My log - Command Service Issue

Kaspersky - 11

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6E7A384E Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6E7D624B Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6E800C47 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6E833644 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6E876040 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6E8A0A3C Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6E8D3439 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6E915E35 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6E940832 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6E97322E Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6E9A5C2A Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6E9E0627 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6EA13023 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6EA45A20 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6EA7041C Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6EAB2E18 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6EAE5815 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6EB10211 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6EB42C0E Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6EB8560A Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6EBA7561.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6EBB0007 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6EC253FF Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6EC57DFC Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6EC827F8 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6ECB51F5 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6ECF7BF1 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6ED225ED Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6ED54FEA Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6ED879E6 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6EDC23E3 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6EDF4DDF Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6EE277DB Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6EE521D8 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6EE94BD4 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6EEC75D1 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6EED77C7/Part-2.txt .exe Infected: Email-Worm.Win32.NetSky.aa skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6EED77C7 ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6EED77C7 CryptFF: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6EEF1FCD Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6EF349C9 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6EF673C6 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6EF91DC2 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6EFC47BF Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F0071BB Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F031BB7 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F0645B4 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F096FB0 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F0D19AD Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F1043A9 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F136DA5 Infected: Trojan-Spy.Win32.Briss.j skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F1617A2 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F1A419E Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F1D6B9B Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F1E61AE.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F1F70D3 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F201597 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F233F94 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F276990 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F2A138C Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F2D3D89 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F316785 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F3359BA Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F341182 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F373B7E Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F3A657A Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F3E0F77 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F413973 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F446370 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F4655A4/[From ccap@cibc.com][Date Wed, 9 Feb 2005 11:58:48 -0500]/UNNAMED/html Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F4655A4/[From ccap@cibc.com][Date Wed, 9 Feb 2005 11:58:48 -0500]/UNNAMED Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F4655A4 Mail: suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F4655A4 CryptFF: suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F470D6C Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F4B3768 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F4E6165 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F510B61 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F54355E Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F644F84/document.txt .exe Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F644F84 ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F644F84 CryptFF: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F6F1E07 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F8C2F5D Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F9A3E44.htm Suspicious: Trojan-Downloader.JS.gen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6FB60CED Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6FCB5BEE Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6FD406CD Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\70005A00 Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\70196F8D Infected: Email-Worm.Win32.NetSky.d skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\701E40CB Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\70291D3C Infected: Trojan-Dropper.Win32.Delf.z skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\702E25CE/[From o1.179629@twister.tampabay.rr.com][Date Thu, 16 Sep 2004 11:41:28 -0500]/UNNAMED/html Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\702E25CE/[From o1.179629@twister.tampabay.rr.com][Date Thu, 16 Sep 2004 11:41:28 -0500]/UNNAMED Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\702E25CE Mail: suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\702E25CE CryptFF: suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\703B1F7D Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\703B4DC0/data.rtf .scr Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\703B4DC0 ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\703B4DC0 CryptFF: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\70446830.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\705B0E17.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\706472B1 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\706745C6 Infected: Trojan-Dropper.Win32.Delf.z skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\707F4B2F Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\709F27C0 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\70D0170D Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\70D05D74 Infected: Email-Worm.Win32.NetSky.d skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\70D85606.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\70E90F9E Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\70E915CE Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\710F1FC8.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\711C1FBA.cla Infected: Trojan.Java.ClassLoader.Dummy.a skipped
 
Kaspersky - 12

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\711D10C3 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\71220C59 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\715D0019 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\716C73C3 Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\71814DF1 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\719873D8 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\71987FBF Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\719A33DB Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\71AC6FC3 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\71BA4F93 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\71C05752 Infected: Email-Worm.Win32.NetSky.d skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\71F60F0C Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\71FD74C9 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\72085661/information.rtf.exe Infected: Email-Worm.Win32.NetSky.b skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\72085661 ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\72085661 CryptFF: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\721D60BB Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\722E33AF Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\723102CB/[From james.beggs@ntlworld.com][Date Thu, 27 Jan 2005 22:58:01 +0400]/UNNAMED/html Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\723102CB/[From james.beggs@ntlworld.com][Date Thu, 27 Jan 2005 22:58:01 +0400]/UNNAMED Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\723102CB Mail: suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\723102CB CryptFF: suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\723713CF Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7242387E Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\724E39B6 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\725B1BD7.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\72604EE8 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\726E54CD Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\72847AB4 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\729515A8 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\72AB3B8F Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\72C23383 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\72C26176 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\72D33364 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\72EA594B Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\731C30B3 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\73312B3A Infected: Email-Worm.Win32.Bagle.s skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\73363572 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\73563356 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\739A5F23 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\73C242AC Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\73D736B4 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\73DF3E1D Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\73EA332A Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\73F85A90 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\740F0077 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\741A50F5 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\741B00AB Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\74334E4F Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\744A7436 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7474515A Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\747E32FE Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\748036C4 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\74A3049C Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\74BE5480 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\74CC1184 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\74D47A67 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\74D519FE Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\74D803BA Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\74E070A2 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\74E87651/[From lizardman@bbs.ee.ntu.edu.tw][Date Sat, 12 Jun 2004 10:39:21 -0500]/UNNAMED/html Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\74E87651/[From lizardman@bbs.ee.ntu.edu.tw][Date Sat, 12 Jun 2004 10:39:21 -0500]/UNNAMED Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\74E87651/[From lizardman@bbs.ee.ntu.edu.tw][Date Sat, 12 Jun 2004 10:39:21 -0500]/message.scr Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\74E87651 Mail: infected - 1, suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\74E87651 CryptFF: infected - 1, suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\74F51E43 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\75044254/[From victorbrca@yahoo.ca][Date Tue, 23 Dec 2003 05:25:17 -0200]/UNNAMED/data.bat Infected: Email-Worm.Win32.Mydoom.a skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\75044254/[From victorbrca@yahoo.ca][Date Tue, 23 Dec 2003 05:25:17 -0200]/UNNAMED Infected: Email-Worm.Win32.Mydoom.a skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\75044254 Mail: infected - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\75044254 CryptFF: infected - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\75057031 Infected: Email-Worm.Win32.Bagle.z skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\75064F87 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\750D3C70 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\750F6E26/[From iq5.1707178@news-text.cableinet.net][Date Sat, 12 Jun 2004 12:22:28 -0500]/websites03.pif Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\750F6E26 Mail: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\750F6E26 CryptFF: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\751232D2 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\75162175 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\751A50A3 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\751C1617 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\752D475C Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\75333BFE Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\753B083D Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\753B1005 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\75414347 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\75493195 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\754A61E5 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\75543F31 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\755E5DD0 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\75620012 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\756B6518 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\756E2FBE Infected: Email-Worm.Win32.NetSky.r skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\757C3706 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\759606E9 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\75A1060D Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\75A532A6 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\75AD2CD0 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\75BA54C2 Infected: Email-Worm.Win32.Bagle.z skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\75CA26B0 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\75DE229A Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\75EA1394 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\75EE7488 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\75F821B5 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\76077C15 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7619209A Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\761D03C5 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\762838B2 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\762D3706 Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7639327A Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\766E721C Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\76A611D6 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\76A66A35 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\76C53C5E Infected: Email-Worm.Win32.Swen skipped
 
Kaspersky - 13

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\76CD324E Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\76D46824 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\76DC6245 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\76EB2DEA Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\770A210A Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\77187092 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\773A5E2B Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\774B0F51.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\775501F7 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\77613222 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7781057A/details.txt .pif Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7781057A ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7781057A CryptFF: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\77A05433 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\77AF5148 Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\77CC4B28/[From miquels@drinkel.nl.mugnet.org][Date Thu, 3 Feb 2005 20:53:46 -0500]/UNNAMED/html Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\77CC4B28/[From miquels@drinkel.nl.mugnet.org][Date Thu, 3 Feb 2005 20:53:46 -0500]/UNNAMED Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\77CC4B28 Mail: suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\77CC4B28 CryptFF: suspicious - 2 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\77F054A5 Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\77F531F6 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\780A2488 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\781E2073 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\784D6117.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\788931CA Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\78A414B3 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\78EC7E2C Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7900596E Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\791D319E Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\791D46C5 Infected: Trojan-Spy.Win32.Briss.j skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\79217D4B Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\793D433E Infected: not-a-virus:AdWare.Win32.BiSpy.m skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\795901E1 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\79620A7A Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\797214BD.tmp Infected: Email-Worm.Win32.NetSky.af skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\79BE2CDD Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7A1C073E Infected: Email-Worm.Win32.NetSky.af skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7A453146 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7A7B62F1 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7AB51F0B Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7AD9311A Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7AF63405 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7AFD4871 Infected: Email-Worm.Win32.Bagle.z skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7B3271BB Infected: Email-Worm.Win32.NetSky.af skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7B6D30EE Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7B8574E0 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7B942355 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7BAA2AD7 Infected: Email-Worm.Win32.NetSky.d skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7BB523ED Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7BD63B56 Infected: Email-Worm.Win32.NetSky.af skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7BE559AB.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7BE73D58 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7BF00B39 Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7C0030C2 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7C282FE3 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7C3303EA Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7C63140E Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7C634532 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7C66024E Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7C813F12 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7C911100 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7C943096 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7CA50CEA Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7CB234DC Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7CB86745 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7CC530C6 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7CCC668C Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7CD92CB1 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7CF37C94 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7D034E82 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7D12042F Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7D174A6D Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7D253EC0 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7D271C5B Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7D28306A Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7D34444C Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7D45163A Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7D4C217F Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7D6C455B Infected: Email-Worm.Win32.Bagle.s skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7DC07450 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7DC63C31 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7DEB24D8 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7E0B7FE6 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7E1E240B.tmp Infected: Email-Worm.Win32.Bagle.gen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7E294D62 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7E503012 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7E557826.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7E777AC2 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7E7F6951.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7E9B489A Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7EA82E56 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7ED0324C Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7ED82420 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7EE42FE6 Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7EEB1394 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7EF15628 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7EF37403 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7F0919EA Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7F0E5008 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7F120B69 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7F1E68C9.tmp Infected: Email-Worm.Win32.Bagle.ai skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7F2575EF Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7F3971D9/data.rtf .scr Infected: Email-Worm.Win32.NetSky.q skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7F3971D9 ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7F3971D9 CryptFF: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7F6E114A Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7F782FBA Infected: not-a-virus:AdWare.Win32.Lop skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7FA65B0D Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7FBC00F4 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7FCD52E2 Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\IM\Identities\{DB0EE4CD-EEBB-4ECC-A945-5B1DE9F96D46}\Message Store\Attachments\RADMIN21.EXE/AdmDll.dll Infected: not-a-virus:RemoteAdmin.Win32.RAdmin.20 skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\IM\Identities\{DB0EE4CD-EEBB-4ECC-A945-5B1DE9F96D46}\Message Store\Attachments\RADMIN21.EXE/raddrv.dll Infected: not-a-virus:RemoteAdmin.Win32.RAdmin.20 skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\IM\Identities\{DB0EE4CD-EEBB-4ECC-A945-5B1DE9F96D46}\Message Store\Attachments\RADMIN21.EXE/radmin.exe Infected: not-a-virus:RemoteAdmin.Win32.RAdmin.21 skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\IM\Identities\{DB0EE4CD-EEBB-4ECC-A945-5B1DE9F96D46}\Message Store\Attachments\RADMIN21.EXE/r_server.exe Infected: not-a-virus:RemoteAdmin.Win32.RAdmin.21 skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\IM\Identities\{DB0EE4CD-EEBB-4ECC-A945-5B1DE9F96D46}\Message Store\Attachments\RADMIN21.EXE Gentee: infected - 4 skipped
 
Kaspersky - 14

C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From Get your favorite music <mail3@mail.bigwinnerz.com>][Date Wed, 6 Aug 2003 05:18:26 -0500]/html/[From admin@yahoo.ca]/text Infected: Email-Worm.Win32.Mimail.txt skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From Get your favorite music <mail3@mail.bigwinnerz.com>][Date Wed, 6 Aug 2003 05:18:26 -0500]/html/[From admin@yahoo.ca]/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From Get your favorite music <mail3@mail.bigwinnerz.com>][Date Wed, 6 Aug 2003 05:18:26 -0500]/html/[From admin@yahoo.ca]/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From Get your favorite music <mail3@mail.bigwinnerz.com>][Date Wed, 6 Aug 2003 05:18:26 -0500]/html Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 06:39:28 -0400]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 06:39:28 -0400]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 06:39:28 -0400]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 06:39:28 -0400]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Sun, 06 Aug 2017 21:16:37 EDT]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Sun, 06 Aug 2017 21:16:37 EDT]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Sun, 06 Aug 2017 21:16:37 EDT]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Sun, 06 Aug 2017 21:16:37 EDT]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx Mail MS Outlook 5: infected - 36 skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Deleted Items/16 Apr 2005 15:49 from Victor/Price_43254.zip/Result.exe Infected: Email-Worm.Win32.Bagle.bj skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Deleted Items/16 Apr 2005 15:49 from Victor/Price_43254.zip Infected: Email-Worm.Win32.Bagle.bj skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Deleted Items/16 Dec 2005 02:25 from Victorbrazil:Henrye/Peter.zip Infected: Email-Worm.Win32.Bagle.ey skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/09 Aug 2004 18:42 from Simmax:[Norton AntiSpam] /price_new.zip/price.html Infected: Exploit.HTML.CodeBaseExec skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/09 Aug 2004 18:42 from Simmax:[Norton AntiSpam] /price_new.zip/price/price.exe Infected: Email-Worm.Win32.Bagle.al skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/09 Aug 2004 18:42 from Simmax:[Norton AntiSpam] /price_new.zip Infected: Email-Worm.Win32.Bagle.al skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/15 Aug 2004 15:16 from Microsoft Net Email Delivery Service:[Nor.rtf Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/15 Aug 2004 20:27 from U S Bank:[Norton AntiSpam] Official Infor.rtf Infected: Trojan-Spy.HTML.Usbankfraud.g skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/27 Aug 2004 15:36 from Hm.markt:[Norton AntiSpam] 1.rtf Infected: Exploit.HTML.ObjData skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/31 Aug 2004 19:45 from Avis:foto/fotos.zip/foto/foto.html Infected: Exploit.HTML.CodeBaseExec skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/31 Aug 2004 19:45 from Avis:foto/fotos.zip/foto/foto/foto1.exe Infected: Trojan.Win32.Glieder.gen skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/31 Aug 2004 19:45 from Avis:foto/fotos.zip Infected: Trojan.Win32.Glieder.gen skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/02 Sep 2004 16:25 from Carteiro iG:[Norton AntiSpam] Todo o sit.rtf Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/11 Sep 2004 06:38 from CITIZENS BANK:[Norton AntiSpam] Important.rtf Infected: Trojan-Spy.HTML.Citifraud.ai skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/19 Sep 2004 19:12 from Message Delivery System:mail: returned to.rtf Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/21 Sep 2004 03:19 from CitiBank:[Norton AntiSpam] ATTENTION CITI.rtf Infected: Trojan-Spy.HTML.Citifraud.ae skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/21 Sep 2004 03:00 from Citi:IMPORTANT INFORMATION: YOUR CITIBANK.rtf Infected: Trojan-Spy.HTML.Citifraud.ae skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst Mail MS Mail: infected - 14, suspicious - 3 skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\OutlookHotmail-00000004.pst/Hotmail/Inbox/04 Apr 2006 14:01 from igorwos@hotmail.com:fw: en: cervejetarian/animacao.zip/animacao_pian_346.exe Infected: Trojan-Downloader.Win32.Banload.yg skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\OutlookHotmail-00000004.pst/Hotmail/Inbox/04 Apr 2006 14:01 from igorwos@hotmail.com:fw: en: cervejetarian/animacao.zip Infected: Trojan-Downloader.Win32.Banload.yg skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\OutlookHotmail-00000004.pst Mail MS Mail: infected - 2 skipped
C:\Program Files\BitTorrent\uninstall.exe/stream/data0002 Infected: not-a-virus:RiskTool.Win32.PsKill.n skipped
C:\Program Files\BitTorrent\uninstall.exe/stream Infected: not-a-virus:RiskTool.Win32.PsKill.n skipped
C:\Program Files\BitTorrent\uninstall.exe NSIS: infected - 2 skipped
C:\Program Files\MyWay\SrchAstt\1.bin\MYSRCHAS.DLL Infected: not-a-virus:AdWare.Win32.MyWay.z skipped
C:\RECYCLER\S-1-5-21-1935655697-1972579041-725345543-1003\Dc12.EXE/stream/data0002 Infected: not-a-virus:RiskTool.Win32.PsKill.n skipped
C:\RECYCLER\S-1-5-21-1935655697-1972579041-725345543-1003\Dc12.EXE/stream Infected: not-a-virus:RiskTool.Win32.PsKill.n skipped
C:\RECYCLER\S-1-5-21-1935655697-1972579041-725345543-1003\Dc12.EXE NSIS: infected - 2 skipped
C:\RECYCLER\S-1-5-21-1935655697-1972579041-725345543-1003\Dc371.EXE/stream/data0002 Infected: not-a-virus:RiskTool.Win32.PsKill.n skipped
C:\RECYCLER\S-1-5-21-1935655697-1972579041-725345543-1003\Dc371.EXE/stream Infected: not-a-virus:RiskTool.Win32.PsKill.n skipped
C:\RECYCLER\S-1-5-21-1935655697-1972579041-725345543-1003\Dc371.EXE NSIS: infected - 2 skipped
C:\sk02.exe/data0002 Infected: Trojan-Clicker.Win32.Small.jf skipped
C:\sk02.exe NSIS: infected - 1 skipped
C:\System Volume Information\_restore{0F0D1331-6C08-46B5-9846-8C8E33CE6BAF}\RP5\A0000207.exe Infected: not-a-virus:AdWare.Win32.NewDotNet skipped
C:\System Volume Information\_restore{0F0D1331-6C08-46B5-9846-8C8E33CE6BAF}\RP5\A0000208.EXE Infected: not-a-virus:AdWare.Win32.NewDotNet skipped
C:\System Volume Information\_restore{0F0D1331-6C08-46B5-9846-8C8E33CE6BAF}\RP5\A0000209.exe Infected: not-a-virus:AdWare.Win32.SaveNow.bo skipped
C:\System Volume Information\_restore{0F0D1331-6C08-46B5-9846-8C8E33CE6BAF}\RP5\A0000210.dll Infected: not-a-virus:AdWare.Win32.Azesearch.h skipped
C:\System Volume Information\_restore{0F0D1331-6C08-46B5-9846-8C8E33CE6BAF}\RP5\A0000211.exe Infected: not-a-virus:AdWare.Win32.Azesearch.h skipped
C:\System Volume Information\_restore{0F0D1331-6C08-46B5-9846-8C8E33CE6BAF}\RP5\A0000212.exe Infected: not-a-virus:AdWare.Win32.Azesearch.h skipped
C:\System Volume Information\_restore{0F0D1331-6C08-46B5-9846-8C8E33CE6BAF}\RP5\A0000215.exe Infected: Trojan-Downloader.Win32.Adload.am skipped
C:\System Volume Information\_restore{0F0D1331-6C08-46B5-9846-8C8E33CE6BAF}\RP5\A0000216.exe Infected: Trojan-Clicker.Win32.VB.mo skipped
C:\System Volume Information\_restore{0F0D1331-6C08-46B5-9846-8C8E33CE6BAF}\RP5\A0000217.exe Infected: not-a-virus:AdWare.Win32.NewDotNet.e skipped
C:\System Volume Information\_restore{0F0D1331-6C08-46B5-9846-8C8E33CE6BAF}\RP5\A0000219.exe Infected: Trojan.Win32.VB.tg skipped
C:\System Volume Information\_restore{0F0D1331-6C08-46B5-9846-8C8E33CE6BAF}\RP5\A0000221.exe Infected: not-a-virus:AdWare.Win32.Azesearch.h skipped
C:\System Volume Information\_restore{0F0D1331-6C08-46B5-9846-8C8E33CE6BAF}\RP5\A0000222.dll Infected: not-a-virus:AdWare.Win32.Azesearch.h skipped
C:\System Volume Information\_restore{0F0D1331-6C08-46B5-9846-8C8E33CE6BAF}\RP5\A0000223.dll Infected: not-a-virus:AdWare.Win32.Azesearch.h skipped
C:\System Volume Information\_restore{0F0D1331-6C08-46B5-9846-8C8E33CE6BAF}\RP5\A0000224.exe Infected: Trojan.Win32.VB.tg skipped
C:\System Volume Information\_restore{0F0D1331-6C08-46B5-9846-8C8E33CE6BAF}\RP5\A0000225.exe Infected: Trojan.Win32.VB.tg skipped
C:\Victor\Router Sim\krang.exe/WISE0047.BIN Infected: not-a-virus:PSWTool.Win32.GetPass.e skipped
C:\Victor\Router Sim\krang.exe WiseSFX: infected - 1 skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From Get your favorite music <mail3@mail.bigwinnerz.com>][Date Wed, 6 Aug 2003 05:18:26 -0500]/html/[From admin@yahoo.ca]/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From Get your favorite music <mail3@mail.bigwinnerz.com>][Date Wed, 6 Aug 2003 05:18:26 -0500]/html/[From admin@yahoo.ca]/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From Get your favorite music <mail3@mail.bigwinnerz.com>][Date Wed, 6 Aug 2003 05:18:26 -0500]/html/[From admin@yahoo.ca]/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From Get your favorite music <mail3@mail.bigwinnerz.com>][Date Wed, 6 Aug 2003 05:18:26 -0500]/html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
 
Kaspersky - 15

F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 06:39:28 -0400]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 06:39:28 -0400]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 06:39:28 -0400]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 06:39:28 -0400]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Sun, 06 Aug 2017 21:16:37 EDT]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Sun, 06 Aug 2017 21:16:37 EDT]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Sun, 06 Aug 2017 21:16:37 EDT]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Sun, 06 Aug 2017 21:16:37 EDT]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx Mail MS Outlook 5: infected - 36 skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From Get your favorite music <mail3@mail.bigwinnerz.com>][Date Wed, 6 Aug 2003 05:18:26 -0500]/html/[From admin@yahoo.ca]/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From Get your favorite music <mail3@mail.bigwinnerz.com>][Date Wed, 6 Aug 2003 05:18:26 -0500]/html/[From admin@yahoo.ca]/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From Get your favorite music <mail3@mail.bigwinnerz.com>][Date Wed, 6 Aug 2003 05:18:26 -0500]/html/[From admin@yahoo.ca]/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From Get your favorite music <mail3@mail.bigwinnerz.com>][Date Wed, 6 Aug 2003 05:18:26 -0500]/html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 06:39:28 -0400]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 06:39:28 -0400]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 06:39:28 -0400]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 06:39:28 -0400]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Sun, 06 Aug 2017 21:16:37 EDT]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Sun, 06 Aug 2017 21:16:37 EDT]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Sun, 06 Aug 2017 21:16:37 EDT]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Sun, 06 Aug 2017 21:16:37 EDT]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx Mail MS Outlook 5: infected - 36 skipped
F:\My Downloads\LimeWire\Spy Agent v4.3_SpyTech 2003_Spy Anywhere v2.12_Realtime Spy.rar/SpyTech/Realtime Spy/realtimespysetup.exe/Stop-RTS.exe Infected: not-a-virus:Monitor.Win32.SpyAgent.g skipped
F:\My Downloads\LimeWire\Spy Agent v4.3_SpyTech 2003_Spy Anywhere v2.12_Realtime Spy.rar/SpyTech/Realtime Spy/realtimespysetup.exe/RTS.exe Infected: Trojan-Downloader.Win32.SpyAgent.a skipped
F:\My Downloads\LimeWire\Spy Agent v4.3_SpyTech 2003_Spy Anywhere v2.12_Realtime Spy.rar/SpyTech/Realtime Spy/realtimespysetup.exe/RTSConfig.exe Infected: not-a-virus:Monitor.Win32.SpyAgent.g skipped
F:\My Downloads\LimeWire\Spy Agent v4.3_SpyTech 2003_Spy Anywhere v2.12_Realtime Spy.rar/SpyTech/Realtime Spy/realtimespysetup.exe Infected: not-a-virus:Monitor.Win32.SpyAgent.g skipped
F:\My Downloads\LimeWire\Spy Agent v4.3_SpyTech 2003_Spy Anywhere v2.12_Realtime Spy.rar/SpyTech/Spytech Security 2003/SW2003.exe/SpyAgent4.exe Infected: not-a-virus:Monitor.Win32.SpyAgent.44103 skipped
F:\My Downloads\LimeWire\Spy Agent v4.3_SpyTech 2003_Spy Anywhere v2.12_Realtime Spy.rar/SpyTech/Spytech Security 2003/SW2003.exe/NoStealth.exe Infected: not-a-virus:Monitor.Win32.SpyAgent.g skipped
F:\My Downloads\LimeWire\Spy Agent v4.3_SpyTech 2003_Spy Anywhere v2.12_Realtime Spy.rar/SpyTech/Spytech Security 2003/SW2003.exe/Deploy.exe Infected: not-a-virus:Monitor.Win32.SpyAgent.43302 skipped
F:\My Downloads\LimeWire\Spy Agent v4.3_SpyTech 2003_Spy Anywhere v2.12_Realtime Spy.rar/SpyTech/Spytech Security 2003/SW2003.exe/SystemSA32.dll Infected: not-a-virus:Monitor.Win32.SpyAgent.44103 skipped
F:\My Downloads\LimeWire\Spy Agent v4.3_SpyTech 2003_Spy Anywhere v2.12_Realtime Spy.rar/SpyTech/Spytech Security 2003/SW2003.exe Infected: not-a-virus:Monitor.Win32.SpyAgent.44103 skipped
F:\My Downloads\LimeWire\Spy Agent v4.3_SpyTech 2003_Spy Anywhere v2.12_Realtime Spy.rar RAR: infected - 9 skipped
F:\My Downloads\System Tools\ccsetup128.exe/stream/data0006 Infected: not-a-virus:RiskTool.Win32.PsKill.n skipped
F:\My Downloads\System Tools\ccsetup128.exe/stream Infected: not-a-virus:RiskTool.Win32.PsKill.n skipped
F:\My Downloads\System Tools\ccsetup128.exe NSIS: infected - 2 skipped
F:\My Downloads\Temp\120625.exe/WISE0014.BIN Infected: not-a-virus:AdWare.Win32.SaveNow.bo skipped
F:\My Downloads\Temp\120625.exe/WISE0015.BIN Infected: not-a-virus:AdWare.Win32.NewDotNet skipped
F:\My Downloads\Temp\120625.exe/WISE0016.BIN/WISE0001.BIN Infected: not-a-virus:AdWare.Win32.Accoona.b skipped
F:\My Downloads\Temp\120625.exe/WISE0016.BIN Infected: not-a-virus:AdWare.Win32.Accoona.b skipped
F:\My Downloads\Temp\120625.exe WiseSFX: infected - 4 skipped
F:\My Downloads\Temp\120625.exe WiseSFX Dropper: infected - 4 skipped
F:\My Downloads\Temp\feelblueskin(www.mess.be).zip/Feel Blue Skin.exe/stream/data0005 Infected: not-a-virus:RiskTool.Win32.PsKill.n skipped
F:\My Downloads\Temp\feelblueskin(www.mess.be).zip/Feel Blue Skin.exe/stream Infected: not-a-virus:RiskTool.Win32.PsKill.n skipped
F:\My Downloads\Temp\feelblueskin(www.mess.be).zip/Feel Blue Skin.exe Infected: not-a-virus:RiskTool.Win32.PsKill.n skipped
F:\My Downloads\Temp\feelblueskin(www.mess.be).zip ZIP: infected - 3 skipped
F:\My Downloads\Temp\velvet.exe/stream/data0005 Infected: not-a-virus:RiskTool.Win32.PsKill.n skipped
F:\My Downloads\Temp\velvet.exe/stream Infected: not-a-virus:RiskTool.Win32.PsKill.n skipped
F:\My Downloads\Temp\velvet.exe NSIS: infected - 2 skipped
F:\Site\Wazem - February 15 2004\dwnl_fil\radmin21.zip/RADMIN21.EXE/AdmDll.dll Infected: not-a-virus:RemoteAdmin.Win32.RAdmin.20 skipped
F:\Site\Wazem - February 15 2004\dwnl_fil\radmin21.zip/RADMIN21.EXE/raddrv.dll Infected: not-a-virus:RemoteAdmin.Win32.RAdmin.20 skipped
F:\Site\Wazem - February 15 2004\dwnl_fil\radmin21.zip/RADMIN21.EXE/radmin.exe Infected: not-a-virus:RemoteAdmin.Win32.RAdmin.21 skipped
F:\Site\Wazem - February 15 2004\dwnl_fil\radmin21.zip/RADMIN21.EXE/r_server.exe Infected: not-a-virus:RemoteAdmin.Win32.RAdmin.21 skipped
F:\Site\Wazem - February 15 2004\dwnl_fil\radmin21.zip/RADMIN21.EXE Infected: not-a-virus:RemoteAdmin.Win32.RAdmin.21 skipped
F:\Site\Wazem - February 15 2004\dwnl_fil\radmin21.zip ZIP: infected - 5 skipped

Scan process completed.
 
Whoa, you sure filled up this thread.
In this HJT log: Logfile of HijackThis v1.99.1
Scan saved at 12:46:39 PM, on 4/22/2006
This item is still running, your computer will not be clean until you locate and delete the file highlited in red.
O4 - HKLM\..\Run: [ms062415127673] C:\WINDOWS\ms062415127673.exe

If you have not posted ewido yet, post only anything that could not be deleted.

Kaspersky, I should have told you to edit out the obvious. It should be obvious to you I don't need to see the Norton Quarantine stuff.

OK, since you posted, let's rule it out.

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\ <<< if you have not already done so, and you should have removed the folders in red, all quarantined stuff would go with it.
How long have you been storing this junk on the computer? You have a mess in other stored areas also, all I can think is to show it to you, and you need to locate and delete the junk manually. Some of it I am not even sure what needs to be deleted. You will have to look and decide from what you see.
All of this stuff looks like infected email or files you are storing. I will just post it all and you can locate and delete it.

You also have infected System Restore files, follow these directions to get clean System Restore files.
System Restore does not know the good files from the bad. In case bad stuff has gotten into your System Restore files, follow the instructions in this link to get clean System Restore files. Turn it off, reboot then turn it back on:
http://service1.symantec.com/SUPPORT/tsgeninfo.nsf/docid/2001111912274039?Open&src=sec_doc_nam

Once you delete this junk, runKaspersky, it should be clean. If there is anything in the scan you are unsure of, post it and I will look. This be said, here are the files that need to go.

C:\Documents and Settings\Victor\Local Settings\Application Data\IM\Identities\{DB0EE4CD-EEBB-4ECC-A945-5B1DE9F96D46}\Message Store\Attachments\RADMIN21.EXE/AdmDll.dll Infected: not-a-virus:RemoteAdmin.Win32.RAdmin.20 skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\IM\Identities\{DB0EE4CD-EEBB-4ECC-A945-5B1DE9F96D46}\Message Store\Attachments\RADMIN21.EXE/raddrv.dll Infected: not-a-virus:RemoteAdmin.Win32.RAdmin.20 skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\IM\Identities\{DB0EE4CD-EEBB-4ECC-A945-5B1DE9F96D46}\Message Store\Attachments\RADMIN21.EXE/radmin.exe Infected: not-a-virus:RemoteAdmin.Win32.RAdmin.21 skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\IM\Identities\{DB0EE4CD-EEBB-4ECC-A945-5B1DE9F96D46}\Message Store\Attachments\RADMIN21.EXE/r_server.exe Infected: not-a-virus:RemoteAdmin.Win32.RAdmin.21 skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\IM\Identities\{DB0EE4CD-EEBB-4ECC-A945-5B1DE9F96D46}\Message Store\Attachments\RADMIN21.EXE Gentee: infected - 4 skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From Get your favorite music <mail3@mail.bigwinnerz.com>][Date Wed, 6 Aug 2003 05:18:26 -0500]/html/[From admin@yahoo.ca]/text Infected: Email-Worm.Win32.Mimail.txt skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From Get your favorite music <mail3@mail.bigwinnerz.com>][Date Wed, 6 Aug 2003 05:18:26 -0500]/html/[From admin@yahoo.ca]/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From Get your favorite music <mail3@mail.bigwinnerz.com>][Date Wed, 6 Aug 2003 05:18:26 -0500]/html/[From admin@yahoo.ca]/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From Get your favorite music <mail3@mail.bigwinnerz.com>][Date Wed, 6 Aug 2003 05:18:26 -0500]/html Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 06:39:28 -0400]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 06:39:28 -0400]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 06:39:28 -0400]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 06:39:28 -0400]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Sun, 06 Aug 2017 21:16:37 EDT]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Sun, 06 Aug 2017 21:16:37 EDT]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Sun, 06 Aug 2017 21:16:37 EDT]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Sun, 06 Aug 2017 21:16:37 EDT]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Deleted Items.dbx Mail MS Outlook 5: infected - 36 skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Deleted Items/16 Apr 2005 15:49 from Victor/Price_43254.zip/Result.exe Infected: Email-Worm.Win32.Bagle.bj skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Deleted Items/16 Apr 2005 15:49 from Victor/Price_43254.zip Infected: Email-Worm.Win32.Bagle.bj skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Deleted Items/16 Dec 2005 02:25 from Victorbrazil:Henrye/Peter.zip Infected: Email-Worm.Win32.Bagle.ey skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/09 Aug 2004 18:42 from Simmax:[Norton AntiSpam] /price_new.zip/price.html Infected: Exploit.HTML.CodeBaseExec skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/09 Aug 2004 18:42 from Simmax:[Norton AntiSpam] /price_new.zip/price/price.exe Infected: Email-Worm.Win32.Bagle.al skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/09 Aug 2004 18:42 from Simmax:[Norton AntiSpam] /price_new.zip Infected: Email-Worm.Win32.Bagle.al skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/15 Aug 2004 15:16 from Microsoft Net Email Delivery Service:[Nor.rtf Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/15 Aug 2004 20:27 from U S Bank:[Norton AntiSpam] Official Infor.rtf Infected: Trojan-Spy.HTML.Usbankfraud.g skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/27 Aug 2004 15:36 from Hm.markt:[Norton AntiSpam] 1.rtf Infected: Exploit.HTML.ObjData skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/31 Aug 2004 19:45 from Avis:foto/fotos.zip/foto/foto.html Infected: Exploit.HTML.CodeBaseExec skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/31 Aug 2004 19:45 from Avis:foto/fotos.zip/foto/foto/foto1.exe Infected: Trojan.Win32.Glieder.gen skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/31 Aug 2004 19:45 from Avis:foto/fotos.zip Infected: Trojan.Win32.Glieder.gen skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/02 Sep 2004 16:25 from Carteiro iG:[Norton AntiSpam] Todo o sit.rtf Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/11 Sep 2004 06:38 from CITIZENS BANK:[Norton AntiSpam] Important.rtf Infected: Trojan-Spy.HTML.Citifraud.ai skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/19 Sep 2004 19:12 from Message Delivery System:mail: returned to.rtf Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/21 Sep 2004 03:19 from CitiBank:[Norton AntiSpam] ATTENTION CITI.rtf Infected: Trojan-Spy.HTML.Citifraud.ae skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/21 Sep 2004 03:00 from Citi:IMPORTANT INFORMATION: YOUR CITIBANK.rtf Infected: Trojan-Spy.HTML.Citifraud.ae skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst Mail MS Mail: infected - 14, suspicious - 3 skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\OutlookHotmail-00000004.pst/Hotmail/Inbox/04 Apr 2006 14:01 from igorwos@hotmail.com:fw: en: cervejetarian/animacao.zip/animacao_pian_346.exe Infected: Trojan-Downloader.Win32.Banload.yg skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\OutlookHotmail-00000004.pst/Hotmail/Inbox/04 Apr 2006 14:01 from igorwos@hotmail.com:fw: en: cervejetarian/animacao.zip Infected: Trojan-Downloader.Win32.Banload.yg skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\OutlookHotmail-00000004.pst Mail MS Mail: infected - 2 skipped
C:\Program Files\BitTorrent\uninstall.exe/stream/data0002 Infected: not-a-virus:RiskTool.Win32.PsKill.n skipped
C:\Program Files\BitTorrent\uninstall.exe/stream Infected: not-a-virus:RiskTool.Win32.PsKill.n skipped
C:\Program Files\BitTorrent\uninstall.exe NSIS: infected - 2 skipped
C:\Program Files\MyWay\SrchAstt\1.bin\MYSRCHAS.DLL Infected: not-a-virus:AdWare.Win32.MyWay.z skipped
C:\RECYCLER\S-1-5-21-1935655697-1972579041-725345543-1003\Dc12.EXE/stream/data0002 Infected: not-a-virus:RiskTool.Win32.PsKill.n skipped
\Dc371.EXE NSIS: infected - 2 skipped
C:\sk02.exe/data0002 Infected: Trojan-Clicker.Win32.Small.jf skipped
C:\sk02.exe NSIS: infected - 1 skipped
C:\Victor\Router Sim\krang.exe/WISE0047.BIN Infected: not-a-virus:PSWTool.Win32.GetPass.e skipped
C:\Victor\Router Sim\krang.exe WiseSFX: infected - 1 skipped

continued in the next post with F:\ stuff
 
Last edited:
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From Get your favorite music <mail3@mail.bigwinnerz.com>][Date Wed, 6 Aug 2003 05:18:26 -0500]/html/[From admin@yahoo.ca]/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From Get your favorite music <mail3@mail.bigwinnerz.com>][Date Wed, 6 Aug 2003 05:18:26 -0500]/html/[From admin@yahoo.ca]/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From Get your favorite music <mail3@mail.bigwinnerz.com>][Date Wed, 6 Aug 2003 05:18:26 -0500]/html/[From admin@yahoo.ca]/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From Get your favorite music <mail3@mail.bigwinnerz.com>][Date Wed, 6 Aug 2003 05:18:26 -0500]/html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 06:39:28 -0400]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 06:39:28 -0400]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 06:39:28 -0400]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 06:39:28 -0400]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Sun, 06 Aug 2017 21:16:37 EDT]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Sun, 06 Aug 2017 21:16:37 EDT]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Sun, 06 Aug 2017 21:16:37 EDT]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Sun, 06 Aug 2017 21:16:37 EDT]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\imported files\outlook\Deleted Items.dbx Mail MS Outlook 5: infected - 36 skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From Get your favorite music <mail3@mail.bigwinnerz.com>][Date Wed, 6 Aug 2003 05:18:26 -0500]/html/[From admin@yahoo.ca]/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From Get your favorite music <mail3@mail.bigwinnerz.com>][Date Wed, 6 Aug 2003 05:18:26 -0500]/html/[From admin@yahoo.ca]/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From Get your favorite music <mail3@mail.bigwinnerz.com>][Date Wed, 6 Aug 2003 05:18:26 -0500]/html/[From admin@yahoo.ca]/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From Get your favorite music <mail3@mail.bigwinnerz.com>][Date Wed, 6 Aug 2003 05:18:26 -0500]/html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Wed, 6 Aug 2003 05:18:26 -0500]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 06:39:28 -0400]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 06:39:28 -0400]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 06:39:28 -0400]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 06:39:28 -0400]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Tue, 5 Aug 2003 15:41:43 -0400]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Sun, 06 Aug 2017 21:16:37 EDT]/UNNAMED/text Infected: Email-Worm.Win32.Mimail.txt skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Sun, 06 Aug 2017 21:16:37 EDT]/UNNAMED/message.zip/message.html Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Sun, 06 Aug 2017 21:16:37 EDT]/UNNAMED/message.zip Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx/[From admin@yahoo.ca][Date Sun, 06 Aug 2017 21:16:37 EDT]/UNNAMED Infected: Email-Worm.Win32.Mimail.a skipped
F:\Files from other PC\Outlook\Deleted Items.dbx Mail MS Outlook 5: infected - 36 skipped
F:\My Downloads\LimeWire\Spy Agent v4.3_SpyTech 2003_Spy Anywhere v2.12_Realtime Spy.rar/SpyTech/Realtime Spy/realtimespysetup.exe/Stop-RTS.exe Infected: not-a-virus:Monitor.Win32.SpyAgent.g skipped
F:\My Downloads\LimeWire\Spy Agent v4.3_SpyTech 2003_Spy Anywhere v2.12_Realtime Spy.rar/SpyTech/Realtime Spy/realtimespysetup.exe/RTS.exe Infected: Trojan-Downloader.Win32.SpyAgent.a skipped
F:\My Downloads\LimeWire\Spy Agent v4.3_SpyTech 2003_Spy Anywhere v2.12_Realtime Spy.rar/SpyTech/Realtime Spy/realtimespysetup.exe/RTSConfig.exe Infected: not-a-virus:Monitor.Win32.SpyAgent.g skipped
F:\My Downloads\LimeWire\Spy Agent v4.3_SpyTech 2003_Spy Anywhere v2.12_Realtime Spy.rar/SpyTech/Realtime Spy/realtimespysetup.exe Infected: not-a-virus:Monitor.Win32.SpyAgent.g skipped
F:\My Downloads\LimeWire\Spy Agent v4.3_SpyTech 2003_Spy Anywhere v2.12_Realtime Spy.rar/SpyTech/Spytech Security 2003/SW2003.exe/SpyAgent4.exe Infected: not-a-virus:Monitor.Win32.SpyAgent.44103 skipped
F:\My Downloads\LimeWire\Spy Agent v4.3_SpyTech 2003_Spy Anywhere v2.12_Realtime Spy.rar/SpyTech/Spytech Security 2003/SW2003.exe/NoStealth.exe Infected: not-a-virus:Monitor.Win32.SpyAgent.g skipped
F:\My Downloads\LimeWire\Spy Agent v4.3_SpyTech 2003_Spy Anywhere v2.12_Realtime Spy.rar/SpyTech/Spytech Security 2003/SW2003.exe/Deploy.exe Infected: not-a-virus:Monitor.Win32.SpyAgent.43302 skipped
F:\My Downloads\LimeWire\Spy Agent v4.3_SpyTech 2003_Spy Anywhere v2.12_Realtime Spy.rar/SpyTech/Spytech Security 2003/SW2003.exe/SystemSA32.dll Infected: not-a-virus:Monitor.Win32.SpyAgent.44103 skipped
F:\My Downloads\LimeWire\Spy Agent v4.3_SpyTech 2003_Spy Anywhere v2.12_Realtime Spy.rar/SpyTech/Spytech Security 2003/SW2003.exe Infected: not-a-virus:Monitor.Win32.SpyAgent.44103 skipped
F:\My Downloads\LimeWire\Spy Agent v4.3_SpyTech 2003_Spy Anywhere v2.12_Realtime Spy.rar RAR: infected - 9 skipped
F:\My Downloads\System Tools\ccsetup128.exe/stream/data0006 Infected: not-a-virus:RiskTool.Win32.PsKill.n skipped
F:\My Downloads\System Tools\ccsetup128.exe/stream Infected: not-a-virus:RiskTool.Win32.PsKill.n skipped
F:\My Downloads\System Tools\ccsetup128.exe NSIS: infected - 2 skipped
F:\My Downloads\Temp\120625.exe/WISE0014.BIN Infected: not-a-virus:AdWare.Win32.SaveNow.bo skipped
F:\My Downloads\Temp\120625.exe/WISE0015.BIN Infected: not-a-virus:AdWare.Win32.NewDotNet skipped
F:\My Downloads\Temp\120625.exe/WISE0016.BIN/WISE0001.BIN Infected: not-a-virus:AdWare.Win32.Accoona.b skipped
F:\My Downloads\Temp\120625.exe/WISE0016.BIN Infected: not-a-virus:AdWare.Win32.Accoona.b skipped
F:\My Downloads\Temp\120625.exe WiseSFX: infected - 4 skipped
F:\My Downloads\Temp\120625.exe WiseSFX Dropper: infected - 4 skipped
F:\My Downloads\Temp\feelblueskin(www.mess.be).zip/Feel Blue Skin.exe/stream/data0005 Infected: not-a-virus:RiskTool.Win32.PsKill.n skipped
F:\My Downloads\Temp\feelblueskin(www.mess.be).zip/Feel Blue Skin.exe/stream Infected: not-a-virus:RiskTool.Win32.PsKill.n skipped
F:\My Downloads\Temp\feelblueskin(www.mess.be).zip/Feel Blue Skin.exe Infected: not-a-virus:RiskTool.Win32.PsKill.n skipped
F:\My Downloads\Temp\feelblueskin(www.mess.be).zip ZIP: infected - 3 skipped
F:\My Downloads\Temp\velvet.exe/stream/data0005 Infected: not-a-virus:RiskTool.Win32.PsKill.n skipped
F:\My Downloads\Temp\velvet.exe/stream Infected: not-a-virus:RiskTool.Win32.PsKill.n skipped
F:\My Downloads\Temp\velvet.exe NSIS: infected - 2 skipped
F:\Site\Wazem - February 15 2004\dwnl_fil\radmin21.zip/RADMIN21.EXE/AdmDll.dll Infected: not-a-virus:RemoteAdmin.Win32.RAdmin.20 skipped
F:\Site\Wazem - February 15 2004\dwnl_fil\radmin21.zip/RADMIN21.EXE/raddrv.dll Infected: not-a-virus:RemoteAdmin.Win32.RAdmin.20 skipped
F:\Site\Wazem - February 15 2004\dwnl_fil\radmin21.zip/RADMIN21.EXE/radmin.exe Infected: not-a-virus:RemoteAdmin.Win32.RAdmin.21 skipped
F:\Site\Wazem - February 15 2004\dwnl_fil\radmin21.zip/RADMIN21.EXE/r_server.exe Infected: not-a-virus:RemoteAdmin.Win32.RAdmin.21 skipped
F:\Site\Wazem - February 15 2004\dwnl_fil\radmin21.zip/RADMIN21.EXE Infected: not-a-virus:RemoteAdmin.Win32.RAdmin.21 skipped
F:\Site\Wazem - February 15 2004\dwnl_fil\radmin21.zip ZIP: infected - 5 skipped

Thanks...
 
Hi Phil,

Sorry for the delay in replying, I spent the whole day yesterday running scans and trying to clean up as much as I could.

I could not find file C:\WINDOWS\ms062415127673.exe to delete, so I used HJT to delete it and it looks like it worked.

There is a file on RECYCLER that I'm not able to delete. I was able to empty it thou. C:\RECYCLER\S-1-5-21-1935655697-1972579041-725345543-1003.
Same happens on the other drivers.

I was also not able to clean up the folder C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/. I deleted the fold from outlook and them runned CCleaner but it did nothing.

Ewido report has difference of size from 1,204 Kb to 6 Kb. That's amazing.

Everything else I did the way you told me.


Vic.



-------------------------------------------------------------------------------
KASPERSKY ON-LINE SCANNER REPORT
Sunday, April 23, 2006 1:39:54 AM
Operating System: Microsoft Windows XP Professional, Service Pack 2 (Build 2600)
Kaspersky On-line Scanner version: 5.0.78.0
Kaspersky Anti-Virus database last update: 23/04/2006
Kaspersky Anti-Virus database records: 189518
-------------------------------------------------------------------------------

Scan Settings:
Scan using the following antivirus database: extended
Scan Archives: true
Scan Mail Bases: true

Scan Target - My Computer:
A:\
C:\
D:\
E:\
F:\
G:\

Scan Statistics:
Total number of scanned objects: 76557
Number of viruses found: 8
Number of infected objects: 12
Number of suspicious objects: 3
Duration of the scan process: 01:05:48

Infected Object Name / Virus Name / Last Action
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/09 Aug 2004 18:42 from Simmax:[Norton AntiSpam] /price_new.zip/price.html Infected: Exploit.HTML.CodeBaseExec skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/09 Aug 2004 18:42 from Simmax:[Norton AntiSpam] /price_new.zip/price/price.exe Infected: Email-Worm.Win32.Bagle.al skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/09 Aug 2004 18:42 from Simmax:[Norton AntiSpam] /price_new.zip Infected: Email-Worm.Win32.Bagle.al skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/15 Aug 2004 15:16 from Microsoft Net Email Delivery Service:[Nor.rtf Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/15 Aug 2004 20:27 from U S Bank:[Norton AntiSpam] Official Infor.rtf Infected: Trojan-Spy.HTML.Usbankfraud.g skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/27 Aug 2004 15:36 from Hm.markt:[Norton AntiSpam] 1.rtf Infected: Exploit.HTML.ObjData skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/31 Aug 2004 19:45 from Avis:foto/fotos.zip/foto/foto.html Infected: Exploit.HTML.CodeBaseExec skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/31 Aug 2004 19:45 from Avis:foto/fotos.zip/foto/foto/foto1.exe Infected: Trojan.Win32.Glieder.gen skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/31 Aug 2004 19:45 from Avis:foto/fotos.zip Infected: Trojan.Win32.Glieder.gen skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/02 Sep 2004 16:25 from Carteiro iG:[Norton AntiSpam] Todo o sit.rtf Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/11 Sep 2004 06:38 from CITIZENS BANK:[Norton AntiSpam] Important.rtf Infected: Trojan-Spy.HTML.Citifraud.ai skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/19 Sep 2004 19:12 from Message Delivery System:mail: returned to.rtf Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/21 Sep 2004 03:19 from CitiBank:[Norton AntiSpam] ATTENTION CITI.rtf Infected: Trojan-Spy.HTML.Citifraud.ae skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/21 Sep 2004 03:00 from Citi:IMPORTANT INFORMATION: YOUR CITIBANK.rtf Infected: Trojan-Spy.HTML.Citifraud.ae skipped
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst Mail MS Mail: infected - 11, suspicious - 3 skipped

Scan process completed.


-------------------------------


---------------------------------------------------------
ewido anti-malware - Scan report
---------------------------------------------------------

+ Created on: 5:53:17 PM, 4/22/2006
+ Report-Checksum: 60095B9B

+ Scan result:

:mozilla.12:C:\Documents and Settings\Victor\Application Data\Mozilla\Firefox\Profiles\g4n5ep93.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned without backup
:mozilla.22:C:\Documents and Settings\Victor\Application Data\Mozilla\Firefox\Profiles\g4n5ep93.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned without backup
:mozilla.23:C:\Documents and Settings\Victor\Application Data\Mozilla\Firefox\Profiles\g4n5ep93.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned without backup
:mozilla.34:C:\Documents and Settings\Victor\Application Data\Mozilla\Firefox\Profiles\g4n5ep93.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned without backup
:mozilla.37:C:\Documents and Settings\Victor\Application Data\Mozilla\Firefox\Profiles\g4n5ep93.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned without backup
:mozilla.38:C:\Documents and Settings\Victor\Application Data\Mozilla\Firefox\Profiles\g4n5ep93.default\cookies.txt -> TrackingCookie.Advertising : Cleaned without backup
:mozilla.39:C:\Documents and Settings\Victor\Application Data\Mozilla\Firefox\Profiles\g4n5ep93.default\cookies.txt -> TrackingCookie.Advertising : Cleaned without backup
:mozilla.40:C:\Documents and Settings\Victor\Application Data\Mozilla\Firefox\Profiles\g4n5ep93.default\cookies.txt -> TrackingCookie.Revenue : Cleaned without backup
:mozilla.41:C:\Documents and Settings\Victor\Application Data\Mozilla\Firefox\Profiles\g4n5ep93.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned without backup
:mozilla.42:C:\Documents and Settings\Victor\Application Data\Mozilla\Firefox\Profiles\g4n5ep93.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned without backup
:mozilla.43:C:\Documents and Settings\Victor\Application Data\Mozilla\Firefox\Profiles\g4n5ep93.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned without backup
:mozilla.44:C:\Documents and Settings\Victor\Application Data\Mozilla\Firefox\Profiles\g4n5ep93.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned without backup
:mozilla.49:C:\Documents and Settings\Victor\Application Data\Mozilla\Firefox\Profiles\g4n5ep93.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned without backup
:mozilla.50:C:\Documents and Settings\Victor\Application Data\Mozilla\Firefox\Profiles\g4n5ep93.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned without backup


::Report End


---------------------

Logfile of HijackThis v1.99.1
Scan saved at 5:13:34 PM, on 4/22/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Netropa\Multimedia Keyboard\nhksrv.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\Program Files\ewido anti-malware\ewidoguard.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
C:\Program Files\Roxio\Easy CD Creator 6\DragToDisc\DrgToDsc.exe
C:\Program Files\Roxio\Easy CD Creator 6\AudioCentral\RxMon.exe
C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe
C:\Program Files\Netropa\Multimedia Keyboard\MMKeybd.exe
C:\Program Files\LogMeIn\LogMeInSystray.exe
C:\PROGRA~1\Logitech\MOUSEW~1\SYSTEM\EM_EXEC.EXE
C:\Program Files\LogMeIn\RaMaint.exe
C:\Program Files\Common Files\PCSuite\DataLayer\DataLayer.exe
C:\Program Files\Netropa\Multimedia Keyboard\TrayMon.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Netropa\Onscreen Display\OSD.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\LogMeIn\LogMeIn.exe
C:\Program Files\Stardock\ObjectDock\ObjectDock.exe
C:\PROGRA~1\COMMON~1\PCSuite\Services\SERVIC~1.EXE
C:\Program Files\YCIII\YankClip.exe
C:\Program Files\Roxio\Easy CD Creator 6\AudioCentral\Playlist.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\system32\wuauclt.exe
C:\AntiSpyWare\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orkut.com/
O2 - BHO: G-Buster Browser Defense - {C41A1C0E-EA6C-11D4-B1B8-444553540000} - C:\WINDOWS\Downloaded Program Files\gbieh.dll
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
O4 - HKLM\..\Run: [RoxioEngineUtility] "C:\Program Files\Common Files\Roxio Shared\System\EngUtil.exe"
O4 - HKLM\..\Run: [RoxioDragToDisc] "C:\Program Files\Roxio\Easy CD Creator 6\DragToDisc\DrgToDsc.exe"
O4 - HKLM\..\Run: [RoxioAudioCentral] "C:\Program Files\Roxio\Easy CD Creator 6\AudioCentral\RxMon.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [PrinTray] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\printray.exe
O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINDOWS\System32\PSDrvCheck.exe
O4 - HKLM\..\Run: [PCSuiteTrayApplication] C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe -onlytray
O4 - HKLM\..\Run: [MULTIMEDIA KEYBOARD] C:\Program Files\Netropa\Multimedia Keyboard\MMKeybd.exe
O4 - HKLM\..\Run: [LogMeIn GUI] "C:\Program Files\LogMeIn\LogMeInSystray.exe"
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [EM_EXEC] C:\PROGRA~1\Logitech\MOUSEW~1\SYSTEM\EM_EXEC.EXE
O4 - HKLM\..\Run: [DataLayer] C:\Program Files\Common Files\PCSuite\DataLayer\DataLayer.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKCU\..\Run: [STYLEXP] C:\Program Files\TGTSoft\StyleXP\StyleXP.exe -Hide
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Norton SystemWorks] "C:\Program Files\Norton SystemWorks\cfgwiz.exe" /GUID {05858CFD-5CC4-4ceb-AAAF-CF00BF39736A} /MODE CfgWiz
O4 - Startup: Stardock ObjectDock.lnk = C:\Program Files\Stardock\ObjectDock\ObjectDock.exe
O4 - Startup: Yankee Clipper III.lnk = C:\Program Files\YCIII\YankClip.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll
O9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .bcf: C:\Program Files\Internet Explorer\Plugins\NPBelv32.dll
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/english/kavwebscan_unicode.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=36467&clcid=0x409
O16 - DPF: {2B323CD9-50E3-11D3-9466-00A0C9700498} (Yahoo! Audio Conferencing) - http://us.chat1.yimg.com/us.yimg.com/i/chat/applet/v45/yacscom.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://spaces.msn.com/PhotoUpload/MsnPUpld.cab?10,0,910,0
O16 - DPF: {7D1E9C49-BD6A-11D3-87A8-009027A35D73} (Yahoo! Audio UI1) - http://chat.yahoo.com/cab/yacsui.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {E37CB5F0-51F5-4395-A808-5FA49E399F83} (GbPluginObj Class) -
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: LMIinit - C:\WINDOWS\SYSTEM32\LMIinit.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: BlueSoleil Hid Service - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido anti-malware\ewidoguard.exe
O23 - Service: LogMeIn Maintenance Service (LMIMaint) - 3am Labs, Inc. - C:\Program Files\LogMeIn\RaMaint.exe
O23 - Service: LogMeIn - 3am Labs, Inc. - C:\Program Files\LogMeIn\LogMeIn.exe
O23 - Service: Netropa NHK Server (nhksrv) - Unknown owner - C:\Program Files\Netropa\Multimedia Keyboard\nhksrv.exe
O23 - Service: StyleXPService - Unknown owner - C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
 
Cheers Vic, I knew that was going to be tough and it had to be done. How did your computer get so trashed:scratch: Well, let's see what is left to do.

Looking at HJT first this time: Scan saved at 5:13:34 PM, on 4/22/2006
Your HJT log looks good. Do you know what this is?
O16 - DPF: {E37CB5F0-51F5-4395-A808-5FA49E399F83} (GbPluginObj Class) -
If not, use HJT to remove it. If it is valid, you will be prompted to install it again if you visit the site.

I may be duplicating information, I am working many logs and there is too much to look back over to see if I posted this before.
Here is some great information from Tony Klein, Texruss, ChrisRLG and Grinler to help you stay clean and safe online:
http://boards.cexx.org/viewtopic.php?t=957
http://russelltexas.com/malware/allclear.htm
http://forum.malwareremoval.com/viewtopic.php?t=14
http://www.bleepingcomputer.com/forums/topict2520.html
http://cybercoyote.org/security/not-admin.shtml

ewido is a great program but it does use some resources. Once the trial is over you can update and use the scanner for as long as you wish, but unless you purchase it you should turn it off completely so it does not run unless you start it manually.

System Restore does not know the good files from the bad. In case bad stuff has gotten into your System Restore files, follow the instructions in this link to get clean System Restore files. Turn it off, reboot then turn it back on:
http://service1.symantec.com/SUPPORT/tsgeninfo.nsf/docid/2001111912274039?Open&src=sec_doc_nam

ewido anti-malware - Scan report Created on: 5:53:17 PM, 4/22/2006Looks like all Firefox cookies, this information will help you control these cookies if you wish:
http://privacy.getnetwise.org/browsing/tools/firefox1/ffdisablecookies
http://www.mozilla.org/projects/security/pki/psm/help_21/using_priv_help.html
good to here: C:\WINDOWS\ms062415127673.exe is gone, keep an eye open for a couple of days to make sure it does not return. This other number is in my understanding the number that is assign to the user so if there are multiple users they can be identified by that S number, I have one in my bin also, not to be concerned about it.
C:\RECYCLER\S-1-5-21-1935655697-1972579041-725345543-1003.

KASPERSKY ON-LINE SCANNER REPORT: Sunday, April 23, 2006 1:39:54 AM
Not being a user of Norton or Outlook, I am a little unsure how to advise you here. Since we deleted all of the Symantec/Norton folder, I am astounded at how Norton can place their folder into a program like Outlook. My suggestion would be to boot to safe mode and delete:
C:\Documents and Settings\Victor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Notes/Norton AntiSpam Folder/ <<< that folder in red. The alternate would be to contact Symantec for instructions.
http://www.symantec.com/techsupp/home_homeoffice/index.html It looks like the way they are stored, they can't get back on the computer, but I would want them gone if I were you. Besides that issue, we have cleaned a load of junk off of your computer, how is it running now.

Thanks...Phil
 
Hi Phil,

Thanks a lot for all the info. I installed ZoneAlarm, SpywareBlaster and updated my hosts file on my pc. Also did some changes to my IE security settings. Hopefully now I can keep it clean from malwares.

Something weird did happen thou. When I re-started the SDHelper and TeaTimer on Spybot, it re-installed the old registry settings without letting me say no. I was able to delete all of the ones you mentioned before, but there are about 4 entries that I'm suspicious about.

These are the entries:

O16 - DPF: {01010E00-5E80-11D8-9E86-0007E96C65AE} -
O16 - DPF: {01012101-5E80-11D8-9E86-0007E96C65AE} -
O16 - DPF: {1F2F4C9E-6F09-47BC-970D-3C54734667FE} -
O16 - DPF: {CE28D5D2-60CF-4C7D-9FE8-0F47A3308078} -

I cleaned the system re-store points as well.

In regards to the Norton folders, I found out that it had 2x folders from 2 different installs, and I had deleted only one of them. I will run kaspersky once again later on to check it out.

Runned Ewido and got no hits.


Vic.


-----------------------------------------------------------
Logfile of HijackThis v1.99.1
Scan saved at 9:10:31 PM, on 4/23/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Netropa\Multimedia Keyboard\nhksrv.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\Program Files\LogMeIn\RaMaint.exe
C:\Program Files\LogMeIn\LogMeIn.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
C:\Program Files\Roxio\Easy CD Creator 6\DragToDisc\DrgToDsc.exe
C:\Program Files\Roxio\Easy CD Creator 6\AudioCentral\RxMon.exe
C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe
C:\Program Files\Netropa\Multimedia Keyboard\MMKeybd.exe
C:\Program Files\LogMeIn\LogMeInSystray.exe
C:\PROGRA~1\Logitech\MOUSEW~1\SYSTEM\EM_EXEC.EXE
C:\Program Files\Common Files\PCSuite\DataLayer\DataLayer.exe
C:\Program Files\Netropa\Multimedia Keyboard\TrayMon.exe
C:\Program Files\Netropa\Onscreen Display\OSD.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\PROGRA~1\COMMON~1\PCSuite\Services\SERVIC~1.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Roxio\Easy CD Creator 6\AudioCentral\Playlist.exe
C:\Program Files\Stardock\ObjectDock\ObjectDock.exe
C:\Program Files\YCIII\YankClip.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\AntiSpyWare\HijackThis.exe

O2 - BHO: G-Buster Browser Defense - {C41A1C0E-EA6C-11D4-B1B8-444553540000} - C:\WINDOWS\Downloaded Program Files\gbieh.dll
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
O4 - HKLM\..\Run: [RoxioEngineUtility] "C:\Program Files\Common Files\Roxio Shared\System\EngUtil.exe"
O4 - HKLM\..\Run: [RoxioDragToDisc] "C:\Program Files\Roxio\Easy CD Creator 6\DragToDisc\DrgToDsc.exe"
O4 - HKLM\..\Run: [RoxioAudioCentral] "C:\Program Files\Roxio\Easy CD Creator 6\AudioCentral\RxMon.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [PrinTray] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\printray.exe
O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINDOWS\System32\PSDrvCheck.exe
O4 - HKLM\..\Run: [PCSuiteTrayApplication] C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe -onlytray
O4 - HKLM\..\Run: [MULTIMEDIA KEYBOARD] C:\Program Files\Netropa\Multimedia Keyboard\MMKeybd.exe
O4 - HKLM\..\Run: [LogMeIn GUI] "C:\Program Files\LogMeIn\LogMeInSystray.exe"
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [EM_EXEC] C:\PROGRA~1\Logitech\MOUSEW~1\SYSTEM\EM_EXEC.EXE
O4 - HKLM\..\Run: [DataLayer] C:\Program Files\Common Files\PCSuite\DataLayer\DataLayer.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [Zone Labs Client] C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
O4 - HKCU\..\Run: [STYLEXP] C:\Program Files\TGTSoft\StyleXP\StyleXP.exe -Hide
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Startup: Stardock ObjectDock.lnk = C:\Program Files\Stardock\ObjectDock\ObjectDock.exe
O4 - Startup: Yankee Clipper III.lnk = C:\Program Files\YCIII\YankClip.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll
O9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .bcf: C:\Program Files\Internet Explorer\Plugins\NPBelv32.dll
O16 - DPF: {01010E00-5E80-11D8-9E86-0007E96C65AE} -
O16 - DPF: {01012101-5E80-11D8-9E86-0007E96C65AE} -
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/english/kavwebscan_unicode.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=36467&clcid=0x409
O16 - DPF: {1F2F4C9E-6F09-47BC-970D-3C54734667FE} -
O16 - DPF: {2B323CD9-50E3-11D3-9466-00A0C9700498} (Yahoo! Audio Conferencing) - http://us.chat1.yimg.com/us.yimg.com/i/chat/applet/v45/yacscom.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://spaces.msn.com/PhotoUpload/MsnPUpld.cab?10,0,910,0
O16 - DPF: {7D1E9C49-BD6A-11D3-87A8-009027A35D73} (Yahoo! Audio UI1) - http://chat.yahoo.com/cab/yacsui.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {CE28D5D2-60CF-4C7D-9FE8-0F47A3308078} -
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: LMIinit - C:\WINDOWS\SYSTEM32\LMIinit.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: BlueSoleil Hid Service - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: LogMeIn Maintenance Service (LMIMaint) - 3am Labs, Inc. - C:\Program Files\LogMeIn\RaMaint.exe
O23 - Service: LogMeIn - 3am Labs, Inc. - C:\Program Files\LogMeIn\LogMeIn.exe
O23 - Service: Netropa NHK Server (nhksrv) - Unknown owner - C:\Program Files\Netropa\Multimedia Keyboard\nhksrv.exe
O23 - Service: StyleXPService - Unknown owner - C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe
 
Hi Vic, sounds like you are getting this box in shape You get to make the decision, but I personally run SpywareGuard which does the same job as TeaTimer. It comes from the same folks as SpywareBlaster. If you decide to run it, then turn off TeaTimer: http://russelltexas.com/malware/teatimer.htm For your benefit, here are tutorials for the ones I run:
Spybot
http://www.bleepingcomputer.com/forums/tutorial43.html
Ad-aware
http://www.bleepingcomputer.com/forums/tutorial48.html
SpywareBlaster
http://www.bleepingcomputer.com/forums/tutorial49.html
SpywareGuard:
http://www.bleepingcomputer.com/forums/tutorial50.html
IE-Spyad
http://www.bleepingcomputer.com/forums/tutorial53.html

It may be that TeaTimer is causing the ActiveX items to return. Let me briefly say that when you delete an ActiveX, if you return to that website again to use that program, you will be prompted to download the ActiveX again. When you made the new ActiveX settings, you should have asked to be prompted BEFORE any ActiveX can be downloaded. Let's see what they are now:

The four 016 lines in the order you have them posted are:
1) SupportSoft SmartIssue L {01010E00-5E80-11D8-9E86-0007E96C65AE} tgctlsi.cab Related to Symantec services
2) SupportSoft Script Runner Class L {01012101-5E80-11D8-9E86-0007E96C65AE} tgctlsr.cab Related to Symantec services
3) Symantec Automated Support Utility L {1F2F4C9E-6F09-47BC-970D-3C54734667FE} http://www.symantec.com/techsupp/asa
4) Symantec Automated Support Utility L {CE28D5D2-60CF-4C7D-9FE8-0F47A3308078} http://www.symantec.com/techsupp/asa

It is my guess these were downloaded for the Symantec program you were running and while they are not malware, are probably no longer needed. I would remove them with HJT and you will probably have to turn TeaTimer off to do it.

Another way that may work is: Internet Explorer > Tools > Internet Options > Settings > View Objects. Highlite the ones you no longer use and hit your delete key.

No need to post again if all is well.

Cheers...Phil:bigthumb:
 
Back
Top