C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\d9b41d8500a81e3523dec106a0f1baa2_51e01fde-74c3-4bfb-afbe-6ca7026f1cff Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\db74f42d769e13d277b002f53d6312fb_51e01fde-74c3-4bfb-afbe-6ca7026f1cff Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\e2368fec2b742baf08df7bc5f4dd6e62_51e01fde-74c3-4bfb-afbe-6ca7026f1cff Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\e27296b1cc5aaca6998068e13ab72a18_51e01fde-74c3-4bfb-afbe-6ca7026f1cff Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\eccb1f87400496e44104783c9e5b9d91_51e01fde-74c3-4bfb-afbe-6ca7026f1cff Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\ef347683040c3e656d26ed5057a4704b_51e01fde-74c3-4bfb-afbe-6ca7026f1cff Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\f201869374c19ce37d53ddc6bdaa7a08_51e01fde-74c3-4bfb-afbe-6ca7026f1cff Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\f73ad90be3388101b8be0adba690708f_51e01fde-74c3-4bfb-afbe-6ca7026f1cff Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\f8df5cbe344e3f806bc1fa8370c91142_51e01fde-74c3-4bfb-afbe-6ca7026f1cff Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\fc028637a90bcf49a37e9896a422665c_51e01fde-74c3-4bfb-afbe-6ca7026f1cff Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\fc5265d55b855da4be8dc5e670ec7117_51e01fde-74c3-4bfb-afbe-6ca7026f1cff Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\fcc1d1f537691545ee33c8d51c3f2010_51e01fde-74c3-4bfb-afbe-6ca7026f1cff Object is locked skipped
C:\Documents and Settings\All Users\Application Data\QuickTime\QuickTimeFavorites.qtr Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DyFuCAInternetOptimizer2.zip/optimize.exe Suspicious: Password-protected-EXE skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DyFuCAInternetOptimizer2.zip ZIP: suspicious - 1 skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\SmitfraudC2.zip/MTE3NDI6ODoxNg.exe Suspicious: Password-protected-EXE skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\SmitfraudC2.zip ZIP: suspicious - 1 skipped
C:\Documents and Settings\LocalService\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\Owner\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\Owner\Local Settings\Application Data\Identities\{86C42B41-3ECF-4EDE-9752-9A6AF46A1710}\Microsoft\Outlook Express\Inbox.dbx/[From
webmaster@yahoo.com][Date Tue, 06 Apr 2004 16:09:51]/UNNAMED/pass-message.pif Infected: Email-Worm.Win32.Sober.f skipped
C:\Documents and Settings\Owner\Local Settings\Application Data\Identities\{86C42B41-3ECF-4EDE-9752-9A6AF46A1710}\Microsoft\Outlook Express\Inbox.dbx/[From
webmaster@yahoo.com][Date Tue, 06 Apr 2004 16:09:51]/UNNAMED Infected: Email-Worm.Win32.Sober.f skipped
C:\Documents and Settings\Owner\Local Settings\Application Data\Identities\{86C42B41-3ECF-4EDE-9752-9A6AF46A1710}\Microsoft\Outlook Express\Inbox.dbx Mail MS Outlook 5: infected - 2 skipped
C:\Documents and Settings\Owner\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\Owner\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\Owner\Local Settings\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\Owner\Local Settings\History\History.IE5\MSHist012007070420070705\index.dat Object is locked skipped
C:\Documents and Settings\Owner\My Documents\kristyphoto\Website\Inbox.dbx/[From
kristy.robinson@slingshot.co.nz][Date Tue, 13 Apr 2004 16:00:42 +1200]/text.pif Infected: Email-Worm.Win32.Sober.f skipped
C:\Documents and Settings\Owner\My Documents\kristyphoto\Website\Inbox.dbx/[From
webmaster@yahoo.com][Date Tue, 06 Apr 2004 16:09:51]/UNNAMED/pass-message.pif Infected: Email-Worm.Win32.Sober.f skipped
C:\Documents and Settings\Owner\My Documents\kristyphoto\Website\Inbox.dbx/[From
webmaster@yahoo.com][Date Tue, 06 Apr 2004 16:09:51]/UNNAMED Infected: Email-Worm.Win32.Sober.f skipped
C:\Documents and Settings\Owner\My Documents\kristyphoto\Website\Inbox.dbx/[From Helena <tracey@yourbroker.co.nz>][Date Mon, 14 Jun 2004]/UNNAMED/www.ecard.com.funny.picture.index.nude.php356.pif Infected: Email-Worm.Win32.Zafi.b skipped
C:\Documents and Settings\Owner\My Documents\kristyphoto\Website\Inbox.dbx/[From Helena <tracey@yourbroker.co.nz>][Date Mon, 14 Jun 2004]/UNNAMED Infected: Email-Worm.Win32.Zafi.b skipped
C:\Documents and Settings\Owner\My Documents\kristyphoto\Website\Inbox.dbx/[From
kristy.robinson@slingshot.co.nz][Date Tue, 13 Apr 2004 16:00:42 +1200]/UNNAMED/text.pif Infected: Email-Worm.Win32.Sober.f skipped
C:\Documents and Settings\Owner\My Documents\kristyphoto\Website\Inbox.dbx/[From
kristy.robinson@slingshot.co.nz][Date Tue, 13 Apr 2004 16:00:42 +1200]/UNNAMED Infected: Email-Worm.Win32.Sober.f skipped
C:\Documents and Settings\Owner\My Documents\kristyphoto\Website\Inbox.dbx/[From
webmaster@yahoo.com][Date Tue, 06 Apr 2004 16:09:51]/UNNAMED/pass-message.pif Infected: Email-Worm.Win32.Sober.f skipped
C:\Documents and Settings\Owner\My Documents\kristyphoto\Website\Inbox.dbx/[From
webmaster@yahoo.com][Date Tue, 06 Apr 2004 16:09:51]/UNNAMED Infected: Email-Worm.Win32.Sober.f skipped
C:\Documents and Settings\Owner\My Documents\kristyphoto\Website\Inbox.dbx Mail MS Outlook 5: infected - 9 skipped
C:\Documents and Settings\Owner\ntuser.dat Object is locked skipped
C:\Documents and Settings\Owner\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\Rach\Local Settings\Temp\avyqtfwh.exe Infected: Trojan-Downloader.Win32.Tiny.id skipped
C:\Documents and Settings\Rach\Local Settings\Temp\kttudlxp.dll Infected: Trojan-Spy.Win32.VBStat.h skipped
C:\Documents and Settings\Rach\My Documents\Mario\installdrivecleanerstart_tbrn.cab/UDC6_5555_D21M0303NetInstaller.exe Infected: not-a-virus

ownloader.Win32.WinFixer.m skipped
C:\Documents and Settings\Rach\My Documents\Mario\installdrivecleanerstart_tbrn.cab CAB: infected - 1 skipped
C:\Program Files\MSN Messenger\riched20.dll Infected: not-a-virus:AdTool.Win32.MyWebSearch skipped
C:\QooBox\Quarantine\C\WINDOWS\system32\xajvwtgg.exe.vir Infected: Trojan-Downloader.Win32.Tiny.id skipped
C:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped
C:\System Volume Information\_restore{C8466EC9-1527-4E74-B2C1-9D19E979D6A3}\RP930\A0100899.scr Infected: not-a-virus:AdTool.Win32.MyWebSearch skipped
C:\System Volume Information\_restore{C8466EC9-1527-4E74-B2C1-9D19E979D6A3}\RP941\A0102135.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.ki skipped
C:\System Volume Information\_restore{C8466EC9-1527-4E74-B2C1-9D19E979D6A3}\RP942\A0102242.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.ki skipped
C:\System Volume Information\_restore{C8466EC9-1527-4E74-B2C1-9D19E979D6A3}\RP944\A0102341.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.ki skipped
C:\System Volume Information\_restore{C8466EC9-1527-4E74-B2C1-9D19E979D6A3}\RP944\A0102368.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.ki skipped
C:\System Volume Information\_restore{C8466EC9-1527-4E74-B2C1-9D19E979D6A3}\RP944\A0102369.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.ki skipped
C:\System Volume Information\_restore{C8466EC9-1527-4E74-B2C1-9D19E979D6A3}\RP944\A0102409.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.ki skipped
C:\System Volume Information\_restore{C8466EC9-1527-4E74-B2C1-9D19E979D6A3}\RP944\A0102410.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.ki skipped
C:\System Volume Information\_restore{C8466EC9-1527-4E74-B2C1-9D19E979D6A3}\RP944\A0102426.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.ki skipped
C:\System Volume Information\_restore{C8466EC9-1527-4E74-B2C1-9D19E979D6A3}\RP944\A0102427.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.ki skipped
C:\System Volume Information\_restore{C8466EC9-1527-4E74-B2C1-9D19E979D6A3}\RP945\A0102566.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.ki skipped
C:\System Volume Information\_restore{C8466EC9-1527-4E74-B2C1-9D19E979D6A3}\RP947\A0102586.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.ki skipped
C:\System Volume Information\_restore{C8466EC9-1527-4E74-B2C1-9D19E979D6A3}\RP950\A0102652.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.ki skipped
C:\System Volume Information\_restore{C8466EC9-1527-4E74-B2C1-9D19E979D6A3}\RP951\A0102700.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.ki skipped
C:\System Volume Information\_restore{C8466EC9-1527-4E74-B2C1-9D19E979D6A3}\RP951\A0102701.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.ki skipped
C:\System Volume Information\_restore{C8466EC9-1527-4E74-B2C1-9D19E979D6A3}\RP953\A0102712.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.ki skipped
C:\System Volume Information\_restore{C8466EC9-1527-4E74-B2C1-9D19E979D6A3}\RP953\A0102732.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.ki skipped
C:\System Volume Information\_restore{C8466EC9-1527-4E74-B2C1-9D19E979D6A3}\RP953\A0102733.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.ki skipped
C:\System Volume Information\_restore{C8466EC9-1527-4E74-B2C1-9D19E979D6A3}\RP954\A0102741.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.ki skipped
C:\System Volume Information\_restore{C8466EC9-1527-4E74-B2C1-9D19E979D6A3}\RP954\A0102759.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.ki skipped
C:\System Volume Information\_restore{C8466EC9-1527-4E74-B2C1-9D19E979D6A3}\RP955\A0102795.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.ki skipped
C:\System Volume Information\_restore{C8466EC9-1527-4E74-B2C1-9D19E979D6A3}\RP955\A0102818.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.ki skipped
C:\System Volume Information\_restore{C8466EC9-1527-4E74-B2C1-9D19E979D6A3}\RP955\A0102838.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.ki skipped
C:\System Volume Information\_restore{C8466EC9-1527-4E74-B2C1-9D19E979D6A3}\RP957\A0102865.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.ki skipped
C:\System Volume Information\_restore{C8466EC9-1527-4E74-B2C1-9D19E979D6A3}\RP957\A0102887.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.ki skipped
C:\System Volume Information\_restore{C8466EC9-1527-4E74-B2C1-9D19E979D6A3}\RP957\A0102888.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.ki skipped
C:\System Volume Information\_restore{C8466EC9-1527-4E74-B2C1-9D19E979D6A3}\RP960\A0103887.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.ki skipped
C:\System Volume Information\_restore{C8466EC9-1527-4E74-B2C1-9D19E979D6A3}\RP960\A0103888.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.ki skipped
C:\System Volume Information\_restore{C8466EC9-1527-4E74-B2C1-9D19E979D6A3}\RP960\A0103889.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.ki skipped
C:\System Volume Information\_restore{C8466EC9-1527-4E74-B2C1-9D19E979D6A3}\RP960\A0103890.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.ki skipped
C:\System Volume Information\_restore{C8466EC9-1527-4E74-B2C1-9D19E979D6A3}\RP961\A0103900.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.fp skipped
C:\System Volume Information\_restore{C8466EC9-1527-4E74-B2C1-9D19E979D6A3}\RP961\A0104887.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.ki skipped
C:\System Volume Information\_restore{C8466EC9-1527-4E74-B2C1-9D19E979D6A3}\RP961\A0104892.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.jp skipped
C:\System Volume Information\_restore{C8466EC9-1527-4E74-B2C1-9D19E979D6A3}\RP961\A0104893.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.ki skipped
C:\System Volume Information\_restore{C8466EC9-1527-4E74-B2C1-9D19E979D6A3}\RP961\A0106036.exe Infected: Trojan-Downloader.Win32.Tiny.id skipped
C:\System Volume Information\_restore{C8466EC9-1527-4E74-B2C1-9D19E979D6A3}\RP961\change.log Object is locked skipped
C:\Temporary Internet Files\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\VundoFix Backups\jkkijkk.dll.bad Infected: not-a-virus:AdWare.Win32.Virtumonde.jp skipped
C:\VundoFix Backups\jkklj.dll.bad Infected: not-a-virus:AdWare.Win32.Virtumonde.fp skipped
C:\VundoFix Backups\qrkjmpiv.dll.bad Infected: not-a-virus:AdWare.Win32.Virtumonde.ki skipped
C:\VundoFix Backups\xbdamkjd.dll.bad Infected: not-a-virus:AdWare.Win32.Virtumonde.ki skipped
C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped
C:\WINDOWS\SchedLgU.Txt Object is locked skipped
C:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked skipped
C:\WINDOWS\Sti_Trace.log Object is locked skipped
C:\WINDOWS\system32\CatRoot2\edb.log Object is locked skipped
C:\WINDOWS\system32\CatRoot2\tmp.edb Object is locked skipped
C:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\default Object is locked skipped
C:\WINDOWS\system32\config\DEFAULT.LOG Object is locked skipped
C:\WINDOWS\system32\config\sam Object is locked skipped
C:\WINDOWS\system32\config\SAM.LOG Object is locked skipped
C:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\security Object is locked skipped
C:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped
C:\WINDOWS\system32\config\software Object is locked skipped
C:\WINDOWS\system32\config\SOFTWARE.LOG Object is locked skipped
C:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\system Object is locked skipped
C:\WINDOWS\system32\config\SYSTEM.LOG Object is locked skipped
C:\WINDOWS\system32\h323log.txt Object is locked skipped
C:\WINDOWS\system32\mscjjn.dll Infected: not-a-virus:AdWare.Win32.180Solutions skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP Object is locked skipped
C:\WINDOWS\Temp\Perflib_Perfdata_51c.dat Object is locked skipped
C:\WINDOWS\wiadebug.log Object is locked skipped
C:\WINDOWS\wiaservc.log Object is locked skipped
C:\WINDOWS\WindowsUpdate.log Object is locked skipped
Scan process completed.