PDA

View Full Version : My log - Command Service Issue



victorbrca
2006-04-20, 05:11
Hi all,

I got hit with command service as well as another malware programs (Surfersidekick III and others).

I was able to delete all other malwares, but of course I could not remove Command Service. It looks like it's installed on a repair key of the registry.

Anyways, my log is below. I just wanted to express my gratification to the person that will take his/her time to analyze my Log. I really apreciate it.

If you can give me any kind of input so I can avoid bugging you guys in the future !!! :)

Cheers !!!



-------------------------------------------------------

Logfile of HijackThis v1.99.1
Scan saved at 10:56:07 PM, on 4/19/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Netropa\Multimedia Keyboard\nhksrv.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
C:\Program Files\LogMeIn\RaMaint.exe
C:\Program Files\LogMeIn\LogMeIn.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\svchost.exe
C:\Program Files\LogMeIn\LogMeInSystray.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\WINDOWS\SYSC00.exe
C:\WINDOWS\sys027673241512.exe
C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
C:\Program Files\Roxio\Easy CD Creator 6\DragToDisc\DrgToDsc.exe
C:\Program Files\Roxio\Easy CD Creator 6\AudioCentral\RxMon.exe
C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe
C:\Program Files\Netropa\Multimedia Keyboard\MMKeybd.exe
C:\windows\mousepad10.exe
C:\Program Files\Roxio\Easy CD Creator 6\AudioCentral\Playlist.exe
C:\PROGRA~1\Logitech\MOUSEW~1\SYSTEM\EM_EXEC.EXE
C:\Program Files\Netropa\Multimedia Keyboard\TrayMon.exe
C:\Program Files\Netropa\Onscreen Display\OSD.exe
C:\Program Files\Common Files\PCSuite\DataLayer\DataLayer.exe
C:\PROGRA~1\COMMON~1\PCSuite\Services\SERVIC~1.EXE
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Stardock\ObjectDock\ObjectDock.exe
C:\Program Files\YCIII\YankClip.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\AntiSpyWare\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank
R3 - URLSearchHook: (no name) - CFBFAE00-17A6-11D0-99CB-00C04FD64497 - (no file)
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: G-Buster Browser Defense - {C41A1C0E-EA6C-11D4-B1B8-444553540000} - C:\WINDOWS\Downloaded Program Files\gbieh.dll
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [TheMonitor] C:\WINDOWS\SYSC00.exe
O4 - HKLM\..\Run: [sys027673241512] C:\WINDOWS\sys027673241512.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
O4 - HKLM\..\Run: [RoxioEngineUtility] "C:\Program Files\Common Files\Roxio Shared\System\EngUtil.exe"
O4 - HKLM\..\Run: [RoxioDragToDisc] "C:\Program Files\Roxio\Easy CD Creator 6\DragToDisc\DrgToDsc.exe"
O4 - HKLM\..\Run: [RoxioAudioCentral] "C:\Program Files\Roxio\Easy CD Creator 6\AudioCentral\RxMon.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [PrinTray] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\printray.exe
O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINDOWS\System32\PSDrvCheck.exe
O4 - HKLM\..\Run: [PCSuiteTrayApplication] C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe -onlytray
O4 - HKLM\..\Run: [MULTIMEDIA KEYBOARD] C:\Program Files\Netropa\Multimedia Keyboard\MMKeybd.exe
O4 - HKLM\..\Run: [ms062415127673] C:\WINDOWS\ms062415127673.exe
O4 - HKLM\..\Run: [mousepad] C:\windows\mousepad10.exe
O4 - HKLM\..\Run: [LogMeIn GUI] "C:\Program Files\LogMeIn\LogMeInSystray.exe"
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [keyboard] C:\windows\keyboard10.exe
O4 - HKLM\..\Run: [EM_EXEC] C:\PROGRA~1\Logitech\MOUSEW~1\SYSTEM\EM_EXEC.EXE
O4 - HKLM\..\Run: [DataLayer] C:\Program Files\Common Files\PCSuite\DataLayer\DataLayer.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKCU\..\Run: [WLM8ppm] "C:\DOCUME~1\Victor\LOCALS~1\Temp\Rar$EX01.235\WLM8patch(livemessenger.net).exe"
O4 - HKCU\..\Run: [winmatrix.exe] C:\Program Files\WinMatrix XP\WinMatrixXP.exe
O4 - HKCU\..\Run: [WindowFX] C:\PROGRA~1\Stardock\OBJECT~2\WindowFX\\wfxload.exe
O4 - HKCU\..\Run: [STYLEXP] C:\Program Files\TGTSoft\StyleXP\StyleXP.exe -Hide
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [Norton SystemWorks] "C:\Program Files\Norton SystemWorks\cfgwiz.exe" /GUID {05858CFD-5CC4-4ceb-AAAF-CF00BF39736A} /MODE CfgWiz
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Startup: Stardock ObjectDock.lnk = C:\Program Files\Stardock\ObjectDock\ObjectDock.exe
O4 - Startup: Yankee Clipper III.lnk = C:\Program Files\YCIII\YankClip.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll
O9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .bcf: C:\Program Files\Internet Explorer\Plugins\NPBelv32.dll
O16 - DPF: {01010E00-5E80-11D8-9E86-0007E96C65AE} (SupportSoft SmartIssue) - http://www.symantec.com/techsupp/asa/ctrl/tgctlsi.cab
O16 - DPF: {01012101-5E80-11D8-9E86-0007E96C65AE} (SupportSoft Script Runner Class) - http://www.symantec.com/techsupp/asa/ctrl/tgctlsr.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=36467&clcid=0x409
O16 - DPF: {1F2F4C9E-6F09-47BC-970D-3C54734667FE} (LSSupCtl Class) - https://www-secure.symantec.com/techsupp/asa/ctrl/LSSupCtl.cab
O16 - DPF: {2B323CD9-50E3-11D3-9466-00A0C9700498} (Yahoo! Audio Conferencing) - http://us.chat1.yimg.com/us.yimg.com/i/chat/applet/v45/yacscom.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://spaces.msn.com/PhotoUpload/MsnPUpld.cab?10,0,910,0
O16 - DPF: {7D1E9C49-BD6A-11D3-87A8-009027A35D73} (Yahoo! Audio UI1) - http://chat.yahoo.com/cab/yacsui.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {CE28D5D2-60CF-4C7D-9FE8-0F47A3308078} - https://www-secure.symantec.com/techsupp/asa/ctrl/SymAData.cab
O16 - DPF: {E37CB5F0-51F5-4395-A808-5FA49E399F83} (GbPluginObj Class) - https://www14.bancobrasil.com.br/plugin/GbPluginBb.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: Applets - C:\WINDOWS\system32\kidmlt48.dll (file missing)
O20 - Winlogon Notify: LMIinit - C:\WINDOWS\SYSTEM32\LMIinit.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: BlueSoleil Hid Service - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: LogMeIn Maintenance Service (LMIMaint) - 3am Labs, Inc. - C:\Program Files\LogMeIn\RaMaint.exe
O23 - Service: LogMeIn - 3am Labs, Inc. - C:\Program Files\LogMeIn\LogMeIn.exe
O23 - Service: Netropa NHK Server (nhksrv) - Unknown owner - C:\Program Files\Netropa\Multimedia Keyboard\nhksrv.exe
O23 - Service: StyleXPService - Unknown owner - C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe

pskelley
2006-04-20, 12:24
Hello and welcome to the forum. You still have considerable infection left on this computer. If you want help cleaning it up then proceed with these instructions in the posted order. The directions must be followed exactly if you wish the fix to work, thanks.

You need to look at this: O4 - HKCU\..\Run: [WLM8ppm] "C:\DOCUME~1\Victor\LOCALS~1\Temp\Rar$EX01.235\WLM8patch(livemessenger.net).exe" to find out what it is. Is it something you downloaded? If it is valid, I suggest you move it from the TEMP folder as we will be cleaning it during this process.

Instructions start here:

1. Please download Ewido Anti-Malware (http://www.ewido.net/en/download/)
Install ewido anti-malware
Launch ewido, there should be an icon on your desktop, double-click it.
The program will now open to the main screen.
When you run ewido for the first time, you may get a warning "Database could not be found!". Click OK. We will fix this in a moment.

You will need to update ewido to the latest definition files.
On the left hand side of the main screen click update.
Then click on Start Update.

The update will start and a progress bar will show the updates being installed.
(the status bar at the bottom will display ("Update successful")
Exit Ewido, do not run the scan yet!
If you are having problems with the updater, you can use this link to manually update ewido.
ewido manual updates (http://www.ewido.net/en/download/updates/)

2. Please download Brute Force Uninstaller (http://www.merijn.org/files/bfu.zip) to your desktop.
Right click the BFU folder on your desktop, and choose Extract All
Click "Next"
In the box to choose where to extract the files to,
Click "Browse"
Click on the + sign next to "My Computer"
Click on "Local Disk (C:) or whatever your primary drive is
Click "Make New Folder"
Type in BFU
Click "Next", and Uncheck the "Show Extracted Files" box and then click "Finish".
3. RIGHT-CLICK HERE (http://metallica.geekstogo.com/alcanshorty.bfu) and choose "Save As" (in IE it's "Save Target As") in order to download Alcra PLUS Remover.
Save it in the same folder you made earlier (c:\BFU).

Do not do anything with these yet!

Reboot your computer into Safe Mode. You can do this by restarting your computer and continually tapping F8 until a menu appears. Highlight Safe Mode and hit enter.

4. Once in Safe Mode, Open Ewido:
Click on scanner
Click on Complete System Scan and the scan will begin.
You will be prompted to clean the first infection.
Select "Perform action on all infections", then proceed.
Once the scan has completed, there will be a button located on the bottom of the screen named Save report
Click Save report.
Save the report .txt file to your desktop or a location where you can find it easily.
Close ewido anti-malware.

5. Then, please go to Start > My Computer and navigate to the C:\BFU folder.
Start the Brute Force Uninstaller by doubleclicking BFU.exe
In the scriptline to execute field type or paste c:\bfu\alcanshorty.bfu
Press Execute and let it do it’s job. (You ought to see a progress bar if you did this correctly.)
Wait for the complete script execution box to pop up and press OK.
Press exit to terminate the BFU program.
Reboot into normal windows and post the contents of ewido text report that you saved and a new HiJackThis log.
Please add any comments you think will help. We will have more to do.

Thanks...pskelley
Safer Networking Forums

victorbrca
2006-04-21, 02:35
Hi pskelley!! Thanks a lot for your help.

File C:\DOCUME~1\Victor\LOCALS~1\Temp\Rar$EX01.235\WLM8patch(livemessenger.net).exe is a patch for Live Messenger. I uninstalled the software, but looks like it's still there.

I've followed all steps exactelly as you told me. The only thing I've noticed is that Alcra Plus did not take any time to run the scripts. It was done instantly. I double checked the address and the file location and tried again but it hapenned the same thing.

See below the 2 logs. The Ewido log is extremelly big.

Once again, thanks for the help.

Cheers


------------------------------------------------------------------



Logfile of HijackThis v1.99.1
Scan saved at 8:16:42 PM, on 4/20/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Netropa\Multimedia Keyboard\nhksrv.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\Program Files\ewido anti-malware\ewidoguard.exe
C:\Program Files\LogMeIn\RaMaint.exe
C:\Program Files\LogMeIn\LogMeIn.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
C:\Program Files\Roxio\Easy CD Creator 6\DragToDisc\DrgToDsc.exe
C:\Program Files\Roxio\Easy CD Creator 6\AudioCentral\RxMon.exe
C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe
C:\Program Files\Netropa\Multimedia Keyboard\MMKeybd.exe
C:\Program Files\Netropa\Multimedia Keyboard\TrayMon.exe
C:\Program Files\LogMeIn\LogMeInSystray.exe
C:\Program Files\Netropa\Onscreen Display\OSD.exe
C:\PROGRA~1\Logitech\MOUSEW~1\SYSTEM\EM_EXEC.EXE
C:\PROGRA~1\COMMON~1\PCSuite\Services\SERVIC~1.EXE
C:\Program Files\Common Files\PCSuite\DataLayer\DataLayer.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Roxio\Easy CD Creator 6\AudioCentral\Playlist.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Stardock\ObjectDock\ObjectDock.exe
C:\Program Files\YCIII\YankClip.exe
C:\AntiSpyWare\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank
R3 - URLSearchHook: (no name) - CFBFAE00-17A6-11D0-99CB-00C04FD64497 - (no file)
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: G-Buster Browser Defense - {C41A1C0E-EA6C-11D4-B1B8-444553540000} - C:\WINDOWS\Downloaded Program Files\gbieh.dll
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
O4 - HKLM\..\Run: [RoxioEngineUtility] "C:\Program Files\Common Files\Roxio Shared\System\EngUtil.exe"
O4 - HKLM\..\Run: [RoxioDragToDisc] "C:\Program Files\Roxio\Easy CD Creator 6\DragToDisc\DrgToDsc.exe"
O4 - HKLM\..\Run: [RoxioAudioCentral] "C:\Program Files\Roxio\Easy CD Creator 6\AudioCentral\RxMon.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [PrinTray] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\printray.exe
O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINDOWS\System32\PSDrvCheck.exe
O4 - HKLM\..\Run: [PCSuiteTrayApplication] C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe -onlytray
O4 - HKLM\..\Run: [MULTIMEDIA KEYBOARD] C:\Program Files\Netropa\Multimedia Keyboard\MMKeybd.exe
O4 - HKLM\..\Run: [ms062415127673] C:\WINDOWS\ms062415127673.exe
O4 - HKLM\..\Run: [LogMeIn GUI] "C:\Program Files\LogMeIn\LogMeInSystray.exe"
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [EM_EXEC] C:\PROGRA~1\Logitech\MOUSEW~1\SYSTEM\EM_EXEC.EXE
O4 - HKLM\..\Run: [DataLayer] C:\Program Files\Common Files\PCSuite\DataLayer\DataLayer.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKCU\..\Run: [WLM8ppm] "C:\DOCUME~1\Victor\LOCALS~1\Temp\Rar$EX01.235\WLM8patch(livemessenger.net).exe"
O4 - HKCU\..\Run: [winmatrix.exe] C:\Program Files\WinMatrix XP\WinMatrixXP.exe
O4 - HKCU\..\Run: [WindowFX] C:\PROGRA~1\Stardock\OBJECT~2\WindowFX\\wfxload.exe
O4 - HKCU\..\Run: [STYLEXP] C:\Program Files\TGTSoft\StyleXP\StyleXP.exe -Hide
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [Norton SystemWorks] "C:\Program Files\Norton SystemWorks\cfgwiz.exe" /GUID {05858CFD-5CC4-4ceb-AAAF-CF00BF39736A} /MODE CfgWiz
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Startup: Stardock ObjectDock.lnk = C:\Program Files\Stardock\ObjectDock\ObjectDock.exe
O4 - Startup: Yankee Clipper III.lnk = C:\Program Files\YCIII\YankClip.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll
O9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .bcf: C:\Program Files\Internet Explorer\Plugins\NPBelv32.dll
O16 - DPF: {01010E00-5E80-11D8-9E86-0007E96C65AE} (SupportSoft SmartIssue) - http://www.symantec.com/techsupp/asa/ctrl/tgctlsi.cab
O16 - DPF: {01012101-5E80-11D8-9E86-0007E96C65AE} (SupportSoft Script Runner Class) - http://www.symantec.com/techsupp/asa/ctrl/tgctlsr.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=36467&clcid=0x409
O16 - DPF: {1F2F4C9E-6F09-47BC-970D-3C54734667FE} (LSSupCtl Class) - https://www-secure.symantec.com/techsupp/asa/ctrl/LSSupCtl.cab
O16 - DPF: {2B323CD9-50E3-11D3-9466-00A0C9700498} (Yahoo! Audio Conferencing) - http://us.chat1.yimg.com/us.yimg.com/i/chat/applet/v45/yacscom.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://spaces.msn.com/PhotoUpload/MsnPUpld.cab?10,0,910,0
O16 - DPF: {7D1E9C49-BD6A-11D3-87A8-009027A35D73} (Yahoo! Audio UI1) - http://chat.yahoo.com/cab/yacsui.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {CE28D5D2-60CF-4C7D-9FE8-0F47A3308078} - https://www-secure.symantec.com/techsupp/asa/ctrl/SymAData.cab
O16 - DPF: {E37CB5F0-51F5-4395-A808-5FA49E399F83} (GbPluginObj Class) - https://www14.bancobrasil.com.br/plugin/GbPluginBb.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: Applets - C:\WINDOWS\system32\kidmlt48.dll (file missing)
O20 - Winlogon Notify: LMIinit - C:\WINDOWS\SYSTEM32\LMIinit.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: BlueSoleil Hid Service - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido anti-malware\ewidoguard.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: LogMeIn Maintenance Service (LMIMaint) - 3am Labs, Inc. - C:\Program Files\LogMeIn\RaMaint.exe
O23 - Service: LogMeIn - 3am Labs, Inc. - C:\Program Files\LogMeIn\LogMeIn.exe
O23 - Service: Netropa NHK Server (nhksrv) - Unknown owner - C:\Program Files\Netropa\Multimedia Keyboard\nhksrv.exe
O23 - Service: StyleXPService - Unknown owner - C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe



-------------------------------------------------------------------------------------

victorbrca
2006-04-21, 02:48
I tried to post my Ewido log, but it has 616410 characters, when only 20000 is allowed.

I'm not able to post as an attachment as it has 1204kb and I can only post 34kb. Should I brake the file into many posts??

Cheers

pskelley
2006-04-21, 03:13
Thanks for returning your information, and your feedback. Looks like the BFU remover did a great job, thanks Metallica. I also do not see the ewido scan results. I need to see it, and you may edit out any cookies ewido deleted and any lines about System Restore because we will clean it before we are done. Do this and post it even if you have to do it in two or more posts.

1) I see this: C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe and also this: C:\Program Files\Alwil Software\Avast4\ashServ.exe It is very important that you are not running two antivirus programs at the same time. That has the opposite effect from what you would think. See this information:
http://service1.symantec.com/SUPPORT/nav.nsf/docid/2000031316555206 if you have two running uninstall one.

2) TeaTimer will block the HJT fix we must make. Use this information and turn TeaTimer off until you are done: http://russelltexas.com/malware/teatimer.htm

3) Open HijackThis and choose "Do a system scan only" then check the box in front of these line items:

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank
R3 - URLSearchHook: (no name) - CFBFAE00-17A6-11D0-99CB-00C04FD64497 - (no file)
O4 - HKLM\..\Run: [ms062415127673] C:\WINDOWS\ms062415127673.exe
O4 - HKCU\..\Run: [WLM8ppm] "C:\DOCUME~1\Victor\LOCALS~1\Temp\Rar$EX01.235\WLM8patch(livemessenger.net).exe"
(you may check and remove this restriction if you wish)
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
(I can't open the next one, if you do not know what it is, check and remove it)
O16 - DPF: {E37CB5F0-51F5-4395-A808-5FA49E399F83} (GbPluginObj Class) - https://www14.bancobrasil.com.br/plugin/GbPluginBb.cab
O20 - Winlogon Notify: Applets - C:\WINDOWS\system32\kidmlt48.dll (file missing)

Close all programs but HJT and all browser windows, then click on "Fix Checked"

Enable hidden files&folders..reverse the process when finished.
http://www.xtra.co.nz/help/0,,4155-1916458,00.html

RIGHT Click on Start then click on Explore. Locate and delete these items:

C:\WINDOWS\ms062415127673.exe >>> file

C:\DOCUME~1\Victor\LOCALS~1\Temp\Rar$EX01.235\WLM8patch(livemessenger.net).exe <<< delete that file, but to be sure, open the TEMP folder I have highlited in red and delete the contents of the folder (not the folder)

C:\Windows\Prefetch\ >>> delete the contents (NOT THE FOLDER)
Prefetch info: http://www.windowsnetworking.com/articles_tutorials/Gaining-Speed-Empty-Prefetch-XP.html

Download CCleaner from this link: http://www.ccleaner.com/ Review the instructions http://www.ccleaner.com/help/tour1.asp
Run CCleaner, Windows & Applications when you run the registry cleaner (Issues) you will be prompted to backup before you can remove stuff, make sure you do.

Restart the computer and post a new HJT log for a final look. Please include the ewido scan results as instructed above and any comments you think will help. Let me know how the computer is running.

Thanks...Phil

victorbrca
2006-04-21, 06:30
Hi Phil,

I was not able to find and delete file C:\WINDOWS\ms062415127673.exe and folder Rar$EX01.235, however Temp and Prefetch folder's were emptied.

Computer seems to be running ok with no pop-ups.

I'm posting the new HJT log and Ewido as well. I'm leaving out the lines that have ":mozilla.525:C:\RECYCLER\NPROTECT\00575859.MOZ -> TrackingCookie.<FILE NAME> : Cleaned with backup" out assuming that those are the deleted cookies.

Thanks,


Vic

-------------------------------------------------------


:mozilla.146:C:\Documents and Settings\Victor\Application Data\Mozilla\Firefox\Profiles\g4n5ep93.default\cookies.txt -> TrackingCookie.Realtracker : Cleaned with backup
:mozilla.147:C:\Documents and Settings\Victor\Application Data\Mozilla\Firefox\Profiles\g4n5ep93.default\cookies.txt -> TrackingCookie.Realtracker : Cleaned with backup
C:\Documents and Settings\Victor\Cookies\victor@server.iad.liveperson[2].txt -> TrackingCookie.Liveperson : Cleaned with backup
C:\Documents and Settings\Victor\Cookies\victor@stats1.reliablestats[2].txt -> TrackingCookie.Reliablestats : Cleaned with backup
C:\Documents and Settings\Victor\Local Settings\Application Data\Mozilla\Firefox\Profiles\g4n5ep93.default\Cache\D536F7E6d01 -> Not-A-Virus.Exploit.HTML.CodeBaseExec : Cleaned with backup
C:\Documents and Settings\Victor\Local Settings\Temp\ICD1.tmp\UERS_0001_N68M1801NetInstaller.exe -> Not-A-Virus.Downloader.Win32.WinFixer.d : Cleaned with backup
C:\Documents and Settings\Victor\Local Settings\Temp\ICD2.tmp\UERS_0001_N68M1801NetInstaller.exe -> Not-A-Virus.Downloader.Win32.WinFixer.d : Cleaned with backup
C:\Documents and Settings\Victor\Local Settings\Temp\ICD3.tmp\int_ver34.ocx -> Dialer.VB.j : Cleaned with backup
C:\Documents and Settings\Victor\Local Settings\Temp\temp.fr3088\Programs\webhdll.dll -> Adware.WebHancer : Cleaned with backup
C:\Documents and Settings\Victor\Local Settings\Temporary Internet Files\Content.IE5\0H0V4HAD\ErrorSafeFreeInstall[1].cab/UERS_0001_N68M1801NetInstaller.exe -> Not-A-Virus.Downloader.Win32.WinFixer.d : Cleaned with backup
C:\Documents and Settings\Victor\Local Settings\Temporary Internet Files\Content.IE5\0ZBVYCHP\send_ocx_sof[1].htm -> Not-A-Virus.Exploit.HTML.CodeBaseExec : Cleaned with backup
C:\Documents and Settings\Victor\Local Settings\Temporary Internet Files\Content.IE5\FVL7F9W4\send_ocx_sof[1].htm -> Not-A-Virus.Exploit.HTML.CodeBaseExec : Cleaned with backup
C:\Documents and Settings\Victor\Local Settings\Temporary Internet Files\Content.IE5\K5IZ816F\int_ver34[1].CAB/int_ver34.ocx -> Dialer.VB.j : Cleaned with backup
C:\Program Files\filesubmit\The Matrix Reloaded 3D Screensaver\nnezt388.exe -> Adware.NewDotNet : Cleaned with backup
C:\Program Files\themexp\Themexp.org File\NNWDAB638.EXE -> Adware.NewDotNet : Cleaned with backup
C:\Program Files\themexp\Themexp.org File\VVSNInst.exe -> Adware.SaveNow : Cleaned with backup




C:\RECYCLER\S-1-5-21-1935655697-1972579041-725345543-1003\Dc163\trustin.dll -> Adware.Azesearch : Cleaned with backup
C:\RECYCLER\S-1-5-21-1935655697-1972579041-725345543-1003\Dc164\uninstall.exe -> Adware.Azesearch : Cleaned with backup
C:\RECYCLER\S-1-5-21-1935655697-1972579041-725345543-1003\Dc166\uninstall.exe -> Adware.Azesearch : Cleaned with backup
C:\RECYCLER\S-1-5-21-1935655697-1972579041-725345543-1003\Dc45\OLS\msn\msnsetup\msnsetup.exe -> Heuristic.Win32.AVKiller : Cleaned with backup
C:\RECYCLER\S-1-5-21-1935655697-1972579041-725345543-1003\Dc45\win98\OLS\msn\msnsetup\msnsetup.exe -> Heuristic.Win32.AVKiller : Cleaned with backup
C:\WINDOWS\Downloaded Program Files\CONFLICT.1\UERS_0001_N68M1801NetInstaller.exe -> Not-A-Virus.Downloader.Win32.WinFixer.d : Cleaned with backup
C:\WINDOWS\Downloaded Program Files\CONFLICT.2\UERS_0001_N68M1801NetInstaller.exe -> Not-A-Virus.Downloader.Win32.WinFixer.d : Cleaned with backup
C:\WINDOWS\Downloaded Program Files\int_ver34.ocx -> Dialer.VB.j : Cleaned with backup
C:\WINDOWS\Downloaded Program Files\loader2.exe -> Adware.Azesearch : Cleaned with backup
C:\WINDOWS\Downloaded Program Files\UERS_0001_N68M1801NetInstaller.exe -> Not-A-Virus.Downloader.Win32.WinFixer.d : Cleaned with backup
C:\WINDOWS\keyboard10.exe -> Downloader.Adload.am : Cleaned with backup
C:\WINDOWS\mousepad10.exe -> Hijacker.VB.ly : Cleaned with backup
C:\WINDOWS\NDNuninstall7_22.exe -> Adware.NewDotNet : Cleaned with backup
C:\WINDOWS\sys027673241512.exe -> Adware.Enbrow : Cleaned with backup
C:\WINDOWS\SYSC00.exe -> Trojan.VB.tg : Cleaned with backup
C:\WINDOWS\system\Terminator.exe -> Trojan.KillApp.30208 : Cleaned with backup
C:\WINDOWS\system32\ticads.exe -> Adware.Azesearch : Cleaned with backup
C:\WINDOWS\system32\ticont.dll -> Adware.Azesearch : Cleaned with backup
C:\WINDOWS\system32\tisa.dll -> Adware.Azesearch : Cleaned with backup
C:\WINDOWS\unin101.exe -> Trojan.VB.tg : Cleaned with backup
C:\WINDOWS\uni_eh.exe -> Trojan.VB.tg : Cleaned with backup
F:\Documents\Lucas\temp\Hbinst.exe -> Adware.HotBar : Cleaned with backup


::Report End


------------------------------------------------------------



Logfile of HijackThis v1.99.1
Scan saved at 12:22:49 AM, on 4/21/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Netropa\Multimedia Keyboard\nhksrv.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\Program Files\ewido anti-malware\ewidoguard.exe
C:\Program Files\LogMeIn\RaMaint.exe
C:\Program Files\LogMeIn\LogMeIn.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
C:\Program Files\Roxio\Easy CD Creator 6\DragToDisc\DrgToDsc.exe
C:\Program Files\Roxio\Easy CD Creator 6\AudioCentral\RxMon.exe
C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe
C:\Program Files\Netropa\Multimedia Keyboard\MMKeybd.exe
C:\Program Files\LogMeIn\LogMeInSystray.exe
C:\Program Files\Roxio\Easy CD Creator 6\AudioCentral\Playlist.exe
C:\PROGRA~1\Logitech\MOUSEW~1\SYSTEM\EM_EXEC.EXE
C:\Program Files\Netropa\Multimedia Keyboard\TrayMon.exe
C:\Program Files\Common Files\PCSuite\DataLayer\DataLayer.exe
C:\Program Files\Netropa\Onscreen Display\OSD.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\PROGRA~1\COMMON~1\PCSuite\Services\SERVIC~1.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Stardock\ObjectDock\ObjectDock.exe
C:\Program Files\YCIII\YankClip.exe
C:\AntiSpyWare\HijackThis.exe
C:\Program Files\Mozilla Firefox\firefox.exe

O2 - BHO: G-Buster Browser Defense - {C41A1C0E-EA6C-11D4-B1B8-444553540000} - C:\WINDOWS\Downloaded Program Files\gbieh.dll
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
O4 - HKLM\..\Run: [RoxioEngineUtility] "C:\Program Files\Common Files\Roxio Shared\System\EngUtil.exe"
O4 - HKLM\..\Run: [RoxioDragToDisc] "C:\Program Files\Roxio\Easy CD Creator 6\DragToDisc\DrgToDsc.exe"
O4 - HKLM\..\Run: [RoxioAudioCentral] "C:\Program Files\Roxio\Easy CD Creator 6\AudioCentral\RxMon.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [PrinTray] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\printray.exe
O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINDOWS\System32\PSDrvCheck.exe
O4 - HKLM\..\Run: [PCSuiteTrayApplication] C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe -onlytray
O4 - HKLM\..\Run: [MULTIMEDIA KEYBOARD] C:\Program Files\Netropa\Multimedia Keyboard\MMKeybd.exe
O4 - HKLM\..\Run: [LogMeIn GUI] "C:\Program Files\LogMeIn\LogMeInSystray.exe"
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [EM_EXEC] C:\PROGRA~1\Logitech\MOUSEW~1\SYSTEM\EM_EXEC.EXE
O4 - HKLM\..\Run: [DataLayer] C:\Program Files\Common Files\PCSuite\DataLayer\DataLayer.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKCU\..\Run: [STYLEXP] C:\Program Files\TGTSoft\StyleXP\StyleXP.exe -Hide
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Startup: Stardock ObjectDock.lnk = C:\Program Files\Stardock\ObjectDock\ObjectDock.exe
O4 - Startup: Yankee Clipper III.lnk = C:\Program Files\YCIII\YankClip.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll
O9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .bcf: C:\Program Files\Internet Explorer\Plugins\NPBelv32.dll
O16 - DPF: {01010E00-5E80-11D8-9E86-0007E96C65AE} (SupportSoft SmartIssue) - http://www.symantec.com/techsupp/asa/ctrl/tgctlsi.cab
O16 - DPF: {01012101-5E80-11D8-9E86-0007E96C65AE} (SupportSoft Script Runner Class) - http://www.symantec.com/techsupp/asa/ctrl/tgctlsr.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=36467&clcid=0x409
O16 - DPF: {1F2F4C9E-6F09-47BC-970D-3C54734667FE} (LSSupCtl Class) - https://www-secure.symantec.com/techsupp/asa/ctrl/LSSupCtl.cab
O16 - DPF: {2B323CD9-50E3-11D3-9466-00A0C9700498} (Yahoo! Audio Conferencing) - http://us.chat1.yimg.com/us.yimg.com/i/chat/applet/v45/yacscom.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://spaces.msn.com/PhotoUpload/MsnPUpld.cab?10,0,910,0
O16 - DPF: {7D1E9C49-BD6A-11D3-87A8-009027A35D73} (Yahoo! Audio UI1) - http://chat.yahoo.com/cab/yacsui.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {CE28D5D2-60CF-4C7D-9FE8-0F47A3308078} - https://www-secure.symantec.com/techsupp/asa/ctrl/SymAData.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: LMIinit - C:\WINDOWS\SYSTEM32\LMIinit.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: BlueSoleil Hid Service - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido anti-malware\ewidoguard.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: LogMeIn Maintenance Service (LMIMaint) - 3am Labs, Inc. - C:\Program Files\LogMeIn\RaMaint.exe
O23 - Service: LogMeIn - 3am Labs, Inc. - C:\Program Files\LogMeIn\LogMeIn.exe
O23 - Service: Netropa NHK Server (nhksrv) - Unknown owner - C:\Program Files\Netropa\Multimedia Keyboard\nhksrv.exe
O23 - Service: StyleXPService - Unknown owner - C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe

victorbrca
2006-04-21, 06:34
Sorry, forgot to mention the AntiVirus Issue. I had Norton before but switched to Avast. Seems that Norton did not uninstall completelly.

pskelley
2006-04-21, 13:10
Hey Vic, no info in your profile so I don't know where you are located. AU, UK? Should I say G'Day?

Your HJT log looks clean of malware, but I think we should remove the old Norton stuff. It is not doing you good to have it running with the other AV. Since this was a nasty infection, I would like to run one more scan to be sure we got it all. Let's look at the ewido scan first:

You cut off the first lines of ewido? Telling me when the scan was run.

C:\RECYCLER\NPROTECT\ <<< Nortons idea of a backup recycle bin. Needs to be cleaned out, but perhaps when we get rid of the old stuff it will be gone. Search for that folder to be sure.

C:\RECYCLER\ <<< the recycle bin, delete the contents.

Looks like ewido deleted everything it found. You show evidence of a lot of past infections, be careful because the new stuff is coming with rootkits and may not be cleanable, reformat being the only safe choice.
_________________________________________________________

Instructions start here:

Disable the Service
Click Start > Run and type services.msc
Scroll down to Automatic LiveUpdate Scheduler and right click on it.
Click Properties and under Service Status click Stop, then under Startup Type change it to Disabled.

also disable LiveUpdate. Once that is done you may be able to delete the Symantec folder.

Open HijackThis and choose "Do a system scan only" then check the box in front of these line items:

(I see no reason to keep this stuff, but you may if you wish)
O16 - DPF: {01010E00-5E80-11D8-9E86-0007E96C65AE} (SupportSoft SmartIssue) - http://www.symantec.com/techsupp/asa/ctrl/tgctlsi.cab
O16 - DPF: {01012101-5E80-11D8-9E86-0007E96C65AE} (SupportSoft Script Runner Class) - http://www.symantec.com/techsupp/asa/ctrl/tgctlsr.cab
O16 - DPF: {1F2F4C9E-6F09-47BC-970D-3C54734667FE} (LSSupCtl Class) - https://www-secure.symantec.com/tech...l/LSSupCtl.cab
O16 - DPF: {CE28D5D2-60CF-4C7D-9FE8-0F47A3308078} - https://www-secure.symantec.com/tech...l/SymAData.cab

Close all programs but HJT and all browser windows, then click on "Fix Checked"

Enable hidden files&folders..reverse the process when finished.
http://www.xtra.co.nz/help/0,,4155-1916458,00.html

RIGHT Click on Start then click on Explore. Locate and delete these items:

C:\Program Files\Symantec\ <<< delete that folder, that should rid you of all Norton/Symantec stuff.
If you can't delete it, do it in safe mode:
http://www.bleepingcomputer.com/tutorials/tutorial61.html

To be sure you are clean, I would like you to run Kaspersky free online scan and post the results for me.

Please do an online scan with Kaspersky Online Scanner

http://www.kaspersky.com/virusscanner

Click on Kaspersky Online Scanner

You will be promted to install an ActiveX component from Kaspersky, Click Yes.

The program will launch and then start to download the latest definition files.

Once the scanner is installed and the definitions downloaded, click Next.

Now click on Scan Settings

In the scan settings make sure that the following are selected:

Scan using the following Anti-Virus database:

Extended (If available otherwise Standard)

Scan Options:

Scan Archives

Scan Mail Bases

Click OK

Now under select a target to scan select My Computer

The scan will take a while so be patient and let it run. Once the scan is complete it will display if your system has been infected.

Now click on the Save as Text button:

Save the file to your desktop.

Copy and paste that information in your next post.

Post the Kaspersky results and a last HJT log. Please add your comments, tell me how the computer is running.

Cheers...Phil

victorbrca
2006-04-22, 18:55
Hi Phil, I'm actually you neighbor, I live in Toronto. I think working with some british friends rubbed that "cheers" on me.... :)

Ok, I deleted everything on NPROTECT including the folder, however there are 2x files on RECYCLER that I was not sure I should delete, and I think the might have interfeered with the Kaspersky report. You'll see that there are alot of Norton Quarentine files.

Everything else went ok. There are no pop-ups watsoever and computer seems to be running at a very good speed.

I'm posting the 2x logs (Kaspersky and HJT) as well as the date for the Ewido report that cut (ops :o ).

You also mentioned that I should be more carefull as the new mallwares are coming with rootkits. Is there anything I should do to avoid the infections other than the instructions from "So how did I get infected in the first place?"?


Vic.

-----------------------------------------------------------

Ewido

---------------------------------------------------------
ewido anti-malware - Scan report
---------------------------------------------------------

+ Created on: 8:08:15 PM, 4/20/2006
+ Report-Checksum: 4B98CC11

+ Scan result:



-----------------------------------------------------------


Logfile of HijackThis v1.99.1
Scan saved at 12:46:39 PM, on 4/22/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Netropa\Multimedia Keyboard\nhksrv.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\Program Files\ewido anti-malware\ewidoguard.exe
C:\Program Files\LogMeIn\RaMaint.exe
C:\Program Files\LogMeIn\LogMeIn.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
C:\Program Files\Roxio\Easy CD Creator 6\DragToDisc\DrgToDsc.exe
C:\Program Files\Roxio\Easy CD Creator 6\AudioCentral\RxMon.exe
C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe
C:\Program Files\Netropa\Multimedia Keyboard\MMKeybd.exe
C:\Program Files\LogMeIn\LogMeInSystray.exe
C:\PROGRA~1\Logitech\MOUSEW~1\SYSTEM\EM_EXEC.EXE
C:\Program Files\Roxio\Easy CD Creator 6\AudioCentral\Playlist.exe
C:\Program Files\Common Files\PCSuite\DataLayer\DataLayer.exe
C:\PROGRA~1\COMMON~1\PCSuite\Services\SERVIC~1.EXE
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Netropa\Multimedia Keyboard\TrayMon.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Netropa\Onscreen Display\OSD.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe
C:\Program Files\Stardock\ObjectDock\ObjectDock.exe
C:\Program Files\YCIII\YankClip.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\AntiSpyWare\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orkut.com/
O2 - BHO: G-Buster Browser Defense - {C41A1C0E-EA6C-11D4-B1B8-444553540000} - C:\WINDOWS\Downloaded Program Files\gbieh.dll
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
O4 - HKLM\..\Run: [RoxioEngineUtility] "C:\Program Files\Common Files\Roxio Shared\System\EngUtil.exe"
O4 - HKLM\..\Run: [RoxioDragToDisc] "C:\Program Files\Roxio\Easy CD Creator 6\DragToDisc\DrgToDsc.exe"
O4 - HKLM\..\Run: [RoxioAudioCentral] "C:\Program Files\Roxio\Easy CD Creator 6\AudioCentral\RxMon.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [PrinTray] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\printray.exe
O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINDOWS\System32\PSDrvCheck.exe
O4 - HKLM\..\Run: [PCSuiteTrayApplication] C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe -onlytray
O4 - HKLM\..\Run: [MULTIMEDIA KEYBOARD] C:\Program Files\Netropa\Multimedia Keyboard\MMKeybd.exe
O4 - HKLM\..\Run: [LogMeIn GUI] "C:\Program Files\LogMeIn\LogMeInSystray.exe"
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [EM_EXEC] C:\PROGRA~1\Logitech\MOUSEW~1\SYSTEM\EM_EXEC.EXE
O4 - HKLM\..\Run: [DataLayer] C:\Program Files\Common Files\PCSuite\DataLayer\DataLayer.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [ms062415127673] C:\WINDOWS\ms062415127673.exe
O4 - HKCU\..\Run: [STYLEXP] C:\Program Files\TGTSoft\StyleXP\StyleXP.exe -Hide
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [WLM8ppm] "C:\DOCUME~1\Victor\LOCALS~1\Temp\Rar$EX01.235\WLM8patch(livemessenger.net).exe"
O4 - HKCU\..\Run: [winmatrix.exe] C:\Program Files\WinMatrix XP\WinMatrixXP.exe
O4 - HKCU\..\Run: [WindowFX] C:\PROGRA~1\Stardock\OBJECT~2\WindowFX\\wfxload.exe
O4 - HKCU\..\Run: [Norton SystemWorks] "C:\Program Files\Norton SystemWorks\cfgwiz.exe" /GUID {05858CFD-5CC4-4ceb-AAAF-CF00BF39736A} /MODE CfgWiz
O4 - Startup: Stardock ObjectDock.lnk = C:\Program Files\Stardock\ObjectDock\ObjectDock.exe
O4 - Startup: Yankee Clipper III.lnk = C:\Program Files\YCIII\YankClip.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll
O9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .bcf: C:\Program Files\Internet Explorer\Plugins\NPBelv32.dll
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/english/kavwebscan_unicode.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=36467&clcid=0x409
O16 - DPF: {2B323CD9-50E3-11D3-9466-00A0C9700498} (Yahoo! Audio Conferencing) - http://us.chat1.yimg.com/us.yimg.com/i/chat/applet/v45/yacscom.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://spaces.msn.com/PhotoUpload/MsnPUpld.cab?10,0,910,0
O16 - DPF: {7D1E9C49-BD6A-11D3-87A8-009027A35D73} (Yahoo! Audio UI1) - http://chat.yahoo.com/cab/yacsui.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {E37CB5F0-51F5-4395-A808-5FA49E399F83} (GbPluginObj Class) -
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: LMIinit - C:\WINDOWS\SYSTEM32\LMIinit.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: BlueSoleil Hid Service - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido anti-malware\ewidoguard.exe
O23 - Service: LogMeIn Maintenance Service (LMIMaint) - 3am Labs, Inc. - C:\Program Files\LogMeIn\RaMaint.exe
O23 - Service: LogMeIn - 3am Labs, Inc. - C:\Program Files\LogMeIn\LogMeIn.exe
O23 - Service: Netropa NHK Server (nhksrv) - Unknown owner - C:\Program Files\Netropa\Multimedia Keyboard\nhksrv.exe
O23 - Service: StyleXPService - Unknown owner - C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe

victorbrca
2006-04-22, 19:02
Forgot to mention the file names from RECYCLER
S-1-5-21-1935655697-1972579041-725345543-500
S-1-5-21-1935655697-1972579041-725345543-1003

-------------------------------------------------------------------------------
KASPERSKY ON-LINE SCANNER REPORT
Saturday, April 22, 2006 12:27:20 PM
Operating System: Microsoft Windows XP Professional, Service Pack 2 (Build 2600)
Kaspersky On-line Scanner version: 5.0.78.0
Kaspersky Anti-Virus database last update: 22/04/2006
Kaspersky Anti-Virus database records: 189394
-------------------------------------------------------------------------------

Scan Settings:
Scan using the following antivirus database: extended
Scan Archives: true
Scan Mail Bases: true

Scan Target - My Computer:
A:\
C:\
E:\
F:\
G:\

Scan Statistics:
Total number of scanned objects: 83559
Number of viruses found: 87
Number of infected objects: 1809
Number of suspicious objects: 103
Duration of the scan process: 01:12:56

Infected Object Name / Virus Name / Last Action
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\00020CD2 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\00026B19 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\000C2F8D Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\003A1CD2 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\003E18C1 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\005C0A6F Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\00835C76 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\009A56B0 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\00A02F61 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\00B7508F/document.txt .exe Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\00B7508F ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\00B7508F CryptFF: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\00CC4C04 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\011A139A Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0132420C Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\01342F35 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\014B6BC7.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\01983813 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\01BB505B Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\01C82F09 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\01D8493E.class Infected: Trojan.Java.ClassLoader.d skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\01F66497 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\01FE2E1B Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\02113BDA Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\02201646 Infected: Trojan-Spy.Win32.Briss.j skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\025B2EDD Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\02642422 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\02B52023 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\02B57551 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\02CA1A2A Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\02CF0667 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\03247569 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\03301031 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\034A034B Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\037D7688 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\037E2311 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\03832E85 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\038B3488 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\039972F5 Infected: Email-Worm.Win32.Bagle.z skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\03A430A8 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\03AC6EDF Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\03B02E1A Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\03BA5EDB Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\03C37E4B Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\03CD12BB Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\03DD64A9 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\03E877DD Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\03E9532C Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\03F40A90 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\04084E85 Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\04157677/[From jonmg@rogers.com][Date Tue, 8 Feb 2005 09:52:14 -0500]/UNNAMED/html Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\04157677/[From jonmg@rogers.com][Date Tue, 8 Feb 2005 09:52:14 -0500]/UNNAMED Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\04157677 Mail: suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\04157677 CryptFF: suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\04172E59 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\04526599 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\045944CF Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\04783400/[From 05655@wwrents246.wwrent.com.br][Date Sun, 20 Jun 2004 23:15:38 -0300]/UNNAMED/html Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\04783400/[From 05655@wwrents246.wwrent.com.br][Date Sun, 20 Jun 2004 23:15:38 -0300]/UNNAMED Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\04783400/[From 05655@wwrents246.wwrent.com.br][Date Sun, 20 Jun 2004 23:15:38 -0300]/message.scr Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\04783400 Mail: infected - 1, suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\04783400 CryptFF: infected - 1, suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0478600F.dat Infected: Email-Worm.Win32.Ronoper.t skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\048B0FC2 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\04AB2E2D Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\04AE0014 Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\04B47E4E Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\04B64226 Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\04E70E2D Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\04FA5B7C Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\050D13F6 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\051E2954 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\052C51E1 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\05354F3B Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\053F2E01 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\054F1F1F Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\056C18FE Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\058014E9 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\058F233E Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\059066D7/[From rdrnobre@sapo.pt][Date Sun, 13 Jun 2004 12:01:35 -0300]/UNNAMED/html Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\059066D7/[From rdrnobre@sapo.pt][Date Sun, 13 Jun 2004 12:01:35 -0300]/UNNAMED Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\059066D7/[From rdrnobre@sapo.pt][Date Sun, 13 Jun 2004 12:01:35 -0300]/message.pif Infected: Email-Worm.Win32.NetSky.r skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\059066D7 Mail: infected - 1, suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\059066D7 CryptFF: infected - 1, suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\05D32DD5 Infected: Trojan-Downloader.Win32.Dyfuca.ak skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\05DF27A9 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\06004448 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0615683C Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\06497783 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\064C31FF Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\067B1BA8 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\06854E4A Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\06FB2D7D Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\06FF2558 Infected: Email-Worm.Win32.Bagle.gen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\07137850 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\07343963.tmp Infected: Email-Worm.Win32.Hybris.b skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\075E6ABD Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\077C14FD/[From subdia@hotmail.com][Date Fri, 11 Feb 2005 08:40:29 -0500]/UNNAMED/html Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\077C14FD/[From subdia@hotmail.com][Date Fri, 11 Feb 2005 08:40:29 -0500]/UNNAMED Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\077C14FD Mail: suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\077C14FD CryptFF: suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\077D582E Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0782790C Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\078F2D51 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\079D332E Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\07A32E71 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\07A45003 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\07BE1FE6 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\07C016C7 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\07CD6EBA.dll Infected: not-a-virus:AdWare.Win32.BiSpy.b skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\07CD6EBA.exe Infected: not-a-virus:AdWare.Win32.BiSpy.f skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\07D018B7.exe Infected: not-a-virus:AdWare.Win32.BiSpy.f skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\07D312B2 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\07DD187E Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\07FE58B2 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\08222D25 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\085457D3.tmp/New Infected: Email-Worm.Win32.Nyxem.e skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\085457D3.tmp Mail: infected - 1 skipped

victorbrca
2006-04-22, 19:03
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\085457D3.tmp CryptFF: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\087B1317 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0887297C Infected: Email-Worm.Win32.Bagle.z skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\088C089F Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\08B14B4D Infected: Email-Worm.Win32.Bagle.z skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\08B62CF9 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\08BB4942 Infected: Email-Worm.Win32.Bagle.z skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\08C87134 Infected: Email-Worm.Win32.Bagle.z skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\093A78C0 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\094A2CCD Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\099248A6.tmp Infected: Email-Worm.Win32.Nyxem.d skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\09D5474D Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\09DE2CA1 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\09E968E0 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0A08775B Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0A573DAA.tmp Infected: Email-Worm.Win32.Bagle.gen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0A722C75 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0A7241F9 Infected: Email-Worm.Win32.NetSky.d skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0B062C49 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0B092B1C Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0B276D82 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0B803A77/[From nickveiga@zipmail.com.br][Date Mon, 17 May 2004 07:39:27 -0300]/UNNAMED/html Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0B803A77/[From nickveiga@zipmail.com.br][Date Mon, 17 May 2004 07:39:27 -0300]/UNNAMED Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0B803A77/[From nickveiga@zipmail.com.br][Date Mon, 17 May 2004 07:39:27 -0300]/message.scr Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0B803A77 Mail: infected - 1, suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0B803A77 CryptFF: infected - 1, suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0B9A2C1D Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0B9D3457 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0BB4336F Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0BB45A3E Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0BB939F5 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0BC81B2A Infected: Email-Worm.Win32.Bagle.gen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0BC85628 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0BD12D4F Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0BDB24F2 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0BE06B64 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0BE2260C Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0BE40411.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0BEF4DFD Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0BF42DB4 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0C076029 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0C091DE0 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0C0E0EFE/data.rtf .scr Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0C0E0EFE ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0C0E0EFE CryptFF: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0C155190 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0C297D88 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0C2A41BD Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0C2B7777 Infected: Email-Worm.Win32.NetSky.d skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0C2E2BF0 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0C4411A0 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0C4C23DD Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0C570D8A Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0C5C0803 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0C6E3371 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0C75348A Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0CAA4577.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0CC22BC4 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0CC27E0A Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0CE50A45 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0CFC46D1 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0D005A28 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0D135613 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0D287412 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0D304FF2 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0D4775D9 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0D562B98 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0D812CA4 Infected: Email-Worm.Win32.NetSky.d skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0D8E6A19 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0D973224.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0DA043E1 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0DF46021 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0E490AD7 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0E5A5628 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0E7D2B40 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0E7E3CB9 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0E8A3CA4 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0EAB20D5.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0EC14C30 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0ED10730 Infected: Email-Worm.Win32.NetSky.d skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0EF77AF8 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0F261BF7 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0F376DE5 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0F473FD3 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0F4A7D6F.zip/Matrix.class Infected: Trojan-Downloader.Java.OpenStream.c skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0F4A7D6F.zip ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0F4A7D6F.zip CryptFF: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0F5467C5 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0F5C16E5 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0F6539B3 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0F7261A5 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0F7B5F9A Infected: Email-Worm.Win32.NetSky.t skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0F9A3F6F Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0FA37D2C Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0FA529F6 Infected: Email-Worm.Win32.Bagle.z skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0FA52AE8 Infected: Trojan-Dropper.Win32.Delf.z skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0FA66B18 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0FAC5564 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0FB959D4 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0FC62547 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0FE76E13.tmp Infected: Email-Worm.Win32.Bagle.gen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0FFB450E Infected: Email-Worm.Win32.NetSky.t skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\10207176.htm Suspicious: Trojan-Downloader.JS.gen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\10223CE3 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\103638CD Infected: Email-Worm.Win32.NetSky.t skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\10392ABC Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\10460ABB Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\105906A5 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\105A78DD.tmp Infected: Email-Worm.Win32.Bagle.af skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\10745689 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\10842877 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\10947A65 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\10A54C53 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\10B27444 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\10B829CB Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\10C81A2B Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\10D96C19 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\10DB11A9 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\10E6140B Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\10F51949 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\10F665F9 Infected: Email-Worm.Win32.Bagle.z skipped

victorbrca
2006-04-22, 19:04
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\110737E7 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\111A33D1 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\114428AD Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\11612A64 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\11751E77 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\11772822 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\11833238 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\11B779C3 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\11C76162 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\11E97733 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\11F52A38 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\12100934 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\12623888.tmp/instant cast.txt .scr Infected: Email-Worm.Win32.Mabutu.a skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\12623888.tmp ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\12623888.tmp CryptFF: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\12892A0C Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\12B649BB Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\12BF7E0F Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\12D94DF2 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\12DA1A55 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\12F073D9 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\130E6DB9 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\130F43F3 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\13186CBE Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\131D29E0 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\13273224 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\133C40E8 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\133F1A7B Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\13691D0B Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\136C75D9 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\13B129B4 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\13B519B3 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\13E964B6.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\13EB3F9B Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\14060D0F Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\14270E04 Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\146626FA Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\14856D39 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\14960803 Infected: Email-Worm.Win32.NetSky.d skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\149A46C0 Infected: Email-Worm.Win32.Bagle.z skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\14B00F0B Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\14B47D30 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\14B569AB Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\14C56891 Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\14D8295C Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\14D85317 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\14E26271/[From 921.1077795127.4140@news.webking.cn][Date Fri, 2 Jul 2004 11:01:35 +0800]/UNNAMED/html Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\14E26271/[From 921.1077795127.4140@news.webking.cn][Date Fri, 2 Jul 2004 11:01:35 +0800]/UNNAMED Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\14E26271 Mail: suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\14E26271 CryptFF: suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\14F222FA Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\15061EE4 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\151A1ACF Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\152D16B9 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\15443CA0 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\154E1260 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1558388B Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\15636D50 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\156C2930 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\156F5E71 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\15785C67 Infected: Email-Worm.Win32.Bagle.z skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\157A3DDD Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\158326BF Infected: Email-Worm.Win32.Bagle.y skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\15850458 Infected: Email-Worm.Win32.Bagle.z skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\159163C3 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\159E0EB5 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\15AB33A7 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\15B439A3 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\15BA7082 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\15BF4ED4 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\15C416AB Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\15C6038A Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\15F0449E Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\15FB383A Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\16002904 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\16044088 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\160F743A Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\16115D71 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1611687A Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\16125E21 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\16196FB9 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\16213A68 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\162E625A Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\169428D8 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\16B3099B Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\16B73323 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\16BF0707.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\172828AC Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1788027C Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\17924CD4 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\17B25993 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\17BC2880 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\17D858DE Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\17E76381 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\17EC4401 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\17F552BD Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\180C78A4 Infected: Email-Worm.Win32.NetSky.d skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\18156B45 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\18277441 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\18502854 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\18523A09 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\18595A73 Infected: Email-Worm.Win32.NetSky.b skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\18707294.tmp/File-packed_dataInfo.exe Infected: Email-Worm.Win32.Sober.y skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\18707294.tmp ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\18707294.tmp CryptFF: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1872351A.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\189F5EEF Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\18B1298A Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\18B37CD2.tmp Infected: Email-Worm.Win32.Bagle.bo skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\18B83010 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\18D74AD4.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\18DB0EBB Infected: Email-Worm.Win32.NetSky.d skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\18E42827 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\191F2618 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1967346C/data.rtf .scr Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1967346C ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1967346C CryptFF: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\197827FB Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\197868F8 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\19851C20 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\19990CD4 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\19AF32BB Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\19B17982 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\19C658A2 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\19EB1227 Infected: not-a-virus:AdWare.Win32.Lop skipped

victorbrca
2006-04-22, 19:05
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1A0C27CF Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1A480420 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1A51082F Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1A5C5023 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1A717F68 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1A8D47D5 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1A9F27A3 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1AB0497A Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1AB61688.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1ADA1C53 Infected: Email-Worm.Win32.Bagle.gen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1ADF7233 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1B135AD6 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1B206F88 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1B332777 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1B387135 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1B4B6D20 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1B5F690A Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1B6412AE Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1B777BD0 Infected: Email-Worm.Win32.Bagle.z skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1B7E1952.tmp Infected: Email-Worm.Win32.Nyxem.e skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1BAF1972 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1BC7274B Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1BCE5FA9 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1BDE4C32 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1C5B271F Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1CAE696A Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1CBF60B0 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1CE02B82 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1CEF26F3 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1CF03B51.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1D15060B.tmp/File-packed_dataInfo.exe Infected: Email-Worm.Win32.Sober.y skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1D15060B.tmp ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1D15060B.tmp CryptFF: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1D1F1E81 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1D3A70C0 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1D3C77A1/Bill.txt .exe Infected: Email-Worm.Win32.NetSky.aa skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1D3C77A1 ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1D3C77A1 CryptFF: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1D5541B2 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1D5B0CE3 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1D673C8D Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1D8108C0 Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1D8326C7 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1D8B160E.tmp Infected: Email-Worm.Win32.Bagle.gen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1D8E30B1/document.txt .exe Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1D8E30B1 ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1D8E30B1 CryptFF: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1D9D06D2 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1D9D55AB Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1D9F029F Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1DA10D31/data.rtf .scr Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1DA10D31 ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1DA10D31 CryptFF: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1DAD3962 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1DAF548E Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1DAF583E Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1DC728A3 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1E6B2C05 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1E7E1CDD Infected: Email-Worm.Win32.Bagle.z skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1E8443B5 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1E915667 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1EA45251 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1EAB266F Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1EAC095A Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1EC64641 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1EF1798C Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1F15334A Infected: Email-Worm.Win32.Bagle.z skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1F363D40 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1F3F2643 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1F5941F6 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1F916EC1 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1FA46AAC Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1FAC5951 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1FD32617 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\200443F7 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\201D79DB Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\202316B1 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\202E019F Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\20710CEE.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\207F39C9.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\20906969 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\20A26BD1 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\20AB2949 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\20BC00E1 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\20D650C4 Infected: Email-Worm.Win32.Bagle.z skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\20DD71C0 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\20E378B6 Infected: Email-Worm.Win32.Bagle.z skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\21141955 Infected: Email-Worm.Win32.NetSky.d skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\21186103 Infected: Email-Worm.Win32.Bagle.z skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\213E1051 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\21553638 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\215B69B4 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\21604EED Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2168561C Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\21693223 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\218B61E1 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\21935A45 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\21AA7941 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\21AD19D1 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\21AD23D7 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\21C11FC1 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\21C77A0C Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\21CF5CC7/[From mailto@enchantedlearning.com][Date Mon, 17 May 2004 05:10:11 +1200]/UNNAMED/html Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\21CF5CC7/[From mailto@enchantedlearning.com][Date Mon, 17 May 2004 05:10:11 +1200]/UNNAMED Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\21CF5CC7/[From mailto@enchantedlearning.com][Date Mon, 17 May 2004 05:10:11 +1200]/message.scr Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\21CF5CC7 Mail: infected - 1, suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\21CF5CC7 CryptFF: infected - 1, suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\21EB47E4 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\21EE2483.tmp Infected: Email-Worm.Win32.Bagle.gen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\21FD2895 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\22102480 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\22274A66 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\223A5202 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\223B4651 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\22425548 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\22996BC8.tmp Infected: Email-Worm.Win32.Nyxem.e skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\22A94939 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\22C70EB4 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\22FC2E7B Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\23135462 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2316020F Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2340202F Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\23587582 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\23646E08 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\23756F62 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\237A70D2 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\237D0000 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\239165E6 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\23A81931 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\23D823A7 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\23DF32AC Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\23E37608 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2400224F Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\240C436E Infected: Email-Worm.Win32.Swen skipped

victorbrca
2006-04-22, 19:06
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\24236955 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2437653F Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\24496C0F Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\244A6129 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\245E5D14 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\24631497 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\247158FE/[From ecamoretto@bol.com.br][Date Fri, 21 May 2004 18:25:55 -0300]/UNNAMED/html Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\247158FE/[From ecamoretto@bol.com.br][Date Fri, 21 May 2004 18:25:55 -0300]/UNNAMED Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\247158FE/[From ecamoretto@bol.com.br][Date Fri, 21 May 2004 18:25:55 -0300]/message.scr Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\247158FE Mail: infected - 1, suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\247158FE CryptFF: infected - 1, suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\24736685 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\247B56F4/[From giselleazuma@yahoo.com.br][Date Fri, 21 May 2004 18:26:17 -0300]/document.zip/details.txt .pif Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\247B56F4/[From giselleazuma@yahoo.com.br][Date Fri, 21 May 2004 18:26:17 -0300]/document.zip Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\247B56F4 Mail: infected - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\247B56F4 CryptFF: infected - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\24947315/[From salim_ca@hotmail.com][Date Mon, 24 Jan 2005 12:48:41 -0500]/UNNAMED/html Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\24947315/[From salim_ca@hotmail.com][Date Mon, 24 Jan 2005 12:48:41 -0500]/UNNAMED Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\24947315 Mail: suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\24947315 CryptFF: suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\24A42F99.tmp Infected: Email-Worm.Win32.Bagle.gen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\24A86929 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\24AF6217 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\24B005A7 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\24B154AA Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\24C87A91 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2515581E Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\25576565 Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\255B5FA0 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\257B4E26 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2581089D Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\25A73921 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\25B71B94 Infected: Email-Worm.Win32.NetSky.d skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\25C678EB Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\25E1442D Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\26114B88 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\26350134 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\26473A35 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\26560F3C Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\26824635 Infected: Email-Worm.Win32.Bagle.z skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\26923A31/[From lawton@opet.com.br][Date Sat, 19 Jun 2004 22:52:17 -0300]/data.doc Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\26923A31 Mail: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\26923A31 CryptFF: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\269A73F8 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\26A60918 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\26DD6E4F Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\26EC37CC Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\273469A5 Infected: Email-Worm.Win32.NetSky.af skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\27486419 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\27563FDF Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\276F32B9 Infected: Email-Worm.Win32.Bagle.gen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\27716436 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\278A532F Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\27A55910 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\27AE0CC0 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\27E82CD1 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\27EC3549 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\27F7543A Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\28214AC3.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\282750F4.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\28305E02.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\28882818 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\289727A9 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\28A26DFA Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\28A42908 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\28A5445B Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\28B91106.dll Infected: Trojan-Clicker.Win32.Small.jf skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\28B913E1 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\28CD6BCC Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\28D70DC0 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\28ED33A7 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\293A50F3 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\29A37900 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\29D03FAC Infected: Email-Worm.Win32.NetSky.d skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\29F40D84 Infected: Email-Worm.Win32.NetSky.d skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2A045F72 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2A3202E0/document.txt .exe Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2A3202E0 ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2A3202E0 CryptFF: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2A5E08CA Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2A671B19 Infected: Email-Worm.Win32.NetSky.d skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2A7718EE Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2AA348F8 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2AFF04A8 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2B185936 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2B1F4EA7 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2B3B5D4B Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2B5061A7 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2BA218F0 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2C577630 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2C6338CD Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2C641863 Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2C7431AF Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2C973034 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2CA168E8 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2CBE0A01 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2CBE4014 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2CC0396C Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2CC333A7 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2D056651 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2D311D83 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2D695E3D/[From mclightnin@hotmail.com][Date Fri, 21 Jan 2005 12:32:33 +0400]/UNNAMED/html Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2D695E3D/[From mclightnin@hotmail.com][Date Fri, 21 Jan 2005 12:32:33 +0400]/UNNAMED Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2D695E3D Mail: suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2D695E3D CryptFF: suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2D6C4D65 Infected: Email-Worm.Win32.Bagle.au skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2D766138 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2DA038E0 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2DB45672 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2DDC2B53 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2DEE48A9.tmp Infected: Email-Worm.Win32.Bagle.gen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2E097D8B.anr Infected: Trojan-Downloader.Win32.Ani.c skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2E0D2787.htm Suspicious: Exploit.HTML.Mht skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2E0E2368/Details.txt .exe Infected: Email-Worm.Win32.NetSky.aa skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2E0E2368 ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2E0E2368 CryptFF: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2E1C28A3 Infected: Email-Worm.Win32.Bagle.at skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2E2933A0.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2E554F6E Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2E624693 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2E8F108E Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2E9F08D7 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2EBB2789 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2ECD3917 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2EE3290A Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F0D3BFF Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F2074D1/data.rtf .scr Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F2074D1 ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F2074D1 CryptFF: infected - 1 skipped

victorbrca
2006-04-22, 19:08
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F4B16A3 Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F583E94/[From s_talaat@yahoo.com][Date Mon, 7 Feb 2005 09:21:26 -0500]/UNNAMED/html Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F583E94/[From s_talaat@yahoo.com][Date Mon, 7 Feb 2005 09:21:26 -0500]/UNNAMED Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F583E94 Mail: suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F583E94 CryptFF: suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F733206 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F9F58CF Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FA87A14 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FCD0A18 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FCE3D33 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FD9280E Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FED3DC8 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3007135A.anr Infected: Trojan-Downloader.Win32.Ani.c skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\300A1F38 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\300E34D8 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\30176548.jar/BlackBox.class Infected: Exploit.Java.ByteVerify skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\30176548.jar/VerifierBug.class Infected: Exploit.Java.ByteVerify skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\30176548.jar/Beyond.class Infected: Trojan-Downloader.Java.OpenConnection.aa skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\30176548.jar ZIP: infected - 3 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\30176548.jar CryptFF: infected - 3 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\303F1E15 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\30650ECA Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\309E28C7 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\309F2332 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\30A5141D Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\310B0A24 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\313700EA/disco.doc.com Infected: Email-Worm.Win32.NetSky.b skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\313700EA ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\313700EA CryptFF: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\31603061.tmp Infected: Email-Worm.Win32.Nyxem.e skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3172002C Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\319D78BF Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\31B3196E Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\31B544FB Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\31D87633 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\31DA1CAB Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\321F56A4 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\324A5193 Infected: Email-Worm.Win32.Bagle.z skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\329848F4 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\329C48B7 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\32C26889 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\32D42858 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\32F67928 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\330422FE.tmp Infected: Trojan-Downloader.Win32.PassAlert.i skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\337158AA Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\338B53DE Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\339B18AF Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\33A755A0 Infected: Email-Worm.Win32.NetSky.d skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\341F48CB Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\34303A2C.anr Infected: Trojan-Downloader.Win32.Ani.c skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\34303A2C.htm Infected: Trojan-Downloader.JS.Weis.b skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\34526F7F Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\34973334 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\349A68A7 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\34CE38EB Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\34E002B9 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\35083895 Infected: Email-Worm.Win32.Bagle.au skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\35621C43.class Infected: Trojan.Java.ClassLoader.h skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\359A389E Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\363D454D Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\368C38E6.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\36990896 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\36A35ECD.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\36C402A9.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\36C94C0F Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\373179FA.tmp Infected: Email-Worm.Win32.Nyxem.e skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\37341322 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\37841A1A.tmp/File-packed_dataInfo.exe Infected: Email-Worm.Win32.Sober.y skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\37841A1A.tmp ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\37841A1A.tmp CryptFF: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3798588E Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\37A57C62 Infected: Email-Worm.Win32.Tanatos.a skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\37CC66D6 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\37D637D6/concert.pif Infected: Email-Worm.Win32.NetSky.b skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\37D637D6 ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\37D637D6 CryptFF: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\387F6AC1 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3885621B Infected: Email-Worm.Win32.Bagle.z skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\38A73EBD Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\39130286/data.rtf .scr Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\39130286 ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\39130286 CryptFF: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\391F7ECC Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\392E5AE2 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\394028A0 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\396D0DD7.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\398339D1 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\39BC7A75 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\39CA2C7E.tmp Infected: Email-Worm.Win32.Bagle.gen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\39CE37DB Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\39DC1E51 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\39DC4B02 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3A1D4451 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3A54415D Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3A856617.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3A8B3B23 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3A9D77FD Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3AB757C5 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3AEE4B21 Infected: Backdoor.Win32.Ruledor.c skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3B036E05 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3B125780 Infected: Email-Worm.Win32.NetSky.b skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3B29198D/document.txt .exe Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3B29198D ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3B29198D CryptFF: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3B403F74 Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3B436970/[From yataay@yahoo.com][Date Mon, 14 Feb 2005 10:19:55 -0500]/UNNAMED/html Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3B436970/[From yataay@yahoo.com][Date Mon, 14 Feb 2005 10:19:55 -0500]/UNNAMED Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3B436970 Mail: suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3B436970 CryptFF: suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3B4B46AB Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3B4D13F1 Infected: Email-Worm.Win32.Bagle.z skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3B60457A Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3B631E71 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3B69640C Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3B72417B Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3B8F7D60 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3B94143C Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3BB70530 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3BBB6DB6 Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3BCF07FB Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3BD05A14 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3BD723FD Infected: Email-Worm.Win32.Bagle.au skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3BF847D9 Infected: Email-Worm.Win32.Bagle.at skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3C056FCA Infected: Email-Worm.Win32.Bagle.au skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3C36501B Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3C9C4623 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3CA05644 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3CC07A20 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3CE80493 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3CED6421 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3CFF2A7A/ranking.htm.pif Infected: Email-Worm.Win32.NetSky.b skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3CFF2A7A ZIP: infected - 1 skipped

victorbrca
2006-04-22, 19:10
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3CFF2A7A CryptFF: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3D0104A5.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3D023C2B Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3D683232 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3DAC6114.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3DAF06A1 Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3DE91E0B Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3E2A3C70 Infected: Email-Worm.Win32.Bagle.z skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3E4B6A12.tmp/File-packed_dataInfo.exe Infected: Email-Worm.Win32.Sober.y skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3E4B6A12.tmp ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3E4B6A12.tmp CryptFF: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3E5B323A Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3E5D59DB.tmp Infected: Email-Worm.Win32.Bagle.gen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3E725821 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3EB93B9E/ranking.htm.pif Infected: Email-Worm.Win32.NetSky.b skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3EB93B9E ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3EB93B9E CryptFF: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3EEB5D1A Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3F232C13.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3F2C3BC1.htm Infected: Trojan-Clicker.JS.Linker.k skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3F460BA4.htm Infected: Trojan-Downloader.JS.Weis.b skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3F4A35A1.htm Infected: Virus.Win32.Bube.k skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3F50099A.zip/GetAccess.class Infected: Trojan.Java.ClassLoader.c skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3F50099A.zip/InsecureClassLoader.class Infected: Exploit.Java.ByteVerify skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3F50099A.zip/Dummy.class Infected: Trojan.Java.ClassLoader.Dummy.a skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3F50099A.zip/Installer.class Infected: Trojan-Downloader.Java.OpenConnection.v skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3F50099A.zip ZIP: infected - 4 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3F50099A.zip CryptFF: infected - 4 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3F543396.cla Infected: Trojan.Java.ClassLoader.c skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3F543396.tmp/web.exe Infected: Virus.Win32.Bube.k skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3F543396.tmp/Counter.class Infected: Trojan.Java.Femad skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3F543396.tmp/VerifierBug.class Infected: Trojan.Java.Femad skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3F543396.tmp/Worker.class Infected: Trojan.Java.Femad skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3F543396.tmp/Xeyond.class Infected: Trojan.Java.Femad skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3F543396.tmp ZIP: infected - 5 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3F543396.tmp CryptFF: infected - 5 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3F575D92.cla Infected: Trojan.Java.Femad skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3F5A078F.cla Infected: Exploit.Java.ByteVerify skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3F5D318B.cla Infected: Trojan.Java.Femad skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3F6063E5 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3F6264C8 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3F745772.htm Suspicious: Trojan-Downloader.JS.gen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3F8D069A Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3F994D3A Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3FC35A10 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3FED2B0D Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\403870BA Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\403C248E Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\40483D5B Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\404942A8 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\404E4553 Infected: Email-Worm.Win32.NetSky.d skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\40607A9B Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\40654BA3 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\409818E0 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\40A40F87/details.txt .pif Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\40A40F87 ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\40A40F87 CryptFF: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\40BC2592 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\40C10966 Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\40C75D5F/[From engineer_zaidi@yahoo.com][Date Thu, 10 Feb 2005 09:07:41 -0500]/UNNAMED/html Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\40C75D5F/[From engineer_zaidi@yahoo.com][Date Thu, 10 Feb 2005 09:07:41 -0500]/UNNAMED Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\40C75D5F Mail: suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\40C75D5F CryptFF: suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\40C874C0.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\40D82F4D Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\40DB594A/[From greatcustomer@msn.com][Date Thu, 10 Feb 2005 23:09:21 -0500]/UNNAMED/html Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\40DB594A/[From greatcustomer@msn.com][Date Thu, 10 Feb 2005 23:09:21 -0500]/UNNAMED Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\40DB594A Mail: suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\40DB594A CryptFF: suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\40F62D7C Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4172759D Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4185753A Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\41BE0EBB Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\42921377 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\42A85B6B Infected: not-a-virus:AdWare.Win32.BiSpy.m skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\42D7572C Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\43030517 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\437425FA Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\438B2DD9 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\444A5F4D.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\44711D48 Infected: Email-Worm.Win32.NetSky.d skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\448131C2 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4489264D.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\44A85F52 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\44B9198D Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\44D774C5 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\45037023/document.txt .exe Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\45037023 ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\45037023 CryptFF: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\45097007 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4522410E Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\45504914 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\45564F72 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\456E42F4/part2.doc.com Infected: Email-Worm.Win32.NetSky.b skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\456E42F4 ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\456E42F4 CryptFF: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\45AC1292 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\45E13258 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\45FE2C38 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\46053F93 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\46122822 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\46227A10 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\463C49F3 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\46494389 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\464971E5 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\464B4221 Infected: Email-Worm.Win32.NetSky.d skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\466341C8 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\46796BB5 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\467A3953 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\467A67AF Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\46910D96 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\46942A03 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4694316A Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\46AB14B6.tmp Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\46B32FB4 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\46FA200B Infected: Trojan-Spy.Win32.Briss.j skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\474111C8 Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\47601612 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\476C02DC.tmp/File-packed_dataInfo.exe Infected: Email-Worm.Win32.Sober.y skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\476C02DC.tmp ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\476C02DC.tmp CryptFF: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\47804C97 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4788088B Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\47900DC0 Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\47C60C1A Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\47CE7663 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\47FC4230 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\480A6798.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\48126817 Infected: Email-Worm.Win32.Swen skipped

victorbrca
2006-04-22, 19:11
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\48240A18 Infected: Email-Worm.Win32.NetSky.d skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\482C0222 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\483C737C Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4883009F.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\48875AFF Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\48927829 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\489923CE Infected: Email-Worm.Win32.Bagle.t skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\489B6156/[From mzia@canada.com][Date Wed, 9 Feb 2005 19:53:28 -0500]/UNNAMED/html Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\489B6156/[From mzia@canada.com][Date Wed, 9 Feb 2005 19:53:28 -0500]/UNNAMED Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\489B6156 Mail: suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\489B6156 CryptFF: suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\48E17CF3 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\48F86E31 Infected: Trojan-Downloader.Win32.Small.en skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\48FF76D3 Infected: Email-Worm.Win32.NetSky.d skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\493505C4 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\494901AE Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\49884637 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\49B26573 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\49F72927 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4A7501E7/mail2.doc.scr Infected: Email-Worm.Win32.NetSky.b skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4A7501E7 ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4A7501E7 CryptFF: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4A9F5E13/[From kosta2003@bigfoot.com][Date Mon, 24 Jan 2005 10:21:29 -0500]/UNNAMED/html Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4A9F5E13/[From kosta2003@bigfoot.com][Date Mon, 24 Jan 2005 10:21:29 -0500]/UNNAMED Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4A9F5E13 Mail: suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4A9F5E13 CryptFF: suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4AC16923 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4B0D53E6 Infected: Email-Worm.Win32.Bagle.gen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4B1351AA Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4B7E6141 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4BB74C64 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4BBF3437 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4BC241CB Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4C221F74 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4C294203 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4C49731A Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4C4A5EC0 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4C7031EC Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4C831440.class Infected: Exploit.Java.ByteVerify skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4C9E1239 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4CB23C7E Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4CB52931 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4CDC4A76 Infected: Email-Worm.Win32.NetSky.d skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4CE059F1 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4CF355DC Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4CF4366D Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4D0751C6 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4D1A4DB1 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4D1F220D Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4D4E33E0 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4D590CD1 Infected: Email-Worm.Win32.NetSky.af skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4D741428 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4D793032.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4D8F7B98 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4D9A434E Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4DC30A36 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4DEC6455 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4DF62610 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4E0167E2.anr Infected: Trojan-Downloader.Win32.Ani.c skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4E1749EC Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4E5C5ADE Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4EA11E93 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4EC1615B Infected: Email-Worm.Win32.Bagle.gen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4EC2209D Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4EC66E5D/details.txt .pif Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4EC66E5D ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4EC66E5D CryptFF: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4ED6404B Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4EDC2EF1 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4EDF5B3A Infected: Email-Worm.Win32.Bagle.gen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4F01621C Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4F2022F3 Infected: Email-Worm.Win32.Bagle.gen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4F3074E1 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4F4E6EC0 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4F5E40AE Infected: Email-Worm.Win32.Bagle.z skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4F6E129C Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4F886280 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4FC02C43 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4FC073BB Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4FCA5577.tmp Infected: Email-Worm.Win32.Bagle.gen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4FD07E31 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4FE01797 Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\500173FB Infected: Email-Worm.Win32.Bagle.z skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\503269C5 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\503841D0 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\50433BB3 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\50530DA1 Infected: Email-Worm.Win32.Bagle.z skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\505D0B96 Infected: Email-Worm.Win32.Bagle.z skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\505F47B8.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\507D4197.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\508B484A Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\50A80CD5/[From "Taislazarin" <taislazarin@hotmail.com>][Date Fri, 28 Jan 2005 09:42:18 -0300]/Jol03.cpl Infected: Email-Worm.Win32.Bagle.at skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\50A80CD5 Mail: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\50A80CD5 CryptFF: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\50BF373E Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\50C930B1/[From "Taislazarin" <taislazarin@hotmail.com>][Date Fri, 28 Jan 2005 16:51:27 -0300]/siupd02.cpl Infected: Email-Worm.Win32.Bagle.at skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\50C930B1 Mail: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\50C930B1 CryptFF: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\50D053E2 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\50D3376F Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\50F62393 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\51187B23 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\51334C1D Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\513811C7 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\517174A7 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\517E4403 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\51B05297.tmp Infected: Email-Worm.Win32.Bagle.gen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\52246602 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\522D3424 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\52347B08 Infected: Email-Worm.Win32.Bagle.z skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\523761BF Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\528A5C0A Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\52DC2445 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\52E07A3E Infected: Email-Worm.Win32.Bagle.z skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\52E314FB/lantrocidade.rtf.scr Infected: Email-Worm.Win32.NetSky.af skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\52E314FB ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\52E314FB CryptFF: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\52F05211 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\530D36CC Infected: Email-Worm.Win32.Bagle.gen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\53150153.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\532706AF Infected: Email-Worm.Win32.Bagle.gen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\533631B7 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\534A13FF Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\53533F10.tmp Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\53564819 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\53BD3E20 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\53CD211B.tmp Infected: Email-Worm.Win32.Bagle.ai skipped

victorbrca
2006-04-22, 19:12
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\53D64E81.tmp/document.txt .exe Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\53D64E81.tmp ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\53D64E81.tmp CryptFF: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\53EA057A Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\53F01E64.tmp Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\53FA2DF9 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\54031A4E.tmp/[From cristiane@semic.com.br][Date Tue, 8 Nov 2005 09:41:08 -0200]/UNNAMED/html Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\54031A4E.tmp/[From cristiane@semic.com.br][Date Tue, 8 Nov 2005 09:41:08 -0200]/UNNAMED Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\54031A4E.tmp Mail: suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\54031A4E.tmp CryptFF: suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\540832A0 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\54233428 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\543501AF Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\54467EE3 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\546622BF Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5466657A Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\54892A2F Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\54A40E04 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\54A5452B.tmp/File-packed_dataInfo.exe Infected: Email-Worm.Win32.Sober.y skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\54A5452B.tmp ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\54A5452B.tmp CryptFF: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\54CB17A9 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\54E2368E Infected: Trojan-Spy.Win32.Briss.i skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\54F5397A Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\551D314F Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\552269A8.dll Infected: not-a-virus:RemoteAdmin.Win32.RAdmin.20 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\552513A4.exe Infected: not-a-virus:RemoteAdmin.Win32.RAdmin.21 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\552B03BF Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\552C679D.dll Infected: not-a-virus:RemoteAdmin.Win32.RAdmin.20 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\552C679D.exe Infected: not-a-virus:RemoteAdmin.Win32.RAdmin.21 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\553451A7 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\553C25EB Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5542337D Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\554C77D9/[From jrui@informal.com.br][Date Fri, 14 May 2004 06:35:47 -0300]/email.txt.scr Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\554C77D9 Mail: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\554C77D9 CryptFF: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\55635759 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5574695B Infected: Email-Worm.Win32.NetSky.d skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\557A7D40 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\557C2CDA Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\557F1CE3 Infected: Virus.Win32.FunLove.4070 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\55944D23 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\55A27E1B.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\55A83A1F Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\55AD407C/[From e2b0d@posting.google.com][Date Sat, 29 May 2004 16:19:14 +0200]/UNNAMED/html Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\55AD407C/[From e2b0d@posting.google.com][Date Sat, 29 May 2004 16:19:14 +0200]/UNNAMED Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\55AD407C/[From e2b0d@posting.google.com][Date Sat, 29 May 2004 16:19:14 +0200]/message.scr Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\55AD407C Mail: infected - 1, suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\55AD407C CryptFF: infected - 1, suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\55C1708F Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\55CD6458 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\561F0BDC Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\562001AD Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5633219F Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\565E4996 Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\569C4FEF Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\56A91DA0 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\56B226FE Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\56BE5B6B Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\56C5654C Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\56C771C0 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\56D2766D Infected: Email-Worm.Win32.Bagle.gen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\56DD3D66 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\56FA3746 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\571B5B22 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\57337197 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\573B463B Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5772120A.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\57CC07AE Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\57EA365C Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\57F3096A Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\580D10E2 Infected: Email-Worm.Win32.Bagle.y skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5832418E Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\58384D1F Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\58704DC4 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\587E05B3/[From abuse@gov.us][Date Mon, 24 May 2004 09:41:55 -0300]/abuselist_victorbrca.zip/details.txt .pif Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\587E05B3/[From abuse@gov.us][Date Mon, 24 May 2004 09:41:55 -0300]/abuselist_victorbrca.zip Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\587E05B3 Mail: infected - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\587E05B3 CryptFF: infected - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5899267D Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\590152C2 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\59311186 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5932694B.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\593A4F76/[From suwehbi@uai.com.br][Date Mon, 24 May 2004 09:42:00 -0300]/UNNAMED/html Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\593A4F76/[From suwehbi@uai.com.br][Date Mon, 24 May 2004 09:42:00 -0300]/UNNAMED Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\593A4F76/[From suwehbi@uai.com.br][Date Mon, 24 May 2004 09:42:00 -0300]/message.scr Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\593A4F76 Mail: infected - 1, suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\593A4F76 CryptFF: infected - 1, suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5947169D Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\594B2164 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\59540503 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5961474B Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\596B4540/[From f138vurwcy7rjcxtnif00000e90@hotmail.com][Date Mon, 24 May 2004 10:09:45 -0300]/message.zip/details.txt .pif Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\596B4540/[From f138vurwcy7rjcxtnif00000e90@hotmail.com][Date Mon, 24 May 2004 10:09:45 -0300]/message.zip Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\596B4540 Mail: infected - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\596B4540 CryptFF: infected - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\59754335/[From profissionalderh@gruposabril.com.br][Date Mon, 24 May 2004 10:10:05 -0300]/UNNAMED/html Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\59754335/[From profissionalderh@gruposabril.com.br][Date Mon, 24 May 2004 10:10:05 -0300]/UNNAMED Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\59754335/[From profissionalderh@gruposabril.com.br][Date Mon, 24 May 2004 10:10:05 -0300]/message.scr Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\59754335 Mail: infected - 1, suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\59754335 CryptFF: infected - 1, suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\597F412A/[From MAILER-DAEMON@mj.gov.br (Mail Delivery System)][Date Mon, 24 May 2004 11:53:17 -0300 (BRT)]/UNNAMED/html Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\597F412A/[From MAILER-DAEMON@mj.gov.br (Mail Delivery System)][Date Mon, 24 May 2004 11:53:17 -0300 (BRT)]/UNNAMED Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\597F412A/[From MAILER-DAEMON@mj.gov.br (Mail Delivery System)][Date Mon, 24 May 2004 11:53:17 -0300 (BRT)]/message.scr Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\597F412A Mail: infected - 1, suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\597F412A CryptFF: infected - 1, suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\598505F8.tmp Infected: Email-Worm.Win32.Bagle.gen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5A2507F8 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5A271093 Infected: Email-Worm.Win32.NetSky.b skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5A30617E Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5A451936 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5A536BA6 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5A6A65FA Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5A995D45.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5AAA017C Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5AC16AFE Infected: Email-Worm.Win32.Bagle.z skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5AFB3C1F Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5B0906AF Infected: Email-Worm.Win32.Bagle.z skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5B227CA7 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5B2E68B5 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5B2F3176 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5B4164A0 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5B5F7C86/website.htm.exe Infected: Email-Worm.Win32.NetSky.b skipped

victorbrca
2006-04-22, 19:12
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5B5F7C86 ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5B5F7C86 CryptFF: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5B7D7666 Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5B8511D2 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5B86745B Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5B9D1A42 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5BAA4234 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5BC33A5C Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5C2F016E Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5C333F65.dll Infected: not-a-virus:RemoteAdmin.Win32.RAdmin.20 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5C637E21.anr Infected: Trojan-Downloader.Win32.Ani.c skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5C690ED0 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5C767A0C.htm Infected: Trojan-Clicker.JS.Linker.k skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5C792408.anr Infected: Trojan-Downloader.Win32.Ani.c skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5C7D4E05.htm Infected: Trojan-Downloader.JS.Weis.b skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5C807801.class Infected: Trojan.Java.ClassLoader.h skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5C807801.zip/GetAccess.class Infected: Trojan.Java.ClassLoader.c skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5C807801.zip/InsecureClassLoader.class Infected: Exploit.Java.ByteVerify skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5C807801.zip/Dummy.class Infected: Trojan.Java.ClassLoader.Dummy.a skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5C807801.zip/Installer.class Infected: Trojan-Downloader.Java.OpenConnection.v skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5C807801.zip ZIP: infected - 4 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5C807801.zip CryptFF: infected - 4 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5C874BFA.class Infected: Trojan.Java.Femad skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5C8A75F6.class Infected: Trojan.Java.ClassLoader.Dummy.a skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5C8D1FF3.class Infected: Trojan.Java.Femad skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5C9C7ED6 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5CE1428B Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5CEC618A.anr Infected: Trojan-Downloader.Win32.Ani.c skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5CEC618A.htm Infected: Trojan-Clicker.JS.Linker.k skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5CF84873 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5CFB4C02 Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5D036F66.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5D2E5166 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5DA73894 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5DB42201 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5DD31F3E Infected: Email-Worm.Win32.Bagle.z skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5E073F04 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5E1B1808 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5E5528B5 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5E5632F3 Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5E5F6C12 Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5E7756CF/[From webhelp.njoyn@cgi.com][Date Mon, 24 Jan 2005 22:07:49 -0500]/UNNAMED/html Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5E7756CF/[From webhelp.njoyn@cgi.com][Date Mon, 24 Jan 2005 22:07:49 -0500]/UNNAMED Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5E7756CF Mail: suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5E7756CF CryptFF: suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5E810E10 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5E847748.class Infected: Trojan.Java.ClassLoader.d skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5E85597C Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5EE70417 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5EEA57C2.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5EEF0F1B.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5F0143E3 Infected: Email-Worm.Win32.Bagle.ay skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5F0418D5 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5F0B659D Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5F135B66 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5F1C378B Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5F2C7156 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5F2F3376 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5F4D7A1F Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5F581F1B Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5F773992 Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5F7F4166.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5F9E5AAD/bingos!.bat Infected: Email-Worm.Win32.NetSky.af skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5F9E5AAD ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5F9E5AAD CryptFF: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5FB37026 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5FF65CD0 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6019662E Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6024289D Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\602B414D Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\60347A8B Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\604B2072 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\605B7260 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6092324C Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\60943FD2 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\60A95833 Infected: Email-Worm.Win32.Bagle.z skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\60B66BF5 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\60B92A21 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\60CC76A0 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\60CD260B Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\60DA4DFD Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\60EE49E7 Infected: Email-Worm.Win32.Bagle.z skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\60F73A94.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\60F9426E Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\610D3E59 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\61270E3C Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\612A1145 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\612F44E7 Infected: Email-Worm.Win32.Bagle.z skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\613B0A26 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6152300D Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\615E593B Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\617253E9 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\617F7BDB Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6185510F Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\618A37F6 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\61A020F3 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\61B31CDD Infected: Email-Worm.Win32.NetSky.t skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\61C46ECB Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\61D76AB6 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\622A613D Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\62396803 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\626033F3 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\626615A0 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\627A03D6 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\63293135 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\634B0AE7.zip/Matrix.class Infected: Trojan-Downloader.Java.OpenStream.c skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\634B0AE7.zip ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\634B0AE7.zip CryptFF: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\63643ACC Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\639F5C69.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\63BC50D2 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\64011486 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\64122AED Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\64254A17 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6428012D Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\64C11B0D Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\64DD50EE Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\64FA5B4C Infected: Email-Worm.Win32.Swen skipped

victorbrca
2006-04-22, 19:13
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\65275125 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\65371116 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\656F0B2E Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\65714B2B.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\657C3E85/grana!!.htm.bat Infected: Email-Worm.Win32.NetSky.af skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\657C3E85 ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\657C3E85 CryptFF: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\65876166.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\65A660D5/[From a171722@bandeirantes.com.br][Date Fri, 11 Jun 2004 01:40:10 -0300]/websites03.zip/details.txt .pif Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\65A660D5/[From a171722@bandeirantes.com.br][Date Fri, 11 Jun 2004 01:40:10 -0300]/websites03.zip Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\65A660D5 Mail: infected - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\65A660D5 CryptFF: infected - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\65D75787 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\66150011 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\661B5B48 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6626211D Infected: Trojan-Downloader.Win32.Dyfuca.ak skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6626383F Infected: Email-Worm.Win32.Bagle.gen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\66342D62 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\664A75EF Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\664F56F7.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\666B6767 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\66A71870 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\66B240B8 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\66FE4A2C Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\67267114 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\67411E06 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\67470B43 Infected: Email-Worm.Win32.NetSky.d skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\676F110D.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\67987F57 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\67E620D3.exe Infected: Trojan-Downloader.Win32.PassAlert.i skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6825410C Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\682C465D Infected: Email-Worm.Win32.NetSky.b skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\68425841 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\686D647C Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\68AB09F2 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\68CF70FA.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\68DE5AF5.tmp Infected: Email-Worm.Win32.NetSky.af skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\68E20EB1 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\68FF0891 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\690310C0.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\69162E78 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\69213D04 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\69241104 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\69307E5B Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\69455DFF Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\69472442 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\69643D8F Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\696E1C17 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\698541F8 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\698F3FF3 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\69AB5407 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\69CF2D25 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\69D555A9 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\69D76FA8 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6A01117A Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6A114A0E Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6A144C3F Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6A2360FC Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6A496C06 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6A690FE2 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6A774016 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6A7E1D45 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6AD04DBB.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6ADD22CE Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6ADD361D Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6B113047 Infected: Email-Worm.Win32.Bagle.gen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6B2230F4 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6B226682 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6B2C0D66 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6B3E7A1D Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6B422665 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6B432C25 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6B482327 Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6BA9222D Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6BC134A2/[From kostamom@bigfoot.com][Date Sun, 13 Feb 2005 20:07:55 -0500]/UNNAMED/html Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6BC134A2/[From kostamom@bigfoot.com][Date Sun, 13 Feb 2005 20:07:55 -0500]/UNNAMED Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6BC134A2 Mail: suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6BC134A2 CryptFF: suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6BCB3297/document.txt .exe Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6BCB3297 ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6BCB3297 CryptFF: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6BD37175 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6BEF0070/data.rtf .scr Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6BEF0070 ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6BEF0070 CryptFF: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6BF97E65 Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6BFF525E/[From avin54br2000@yahoo.com][Date Sun, 13 Feb 2005 22:58:15 -0500]/UNNAMED/html Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6BFF525E/[From avin54br2000@yahoo.com][Date Sun, 13 Feb 2005 22:58:15 -0500]/UNNAMED Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6BFF525E Mail: suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6BFF525E CryptFF: suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6C045716 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6C101834 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6C154D5C Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6C2100EC Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6C8C0EEE Infected: Email-Worm.Win32.NetSky.d skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6CA47C21 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6CC52C4B Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6CCF0EAE Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6CF603DF Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6D407011.tmp Infected: Email-Worm.Win32.Bagle.gen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6D547F5E Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6DD368E5 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6DD45FC6 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6DD473CC Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6E196581 Infected: Virus.Win32.FunLove.4070 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6E2020DB Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6E24028B Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6E333564 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6E494284 Infected: Trojan-Clicker.Win32.Delf.r skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6E4C6C81 Infected: Trojan-Spy.Win32.Briss.e skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6E4F167D Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6E52407A Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6E566A76 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6E591472 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6E5C3E6F Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6E60686B Infected: Trojan-Downloader.Win32.Small.en skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6E631268 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6E663C64 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6E696660 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6E6D105D Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6E703A59 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6E736456 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6E760E52 Infected: not-a-virus:AdWare.Win32.Lop skipped

victorbrca
2006-04-22, 19:14
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6E7A384E Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6E7D624B Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6E800C47 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6E833644 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6E876040 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6E8A0A3C Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6E8D3439 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6E915E35 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6E940832 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6E97322E Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6E9A5C2A Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6E9E0627 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6EA13023 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6EA45A20 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6EA7041C Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6EAB2E18 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6EAE5815 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6EB10211 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6EB42C0E Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6EB8560A Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6EBA7561.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6EBB0007 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6EC253FF Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6EC57DFC Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6EC827F8 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6ECB51F5 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6ECF7BF1 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6ED225ED Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6ED54FEA Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6ED879E6 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6EDC23E3 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6EDF4DDF Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6EE277DB Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6EE521D8 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6EE94BD4 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6EEC75D1 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6EED77C7/Part-2.txt .exe Infected: Email-Worm.Win32.NetSky.aa skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6EED77C7 ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6EED77C7 CryptFF: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6EEF1FCD Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6EF349C9 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6EF673C6 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6EF91DC2 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6EFC47BF Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F0071BB Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F031BB7 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F0645B4 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F096FB0 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F0D19AD Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F1043A9 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F136DA5 Infected: Trojan-Spy.Win32.Briss.j skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F1617A2 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F1A419E Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F1D6B9B Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F1E61AE.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F1F70D3 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F201597 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F233F94 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F276990 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F2A138C Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F2D3D89 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F316785 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F3359BA Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F341182 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F373B7E Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F3A657A Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F3E0F77 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F413973 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F446370 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F4655A4/[From ccap@cibc.com][Date Wed, 9 Feb 2005 11:58:48 -0500]/UNNAMED/html Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F4655A4/[From ccap@cibc.com][Date Wed, 9 Feb 2005 11:58:48 -0500]/UNNAMED Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F4655A4 Mail: suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F4655A4 CryptFF: suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F470D6C Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F4B3768 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F4E6165 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F510B61 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F54355E Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F644F84/document.txt .exe Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F644F84 ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F644F84 CryptFF: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F6F1E07 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F8C2F5D Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F9A3E44.htm Suspicious: Trojan-Downloader.JS.gen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6FB60CED Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6FCB5BEE Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6FD406CD Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\70005A00 Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\70196F8D Infected: Email-Worm.Win32.NetSky.d skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\701E40CB Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\70291D3C Infected: Trojan-Dropper.Win32.Delf.z skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\702E25CE/[From o1.179629@twister.tampabay.rr.com][Date Thu, 16 Sep 2004 11:41:28 -0500]/UNNAMED/html Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\702E25CE/[From o1.179629@twister.tampabay.rr.com][Date Thu, 16 Sep 2004 11:41:28 -0500]/UNNAMED Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\702E25CE Mail: suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\702E25CE CryptFF: suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\703B1F7D Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\703B4DC0/data.rtf .scr Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\703B4DC0 ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\703B4DC0 CryptFF: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\70446830.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\705B0E17.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\706472B1 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\706745C6 Infected: Trojan-Dropper.Win32.Delf.z skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\707F4B2F Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\709F27C0 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\70D0170D Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\70D05D74 Infected: Email-Worm.Win32.NetSky.d skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\70D85606.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\70E90F9E Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\70E915CE Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\710F1FC8.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\711C1FBA.cla Infected: Trojan.Java.ClassLoader.Dummy.a skipped

victorbrca
2006-04-22, 19:15
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\711D10C3 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\71220C59 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\715D0019 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\716C73C3 Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\71814DF1 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\719873D8 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\71987FBF Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\719A33DB Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\71AC6FC3 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\71BA4F93 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\71C05752 Infected: Email-Worm.Win32.NetSky.d skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\71F60F0C Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\71FD74C9 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\72085661/information.rtf.exe Infected: Email-Worm.Win32.NetSky.b skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\72085661 ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\72085661 CryptFF: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\721D60BB Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\722E33AF Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\723102CB/[From james.beggs@ntlworld.com][Date Thu, 27 Jan 2005 22:58:01 +0400]/UNNAMED/html Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\723102CB/[From james.beggs@ntlworld.com][Date Thu, 27 Jan 2005 22:58:01 +0400]/UNNAMED Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\723102CB Mail: suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\723102CB CryptFF: suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\723713CF Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7242387E Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\724E39B6 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\725B1BD7.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\72604EE8 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\726E54CD Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\72847AB4 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\729515A8 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\72AB3B8F Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\72C23383 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\72C26176 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\72D33364 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\72EA594B Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\731C30B3 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\73312B3A Infected: Email-Worm.Win32.Bagle.s skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\73363572 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\73563356 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\739A5F23 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\73C242AC Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\73D736B4 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\73DF3E1D Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\73EA332A Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\73F85A90 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\740F0077 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\741A50F5 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\741B00AB Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\74334E4F Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\744A7436 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7474515A Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\747E32FE Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\748036C4 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\74A3049C Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\74BE5480 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\74CC1184 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\74D47A67 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\74D519FE Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\74D803BA Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\74E070A2 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\74E87651/[From lizardman@bbs.ee.ntu.edu.tw][Date Sat, 12 Jun 2004 10:39:21 -0500]/UNNAMED/html Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\74E87651/[From lizardman@bbs.ee.ntu.edu.tw][Date Sat, 12 Jun 2004 10:39:21 -0500]/UNNAMED Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\74E87651/[From lizardman@bbs.ee.ntu.edu.tw][Date Sat, 12 Jun 2004 10:39:21 -0500]/message.scr Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\74E87651 Mail: infected - 1, suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\74E87651 CryptFF: infected - 1, suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\74F51E43 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\75044254/[From victorbrca@yahoo.ca][Date Tue, 23 Dec 2003 05:25:17 -0200]/UNNAMED/data.bat Infected: Email-Worm.Win32.Mydoom.a skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\75044254/[From victorbrca@yahoo.ca][Date Tue, 23 Dec 2003 05:25:17 -0200]/UNNAMED Infected: Email-Worm.Win32.Mydoom.a skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\75044254 Mail: infected - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\75044254 CryptFF: infected - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\75057031 Infected: Email-Worm.Win32.Bagle.z skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\75064F87 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\750D3C70 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\750F6E26/[From iq5.1707178@news-text.cableinet.net][Date Sat, 12 Jun 2004 12:22:28 -0500]/websites03.pif Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\750F6E26 Mail: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\750F6E26 CryptFF: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\751232D2 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\75162175 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\751A50A3 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\751C1617 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\752D475C Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\75333BFE Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\753B083D Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\753B1005 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\75414347 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\75493195 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\754A61E5 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\75543F31 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\755E5DD0 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\75620012 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\756B6518 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\756E2FBE Infected: Email-Worm.Win32.NetSky.r skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\757C3706 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\759606E9 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\75A1060D Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\75A532A6 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\75AD2CD0 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\75BA54C2 Infected: Email-Worm.Win32.Bagle.z skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\75CA26B0 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\75DE229A Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\75EA1394 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\75EE7488 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\75F821B5 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\76077C15 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7619209A Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\761D03C5 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\762838B2 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\762D3706 Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7639327A Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\766E721C Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\76A611D6 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\76A66A35 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\76C53C5E Infected: Email-Worm.Win32.Swen skipped

victorbrca
2006-04-22, 19:15
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\76CD324E Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\76D46824 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\76DC6245 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\76EB2DEA Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\770A210A Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\77187092 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\773A5E2B Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\774B0F51.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\775501F7 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\77613222 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7781057A/details.txt .pif Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7781057A ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7781057A CryptFF: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\77A05433 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\77AF5148 Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\77CC4B28/[From miquels@drinkel.nl.mugnet.org][Date Thu, 3 Feb 2005 20:53:46 -0500]/UNNAMED/html Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\77CC4B28/[From miquels@drinkel.nl.mugnet.org][Date Thu, 3 Feb 2005 20:53:46 -0500]/UNNAMED Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\77CC4B28 Mail: suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\77CC4B28 CryptFF: suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\77F054A5 Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\77F531F6 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\780A2488 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\781E2073 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\784D6117.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\788931CA Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\78A414B3 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\78EC7E2C Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7900596E Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\791D319E Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\791D46C5 Infected: Trojan-Spy.Win32.Briss.j skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\79217D4B Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\793D433E Infected: not-a-virus:AdWare.Win32.BiSpy.m skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\795901E1 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\79620A7A Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\797214BD.tmp Infected: Email-Worm.Win32.NetSky.af skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\79BE2CDD Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7A1C073E Infected: Email-Worm.Win32.NetSky.af skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7A453146 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7A7B62F1 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7AB51F0B Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7AD9311A Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7AF63405 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7AFD4871 Infected: Email-Worm.Win32.Bagle.z skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7B3271BB Infected: Email-Worm.Win32.NetSky.af skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7B6D30EE Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7B8574E0 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7B942355 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7BAA2AD7 Infected: Email-Worm.Win32.NetSky.d skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7BB523ED Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7BD63B56 Infected: Email-Worm.Win32.NetSky.af skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7BE559AB.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7BE73D58 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7BF00B39 Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7C0030C2 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7C282FE3 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7C3303EA Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7C63140E Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7C634532 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7C66024E Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7C813F12 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7C911100 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7C943096 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7CA50CEA Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7CB234DC Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7CB86745 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7CC530C6 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7CCC668C Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7CD92CB1 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7CF37C94 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7D034E82 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7D12042F Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7D174A6D Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7D253EC0 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7D271C5B Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7D28306A Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7D34444C Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7D45163A Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7D4C217F Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7D6C455B Infected: Email-Worm.Win32.Bagle.s skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7DC07450 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7DC63C31 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7DEB24D8 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7E0B7FE6 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7E1E240B.tmp Infected: Email-Worm.Win32.Bagle.gen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7E294D62 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7E503012 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7E557826.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7E777AC2 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7E7F6951.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7E9B489A Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7EA82E56 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7ED0324C Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7ED82420 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7EE42FE6 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7EEB1394 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7EF15628 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7EF37403 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7F0919EA Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7F0E5008 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7F120B69 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7F1E68C9.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7F2575EF Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7F3971D9/data.rtf .scr Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7F3971D9 ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7F3971D9 CryptFF: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7F6E114A Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7F782FBA Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7FA65B0D Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7FBC00F4 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7FCD52E2 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\IM\Identities\{DB0EE4CD-EEBB-4ECC-A945-5B1DE9F96D46}\Message Store\Attachments\RADMIN21.EXE/AdmDll.dll Infected: not-a-virus:RemoteAdmin.Win32.RAdmin.20 skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\IM\Identities\{DB0EE4CD-EEBB-4ECC-A945-5B1DE9F96D46}\Message Store\Attachments\RADMIN21.EXE/raddrv.dll Infected: not-a-virus:RemoteAdmin.Win32.RAdmin.20 skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\IM\Identities\{DB0EE4CD-EEBB-4ECC-A945-5B1DE9F96D46}\Message Store\Attachments\RADMIN21.EXE/radmin.exe Infected: not-a-virus:RemoteAdmin.Win32.RAdmin.21 skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\IM\Identities\{DB0EE4CD-EEBB-4ECC-A945-5B1DE9F96D46}\Message Store\Attachments\RADMIN21.EXE/r_server.exe Infected: not-a-virus:RemoteAdmin.Win32.RAdmin.21 skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\IM\Identities\{DB0EE4CD-EEBB-4ECC-A945-5B1DE9F96D46}\Message Store\Attachments\RADMIN21.EXE Gentee: infected - 4 skipped

victorbrca
2006-04-22, 19:16
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From Get your favorite music <mail3@mail.bigwinnerz.com>][Date Wed, 6 Aug 2003 05:18:26 -0500]/html/[From admin@yahoo.ca]/text Infected: Email-Worm.Win32.Mimail.txt skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From Get your favorite music <mail3@mail.bigwinnerz.com>][Date Wed, 6 Aug 2003 05:18:26 -0500]/html/[From admin@yahoo.ca]/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From Get your favorite music <mail3@mail.bigwinnerz.com>][Date Wed, 6 Aug 2003 05:18:26 -0500]/html/[From admin@yahoo.ca]/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From Get your favorite music <mail3@mail.bigwinnerz.com>][Date Wed, 6 Aug 2003 05:18:26 -0500]/html Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 06:39:28 -0400]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 06:39:28 -0400]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 06:39:28 -0400]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 06:39:28 -0400]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Sun, 06 Aug 2017 21:16:37 EDT]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Sun, 06 Aug 2017 21:16:37 EDT]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Sun, 06 Aug 2017 21:16:37 EDT]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Sun, 06 Aug 2017 21:16:37 EDT]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx Mail MS Outlook 5: infected - 36 skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Deleted Items/16 Apr 2005 15:49 from Victor/Price_43254.zip/Result.exe Infected: Email-Worm.Win32.Bagle.bj skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Deleted Items/16 Apr 2005 15:49 from Victor/Price_43254.zip Infected: Email-Worm.Win32.Bagle.bj skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Deleted Items/16 Dec 2005 02:25 from Victorbrazil:Henrye/Peter.zip Infected: Email-Worm.Win32.Bagle.ey skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/09 Aug 2004 18:42 from Simmax:[Norton AntiSpam] /price_new.zip/price.html Infected: Exploit.HTML.CodeBaseExec skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/09 Aug 2004 18:42 from Simmax:[Norton AntiSpam] /price_new.zip/price/price.exe Infected: Email-Worm.Win32.Bagle.al skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/09 Aug 2004 18:42 from Simmax:[Norton AntiSpam] /price_new.zip Infected: Email-Worm.Win32.Bagle.al skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/15 Aug 2004 15:16 from Microsoft Net Email Delivery Service:[Nor.rtf Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/15 Aug 2004 20:27 from U S Bank:[Norton AntiSpam] Official Infor.rtf Infected: Trojan-Spy.HTML.Usbankfraud.g skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/27 Aug 2004 15:36 from Hm.markt:[Norton AntiSpam] 1.rtf Infected: Exploit.HTML.ObjData skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/31 Aug 2004 19:45 from Avis:foto/fotos.zip/foto/foto.html Infected: Exploit.HTML.CodeBaseExec skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/31 Aug 2004 19:45 from Avis:foto/fotos.zip/foto/foto/foto1.exe Infected: Trojan.Win32.Glieder.gen skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/31 Aug 2004 19:45 from Avis:foto/fotos.zip Infected: Trojan.Win32.Glieder.gen skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/02 Sep 2004 16:25 from Carteiro iG:[Norton AntiSpam] Todo o sit.rtf Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/11 Sep 2004 06:38 from CITIZENS BANK:[Norton AntiSpam] Important.rtf Infected: Trojan-Spy.HTML.Citifraud.ai skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/19 Sep 2004 19:12 from Message Delivery System:mail: returned to.rtf Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/21 Sep 2004 03:19 from CitiBank:[Norton AntiSpam] ATTENTION CITI.rtf Infected: Trojan-Spy.HTML.Citifraud.ae skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/21 Sep 2004 03:00 from Citi:IMPORTANT INFORMATION: YOUR CITIBANK.rtf Infected: Trojan-Spy.HTML.Citifraud.ae skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst Mail MS Mail: infected - 14, suspicious - 3 skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\OutlookHotmail-00000004.pst/Hotmail/Inbox/04 Apr 2006 14:01 from igorwos@hotmail.com:fw: en: cervejetarian/animacao.zip/animacao_pian_346.exe Infected: Trojan-Downloader.Win32.Banload.yg skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\OutlookHotmail-00000004.pst/Hotmail/Inbox/04 Apr 2006 14:01 from igorwos@hotmail.com:fw: en: cervejetarian/animacao.zip Infected: Trojan-Downloader.Win32.Banload.yg skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\OutlookHotmail-00000004.pst Mail MS Mail: infected - 2 skipped
C:\Program Files\BitTorrent\uninstall.exe/stream/data0002 Infected: not-a-virus:RiskTool.Win32.PsKill.n skipped
C:\Program Files\BitTorrent\uninstall.exe/stream Infected: not-a-virus:RiskTool.Win32.PsKill.n skipped
C:\Program Files\BitTorrent\uninstall.exe NSIS: infected - 2 skipped
C:\Program Files\MyWay\SrchAstt\1.bin\MYSRCHAS.DLL Infected: not-a-virus:AdWare.Win32.MyWay.z skipped
C:\RECYCLER\S-1-5-21-1935655697-1972579041-725345543-1003\Dc12.EXE/stream/data0002 Infected: not-a-virus:RiskTool.Win32.PsKill.n skipped
C:\RECYCLER\S-1-5-21-1935655697-1972579041-725345543-1003\Dc12.EXE/stream Infected: not-a-virus:RiskTool.Win32.PsKill.n skipped
C:\RECYCLER\S-1-5-21-1935655697-1972579041-725345543-1003\Dc12.EXE NSIS: infected - 2 skipped
C:\RECYCLER\S-1-5-21-1935655697-1972579041-725345543-1003\Dc371.EXE/stream/data0002 Infected: not-a-virus:RiskTool.Win32.PsKill.n skipped
C:\RECYCLER\S-1-5-21-1935655697-1972579041-725345543-1003\Dc371.EXE/stream Infected: not-a-virus:RiskTool.Win32.PsKill.n skipped
C:\RECYCLER\S-1-5-21-1935655697-1972579041-725345543-1003\Dc371.EXE NSIS: infected - 2 skipped
C:\sk02.exe/data0002 Infected: Trojan-Clicker.Win32.Small.jf skipped
C:\sk02.exe NSIS: infected - 1 skipped
C:\System Volume Information\_restore{0F0D1331-6C08-46B5-9846-8C8E33CE6BAF}\RP5\A0000207.exe Infected: not-a-virus:AdWare.Win32.NewDotNet skipped
C:\System Volume Information\_restore{0F0D1331-6C08-46B5-9846-8C8E33CE6BAF}\RP5\A0000208.EXE Infected: not-a-virus:AdWare.Win32.NewDotNet skipped
C:\System Volume Information\_restore{0F0D1331-6C08-46B5-9846-8C8E33CE6BAF}\RP5\A0000209.exe Infected: not-a-virus:AdWare.Win32.SaveNow.bo skipped
C:\System Volume Information\_restore{0F0D1331-6C08-46B5-9846-8C8E33CE6BAF}\RP5\A0000210.dll Infected: not-a-virus:AdWare.Win32.Azesearch.h skipped
C:\System Volume Information\_restore{0F0D1331-6C08-46B5-9846-8C8E33CE6BAF}\RP5\A0000211.exe Infected: not-a-virus:AdWare.Win32.Azesearch.h skipped
C:\System Volume Information\_restore{0F0D1331-6C08-46B5-9846-8C8E33CE6BAF}\RP5\A0000212.exe Infected: not-a-virus:AdWare.Win32.Azesearch.h skipped
C:\System Volume Information\_restore{0F0D1331-6C08-46B5-9846-8C8E33CE6BAF}\RP5\A0000215.exe Infected: Trojan-Downloader.Win32.Adload.am skipped
C:\System Volume Information\_restore{0F0D1331-6C08-46B5-9846-8C8E33CE6BAF}\RP5\A0000216.exe Infected: Trojan-Clicker.Win32.VB.mo skipped
C:\System Volume Information\_restore{0F0D1331-6C08-46B5-9846-8C8E33CE6BAF}\RP5\A0000217.exe Infected: not-a-virus:AdWare.Win32.NewDotNet.e skipped
C:\System Volume Information\_restore{0F0D1331-6C08-46B5-9846-8C8E33CE6BAF}\RP5\A0000219.exe Infected: Trojan.Win32.VB.tg skipped
C:\System Volume Information\_restore{0F0D1331-6C08-46B5-9846-8C8E33CE6BAF}\RP5\A0000221.exe Infected: not-a-virus:AdWare.Win32.Azesearch.h skipped
C:\System Volume Information\_restore{0F0D1331-6C08-46B5-9846-8C8E33CE6BAF}\RP5\A0000222.dll Infected: not-a-virus:AdWare.Win32.Azesearch.h skipped
C:\System Volume Information\_restore{0F0D1331-6C08-46B5-9846-8C8E33CE6BAF}\RP5\A0000223.dll Infected: not-a-virus:AdWare.Win32.Azesearch.h skipped
C:\System Volume Information\_restore{0F0D1331-6C08-46B5-9846-8C8E33CE6BAF}\RP5\A0000224.exe Infected: Trojan.Win32.VB.tg skipped
C:\System Volume Information\_restore{0F0D1331-6C08-46B5-9846-8C8E33CE6BAF}\RP5\A0000225.exe Infected: Trojan.Win32.VB.tg skipped
C:\Victor\Router Sim\krang.exe/WISE0047.BIN Infected: not-a-virus:PSWTool.Win32.GetPass.e skipped
C:\Victor\Router Sim\krang.exe WiseSFX: infected - 1 skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From Get your favorite music <mail3@mail.bigwinnerz.com>][Date Wed, 6 Aug 2003 05:18:26 -0500]/html/[From admin@yahoo.ca]/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From Get your favorite music <mail3@mail.bigwinnerz.com>][Date Wed, 6 Aug 2003 05:18:26 -0500]/html/[From admin@yahoo.ca]/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From Get your favorite music <mail3@mail.bigwinnerz.com>][Date Wed, 6 Aug 2003 05:18:26 -0500]/html/[From admin@yahoo.ca]/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From Get your favorite music <mail3@mail.bigwinnerz.com>][Date Wed, 6 Aug 2003 05:18:26 -0500]/html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped

victorbrca
2006-04-22, 19:17
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 06:39:28 -0400]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 06:39:28 -0400]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 06:39:28 -0400]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 06:39:28 -0400]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Sun, 06 Aug 2017 21:16:37 EDT]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Sun, 06 Aug 2017 21:16:37 EDT]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Sun, 06 Aug 2017 21:16:37 EDT]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Sun, 06 Aug 2017 21:16:37 EDT]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx Mail MS Outlook 5: infected - 36 skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From Get your favorite music <mail3@mail.bigwinnerz.com>][Date Wed, 6 Aug 2003 05:18:26 -0500]/html/[From admin@yahoo.ca]/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From Get your favorite music <mail3@mail.bigwinnerz.com>][Date Wed, 6 Aug 2003 05:18:26 -0500]/html/[From admin@yahoo.ca]/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From Get your favorite music <mail3@mail.bigwinnerz.com>][Date Wed, 6 Aug 2003 05:18:26 -0500]/html/[From admin@yahoo.ca]/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From Get your favorite music <mail3@mail.bigwinnerz.com>][Date Wed, 6 Aug 2003 05:18:26 -0500]/html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 06:39:28 -0400]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 06:39:28 -0400]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 06:39:28 -0400]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 06:39:28 -0400]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Sun, 06 Aug 2017 21:16:37 EDT]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Sun, 06 Aug 2017 21:16:37 EDT]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Sun, 06 Aug 2017 21:16:37 EDT]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Sun, 06 Aug 2017 21:16:37 EDT]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx Mail MS Outlook 5: infected - 36 skipped
F:\My Downloads\LimeWire\Spy Agent v4.3_SpyTech 2003_Spy Anywhere v2.12_Realtime Spy.rar/SpyTech/Realtime Spy/realtimespysetup.exe/Stop-RTS.exe Infected: not-a-virus:Monitor.Win32.SpyAgent.g skipped
F:\My Downloads\LimeWire\Spy Agent v4.3_SpyTech 2003_Spy Anywhere v2.12_Realtime Spy.rar/SpyTech/Realtime Spy/realtimespysetup.exe/RTS.exe Infected: Trojan-Downloader.Win32.SpyAgent.a skipped
F:\My Downloads\LimeWire\Spy Agent v4.3_SpyTech 2003_Spy Anywhere v2.12_Realtime Spy.rar/SpyTech/Realtime Spy/realtimespysetup.exe/RTSConfig.exe Infected: not-a-virus:Monitor.Win32.SpyAgent.g skipped
F:\My Downloads\LimeWire\Spy Agent v4.3_SpyTech 2003_Spy Anywhere v2.12_Realtime Spy.rar/SpyTech/Realtime Spy/realtimespysetup.exe Infected: not-a-virus:Monitor.Win32.SpyAgent.g skipped
F:\My Downloads\LimeWire\Spy Agent v4.3_SpyTech 2003_Spy Anywhere v2.12_Realtime Spy.rar/SpyTech/Spytech Security 2003/SW2003.exe/SpyAgent4.exe Infected: not-a-virus:Monitor.Win32.SpyAgent.44103 skipped
F:\My Downloads\LimeWire\Spy Agent v4.3_SpyTech 2003_Spy Anywhere v2.12_Realtime Spy.rar/SpyTech/Spytech Security 2003/SW2003.exe/NoStealth.exe Infected: not-a-virus:Monitor.Win32.SpyAgent.g skipped
F:\My Downloads\LimeWire\Spy Agent v4.3_SpyTech 2003_Spy Anywhere v2.12_Realtime Spy.rar/SpyTech/Spytech Security 2003/SW2003.exe/Deploy.exe Infected: not-a-virus:Monitor.Win32.SpyAgent.43302 skipped
F:\My Downloads\LimeWire\Spy Agent v4.3_SpyTech 2003_Spy Anywhere v2.12_Realtime Spy.rar/SpyTech/Spytech Security 2003/SW2003.exe/SystemSA32.dll Infected: not-a-virus:Monitor.Win32.SpyAgent.44103 skipped
F:\My Downloads\LimeWire\Spy Agent v4.3_SpyTech 2003_Spy Anywhere v2.12_Realtime Spy.rar/SpyTech/Spytech Security 2003/SW2003.exe Infected: not-a-virus:Monitor.Win32.SpyAgent.44103 skipped
F:\My Downloads\LimeWire\Spy Agent v4.3_SpyTech 2003_Spy Anywhere v2.12_Realtime Spy.rar RAR: infected - 9 skipped
F:\My Downloads\System Tools\ccsetup128.exe/stream/data0006 Infected: not-a-virus:RiskTool.Win32.PsKill.n skipped
F:\My Downloads\System Tools\ccsetup128.exe/stream Infected: not-a-virus:RiskTool.Win32.PsKill.n skipped
F:\My Downloads\System Tools\ccsetup128.exe NSIS: infected - 2 skipped
F:\My Downloads\Temp\120625.exe/WISE0014.BIN Infected: not-a-virus:AdWare.Win32.SaveNow.bo skipped
F:\My Downloads\Temp\120625.exe/WISE0015.BIN Infected: not-a-virus:AdWare.Win32.NewDotNet skipped
F:\My Downloads\Temp\120625.exe/WISE0016.BIN/WISE0001.BIN Infected: not-a-virus:AdWare.Win32.Accoona.b skipped
F:\My Downloads\Temp\120625.exe/WISE0016.BIN Infected: not-a-virus:AdWare.Win32.Accoona.b skipped
F:\My Downloads\Temp\120625.exe WiseSFX: infected - 4 skipped
F:\My Downloads\Temp\120625.exe WiseSFX Dropper: infected - 4 skipped
F:\My Downloads\Temp\feelblueskin(www.mess.be).zip/Feel Blue Skin.exe/stream/data0005 Infected: not-a-virus:RiskTool.Win32.PsKill.n skipped
F:\My Downloads\Temp\feelblueskin(www.mess.be).zip/Feel Blue Skin.exe/stream Infected: not-a-virus:RiskTool.Win32.PsKill.n skipped
F:\My Downloads\Temp\feelblueskin(www.mess.be).zip/Feel Blue Skin.exe Infected: not-a-virus:RiskTool.Win32.PsKill.n skipped
F:\My Downloads\Temp\feelblueskin(www.mess.be).zip ZIP: infected - 3 skipped
F:\My Downloads\Temp\velvet.exe/stream/data0005 Infected: not-a-virus:RiskTool.Win32.PsKill.n skipped
F:\My Downloads\Temp\velvet.exe/stream Infected: not-a-virus:RiskTool.Win32.PsKill.n skipped
F:\My Downloads\Temp\velvet.exe NSIS: infected - 2 skipped
F:\Site\Wazem - February 15 2004\dwnl_fil\radmin21.zip/RADMIN21.EXE/AdmDll.dll Infected: not-a-virus:RemoteAdmin.Win32.RAdmin.20 skipped
F:\Site\Wazem - February 15 2004\dwnl_fil\radmin21.zip/RADMIN21.EXE/raddrv.dll Infected: not-a-virus:RemoteAdmin.Win32.RAdmin.20 skipped
F:\Site\Wazem - February 15 2004\dwnl_fil\radmin21.zip/RADMIN21.EXE/radmin.exe Infected: not-a-virus:RemoteAdmin.Win32.RAdmin.21 skipped
F:\Site\Wazem - February 15 2004\dwnl_fil\radmin21.zip/RADMIN21.EXE/r_server.exe Infected: not-a-virus:RemoteAdmin.Win32.RAdmin.21 skipped
F:\Site\Wazem - February 15 2004\dwnl_fil\radmin21.zip/RADMIN21.EXE Infected: not-a-virus:RemoteAdmin.Win32.RAdmin.21 skipped
F:\Site\Wazem - February 15 2004\dwnl_fil\radmin21.zip ZIP: infected - 5 skipped

Scan process completed.

pskelley
2006-04-22, 21:00
Whoa, you sure filled up this thread.
In this HJT log: Logfile of HijackThis v1.99.1
Scan saved at 12:46:39 PM, on 4/22/2006
This item is still running, your computer will not be clean until you locate and delete the file highlited in red.
O4 - HKLM\..\Run: [ms062415127673] C:\WINDOWS\ms062415127673.exe

If you have not posted ewido yet, post only anything that could not be deleted.

Kaspersky, I should have told you to edit out the obvious. It should be obvious to you I don't need to see the Norton Quarantine stuff.

OK, since you posted, let's rule it out.

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\ <<< if you have not already done so, and you should have removed the folders in red, all quarantined stuff would go with it.
How long have you been storing this junk on the computer? You have a mess in other stored areas also, all I can think is to show it to you, and you need to locate and delete the junk manually. Some of it I am not even sure what needs to be deleted. You will have to look and decide from what you see.
All of this stuff looks like infected email or files you are storing. I will just post it all and you can locate and delete it.

You also have infected System Restore files, follow these directions to get clean System Restore files.
System Restore does not know the good files from the bad. In case bad stuff has gotten into your System Restore files, follow the instructions in this link to get clean System Restore files. Turn it off, reboot then turn it back on:
http://service1.symantec.com/SUPPORT/tsgeninfo.nsf/docid/2001111912274039?Open&src=sec_doc_nam

Once you delete this junk, runKaspersky, it should be clean. If there is anything in the scan you are unsure of, post it and I will look. This be said, here are the files that need to go.

C:\Documents and Settings\Victor\Local Settings\Application Data\IM\Identities\{DB0EE4CD-EEBB-4ECC-A945-5B1DE9F96D46}\Message Store\Attachments\RADMIN21.EXE/AdmDll.dll Infected: not-a-virus:RemoteAdmin.Win32.RAdmin.20 skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\IM\Identities\{DB0EE4CD-EEBB-4ECC-A945-5B1DE9F96D46}\Message Store\Attachments\RADMIN21.EXE/raddrv.dll Infected: not-a-virus:RemoteAdmin.Win32.RAdmin.20 skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\IM\Identities\{DB0EE4CD-EEBB-4ECC-A945-5B1DE9F96D46}\Message Store\Attachments\RADMIN21.EXE/radmin.exe Infected: not-a-virus:RemoteAdmin.Win32.RAdmin.21 skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\IM\Identities\{DB0EE4CD-EEBB-4ECC-A945-5B1DE9F96D46}\Message Store\Attachments\RADMIN21.EXE/r_server.exe Infected: not-a-virus:RemoteAdmin.Win32.RAdmin.21 skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\IM\Identities\{DB0EE4CD-EEBB-4ECC-A945-5B1DE9F96D46}\Message Store\Attachments\RADMIN21.EXE Gentee: infected - 4 skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From Get your favorite music <mail3@mail.bigwinnerz.com>][Date Wed, 6 Aug 2003 05:18:26 -0500]/html/[From admin@yahoo.ca]/text Infected: Email-Worm.Win32.Mimail.txt skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From Get your favorite music <mail3@mail.bigwinnerz.com>][Date Wed, 6 Aug 2003 05:18:26 -0500]/html/[From admin@yahoo.ca]/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From Get your favorite music <mail3@mail.bigwinnerz.com>][Date Wed, 6 Aug 2003 05:18:26 -0500]/html/[From admin@yahoo.ca]/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From Get your favorite music <mail3@mail.bigwinnerz.com>][Date Wed, 6 Aug 2003 05:18:26 -0500]/html Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 06:39:28 -0400]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 06:39:28 -0400]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 06:39:28 -0400]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 06:39:28 -0400]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Sun, 06 Aug 2017 21:16:37 EDT]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Sun, 06 Aug 2017 21:16:37 EDT]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Sun, 06 Aug 2017 21:16:37 EDT]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Sun, 06 Aug 2017 21:16:37 EDT]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx Mail MS Outlook 5: infected - 36 skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Deleted Items/16 Apr 2005 15:49 from Victor/Price_43254.zip/Result.exe Infected: Email-Worm.Win32.Bagle.bj skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Deleted Items/16 Apr 2005 15:49 from Victor/Price_43254.zip Infected: Email-Worm.Win32.Bagle.bj skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Deleted Items/16 Dec 2005 02:25 from Victorbrazil:Henrye/Peter.zip Infected: Email-Worm.Win32.Bagle.ey skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/09 Aug 2004 18:42 from Simmax:[Norton AntiSpam] /price_new.zip/price.html Infected: Exploit.HTML.CodeBaseExec skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/09 Aug 2004 18:42 from Simmax:[Norton AntiSpam] /price_new.zip/price/price.exe Infected: Email-Worm.Win32.Bagle.al skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/09 Aug 2004 18:42 from Simmax:[Norton AntiSpam] /price_new.zip Infected: Email-Worm.Win32.Bagle.al skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/15 Aug 2004 15:16 from Microsoft Net Email Delivery Service:[Nor.rtf Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/15 Aug 2004 20:27 from U S Bank:[Norton AntiSpam] Official Infor.rtf Infected: Trojan-Spy.HTML.Usbankfraud.g skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/27 Aug 2004 15:36 from Hm.markt:[Norton AntiSpam] 1.rtf Infected: Exploit.HTML.ObjData skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/31 Aug 2004 19:45 from Avis:foto/fotos.zip/foto/foto.html Infected: Exploit.HTML.CodeBaseExec skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/31 Aug 2004 19:45 from Avis:foto/fotos.zip/foto/foto/foto1.exe Infected: Trojan.Win32.Glieder.gen skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/31 Aug 2004 19:45 from Avis:foto/fotos.zip Infected: Trojan.Win32.Glieder.gen skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/02 Sep 2004 16:25 from Carteiro iG:[Norton AntiSpam] Todo o sit.rtf Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/11 Sep 2004 06:38 from CITIZENS BANK:[Norton AntiSpam] Important.rtf Infected: Trojan-Spy.HTML.Citifraud.ai skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/19 Sep 2004 19:12 from Message Delivery System:mail: returned to.rtf Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/21 Sep 2004 03:19 from CitiBank:[Norton AntiSpam] ATTENTION CITI.rtf Infected: Trojan-Spy.HTML.Citifraud.ae skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/21 Sep 2004 03:00 from Citi:IMPORTANT INFORMATION: YOUR CITIBANK.rtf Infected: Trojan-Spy.HTML.Citifraud.ae skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst Mail MS Mail: infected - 14, suspicious - 3 skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\OutlookHotmail-00000004.pst/Hotmail/Inbox/04 Apr 2006 14:01 from igorwos@hotmail.com:fw: en: cervejetarian/animacao.zip/animacao_pian_346.exe Infected: Trojan-Downloader.Win32.Banload.yg skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\OutlookHotmail-00000004.pst/Hotmail/Inbox/04 Apr 2006 14:01 from igorwos@hotmail.com:fw: en: cervejetarian/animacao.zip Infected: Trojan-Downloader.Win32.Banload.yg skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\OutlookHotmail-00000004.pst Mail MS Mail: infected - 2 skipped
C:\Program Files\BitTorrent\uninstall.exe/stream/data0002 Infected: not-a-virus:RiskTool.Win32.PsKill.n skipped
C:\Program Files\BitTorrent\uninstall.exe/stream Infected: not-a-virus:RiskTool.Win32.PsKill.n skipped
C:\Program Files\BitTorrent\uninstall.exe NSIS: infected - 2 skipped
C:\Program Files\MyWay\SrchAstt\1.bin\MYSRCHAS.DLL Infected: not-a-virus:AdWare.Win32.MyWay.z skipped
C:\RECYCLER\S-1-5-21-1935655697-1972579041-725345543-1003\Dc12.EXE/stream/data0002 Infected: not-a-virus:RiskTool.Win32.PsKill.n skipped
\Dc371.EXE NSIS: infected - 2 skipped
C:\sk02.exe/data0002 Infected: Trojan-Clicker.Win32.Small.jf skipped
C:\sk02.exe NSIS: infected - 1 skipped
C:\Victor\Router Sim\krang.exe/WISE0047.BIN Infected: not-a-virus:PSWTool.Win32.GetPass.e skipped
C:\Victor\Router Sim\krang.exe WiseSFX: infected - 1 skipped

continued in the next post with F:\ stuff

pskelley
2006-04-22, 21:00
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From Get your favorite music <mail3@mail.bigwinnerz.com>][Date Wed, 6 Aug 2003 05:18:26 -0500]/html/[From admin@yahoo.ca]/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From Get your favorite music <mail3@mail.bigwinnerz.com>][Date Wed, 6 Aug 2003 05:18:26 -0500]/html/[From admin@yahoo.ca]/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From Get your favorite music <mail3@mail.bigwinnerz.com>][Date Wed, 6 Aug 2003 05:18:26 -0500]/html/[From admin@yahoo.ca]/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From Get your favorite music <mail3@mail.bigwinnerz.com>][Date Wed, 6 Aug 2003 05:18:26 -0500]/html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 06:39:28 -0400]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 06:39:28 -0400]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 06:39:28 -0400]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 06:39:28 -0400]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Sun, 06 Aug 2017 21:16:37 EDT]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Sun, 06 Aug 2017 21:16:37 EDT]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Sun, 06 Aug 2017 21:16:37 EDT]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Sun, 06 Aug 2017 21:16:37 EDT]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx Mail MS Outlook 5: infected - 36 skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From Get your favorite music <mail3@mail.bigwinnerz.com>][Date Wed, 6 Aug 2003 05:18:26 -0500]/html/[From admin@yahoo.ca]/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From Get your favorite music <mail3@mail.bigwinnerz.com>][Date Wed, 6 Aug 2003 05:18:26 -0500]/html/[From admin@yahoo.ca]/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From Get your favorite music <mail3@mail.bigwinnerz.com>][Date Wed, 6 Aug 2003 05:18:26 -0500]/html/[From admin@yahoo.ca]/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From Get your favorite music <mail3@mail.bigwinnerz.com>][Date Wed, 6 Aug 2003 05:18:26 -0500]/html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 06:39:28 -0400]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 06:39:28 -0400]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 06:39:28 -0400]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 06:39:28 -0400]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Sun, 06 Aug 2017 21:16:37 EDT]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Sun, 06 Aug 2017 21:16:37 EDT]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Sun, 06 Aug 2017 21:16:37 EDT]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Sun, 06 Aug 2017 21:16:37 EDT]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx Mail MS Outlook 5: infected - 36 skipped
F:\My Downloads\LimeWire\Spy Agent v4.3_SpyTech 2003_Spy Anywhere v2.12_Realtime Spy.rar/SpyTech/Realtime Spy/realtimespysetup.exe/Stop-RTS.exe Infected: not-a-virus:Monitor.Win32.SpyAgent.g skipped
F:\My Downloads\LimeWire\Spy Agent v4.3_SpyTech 2003_Spy Anywhere v2.12_Realtime Spy.rar/SpyTech/Realtime Spy/realtimespysetup.exe/RTS.exe Infected: Trojan-Downloader.Win32.SpyAgent.a skipped
F:\My Downloads\LimeWire\Spy Agent v4.3_SpyTech 2003_Spy Anywhere v2.12_Realtime Spy.rar/SpyTech/Realtime Spy/realtimespysetup.exe/RTSConfig.exe Infected: not-a-virus:Monitor.Win32.SpyAgent.g skipped
F:\My Downloads\LimeWire\Spy Agent v4.3_SpyTech 2003_Spy Anywhere v2.12_Realtime Spy.rar/SpyTech/Realtime Spy/realtimespysetup.exe Infected: not-a-virus:Monitor.Win32.SpyAgent.g skipped
F:\My Downloads\LimeWire\Spy Agent v4.3_SpyTech 2003_Spy Anywhere v2.12_Realtime Spy.rar/SpyTech/Spytech Security 2003/SW2003.exe/SpyAgent4.exe Infected: not-a-virus:Monitor.Win32.SpyAgent.44103 skipped
F:\My Downloads\LimeWire\Spy Agent v4.3_SpyTech 2003_Spy Anywhere v2.12_Realtime Spy.rar/SpyTech/Spytech Security 2003/SW2003.exe/NoStealth.exe Infected: not-a-virus:Monitor.Win32.SpyAgent.g skipped
F:\My Downloads\LimeWire\Spy Agent v4.3_SpyTech 2003_Spy Anywhere v2.12_Realtime Spy.rar/SpyTech/Spytech Security 2003/SW2003.exe/Deploy.exe Infected: not-a-virus:Monitor.Win32.SpyAgent.43302 skipped
F:\My Downloads\LimeWire\Spy Agent v4.3_SpyTech 2003_Spy Anywhere v2.12_Realtime Spy.rar/SpyTech/Spytech Security 2003/SW2003.exe/SystemSA32.dll Infected: not-a-virus:Monitor.Win32.SpyAgent.44103 skipped
F:\My Downloads\LimeWire\Spy Agent v4.3_SpyTech 2003_Spy Anywhere v2.12_Realtime Spy.rar/SpyTech/Spytech Security 2003/SW2003.exe Infected: not-a-virus:Monitor.Win32.SpyAgent.44103 skipped
F:\My Downloads\LimeWire\Spy Agent v4.3_SpyTech 2003_Spy Anywhere v2.12_Realtime Spy.rar RAR: infected - 9 skipped
F:\My Downloads\System Tools\ccsetup128.exe/stream/data0006 Infected: not-a-virus:RiskTool.Win32.PsKill.n skipped
F:\My Downloads\System Tools\ccsetup128.exe/stream Infected: not-a-virus:RiskTool.Win32.PsKill.n skipped
F:\My Downloads\System Tools\ccsetup128.exe NSIS: infected - 2 skipped
F:\My Downloads\Temp\120625.exe/WISE0014.BIN Infected: not-a-virus:AdWare.Win32.SaveNow.bo skipped
F:\My Downloads\Temp\120625.exe/WISE0015.BIN Infected: not-a-virus:AdWare.Win32.NewDotNet skipped
F:\My Downloads\Temp\120625.exe/WISE0016.BIN/WISE0001.BIN Infected: not-a-virus:AdWare.Win32.Accoona.b skipped
F:\My Downloads\Temp\120625.exe/WISE0016.BIN Infected: not-a-virus:AdWare.Win32.Accoona.b skipped
F:\My Downloads\Temp\120625.exe WiseSFX: infected - 4 skipped
F:\My Downloads\Temp\120625.exe WiseSFX Dropper: infected - 4 skipped
F:\My Downloads\Temp\feelblueskin(www.mess.be).zip/Feel Blue Skin.exe/stream/data0005 Infected: not-a-virus:RiskTool.Win32.PsKill.n skipped
F:\My Downloads\Temp\feelblueskin(www.mess.be).zip/Feel Blue Skin.exe/stream Infected: not-a-virus:RiskTool.Win32.PsKill.n skipped
F:\My Downloads\Temp\feelblueskin(www.mess.be).zip/Feel Blue Skin.exe Infected: not-a-virus:RiskTool.Win32.PsKill.n skipped
F:\My Downloads\Temp\feelblueskin(www.mess.be).zip ZIP: infected - 3 skipped
F:\My Downloads\Temp\velvet.exe/stream/data0005 Infected: not-a-virus:RiskTool.Win32.PsKill.n skipped
F:\My Downloads\Temp\velvet.exe/stream Infected: not-a-virus:RiskTool.Win32.PsKill.n skipped
F:\My Downloads\Temp\velvet.exe NSIS: infected - 2 skipped
F:\Site\Wazem - February 15 2004\dwnl_fil\radmin21.zip/RADMIN21.EXE/AdmDll.dll Infected: not-a-virus:RemoteAdmin.Win32.RAdmin.20 skipped
F:\Site\Wazem - February 15 2004\dwnl_fil\radmin21.zip/RADMIN21.EXE/raddrv.dll Infected: not-a-virus:RemoteAdmin.Win32.RAdmin.20 skipped
F:\Site\Wazem - February 15 2004\dwnl_fil\radmin21.zip/RADMIN21.EXE/radmin.exe Infected: not-a-virus:RemoteAdmin.Win32.RAdmin.21 skipped
F:\Site\Wazem - February 15 2004\dwnl_fil\radmin21.zip/RADMIN21.EXE/r_server.exe Infected: not-a-virus:RemoteAdmin.Win32.RAdmin.21 skipped
F:\Site\Wazem - February 15 2004\dwnl_fil\radmin21.zip/RADMIN21.EXE Infected: not-a-virus:RemoteAdmin.Win32.RAdmin.21 skipped
F:\Site\Wazem - February 15 2004\dwnl_fil\radmin21.zip ZIP: infected - 5 skipped

Thanks...

victorbrca
2006-04-23, 16:18
Hi Phil,

Sorry for the delay in replying, I spent the whole day yesterday running scans and trying to clean up as much as I could.

I could not find file C:\WINDOWS\ms062415127673.exe to delete, so I used HJT to delete it and it looks like it worked.

There is a file on RECYCLER that I'm not able to delete. I was able to empty it thou. C:\RECYCLER\S-1-5-21-1935655697-1972579041-725345543-1003.
Same happens on the other drivers.

I was also not able to clean up the folder C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/. I deleted the fold from outlook and them runned CCleaner but it did nothing.

Ewido report has difference of size from 1,204 Kb to 6 Kb. That's amazing.

Everything else I did the way you told me.


Vic.



-------------------------------------------------------------------------------
KASPERSKY ON-LINE SCANNER REPORT
Sunday, April 23, 2006 1:39:54 AM
Operating System: Microsoft Windows XP Professional, Service Pack 2 (Build 2600)
Kaspersky On-line Scanner version: 5.0.78.0
Kaspersky Anti-Virus database last update: 23/04/2006
Kaspersky Anti-Virus database records: 189518
-------------------------------------------------------------------------------

Scan Settings:
Scan using the following antivirus database: extended
Scan Archives: true
Scan Mail Bases: true

Scan Target - My Computer:
A:\
C:\
D:\
E:\
F:\
G:\

Scan Statistics:
Total number of scanned objects: 76557
Number of viruses found: 8
Number of infected objects: 12
Number of suspicious objects: 3
Duration of the scan process: 01:05:48

Infected Object Name / Virus Name / Last Action
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/09 Aug 2004 18:42 from Simmax:[Norton AntiSpam] /price_new.zip/price.html Infected: Exploit.HTML.CodeBaseExec skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/09 Aug 2004 18:42 from Simmax:[Norton AntiSpam] /price_new.zip/price/price.exe Infected: Email-Worm.Win32.Bagle.al skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/09 Aug 2004 18:42 from Simmax:[Norton AntiSpam] /price_new.zip Infected: Email-Worm.Win32.Bagle.al skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/15 Aug 2004 15:16 from Microsoft Net Email Delivery Service:[Nor.rtf Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/15 Aug 2004 20:27 from U S Bank:[Norton AntiSpam] Official Infor.rtf Infected: Trojan-Spy.HTML.Usbankfraud.g skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/27 Aug 2004 15:36 from Hm.markt:[Norton AntiSpam] 1.rtf Infected: Exploit.HTML.ObjData skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/31 Aug 2004 19:45 from Avis:foto/fotos.zip/foto/foto.html Infected: Exploit.HTML.CodeBaseExec skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/31 Aug 2004 19:45 from Avis:foto/fotos.zip/foto/foto/foto1.exe Infected: Trojan.Win32.Glieder.gen skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/31 Aug 2004 19:45 from Avis:foto/fotos.zip Infected: Trojan.Win32.Glieder.gen skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/02 Sep 2004 16:25 from Carteiro iG:[Norton AntiSpam] Todo o sit.rtf Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/11 Sep 2004 06:38 from CITIZENS BANK:[Norton AntiSpam] Important.rtf Infected: Trojan-Spy.HTML.Citifraud.ai skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/19 Sep 2004 19:12 from Message Delivery System:mail: returned to.rtf Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/21 Sep 2004 03:19 from CitiBank:[Norton AntiSpam] ATTENTION CITI.rtf Infected: Trojan-Spy.HTML.Citifraud.ae skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/21 Sep 2004 03:00 from Citi:IMPORTANT INFORMATION: YOUR CITIBANK.rtf Infected: Trojan-Spy.HTML.Citifraud.ae skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst Mail MS Mail: infected - 11, suspicious - 3 skipped

Scan process completed.


-------------------------------


---------------------------------------------------------
ewido anti-malware - Scan report
---------------------------------------------------------

+ Created on: 5:53:17 PM, 4/22/2006
+ Report-Checksum: 60095B9B

+ Scan result:

:mozilla.12:C:\Documents and Settings\Victor\Application Data\Mozilla\Firefox\Profiles\g4n5ep93.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned without backup
:mozilla.22:C:\Documents and Settings\Victor\Application Data\Mozilla\Firefox\Profiles\g4n5ep93.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned without backup
:mozilla.23:C:\Documents and Settings\Victor\Application Data\Mozilla\Firefox\Profiles\g4n5ep93.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned without backup
:mozilla.34:C:\Documents and Settings\Victor\Application Data\Mozilla\Firefox\Profiles\g4n5ep93.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned without backup
:mozilla.37:C:\Documents and Settings\Victor\Application Data\Mozilla\Firefox\Profiles\g4n5ep93.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned without backup
:mozilla.38:C:\Documents and Settings\Victor\Application Data\Mozilla\Firefox\Profiles\g4n5ep93.default\cookies.txt -> TrackingCookie.Advertising : Cleaned without backup
:mozilla.39:C:\Documents and Settings\Victor\Application Data\Mozilla\Firefox\Profiles\g4n5ep93.default\cookies.txt -> TrackingCookie.Advertising : Cleaned without backup
:mozilla.40:C:\Documents and Settings\Victor\Application Data\Mozilla\Firefox\Profiles\g4n5ep93.default\cookies.txt -> TrackingCookie.Revenue : Cleaned without backup
:mozilla.41:C:\Documents and Settings\Victor\Application Data\Mozilla\Firefox\Profiles\g4n5ep93.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned without backup
:mozilla.42:C:\Documents and Settings\Victor\Application Data\Mozilla\Firefox\Profiles\g4n5ep93.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned without backup
:mozilla.43:C:\Documents and Settings\Victor\Application Data\Mozilla\Firefox\Profiles\g4n5ep93.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned without backup
:mozilla.44:C:\Documents and Settings\Victor\Application Data\Mozilla\Firefox\Profiles\g4n5ep93.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned without backup
:mozilla.49:C:\Documents and Settings\Victor\Application Data\Mozilla\Firefox\Profiles\g4n5ep93.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned without backup
:mozilla.50:C:\Documents and Settings\Victor\Application Data\Mozilla\Firefox\Profiles\g4n5ep93.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned without backup


::Report End


---------------------

Logfile of HijackThis v1.99.1
Scan saved at 5:13:34 PM, on 4/22/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Netropa\Multimedia Keyboard\nhksrv.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\Program Files\ewido anti-malware\ewidoguard.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
C:\Program Files\Roxio\Easy CD Creator 6\DragToDisc\DrgToDsc.exe
C:\Program Files\Roxio\Easy CD Creator 6\AudioCentral\RxMon.exe
C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe
C:\Program Files\Netropa\Multimedia Keyboard\MMKeybd.exe
C:\Program Files\LogMeIn\LogMeInSystray.exe
C:\PROGRA~1\Logitech\MOUSEW~1\SYSTEM\EM_EXEC.EXE
C:\Program Files\LogMeIn\RaMaint.exe
C:\Program Files\Common Files\PCSuite\DataLayer\DataLayer.exe
C:\Program Files\Netropa\Multimedia Keyboard\TrayMon.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Netropa\Onscreen Display\OSD.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\LogMeIn\LogMeIn.exe
C:\Program Files\Stardock\ObjectDock\ObjectDock.exe
C:\PROGRA~1\COMMON~1\PCSuite\Services\SERVIC~1.EXE
C:\Program Files\YCIII\YankClip.exe
C:\Program Files\Roxio\Easy CD Creator 6\AudioCentral\Playlist.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\system32\wuauclt.exe
C:\AntiSpyWare\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orkut.com/
O2 - BHO: G-Buster Browser Defense - {C41A1C0E-EA6C-11D4-B1B8-444553540000} - C:\WINDOWS\Downloaded Program Files\gbieh.dll
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
O4 - HKLM\..\Run: [RoxioEngineUtility] "C:\Program Files\Common Files\Roxio Shared\System\EngUtil.exe"
O4 - HKLM\..\Run: [RoxioDragToDisc] "C:\Program Files\Roxio\Easy CD Creator 6\DragToDisc\DrgToDsc.exe"
O4 - HKLM\..\Run: [RoxioAudioCentral] "C:\Program Files\Roxio\Easy CD Creator 6\AudioCentral\RxMon.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [PrinTray] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\printray.exe
O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINDOWS\System32\PSDrvCheck.exe
O4 - HKLM\..\Run: [PCSuiteTrayApplication] C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe -onlytray
O4 - HKLM\..\Run: [MULTIMEDIA KEYBOARD] C:\Program Files\Netropa\Multimedia Keyboard\MMKeybd.exe
O4 - HKLM\..\Run: [LogMeIn GUI] "C:\Program Files\LogMeIn\LogMeInSystray.exe"
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [EM_EXEC] C:\PROGRA~1\Logitech\MOUSEW~1\SYSTEM\EM_EXEC.EXE
O4 - HKLM\..\Run: [DataLayer] C:\Program Files\Common Files\PCSuite\DataLayer\DataLayer.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKCU\..\Run: [STYLEXP] C:\Program Files\TGTSoft\StyleXP\StyleXP.exe -Hide
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Norton SystemWorks] "C:\Program Files\Norton SystemWorks\cfgwiz.exe" /GUID {05858CFD-5CC4-4ceb-AAAF-CF00BF39736A} /MODE CfgWiz
O4 - Startup: Stardock ObjectDock.lnk = C:\Program Files\Stardock\ObjectDock\ObjectDock.exe
O4 - Startup: Yankee Clipper III.lnk = C:\Program Files\YCIII\YankClip.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll
O9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .bcf: C:\Program Files\Internet Explorer\Plugins\NPBelv32.dll
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/english/kavwebscan_unicode.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=36467&clcid=0x409
O16 - DPF: {2B323CD9-50E3-11D3-9466-00A0C9700498} (Yahoo! Audio Conferencing) - http://us.chat1.yimg.com/us.yimg.com/i/chat/applet/v45/yacscom.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://spaces.msn.com/PhotoUpload/MsnPUpld.cab?10,0,910,0
O16 - DPF: {7D1E9C49-BD6A-11D3-87A8-009027A35D73} (Yahoo! Audio UI1) - http://chat.yahoo.com/cab/yacsui.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {E37CB5F0-51F5-4395-A808-5FA49E399F83} (GbPluginObj Class) -
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: LMIinit - C:\WINDOWS\SYSTEM32\LMIinit.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: BlueSoleil Hid Service - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido anti-malware\ewidoguard.exe
O23 - Service: LogMeIn Maintenance Service (LMIMaint) - 3am Labs, Inc. - C:\Program Files\LogMeIn\RaMaint.exe
O23 - Service: LogMeIn - 3am Labs, Inc. - C:\Program Files\LogMeIn\LogMeIn.exe
O23 - Service: Netropa NHK Server (nhksrv) - Unknown owner - C:\Program Files\Netropa\Multimedia Keyboard\nhksrv.exe
O23 - Service: StyleXPService - Unknown owner - C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe

pskelley
2006-04-23, 17:12
Cheers Vic, I knew that was going to be tough and it had to be done. How did your computer get so trashed:scratch: Well, let's see what is left to do.

Looking at HJT first this time: Scan saved at 5:13:34 PM, on 4/22/2006
Your HJT log looks good. Do you know what this is?
O16 - DPF: {E37CB5F0-51F5-4395-A808-5FA49E399F83} (GbPluginObj Class) -
If not, use HJT to remove it. If it is valid, you will be prompted to install it again if you visit the site.

I may be duplicating information, I am working many logs and there is too much to look back over to see if I posted this before.
Here is some great information from Tony Klein, Texruss, ChrisRLG and Grinler to help you stay clean and safe online:
http://boards.cexx.org/viewtopic.php?t=957
http://russelltexas.com/malware/allclear.htm
http://forum.malwareremoval.com/viewtopic.php?t=14
http://www.bleepingcomputer.com/forums/topict2520.html
http://cybercoyote.org/security/not-admin.shtml

ewido is a great program but it does use some resources. Once the trial is over you can update and use the scanner for as long as you wish, but unless you purchase it you should turn it off completely so it does not run unless you start it manually.

System Restore does not know the good files from the bad. In case bad stuff has gotten into your System Restore files, follow the instructions in this link to get clean System Restore files. Turn it off, reboot then turn it back on:
http://service1.symantec.com/SUPPORT/tsgeninfo.nsf/docid/2001111912274039?Open&src=sec_doc_nam

ewido anti-malware - Scan report Created on: 5:53:17 PM, 4/22/2006Looks like all Firefox cookies, this information will help you control these cookies if you wish:
http://privacy.getnetwise.org/browsing/tools/firefox1/ffdisablecookies
http://www.mozilla.org/projects/security/pki/psm/help_21/using_priv_help.html
good to here: C:\WINDOWS\ms062415127673.exe is gone, keep an eye open for a couple of days to make sure it does not return. This other number is in my understanding the number that is assign to the user so if there are multiple users they can be identified by that S number, I have one in my bin also, not to be concerned about it.
C:\RECYCLER\S-1-5-21-1935655697-1972579041-725345543-1003.

KASPERSKY ON-LINE SCANNER REPORT: Sunday, April 23, 2006 1:39:54 AM
Not being a user of Norton or Outlook, I am a little unsure how to advise you here. Since we deleted all of the Symantec/Norton folder, I am astounded at how Norton can place their folder into a program like Outlook. My suggestion would be to boot to safe mode and delete:
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/ <<< that folder in red. The alternate would be to contact Symantec for instructions.
http://www.symantec.com/techsupp/home_homeoffice/index.html It looks like the way they are stored, they can't get back on the computer, but I would want them gone if I were you. Besides that issue, we have cleaned a load of junk off of your computer, how is it running now.

Thanks...Phil

victorbrca
2006-04-24, 04:07
Hi Phil,

Thanks a lot for all the info. I installed ZoneAlarm, SpywareBlaster and updated my hosts file on my pc. Also did some changes to my IE security settings. Hopefully now I can keep it clean from malwares.

Something weird did happen thou. When I re-started the SDHelper and TeaTimer on Spybot, it re-installed the old registry settings without letting me say no. I was able to delete all of the ones you mentioned before, but there are about 4 entries that I'm suspicious about.

These are the entries:

O16 - DPF: {01010E00-5E80-11D8-9E86-0007E96C65AE} -
O16 - DPF: {01012101-5E80-11D8-9E86-0007E96C65AE} -
O16 - DPF: {1F2F4C9E-6F09-47BC-970D-3C54734667FE} -
O16 - DPF: {CE28D5D2-60CF-4C7D-9FE8-0F47A3308078} -

I cleaned the system re-store points as well.

In regards to the Norton folders, I found out that it had 2x folders from 2 different installs, and I had deleted only one of them. I will run kaspersky once again later on to check it out.

Runned Ewido and got no hits.


Vic.


-----------------------------------------------------------
Logfile of HijackThis v1.99.1
Scan saved at 9:10:31 PM, on 4/23/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Netropa\Multimedia Keyboard\nhksrv.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\Program Files\LogMeIn\RaMaint.exe
C:\Program Files\LogMeIn\LogMeIn.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
C:\Program Files\Roxio\Easy CD Creator 6\DragToDisc\DrgToDsc.exe
C:\Program Files\Roxio\Easy CD Creator 6\AudioCentral\RxMon.exe
C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe
C:\Program Files\Netropa\Multimedia Keyboard\MMKeybd.exe
C:\Program Files\LogMeIn\LogMeInSystray.exe
C:\PROGRA~1\Logitech\MOUSEW~1\SYSTEM\EM_EXEC.EXE
C:\Program Files\Common Files\PCSuite\DataLayer\DataLayer.exe
C:\Program Files\Netropa\Multimedia Keyboard\TrayMon.exe
C:\Program Files\Netropa\Onscreen Display\OSD.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\PROGRA~1\COMMON~1\PCSuite\Services\SERVIC~1.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Roxio\Easy CD Creator 6\AudioCentral\Playlist.exe
C:\Program Files\Stardock\ObjectDock\ObjectDock.exe
C:\Program Files\YCIII\YankClip.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\AntiSpyWare\HijackThis.exe

O2 - BHO: G-Buster Browser Defense - {C41A1C0E-EA6C-11D4-B1B8-444553540000} - C:\WINDOWS\Downloaded Program Files\gbieh.dll
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
O4 - HKLM\..\Run: [RoxioEngineUtility] "C:\Program Files\Common Files\Roxio Shared\System\EngUtil.exe"
O4 - HKLM\..\Run: [RoxioDragToDisc] "C:\Program Files\Roxio\Easy CD Creator 6\DragToDisc\DrgToDsc.exe"
O4 - HKLM\..\Run: [RoxioAudioCentral] "C:\Program Files\Roxio\Easy CD Creator 6\AudioCentral\RxMon.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [PrinTray] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\printray.exe
O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINDOWS\System32\PSDrvCheck.exe
O4 - HKLM\..\Run: [PCSuiteTrayApplication] C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe -onlytray
O4 - HKLM\..\Run: [MULTIMEDIA KEYBOARD] C:\Program Files\Netropa\Multimedia Keyboard\MMKeybd.exe
O4 - HKLM\..\Run: [LogMeIn GUI] "C:\Program Files\LogMeIn\LogMeInSystray.exe"
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [EM_EXEC] C:\PROGRA~1\Logitech\MOUSEW~1\SYSTEM\EM_EXEC.EXE
O4 - HKLM\..\Run: [DataLayer] C:\Program Files\Common Files\PCSuite\DataLayer\DataLayer.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [Zone Labs Client] C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
O4 - HKCU\..\Run: [STYLEXP] C:\Program Files\TGTSoft\StyleXP\StyleXP.exe -Hide
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Startup: Stardock ObjectDock.lnk = C:\Program Files\Stardock\ObjectDock\ObjectDock.exe
O4 - Startup: Yankee Clipper III.lnk = C:\Program Files\YCIII\YankClip.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll
O9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .bcf: C:\Program Files\Internet Explorer\Plugins\NPBelv32.dll
O16 - DPF: {01010E00-5E80-11D8-9E86-0007E96C65AE} -
O16 - DPF: {01012101-5E80-11D8-9E86-0007E96C65AE} -
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/english/kavwebscan_unicode.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=36467&clcid=0x409
O16 - DPF: {1F2F4C9E-6F09-47BC-970D-3C54734667FE} -
O16 - DPF: {2B323CD9-50E3-11D3-9466-00A0C9700498} (Yahoo! Audio Conferencing) - http://us.chat1.yimg.com/us.yimg.com/i/chat/applet/v45/yacscom.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://spaces.msn.com/PhotoUpload/MsnPUpld.cab?10,0,910,0
O16 - DPF: {7D1E9C49-BD6A-11D3-87A8-009027A35D73} (Yahoo! Audio UI1) - http://chat.yahoo.com/cab/yacsui.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {CE28D5D2-60CF-4C7D-9FE8-0F47A3308078} -
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: LMIinit - C:\WINDOWS\SYSTEM32\LMIinit.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: BlueSoleil Hid Service - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: LogMeIn Maintenance Service (LMIMaint) - 3am Labs, Inc. - C:\Program Files\LogMeIn\RaMaint.exe
O23 - Service: LogMeIn - 3am Labs, Inc. - C:\Program Files\LogMeIn\LogMeIn.exe
O23 - Service: Netropa NHK Server (nhksrv) - Unknown owner - C:\Program Files\Netropa\Multimedia Keyboard\nhksrv.exe
O23 - Service: StyleXPService - Unknown owner - C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe

pskelley
2006-04-24, 12:31
Hi Vic, sounds like you are getting this box in shape You get to make the decision, but I personally run SpywareGuard which does the same job as TeaTimer. It comes from the same folks as SpywareBlaster. If you decide to run it, then turn off TeaTimer: http://russelltexas.com/malware/teatimer.htm For your benefit, here are tutorials for the ones I run:
Spybot
http://www.bleepingcomputer.com/forums/tutorial43.html
Ad-aware
http://www.bleepingcomputer.com/forums/tutorial48.html
SpywareBlaster
http://www.bleepingcomputer.com/forums/tutorial49.html
SpywareGuard:
http://www.bleepingcomputer.com/forums/tutorial50.html
IE-Spyad
http://www.bleepingcomputer.com/forums/tutorial53.html

It may be that TeaTimer is causing the ActiveX items to return. Let me briefly say that when you delete an ActiveX, if you return to that website again to use that program, you will be prompted to download the ActiveX again. When you made the new ActiveX settings, you should have asked to be prompted BEFORE any ActiveX can be downloaded. Let's see what they are now:

The four 016 lines in the order you have them posted are:
1) SupportSoft SmartIssue L {01010E00-5E80-11D8-9E86-0007E96C65AE} tgctlsi.cab Related to Symantec services
2) SupportSoft Script Runner Class L {01012101-5E80-11D8-9E86-0007E96C65AE} tgctlsr.cab Related to Symantec services
3) Symantec Automated Support Utility L {1F2F4C9E-6F09-47BC-970D-3C54734667FE} http://www.symantec.com/techsupp/asa
4) Symantec Automated Support Utility L {CE28D5D2-60CF-4C7D-9FE8-0F47A3308078} http://www.symantec.com/techsupp/asa

It is my guess these were downloaded for the Symantec program you were running and while they are not malware, are probably no longer needed. I would remove them with HJT and you will probably have to turn TeaTimer off to do it.

Another way that may work is: Internet Explorer > Tools > Internet Options > Settings > View Objects. Highlite the ones you no longer use and hit your delete key.

No need to post again if all is well.

Cheers...Phil:bigthumb: