Forums
New posts
Search forums
News
Security News
Technology News
Giveaways
Giveaways, Promotions and Contests
Discounts & Deals
Reviews
Users Reviews
Video Reviews
Support
Windows Malware Removal Help & Support
Inactive Support Threads
Mac Malware Removal Help & Support
Mobile Malware Removal Help & Support
Blog
Log in
Register
What's new
Search
Search titles only
By:
Search titles only
By:
Reply to thread
Menu
Install the app
Install
JavaScript is disabled. For a better experience, please enable JavaScript in your browser before proceeding.
You are using an out of date browser. It may not display this or other websites correctly.
You should upgrade or use an
alternative browser
.
Forums
Support
Windows Malware Removal Help & Support
fbi ransomeware/white screen
Message
<blockquote data-quote="travis" data-source="post: 144255" data-attributes="member: 14723"><p>02:04:35.0397 4940 [ E36112A8A6C7F840169A7E92C12F4203 ] C:\Windows\System32\wsock32.dll</p><p>02:04:35.0397 4940 C:\Windows\System32\wsock32.dll - ok</p><p>02:04:35.0397 4940 [ 423982DD851406A52B6399DDB196C606 ] C:\Windows\System32\wmdrmdev.dll</p><p>02:04:35.0397 4940 C:\Windows\System32\wmdrmdev.dll - ok</p><p>02:04:35.0413 4940 [ 2C1055E2C6D42753241FB2A129136994 ] C:\Windows\System32\drmv2clt.dll</p><p>02:04:35.0413 4940 C:\Windows\System32\drmv2clt.dll - ok</p><p>02:04:35.0413 4940 [ 44CAFD301D7F0CEDCEBC20699112F069 ] C:\ProgramData\Microsoft\Windows\DRM\Cache\Indiv_SID_S-1-5-20\Indiv01_64.key</p><p>02:04:35.0413 4940 C:\ProgramData\Microsoft\Windows\DRM\Cache\Indiv_SID_S-1-5-20\Indiv01_64.key - ok</p><p>02:04:35.0429 4940 [ 81252AA3B13743020BCF2089A5A0D911 ] C:\Windows\System32\wscinterop.dll</p><p>02:04:35.0429 4940 C:\Windows\System32\wscinterop.dll - ok</p><p>02:04:35.0429 4940 [ DF50DAE4C547285E4997A0C61063B632 ] C:\Windows\System32\wscui.cpl</p><p>02:04:35.0429 4940 C:\Windows\System32\wscui.cpl - ok</p><p>02:04:35.0444 4940 [ F9959237F106F2B2609E61A290C0652E ] C:\Windows\System32\werconcpl.dll</p><p>02:04:35.0444 4940 C:\Windows\System32\werconcpl.dll - ok</p><p>02:04:35.0444 4940 [ 1EB82516F21F27EED1833B4F9FD9614E ] C:\Windows\System32\wmp.dll</p><p>02:04:35.0444 4940 C:\Windows\System32\wmp.dll - ok</p><p>02:04:35.0460 4940 [ 7E591867422DC788B9E5BD337A669A08 ] C:\Windows\System32\wercplsupport.dll</p><p>02:04:35.0460 4940 C:\Windows\System32\wercplsupport.dll - ok</p><p>02:04:35.0460 4940 [ E19AD0D49BFF5938B3E374873AC174DE ] C:\Windows\System32\wmploc.DLL</p><p>02:04:35.0460 4940 C:\Windows\System32\wmploc.DLL - ok</p><p>02:04:35.0475 4940 [ E8B1FE6669397D1772D8196DF0E57A9E ] C:\Windows\System32\wscsvc.dll</p><p>02:04:35.0475 4940 C:\Windows\System32\wscsvc.dll - ok</p><p>02:04:35.0475 4940 [ 8FAE4C4ACF3F65FBE7BC659257A6B9AA ] C:\Program Files\Internet Explorer\ieproxy.dll</p><p>02:04:35.0475 4940 C:\Program Files\Internet Explorer\ieproxy.dll - ok</p><p>02:04:35.0491 4940 [ 355A138ABDFD43FBABCAE3A1B06AB93D ] C:\Windows\System32\wmpps.dll</p><p>02:04:35.0491 4940 C:\Windows\System32\wmpps.dll - ok</p><p>02:04:35.0491 4940 [ F149E8CAE538DBF7059B00326673F602 ] C:\Windows\System32\wmpmde.dll</p><p>02:04:35.0491 4940 C:\Windows\System32\wmpmde.dll - ok</p><p>02:04:35.0507 4940 [ 28A7D7C7E2FDD1D55F12F750CD6331EC ] C:\Windows\System32\MSMPEG2ENC.DLL</p><p>02:04:35.0507 4940 C:\Windows\System32\MSMPEG2ENC.DLL - ok</p><p>02:04:35.0507 4940 [ 46767946E7B559D981C1DC04EC0AB36F ] C:\Windows\System32\devenum.dll</p><p>02:04:35.0507 4940 C:\Windows\System32\devenum.dll - ok</p><p>02:04:35.0522 4940 [ 558C42D165DB5799B4072DC0A9C27C0B ] C:\Windows\System32\msdmo.dll</p><p>02:04:35.0522 4940 C:\Windows\System32\msdmo.dll - ok</p><p>02:04:35.0522 4940 [ D47EC6A8E81633DD18D2436B19BAF6DE ] C:\Windows\System32\upnphost.dll</p><p>02:04:35.0522 4940 C:\Windows\System32\upnphost.dll - ok</p><p>02:04:35.0538 4940 [ DDA4CAF29D8C0A297F886BFE561E6659 ] C:\Windows\System32\drivers\WUDFRd.sys</p><p>02:04:35.0538 4940 C:\Windows\System32\drivers\WUDFRd.sys - ok</p><p>02:04:35.0538 4940 [ 809AE7D4ACE06BBCF621E5C504BF6FC8 ] C:\Windows\System32\hcproviders.dll</p><p>02:04:35.0538 4940 C:\Windows\System32\hcproviders.dll - ok</p><p>02:04:35.0553 4940 [ B84E2D174DC84916A536572BB8F691A8 ] C:\Windows\System32\wscisvif.dll</p><p>02:04:35.0553 4940 C:\Windows\System32\wscisvif.dll - ok</p><p>02:04:35.0569 4940 [ F146E2BA475893DD77B2370DC1211FC6 ] C:\Windows\System32\drivers\30948540.sys</p><p>02:04:35.0569 4940 C:\Windows\System32\drivers\30948540.sys - ok</p><p>02:04:35.0569 4940 [ 2A436796758BF2555A26C770FE8A6FEE ] C:\Windows\System32\fdProxy.dll</p><p>02:04:35.0569 4940 C:\Windows\System32\fdProxy.dll - ok</p><p>02:04:35.0585 4940 [ 6C1E3C43B35268C17833244C8ED96430 ] C:\Windows\System32\wscproxystub.dll</p><p>02:04:35.0585 4940 C:\Windows\System32\wscproxystub.dll - ok</p><p>02:04:35.0585 4940 [ AB886378EEB55C6C75B4F2D14B6C869F ] C:\Windows\System32\drivers\WUDFPf.sys</p><p>02:04:35.0585 4940 C:\Windows\System32\drivers\WUDFPf.sys - ok</p><p>02:04:35.0600 4940 [ B20F051B03A966392364C83F009F7D17 ] C:\Windows\System32\WUDFSvc.dll</p><p>02:04:35.0600 4940 C:\Windows\System32\WUDFSvc.dll - ok</p><p>02:04:35.0600 4940 [ 8ABFE00F213F2571498F1B8FD7939A98 ] C:\Windows\System32\WUDFHost.exe</p><p>02:04:35.0600 4940 C:\Windows\System32\WUDFHost.exe - ok</p><p>02:04:35.0616 4940 [ 71E68F2443A80BD4DA89181889C457EA ] C:\Windows\System32\udhisapi.dll</p><p>02:04:35.0616 4940 C:\Windows\System32\udhisapi.dll - ok</p><p>02:04:35.0616 4940 [ 25AE683DCB4AE7E6F1B193A0CB9DB35F ] C:\Windows\System32\WUDFx.dll</p><p>02:04:35.0616 4940 C:\Windows\System32\WUDFx.dll - ok</p><p>02:04:35.0631 4940 [ F6F22291024906E43D135A4B1705FEAC ] C:\Windows\System32\sppwinob.dll</p><p>02:04:35.0631 4940 C:\Windows\System32\sppwinob.dll - ok</p><p>02:04:35.0631 4940 [ 5F639198C4137075DA50E61C23963C11 ] C:\Windows\System32\drprov.dll</p><p>02:04:35.0631 4940 C:\Windows\System32\drprov.dll - ok</p><p>02:04:35.0647 4940 [ 91D6F0AB79AA36FFB932157865206F35 ] C:\Windows\System32\drivers\UMDF\WpdFs.dll</p><p>02:04:35.0647 4940 C:\Windows\System32\drivers\UMDF\WpdFs.dll - ok</p><p>02:04:35.0647 4940 [ BC566D17914B07ABAAB3A5A385CC3300 ] C:\Windows\System32\ntlanman.dll</p><p>02:04:35.0647 4940 C:\Windows\System32\ntlanman.dll - ok</p><p>02:04:35.0663 4940 [ B3A33600DCDFB84D7FBE09ADEB1C9B8A ] C:\Windows\System32\davclnt.dll</p><p>02:04:35.0663 4940 C:\Windows\System32\davclnt.dll - ok</p><p>02:04:35.0663 4940 [ 45B24A357C801CE62052FE0CDC8BD4D2 ] C:\Windows\System32\davhlpr.dll</p><p>02:04:35.0663 4940 C:\Windows\System32\davhlpr.dll - ok</p><p>02:04:35.0678 4940 [ 9864D52F15AD32094A636C6B5281D9E7 ] C:\Windows\System32\WMVCORE.DLL</p><p>02:04:35.0678 4940 C:\Windows\System32\WMVCORE.DLL - ok</p><p>02:04:35.0678 4940 [ AACC48FE239F0DF126DA2F28930A5B83 ] C:\Windows\System32\WMASF.DLL</p><p>02:04:35.0678 4940 C:\Windows\System32\WMASF.DLL - ok</p><p>02:04:35.0694 4940 [ 389CA818132C1D7DCF0C791E8D9035DE ] C:\Windows\System32\PortableDeviceClassExtension.dll</p><p>02:04:35.0694 4940 C:\Windows\System32\PortableDeviceClassExtension.dll - ok</p><p>02:04:35.0694 4940 [ 27B9E163740A226B65E4B9E186117911 ] C:\Program Files\Windows Portable Devices\sqmapi.dll</p><p>02:04:35.0694 4940 C:\Program Files\Windows Portable Devices\sqmapi.dll - ok</p><p>02:04:35.0709 4940 ============================================================</p><p>02:04:35.0709 4940 Scan finished</p><p>02:04:35.0709 4940 ============================================================</p><p>02:04:35.0725 4952 Detected object count: 4</p><p>02:04:35.0725 4952 Actual detected object count: 4</p><p>02:06:13.0631 4952 c:\program files (x86)\common files\akamai/netsession_win_8fa3539.dll - copied to quarantine</p><p>02:06:21.0056 4952 Akamai ( HiddenFile.Multi.Generic ) - User select action: Quarantine </p><p>02:06:21.0587 4952 C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSVC.exe - copied to quarantine</p><p>02:06:21.0696 4952 EpsonBidirectionalService ( UnsignedFile.Multi.Generic ) - User select action: Quarantine </p><p>02:06:21.0727 4952 C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe - copied to quarantine</p><p>02:06:21.0868 4952 SwitchBoard ( UnsignedFile.Multi.Generic ) - User select action: Quarantine </p><p>02:06:21.0992 4952 \Device\Harddisk0\DR0\TDLFS\ph.dll - copied to quarantine</p><p>02:06:22.0102 4952 \Device\Harddisk0\DR0\TDLFS\phx.dll - copied to quarantine</p><p>02:06:22.0211 4952 \Device\Harddisk0\DR0\TDLFS\phd - copied to quarantine</p><p>02:06:39.0386 4952 \Device\Harddisk0\DR0\TDLFS\phdx - copied to quarantine</p><p>02:06:39.0449 4952 \Device\Harddisk0\DR0\TDLFS\phs - copied to quarantine</p><p>02:06:39.0449 4952 \Device\Harddisk0\DR0\TDLFS\phdata - copied to quarantine</p><p>02:06:39.0464 4952 \Device\Harddisk0\DR0\TDLFS\phld - copied to quarantine</p><p>02:06:39.0464 4952 \Device\Harddisk0\DR0\TDLFS\phln - copied to quarantine</p><p>02:06:39.0511 4952 \Device\Harddisk0\DR0\TDLFS\phlx - copied to quarantine</p><p>02:06:39.0527 4952 \Device\Harddisk0\DR0\TDLFS\phm - copied to quarantine</p><p>02:06:39.0652 4952 \Device\Harddisk0\DR0\TDLFS\xh.dll - copied to quarantine</p><p>02:06:39.0730 4952 \Device\Harddisk0\DR0\TDLFS - deleted</p><p>02:06:39.0730 4952 \Device\Harddisk0\DR0 ( TDSS File System ) - User select action: Delete </p><p>02:08:53.0469 2808 Deinitialize success</p><p>kuttus,</p><p>5th part. this should have the last of the file.</p></blockquote><p></p>
[QUOTE="travis, post: 144255, member: 14723"] 02:04:35.0397 4940 [ E36112A8A6C7F840169A7E92C12F4203 ] C:\Windows\System32\wsock32.dll 02:04:35.0397 4940 C:\Windows\System32\wsock32.dll - ok 02:04:35.0397 4940 [ 423982DD851406A52B6399DDB196C606 ] C:\Windows\System32\wmdrmdev.dll 02:04:35.0397 4940 C:\Windows\System32\wmdrmdev.dll - ok 02:04:35.0413 4940 [ 2C1055E2C6D42753241FB2A129136994 ] C:\Windows\System32\drmv2clt.dll 02:04:35.0413 4940 C:\Windows\System32\drmv2clt.dll - ok 02:04:35.0413 4940 [ 44CAFD301D7F0CEDCEBC20699112F069 ] C:\ProgramData\Microsoft\Windows\DRM\Cache\Indiv_SID_S-1-5-20\Indiv01_64.key 02:04:35.0413 4940 C:\ProgramData\Microsoft\Windows\DRM\Cache\Indiv_SID_S-1-5-20\Indiv01_64.key - ok 02:04:35.0429 4940 [ 81252AA3B13743020BCF2089A5A0D911 ] C:\Windows\System32\wscinterop.dll 02:04:35.0429 4940 C:\Windows\System32\wscinterop.dll - ok 02:04:35.0429 4940 [ DF50DAE4C547285E4997A0C61063B632 ] C:\Windows\System32\wscui.cpl 02:04:35.0429 4940 C:\Windows\System32\wscui.cpl - ok 02:04:35.0444 4940 [ F9959237F106F2B2609E61A290C0652E ] C:\Windows\System32\werconcpl.dll 02:04:35.0444 4940 C:\Windows\System32\werconcpl.dll - ok 02:04:35.0444 4940 [ 1EB82516F21F27EED1833B4F9FD9614E ] C:\Windows\System32\wmp.dll 02:04:35.0444 4940 C:\Windows\System32\wmp.dll - ok 02:04:35.0460 4940 [ 7E591867422DC788B9E5BD337A669A08 ] C:\Windows\System32\wercplsupport.dll 02:04:35.0460 4940 C:\Windows\System32\wercplsupport.dll - ok 02:04:35.0460 4940 [ E19AD0D49BFF5938B3E374873AC174DE ] C:\Windows\System32\wmploc.DLL 02:04:35.0460 4940 C:\Windows\System32\wmploc.DLL - ok 02:04:35.0475 4940 [ E8B1FE6669397D1772D8196DF0E57A9E ] C:\Windows\System32\wscsvc.dll 02:04:35.0475 4940 C:\Windows\System32\wscsvc.dll - ok 02:04:35.0475 4940 [ 8FAE4C4ACF3F65FBE7BC659257A6B9AA ] C:\Program Files\Internet Explorer\ieproxy.dll 02:04:35.0475 4940 C:\Program Files\Internet Explorer\ieproxy.dll - ok 02:04:35.0491 4940 [ 355A138ABDFD43FBABCAE3A1B06AB93D ] C:\Windows\System32\wmpps.dll 02:04:35.0491 4940 C:\Windows\System32\wmpps.dll - ok 02:04:35.0491 4940 [ F149E8CAE538DBF7059B00326673F602 ] C:\Windows\System32\wmpmde.dll 02:04:35.0491 4940 C:\Windows\System32\wmpmde.dll - ok 02:04:35.0507 4940 [ 28A7D7C7E2FDD1D55F12F750CD6331EC ] C:\Windows\System32\MSMPEG2ENC.DLL 02:04:35.0507 4940 C:\Windows\System32\MSMPEG2ENC.DLL - ok 02:04:35.0507 4940 [ 46767946E7B559D981C1DC04EC0AB36F ] C:\Windows\System32\devenum.dll 02:04:35.0507 4940 C:\Windows\System32\devenum.dll - ok 02:04:35.0522 4940 [ 558C42D165DB5799B4072DC0A9C27C0B ] C:\Windows\System32\msdmo.dll 02:04:35.0522 4940 C:\Windows\System32\msdmo.dll - ok 02:04:35.0522 4940 [ D47EC6A8E81633DD18D2436B19BAF6DE ] C:\Windows\System32\upnphost.dll 02:04:35.0522 4940 C:\Windows\System32\upnphost.dll - ok 02:04:35.0538 4940 [ DDA4CAF29D8C0A297F886BFE561E6659 ] C:\Windows\System32\drivers\WUDFRd.sys 02:04:35.0538 4940 C:\Windows\System32\drivers\WUDFRd.sys - ok 02:04:35.0538 4940 [ 809AE7D4ACE06BBCF621E5C504BF6FC8 ] C:\Windows\System32\hcproviders.dll 02:04:35.0538 4940 C:\Windows\System32\hcproviders.dll - ok 02:04:35.0553 4940 [ B84E2D174DC84916A536572BB8F691A8 ] C:\Windows\System32\wscisvif.dll 02:04:35.0553 4940 C:\Windows\System32\wscisvif.dll - ok 02:04:35.0569 4940 [ F146E2BA475893DD77B2370DC1211FC6 ] C:\Windows\System32\drivers\30948540.sys 02:04:35.0569 4940 C:\Windows\System32\drivers\30948540.sys - ok 02:04:35.0569 4940 [ 2A436796758BF2555A26C770FE8A6FEE ] C:\Windows\System32\fdProxy.dll 02:04:35.0569 4940 C:\Windows\System32\fdProxy.dll - ok 02:04:35.0585 4940 [ 6C1E3C43B35268C17833244C8ED96430 ] C:\Windows\System32\wscproxystub.dll 02:04:35.0585 4940 C:\Windows\System32\wscproxystub.dll - ok 02:04:35.0585 4940 [ AB886378EEB55C6C75B4F2D14B6C869F ] C:\Windows\System32\drivers\WUDFPf.sys 02:04:35.0585 4940 C:\Windows\System32\drivers\WUDFPf.sys - ok 02:04:35.0600 4940 [ B20F051B03A966392364C83F009F7D17 ] C:\Windows\System32\WUDFSvc.dll 02:04:35.0600 4940 C:\Windows\System32\WUDFSvc.dll - ok 02:04:35.0600 4940 [ 8ABFE00F213F2571498F1B8FD7939A98 ] C:\Windows\System32\WUDFHost.exe 02:04:35.0600 4940 C:\Windows\System32\WUDFHost.exe - ok 02:04:35.0616 4940 [ 71E68F2443A80BD4DA89181889C457EA ] C:\Windows\System32\udhisapi.dll 02:04:35.0616 4940 C:\Windows\System32\udhisapi.dll - ok 02:04:35.0616 4940 [ 25AE683DCB4AE7E6F1B193A0CB9DB35F ] C:\Windows\System32\WUDFx.dll 02:04:35.0616 4940 C:\Windows\System32\WUDFx.dll - ok 02:04:35.0631 4940 [ F6F22291024906E43D135A4B1705FEAC ] C:\Windows\System32\sppwinob.dll 02:04:35.0631 4940 C:\Windows\System32\sppwinob.dll - ok 02:04:35.0631 4940 [ 5F639198C4137075DA50E61C23963C11 ] C:\Windows\System32\drprov.dll 02:04:35.0631 4940 C:\Windows\System32\drprov.dll - ok 02:04:35.0647 4940 [ 91D6F0AB79AA36FFB932157865206F35 ] C:\Windows\System32\drivers\UMDF\WpdFs.dll 02:04:35.0647 4940 C:\Windows\System32\drivers\UMDF\WpdFs.dll - ok 02:04:35.0647 4940 [ BC566D17914B07ABAAB3A5A385CC3300 ] C:\Windows\System32\ntlanman.dll 02:04:35.0647 4940 C:\Windows\System32\ntlanman.dll - ok 02:04:35.0663 4940 [ B3A33600DCDFB84D7FBE09ADEB1C9B8A ] C:\Windows\System32\davclnt.dll 02:04:35.0663 4940 C:\Windows\System32\davclnt.dll - ok 02:04:35.0663 4940 [ 45B24A357C801CE62052FE0CDC8BD4D2 ] C:\Windows\System32\davhlpr.dll 02:04:35.0663 4940 C:\Windows\System32\davhlpr.dll - ok 02:04:35.0678 4940 [ 9864D52F15AD32094A636C6B5281D9E7 ] C:\Windows\System32\WMVCORE.DLL 02:04:35.0678 4940 C:\Windows\System32\WMVCORE.DLL - ok 02:04:35.0678 4940 [ AACC48FE239F0DF126DA2F28930A5B83 ] C:\Windows\System32\WMASF.DLL 02:04:35.0678 4940 C:\Windows\System32\WMASF.DLL - ok 02:04:35.0694 4940 [ 389CA818132C1D7DCF0C791E8D9035DE ] C:\Windows\System32\PortableDeviceClassExtension.dll 02:04:35.0694 4940 C:\Windows\System32\PortableDeviceClassExtension.dll - ok 02:04:35.0694 4940 [ 27B9E163740A226B65E4B9E186117911 ] C:\Program Files\Windows Portable Devices\sqmapi.dll 02:04:35.0694 4940 C:\Program Files\Windows Portable Devices\sqmapi.dll - ok 02:04:35.0709 4940 ============================================================ 02:04:35.0709 4940 Scan finished 02:04:35.0709 4940 ============================================================ 02:04:35.0725 4952 Detected object count: 4 02:04:35.0725 4952 Actual detected object count: 4 02:06:13.0631 4952 c:\program files (x86)\common files\akamai/netsession_win_8fa3539.dll - copied to quarantine 02:06:21.0056 4952 Akamai ( HiddenFile.Multi.Generic ) - User select action: Quarantine 02:06:21.0587 4952 C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSVC.exe - copied to quarantine 02:06:21.0696 4952 EpsonBidirectionalService ( UnsignedFile.Multi.Generic ) - User select action: Quarantine 02:06:21.0727 4952 C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe - copied to quarantine 02:06:21.0868 4952 SwitchBoard ( UnsignedFile.Multi.Generic ) - User select action: Quarantine 02:06:21.0992 4952 \Device\Harddisk0\DR0\TDLFS\ph.dll - copied to quarantine 02:06:22.0102 4952 \Device\Harddisk0\DR0\TDLFS\phx.dll - copied to quarantine 02:06:22.0211 4952 \Device\Harddisk0\DR0\TDLFS\phd - copied to quarantine 02:06:39.0386 4952 \Device\Harddisk0\DR0\TDLFS\phdx - copied to quarantine 02:06:39.0449 4952 \Device\Harddisk0\DR0\TDLFS\phs - copied to quarantine 02:06:39.0449 4952 \Device\Harddisk0\DR0\TDLFS\phdata - copied to quarantine 02:06:39.0464 4952 \Device\Harddisk0\DR0\TDLFS\phld - copied to quarantine 02:06:39.0464 4952 \Device\Harddisk0\DR0\TDLFS\phln - copied to quarantine 02:06:39.0511 4952 \Device\Harddisk0\DR0\TDLFS\phlx - copied to quarantine 02:06:39.0527 4952 \Device\Harddisk0\DR0\TDLFS\phm - copied to quarantine 02:06:39.0652 4952 \Device\Harddisk0\DR0\TDLFS\xh.dll - copied to quarantine 02:06:39.0730 4952 \Device\Harddisk0\DR0\TDLFS - deleted 02:06:39.0730 4952 \Device\Harddisk0\DR0 ( TDSS File System ) - User select action: Delete 02:08:53.0469 2808 Deinitialize success kuttus, 5th part. this should have the last of the file. [/QUOTE]
Insert quotes…
Verification
Post reply
Top