landex21
2007-09-23, 22:05
I have been engaging in unsafe surfing and am paying for it. Please help!
Kaspersky Results
Sunday, September 23, 2007 2:05:38 PM
Operating System: Microsoft Windows XP Professional, Service Pack 2 (Build 2600)
Kaspersky Online Scanner version: 5.0.93.1
Kaspersky Anti-Virus database last update: 23/09/2007
Kaspersky Anti-Virus database records: 422601
Scan Settings
Scan using the following antivirus database extended
Scan Archives true
Scan Mail Bases true
Scan Target My Computer
A:\
C:\
D:\
E:\
F:\
Scan Statistics
Total number of scanned objects 58730
Number of viruses found 23
Number of infected objects 74
Number of suspicious objects 4
Duration of the scan process 01:11:21
Infected Object Name Virus Name Last Action
C:\check_LSA7.txt Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Windows Defender\Support\MPLog-10292006-165429.log Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumonde1.zip/winBB.tmp.exe Suspicious: Password-protected-EXE skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumonde1.zip ZIP: suspicious - 1 skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Yazzle.zip/Yazzle1162OinUninstaller.exe Suspicious: Password-protected-EXE skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Yazzle.zip ZIP: suspicious - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\329806C3.tmp Infected: not-a-virus:AdWare.Win32.Virtumonde.ej skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\33C41D78.exe Infected: not-a-virus:AdWare.Win32.Mostofate.u skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\33CE1B6E.exe Infected: Trojan.Win32.Agent.vg skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\37AE1DD2.exe Infected: Backdoor.Win32.Agent.aly skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\44C2129C.exe Infected: Trojan.Win32.Obfuscated.ev skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4CC83BC8.exe Infected: Trojan-Downloader.Win32.Agent.avm skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4CCB65C4.tmp Infected: Packed.Win32.Klone.g skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\60180AB1.tmp Infected: not-a-virus:AdWare.Win32.Virtumonde.ej skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\614B755F.exe Infected: Trojan.Win32.Agent.vg skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\62E45366.exe/data0002 Infected: Trojan-Downloader.Win32.PurityScan.dc skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\62E45366.exe NSIS: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\62E45366.exe CryptFF: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\791925A8.def Infected: not-a-virus:AdWare.Win32.180Solutions.ax skipped
C:\Documents and Settings\All Users\Application Data\Symantec\SRTSP\SrtETmp\4646FFA2.TMP Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Symantec\SRTSP\SrtETmp\837228F7.TMP Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Symantec\SRTSP\SrtETmp\925DE04E.TMP Object is locked skipped
C:\Documents and Settings\DEFAULT\Application Data\Mozilla\Firefox\Profiles\prfl0f5k.default\cert8.db Object is locked skipped
C:\Documents and Settings\DEFAULT\Application Data\Mozilla\Firefox\Profiles\prfl0f5k.default\formhistory.dat Object is locked skipped
C:\Documents and Settings\DEFAULT\Application Data\Mozilla\Firefox\Profiles\prfl0f5k.default\history.dat Object is locked skipped
C:\Documents and Settings\DEFAULT\Application Data\Mozilla\Firefox\Profiles\prfl0f5k.default\key3.db Object is locked skipped
C:\Documents and Settings\DEFAULT\Application Data\Mozilla\Firefox\Profiles\prfl0f5k.default\parent.lock Object is locked skipped
C:\Documents and Settings\DEFAULT\Application Data\Mozilla\Firefox\Profiles\prfl0f5k.default\search.sqlite Object is locked skipped
C:\Documents and Settings\DEFAULT\Application Data\Mozilla\Firefox\Profiles\prfl0f5k.default\urlclassifier2.sqlite Object is locked skipped
C:\Documents and Settings\DEFAULT\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\DEFAULT\Desktop\SmitfraudFix\Reboot.exe Infected: not-a-virus:RiskTool.Win32.Reboot.f skipped
C:\Documents and Settings\DEFAULT\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\DEFAULT\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\DEFAULT\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{ADDBFB9C-CBDE-4D17-98C5-B2A761B40C18} Object is locked skipped
C:\Documents and Settings\DEFAULT\Local Settings\Application Data\Mozilla\Firefox\Profiles\prfl0f5k.default\Cache\_CACHE_001_ Object is locked skipped
C:\Documents and Settings\DEFAULT\Local Settings\Application Data\Mozilla\Firefox\Profiles\prfl0f5k.default\Cache\_CACHE_002_ Object is locked skipped
C:\Documents and Settings\DEFAULT\Local Settings\Application Data\Mozilla\Firefox\Profiles\prfl0f5k.default\Cache\_CACHE_003_ Object is locked skipped
C:\Documents and Settings\DEFAULT\Local Settings\Application Data\Mozilla\Firefox\Profiles\prfl0f5k.default\Cache\_CACHE_MAP_ Object is locked skipped
C:\Documents and Settings\DEFAULT\Local Settings\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\DEFAULT\Local Settings\History\History.IE5\MSHist012007092320070924\index.dat Object is locked skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temp\1664.exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temp\16agent.exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temp\32sys.exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temp\6416.exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temp\agent16.exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temp\agent32.exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temp\gosC6.tmp Infected: Trojan.Win32.Dialer.qn skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temp\hostwin.exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temp\look32.exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temp\monhost.exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temp\monlook.exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temp\monsyn.exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temp\powerserver.exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temp\sv64.exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temp\svagent.exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temp\svwin.exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temp\synmon.exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temp\synpower.exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temp\sys64.exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temp\sysmon.exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temp\syssv.exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temp\syswin.exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temp\win64.exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temp\winCD.tmp.exe Infected: Trojan-Downloader.Win32.VB.bjr skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temp\winlook.exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temporary Internet Files\Content.IE5\416BOTE7\lkjh[1] Infected: Trojan-Downloader.Win32.Tiny.id skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temporary Internet Files\Content.IE5\C9AJ05AR\xc60[1].exe Infected: Trojan.Win32.Dialer.qn skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temporary Internet Files\Content.IE5\CH6FGHAJ\hlpsrv[1].exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temporary Internet Files\Content.IE5\K9EV0DE3\xc42[1].exe/data0002 Infected: Trojan-Downloader.Win32.PurityScan.eg skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temporary Internet Files\Content.IE5\K9EV0DE3\xc42[1].exe NSIS: infected - 1 skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temporary Internet Files\Content.IE5\MOFP9EZS\xcd23[1].exe Infected: Trojan-Downloader.Win32.VB.bjr skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temporary Internet Files\Content.IE5\OLAZSD6R\valera[1] Infected: Trojan.Win32.Agent.bck skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temporary Internet Files\Content.IE5\OND3EIR9\antzom[1].exe Infected: Trojan.Win32.Dialer.qn skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temporary Internet Files\Content.IE5\Q1HANYTW\xc23[1].exe Infected: Trojan-Downloader.Win32.Alphabet.gen skipped
C:\Documents and Settings\DEFAULT\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\DEFAULT\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\LocalService\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped
C:\IBMTOOLS\APPS\RRPC\RRPC\superinstall.EXE/IGWSE2SAS2.1WM2.1.EXE/HOTVIEW.EXE Infected: not-a-virus:RemoteAdmin.Win32.WinVNC.333 skipped
C:\IBMTOOLS\APPS\RRPC\RRPC\superinstall.EXE/IGWSE2SAS2.1WM2.1.EXE/VNCHOOKS.DLL Infected: not-a-virus:RemoteAdmin.Win32.WinVNC.333 skipped
C:\IBMTOOLS\APPS\RRPC\RRPC\superinstall.EXE/IGWSE2SAS2.1WM2.1.EXE Infected: not-a-virus:RemoteAdmin.Win32.WinVNC.333 skipped
C:\IBMTOOLS\APPS\RRPC\RRPC\superinstall.EXE ZIP: infected - 3 skipped
C:\Program Files\hlpsrv.exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\System Volume Information\_restore{29FD9B63-4F58-4DB0-B2C4-8709D5244F27}\RP410\A0041526.exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\System Volume Information\_restore{29FD9B63-4F58-4DB0-B2C4-8709D5244F27}\RP410\A0042506.exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\System Volume Information\_restore{29FD9B63-4F58-4DB0-B2C4-8709D5244F27}\RP410\A0042523.dll Infected: Trojan.Win32.Dialer.qn skipped
C:\System Volume Information\_restore{29FD9B63-4F58-4DB0-B2C4-8709D5244F27}\RP410\A0042525.exe Infected: Trojan-Downloader.Win32.Alphabet.gen skipped
C:\System Volume Information\_restore{29FD9B63-4F58-4DB0-B2C4-8709D5244F27}\RP410\A0042527.exe Infected: Trojan-Downloader.Win32.PurityScan.eg skipped
C:\System Volume Information\_restore{29FD9B63-4F58-4DB0-B2C4-8709D5244F27}\RP410\A0042542.exe Infected: Virus.Win32.Virut.q skipped
C:\System Volume Information\_restore{29FD9B63-4F58-4DB0-B2C4-8709D5244F27}\RP410\A0042543.exe Infected: Trojan.Win32.Inject.ff skipped
C:\System Volume Information\_restore{29FD9B63-4F58-4DB0-B2C4-8709D5244F27}\RP410\A0042552.exe/data.rar/keygen.exe Infected: Trojan.Win32.Inject.ff skipped
C:\System Volume Information\_restore{29FD9B63-4F58-4DB0-B2C4-8709D5244F27}\RP410\A0042552.exe/data.rar/crack.exe Infected: Trojan-Downloader.Win32.Agent.dlu skipped
C:\System Volume Information\_restore{29FD9B63-4F58-4DB0-B2C4-8709D5244F27}\RP410\A0042552.exe/data.rar/serial.exe Infected: Trojan.Win32.Dialer.vc skipped
C:\System Volume Information\_restore{29FD9B63-4F58-4DB0-B2C4-8709D5244F27}\RP410\A0042552.exe/data.rar/install.exe Infected: Virus.Win32.Virut.q skipped
C:\System Volume Information\_restore{29FD9B63-4F58-4DB0-B2C4-8709D5244F27}\RP410\A0042552.exe/data.rar Infected: Virus.Win32.Virut.q skipped
C:\System Volume Information\_restore{29FD9B63-4F58-4DB0-B2C4-8709D5244F27}\RP410\A0042552.exe RarSFX: infected - 5 skipped
C:\System Volume Information\_restore{29FD9B63-4F58-4DB0-B2C4-8709D5244F27}\RP410\A0042557.exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\System Volume Information\_restore{29FD9B63-4F58-4DB0-B2C4-8709D5244F27}\RP410\A0042568.exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\System Volume Information\_restore{29FD9B63-4F58-4DB0-B2C4-8709D5244F27}\RP411\A0042570.dll Infected: Trojan-Downloader.Win32.Agent.dlu skipped
C:\System Volume Information\_restore{29FD9B63-4F58-4DB0-B2C4-8709D5244F27}\RP411\A0042571.exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\System Volume Information\_restore{29FD9B63-4F58-4DB0-B2C4-8709D5244F27}\RP412\A0043568.exe Infected: Trojan-Downloader.Win32.Tiny.id skipped
C:\System Volume Information\_restore{29FD9B63-4F58-4DB0-B2C4-8709D5244F27}\RP412\change.log Object is locked skipped
C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped
C:\WINDOWS\mgrs.exe Infected: Trojan-Downloader.Win32.Alphabet.gen skipped
C:\WINDOWS\SchedLgU.Txt Object is locked skipped
C:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked skipped
C:\WINDOWS\Sti_Trace.log Object is locked skipped
C:\WINDOWS\system32\CatRoot2\edb.log Object is locked skipped
C:\WINDOWS\system32\CatRoot2\tmp.edb Object is locked skipped
C:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\DEFAULT Object is locked skipped
C:\WINDOWS\system32\config\default.LOG Object is locked skipped
C:\WINDOWS\system32\config\SAM Object is locked skipped
C:\WINDOWS\system32\config\SAM.LOG Object is locked skipped
C:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\SECURITY Object is locked skipped
C:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped
C:\WINDOWS\system32\config\SOFTWARE Object is locked skipped
C:\WINDOWS\system32\config\software.LOG Object is locked skipped
C:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\SYSTEM Object is locked skipped
C:\WINDOWS\system32\config\system.LOG Object is locked skipped
C:\WINDOWS\system32\dnmtiqoc.exe Infected: Trojan.Win32.Agent.bck skipped
C:\WINDOWS\system32\drvvov.dll Infected: Trojan.Win32.Dialer.qn skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP Object is locked skipped
C:\WINDOWS\wiadebug.log Object is locked skipped
C:\WINDOWS\wiaservc.log Object is locked skipped
C:\WINDOWS\WindowsUpdate.log Object is locked skipped
Scan process completed.
Kaspersky Results
Sunday, September 23, 2007 2:05:38 PM
Operating System: Microsoft Windows XP Professional, Service Pack 2 (Build 2600)
Kaspersky Online Scanner version: 5.0.93.1
Kaspersky Anti-Virus database last update: 23/09/2007
Kaspersky Anti-Virus database records: 422601
Scan Settings
Scan using the following antivirus database extended
Scan Archives true
Scan Mail Bases true
Scan Target My Computer
A:\
C:\
D:\
E:\
F:\
Scan Statistics
Total number of scanned objects 58730
Number of viruses found 23
Number of infected objects 74
Number of suspicious objects 4
Duration of the scan process 01:11:21
Infected Object Name Virus Name Last Action
C:\check_LSA7.txt Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Windows Defender\Support\MPLog-10292006-165429.log Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumonde1.zip/winBB.tmp.exe Suspicious: Password-protected-EXE skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumonde1.zip ZIP: suspicious - 1 skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Yazzle.zip/Yazzle1162OinUninstaller.exe Suspicious: Password-protected-EXE skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Yazzle.zip ZIP: suspicious - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\329806C3.tmp Infected: not-a-virus:AdWare.Win32.Virtumonde.ej skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\33C41D78.exe Infected: not-a-virus:AdWare.Win32.Mostofate.u skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\33CE1B6E.exe Infected: Trojan.Win32.Agent.vg skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\37AE1DD2.exe Infected: Backdoor.Win32.Agent.aly skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\44C2129C.exe Infected: Trojan.Win32.Obfuscated.ev skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4CC83BC8.exe Infected: Trojan-Downloader.Win32.Agent.avm skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4CCB65C4.tmp Infected: Packed.Win32.Klone.g skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\60180AB1.tmp Infected: not-a-virus:AdWare.Win32.Virtumonde.ej skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\614B755F.exe Infected: Trojan.Win32.Agent.vg skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\62E45366.exe/data0002 Infected: Trojan-Downloader.Win32.PurityScan.dc skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\62E45366.exe NSIS: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\62E45366.exe CryptFF: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\791925A8.def Infected: not-a-virus:AdWare.Win32.180Solutions.ax skipped
C:\Documents and Settings\All Users\Application Data\Symantec\SRTSP\SrtETmp\4646FFA2.TMP Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Symantec\SRTSP\SrtETmp\837228F7.TMP Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Symantec\SRTSP\SrtETmp\925DE04E.TMP Object is locked skipped
C:\Documents and Settings\DEFAULT\Application Data\Mozilla\Firefox\Profiles\prfl0f5k.default\cert8.db Object is locked skipped
C:\Documents and Settings\DEFAULT\Application Data\Mozilla\Firefox\Profiles\prfl0f5k.default\formhistory.dat Object is locked skipped
C:\Documents and Settings\DEFAULT\Application Data\Mozilla\Firefox\Profiles\prfl0f5k.default\history.dat Object is locked skipped
C:\Documents and Settings\DEFAULT\Application Data\Mozilla\Firefox\Profiles\prfl0f5k.default\key3.db Object is locked skipped
C:\Documents and Settings\DEFAULT\Application Data\Mozilla\Firefox\Profiles\prfl0f5k.default\parent.lock Object is locked skipped
C:\Documents and Settings\DEFAULT\Application Data\Mozilla\Firefox\Profiles\prfl0f5k.default\search.sqlite Object is locked skipped
C:\Documents and Settings\DEFAULT\Application Data\Mozilla\Firefox\Profiles\prfl0f5k.default\urlclassifier2.sqlite Object is locked skipped
C:\Documents and Settings\DEFAULT\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\DEFAULT\Desktop\SmitfraudFix\Reboot.exe Infected: not-a-virus:RiskTool.Win32.Reboot.f skipped
C:\Documents and Settings\DEFAULT\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\DEFAULT\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\DEFAULT\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{ADDBFB9C-CBDE-4D17-98C5-B2A761B40C18} Object is locked skipped
C:\Documents and Settings\DEFAULT\Local Settings\Application Data\Mozilla\Firefox\Profiles\prfl0f5k.default\Cache\_CACHE_001_ Object is locked skipped
C:\Documents and Settings\DEFAULT\Local Settings\Application Data\Mozilla\Firefox\Profiles\prfl0f5k.default\Cache\_CACHE_002_ Object is locked skipped
C:\Documents and Settings\DEFAULT\Local Settings\Application Data\Mozilla\Firefox\Profiles\prfl0f5k.default\Cache\_CACHE_003_ Object is locked skipped
C:\Documents and Settings\DEFAULT\Local Settings\Application Data\Mozilla\Firefox\Profiles\prfl0f5k.default\Cache\_CACHE_MAP_ Object is locked skipped
C:\Documents and Settings\DEFAULT\Local Settings\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\DEFAULT\Local Settings\History\History.IE5\MSHist012007092320070924\index.dat Object is locked skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temp\1664.exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temp\16agent.exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temp\32sys.exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temp\6416.exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temp\agent16.exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temp\agent32.exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temp\gosC6.tmp Infected: Trojan.Win32.Dialer.qn skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temp\hostwin.exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temp\look32.exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temp\monhost.exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temp\monlook.exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temp\monsyn.exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temp\powerserver.exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temp\sv64.exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temp\svagent.exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temp\svwin.exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temp\synmon.exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temp\synpower.exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temp\sys64.exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temp\sysmon.exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temp\syssv.exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temp\syswin.exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temp\win64.exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temp\winCD.tmp.exe Infected: Trojan-Downloader.Win32.VB.bjr skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temp\winlook.exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temporary Internet Files\Content.IE5\416BOTE7\lkjh[1] Infected: Trojan-Downloader.Win32.Tiny.id skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temporary Internet Files\Content.IE5\C9AJ05AR\xc60[1].exe Infected: Trojan.Win32.Dialer.qn skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temporary Internet Files\Content.IE5\CH6FGHAJ\hlpsrv[1].exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temporary Internet Files\Content.IE5\K9EV0DE3\xc42[1].exe/data0002 Infected: Trojan-Downloader.Win32.PurityScan.eg skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temporary Internet Files\Content.IE5\K9EV0DE3\xc42[1].exe NSIS: infected - 1 skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temporary Internet Files\Content.IE5\MOFP9EZS\xcd23[1].exe Infected: Trojan-Downloader.Win32.VB.bjr skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temporary Internet Files\Content.IE5\OLAZSD6R\valera[1] Infected: Trojan.Win32.Agent.bck skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temporary Internet Files\Content.IE5\OND3EIR9\antzom[1].exe Infected: Trojan.Win32.Dialer.qn skipped
C:\Documents and Settings\DEFAULT\Local Settings\Temporary Internet Files\Content.IE5\Q1HANYTW\xc23[1].exe Infected: Trojan-Downloader.Win32.Alphabet.gen skipped
C:\Documents and Settings\DEFAULT\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\DEFAULT\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\LocalService\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped
C:\IBMTOOLS\APPS\RRPC\RRPC\superinstall.EXE/IGWSE2SAS2.1WM2.1.EXE/HOTVIEW.EXE Infected: not-a-virus:RemoteAdmin.Win32.WinVNC.333 skipped
C:\IBMTOOLS\APPS\RRPC\RRPC\superinstall.EXE/IGWSE2SAS2.1WM2.1.EXE/VNCHOOKS.DLL Infected: not-a-virus:RemoteAdmin.Win32.WinVNC.333 skipped
C:\IBMTOOLS\APPS\RRPC\RRPC\superinstall.EXE/IGWSE2SAS2.1WM2.1.EXE Infected: not-a-virus:RemoteAdmin.Win32.WinVNC.333 skipped
C:\IBMTOOLS\APPS\RRPC\RRPC\superinstall.EXE ZIP: infected - 3 skipped
C:\Program Files\hlpsrv.exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\System Volume Information\_restore{29FD9B63-4F58-4DB0-B2C4-8709D5244F27}\RP410\A0041526.exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\System Volume Information\_restore{29FD9B63-4F58-4DB0-B2C4-8709D5244F27}\RP410\A0042506.exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\System Volume Information\_restore{29FD9B63-4F58-4DB0-B2C4-8709D5244F27}\RP410\A0042523.dll Infected: Trojan.Win32.Dialer.qn skipped
C:\System Volume Information\_restore{29FD9B63-4F58-4DB0-B2C4-8709D5244F27}\RP410\A0042525.exe Infected: Trojan-Downloader.Win32.Alphabet.gen skipped
C:\System Volume Information\_restore{29FD9B63-4F58-4DB0-B2C4-8709D5244F27}\RP410\A0042527.exe Infected: Trojan-Downloader.Win32.PurityScan.eg skipped
C:\System Volume Information\_restore{29FD9B63-4F58-4DB0-B2C4-8709D5244F27}\RP410\A0042542.exe Infected: Virus.Win32.Virut.q skipped
C:\System Volume Information\_restore{29FD9B63-4F58-4DB0-B2C4-8709D5244F27}\RP410\A0042543.exe Infected: Trojan.Win32.Inject.ff skipped
C:\System Volume Information\_restore{29FD9B63-4F58-4DB0-B2C4-8709D5244F27}\RP410\A0042552.exe/data.rar/keygen.exe Infected: Trojan.Win32.Inject.ff skipped
C:\System Volume Information\_restore{29FD9B63-4F58-4DB0-B2C4-8709D5244F27}\RP410\A0042552.exe/data.rar/crack.exe Infected: Trojan-Downloader.Win32.Agent.dlu skipped
C:\System Volume Information\_restore{29FD9B63-4F58-4DB0-B2C4-8709D5244F27}\RP410\A0042552.exe/data.rar/serial.exe Infected: Trojan.Win32.Dialer.vc skipped
C:\System Volume Information\_restore{29FD9B63-4F58-4DB0-B2C4-8709D5244F27}\RP410\A0042552.exe/data.rar/install.exe Infected: Virus.Win32.Virut.q skipped
C:\System Volume Information\_restore{29FD9B63-4F58-4DB0-B2C4-8709D5244F27}\RP410\A0042552.exe/data.rar Infected: Virus.Win32.Virut.q skipped
C:\System Volume Information\_restore{29FD9B63-4F58-4DB0-B2C4-8709D5244F27}\RP410\A0042552.exe RarSFX: infected - 5 skipped
C:\System Volume Information\_restore{29FD9B63-4F58-4DB0-B2C4-8709D5244F27}\RP410\A0042557.exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\System Volume Information\_restore{29FD9B63-4F58-4DB0-B2C4-8709D5244F27}\RP410\A0042568.exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\System Volume Information\_restore{29FD9B63-4F58-4DB0-B2C4-8709D5244F27}\RP411\A0042570.dll Infected: Trojan-Downloader.Win32.Agent.dlu skipped
C:\System Volume Information\_restore{29FD9B63-4F58-4DB0-B2C4-8709D5244F27}\RP411\A0042571.exe Infected: Trojan-Clicker.Win32.Small.mv skipped
C:\System Volume Information\_restore{29FD9B63-4F58-4DB0-B2C4-8709D5244F27}\RP412\A0043568.exe Infected: Trojan-Downloader.Win32.Tiny.id skipped
C:\System Volume Information\_restore{29FD9B63-4F58-4DB0-B2C4-8709D5244F27}\RP412\change.log Object is locked skipped
C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped
C:\WINDOWS\mgrs.exe Infected: Trojan-Downloader.Win32.Alphabet.gen skipped
C:\WINDOWS\SchedLgU.Txt Object is locked skipped
C:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked skipped
C:\WINDOWS\Sti_Trace.log Object is locked skipped
C:\WINDOWS\system32\CatRoot2\edb.log Object is locked skipped
C:\WINDOWS\system32\CatRoot2\tmp.edb Object is locked skipped
C:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\DEFAULT Object is locked skipped
C:\WINDOWS\system32\config\default.LOG Object is locked skipped
C:\WINDOWS\system32\config\SAM Object is locked skipped
C:\WINDOWS\system32\config\SAM.LOG Object is locked skipped
C:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\SECURITY Object is locked skipped
C:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped
C:\WINDOWS\system32\config\SOFTWARE Object is locked skipped
C:\WINDOWS\system32\config\software.LOG Object is locked skipped
C:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\SYSTEM Object is locked skipped
C:\WINDOWS\system32\config\system.LOG Object is locked skipped
C:\WINDOWS\system32\dnmtiqoc.exe Infected: Trojan.Win32.Agent.bck skipped
C:\WINDOWS\system32\drvvov.dll Infected: Trojan.Win32.Dialer.qn skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP Object is locked skipped
C:\WINDOWS\wiadebug.log Object is locked skipped
C:\WINDOWS\wiaservc.log Object is locked skipped
C:\WINDOWS\WindowsUpdate.log Object is locked skipped
Scan process completed.