localstorage    =>PUP.Optional.PutLocker
MOVED file: C:\Users\Kevin\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.similarsites.com_0.localstorage    =>PUP.Optional.SimilarSites
MOVED folder: C:\Program Files (x86)\8de63bd6-458d-46ce-8226-fca3179a199b  =>PUP.Optional.CrossRider
MOVED folder: C:\ProgramData\{BAF091CA-86C4-4627-ADA1-897E2621C1B0}  =>PUP.Optional.Generic
MOVED folder: C:\Program Files (x86)\QuickTime  =>Riskware.QuickTime
MOVED folder: C:\Users\Kevin\AppData\Local\Google\Chrome\User Data\Default\File System\008  =>PUP.Optional.DomaIQ
MOVED folder: C:\Windows\Installer\MSI18C.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSI219.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSI2279.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSI2A01.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSI2A7.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSI2B31.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSI2B59.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSI2D2E.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSI2DCB.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSI2E68.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSI3004.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSI3A70.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSI494.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSI49F8.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSI4A0C.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSI4B06.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSI4B8F.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSI4C3A.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSI5022.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSI5022.tmp-0  =>Empty
MOVED folder: C:\Windows\Installer\MSI514B.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSI5189.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSI5246.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSI5305.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSI532F.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSI562.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSI5AB6.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSI5B92.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSI5D86.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSI6277.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSI734.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSI82B0.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSI893D.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSI9090.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSI95AF.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSI969A.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSI9718.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSI979.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSI997E.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSI9ACB.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSI9AF5.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSI9BFF.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSI9C63.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSI9C8D.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSI9D2E.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSI9D49.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSI9E60.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSI9E63.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSI9EE0.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSIA2EA.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSIAA4.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSIABA2.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSIAC7D.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSIAD49.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSIB24.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSIC0.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSIC21B.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSIC22.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSIC46D.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSIC4B.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSIC5B5.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSIC657.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSIC69.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSIC6FE.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSIC871.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSIC90E.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSIC98B.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSIC9A3.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSICA19.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSICAAD.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSICAF4.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSICBD1.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSICD3D.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSICE67.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSID04B.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSID0B9.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSID93.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSIEC1E.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSIEF9C.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSIEFF6.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSIF634.tmp-  =>Empty
MOVED folder: C:\Windows\Installer\MSIFE4B.tmp-  =>Empty
 
 
---\\  Registry ( Key, Value, Data) (2)
DELETED key*: HKEY_USERS\.DEFAULT\Software\AVG SafeGuard toolbar []  =>PUP.Optional.SafeGuard
DELETED key*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\088842BC98A2E3B46A020D42B09E32F5 [C:\Perl64\lib\auto\ExtUtils\ParseXS\]  =>PUP.Optional.Manager
 
 
---\\  Summary of the elements found (13)
http://www.nicolascoolman.fr/?p=237  =>PUP.Optional.Bandoo
http://www.nicolascoolman.fr/?p=5145  =>.Superfluous.CloudfrontNet
http://www.nicolascoolman.fr/?p=134  =>PUP.Optional.PutLocker
http://www.nicolascoolman.fr/?p=583  =>PUP.Optional.SimilarSites
http://www.nicolascoolman.fr/?p=679  =>PUP.Optional.DomaIQ
http://www.nicolascoolman.fr/?p=354  =>PUP.Optional.Manager
 
 
---\\  Other deletions. (33)
~ Registry Keys Tracing deleted (33)
~ Remove the old reports ZHPCleaner. (0)
 
 
---\\ Result of repair
~ Repair carried out successfully
~ Browser not found (Mozilla Firefox)
~ Browser not found (Opera Software)
 
 
---\\ Statistics
~ Items scanned : 305
~ Items found : 0
~ Items cancelled : 0
~ Items repaired : 106
 
 
~ End of clean in 00h00mn16s
~====================
ZHPCleaner-[R]-13052016-15_55_53.txt
ZHPCleaner-[S]-13052016-15_52_59.txt
 
 Zemana Scan

Zemana AntiMalware 2.20.2.613 (Installed)
 
-------------------------------------------------------
Scan Result            : Completed
Scan Date              : 2016/5/13
Operating System       : Windows 7 64-bit
Processor              : 4X AMD Athlon™ II X4 630 Processor
BIOS Mode              : Legacy
CUID                   : 001E5831899FC049E9E69D
Scan Type              : Deep Scan
Duration               : 220m 59s
Scanned Objects        : 1006398
Detected Objects       : 4
Excluded Objects       : 0
Read Level             : SCSI
Auto Upload            : ON
Detect All Extensions  : OFF
Scan Documents         : OFF
Domain Info            : WORKGROUP,0,2
 
Detected Objects
-------------------------------------------------------
 
Generic Root Trust CA
Status             : Scanned
Object             : HKLM\SOFTWARE\Microsoft\SystemCertificates\ROOT\Certificates\CE1A3553BA6155DA5160097B4B1EA1FF4CBA7195\Blob
MD5                : -
Publisher          : -
Size               : -
Version            : -
Detection          : Suspicious Root CA
Cleaning Action    : Delete
Related Objects    :
                Registry Entry - HKLM\SOFTWARE\Microsoft\SystemCertificates\ROOT\Certificates\CE1A3553BA6155DA5160097B4B1EA1FF4CBA7195\Blob = 190000000100000010000000C3C6FF7213FE624BAE4831301BA17D090F0000000100000014000000AC596AC410AD9E88C97A631F2030F3D90D3C1A65030000000100000014000000CE1A3553BA6155DA5160097B4B1EA1FF4CBA71950B000000010000002C000000470065006E006500720069006300200052006F006F0074002000540072007500730074002000430041000000140000000100000014000000CE5FBC70E3290C4537046BC28AEAB9783D4E602D20000000010000005F0500003082055B30820347A00302010202100886B0C22AD1139740DCD1C5783A43BE300906052B0E03021D05003020311E301C0603550403131547656E6572696320526F6F74205472757374204341301E170D3034303632373231303030305A170D3339313233313233353935395A3020311E301C0603550403131547656E6572696320526F6F7420547275737420434130820222300D06092A864886F70D01010105000382020F003082020A0282020100E3F7A3A92E8A1E450184F610ED122E2E95F8EEBEF310D633B33FB5B74BFB539EFB02511F2891D0CCCDE451EB360F00F93BD1C48C552899EA1B5FB973A6020F9B01871C0582810180EADD97FAC039B9F10265CA11BEC2BA9FEF5ED5530D0FF52FEF0E3EFA2A57CD716C588B379D5D836B7739A555F7FD035B04603CFA8767E2A4EDEF7BD8476C7E2D7F8856BD85B64B06489F0471EB45495FCC31E8197156009743BE16AE92FE2BF05B655856AF13B6EA148D4AAAECCD264CE8384FCFA0F814FB079395A129514DA2840EB2D6EEA591CE52DA683B484876437D54166FE8BCB77197589E328227D74F2766D137E1FEB53E6C7BA0DD6967C8B1B1D2486FFFC5346227335F938D023A9D3526BD7F956347D615685806E1B9331BD471C66A5BA65E0BE19DE81A32BA1E462B3E54B903D33EF4FC6B1FA54412201E485A3FBFD2E150043100860471C17CE2E769627C15A99910945502FEC75CC8C96C0744D86EF3237F49182760F5AB921EEEDC9925E13C9FDA8F2AE1F22359975D4FB96CE2FE1CC7E846180F504039A681573487E9FEF3CF0CA8E75B07D54C4B8D02B3E24B2CF4F66EA5F93D89D06D63634619D5F22862A42923F1A1A7FFB24C3652B432634994B2F711F25C855D79614A63ED4376AD7974C6DA2A7859DCAE775C6F3D691B90276A3A68A4C7D05E01F7FA3EA3BCF5903C744B4A62742042EAA3FBA041CDC1560CDAA90203010001A38198308195300F0603551D130101FF040530030101FF302F0603551D1F042830263024A022A020861E687474703A2F2F63726C2E67727369676E2E636F6D2F726F6F742E63726C30510603551D01044A3048801081CCA285444BBDF62F30A7426F3C0525A1223020311E301C0603550403131547656E6572696320526F6F7420547275737420434182100886B0C22AD1139740DCD1C5783A43BE300906052B0E03021D05000382020100DDFF3647576E7AE7A101FB531683247AF3276623F6CFABA169B78039019FAD7D1297E568E8D8FD115F431F8FFAB1DED33BC78159F3277CDBC1E21B7C54300F21D26B1CF7C6DFF5EE507FDBFCC0D71B67462EFC664ABEC83F11D1C04D064129B4FB794893B46E87E8068774575DED1C66B90C5DBF59FD188495116301FC109F2314BB0AB2D2201339D9D0D2BFC11F4CA78340F3D221788E887DC62D38554BDC8C5CD928A7EE33F63559DF868192C667215B4D7B917E383D365CAFF123987F05E0B340B5083C87F037725D525136C5CCDA2ACDC2D229AD6794A764A1BEF40FBAB55E3A0D432124C449EF956AFB0E75C388C629189D0D065956A81179BBB96D9E29B1C994FA8EB1AD2BB87467BCEF4749FED2197F4A3D8AE58B6765041B7D7FEC600E62E05707998D480CB81C2F2125D0C41504FC0449BBF7FC97E028E37357EC9FEB96D35721428633527FFEF4D1E34BCA9DEB16B1AD1D682DC199B654DAF18BF6F1699C47AD9A2C8109F5A3053745CC196D3474D94AC9BC78E7C0D6B198A890B506E74D9F3989D1A6C5DEFF18B4AF9680AD945F7EA46C116A57E6A117FF6D1014EDD19A8C55260B40EA310FEEEED5BFB42BAF8CAABD20CBB6263289DAB5E1BB3023417BF97ED5D14C91106D2473BC71DE95BFCDEB18093FD8B78FAEA0F8BFA8FA2348CCC289CB5CC76A37701842661A40E9EE0DDED2A3ABBA0F29E761D9E7F8DC
 
dsetup.dll
Status             : Scanned
Object             : %userprofile%\desktop\misc\everquest\dsetup.dll
MD5                : 63D7F865C8FDF18102C455D95BD4E1A3
Publisher          : -
Size               : 2007040
Version            : 1.9.0.0
Detection          : TrojanCryptor:Win32/Generic
Cleaning Action    : Quarantine
Related Objects    :
                File - %userprofile%\desktop\misc\everquest\dsetup.dll
 
PEQServerPack-Maps-4.0-1110a.exe
Status             : Scanned
Object             : %userprofile%\downloads\peqserverpack-maps-4.0-1110a.exe
MD5                : DFBB618E70AE7E0ED9C57FA6BCDC6B80
Publisher          : -
Size               : 53248
Version            : 0.0.0.0
Detection          : Malware:Win32/Bailoat.A!Emka
Cleaning Action    : Quarantine
Related Objects    :
                File - %userprofile%\downloads\peqserverpack-maps-4.0-1110a.exe
 
dsetup.dll
Status             : Scanned
Object             : %programfiles%\sony\everquest\dsetup.dll
MD5                : 6BB4E4F6D75175E3F866D2BC1D6343AB
Publisher          : -
Size               : 2828800
Version            : 1.9.0.0
Detection          : TrojanCryptor:Win32/Generic
Cleaning Action    : Quarantine
Related Objects    :
                File - %programfiles%\sony\everquest\dsetup.dll
 
 
Cleaning Result
-------------------------------------------------------
Cleaned               : 4
Reported as safe      : 0
Failed                : 0
 
 
 


#4 InadequateInfirmity

InadequateInfirmity

    I Gots Me A Certified Edumication


  • Banned
  • 5,180 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:12:16 PM

Posted 14 May 2016 - 07:30 PM

How are things running now?

 

Malwarebytes Scan.

 

We need you to run MalwareBytes to get a log, please download the free version of MalwareBytes HERE

http://data-cdn.mbamupdates.com/web/mbam-setup-2.2.0.1024.exe  Alternate Link.

Save the file to somewhere you can easily find it. Double click the saved file to start the install, accept any security warnings that may appear, and after the install click the new desktop icon to start the program. We need to modify a couple of things with MalwareBytes before we use it so please follow the steps below.

  1. If the dashboard is not already displayed select it.
  2. Then select "Update Now" to get the latest database.

VSKiiIc.jpg

  1. Next we need to change a scanning option, select "Settings" on the main menu, then "Detection and Protection" on the left.
  2. Then select "Scan for rootkits" in the detection options, as well as the other two options already checked.

ZU4W2g2.jpg

  • Now return to Dashboard on the main menu and select "Scan Now" at the bottom of the screen.

nF8dOcq.jpg

  • Allow MalwareBytes to scan your system, it may take some time depending on what you have loaded onto your hard drive.

L8lsasM.jpg

When the scan is finished

  1. Click "Save Results"
  2. Then click on "Text file"

5x4JOvA.jpg

  • A window will then open allowing you to choose a name for the logfile and also allowing you to choose where to save it, save it to the desktop.
  • Please copy and paste the contents of this file in your next post.

 

 

Eset Online Scanner.

 

Eset Scan

Click Me To Download Eset Scan

Disable your antivirus prior to this scan.
 
 esetonlinebtn.png
 

  •  Save it to your desktop.
  • Double click on the esetsmartinstaller_enu.png icon on your desktop.
  • Check "YES, I accept the Terms of Use."
  • Click the Start button.
  • Accept any security warnings from your browser.
  • Under scan settings, check "Scan Archives" and "Remove found threats"
  • Click Advanced settings and select the following:
  • Scan potentially unwanted applications
  • Scan for potentially unsafe applications
  • Enable Anti-Stealth technology
  • ESET will then download updates for itself, install itself, and begin scanning your computer. Please be patient as this can take some time.
  • When the scan completes, click List Threats
  • Click Export, and save the file to your desktop using a unique name, such as ESETScan. Include the contents of this report in your next reply.
  • Click the Back button.
  • Click the Finish button.
  • NOTE:Sometimes if ESET finds no infections it will not create a log.

 

Minitoolbox scan.

 

 

Please download MINITOOLBOX and run it.



Checkmark following boxes:


Flush DNS
Reset FF proxy Settings
Reset Ie Proxy Settings
Report IE Proxy Settings
Report FF Proxy Settings
List content of Hosts
List IP configuration
List Winsock Entries
List last 10 Event Viewer log
List Installed Programs
List Users, Partitions and Memory size
List Devices (problems only)



Click Go and post the result.

 

Security Check Scan.

 

Download Security Check to your desktop, right click it run as administrator. When the program completes, the tool will automatically open a log file, please post that log here in your next post.



#5 Beru

Beru
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:10:16 AM

Posted 15 May 2016 - 12:21 AM

59 processes are running now. Will continue with other scans and post logs.  



#6 Beru

Beru
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:10:16 AM

Posted 15 May 2016 - 11:55 AM

Malwarebytes Scan.

 

Malwarebytes Anti-Malware
www.malwarebytes.org
 
Scan Date: 5/14/2016
Scan Time: 10:23 PM
Logfile: malwarebytes.txt
Administrator: Yes
 
Version: 2.2.1.1043
Malware Database: v2016.05.15.01
Rootkit Database: v2016.05.06.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled
 
OS: Windows 7 Service Pack 1
CPU: x64
File System: NTFS
User: Kevin
 
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 339718
Time Elapsed: 43 min, 5 sec
 
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Enabled
Deep Rootkit Scan: Enabled
Heuristics: Enabled
PUP: Warn
PUM: Enabled
 
Processes: 0
(No malicious items detected)
 
Modules: 0
(No malicious items detected)
 
Registry Keys: 0
(No malicious items detected)
 
Registry Values: 0
(No malicious items detected)
 
Registry Data: 0
(No malicious items detected)
 
Folders: 3
PUP.Optional.CrossRider, C:\Users\Kevin\AppData\Local\Google\Chrome\User Data\Default\Extensions\lkadffjmnaiokkdncgdlecdegajoiemi, , [d657bc1a4554d85ec730554734ce9a66], 
PUP.Optional.CrossRider, C:\Users\Kevin\AppData\Local\Google\Chrome\User Data\Default\Extensions\lkadffjmnaiokkdncgdlecdegajoiemi\0.1_0, , [d657bc1a4554d85ec730554734ce9a66], 
PUP.Optional.CrossRider, C:\Users\Kevin\AppData\Local\Google\Chrome\User Data\Default\Extensions\lkadffjmnaiokkdncgdlecdegajoiemi\0.1_0\_metadata, , [d657bc1a4554d85ec730554734ce9a66], 
 
Files: 7
PUP.Optional.CrossRider, C:\Users\Kevin\AppData\Local\Google\Chrome\User Data\Default\Extensions\lkadffjmnaiokkdncgdlecdegajoiemi\0.1_0\background.js, , [d657bc1a4554d85ec730554734ce9a66], 
PUP.Optional.CrossRider, C:\Users\Kevin\AppData\Local\Google\Chrome\User Data\Default\Extensions\lkadffjmnaiokkdncgdlecdegajoiemi\0.1_0\bleaner.js, , [d657bc1a4554d85ec730554734ce9a66], 
PUP.Optional.CrossRider, C:\Users\Kevin\AppData\Local\Google\Chrome\User Data\Default\Extensions\lkadffjmnaiokkdncgdlecdegajoiemi\0.1_0\icon-128.png, , [d657bc1a4554d85ec730554734ce9a66], 
PUP.Optional.CrossRider, C:\Users\Kevin\AppData\Local\Google\Chrome\User Data\Default\Extensions\lkadffjmnaiokkdncgdlecdegajoiemi\0.1_0\icon-16.png, , [d657bc1a4554d85ec730554734ce9a66], 
PUP.Optional.CrossRider, C:\Users\Kevin\AppData\Local\Google\Chrome\User Data\Default\Extensions\lkadffjmnaiokkdncgdlecdegajoiemi\0.1_0\icon-48.png, , [d657bc1a4554d85ec730554734ce9a66], 
PUP.Optional.CrossRider, C:\Users\Kevin\AppData\Local\Google\Chrome\User Data\Default\Extensions\lkadffjmnaiokkdncgdlecdegajoiemi\0.1_0\manifest.json, , [d657bc1a4554d85ec730554734ce9a66], 
PUP.Optional.CrossRider, C:\Users\Kevin\AppData\Local\Google\Chrome\User Data\Default\Extensions\lkadffjmnaiokkdncgdlecdegajoiemi\0.1_0\_metadata\verified_contents.json, , [d657bc1a4554d85ec730554734ce9a66], 
 
Physical Sectors: 0
(No malicious items detected)
 
 

 

(end)
 
Eset Online Scanner.

C:\$Recycle.Bin\S-1-5-21-1702454692-1761752130-2659928019-1000\$RJ8CF9S.com\windows-7-themes.com.url LNK/Agent.CH trojan cleaned by deleting
C:\AdwCleaner\FileQuarantine\C\Program Files (x86)\tencent\QQPCMgr\10.10.16434.218\plugins\QQPCB1AndroidJmp\MobileAssistant.apk.vir a variant of Android/Spy.Agent.VH trojan deleted
C:\AdwCleaner\FileQuarantine\C\Program Files (x86)\tencent\QQPCMgr\10.10.16434.218\qmspeedupplugin\phonerocket\dock_5.7.0.2\mobileassistant.apk.vir a variant of Android/DroidRooter.AC potentially unsafe application deleted
C:\AdwCleaner\FileQuarantine\C\Users\Kevin\AppData\Local\Games Bot\Data\ResPack6.bin.vir SWF/Agent.H trojan deleted
C:\Program Files (x86)\IObit\Advanced SystemCare 5\asc6_setup_v5tov6-0306.exe a variant of Win32/Toolbar.Widgi.B potentially unwanted application deleted
C:\Users\Kevin\AppData\Roaming\ZHP\Quarantine\iLivid_Setup.exe Win32/Toolbar.Zugo potentially unwanted application deleted
C:\Users\Kevin\Desktop\sundisc\asc-setup.exe a variant of Win32/Toolbar.Widgi potentially unwanted application deleted
C:\Users\Kevin\Downloads\asc-setup.exe a variant of Win32/Toolbar.Widgi potentially unwanted application deleted
C:\Users\Kevin\Downloads\eqchangesv12.zip Win32/GameHack.AP potentially unsafe application deleted
C:\Users\Kevin\Downloads\eqchangesv13.zip Win32/GameHack.AP potentially unsafe application deleted
C:\Users\Kevin\Downloads\eqchangesv17.zip a variant of Win32/Packed.Themida suspicious application deleted
C:\Users\Kevin\Downloads\eqchangesv18.zip a variant of Win32/Packed.Themida suspicious application deleted
C:\Users\Kevin\Downloads\eqchangesv19.zip a variant of Win32/Packed.Themida suspicious application deleted
C:\Users\Kevin\Downloads\eqchangesv20.zip a variant of Win32/Packed.Themida suspicious application deleted
C:\Users\Kevin\Downloads\eqchangesv21.zip a variant of Win32/Packed.Themida suspicious application deleted
C:\Users\Kevin\Downloads\eqchangesv22 (1).zip a variant of Win32/Packed.Themida suspicious application deleted
C:\Users\Kevin\Downloads\eqchangesv22.zip a variant of Win32/Packed.Themida suspicious application deleted
C:\Users\Kevin\Downloads\eqchangesv23 (1).zip a variant of Win32/Packed.Themida suspicious application deleted
C:\Users\Kevin\Downloads\eqchangesv23.zip a variant of Win32/Packed.Themida suspicious application deleted
C:\Users\Kevin\Downloads\eqchangesv24.zip a variant of Win32/Packed.Themida suspicious application deleted
C:\Users\Kevin\Downloads\eqchangesv25.zip a variant of Win32/Packed.Themida suspicious application deleted
C:\Users\Kevin\Downloads\eqchangesv26.zip a variant of Win32/Packed.Themida suspicious application deleted
C:\Users\Kevin\Downloads\eqchangesv28.zip a variant of Win32/Packed.Themida suspicious application deleted
C:\Users\Kevin\Downloads\eqchangesv29.zip a variant of Win32/Packed.Themida suspicious application deleted
C:\Users\Kevin\Downloads\IObit-Malware-Fighter-Setup.exe a variant of Win32/Toolbar.Widgi.W potentially unwanted application deleted
C:\Users\Kevin\Downloads\P99Files31.zip a variant of Win32/Packed.Themida suspicious application deleted
C:\Users\Kevin\Downloads\P99Files32.zip a variant of Win32/Packed.Themida suspicious application deleted
C:\Users\Kevin\Downloads\P99Files34.zip a variant of Win32/Packed.Themida suspicious application deleted
C:\Users\Kevin\Downloads\P99Files35.zip a variant of Win32/Packed.Themida suspicious application deleted
C:\Users\Kevin\Downloads\P99Files36.zip a variant of Win32/Packed.Themida suspicious application deleted
C:\Users\Kevin\Downloads\P99Files37.zip a variant of Win32/Packed.Themida suspicious application deleted
C:\Users\Kevin\Downloads\P99Files38.zip a variant of Win32/Packed.Themida suspicious application deleted
C:\Users\Kevin\Downloads\P99Files39.zip a variant of Win32/Packed.Themida suspicious application deleted
C:\Users\Kevin\Downloads\P99Files40.zip a variant of Win32/Packed.Themida suspicious application deleted
C:\Users\Kevin\Downloads\P99Files41.zip a variant of Win32/Packed.Themida suspicious application deleted
C:\Users\Kevin\Downloads\P99Files42.zip a variant of Win32/Packed.Themida suspicious application deleted
C:\Users\Kevin\Downloads\Age.of.Empires.II.HD.The.Forgotten-RELOADED\rld-aoe2hdtf.iso a variant of Win32/HackTool.Crack.BL potentially unsafe application deleted
 
 

Minitoolbox scan

 

MiniToolBox by Farbar  Version: 07-02-2016 01

Ran by Kevin (administrator) on 15-05-2016 at 09:46:31
Running from "C:\Users\Kevin\Downloads"
Microsoft Windows 7 Home Premium  Service Pack 1 (X64)
Model: AY747AA-ABA p6310y Manufacturer: HP-Pavilion
Boot Mode: Normal
***************************************************************************
 
========================= Flush DNS: ===================================
 
Windows IP Configuration
 
Successfully flushed the DNS Resolver Cache.
 
========================= IE Proxy Settings: ============================== 
 
Proxy is not enabled.
No Proxy Server is set.
 
"Reset IE Proxy Settings": IE Proxy Settings were reset.
 
========================= FF Proxy Settings: ============================== 
 
 
"Reset FF Proxy Settings": Firefox Proxy settings were reset.
 
========================= Hosts content: =================================
127.0.0.1 www.007guard.com
127.0.0.1 007guard.com
127.0.0.1 008i.com
127.0.0.1 www.008k.com
127.0.0.1 008k.com
127.0.0.1 www.00hq.com
127.0.0.1 00hq.com
127.0.0.1 010402.com
127.0.0.1 www.032439.com
127.0.0.1 032439.com
127.0.0.1 www.0scan.com
127.0.0.1 0scan.com
127.0.0.1 1000gratisproben.com
127.0.0.1 www.1000gratisproben.com
127.0.0.1 1001namen.com
127.0.0.1 www.1001namen.com
127.0.0.1 100888290cs.com
127.0.0.1 www.100888290cs.com
127.0.0.1 www.100sexlinks.com
127.0.0.1 100sexlinks.com
127.0.0.1 10sek.com
127.0.0.1 www.10sek.com
127.0.0.1 www.1-2005-search.com
127.0.0.1 1-2005-search.com
127.0.0.1 123fporn.info
127.0.0.1 www.123fporn.info
127.0.0.1 123haustiereundmehr.com
127.0.0.1 www.123haustiereundmehr.com
127.0.0.1 123moviedownload.com
127.0.0.1 www.123moviedownload.com
 
There are 15474 entries.
 
========================= IP Configuration: ================================
 
NVIDIA nForce Networking Controller = Local Area Connection (Disconnected)
Linksys AE1000 = Wireless Network Connection 10 (Connected)
Microsoft Virtual WiFi Miniport Adapter = Wireless Network Connection 11 (Media disconnected)
PdaNet Broadband Adapter = Local Area Connection 2 (Media disconnected)
 
 
# ----------------------------------
# IPv4 Configuration
# ----------------------------------
pushd interface ipv4
 
reset
set global icmpredirects=enabled
 
 
popd
# End of IPv4 configuration
 
 
 
Windows IP Configuration
 
   Host Name . . . . . . . . . . . . : Kevin-PC
   Primary Dns Suffix  . . . . . . . : 
   Node Type . . . . . . . . . . . . : Hybrid
   IP Routing Enabled. . . . . . . . : No
   WINS Proxy Enabled. . . . . . . . : No
 
Ethernet adapter Local Area Connection 2:
 
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : 
   Description . . . . . . . . . . . : PdaNet Broadband Adapter
   Physical Address. . . . . . . . . : 00-26-37-BD-39-42
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes
 
Wireless LAN adapter Wireless Network Connection 11:
 
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : 
   Description . . . . . . . . . . . : Microsoft Virtual WiFi Miniport Adapter #5
   Physical Address. . . . . . . . . : 68-7F-74-77-CF-BE
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes
 
Wireless LAN adapter Wireless Network Connection 10:
 
   Connection-specific DNS Suffix  . : 
   Description . . . . . . . . . . . : Linksys AE1000 #6
   Physical Address. . . . . . . . . : 68-7F-74-77-CF-BF
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes
   Link-local IPv6 Address . . . . . : fe80::fd91:ff29:718e:58c4%26(Preferred) 
   IPv4 Address. . . . . . . . . . . : 192.168.1.2(Preferred) 
   Subnet Mask . . . . . . . . . . . : 255.255.255.0
   Lease Obtained. . . . . . . . . . : Saturday, May 14, 2016 11:54:16 PM
   Lease Expires . . . . . . . . . . : Sunday, May 15, 2016 11:54:26 PM
   Default Gateway . . . . . . . . . : 192.168.1.1
   DHCP Server . . . . . . . . . . . : 192.168.1.1
   DHCPv6 IAID . . . . . . . . . . . : 526942068
   DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-13-CA-49-12-E0-CB-4E-30-8C-56
   DNS Servers . . . . . . . . . . . : 192.168.1.1
   NetBIOS over Tcpip. . . . . . . . : Enabled
 
Ethernet adapter Local Area Connection:
 
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : 
   Description . . . . . . . . . . . : NVIDIA nForce Networking Controller
   Physical Address. . . . . . . . . : E0-CB-4E-30-8C-56
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes
 
Tunnel adapter Local Area Connection* 11:
 
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : 
   Description . . . . . . . . . . . : Teredo Tunneling Pseudo-Interface
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
 
Tunnel adapter isatap.{55E66CF1-84C0-478A-9F64-C88BFBF0C7AD}:
 
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : 
   Description . . . . . . . . . . . : Microsoft ISATAP Adapter #3
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
Server:  www.routerlogin.com
Address:  192.168.1.1
 
Name:    google.com
Addresses:  2607:f8b0:4007:804::200e
 216.58.216.46
 
 
Pinging google.com [172.217.1.46] with 32 bytes of data:
Reply from 172.217.1.46: bytes=32 time=26ms TTL=56
Reply from 172.217.1.46: bytes=32 time=23ms TTL=56
 
Ping statistics for 172.217.1.46:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 23ms, Maximum = 26ms, Average = 24ms
Server:  www.routerlogin.com
Address:  192.168.1.1
 
Name:    yahoo.com
Addresses:  2001:4998:44:204::a7
 2001:4998:c:a06::2:4008
 2001:4998:58:c02::a9
 98.138.253.109
 206.190.36.45
 98.139.183.24
 
 
Pinging yahoo.com [98.138.253.109] with 32 bytes of data:
Reply from 98.138.253.109: bytes=32 time=74ms TTL=53
Reply from 98.138.253.109: bytes=32 time=120ms TTL=53
 
Ping statistics for 98.138.253.109:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 74ms, Maximum = 120ms, Average = 97ms
 
Pinging 127.0.0.1 with 32 bytes of data:
Reply from 127.0.0.1: bytes=32 time<1ms TTL=128
Reply from 127.0.0.1: bytes=32 time<1ms TTL=128
 
Ping statistics for 127.0.0.1:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 0ms, Maximum = 0ms, Average = 0ms
===========================================================================
Interface List
 30...00 26 37 bd 39 42 ......PdaNet Broadband Adapter
 27...68 7f 74 77 cf be ......Microsoft Virtual WiFi Miniport Adapter #5
 26...68 7f 74 77 cf bf ......Linksys AE1000 #6
 10...e0 cb 4e 30 8c 56 ......NVIDIA nForce Networking Controller
  1...........................Software Loopback Interface 1
 11...00 00 00 00 00 00 00 e0 Teredo Tunneling Pseudo-Interface
 16...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter #3
===========================================================================
 
IPv4 Route Table
===========================================================================
Active Routes:
Network Destination        Netmask          Gateway       Interface  Metric
          0.0.0.0          0.0.0.0      192.168.1.1      192.168.1.2     25
        127.0.0.0        255.0.0.0         On-link         127.0.0.1    306
        127.0.0.1  255.255.255.255         On-link         127.0.0.1    306
  127.255.255.255  255.255.255.255         On-link         127.0.0.1    306
      192.168.1.0    255.255.255.0         On-link       192.168.1.2    281
      192.168.1.2  255.255.255.255         On-link       192.168.1.2    281
    192.168.1.255  255.255.255.255         On-link       192.168.1.2    281
        224.0.0.0        240.0.0.0         On-link         127.0.0.1    306
        224.0.0.0        240.0.0.0         On-link       192.168.1.2    281
  255.255.255.255  255.255.255.255         On-link         127.0.0.1    306
  255.255.255.255  255.255.255.255         On-link       192.168.1.2    281
===========================================================================
Persistent Routes:
  None
 
IPv6 Route Table
===========================================================================
Active Routes:
 If Metric Network Destination      Gateway
  1    306 ::1/128                  On-link
 26    281 fe80::/64                On-link
 26    281 fe80::fd91:ff29:718e:58c4/128
                                    On-link
  1    306 ff00::/8                 On-link
 26    281 ff00::/8                 On-link
===========================================================================
Persistent Routes:
  None
========================= Winsock entries =====================================
 
Catalog5 01 C:\Windows\SysWOW64\NLAapi.dll [52224] (Microsoft Corporation)
Catalog5 02 C:\Windows\SysWOW64\napinsp.dll [52224] (Microsoft Corporation)
Catalog5 03 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog5 04 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog5 05 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [145280] (Microsoft Corp.)
Catalog5 06 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [145280] (Microsoft Corp.)
Catalog5 07 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog5 08 C:\Windows\SysWOW64\winrnr.dll [20992] (Microsoft Corporation)
Catalog5 09 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [121704] (Apple Inc.)
Catalog9 01 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 02 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 03 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 04 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 05 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 06 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 07 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 08 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 09 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 10 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
x64-Catalog5 01 C:\Windows\System32\NLAapi.dll [70656] (Microsoft Corporation)
x64-Catalog5 02 C:\Windows\System32\napinsp.dll [68096] (Microsoft Corporation)
x64-Catalog5 03 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation)
x64-Catalog5 04 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation)
x64-Catalog5 05 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [170880] (Microsoft Corp.)
x64-Catalog5 06 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [170880] (Microsoft Corp.)
x64-Catalog5 07 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog5 08 C:\Windows\System32\winrnr.dll [28672] (Microsoft Corporation)
x64-Catalog5 09 C:\Program Files\Bonjour\mdnsNSP.dll [132968] (Apple Inc.)
x64-Catalog9 01 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog9 02 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog9 03 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog9 04 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog9 05 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog9 06 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog9 07 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog9 08 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog9 09 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog9 10 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
 
========================= Event log errors: ===============================
 
Application errors:
==================
Error: (05/15/2016 09:42:17 AM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest.
 
Error: (05/15/2016 03:59:27 AM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest.
 
Error: (05/15/2016 12:14:05 AM) (Source: MsiInstaller) (User: Kevin-PC)
Description: SA_Error1709: StandardAction(0xC00706AD): Product: AVG 2015 -- Error 1922. SA_Error1922: StandardAction(0xC0070782): Service 'AVGIDSAgent' (AVGIDSAgent) could not be deleted. Verify that you have sufficient privileges to remove system services.
 
Error: (05/15/2016 12:04:32 AM) (Source: MsiInstaller) (User: Kevin-PC)
Description: Product: ESET Smart Security -- Error 1404. Could not delete key \Software\ESET\ESET Security.  System error .  Verify that you have sufficient access to that key, or contact your support personnel.
 
Error: (05/15/2016 12:04:30 AM) (Source: MsiInstaller) (User: Kevin-PC)
Description: Product: ESET Smart Security -- Error 1404. Could not delete key \Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ekrn.exe.  System error .  Verify that you have sufficient access to that key, or contact your support personnel.
 
Error: (05/15/2016 12:00:16 AM) (Source: Bonjour Service) (User: )
Description: mDNSCoreReceiveResponse: Unexpected conflict discarding   16 2.1.168.192.in-addr.arpa. PTR Kevin-PC.local.
 
Error: (05/15/2016 12:00:16 AM) (Source: Bonjour Service) (User: )
Description: mDNSCoreReceiveResponse: Received from 192.168.1.2:5353   18 2.1.168.192.in-addr.arpa. PTR Kevin-PC-2.local.
 
Error: (05/14/2016 11:41:05 PM) (Source: Bonjour Service) (User: )
Description: mDNSCoreReceiveResponse: Unexpected conflict discarding   16 2.1.168.192.in-addr.arpa. PTR Kevin-PC.local.
 
Error: (05/14/2016 11:41:05 PM) (Source: Bonjour Service) (User: )
Description: mDNSCoreReceiveResponse: Received from 192.168.1.2:5353   18 2.1.168.192.in-addr.arpa. PTR Kevin-PC-2.local.
 
Error: (05/13/2016 03:02:08 PM) (Source: Bonjour Service) (User: )
Description: mDNSCoreReceiveResponse: Unexpected conflict discarding   16 2.1.168.192.in-addr.arpa. PTR Kevin-PC.local.
 
 
System errors:
=============
Error: (05/15/2016 08:32:50 AM) (Source: Service Control Manager) (User: )
Description: The eapihdrv service failed to start due to the following error: 
%%1275
 
Error: (05/15/2016 08:32:50 AM) (Source: Application Popup) (User: )
Description: \??\C:\Users\Kevin\AppData\Local\Temp\ehdrv.sys has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.
 
Error: (05/15/2016 08:32:49 AM) (Source: Service Control Manager) (User: )
Description: The eapihdrv service failed to start due to the following error: 
%%1275
 
Error: (05/15/2016 08:32:49 AM) (Source: Application Popup) (User: )
Description: \??\C:\Users\Kevin\AppData\Local\Temp\ehdrv.sys has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.
 
Error: (05/15/2016 08:32:49 AM) (Source: Service Control Manager) (User: )
Description: The eapihdrv service failed to start due to the following error: 
%%1275
 
Error: (05/15/2016 08:32:49 AM) (Source: Application Popup) (User: )
Description: \??\C:\Users\Kevin\AppData\Local\Temp\ehdrv.sys has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.
 
Error: (05/15/2016 08:32:49 AM) (Source: Service Control Manager) (User: )
Description: The eapihdrv service failed to start due to the following error: 
%%1275
 
Error: (05/15/2016 08:32:49 AM) (Source: Application Popup) (User: )
Description: \??\C:\Users\Kevin\AppData\Local\Temp\ehdrv.sys has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.
 
Error: (05/15/2016 08:32:48 AM) (Source: Service Control Manager) (User: )
Description: The eapihdrv service failed to start due to the following error: 
%%1275
 
Error: (05/15/2016 08:32:48 AM) (Source: Application Popup) (User: )
Description: \??\C:\Users\Kevin\AppData\Local\Temp\ehdrv.sys has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.
 
 
Microsoft Office Sessions:
=========================
Error: (05/15/2016 09:42:17 AM) (Source: SideBySide)(User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifestC:\Users\Kevin\Downloads\esetsmartinstaller_enu.exe
 
Error: (05/15/2016 03:59:27 AM) (Source: SideBySide)(User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifestc:\users\kevin\downloads\esetsmartinstaller_enu.exe
 
Error: (05/15/2016 12:14:05 AM) (Source: MsiInstaller)(User: Kevin-PC)
Description: SA_Error1709: StandardAction(0xC00706AD): Product: AVG 2015 -- Error 1922. SA_Error1922: StandardAction(0xC0070782): Service 'AVGIDSAgent' (AVGIDSAgent) could not be deleted. Verify that you have sufficient privileges to remove system services.(NULL)(NULL)(NULL)(NULL)(NULL)
 
Error: (05/15/2016 12:04:32 AM) (Source: MsiInstaller)(User: Kevin-PC)
Description: Product: ESET Smart Security -- Error 1404. Could not delete key \Software\ESET\ESET Security.  System error .  Verify that you have sufficient access to that key, or contact your support personnel. (NULL)(NULL)(NULL)(NULL)(NULL)
 
Error: (05/15/2016 12:04:30 AM) (Source: MsiInstaller)(User: Kevin-PC)
Description: Product: ESET Smart Security -- Error 1404. Could not delete key \Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ekrn.exe.  System error .  Verify that you have sufficient access to that key, or contact your support personnel. (NULL)(NULL)(NULL)(NULL)(NULL)
 
Error: (05/15/2016 12:00:16 AM) (Source: Bonjour Service)(User: )
Description: mDNSCoreReceiveResponse: Unexpected conflict discarding   16 2.1.168.192.in-addr.arpa. PTR Kevin-PC.local.
 
Error: (05/15/2016 12:00:16 AM) (Source: Bonjour Service)(User: )
Description: mDNSCoreReceiveResponse: Received from 192.168.1.2:5353   18 2.1.168.192.in-addr.arpa. PTR Kevin-PC-2.local.
 
Error: (05/14/2016 11:41:05 PM) (Source: Bonjour Service)(User: )
Description: mDNSCoreReceiveResponse: Unexpected conflict discarding   16 2.1.168.192.in-addr.arpa. PTR Kevin-PC.local.
 
Error: (05/14/2016 11:41:05 PM) (Source: Bonjour Service)(User: )
Description: mDNSCoreReceiveResponse: Received from 192.168.1.2:5353   18 2.1.168.192.in-addr.arpa. PTR Kevin-PC-2.local.
 
Error: (05/13/2016 03:02:08 PM) (Source: Bonjour Service)(User: )
Description: mDNSCoreReceiveResponse: Unexpected conflict discarding   16 2.1.168.192.in-addr.arpa. PTR Kevin-PC.local.
 
 
=========================== Installed Programs ============================
 
µTorrent (HKCU\...\uTorrent) (Version: 3.4.5.41372 - BitTorrent Inc.)
1500 (HKLM-x32\...\{4B407A54-6CF2-42B5-B419-E900B2E36972}) (Version: 130.0.365.000 - Hewlett-Packard) Hidden
1500_Help (HKLM-x32\...\{A2101ACC-DC36-42AA-A576-6FD6A8D466DA}) (Version: 82.0.242.000 - Hewlett-Packard) Hidden
1500Trb (HKLM-x32\...\{A4C6B32D-5088-40AF-B74D-CDABEF144F04}) (Version: 82.0.242.000 - Hewlett-Packard) Hidden
64 Bit HP CIO Components Installer (HKLM\...\{55D55008-E5F6-47D6-B16F-B2A40D4D145F}) (Version: 6.2.1 - Hewlett-Packard) Hidden
ActivePerl 5.12.4 Build 1205 (64-bit) (HKLM\...\{860FA5E2-DF36-4BFB-8807-68E688339BE0}) (Version: 5.12.1205 - ActiveState)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 2.6.0.19120 - Adobe Systems Incorporated)
Adobe Flash Player 21 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 21.0.0.242 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.15) (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.15 - Adobe Systems Incorporated)
Adobe Shockwave Player 11.6 (HKLM-x32\...\Adobe Shockwave Player) (Version: 11.6.6.636 - Adobe Systems, Inc.)
Advanced SystemCare 8 (HKLM-x32\...\Advanced SystemCare 8_is1) (Version: 8.4.0 - IObit)
Age of Castles (HKLM-x32\...\WTA-cbbd01c3-7334-4cb8-a900-2d059ace553e) (Version: 2.2.0.95 - WildTangent) Hidden
Age of Empires II HD The Forgotten (HKLM-x32\...\QWdlb2ZFbXBpcmVzSUlIRFRoZUZvcmdvdHRlbg==_is1) (Version: 1 - )
AIO_CDB_ProductContext (HKLM-x32\...\{E7112940-5F8E-4918-B9FE-251F2F8DC81F}) (Version: 130.0.365.000 - Hewlett-Packard) Hidden
AIO_CDB_Software (HKLM-x32\...\{9F6B13E2-B93F-4203-9BD4-5DC18C9F9DEB}) (Version: 130.0.365.000 - Hewlett-Packard) Hidden
AIO_Scan (HKLM-x32\...\{104066F4-5897-4067-85D3-4C88B67CCF75}) (Version: 130.0.421.000 - Hewlett-Packard) Hidden
Apple Application Support (32-bit) (HKLM-x32\...\{2FE00055-C4F3-4F7A-AEDD-E198D54CF12F}) (Version: 3.1.1 - Apple Inc.)
Apple Application Support (64-bit) (HKLM\...\{28791292-D18D-42FA-AE66-3D3D20AA8618}) (Version: 3.1.1 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{5ED7462B-EF58-4757-B609-53755021EC34}) (Version: 8.1.0.18 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Astroburn Pro (HKLM-x32\...\Astroburn Pro) (Version: 2.1.0.0095 - Disk Software Ltd)
AVG 2015 (HKLM\...\{07953AD5-7789-494F-8460-C3C5433FD5DA}) (Version: 15.0.6201 - AVG Technologies) Hidden
Baldur's Gate™ II - Throne of Bhaal ™ (HKLM-x32\...\{B8C3B479-1716-11D5-968A-0050BA84F5F7}) (Version:  - )
Beyond Compare Version 3.1.11 (HKLM-x32\...\BeyondCompare3_is1) (Version:  - Scooter Software)
Bing Bar (HKLM-x32\...\{B4089055-D468-45A4-A6BA-5A138DD715FC}) (Version: 7.0.850.0 - Microsoft Corporation)
BioWare Premium Module: Neverwinter Nights™ Kingmaker (HKLM-x32\...\Neverwinter Nights™ Kingmaker) (Version:  - BioWare Corp.)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
BOSS (HKLM-x32\...\BOSS) (Version: 1.6.5 - BOSS Development Team)
BufferChm (HKLM-x32\...\{2EEA7AA4-C203-4b90-A34F-19FB7EF1C81C}) (Version: 130.0.331.000 - Hewlett-Packard) Hidden
Compatibility Pack for the 2007 Office system (HKLM-x32\...\{90120000-0020-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
Copy (HKLM-x32\...\{3C92B2E6-380D-4fef-B4DF-4A3B4B669771}) (Version: 130.0.428.000 - Hewlett-Packard) Hidden
CyberLink DVD Suite Deluxe (HKLM-x32\...\InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}) (Version: 7.0.2115 - CyberLink Corp.)
D3DX10 (HKLM-x32\...\{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden
DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.41.3.0173 - DT Soft Ltd)
Destinations (HKLM-x32\...\{BD7204BA-DD64-499E-9B55-6A282CDF4FA4}) (Version: 140.0.77.000 - Hewlett-Packard) Hidden
DeviceDiscovery (HKLM-x32\...\{2FF8C687-DB7D-4adc-A5DC-57983EC25046}) (Version: 130.0.465.000 - Hewlett-Packard) Hidden
DirectX for Managed Code Update (Summer 2004) (HKLM-x32\...\{E9E34215-82EF-4909-BE2F-F581F0DC9062}) (Version: 9.02.2904 - Microsoft) Hidden
DocProc (HKLM-x32\...\{9B362566-EC1B-4700-BB9C-EC661BDE2175}) (Version: 13.0.0.0 - Hewlett-Packard) Hidden
Driver Booster 2.1 (HKLM-x32\...\Driver Booster_is1) (Version: 2.1 - IObit)
Dropbox (HKCU\...\Dropbox) (Version: 3.20.1 - Dropbox, Inc.)
DVD Menu Pack for HP MediaSmart Video (HKLM-x32\...\{FB4BB287-37F9-4E27-9C4D-2D3882E08EFF}) (Version: 3.1.3224 - Hewlett-Packard) Hidden
DVD Menu Pack for HP MediaSmart Video (HKLM-x32\...\InstallShield_{FB4BB287-37F9-4E27-9C4D-2D3882E08EFF}) (Version: 3.1.3224 - Hewlett-Packard)
ESET Online Scanner v3 (HKLM-x32\...\ESET Online Scanner) (Version:  - )
EverQuest Titanium (HKLM-x32\...\{32714287-4234-412A-877B-D33AFABFDE2B}) (Version: 1.00.000 - )
Fax (HKLM-x32\...\{440B915A-0C85-45DB-92AE-75AE14704A64}) (Version: 130.0.418.000 - Hewlett-Packard) Hidden
Fraps (HKLM-x32\...\Fraps) (Version:  - )
FrostWire 4.20.9 (HKLM-x32\...\FrostWire) (Version: 4.20.9.0 - FrostWire, LLC)
Game Booster (HKLM-x32\...\Game Booster_is1) (Version: 1.6.0.103 - IObit)
GOG.com Downloader (HKLM-x32\...\{3C6B103A-1CDD-B3F2-5E8C-A2E5AAA6B555}) (Version: 0.9.30 - GOG Ltd.) Hidden
GOG.com Downloader (HKLM-x32\...\com.gog.downloader.87F90EC6C28C7E479115BE2E026DB87A08BC420D.1) (Version: 0.9.30 - GOG Ltd.)
Google Chrome (HKCU\...\Google Chrome) (Version: 50.0.2661.102 - Google Inc.)
Google Earth (HKLM-x32\...\{817750FA-EC6A-485D-9901-0683AE6FFDF1}) (Version: 7.1.5.1557 - Google)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.30.3 - Google Inc.) Hidden
GPBaseService2 (HKLM-x32\...\{63FF21C9-A810-464F-B60A-3111747B1A6D}) (Version: 130.0.371.000 - Hewlett-Packard) Hidden
Hardware Diagnostic Tools (HKLM\...\PC-Doctor for Windows) (Version: 6.0.5247.34 - PC-Doctor, Inc.)
HP Customer Participation Program 13.0 (HKLM\...\HPExtendedCapabilities) (Version: 13.0 - HP)
HP Games (HKLM-x32\...\WildTangent hp Master Uninstall) (Version: 1.0.1.5 - WildTangent)
HP Imaging Device Functions 13.0 (HKLM\...\HP Imaging Device Functions) (Version: 13.0 - HP)
HP MediaSmart DVD (HKLM-x32\...\InstallShield_{DCCAD079-F92C-44DA-B258-624FC6517A5A}) (Version: 3.1.3317 - Hewlett-Packard)
HP MediaSmart Music/Photo/Video (HKLM-x32\...\InstallShield_{B2EE25B9-5B00-4ACF-94F0-92433C28C39E}) (Version: 3.1.3601 - Hewlett-Packard)
HP MediaSmart SmartMenu (HKLM\...\{88E60521-1E4E-4785-B9F1-1798A4BD0C30}) (Version: 3.1.0.1 - Hewlett-Packard)
HP Odometer (HKLM-x32\...\{B8AC1A89-FFD1-4F97-8051-E505A160F562}) (Version: 2.10.0000 - Hewlett-Packard)
HP Officejet Pro 8500 A910 Basic Device Software (HKLM\...\{13BE337F-9557-416D-A696-F91A6807B170}) (Version: 28.0.1315.0 - Hewlett-Packard Co.)
HP Photosmart Essential 3.5 (HKLM\...\HP Photosmart Essential) (Version: 3.5 - HP)
HP Photosmart Officejet and Deskjet All-In-One Driver Software 13.0 Rel. B (HKLM\...\{B61ED343-0B14-4241-999C-490CB1A20DA4}) (Version: 13.0 - HP)
HP Setup (HKLM-x32\...\{17B4760F-334B-475D-829F-1A3E94A6A4E6}) (Version: 1.2.3560.3170 - Hewlett-Packard)
HP Smart Web Printing 4.60 (HKLM\...\HP Smart Web Printing) (Version: 4.60 - HP)
HP Solution Center 13.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 13.0 - HP)
HP Support Assistant (HKLM-x32\...\{B60DCA15-56A3-4D2D-8747-22CF7D7B588B}) (Version: 4.4.6.3 - Hewlett-Packard)
HP Support Information (HKLM-x32\...\{B9A03B7B-E0FF-4FB3-BA83-762E58A1B0AA}) (Version: 10.1.0002 - Hewlett-Packard)
HP Update (HKLM-x32\...\{D46D081B-F60E-467E-A7C4-117B70D76731}) (Version: 5.001.000.014 - Hewlett-Packard)
HPPhotoGadget (HKLM-x32\...\{CAE4213F-F797-439D-BD9E-79B71D115BE3}) (Version: 130.0.282.000 - Hewlett-Packard) Hidden
HPPhotoSmartDiscLabelContent1 (HKLM-x32\...\{681B698F-C997-42C3-B184-B489C6CA24C9}) (Version: 2.04.0000 - Hewlett-Packard) Hidden
HPPhotosmartEssential (HKLM-x32\...\{D79113E7-274C-470B-BD46-01B10219DF6A}) (Version: 2.04.0000 - Hewlett-Packard) Hidden
HPProductAssistant (HKLM-x32\...\{C43326F5-F135-4551-8270-7F7ABA0462E1}) (Version: 130.0.371.000 - Hewlett-Packard) Hidden
HPSSupply (HKLM-x32\...\{6B2FFB21-AC88-45C3-9A7D-4BB3E744EC91}) (Version: 130.0.371.000 - Hewlett-Packard) Hidden
Icewind Dale (HKLM-x32\...\Icewind Dale) (Version:  - )
Icewind Dale II (HKLM-x32\...\{588C135F-0B15-4A02-8F2D-04697BE2904E}) (Version: 1.00.000 - Black Isle)
IObit Uninstaller (HKLM-x32\...\IObitUninstall) (Version: 4.3.0.5 - IObit)
iTunes (HKLM\...\{7B8D4E8A-EA2B-4A71-BFEB-A4AAAB87C5D0}) (Version: 12.1.0.71 - Apple Inc.)
Java 8 Update 60 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418060F0}) (Version: 8.0.600.27 - Oracle Corporation)
Junk Mail filter update (HKLM-x32\...\{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}) (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
LabelPrint (HKLM-x32\...\{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.2017 - CyberLink Corp.) Hidden
LabelPrint (HKLM-x32\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.2017 - CyberLink Corp.)
Legend of Grimrock (HKLM-x32\...\GOGPACKGRIMROCK_is1) (Version: 2.0.0.17 - GOG.com)
LightScribe System Software (HKLM-x32\...\{CC8E94A2-55C7-4460-953C-2A790180578C}) (Version: 1.18.8.1 - LightScribe)
Majesty Gold (HKLM-x32\...\Majesty Gold_is1) (Version:  - GamersGate)
Malwarebytes Anti-Malware version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes)
MarketResearch (HKLM-x32\...\{175F0111-2968-4935-8F70-33108C6A4DE3}) (Version: 130.0.374.000 - Hewlett-Packard) Hidden
Microsoft .NET Framework 4.6.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.6.01055 - Microsoft Corporation)
Microsoft Office Home and Student 2010 (HKLM-x32\...\Office14.SingleImage) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Office Home and Student 60 day trial (HKLM\...\OfficeTrial) (Version:  - )
Microsoft Office PowerPoint Viewer 2007 (English) (HKLM-x32\...\{95120000-00AF-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.41212.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 (HKLM\...\{B6E3757B-5E77-3915-866A-CCFC4B8D194C}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM-x32\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) - KB2467175 (HKLM\...\{aac9fcc4-dd9e-4add-901c-b5496a07ab2e}) (Version: 8.0.51011 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x64 9.0.30729.5570 (HKLM\...\{8338783A-0968-3B85-AFC7-BAAE0A63DC50}) (Version: 9.0.30729.5570 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM-x32\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Works (HKLM-x32\...\{15BC8CD0-A65B-47D0-A2DD-90A824590FA8}) (Version: 9.7.0621 - Microsoft Corporation)
Might and Magic VII: For Blood and Honor (HKLM-x32\...\Might and Magic VII: For Blood and Honor_is1) (Version:  - GOG.com)
Minecraft (HKLM-x32\...\{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872}) (Version: 1.0.3.0 - Mojang)
MONOPOLY CASINO Vegas Edition (HKLM-x32\...\Monopoly Casino Vegas Edition) (Version:  - )
MotoCast (HKLM-x32\...\{5401CEE8-3C2D-4835-A802-213306537FF4}) (Version: 1.2.9 - Motorola Mobility)
MotoHelper MergeModules (HKLM-x32\...\{94CAC2F1-C856-47F4-AF24-65A1E75AEDB9}) (Version: 1.2.0 - Motorola) Hidden
MOTOROLA MEDIA LINK (HKLM-x32\...\{378397D6-FD32-4092-A854-6A75CB7EDA46}) (Version: 1.7.0151.0 - Motorola) Hidden
Motorola Mobile Drivers Installation 5.9.0 (HKLM\...\{4E7CCB76-687B-4C53-9A5E-08780AF3A551}) (Version: 5.9.0 - Motorola Inc.) Hidden
Movie Theme Pack for HP MediaSmart Video (HKLM-x32\...\{3023EBDA-BF1B-4831-B347-E5018555F26E}) (Version: 3.1.3310 - Hewlett-Packard) Hidden
Movie Theme Pack for HP MediaSmart Video (HKLM-x32\...\InstallShield_{3023EBDA-BF1B-4831-B347-E5018555F26E}) (Version: 3.1.3310 - Hewlett-Packard)
Mozilla Firefox (3.6.11) (HKLM-x32\...\Mozilla Firefox (3.6.11)) (Version: 3.6.11 (en-US) - Mozilla)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation)
Mumble 1.2.10 (HKLM-x32\...\{63243F5C-E941-4461-A4B0-2689A9A3BF13}) (Version: 1.2.10 - Thorvald Natvig)
NETGEAR Genie (HKLM-x32\...\NETGEAR Genie) (Version: 2.4.15.07 - NETGEAR Inc.)
Network64 (HKLM\...\{05EFBF37-0E52-4579-875C-7EEF0DFB4FCB}) (Version: 130.0.572.000 - Hewlett-Packard) Hidden
Neverwinter Nights Diamond Edition (HKLM-x32\...\Neverwinter Nights Diamond Edition_is1) (Version:  - GOG.com)
Neverwinter Nights Platinum Edition (HKLM-x32\...\{C1583439-B034-4881-819C-D52A0587662B}) (Version:  - )
NVIDIA Display Control Panel (HKLM\...\NVIDIA Display Control Panel) (Version: 6.14.12.5896 - NVIDIA Corporation)
NVIDIA Drivers (HKLM\...\NVIDIA Drivers) (Version: 1.10.62.40 - NVIDIA Corporation)
Oblivion - Construction Set (HKLM-x32\...\{23D683DD-93C6-48E6-B84E-78B57778F126}) (Version: 1.00.0000 - Bethesda Softworks)
Oblivion - Knights of the Nine (HKLM-x32\...\{14C87AA7-08E6-419F-A165-998EBE5023D7}) (Version: 1.00.0000 - Bethesda Softworks)
Oblivion (HKLM-x32\...\{35CB6715-41F8-4F99-8881-6FC75BF054B0}) (Version: 1.2.0.416 - Bethesda Softworks)
Oblivion mod manager 1.1.12 (HKLM-x32\...\Oblivion mod manager_is1) (Version:  - Timeslip)
OCR Software by I.R.I.S. 13.0 (HKLM\...\HPOCR) (Version: 13.0 - HP)
PdaNet+ for Android 4.15 (HKLM-x32\...\PdaNet_is1) (Version:  - June Fabrics Technology Inc)
PhotoMix 5.3 (HKLM-x32\...\PhotoMix_is1) (Version:  - fCoder Group, Inc.)
PictureMover (HKLM-x32\...\{1896E712-2B3D-45eb-BCE9-542742A51032}) (Version: 3.3.1.19 - Hewlett-Packard Company)
PlayReady PC Runtime amd64 (HKLM\...\{BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}) (Version: 1.3.0 - Microsoft Corporation)
Power2Go (HKLM-x32\...\{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 6.0.3304 - CyberLink Corp.) Hidden
Power2Go (HKLM-x32\...\InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 6.0.3304 - CyberLink Corp.)
PowerDirector (HKLM-x32\...\{CB099890-1D5F-11D5-9EA9-0050BAE317E1}) (Version: 7.0.3405 - CyberLink Corp.) Hidden
PowerDirector (HKLM-x32\...\InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1}) (Version: 7.0.3405 - CyberLink Corp.)
PRC Pack (HKLM-x32\...\PRC Pack) (Version:  - )
PVSonyDll (HKLM\...\{3D3E663D-4E7E-4577-A560-7ECDDD45548A}) (Version: 1.00.0001 - NVIDIA Corporation) Hidden
Python 2.6 comtypes-0.6.2 (HKLM-x32\...\comtypes-py2.6) (Version:  - )
Python 2.6 psyco-1.6 (HKLM-x32\...\psyco-py2.6) (Version:  - )
Python 2.6 pywin32-214 (HKLM-x32\...\pywin32-py2.6) (Version:  - )
Python 2.6.5 (HKLM-x32\...\{4723f199-fa64-4233-8e6e-9fccc95a18ee}) (Version: 2.6.5150 - Python Software Foundation)
QuickTime (HKLM-x32\...\{7BE15435-2D3E-4B58-867F-9C75BED0208C}) (Version: 7.71.80.42 - Apple Inc.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7373 - Realtek Semiconductor Corp.)
Recovery Manager (HKLM-x32\...\{44B2A0AB-412E-4F8C-B058-D1E8AECCDFF5}) (Version: 5.5.2216 - CyberLink Corp.) Hidden
Revo Uninstaller Pro 3.1.4 (HKLM\...\{67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1) (Version: 3.1.4 - VS Revo Group, Ltd.)
Scan (HKLM-x32\...\{06A1D88C-E102-4527-AF70-29FFD7AF215A}) (Version: 140.0.80.000 - Hewlett-Packard) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version:  - Microsoft)
Shop for HP Supplies (HKLM\...\Shop for HP Supplies) (Version: 13.0 - HP)
Skype™ 7.0 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.0.102 - Skype Technologies S.A.)
Smart Defrag 4 (HKLM-x32\...\Smart Defrag 4_is1) (Version: 4.2 - IObit)
SmartWebPrinting (HKLM-x32\...\{8FF6F5CA-4E30-4E3B-B951-204CAAA2716A}) (Version: 140.0.186.000 - Hewlett-Packard) Hidden
SolutionCenter (HKLM-x32\...\{4A70EF07-7F88-4434-BB61-D1DE8AE93DD4}) (Version: 130.0.373.000 - Hewlett-Packard) Hidden
Spotify (HKCU\...\Spotify) (Version: 1.0.20.101.ge6957e14 - Spotify AB)
Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1) (Version: 1.6.2 - Safer Networking Limited)
Status (HKLM-x32\...\{0EF5BEA9-B9D3-46d7-8958-FB69A0BAEACC}) (Version: 130.0.469.000 - Hewlett-Packard) Hidden
Steam (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation)
SUPERAntiSpyware (HKLM\...\{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}) (Version: 6.0.1218 - SUPERAntiSpyware.com)
Surfing Protection (HKLM-x32\...\IObit Surfing Protection_is1) (Version: 1.2 - IObit)
swMSM (HKLM-x32\...\{612C34C7-5E90-47D8-9B5C-0F717DD82726}) (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH)
TeamSpeak 3 Client (HKLM-x32\...\TeamSpeak 3 Client) (Version:  - TeamSpeak Systems GmbH)
Toolbox (HKLM-x32\...\{6BBA26E9-AB03-4FE7-831A-3535584CA002}) (Version: 130.0.648.000 - Hewlett-Packard) Hidden
Torchlight (HKLM-x32\...\GOGPACKTORCHLIGHT_is1) (Version: 2.0.0.12 - GOG.com)
TrayApp (HKLM-x32\...\{1EC71BFB-01A3-4239-B6AF-B1AE656B15C0}) (Version: 130.0.422.000 - Hewlett-Packard) Hidden
Unity Web Player (HKCU\...\UnityWebPlayer) (Version: 4.5.0f6 - Unity Technologies ApS)
UnloadSupport (HKLM-x32\...\{4E7C28C7-D5DA-4E9F-A1CA-60490B54AE35}) (Version: 11.0.0 - Hewlett-Packard) Hidden
Ventrilo Client for Windows x64 (HKLM\...\{EEB3F6BB-318D-4CE5-989F-8191FCBFB578}) (Version: 3.0.8.0 - Flagship Industries, Inc.)
Visual C++ 8.0 Runtime Setup Package (x64) (HKLM-x32\...\{2FDBBCEA-62DB-45F4-B6E5-0E1FB2A1F29D}) (Version: 9.0.0.623 - AVG Technologies CZ, s.r.o.)
Visual Studio 2008 x64 Redistributables (HKLM-x32\...\{FCDBEA60-79F0-4FAE-BBA8-55A26C609A49}) (Version: 10.0.0.2 - AVG Technologies)
Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies)
Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
WebReg (HKLM-x32\...\{43CDF946-F5D9-4292-B006-BA0D92013021}) (Version: 130.0.132.017 - Hewlett-Packard) Hidden
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3502.0922 - Microsoft Corporation)
Windows Live Sync (HKLM-x32\...\{84EBDF39-4B33-49D7-A0BD-EB6E2C4E81C1}) (Version: 14.0.8089.726 - Microsoft Corporation)
Windows Media Player Firefox Plugin (HKLM-x32\...\{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}) (Version: 1.0.0.8 - Microsoft Corp)
WinRAR archiver (HKLM-x32\...\WinRAR archiver) (Version:  - )
Wrye Bash (HKLM-x32\...\Wrye Bash) (Version: 2.9.1 - Wrye & Wrye Bash Development Team)
wxPython 2.8.11.0 (ansi) for Python 2.6 (HKLM-x32\...\wxPython2.8-ansi-py26_is1) (Version: 2.8.11.0-ansi - Total Control Software)
Zemana AntiMalware (HKLM-x32\...\{8F0CD7D1-42F3-4195-95CD-833578D45057}_is1) (Version: 2.20.613 - Zemana Ltd.)
 
========================= Devices: ================================
 
Name: Officejet Pro 8500 A910
Description: Officejet Pro 8500 A910
Class Guid: {4d36e971-e325-11ce-bfc1-08002be10318}
Manufacturer: HP
Service: 
Device ID: ROOT\MULTIFUNCTION\0000
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
 
Name: HP LaserJet CP1025nw
Description: HP LaserJet CP1025nw
Class Guid: {4d36e971-e325-11ce-bfc1-08002be10318}
Manufacturer: Hewlett-Packard
Service: 
Device ID: ROOT\MULTIFUNCTION\0001
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
 
 
========================= Memory info: ===================================
 
Percentage of memory in use: 62%
Total physical RAM: 5887.24 MB
Available physical RAM: 2213.28 MB
Total Virtual: 11772.66 MB
Available Virtual: 8329.77 MB
 
========================= Partitions: =====================================
 
1 Drive c: (HP) (Fixed) (Total:920.64 GB) (Free:367.36 GB) NTFS
2 Drive d: (FACTORY_IMAGE) (Fixed) (Total:10.77 GB) (Free:1.57 GB) NTFS
 
========================= Users: ========================================
 
User accounts for \\KEVIN-PC
 
Administrator            Guest                    Kevin                    
 
 
**** End of log ****
 

Security Check Scan.

SecurityCheck by glax24 & Severnyj v.1.4.0.39 [23.04.16]
WebSite: www.safezone.cc
DateLog: 15.05.2016 09:51:06
Path starting: C:\Users\Kevin\AppData\Local\Temp\SecurityCheck\SecurityCheck.exe
Log directory: C:\SecurityCheck\
IsAdmin: True
User: Kevin
VersionXML: 2.93is-13.05.2016
___________________________________________________________________________
 
Windows 7(6.1.7601) Service Pack 1 (x64) HomePremium Lang: English(0409)
Installation date OS: 10.07.2010 22:49:14
LicenseStatus: Windows® 7, HomePremium edition The machine is permanently activated.
Boot Mode: Normal
Default Browser: C:\Users\Kevin\AppData\Local\Google\Chrome\Application\chrome.exe
SystemDrive: C: FS: [NTFS] Capacity: [920.6 Gb] Used: [553.2 Gb] Free: [367.4 Gb]
------------------------------- [ Windows ] -------------------------------
Internet Explorer 11.0.9600.18314
User Account Control disabled
The elevation prompt for administrators disabled
^It is recommended to enable: Win+R typing UserAccountControlSettings and Enter^
Automatic download and scheduled installation
Date install updates: 2016-05-15 10:08:16
Windows Update (wuauserv) - The service is running
Security Center (wscsvc) - The service is running
Remote Registry (RemoteRegistry) - The service has stopped
SSDP Discovery (SSDPSRV) - The service is running
Remote Desktop Services (TermService) - The service has stopped
Windows Remote Management (WS-Management) (WinRM) - The service has stopped
---------------------------- [ Antivirus_WMI ] ----------------------------
ESET Smart Security 9.0.377.0 (disabled and out of date)
---------------------------- [ Firewall_WMI ] -----------------------------
ESET Personal firewall (disabled)
--------------------------- [ AntiSpyware_WMI ] ---------------------------
Windows Defender (enabled and up to date)
IObit Malware Fighter (disabled)
ESET Smart Security 9.0.377.0 (disabled and out of date)
---------------------- [ AntiVirusFirewallInstall ] -----------------------
ESET Online Scanner v3
-------------------------- [ SecurityUtilities ] --------------------------
SUPERAntiSpyware v.6.0.1218
Malwarebytes Anti-Malware version 2.2.1.1043 v.2.2.1.1043
Zemana AntiMalware v.2.20.613
Spybot - Search & Destroy v.1.6.2
--------------------------- [ OtherUtilities ] ----------------------------
Microsoft Silverlight v.5.1.41212.0
WinRAR archiver
--------------------------------- [ IM ] ----------------------------------
Skype™ 7.0 v.7.0.102 Warning! Download Update
^Optional update.^
--------------------------------- [ P2P ] ---------------------------------
µTorrent v.3.4.5.41372 Warning! P2P-client.
-------------------------------- [ Java ] ---------------------------------
Java 8 Update 60 (64-bit) v.8.0.600.27 Warning! Download Update
Uninstall old version and install new one.
--------------------------- [ AppleProduction ] ---------------------------
Bonjour v.3.0.0.10 Warning! Download Update
^Please use Apple Software Update tool.^
iTunes v.12.1.0.71 Warning! Download Update
^Please use Apple Software Update tool.^
QuickTime v.7.71.80.42 Warning! This software is no longer supported. Please uninstall it and use another software.
Bonjour Service (Bonjour Service) - The service is running
--------------------------- [ AdobeProduction ] ---------------------------
Adobe AIR v.2.6.0.19120 Warning! Download Update
Adobe Flash Player 21 NPAPI v.21.0.0.242
Adobe Shockwave Player 11.6 v.11.6.6.636 Warning! Download Update
Adobe Reader XI (11.0.15) v.11.0.15 Warning! Download Update
^Please run Adobe Reader XI and go Help - Check for updates...^
------------------------------- [ Browser ] -------------------------------
Google Chrome v.50.0.2661.102
Mozilla Firefox (3.6.11) v.3.6.11 (en-US) Warning! Download Update
----------------------------- [ EmailClient ] -----------------------------
Windows Live Mail v.15.4.3502.0922
--------------------------- [ RunningProcess ] ----------------------------
C:\Users\Kevin\AppData\Local\Google\Chrome\Application\chrome.exe v.50.0.2661.102
C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe v.1.0.0.12
C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe v.1.6.6.32
C:\Program Files\SUPERAntiSpyware\SASCore64.exe v.6.0.0.1080
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe v.6.0.0.1218
---------------------------- [ UnwantedApps ] -----------------------------
Unity Web Player v.4.5.0f6 Warning! Application is distributed through the partnership programs and bundle assemblies. Uninstallation recommended. Possible you became a victim of fraud or social engineering.
Advanced SystemCare 8 v.8.4.0 Warning! Application is distributed through the partnership programs and bundle assemblies. Uninstallation recommended. Possible you became a victim of fraud or social engineering.
Driver Booster 2.1 v.2.1 Warning! Application is distributed through the partnership programs and bundle assemblies. Uninstallation recommended. Possible you became a victim of fraud or social engineering.
Surfing Protection v.1.2 Warning! Application is distributed through the partnership programs and bundle assemblies. Uninstallation recommended. Possible you became a victim of fraud or social engineering.
IObit Uninstaller v.4.3.0.5 Warning! Application is distributed through the partnership programs and bundle assemblies. Uninstallation recommended. Possible you became a victim of fraud or social engineering.
Microsoft Live Search Toolbar v.3.0.566.0 << Hidden Warning! Browser's toolbar. It can slow down the working of your browser and have violation privacy problems.
----------------------------- [ End of Log ] ------------------------------
 


#7 Beru

Beru
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:10:16 AM

Posted 15 May 2016 - 02:56 PM

How are things running now?

 

 

Sorry, misread your question last night. Still experiencing lag spikes. They do feel less severe but that might just be my hopeful bias. 



#8 InadequateInfirmity

InadequateInfirmity

    I Gots Me A Certified Edumication


  • Banned
  • 5,180 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:12:16 PM

Posted 15 May 2016 - 09:05 PM

9-Lab Scan.

 

  • Download 9-Lab Removal Tool.
  • CLICK HERE to determine whether you're running 32-bit or 64-bit for Windows.
  • Install the program onto your computer, then right click the icon  run as administrator.
  • Update the program and then run a full scan!
  • Make sure the program updates, might be better to install it update reboot and check for updates again.
  • You need to make sure the database updates!!!
  • Upon Scan Completion Click on Show Results.
  • Then Click On Clean 
  • Then Click on Save Log.
  • Save it to your desktop, copy and paste the contents of the log here in your next reply.

 

Ccleaner To disable Useless Startups.

 

Go ahead and install ccleaner Now that you have the program installed go ahead and run the cleaner function.

CCleaner - Free Download - Piriform
kwLN4uv.png

Now that you have cleaned out some temp files, lets go ahead and disable all of the items starting up with your machine except your antivirus. To do this you will need to click on tools then start up then under the Windows Tab select each item then disable. Also under the scheduled task tab, you are safe to disable all task. Only disable items under the windows tab and scheduled task tab!

GjWwvEu.png

Now that you have disabled those un-needed start ups lets go into the settings, we will have Ccleaner run when your machine boots, so that you will never have to worry about cleaning temp files again.

To do this:

 

  • Hit options.
  • Settings.
  • Place a tick to run Ccleaner when the computer starts.

Lxioao1.png

Now go to the advanced tab, and select close program after cleaning, now run the cleaner again this will close Ccleaner.

SnqZ2JW.png

Reboot the machine after.

 

I also highly suggest a check disk be ran on this machine!

 

Run chkdsk /f /r from elevated command prompt.

 


Edited by InadequateInfirmity, 15 May 2016 - 09:07 PM.


#9 Beru

Beru
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:10:16 AM

Posted 17 May 2016 - 02:26 PM

The lag spikes persist. 

 

Ccleaner To disable Useless Startups.

Complete.

 

Run chkdsk /f /r from elevated command prompt.

Complete.

 

9-Lab Scan.

 

9-lab Removal Tool 1.0.0.39 BETA
9-lab.com
 
Database version: 128.39590
 
Windows 7 Service Pack 1 (Version 6.1, Build 7601, 64-bit Edition)
Internet Explorer 9.11.9600.18314
Kevin :: KEVIN-PC
 
5/15/2016 7:54:56 PM
9lab-log-2016-05-15 (19-54-56).txt
 
Scan type: Full
Objects scanned: 64316
Time Elapsed: 3 h 19 m
 
Registry Keys detected: 4
Adware.RPL.Gen.bot [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\mirarsearch.com]
Adware.RPL.Gen.bot [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\mirarsearch.com]
Adware.RPL.Gen.bot [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\getmirar.com]
Adware.RPL.Gen.bot [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\getmirar.com]
 
 
Registry Values detected: 1
Risk.EnableLUA [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System EnableLUA]
 
 
Files detected: 732
[56840EB4B91DAB9DE5EDAA8EF1635160] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\008\t\.usage]
[C0C8AF226C70B35445D60873AB839E98] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\008\t\00\00000000]
[249830CB451C74BDAF0380D7D2A357F1] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\008\t\Paths\000003.log]
[46295CAC801E5D4857D09837238A6394] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\008\t\Paths\CURRENT]
[D41D8CD98F00B204E9800998ECF8427E] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\008\t\Paths\LOCK]
[80829C8F7DEED5FAFD3B2AB3BCCC1BA2] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\008\t\Paths\LOG]
[0205134D89B9E6FF1D5E5FB39E6091BD] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\008\t\Paths\LOG.old]
[5AF87DFD673BA2115E2FCF5CFDB727AB] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\008\t\Paths\MANIFEST-000001]
[362148F466D2262F49D2B59151470763] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\Drop_Lit_Torches_in_Combat-3429 (1).zip]
[362148F466D2262F49D2B59151470763] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\Drop_Lit_Torches_in_Combat-3429.zip]
[632B910D51D46AD13C94210064AC5EF7] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\hosts]
[D936E2E963781BBDD2FBBA271C712840] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\https_d23716qn9q7omq.cloudfront.net_0.localstorage]
[82386997A38D38701307B5498F4915A8] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\https_d3l3lkinz3f56t.cloudfront.net_0.localstorage]
[ABD09CEE6A51BE148EB338C4880833AD] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\https_static.olark.com_0.localstorage]
[82386997A38D38701307B5498F4915A8] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\http_d3l3lkinz3f56t.cloudfront.net_0.localstorage]
[FEFB4C4C787F29AE46E6198B4E6BE4A5] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\http_putlocker.is_0.localstorage]
[3B3693AB7754ED91548D830B9E835D39] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\http_www.similarsites.com_0.localstorage]
[4F284E732C02C5B27879EEA9A1274196] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\Joe[www.savevid.com].flv]
[CE833A8F4BC026A04A18B90625998ADE] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\NWNEnglish1.69HotUUpdate (1).exe]
[590F3DC53C2A10610C293B6CBC30B973] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\NWNEnglish1.69HotUUpdate (2).exe]
[584C47A398476B207AC40B026742231E] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\NWNEnglish1.69HotUUpdate (3).exe]
[61DE30138E1D2D5D6D8767D4FA1A8AEF] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\NWNEnglish1.69HotUUpdate (4).exe]
[076F776784754915D8C948EE01B11719] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\NWNEnglish1.69HotUUpdate (5).exe]
[81D4404F75C3EA5C0CFBF17CB596B438] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\NWNEnglish1.69HotUUpdate (6).exe]
[1CFC47526D34341DDF174BB3EE17841E] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\NWNEnglish1.69HotUUpdate.exe]
[346FA50E19439983EA049B36385D88AF] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PictureViewer.exe]
[3209628FD8AEFE73509217E8E21D14D0] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PictureViewer.Resources\da.lproj\PictureViewerLocalized.dll]
[F09AE6F7D0B0957F70E16D36436613A5] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PictureViewer.Resources\da.lproj\PictureViewerLocalized.qtr]
[39C08149C392D1D624FDF512DA5CD25A] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PictureViewer.Resources\de.lproj\PictureViewerLocalized.dll]
[27B9A24B02F7E48672E62ECA95F5C4D3] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PictureViewer.Resources\de.lproj\PictureViewerLocalized.qtr]
[D4409D02570D6C37CE4D38158935EEC7] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PictureViewer.Resources\en.lproj\PictureViewerLocalized.dll]
[C32BE273AF8EB455496523555EF72197] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PictureViewer.Resources\en.lproj\PictureViewerLocalized.qtr]
[E154D2604C97A1682788118812330D1C] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PictureViewer.Resources\es.lproj\PictureViewerLocalized.dll]
[5F3972275BECEA7312EDFDB2C71E9EF7] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PictureViewer.Resources\es.lproj\PictureViewerLocalized.qtr]
[672A07F018F1FC57E411AF904244EC2E] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PictureViewer.Resources\fi.lproj\PictureViewerLocalized.dll]
[203D93287FE568E33E298BB581FBAACD] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PictureViewer.Resources\fi.lproj\PictureViewerLocalized.qtr]
[9D38C8E89AF361F25ED776224A5D0800] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PictureViewer.Resources\fr.lproj\PictureViewerLocalized.dll]
[F07E58B950FAD76886FD035B8F99727D] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PictureViewer.Resources\fr.lproj\PictureViewerLocalized.qtr]
[5F4EF991BD4AA14A52FB4E59C7789269] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PictureViewer.Resources\it.lproj\PictureViewerLocalized.dll]
[13AED3B752A3C6921D0ACD3EAC52272A] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PictureViewer.Resources\it.lproj\PictureViewerLocalized.qtr]
[8182293075EC7277E7FD253B52802FD3] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PictureViewer.Resources\ja.lproj\PictureViewerLocalized.dll]
[3520F0FAF7912DCCAE3B2B0EC7F20BBE] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PictureViewer.Resources\ja.lproj\PictureViewerLocalized.qtr]
[1A492E1614E84BB25F2D4E16FD699C35] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PictureViewer.Resources\ko.lproj\PictureViewerLocalized.dll]
[CE1FD22615A443AB9345F7038E0B6FE0] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PictureViewer.Resources\ko.lproj\PictureViewerLocalized.qtr]
[B48DC3DE5EE132E8B47E9F093EA13A51] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PictureViewer.Resources\nb.lproj\PictureViewerLocalized.dll]
[AA4DAD389DA0986C131CC3D30C63F0C6] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PictureViewer.Resources\nb.lproj\PictureViewerLocalized.qtr]
[737B9EB16359AA81CE353D98DA6485E0] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PictureViewer.Resources\nl.lproj\PictureViewerLocalized.dll]
[F308FED21CF0319B1E7C7F0E24DEFB31] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PictureViewer.Resources\nl.lproj\PictureViewerLocalized.qtr]
[6C3E2C94542E6D7E119E98B1BED7AC80] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PictureViewer.Resources\PictureViewer.dll]
[B19705D7B4A34637A8058466A43433AF] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PictureViewer.Resources\PictureViewer.qtr]
[6FEBA77BCF1195F9C060B0A44FCF9B35] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PictureViewer.Resources\pl.lproj\PictureViewerLocalized.dll]
[195AAD076A18B64795EA4083EE565479] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PictureViewer.Resources\pl.lproj\PictureViewerLocalized.qtr]
[4A3F8354E8FD1DAAF34CF603A998DDB7] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PictureViewer.Resources\pt.lproj\PictureViewerLocalized.dll]
[4540521AAB1B1BE2B445AAA94D3F46A6] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PictureViewer.Resources\pt.lproj\PictureViewerLocalized.qtr]
[C8F9244353CF7569217A063A08AFFB02] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PictureViewer.Resources\pt_PT.lproj\PictureViewerLocalized.dll]
[B302FEEE57D32A7CFDCDBB72BE990EF2] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PictureViewer.Resources\pt_PT.lproj\PictureViewerLocalized.qtr]
[0F90B8B0203400FAF3E95C54485614E7] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PictureViewer.Resources\ru.lproj\PictureViewerLocalized.dll]
[961012493C051371A85B61ADE330B6F7] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PictureViewer.Resources\ru.lproj\PictureViewerLocalized.qtr]
[1DC434841C2C0CBBAF4995C1FD3B2304] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PictureViewer.Resources\sv.lproj\PictureViewerLocalized.dll]
[4381E6619E37475A08C7A51CDD34420F] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PictureViewer.Resources\sv.lproj\PictureViewerLocalized.qtr]
[241678735B785075631B7A53E7C81319] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PictureViewer.Resources\zh_CN.lproj\PictureViewerLocalized.dll]
[50B88B565200F10AC927F0F3B44AB742] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PictureViewer.Resources\zh_CN.lproj\PictureViewerLocalized.qtr]
[45B271EAC88DE2DACA9618590C3023D0] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PictureViewer.Resources\zh_TW.lproj\PictureViewerLocalized.dll]
[014288BF6584BC47388A4E32CA934F99] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PictureViewer.Resources\zh_TW.lproj\PictureViewerLocalized.qtr]
[47C3FA43F99202E2F92EFA1EB9BDECF7] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\Plugins\npqtplugin.dll]
[C7BE533F805F8AEFE75FC7D7C6D0EBF9] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\Plugins\npqtplugin2.dll]
[D11EC90E0D361D8EBD6BCB3F29BEF153] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\Plugins\npqtplugin3.dll]
[EAE76FAEFB3DDE4B990DA9506132B3C3] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\Plugins\npqtplugin4.dll]
[0B6CE016084875A998C5B5D35CB2BFEF] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\Plugins\npqtplugin5.dll]
[C6413394AE69008A2E817B428E7F69E7] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\Plugins\npqtplugin6.dll]
[CC8294EF935A1BCE97C882B8F279669A] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\Plugins\npqtplugin7.dll]
[AD709F440EA446CBCF3232B6A56A6569] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\Plugins\nsIQTScriptablePlugin.xpt]
[16E14FC4A60AFE2828C7E491D788A8D3] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\Plugins\QuickTimePlugin.class]
[5D20B86806DDA7819991BC2C375EEC51] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PropertyPanels\annoanno.pdef]
[97105F395DA4B2A19FC29EFAD5762765] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PropertyPanels\moovaudi.pdef]
[A2DC148647FEFA8DD75E84AE3719DA0D] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PropertyPanels\moovpres.pdef]
[634C4C5BE1A43C337CCA979C03A12E10] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PropertyPanels\PanelHelperBase.qpa]
[AB06789E5A5201F28298C2874A219D7A] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PropertyPanels\PanelHelperBase.Resources\da.lproj\PanelHelperBaseLocalized.qtr]
[DC711E5937C4DE31E097E670B6DE46D0] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PropertyPanels\PanelHelperBase.Resources\de.lproj\PanelHelperBaseLocalized.qtr]
[8DFB47BDAB1BFA46F276C898CC71053C] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PropertyPanels\PanelHelperBase.Resources\en.lproj\PanelHelperBaseLocalized.qtr]
[DB1E0370CB04DD7605F05967AE90A9B3] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PropertyPanels\PanelHelperBase.Resources\es.lproj\PanelHelperBaseLocalized.qtr]
[22B7EFA69E07D0249AC1B922F04EDCBF] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PropertyPanels\PanelHelperBase.Resources\fi.lproj\PanelHelperBaseLocalized.qtr]
[6D10FA69160C1F33EC7B8AB3FCDD54C7] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PropertyPanels\PanelHelperBase.Resources\fr.lproj\PanelHelperBaseLocalized.qtr]
[B10882D9E8B253F4C6B61B17D89555E3] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PropertyPanels\PanelHelperBase.Resources\it.lproj\PanelHelperBaseLocalized.qtr]
[0C591B7C9ADDD3641A375668F6C198B2] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PropertyPanels\PanelHelperBase.Resources\ja.lproj\PanelHelperBaseLocalized.qtr]
[48C365C04ADEFC52DCB974A3B6B51E8F] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PropertyPanels\PanelHelperBase.Resources\ko.lproj\PanelHelperBaseLocalized.qtr]
[84E6E20BB260D08AD0254CE959113CCF] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PropertyPanels\PanelHelperBase.Resources\nb.lproj\PanelHelperBaseLocalized.qtr]
[92A9F770773F4C4701BE68282901E745] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PropertyPanels\PanelHelperBase.Resources\nl.lproj\PanelHelperBaseLocalized.qtr]
[1E94673F4E30D2C6A401EEF8A1D7D320] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PropertyPanels\PanelHelperBase.Resources\PanelHelperBase.qtr]
[1E951470558143FF87E38273D79F0148] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PropertyPanels\PanelHelperBase.Resources\pl.lproj\PanelHelperBaseLocalized.qtr]
[9A376B1C514CF45F1036E0A1157C3234] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PropertyPanels\PanelHelperBase.Resources\pt.lproj\PanelHelperBaseLocalized.qtr]
[402B827F7C6BE5646AFCF76C72EC208E] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PropertyPanels\PanelHelperBase.Resources\pt_PT.lproj\PanelHelperBaseLocalized.qtr]
[10925F879D72058DBA7C1D1298B43854] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PropertyPanels\PanelHelperBase.Resources\ru.lproj\PanelHelperBaseLocalized.qtr]
[4673561D5D9DE9AD6BCFE47B540EC316] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PropertyPanels\PanelHelperBase.Resources\sv.lproj\PanelHelperBaseLocalized.qtr]
[5AE372990BD14A0045E6D722648C9432] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PropertyPanels\PanelHelperBase.Resources\zh_CN.lproj\PanelHelperBaseLocalized.qtr]
[07AAAC12AA0C1ADB836D629F9C8E8A71] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PropertyPanels\PanelHelperBase.Resources\zh_TW.lproj\PanelHelperBaseLocalized.qtr]
[7A54BF9F1ED68BF544E28006F97CFFF0] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PropertyPanels\PropertyPanels.plist]
[2170E4C026D65C27D41DDD2F36083C5D] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PropertyPanels\PropPanelHelpers.qpa]
[8ED67FEAF051FA720995582982E9D6E8] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PropertyPanels\PropPanelHelpers.Resources\da.lproj\PropPanelHelpersLocalized.qtr]
[C0BDE0A4151C266B2D86C855245104E5] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PropertyPanels\PropPanelHelpers.Resources\de.lproj\PropPanelHelpersLocalized.qtr]
[AB1034E7201F792C522875A62A5A9C73] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PropertyPanels\PropPanelHelpers.Resources\en.lproj\PropPanelHelpersLocalized.qtr]
[4AD8C4747F02778A1DEA0B11B3D38826] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PropertyPanels\PropPanelHelpers.Resources\es.lproj\PropPanelHelpersLocalized.qtr]
[7743C5C890DFE56A8956BFDD05D3583A] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PropertyPanels\PropPanelHelpers.Resources\fi.lproj\PropPanelHelpersLocalized.qtr]
[D3076DE9C688606953D35256F1DFB4AC] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PropertyPanels\PropPanelHelpers.Resources\fr.lproj\PropPanelHelpersLocalized.qtr]
[EBCB0B8FE15C4BC49E5C455D35D35045] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PropertyPanels\PropPanelHelpers.Resources\it.lproj\PropPanelHelpersLocalized.qtr]
[979FECE1022FBB3A4F2570B1C052BB8C] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PropertyPanels\PropPanelHelpers.Resources\ja.lproj\PropPanelHelpersLocalized.qtr]
[A69F5DD95D893FA953A293302B9DE8EA] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PropertyPanels\PropPanelHelpers.Resources\ko.lproj\PropPanelHelpersLocalized.qtr]
[5AC593322072621F7EB29CA4794C134E] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PropertyPanels\PropPanelHelpers.Resources\nb.lproj\PropPanelHelpersLocalized.qtr]
[C816CE34D5640BE95293C3450CB568A3] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PropertyPanels\PropPanelHelpers.Resources\nl.lproj\PropPanelHelpersLocalized.qtr]
[E80A1C9793D815463BA9EFC9EDC52EFB] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PropertyPanels\PropPanelHelpers.Resources\pl.lproj\PropPanelHelpersLocalized.qtr]
[645FEB735FBD48D2EE3D831ABE1C6118] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PropertyPanels\PropPanelHelpers.Resources\PropPanelHelpers.qtr]
[801BCDAE6B020AB432C178D7BD81A727] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PropertyPanels\PropPanelHelpers.Resources\pt.lproj\PropPanelHelpersLocalized.qtr]
[6DC500526C88EB3092E6036C44CB3B14] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PropertyPanels\PropPanelHelpers.Resources\pt_PT.lproj\PropPanelHelpersLocalized.qtr]
[CF7C933C0034F51D838E38CEF03D4ABB] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PropertyPanels\PropPanelHelpers.Resources\ru.lproj\PropPanelHelpersLocalized.qtr]
[1DC7661FCD6A1C3544F8680AD264464D] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PropertyPanels\PropPanelHelpers.Resources\sv.lproj\PropPanelHelpersLocalized.qtr]
[C07425D65DCFCACD532754095AB7BBF2] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PropertyPanels\PropPanelHelpers.Resources\zh_CN.lproj\PropPanelHelpersLocalized.qtr]
[1474A7D61748172B99726257A2D0880C] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PropertyPanels\PropPanelHelpers.Resources\zh_TW.lproj\PropPanelHelpersLocalized.qtr]
[1D4DE188894FE9BE200958EFE53A2A23] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PropertyPanels\rsrcrsrc.pdef]
[70D394931C1A4BB65B4329E9A7D1A50B] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PropertyPanels\trakaudi.pdef]
[A181FB9E17534DB9BD9EB86FBCBDBE10] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PropertyPanels\trakhint.pdef]
[6DA83CB93D7C3DB0BD5FC900CD625004] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PropertyPanels\trakothr.pdef]
[03123CEF8DCFD2D3DE0A1A66E1B515C5] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PropertyPanels\trakstrm.pdef]
[C438D3C5F145A1AAF7121009AC7E008B] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\PropertyPanels\trakvisl.pdef]
[E0B0776F1439B317C4A94AB6F9A0DAAE] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTOControl.dll]
[56835F19BDD6DDF6FF9D8BCFA3782220] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTOLibrary.dll]
[CF31570FD81E28CC2D7CD11D6CE9F863] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTPlugin.ocx]
[D012ADFF16BDCA192A0B4E9EC22492F7] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\AppleProResDecoder.qtx]
[B53A9836BC1B6A735C655F1E4FA7E619] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\CFCharacterSetBitmaps.bitmap]
[67C18382F63C39B17328ED03F68C35E1] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\CFUniCharPropertyDatabase.data]
[62E265CF156659E305A862EC22C641D4] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\CFUnicodeData-B.mapping]
[B10CAB969FB143F20B90AA8988495C03] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\CFUnicodeData-L.mapping]
[8B4202ECC10D4868476FC0D62C3C0DCD] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\CoreVideo.qtx]
[DC861C44949B2F8652D1CA7AF59E8877] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\CoreVideo.Resources\CoreVideo.qtr]
[D48044AD56D3D5587B228B37EDA43EC3] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\CoreVideo.Resources\da.lproj\CoreVideoLocalized.qtr]
[D8FC3A3FE1279AA0F411966C367845C4] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\CoreVideo.Resources\de.lproj\CoreVideoLocalized.qtr]
[096FF69ECF50DB049359278EAE68AC80] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\CoreVideo.Resources\en.lproj\CoreVideoLocalized.qtr]
[391A5B85E383101C552342C27EDA7980] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\CoreVideo.Resources\es.lproj\CoreVideoLocalized.qtr]
[89380F5A95F72AB2E0F8B123138EAE13] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\CoreVideo.Resources\fi.lproj\CoreVideoLocalized.qtr]
[61BC40DE9201A06F531965CEE12F58F1] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\CoreVideo.Resources\fr.lproj\CoreVideoLocalized.qtr]
[89D833865C9AA1F7F2847CFAF1EC6A6C] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\CoreVideo.Resources\it.lproj\CoreVideoLocalized.qtr]
[7863762CC3E25F958639207F398DC142] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\CoreVideo.Resources\ja.lproj\CoreVideoLocalized.qtr]
[C489EBF850247254562B52B176708797] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\CoreVideo.Resources\ko.lproj\CoreVideoLocalized.qtr]
[2C0E75038014DB3A853E02912031D330] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\CoreVideo.Resources\nb.lproj\CoreVideoLocalized.qtr]
[325DD9F13FC17C77FC0063B4345094D0] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\CoreVideo.Resources\nl.lproj\CoreVideoLocalized.qtr]
[723E37F3F77C7297AF91928C06F31665] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\CoreVideo.Resources\pl.lproj\CoreVideoLocalized.qtr]
[CEE6884A1952A4F2A42E0B3C5355B7EC] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\CoreVideo.Resources\pt.lproj\CoreVideoLocalized.qtr]
[54422422DFE97F44984C379CA2F51898] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\CoreVideo.Resources\pt_PT.lproj\CoreVideoLocalized.qtr]
[37C948721EE46A4D5E974F316FB3D92A] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\CoreVideo.Resources\ru.lproj\CoreVideoLocalized.qtr]
[FDF22D0288ACDE4E0DC1ADCA4D74B873] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\CoreVideo.Resources\sv.lproj\CoreVideoLocalized.qtr]
[33C54ABF6932C044246D23DF2F9CA1FC] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\CoreVideo.Resources\zh_CN.lproj\CoreVideoLocalized.qtr]
[A54A5C4EF8A2CA739E2CEDE6D872A4E2] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\CoreVideo.Resources\zh_TW.lproj\CoreVideoLocalized.qtr]
[5291C8E55CDBE278B58522A586F9A41E] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\ExportController.exe]
[44F55D5519D4A1EBC2F6F687FDB424CA] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\ExportControllerPS.dll]
[B4128E08C7FCB87F18C110728F326B88] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QTCF.dll]
[FBF75758DCAC6AA563CBB082F4975517] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QTJava.zip]
[D59CC1523B37E436366E54AB09041636] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QTJavaNative.dll]
[E422A9F1B8A891840FDDAE256C91974A] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QTJNative.dll]
[03B9B07F9F3A8B2F41340952D54B53E9] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QTMLClient.dll]
[3FFAD90D942E1083B754AD6EAE8272AC] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime.cpl]
[E58CE86D472613A7B8B76A5B9EFE51E5] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime.qts]
[CD4DF8B6AE6BF49304DC99BB2D331972] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime.Resources\da.lproj\QuickTimeLocalized.dll]
[1583F60C9001A2093BC771E9061E5896] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime.Resources\da.lproj\QuickTimeLocalized.qtr]
[C24C0E3546677637F03B07A81A6854DF] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime.Resources\de.lproj\QuickTimeLocalized.dll]
[20B0C378DBD579CC7A42DF9BDB57775F] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime.Resources\de.lproj\QuickTimeLocalized.qtr]
[335D1DF99D56400CD15AC06637E65A53] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime.Resources\en.lproj\QuickTimeLocalized.dll]
[855486B520B1536B987F10FF7D4509E9] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime.Resources\en.lproj\QuickTimeLocalized.qtr]
[68E859CFEF821161E0EA6F542FA8029D] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime.Resources\es.lproj\QuickTimeLocalized.dll]
[D62E5E448EC33B3E8E6E4F0D34BFD2B5] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime.Resources\es.lproj\QuickTimeLocalized.qtr]
[FF9B698E858365B23FBC9B6DAFD2992B] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime.Resources\fi.lproj\QuickTimeLocalized.dll]
[41F2AE93341929D560A65129039F1414] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime.Resources\fi.lproj\QuickTimeLocalized.qtr]
[FB0A690E181D1639C9853CBFF176242B] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime.Resources\fr.lproj\QuickTimeLocalized.dll]
[923ABADB340AAB47C70F0F03D7ACB478] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime.Resources\fr.lproj\QuickTimeLocalized.qtr]
[C20C52D9FE4AD87A986738486785E1FD] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime.Resources\it.lproj\QuickTimeLocalized.dll]
[BF130DB187470C944349F8E92CFC015A] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime.Resources\it.lproj\QuickTimeLocalized.qtr]
[D72F3077ABF6BBC2BA1D1F7BE6BA6129] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime.Resources\ja.lproj\QuickTimeLocalized.dll]
[79554EEEC48D34F5671268B01E13EC76] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime.Resources\ja.lproj\QuickTimeLocalized.qtr]
[7F6C8F9D6915688BBE2CEF0ACD571D36] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime.Resources\ko.lproj\QuickTimeLocalized.dll]
[815E7730488E87362BB07D5AC2828DDF] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime.Resources\ko.lproj\QuickTimeLocalized.qtr]
[2EE359C3173AFBB0BFF3DB9D2A798D8D] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime.Resources\nb.lproj\QuickTimeLocalized.dll]
[C7491B5DCA558F5879089D76AB78DE2D] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime.Resources\nb.lproj\QuickTimeLocalized.qtr]
[3F7DDADDF0494E0723808ECDD303E291] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime.Resources\nl.lproj\QuickTimeLocalized.dll]
[79DF9FDCB02C7FDE9C86BBADAC54397E] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime.Resources\nl.lproj\QuickTimeLocalized.qtr]
[7FB7839A777EFBA11C62A02B7BEB88F7] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime.Resources\pl.lproj\QuickTimeLocalized.dll]
[DD2CF9176618A9A0C9D6C95AB85F60DF] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime.Resources\pl.lproj\QuickTimeLocalized.qtr]
[ED106F4C41614AA304B5198634AD5006] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime.Resources\pt.lproj\QuickTimeLocalized.dll]
[E32D920960984F56957165B507A0BE1A] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime.Resources\pt.lproj\QuickTimeLocalized.qtr]
[31F75C2436C9238FDB6D144924EA1EF1] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime.Resources\pt_PT.lproj\QuickTimeLocalized.dll]
[6FE8CA50A8F1FAC01FC5554D471B77DC] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime.Resources\pt_PT.lproj\QuickTimeLocalized.qtr]
[74CD0039DB984A61BAE6CF7A70797700] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime.Resources\QuickTime.dll]
[88F68CBA1098D634BC37342F1B0631DD] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime.Resources\QuickTime.qtr]
[4FB9BC314C9FF9C022A918CFCC5047D7] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime.Resources\QuickTime.qtxs]
[C5CD4773129EBA9754648FEE147DA089] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime.Resources\ru.lproj\QuickTimeLocalized.dll]
[1826F73AF73DD29B6019FE0926E154B9] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime.Resources\ru.lproj\QuickTimeLocalized.qtr]
[9AE9A8C7FCB2675819FABA3B788F69E3] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime.Resources\sv.lproj\QuickTimeLocalized.dll]
[6E88D2CE3F38AAC319A4078B65F9C948] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime.Resources\sv.lproj\QuickTimeLocalized.qtr]
[8319C73F52110D9204588C31B5AE2E7B] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime.Resources\zh_CN.lproj\QuickTimeLocalized.dll]
[4EE752CEF05DE4FF28065191ED60BD7A] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime.Resources\zh_CN.lproj\QuickTimeLocalized.qtr]
[B5FCDD09208DE5C41FE6A0781B56BE2A] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime.Resources\zh_TW.lproj\QuickTimeLocalized.dll]
[F31EA0A4022A429C386098E9A1294B9F] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime.Resources\zh_TW.lproj\QuickTimeLocalized.qtr]
[29A6DE9708F86CF5213890B0999B8F6F] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime3GPP.qtx]
[B841DE1BEFD9C5889381C748A7A02E5A] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime3GPP.Resources\da.lproj\QuickTime3GPPLocalized.qtr]
[676FDBF6FF39E9685C15C767A9314615] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime3GPP.Resources\de.lproj\QuickTime3GPPLocalized.qtr]
[54121418348E86E9B540106167F0CE27] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime3GPP.Resources\en.lproj\QuickTime3GPPLocalized.qtr]
[45F0B7DAD5A11F6752ED0BFBEA8BE784] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime3GPP.Resources\es.lproj\QuickTime3GPPLocalized.qtr]
[9B019AA9E610EE2F8122E11B792B7ECC] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime3GPP.Resources\fi.lproj\QuickTime3GPPLocalized.qtr]
[CFE8B80112C5A9EB64AD207B65D6205F] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime3GPP.Resources\fr.lproj\QuickTime3GPPLocalized.qtr]
[31557028D2BF2CE3FDBF145B4CEEEB44] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime3GPP.Resources\it.lproj\QuickTime3GPPLocalized.qtr]
[B5806A4C4097511007BD9C3F1E732774] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime3GPP.Resources\ja.lproj\QuickTime3GPPLocalized.qtr]
[899E68F93027E1A0FDD2B6F29E504DA0] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime3GPP.Resources\ko.lproj\QuickTime3GPPLocalized.qtr]
[CE6FEE041B1E2B474D44C3D9B0B01A67] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime3GPP.Resources\nb.lproj\QuickTime3GPPLocalized.qtr]
[4C551B6E8BD201BE649520148164D6E7] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime3GPP.Resources\nl.lproj\QuickTime3GPPLocalized.qtr]
[96419EB03A6F7732118CED86B97CE69F] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime3GPP.Resources\pl.lproj\QuickTime3GPPLocalized.qtr]
[E0CE8A395316D3E8D37FEBDE2F88976D] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime3GPP.Resources\pt.lproj\QuickTime3GPPLocalized.qtr]
[94E033C640B72B7891530E99631F2710] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime3GPP.Resources\pt_PT.lproj\QuickTime3GPPLocalized.qtr]
[5235AC92E2204175B9AB0E46E0D749E3] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime3GPP.Resources\QuickTime3GPP.qtr]
[B2EA189411D7F36EE75FEC478553427F] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime3GPP.Resources\ru.lproj\QuickTime3GPPLocalized.qtr]
[4B5075A32630D314D016955B2400851C] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime3GPP.Resources\sv.lproj\QuickTime3GPPLocalized.qtr]
[62A1F6455709FA2837FEB3E7286E313B] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime3GPP.Resources\zh_CN.lproj\QuickTime3GPPLocalized.qtr]
[9FC9AF52B4CA9136229743EAA629D214] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime3GPP.Resources\zh_TW.lproj\QuickTime3GPPLocalized.qtr]
[F25E5E8E54B8B66F1ADF931E7540C6F1] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime3GPPAuthoring.qtx]
[AE36125BBBAB8010812E978D5FB1AA67] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime3GPPAuthoring.Resources\da.lproj\QuickTime3GPPAuthoringLocalized.qtr]
[B142000FC3A92EFD0EF15D5A9D0C7778] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime3GPPAuthoring.Resources\de.lproj\QuickTime3GPPAuthoringLocalized.qtr]
[9ED0C18D09A37F73C241CDCC64E02115] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime3GPPAuthoring.Resources\en.lproj\QuickTime3GPPAuthoringLocalized.qtr]
[9943857AFCF44E77D5CD020859070EB9] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime3GPPAuthoring.Resources\es.lproj\QuickTime3GPPAuthoringLocalized.qtr]
[6FAE7653C9E05B5331B8510156CFADD2] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime3GPPAuthoring.Resources\fi.lproj\QuickTime3GPPAuthoringLocalized.qtr]
[878B5095587AAC0F5BA0147BD6FA3586] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime3GPPAuthoring.Resources\fr.lproj\QuickTime3GPPAuthoringLocalized.qtr]
[284DA031904D7DE59381258DFF81E1AA] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime3GPPAuthoring.Resources\it.lproj\QuickTime3GPPAuthoringLocalized.qtr]
[04521C3C685ABC6ECD5BC58A56705796] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime3GPPAuthoring.Resources\ja.lproj\QuickTime3GPPAuthoringLocalized.qtr]
[779677055E06FE7DA4086C8659D414E9] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime3GPPAuthoring.Resources\ko.lproj\QuickTime3GPPAuthoringLocalized.qtr]
[4186EC1F8FF1C3639E315770AC3A5C21] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime3GPPAuthoring.Resources\nb.lproj\QuickTime3GPPAuthoringLocalized.qtr]
[9689745E13236B29F90872BF98A20C24] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime3GPPAuthoring.Resources\nl.lproj\QuickTime3GPPAuthoringLocalized.qtr]
[236B88CA93FA90A208FEA2F0AE4E1B3C] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime3GPPAuthoring.Resources\pl.lproj\QuickTime3GPPAuthoringLocalized.qtr]
[07721A98164792094B09E56996B4282D] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime3GPPAuthoring.Resources\pt.lproj\QuickTime3GPPAuthoringLocalized.qtr]
[A3B5796BD6E0BFA2A1B9A9BD128FBBAB] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime3GPPAuthoring.Resources\pt_PT.lproj\QuickTime3GPPAuthoringLocalized.qtr]
[4D3D87BDAA4566D826695ED25C87E087] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime3GPPAuthoring.Resources\QuickTime3GPPAuthoring.qtr]
[2D724BECF225BF0C471AA2875C233C2B] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime3GPPAuthoring.Resources\ru.lproj\QuickTime3GPPAuthoringLocalized.qtr]
[1D1BEBE691F96EB89855E65A85A36A1A] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime3GPPAuthoring.Resources\sv.lproj\QuickTime3GPPAuthoringLocalized.qtr]
[BBF71C9C16032376B58823EF29C40ECF] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime3GPPAuthoring.Resources\zh_CN.lproj\QuickTime3GPPAuthoringLocalized.qtr]
[7D78DA2CD5A773D683603FF90D576CEA] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTime3GPPAuthoring.Resources\zh_TW.lproj\QuickTime3GPPAuthoringLocalized.qtr]
[F7B437E5C2325FFD0277775415DB74C6] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAudioSupport.qtx]
[7E0C0B0DDB75000928D86B6EC7449F1D] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAudioSupport.Resources\da.lproj\QuickTimeAudioSupportLocalized.dll]
[A4CFC016B60B1CD7A5379765BF56FCAC] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAudioSupport.Resources\da.lproj\QuickTimeAudioSupportLocalized.qtr]
[32D604161BDE363F65C9C16B0CBAA58F] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAudioSupport.Resources\de.lproj\QuickTimeAudioSupportLocalized.dll]
[ABC25C7BEEAF3F602A02F57824146043] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAudioSupport.Resources\de.lproj\QuickTimeAudioSupportLocalized.qtr]
[168E16DD95AB63222ADE1EA722DA0D15] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAudioSupport.Resources\en.lproj\QuickTimeAudioSupportLocalized.dll]
[7998F7B6A7481319611481B427193B67] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAudioSupport.Resources\en.lproj\QuickTimeAudioSupportLocalized.qtr]
[6552974E2D560BC3196F6B08B9A9CC02] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAudioSupport.Resources\es.lproj\QuickTimeAudioSupportLocalized.dll]
[326D4698959B4D2148B695A88ADC12F1] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAudioSupport.Resources\es.lproj\QuickTimeAudioSupportLocalized.qtr]
[23B3BD69F3A5D36E03407119889AAFD3] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAudioSupport.Resources\fi.lproj\QuickTimeAudioSupportLocalized.dll]
[AF1413714956CD420E53E7BC0E6B5626] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAudioSupport.Resources\fi.lproj\QuickTimeAudioSupportLocalized.qtr]
[323984E4575384ABA38F454B14F12B6A] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAudioSupport.Resources\fr.lproj\QuickTimeAudioSupportLocalized.dll]
[A0E978B29E196D00BD75904028AF819E] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAudioSupport.Resources\fr.lproj\QuickTimeAudioSupportLocalized.qtr]
[242D1A498B1E17B190C82C27FBBAB64E] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAudioSupport.Resources\it.lproj\QuickTimeAudioSupportLocalized.dll]
[2E452F61223DC5F0F269AFE4C6628B33] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAudioSupport.Resources\it.lproj\QuickTimeAudioSupportLocalized.qtr]
[8D5D794D035C1512C094F8D5F866C1A8] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAudioSupport.Resources\ja.lproj\QuickTimeAudioSupportLocalized.dll]
[89B1F9CF70DD85C550AA12EAB7F9FAA8] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAudioSupport.Resources\ja.lproj\QuickTimeAudioSupportLocalized.qtr]
[D2D529652D283C4E15480EF723530493] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAudioSupport.Resources\ko.lproj\QuickTimeAudioSupportLocalized.dll]
[4603ECD3FAAA220F5FB58F74D9A36BFD] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAudioSupport.Resources\ko.lproj\QuickTimeAudioSupportLocalized.qtr]
[D7361DF95724D0AE41C1C6F94FD51454] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAudioSupport.Resources\nb.lproj\QuickTimeAudioSupportLocalized.dll]
[13C20A8E159B1FA9A531D7942833D06F] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAudioSupport.Resources\nb.lproj\QuickTimeAudioSupportLocalized.qtr]
[486B9C0B588A1E1D9C0378663D5BE063] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAudioSupport.Resources\nl.lproj\QuickTimeAudioSupportLocalized.dll]
[CBA8A4DEA88C0FF77D1ECFA4982BA367] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAudioSupport.Resources\nl.lproj\QuickTimeAudioSupportLocalized.qtr]
[AA9A34FDD9DE3474BEF66E9E9F79844D] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAudioSupport.Resources\pl.lproj\QuickTimeAudioSupportLocalized.dll]
[0B801AD6F97E3FD1012021DC08C1D8DB] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAudioSupport.Resources\pl.lproj\QuickTimeAudioSupportLocalized.qtr]
[2A59B894F070D1CA45B3DDC63B4E26D7] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAudioSupport.Resources\pt.lproj\QuickTimeAudioSupportLocalized.dll]
[4659D70A6C86044655BAD0DBF3A780D0] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAudioSupport.Resources\pt.lproj\QuickTimeAudioSupportLocalized.qtr]
[079C5DEF51DE5F2987B4459024AC189F] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAudioSupport.Resources\pt_PT.lproj\QuickTimeAudioSupportLocalized.dll]
[AE1B11F58189463B4FA8F616C18B1AC8] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAudioSupport.Resources\pt_PT.lproj\QuickTimeAudioSupportLocalized.qtr]
[D1F4C334302FC22AEE26DFEDF8FD9C8D] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAudioSupport.Resources\QuickTimeAudioSupport.qtr]
[6F396C739FBAB91DFF6CEC38403AD0B6] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAudioSupport.Resources\ru.lproj\QuickTimeAudioSupportLocalized.dll]
[36B1FB2C0F90F426EB7C44E5EAB9260F] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAudioSupport.Resources\ru.lproj\QuickTimeAudioSupportLocalized.qtr]
[C07B6E9C8388EBCA52B0029713D839C2] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAudioSupport.Resources\sv.lproj\QuickTimeAudioSupportLocalized.dll]
[A2390B3ABBDC34FD5F68D861E08D79AB] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAudioSupport.Resources\sv.lproj\QuickTimeAudioSupportLocalized.qtr]
[4E4D3527785576A40F2CE8651F490F71] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAudioSupport.Resources\zh_CN.lproj\QuickTimeAudioSupportLocalized.dll]
[45BED06B727F0BC5AFC25B64749FC5CC] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAudioSupport.Resources\zh_CN.lproj\QuickTimeAudioSupportLocalized.qtr]
[7AC3F5BD492220B563808ED25E747324] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAudioSupport.Resources\zh_TW.lproj\QuickTimeAudioSupportLocalized.dll]
[8A1412131919952E6DC2F125FBA8AE7B] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAudioSupport.Resources\zh_TW.lproj\QuickTimeAudioSupportLocalized.qtr]
[D35D47479D7697A4ECD62D586E45DA7D] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAuthoring.qtx]
[8A4BE5434B93C438DDFB89E72D901DDB] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAuthoring.Resources\da.lproj\QuickTimeAuthoringLocalized.dll]
[B7D93C017DCB55B58F733B73CC424403] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAuthoring.Resources\da.lproj\QuickTimeAuthoringLocalized.qtr]
[825900C850ED780D58B88C3E75D98A09] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAuthoring.Resources\de.lproj\QuickTimeAuthoringLocalized.dll]
[50717F17FCA635684364FFC890088D93] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAuthoring.Resources\de.lproj\QuickTimeAuthoringLocalized.qtr]
[43AFBD2088C53048546D7DB997775FD0] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAuthoring.Resources\en.lproj\QuickTimeAuthoringLocalized.dll]
[1A8BC231B69D2AFF7D1E8FDFD0DC5064] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAuthoring.Resources\en.lproj\QuickTimeAuthoringLocalized.qtr]
[239D85320C46CCDD1AE49EECAEC6584E] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAuthoring.Resources\es.lproj\QuickTimeAuthoringLocalized.dll]
[3A348182EFB390E0D783B7FABE9947D7] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAuthoring.Resources\es.lproj\QuickTimeAuthoringLocalized.qtr]
[91C6E599695B9922EF29238E98AD38E5] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAuthoring.Resources\fi.lproj\QuickTimeAuthoringLocalized.dll]
[B0AA4AAF6C172A7805746FED2C56BF6F] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAuthoring.Resources\fi.lproj\QuickTimeAuthoringLocalized.qtr]
[E09FA5C7A2E4571D205844C03C9241C7] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAuthoring.Resources\fr.lproj\QuickTimeAuthoringLocalized.dll]
[4D80E9820AC89D2620805E30FB23F3CC] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAuthoring.Resources\fr.lproj\QuickTimeAuthoringLocalized.qtr]
[C85BC2539888FA9D2BABC53FAD66C0E5] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAuthoring.Resources\it.lproj\QuickTimeAuthoringLocalized.dll]
[80B06868D51F1D1F248FE320B0AE6976] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAuthoring.Resources\it.lproj\QuickTimeAuthoringLocalized.qtr]
[2FBF85E51289380BB8DA1070DEB57D9C] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAuthoring.Resources\ja.lproj\QuickTimeAuthoringLocalized.dll]
[A81309B40651D5FD3CCEBD17E9884AF0] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAuthoring.Resources\ja.lproj\QuickTimeAuthoringLocalized.qtr]
[487814EF364FAA6570993FC458B65FD4] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAuthoring.Resources\ko.lproj\QuickTimeAuthoringLocalized.dll]
[5F771888BAD29D5C1056581398844FB0] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAuthoring.Resources\ko.lproj\QuickTimeAuthoringLocalized.qtr]
[2F12F92D36ACC442E808D9E5E530A7C6] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAuthoring.Resources\nb.lproj\QuickTimeAuthoringLocalized.dll]
[2B62278754C03EFCA44561F14627A83A] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAuthoring.Resources\nb.lproj\QuickTimeAuthoringLocalized.qtr]
[CC68B715040FF886092E24AB235E691E] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAuthoring.Resources\nl.lproj\QuickTimeAuthoringLocalized.dll]
[7CBEE401C6C7E3D4692A63674DA83C84] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAuthoring.Resources\nl.lproj\QuickTimeAuthoringLocalized.qtr]
[DB233DA1CF10FA92EBBC1CE04597F3C5] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAuthoring.Resources\pl.lproj\QuickTimeAuthoringLocalized.dll]
[3000227F2985BFEFAD1481E621B8760D] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAuthoring.Resources\pl.lproj\QuickTimeAuthoringLocalized.qtr]
[9CE6CA3CFC82FFA3AD6736CFE9258EA7] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAuthoring.Resources\pt.lproj\QuickTimeAuthoringLocalized.dll]
[1CB77948878A2D041E6E3D2432D65667] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAuthoring.Resources\pt.lproj\QuickTimeAuthoringLocalized.qtr]
[3C78E536FA83263E7636073AC00CFD44] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAuthoring.Resources\pt_PT.lproj\QuickTimeAuthoringLocalized.dll]
[F9B67C48FFB9F0DC15EDFF226723FFB3] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAuthoring.Resources\pt_PT.lproj\QuickTimeAuthoringLocalized.qtr]
[7494ED8CCB442401497B66745EAC40C0] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAuthoring.Resources\QuickTimeAuthoring.qtr]
[506991834C227E83952B484B2A6E0898] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAuthoring.Resources\ru.lproj\QuickTimeAuthoringLocalized.dll]
[44AD123A5B16F8F993D3F87AD02FBB4E] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAuthoring.Resources\ru.lproj\QuickTimeAuthoringLocalized.qtr]
[2B655059A2AC7E8FD578AE1144A742DA] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAuthoring.Resources\sv.lproj\QuickTimeAuthoringLocalized.dll]
[D1607992327109F860046E4C9ADC6A81] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAuthoring.Resources\sv.lproj\QuickTimeAuthoringLocalized.qtr]
[5147793E43092E895A59406862EA1EB4] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAuthoring.Resources\zh_CN.lproj\QuickTimeAuthoringLocalized.dll]
[62D5CCA8C2F400EDFC1A166D7832B968] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAuthoring.Resources\zh_CN.lproj\QuickTimeAuthoringLocalized.qtr]
[C3E5159A63ABA8FAB35178BBC1450157] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAuthoring.Resources\zh_TW.lproj\QuickTimeAuthoringLocalized.dll]
[AAD73AF1112364C54388F3C2F01FA0B3] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeAuthoring.Resources\zh_TW.lproj\QuickTimeAuthoringLocalized.qtr]
[5EB3889C5456FE592CAEA9CA90E43C45] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeCapture.qtx]
[86B57B7969FF69348982363C43DBE345] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeCapture.Resources\da.lproj\QuickTimeCaptureLocalized.qtr]
[4BD99B1ADBF33C0C719BE21DC4342734] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeCapture.Resources\de.lproj\QuickTimeCaptureLocalized.qtr]
[9A6FA8B1F8E4A9062D7D3E4C3AB945EB] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeCapture.Resources\en.lproj\QuickTimeCaptureLocalized.qtr]
[06831B1EBAE256CE91B2BA97F5F14460] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeCapture.Resources\es.lproj\QuickTimeCaptureLocalized.qtr]
[17EEDFAA8CB5685E22273196CE05BA6A] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeCapture.Resources\fi.lproj\QuickTimeCaptureLocalized.qtr]
[1C01DD71200AF447135F2DCF885261F4] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeCapture.Resources\fr.lproj\QuickTimeCaptureLocalized.qtr]
[FC02E1F9E8AE018345008827031C52C4] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeCapture.Resources\it.lproj\QuickTimeCaptureLocalized.qtr]
[D88E163BE6057A0CF421BE8B07F4B7E2] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeCapture.Resources\ja.lproj\QuickTimeCaptureLocalized.qtr]
[68CD18A959462D6C02C11929EB0A16F4] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeCapture.Resources\ko.lproj\QuickTimeCaptureLocalized.qtr]
[F8937C18111EB5956D138B9D7B8529F2] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeCapture.Resources\nb.lproj\QuickTimeCaptureLocalized.qtr]
[D278030B5FF75DE01965FE033EC010DB] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeCapture.Resources\nl.lproj\QuickTimeCaptureLocalized.qtr]
[C5160B915F6B9AEE721C70292F38F142] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeCapture.Resources\pl.lproj\QuickTimeCaptureLocalized.qtr]
[428FD4F3D2A3C44FCEF0420DB661B5C0] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeCapture.Resources\pt.lproj\QuickTimeCaptureLocalized.qtr]
[FC0550F61335F08955AC7C46BB937A92] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeCapture.Resources\pt_PT.lproj\QuickTimeCaptureLocalized.qtr]
[A39D3E68FBCAADE1188DA08073C63B4A] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeCapture.Resources\QuickTimeCapture.qtr]
[C252009A3F1D69C2715C32BABF31D95B] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeCapture.Resources\ru.lproj\QuickTimeCaptureLocalized.qtr]
[08575FF597B28585646FA30201193408] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeCapture.Resources\sv.lproj\QuickTimeCaptureLocalized.qtr]
[974BC661A6E1FB20CBA35E2B5F90C93E] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeCapture.Resources\zh_CN.lproj\QuickTimeCaptureLocalized.qtr]
[18A5C8099250793331710709C61B2391] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeCapture.Resources\zh_TW.lproj\QuickTimeCaptureLocalized.qtr]
[A7E3DA7EFB9DBB0ACE90CAAAB2E5CFDE] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeCheck.ocx]
[E54453E9DB76979C3008A59316FE53CF] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeEffects.qtx]
[0F7AC22107C519620461384124C44B4A] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeEffects.Resources\da.lproj\QuickTimeEffectsLocalized.qtr]
[F34A2938424DDD2DECEE68B527F3ECAC] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeEffects.Resources\de.lproj\QuickTimeEffectsLocalized.qtr]
[CC2D3AF84BB3366C3E0F872C1791FF1C] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeEffects.Resources\en.lproj\QuickTimeEffectsLocalized.qtr]
[75611E60DE7571BB458912F6D3843AC1] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeEffects.Resources\es.lproj\QuickTimeEffectsLocalized.qtr]
[E8303900FE7E5875E19DF32C8BA39157] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeEffects.Resources\fi.lproj\QuickTimeEffectsLocalized.qtr]
[B3F4DA7BE6BD7E12629ED1CEE60970B8] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeEffects.Resources\fr.lproj\QuickTimeEffectsLocalized.qtr]
[DB7947A530D6C086554AC7C076604E65] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeEffects.Resources\it.lproj\QuickTimeEffectsLocalized.qtr]
[E15D866CB1401E3CE4C704C434225F63] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeEffects.Resources\ja.lproj\QuickTimeEffectsLocalized.qtr]
[64BBA4F1DAEA42ABD722EEDACE32A436] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeEffects.Resources\ko.lproj\QuickTimeEffectsLocalized.qtr]
[11DD81E91CF52DD8A9534ACC729C4EF4] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeEffects.Resources\nb.lproj\QuickTimeEffectsLocalized.qtr]
[FC13647686D44C25272C0F41E3F56FCF] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeEffects.Resources\nl.lproj\QuickTimeEffectsLocalized.qtr]
[D0CC317ED0128A79E3F6D27AE12C078E] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeEffects.Resources\pl.lproj\QuickTimeEffectsLocalized.qtr]
[8090EC7A67073E0902582EFFAD6B472E] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeEffects.Resources\pt.lproj\QuickTimeEffectsLocalized.qtr]
[23802062E24CF9BD6592BC9879403136] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeEffects.Resources\pt_PT.lproj\QuickTimeEffectsLocalized.qtr]
[C59E5BEBD8446B3F1908C87DE080CFE0] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeEffects.Resources\QuickTimeEffects.qtr]
[8DC5559B5756E2902C70B75AC06BD417] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeEffects.Resources\ru.lproj\QuickTimeEffectsLocalized.qtr]
[9B8E4D23B4E93D7A8FF11CD26C39EE6E] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeEffects.Resources\sv.lproj\QuickTimeEffectsLocalized.qtr]
[61095603FE645F6D0810A07833FF0F47] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeEffects.Resources\zh_CN.lproj\QuickTimeEffectsLocalized.qtr]
[D64258CC40860FE6D404E3D29428139A] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeEffects.Resources\zh_TW.lproj\QuickTimeEffectsLocalized.qtr]
[0E23252E5AE79967CE04ECCDDA405D81] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeEssentials.qtx]
[CCF760E40BF2924BA7B66A7B484679EC] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeEssentials.Resources\da.lproj\QuickTimeEssentialsLocalized.qtr]
[3D95FF0A355AC3436F81A83A07C348E4] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeEssentials.Resources\de.lproj\QuickTimeEssentialsLocalized.qtr]
[831F8F564CB2AA0A37337A0102CDBA8A] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeEssentials.Resources\en.lproj\QuickTimeEssentialsLocalized.qtr]
[26DA5F27FB2F1F78403B747982800136] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeEssentials.Resources\es.lproj\QuickTimeEssentialsLocalized.qtr]
[05B0229E5EF332A0B1E1F1C8D4BEAFC1] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeEssentials.Resources\fi.lproj\QuickTimeEssentialsLocalized.qtr]
[55B9D1651099077C86260D33F09A8DA1] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeEssentials.Resources\fr.lproj\QuickTimeEssentialsLocalized.qtr]
[2E95370D9879FCCA08A78498343C24A2] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeEssentials.Resources\it.lproj\QuickTimeEssentialsLocalized.qtr]
[3EC5F61A408D8DADFBF8DDB8809210FE] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeEssentials.Resources\ja.lproj\QuickTimeEssentialsLocalized.qtr]
[F04A0D3E4355216A9C1868D2CD0F22A5] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeEssentials.Resources\ko.lproj\QuickTimeEssentialsLocalized.qtr]
[3E2AA6ED622D5C4C2FB61BCFB780AF23] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeEssentials.Resources\nb.lproj\QuickTimeEssentialsLocalized.qtr]
[800CE59BF42C98241D0F514DFFB280F3] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeEssentials.Resources\nl.lproj\QuickTimeEssentialsLocalized.qtr]
[82292D64CF2D402754D72EC1EE7DFB58] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeEssentials.Resources\pl.lproj\QuickTimeEssentialsLocalized.qtr]
[727DB16B026AF3FEDE51989DE58D0477] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeEssentials.Resources\pt.lproj\QuickTimeEssentialsLocalized.qtr]
[5B75E4A552F8548ACF5B2C439A55E093] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeEssentials.Resources\pt_PT.lproj\QuickTimeEssentialsLocalized.qtr]
[F6DBC91433D28499FC735D7957FEEB8D] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeEssentials.Resources\QuickTimeEssentials.qtr]
[2F5CA8B61F768C609B0848F6D703963F] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeEssentials.Resources\ru.lproj\QuickTimeEssentialsLocalized.qtr]
[A252D6CB7EB898ED612F8A82E09F334B] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeEssentials.Resources\sv.lproj\QuickTimeEssentialsLocalized.qtr]
[0A14A0ABD86B981DA4E8A7C0942FFE91] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeEssentials.Resources\zh_CN.lproj\QuickTimeEssentialsLocalized.qtr]
[2676E465E22D40228FD1A644582F94F3] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeEssentials.Resources\zh_TW.lproj\QuickTimeEssentialsLocalized.qtr]
[AC8F76F0598CBC24158537342BE7B067] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeH264.qtx]
[C4CEE8AFB892B8BC54D8D2668819B945] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeH264.Resources\da.lproj\QuickTimeH264Localized.qtr]
[08149D59A71F65C23DBC7CE81F6EDCB8] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeH264.Resources\de.lproj\QuickTimeH264Localized.qtr]
[F51A01C5A1385C8A35D71AE9BCCDB2B5] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeH264.Resources\en.lproj\QuickTimeH264Localized.qtr]
[DF55924001B204393B24020560271A44] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeH264.Resources\es.lproj\QuickTimeH264Localized.qtr]
[2CDBC1DCB325B63FEB09E1DCD97E1C23] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeH264.Resources\fi.lproj\QuickTimeH264Localized.qtr]
[A39F9E10E45543BFF138C70D8A153B12] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeH264.Resources\fr.lproj\QuickTimeH264Localized.qtr]
[A11C63D1A3A6D1B98466C32419CC0A6D] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeH264.Resources\it.lproj\QuickTimeH264Localized.qtr]
[B8164D77F604F859BA99CAF61B90AD8C] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeH264.Resources\ja.lproj\QuickTimeH264Localized.qtr]
[7A3F1E000E7A812DA43B779ECF2F9C0E] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeH264.Resources\ko.lproj\QuickTimeH264Localized.qtr]
[714BF485FD2E8A3FA1DBA33FA4BEE687] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeH264.Resources\nb.lproj\QuickTimeH264Localized.qtr]
[7A138CC1766FB25E8BD4BEB3A2C41B11] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeH264.Resources\nl.lproj\QuickTimeH264Localized.qtr]
[C45E88AC409231FE7AB303FC00A5E7A3] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeH264.Resources\pl.lproj\QuickTimeH264Localized.qtr]
[CB6CAE86AE58C3527A156118652DC75A] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeH264.Resources\pt.lproj\QuickTimeH264Localized.qtr]
[F2337D37DD6338D3A7503B2C98F0FBC1] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeH264.Resources\pt_PT.lproj\QuickTimeH264Localized.qtr]
[C041190C852A946C78FA6B2A2517A7E8] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeH264.Resources\QuickTimeH264.qtr]
[BCE0C04B4292BD2A6D8B98F40B39260A] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeH264.Resources\ru.lproj\QuickTimeH264Localized.qtr]
[33A9D8869FE029220AB13943BB8D6D1A] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeH264.Resources\sv.lproj\QuickTimeH264Localized.qtr]
[500EE0D2F725C4DB812859EE14F9ABCB] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeH264.Resources\zh_CN.lproj\QuickTimeH264Localized.qtr]
[EF75052D1EF115DCEA3074EE721F5A64] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeH264.Resources\zh_TW.lproj\QuickTimeH264Localized.qtr]
[3C82C80920050798882882CBF3EFD890] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeImage.qtx]
[23EE215F29B0DDDD79B9868528586017] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeImage.Resources\da.lproj\QuickTimeImageLocalized.qtr]
[B82664B464EC4F0934F03349BD9A44F0] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeImage.Resources\de.lproj\QuickTimeImageLocalized.qtr]
[E40950AC70567FC549842A5E9E2EA28F] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeImage.Resources\en.lproj\QuickTimeImageLocalized.qtr]
[77B806660D525014BB45DB54B0E88D91] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeImage.Resources\es.lproj\QuickTimeImageLocalized.qtr]
[6E42CF54F65517023A56742273B6709B] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeImage.Resources\fi.lproj\QuickTimeImageLocalized.qtr]
[DCC023EB7978BB7BFEC499F76C606E9A] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeImage.Resources\fr.lproj\QuickTimeImageLocalized.qtr]
[3A48171BF1F797E31ABC52B4E0D2F113] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeImage.Resources\it.lproj\QuickTimeImageLocalized.qtr]
[9F3806EEA1C7D66FC3E10C04451894F0] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeImage.Resources\ja.lproj\QuickTimeImageLocalized.qtr]
[60A039A08664DFAF29E0F9D1DE72CCB5] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeImage.Resources\ko.lproj\QuickTimeImageLocalized.qtr]
[B704B9174B3C5F1F63E75ADCEF0AD70F] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeImage.Resources\nb.lproj\QuickTimeImageLocalized.qtr]
[7C3707CFF63B07E9C3BC7D8CDAA91AD5] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeImage.Resources\nl.lproj\QuickTimeImageLocalized.qtr]
[BC5A08FE4619A6E4043FA01B78C05E67] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeImage.Resources\pl.lproj\QuickTimeImageLocalized.qtr]
[50955E55757373E84760ABF34164511B] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeImage.Resources\pt.lproj\QuickTimeImageLocalized.qtr]
[1AFDF4C08C8300E4605E13035878AF76] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeImage.Resources\pt_PT.lproj\QuickTimeImageLocalized.qtr]
[B5F39D267D81D332AA3E3190894BA794] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeImage.Resources\QuickTimeImage.qtr]
[7B9D035FCE461BF3E7D7228E0FA4F6E1] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeImage.Resources\ru.lproj\QuickTimeImageLocalized.qtr]
[43E4BD695661D734B05B320DB39B551C] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeImage.Resources\sv.lproj\QuickTimeImageLocalized.qtr]
[6A00380E8D6798FC5094EE76F2D3406E] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeImage.Resources\zh_CN.lproj\QuickTimeImageLocalized.qtr]
[62D6072CC7CD39A211D913139B71BD57] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeImage.Resources\zh_TW.lproj\QuickTimeImageLocalized.qtr]
[DF5A141D3DB468207B6B70B2AD122DF1] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeInternetExtras.qtx]
[C4760BA82A08624ACD7CEBC811A9ED1D] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeInternetExtras.Resources\da.lproj\QuickTimeInternetExtrasLocalized.qtr]
[DC25A6E986F7A425F5CBF865ACC2D02B] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeInternetExtras.Resources\de.lproj\QuickTimeInternetExtrasLocalized.qtr]
[AACAF75AE0346F05516BE39BB518E559] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeInternetExtras.Resources\en.lproj\QuickTimeInternetExtrasLocalized.qtr]
[F1E15DD32F554F82BA66DA28315D67D9] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeInternetExtras.Resources\es.lproj\QuickTimeInternetExtrasLocalized.qtr]
[F5E1FC3AB0BDF7401C7080F015D30F11] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeInternetExtras.Resources\fi.lproj\QuickTimeInternetExtrasLocalized.qtr]
[116AB02FC7F075A84715AAA96BFB03FC] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeInternetExtras.Resources\fr.lproj\QuickTimeInternetExtrasLocalized.qtr]
[0538E5286DCBC4B068C68AB6D70AED63] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeInternetExtras.Resources\it.lproj\QuickTimeInternetExtrasLocalized.qtr]
[87F5657B8A42BAA3C41165CB252A1922] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeInternetExtras.Resources\ja.lproj\QuickTimeInternetExtrasLocalized.qtr]
[3F8F0B45F822B48D31B42188B5F84D01] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeInternetExtras.Resources\ko.lproj\QuickTimeInternetExtrasLocalized.qtr]
[4C798BAC1FF3EB6721EFCAF668DBD63E] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeInternetExtras.Resources\nb.lproj\QuickTimeInternetExtrasLocalized.qtr]
[5570A6805147212BAE6B385FC90CCDE1] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeInternetExtras.Resources\nl.lproj\QuickTimeInternetExtrasLocalized.qtr]
[75820F0AC8CF68A57E0521E0E38784DD] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeInternetExtras.Resources\pl.lproj\QuickTimeInternetExtrasLocalized.qtr]
[8153A22F4DC6D642DAEB92FB764BC537] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeInternetExtras.Resources\pt.lproj\QuickTimeInternetExtrasLocalized.qtr]
[A006ECC6B1ECFB0F8578FB2EC7912BB1] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeInternetExtras.Resources\pt_PT.lproj\QuickTimeInternetExtrasLocalized.qtr]
[600E982E1FAC015C8190F7848ACC6976] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeInternetExtras.Resources\QuickTimeInternetExtras.qtr]
[FD6302D548040787AE4724E0E3287CF0] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeInternetExtras.Resources\ru.lproj\QuickTimeInternetExtrasLocalized.qtr]
[8CA1B3CB56645D1861E93BBC6CBADC88] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeInternetExtras.Resources\sv.lproj\QuickTimeInternetExtrasLocalized.qtr]
[1EF2E08A25381EAF230A1BE294D852D5] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeInternetExtras.Resources\zh_CN.lproj\QuickTimeInternetExtrasLocalized.qtr]
[7A5AAC1C721198F71CCD0CBF6AB84155] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeInternetExtras.Resources\zh_TW.lproj\QuickTimeInternetExtrasLocalized.qtr]
[C923F46B7CAC86684958BF5A239D530F] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeJavaExtras.qtx]
[385EC86178A37EDEC44717A86A89783E] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG.qtx]
[0683E01ED2C1A3D334E0962A6133EC9F] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG.Resources\da.lproj\QuickTimeMPEGLocalized.qtr]
[83D24DF041459A0D733ECC45530A2EFD] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG.Resources\de.lproj\QuickTimeMPEGLocalized.qtr]
[D7DBA2B3E22A8193E5E632E8EDAC72E7] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG.Resources\en.lproj\QuickTimeMPEGLocalized.qtr]
[E80B6F7C3BF073ED2BCA2DE6E5D288C9] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG.Resources\es.lproj\QuickTimeMPEGLocalized.qtr]
[B21AC80A405DBC0943CBEC5C854F00BB] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG.Resources\fi.lproj\QuickTimeMPEGLocalized.qtr]
[BCE5EABEBF9F4D01BB19DBFED5FD3C61] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG.Resources\fr.lproj\QuickTimeMPEGLocalized.qtr]
[4F075327C235386A5BFF7F948EC9FE30] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG.Resources\it.lproj\QuickTimeMPEGLocalized.qtr]
[30C0C3CCCB7B805B998F8FAD72DC7DA1] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG.Resources\ja.lproj\QuickTimeMPEGLocalized.qtr]
[6164828031434169F88534B5D3189158] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG.Resources\ko.lproj\QuickTimeMPEGLocalized.qtr]
[090A030EF13FFBEB08A97AE8E5CDEDEB] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG.Resources\nb.lproj\QuickTimeMPEGLocalized.qtr]
[F9C735783FC0A104AB0EA9E49C8763CB] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG.Resources\nl.lproj\QuickTimeMPEGLocalized.qtr]
[9DE2E9CFA15A76F61BD41475DFC82BA7] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG.Resources\pl.lproj\QuickTimeMPEGLocalized.qtr]
[E71978A64D28D386C6BC7F858C7D6BBA] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG.Resources\pt.lproj\QuickTimeMPEGLocalized.qtr]
[8ABF81BA5C5CDB3266CED95DAE242086] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG.Resources\pt_PT.lproj\QuickTimeMPEGLocalized.qtr]
[D6EB72B1F5F6FA012D35DF87942D9CF3] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG.Resources\QuickTimeMPEG.qtr]
[D153036A6623DFED5DA7DC71CB71DF96] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG.Resources\ru.lproj\QuickTimeMPEGLocalized.qtr]
[23295DAB07A73C47203AA82392DF9E5D] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG.Resources\sv.lproj\QuickTimeMPEGLocalized.qtr]
[AE25E1E5B5F93CA9DE1A65C5638018F7] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG.Resources\zh_CN.lproj\QuickTimeMPEGLocalized.qtr]
[AE110DD06745CDAE4EA414EA26FDB376] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG.Resources\zh_TW.lproj\QuickTimeMPEGLocalized.qtr]
[46C62C86C5B96A8FC0EEA6C7C027E55D] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG4.qtx]
[CDC8C289834C7998B2F2FFC3D81D2686] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG4.Resources\da.lproj\QuickTimeMPEG4Localized.qtr]
[988A2A59846D2E71AD6A61A709912F3C] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG4.Resources\de.lproj\QuickTimeMPEG4Localized.qtr]
[4AD91D3C0D80D79D297B78B08A10B781] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG4.Resources\en.lproj\QuickTimeMPEG4Localized.qtr]
[5B0EFD156695C11DC613DA8AF191AF78] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG4.Resources\es.lproj\QuickTimeMPEG4Localized.qtr]
[4CE4237FB7FEF6984D4E1E096FA84074] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG4.Resources\fi.lproj\QuickTimeMPEG4Localized.qtr]
[36B97AEF272A7A3EFEFEA641E6A6B7AE] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG4.Resources\fr.lproj\QuickTimeMPEG4Localized.qtr]
[2FBFC3282AB932F0F082C8222D5940A9] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG4.Resources\it.lproj\QuickTimeMPEG4Localized.qtr]
[F615C0A07A65077688940D981A114D43] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG4.Resources\ja.lproj\QuickTimeMPEG4Localized.qtr]
[9EF2E17C3669CA2830321C2A73FDAC68] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG4.Resources\ko.lproj\QuickTimeMPEG4Localized.qtr]
[5748F41A5A7F1281B9DAEA52E80DB8F3] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG4.Resources\nb.lproj\QuickTimeMPEG4Localized.qtr]
[6ADAF38D58A33BD77ECC9454DB523ACC] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG4.Resources\nl.lproj\QuickTimeMPEG4Localized.qtr]
[00907C8271C95E624ACC40CC6EF16520] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG4.Resources\pl.lproj\QuickTimeMPEG4Localized.qtr]
[AD5AE4F3CAFD2BADF4A125289825E27A] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG4.Resources\pt.lproj\QuickTimeMPEG4Localized.qtr]
[C7429922F4E46DE6915511D06669BFE3] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG4.Resources\pt_PT.lproj\QuickTimeMPEG4Localized.qtr]
[701CE95379E5DAD9EBB6A5135BCD0D57] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG4.Resources\QuickTimeMPEG4.qtr]
[CCBC3B0A4A01D6F21239062B09D9AE56] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG4.Resources\ru.lproj\QuickTimeMPEG4Localized.qtr]
[BB180BE81D34C085910CF6675D4DB4FF] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG4.Resources\sv.lproj\QuickTimeMPEG4Localized.qtr]
[BBD3BAE5F814F926FEC51A90DAD42CE1] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG4.Resources\zh_CN.lproj\QuickTimeMPEG4Localized.qtr]
[34D631359CA09524E6DF49879D17656D] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG4.Resources\zh_TW.lproj\QuickTimeMPEG4Localized.qtr]
[4B7BDF1690A7468ADED10836EE6B5825] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG4Authoring.qtx]
[367BEEAD0E66CB160DB5F97460027BB6] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG4Authoring.Resources\da.lproj\QuickTimeMPEG4AuthoringLocalized.qtr]
[AA93D2193A90FCA74062576976BB85BB] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG4Authoring.Resources\de.lproj\QuickTimeMPEG4AuthoringLocalized.qtr]
[62426F6A20C4EE673385A29AA6277054] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG4Authoring.Resources\en.lproj\QuickTimeMPEG4AuthoringLocalized.qtr]
[8D88174258E45D80D871BDA07946CB8D] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG4Authoring.Resources\es.lproj\QuickTimeMPEG4AuthoringLocalized.qtr]
[67FD3D347C958FED33502397B5448277] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG4Authoring.Resources\fi.lproj\QuickTimeMPEG4AuthoringLocalized.qtr]
[2F1AB8CBFCF460AA87256BB158DD3331] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG4Authoring.Resources\fr.lproj\QuickTimeMPEG4AuthoringLocalized.qtr]
[345EAEDF2323BC546E42B2885A83DADF] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG4Authoring.Resources\it.lproj\QuickTimeMPEG4AuthoringLocalized.qtr]
[2AA2CE56103A6E1E73431FE92F1A69FE] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG4Authoring.Resources\ja.lproj\QuickTimeMPEG4AuthoringLocalized.qtr]
[C2C9FA065904A07FB47EAE1C968D8DCB] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG4Authoring.Resources\ko.lproj\QuickTimeMPEG4AuthoringLocalized.qtr]
[15C09910F7311D2FD434B412CB9305F8] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG4Authoring.Resources\nb.lproj\QuickTimeMPEG4AuthoringLocalized.qtr]
[3F143A7FD2012809AAF2B7B68C1044AA] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG4Authoring.Resources\nl.lproj\QuickTimeMPEG4AuthoringLocalized.qtr]
[6F6C95B58AFD722AC8178A68D3C89B15] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG4Authoring.Resources\pl.lproj\QuickTimeMPEG4AuthoringLocalized.qtr]
[371551F37B485036B5AECF8525C2B88F] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG4Authoring.Resources\pt.lproj\QuickTimeMPEG4AuthoringLocalized.qtr]
[27440B3244637FFB846CDB6B28268D1D] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG4Authoring.Resources\pt_PT.lproj\QuickTimeMPEG4AuthoringLocalized.qtr]
[09DD037CFF8E8D3370E8204FC50D1D84] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG4Authoring.Resources\QuickTimeMPEG4Authoring.qtr]
[9347B8F79D98396D51ADD063A9830AD6] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG4Authoring.Resources\ru.lproj\QuickTimeMPEG4AuthoringLocalized.qtr]
[3A444117BFDAA0BEA28881F4BA51E79F] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG4Authoring.Resources\sv.lproj\QuickTimeMPEG4AuthoringLocalized.qtr]
[A26FEB4C4DBE185DC7BB8AE00AA9F769] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG4Authoring.Resources\zh_CN.lproj\QuickTimeMPEG4AuthoringLocalized.qtr]
[A2159409981AFBB558BE7F5EE693849B] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMPEG4Authoring.Resources\zh_TW.lproj\QuickTimeMPEG4AuthoringLocalized.qtr]
[418EDB0DF655F2152CA9D9855E8500BC] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMusic.qtx]
[1E18720161D503F3B2E5CD1CBEA9B2F2] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMusic.Resources\da.lproj\QuickTimeMusicLocalized.qtr]
[5D7050E7F5E71F9F76232CBA63E30767] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMusic.Resources\de.lproj\QuickTimeMusicLocalized.qtr]
[2DC34FBE8E27EADA5879D5F70B16A7F4] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMusic.Resources\en.lproj\QuickTimeMusicLocalized.qtr]
[A9B7951FB6ABAA79BD3FF7907F0A0EB4] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMusic.Resources\es.lproj\QuickTimeMusicLocalized.qtr]
[980B2F03E8962524CA0D6A8C94835257] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMusic.Resources\fi.lproj\QuickTimeMusicLocalized.qtr]
[A05107B383112DA8690704FF511496E7] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMusic.Resources\fr.lproj\QuickTimeMusicLocalized.qtr]
[89C1CB72C43CD347A0FB44C9B637191E] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMusic.Resources\it.lproj\QuickTimeMusicLocalized.qtr]
[AD11C98E42F11CFFBCFE1EB09A8E2869] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMusic.Resources\ja.lproj\QuickTimeMusicLocalized.qtr]
[00A151F9D7DE3D84AA598C8F5E453E52] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMusic.Resources\ko.lproj\QuickTimeMusicLocalized.qtr]
[9CB0ECB2446E2E350C3DAB5C16F3EBCF] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMusic.Resources\nb.lproj\QuickTimeMusicLocalized.qtr]
[D2A62BB97E9C8B8A479514703D64DB2A] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMusic.Resources\nl.lproj\QuickTimeMusicLocalized.qtr]
[94CA94F9D3CBBDED3919638AA8EA9488] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMusic.Resources\pl.lproj\QuickTimeMusicLocalized.qtr]
[CF13FE107790AF758CDF0DD53A366320] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMusic.Resources\pt.lproj\QuickTimeMusicLocalized.qtr]
[0B057A74ABFAD1A3881982A95BD44EB9] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMusic.Resources\pt_PT.lproj\QuickTimeMusicLocalized.qtr]
[51DAEAF96FEC6FD32081FF17E40428F5] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMusic.Resources\QuickTimeMusic.qtr]
[A8BBDF24935695305277B4E2EB8B1A6D] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMusic.Resources\ru.lproj\QuickTimeMusicLocalized.qtr]
[869FC7CC8DE849656846CA14D2569435] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMusic.Resources\sv.lproj\QuickTimeMusicLocalized.qtr]
[54EDD5DD2347E85DC39C6ED92A7A26FD] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMusic.Resources\zh_CN.lproj\QuickTimeMusicLocalized.qtr]
[7E598508817011469994F51C90D6E5D5] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMusic.Resources\zh_TW.lproj\QuickTimeMusicLocalized.qtr]
[59D6FC4BCB8FE6357B05AE3BAB600A8E] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeMusicalInstruments.qtx]
[5891EDF65EF6396306958E80CC2E9F26] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreaming.qtx]
[D15313ABBBE4A7617E76419ACD59E3D0] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreaming.Resources\da.lproj\QuickTimeStreamingLocalized.dll]
[7B400316B995B69BCF1700C898545865] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreaming.Resources\da.lproj\QuickTimeStreamingLocalized.qtr]
[AC33FC9C67F0720E145A557AB7B79712] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreaming.Resources\de.lproj\QuickTimeStreamingLocalized.dll]
[56B3D5D6726B71E022B885F9E73D9BBB] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreaming.Resources\de.lproj\QuickTimeStreamingLocalized.qtr]
[8D70847613EF562EBF89F87E3BF9052A] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreaming.Resources\en.lproj\QuickTimeStreamingLocalized.dll]
[DA42DF0AB039EC9E09F734E05DE7D2BF] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreaming.Resources\en.lproj\QuickTimeStreamingLocalized.qtr]
[18B4CBA339E4102F42D079C3CF737BB9] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreaming.Resources\es.lproj\QuickTimeStreamingLocalized.dll]
[CFE93D3E218E1792195BFC23A9C02053] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreaming.Resources\es.lproj\QuickTimeStreamingLocalized.qtr]
[F008D86DF884AF3E484272EF71F692F9] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreaming.Resources\fi.lproj\QuickTimeStreamingLocalized.dll]
[5526FA2E251C9AECB6113AC222C5EFD7] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreaming.Resources\fi.lproj\QuickTimeStreamingLocalized.qtr]
[0139FDF1A58E08F685AEB124F20B44E2] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreaming.Resources\fr.lproj\QuickTimeStreamingLocalized.dll]
[ADAD986858B5361E73C4C69BCE77A25D] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreaming.Resources\fr.lproj\QuickTimeStreamingLocalized.qtr]
[0D16D19AB62191C0A1B6E45EAA9CE003] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreaming.Resources\it.lproj\QuickTimeStreamingLocalized.dll]
[860310CF6BB47890A0C7D90F0B5697C2] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreaming.Resources\it.lproj\QuickTimeStreamingLocalized.qtr]
[50437ECB15B7A04413E2F2BE4949776A] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreaming.Resources\ja.lproj\QuickTimeStreamingLocalized.dll]
[DB5434F3977F54A517F5801050FD9AD7] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreaming.Resources\ja.lproj\QuickTimeStreamingLocalized.qtr]
[EAFE62F9048F64DFD355540AD01A4731] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreaming.Resources\ko.lproj\QuickTimeStreamingLocalized.dll]
[9C3DC37DCABEB0CE5175A3F5EAAB0DE8] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreaming.Resources\ko.lproj\QuickTimeStreamingLocalized.qtr]
[F83EECFD8A8F08439F4DE398F7F3DBC9] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreaming.Resources\nb.lproj\QuickTimeStreamingLocalized.dll]
[898E4A63B616B9EE657A750A31C6310F] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreaming.Resources\nb.lproj\QuickTimeStreamingLocalized.qtr]
[A3D8E3253D14FF7FCE679383F60F8351] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreaming.Resources\nl.lproj\QuickTimeStreamingLocalized.dll]
[0A20AFD2A47B6DEEE751954BC096A2D5] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreaming.Resources\nl.lproj\QuickTimeStreamingLocalized.qtr]
[9825064303C1892449AE9FB720F0FF84] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreaming.Resources\pl.lproj\QuickTimeStreamingLocalized.dll]
[83D62055AAD829A2244E99DC1897A3C4] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreaming.Resources\pl.lproj\QuickTimeStreamingLocalized.qtr]
[CD31EA2C8E2D524DB918831CB38ABCDF] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreaming.Resources\pt.lproj\QuickTimeStreamingLocalized.dll]
[FCC6D6202B13CD6195DEB7AB5A50DE21] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreaming.Resources\pt.lproj\QuickTimeStreamingLocalized.qtr]
[5466A6536D08526210FEF82AFB54D68C] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreaming.Resources\pt_PT.lproj\QuickTimeStreamingLocalized.dll]
[C720DB73FA8991D3C8C1FE094E0F1A8C] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreaming.Resources\pt_PT.lproj\QuickTimeStreamingLocalized.qtr]
[F2F6F4FEB2A629F91885E5633A3C17EA] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreaming.Resources\QuickTimeStreaming.qtr]
[BA489AE5086C4A8C95DAF621715946B0] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreaming.Resources\ru.lproj\QuickTimeStreamingLocalized.dll]
[8739474D456A249DFC072B04C2B90F57] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreaming.Resources\ru.lproj\QuickTimeStreamingLocalized.qtr]
[5FCAA9C4704BE9E43DBD6D4942EE92B9] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreaming.Resources\sv.lproj\QuickTimeStreamingLocalized.dll]
[AA2332B1D4465CFF81DEEF812167720A] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreaming.Resources\sv.lproj\QuickTimeStreamingLocalized.qtr]
[2EA2C013DBE2873C4896578B44363A99] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreaming.Resources\zh_CN.lproj\QuickTimeStreamingLocalized.dll]
[DD7D7DAAED1A01F14416F1F512802D10] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreaming.Resources\zh_CN.lproj\QuickTimeStreamingLocalized.qtr]
[E9EB3A3912AF133DD863E1C90F343652] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreaming.Resources\zh_TW.lproj\QuickTimeStreamingLocalized.dll]
[2AD2AE981A8D2DA4BC974CA6ED086089] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreaming.Resources\zh_TW.lproj\QuickTimeStreamingLocalized.qtr]
[A6660592449F734EE731ACA01BF06150] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreamingAuthoring.qtx]
[07C3A887CE75D2F94305C68C9E380AEF] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreamingAuthoring.Resources\da.lproj\QuickTimeStreamingAuthoringLocalized.qtr]
[4092049E75582797F290E3144C02EDF1] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreamingAuthoring.Resources\de.lproj\QuickTimeStreamingAuthoringLocalized.qtr]
[2184214B9FAFE9841ADDC03135B7BE01] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreamingAuthoring.Resources\en.lproj\QuickTimeStreamingAuthoringLocalized.qtr]
[1B121E5CF51C7DE6C9664CAE68BFFA7D] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreamingAuthoring.Resources\es.lproj\QuickTimeStreamingAuthoringLocalized.qtr]
[375E593306A97F8E91540256A3B77DBC] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreamingAuthoring.Resources\fi.lproj\QuickTimeStreamingAuthoringLocalized.qtr]
[14BE5C5589AB0DB2F2BC3FD5B774290E] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreamingAuthoring.Resources\fr.lproj\QuickTimeStreamingAuthoringLocalized.qtr]
[DD41120BF0F4CBC9C2D38C7D4AAF1E5A] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreamingAuthoring.Resources\it.lproj\QuickTimeStreamingAuthoringLocalized.qtr]
[0B636AF8971EC44DB45758A1A2D06FA4] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreamingAuthoring.Resources\ja.lproj\QuickTimeStreamingAuthoringLocalized.qtr]
[77BBC3991C23EBCB23712C3329376E55] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreamingAuthoring.Resources\ko.lproj\QuickTimeStreamingAuthoringLocalized.qtr]
[AE7A8B29B5AE5B832FC867CAAC77D2BC] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreamingAuthoring.Resources\nb.lproj\QuickTimeStreamingAuthoringLocalized.qtr]
[D6BDCDB634264AC18A0E6FF27145A861] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreamingAuthoring.Resources\nl.lproj\QuickTimeStreamingAuthoringLocalized.qtr]
[DA28C94DF6B02F249BE265CCAA4ACC89] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreamingAuthoring.Resources\pl.lproj\QuickTimeStreamingAuthoringLocalized.qtr]
[DDBDAD2B311363F09704EDEFE1FDF4A2] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreamingAuthoring.Resources\pt.lproj\QuickTimeStreamingAuthoringLocalized.qtr]
[BF6AB71C9854AC1149747095166EB001] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreamingAuthoring.Resources\pt_PT.lproj\QuickTimeStreamingAuthoringLocalized.qtr]
[2A21D8F68FF27FFF4994A7E61EE14228] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreamingAuthoring.Resources\QuickTimeStreamingAuthoring.qtr]
[36CCB3781D6545F766F9DEA4022BB754] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreamingAuthoring.Resources\ru.lproj\QuickTimeStreamingAuthoringLocalized.qtr]
[5F1D6C32536242143F649AF694980F6C] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreamingAuthoring.Resources\sv.lproj\QuickTimeStreamingAuthoringLocalized.qtr]
[76B5807540582EC4E7C5F3EB39EBFA5D] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreamingAuthoring.Resources\zh_CN.lproj\QuickTimeStreamingAuthoringLocalized.qtr]
[AEE0BABD7EADB9B3C986B4037DB6C984] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreamingAuthoring.Resources\zh_TW.lproj\QuickTimeStreamingAuthoringLocalized.qtr]
[7A29400B93A74BF55EA14E8164ABC788] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreamingExtras.qtx]
[DF23A1105BAEC613520113BB3A113E04] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreamingExtras.Resources\da.lproj\QuickTimeStreamingExtrasLocalized.qtr]
[0A12617D2172823D596FBAC6FC14CE95] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreamingExtras.Resources\de.lproj\QuickTimeStreamingExtrasLocalized.qtr]
[72CC40C530ABDCBD7623AB46C32CE0C0] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreamingExtras.Resources\en.lproj\QuickTimeStreamingExtrasLocalized.qtr]
[31A6ED1B31E6EAF489FAA572827DA789] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreamingExtras.Resources\es.lproj\QuickTimeStreamingExtrasLocalized.qtr]
[9CF238ADFEC1EA52260D292586720DA5] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreamingExtras.Resources\fi.lproj\QuickTimeStreamingExtrasLocalized.qtr]
[3D94D609F0F11BCC64039E24706D770D] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreamingExtras.Resources\fr.lproj\QuickTimeStreamingExtrasLocalized.qtr]
[B4F57E532CA11503104CBD58A238FEB2] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreamingExtras.Resources\it.lproj\QuickTimeStreamingExtrasLocalized.qtr]
[B40266DAA9D2DB9A565014D0F8668A2C] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreamingExtras.Resources\ja.lproj\QuickTimeStreamingExtrasLocalized.qtr]
[3F65FD6EC1BD55E3588374D6B5845459] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreamingExtras.Resources\ko.lproj\QuickTimeStreamingExtrasLocalized.qtr]
[3CB2E1B2976DDE6F6CB180399310055C] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreamingExtras.Resources\nb.lproj\QuickTimeStreamingExtrasLocalized.qtr]
[8F8C0EC2618EEFC174AD0DC1961A4138] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreamingExtras.Resources\nl.lproj\QuickTimeStreamingExtrasLocalized.qtr]
[6C37BDA91D49860E38155A4F8B5DE9C0] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreamingExtras.Resources\pl.lproj\QuickTimeStreamingExtrasLocalized.qtr]
[BE623294C3B2EADD3DC743B3FA3A576C] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreamingExtras.Resources\pt.lproj\QuickTimeStreamingExtrasLocalized.qtr]
[2F53A240B1BBD2A0DDD61E02D6CFCFFB] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreamingExtras.Resources\pt_PT.lproj\QuickTimeStreamingExtrasLocalized.qtr]
[5B7B4087C46D1282A3F27B0F30749D9E] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreamingExtras.Resources\QuickTimeStreamingExtras.qtr]
[D0BEBA434887ECB7194EE7D97C12B2F1] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreamingExtras.Resources\ru.lproj\QuickTimeStreamingExtrasLocalized.qtr]
[A148CA761467326E6337C5038A19465C] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreamingExtras.Resources\sv.lproj\QuickTimeStreamingExtrasLocalized.qtr]
[6FF09B0CB94DA3695A29BFA3488E20BE] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreamingExtras.Resources\zh_CN.lproj\QuickTimeStreamingExtrasLocalized.qtr]
[F8B569D757E2A5E27E87DC76BE8460F8] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeStreamingExtras.Resources\zh_TW.lproj\QuickTimeStreamingExtrasLocalized.qtr]
[2817F8942718778B2C7A299A0DF1DE26] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeUpdateHelper.exe]
[B68B7F53F6C7D4705E7F0B8FD4A57E9A] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeVR.qtx]
[36AC157E6D51192DB628EEEFA8D3C485] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeVR.Resources\da.lproj\QuickTimeVRLocalized.qtr]
[201B72BC68AC3F5B39600508C85C37CB] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeVR.Resources\de.lproj\QuickTimeVRLocalized.qtr]
[4324214F40F673104B67FD0D24CD1C9D] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeVR.Resources\en.lproj\QuickTimeVRLocalized.qtr]
[8DDCFDE9E7816344E17E812D32B4E857] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeVR.Resources\es.lproj\QuickTimeVRLocalized.qtr]
[292A01E323F65AEB9287D560BC23A9B4] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeVR.Resources\fi.lproj\QuickTimeVRLocalized.qtr]
[C3F9ABCA8F780BC8BFD1F033EBE13142] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeVR.Resources\fr.lproj\QuickTimeVRLocalized.qtr]
[8C081F75634342D6C155CD5B1FEC83F4] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeVR.Resources\it.lproj\QuickTimeVRLocalized.qtr]
[07D2523B0DE788612C0C534CB990DFDC] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeVR.Resources\ja.lproj\QuickTimeVRLocalized.qtr]
[C3302771D0DEE42A94B0F0F11C2374D2] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeVR.Resources\ko.lproj\QuickTimeVRLocalized.qtr]
[858A181BC66D132C5BF52CF9D80CD5DE] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeVR.Resources\nb.lproj\QuickTimeVRLocalized.qtr]
[00E42E6A5D933C786101503A5282433F] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeVR.Resources\nl.lproj\QuickTimeVRLocalized.qtr]
[5FCCC673D8E70169F5D7AFE754A91C42] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeVR.Resources\pl.lproj\QuickTimeVRLocalized.qtr]
[EFCA34B6AA9398EB6D15B02178E09AD9] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeVR.Resources\pt.lproj\QuickTimeVRLocalized.qtr]
[A7AA7B9C136A62823D6B792972BD78E4] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeVR.Resources\pt_PT.lproj\QuickTimeVRLocalized.qtr]
[0E0925825FDD020560E14BC2BD39B660] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeVR.Resources\QuickTimeVR.qtr]
[986EB9FBCE1B08B043A545996B139ED7] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeVR.Resources\ru.lproj\QuickTimeVRLocalized.qtr]
[DC3390A92B0B36A9AD2081F9A136273A] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeVR.Resources\sv.lproj\QuickTimeVRLocalized.qtr]
[64E0D8F997A6AC401D481D514E307EA3] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeVR.Resources\zh_CN.lproj\QuickTimeVRLocalized.qtr]
[D5A830E69CB85FAFE5C2A7C83D96E964] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeVR.Resources\zh_TW.lproj\QuickTimeVRLocalized.qtr]
[A8046764E94202A255091BE4AD0DC6A0] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeVRAuthoring.qtx]
[EACADF8010AA422A85EBD90B158866B6] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeVRAuthoring.Resources\da.lproj\QuickTimeVRAuthoringLocalized.qtr]
[D03B384BE1DB2BF063E33D2867638153] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeVRAuthoring.Resources\de.lproj\QuickTimeVRAuthoringLocalized.qtr]
[48402A1AEE1B7D068788220F38B7F4BC] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeVRAuthoring.Resources\en.lproj\QuickTimeVRAuthoringLocalized.qtr]
[9202F72048AE3CFC2F8736204BA7578E] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeVRAuthoring.Resources\es.lproj\QuickTimeVRAuthoringLocalized.qtr]
[3A64927155D8130EDC1755F9AD6C5B29] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeVRAuthoring.Resources\fi.lproj\QuickTimeVRAuthoringLocalized.qtr]
[CA96680918FF89EFB2104D22263701CB] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeVRAuthoring.Resources\fr.lproj\QuickTimeVRAuthoringLocalized.qtr]
[2872FF0542C21CCA4339BC605BBA0F68] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeVRAuthoring.Resources\it.lproj\QuickTimeVRAuthoringLocalized.qtr]
[0593E13136B249E7180F5BA77D2F7370] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeVRAuthoring.Resources\ja.lproj\QuickTimeVRAuthoringLocalized.qtr]
[D51601F95871578FBEF226C9CCE647D2] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeVRAuthoring.Resources\ko.lproj\QuickTimeVRAuthoringLocalized.qtr]
[941C854676E95D3DAF82E3D552BED699] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeVRAuthoring.Resources\nb.lproj\QuickTimeVRAuthoringLocalized.qtr]
[881E3D12AD0C73D3A24FF6840F594407] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeVRAuthoring.Resources\nl.lproj\QuickTimeVRAuthoringLocalized.qtr]
[5FFF074DA8F96B18FF60710123A8357B] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeVRAuthoring.Resources\pl.lproj\QuickTimeVRAuthoringLocalized.qtr]
[91F2DBE3A1014814C7A98D4B25760889] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeVRAuthoring.Resources\pt.lproj\QuickTimeVRAuthoringLocalized.qtr]
[9A38842A46BAF3B3E7831B4983FC0FD3] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeVRAuthoring.Resources\pt_PT.lproj\QuickTimeVRAuthoringLocalized.qtr]
[EE8584265C9FA9B39EE44BDD6B9842BC] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeVRAuthoring.Resources\QuickTimeVRAuthoring.qtr]
[147054CFE4947442AB240E908B86BD42] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeVRAuthoring.Resources\ru.lproj\QuickTimeVRAuthoringLocalized.qtr]
[22433CB1F69075BA2704EF990F3B8A99] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeVRAuthoring.Resources\sv.lproj\QuickTimeVRAuthoringLocalized.qtr]
[7236C791B34E53000893668B09940109] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeVRAuthoring.Resources\zh_CN.lproj\QuickTimeVRAuthoringLocalized.qtr]
[B92BDB992F5702294D3FD349C2F4E760] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeVRAuthoring.Resources\zh_TW.lproj\QuickTimeVRAuthoringLocalized.qtr]
[EA20B3CCC015108F165178FD13A08E34] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeWebHelper.qtx]
[CCEFC86BE7332057C3A7FDA1272FF68F] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeWebHelper.Resources\da.lproj\QuickTimeWebHelperLocalized.dll]
[AA343CA34CFF993D727450F03C5109AF] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeWebHelper.Resources\da.lproj\QuickTimeWebHelperLocalized.qtr]
[FE6210D160332FFCE71E8B0777019FA8] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeWebHelper.Resources\de.lproj\QuickTimeWebHelperLocalized.dll]
[3FD17BEC09284B4843E79163BCB9CFF2] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeWebHelper.Resources\de.lproj\QuickTimeWebHelperLocalized.qtr]
[9589B4EF77E49F0EC0BB8EFCFFC9EF9F] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeWebHelper.Resources\en.lproj\QuickTimeWebHelperLocalized.dll]
[E7D67BCEB1130F4BCDBE912A00C3E397] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeWebHelper.Resources\en.lproj\QuickTimeWebHelperLocalized.qtr]
[AF79676B6E9005774804FCD6B868B168] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeWebHelper.Resources\es.lproj\QuickTimeWebHelperLocalized.dll]
[3D55CC03C8A9BAB9312D053C29F03270] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeWebHelper.Resources\es.lproj\QuickTimeWebHelperLocalized.qtr]
[67CDCA17032C8ABA2F9D7BCFFE9288E8] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeWebHelper.Resources\fi.lproj\QuickTimeWebHelperLocalized.dll]
[3A68ABB88445C6A944A9AA25A8509D5E] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeWebHelper.Resources\fi.lproj\QuickTimeWebHelperLocalized.qtr]
[28658CF17BFAB9670DAF426C2D4469C4] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeWebHelper.Resources\fr.lproj\QuickTimeWebHelperLocalized.dll]
[146872A9A916A32F25AA4CD376E8F223] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeWebHelper.Resources\fr.lproj\QuickTimeWebHelperLocalized.qtr]
[2F643B7AFD5948CF7C2BDF4967381ECA] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeWebHelper.Resources\it.lproj\QuickTimeWebHelperLocalized.dll]
[751277883CD37D0E5D6501C5886E85C2] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeWebHelper.Resources\it.lproj\QuickTimeWebHelperLocalized.qtr]
[AD9B1308AC2FEE4323A18362F31F3DCE] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeWebHelper.Resources\ja.lproj\QuickTimeWebHelperLocalized.dll]
[3EBE505E41EB2918B7DE855706D3BDE6] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeWebHelper.Resources\ja.lproj\QuickTimeWebHelperLocalized.qtr]
[9A32638B8E33D2E2C337266C1CB42841] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeWebHelper.Resources\ko.lproj\QuickTimeWebHelperLocalized.dll]
[1307065D620448ACD11C46FB88FD1F17] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeWebHelper.Resources\ko.lproj\QuickTimeWebHelperLocalized.qtr]
[2E653CE1A10EB2EDC0582050FBDDA1FB] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeWebHelper.Resources\nb.lproj\QuickTimeWebHelperLocalized.dll]
[3EF71582A14AE2169A691D1F6B65D1F2] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeWebHelper.Resources\nb.lproj\QuickTimeWebHelperLocalized.qtr]
[102CC42C6486BEA89FAF8CBE29394C3F] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeWebHelper.Resources\nl.lproj\QuickTimeWebHelperLocalized.dll]
[CF7247480894779CBACA018552FA49D6] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeWebHelper.Resources\nl.lproj\QuickTimeWebHelperLocalized.qtr]
[6DFC740EF4E2C93B317A3F9046A5917E] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeWebHelper.Resources\pl.lproj\QuickTimeWebHelperLocalized.dll]
[F94E44D07F0BBFD6A82D68BD02AE78E8] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeWebHelper.Resources\pl.lproj\QuickTimeWebHelperLocalized.qtr]
[8B135BEF4B49ABB02315680660B0772E] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeWebHelper.Resources\pt.lproj\QuickTimeWebHelperLocalized.dll]
[1C5CDEED69B56A961229A2A91F4349EB] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeWebHelper.Resources\pt.lproj\QuickTimeWebHelperLocalized.qtr]
[119B6816FBB4FDBF451AF9F452C38E95] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeWebHelper.Resources\pt_PT.lproj\QuickTimeWebHelperLocalized.dll]
[B10DEE54D113F82512F68DE8EE6A21C8] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeWebHelper.Resources\pt_PT.lproj\QuickTimeWebHelperLocalized.qtr]
[04F01B3C2CE5EDDC116C37193FBA316F] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeWebHelper.Resources\QuickTimeWebHelper.dll]
[E4B8801B8907E14E9CBABE004C694058] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeWebHelper.Resources\QuickTimeWebHelper.qtr]
[93A4411D558FE995D18F43C1F587E63C] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeWebHelper.Resources\ru.lproj\QuickTimeWebHelperLocalized.dll]
[00D59BFEF36D658025D471772F9306FE] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeWebHelper.Resources\ru.lproj\QuickTimeWebHelperLocalized.qtr]
[0B1E5C9A847EC28CB578AE6BE83900B6] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeWebHelper.Resources\sv.lproj\QuickTimeWebHelperLocalized.dll]
[B6D22B663338DEF0EA2C2EF2C8F3843B] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeWebHelper.Resources\sv.lproj\QuickTimeWebHelperLocalized.qtr]
[4D3489FE2B39A5255502AAEDA48AFC32] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeWebHelper.Resources\zh_CN.lproj\QuickTimeWebHelperLocalized.dll]
[FED2DFB86877CBFB09A7F0B0607EA052] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeWebHelper.Resources\zh_CN.lproj\QuickTimeWebHelperLocalized.qtr]
[902E8B2AD73CBD7EB593130632A20CBB] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeWebHelper.Resources\zh_TW.lproj\QuickTimeWebHelperLocalized.dll]
[4B774A54F585E511E6F50FE5C9AC2A32] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTSystem\QuickTimeWebHelper.Resources\zh_TW.lproj\QuickTimeWebHelperLocalized.qtr]
[AF43C4F7F3C8BC95DAD95024F96CDC4A] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTTask.exe]
[B8348C0E8E0AF0233071DB1733464D49] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QTUIPanelControl.dll]
[E55A71C0D3C0FD764622A065A7ED3EEC] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QuickTime Read Me.htm]
[04FF6C4C5CAE412A4705BF4DF2558E75] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QuickTimePlayer.dll]
[2A0DD9961ED969EB10781DBC57EBA9CC] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QuickTimePlayer.exe]
[A0901D2A8D789BC11B2F54B72FB90561] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QuickTimePlayer.Resources\da.lproj\QuickTimePlayerLocalized.qtr]
[BE24AA6CAD73E7A53C7A108470DDF23E] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QuickTimePlayer.Resources\de.lproj\QuickTimePlayerLocalized.qtr]
[50759052B6FA1A58DCDF4407D6B84B64] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QuickTimePlayer.Resources\en.lproj\QuickTimePlayerLocalized.qtr]
[AF2FA9117D8C95658F655DD1B29AD0FB] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QuickTimePlayer.Resources\es.lproj\QuickTimePlayerLocalized.qtr]
[BCB1BB52237F72D0E4159298724E9F7B] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QuickTimePlayer.Resources\fi.lproj\QuickTimePlayerLocalized.qtr]
[9868C2C7093A444094450EE9D474B8CA] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QuickTimePlayer.Resources\fr.lproj\QuickTimePlayerLocalized.qtr]
[FD60F19F6EA773435F189D6D78A4AD0F] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QuickTimePlayer.Resources\it.lproj\QuickTimePlayerLocalized.qtr]
[2B1E42992EB15C28382F8D7F9B2DCB0D] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QuickTimePlayer.Resources\ja.lproj\QuickTimePlayerLocalized.qtr]
[788F6B90EC8A094BF4483C5513FAA4C4] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QuickTimePlayer.Resources\ko.lproj\QuickTimePlayerLocalized.qtr]
[8207DAE75EC11505F4AE05F6DE4BA2A8] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QuickTimePlayer.Resources\nb.lproj\QuickTimePlayerLocalized.qtr]
[CA48F0CF8E1ABC914F653DD74418D307] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QuickTimePlayer.Resources\nl.lproj\QuickTimePlayerLocalized.qtr]
[4B2BC9E55A33AEE1AA0E50133300C817] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QuickTimePlayer.Resources\pl.lproj\QuickTimePlayerLocalized.qtr]
[A96E13553B3E091D114A21801535BC8A] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QuickTimePlayer.Resources\pt.lproj\QuickTimePlayerLocalized.qtr]
[0841AC69E870C68C9E5A010BC9D25D16] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QuickTimePlayer.Resources\pt_PT.lproj\QuickTimePlayerLocalized.qtr]
[D3E52B6A9C539E33B38EDEF6FA210835] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QuickTimePlayer.Resources\QuickTimePlayer.qtr]
[1B1FF5DFA27616254B0F69A1ACB1E769] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QuickTimePlayer.Resources\ru.lproj\QuickTimePlayerLocalized.qtr]
[311E2AE0B9067D75FBCA56AA3DA51A27] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QuickTimePlayer.Resources\sv.lproj\QuickTimePlayerLocalized.qtr]
[4B076686FEE76A1EFFF8ED8129C2AE5A] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QuickTimePlayer.Resources\zh_CN.lproj\QuickTimePlayerLocalized.qtr]
[14A54D93825C4AE84E8DC4AD7D76E548] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\QuickTimePlayer.Resources\zh_TW.lproj\QuickTimePlayerLocalized.qtr]
[0E242AB2D25193687BFFDF12813E6E67] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\Sample.mov]
[B08CB105ADB1D45AE19FA3E5FE7B60EC] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Quarantine\QuickTime\Sample.qtif]
[D8660ECAFC9D64E1F0833966681CEC53] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Tempo.txt]
[2A3E96342FBFFE4B76EB5CAFDAA5A81D] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\Trace.txt]
[5316A34253C70300FC681A320F2C2FB8] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\ZHPCleaner-[R]-13052016-15_55_53.txt]
[A1BAB646E7529074FB18283DA57FE072] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\ZHPCleaner-[S]-13052016-15_52_59.txt]
[30699A87FCF508360DFDB64CD3A45BE0] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\ZHPCleaner.txt]
[7B5E1D30E89E0EF1C86FECB977131673] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\ZHPCleaner_Quarantine.txt]
[E18B9B4249D3572B3192D076C281B9CF] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\ZHPCleaner_Tempo.txt]
[742CDC54AC3C03AD5900F4BC8D986DB1] Trojan.FPL.Rotbrow.vb [c:\users\kevin\appdata\roaming\ZHP\ZHPQ_Files.txt]
[23C5BDDA952081F5BA011EF4454491DF] Adware.FPL.Gen.sm [c:\users\kevin\appdata\local\Google\Chrome\User Data\Default\Extensions\fopdddcinljmpmioaklghcalngfhbaen\1.0.0_0\_metadata\computed_hashes.json]
[8189596165A76D5BA22297FA4412C49D] Adware.FPL.Gen.sm [c:\users\kevin\appdata\local\Google\Chrome\User Data\Default\Extensions\fopdddcinljmpmioaklghcalngfhbaen\1.0.0_0\_metadata\verified_contents.json]
[9AE57FEA7CAA796EFB263F8969BE021F] Adware.FMPL.Gen.sm [C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69\x64\DIFxInstallLog.txt]
[4110DEF8799F6B2F3F20B0BEDFF36ECB] Adware.FMPL.Gen.sm [C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7\GEARDIFx.exe]
[1A2E5109C2BB5C68D499E17B83ACB73A] Adware.FMPL.Gen.sm [C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7\x64\DIFxAPI.dll]
[6595C42F53F31EE39592D8D2F98F6E26] Adware.FMPL.Gen.sm [C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7\x64\DifXInst64.exe]
[BD2B231BE3BDA0A1AF02F1CD6108D0F6] Adware.FMPL.Gen.sm [C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7\x64\DIFxInstallLog.txt]
[498BD12B38B549887D9E856EB734354E] Adware.FMPL.Gen.sm [C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7\x64\GEARAspi.dll]
[5C7B8533FEC9E65368D14965EC4C9D8A] Adware.FMPL.Gen.sm [C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7\x64\GEARAspi64.dll]
[834C766FE011C0090FB4DAF6279A8DF4] Adware.FMPL.Gen.sm [C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7\x64\GEARAspiWDM.inf]
[C7E5945B9C608A2A23E97425A5B91415] Adware.FMPL.Gen.sm [C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7\x64\gearaspiwdmx64.cat]
[8E98D21EE06192492A5671A6144D092F] Adware.FMPL.Gen.sm [C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7\x64\x64\GEARAspiWDM.sys]
[0F8CD66B9E2128E1C216EA58055A8A86] Malware.Win32.Gen.cs0 [C:\Program Files (x86)\GOG.com\Might and Magic VII\mm7.exe]
[DB54AF040C7B02583E2A71371EB9BFBA] Malware.Win32.Gen.cs0 [C:\ProgramData\Microsoft\Windows\GameExplorer\{18CC4299-B5EE-4ECC-AA72-510D1940A393}\PlayTasks\0\Play.lnk]
[DB54AF040C7B02583E2A71371EB9BFBA] Malware.Win32.Gen.cs0 [C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com\Might and Magic VII - For Blood and Honor\Might and Magic VII - For Blood and Honor.lnk]
[DD36648948084EF332F6FFDD665135D9] Malware.Win32.Gen.cs0 [C:\Users\Kevin\AppData\Local\Microsoft\Windows\GameExplorer\{18CC4299-B5EE-4ECC-AA72-510D1940A393}\PlayTasks\0\Play.lnk]
[B7BC90CDEA5F00BD606A846EC04331FD] Malware.Win32.Gen.cc!s1 [C:\Users\Kevin\AppData\Roaming\ZHP\ZHPCleaner.exe]
[FF6723A33A3C612AF542BEB0DC1B236D] Malware.Win32.Gen.cs0 [C:\Users\Kevin\Desktop\Misc\Might and Magic VII - For Blood and Honor.lnk]
[C3499345BB8F53F0DECD4D4EAD343E94] Malware.Win32.Gen.cc!s1 [C:\Users\Kevin\Desktop\ZHPCleaner.lnk]
[F794E988B53804105BF915ABDAFAFCD7] Malware.Win32.Gen.sm [C:\Users\Kevin\Downloads\MiniToolBox.exe]
[B7BC90CDEA5F00BD606A846EC04331FD] Malware.Win32.Gen.cc!s1 [C:\Users\Kevin\Downloads\ZHPCleaner.exe]
[D68AC04395E612BFA6C822714278D029] Malware.Win32.Gen.sm!s1 [C:\Users\Kevin\My Games\Oblivion\JMROMP V015\10-Textures-Items\VAs_Better_Gold-1826.exe]


#10 InadequateInfirmity

InadequateInfirmity

    I Gots Me A Certified Edumication


  • Banned
  • 5,180 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:12:16 PM

Posted 18 May 2016 - 05:36 PM

Can you post a fresh minitoolbox log please. :)



#11 Beru

Beru
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:10:16 AM

Posted 18 May 2016 - 11:59 PM

I believe I have found the problem/solution. The culprit was my fan which I described in my original post. It is not working and probably needs to be replaced. In turn my computer was overheating. I am using a floor fan to temporarily provide life support and it has seemed to fix the issues I was having. 

 

InadequateInfirmity thanks for helping me through all the scans. I thought for sure I was being bogged down by something malicious. You definitely helped me get to the solution and hopefully my computer is cleaner and more efficient because of it. 

#12 InadequateInfirmity

InadequateInfirmity

    I Gots Me A Certified Edumication


  • Banned
  • 5,180 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:12:16 PM

Posted 22 May 2016 - 04:13 PM

:) 






0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users