begin QuarantineFile('AESTSr64.exe', 'CHQ=S'); QuarantineFile('aswFsBlk.sys', 'CHQ=N'); QuarantineFile('aswRdr.sys', 'CHQ=N'); QuarantineFile('aswSP.sys', 'CHQ=N'); QuarantineFile('aswTdi.sys', 'CHQ=N'); QuarantineFile('atieclxx.exe', 'CHQ=S'); QuarantineFile('atiesrxx.exe', 'CHQ=S'); QuarantineFile('audiodg.exe', 'CHQ=S'); QuarantineFile('Beep.sys', 'CHQ=N'); QuarantineFile('csrss.exe', 'CHQ=S'); QuarantineFile('DpAgent.exe', 'CHQ=S'); QuarantineFile('DPPWDFLT.dll', 'CHQ=N'); QuarantineFile('dwm.exe', 'CHQ=S'); QuarantineFile('exfat.sys', 'CHQ=N'); QuarantineFile('fastfat.sys', 'CHQ=N'); QuarantineFile('FNPLicensingService64.exe', 'CHQ=S'); QuarantineFile('hpCaslNotification.exe', 'CHQ=S'); QuarantineFile('HPHC_Service.exe', 'CHQ=S'); QuarantineFile('hpservice.exe', 'CHQ=S'); QuarantineFile('HPWAMain.exe', 'CHQ=S'); QuarantineFile('iPodService.exe', 'CHQ=S'); QuarantineFile('jusched.exe', 'CHQ=S'); QuarantineFile('KHALMNPR.exe', 'CHQ=S'); QuarantineFile('lsass.exe', 'CHQ=S'); QuarantineFile('lsm.exe', 'CHQ=S'); QuarantineFile('Msfs.sys', 'CHQ=N'); QuarantineFile('MsRPC.sys', 'CHQ=N'); QuarantineFile('NclUSBSrv64.exe', 'CHQ=S'); QuarantineFile('NDProxy.sys', 'CHQ=N'); QuarantineFile('nlsInterface.EXE', 'CHQ=S'); QuarantineFile('Npfs.sys', 'CHQ=N'); QuarantineFile('Ntfs.sys', 'CHQ=N'); QuarantineFile('Null.sys', 'CHQ=N'); QuarantineFile('Photoshop.exe', 'CHQ=S'); QuarantineFile('PresentationFontCache.exe', 'CHQ=S'); QuarantineFile('rdpclip', 'CHQ=N'); QuarantineFile('RDPWD.sys', 'CHQ=N'); QuarantineFile('secdrv.sys', 'CHQ=N'); QuarantineFile('services.exe', 'CHQ=S'); QuarantineFile('SetPoint.exe', 'CHQ=S'); QuarantineFile('SmartMenu.exe', 'CHQ=S'); QuarantineFile('smss.exe', 'CHQ=S'); QuarantineFile('spldr.sys', 'CHQ=N'); QuarantineFile('spoolsv.exe', 'CHQ=S'); QuarantineFile('stacsv64.exe', 'CHQ=S'); QuarantineFile('SynTPEnh.exe', 'CHQ=S'); QuarantineFile('SynTPHelper.exe', 'CHQ=S'); QuarantineFile('taskhost.exe', 'CHQ=S'); QuarantineFile('winlogon.exe', 'CHQ=S'); QuarantineFile('wmdc.exe', 'CHQ=S'); QuarantineFile('wmpnetwk.exe', 'CHQ=S'); QuarantineFile('WUDFHost.exe', 'CHQ=S'); QuarantineFile('c:\windows\syswow64\tuoyqin.exe', 'CHQ=S'); QuarantineFile('C:\Windows\System32\appidsvc.dll', 'CHQ=S'); QuarantineFile('C:\Windows\System32\appinfo.dll', 'CHQ=N'); QuarantineFile('C:\Windows\system32\ARCSOF~1.SCR', 'CHQ=S'); QuarantineFile('C:\Windows\System32\AxInstSV.dll', 'CHQ=S'); QuarantineFile('C:\Windows\System32\bfe.dll', 'CHQ=N'); QuarantineFile('C:\Windows\system32\BlbEvents.dll', 'CHQ=S'); QuarantineFile('C:\Windows\System32\browser.dll', 'CHQ=S'); QuarantineFile('C:\Windows\system32\bthserv.dll', 'CHQ=S'); QuarantineFile('C:\Windows\System32\cdd.dll', 'CHQ=S'); QuarantineFile('C:\Windows\System32\certprop.dll', 'CHQ=S'); QuarantineFile('C:\Windows\system32\CI.dll', 'CHQ=S'); QuarantineFile('C:\Windows\System32\CLFS.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\cofiredm.dll', 'CHQ=S'); QuarantineFile('C:\Windows\System32\DFDTS.dll', 'CHQ=S'); QuarantineFile('C:\Windows\System32\DispCI.dll', 'CHQ=S'); QuarantineFile('C:\Windows\system32\dwm.exe', 'CHQ=N'); QuarantineFile('C:\Windows\system32\eapsvc.dll', 'CHQ=N'); QuarantineFile('C:\Windows\system32\fdPHost.dll', 'CHQ=S'); QuarantineFile('C:\Windows\system32\fdrespub.dll', 'CHQ=S'); QuarantineFile('C:\Windows\system32\FntCache.dll', 'CHQ=S'); QuarantineFile('C:\Windows\system32\fveapi.dll', 'CHQ=N'); QuarantineFile('C:\Windows\system32\fxsevent.dll', 'CHQ=N'); QuarantineFile('C:\Windows\system32\gpsvc.dll', 'CHQ=N'); QuarantineFile('C:\Windows\system32\hal.dll', 'CHQ=N'); QuarantineFile('C:\Windows\system32\Hpservice.exe', 'CHQ=N'); QuarantineFile('C:\Windows\system32\HPZinw12.dll', 'CHQ=N'); QuarantineFile('C:\Windows\system32\HPZipm12.dll', 'CHQ=N'); QuarantineFile('C:\Windows\System32\ikeext.dll', 'CHQ=S'); QuarantineFile('C:\Windows\system32\ipbusenum.dll', 'CHQ=S'); QuarantineFile('C:\Windows\System32\iphlpsvc.dll', 'CHQ=N'); QuarantineFile('C:\Windows\System32\iscsiexe.dll', 'CHQ=S'); QuarantineFile('C:\Windows\System32\iscsilog.dll', 'CHQ=S'); QuarantineFile('C:\Windows\system32\kdcom.dll', 'CHQ=S'); QuarantineFile('C:\Windows\system32\ListSvc.dll', 'CHQ=S'); QuarantineFile('C:\Windows\System32\lltdsvc.dll', 'CHQ=S'); QuarantineFile('C:\Windows\system32\locator.exe', 'CHQ=S'); QuarantineFile('C:\Windows\system32\lpksetup.exe', 'CHQ=S'); QuarantineFile('C:\Windows\system32\lsass.exe', 'CHQ=S'); QuarantineFile('C:\Windows\system32\lsm.exe', 'CHQ=N'); QuarantineFile('C:\Windows\System32\mctadmin.exe', 'CHQ=S'); QuarantineFile('C:\Windows\system32\mcupdate_AuthenticAMD.dll', 'CHQ=S'); QuarantineFile('C:\Windows\system32\Mcx2Svc.dll', 'CHQ=N'); QuarantineFile('C:\Windows\System32\mdsched.exe', 'CHQ=S'); QuarantineFile('C:\Windows\system32\microsoft-windows-hal-events.dll', 'CHQ=S'); QuarantineFile('C:\Windows\system32\microsoft-windows-kernel-power-events.dll', 'CHQ=S'); QuarantineFile('C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll', 'CHQ=S'); QuarantineFile('C:\Windows\system32\mmcss.dll', 'CHQ=N'); QuarantineFile('C:\Windows\system32\mpssvc.dll', 'CHQ=N'); QuarantineFile('C:\Windows\system32\msdtckrm.dll', 'CHQ=S'); QuarantineFile('C:\Windows\System32\netman.dll', 'CHQ=S'); QuarantineFile('C:\Windows\System32\nlasvc.dll', 'CHQ=N'); QuarantineFile('C:\Windows\system32\nlsInterface.exe', 'CHQ=S'); QuarantineFile('C:\Windows\system32\nsisvc.dll', 'CHQ=N'); QuarantineFile('C:\Windows\system32\oobe\winsetup.dll', 'CHQ=S'); QuarantineFile('C:\Windows\System32\pcasvc.dll', 'CHQ=N'); QuarantineFile('C:\Windows\system32\pnrpsvc.dll', 'CHQ=S'); QuarantineFile('C:\Windows\System32\profsvc.dll', 'CHQ=N'); QuarantineFile('C:\Windows\System32\qmgr.dll', 'CHQ=S'); QuarantineFile('C:\Windows\system32\recovery.dll', 'CHQ=S'); QuarantineFile('C:\Windows\System32\relpost.exe', 'CHQ=S'); QuarantineFile('C:\Windows\System32\RpcEpMap.dll', 'CHQ=N'); QuarantineFile('C:\Windows\System32\SCardSvr.dll', 'CHQ=S'); QuarantineFile('C:\Windows\system32\schedsvc.dll', 'CHQ=S'); QuarantineFile('C:\Windows\system32\sdclt.exe', 'CHQ=N'); QuarantineFile('C:\Windows\system32\sensrsvc.dll', 'CHQ=S'); QuarantineFile('C:\Windows\system32\services.exe', 'CHQ=S'); QuarantineFile('C:\Windows\System32\smss.exe', 'CHQ=S'); QuarantineFile('C:\Windows\System32\snmptrap.exe', 'CHQ=S'); QuarantineFile('C:\Windows\System32\spoolsv.exe', 'CHQ=N'); QuarantineFile('C:\Windows\system32\sppsvc.exe', 'CHQ=N'); QuarantineFile('C:\Windows\system32\sppuinotify.dll', 'CHQ=N'); QuarantineFile('C:\Windows\System32\sstpsvc.dll', 'CHQ=S'); QuarantineFile('C:\Windows\system32\sysmain.dll', 'CHQ=N'); QuarantineFile('C:\Windows\System32\TabSvc.dll', 'CHQ=S'); QuarantineFile('C:\Windows\system32\tbssvc.dll', 'CHQ=S'); QuarantineFile('C:\Windows\System32\termsrv.dll', 'CHQ=N'); QuarantineFile('C:\Windows\System32\TSDDD.dll', 'CHQ=S'); QuarantineFile('C:\Windows\system32\UI0Detect.exe', 'CHQ=S'); QuarantineFile('C:\Windows\System32\umpo.dll', 'CHQ=N'); QuarantineFile('C:\Windows\System32\uxsms.dll', 'CHQ=N'); QuarantineFile('C:\Windows\system32\vssvc.exe', 'CHQ=S'); QuarantineFile('C:\Windows\system32\Wat\WatAdminSvc.exe', 'CHQ=N'); QuarantineFile('C:\Windows\system32\Wat\WatUX.exe', 'CHQ=N'); QuarantineFile('C:\Windows\system32\wbengine.exe', 'CHQ=N'); QuarantineFile('C:\Windows\System32\wbiosrvc.dll', 'CHQ=S'); QuarantineFile('C:\Windows\system32\wecsvc.dll', 'CHQ=N'); QuarantineFile('C:\Windows\System32\wercplsupport.dll', 'CHQ=N'); QuarantineFile('C:\Windows\System32\wersvc.dll', 'CHQ=S'); QuarantineFile('C:\Windows\System32\wevtsvc.dll', 'CHQ=N'); QuarantineFile('C:\Windows\System32\winlogon.exe', 'CHQ=S'); QuarantineFile('C:\Windows\system32\WINSAT.EXE', 'CHQ=S'); QuarantineFile('C:\Windows\System32\win32k.sys', 'CHQ=N'); QuarantineFile('C:\Windows\System32\wlansvc.dll', 'CHQ=S'); QuarantineFile('C:\Windows\system32\wpdbusenum.dll', 'CHQ=S'); QuarantineFile('C:\Windows\System32\wwansvc.dll', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\Accelerometer.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\acpipmi.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\ACPI.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\adpahci.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\adpu320.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\adp94xx.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\drivers\afd.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\AgileVpn.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\agp440.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\agrsm64.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\aliide.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\amdide.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\amdk8.sys', 'CHQ=N'); QuarantineFile('C:\Windows\system32\DRIVERS\amdppm.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\amdsata.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\amdsbs.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\amdxata.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\drivers\appid.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\arcsas.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\arc.sys', 'CHQ=S'); QuarantineFile('C:\Windows\System32\Drivers\aswFsBlk.SYS', 'CHQ=S'); QuarantineFile('C:\Windows\system32\drivers\aswMonFlt.sys', 'CHQ=S'); QuarantineFile('C:\Windows\System32\Drivers\aswRdr.SYS', 'CHQ=S'); QuarantineFile('C:\Windows\System32\Drivers\aswSP.SYS', 'CHQ=S'); QuarantineFile('C:\Windows\System32\Drivers\aswTdi.SYS', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\asyncmac.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\atapi.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\ataport.SYS', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\athrx.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\drivers\AtiHdmi.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\atikmdag.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\atikmpag.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\AtiPcie.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\atipmdag.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\avc.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\BATTC.SYS', 'CHQ=S'); QuarantineFile('C:\Windows\System32\Drivers\Beep.SYS', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\blbdrive.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\bowser.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\BrFiltLo.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\BrFiltUp.sys', 'CHQ=S'); QuarantineFile('C:\Windows\System32\Drivers\Brserid.sys', 'CHQ=S'); QuarantineFile('C:\Windows\System32\Drivers\BrSerWdm.sys', 'CHQ=S'); QuarantineFile('C:\Windows\System32\Drivers\BrUsbMdm.sys', 'CHQ=S'); QuarantineFile('C:\Windows\System32\Drivers\BrUsbSer.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\BthEnum.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\bthmodem.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\bthpan.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\Drivers\BTHport.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\Drivers\BTHUSB.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\drivers\btwaudio.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\drivers\btwavdt.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\btwl2cap.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\btwrchid.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\bxvbda.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\b57nd60a.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\drivers\ccdcmbox64.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\drivers\ccdcmbx64.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\cdfs.sys', 'CHQ=N'); QuarantineFile('C:\Windows\system32\DRIVERS\cdrom.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\circlass.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\CLASSPNP.SYS', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\CmBatt.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\cmdide.sys', 'CHQ=S'); QuarantineFile('C:\Windows\System32\Drivers\cng.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\compbatt.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\CompositeBus.sys', 'CHQ=S'); QuarantineFile('C:\Windows\System32\Drivers\crashdmp.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\crcdisk.sys', 'CHQ=N'); QuarantineFile('C:\Windows\system32\Drivers\dfsc.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\drivers\discache.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\disk.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\drivers\drmkaud.sys', 'CHQ=N'); QuarantineFile('C:\Windows\system32\drivers\drmk.sys', 'CHQ=S'); QuarantineFile('C:\Windows\System32\Drivers\dump_dumpata.sys', 'CHQ=S'); QuarantineFile('C:\Windows\System32\Drivers\dump_dumpfve.sys', 'CHQ=S'); QuarantineFile('C:\Windows\System32\Drivers\dump_msahci.sys', 'CHQ=S'); QuarantineFile('C:\Windows\System32\drivers\Dxapi.sys', 'CHQ=S'); QuarantineFile('C:\Windows\System32\drivers\dxgkrnl.sys', 'CHQ=S'); QuarantineFile('C:\Windows\System32\drivers\dxgmms1.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\elxstor.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\enecir.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\errdev.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\evbda.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\ewusbmdm.sys', 'CHQ=S'); QuarantineFile('C:\Windows\System32\Drivers\fastfat.SYS', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\fdc.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\drivers\fileinfo.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\drivers\filetrace.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\flpydisk.sys', 'CHQ=N'); QuarantineFile('C:\Windows\system32\drivers\fltmgr.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\drivers\FsDepends.sys', 'CHQ=S'); QuarantineFile('C:\Windows\System32\Drivers\Fs_Rec.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\fssfltr.sys', 'CHQ=N'); QuarantineFile('C:\Windows\System32\DRIVERS\fvevol.sys', 'CHQ=S'); QuarantineFile('C:\Windows\System32\drivers\fwpkclnt.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\gagp30kx.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\GEARAspiWDM.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\drivers\hcw85cir.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\HDAudBus.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\drivers\HdAudio.sys', 'CHQ=N'); QuarantineFile('C:\Windows\system32\DRIVERS\HidBatt.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\hidbth.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\HIDCLASS.SYS', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\hidir.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\HIDPARSE.SYS', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\hidusb.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\hpdskflt.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\HpqKbFiltr.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\HpSAMD.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\drivers\HTTP.sys', 'CHQ=S'); QuarantineFile('C:\Windows\System32\drivers\hwpolicy.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\iaStorV.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\igdkmd64.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\iirsp.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\intelide.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\intelppm.sys', 'CHQ=N'); QuarantineFile('C:\Windows\system32\DRIVERS\ipfltdrv.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\IPMIDrv.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\drivers\ipnat.sys', 'CHQ=N'); QuarantineFile('C:\Windows\system32\drivers\irenum.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\isapnp.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\i8042prt.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\jmcr.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\kbdclass.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\kbdhid.sys', 'CHQ=S'); QuarantineFile('C:\Windows\System32\Drivers\ksecdd.sys', 'CHQ=S'); QuarantineFile('C:\Windows\System32\Drivers\ksecpkg.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\ks.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\drivers\ksthunk.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\LHidFilt.Sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\lltdio.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\LMouFilt.Sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\lsi_fc.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\lsi_sas.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\lsi_sas2.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\lsi_scsi.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\drivers\luafv.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\Drivers\LUsbFilt.Sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\MarvinBus64.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\megasas.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\MegaSR.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\drivers\modem.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\monitor.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\motmodem.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\mouclass.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\mouhid.sys', 'CHQ=S'); QuarantineFile('C:\Windows\System32\drivers\mountmgr.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\mpio.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\drivers\mpsdrv.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\mrxsmb.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\mrxsmb10.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\mrxsmb20.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\msahci.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\msdsm.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\msdv.sys', 'CHQ=S'); QuarantineFile('C:\Windows\System32\Drivers\Msfs.SYS', 'CHQ=S'); QuarantineFile('C:\Windows\System32\drivers\mshidkmdf.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\msisadrv.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\msiscsi.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\drivers\MSKSSRV.sys', 'CHQ=N'); QuarantineFile('C:\Windows\system32\drivers\MSPCLOCK.sys', 'CHQ=N'); QuarantineFile('C:\Windows\system32\drivers\MSPQM.sys', 'CHQ=N'); QuarantineFile('C:\Windows\System32\Drivers\msrpc.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\mssmbios.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\drivers\MSTEE.sys', 'CHQ=N'); QuarantineFile('C:\Windows\system32\DRIVERS\MTConfig.sys', 'CHQ=S'); QuarantineFile('C:\Windows\System32\Drivers\mup.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\ndiscap.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\drivers\ndis.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\ndistapi.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\ndisuio.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\ndiswan.sys', 'CHQ=S'); QuarantineFile('C:\Windows\System32\Drivers\NDProxy.SYS', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\netbios.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\netbt.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\drivers\NETIO.SYS', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\netw5v64.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\nfrd960.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\drivers\nmwcdnsucx64.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\drivers\nmwcdnsux64.sys', 'CHQ=S'); QuarantineFile('C:\Windows\System32\Drivers\Npfs.SYS', 'CHQ=S'); QuarantineFile('C:\Windows\system32\drivers\nsiproxy.sys', 'CHQ=S'); QuarantineFile('C:\Windows\System32\Drivers\Ntfs.sys', 'CHQ=N'); QuarantineFile('C:\Windows\System32\Drivers\Null.SYS', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\nv_agp.sys', 'CHQ=N'); QuarantineFile('C:\Windows\system32\DRIVERS\nvraid.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\nvstor.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\nwifi.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\ohci1394.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\pacer.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\parport.sys', 'CHQ=N'); QuarantineFile('C:\Windows\System32\drivers\partmgr.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\pccsmcfdx64.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\pciide.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\PCIIDEX.SYS', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\pci.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\pcmcia.sys', 'CHQ=N'); QuarantineFile('C:\Windows\System32\drivers\pcw.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\drivers\peauth.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\drivers\portcls.sys', 'CHQ=N'); QuarantineFile('C:\Windows\system32\DRIVERS\processr.sys', 'CHQ=N'); QuarantineFile('C:\Windows\system32\DRIVERS\ql2300.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\ql40xx.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\drivers\qwavedrv.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\rasacd.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\rasl2tp.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\raspppoe.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\raspptp.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\rassstp.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\rdbss.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\rdpbus.sys', 'CHQ=N'); QuarantineFile('C:\Windows\system32\DRIVERS\RDPCDD.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\drivers\rdpencdd.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\drivers\rdprefmp.sys', 'CHQ=S'); QuarantineFile('C:\Windows\System32\drivers\rdyboost.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\rfcomm.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\rspndr.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\Rt64win7.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\sbp2port.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\scfilter.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\sdbus.sys', 'CHQ=S'); QuarantineFile('C:\Windows\System32\Drivers\secdrv.SYS', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\serenum.sys', 'CHQ=N'); QuarantineFile('C:\Windows\system32\DRIVERS\serial.sys', 'CHQ=N'); QuarantineFile('C:\Windows\system32\DRIVERS\sermouse.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\sffdisk.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\sffp_mmc.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\sffp_sd.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\sfloppy.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\SiSRaid2.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\sisraid4.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\smb.sys', 'CHQ=N'); QuarantineFile('C:\Windows\System32\Drivers\spldr.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\srvnet.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\srv.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\srv2.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\stexstor.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\storport.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\stwrt64.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\swenum.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\SynTP.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\drivers\tcpipreg.sys', 'CHQ=S'); QuarantineFile('C:\Windows\System32\drivers\tcpip.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\TDI.SYS', 'CHQ=S'); QuarantineFile('C:\Windows\system32\drivers\tdpipe.sys', 'CHQ=N'); QuarantineFile('C:\Windows\system32\drivers\tdtcp.sys', 'CHQ=N'); QuarantineFile('C:\Windows\system32\DRIVERS\tdx.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\termdd.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\tssecsrv.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\tunnel.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\uagp35.sys', 'CHQ=N'); QuarantineFile('C:\Windows\system32\DRIVERS\udfs.sys', 'CHQ=N'); QuarantineFile('C:\Windows\system32\DRIVERS\uliagpkx.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\umbus.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\umpass.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\usbccgp.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\usbcir.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\USBD.SYS', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\usbehci.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\usbfilter.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\usbhub.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\usbohci.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\USBPORT.SYS', 'CHQ=N'); QuarantineFile('C:\Windows\system32\DRIVERS\usbprint.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\usbser_lowerfltx64j.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\usbser_lowerfltx64.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\drivers\usbser.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\USBSTOR.SYS', 'CHQ=N'); QuarantineFile('C:\Windows\system32\DRIVERS\usbuhci.sys', 'CHQ=N'); QuarantineFile('C:\Windows\System32\Drivers\usbvideo.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\usb8023x.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\vdrvroot.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\vgapnp.sys', 'CHQ=S'); QuarantineFile('C:\Windows\System32\drivers\vga.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\vhdmp.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\viaide.sys', 'CHQ=S'); QuarantineFile('C:\Windows\System32\drivers\VIDEOPRT.SYS', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\volmgr.sys', 'CHQ=S'); QuarantineFile('C:\Windows\System32\drivers\volmgrx.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\volsnap.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\vsmraid.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\VSTAZL6.SYS', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\VSTCNXT6.SYS', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\VSTDPV6.SYS', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\vwifibus.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\vwififlt.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\wacompen.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\wanarp.sys', 'CHQ=S'); QuarantineFile('C:\Windows\System32\drivers\watchdog.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\drivers\WDFLDR.SYS', 'CHQ=S'); QuarantineFile('C:\Windows\system32\drivers\Wdf01000.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\wd.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\wfplwf.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\WinUSB.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\wmiacpi.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\WMILIB.SYS', 'CHQ=S'); QuarantineFile('C:\Windows\system32\drivers\ws2ifsl.sys', 'CHQ=N'); QuarantineFile('C:\Windows\system32\drivers\WudfPf.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\WUDFRd.sys', 'CHQ=S'); QuarantineFile('C:\Windows\System32\Drivers\yk62x64.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\1394ohci.sys', 'CHQ=N'); QuarantineFile('C:\Windows\system32\DRIVERS\61883.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\6684242.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\66842421.sys', 'CHQ=S'); QuarantineFile('C:\Windows\system32\DRIVERS\66842422.sys', 'CHQ=S'); QuarantineFile('C:\Users\Maciej\AppData\Local\Temp\NEventMessages.dll', 'CHQ=S'); QuarantineFile('C:\Program Files (x86)\Gadu-Gadu 10\imageformats\qgif4.dll', 'CHQ=G'); QuarantineFile('C:\Program Files (x86)\Gadu-Gadu 10\imageformats\qjpeg4.dll', 'CHQ=G'); QuarantineFile('C:\Program Files (x86)\Gadu-Gadu 10\imageformats\qmng4.dll', 'CHQ=G'); QuarantineFile('C:\Program Files (x86)\Gadu-Gadu 10\imageformats\qsvg4.dll', 'CHQ=G'); QuarantineFile('C:\Program Files (x86)\Gadu-Gadu 10\imageformats\qtiff4.dll', 'CHQ=G'); QuarantineFile('C:\Program Files (x86)\Gadu-Gadu 10\libhunspell.dll', 'CHQ=G'); end.