Help! I cannot open a web browser in either Firefox or IE. The virus keeps disabling my firewall & I get popups galore.
I am unable to run ComboFix, I get a message that the program has been compromised & I may have a virus called Virut.
Malwarebytes & Spybot both find numerous infections & can remove most, but they are back again after re-boot.
Root Repeal Log:
==================================================
Scan Start Time: 2009/10/20 08:38
Program Version: Version 1.3.5.0
Windows Version: Windows XP SP3
==================================================
Drivers
-------------------
Name: dump_atapi.sys
Image Path: C:\WINDOWS\System32\Drivers\dump_atapi.sys
Address: 0xA7D77000 Size: 98304 File Visible: No Signed: -
Status: -
Name: dump_WMILIB.SYS
Image Path: C:\WINDOWS\System32\Drivers\dump_WMILIB.SYS
Address: 0xBA5DE000 Size: 8192 File Visible: No Signed: -
Status: -
Name: rootrepeal.sys
Image Path: C:\WINDOWS\system32\drivers\rootrepeal.sys
Address: 0xA7413000 Size: 49152 File Visible: No Signed: -
Status: -
Hidden/Locked Files
-------------------
Path: C:\hiberfil.sys
Status: Locked to the Windows API!
Path: c:\windows\i386\netsetup.exe
Status: Allocation size mismatch (API: 352256, Raw: 331776)
Path: c:\windows\i386\ntsd.exe
Status: Allocation size mismatch (API: 53248, Raw: 32768)
Path: c:\windows\i386\regedit.exe
Status: Allocation size mismatch (API: 167936, Raw: 147456)
Path: c:\windows\i386\spnpinst.exe
Status: Allocation size mismatch (API: 32768, Raw: 12288)
Path: c:\windows\i386\sysparse.exe
Status: Allocation size mismatch (API: 266240, Raw: 245760)
Path: c:\windows\i386\telnet.exe
Status: Allocation size mismatch (API: 98304, Raw: 77824)
Path: c:\windows\i386\winnt32.exe
Status: Allocation size mismatch (API: 69632, Raw: 49152)
Path: C:\WINDOWS\system32\lowsec
Status: Invisible to the Windows API!
Path: C:\WINDOWS\system32\sdra64.exe
Status: Invisible to the Windows API!
Path: c:\windows\temp\~df1843.tmp
Status: Allocation size mismatch (API: 16384, Raw: 0)
Path: c:\windows\temp\~df191e.tmp
Status: Allocation size mismatch (API: 16384, Raw: 0)
Path: c:\windows\temp\~df1ce3.tmp
Status: Allocation size mismatch (API: 16384, Raw: 0)
Path: c:\windows\temp\~df3cb0.tmp
Status: Allocation size mismatch (API: 16384, Raw: 0)
Path: c:\windows\temp\~df52c7.tmp
Status: Allocation size mismatch (API: 16384, Raw: 0)
Path: c:\windows\temp\~df72e4.tmp
Status: Allocation size mismatch (API: 16384, Raw: 0)
Path: c:\windows\temp\~df789f.tmp
Status: Allocation size mismatch (API: 16384, Raw: 0)
Path: c:\windows\temp\~df7fe1.tmp
Status: Allocation size mismatch (API: 16384, Raw: 0)
Path: c:\windows\temp\~dff796.tmp
Status: Allocation size mismatch (API: 16384, Raw: 0)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007916.exe
Status: Allocation size mismatch (API: 278528, Raw: 258048)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007917.exe
Status: Allocation size mismatch (API: 790528, Raw: 770048)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007918.exe
Status: Allocation size mismatch (API: 122880, Raw: 102400)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007919.exe
Status: Allocation size mismatch (API: 765952, Raw: 745472)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007920.exe
Status: Allocation size mismatch (API: 40960, Raw: 20480)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007921.exe
Status: Allocation size mismatch (API: 192512, Raw: 172032)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007922.exe
Status: Allocation size mismatch (API: 57344, Raw: 36864)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007923.exe
Status: Allocation size mismatch (API: 172032, Raw: 151552)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007926.exe
Status: Allocation size mismatch (API: 204800, Raw: 184320)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007927.exe
Status: Allocation size mismatch (API: 196608, Raw: 176128)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007928.exe
Status: Allocation size mismatch (API: 40960, Raw: 20480)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007930.exe
Status: Allocation size mismatch (API: 53248, Raw: 32768)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007931.exe
Status: Allocation size mismatch (API: 53248, Raw: 32768)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007932.exe
Status: Allocation size mismatch (API: 45056, Raw: 28672)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007933.exe
Status: Allocation size mismatch (API: 32768, Raw: 12288)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007934.exe
Status: Allocation size mismatch (API: 36864, Raw: 16384)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007935.exe
Status: Allocation size mismatch (API: 32768, Raw: 12288)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007936.exe
Status: Allocation size mismatch (API: 32768, Raw: 12288)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007937.exe
Status: Allocation size mismatch (API: 28672, Raw: 8192)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007938.exe
Status: Allocation size mismatch (API: 77824, Raw: 57344)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007939.exe
Status: Allocation size mismatch (API: 28672, Raw: 8192)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007940.exe
Status: Allocation size mismatch (API: 86016, Raw: 65536)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007941.exe
Status: Allocation size mismatch (API: 122880, Raw: 106496)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007942.exe
Status: Allocation size mismatch (API: 53248, Raw: 32768)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007943.exe
Status: Allocation size mismatch (API: 45056, Raw: 28672)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007944.exe
Status: Allocation size mismatch (API: 106496, Raw: 86016)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007945.exe
Status: Allocation size mismatch (API: 126976, Raw: 106496)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007946.exe
Status: Allocation size mismatch (API: 36864, Raw: 16384)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007948.exe
Status: Allocation size mismatch (API: 61440, Raw: 40960)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007949.exe
Status: Allocation size mismatch (API: 212992, Raw: 196608)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007950.exe
Status: Allocation size mismatch (API: 73728, Raw: 53248)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007951.exe
Status: Allocation size mismatch (API: 106496, Raw: 86016)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007952.exe
Status: Allocation size mismatch (API: 28672, Raw: 12288)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007953.exe
Status: Allocation size mismatch (API: 352256, Raw: 331776)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007954.exe
Status: Allocation size mismatch (API: 106496, Raw: 86016)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007955.exe
Status: Allocation size mismatch (API: 57344, Raw: 36864)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007956.exe
Status: Allocation size mismatch (API: 65536, Raw: 45056)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007957.exe
Status: Allocation size mismatch (API: 73728, Raw: 53248)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007958.exe
Status: Allocation size mismatch (API: 45056, Raw: 24576)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007959.exe
Status: Allocation size mismatch (API: 81920, Raw: 61440)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007960.exe
Status: Allocation size mismatch (API: 36864, Raw: 16384)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007961.scr
Status: Allocation size mismatch (API: 241664, Raw: 221184)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007962.exe
Status: Allocation size mismatch (API: 28672, Raw: 8192)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007963.exe
Status: Allocation size mismatch (API: 28672, Raw: 8192)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007964.exe
Status: Allocation size mismatch (API: 40960, Raw: 20480)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007966.exe
Status: Allocation size mismatch (API: 65536, Raw: 49152)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007967.exe
Status: Allocation size mismatch (API: 90112, Raw: 69632)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007968.exe
Status: Allocation size mismatch (API: 36864, Raw: 16384)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007969.exe
Status: Allocation size mismatch (API: 53248, Raw: 36864)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007970.exe
Status: Allocation size mismatch (API: 131072, Raw: 110592)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007971.exe
Status: Allocation size mismatch (API: 73728, Raw: 53248)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007972.exe
Status: Allocation size mismatch (API: 32768, Raw: 12288)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007973.exe
Status: Allocation size mismatch (API: 36864, Raw: 20480)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007974.exe
Status: Allocation size mismatch (API: 57344, Raw: 36864)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007975.exe
Status: Allocation size mismatch (API: 32768, Raw: 12288)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007976.exe
Status: Allocation size mismatch (API: 24576, Raw: 8192)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007977.exe
Status: Allocation size mismatch (API: 53248, Raw: 32768)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007978.exe
Status: Allocation size mismatch (API: 32768, Raw: 16384)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007979.exe
Status: Allocation size mismatch (API: 32768, Raw: 12288)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007980.exe
Status: Allocation size mismatch (API: 36864, Raw: 16384)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007981.exe
Status: Allocation size mismatch (API: 98304, Raw: 77824)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007982.exe
Status: Allocation size mismatch (API: 36864, Raw: 16384)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007984.exe
Status: Allocation size mismatch (API: 53248, Raw: 32768)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007985.exe
Status: Allocation size mismatch (API: 32768, Raw: 12288)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007986.exe
Status: Allocation size mismatch (API: 36864, Raw: 16384)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007987.exe
Status: Allocation size mismatch (API: 65536, Raw: 45056)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007988.exe
Status: Allocation size mismatch (API: 98304, Raw: 77824)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007989.scr
Status: Allocation size mismatch (API: 724992, Raw: 704512)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007990.scr
Status: Allocation size mismatch (API: 40960, Raw: 20480)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007991.scr
Status: Allocation size mismatch (API: 413696, Raw: 393216)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007992.scr
Status: Allocation size mismatch (API: 40960, Raw: 24576)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007993.scr
Status: Allocation size mismatch (API: 69632, Raw: 49152)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007994.scr
Status: Allocation size mismatch (API: 40960, Raw: 20480)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007995.scr
Status: Allocation size mismatch (API: 630784, Raw: 610304)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007996.scr
Status: Allocation size mismatch (API: 36864, Raw: 16384)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007997.exe
Status: Allocation size mismatch (API: 40960, Raw: 20480)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007998.exe
Status: Allocation size mismatch (API: 98304, Raw: 77824)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007999.exe
Status: Allocation size mismatch (API: 36864, Raw: 20480)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008000.exe
Status: Allocation size mismatch (API: 81920, Raw: 61440)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008002.exe
Status: Allocation size mismatch (API: 282624, Raw: 262144)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008003.exe
Status: Allocation size mismatch (API: 32768, Raw: 12288)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008004.exe
Status: Allocation size mismatch (API: 53248, Raw: 32768)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008005.exe
Status: Allocation size mismatch (API: 98304, Raw: 81920)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008006.exe
Status: Allocation size mismatch (API: 81920, Raw: 65536)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008007.exe
Status: Allocation size mismatch (API: 90112, Raw: 73728)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008008.exe
Status: Allocation size mismatch (API: 73728, Raw: 53248)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008009.exe
Status: Allocation size mismatch (API: 28672, Raw: 8192)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008010.exe
Status: Allocation size mismatch (API: 143360, Raw: 122880)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008011.exe
Status: Allocation size mismatch (API: 32768, Raw: 12288)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008012.exe
Status: Allocation size mismatch (API: 28672, Raw: 8192)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008013.exe
Status: Allocation size mismatch (API: 118784, Raw: 98304)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008014.exe
Status: Allocation size mismatch (API: 36864, Raw: 16384)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008015.exe
Status: Allocation size mismatch (API: 40960, Raw: 20480)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008016.exe
Status: Allocation size mismatch (API: 49152, Raw: 28672)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008017.exe
Status: Allocation size mismatch (API: 36864, Raw: 16384)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008018.exe
Status: Allocation size mismatch (API: 40960, Raw: 24576)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008020.exe
Status: Allocation size mismatch (API: 77824, Raw: 57344)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008021.exe
Status: Allocation size mismatch (API: 212992, Raw: 196608)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008022.exe
Status: Allocation size mismatch (API: 77824, Raw: 57344)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008023.exe
Status: Allocation size mismatch (API: 65536, Raw: 45056)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008024.exe
Status: Allocation size mismatch (API: 81920, Raw: 61440)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008025.exe
Status: Allocation size mismatch (API: 163840, Raw: 143360)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008026.exe
Status: Allocation size mismatch (API: 24576, Raw: 8192)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008027.exe
Status: Allocation size mismatch (API: 28672, Raw: 8192)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008028.exe
Status: Allocation size mismatch (API: 110592, Raw: 90112)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008029.exe
Status: Allocation size mismatch (API: 36864, Raw: 16384)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008030.exe
Status: Allocation size mismatch (API: 36864, Raw: 16384)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008031.exe
Status: Allocation size mismatch (API: 57344, Raw: 36864)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007929.exe
Status: Allocation size mismatch (API: 53248, Raw: 32768)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007947.exe
Status: Allocation size mismatch (API: 32768, Raw: 12288)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007965.exe
Status: Allocation size mismatch (API: 40960, Raw: 24576)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007983.exe
Status: Allocation size mismatch (API: 45056, Raw: 24576)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008001.exe
Status: Allocation size mismatch (API: 102400, Raw: 81920)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008019.exe
Status: Allocation size mismatch (API: 28672, Raw: 8192)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0010114.exe
Status: Allocation size mismatch (API: 151552, Raw: 131072)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0010115.exe
Status: Allocation size mismatch (API: 151552, Raw: 131072)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0010128.exe
Status: Allocation size mismatch (API: 352256, Raw: 331776)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0010129.exe
Status: Allocation size mismatch (API: 53248, Raw: 32768)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0010130.exe
Status: Allocation size mismatch (API: 167936, Raw: 147456)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0010131.exe
Status: Allocation size mismatch (API: 32768, Raw: 12288)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0010132.exe
Status: Allocation size mismatch (API: 266240, Raw: 245760)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0010133.exe
Status: Allocation size mismatch (API: 98304, Raw: 77824)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0010134.exe
Status: Allocation size mismatch (API: 69632, Raw: 49152)
==EOF==
I am unable to run ComboFix, I get a message that the program has been compromised & I may have a virus called Virut.
Malwarebytes & Spybot both find numerous infections & can remove most, but they are back again after re-boot.
Root Repeal Log:
==================================================
Scan Start Time: 2009/10/20 08:38
Program Version: Version 1.3.5.0
Windows Version: Windows XP SP3
==================================================
Drivers
-------------------
Name: dump_atapi.sys
Image Path: C:\WINDOWS\System32\Drivers\dump_atapi.sys
Address: 0xA7D77000 Size: 98304 File Visible: No Signed: -
Status: -
Name: dump_WMILIB.SYS
Image Path: C:\WINDOWS\System32\Drivers\dump_WMILIB.SYS
Address: 0xBA5DE000 Size: 8192 File Visible: No Signed: -
Status: -
Name: rootrepeal.sys
Image Path: C:\WINDOWS\system32\drivers\rootrepeal.sys
Address: 0xA7413000 Size: 49152 File Visible: No Signed: -
Status: -
Hidden/Locked Files
-------------------
Path: C:\hiberfil.sys
Status: Locked to the Windows API!
Path: c:\windows\i386\netsetup.exe
Status: Allocation size mismatch (API: 352256, Raw: 331776)
Path: c:\windows\i386\ntsd.exe
Status: Allocation size mismatch (API: 53248, Raw: 32768)
Path: c:\windows\i386\regedit.exe
Status: Allocation size mismatch (API: 167936, Raw: 147456)
Path: c:\windows\i386\spnpinst.exe
Status: Allocation size mismatch (API: 32768, Raw: 12288)
Path: c:\windows\i386\sysparse.exe
Status: Allocation size mismatch (API: 266240, Raw: 245760)
Path: c:\windows\i386\telnet.exe
Status: Allocation size mismatch (API: 98304, Raw: 77824)
Path: c:\windows\i386\winnt32.exe
Status: Allocation size mismatch (API: 69632, Raw: 49152)
Path: C:\WINDOWS\system32\lowsec
Status: Invisible to the Windows API!
Path: C:\WINDOWS\system32\sdra64.exe
Status: Invisible to the Windows API!
Path: c:\windows\temp\~df1843.tmp
Status: Allocation size mismatch (API: 16384, Raw: 0)
Path: c:\windows\temp\~df191e.tmp
Status: Allocation size mismatch (API: 16384, Raw: 0)
Path: c:\windows\temp\~df1ce3.tmp
Status: Allocation size mismatch (API: 16384, Raw: 0)
Path: c:\windows\temp\~df3cb0.tmp
Status: Allocation size mismatch (API: 16384, Raw: 0)
Path: c:\windows\temp\~df52c7.tmp
Status: Allocation size mismatch (API: 16384, Raw: 0)
Path: c:\windows\temp\~df72e4.tmp
Status: Allocation size mismatch (API: 16384, Raw: 0)
Path: c:\windows\temp\~df789f.tmp
Status: Allocation size mismatch (API: 16384, Raw: 0)
Path: c:\windows\temp\~df7fe1.tmp
Status: Allocation size mismatch (API: 16384, Raw: 0)
Path: c:\windows\temp\~dff796.tmp
Status: Allocation size mismatch (API: 16384, Raw: 0)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007916.exe
Status: Allocation size mismatch (API: 278528, Raw: 258048)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007917.exe
Status: Allocation size mismatch (API: 790528, Raw: 770048)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007918.exe
Status: Allocation size mismatch (API: 122880, Raw: 102400)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007919.exe
Status: Allocation size mismatch (API: 765952, Raw: 745472)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007920.exe
Status: Allocation size mismatch (API: 40960, Raw: 20480)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007921.exe
Status: Allocation size mismatch (API: 192512, Raw: 172032)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007922.exe
Status: Allocation size mismatch (API: 57344, Raw: 36864)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007923.exe
Status: Allocation size mismatch (API: 172032, Raw: 151552)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007926.exe
Status: Allocation size mismatch (API: 204800, Raw: 184320)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007927.exe
Status: Allocation size mismatch (API: 196608, Raw: 176128)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007928.exe
Status: Allocation size mismatch (API: 40960, Raw: 20480)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007930.exe
Status: Allocation size mismatch (API: 53248, Raw: 32768)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007931.exe
Status: Allocation size mismatch (API: 53248, Raw: 32768)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007932.exe
Status: Allocation size mismatch (API: 45056, Raw: 28672)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007933.exe
Status: Allocation size mismatch (API: 32768, Raw: 12288)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007934.exe
Status: Allocation size mismatch (API: 36864, Raw: 16384)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007935.exe
Status: Allocation size mismatch (API: 32768, Raw: 12288)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007936.exe
Status: Allocation size mismatch (API: 32768, Raw: 12288)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007937.exe
Status: Allocation size mismatch (API: 28672, Raw: 8192)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007938.exe
Status: Allocation size mismatch (API: 77824, Raw: 57344)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007939.exe
Status: Allocation size mismatch (API: 28672, Raw: 8192)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007940.exe
Status: Allocation size mismatch (API: 86016, Raw: 65536)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007941.exe
Status: Allocation size mismatch (API: 122880, Raw: 106496)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007942.exe
Status: Allocation size mismatch (API: 53248, Raw: 32768)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007943.exe
Status: Allocation size mismatch (API: 45056, Raw: 28672)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007944.exe
Status: Allocation size mismatch (API: 106496, Raw: 86016)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007945.exe
Status: Allocation size mismatch (API: 126976, Raw: 106496)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007946.exe
Status: Allocation size mismatch (API: 36864, Raw: 16384)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007948.exe
Status: Allocation size mismatch (API: 61440, Raw: 40960)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007949.exe
Status: Allocation size mismatch (API: 212992, Raw: 196608)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007950.exe
Status: Allocation size mismatch (API: 73728, Raw: 53248)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007951.exe
Status: Allocation size mismatch (API: 106496, Raw: 86016)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007952.exe
Status: Allocation size mismatch (API: 28672, Raw: 12288)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007953.exe
Status: Allocation size mismatch (API: 352256, Raw: 331776)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007954.exe
Status: Allocation size mismatch (API: 106496, Raw: 86016)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007955.exe
Status: Allocation size mismatch (API: 57344, Raw: 36864)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007956.exe
Status: Allocation size mismatch (API: 65536, Raw: 45056)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007957.exe
Status: Allocation size mismatch (API: 73728, Raw: 53248)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007958.exe
Status: Allocation size mismatch (API: 45056, Raw: 24576)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007959.exe
Status: Allocation size mismatch (API: 81920, Raw: 61440)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007960.exe
Status: Allocation size mismatch (API: 36864, Raw: 16384)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007961.scr
Status: Allocation size mismatch (API: 241664, Raw: 221184)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007962.exe
Status: Allocation size mismatch (API: 28672, Raw: 8192)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007963.exe
Status: Allocation size mismatch (API: 28672, Raw: 8192)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007964.exe
Status: Allocation size mismatch (API: 40960, Raw: 20480)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007966.exe
Status: Allocation size mismatch (API: 65536, Raw: 49152)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007967.exe
Status: Allocation size mismatch (API: 90112, Raw: 69632)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007968.exe
Status: Allocation size mismatch (API: 36864, Raw: 16384)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007969.exe
Status: Allocation size mismatch (API: 53248, Raw: 36864)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007970.exe
Status: Allocation size mismatch (API: 131072, Raw: 110592)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007971.exe
Status: Allocation size mismatch (API: 73728, Raw: 53248)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007972.exe
Status: Allocation size mismatch (API: 32768, Raw: 12288)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007973.exe
Status: Allocation size mismatch (API: 36864, Raw: 20480)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007974.exe
Status: Allocation size mismatch (API: 57344, Raw: 36864)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007975.exe
Status: Allocation size mismatch (API: 32768, Raw: 12288)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007976.exe
Status: Allocation size mismatch (API: 24576, Raw: 8192)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007977.exe
Status: Allocation size mismatch (API: 53248, Raw: 32768)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007978.exe
Status: Allocation size mismatch (API: 32768, Raw: 16384)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007979.exe
Status: Allocation size mismatch (API: 32768, Raw: 12288)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007980.exe
Status: Allocation size mismatch (API: 36864, Raw: 16384)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007981.exe
Status: Allocation size mismatch (API: 98304, Raw: 77824)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007982.exe
Status: Allocation size mismatch (API: 36864, Raw: 16384)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007984.exe
Status: Allocation size mismatch (API: 53248, Raw: 32768)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007985.exe
Status: Allocation size mismatch (API: 32768, Raw: 12288)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007986.exe
Status: Allocation size mismatch (API: 36864, Raw: 16384)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007987.exe
Status: Allocation size mismatch (API: 65536, Raw: 45056)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007988.exe
Status: Allocation size mismatch (API: 98304, Raw: 77824)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007989.scr
Status: Allocation size mismatch (API: 724992, Raw: 704512)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007990.scr
Status: Allocation size mismatch (API: 40960, Raw: 20480)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007991.scr
Status: Allocation size mismatch (API: 413696, Raw: 393216)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007992.scr
Status: Allocation size mismatch (API: 40960, Raw: 24576)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007993.scr
Status: Allocation size mismatch (API: 69632, Raw: 49152)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007994.scr
Status: Allocation size mismatch (API: 40960, Raw: 20480)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007995.scr
Status: Allocation size mismatch (API: 630784, Raw: 610304)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007996.scr
Status: Allocation size mismatch (API: 36864, Raw: 16384)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007997.exe
Status: Allocation size mismatch (API: 40960, Raw: 20480)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007998.exe
Status: Allocation size mismatch (API: 98304, Raw: 77824)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007999.exe
Status: Allocation size mismatch (API: 36864, Raw: 20480)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008000.exe
Status: Allocation size mismatch (API: 81920, Raw: 61440)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008002.exe
Status: Allocation size mismatch (API: 282624, Raw: 262144)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008003.exe
Status: Allocation size mismatch (API: 32768, Raw: 12288)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008004.exe
Status: Allocation size mismatch (API: 53248, Raw: 32768)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008005.exe
Status: Allocation size mismatch (API: 98304, Raw: 81920)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008006.exe
Status: Allocation size mismatch (API: 81920, Raw: 65536)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008007.exe
Status: Allocation size mismatch (API: 90112, Raw: 73728)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008008.exe
Status: Allocation size mismatch (API: 73728, Raw: 53248)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008009.exe
Status: Allocation size mismatch (API: 28672, Raw: 8192)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008010.exe
Status: Allocation size mismatch (API: 143360, Raw: 122880)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008011.exe
Status: Allocation size mismatch (API: 32768, Raw: 12288)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008012.exe
Status: Allocation size mismatch (API: 28672, Raw: 8192)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008013.exe
Status: Allocation size mismatch (API: 118784, Raw: 98304)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008014.exe
Status: Allocation size mismatch (API: 36864, Raw: 16384)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008015.exe
Status: Allocation size mismatch (API: 40960, Raw: 20480)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008016.exe
Status: Allocation size mismatch (API: 49152, Raw: 28672)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008017.exe
Status: Allocation size mismatch (API: 36864, Raw: 16384)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008018.exe
Status: Allocation size mismatch (API: 40960, Raw: 24576)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008020.exe
Status: Allocation size mismatch (API: 77824, Raw: 57344)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008021.exe
Status: Allocation size mismatch (API: 212992, Raw: 196608)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008022.exe
Status: Allocation size mismatch (API: 77824, Raw: 57344)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008023.exe
Status: Allocation size mismatch (API: 65536, Raw: 45056)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008024.exe
Status: Allocation size mismatch (API: 81920, Raw: 61440)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008025.exe
Status: Allocation size mismatch (API: 163840, Raw: 143360)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008026.exe
Status: Allocation size mismatch (API: 24576, Raw: 8192)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008027.exe
Status: Allocation size mismatch (API: 28672, Raw: 8192)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008028.exe
Status: Allocation size mismatch (API: 110592, Raw: 90112)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008029.exe
Status: Allocation size mismatch (API: 36864, Raw: 16384)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008030.exe
Status: Allocation size mismatch (API: 36864, Raw: 16384)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008031.exe
Status: Allocation size mismatch (API: 57344, Raw: 36864)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007929.exe
Status: Allocation size mismatch (API: 53248, Raw: 32768)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007947.exe
Status: Allocation size mismatch (API: 32768, Raw: 12288)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007965.exe
Status: Allocation size mismatch (API: 40960, Raw: 24576)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0007983.exe
Status: Allocation size mismatch (API: 45056, Raw: 24576)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008001.exe
Status: Allocation size mismatch (API: 102400, Raw: 81920)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0008019.exe
Status: Allocation size mismatch (API: 28672, Raw: 8192)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0010114.exe
Status: Allocation size mismatch (API: 151552, Raw: 131072)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0010115.exe
Status: Allocation size mismatch (API: 151552, Raw: 131072)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0010128.exe
Status: Allocation size mismatch (API: 352256, Raw: 331776)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0010129.exe
Status: Allocation size mismatch (API: 53248, Raw: 32768)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0010130.exe
Status: Allocation size mismatch (API: 167936, Raw: 147456)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0010131.exe
Status: Allocation size mismatch (API: 32768, Raw: 12288)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0010132.exe
Status: Allocation size mismatch (API: 266240, Raw: 245760)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0010133.exe
Status: Allocation size mismatch (API: 98304, Raw: 77824)
Path: c:\system volume information\_restore{fe5d2ebd-f87a-4a15-90ad-84a37fab1395}\rp56\a0010134.exe
Status: Allocation size mismatch (API: 69632, Raw: 49152)
==EOF==










iag69xp;c:\windows\system32\drivers\diag 69xp.sys --> c:\windows\system32\drivers\Diag69xp.sys [?]


















Linear Mode

