Drivers to disable: UACd.sys gxvxcserv.sys gaopdxserv.sys gxvxcserv
Drivers to delete: UACd.sys gxvxcserv.sys gaopdxserv.sys gxvxcserv
Files to delete: C:\Autorun.inf D:\Autorun.inf C:\WINDOWS\system32\gbnlwyeh.dll C:\WINDOWS\system32\cpuesjq.dll c:\WINDOWS\system32\mbjsgsl.dll C:\WINDOWS\system32\wJQs.exe C:\WINDOWS\system32\drivers\UACakcfxublxbeheme.sys C:\RECYCLER\S-1-5-21-583907252-492894223-13430240911003\Dc1\UACakcfxublxbeheme.sys C:\RECYCLER\S-1-5-21-583907252-492894223-13430240911003\Dc1\UACakcfxublxbeheme.sys(1) C:\RECYCLER\S-1-5-21-583907252-492894223-13430240911003\Dc1\UACakcfxublxbeheme.sys(2) C:\RECYCLER\S-1-5-21-583907252-492894223-13430240911003\Dc1\UACakcfxublxbeheme.sys(3) C:\RECYCLER\S-1-5-21-583907252-492894223-13430240911003\Dc1\UACakcfxublxbeheme.sys(4) C:\RECYCLER\S-1-5-21-583907252-492894223-13430240911003\Dc1\uachnoverfffpbbojg.dll
C:\RECYCLER\S-1-5-21-583907252-492894223-13430240911003\Dc1\uachnoverfffpbbojg.dll(1) C:\WINDOWS\system32\uacinit.dll C:\WINDOWS\system32\UACfwqvovmrcwvqxae.log C:\WINDOWS\system32\UAChnoverfffpbbojg.dll C:\WINDOWS\system32\UACikjwipoxduxtobi.dll C:\WINDOWS\system32\uacvymnbtboeayohhs.dll C:\WINDOWS\system32\uacqciqunodfnlghrv.dll C:\WINDOWS\system32\UACjhwhfownswugepx.dll C:\WINDOWS\system32\UACmeuaqmivkbmnyrj.dll C:\WINDOWS\system32\UACqrmyxiqpfquufol.dat C:\WINDOWS\system32\UACwordlvukxekdgqo.dll C:\WINDOWS\system32\UAC5b24.tmperfffpbbojg.dll C:\WINDOWS\system32\drivers\gxvxcserv.sys C:\WINDOWS\system32\gxvxccounter C:\WINDOWS\System32\drivers\gaopdxserv.sys C:\WINDOWS\system32\gaopdxl.dll C:\WINDOWS\system32\drivers\gxvxcaithwuhtprrwopxgilalbaobwucrdslx.sys C:\WINDOWS\system32\gxvxcxkfpxfxurntewmrfttjyqtsmsenqwgiw.dll C:\WINDOWS\system32\drivers\gxvxcvxmuiisiusdatjuqfpdtmxbuqcecgbdn.sys C:\Windows\system32\drivers\gxvxcxiearhjspghonrxymbbiyubogpqitydm.sys C:\WINDOWS\system32\gxvxcbinpbppwhtjxomtyumcthxvnfelpofrx.dll C:\Windows\system32\drivers\gxvxcxrtfmrhquqmdvrtxediopecmpvcsyenm.sys C:\WINDOWS\system32\gxvxclglkjccpdximixpvxhosscccyavumnsg.dll C:\WINDOWS\system32\gxvxcsemsdfpsspjugtwlscubooyseravfcwb.dll C:\WINDOWS\system32\gxvxctsossroyfpamddlctxslrvqwpvkiweqq.dll C:\WINDOWS\System32\drivers\gxvxcwcorbswuncunpcjblpdonpfagxrpuqdp.sys C:\WINDOWS\Temp\UAC5f99.tmp C:\WINDOWS\Temp\UACcf2c.tmp C:\WINDOWS\Temp\UACf1b3.tmp
C:\WINDOWS\Temp\UACfa8e.tmp
Folders to delete: C:\resycled D:\resycled E:\resycled F:\resycled G:\resycled H:\resycled
Registry keys to delete: HKEY_LOCAL_MACHINE\SOFTWARE\UAC HKEY_LOCAL_MACHINE\SOFTWARE\gaopdx HKEY_LOCAL_MACHINE\SOFTWARE\gxvxc HKEY_LOCAL_MACHINE\SYSTEM\currentcontrolset\services\gaopdxserv.sys HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\gxvxcserv.sys HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\gxvxcserv.sys HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\UACd.sys HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\UACd.sys