Logfile of The Avenger version 1, by Swandog46
Running from registry key:
\Registry\Machine\System\CurrentControlSet\Service s\fcifnlaw
*******************
Script file located at: \??\C:\Program Files\ipsdcmqn.txt
Script file opened successfully.
Script file read successfully
Backups directory opened successfully at C:\Avenger
*******************
Beginning to process script file:
File C:\Documents and Settings\Computer\Dati applicazioni\hidires\m_hook.sys deleted successfully.
Could not open file C:\Documents and Settings\ComputerDati applicazioni\hidires\hidr.exe for deletion
Deletion of file C:\Documents and Settings\ComputerDati applicazioni\hidires\hidr.exe failed!
Could not process line:
C:\Documents and Settings\ComputerDati applicazioni\hidires\hidr.exe
Status: 0xc000003a
File C:\WINDOWS\system32\wintems.exe deleted successfully.
File C:\WINDOWS\system32\hldrrr.exe deleted successfully.
Folder C:\Documents and Settings\Computer\Dati applicazioni\hidires deleted successfully.
Folder C:\WINDOWS\exefld deleted successfully.
Registry key HKLM\SYSTEM\CurrentControlSet\Services\m_hook deleted successfully.
Registry key HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_M_H OOK deleted successfully.
Registry value HKLM\Software\Microsoft\Windows\CurrentVersion\Run |hldrrr deleted successfully.
Completed script processing.
*******************
Finished! Terminate.