It seems to be a common complaint...."my kid clicked on something he shouldn't have."
I'm getting loads of popups, my desktop has been altered, etc.
Any help would be VERY much appreciated!!
Here's my Kaspersky log (sorry, I saved it as html by mistake):
Sunday, December 02, 2007 12:34:31 PM
Operating System: Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600)
Kaspersky Online Scanner version: 5.0.98.0
Kaspersky Anti-Virus database last update: 2/12/2007
Kaspersky Anti-Virus database records: 470432
Scan Settings
Scan using the following antivirus database extended
Scan Archives true
Scan Mail Bases true
Scan Target My Computer
C:\
D:\
Scan Statistics
Total number of scanned objects 117063
Number of viruses found 8
Number of infected objects 16
Number of suspicious objects 2
Duration of the scan process 02:45:17
Infected Object Name Virus Name Last Action
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Windows NT\MSFax\ActivityLog\InboxLOG.txt Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Windows NT\MSFax\ActivityLog\OutboxLOG.txt Object is locked skipped
C:\Documents and Settings\LocalService\Cookies\INDEX.DAT Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\History\History.IE5\INDEX.DAT Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\INDEX.DAT Object is locked skipped
C:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\Mik\Application Data\Mozilla\Firefox\Profiles\frkbcbka.default\cert8.db Object is locked skipped
C:\Documents and Settings\Mik\Application Data\Mozilla\Firefox\Profiles\frkbcbka.default\formhistory.dat Object is locked skipped
C:\Documents and Settings\Mik\Application Data\Mozilla\Firefox\Profiles\frkbcbka.default\history.dat Object is locked skipped
C:\Documents and Settings\Mik\Application Data\Mozilla\Firefox\Profiles\frkbcbka.default\key3.db Object is locked skipped
C:\Documents and Settings\Mik\Application Data\Mozilla\Firefox\Profiles\frkbcbka.default\parent.lock Object is locked skipped
C:\Documents and Settings\Mik\Application Data\Mozilla\Firefox\Profiles\frkbcbka.default\search.sqlite Object is locked skipped
C:\Documents and Settings\Mik\Application Data\Mozilla\Firefox\Profiles\frkbcbka.default\urlclassifier2.sqlite Object is locked skipped
C:\Documents and Settings\Mik\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\jvmsecman.jar-69ee0d96-6c7992d6.zip/vlocal.class Infected: Trojan-Downloader.Java.Agent.f skipped
C:\Documents and Settings\Mik\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\jvmsecman.jar-69ee0d96-6c7992d6.zip ZIP: infected - 1 skipped
C:\Documents and Settings\Mik\Cookies\INDEX.DAT Object is locked skipped
C:\Documents and Settings\Mik\Local Settings\Application Data\ApplicationHistory\NotifyAlert.exe.83a8f8c0.ini.inuse Object is locked skipped
C:\Documents and Settings\Mik\Local Settings\Application Data\Microsoft\Feeds Cache\index.dat Object is locked skipped
C:\Documents and Settings\Mik\Local Settings\Application Data\Microsoft\Media Player\CurrentDatabase_219.wmdb Object is locked skipped
C:\Documents and Settings\Mik\Local Settings\Application Data\Microsoft\Outlook\outlook.pst/Personal Folders/Inbox/01 Oct 2003 01:01 from Judith Lubina:RE: Spreadsheets amendments.rtf Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\Mik\Local Settings\Application Data\Microsoft\Outlook\outlook.pst Mail MS Mail: suspicious - 1 skipped
C:\Documents and Settings\Mik\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\Mik\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\Mik\Local Settings\Application Data\Mozilla\Firefox\Profiles\frkbcbka.default\Cache\_CACHE_001_ Object is locked skipped
C:\Documents and Settings\Mik\Local Settings\Application Data\Mozilla\Firefox\Profiles\frkbcbka.default\Cache\_CACHE_002_ Object is locked skipped
C:\Documents and Settings\Mik\Local Settings\Application Data\Mozilla\Firefox\Profiles\frkbcbka.default\Cache\_CACHE_003_ Object is locked skipped
C:\Documents and Settings\Mik\Local Settings\Application Data\Mozilla\Firefox\Profiles\frkbcbka.default\Cache\_CACHE_MAP_ Object is locked skipped
C:\Documents and Settings\Mik\Local Settings\History\History.IE5\INDEX.DAT Object is locked skipped
C:\Documents and Settings\Mik\Local Settings\History\History.IE5\MSHist012007120220071203\index.dat Object is locked skipped
C:\Documents and Settings\Mik\Local Settings\Temp\k11u78.exe/data0006 Infected: Trojan-Downloader.Win32.VB.bto skipped
C:\Documents and Settings\Mik\Local Settings\Temp\k11u78.exe NSIS: infected - 1 skipped
C:\Documents and Settings\Mik\Local Settings\Temp\Perflib_Perfdata_d48.dat Object is locked skipped
C:\Documents and Settings\Mik\Local Settings\Temp\stany.exe Infected: Trojan-Dropper.Win32.Agent.chq skipped
C:\Documents and Settings\Mik\Local Settings\Temp\temp.fr1611 Infected: Trojan-Downloader.Win32.Small.gkh skipped
C:\Documents and Settings\Mik\Local Settings\Temp\winshow.exe Infected: Trojan-Downloader.Win32.VB.bvj skipped
C:\Documents and Settings\Mik\Local Settings\Temporary Internet Files\AntiPhishing\B3BB5BBA-E7D5-40AB-A041-A5B1C0B26C8F.dat Object is locked skipped
C:\Documents and Settings\Mik\Local Settings\Temporary Internet Files\Content.IE5\05QFSPIJ\k11u78[1].exe/data0006 Infected: Trojan-Downloader.Win32.VB.bto skipped
C:\Documents and Settings\Mik\Local Settings\Temporary Internet Files\Content.IE5\05QFSPIJ\k11u78[1].exe NSIS: infected - 1 skipped
C:\Documents and Settings\Mik\Local Settings\Temporary Internet Files\Content.IE5\05QFSPIJ\winshow[1].exe Infected: Trojan-Downloader.Win32.VB.bvj skipped
C:\Documents and Settings\Mik\Local Settings\Temporary Internet Files\Content.IE5\8163OHMV\pochki20071106[1] Infected: Trojan.Win32.Obfuscated.kp skipped
C:\Documents and Settings\Mik\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\Mik\Local Settings\Temporary Internet Files\Content.IE5\K9IJ49AZ\is68525[1].exe Infected: not-a-virus:AdWare.Win32.Virtumonde.azt skipped
C:\Documents and Settings\Mik\Local Settings\Temporary Internet Files\Content.IE5\K9IJ49AZ\stany[1].exe Infected: Trojan-Dropper.Win32.Agent.chq skipped
C:\Documents and Settings\Mik\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\Mik\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\Mik\Share Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\aswResp.dat Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\Avast4.db Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\log\AshWebSv.ws Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\log\aswMaiSv.log Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\log\nshield.log Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\report\Resident protection.txt Object is locked skipped
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcrst.dll Object is locked skipped
C:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP628\change.log Object is locked skipped
C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped
C:\WINDOWS\Internet Logs\DD7D0X51.ldb Object is locked skipped
C:\WINDOWS\Internet Logs\fwdbglog.txt Object is locked skipped
C:\WINDOWS\Internet Logs\fwpktlog.txt Object is locked skipped
C:\WINDOWS\Internet Logs\IAMDB.RDB Object is locked skipped
C:\WINDOWS\Internet Logs\tvDebug.log Object is locked skipped
C:\WINDOWS\SchedLgU.Txt Object is locked skipped
C:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked skipped
C:\WINDOWS\Sti_Trace.log Object is locked skipped
C:\WINDOWS\SYSTEM32\CatRoot2\edb.log Object is locked skipped
C:\WINDOWS\SYSTEM32\CatRoot2\tmp.edb Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\Antivirus.Evt Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\AppEvent.Evt Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\DEFAULT Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\DEFAULT.LOG Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\Internet.evt Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\SAM Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\SAM.LOG Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\SecEvent.Evt Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\SECURITY Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\SECURITY.LOG Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\SOFTWARE Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\SOFTWARE.LOG Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\SysEvent.Evt Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEM Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEM.LOG Object is locked skipped
C:\WINDOWS\SYSTEM32\H323LOG.TXT Object is locked skipped
C:\WINDOWS\SYSTEM32\LogFiles\WUDF\WUDFTrace.etl Object is locked skipped
C:\WINDOWS\SYSTEM32\rMa02yy\rMa02yy1099.exe Infected: Trojan-Downloader.Win32.VB.bto skipped
C:\WINDOWS\SYSTEM32\WBEM\Repository\FS\INDEX.BTR Object is locked skipped
C:\WINDOWS\SYSTEM32\WBEM\Repository\FS\INDEX.MAP Object is locked skipped
C:\WINDOWS\SYSTEM32\WBEM\Repository\FS\MAPPING.VER Object is locked skipped
C:\WINDOWS\SYSTEM32\WBEM\Repository\FS\MAPPING1.MAP Object is locked skipped
C:\WINDOWS\SYSTEM32\WBEM\Repository\FS\MAPPING2.MAP Object is locked skipped
C:\WINDOWS\SYSTEM32\WBEM\Repository\FS\OBJECTS.DATA Object is locked skipped
C:\WINDOWS\SYSTEM32\WBEM\Repository\FS\OBJECTS.MAP Object is locked skipped
C:\WINDOWS\SYSTEM32\yaywxxu.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.azt skipped
C:\WINDOWS\Temp\Perflib_Perfdata_10c.dat Object is locked skipped
C:\WINDOWS\Temp\Perflib_Perfdata_d8.dat Object is locked skipped
C:\WINDOWS\Temp\ZLT028fe.TMP Object is locked skipped
C:\WINDOWS\Temp\ZLT02901.TMP Object is locked skipped
C:\WINDOWS\Temp\_avast4_\Webshlock.txt Object is locked skipped
C:\WINDOWS\WIADEBUG.LOG Object is locked skipped
C:\WINDOWS\WIASERVC.LOG Object is locked skipped
C:\WINDOWS\WindowsUpdate.log Object is locked skipped
C:\WINDOWS\winshow.exe Infected: Trojan-Downloader.Win32.VB.bvj skipped
Scan process completed.
I'm getting loads of popups, my desktop has been altered, etc.
Any help would be VERY much appreciated!!
Here's my Kaspersky log (sorry, I saved it as html by mistake):
Sunday, December 02, 2007 12:34:31 PM
Operating System: Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600)
Kaspersky Online Scanner version: 5.0.98.0
Kaspersky Anti-Virus database last update: 2/12/2007
Kaspersky Anti-Virus database records: 470432
Scan Settings
Scan using the following antivirus database extended
Scan Archives true
Scan Mail Bases true
Scan Target My Computer
C:\
D:\
Scan Statistics
Total number of scanned objects 117063
Number of viruses found 8
Number of infected objects 16
Number of suspicious objects 2
Duration of the scan process 02:45:17
Infected Object Name Virus Name Last Action
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Windows NT\MSFax\ActivityLog\InboxLOG.txt Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Windows NT\MSFax\ActivityLog\OutboxLOG.txt Object is locked skipped
C:\Documents and Settings\LocalService\Cookies\INDEX.DAT Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\History\History.IE5\INDEX.DAT Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\INDEX.DAT Object is locked skipped
C:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\Mik\Application Data\Mozilla\Firefox\Profiles\frkbcbka.default\cert8.db Object is locked skipped
C:\Documents and Settings\Mik\Application Data\Mozilla\Firefox\Profiles\frkbcbka.default\formhistory.dat Object is locked skipped
C:\Documents and Settings\Mik\Application Data\Mozilla\Firefox\Profiles\frkbcbka.default\history.dat Object is locked skipped
C:\Documents and Settings\Mik\Application Data\Mozilla\Firefox\Profiles\frkbcbka.default\key3.db Object is locked skipped
C:\Documents and Settings\Mik\Application Data\Mozilla\Firefox\Profiles\frkbcbka.default\parent.lock Object is locked skipped
C:\Documents and Settings\Mik\Application Data\Mozilla\Firefox\Profiles\frkbcbka.default\search.sqlite Object is locked skipped
C:\Documents and Settings\Mik\Application Data\Mozilla\Firefox\Profiles\frkbcbka.default\urlclassifier2.sqlite Object is locked skipped
C:\Documents and Settings\Mik\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\jvmsecman.jar-69ee0d96-6c7992d6.zip/vlocal.class Infected: Trojan-Downloader.Java.Agent.f skipped
C:\Documents and Settings\Mik\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\jvmsecman.jar-69ee0d96-6c7992d6.zip ZIP: infected - 1 skipped
C:\Documents and Settings\Mik\Cookies\INDEX.DAT Object is locked skipped
C:\Documents and Settings\Mik\Local Settings\Application Data\ApplicationHistory\NotifyAlert.exe.83a8f8c0.ini.inuse Object is locked skipped
C:\Documents and Settings\Mik\Local Settings\Application Data\Microsoft\Feeds Cache\index.dat Object is locked skipped
C:\Documents and Settings\Mik\Local Settings\Application Data\Microsoft\Media Player\CurrentDatabase_219.wmdb Object is locked skipped
C:\Documents and Settings\Mik\Local Settings\Application Data\Microsoft\Outlook\outlook.pst/Personal Folders/Inbox/01 Oct 2003 01:01 from Judith Lubina:RE: Spreadsheets amendments.rtf Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\Mik\Local Settings\Application Data\Microsoft\Outlook\outlook.pst Mail MS Mail: suspicious - 1 skipped
C:\Documents and Settings\Mik\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\Mik\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\Mik\Local Settings\Application Data\Mozilla\Firefox\Profiles\frkbcbka.default\Cache\_CACHE_001_ Object is locked skipped
C:\Documents and Settings\Mik\Local Settings\Application Data\Mozilla\Firefox\Profiles\frkbcbka.default\Cache\_CACHE_002_ Object is locked skipped
C:\Documents and Settings\Mik\Local Settings\Application Data\Mozilla\Firefox\Profiles\frkbcbka.default\Cache\_CACHE_003_ Object is locked skipped
C:\Documents and Settings\Mik\Local Settings\Application Data\Mozilla\Firefox\Profiles\frkbcbka.default\Cache\_CACHE_MAP_ Object is locked skipped
C:\Documents and Settings\Mik\Local Settings\History\History.IE5\INDEX.DAT Object is locked skipped
C:\Documents and Settings\Mik\Local Settings\History\History.IE5\MSHist012007120220071203\index.dat Object is locked skipped
C:\Documents and Settings\Mik\Local Settings\Temp\k11u78.exe/data0006 Infected: Trojan-Downloader.Win32.VB.bto skipped
C:\Documents and Settings\Mik\Local Settings\Temp\k11u78.exe NSIS: infected - 1 skipped
C:\Documents and Settings\Mik\Local Settings\Temp\Perflib_Perfdata_d48.dat Object is locked skipped
C:\Documents and Settings\Mik\Local Settings\Temp\stany.exe Infected: Trojan-Dropper.Win32.Agent.chq skipped
C:\Documents and Settings\Mik\Local Settings\Temp\temp.fr1611 Infected: Trojan-Downloader.Win32.Small.gkh skipped
C:\Documents and Settings\Mik\Local Settings\Temp\winshow.exe Infected: Trojan-Downloader.Win32.VB.bvj skipped
C:\Documents and Settings\Mik\Local Settings\Temporary Internet Files\AntiPhishing\B3BB5BBA-E7D5-40AB-A041-A5B1C0B26C8F.dat Object is locked skipped
C:\Documents and Settings\Mik\Local Settings\Temporary Internet Files\Content.IE5\05QFSPIJ\k11u78[1].exe/data0006 Infected: Trojan-Downloader.Win32.VB.bto skipped
C:\Documents and Settings\Mik\Local Settings\Temporary Internet Files\Content.IE5\05QFSPIJ\k11u78[1].exe NSIS: infected - 1 skipped
C:\Documents and Settings\Mik\Local Settings\Temporary Internet Files\Content.IE5\05QFSPIJ\winshow[1].exe Infected: Trojan-Downloader.Win32.VB.bvj skipped
C:\Documents and Settings\Mik\Local Settings\Temporary Internet Files\Content.IE5\8163OHMV\pochki20071106[1] Infected: Trojan.Win32.Obfuscated.kp skipped
C:\Documents and Settings\Mik\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\Mik\Local Settings\Temporary Internet Files\Content.IE5\K9IJ49AZ\is68525[1].exe Infected: not-a-virus:AdWare.Win32.Virtumonde.azt skipped
C:\Documents and Settings\Mik\Local Settings\Temporary Internet Files\Content.IE5\K9IJ49AZ\stany[1].exe Infected: Trojan-Dropper.Win32.Agent.chq skipped
C:\Documents and Settings\Mik\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\Mik\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\Mik\Share Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\aswResp.dat Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\Avast4.db Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\log\AshWebSv.ws Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\log\aswMaiSv.log Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\log\nshield.log Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\report\Resident protection.txt Object is locked skipped
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcrst.dll Object is locked skipped
C:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP628\change.log Object is locked skipped
C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped
C:\WINDOWS\Internet Logs\DD7D0X51.ldb Object is locked skipped
C:\WINDOWS\Internet Logs\fwdbglog.txt Object is locked skipped
C:\WINDOWS\Internet Logs\fwpktlog.txt Object is locked skipped
C:\WINDOWS\Internet Logs\IAMDB.RDB Object is locked skipped
C:\WINDOWS\Internet Logs\tvDebug.log Object is locked skipped
C:\WINDOWS\SchedLgU.Txt Object is locked skipped
C:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked skipped
C:\WINDOWS\Sti_Trace.log Object is locked skipped
C:\WINDOWS\SYSTEM32\CatRoot2\edb.log Object is locked skipped
C:\WINDOWS\SYSTEM32\CatRoot2\tmp.edb Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\Antivirus.Evt Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\AppEvent.Evt Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\DEFAULT Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\DEFAULT.LOG Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\Internet.evt Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\SAM Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\SAM.LOG Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\SecEvent.Evt Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\SECURITY Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\SECURITY.LOG Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\SOFTWARE Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\SOFTWARE.LOG Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\SysEvent.Evt Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEM Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEM.LOG Object is locked skipped
C:\WINDOWS\SYSTEM32\H323LOG.TXT Object is locked skipped
C:\WINDOWS\SYSTEM32\LogFiles\WUDF\WUDFTrace.etl Object is locked skipped
C:\WINDOWS\SYSTEM32\rMa02yy\rMa02yy1099.exe Infected: Trojan-Downloader.Win32.VB.bto skipped
C:\WINDOWS\SYSTEM32\WBEM\Repository\FS\INDEX.BTR Object is locked skipped
C:\WINDOWS\SYSTEM32\WBEM\Repository\FS\INDEX.MAP Object is locked skipped
C:\WINDOWS\SYSTEM32\WBEM\Repository\FS\MAPPING.VER Object is locked skipped
C:\WINDOWS\SYSTEM32\WBEM\Repository\FS\MAPPING1.MAP Object is locked skipped
C:\WINDOWS\SYSTEM32\WBEM\Repository\FS\MAPPING2.MAP Object is locked skipped
C:\WINDOWS\SYSTEM32\WBEM\Repository\FS\OBJECTS.DATA Object is locked skipped
C:\WINDOWS\SYSTEM32\WBEM\Repository\FS\OBJECTS.MAP Object is locked skipped
C:\WINDOWS\SYSTEM32\yaywxxu.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.azt skipped
C:\WINDOWS\Temp\Perflib_Perfdata_10c.dat Object is locked skipped
C:\WINDOWS\Temp\Perflib_Perfdata_d8.dat Object is locked skipped
C:\WINDOWS\Temp\ZLT028fe.TMP Object is locked skipped
C:\WINDOWS\Temp\ZLT02901.TMP Object is locked skipped
C:\WINDOWS\Temp\_avast4_\Webshlock.txt Object is locked skipped
C:\WINDOWS\WIADEBUG.LOG Object is locked skipped
C:\WINDOWS\WIASERVC.LOG Object is locked skipped
C:\WINDOWS\WindowsUpdate.log Object is locked skipped
C:\WINDOWS\winshow.exe Infected: Trojan-Downloader.Win32.VB.bvj skipped
Scan process completed.