I got this copy of windows from my friend. I have not customized anything in this except for the control panel's classic view. I did this because i was unable to find add/remove programs in the other view.
See, i havent changed anything in start menu as fer as i can understand. I didnt get ur question abt start menu customization. so if anything u want to know further, can u ask me in little detail. so that i can answer u better.
Now here is avira's log file:
Avira AntiVir Personal
Report file date: Sunday, December 21, 2008 01:05
Scanning for 1106377 virus strains and unwanted programs.
Licensed to: Avira AntiVir PersonalEdition Classic
Serial number: 0000149996-ADJIE-0001
Platform: Windows XP
Windows version: (Service Pack 2) [5.1.2600]
Boot mode: Normally booted
Username: SYSTEM
Computer name: COMPUTER2007
Version information:
BUILD.DAT : 8.2.0.337 16934 Bytes 11/18/2008 13:05:00
AVSCAN.EXE : 8.1.4.10 315649 Bytes 11/18/2008 15:21:26
AVSCAN.DLL : 8.1.4.0 40705 Bytes 5/26/2008 14:56:40
LUKE.DLL : 8.1.4.5 164097 Bytes 6/12/2008 19:44:19
LUKERES.DLL : 8.1.4.0 12033 Bytes 5/26/2008 14:58:52
ANTIVIR0.VDF : 7.1.0.0 15603712 Bytes 10/27/2008 18:30:36
ANTIVIR1.VDF : 7.1.0.197 1170432 Bytes 12/7/2008 06:55:46
ANTIVIR2.VDF : 7.1.0.250 342528 Bytes 12/18/2008 06:57:32
ANTIVIR3.VDF : 7.1.1.14 95232 Bytes 12/19/2008 06:57:58
Engineversion : 8.2.0.45
AEVDF.DLL : 8.1.0.6 102772 Bytes 10/14/2008 17:05:56
AESCRIPT.DLL : 8.1.1.19 336252 Bytes 12/21/2008 07:02:19
AESCN.DLL : 8.1.1.5 123251 Bytes 11/7/2008 22:06:41
AERDL.DLL : 8.1.1.3 438645 Bytes 11/4/2008 20:58:38
AEPACK.DLL : 8.1.3.4 393591 Bytes 11/11/2008 16:41:39
AEOFFICE.DLL : 8.1.0.33 196987 Bytes 12/21/2008 07:01:58
AEHEUR.DLL : 8.1.0.75 1524087 Bytes 12/21/2008 07:00:55
AEHELP.DLL : 8.1.2.0 119159 Bytes 12/21/2008 06:58:40
AEGEN.DLL : 8.1.1.8 323956 Bytes 12/21/2008 06:58:34
AEEMU.DLL : 8.1.0.9 393588 Bytes 10/14/2008 17:05:56
AECORE.DLL : 8.1.5.2 172405 Bytes 12/21/2008 06:58:12
AEBB.DLL : 8.1.0.3 53618 Bytes 10/14/2008 17:05:56
AVWINLL.DLL : 1.0.0.12 15105 Bytes 7/9/2008 15:40:05
AVPREF.DLL : 8.0.2.0 38657 Bytes 5/16/2008 16:28:01
AVREP.DLL : 8.0.0.2 98344 Bytes 7/31/2008 19:02:15
AVREG.DLL : 8.0.0.1 33537 Bytes 5/9/2008 18:26:40
AVARKT.DLL : 1.0.0.23 307457 Bytes 2/12/2008 15:29:23
AVEVTLOG.DLL : 8.0.0.16 119041 Bytes 6/12/2008 19:27:49
SQLITE3.DLL : 3.3.17.1 339968 Bytes 1/23/2008 00:28:02
SMTPLIB.DLL : 1.2.0.23 28929 Bytes 6/12/2008 19:49:40
NETNT.DLL : 8.0.0.1 7937 Bytes 1/25/2008 19:05:10
RCIMAGE.DLL : 8.0.0.51 2371841 Bytes 6/12/2008 20:48:07
RCTEXT.DLL : 8.0.52.0 86273 Bytes 6/27/2008 20:34:37
Configuration settings for the scan:
Jobname..........................: Complete system scan
Configuration file...............: c:\program files\avira\antivir personaledition classic\sysscan.avp
Logging..........................: low
Primary action...................: interactive
Secondary action.................: ignore
Scan master boot sector..........: on
Scan boot sector.................: on
Boot sectors.....................: C:, D:, E:,
Process scan.....................: on
Scan registry....................: on
Search for rootkits..............: off
Scan all files...................: Intelligent file selection
Scan archives....................: on
Recursion depth..................: 20
Smart extensions.................: on
Macro heuristic..................: on
File heuristic...................: medium
Start of the scan: Sunday, December 21, 2008 01:05
The scan of running processes will be started
Scan process 'avscan.exe' - '1' Module(s) have been scanned
Scan process 'avcenter.exe' - '1' Module(s) have been scanned
Scan process 'avgnt.exe' - '1' Module(s) have been scanned
Scan process 'avguard.exe' - '1' Module(s) have been scanned
Scan process 'sched.exe' - '1' Module(s) have been scanned
Scan process 'uTorrent.exe' - '1' Module(s) have been scanned
Scan process 'explorer.exe' - '1' Module(s) have been scanned
Scan process 'firefox.exe' - '1' Module(s) have been scanned
Scan process 'googletalk.exe' - '1' Module(s) have been scanned
Scan process 'YahooMessenger.exe' - '1' Module(s) have been scanned
Scan process 'DataLayer.exe' - '1' Module(s) have been scanned
Scan process 'ServiceLayer.exe' - '1' Module(s) have been scanned
Scan process 'LaunchApplication.exe' - '1' Module(s) have been scanned
Scan process 'alg.exe' - '1' Module(s) have been scanned
Scan process 'DAP.exe' - '1' Module(s) have been scanned
Scan process 'GoogleToolbarNotifier.exe' - '1' Module(s) have been scanned
Scan process 'ctfmon.exe' - '1' Module(s) have been scanned
Scan process 'hkcmd.exe' - '1' Module(s) have been scanned
Scan process 'igfxtray.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'spoolsv.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'lsass.exe' - '1' Module(s) have been scanned
Scan process 'services.exe' - '1' Module(s) have been scanned
Scan process 'winlogon.exe' - '1' Module(s) have been scanned
Scan process 'csrss.exe' - '1' Module(s) have been scanned
Scan process 'smss.exe' - '1' Module(s) have been scanned
31 processes with 31 modules were scanned
Starting master boot sector scan:
Master boot sector HD0
[INFO] No virus was found!
Start scanning boot sectors:
Boot sector 'C:\'
[INFO] No virus was found!
Boot sector 'D:\'
[INFO] No virus was found!
Boot sector 'E:\'
[INFO] No virus was found!
Starting to scan the registry.
The registry was scanned ( '48' files ).
Starting the file scan:
Begin scan in 'C:\'
C:\pagefile.sys
[WARNING] The file could not be opened!
C:\New Folder\McAfee Total Protection 2008 (Retail)-HeartBug\en-AU\Acroread\AcroRead.exe
- Archive type: CAB SFX (self extracting)
--> \Data1.cab
[1] Archive type: CAB (Microsoft)
--> VDK10.RSD
[WARNING] No further files can be extracted from this archive. The archive will be closed
--> \instmsiw.exe
[WARNING] No further files can be extracted from this archive. The archive will be closed
C:\Program Files\Adobe\keygen.exe
[DETECTION] Is the TR/Agent.59904.B Trojan
[NOTE] The file was moved to '49c6ec9e.qua'!
C:\Program Files\Adobe\Adobe Photoshop CS2\keygen.exe
[DETECTION] Is the TR/Agent.59904.B Trojan
[NOTE] The file was moved to '49c6ed06.qua'!
C:\Qoobox\Quarantine\C\WINDOWS\system32\gmurftjy.dll.vir
[DETECTION] Is the TR/Vundo.Gen.6.26 Trojan
[NOTE] The file was moved to '49c2f0ae.qua'!
C:\Qoobox\Quarantine\C\WINDOWS\system32\ipktzv.dll.vir
[DETECTION] Is the TR/Vundo.Gen.6.26 Trojan
[NOTE] The file was moved to '49b8f0b4.qua'!
C:\Qoobox\Quarantine\C\WINDOWS\system32\wvUlmmnM.dll.vir
[DETECTION] Is the TR/Vundo.Gen.6.17 Trojan
[NOTE] The file was moved to '49a2f0be.qua'!
C:\Qoobox\Quarantine\C\WINDOWS\system32\yopxrhnr.dll.vir
[DETECTION] Is the TR/Vundo.Gen.6.25 Trojan
[NOTE] The file was moved to '49bdf0ba.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP10\A0001165.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df091.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP10\A0001171.exe
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df099.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP11\A0001360.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df09f.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP11\A0001366.exe
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fcc6d8.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP12\A0001478.exe
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df0a3.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP12\A0001484.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdeafc.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP14\A0001580.exe
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df0a9.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP14\A0001586.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df0aa.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP14\A0002148.dll
[DETECTION] Is the TR/Vundo.Gen Trojan
[NOTE] The file was moved to '497df0b8.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP14\A0002149.dll
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdeae1.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP14\A0002150.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df0b9.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP14\A0002151.exe
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdeae2.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP15\A0002162.exe
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df0ba.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP15\A0002166.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdeae3.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP16\A0002228.exe
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df0be.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP16\A0002235.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdeae7.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP16\A0002395.dll
[DETECTION] Is the TR/Vundo.Gen Trojan
[NOTE] The file was moved to '497df0c5.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP16\A0002396.dll
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdea9e.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP16\A0002397.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df0c7.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP16\A0002398.exe
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdea90.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP16\A0002419.dll
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df0c6.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP16\A0002420.dll
[DETECTION] Is the TR/Vundo.Gen Trojan
[NOTE] The file was moved to '48fdea9f.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP16\A0002421.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df0c9.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP16\A0002423.exe
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdea92.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP17\A0002439.exe
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df0c8.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP17\A0002445.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdea91.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP17\A0002485.dll
[DETECTION] Is the TR/Vundo.Gen Trojan
[NOTE] The file was moved to '497df0ca.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP17\A0002486.dll
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdea93.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP17\A0002493.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df0cc.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP17\A0002496.exe
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df0cb.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP17\A0002502.exe
[DETECTION] Is the TR/Dropper.Gen Trojan
[NOTE] The file was moved to '48fdea94.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP18\A0002518.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdea95.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP18\A0002524.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df0ce.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP19\A0002566.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdea97.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP19\A0002572.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df0cf.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP19\A0002600.dll
[DETECTION] Is the TR/Vundo.Gen Trojan
[NOTE] The file was moved to '497df0d0.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP19\A0002601.dll
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdea89.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP19\A0002602.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df0d2.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP19\A0002603.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df0d1.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP19\A0003598.dll
[DETECTION] Is the TR/Vundo.Gen Trojan
[NOTE] The file was moved to '48fdea8a.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP19\A0003599.dll
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df0d3.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP19\A0003600.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdea8c.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP19\A0003601.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdea8b.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP2\A0000758.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df0d5.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP2\A0000764.exe
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdea8e.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP20\A0003613.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df0d7.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP20\A0003619.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df0d4.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP20\A0003632.dll
[DETECTION] Is the TR/Vundo.Gen Trojan
[NOTE] The file was moved to '48fdea8d.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP20\A0003633.dll
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdea80.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP20\A0003634.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df0d9.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP20\A0003635.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdea82.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP20\A0003645.exe
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df0d6.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP20\A0003652.exe
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdea8f.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP20\A0003668.dll
[DETECTION] Is the TR/Vundo.Gen Trojan
[NOTE] The file was moved to '497df0db.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP20\A0003669.dll
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdea84.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP20\A0003670.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df0dd.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP20\A0003671.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df0d8.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP20\A0003688.exe
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdea81.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP20\A0003734.exe
[DETECTION] Is the TR/Dropper.Gen Trojan
[NOTE] The file was moved to '48fdea86.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP21\A0003737.exe
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df0dc.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP21\A0003738.dll
[DETECTION] Is the TR/Vundo.Gen Trojan
[NOTE] The file was moved to '48fdea85.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP21\A0003739.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df0df.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP22\A0003760.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdeab8.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP22\A0004421.dll
[DETECTION] Is the TR/Vundo.Gen Trojan
[NOTE] The file was moved to '497df100.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP22\A0004422.dll
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdeb59.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP22\A0004424.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df102.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP22\A0004425.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df101.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP22\A0004444.exe
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdeb5b.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP22\A0004445.exe
[DETECTION] Is the TR/Dropper.Gen Trojan
[NOTE] The file was moved to '497df104.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP23\A0004446.cmd
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df103.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP23\A0004452.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdeb5c.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP24\A0004457.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdeb5d.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP24\A0004463.cmd
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df106.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP25\A0004467.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df105.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP25\A0004473.cmd
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdeb5f.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP25\A0005419.dll
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df138.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP25\A0005420.dll
[DETECTION] Is the TR/Vundo.Gen Trojan
[NOTE] The file was moved to '497df107.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP25\A0005422.cmd
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdeb50.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP25\A0005425.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df109.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP25\A0005439.exe
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df108.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP25\A0006419.dll
[DETECTION] Is the TR/Vundo.Gen Trojan
[NOTE] The file was moved to '48fdeb52.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP25\A0006420.dll
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df10b.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP25\A0006422.cmd
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdeb54.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP25\A0006423.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df10a.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP25\A0006446.dll
[DETECTION] Is the TR/Vundo.Gen Trojan
[NOTE] The file was moved to '497df10d.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP25\A0006447.dll
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdeb56.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP25\A0006453.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df10c.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP25\A0006459.cmd
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdeb55.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP26\A0006466.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df10f.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP26\A0006467.cmd
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdeb48.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP27\A0006485.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df111.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP27\A0006494.cmd
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df110.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP27\A0006496.dll
[DETECTION] Is the TR/Vundo.Gen.6.20 Trojan
[NOTE] The file was moved to '48fdeb4a.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP27\A0006501.dll
[DETECTION] Is the TR/Vundo.Gen Trojan
[NOTE] The file was moved to '497df112.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP27\A0006502.dll
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fcc76b.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP27\A0006504.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df114.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP27\A0006510.cmd
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df113.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP27\A0007500.dll
[DETECTION] Is the TR/Vundo.Gen Trojan
[NOTE] The file was moved to '48fcc76c.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP27\A0007501.dll
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df115.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP27\A0007509.cmd
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fcc76d.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP27\A0008501.dll
[DETECTION] Is the TR/Vundo.Gen Trojan
[NOTE] The file was moved to '48fcc76e.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP27\A0008502.dll
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df117.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP27\A0008504.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fcc760.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP27\A0008510.cmd
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df116.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP28\A0008590.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df11b.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP28\A0008596.cmd
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fcc764.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP29\A0008603.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df11f.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP29\A0008609.cmd
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fcc758.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP29\A0008635.exe
[DETECTION] Is the TR/Crypt.FKM.Gen Trojan
[NOTE] The file was moved to '497df122.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP29\A0009523.exe
[DETECTION] Is the TR/Crypt.FKM.Gen Trojan
[NOTE] The file was moved to '497df127.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP29\A0009536.dll
[DETECTION] Is the TR/Vundo.Gen Trojan
[NOTE] The file was moved to '497df128.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP29\A0009537.dll
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fcc751.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP29\A0009539.cmd
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df129.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP29\A0009540.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fcc752.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP29\A0010503.dll
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df12b.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP29\A0010504.dll
[DETECTION] Is the TR/Vundo.Gen Trojan
[NOTE] The file was moved to '497df12a.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP29\A0010505.cmd
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fcc753.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP29\A0010511.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df12c.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP29\A0011501.dll
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fcc754.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP29\A0011502.dll
[DETECTION] Is the TR/Vundo.Gen Trojan
[NOTE] The file was moved to '497df12d.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP29\A0011504.cmd
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fcc756.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP29\A0011510.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fcc755.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP29\A0012501.dll
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df12e.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP29\A0012502.dll
[DETECTION] Is the TR/Vundo.Gen Trojan
[NOTE] The file was moved to '497df12f.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP29\A0012505.cmd
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fcc748.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP29\A0012511.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fcc757.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP29\A0013501.dll
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df120.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP29\A0013502.dll
[DETECTION] Is the TR/Vundo.Gen Trojan
[NOTE] The file was moved to '497df131.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP29\A0013504.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fcc74a.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP29\A0013593.dll
[DETECTION] Is the TR/Vundo.Gen Trojan
[NOTE] The file was moved to '497df137.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP29\A0013594.dll
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fcc740.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP29\A0013597.cmd
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fcc741.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP29\A0013603.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df13a.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP3\A0000767.exe
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df13c.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP3\A0000775.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fcc745.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP30\A0013640.cmd
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df13d.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP30\A0013644.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df13e.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP30\A0013671.dll
[DETECTION] Is the TR/Vundo.Gen Trojan
[NOTE] The file was moved to '497df140.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP30\A0013673.exe
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df141.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP30\A0013678.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fcc73a.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP30\A0013680.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df142.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP30\A0013681.cmd
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fcc73b.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP30\A0013692.dll
[DETECTION] Is the TR/Vundo.HO Trojan
[NOTE] The file was moved to '497df144.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP30\A0013694.dll
[DETECTION] Is the TR/Vundo.Gen.6.26 Trojan
[NOTE] The file was moved to '497df143.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP30\A0013695.dll
[DETECTION] Is the TR/Vundo.HO Trojan
[NOTE] The file was moved to '48fcc73c.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP30\A0013696.dll
[DETECTION] Is the TR/Vundo.HO Trojan
[NOTE] The file was moved to '48fcc73d.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP30\A0013697.dll
[DETECTION] Is the TR/Vundo.Gen.6.26 Trojan
[NOTE] The file was moved to '497df146.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP30\A0013698.dll
[DETECTION] Is the TR/Vundo.Gen.6.18 Trojan
[NOTE] The file was moved to '48fcc73f.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP30\A0013699.dll
[DETECTION] Is the TR/Vundo.HO Trojan
[NOTE] The file was moved to '497df145.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP30\A0013700.dll
[DETECTION] Is the TR/Vundo.HO Trojan
[NOTE] The file was moved to '48fcc73e.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP30\A0013702.dll
[DETECTION] Is the TR/Vundo.Gen.6.18 Trojan
[NOTE] The file was moved to '48fcc743.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP30\A0013703.dll
[DETECTION] Is the TR/Vundo.Gen.6.17 Trojan
[NOTE] The file was moved to '48fcc747.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP30\A0013704.dll
[DETECTION] Is the TR/Vundo.HO Trojan
[NOTE] The file was moved to '497df130.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP30\A0013705.dll
[DETECTION] Is the TR/Vundo.Gen.6.25 Trojan
[NOTE] The file was moved to '497df147.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP30\A0013718.dll
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df148.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP30\A0013776.dll
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df14c.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP30\A0013777.exe
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fcc735.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP30\A0013778.dll
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df14d.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP30\A0014776.dll
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df14e.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP30\A0014785.dll
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdeb17.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP30\A0015785.dll
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df14f.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP31\A0016785.dll
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df151.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP31\A0018054.exe
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df186.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP31\A0018074.dll
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df188.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP31\A0018075.exe
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdebd1.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP31\A0018076.dll
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df18a.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP34\A0018209.exe
[DETECTION] Is the TR/Agent.59904.B Trojan
[NOTE] The file was moved to '497df192.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP34\A0018210.exe
[DETECTION] Is the TR/Agent.59904.B Trojan
[NOTE] The file was moved to '48fdebcb.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP4\A0000790.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df195.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP4\A0000796.exe
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdebce.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP5\A0000800.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df196.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP5\A0000806.exe
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df197.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP5\A0000862.dll
[DETECTION] Is the TR/Vundo.Gen Trojan
[NOTE] The file was moved to '497df19b.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP5\A0000864.dll
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdebc4.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP6\A0000919.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df19c.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP6\A0000920.exe
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdebc5.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP6\A0000937.dll
[DETECTION] Is the TR/Vundo.Gen Trojan
[NOTE] The file was moved to '497df19d.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP6\A0000938.dll
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdebc6.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP6\A0000939.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df19f.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP6\A0000940.exe
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df19e.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP7\A0000955.exe
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdebc7.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP7\A0000956.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df190.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP7\A0001046.dll
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df1a4.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP7\A0001047.dll
[DETECTION] Is the TR/Vundo.Gen Trojan
[NOTE] The file was moved to '48fdebfd.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP7\A0001048.exe
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df1a5.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP7\A0001049.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdebfe.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP8\A0001106.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df1a9.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP8\A0001112.exe
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df1aa.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP9\A0001116.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdebf3.qua'!
C:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP9\A0001122.exe
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df1ab.qua'!
Begin scan in 'D:\'
D:\Softwares\fire-movie.v.3.137.exe
--> ProgramFilesDir/jah31371.exe
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '49bff397.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP1\A0000751.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df448.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP10\A0001167.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdee11.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP10\A0001172.exe
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df449.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP11\A0001362.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdee12.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP11\A0001367.exe
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df44b.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP12\A0001480.exe
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df44a.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP12\A0001485.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdee13.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP14\A0001582.exe
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df44c.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP14\A0001587.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdee14.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP14\A0002153.exe
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df44d.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP14\A0002154.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdee16.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP15\A0002164.exe
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdee15.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP15\A0002168.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df44e.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP16\A0002231.exe
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdee17.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP16\A0002236.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df440.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP16\A0002400.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df44f.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP16\A0002401.exe
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdee08.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP16\A0002424.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdee19.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP16\A0002425.exe
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df442.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP17\A0002441.exe
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdee1b.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP17\A0002446.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df451.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP17\A0002495.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdee0a.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP17\A0002498.exe
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df453.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP18\A0002520.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df450.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP18\A0002525.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdee09.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP19\A0002568.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df452.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP19\A0002573.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdee0b.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP19\A0002605.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdee0c.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP19\A0002606.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df455.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP19\A0003603.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdee0e.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP19\A0003604.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df454.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP2\A0000760.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdee0d.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP2\A0000765.exe
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df456.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP20\A0003615.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df457.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP20\A0003620.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdee00.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP20\A0003637.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df459.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP20\A0003638.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdee0f.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP20\A0003675.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df444.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP20\A0003676.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdee1d.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP21\A0003741.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdee02.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP22\A0003762.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df45b.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP22\A0004427.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdee04.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP22\A0004428.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df446.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP23\A0004448.cmd
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdee1f.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP23\A0004453.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df478.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP24\A0004459.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df45d.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP24\A0004464.cmd
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdee06.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP25\A0004469.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df45f.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP25\A0004474.cmd
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df458.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP25\A0005424.cmd
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdee01.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP25\A0005427.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df45a.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP25\A0006425.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdee03.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP25\A0006426.cmd
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdee38.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP25\A0006455.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df461.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP25\A0006460.cmd
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdee3a.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP26\A0006469.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df45c.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP26\A0006474.cmd
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '48fdee05.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP27\A0006487.bat
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '497df45e.qua'!
D:\System Volume Information\_restore{50A50E2F-FDB3-48B3-9610-0A6A7A4FFEFA}\RP27\A0006488.cmd
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE]