Never used a forum before so I am not sure what I should do here. Somehow, while using the computer it got infected with a malware that keeps giving me pop-ups (one red and one blue) saying my computer is infected and takes me to a site that does malware software removal evaluations. A little yellow triangle shows up with my other icons in the tool bar and pops up and says the same thing. I also had (but is gone now as a result after running Smitfraud remover by S!R!.URZ) had a blue screen that changed my wallpaper and gave me a message saying that I was infected and needed to perform a complete scan. I have Symantec Corporate AntiVirus and run Spybot Search and Destroy all the time. This just happened recently (maybe 2-3 days ago). I ran Symantec atleast twice, Spybot 3 or 4 times and also Trend Micro Housecall 3 or 4 times and still am having problems. I have followed the directions on your " Before you post" and have the two logs but they exceed the number of characters allowed so I eliminated any spaces I could:
-------------------------------------------------------------------------------
KASPERSKY ONLINE SCANNER REPORT
Friday, March 28, 2008 2:08:26 PM
Operating System: Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600)
Kaspersky Online Scanner version: 5.0.98.0
Kaspersky Anti-Virus database last update: 28/03/2008
Kaspersky Anti-Virus database records: 668879
-------------------------------------------------------------------------------
Scan Settings:
Scan using the following antivirus database: extended
Scan Archives: true
Scan Mail Bases: true
Scan Target - My Computer:
C:\ D:\ E:\ F:\
Scan Statistics:
Total number of scanned objects: 145373
Number of viruses found: 10
Number of infected objects: 27
Number of suspicious objects: 0
Duration of the scan process: 02:44:50
Infected Object Name / Virus Name / Last Action
C:\Documents and Settings\Administrator\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\Administrator\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\administrator.LMJPHOTO\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\administrator.LMJPHOTO\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Sony Corporation\ SonicStage\Packages\MtData.ldb Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Sony Corporation\ SonicStage\Packages\MtData.mdb Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Sony Corporation\VAIO Entertainment Platform\1.0\VzCdb\MtData.ldb Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Sony Corporation\VAIO Entertainment Platform\1.0\VzCdb\MtData.mdb Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Common Client\settings.dat Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0D700000.VBN Infected: Trojan-Downloader.JS.Agent.et skipped
C:\Documents and Settings\All Users\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\All Users\NTUSER.DAT.LOG Object is locked skipped
C:\Documents and Settings\All Users.WINXP\Application Data\Microsoft\Crypto\ RSA\MachineKeys\7a83e29f55d612fa72368812f2dd9ad0_bd5b096d-f722-4f03-933d-307eca40b83f Object is locked skipped
C:\Documents and Settings\All Users.WINXP\Application Data\Microsoft\Dr Watson\ user.dmp Object is locked skipped
C:\Documents and Settings\All Users.WINXP\ntuser.dat Object is locked skipped
C:\Documents and Settings\All Users.WINXP\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\Larry\.housecall6.6\Quarantine\748d8a81-33a01b12.bac_a03868/BaaaaBaa.class Infected: Trojan.Java.ClassLoader.ao skipped
C:\Documents and Settings\Larry\.housecall6.6\Quarantine\748d8a81-33a01b12.bac_a03868/VaaaaaaaBaa.class Infected: Trojan.Java.ClassLoader.ao skipped
C:\Documents and Settings\Larry\.housecall6.6\Quarantine\748d8a81-33a01b12.bac_a03868/Baaaaa.class Infected: Trojan.Java.ClassLoader.ao skipped
C:\Documents and Settings\Larry\.housecall6.6\Quarantine\748d8a81-33a01b12.bac_a03868 ZIP: infected - 3 skipped
C:\Documents and Settings\Larry\.housecall6.6\Quarantine\748d8a81-33a01b12.bac_a03868 CryptFF.b: infected - 3 skipped
C:\Documents and Settings\Larry\.housecall6.6\Quarantine\crtdcghcn.jar-53f8e709-57707b69.zip.bac_a03868/BaaaaBaa.class Infected: Trojan.Java.ClassLoader.ao skipped
C:\Documents and Settings\Larry\.housecall6.6\Quarantine\crtdcghcn.jar-53f8e709-57707b69.zip.bac_a03868/VaaaaaaaBaa.class Infected: Trojan.Java.ClassLoader.ao skipped
C:\Documents and Settings\Larry\.housecall6.6\Quarantine\crtdcghcn.jar-53f8e709-57707b69.zip.bac_a03868/Baaaaa.class Infected: Trojan.Java.ClassLoader.ao skipped
C:\Documents and Settings\Larry\.housecall6.6\Quarantine\crtdcghcn.jar-53f8e709-57707b69.zip.bac_a03868 ZIP: infected - 3 skipped
C:\Documents and Settings\Larry\.housecall6.6\Quarantine\crtdcghcn.jar-53f8e709-57707b69.zip.bac_a03868 CryptFF.b: infected - 3 skipped
C:\Documents and Settings\Larry\.housecall6.6\Quarantine\dwnrpofk.dll.vir.bac_a01084 Infected: not-a-virus:AdWare.Win32.Vapsup.dbv skipped
C:\Documents and Settings\Larry\.housecall6.6\Quarantine\runfile[1].exe.bac_a02464 Infected: Trojan-Clicker.Win32.Small.cc skipped
C:\Documents and Settings\Larry\Application Data\Adobe\Acrobat\7.0\Updater\ udlog.txt Object is locked skipped
C:\Documents and Settings\Larry\Application Data\Sun\Java\Deployment\cache\ javapi\v1.0\jar\cnte-dhncgts.jar-266cf5d1-1cb98462.zip/BnnnnBaa.class Infected: Trojan.Java.ClassLoader.as skipped
C:\Documents and Settings\Larry\Application Data\Sun\Java\Deployment\cache\ javapi\v1.0\jar\cnte-dhncgts.jar-266cf5d1-1cb98462.zip/VaannnaaBaa.class Infected: Trojan.Java.ClassLoader.as skipped
C:\Documents and Settings\Larry\Application Data\Sun\Java\Deployment\cache\ javapi\v1.0\jar\cnte-dhncgts.jar-266cf5d1-1cb98462.zip/Bnnnnn.class Infected: Trojan.Java.ClassLoader.as skipped
C:\Documents and Settings\Larry\Application Data\Sun\Java\Deployment\cache\ javapi\v1.0\jar\cnte-dhncgts.jar-266cf5d1-1cb98462.zip ZIP: infected - 3 skipped
C:\Documents and Settings\Larry\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\Larry\Desktop\Misc Software\SmitfraudFix\Reboot.exe Infected: not-a-virus:RiskTool.Win32.Reboot.f skipped
C:\Documents and Settings\Larry\LMJ Files on Vaio\LMJ Download Files\LMJ IS Files\Spyware Removal\SmitfraudFix.exe/data.rar/SmitfraudFix/Reboot.exe Infected: not-a-virus:RiskTool.Win32.Reboot.f skipped
C:\Documents and Settings\Larry\LMJ Files on Vaio\LMJ Download Files\LMJ IS Files\Spyware Removal\SmitfraudFix.exe/data.rar Infected: not-a-virus:RiskTool.Win2.Reboot.f skipped
C:\Documents and Settings\Larry\LMJ Files on Vaio\LMJ Download Files\LMJ IS Files\Spyware Removal\SmitfraudFix.exe RarSFX: infected - 2 skipped
C:\Documents and Settings\Larry\Local Settings\Application Data\Microsoft\ Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\Larry\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\Larry\Local Settings\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\Larry\Local Settings\History\History.IE5\MSHist012008032820080329\index.dat Object is locked skipped
C:\Documents and Settings\Larry\Local Settings\Temp\010970 Object is locked skipped
C:\Documents and Settings\Larry\Local Settings\Temp\hsperfdata_Larry\2752 Object is locked skipped
C:\Documents and Settings\Larry\Local Settings\Temporary Internet Files\AntiPhishing\B3BB5BBA-E7D5-40AB-A041-A5B1C0B26C8F.dat Object is locked skipped
C:\Documents and Settings\Larry\Local Settings\Temporary Internet Files\ Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\Larry\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\Larry\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\larry.LMJPHOTO\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\larry.LMJPHOTO\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\LocalService\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\ Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\ Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\ Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped
C:\hpcmerr.log Object is locked skipped
C:\QooBox\Quarantine\C\WINDOWS\qvdntlmw.dll.vir Infected: not-a-virus:AdWare. Win32.Vapsup.dcd skipped
C:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped
C:\System Volume Information\_restore{8C459B98-89AA-45F6-A5B9-323014416103}\RP310\A0046819.dll Infected: not-a-virus:AdWare.Win32.Vapsup.dcd skipped
C:\System Volume Information\_restore{8C459B98-89AA-45F6-A5B9-323014416103}\RP310\A0046820.dll Infected: not-a-virus:AdWare.Win32.Vapsup.dbv skipped
C:\System Volume Information\_restore{8C459B98-89AA-45F6-A5B9-323014416103}\RP313\A0047693.dll Infected: not-a-virus:AdWare.Win32.Vapsup.dcf skipped
C:\System Volume Information\_restore{8C459B98-89AA-45F6-A5B9-323014416103}\RP313\A0047694.dll Infected: not-a-virus:AdWare.Win32.Vapsup.dbz skipped
C:\System Volume Information\_restore{8C459B98-89AA-45F6-A5B9-323014416103}\RP313\A0047695.exe Infected: not-a-virus:AdWare.Win32.Vapsup.dce skipped
C:\System Volume Information\_restore{8C459B98-89AA-45F6-A5B9-323014416103}\RP314\change.log Object is locked skipped
C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped
C:\WINDOWS\SchedLgU.Txt Object is locked skipped
C:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked skipped
C:\WINDOWS\system32\CatRoot2\edb.log Object is locked skipped
C:\WINDOWS\system32\CatRoot2\edbtmp.log Object is locked skipped
C:\WINDOWS\system32\CatRoot2\tmp.edb Object is locked skipped
C:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\default Object is locked skipped
C:\WINDOWS\system32\config\default.LOG Object is locked skipped
C:\WINDOWS\system32\config\Internet.evt Object is locked skipped
C:\WINDOWS\system32\config\SAM Object is locked skipped
C:\WINDOWS\system32\config\SAM.LOG Object is locked skipped
C:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\SECURITY Object is locked skipped
C:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped
C:\WINDOWS\system32\config\software Object is locked skipped
C:\WINDOWS\system32\config\software.LOG Object is locked skipped
C:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\system Object is locked skipped
C:\WINDOWS\system32\config\system.LOG Object is locked skipped
C:\WINDOWS\system32\h323log.txt Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP Object is locked skipped
C:\WINDOWS\Temp\JET69A.tmp Object is locked skipped
C:\WINDOWS\Temp\JET83F.tmp Object is locked skipped
C:\WINDOWS\WindowsUpdate.log Object is locked skipped
Scan process completed.
Left the Trend Micro Hijackthis window open, as instructions weren't clear as to whether to close it or not or if actions that will need to be taken once reply is received will require this window remains open. Haven't had any previous problems with virus infections prior to this. Must have been very careful or lucky, not sure which. Usually all my computer work is done by my administrator (an IT pro) at home, but I am out of the state and need help. He is the one who recommended Spybot, which I really like. It is especially easy to use. Don't know what I need to do now. Please advise.
Thanks for the help in advance,
Moe
-------------------------------------------------------------------------------
KASPERSKY ONLINE SCANNER REPORT
Friday, March 28, 2008 2:08:26 PM
Operating System: Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600)
Kaspersky Online Scanner version: 5.0.98.0
Kaspersky Anti-Virus database last update: 28/03/2008
Kaspersky Anti-Virus database records: 668879
-------------------------------------------------------------------------------
Scan Settings:
Scan using the following antivirus database: extended
Scan Archives: true
Scan Mail Bases: true
Scan Target - My Computer:
C:\ D:\ E:\ F:\
Scan Statistics:
Total number of scanned objects: 145373
Number of viruses found: 10
Number of infected objects: 27
Number of suspicious objects: 0
Duration of the scan process: 02:44:50
Infected Object Name / Virus Name / Last Action
C:\Documents and Settings\Administrator\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\Administrator\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\administrator.LMJPHOTO\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\administrator.LMJPHOTO\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Sony Corporation\ SonicStage\Packages\MtData.ldb Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Sony Corporation\ SonicStage\Packages\MtData.mdb Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Sony Corporation\VAIO Entertainment Platform\1.0\VzCdb\MtData.ldb Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Sony Corporation\VAIO Entertainment Platform\1.0\VzCdb\MtData.mdb Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Common Client\settings.dat Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0D700000.VBN Infected: Trojan-Downloader.JS.Agent.et skipped
C:\Documents and Settings\All Users\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\All Users\NTUSER.DAT.LOG Object is locked skipped
C:\Documents and Settings\All Users.WINXP\Application Data\Microsoft\Crypto\ RSA\MachineKeys\7a83e29f55d612fa72368812f2dd9ad0_bd5b096d-f722-4f03-933d-307eca40b83f Object is locked skipped
C:\Documents and Settings\All Users.WINXP\Application Data\Microsoft\Dr Watson\ user.dmp Object is locked skipped
C:\Documents and Settings\All Users.WINXP\ntuser.dat Object is locked skipped
C:\Documents and Settings\All Users.WINXP\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\Larry\.housecall6.6\Quarantine\748d8a81-33a01b12.bac_a03868/BaaaaBaa.class Infected: Trojan.Java.ClassLoader.ao skipped
C:\Documents and Settings\Larry\.housecall6.6\Quarantine\748d8a81-33a01b12.bac_a03868/VaaaaaaaBaa.class Infected: Trojan.Java.ClassLoader.ao skipped
C:\Documents and Settings\Larry\.housecall6.6\Quarantine\748d8a81-33a01b12.bac_a03868/Baaaaa.class Infected: Trojan.Java.ClassLoader.ao skipped
C:\Documents and Settings\Larry\.housecall6.6\Quarantine\748d8a81-33a01b12.bac_a03868 ZIP: infected - 3 skipped
C:\Documents and Settings\Larry\.housecall6.6\Quarantine\748d8a81-33a01b12.bac_a03868 CryptFF.b: infected - 3 skipped
C:\Documents and Settings\Larry\.housecall6.6\Quarantine\crtdcghcn.jar-53f8e709-57707b69.zip.bac_a03868/BaaaaBaa.class Infected: Trojan.Java.ClassLoader.ao skipped
C:\Documents and Settings\Larry\.housecall6.6\Quarantine\crtdcghcn.jar-53f8e709-57707b69.zip.bac_a03868/VaaaaaaaBaa.class Infected: Trojan.Java.ClassLoader.ao skipped
C:\Documents and Settings\Larry\.housecall6.6\Quarantine\crtdcghcn.jar-53f8e709-57707b69.zip.bac_a03868/Baaaaa.class Infected: Trojan.Java.ClassLoader.ao skipped
C:\Documents and Settings\Larry\.housecall6.6\Quarantine\crtdcghcn.jar-53f8e709-57707b69.zip.bac_a03868 ZIP: infected - 3 skipped
C:\Documents and Settings\Larry\.housecall6.6\Quarantine\crtdcghcn.jar-53f8e709-57707b69.zip.bac_a03868 CryptFF.b: infected - 3 skipped
C:\Documents and Settings\Larry\.housecall6.6\Quarantine\dwnrpofk.dll.vir.bac_a01084 Infected: not-a-virus:AdWare.Win32.Vapsup.dbv skipped
C:\Documents and Settings\Larry\.housecall6.6\Quarantine\runfile[1].exe.bac_a02464 Infected: Trojan-Clicker.Win32.Small.cc skipped
C:\Documents and Settings\Larry\Application Data\Adobe\Acrobat\7.0\Updater\ udlog.txt Object is locked skipped
C:\Documents and Settings\Larry\Application Data\Sun\Java\Deployment\cache\ javapi\v1.0\jar\cnte-dhncgts.jar-266cf5d1-1cb98462.zip/BnnnnBaa.class Infected: Trojan.Java.ClassLoader.as skipped
C:\Documents and Settings\Larry\Application Data\Sun\Java\Deployment\cache\ javapi\v1.0\jar\cnte-dhncgts.jar-266cf5d1-1cb98462.zip/VaannnaaBaa.class Infected: Trojan.Java.ClassLoader.as skipped
C:\Documents and Settings\Larry\Application Data\Sun\Java\Deployment\cache\ javapi\v1.0\jar\cnte-dhncgts.jar-266cf5d1-1cb98462.zip/Bnnnnn.class Infected: Trojan.Java.ClassLoader.as skipped
C:\Documents and Settings\Larry\Application Data\Sun\Java\Deployment\cache\ javapi\v1.0\jar\cnte-dhncgts.jar-266cf5d1-1cb98462.zip ZIP: infected - 3 skipped
C:\Documents and Settings\Larry\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\Larry\Desktop\Misc Software\SmitfraudFix\Reboot.exe Infected: not-a-virus:RiskTool.Win32.Reboot.f skipped
C:\Documents and Settings\Larry\LMJ Files on Vaio\LMJ Download Files\LMJ IS Files\Spyware Removal\SmitfraudFix.exe/data.rar/SmitfraudFix/Reboot.exe Infected: not-a-virus:RiskTool.Win32.Reboot.f skipped
C:\Documents and Settings\Larry\LMJ Files on Vaio\LMJ Download Files\LMJ IS Files\Spyware Removal\SmitfraudFix.exe/data.rar Infected: not-a-virus:RiskTool.Win2.Reboot.f skipped
C:\Documents and Settings\Larry\LMJ Files on Vaio\LMJ Download Files\LMJ IS Files\Spyware Removal\SmitfraudFix.exe RarSFX: infected - 2 skipped
C:\Documents and Settings\Larry\Local Settings\Application Data\Microsoft\ Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\Larry\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\Larry\Local Settings\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\Larry\Local Settings\History\History.IE5\MSHist012008032820080329\index.dat Object is locked skipped
C:\Documents and Settings\Larry\Local Settings\Temp\010970 Object is locked skipped
C:\Documents and Settings\Larry\Local Settings\Temp\hsperfdata_Larry\2752 Object is locked skipped
C:\Documents and Settings\Larry\Local Settings\Temporary Internet Files\AntiPhishing\B3BB5BBA-E7D5-40AB-A041-A5B1C0B26C8F.dat Object is locked skipped
C:\Documents and Settings\Larry\Local Settings\Temporary Internet Files\ Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\Larry\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\Larry\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\larry.LMJPHOTO\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\larry.LMJPHOTO\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\LocalService\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\ Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\ Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\ Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped
C:\hpcmerr.log Object is locked skipped
C:\QooBox\Quarantine\C\WINDOWS\qvdntlmw.dll.vir Infected: not-a-virus:AdWare. Win32.Vapsup.dcd skipped
C:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped
C:\System Volume Information\_restore{8C459B98-89AA-45F6-A5B9-323014416103}\RP310\A0046819.dll Infected: not-a-virus:AdWare.Win32.Vapsup.dcd skipped
C:\System Volume Information\_restore{8C459B98-89AA-45F6-A5B9-323014416103}\RP310\A0046820.dll Infected: not-a-virus:AdWare.Win32.Vapsup.dbv skipped
C:\System Volume Information\_restore{8C459B98-89AA-45F6-A5B9-323014416103}\RP313\A0047693.dll Infected: not-a-virus:AdWare.Win32.Vapsup.dcf skipped
C:\System Volume Information\_restore{8C459B98-89AA-45F6-A5B9-323014416103}\RP313\A0047694.dll Infected: not-a-virus:AdWare.Win32.Vapsup.dbz skipped
C:\System Volume Information\_restore{8C459B98-89AA-45F6-A5B9-323014416103}\RP313\A0047695.exe Infected: not-a-virus:AdWare.Win32.Vapsup.dce skipped
C:\System Volume Information\_restore{8C459B98-89AA-45F6-A5B9-323014416103}\RP314\change.log Object is locked skipped
C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped
C:\WINDOWS\SchedLgU.Txt Object is locked skipped
C:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked skipped
C:\WINDOWS\system32\CatRoot2\edb.log Object is locked skipped
C:\WINDOWS\system32\CatRoot2\edbtmp.log Object is locked skipped
C:\WINDOWS\system32\CatRoot2\tmp.edb Object is locked skipped
C:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\default Object is locked skipped
C:\WINDOWS\system32\config\default.LOG Object is locked skipped
C:\WINDOWS\system32\config\Internet.evt Object is locked skipped
C:\WINDOWS\system32\config\SAM Object is locked skipped
C:\WINDOWS\system32\config\SAM.LOG Object is locked skipped
C:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\SECURITY Object is locked skipped
C:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped
C:\WINDOWS\system32\config\software Object is locked skipped
C:\WINDOWS\system32\config\software.LOG Object is locked skipped
C:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\system Object is locked skipped
C:\WINDOWS\system32\config\system.LOG Object is locked skipped
C:\WINDOWS\system32\h323log.txt Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP Object is locked skipped
C:\WINDOWS\Temp\JET69A.tmp Object is locked skipped
C:\WINDOWS\Temp\JET83F.tmp Object is locked skipped
C:\WINDOWS\WindowsUpdate.log Object is locked skipped
Scan process completed.
Left the Trend Micro Hijackthis window open, as instructions weren't clear as to whether to close it or not or if actions that will need to be taken once reply is received will require this window remains open. Haven't had any previous problems with virus infections prior to this. Must have been very careful or lucky, not sure which. Usually all my computer work is done by my administrator (an IT pro) at home, but I am out of the state and need help. He is the one who recommended Spybot, which I really like. It is especially easy to use. Don't know what I need to do now. Please advise.
Thanks for the help in advance,
Moe