Logfile of The Avenger version 1, by Swandog46
Running from registry key:
\Registry\Machine\System\CurrentControlSet\Service s\inlsweuw
*******************
Script file located at: \??\C:\Program Files\elhuycro.txt
Script file opened successfully.
Script file read successfully
Backups directory opened successfully at C:\Avenger
*******************
Beginning to process script file:
Registry key HKEY_LOCAL_MACHINE\system\controlset003\services\W inOvk deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Servic es\WinOvk deleted successfully.
File C:\WINDOWS\system32\urtqim.dll deleted successfully.
File C:\WINDOWS\system32\paB6c8sL.exe not found!
Deletion of file C:\WINDOWS\system32\paB6c8sL.exe failed!
Could not process line:
C:\WINDOWS\system32\paB6c8sL.exe
Status: 0xc0000034
File C:\Programmi\File comuni\Microsoft Shared\mSRQc.exe not found!
Deletion of file C:\Programmi\File comuni\Microsoft Shared\mSRQc.exe failed!
Could not process line:
C:\Programmi\File comuni\Microsoft Shared\mSRQc.exe
Status: 0xc0000034
File C:\WINDOWS\tasks\At4.job deleted successfully.
File C:\WINDOWS\tasks\At6.job deleted successfully.
File C:\WINDOWS\tasks\At5.job deleted successfully.
File C:\WINDOWS\tasks\At3.job deleted successfully.
File C:\WINDOWS\tasks\At7.job deleted successfully.
File C:\WINDOWS\tasks\At8.job deleted successfully.
File C:\WINDOWS\tasks\At9.job deleted successfully.
File C:\WINDOWS\tasks\At10.job deleted successfully.
File C:\WINDOWS\tasks\At1.job deleted successfully.
File C:\WINDOWS\tasks\At2.job deleted successfully.
File C:\WINDOWS\tasks\At13.job deleted successfully.
File C:\WINDOWS\tasks\At12.job deleted successfully.
File C:\WINDOWS\tasks\At14.job deleted successfully.
File C:\WINDOWS\tasks\At15.job deleted successfully.
File C:\WINDOWS\tasks\At16.job deleted successfully.
File C:\WINDOWS\tasks\At17.job deleted successfully.
File C:\WINDOWS\tasks\At18.job deleted successfully.
File C:\WINDOWS\tasks\At19.job deleted successfully.
File C:\WINDOWS\tasks\At20.job deleted successfully.
File C:\WINDOWS\tasks\At21.job deleted successfully.
File C:\WINDOWS\tasks\At22.job deleted successfully.
File C:\WINDOWS\tasks\At23.job deleted successfully.
File C:\WINDOWS\tasks\At24.job deleted successfully.
Registry value HKLM\Software\Microsoft\Windows NT\CurrentVersion\Windows|AppInit_DLLs replaced with dummy successfully.
Program C:\Documents and Settings\Micheal\Desktop\sys99604.exe successfully set up to run once on reboot.
Completed script processing.
*******************
Finished! Terminate.