Glaucus
2008-04-19, 01:49
Hello, I've downloaded more anti-virus' and other cleaning programs in the past few hours then I have in a very long time. I primarily use AVG and it catches a Trojan called downloader.obfuskated that I can't get rid of.
Some scans are very difficult to do since my computer seems to shut off at random during them.
Also, I've been unable to get into Safe Mode using the 'F8' method at start up.
Here are the logs...
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 6:42:49 PM, on 4/18/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16640)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Documents and Settings\All Users\Application Data\xmjopybu\pyfwfkjm.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nTrayFw.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
C:\Program Files\Adobe\Photoshop Album Starter Edition\3.2\Apps\apdproxy.exe
C:\Program Files\Microsoft IntelliType Pro\type32.exe
C:\Program Files\Creative\Creative Live! Cam\VideoFX\StartFX.exe
C:\WINDOWS\V0230Mon.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe
C:\Program Files\Winamp\winampa.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\Program Files\QuickTime\qttask.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE
C:\Program Files\iTunes\iTunesHelper.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\ClamWin\bin\ClamTray.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe
C:\Program Files\Messenger\Msmsgs.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcIp.exe
C:\Program Files\Microsoft Office\Office\OSA.EXE
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcLog.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Viewpoint\Common\ViewpointService.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcAppFlt.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\MSN\MSNCoreFiles\msn.exe
C:\Program Files\MSN\MSNIA\CC\MSNCC\logonmgr.exe
C:\Program Files\MSN\MSNIA\CC\MSNCC\msncc.exe
C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\MSN Messenger\usnsvc.exe
C:\Program Files\Microsoft IntelliPoint\point32.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {42F1BA6A-2C95-4F90-B82F-B1ACD1F47C6C} - C:\WINDOWS\system32\iiffGYRK.dll (file missing)
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [AVG7_EMC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O4 - HKLM\..\Run: [nTrayFw] C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nTrayFw.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [AdaptecDirectCD] "C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Starter Edition\3.2\Apps\apdproxy.exe"
O4 - HKLM\..\Run: [type32] "C:\Program Files\Microsoft IntelliType Pro\type32.exe"
O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\point32.exe"
O4 - HKLM\..\Run: [AVFX Engine] C:\Program Files\Creative\Creative Live! Cam\VideoFX\StartFX.exe
O4 - HKLM\..\Run: [V0230Mon.exe] C:\WINDOWS\V0230Mon.exe
O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [MP10_EnsureFileVer] C:\WINDOWS\inf\unregmp2.exe /EnsureFileVersions
O4 - HKLM\..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [ClamWin] "C:\Program Files\ClamWin\bin\ClamTray.exe" --logon
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\Msmsgs.exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [BitTorrent] "C:\Program Files\BitTorrent\bittorrent.exe" --force_start_minimized
O4 - HKCU\..\Run: [AdwareAlert] C:\Program Files\AdwareAlert\AdwareAlert.exe -boot
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKLM\..\Policies\Explorer\Run: [zD37oh0MFw] C:\Documents and Settings\All Users\Application Data\xmjopybu\pyfwfkjm.exe
O4 - HKUS\S-1-5-19\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVGFRE~1\avgw.exe /RUNONCE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVGFRE~1\avgw.exe /RUNONCE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVGFRE~1\avgw.exe /RUNONCE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVGFRE~1\avgw.exe /RUNONCE (User 'Default user')
O4 - Global Startup: Microsoft Find Fast.lnk = C:\Program Files\Microsoft Office\Office\FINDFAST.EXE
O4 - Global Startup: Office Startup.lnk = C:\Program Files\Microsoft Office\Office\OSA.EXE
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/english/kavwebscan_unicode.cab
O16 - DPF: {5C6698D9-7BE4-4122-8EC5-291D84DBD4A0} (Facebook Photo Uploader 4 Control) - http://upload.facebook.com/controls/FacebookPhotoUploader3.cab
O16 - DPF: {5F8469B4-B055-49DD-83F7-62B522420ECC} (Facebook Photo Uploader Control) - http://upload.facebook.com/controls/FacebookPhotoUploader.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1202248439453
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O20 - Winlogon Notify: wvUkKcYP - wvUkKcYP.dll (file missing)
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: ForceWare Intelligent Application Manager (IAM) - Unknown owner - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcAppFlt.exe
O23 - Service: Forceware Web Interface (ForcewareWebInterface) - Apache Software Foundation - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: ForceWare IP service (nSvcIp) - NVIDIA - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcIp.exe
O23 - Service: ForceWare user log service (nSvcLog) - NVIDIA - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcLog.exe
O23 - Service: Viewpoint Manager Service - Viewpoint Corporation - C:\Program Files\Viewpoint\Common\ViewpointService.exe
--
End of file - 10970 bytes
-=-=-=-=-=-=And the other log follows below=-=-=-=-=-=-
-------------------------------------------------------------------------------
KASPERSKY ONLINE SCANNER REPORT
Friday, April 18, 2008 6:40:51 PM
Operating System: Microsoft Windows XP Professional, Service Pack 2 (Build 2600)
Kaspersky Online Scanner version: 5.0.98.0
Kaspersky Anti-Virus database last update: 18/04/2008
Kaspersky Anti-Virus database records: 714463
-------------------------------------------------------------------------------
Scan Settings:
Scan using the following antivirus database: extended
Scan Archives: true
Scan Mail Bases: true
Scan Target - My Computer:
A:\
C:\
D:\
E:\
Scan Statistics:
Total number of scanned objects: 117460
Number of viruses found: 10
Number of infected objects: 17
Number of suspicious objects: 0
Duration of the scan process: 01:41:01
Infected Object Name / Virus Name / Last Action
C:\Documents and Settings\All Users\Application Data\Grisoft\Avg7Data\avg7log.log Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Grisoft\Avg7Data\avg7log.log.lck Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Temp\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Temp\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Temp\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\Mr. Auger\Application Data\AVG7\Log\emc.log Object is locked skipped
C:\Documents and Settings\Mr. Auger\Application Data\Microsoft\MSNIA\Journal.Dat Object is locked skipped
C:\Documents and Settings\Mr. Auger\Application Data\MSN6\UserData\{22A3FBAC-0212-01C7-0200-0000DF56E4D4}\favthumb.dbx Object is locked skipped
C:\Documents and Settings\Mr. Auger\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\Mr. Auger\Desktop\Dave\Applications\mirc616.exe/data0001.bin Infected: not-a-virus:Client-IRC.Win32.mIRC.616 skipped
C:\Documents and Settings\Mr. Auger\Desktop\Dave\Applications\mirc616.exe mIRC: infected - 1 skipped
C:\Documents and Settings\Mr. Auger\Desktop\Dave\My Shared Folder\[Full] teachers pet with Bonus.zip/setup.exe/data0005/stream/data0004 Infected: not-a-virus:AdWare.Win32.TrafficSol.n skipped
C:\Documents and Settings\Mr. Auger\Desktop\Dave\My Shared Folder\[Full] teachers pet with Bonus.zip/setup.exe/data0005/stream Infected: not-a-virus:AdWare.Win32.TrafficSol.n skipped
C:\Documents and Settings\Mr. Auger\Desktop\Dave\My Shared Folder\[Full] teachers pet with Bonus.zip/setup.exe/data0005 Infected: not-a-virus:AdWare.Win32.TrafficSol.n skipped
C:\Documents and Settings\Mr. Auger\Desktop\Dave\My Shared Folder\[Full] teachers pet with Bonus.zip/setup.exe/data0006/stream/data0004 Infected: not-a-virus:AdWare.Win32.BHO.ha skipped
C:\Documents and Settings\Mr. Auger\Desktop\Dave\My Shared Folder\[Full] teachers pet with Bonus.zip/setup.exe/data0006/stream/data0005 Infected: not-a-virus:AdWare.Win32.BHO.lq skipped
C:\Documents and Settings\Mr. Auger\Desktop\Dave\My Shared Folder\[Full] teachers pet with Bonus.zip/setup.exe/data0006/stream Infected: not-a-virus:AdWare.Win32.BHO.lq skipped
C:\Documents and Settings\Mr. Auger\Desktop\Dave\My Shared Folder\[Full] teachers pet with Bonus.zip/setup.exe/data0006 Infected: not-a-virus:AdWare.Win32.BHO.lq skipped
C:\Documents and Settings\Mr. Auger\Desktop\Dave\My Shared Folder\[Full] teachers pet with Bonus.zip/setup.exe Infected: not-a-virus:AdWare.Win32.BHO.lq skipped
C:\Documents and Settings\Mr. Auger\Desktop\Dave\My Shared Folder\[Full] teachers pet with Bonus.zip ZIP: infected - 8 skipped
C:\Documents and Settings\Mr. Auger\Local Settings\Application Data\Microsoft\Messenger\happy_killer@hotmail.com\SharingMetadata\Logs\Dfsr00005.log Object is locked skipped
C:\Documents and Settings\Mr. Auger\Local Settings\Application Data\Microsoft\Messenger\happy_killer@hotmail.com\SharingMetadata\pending.dat Object is locked skipped
C:\Documents and Settings\Mr. Auger\Local Settings\Application Data\Microsoft\Messenger\happy_killer@hotmail.com\SharingMetadata\Working\database_5C48_2179_4821_5356\dfsr.db Object is locked skipped
C:\Documents and Settings\Mr. Auger\Local Settings\Application Data\Microsoft\Messenger\happy_killer@hotmail.com\SharingMetadata\Working\database_5C48_2179_4821_5356\fsr.log Object is locked skipped
C:\Documents and Settings\Mr. Auger\Local Settings\Application Data\Microsoft\Messenger\happy_killer@hotmail.com\SharingMetadata\Working\database_5C48_2179_4821_5356\fsrtmp.log Object is locked skipped
C:\Documents and Settings\Mr. Auger\Local Settings\Application Data\Microsoft\Messenger\happy_killer@hotmail.com\SharingMetadata\Working\database_5C48_2179_4821_5356\tmp.edb Object is locked skipped
C:\Documents and Settings\Mr. Auger\Local Settings\Application Data\Microsoft\MSN\db30\happy_killer-hotmail-com.sdf Object is locked skipped
C:\Documents and Settings\Mr. Auger\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\Mr. Auger\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\Mr. Auger\Local Settings\Application Data\Microsoft\Windows Live Contacts\happy_killer@hotmail.com\real\members.stg Object is locked skipped
C:\Documents and Settings\Mr. Auger\Local Settings\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\Mr. Auger\Local Settings\Temp\ClamWin1.log Object is locked skipped
C:\Documents and Settings\Mr. Auger\Local Settings\Temp\fdr5560.fdr Object is locked skipped
C:\Documents and Settings\Mr. Auger\Local Settings\Temp\~DFD1D7.tmp Object is locked skipped
C:\Documents and Settings\Mr. Auger\Local Settings\Temp\~DFD205.tmp Object is locked skipped
C:\Documents and Settings\Mr. Auger\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\Mr. Auger\Local Settings\Temporary Internet Files\PhishingFilter\10278502-67BC-43EF-B0AA-BBF67795D5B0.dat Object is locked skipped
C:\Documents and Settings\Mr. Auger\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\Mr. Auger\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Temp\Perflib_Perfdata_9c0.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped
C:\found.000\dir0000.chk\A0008299.ver Object is locked skipped
C:\found.000\dir0000.chk\A0008300.inf Object is locked skipped
C:\found.000\dir0000.chk\A0008301.exe Object is locked skipped
C:\found.000\dir0000.chk\A0008302.dll Object is locked skipped
C:\found.000\dir0000.chk\A0008303.cat Object is locked skipped
C:\found.000\dir0000.chk\A0008304.exe Object is locked skipped
C:\found.000\dir0000.chk\A0008305.dll Object is locked skipped
C:\found.000\dir0000.chk\A0008306.dll Object is locked skipped
C:\found.000\dir0000.chk\A0008307.cnv Object is locked skipped
C:\found.000\dir0001.chk\A0008351.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008352.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008353.exe Object is locked skipped
C:\found.000\dir0001.chk\A0008354.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008355.exe Object is locked skipped
C:\found.000\dir0001.chk\A0008356.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008357.exe Object is locked skipped
C:\found.000\dir0001.chk\A0008358.inf Object is locked skipped
C:\found.000\dir0001.chk\A0008359.inf Object is locked skipped
C:\found.000\dir0001.chk\A0008360.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008361.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008362.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008363.cat Object is locked skipped
C:\found.000\dir0001.chk\A0008364.cat Object is locked skipped
C:\found.000\dir0001.chk\A0008365.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008366.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008367.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008368.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008369.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008370.exe Object is locked skipped
C:\found.000\dir0001.chk\A0008371.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008372.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008373.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008374.exe Object is locked skipped
C:\found.000\dir0001.chk\A0008375.exe Object is locked skipped
C:\found.000\dir0001.chk\A0008376.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008377.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008378.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008379.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008380.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008381.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008382.exe Object is locked skipped
C:\found.000\dir0001.chk\A0008383.exe Object is locked skipped
C:\found.000\dir0001.chk\A0008384.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008385.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008386.tsp Object is locked skipped
C:\found.000\dir0001.chk\A0008387.TSP Object is locked skipped
C:\found.000\dir0001.chk\A0008388.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008389.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008390.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008391.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008392.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008393.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008394.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008395.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008396.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008397.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008398.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008399.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008400.ver Object is locked skipped
C:\found.000\dir0001.chk\A0008402.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008447.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008454.exe Object is locked skipped
C:\found.000\dir0002.chk\A0008455.exe Object is locked skipped
C:\found.000\dir0002.chk\A0008456.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008457.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008458.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008459.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008460.inf Object is locked skipped
C:\found.000\dir0002.chk\A0008461.inf Object is locked skipped
C:\found.000\dir0002.chk\A0008462.exe Object is locked skipped
C:\found.000\dir0002.chk\A0008463.exe Object is locked skipped
C:\found.000\dir0002.chk\A0008464.cat Object is locked skipped
C:\found.000\dir0002.chk\A0008465.cat Object is locked skipped
C:\found.000\dir0002.chk\A0008466.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008467.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008468.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008469.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008470.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008471.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008472.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008473.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008474.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008475.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008476.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008477.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008478.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008479.exe Object is locked skipped
C:\found.000\dir0002.chk\A0008480.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008481.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008482.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008483.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008484.ver Object is locked skipped
C:\found.000\dir0002.chk\A0008485.ver Object is locked skipped
C:\found.000\dir0002.chk\A0008486.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008487.exe Object is locked skipped
C:\found.000\dir0002.chk\A0008488.exe Object is locked skipped
C:\found.000\dir0002.chk\A0008489.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008490.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008491.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008492.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008493.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008494.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008495.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008496.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008497.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008498.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008499.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008500.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008501.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008502.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008503.dll Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\aswResp.dat Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\Avast4.db Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\integ\avast.int Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\log\AshWebSv.ws Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\log\aswMaiSv.log Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\log\nshield.log Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\report\Resident protection.txt Object is locked skipped
C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Data\master.mdf Object is locked skipped
C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Data\mastlog.ldf Object is locked skipped
C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Data\model.mdf Object is locked skipped
C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Data\modellog.ldf Object is locked skipped
C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Data\msdbdata.mdf Object is locked skipped
C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Data\msdblog.ldf Object is locked skipped
C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Data\tempdb.mdf Object is locked skipped
C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Data\templog.ldf Object is locked skipped
C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\LOG\ERRORLOG Object is locked skipped
C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\LOG\log_438.trc Object is locked skipped
C:\Program Files\MSN\MSNCoreFiles\calendar.mar Object is locked skipped
C:\Program Files\MSN\MSNCoreFiles\mail.mar Object is locked skipped
C:\Program Files\MSN\MSNCoreFiles\market.mar Object is locked skipped
C:\Program Files\MSN\MSNCoreFiles\market32.mar Object is locked skipped
C:\Program Files\MSN\MSNCoreFiles\miadv.mar Object is locked skipped
C:\Program Files\MSN\MSNCoreFiles\mibas.mar Object is locked skipped
C:\Program Files\MSN\MSNCoreFiles\micd.mar Object is locked skipped
C:\Program Files\MSN\MSNCoreFiles\printing.mar Object is locked skipped
C:\Program Files\MSN\MSNCoreFiles\qos.mar Object is locked skipped
C:\Program Files\MSN\MSNCoreFiles\themedef.mar Object is locked skipped
C:\Program Files\MSN\MSNCoreFiles\themedef32.mar Object is locked skipped
C:\Program Files\MSN\MsnInstaller\install.mar Object is locked skipped
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\logs\access_log Object is locked skipped
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\logs\error.log Object is locked skipped
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\logs\error_log Object is locked skipped
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\logs\ssl_request_log Object is locked skipped
C:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP423\A0082942.exe Infected: not-a-virus:AdWare.Win32.OneStep.c skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP426\A0083105.exe Infected: not-a-virus:AdWare.Win32.RK.n skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP428\A0083302.dll Infected: not-a-virus:AdWare.Win32.RK.o skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP428\A0083303.exe Infected: not-a-virus:AdWare.Win32.RK.t skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP433\A0083470.exe Infected: not-a-virus:AdWare.Win32.OneStep.g skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP435\A0086727.dll Infected: not-a-virus:AdWare.Win32.OneStep.f skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP507\A0095621.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP507\A0095622.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP507\A0095623.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP507\A0095624.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP507\A0095625.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP507\A0095626.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP507\A0095627.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP507\A0095628.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP507\A0095629.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP507\A0095630.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP507\A0095631.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP507\A0095632.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP507\A0095633.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP507\A0095634.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP507\A0095635.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP507\A0095636.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP507\A0095637.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP507\A0095638.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP507\A0095639.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP508\A0095709.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP508\A0095710.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP508\A0095711.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP508\A0095712.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP508\A0095713.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP508\A0095714.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP508\A0095715.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP508\A0095716.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP508\A0095717.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP508\A0095718.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP508\A0095719.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP508\A0095720.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP508\A0095721.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP508\A0095722.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP508\A0095723.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP508\A0095724.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP508\A0095725.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP508\A0095726.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP508\A0095727.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP508\A0095728.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP508\A0095729.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP508\A0095730.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP508\A0095731.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP508\A0095732.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP508\A0095733.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP508\A0095734.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP508\A0095735.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095774.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095775.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095776.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095777.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095778.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095779.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095780.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095781.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095782.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095783.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095784.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095785.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095786.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095787.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095788.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095789.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095790.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095791.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095792.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095793.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095794.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095795.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095796.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095797.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095798.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095799.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095800.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095801.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095802.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095803.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095804.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0095851.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0097654.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098652.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098653.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098654.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098655.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098656.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098657.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098658.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098659.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098660.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098661.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098662.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098663.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098666.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098667.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098668.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098669.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098670.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098671.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098672.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098673.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098674.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098675.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098676.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098677.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098678.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098679.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098680.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098681.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098682.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098683.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098684.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098685.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098686.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098687.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098688.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098689.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098690.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098691.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098692.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098693.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098694.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098695.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098696.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098697.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098698.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098699.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098700.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098701.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098702.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098703.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0099724.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0099725.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0099726.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0099727.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP512\A0103799.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP512\A0103800.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP512\A0103801.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP512\A0103802.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP512\change.log Object is locked skipped
C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped
C:\WINDOWS\SchedLgU.Txt Object is locked skipped
C:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked skipped
C:\WINDOWS\Sti_Trace.log Object is locked skipped
C:\WINDOWS\system32\avqlizqd.exe Object is locked skipped
C:\WINDOWS\system32\azovohmv.exe Object is locked skipped
C:\WINDOWS\system32\CatRoot2\edb.log Object is locked skipped
C:\WINDOWS\system32\CatRoot2\tmp.edb Object is locked skipped
C:\WINDOWS\system32\config\ACEEvent.evt Object is locked skipped
C:\WINDOWS\system32\config\Antivirus.Evt Object is locked skipped
C:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\default Object is locked skipped
C:\WINDOWS\system32\config\default.LOG Object is locked skipped
C:\WINDOWS\system32\config\Internet.evt Object is locked skipped
C:\WINDOWS\system32\config\SAM Object is locked skipped
C:\WINDOWS\system32\config\SAM.LOG Object is locked skipped
C:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\SECURITY Object is locked skipped
C:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped
C:\WINDOWS\system32\config\software Object is locked skipped
C:\WINDOWS\system32\config\software.LOG Object is locked skipped
C:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\system Object is locked skipped
C:\WINDOWS\system32\config\system.LOG Object is locked skipped
C:\WINDOWS\system32\elgjujox.exe Object is locked skipped
C:\WINDOWS\system32\gbspubmf.exe Object is locked skipped
C:\WINDOWS\system32\h323log.txt Object is locked skipped
C:\WINDOWS\system32\inynmdoh.exe Object is locked skipped
C:\WINDOWS\system32\ozunylqz.exe Object is locked skipped
C:\WINDOWS\system32\uncdelat.exe Object is locked skipped
C:\WINDOWS\system32\uratctuh.exe Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP Object is locked skipped
C:\WINDOWS\system32\yfmhkxgj.exe Object is locked skipped
C:\WINDOWS\system32\_nvidia_xxx_.log Object is locked skipped
C:\WINDOWS\Temp\Perflib_Perfdata_6c8.dat Object is locked skipped
C:\WINDOWS\Temp\_avast4_\Webshlock.txt Object is locked skipped
C:\WINDOWS\wiadebug.log Object is locked skipped
C:\WINDOWS\wiaservc.log Object is locked skipped
C:\WINDOWS\WindowsUpdate.log Object is locked skipped
Scan process completed.
-=-=-=-=-=-=END LOGS=-=-=-=-=-=-
Hope I can get some help with this!
Some scans are very difficult to do since my computer seems to shut off at random during them.
Also, I've been unable to get into Safe Mode using the 'F8' method at start up.
Here are the logs...
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 6:42:49 PM, on 4/18/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16640)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Documents and Settings\All Users\Application Data\xmjopybu\pyfwfkjm.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nTrayFw.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
C:\Program Files\Adobe\Photoshop Album Starter Edition\3.2\Apps\apdproxy.exe
C:\Program Files\Microsoft IntelliType Pro\type32.exe
C:\Program Files\Creative\Creative Live! Cam\VideoFX\StartFX.exe
C:\WINDOWS\V0230Mon.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe
C:\Program Files\Winamp\winampa.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\Program Files\QuickTime\qttask.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE
C:\Program Files\iTunes\iTunesHelper.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\ClamWin\bin\ClamTray.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe
C:\Program Files\Messenger\Msmsgs.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcIp.exe
C:\Program Files\Microsoft Office\Office\OSA.EXE
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcLog.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Viewpoint\Common\ViewpointService.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcAppFlt.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\MSN\MSNCoreFiles\msn.exe
C:\Program Files\MSN\MSNIA\CC\MSNCC\logonmgr.exe
C:\Program Files\MSN\MSNIA\CC\MSNCC\msncc.exe
C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\MSN Messenger\usnsvc.exe
C:\Program Files\Microsoft IntelliPoint\point32.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {42F1BA6A-2C95-4F90-B82F-B1ACD1F47C6C} - C:\WINDOWS\system32\iiffGYRK.dll (file missing)
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [AVG7_EMC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O4 - HKLM\..\Run: [nTrayFw] C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nTrayFw.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [AdaptecDirectCD] "C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Starter Edition\3.2\Apps\apdproxy.exe"
O4 - HKLM\..\Run: [type32] "C:\Program Files\Microsoft IntelliType Pro\type32.exe"
O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\point32.exe"
O4 - HKLM\..\Run: [AVFX Engine] C:\Program Files\Creative\Creative Live! Cam\VideoFX\StartFX.exe
O4 - HKLM\..\Run: [V0230Mon.exe] C:\WINDOWS\V0230Mon.exe
O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [MP10_EnsureFileVer] C:\WINDOWS\inf\unregmp2.exe /EnsureFileVersions
O4 - HKLM\..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [ClamWin] "C:\Program Files\ClamWin\bin\ClamTray.exe" --logon
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\Msmsgs.exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [BitTorrent] "C:\Program Files\BitTorrent\bittorrent.exe" --force_start_minimized
O4 - HKCU\..\Run: [AdwareAlert] C:\Program Files\AdwareAlert\AdwareAlert.exe -boot
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKLM\..\Policies\Explorer\Run: [zD37oh0MFw] C:\Documents and Settings\All Users\Application Data\xmjopybu\pyfwfkjm.exe
O4 - HKUS\S-1-5-19\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVGFRE~1\avgw.exe /RUNONCE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVGFRE~1\avgw.exe /RUNONCE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVGFRE~1\avgw.exe /RUNONCE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVGFRE~1\avgw.exe /RUNONCE (User 'Default user')
O4 - Global Startup: Microsoft Find Fast.lnk = C:\Program Files\Microsoft Office\Office\FINDFAST.EXE
O4 - Global Startup: Office Startup.lnk = C:\Program Files\Microsoft Office\Office\OSA.EXE
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/english/kavwebscan_unicode.cab
O16 - DPF: {5C6698D9-7BE4-4122-8EC5-291D84DBD4A0} (Facebook Photo Uploader 4 Control) - http://upload.facebook.com/controls/FacebookPhotoUploader3.cab
O16 - DPF: {5F8469B4-B055-49DD-83F7-62B522420ECC} (Facebook Photo Uploader Control) - http://upload.facebook.com/controls/FacebookPhotoUploader.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1202248439453
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O20 - Winlogon Notify: wvUkKcYP - wvUkKcYP.dll (file missing)
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: ForceWare Intelligent Application Manager (IAM) - Unknown owner - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcAppFlt.exe
O23 - Service: Forceware Web Interface (ForcewareWebInterface) - Apache Software Foundation - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: ForceWare IP service (nSvcIp) - NVIDIA - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcIp.exe
O23 - Service: ForceWare user log service (nSvcLog) - NVIDIA - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcLog.exe
O23 - Service: Viewpoint Manager Service - Viewpoint Corporation - C:\Program Files\Viewpoint\Common\ViewpointService.exe
--
End of file - 10970 bytes
-=-=-=-=-=-=And the other log follows below=-=-=-=-=-=-
-------------------------------------------------------------------------------
KASPERSKY ONLINE SCANNER REPORT
Friday, April 18, 2008 6:40:51 PM
Operating System: Microsoft Windows XP Professional, Service Pack 2 (Build 2600)
Kaspersky Online Scanner version: 5.0.98.0
Kaspersky Anti-Virus database last update: 18/04/2008
Kaspersky Anti-Virus database records: 714463
-------------------------------------------------------------------------------
Scan Settings:
Scan using the following antivirus database: extended
Scan Archives: true
Scan Mail Bases: true
Scan Target - My Computer:
A:\
C:\
D:\
E:\
Scan Statistics:
Total number of scanned objects: 117460
Number of viruses found: 10
Number of infected objects: 17
Number of suspicious objects: 0
Duration of the scan process: 01:41:01
Infected Object Name / Virus Name / Last Action
C:\Documents and Settings\All Users\Application Data\Grisoft\Avg7Data\avg7log.log Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Grisoft\Avg7Data\avg7log.log.lck Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Temp\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Temp\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Temp\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\Mr. Auger\Application Data\AVG7\Log\emc.log Object is locked skipped
C:\Documents and Settings\Mr. Auger\Application Data\Microsoft\MSNIA\Journal.Dat Object is locked skipped
C:\Documents and Settings\Mr. Auger\Application Data\MSN6\UserData\{22A3FBAC-0212-01C7-0200-0000DF56E4D4}\favthumb.dbx Object is locked skipped
C:\Documents and Settings\Mr. Auger\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\Mr. Auger\Desktop\Dave\Applications\mirc616.exe/data0001.bin Infected: not-a-virus:Client-IRC.Win32.mIRC.616 skipped
C:\Documents and Settings\Mr. Auger\Desktop\Dave\Applications\mirc616.exe mIRC: infected - 1 skipped
C:\Documents and Settings\Mr. Auger\Desktop\Dave\My Shared Folder\[Full] teachers pet with Bonus.zip/setup.exe/data0005/stream/data0004 Infected: not-a-virus:AdWare.Win32.TrafficSol.n skipped
C:\Documents and Settings\Mr. Auger\Desktop\Dave\My Shared Folder\[Full] teachers pet with Bonus.zip/setup.exe/data0005/stream Infected: not-a-virus:AdWare.Win32.TrafficSol.n skipped
C:\Documents and Settings\Mr. Auger\Desktop\Dave\My Shared Folder\[Full] teachers pet with Bonus.zip/setup.exe/data0005 Infected: not-a-virus:AdWare.Win32.TrafficSol.n skipped
C:\Documents and Settings\Mr. Auger\Desktop\Dave\My Shared Folder\[Full] teachers pet with Bonus.zip/setup.exe/data0006/stream/data0004 Infected: not-a-virus:AdWare.Win32.BHO.ha skipped
C:\Documents and Settings\Mr. Auger\Desktop\Dave\My Shared Folder\[Full] teachers pet with Bonus.zip/setup.exe/data0006/stream/data0005 Infected: not-a-virus:AdWare.Win32.BHO.lq skipped
C:\Documents and Settings\Mr. Auger\Desktop\Dave\My Shared Folder\[Full] teachers pet with Bonus.zip/setup.exe/data0006/stream Infected: not-a-virus:AdWare.Win32.BHO.lq skipped
C:\Documents and Settings\Mr. Auger\Desktop\Dave\My Shared Folder\[Full] teachers pet with Bonus.zip/setup.exe/data0006 Infected: not-a-virus:AdWare.Win32.BHO.lq skipped
C:\Documents and Settings\Mr. Auger\Desktop\Dave\My Shared Folder\[Full] teachers pet with Bonus.zip/setup.exe Infected: not-a-virus:AdWare.Win32.BHO.lq skipped
C:\Documents and Settings\Mr. Auger\Desktop\Dave\My Shared Folder\[Full] teachers pet with Bonus.zip ZIP: infected - 8 skipped
C:\Documents and Settings\Mr. Auger\Local Settings\Application Data\Microsoft\Messenger\happy_killer@hotmail.com\SharingMetadata\Logs\Dfsr00005.log Object is locked skipped
C:\Documents and Settings\Mr. Auger\Local Settings\Application Data\Microsoft\Messenger\happy_killer@hotmail.com\SharingMetadata\pending.dat Object is locked skipped
C:\Documents and Settings\Mr. Auger\Local Settings\Application Data\Microsoft\Messenger\happy_killer@hotmail.com\SharingMetadata\Working\database_5C48_2179_4821_5356\dfsr.db Object is locked skipped
C:\Documents and Settings\Mr. Auger\Local Settings\Application Data\Microsoft\Messenger\happy_killer@hotmail.com\SharingMetadata\Working\database_5C48_2179_4821_5356\fsr.log Object is locked skipped
C:\Documents and Settings\Mr. Auger\Local Settings\Application Data\Microsoft\Messenger\happy_killer@hotmail.com\SharingMetadata\Working\database_5C48_2179_4821_5356\fsrtmp.log Object is locked skipped
C:\Documents and Settings\Mr. Auger\Local Settings\Application Data\Microsoft\Messenger\happy_killer@hotmail.com\SharingMetadata\Working\database_5C48_2179_4821_5356\tmp.edb Object is locked skipped
C:\Documents and Settings\Mr. Auger\Local Settings\Application Data\Microsoft\MSN\db30\happy_killer-hotmail-com.sdf Object is locked skipped
C:\Documents and Settings\Mr. Auger\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\Mr. Auger\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\Mr. Auger\Local Settings\Application Data\Microsoft\Windows Live Contacts\happy_killer@hotmail.com\real\members.stg Object is locked skipped
C:\Documents and Settings\Mr. Auger\Local Settings\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\Mr. Auger\Local Settings\Temp\ClamWin1.log Object is locked skipped
C:\Documents and Settings\Mr. Auger\Local Settings\Temp\fdr5560.fdr Object is locked skipped
C:\Documents and Settings\Mr. Auger\Local Settings\Temp\~DFD1D7.tmp Object is locked skipped
C:\Documents and Settings\Mr. Auger\Local Settings\Temp\~DFD205.tmp Object is locked skipped
C:\Documents and Settings\Mr. Auger\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\Mr. Auger\Local Settings\Temporary Internet Files\PhishingFilter\10278502-67BC-43EF-B0AA-BBF67795D5B0.dat Object is locked skipped
C:\Documents and Settings\Mr. Auger\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\Mr. Auger\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Temp\Perflib_Perfdata_9c0.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped
C:\found.000\dir0000.chk\A0008299.ver Object is locked skipped
C:\found.000\dir0000.chk\A0008300.inf Object is locked skipped
C:\found.000\dir0000.chk\A0008301.exe Object is locked skipped
C:\found.000\dir0000.chk\A0008302.dll Object is locked skipped
C:\found.000\dir0000.chk\A0008303.cat Object is locked skipped
C:\found.000\dir0000.chk\A0008304.exe Object is locked skipped
C:\found.000\dir0000.chk\A0008305.dll Object is locked skipped
C:\found.000\dir0000.chk\A0008306.dll Object is locked skipped
C:\found.000\dir0000.chk\A0008307.cnv Object is locked skipped
C:\found.000\dir0001.chk\A0008351.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008352.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008353.exe Object is locked skipped
C:\found.000\dir0001.chk\A0008354.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008355.exe Object is locked skipped
C:\found.000\dir0001.chk\A0008356.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008357.exe Object is locked skipped
C:\found.000\dir0001.chk\A0008358.inf Object is locked skipped
C:\found.000\dir0001.chk\A0008359.inf Object is locked skipped
C:\found.000\dir0001.chk\A0008360.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008361.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008362.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008363.cat Object is locked skipped
C:\found.000\dir0001.chk\A0008364.cat Object is locked skipped
C:\found.000\dir0001.chk\A0008365.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008366.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008367.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008368.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008369.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008370.exe Object is locked skipped
C:\found.000\dir0001.chk\A0008371.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008372.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008373.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008374.exe Object is locked skipped
C:\found.000\dir0001.chk\A0008375.exe Object is locked skipped
C:\found.000\dir0001.chk\A0008376.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008377.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008378.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008379.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008380.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008381.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008382.exe Object is locked skipped
C:\found.000\dir0001.chk\A0008383.exe Object is locked skipped
C:\found.000\dir0001.chk\A0008384.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008385.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008386.tsp Object is locked skipped
C:\found.000\dir0001.chk\A0008387.TSP Object is locked skipped
C:\found.000\dir0001.chk\A0008388.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008389.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008390.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008391.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008392.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008393.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008394.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008395.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008396.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008397.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008398.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008399.dll Object is locked skipped
C:\found.000\dir0001.chk\A0008400.ver Object is locked skipped
C:\found.000\dir0001.chk\A0008402.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008447.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008454.exe Object is locked skipped
C:\found.000\dir0002.chk\A0008455.exe Object is locked skipped
C:\found.000\dir0002.chk\A0008456.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008457.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008458.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008459.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008460.inf Object is locked skipped
C:\found.000\dir0002.chk\A0008461.inf Object is locked skipped
C:\found.000\dir0002.chk\A0008462.exe Object is locked skipped
C:\found.000\dir0002.chk\A0008463.exe Object is locked skipped
C:\found.000\dir0002.chk\A0008464.cat Object is locked skipped
C:\found.000\dir0002.chk\A0008465.cat Object is locked skipped
C:\found.000\dir0002.chk\A0008466.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008467.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008468.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008469.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008470.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008471.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008472.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008473.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008474.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008475.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008476.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008477.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008478.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008479.exe Object is locked skipped
C:\found.000\dir0002.chk\A0008480.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008481.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008482.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008483.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008484.ver Object is locked skipped
C:\found.000\dir0002.chk\A0008485.ver Object is locked skipped
C:\found.000\dir0002.chk\A0008486.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008487.exe Object is locked skipped
C:\found.000\dir0002.chk\A0008488.exe Object is locked skipped
C:\found.000\dir0002.chk\A0008489.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008490.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008491.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008492.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008493.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008494.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008495.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008496.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008497.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008498.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008499.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008500.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008501.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008502.dll Object is locked skipped
C:\found.000\dir0002.chk\A0008503.dll Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\aswResp.dat Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\Avast4.db Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\integ\avast.int Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\log\AshWebSv.ws Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\log\aswMaiSv.log Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\log\nshield.log Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\report\Resident protection.txt Object is locked skipped
C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Data\master.mdf Object is locked skipped
C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Data\mastlog.ldf Object is locked skipped
C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Data\model.mdf Object is locked skipped
C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Data\modellog.ldf Object is locked skipped
C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Data\msdbdata.mdf Object is locked skipped
C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Data\msdblog.ldf Object is locked skipped
C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Data\tempdb.mdf Object is locked skipped
C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Data\templog.ldf Object is locked skipped
C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\LOG\ERRORLOG Object is locked skipped
C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\LOG\log_438.trc Object is locked skipped
C:\Program Files\MSN\MSNCoreFiles\calendar.mar Object is locked skipped
C:\Program Files\MSN\MSNCoreFiles\mail.mar Object is locked skipped
C:\Program Files\MSN\MSNCoreFiles\market.mar Object is locked skipped
C:\Program Files\MSN\MSNCoreFiles\market32.mar Object is locked skipped
C:\Program Files\MSN\MSNCoreFiles\miadv.mar Object is locked skipped
C:\Program Files\MSN\MSNCoreFiles\mibas.mar Object is locked skipped
C:\Program Files\MSN\MSNCoreFiles\micd.mar Object is locked skipped
C:\Program Files\MSN\MSNCoreFiles\printing.mar Object is locked skipped
C:\Program Files\MSN\MSNCoreFiles\qos.mar Object is locked skipped
C:\Program Files\MSN\MSNCoreFiles\themedef.mar Object is locked skipped
C:\Program Files\MSN\MSNCoreFiles\themedef32.mar Object is locked skipped
C:\Program Files\MSN\MsnInstaller\install.mar Object is locked skipped
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\logs\access_log Object is locked skipped
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\logs\error.log Object is locked skipped
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\logs\error_log Object is locked skipped
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\logs\ssl_request_log Object is locked skipped
C:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP423\A0082942.exe Infected: not-a-virus:AdWare.Win32.OneStep.c skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP426\A0083105.exe Infected: not-a-virus:AdWare.Win32.RK.n skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP428\A0083302.dll Infected: not-a-virus:AdWare.Win32.RK.o skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP428\A0083303.exe Infected: not-a-virus:AdWare.Win32.RK.t skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP433\A0083470.exe Infected: not-a-virus:AdWare.Win32.OneStep.g skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP435\A0086727.dll Infected: not-a-virus:AdWare.Win32.OneStep.f skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP507\A0095621.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP507\A0095622.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP507\A0095623.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP507\A0095624.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP507\A0095625.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP507\A0095626.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP507\A0095627.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP507\A0095628.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP507\A0095629.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP507\A0095630.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP507\A0095631.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP507\A0095632.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP507\A0095633.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP507\A0095634.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP507\A0095635.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP507\A0095636.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP507\A0095637.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP507\A0095638.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP507\A0095639.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP508\A0095709.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP508\A0095710.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP508\A0095711.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP508\A0095712.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP508\A0095713.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP508\A0095714.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP508\A0095715.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP508\A0095716.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP508\A0095717.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP508\A0095718.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP508\A0095719.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP508\A0095720.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP508\A0095721.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP508\A0095722.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP508\A0095723.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP508\A0095724.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP508\A0095725.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP508\A0095726.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP508\A0095727.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP508\A0095728.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP508\A0095729.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP508\A0095730.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP508\A0095731.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP508\A0095732.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP508\A0095733.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP508\A0095734.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP508\A0095735.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095774.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095775.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095776.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095777.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095778.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095779.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095780.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095781.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095782.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095783.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095784.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095785.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095786.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095787.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095788.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095789.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095790.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095791.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095792.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095793.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095794.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095795.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095796.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095797.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095798.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095799.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095800.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095801.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095802.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095803.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP509\A0095804.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0095851.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0097654.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098652.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098653.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098654.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098655.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098656.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098657.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098658.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098659.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098660.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098661.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098662.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098663.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098666.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098667.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098668.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098669.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098670.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098671.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098672.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098673.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098674.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098675.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098676.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098677.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098678.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098679.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098680.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098681.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098682.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098683.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098684.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098685.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098686.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098687.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098688.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098689.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098690.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098691.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098692.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098693.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098694.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098695.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098696.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098697.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098698.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098699.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098700.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098701.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098702.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0098703.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0099724.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0099725.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0099726.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP510\A0099727.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP512\A0103799.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP512\A0103800.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP512\A0103801.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP512\A0103802.exe Object is locked skipped
C:\System Volume Information\_restore{CD5BBF37-12CB-452C-A857-AEE77437C57B}\RP512\change.log Object is locked skipped
C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped
C:\WINDOWS\SchedLgU.Txt Object is locked skipped
C:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked skipped
C:\WINDOWS\Sti_Trace.log Object is locked skipped
C:\WINDOWS\system32\avqlizqd.exe Object is locked skipped
C:\WINDOWS\system32\azovohmv.exe Object is locked skipped
C:\WINDOWS\system32\CatRoot2\edb.log Object is locked skipped
C:\WINDOWS\system32\CatRoot2\tmp.edb Object is locked skipped
C:\WINDOWS\system32\config\ACEEvent.evt Object is locked skipped
C:\WINDOWS\system32\config\Antivirus.Evt Object is locked skipped
C:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\default Object is locked skipped
C:\WINDOWS\system32\config\default.LOG Object is locked skipped
C:\WINDOWS\system32\config\Internet.evt Object is locked skipped
C:\WINDOWS\system32\config\SAM Object is locked skipped
C:\WINDOWS\system32\config\SAM.LOG Object is locked skipped
C:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\SECURITY Object is locked skipped
C:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped
C:\WINDOWS\system32\config\software Object is locked skipped
C:\WINDOWS\system32\config\software.LOG Object is locked skipped
C:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\system Object is locked skipped
C:\WINDOWS\system32\config\system.LOG Object is locked skipped
C:\WINDOWS\system32\elgjujox.exe Object is locked skipped
C:\WINDOWS\system32\gbspubmf.exe Object is locked skipped
C:\WINDOWS\system32\h323log.txt Object is locked skipped
C:\WINDOWS\system32\inynmdoh.exe Object is locked skipped
C:\WINDOWS\system32\ozunylqz.exe Object is locked skipped
C:\WINDOWS\system32\uncdelat.exe Object is locked skipped
C:\WINDOWS\system32\uratctuh.exe Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP Object is locked skipped
C:\WINDOWS\system32\yfmhkxgj.exe Object is locked skipped
C:\WINDOWS\system32\_nvidia_xxx_.log Object is locked skipped
C:\WINDOWS\Temp\Perflib_Perfdata_6c8.dat Object is locked skipped
C:\WINDOWS\Temp\_avast4_\Webshlock.txt Object is locked skipped
C:\WINDOWS\wiadebug.log Object is locked skipped
C:\WINDOWS\wiaservc.log Object is locked skipped
C:\WINDOWS\WindowsUpdate.log Object is locked skipped
Scan process completed.
-=-=-=-=-=-=END LOGS=-=-=-=-=-=-
Hope I can get some help with this!