hacked by godzilla

Section d'analyse de rapports et de désinfection : malwares en tous genre et autres indésirables. Demandes de nettoyage uniquement. Prise en charge restreinte : équipe spécialisée.

Modérateur: Modérateurs

Règles du forum :arrow: Les désinfections sont prises en charge par un groupe spécifique, tout le monde ne peut pas intervenir pour désinfecter les machines (règles).
:arrow: Les procédures sont sur-mesure, ne faites pas la même chose chez vous (explications).
:arrow: Un topic par machine, chacun crée le sien. ;)

hacked by godzilla

Messagepar buffaloboy » 22 Oct 2009 16:53

bonjour tt le monde
voila j'ai le meme probleme j'ai donc suivi la procedur cité si-dessus mais voila ca n'a marche qu'un temps le message est vite revenu!!

voila le rapport merci de me dire si vous pouvez m'aidez

"Malwarebytes' Anti-Malware 1.41
Version de la base de données: 3011
Windows 5.1.2600 Service Pack 3

22/10/2009 17:13:06
mbam-log-2009-10-22 (17-13-06).txt

Type de recherche: Examen rapide
Eléments examinés: 87949
Temps écoulé: 2 minute(s), 59 second(s)

Processus mémoire infecté(s): 1
Module(s) mémoire infecté(s): 1
Clé(s) du Registre infectée(s): 0
Valeur(s) du Registre infectée(s): 1
Elément(s) de données du Registre infecté(s): 6
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 4

Processus mémoire infecté(s):
C:\Documents and Settings\tibo\Local Settings\Temp\wineiurl.exe (Trojan.Downloader) -> Failed to unload process.

Module(s) mémoire infecté(s):
C:\WINDOWS\system32\wmdrtc32.dll (Virus.Sality) -> Delete on reboot.

Clé(s) du Registre infectée(s):
(Aucun élément nuisible détecté)

Valeur(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\ms32dll (VBS.Godzilla) -> Quarantined and deleted successfully.

Elément(s) de données du Registre infecté(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\UpdatesDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\DisableRegistryTools (Hijack.Regedit) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\DisableTaskMgr (Hijack.TaskManager) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Main\Window Title (Hijacked.WindowTitle) -> Bad: (Hacked by Godzilla) Good: (Internet Explorer) -> Quarantined and deleted successfully.

Dossier(s) infecté(s):
(Aucun élément nuisible détecté)

Fichier(s) infecté(s):
C:\WINDOWS\system32\wmdrtc32.dll (Virus.Sality) -> Delete on reboot.
C:\Documents and Settings\tibo\Local Settings\Temp\wineiurl.exe (Trojan.Downloader) -> Delete on reboot.
C:\WINDOWS\system32\wmdrtc32.dl_ (Virus.Sality) -> Quarantined and deleted successfully.
C:\WINDOWS\MS32DLL.dll.vbs (VBS.Godzilla) -> Delete on reboot."

Par avance merci
buffaloboy
 
Messages: 32
Inscription: 22 Oct 2009 16:48

Re: hacked by godzilla

Messagepar Falkra » 22 Oct 2009 19:25

Bonjour,

il ne faut pas appliquer les procédures d'autres sujets pour ta machine, c 'est dangereux, et pas souhaité !
J'ai splitté pour que ton sujet soit autonome.

Poste un nouveau rapport HIjackThis stp.

Qu'est-ce que c'est que ce pseudo ? Contacte moi par MP pour en prendre un plus correct.
Avatar de l’utilisateur
Falkra
Admin libellules.ch
Admin libellules.ch
 
Messages: 24424
Inscription: 30 Jan 2005 13:44
Localisation: 127.0.0.1

Re: hacked by godzilla

Messagepar buffaloboy » 07 Nov 2009 01:16

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 15:53:02, on 06/11/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16640)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Spyware Terminator\sp_rsser.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\ibgpjm.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\winnjln.exe
E:\eMule\eMule.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\winkeimhf.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\fbir.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\winwgfkj.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\winooyl.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\wingyfgd.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\winkbfqat.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\winwqoykr.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\windefj.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\vkujm.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\eqyp.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\wincndhnr.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\winxjccxa.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\wintlttu.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\winiwbaj.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\winbkdhg.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\winfpolo.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\weskn.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\winakclu.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\wwpi.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\wintarvqb.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\winfryc.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\winbvat.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\winmqlcc.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\uqdrb.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\winfggxq.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\wincreew.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\winydlbqt.exe
G:\programmes\Winamp\winamp.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\winmlii.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\winfrmift.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\ypohcb.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\winygpw.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\winwmxcew.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\windlry.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\winvjtdcu.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\wintaiu.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\winydwrw.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\ptydgw.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\winxtkfhk.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\winmoluf.exe
C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\khnt.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\winaymms.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\winlvhc.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\hyxl.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\winqavc.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\wingfteb.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\winebfpnl.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\rcou.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\winmvgooc.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\winejcdmp.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\winuhbd.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\hqubjy.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\vxwiw.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\winklnd.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\lqlyex.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\wintdco.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\qabfa.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\winodqk.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\winloynfj.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\veewby.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\windxxaeq.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\wetmuo.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\fhfba.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\fidoc.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\kknukl.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\winijig.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\mtcq.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\higrqq.exe
C:\DOCUME~1\tibo\LOCALS~1\Temp\winfiobm.exe
C:\Program Files\PokerStars\PokerStars.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\PROGRA~1\Crawler\Toolbar\CToolbar.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.crawler.com/search/dispatche ... p=aus&qkw=%s&tbid=60341
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,SearchAssistant = http://www.crawler.com/search/ie.aspx?tb_id=60341
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,CustomizeSearch = http://dnl.crawler.com/support/sa_custo ... TbId=60341
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.crawler.com/search/ie.aspx?tb_id=60341
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = http://dnl.crawler.com/support/sa_custo ... TbId=60341
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Hacked by Godzilla
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: (no name) - {1CB20BF0-BBAE-40A7-93F4-6435FF3D0411} - C:\PROGRA~1\Crawler\Toolbar\ctbr.dll
O2 - BHO: (no name) - {1CB20BF0-BBAE-40A7-93F4-6435FF3D0411} - C:\PROGRA~1\Crawler\Toolbar\ctbr.dll
O3 - Toolbar: Barre d'outils &Crawler - {4B3803EA-5230-4DC3-A7FC-33638F3D3542} - C:\PROGRA~1\Crawler\Toolbar\ctbr.dll
O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [Malwarebytes Anti-Malware (reboot)] "C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [SpywareTerminatorUpdate] "C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe"
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\RunOnce: [nltide_2] regsvr32 /s /n /i:U shell32 (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-20\..\RunOnce: [nltide_2] regsvr32 /s /n /i:U shell32 (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [nltide_2] regsvr32 /s /n /i:U shell32 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [nltide_2] regsvr32 /s /n /i:U shell32 (User 'Default user')
O7 - HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableRegedit=1
O8 - Extra context menu item: Crawler Search - tbr:iemenu
O9 - Extra button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files\PokerStars\PokerStarsUpdate.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: tbr - {4D25FB7A-8902-4291-960E-9ADA051CFBBF} - C:\PROGRA~1\Crawler\Toolbar\ctbr.dll
O23 - Service: Spyware Terminator Realtime Shield Service (sp_rssrv) - Crawler.com - C:\Program Files\Spyware Terminator\sp_rsser.exe

--
End of file - 8420 bytes


merci
buffaloboy
 
Messages: 32
Inscription: 22 Oct 2009 16:48

Re: hacked by godzilla

Messagepar Falkra » 07 Nov 2009 08:50

Il y a du nouveau, et plein de choses qui ne devraient pas être là.

Le logiciel qui suit n'est à utiliser que prescrit par un helper qualifié et formé à l'outil.
Ne pas utiliser en dehors de ce cas de figure ou seul : dangereux.

Télécharge combofix.exe de sUBs et sauvegarde le sur ton bureau (et pas ailleurs).
  • Assure toi que tous les programmes sont fermés avant de commencer.
  • Désactive l'antivirus, sinon combofix va te mettre un message (sinon, dis ok au message).
  • Double-clique combofix.exe afin de l'exécuter.
  • Clique sur "Oui" au message de Limitation de Garantie qui s'affiche.
  • Si on te propose de redémarrer parc qu'un rootkit a été trouvé, fais-le.
  • On va te proposer de télécharger et installer la console de récupération, clique sur "Oui" au message, autorise le téléchargement dans ton firewall si demandé, puis accepte le message de contrat utilisateur final.
  • Le bureau disparaît, c'est normal, et il va revenir.
  • Ne ferme pas la fenêtre qui s'ouvre, tu te retrouverais avec un bureau vide.
  • Lorsque l'analyse sera terminée, un rapport apparaîtra.
  • Copie-colle ce rapport dans ta prochaine réponse.
    Le rapport se trouve dans : C:\Combofix.txt (si jamais).
Avatar de l’utilisateur
Falkra
Admin libellules.ch
Admin libellules.ch
 
Messages: 24424
Inscription: 30 Jan 2005 13:44
Localisation: 127.0.0.1

Re: hacked by godzilla

Messagepar buffaloboy » 07 Nov 2009 17:30

ComboFix 09-11-06.03 - tibo 07/11/2009 17:18.1.1 - NTFSx86
Microsoft Windows XP Professionnel 5.1.2600.3.1252.33.1036.18.767.540 [GMT 1:00]
Lancé depuis: c:\documents and settings\tibo\Bureau\ComboFix.exe
.

(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.

C:\Autorun.inf
C:\MS32DLL.dll.vbs
c:\windows\system32\wmdrtc32.dl_
c:\windows\system32\wmdrtc32.dll
D:\autorun.inf
D:\MS32DLL.dll.vbs
E:\autorun.inf
E:\MS32DLL.dll.vbs
F:\Autorun.inf
F:\MS32DLL.dll.vbs
G:\autorun.inf
G:\MS32DLL.dll.vbs

.
((((((((((((((((((((((((((((( Fichiers créés du 2009-10-07 au 2009-11-07 ))))))))))))))))))))))))))))))))))))
.

2009-11-06 14:52 . 2009-11-06 14:52 -------- d-----w- c:\program files\Trend Micro
2009-10-31 10:16 . 2009-10-31 10:16 -------- d-----w- c:\documents and settings\tibo\Application Data\dvdcss
2009-10-23 23:22 . 2009-10-23 23:22 -------- d-----w- c:\program files\Crawler
2009-10-22 21:03 . 2009-10-22 21:10 -------- d-----w- c:\program files\QuickMediaConverter
2009-10-22 16:37 . 2009-10-23 23:40 40960 ----a-w- c:\windows\system32\wmdrtc32.dll.ren
2009-10-22 15:07 . 2009-10-22 15:07 -------- d-----w- c:\documents and settings\tibo\Application Data\Malwarebytes
2009-10-22 15:07 . 2009-10-22 15:07 -------- d-----w- c:\documents and settings\All Users\Application Data\Malwarebytes
2009-10-15 14:02 . 2009-10-15 14:02 -------- d-----w- c:\documents and settings\tibo\Local Settings\Application Data\WMTools Downloaded Files
2009-10-15 14:02 . 2009-10-15 14:02 -------- d-----w- c:\documents and settings\tibo\Application Data\Ahead
2009-10-15 13:42 . 2003-03-29 14:45 89184 ----a-w- c:\windows\system32\drivers\imagedrv.sys
2009-10-15 13:41 . 2001-07-06 16:24 283920 ----a-w- c:\windows\system32\ImagXpr5.dll
2009-10-15 13:41 . 2001-07-06 12:41 569344 ----a-w- c:\windows\system32\imagr5.dll
2009-10-15 13:41 . 2001-07-06 10:44 544768 ----a-w- c:\windows\system32\imagx5.dll
2009-10-15 13:41 . 2001-06-26 06:15 38912 ----a-w- c:\windows\system32\picn20.dll
2009-10-15 13:41 . 2009-10-15 13:41 -------- d-----w- c:\program files\Fichiers communs\Ahead
2009-10-15 13:41 . 2001-07-09 09:50 253952 ----a-w- c:\windows\system32\NeroCheck.exe
2009-10-15 13:41 . 2009-10-15 13:41 -------- d-----w- c:\program files\Ahead
2009-10-11 00:59 . 2009-11-06 23:56 -------- d-----w- c:\program files\PokerStars
2009-10-10 14:51 . 2008-04-13 09:47 25856 -c--a-w- c:\windows\system32\dllcache\usbprint.sys
2009-10-10 14:51 . 2008-04-13 09:47 25856 ----a-w- c:\windows\system32\drivers\usbprint.sys
2009-10-10 14:51 . 2008-04-13 09:45 32128 -c--a-w- c:\windows\system32\dllcache\usbccgp.sys
2009-10-10 14:51 . 2008-04-13 09:45 32128 ----a-w- c:\windows\system32\drivers\usbccgp.sys
2009-10-10 14:23 . 2009-11-07 16:25 5477 ----a-w- c:\windows\system32\drivers\njjlmn.sys
2009-10-10 14:20 . 2008-04-13 09:45 2944 -c--a-w- c:\windows\system32\dllcache\drmkaud.sys
2009-10-10 14:20 . 2008-04-13 09:45 2944 ----a-w- c:\windows\system32\drivers\drmkaud.sys
2009-10-10 14:20 . 2008-04-13 09:39 4992 -c--a-w- c:\windows\system32\dllcache\mspqm.sys
2009-10-10 14:20 . 2008-04-13 09:39 4992 ----a-w- c:\windows\system32\drivers\MSPQM.sys
2009-10-10 14:20 . 2008-04-13 10:17 83072 -c--a-w- c:\windows\system32\dllcache\wdmaud.sys
2009-10-10 14:20 . 2008-04-13 10:17 83072 ----a-w- c:\windows\system32\drivers\wdmaud.sys
2009-10-10 14:20 . 2008-04-13 09:45 172416 -c--a-w- c:\windows\system32\dllcache\kmixer.sys
2009-10-10 14:20 . 2008-04-13 09:45 172416 ----a-w- c:\windows\system32\drivers\kmixer.sys

.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-10-29 12:05 . 2001-08-28 12:00 48856 ----a-w- c:\windows\system32\perfc00C.dat
2009-10-29 12:05 . 2001-08-28 12:00 368076 ----a-w- c:\windows\system32\perfh00C.dat
2009-10-28 16:17 . 2009-10-09 22:32 -------- d-----w- c:\documents and settings\tibo\Application Data\Winamp
2009-10-09 23:48 . 2009-10-09 22:00 86331 ----a-w- c:\windows\pchealth\helpctr\OfflineCache\index.dat
2009-10-09 23:21 . 2009-10-09 23:00 -------- d-----w- c:\documents and settings\tibo\Application Data\vlc
2009-10-09 22:53 . 2009-10-09 22:53 -------- d-----w- c:\documents and settings\tibo\Application Data\Media Player Classic
2009-10-09 22:52 . 2009-10-09 22:21 -------- d-----w- c:\program files\K-Lite Codec Pack
2009-10-09 22:34 . 2009-10-09 22:25 12912 ----a-w- c:\documents and settings\tibo\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2009-10-09 22:33 . 2009-10-09 22:33 -------- d-----w- c:\program files\Microsoft
2009-10-09 22:33 . 2009-10-09 22:32 -------- d-----w- c:\program files\Windows Live
2009-10-09 22:33 . 2009-10-09 22:33 -------- d-----w- c:\program files\Windows Live SkyDrive
2009-10-09 22:31 . 2009-10-09 22:31 -------- d-----w- c:\program files\Fichiers communs\Windows Live
2009-10-09 22:27 . 2009-10-09 22:26 -------- d-----w- c:\program files\Wanadoo
2009-10-09 22:23 . 2009-10-09 22:23 -------- d-----w- c:\program files\Securitoo
2009-10-09 22:22 . 2009-10-09 22:22 -------- d-----w- c:\program files\Inventel
2009-10-09 22:03 . 2009-10-09 22:03 -------- d-----w- c:\program files\microsoft frontpage
2009-10-09 21:59 . 2009-10-09 21:59 -------- d-----w- c:\program files\Services en ligne
2009-10-09 21:57 . 2009-10-09 21:57 21892 ----a-w- c:\windows\system32\emptyregdb.dat
2009-10-09 21:57 . 2009-10-09 21:57 -------- d-----w- c:\program files\Windows Media Connect 2
.

------- Sigcheck -------

[-] 2008-05-09 . 33578A738C564B4F84D906EFD91025E5 . 1571840 . . [5.1.2600.5512] . . c:\windows\system32\sfcfiles.dll
.
((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2008-04-13 15360]
"MSMSGS"="c:\program files\Messenger\msmsgs.exe" [2008-04-13 1900032]
"msnmsgr"="c:\program files\Windows Live\Messenger\msnmsgr.exe" [2009-07-26 3957584]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NeroCheck"="c:\windows\system32\NeroCheck.exe" [2001-07-09 253952]
"combofix"="c:\combofix\CF23396.exe" [2009-11-07 401408]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-13 15360]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"nltide_2"="shell32" [X]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableLUA"= 0 (0x0)

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system]
"DisableRegistryTools"= 1 (0x1)
"DisableTaskMgr"= 1 (0x1)

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk *\0c:\docume~1\ALLUSE~1\APPLIC~1\SPYWAR~1\sp_rsdel.exe \??\c:\docume~1\ALLUSE~1\APPLIC~1\SPYWAR~1\sp_rsdel.dat

[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusOverride"=dword:00000001
"FirewallOverride"=dword:00000001
"UacDisableNotify"=dword:00000001
"AntiVirusDisableNotify"=dword:00000001
"FirewallDisableNotify"=dword:00000001
"UpdatesDisableNotify"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc]
"AntiVirusOverride"=dword:00000001
"AntiVirusDisableNotify"=dword:00000001
"FirewallDisableNotify"=dword:00000001
"FirewallOverride"=dword:00000001
"UpdatesDisableNotify"=dword:00000001
"UacDisableNotify"=dword:00000001

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"e:\\utiles\\winamp5541_full_emusic-7plus_fr-fr.exe"=
"c:\\WINDOWS\\system32\\wscntfy.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\wlcsdk.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"e:\\eMule\\eMule.exe"=
"g:\\programmes\\Winamp\\winamp.exe"=
"e:\\utiles\\Nero 6.0.0.11 Full FR + Keygen + adon+ All plugin\\Nero60011.exe"=
"c:\\WINDOWS\\Explorer.EXE"=
"c:\\WINDOWS\\system32\\NeroCheck.exe"=
"c:\\Program Files\\Messenger\\msmsgs.exe"=
"c:\\WINDOWS\\system32\\ctfmon.exe"=
"c:\\WINDOWS\\system32\\userinit.exe"=
"c:\\Program Files\\PokerStars\\PokerStarsUpdate.exe"=
"c:\\Program Files\\Windows Live\\Contacts\\wlcomm.exe"=
"c:\\WINDOWS\\system32\\netsh.exe"=
"c:\\WINDOWS\\system32\\cmd.exe"=

R2 NdisFileServices32;NdisFileServices32;c:\windows\system32\drivers\njjlmn.sys [10/10/2009 15:23 5477]
R3 abp470n5;abp470n5;\??\c:\windows\system32\drivers\fipjkj.sys --> c:\windows\system32\drivers\fipjkj.sys [?]

--- Autres Services/Pilotes en mémoire ---

*NewlyCreated* - MBR
*Deregistered* - mbr
.
.
------- Examen supplémentaire -------
.
uStart Page = hxxp://www.google.fr/
uWindow Title = Hacked by Godzilla
uSearch Bar = hxxp://www.crawler.com/search/dispatche ... p=aus&qkw=%s&tbid=60341
mSearchAssistant = hxxp://www.crawler.com/search/ie.aspx?tb_id=60341
mCustomizeSearch = hxxp://dnl.crawler.com/support/sa_custo ... TbId=60341
IE: Crawler Search - tbr:iemenu
Handler: tbr - {4D25FB7A-8902-4291-960E-9ADA051CFBBF} - c:\progra~1\Crawler\Toolbar\ctbr.dll
.
- - - - ORPHELINS SUPPRIMES - - - -

HKLM-Run-Malwarebytes Anti-Malware (reboot) - c:\program files\Malwarebytes' Anti-Malware\mbam.exe



**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-11-07 17:24
Windows 5.1.2600 Service Pack 3 NTFS

Recherche de processus cachés ...

Recherche d'éléments en démarrage automatique cachés ...

Recherche de fichiers cachés ...

Scan terminé avec succès
Fichiers cachés: 0

**************************************************************************
.
Heure de fin: 2009-11-07 17:28 - La machine a redémarré
ComboFix-quarantined-files.txt 2009-11-07 16:28

Avant-CF: 6 627 299 328 octets libres
Après-CF: 6 604 947 456 octets libres

WindowsXP-KB310994-SP2-Pro-BootDisk-FRA.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professionnel" /noexecute=optin /fastdetect

- - End Of File - - 27030427ED2D0967597FC6629CFFE8C9



voila le raport de combofix!
apres je fai koi ?
buffaloboy
 
Messages: 32
Inscription: 22 Oct 2009 16:48

Re: hacked by godzilla

Messagepar Falkra » 07 Nov 2009 17:37

Rends toi sur ce lien : Virus Total
  • Clique sur le bouton Parcourir...
  • Copie colle ce chemin dans la boite de dialogue qui s'ouvre, ou parcours tes dossiers jusque à ce fichier, si tu le trouves :
    C:\windows\system32\njjlmn.sys
  • Clique sur Envoyer le fichier, et si VirusTotal dit que le fichier a déjà été analysé, clique sur le bouton Reanalyse le fichier maintenant.
  • Laisse le site travailler tant que "Situation actuelle : en cours d'analyse" est affiché.
  • Il est possible que le fichier soit mis en file d'attente en raison d'un grand nombre de demandes d'analyses. Dans ce cas, il te faudra patienter sans réactualiser la page.
  • Lorsque l'analyse est terminée ("Situation actuelle: terminé"), clique sur Formaté (en haut à gauche)
  • Une nouvelle fenêtre de ton navigateur va apparaître
  • Clique alors sur cette image : Image
  • Fais un clic droit sur la page, et choisis Sélectionner tout, puis copier
  • Enfin colle le résultat dans ta prochaine réponse.
    NB : Peu importe le résultat, il est important de me communiquer le résultat de toute l'analyse.
Il est possible que tes outils de sécurité réagissent à l'envoi du fichier, auquel cas il faudra leur faire ignorer les alertes.

Tu peux avoir besoin d'afficher les fichiers cachés et masqués du système, temporairement.


---------------------

  • Télécharge et installe regscanner.
  • Lance-le depuis le raccourci du menu démarrer ou du bureau.
    Ca ouvre une fenêtre "Registry scan options".
  • Dans "Find string" entre "Godzilla" sans les guillemets.
  • En bas à droite dans "Scan the following base keys" sélectionne-les toutes, tout doit être grisé.
  • Clique sur ok.
  • Ca cherche.
  • Une fois la recherche finie, fais CTRL+A pour tout sélectionner, puis CTRL+S pour sauvegarder.
  • Sauvegarde un fichier texte sur ton bureau, avec le nom de ton choix.
  • Poste le contenu de ce fichier texte dans ta prochaine réponse stp.
Avatar de l’utilisateur
Falkra
Admin libellules.ch
Admin libellules.ch
 
Messages: 24424
Inscription: 30 Jan 2005 13:44
Localisation: 127.0.0.1

Re: hacked by godzilla

Messagepar buffaloboy » 10 Nov 2009 18:47

bonsoir

voila ca fai plusieur fois que j'essaye mais je n'arrive pas a allé sur ton site il cherche mais ne trouve pa

que dois-je fair ??
merci
buffaloboy
 
Messages: 32
Inscription: 22 Oct 2009 16:48

Re: hacked by godzilla

Messagepar Falkra » 10 Nov 2009 22:47

Tu n'arrives pas à aller sur VirusTotal ?
Comment se manifeste cette impossibilité ? As-tu essayé avec plusieurs navigateurs ?
Avatar de l’utilisateur
Falkra
Admin libellules.ch
Admin libellules.ch
 
Messages: 24424
Inscription: 30 Jan 2005 13:44
Localisation: 127.0.0.1

Re: hacked by godzilla

Messagepar buffaloboy » 10 Nov 2009 23:29

j'ai essayé avec internet explorer et firefox et le resultat et le même pour les deux il cherche mais ne trouve rien et ne marque rien du tout
buffaloboy
 
Messages: 32
Inscription: 22 Oct 2009 16:48

Re: hacked by godzilla

Messagepar Falkra » 10 Nov 2009 23:31

Ok, on va voir plus en détail après. Passe à l'étape suivante : regscanner.
Avatar de l’utilisateur
Falkra
Admin libellules.ch
Admin libellules.ch
 
Messages: 24424
Inscription: 30 Jan 2005 13:44
Localisation: 127.0.0.1

Re: hacked by godzilla

Messagepar buffaloboy » 11 Nov 2009 16:34

bonjour

==================================================
Registry Key : HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Favorites
Name : Order
Type : REG_BINARY
Data : 08 00 00 00 02 00 00 00 50 03 00 00 01 00 00 00 06 00 00 00 44 00 00 00 00 00 00 00 36 00 31 00 00 00 00 00 49 3B 3D B1 10 00 4C 69 65 6E 73 00 22 00 03 00 04 00 EF BE 49 3B 34 B1 6A 3B 31 68 14 00 00 00 4C 00 69 00 65 00 6E 00 73 00 00 00 14 00 00 00 00 00 00 00 64 00 00 00 01 00 00 00 56 00 31 00 00 00 00 00 49 3B 3D B1 10 00 53 49 54 45 53 57 7E 31 00 00 3E 00 03 00 04 00 EF BE 49 3B 3D B1 6A 3B 31 68 14 00 00 00 53 00 69 00 74 00 65 00 73 00 20 00 57 00 65 00 62 00 20 00 4D 00 69 00 63 00 72 00 6F 00 73 00 6F 00 66 00 74 00 00 00 18 00 00 00 00 00 00 00 B8 00 00 00 04 00 00 00 AA 00 32 00 74 0A 00 00 6A 3B 07 8E 20 00 48 41 43 4B 45 44 7E 31 2E 55 52 4C 00 00 8E 00 03 00 04 00 EF BE 67 3B C4 7A 6A 3B 07 8E 14 00 00 00 68 00 61 00 63 00 6B 00 65 00 64 00 20 00 62 00 79 00 20 00 67 00 6F 00 64 00 7A 00 69 00 6C 00 6C 00 61 00 20 00 20 00 44 00 E9 00 73 00 69 00 6E 00 66 00 65 00 63 00 74 00 69 00 6F 00 6E 00 73 00 20 00 65 00 74 00 20 00 64 00 65 00 6D 00 61 00 6E 00 64 00 65 00 73 00 20 00 64 00 27 00 61 00 6E 00 61 00 6C 00 79 00 73 00 65 00 2E 00 75 00 72 00 6C 00 00 00 1C 00 00 00 00 00 00 00 76 00 00 00 05 00 00 00 68 00 32 00 B8 00 00 00 6A 3B 33 68 20 00 4D 45 53 46 49 4C 7E 31 2E 55 52 4C 00 00 4C 00 03 00 04 00 EF BE 6A 3B 33 68 6A 3B 04 7C 14 00 00 00 4D 00 65 00 73 00 20 00 66 00 69 00 6C 00 6D 00 73 00 2C 00 20 00 6D 00 65 00 73 00 20 00 70 00 72 00 6F 00 6A 00 65 00 74 00 73 00 2E 00 75 00 72 00 6C 00 00 00 1C 00 00 00 00 00 00 00 A2 00 00 00 02 00 00 00 94 00 32 00 37 01 00 00 52 3B 80 71 20 00 50 49 43 45 53 43 7E 31 2E 55 52 4C 00 00 78 00 03 00 04 00 EF BE 52 3B 80 71 6A 3B 04 7C 14 00 00 00 50 00 69 00 E8 00 63 00 65 00 73 00 20 00 63 00 6F 00 6D 00 6D 00 E9 00 6D 00 6F 00 72 00 61 00 74 00 69 00 76 00 65 00 73 00 20 00 64 00 65 00 20 00 32 00 20 00 65 00 75 00 72 00 6F 00 73 00 20 00 2D 00 20 00 57 00 69 00 6B 00 69 00 70 00 E9 00 64 00 69 00 61 00 2E 00 75 00 72 00 6C 00 00 00 1C 00 00 00 00 00 00 00 CC 00 00 00 03 00 00 00 BE 00 32 00 B0 0A 00 00 67 3B 7A 00 20 00 53 55 50 50 52 49 7E 31 2E 55 52 4C 00 00 A2 00 03 00 04 00 EF BE 56 3B 0B 79 6A 3B 04 7C 14 00 00 00 73 00 75 00 70 00 70 00 72 00 69 00 6D 00 65 00 72 00 20 00 68 00 61 00 63 00 6B 00 65 00 64 00 20 00 62 00 79 00 20 00 67 00 6F 00 64 00 7A 00 69 00 6C 00 6C 00 61 00 20 00 20 00 44 00 E9 00 73 00 69 00 6E 00 66 00 65 00 63 00 74 00 69 00 6F 00 6E 00 73 00 20 00 65 00 74 00 20 00 64 00 65 00 6D 00 61 00 6E 00 64 00 65 00 73 00 20 00 64 00 27 00 61 00 6E 00 61 00 6C 00 79 00 73 00 65 00 2E 00 75 00 72 00 6C 00 00 00 1C 00 00 00 00 00 00 00
Key Modified Time : 10/11/2009 23:10:01
Data Length : 856
==================================================

==================================================
Registry Key : HKU\S-1-5-21-789336058-926492609-1644491937-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Favorites
Name : Order
Type : REG_BINARY
Data : 08 00 00 00 02 00 00 00 50 03 00 00 01 00 00 00 06 00 00 00 44 00 00 00 00 00 00 00 36 00 31 00 00 00 00 00 49 3B 3D B1 10 00 4C 69 65 6E 73 00 22 00 03 00 04 00 EF BE 49 3B 34 B1 6A 3B 31 68 14 00 00 00 4C 00 69 00 65 00 6E 00 73 00 00 00 14 00 00 00 00 00 00 00 64 00 00 00 01 00 00 00 56 00 31 00 00 00 00 00 49 3B 3D B1 10 00 53 49 54 45 53 57 7E 31 00 00 3E 00 03 00 04 00 EF BE 49 3B 3D B1 6A 3B 31 68 14 00 00 00 53 00 69 00 74 00 65 00 73 00 20 00 57 00 65 00 62 00 20 00 4D 00 69 00 63 00 72 00 6F 00 73 00 6F 00 66 00 74 00 00 00 18 00 00 00 00 00 00 00 B8 00 00 00 04 00 00 00 AA 00 32 00 74 0A 00 00 6A 3B 07 8E 20 00 48 41 43 4B 45 44 7E 31 2E 55 52 4C 00 00 8E 00 03 00 04 00 EF BE 67 3B C4 7A 6A 3B 07 8E 14 00 00 00 68 00 61 00 63 00 6B 00 65 00 64 00 20 00 62 00 79 00 20 00 67 00 6F 00 64 00 7A 00 69 00 6C 00 6C 00 61 00 20 00 20 00 44 00 E9 00 73 00 69 00 6E 00 66 00 65 00 63 00 74 00 69 00 6F 00 6E 00 73 00 20 00 65 00 74 00 20 00 64 00 65 00 6D 00 61 00 6E 00 64 00 65 00 73 00 20 00 64 00 27 00 61 00 6E 00 61 00 6C 00 79 00 73 00 65 00 2E 00 75 00 72 00 6C 00 00 00 1C 00 00 00 00 00 00 00 76 00 00 00 05 00 00 00 68 00 32 00 B8 00 00 00 6A 3B 33 68 20 00 4D 45 53 46 49 4C 7E 31 2E 55 52 4C 00 00 4C 00 03 00 04 00 EF BE 6A 3B 33 68 6A 3B 04 7C 14 00 00 00 4D 00 65 00 73 00 20 00 66 00 69 00 6C 00 6D 00 73 00 2C 00 20 00 6D 00 65 00 73 00 20 00 70 00 72 00 6F 00 6A 00 65 00 74 00 73 00 2E 00 75 00 72 00 6C 00 00 00 1C 00 00 00 00 00 00 00 A2 00 00 00 02 00 00 00 94 00 32 00 37 01 00 00 52 3B 80 71 20 00 50 49 43 45 53 43 7E 31 2E 55 52 4C 00 00 78 00 03 00 04 00 EF BE 52 3B 80 71 6A 3B 04 7C 14 00 00 00 50 00 69 00 E8 00 63 00 65 00 73 00 20 00 63 00 6F 00 6D 00 6D 00 E9 00 6D 00 6F 00 72 00 61 00 74 00 69 00 76 00 65 00 73 00 20 00 64 00 65 00 20 00 32 00 20 00 65 00 75 00 72 00 6F 00 73 00 20 00 2D 00 20 00 57 00 69 00 6B 00 69 00 70 00 E9 00 64 00 69 00 61 00 2E 00 75 00 72 00 6C 00 00 00 1C 00 00 00 00 00 00 00 CC 00 00 00 03 00 00 00 BE 00 32 00 B0 0A 00 00 67 3B 7A 00 20 00 53 55 50 50 52 49 7E 31 2E 55 52 4C 00 00 A2 00 03 00 04 00 EF BE 56 3B 0B 79 6A 3B 04 7C 14 00 00 00 73 00 75 00 70 00 70 00 72 00 69 00 6D 00 65 00 72 00 20 00 68 00 61 00 63 00 6B 00 65 00 64 00 20 00 62 00 79 00 20 00 67 00 6F 00 64 00 7A 00 69 00 6C 00 6C 00 61 00 20 00 20 00 44 00 E9 00 73 00 69 00 6E 00 66 00 65 00 63 00 74 00 69 00 6F 00 6E 00 73 00 20 00 65 00 74 00 20 00 64 00 65 00 6D 00 61 00 6E 00 64 00 65 00 73 00 20 00 64 00 27 00 61 00 6E 00 61 00 6C 00 79 00 73 00 65 00 2E 00 75 00 72 00 6C 00 00 00 1C 00 00 00 00 00 00 00
Key Modified Time : 10/11/2009 23:10:01
Data Length : 856
==================================================



voila

j'aurai une autre question j'ai mon gestionnaire des taches qui ne veut plus apparaitre il me marque (le gestionnaire des taches a été désactivé par votre administrateur)
sait tu de quoi ca pourrai provenir ???

merci
buffaloboy
 
Messages: 32
Inscription: 22 Oct 2009 16:48

Re: hacked by godzilla

Messagepar Falkra » 11 Nov 2009 16:45

On va régler ça. Ta machine est infectée par des cracks, il faut savoir que la plupart des cracks (presque tous) sont infectés désormais.

Tu avais une infection sur les clés USB, elle a pu se propager à d'autres machines, et il y a une autre grosse infection, venue par le même biais.
Si tu continues côté cracks, tu vas réinfecter la machine dans moins d'une semaine.

Désinstalle si encore dans ajout/suppression de programmes la toolbar de Crawler.

Branche tes clés USB et autres supports amovibles (disques durs extenres, etc) avant ce qui suit. Inutile de les ouvrir ou d'aller dedans, laisse les branchés pendant la durée du travail de combofix.

Ce qui suit n'est que pour cette machine, et cette machine seulement.
Ne surtout pas utiliser sur une autre machine : dangereux.


  • Télécharge le fichier CFscript.txt depuis ce site :
    http://senduit.com/cc3b94
  • Place-le sur le bureau, près de l'icône de combofix.
  • Fais un glisser/déposer de ce fichier CFscript sur le fichier ComboFix.exe comme sur cet exemple
Image
  • Patiente le temps du scan. Le bureau va disparaître à plusieurs reprises: c'est normal ! Ne touche à rien tant que le scan n'est pas terminé.
  • Une fois le scan achevé, un rapport va s'afficher: poste son contenu.
  • Si le fichier ne s'ouvre pas, il se trouve ici > C:\ComboFix.txt
Avatar de l’utilisateur
Falkra
Admin libellules.ch
Admin libellules.ch
 
Messages: 24424
Inscription: 30 Jan 2005 13:44
Localisation: 127.0.0.1

Re: hacked by godzilla

Messagepar buffaloboy » 12 Nov 2009 00:16

bonsoir voila le rapport



ComboFix 09-11-11.02 - tibo 12/11/2009 0:06.2.1 - NTFSx86
Microsoft Windows XP Professionnel 5.1.2600.3.1252.33.1036.18.767.573 [GMT 1:00]
Lancé depuis: c:\documents and settings\tibo\Bureau\ComboFix.exe
Commutateurs utilisés :: c:\documents and settings\tibo\Bureau\CFscript.txt
* Un nouveau point de restauration a été créé
.

(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\windows\system32\wmdrtc32.dl_
c:\windows\system32\wmdrtc32.dll

.
((((((((((((((((((((((((((((((((((((((( Pilotes/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.

-------\Legacy_ABP470N5
-------\Legacy_NDISFILESERVICES32
-------\Service_abp470n5
-------\Service_NdisFileServices32


((((((((((((((((((((((((((((( Fichiers créés du 2009-10-11 au 2009-11-11 ))))))))))))))))))))))))))))))))))))
.

2009-11-11 15:30 . 2009-11-11 15:30 -------- d-----w- c:\program files\NirSoft
2009-11-10 22:25 . 2009-11-10 22:25 -------- d-----w- c:\documents and settings\tibo\Application Data\Talkback
2009-11-10 22:25 . 2009-11-10 22:25 0 ----a-w- c:\windows\nsreg.dat
2009-11-10 22:25 . 2009-11-10 22:25 -------- d-----w- c:\documents and settings\tibo\Local Settings\Application Data\Mozilla
2009-11-06 14:52 . 2009-11-06 14:52 -------- d-----w- c:\program files\Trend Micro
2009-10-31 10:16 . 2009-10-31 10:16 -------- d-----w- c:\documents and settings\tibo\Application Data\dvdcss
2009-10-23 23:22 . 2009-11-11 20:31 -------- d-----w- c:\program files\Crawler
2009-10-22 21:03 . 2009-11-10 10:50 -------- d-----w- c:\program files\QuickMediaConverter
2009-10-22 16:37 . 2009-10-23 23:40 40960 ----a-w- c:\windows\system32\wmdrtc32.dll.ren
2009-10-22 15:07 . 2009-10-22 15:07 -------- d-----w- c:\documents and settings\tibo\Application Data\Malwarebytes
2009-10-22 15:07 . 2009-10-22 15:07 -------- d-----w- c:\documents and settings\All Users\Application Data\Malwarebytes
2009-10-15 14:02 . 2009-10-15 14:02 -------- d-----w- c:\documents and settings\tibo\Local Settings\Application Data\WMTools Downloaded Files
2009-10-15 14:02 . 2009-10-15 14:02 -------- d-----w- c:\documents and settings\tibo\Application Data\Ahead
2009-10-15 13:42 . 2003-03-29 14:45 89184 ----a-w- c:\windows\system32\drivers\imagedrv.sys
2009-10-15 13:41 . 2001-07-06 16:24 283920 ----a-w- c:\windows\system32\ImagXpr5.dll
2009-10-15 13:41 . 2001-07-06 12:41 569344 ----a-w- c:\windows\system32\imagr5.dll
2009-10-15 13:41 . 2001-07-06 10:44 544768 ----a-w- c:\windows\system32\imagx5.dll
2009-10-15 13:41 . 2001-06-26 06:15 38912 ----a-w- c:\windows\system32\picn20.dll
2009-10-15 13:41 . 2009-10-15 13:41 -------- d-----w- c:\program files\Fichiers communs\Ahead
2009-10-15 13:41 . 2001-07-09 09:50 253952 ----a-w- c:\windows\system32\NeroCheck.exe
2009-10-15 13:41 . 2009-10-15 13:41 -------- d-----w- c:\program files\Ahead

.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-11-11 23:13 . 2009-10-10 14:23 5477 ----a-w- c:\windows\system32\drivers\njjlmn.sys
2009-11-10 21:50 . 2009-10-11 00:59 -------- d-----w- c:\program files\PokerStars
2009-10-29 12:05 . 2001-08-28 12:00 48856 ----a-w- c:\windows\system32\perfc00C.dat
2009-10-29 12:05 . 2001-08-28 12:00 368076 ----a-w- c:\windows\system32\perfh00C.dat
2009-10-28 16:17 . 2009-10-09 22:32 -------- d-----w- c:\documents and settings\tibo\Application Data\Winamp
2009-10-09 23:48 . 2009-10-09 22:00 86331 ----a-w- c:\windows\pchealth\helpctr\OfflineCache\index.dat
2009-10-09 23:21 . 2009-10-09 23:00 -------- d-----w- c:\documents and settings\tibo\Application Data\vlc
2009-10-09 22:53 . 2009-10-09 22:53 -------- d-----w- c:\documents and settings\tibo\Application Data\Media Player Classic
2009-10-09 22:52 . 2009-10-09 22:21 -------- d-----w- c:\program files\K-Lite Codec Pack
2009-10-09 22:34 . 2009-10-09 22:25 12912 ----a-w- c:\documents and settings\tibo\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2009-10-09 22:33 . 2009-10-09 22:33 -------- d-----w- c:\program files\Microsoft
2009-10-09 22:33 . 2009-10-09 22:32 -------- d-----w- c:\program files\Windows Live
2009-10-09 22:33 . 2009-10-09 22:33 -------- d-----w- c:\program files\Windows Live SkyDrive
2009-10-09 22:31 . 2009-10-09 22:31 -------- d-----w- c:\program files\Fichiers communs\Windows Live
2009-10-09 22:27 . 2009-10-09 22:26 -------- d-----w- c:\program files\Wanadoo
2009-10-09 22:23 . 2009-10-09 22:23 -------- d-----w- c:\program files\Securitoo
2009-10-09 22:22 . 2009-10-09 22:22 -------- d-----w- c:\program files\Inventel
2009-10-09 22:03 . 2009-10-09 22:03 -------- d-----w- c:\program files\microsoft frontpage
2009-10-09 21:59 . 2009-10-09 21:59 -------- d-----w- c:\program files\Services en ligne
2009-10-09 21:57 . 2009-10-09 21:57 21892 ----a-w- c:\windows\system32\emptyregdb.dat
2009-10-09 21:57 . 2009-10-09 21:57 -------- d-----w- c:\program files\Windows Media Connect 2
2008-12-17 23:04 . 2009-11-10 22:24 67688 ----a-w- c:\program files\mozilla firefox\components\jar50.dll
2008-12-17 23:04 . 2009-11-10 22:24 54368 ----a-w- c:\program files\mozilla firefox\components\jsd3250.dll
2008-12-17 23:04 . 2009-11-10 22:24 34944 ----a-w- c:\program files\mozilla firefox\components\myspell.dll
2008-12-17 23:04 . 2009-11-10 22:24 46712 ----a-w- c:\program files\mozilla firefox\components\spellchk.dll
2008-12-17 23:04 . 2009-11-10 22:24 172136 ----a-w- c:\program files\mozilla firefox\components\xpinstal.dll
.

------- Sigcheck -------

[-] 2008-05-09 . 33578A738C564B4F84D906EFD91025E5 . 1571840 . . [5.1.2600.5512] . . c:\windows\system32\sfcfiles.dll
.
((((((((((((((((((((((((((((( SnapShot@2009-11-07_16.25.06 )))))))))))))))))))))))))))))))))))))))))
.
+ 2009-11-11 23:11 . 2009-11-11 23:11 16384 c:\windows\Temp\Perflib_Perfdata_644.dat
+ 2009-11-11 23:05 . 2009-11-11 23:05 16384 c:\windows\Temp\Perflib_Perfdata_258.dat
.
((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"MSMSGS"="c:\program files\Messenger\msmsgs.exe" [2008-04-13 1900032]
"msnmsgr"="c:\program files\Windows Live\Messenger\msnmsgr.exe" [2009-07-26 3957584]
"ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2008-04-13 15360]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NeroCheck"="c:\windows\system32\NeroCheck.exe" [2001-07-09 253952]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-13 15360]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"nltide_2"="shell32" [X]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableLUA"= 0 (0x0)

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system]
"DisableTaskMgr"= 1 (0x1)
"DisableRegistryTools"= 1 (0x1)

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk *\0c:\docume~1\ALLUSE~1\APPLIC~1\SPYWAR~1\sp_rsdel.exe \??\c:\docume~1\ALLUSE~1\APPLIC~1\SPYWAR~1\sp_rsdel.dat

[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusOverride"=dword:00000001
"FirewallOverride"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc]
"AntiVirusOverride"=dword:00000001
"FirewallOverride"=dword:00000001
"AntiVirusDisableNotify"=dword:00000001
"FirewallDisableNotify"=dword:00000001
"UpdatesDisableNotify"=dword:00000001
"UacDisableNotify"=dword:00000001

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"e:\\utiles\\winamp5541_full_emusic-7plus_fr-fr.exe"=
"c:\\WINDOWS\\system32\\wscntfy.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\wlcsdk.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"e:\\eMule\\eMule.exe"=
"g:\\programmes\\Winamp\\winamp.exe"=
"e:\\utiles\\Nero 6.0.0.11 Full FR + Keygen + adon+ All plugin\\Nero60011.exe"=
"c:\\WINDOWS\\system32\\NeroCheck.exe"=
"c:\\Program Files\\Messenger\\msmsgs.exe"=
"c:\\Program Files\\PokerStars\\PokerStarsUpdate.exe"=
"c:\\Program Files\\Windows Live\\Contacts\\wlcomm.exe"=
"c:\\WINDOWS\\system32\\netsh.exe"=
"c:\\WINDOWS\\system32\\cmd.exe"=


--- Autres Services/Pilotes en mémoire ---

*Deregistered* - mbr
.
.
------- Examen supplémentaire -------
.
uStart Page = hxxp://www.google.fr/
FF - ProfilePath - c:\documents and settings\tibo\Application Data\Mozilla\Firefox\Profiles\21vgznsa.default\
FF - prefs.js: browser.search.selectedEngine - Crawler Search
FF - prefs.js: keyword.URL - hxxp://www.crawler.com/search/dispatche ... 60341&qkw=
FF - component: c:\program files\Mozilla Firefox\components\xpinstal.dll
FF - component: c:\program files\Mozilla Firefox\extensions\talkback@mozilla.org\components\qfaservices.dll
.

**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-11-12 00:11
Windows 5.1.2600 Service Pack 3 NTFS

Recherche de processus cachés ...

Recherche d'éléments en démarrage automatique cachés ...

Recherche de fichiers cachés ...

Scan terminé avec succès
Fichiers cachés: 0

**************************************************************************
.
--------------------- DLLs chargées dans les processus actifs ---------------------

- - - - - - - > 'explorer.exe'(3060)
c:\windows\system32\wmdrtc32.dll
c:\windows\system32\wpdshserviceobj.dll
c:\windows\system32\portabledevicetypes.dll
c:\windows\system32\portabledeviceapi.dll
c:\windows\system32\eappprxy.dll
.
------------------------ Autres processus actifs ------------------------
.
c:\program files\Windows Live\Contacts\wlcomm.exe
.
**************************************************************************
.
Heure de fin: 2009-11-11 0:14 - La machine a redémarré
ComboFix-quarantined-files.txt 2009-11-11 23:14
ComboFix2.txt 2009-11-07 16:28

Avant-CF: 6 924 980 224 octets libres
Après-CF: 6 902 972 416 octets libres

- - End Of File - - 2CA96E8DEFF47B4DC629BD2E56D033E3
buffaloboy
 
Messages: 32
Inscription: 22 Oct 2009 16:48

Re: hacked by godzilla

Messagepar Falkra » 12 Nov 2009 00:31

Tout ne passe pas, on va devoir chercher l'autre bestiole.

ESET Online Scanner c'est un scan en ligne, attention ça peut être long, je préviens car il se fait tard, du moins sur ce fuseau horaire.

Télécharge ESET Online Scanner sur ton Bureau en cliquant sur ce logo:
Image

  • Double-clique sur le fichier esetsmartinstaller_enu.exe présent sur ton Bureau pour installer le scanner. Attention: si tu disposes de Windows VISTA, clique droit sur esetsmartinstaller_enu.exe puis sélectionne "exécuter en tant qu'administrateur"
  • Accepte la licence en cochant la case "YES, i accept the terms of use", puis clique sur le bouton "Start"
  • Une fois le scanner installé, configure-le en décochant la case "Remove found threats" et en cochant la case "Scan archives"
    Image
  • Lance la recherche antivirale en cliquant sur le bouton "Start": l'outil se met à jour puis lance le scan: une barre de progression indique où en est la recherche
  • Quand le scan est terminé, si des virus ont été détectés, clique sur la ligne "List of found threats":
    Image
  • Une nouvelle fenêtre aparaît: clique sur "Export to text file" et enregistre le rapport sur ton Bureau en le nommant logESET.txt
  • Clique sur le bouton "Back" pour retourner à l'interface précédente, puis coche la case "Uninstall application on close"
    Image
  • Clique enfin sur le bouton "Finish" puis ferme la fenêtre du scanner
  • Ouvre le fichier logESET sur ton Bureau et copie-colle son contenu dans ta prochaine réponse
Avatar de l’utilisateur
Falkra
Admin libellules.ch
Admin libellules.ch
 
Messages: 24424
Inscription: 30 Jan 2005 13:44
Localisation: 127.0.0.1

Re: hacked by godzilla

Messagepar buffaloboy » 12 Nov 2009 17:34

je desespere le logiciel ne ce telecharge pas completement il bloque a 51% j'ai essaye avec internet explorer et firefox c'est la meme avec les deux et j'ai essayé sur le site directement c'est la meme que doit je fair
buffaloboy
 
Messages: 32
Inscription: 22 Oct 2009 16:48

Re: hacked by godzilla

Messagepar Falkra » 12 Nov 2009 21:11

Tu peux le télécharger depuis un autre PC et le transférer par clé USB ?
Avatar de l’utilisateur
Falkra
Admin libellules.ch
Admin libellules.ch
 
Messages: 24424
Inscription: 30 Jan 2005 13:44
Localisation: 127.0.0.1

Re: hacked by godzilla

Messagepar buffaloboy » 15 Nov 2009 09:24

C:\Documents and Settings\tibo\Bureau\ComboFix.exe a variant of Win32/Sality virus
C:\Documents and Settings\tibo\Bureau\esetsmartinstaller_enu.exe Win32/Sality.NAU virus
C:\Documents and Settings\tibo\Bureau\Firefox Setup 2.0.0.20.exe Win32/Sality.NAU virus
C:\Documents and Settings\tibo\Bureau\HJTInstall.exe Win32/Sality.NAU virus
C:\Documents and Settings\tibo\Bureau\regscanner_setup.exe Win32/Sality.NAU virus
C:\Documents and Settings\tibo\Local Settings\temp\bhbmf.exe probably a variant of Win32/TrojanDownloader.Sality.G trojan
C:\Documents and Settings\tibo\Local Settings\temp\ccajnr.exe probably a variant of Win32/TrojanDownloader.Sality.G trojan
C:\Documents and Settings\tibo\Local Settings\temp\DEL33.tmp Win32/Sality.NAM virus
C:\Documents and Settings\tibo\Local Settings\temp\dkxib.exe probably a variant of Win32/TrojanDownloader.Sality.G trojan
C:\Documents and Settings\tibo\Local Settings\temp\fdtep.exe probably a variant of Win32/TrojanDownloader.Sality.G trojan
C:\Documents and Settings\tibo\Local Settings\temp\fmuh.exe probably a variant of Win32/TrojanDownloader.Sality.G trojan
C:\Documents and Settings\tibo\Local Settings\temp\gcxk.exe probably a variant of Win32/TrojanDownloader.Sality.G trojan
C:\Documents and Settings\tibo\Local Settings\temp\gdtv.exe probably a variant of Win32/TrojanDownloader.Sality.G trojan
C:\Documents and Settings\tibo\Local Settings\temp\hshn.exe probably a variant of Win32/TrojanDownloader.Sality.G trojan
C:\Documents and Settings\tibo\Local Settings\temp\kmqe.exe probably a variant of Win32/TrojanDownloader.Sality.G trojan
C:\Documents and Settings\tibo\Local Settings\temp\lgbngl.exe probably a variant of Win32/TrojanDownloader.Sality.G trojan
C:\Documents and Settings\tibo\Local Settings\temp\nntxla.exe probably a variant of Win32/TrojanDownloader.Sality.G trojan
C:\Documents and Settings\tibo\Local Settings\temp\ocha.exe probably a variant of Win32/TrojanDownloader.Sality.G trojan
C:\Documents and Settings\tibo\Local Settings\temp\pjrgx.exe probably a variant of Win32/TrojanDownloader.Sality.G trojan
C:\Documents and Settings\tibo\Local Settings\temp\pnxh.exe probably a variant of Win32/TrojanDownloader.Sality.G trojan
C:\Documents and Settings\tibo\Local Settings\temp\winadeh.exe probably a variant of Win32/TrojanDownloader.Sality.G trojan
C:\Documents and Settings\tibo\Local Settings\temp\winaeckil.exe probably a variant of Win32/TrojanDownloader.Sality.G trojan
C:\Documents and Settings\tibo\Local Settings\temp\winahoy.exe probably a variant of Win32/TrojanDownloader.Sality.G trojan
C:\Documents and Settings\tibo\Local Settings\temp\winbmdapq.exe probably a variant of Win32/TrojanDownloader.Sality.G trojan
C:\Documents and Settings\tibo\Local Settings\temp\winbmygny.exe probably a variant of Win32/TrojanDownloader.Sality.G trojan
C:\Documents and Settings\tibo\Local Settings\temp\windjpj.exe probably a variant of Win32/TrojanDownloader.Sality.G trojan
C:\Documents and Settings\tibo\Local Settings\temp\windwqab.exe probably a variant of Win32/TrojanDownloader.Sality.G trojan
C:\Documents and Settings\tibo\Local Settings\temp\winegqbtj.exe probably a variant of Win32/TrojanDownloader.Sality.G trojan
C:\Documents and Settings\tibo\Local Settings\temp\winfgueas.exe probably a variant of Win32/TrojanDownloader.Sality.G trojan
C:\Documents and Settings\tibo\Local Settings\temp\winfkpxxt.exe probably a variant of Win32/TrojanDownloader.Sality.G trojan
C:\Documents and Settings\tibo\Local Settings\temp\wingnclql.exe Win32/Agent.HLU trojan
C:\Documents and Settings\tibo\Local Settings\temp\winhids.exe probably a variant of Win32/TrojanDownloader.Sality.G trojan
C:\Documents and Settings\tibo\Local Settings\temp\winhkrdaj.exe probably a variant of Win32/TrojanDownloader.Sality.G trojan
C:\Documents and Settings\tibo\Local Settings\temp\winjfnl.exe probably a variant of Win32/TrojanDownloader.Sality.G trojan
C:\Documents and Settings\tibo\Local Settings\temp\winjjifmj.exe probably a variant of Win32/TrojanDownloader.Sality.G trojan
C:\Documents and Settings\tibo\Local Settings\temp\winjtma.exe probably a variant of Win32/TrojanDownloader.Sality.G trojan
C:\Documents and Settings\tibo\Local Settings\temp\winknlcsy.exe probably a variant of Win32/TrojanDownloader.Sality.G trojan
C:\Documents and Settings\tibo\Local Settings\temp\winlkbu.exe probably a variant of Win32/TrojanDownloader.Sality.G trojan
C:\Documents and Settings\tibo\Local Settings\temp\winlrhpy.exe probably a variant of Win32/TrojanDownloader.Sality.G trojan
C:\Documents and Settings\tibo\Local Settings\temp\winlvyl.exe probably a variant of Win32/TrojanDownloader.Sality.G trojan
C:\Documents and Settings\tibo\Local Settings\temp\winmhmpe.exe probably a variant of Win32/TrojanDownloader.Sality.G trojan
C:\Documents and Settings\tibo\Local Settings\temp\winmnhdo.exe probably a variant of Win32/TrojanDownloader.Sality.G trojan
C:\Documents and Settings\tibo\Local Settings\temp\winmswg.exe probably a variant of Win32/TrojanDownloader.Sality.G trojan
C:\Documents and Settings\tibo\Local Settings\temp\winmxmvs.exe probably a variant of Win32/TrojanDownloader.Sality.G trojan
C:\Documents and Settings\tibo\Local Settings\temp\winnqvcww.exe probably a variant of Win32/TrojanDownloader.Sality.G trojan
C:\Documents and Settings\tibo\Local Settings\temp\winorigk.exe probably a variant of Win32/TrojanDownloader.Sality.G trojan
C:\Documents and Settings\tibo\Local Settings\temp\winqfrur.exe probably a variant of Win32/TrojanDownloader.Sality.G trojan
C:\Documents and Settings\tibo\Local Settings\temp\winrfxcsm.exe probably a variant of Win32/TrojanDownloader.Sality.G trojan
C:\Documents and Settings\tibo\Local Settings\temp\winrvhb.exe probably a variant of Win32/TrojanDownloader.Sality.G trojan
C:\Documents and Settings\tibo\Local Settings\temp\winrxkee.exe probably a variant of Win32/TrojanDownloader.Sality.G trojan
C:\Documents and Settings\tibo\Local Settings\temp\wintwnw.exe probably a variant of Win32/TrojanDownloader.Sality.G trojan
C:\Documents and Settings\tibo\Local Settings\temp\winuihu.exe probably a variant of Win32/TrojanDownloader.Sality.G trojan
C:\Documents and Settings\tibo\Local Settings\temp\winujigst.exe probably a variant of Win32/TrojanDownloader.Sality.G trojan
C:\Documents and Settings\tibo\Local Settings\temp\winuxues.exe probably a variant of Win32/TrojanDownloader.Sality.G trojan
C:\Documents and Settings\tibo\Local Settings\temp\winvpxnt.exe probably a variant of Win32/TrojanDownloader.Sality.G trojan
C:\Documents and Settings\tibo\Local Settings\temp\winvqlrmc.exe probably a variant of Win32/TrojanDownloader.Sality.G trojan
C:\Documents and Settings\tibo\Local Settings\temp\winwgomy.exe probably a variant of Win32/TrojanDownloader.Sality.G trojan
C:\Documents and Settings\tibo\Local Settings\temp\winxpykk.exe probably a variant of Win32/TrojanDownloader.Sality.G trojan
C:\Documents and Settings\tibo\Mes documents\winamp556_full_emusic-7plus_fr-fr.exe Win32/Sality.NAU virus
C:\Fichiers Internet temporaires\Content.IE5\JUARKKZJ\esetsmartinstaller_enu[1].exe Win32/Sality.NAM virus
C:\Program Files\Ahead\CoverDesigner\CoverDes.exe Win32/Sality.NAU virus
C:\Program Files\Ahead\ImageDrive\ImageDrive.exe Win32/Sality.NAU virus
C:\Program Files\Ahead\Nero\nero.exe Win32/Sality.NAU virus
C:\Program Files\Ahead\Nero\NeroCmd.exe Win32/Sality.NAU virus
C:\Program Files\Ahead\Nero\Uninstall\UNNero.exe Win32/Sality.NAU virus
C:\Program Files\Ahead\Nero BackItUp\BackItUp.exe Win32/Sality.NAU virus
C:\Program Files\Ahead\Nero BackItUp\NBJ.exe Win32/Sality.NAU virus
C:\Program Files\Ahead\Nero BackItUp\NBR.exe Win32/Sality.NAU virus
C:\Program Files\Ahead\Nero SoundTrax\SoundTrax.exe Win32/Sality.NAU virus
C:\Program Files\Ahead\Nero StartSmart\NeroStartSmart.exe Win32/Sality.NAU virus
C:\Program Files\Ahead\Nero Toolkit\CDSpeed.exe Win32/Sality.NAU virus
C:\Program Files\Ahead\Nero Toolkit\DriveSpeed.exe Win32/Sality.NAU virus
C:\Program Files\Ahead\Nero Toolkit\InfoTool.exe Win32/Sality.NAU virus
C:\Program Files\Ahead\Nero Wave Editor\WaveEdit.exe Win32/Sality.NAU virus
C:\Program Files\Ahead\WMPBurn\WMPBurn.exe Win32/Sality.NAU virus
C:\Program Files\Fichiers communs\Microsoft Shared\DW\DW20.EXE Win32/Sality.NAU virus
C:\Program Files\Fichiers communs\Microsoft Shared\DW\DWTRIG20.EXE Win32/Sality.NAU virus
C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe Win32/Sality.NAU virus
C:\Program Files\Inventel\Gateway\DWBFlash.exe Win32/Sality.NAM virus
C:\Program Files\Inventel\Gateway\RGWRepair.exe Win32/Sality.NAM virus
C:\Program Files\Inventel\Gateway\Drivers\InstallU.exe Win32/Sality.NAM virus
C:\Program Files\K-Lite Codec Pack\Filters\Haali\gdsmux.exe Win32/Sality.NAM virus
C:\Program Files\K-Lite Codec Pack\Media Player Classic\mplayerc.exe Win32/Sality.NAM virus
C:\Program Files\K-Lite Codec Pack\Tools\dsconfig.exe Win32/Sality.NAM virus
C:\Program Files\K-Lite Codec Pack\Tools\graphstudio.exe Win32/Sality.NAM virus
C:\Program Files\K-Lite Codec Pack\Tools\mediainfo.exe Win32/Sality.NAM virus
C:\Program Files\K-Lite Codec Pack\Tools\StatsReader.exe Win32/Sality.NAM virus
C:\Program Files\K-Lite Codec Pack\Tools\VobSubStrip.exe Win32/Sality.NAM virus
C:\Program Files\Messenger\msmsgs.exe Win32/Sality.NAM virus
C:\Program Files\Microsoft\Search Enhancement Pack\Choice Guard\CGuard.exe Win32/Sality.NAU virus
C:\Program Files\Mozilla Firefox\crashreporter.exe Win32/Sality.NAU virus
C:\Program Files\Mozilla Firefox\plugins\NPSWF32_FlashUtil.exe Win32/Sality.NAU virus
C:\Program Files\Mozilla Firefox\uninstall\helper.exe Win32/Sality.NAU virus
C:\Program Files\MSN\MSNCoreFiles\Install\msnsusii.exe Win32/Sality.NAM virus
C:\Program Files\MSN\MSNCoreFiles\Install\MSN9Components\Digcore.exe Win32/Sality.NAU virus
C:\Program Files\MSN\MSNCoreFiles\Install\MSN9Components\Msncli.exe Win32/Sality.NAU virus
C:\Program Files\NirSoft\RegScanner\RegScanner.exe Win32/Sality.NAM virus
C:\Program Files\NirSoft\RegScanner\uninst.exe Win32/Sality.NAM virus
C:\Program Files\PokerStars\PokerStarsUninstall.exe Win32/Sality.NAM virus
C:\Program Files\PokerStars\PokerStarsUpdate.exe Win32/Sality.NAU virus
C:\Program Files\PokerStars\backup\PokerStars.exe Win32/Sality.NAU virus
C:\Program Files\PokerStars\backup\PokerStarsCommunicate.exe Win32/Sality.NAU virus
C:\Program Files\PokerStars\backup\PokerStarsOnlineUpdate.exe Win32/Sality.NAU virus
C:\Program Files\PokerStars\backup\Stub.exe Win32/Sality.NAU virus
C:\Program Files\Securitoo\Contrôle Parental\securitoo_controle_parental_orange_r7.exe Win32/Sality.NAU virus
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe Win32/Sality.NAM virus
C:\Program Files\Wanadoo\inst\flashplayer7_winax.exe Win32/Sality.NAM virus
C:\Program Files\Windows Live\Contacts\wlcomm.exe Win32/Sality.NAU virus
C:\Program Files\Windows Live\Installer\wlarp.exe Win32/Sality.NAU virus
C:\Program Files\Windows Live\Installer\wloobe.exe Win32/Sality.NAU virus
C:\Program Files\Windows Live\Messenger\msnmsgr.exe Win32/Sality.NAU virus
C:\Program Files\Windows Live\Messenger\msvs.exe Win32/Sality.NAU virus
C:\Program Files\Windows Live\Messenger\wlcsdk.exe Win32/Sality.NAU virus
C:\Program Files\Windows Live\Messenger\wlcstart.exe Win32/Sality.NAU virus
C:\Program Files\Windows Media Connect 2\wmccds.exe Win32/Sality.NAM virus
C:\Program Files\Windows Media Connect 2\wmccfg.exe Win32/Sality.NAM virus
C:\Program Files\Windows Media Player\wmdbexport.exe Win32/Sality.NAM virus
C:\Program Files\Windows Media Player\wmlaunch.exe Win32/Sality.NAM virus
C:\Program Files\Windows Media Player\wmpenc.exe Win32/Sality.NAM virus
C:\Program Files\Windows Media Player\wmpnetwk.exe Win32/Sality.NAM virus
C:\Program Files\Windows Media Player\wmpnscfg.exe Win32/Sality.NAM virus
C:\Program Files\Windows Media Player\wmpshare.exe Win32/Sality.NAM virus
C:\Program Files\Windows Media Player\wmsetsdk.exe Win32/Sality.NAM virus
C:\Program Files\Windows NT\hypertrm.exe Win32/Sality.NAM virus
C:\Qoobox\Quarantine\C\autorun.inf.vir INF/Autorun virus
C:\Qoobox\Quarantine\C\MS32DLL.dll.vbs.vir VBS/Butsur.B worm
C:\Qoobox\Quarantine\C\WINDOWS\system32\wmdrtc32.dll.vir Win32/Sality.NAM virus
C:\Qoobox\Quarantine\C\WINDOWS\system32\wmdrtc32.dl_.vir Win32/Sality.NAM virus
C:\Qoobox\Quarantine\C\WINDOWS\system32\_wmdrtc32_.dll.zip Win32/Sality.NAM virus
C:\Qoobox\Quarantine\C\WINDOWS\system32\_wmdrtc32_.dl_.zip Win32/Sality.NAM virus
C:\Qoobox\Quarantine\D\autorun.inf.vir INF/Autorun virus
C:\Qoobox\Quarantine\D\MS32DLL.dll.vbs.vir VBS/Butsur.B worm
C:\Qoobox\Quarantine\E\autorun.inf.vir INF/Autorun virus
C:\Qoobox\Quarantine\E\MS32DLL.dll.vbs.vir VBS/Butsur.B worm
C:\Qoobox\Quarantine\F\autorun.inf.vir INF/Autorun virus
C:\Qoobox\Quarantine\F\MS32DLL.dll.vbs.vir VBS/Butsur.B worm
C:\Qoobox\Quarantine\G\autorun.inf.vir INF/Autorun virus
C:\Qoobox\Quarantine\G\MS32DLL.dll.vbs.vir VBS/Butsur.B worm
C:\WINDOWS\grep.exe Win32/Sality.NAM virus
C:\WINDOWS\MBR.exe Win32/Sality.NAM virus
C:\WINDOWS\NIRCMD.exe Win32/Sality.NAM virus
C:\WINDOWS\PEV.exe Win32/Sality.NAM virus
C:\WINDOWS\sed.exe Win32/Sality.NAM virus
C:\WINDOWS\SWREG.exe Win32/Sality.NAM virus
C:\WINDOWS\SWSC.exe Win32/Sality.NAM virus
C:\WINDOWS\SWXCACLS.exe Win32/Sality.NAM virus
C:\WINDOWS\zip.exe Win32/Sality.NAM virus
C:\WINDOWS\$hf_mig$\KB947864-IE7\SP2QFE\ie4uinit.exe Win32/Sality.NAM virus
C:\WINDOWS\$hf_mig$\KB947864-IE7\SP2QFE\ieudinit.exe Win32/Sality.NAM virus
C:\WINDOWS\$hf_mig$\KB947864-IE7\SP2QFE\iexplore.exe Win32/Sality.NAM virus
C:\WINDOWS\Downloaded Program Files\FP_AX_CAB_INSTALLER.exe Win32/Sality.NAU virus
C:\WINDOWS\ERDNT\cache\ctfmon.exe Win32/Sality.NAM virus
C:\WINDOWS\ERDNT\cache\explorer.exe Win32/Sality.NAM virus
C:\WINDOWS\ERDNT\cache\lsass.exe Win32/Sality.NAM virus
C:\WINDOWS\ERDNT\cache\ntkrnlpa.exe Win32/Sality.NAM virus
C:\WINDOWS\ERDNT\cache\ntoskrnl.exe Win32/Sality.NAM virus
C:\WINDOWS\ERDNT\cache\services.exe Win32/Sality.NAM virus
C:\WINDOWS\ERDNT\cache\spoolsv.exe Win32/Sality.NAM virus
C:\WINDOWS\ERDNT\cache\svchost.exe Win32/Sality.NAM virus
C:\WINDOWS\ERDNT\cache\userinit.exe Win32/Sality.NAM virus
C:\WINDOWS\ERDNT\cache\wscntfy.exe Win32/Sality.NAM virus
C:\WINDOWS\ERDNT\cache\wuauclt.exe Win32/Sality.NAM virus
C:\WINDOWS\ERDNT\Hiv-backup\ERDNT.EXE Win32/Sality.NAM virus
C:\WINDOWS\ERDNT\subs\ERDNT.EXE Win32/Sality.NAM virus
C:\WINDOWS\Installer\{350C940c-3D7C-4EE8-BAA9-00BCB3D54227}\places.exe Win32/Sality.NAM virus
C:\WINDOWS\Network Diagnostic\xpnetdiag.exe Win32/Sality.NAM virus
C:\WINDOWS\system32\NeroCheck.exe Win32/Sality.NAM virus
C:\WINDOWS\system32\wmdrtc32.dll Win32/Sality.NAM virus
C:\WINDOWS\system32\wmdrtc32.dll.ren Win32/Sality.NAM virus
C:\WINDOWS\system32\wmdrtc32.dl_ Win32/Sality.NAM virus
C:\WINDOWS\system32\drivers\njjlmn.sys Win32/Sality.NAM virus
D:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033219.vbs VBS/Butsur.B worm
D:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033220.inf INF/Autorun virus
D:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033252.vbs VBS/Butsur.B worm
D:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033253.inf INF/Autorun virus
D:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033570.vbs VBS/Butsur.B worm
D:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033571.inf INF/Autorun virus
D:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033810.vbs VBS/Butsur.B worm
D:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033811.inf INF/Autorun virus
D:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP70\A0034110.vbs VBS/Butsur.B worm
D:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP70\A0034111.inf INF/Autorun virus
D:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP70\A0034154.vbs VBS/Butsur.B worm
D:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP70\A0034155.inf INF/Autorun virus
D:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP71\A0034456.vbs VBS/Butsur.B worm
D:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP71\A0034457.inf INF/Autorun virus
D:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP72\A0034518.vbs VBS/Butsur.B worm
D:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP72\A0034519.inf INF/Autorun virus
D:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP73\A0034561.vbs VBS/Butsur.B worm
D:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP73\A0034562.inf INF/Autorun virus
E:\System Volume Information\_restore{255C7C32-E059-4B31-A209-C687B4F834A8}\RP6\A0002165.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{255C7C32-E059-4B31-A209-C687B4F834A8}\RP6\A0002166.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{255C7C32-E059-4B31-A209-C687B4F834A8}\RP6\A0002168.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{255C7C32-E059-4B31-A209-C687B4F834A8}\RP6\A0002170.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{255C7C32-E059-4B31-A209-C687B4F834A8}\RP6\A0002171.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{255C7C32-E059-4B31-A209-C687B4F834A8}\RP6\A0002172.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{255C7C32-E059-4B31-A209-C687B4F834A8}\RP6\A0002173.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{255C7C32-E059-4B31-A209-C687B4F834A8}\RP6\A0002174.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{255C7C32-E059-4B31-A209-C687B4F834A8}\RP6\A0002177.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{255C7C32-E059-4B31-A209-C687B4F834A8}\RP6\A0002178.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{255C7C32-E059-4B31-A209-C687B4F834A8}\RP6\A0002182.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{255C7C32-E059-4B31-A209-C687B4F834A8}\RP6\A0002185.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{255C7C32-E059-4B31-A209-C687B4F834A8}\RP6\A0002186.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{255C7C32-E059-4B31-A209-C687B4F834A8}\RP6\A0002188.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{255C7C32-E059-4B31-A209-C687B4F834A8}\RP6\A0002189.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{255C7C32-E059-4B31-A209-C687B4F834A8}\RP6\A0002190.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{255C7C32-E059-4B31-A209-C687B4F834A8}\RP6\A0002191.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{255C7C32-E059-4B31-A209-C687B4F834A8}\RP6\A0002192.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{255C7C32-E059-4B31-A209-C687B4F834A8}\RP6\A0002193.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{255C7C32-E059-4B31-A209-C687B4F834A8}\RP6\A0002194.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{255C7C32-E059-4B31-A209-C687B4F834A8}\RP6\A0002195.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{255C7C32-E059-4B31-A209-C687B4F834A8}\RP6\A0002196.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{255C7C32-E059-4B31-A209-C687B4F834A8}\RP6\A0002197.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{255C7C32-E059-4B31-A209-C687B4F834A8}\RP6\A0002213.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{255C7C32-E059-4B31-A209-C687B4F834A8}\RP6\A0002214.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP9\A0001233.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP9\A0001336.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP9\A0001337.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP9\A0001346.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP9\A0001357.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP9\A0001358.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP9\A0001359.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP9\A0001360.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP9\A0001362.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP9\A0001363.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP9\A0001368.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP9\A0001373.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP9\A0001375.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP9\A0001376.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP9\A0001377.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP9\A0001379.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP9\A0001381.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP9\A0001382.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP9\A0001383.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP9\A0001385.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP9\A0001386.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP9\A0001388.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP9\A0001390.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP9\A0001392.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP9\A0001395.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP10\A0001800.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP10\A0001801.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP10\A0001803.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP10\A0001818.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP10\A0001819.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP10\A0001820.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP10\A0001821.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP10\A0001822.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP10\A0001823.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP10\A0001827.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP10\A0001831.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP10\A0001832.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP10\A0001834.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP10\A0001835.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP10\A0001836.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP10\A0001837.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP10\A0001838.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP10\A0001839.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP10\A0001841.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP10\A0001842.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP10\A0001843.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP10\A0001846.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP10\A0001847.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP10\A0001848.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP10\A0001998.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP10\A0001999.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP10\A0002001.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP10\A0002014.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP10\A0002015.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP10\A0002016.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP10\A0002017.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP10\A0002018.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP10\A0002019.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP10\A0002027.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP10\A0002032.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP10\A0002034.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP10\A0002035.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP10\A0002038.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP10\A0002039.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP10\A0002041.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP10\A0002044.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP10\A0002047.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP10\A0002049.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP10\A0002051.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP10\A0002052.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP10\A0002054.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP10\A0002055.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP10\A0002057.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP11\A0002189.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP11\A0002190.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP11\A0002194.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP11\A0002211.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP11\A0002212.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP11\A0002213.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP11\A0002215.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP11\A0002216.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP11\A0002218.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP11\A0002225.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP11\A0002231.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP11\A0002232.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP11\A0002234.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP11\A0002237.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP11\A0002239.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP11\A0002241.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP11\A0002243.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP11\A0002245.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP11\A0002247.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP11\A0002248.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP11\A0002249.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP11\A0002251.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP11\A0002253.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP11\A0002255.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP11\A0002354.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP11\A0002355.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP11\A0002357.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP11\A0002363.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP11\A0002364.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP11\A0002366.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP11\A0002368.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP11\A0002370.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP11\A0002372.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP11\A0002379.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP11\A0002384.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP11\A0002385.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP11\A0002386.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP11\A0002387.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP11\A0002388.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP11\A0002389.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP11\A0002390.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP11\A0002391.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP11\A0002392.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP11\A0002393.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP11\A0002394.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP11\A0002395.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP11\A0002396.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP11\A0002397.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP12\A0002583.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP12\A0002584.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP12\A0002586.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP12\A0002601.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP12\A0002602.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP12\A0002603.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP12\A0002604.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP12\A0002605.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP12\A0002606.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP12\A0002610.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP12\A0002613.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP12\A0002614.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP12\A0002615.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP12\A0002616.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP12\A0002618.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP12\A0002621.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP12\A0002623.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP12\A0002624.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP12\A0002625.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP12\A0002626.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP12\A0002627.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP12\A0002628.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP12\A0002629.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP12\A0002631.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP12\A0002782.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP12\A0002783.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP12\A0002785.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP12\A0002798.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP12\A0002799.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP12\A0002800.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP12\A0002802.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP12\A0002803.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP12\A0002805.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP12\A0002812.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP12\A0002818.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP12\A0002820.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP12\A0002822.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP12\A0002824.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP12\A0002826.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP12\A0002828.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP12\A0002831.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP12\A0002833.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP12\A0002834.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP12\A0002836.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP12\A0002837.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP12\A0002839.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP12\A0002840.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP12\A0002843.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0002992.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0002993.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0002995.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0003001.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0003002.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0003003.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0003004.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0003005.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0003006.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0003015.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0003019.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0003020.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0003021.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0003024.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0003026.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0003027.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0003028.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0003029.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0003030.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0003031.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0003032.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0003033.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0003034.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0003035.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0003991.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0003992.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0003994.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0004006.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0004007.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0004008.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0004009.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0004010.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0004011.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0004018.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0004021.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0004022.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0004023.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0004024.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0004025.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0004026.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0004027.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0004028.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0004029.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0004030.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0004031.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0004032.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0004033.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0004034.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0005205.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0005206.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0005208.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0005214.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0005215.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0005216.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0005217.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0005218.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0005219.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0005229.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0005232.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0005235.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0005237.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0005238.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0005239.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0005240.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0005241.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0005242.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0005243.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0005244.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0005245.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0005246.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0005247.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP13\A0005248.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP14\A0005429.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP14\A0005432.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP14\A0005436.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP14\A0005448.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP14\A0005449.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP14\A0005451.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP14\A0005452.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP14\A0005453.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP14\A0005454.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP14\A0005459.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP14\A0005464.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP14\A0005465.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP14\A0005467.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP14\A0005469.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP14\A0005470.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP14\A0005471.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP14\A0005473.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP14\A0005475.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP14\A0005477.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP14\A0005479.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP14\A0005481.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP14\A0005484.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP14\A0005486.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP14\A0005489.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP19\A0005616.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP19\A0005617.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP19\A0005619.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP19\A0005623.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP19\A0005625.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP19\A0005627.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP19\A0005628.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP19\A0005629.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP19\A0005630.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP19\A0005634.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP19\A0005639.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP19\A0005641.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP19\A0005644.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP19\A0005646.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP19\A0005647.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP19\A0005648.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP19\A0005649.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP19\A0005650.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP19\A0005652.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP19\A0005654.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP19\A0005656.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP19\A0005657.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP19\A0005658.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP19\A0005659.exe Win32/Sality.NAM virus
buffaloboy
 
Messages: 32
Inscription: 22 Oct 2009 16:48

Re: hacked by godzilla

Messagepar buffaloboy » 15 Nov 2009 09:25

E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP19\A0006601.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP19\A0006602.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP19\A0006604.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP19\A0006613.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP19\A0006615.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP19\A0006617.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP19\A0006619.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP19\A0006620.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP19\A0006621.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP19\A0006628.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP19\A0006631.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP19\A0006632.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP19\A0006633.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP19\A0006634.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP19\A0006635.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP19\A0006636.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP19\A0006637.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP19\A0006638.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP19\A0006639.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP19\A0006640.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP19\A0006641.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP19\A0006642.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP19\A0006643.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP19\A0006644.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP32\A0016157.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP32\A0016158.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP32\A0016160.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP32\A0016162.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP32\A0016163.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP32\A0016164.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP32\A0016165.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP32\A0016166.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP32\A0016167.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP32\A0016171.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP32\A0016174.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP32\A0016175.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP32\A0016176.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP32\A0016177.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP32\A0016178.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP32\A0016179.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP32\A0016180.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP32\A0016181.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP32\A0016182.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP32\A0016183.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP32\A0016184.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP32\A0016185.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP32\A0016186.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP32\A0016187.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP32\A0016218.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP32\A0016219.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP32\A0016221.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP34\A0016253.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP34\A0016254.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0016256.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0016257.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0016258.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0016259.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0016266.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0016271.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0016272.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0016274.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0016275.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0016278.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0016279.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0016282.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0016284.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0016286.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0016289.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0016290.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0016292.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0016294.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0016295.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0016378.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0016380.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0016382.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0016395.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0016396.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0016398.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0016400.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0016402.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0016403.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0016407.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0016410.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0016411.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0016412.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0016413.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0016414.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0016415.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0016416.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0016417.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0016418.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0016419.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0016420.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0016421.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0016422.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0016423.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0018550.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0018551.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0018559.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0018568.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0018569.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0018570.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0018572.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0018573.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0018575.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0018583.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0018588.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0018590.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0018592.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0018594.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0018596.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0018598.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0018601.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0018603.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0018605.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0018606.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0018607.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0018609.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0018610.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP35\A0018613.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP36\A0018966.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP36\A0018967.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP36\A0018969.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP36\A0018982.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP36\A0018983.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP36\A0018984.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP36\A0018985.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP36\A0018987.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP36\A0018988.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP36\A0018992.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP36\A0018997.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP36\A0018999.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP36\A0019001.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP36\A0019002.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP36\A0019003.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP36\A0019004.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP36\A0019005.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP36\A0019007.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP36\A0019008.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP36\A0019010.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP36\A0019012.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP36\A0019014.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP36\A0019016.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP36\A0019019.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP40\A0019233.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP40\A0019234.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP40\A0019236.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP40\A0019251.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP40\A0019252.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP40\A0019254.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP40\A0019256.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP40\A0019258.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP40\A0019264.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP40\A0019267.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP40\A0019268.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP40\A0019270.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP40\A0019271.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP40\A0019273.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP40\A0019275.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP40\A0019278.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP40\A0019280.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP40\A0019282.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP40\A0019285.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP40\A0019286.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP40\A0019288.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP40\A0019290.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{1C65E5F7-F748-4F74-9FC3-D5F38E16CE84}\RP40\A0019291.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{206D5C9A-566B-437B-A762-213EF381532E}\RP194\A0014603.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{724E2116-FB7E-4224-BA59-D93143B73AB2}\RP4\A0000703.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{724E2116-FB7E-4224-BA59-D93143B73AB2}\RP4\A0000704.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{724E2116-FB7E-4224-BA59-D93143B73AB2}\RP4\A0000706.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{724E2116-FB7E-4224-BA59-D93143B73AB2}\RP4\A0000708.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{724E2116-FB7E-4224-BA59-D93143B73AB2}\RP4\A0000709.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{724E2116-FB7E-4224-BA59-D93143B73AB2}\RP4\A0000710.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{724E2116-FB7E-4224-BA59-D93143B73AB2}\RP4\A0000711.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{724E2116-FB7E-4224-BA59-D93143B73AB2}\RP4\A0000712.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{724E2116-FB7E-4224-BA59-D93143B73AB2}\RP4\A0000713.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{724E2116-FB7E-4224-BA59-D93143B73AB2}\RP4\A0000717.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{724E2116-FB7E-4224-BA59-D93143B73AB2}\RP4\A0000720.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{724E2116-FB7E-4224-BA59-D93143B73AB2}\RP4\A0000721.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{724E2116-FB7E-4224-BA59-D93143B73AB2}\RP4\A0000722.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{724E2116-FB7E-4224-BA59-D93143B73AB2}\RP4\A0000723.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{724E2116-FB7E-4224-BA59-D93143B73AB2}\RP4\A0000724.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{724E2116-FB7E-4224-BA59-D93143B73AB2}\RP4\A0000725.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{724E2116-FB7E-4224-BA59-D93143B73AB2}\RP4\A0000726.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{724E2116-FB7E-4224-BA59-D93143B73AB2}\RP4\A0000727.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{724E2116-FB7E-4224-BA59-D93143B73AB2}\RP4\A0000728.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{724E2116-FB7E-4224-BA59-D93143B73AB2}\RP4\A0000729.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{724E2116-FB7E-4224-BA59-D93143B73AB2}\RP4\A0000730.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{724E2116-FB7E-4224-BA59-D93143B73AB2}\RP4\A0000731.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{724E2116-FB7E-4224-BA59-D93143B73AB2}\RP4\A0000732.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{724E2116-FB7E-4224-BA59-D93143B73AB2}\RP4\A0000733.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{824947B0-DF16-4B74-A43A-899A63045001}\RP8\A0000576.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{824947B0-DF16-4B74-A43A-899A63045001}\RP8\A0000577.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{824947B0-DF16-4B74-A43A-899A63045001}\RP8\A0000585.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{824947B0-DF16-4B74-A43A-899A63045001}\RP8\A0000600.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{824947B0-DF16-4B74-A43A-899A63045001}\RP8\A0000602.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{824947B0-DF16-4B74-A43A-899A63045001}\RP8\A0000603.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{824947B0-DF16-4B74-A43A-899A63045001}\RP8\A0000604.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{824947B0-DF16-4B74-A43A-899A63045001}\RP8\A0000605.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{824947B0-DF16-4B74-A43A-899A63045001}\RP8\A0000607.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{824947B0-DF16-4B74-A43A-899A63045001}\RP8\A0000615.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{824947B0-DF16-4B74-A43A-899A63045001}\RP8\A0000622.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{824947B0-DF16-4B74-A43A-899A63045001}\RP8\A0000624.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{824947B0-DF16-4B74-A43A-899A63045001}\RP8\A0000626.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{824947B0-DF16-4B74-A43A-899A63045001}\RP8\A0000628.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{824947B0-DF16-4B74-A43A-899A63045001}\RP8\A0000630.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{824947B0-DF16-4B74-A43A-899A63045001}\RP8\A0000631.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{824947B0-DF16-4B74-A43A-899A63045001}\RP8\A0000633.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{824947B0-DF16-4B74-A43A-899A63045001}\RP8\A0000634.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{824947B0-DF16-4B74-A43A-899A63045001}\RP8\A0000636.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{824947B0-DF16-4B74-A43A-899A63045001}\RP8\A0000639.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{824947B0-DF16-4B74-A43A-899A63045001}\RP8\A0000640.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{824947B0-DF16-4B74-A43A-899A63045001}\RP8\A0000642.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{824947B0-DF16-4B74-A43A-899A63045001}\RP8\A0000644.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{824947B0-DF16-4B74-A43A-899A63045001}\RP8\A0000648.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{62E47C11-19DE-470D-8BB0-218AF10BBBE3}\RP7\A0000626.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{62E47C11-19DE-470D-8BB0-218AF10BBBE3}\RP7\A0000627.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{62E47C11-19DE-470D-8BB0-218AF10BBBE3}\RP7\A0000629.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{62E47C11-19DE-470D-8BB0-218AF10BBBE3}\RP7\A0000651.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{62E47C11-19DE-470D-8BB0-218AF10BBBE3}\RP7\A0000652.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{62E47C11-19DE-470D-8BB0-218AF10BBBE3}\RP7\A0000653.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{62E47C11-19DE-470D-8BB0-218AF10BBBE3}\RP7\A0000654.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{62E47C11-19DE-470D-8BB0-218AF10BBBE3}\RP7\A0000655.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{62E47C11-19DE-470D-8BB0-218AF10BBBE3}\RP7\A0000657.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{62E47C11-19DE-470D-8BB0-218AF10BBBE3}\RP7\A0000664.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{62E47C11-19DE-470D-8BB0-218AF10BBBE3}\RP7\A0000669.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{62E47C11-19DE-470D-8BB0-218AF10BBBE3}\RP7\A0000671.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{62E47C11-19DE-470D-8BB0-218AF10BBBE3}\RP7\A0000673.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{62E47C11-19DE-470D-8BB0-218AF10BBBE3}\RP7\A0000675.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{62E47C11-19DE-470D-8BB0-218AF10BBBE3}\RP7\A0000678.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{62E47C11-19DE-470D-8BB0-218AF10BBBE3}\RP7\A0000682.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{62E47C11-19DE-470D-8BB0-218AF10BBBE3}\RP7\A0000684.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{62E47C11-19DE-470D-8BB0-218AF10BBBE3}\RP7\A0000686.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{62E47C11-19DE-470D-8BB0-218AF10BBBE3}\RP7\A0000687.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{62E47C11-19DE-470D-8BB0-218AF10BBBE3}\RP7\A0000689.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{62E47C11-19DE-470D-8BB0-218AF10BBBE3}\RP7\A0000693.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{62E47C11-19DE-470D-8BB0-218AF10BBBE3}\RP7\A0000695.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{62E47C11-19DE-470D-8BB0-218AF10BBBE3}\RP7\A0000697.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{62E47C11-19DE-470D-8BB0-218AF10BBBE3}\RP7\A0000699.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{943A0261-C47D-4AB9-8B26-84691ED5C16C}\RP9\A0001465.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{943A0261-C47D-4AB9-8B26-84691ED5C16C}\RP9\A0001466.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{943A0261-C47D-4AB9-8B26-84691ED5C16C}\RP9\A0001474.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{943A0261-C47D-4AB9-8B26-84691ED5C16C}\RP9\A0001532.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{943A0261-C47D-4AB9-8B26-84691ED5C16C}\RP9\A0001533.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{943A0261-C47D-4AB9-8B26-84691ED5C16C}\RP9\A0001535.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{943A0261-C47D-4AB9-8B26-84691ED5C16C}\RP9\A0001536.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{943A0261-C47D-4AB9-8B26-84691ED5C16C}\RP9\A0001537.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{943A0261-C47D-4AB9-8B26-84691ED5C16C}\RP9\A0001538.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{943A0261-C47D-4AB9-8B26-84691ED5C16C}\RP9\A0001543.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{943A0261-C47D-4AB9-8B26-84691ED5C16C}\RP9\A0001546.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{943A0261-C47D-4AB9-8B26-84691ED5C16C}\RP9\A0001547.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{943A0261-C47D-4AB9-8B26-84691ED5C16C}\RP9\A0001548.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{943A0261-C47D-4AB9-8B26-84691ED5C16C}\RP9\A0001549.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{943A0261-C47D-4AB9-8B26-84691ED5C16C}\RP9\A0001550.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{943A0261-C47D-4AB9-8B26-84691ED5C16C}\RP9\A0001551.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{943A0261-C47D-4AB9-8B26-84691ED5C16C}\RP9\A0001552.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{943A0261-C47D-4AB9-8B26-84691ED5C16C}\RP9\A0001553.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{943A0261-C47D-4AB9-8B26-84691ED5C16C}\RP9\A0001554.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{943A0261-C47D-4AB9-8B26-84691ED5C16C}\RP9\A0001555.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{943A0261-C47D-4AB9-8B26-84691ED5C16C}\RP9\A0001556.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{943A0261-C47D-4AB9-8B26-84691ED5C16C}\RP9\A0001557.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{943A0261-C47D-4AB9-8B26-84691ED5C16C}\RP9\A0001558.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{943A0261-C47D-4AB9-8B26-84691ED5C16C}\RP9\A0001559.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP8\A0001162.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP8\A0001163.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP8\A0001165.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP8\A0001168.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP8\A0001169.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP8\A0001170.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP8\A0001171.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP8\A0001172.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP8\A0001173.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP8\A0001177.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP8\A0001180.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP8\A0001181.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP8\A0001182.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP8\A0001183.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP8\A0001184.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP8\A0001185.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP8\A0001186.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP8\A0001187.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP8\A0001189.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP8\A0001191.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP8\A0001193.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP8\A0001195.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP8\A0001197.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP8\A0001199.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP8\A0001344.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP8\A0001345.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP8\A0001354.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP8\A0001408.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP8\A0001411.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP8\A0001412.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP8\A0001414.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP8\A0001416.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP8\A0001418.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP8\A0001429.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP8\A0001436.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP8\A0001438.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP8\A0001440.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP8\A0001442.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP8\A0001443.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP8\A0001444.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP8\A0001446.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP8\A0001447.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP8\A0001448.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP8\A0001449.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP8\A0001451.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP8\A0001452.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP8\A0001453.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP8\A0001454.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP9\A0001600.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP9\A0001605.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP9\A0001608.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP9\A0001665.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP9\A0001667.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP9\A0001668.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP9\A0001669.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP9\A0001670.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP9\A0001671.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP9\A0001679.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP9\A0001686.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP9\A0001688.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP9\A0001690.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP9\A0001692.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP9\A0001694.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP9\A0001696.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP9\A0001698.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP9\A0001701.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP9\A0001704.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP9\A0001706.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP9\A0001707.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP9\A0001709.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP9\A0001712.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP9\A0001714.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP10\A0001902.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP10\A0001904.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP10\A0001906.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP10\A0001945.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP10\A0001947.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP10\A0001948.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP10\A0001949.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP10\A0001951.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP10\A0001953.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP10\A0001966.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP10\A0001972.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP10\A0001974.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP10\A0001976.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP10\A0001978.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP10\A0001980.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP10\A0001982.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP10\A0001984.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP10\A0001986.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP10\A0001988.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP10\A0001989.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP10\A0001991.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP10\A0001992.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP10\A0001993.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{A478CE14-69E4-4DE9-ABB3-CF648D0BA9AC}\RP10\A0001994.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{AE662502-C8A5-49CB-9A91-79195D2C37AE}\RP4\A0000606.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{AE662502-C8A5-49CB-9A91-79195D2C37AE}\RP4\A0000607.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{AE662502-C8A5-49CB-9A91-79195D2C37AE}\RP4\A0000613.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{AE662502-C8A5-49CB-9A91-79195D2C37AE}\RP4\A0000643.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{AE662502-C8A5-49CB-9A91-79195D2C37AE}\RP4\A0000644.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{AE662502-C8A5-49CB-9A91-79195D2C37AE}\RP4\A0000646.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{AE662502-C8A5-49CB-9A91-79195D2C37AE}\RP4\A0000648.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{AE662502-C8A5-49CB-9A91-79195D2C37AE}\RP4\A0000650.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{AE662502-C8A5-49CB-9A91-79195D2C37AE}\RP4\A0000651.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{AE662502-C8A5-49CB-9A91-79195D2C37AE}\RP4\A0000660.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{AE662502-C8A5-49CB-9A91-79195D2C37AE}\RP4\A0000665.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{AE662502-C8A5-49CB-9A91-79195D2C37AE}\RP4\A0000667.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{AE662502-C8A5-49CB-9A91-79195D2C37AE}\RP4\A0000668.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{AE662502-C8A5-49CB-9A91-79195D2C37AE}\RP4\A0000669.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{AE662502-C8A5-49CB-9A91-79195D2C37AE}\RP4\A0000670.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{AE662502-C8A5-49CB-9A91-79195D2C37AE}\RP4\A0000671.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{AE662502-C8A5-49CB-9A91-79195D2C37AE}\RP4\A0000672.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{AE662502-C8A5-49CB-9A91-79195D2C37AE}\RP4\A0000673.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{AE662502-C8A5-49CB-9A91-79195D2C37AE}\RP4\A0000674.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{AE662502-C8A5-49CB-9A91-79195D2C37AE}\RP4\A0000675.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{AE662502-C8A5-49CB-9A91-79195D2C37AE}\RP4\A0000676.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{AE662502-C8A5-49CB-9A91-79195D2C37AE}\RP4\A0000677.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{AE662502-C8A5-49CB-9A91-79195D2C37AE}\RP4\A0000678.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{AE662502-C8A5-49CB-9A91-79195D2C37AE}\RP4\A0000679.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP15\A0003697.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP15\A0003698.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP15\A0003700.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP15\A0003720.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP15\A0003721.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP15\A0003722.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP15\A0003724.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP15\A0003725.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP15\A0003726.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP15\A0003732.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP15\A0003736.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP15\A0003738.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP15\A0003739.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP15\A0003740.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP15\A0003741.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP15\A0003742.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP15\A0003743.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP15\A0003744.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP15\A0003745.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP15\A0003746.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP15\A0003747.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP15\A0003748.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP15\A0003749.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP15\A0003750.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP17\A0004693.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP17\A0004694.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP17\A0004696.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP17\A0004701.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP17\A0004702.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP17\A0004703.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP17\A0004704.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP17\A0004705.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP17\A0004706.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP17\A0004710.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP17\A0004713.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP17\A0004714.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP17\A0004716.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP17\A0004717.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP17\A0004718.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP17\A0004719.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP17\A0004720.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP17\A0004722.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP17\A0004723.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP17\A0004726.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP17\A0004727.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP17\A0004729.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP17\A0004730.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP17\A0004733.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP17\A0004948.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP17\A0004949.exe a variant of Win32/Sality virus
buffaloboy
 
Messages: 32
Inscription: 22 Oct 2009 16:48

Re: hacked by godzilla

Messagepar buffaloboy » 15 Nov 2009 09:27

E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP17\A0004951.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP17\A0004954.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP17\A0004955.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP17\A0004956.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP17\A0004957.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP17\A0004958.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP17\A0004960.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP17\A0004966.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP17\A0004969.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP17\A0004970.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP17\A0004971.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP17\A0004972.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP17\A0004973.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP17\A0004974.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP17\A0004975.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP17\A0004976.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP17\A0004977.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP17\A0004978.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP17\A0004979.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP17\A0004980.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP17\A0004981.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP17\A0004982.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP18\A0005231.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP18\A0005232.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP18\A0005234.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP18\A0005237.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP18\A0005238.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP18\A0005239.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP18\A0005240.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP18\A0005241.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP18\A0005242.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP18\A0005246.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP18\A0005249.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP18\A0005250.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP18\A0005251.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP18\A0005252.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP18\A0005253.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP18\A0005254.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP18\A0005255.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP18\A0005256.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP18\A0005257.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP18\A0005258.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP18\A0005259.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP18\A0005260.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP18\A0005261.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP18\A0005262.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP19\A0005476.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP19\A0005477.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP19\A0005479.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP19\A0005481.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP19\A0005482.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP19\A0005483.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP19\A0005484.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP19\A0005485.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP19\A0005486.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP19\A0005490.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP19\A0005493.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP19\A0005494.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP19\A0005495.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP19\A0005496.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP19\A0005497.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP19\A0005498.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP19\A0005499.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP19\A0005500.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP19\A0005501.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP19\A0005502.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP19\A0005503.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP19\A0005504.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP19\A0005505.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{3BEFB15A-FD5E-4018-910A-B586387D6B38}\RP19\A0005506.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{D90D2A2A-A8F2-4B73-88AE-C82C63015C25}\RP4\A0000322.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{D90D2A2A-A8F2-4B73-88AE-C82C63015C25}\RP4\A0000323.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{D90D2A2A-A8F2-4B73-88AE-C82C63015C25}\RP4\A0000325.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{D90D2A2A-A8F2-4B73-88AE-C82C63015C25}\RP4\A0000328.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{D90D2A2A-A8F2-4B73-88AE-C82C63015C25}\RP4\A0000329.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{D90D2A2A-A8F2-4B73-88AE-C82C63015C25}\RP4\A0000330.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{D90D2A2A-A8F2-4B73-88AE-C82C63015C25}\RP4\A0000331.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{D90D2A2A-A8F2-4B73-88AE-C82C63015C25}\RP4\A0000332.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{D90D2A2A-A8F2-4B73-88AE-C82C63015C25}\RP4\A0000333.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{D90D2A2A-A8F2-4B73-88AE-C82C63015C25}\RP4\A0000337.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{D90D2A2A-A8F2-4B73-88AE-C82C63015C25}\RP4\A0000340.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{D90D2A2A-A8F2-4B73-88AE-C82C63015C25}\RP4\A0000341.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{D90D2A2A-A8F2-4B73-88AE-C82C63015C25}\RP4\A0000342.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{D90D2A2A-A8F2-4B73-88AE-C82C63015C25}\RP4\A0000343.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{D90D2A2A-A8F2-4B73-88AE-C82C63015C25}\RP4\A0000344.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{D90D2A2A-A8F2-4B73-88AE-C82C63015C25}\RP4\A0000345.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{D90D2A2A-A8F2-4B73-88AE-C82C63015C25}\RP4\A0000346.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{D90D2A2A-A8F2-4B73-88AE-C82C63015C25}\RP4\A0000349.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{D90D2A2A-A8F2-4B73-88AE-C82C63015C25}\RP4\A0000350.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{D90D2A2A-A8F2-4B73-88AE-C82C63015C25}\RP4\A0000351.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{D90D2A2A-A8F2-4B73-88AE-C82C63015C25}\RP4\A0000352.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{D90D2A2A-A8F2-4B73-88AE-C82C63015C25}\RP4\A0000353.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{D90D2A2A-A8F2-4B73-88AE-C82C63015C25}\RP4\A0000354.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{D90D2A2A-A8F2-4B73-88AE-C82C63015C25}\RP4\A0000356.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{D90D2A2A-A8F2-4B73-88AE-C82C63015C25}\RP5\A0000560.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{D90D2A2A-A8F2-4B73-88AE-C82C63015C25}\RP5\A0000563.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{D90D2A2A-A8F2-4B73-88AE-C82C63015C25}\RP5\A0000572.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{D90D2A2A-A8F2-4B73-88AE-C82C63015C25}\RP5\A0000580.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{D90D2A2A-A8F2-4B73-88AE-C82C63015C25}\RP5\A0000581.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{D90D2A2A-A8F2-4B73-88AE-C82C63015C25}\RP5\A0000582.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{D90D2A2A-A8F2-4B73-88AE-C82C63015C25}\RP5\A0000583.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{D90D2A2A-A8F2-4B73-88AE-C82C63015C25}\RP5\A0000584.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{D90D2A2A-A8F2-4B73-88AE-C82C63015C25}\RP5\A0000585.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{D90D2A2A-A8F2-4B73-88AE-C82C63015C25}\RP5\A0000589.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{D90D2A2A-A8F2-4B73-88AE-C82C63015C25}\RP5\A0000592.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{D90D2A2A-A8F2-4B73-88AE-C82C63015C25}\RP5\A0000595.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{D90D2A2A-A8F2-4B73-88AE-C82C63015C25}\RP5\A0000596.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{D90D2A2A-A8F2-4B73-88AE-C82C63015C25}\RP5\A0000597.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{D90D2A2A-A8F2-4B73-88AE-C82C63015C25}\RP5\A0000598.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{D90D2A2A-A8F2-4B73-88AE-C82C63015C25}\RP5\A0000599.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{D90D2A2A-A8F2-4B73-88AE-C82C63015C25}\RP5\A0000600.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{D90D2A2A-A8F2-4B73-88AE-C82C63015C25}\RP5\A0000601.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{D90D2A2A-A8F2-4B73-88AE-C82C63015C25}\RP5\A0000602.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{D90D2A2A-A8F2-4B73-88AE-C82C63015C25}\RP5\A0000603.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{D90D2A2A-A8F2-4B73-88AE-C82C63015C25}\RP5\A0000604.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{D90D2A2A-A8F2-4B73-88AE-C82C63015C25}\RP5\A0000605.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{D90D2A2A-A8F2-4B73-88AE-C82C63015C25}\RP5\A0000606.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{D90D2A2A-A8F2-4B73-88AE-C82C63015C25}\RP5\A0000607.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP3\A0000325.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP3\A0000326.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP3\A0000328.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP3\A0000332.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP3\A0000333.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP3\A0000334.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP3\A0000335.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP3\A0000336.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP3\A0000337.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP3\A0000341.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP3\A0000344.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP3\A0000345.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP3\A0000346.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP3\A0000347.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP3\A0000348.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP3\A0000349.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP3\A0000350.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP3\A0000351.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP3\A0000352.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP3\A0000353.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP3\A0000354.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP3\A0000355.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP3\A0000356.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP3\A0000357.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP4\A0000576.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP4\A0000577.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP4\A0000579.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP4\A0000581.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP4\A0000582.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP4\A0000583.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP4\A0000584.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP4\A0000585.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP4\A0000586.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP4\A0000588.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP4\A0000592.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP4\A0000593.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP4\A0000595.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP4\A0000596.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP4\A0000597.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP4\A0000599.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP4\A0000600.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP4\A0000601.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP4\A0000602.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP4\A0000603.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP4\A0000604.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP4\A0000605.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP4\A0000606.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP4\A0000607.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP5\A0000763.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP5\A0000764.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP5\A0000766.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP5\A0000768.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP5\A0000769.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP5\A0000770.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP5\A0000771.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP5\A0000772.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP5\A0000773.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP5\A0000775.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP5\A0000778.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP5\A0000779.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP5\A0000780.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP5\A0000781.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP5\A0000782.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP5\A0000783.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP5\A0000784.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP5\A0000785.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP5\A0000786.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP5\A0000787.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP5\A0000788.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP5\A0000789.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP5\A0000790.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP5\A0000791.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP6\A0001796.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP6\A0001797.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP6\A0001799.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP6\A0001802.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP6\A0001803.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP6\A0001804.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP6\A0001805.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP6\A0001806.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP6\A0001807.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP6\A0001809.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP6\A0001812.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP6\A0001813.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP6\A0001814.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP6\A0001815.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP6\A0001816.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP6\A0001817.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP6\A0001818.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP6\A0001819.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP6\A0001820.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP6\A0001821.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP6\A0001822.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP6\A0001823.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP6\A0001824.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{B3B0A012-1D92-4F3C-B03D-2D9D611F824A}\RP6\A0001825.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP30\A0007750.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP30\A0007751.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP30\A0007753.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP30\A0007755.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP30\A0007756.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP30\A0007757.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP30\A0007758.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP30\A0007759.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP30\A0007760.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP30\A0007762.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP30\A0007765.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP30\A0007766.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP30\A0007767.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP30\A0007768.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP30\A0007769.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP30\A0007770.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP30\A0007771.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP30\A0007772.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP30\A0007773.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP30\A0007774.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP30\A0007775.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP30\A0007776.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP30\A0007777.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP30\A0007778.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP30\A0007957.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP30\A0007958.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP30\A0007960.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP30\A0007962.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP30\A0007963.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP30\A0007964.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP30\A0007965.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP30\A0007966.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP30\A0007967.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP30\A0007969.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP30\A0007972.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP30\A0007973.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP30\A0007974.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP30\A0007975.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP30\A0007976.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP30\A0007977.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP30\A0007978.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP30\A0007979.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP30\A0007980.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP30\A0007981.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP30\A0007982.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP30\A0007984.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP30\A0007985.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP30\A0007986.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP31\A0008216.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP31\A0008217.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP31\A0008220.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP31\A0008222.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP31\A0008223.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP31\A0008224.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP31\A0008225.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP31\A0008226.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP31\A0008227.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP31\A0008229.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP31\A0008232.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP31\A0008233.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP31\A0008234.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP31\A0008235.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP31\A0008236.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP31\A0008237.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP31\A0008238.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP31\A0008239.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP31\A0008240.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP31\A0008241.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP31\A0008242.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP31\A0008243.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP31\A0008244.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP31\A0008245.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP32\A0008442.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP32\A0008443.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP32\A0008445.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP32\A0008447.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP32\A0008448.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP32\A0008449.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP32\A0008450.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP32\A0008451.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP32\A0008452.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP32\A0008454.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP32\A0008457.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP32\A0008458.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP32\A0008459.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP32\A0008460.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP32\A0008461.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP32\A0008462.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP32\A0008463.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP32\A0008464.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP32\A0008465.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP32\A0008466.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP32\A0008467.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP32\A0008468.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP32\A0008469.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP32\A0008470.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP32\A0008659.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP32\A0008660.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP32\A0008662.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP32\A0008666.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP32\A0008667.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP32\A0008668.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP32\A0008669.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP32\A0008670.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP32\A0008671.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP32\A0008673.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP32\A0008676.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP32\A0008677.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP32\A0008678.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP32\A0008679.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP32\A0008680.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP32\A0008681.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP32\A0008682.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP32\A0008683.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP32\A0008684.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP32\A0008685.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP32\A0008686.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP32\A0008687.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP32\A0008688.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP32\A0008689.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0008859.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0008860.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0008862.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0008864.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0008865.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0008866.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0008867.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0008868.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0008869.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0008871.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0008874.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0008875.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0008876.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0008877.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0008878.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0008879.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0008880.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0008881.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0008882.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0008883.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0008884.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0008885.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0008886.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0008887.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0009082.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0009083.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0009085.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0009090.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0009091.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0009092.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0009093.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0009094.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0009095.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0009097.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0009100.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0009101.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0009102.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0009103.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0009104.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0009105.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0009106.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0009107.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0009108.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0009109.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0009110.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0009111.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0009112.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0009113.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0009310.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0009311.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0009313.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0009317.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0009318.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0009319.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0009320.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0009321.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0009322.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0009324.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0009327.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0009328.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0009329.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0009330.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0009331.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0009332.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0009333.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0009334.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0009335.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0009336.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0009337.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0009338.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0009339.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{873D0552-0C98-4D9D-AAB8-FB72F5851098}\RP33\A0009340.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{28CB9B20-EB73-4B64-8233-89557FF57FC6}\RP2\A0000053.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{28CB9B20-EB73-4B64-8233-89557FF57FC6}\RP2\A0000058.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{69EDBEC6-0EAF-4617-97DD-A9F90A1D4D9B}\RP4\A0002643.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{69EDBEC6-0EAF-4617-97DD-A9F90A1D4D9B}\RP4\A0002644.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{69EDBEC6-0EAF-4617-97DD-A9F90A1D4D9B}\RP4\A0002646.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{69EDBEC6-0EAF-4617-97DD-A9F90A1D4D9B}\RP4\A0002648.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{69EDBEC6-0EAF-4617-97DD-A9F90A1D4D9B}\RP4\A0002649.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{69EDBEC6-0EAF-4617-97DD-A9F90A1D4D9B}\RP4\A0002650.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{69EDBEC6-0EAF-4617-97DD-A9F90A1D4D9B}\RP4\A0002651.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{69EDBEC6-0EAF-4617-97DD-A9F90A1D4D9B}\RP4\A0002652.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{69EDBEC6-0EAF-4617-97DD-A9F90A1D4D9B}\RP4\A0002653.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{69EDBEC6-0EAF-4617-97DD-A9F90A1D4D9B}\RP4\A0002655.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{69EDBEC6-0EAF-4617-97DD-A9F90A1D4D9B}\RP4\A0002658.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{69EDBEC6-0EAF-4617-97DD-A9F90A1D4D9B}\RP4\A0002659.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{69EDBEC6-0EAF-4617-97DD-A9F90A1D4D9B}\RP4\A0002660.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{69EDBEC6-0EAF-4617-97DD-A9F90A1D4D9B}\RP4\A0002661.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{69EDBEC6-0EAF-4617-97DD-A9F90A1D4D9B}\RP4\A0002662.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{69EDBEC6-0EAF-4617-97DD-A9F90A1D4D9B}\RP4\A0002663.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{69EDBEC6-0EAF-4617-97DD-A9F90A1D4D9B}\RP4\A0002664.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{69EDBEC6-0EAF-4617-97DD-A9F90A1D4D9B}\RP4\A0002665.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{69EDBEC6-0EAF-4617-97DD-A9F90A1D4D9B}\RP4\A0002666.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{69EDBEC6-0EAF-4617-97DD-A9F90A1D4D9B}\RP4\A0002667.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{69EDBEC6-0EAF-4617-97DD-A9F90A1D4D9B}\RP4\A0002668.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{69EDBEC6-0EAF-4617-97DD-A9F90A1D4D9B}\RP4\A0002669.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{69EDBEC6-0EAF-4617-97DD-A9F90A1D4D9B}\RP4\A0002670.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{69EDBEC6-0EAF-4617-97DD-A9F90A1D4D9B}\RP4\A0002671.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{D483EEFC-8CA6-4BF9-BF62-5AB5D11EACBD}\RP19\A0008782.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{D483EEFC-8CA6-4BF9-BF62-5AB5D11EACBD}\RP19\A0008783.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{D483EEFC-8CA6-4BF9-BF62-5AB5D11EACBD}\RP19\A0008785.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{D483EEFC-8CA6-4BF9-BF62-5AB5D11EACBD}\RP19\A0008917.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{D483EEFC-8CA6-4BF9-BF62-5AB5D11EACBD}\RP19\A0008918.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{D483EEFC-8CA6-4BF9-BF62-5AB5D11EACBD}\RP19\A0008920.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{D483EEFC-8CA6-4BF9-BF62-5AB5D11EACBD}\RP19\A0008923.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{D483EEFC-8CA6-4BF9-BF62-5AB5D11EACBD}\RP19\A0008924.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{D483EEFC-8CA6-4BF9-BF62-5AB5D11EACBD}\RP19\A0008925.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{D483EEFC-8CA6-4BF9-BF62-5AB5D11EACBD}\RP19\A0008926.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{D483EEFC-8CA6-4BF9-BF62-5AB5D11EACBD}\RP19\A0008927.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{D483EEFC-8CA6-4BF9-BF62-5AB5D11EACBD}\RP19\A0008928.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{D483EEFC-8CA6-4BF9-BF62-5AB5D11EACBD}\RP19\A0008930.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{D483EEFC-8CA6-4BF9-BF62-5AB5D11EACBD}\RP19\A0008933.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{D483EEFC-8CA6-4BF9-BF62-5AB5D11EACBD}\RP19\A0008934.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{D483EEFC-8CA6-4BF9-BF62-5AB5D11EACBD}\RP19\A0008935.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{D483EEFC-8CA6-4BF9-BF62-5AB5D11EACBD}\RP19\A0008936.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{D483EEFC-8CA6-4BF9-BF62-5AB5D11EACBD}\RP19\A0008937.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{0840CC9D-2F7A-4CF3-BF5C-0C42F7EF0FFC}\RP3\A0000243.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{0840CC9D-2F7A-4CF3-BF5C-0C42F7EF0FFC}\RP3\A0000299.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{0840CC9D-2F7A-4CF3-BF5C-0C42F7EF0FFC}\RP3\A0000349.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{0840CC9D-2F7A-4CF3-BF5C-0C42F7EF0FFC}\RP4\A0000516.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{0840CC9D-2F7A-4CF3-BF5C-0C42F7EF0FFC}\RP4\A0000522.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{0840CC9D-2F7A-4CF3-BF5C-0C42F7EF0FFC}\RP4\A0000614.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{0840CC9D-2F7A-4CF3-BF5C-0C42F7EF0FFC}\RP4\A0000615.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{0840CC9D-2F7A-4CF3-BF5C-0C42F7EF0FFC}\RP4\A0000617.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{0840CC9D-2F7A-4CF3-BF5C-0C42F7EF0FFC}\RP4\A0000630.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{0840CC9D-2F7A-4CF3-BF5C-0C42F7EF0FFC}\RP4\A0000631.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{0840CC9D-2F7A-4CF3-BF5C-0C42F7EF0FFC}\RP4\A0000632.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{0840CC9D-2F7A-4CF3-BF5C-0C42F7EF0FFC}\RP4\A0000633.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{0840CC9D-2F7A-4CF3-BF5C-0C42F7EF0FFC}\RP4\A0000634.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{0840CC9D-2F7A-4CF3-BF5C-0C42F7EF0FFC}\RP4\A0000635.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{0840CC9D-2F7A-4CF3-BF5C-0C42F7EF0FFC}\RP4\A0000639.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{0840CC9D-2F7A-4CF3-BF5C-0C42F7EF0FFC}\RP4\A0000642.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{0840CC9D-2F7A-4CF3-BF5C-0C42F7EF0FFC}\RP4\A0000644.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{0840CC9D-2F7A-4CF3-BF5C-0C42F7EF0FFC}\RP4\A0000647.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{0840CC9D-2F7A-4CF3-BF5C-0C42F7EF0FFC}\RP4\A0000648.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{0840CC9D-2F7A-4CF3-BF5C-0C42F7EF0FFC}\RP4\A0000649.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{0840CC9D-2F7A-4CF3-BF5C-0C42F7EF0FFC}\RP4\A0000650.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{0840CC9D-2F7A-4CF3-BF5C-0C42F7EF0FFC}\RP4\A0000651.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{0840CC9D-2F7A-4CF3-BF5C-0C42F7EF0FFC}\RP4\A0000652.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{0840CC9D-2F7A-4CF3-BF5C-0C42F7EF0FFC}\RP4\A0000653.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{0840CC9D-2F7A-4CF3-BF5C-0C42F7EF0FFC}\RP4\A0000654.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{0840CC9D-2F7A-4CF3-BF5C-0C42F7EF0FFC}\RP4\A0000655.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{0840CC9D-2F7A-4CF3-BF5C-0C42F7EF0FFC}\RP4\A0000656.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{0840CC9D-2F7A-4CF3-BF5C-0C42F7EF0FFC}\RP4\A0000657.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{0840CC9D-2F7A-4CF3-BF5C-0C42F7EF0FFC}\RP4\A0000732.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{0840CC9D-2F7A-4CF3-BF5C-0C42F7EF0FFC}\RP4\A0000737.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{0840CC9D-2F7A-4CF3-BF5C-0C42F7EF0FFC}\RP4\A0000861.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{0840CC9D-2F7A-4CF3-BF5C-0C42F7EF0FFC}\RP4\A0000862.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{0840CC9D-2F7A-4CF3-BF5C-0C42F7EF0FFC}\RP4\A0000864.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{0840CC9D-2F7A-4CF3-BF5C-0C42F7EF0FFC}\RP4\A0000883.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{0840CC9D-2F7A-4CF3-BF5C-0C42F7EF0FFC}\RP4\A0000884.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{0840CC9D-2F7A-4CF3-BF5C-0C42F7EF0FFC}\RP4\A0000885.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{0840CC9D-2F7A-4CF3-BF5C-0C42F7EF0FFC}\RP4\A0000886.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{0840CC9D-2F7A-4CF3-BF5C-0C42F7EF0FFC}\RP4\A0000887.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{0840CC9D-2F7A-4CF3-BF5C-0C42F7EF0FFC}\RP4\A0000888.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{0840CC9D-2F7A-4CF3-BF5C-0C42F7EF0FFC}\RP4\A0000890.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{0840CC9D-2F7A-4CF3-BF5C-0C42F7EF0FFC}\RP4\A0000893.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{0840CC9D-2F7A-4CF3-BF5C-0C42F7EF0FFC}\RP4\A0000894.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{0840CC9D-2F7A-4CF3-BF5C-0C42F7EF0FFC}\RP4\A0000895.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{0840CC9D-2F7A-4CF3-BF5C-0C42F7EF0FFC}\RP4\A0000896.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{0840CC9D-2F7A-4CF3-BF5C-0C42F7EF0FFC}\RP4\A0000897.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{0840CC9D-2F7A-4CF3-BF5C-0C42F7EF0FFC}\RP4\A0000898.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{0840CC9D-2F7A-4CF3-BF5C-0C42F7EF0FFC}\RP4\A0000899.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{0840CC9D-2F7A-4CF3-BF5C-0C42F7EF0FFC}\RP4\A0000900.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{0840CC9D-2F7A-4CF3-BF5C-0C42F7EF0FFC}\RP4\A0000902.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{0840CC9D-2F7A-4CF3-BF5C-0C42F7EF0FFC}\RP4\A0000903.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{0840CC9D-2F7A-4CF3-BF5C-0C42F7EF0FFC}\RP4\A0000904.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{0840CC9D-2F7A-4CF3-BF5C-0C42F7EF0FFC}\RP4\A0000905.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{0840CC9D-2F7A-4CF3-BF5C-0C42F7EF0FFC}\RP4\A0000906.exe Win32/Sality.NAM virus
buffaloboy
 
Messages: 32
Inscription: 22 Oct 2009 16:48

Re: hacked by godzilla

Messagepar buffaloboy » 15 Nov 2009 09:27

E:\System Volume Information\_restore{3A0DC53C-DB0B-4B97-A1A0-9D8626D243EF}\RP2\A0000228.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033209.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033221.vbs VBS/Butsur.B worm
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033222.inf INF/Autorun virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033227.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033254.vbs VBS/Butsur.B worm
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033255.inf INF/Autorun virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033262.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033263.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033264.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033265.exe probably unknown CRYPT.WIN32 virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033364.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033365.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033367.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033368.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033369.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033370.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033371.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033372.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033373.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033375.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033378.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033379.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033380.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033381.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033382.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033383.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033384.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033385.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033386.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033387.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033388.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033389.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033390.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033391.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033392.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033393.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033559.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033560.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033572.vbs VBS/Butsur.B worm
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033573.inf INF/Autorun virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033580.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033581.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033583.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033584.exe probably unknown CRYPT.WIN32 virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033675.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033676.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033678.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033679.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033680.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033681.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033682.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033683.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033684.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033686.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033689.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033690.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033691.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033692.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033693.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033694.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033695.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033696.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033697.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033698.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033699.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033700.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033701.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033702.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033703.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033704.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033812.vbs VBS/Butsur.B worm
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033813.inf INF/Autorun virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033820.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033821.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033823.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033824.exe probably unknown CRYPT.WIN32 virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033913.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033914.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033916.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033917.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033918.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033919.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033920.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033921.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033922.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033924.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033927.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033928.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033929.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033930.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033931.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033932.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033933.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033934.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033935.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033936.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033937.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033938.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033939.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033940.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033941.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0033942.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0034103.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP69\A0034104.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP70\A0034112.vbs VBS/Butsur.B worm
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP70\A0034113.inf INF/Autorun virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP70\A0034123.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP70\A0034156.vbs VBS/Butsur.B worm
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP70\A0034157.inf INF/Autorun virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP70\A0034164.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP70\A0034165.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP70\A0034167.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP70\A0034170.exe probably unknown CRYPT.WIN32 virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP70\A0034262.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP70\A0034263.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP70\A0034265.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP70\A0034266.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP70\A0034267.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP70\A0034268.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP70\A0034269.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP70\A0034270.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP70\A0034271.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP70\A0034273.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP70\A0034276.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP70\A0034277.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP70\A0034278.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP70\A0034279.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP70\A0034280.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP70\A0034281.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP70\A0034282.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP70\A0034283.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP70\A0034284.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP70\A0034285.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP70\A0034286.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP70\A0034287.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP70\A0034288.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP70\A0034289.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP70\A0034290.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP70\A0034291.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP70\A0034449.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP70\A0034450.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP71\A0034458.vbs VBS/Butsur.B worm
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP71\A0034459.inf INF/Autorun virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP71\A0034470.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP72\A0034520.vbs VBS/Butsur.B worm
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP72\A0034521.inf INF/Autorun virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP72\A0034532.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP73\A0034563.vbs VBS/Butsur.B worm
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP73\A0034564.inf INF/Autorun virus
E:\System Volume Information\_restore{ECED8700-1A2B-471D-8516-69D791F25EE0}\RP73\A0034574.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0008609.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0008611.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0008612.exe probably unknown CRYPT.WIN32 virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0008635.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0008769.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0008770.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0008772.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0008788.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0008789.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0008790.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0008791.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0008792.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0008793.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0008795.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0008798.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0008799.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0008800.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0008801.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0008802.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0008803.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0008804.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0008805.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0008806.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0008807.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0008808.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0008809.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0008810.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0008811.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0008812.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0008813.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0008832.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0008833.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0008855.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0008856.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0008857.exe probably unknown CRYPT.WIN32 virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0008876.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0008986.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0008987.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0008989.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0009004.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0009005.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0009006.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0009007.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0009009.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0009010.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0009012.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0009016.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0009017.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0009018.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0009019.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0009020.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0009021.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0009024.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0009025.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0009026.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0009028.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0009029.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0009031.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0009033.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0009034.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0009037.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0009038.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0009095.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0009097.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0009098.exe probably unknown CRYPT.WIN32 virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0009119.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0009292.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0009293.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0009295.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0009310.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0009312.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0009313.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0009314.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0009315.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0009316.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0009319.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0009322.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0009323.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0009324.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0009325.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0009326.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0009328.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0009330.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0009331.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0009332.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0009333.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0009334.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0009337.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0009339.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0009340.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0009342.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0009344.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0009388.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0009390.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP32\A0009391.exe probably unknown CRYPT.WIN32 virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0009435.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0009439.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0009443.exe probably unknown CRYPT.WIN32 virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0009498.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0009500.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0009501.exe probably unknown CRYPT.WIN32 virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0009644.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0009790.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0009791.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0009793.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0009795.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0009796.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0009797.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0009798.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0009799.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0009800.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0009802.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0009805.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0009806.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0009807.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0009808.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0009809.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0009810.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0009811.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0009812.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0009813.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0009814.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0009815.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0009816.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0009817.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0009818.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0009819.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0009820.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0009851.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0009853.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0009854.exe probably unknown CRYPT.WIN32 virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0009879.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0009892.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0009893.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0009896.exe probably unknown CRYPT.WIN32 virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0009920.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010083.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010084.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010086.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010088.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010089.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010090.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010091.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010092.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010093.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010095.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010098.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010099.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010100.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010101.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010102.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010103.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010104.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010105.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010106.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010107.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010108.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010109.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010110.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010111.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010112.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010113.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010128.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010129.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010149.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010151.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010152.exe probably unknown CRYPT.WIN32 virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010176.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010350.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010351.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010353.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010354.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010355.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010356.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010357.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010358.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010359.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010361.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010364.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010365.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010366.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010367.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010368.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010369.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010370.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010371.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010372.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010373.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010374.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010376.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010377.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010379.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010381.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010382.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010405.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010407.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010411.exe probably unknown CRYPT.WIN32 virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010435.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010567.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010569.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010571.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010573.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010574.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010575.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010576.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010577.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010578.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010580.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010583.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010584.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010585.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010586.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010587.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010588.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010589.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010590.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010591.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010592.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010593.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010594.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010595.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010596.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010597.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP33\A0010598.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP34\A0010618.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP34\A0010626.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP34\A0010627.exe probably unknown CRYPT.WIN32 virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP34\A0010630.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP34\A0010631.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP34\A0010633.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP34\A0010635.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP34\A0010636.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP34\A0010637.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP34\A0010638.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP34\A0010639.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP34\A0010640.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP34\A0010642.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP34\A0010643.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP34\A0010646.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP34\A0010647.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP34\A0010648.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP34\A0010649.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP34\A0010650.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP34\A0010662.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP34\A0010667.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP34\A0010691.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP34\A0010719.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP34\A0010720.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP34\A0010725.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP34\A0010726.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP34\A0010727.exe Win32/Sality.NAM virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP34\A0010728.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP34\A0010729.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP34\A0010730.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP34\A0010731.exe Win32/Sality.NAU virus
E:\System Volume Information\_restore{060DD4B9-90FE-44EE-8F50-B66D63D6CAFD}\RP34\A0010752.exe Win32/Sality.NAM virus
E:\jeux\heors\campaign_editor.exe Win32/Sality.NAM virus
E:\jeux\heors\heroes4.exe Win32/Sality.NAM virus
E:\jeux\heors\heroes4f.exe probably unknown CRYPT.WIN32 virus
E:\eMule\eMule.exe Win32/Sality.NAM virus
E:\bureau ancien\cakedance_eng_(550x310)_pb050311.exe Win32/Sality.NAU virus
E:\bureau ancien\tteotta_eng_(550x281)_pb050215.exe Win32/Sality.NAU virus
E:\bureau ancien\Incoming\JAVA 2 SE RUNTIME 5.0.exe Win32/Sality.NAU virus
E:\utiles\Audiograbber.exe Win32/Sality.NAU virus
E:\utiles\daemon344.exe Win32/Sality.NAM virus
E:\utiles\eMule0.47a-Installer.exe Win32/Sality.NAU virus
E:\utiles\FreeCDExtractor.exe Win32/Sality.NAU virus
E:\utiles\Google Updater.exe Win32/Sality.NAU virus
E:\utiles\GoogleEarthSetup.exe Win32/Sality.NAU virus
E:\utiles\iTunesSetup.exe Win32/Sality.NAU virus
E:\utiles\SetupCloneCD5211.exe Win32/Sality.NAU virus
E:\utiles\wrar330fr.exe Win32/Sality.NAU virus
E:\utiles\LimeWireWin.exe Win32/Sality.NAU virus
E:\utiles\vlc-0.9.8a-win32.exe Win32/Sality.NAU virus
E:\utiles\winamp5541_full_emusic-7plus_fr-fr.exe Win32/Sality.NAU virus
E:\utiles\PokerStarsInstall.exe Win32/Sality.NAU virus
E:\utiles\Nero 6.0.0.11 Full FR + Keygen + adon+ All plugin\InCD40121.exe Win32/Sality.NAU virus
E:\utiles\Nero 6.0.0.11 Full FR + Keygen + adon+ All plugin\Keygen-Nero.exe Win32/Sality.NAM virus
E:\utiles\Nero 6.0.0.11 Full FR + Keygen + adon+ All plugin\NBR60011FRA.exe Win32/Sality.NAU virus
E:\utiles\Nero 6.0.0.11 Full FR + Keygen + adon+ All plugin\Nero60011.exe Win32/Sality.NAU virus
E:\utiles\Nero 6.0.0.11 Full FR + Keygen + adon+ All plugin\NeroMix1404.exe Win32/Sality.NAU virus
E:\utiles\Nero 6.0.0.11 Full FR + Keygen + adon+ All plugin\NeroNet1.0.43.0RC1.exe Win32/Sality.NAU virus
E:\utiles\Nero 6.0.0.11 Full FR + Keygen + adon+ All plugin\NeroNMP1405.exe Win32/Sality.NAU virus
E:\utiles\Nero 6.0.0.11 Full FR + Keygen + adon+ All plugin\NMP1405FRA.exe Win32/Sality.NAU virus
E:\utiles\Nero 6.0.0.11 Full FR + Keygen + adon+ All plugin\NVE2011.exe Win32/Sality.NAU virus
E:\utiles\Nero 6.0.0.11 Full FR + Keygen + adon+ All plugin\NVE2011FRA.exe Win32/Sality.NAU virus
E:\utiles\Nero 6.0.0.11 Full FR + Keygen + adon+ All plugin\ultime plug in nero6.exe Win32/Sality.NAU virus
E:\utiles\LeechFTP\Leechftp.exe Win32/Sality.NAM virus
E:\bordel\Benabar - amour.mp3 WMA/TrojanDownloader.GetCodec.C trojan
F:\menelik.mp3 a variant of WMA/TrojanDownloader.GetCodec.gen trojan
F:\winamp552_full_emusic-7plus_fr-fr.exe Win32/Sality.NAU virus
F:\winamp5531_full_emusic-7plus_en-us.exe Win32/Sality.NAU virus
F:\bordel\104-milow-ayo_technology-doh.wma WMA/TrojanDownloader.Wimad.NAD trojan
F:\bordel\Vanessa Paradis - Marilyn et John.wma WMA/TrojanDownloader.Wimad.NAG trojan
F:\Mes fichiers reçus\Mes fichiers reçus\L' amour à la mitraillette.exe Win32/Sality.NAU virus
F:\Mes fichiers reçus\Mes fichiers reçus\Le bulbe du beauf.exe Win32/Sality.NAU virus
F:\Mes fichiers reçus\Mes fichiers reçus\Masturbation pour eteindre.exe Win32/Sality.NAU virus
F:\musics\compil\eMule0.42g-Installer.[content.emule-project.net].exe Win32/Sality.NAU virus
G:\PokerStarsInstall.exe Win32/Sality.NAU virus
G:\bureau\LimeWireWin.exe Win32/Sality.NAU virus
G:\bureau\winamp555_lite_fr-fr.exe Win32/Sality.NAU virus
G:\programmes\Adobe\Acrobat 7.0\Reader\AcroRd32.exe Win32/Sality.NAU virus
G:\programmes\Adobe\Acrobat 7.0\Reader\AcroRd32Info.exe Win32/Sality.NAM virus
G:\programmes\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe Win32/Sality.NAU virus
G:\programmes\Adobe\Acrobat 7.0\Reader\reader_sl.exe Win32/Sality.NAM virus
G:\programmes\Adobe\Acrobat 7.0\Reader\Updater\acroaum.exe Win32/Sality.NAU virus
G:\programmes\Adobe\Reader\AcroRd32.exe Win32/Sality.NAU virus
G:\programmes\Adobe\Reader\AcroRd32Info.exe Win32/Sality.NAM virus
G:\programmes\Adobe\Reader\AdobeUpdateManager.exe Win32/Sality.NAU virus
G:\programmes\Adobe\Reader\reader_sl.exe Win32/Sality.NAM virus
G:\programmes\Adobe\Reader\Updater\acroaum.exe Win32/Sality.NAU virus
G:\programmes\K-Lite Codec Pack\filters\ac3config.exe Win32/Sality.NAM virus
G:\programmes\K-Lite Codec Pack\filters\divxconfig.exe Win32/Sality.NAM virus
G:\programmes\K-Lite Codec Pack\filters\DivXsm.exe Win32/Sality.NAM virus
G:\programmes\K-Lite Codec Pack\Media Player Classic\mplayerc.exe Win32/Sality.NAM virus
G:\programmes\K-Lite Codec Pack\tools\graphedit.exe Win32/Sality.NAU virus
G:\programmes\K-Lite Codec Pack\tools\lamedropxpd.exe Win32/Sality.NAM virus
G:\programmes\K-Lite Codec Pack\tools\mmview.exe Win32/Sality.NAM virus
G:\programmes\K-Lite Codec Pack\tools\oggdropXPd.exe Win32/Sality.NAM virus
G:\programmes\K-Lite Codec Pack\tools\StatsReader.exe Win32/Sality.NAM virus
G:\programmes\K-Lite Codec Pack\tools\VobSubStrip.exe Win32/Sality.NAM virus
G:\programmes\K-Lite Codec Pack\tools\gspot\gspot.exe Win32/Sality.NAM virus
G:\programmes\LimeWire\LimeWire.exe Win32/Sality.NAM virus
G:\programmes\LimeWire\uninstall.exe Win32/Sality.NAU virus
G:\programmes\LimeWire\.NetworkShare\LimeWireWin4.18.8.exe Win32/Sality.NAU virus
G:\programmes\nero\CoverDesigner\CoverDes.exe Win32/Sality.NAM virus
G:\programmes\nero\ImageDrive\ImageDrive.exe Win32/Sality.NAM virus
G:\programmes\nero\Nero\nero.exe Win32/Sality.NAM virus
G:\programmes\nero\Nero\NeroCmd.exe Win32/Sality.NAM virus
G:\programmes\nero\Nero\Uninstall\UNNero.exe Win32/Sality.NAM virus
G:\programmes\nero\Nero BackItUp\BackItUp.exe Win32/Sality.NAM virus
G:\programmes\nero\Nero BackItUp\NBJ.exe Win32/Sality.NAM virus
G:\programmes\nero\Nero BackItUp\NBR.exe Win32/Sality.NAM virus
G:\programmes\nero\Nero SoundTrax\SoundTrax.exe Win32/Sality.NAM virus
G:\programmes\nero\Nero StartSmart\NeroStartSmart.exe Win32/Sality.NAM virus
G:\programmes\nero\Nero Toolkit\CDSpeed.exe Win32/Sality.NAM virus
G:\programmes\nero\Nero Toolkit\DriveSpeed.exe Win32/Sality.NAM virus
G:\programmes\nero\Nero Toolkit\InfoTool.exe Win32/Sality.NAM virus
G:\programmes\nero\Nero Wave Editor\WaveEdit.exe Win32/Sality.NAM virus
G:\programmes\nero\WMPBurn\WMPBurn.exe Win32/Sality.NAM virus
G:\programmes\VideoLAN\VLC\uninstall.exe Win32/Sality.NAU virus
G:\programmes\Winamp\UninstWA.exe Win32/Sality.NAU virus
G:\programmes\Winamp\winampa.exe Win32/Sality.NAM virus
Operating memory multiple threats
buffaloboy
 
Messages: 32
Inscription: 22 Oct 2009 16:48

Suivante

Retourner vers Désinfections et demandes d'analyse

Qui est en ligne

Utilisateurs parcourant ce forum: Aucun utilisateur enregistré et 3 invités