So I got the Net Kernal 1256 virus/trojan and it slowed down my computer, added extra icons, added ~$5,000 .tmp files, and caused my computer to have 40 popups everytime I opened a broswer, and it was very sluggish. I think I deleted them with vundofix, and combofix. However I still get popups. Even after I have ran spybot, I also noticed I had virtumonde. I also noticed that my google searches have been redirected to rouge sites. Below you'll find my log files. TIA.
KASPERSKY ONLINE SCANNER REPORT
Friday, February 01, 2008 4:26:15 PM
Operating System: Microsoft Windows XP Professional, Service Pack 2 (Build 2600)
Kaspersky Online Scanner version: 5.0.98.0
Kaspersky Anti-Virus database last update: 1/02/2008
Kaspersky Anti-Virus database records: 545342
-------------------------------------------------------------------------------
Scan Settings:
Scan using the following antivirus database: extended
Scan Archives: true
Scan Mail Bases: true
Scan Target - My Computer:
Scan Statistics:
Total number of scanned objects: 56120
Number of viruses found: 29
Number of infected objects: 78
Number of suspicious objects: 2
Duration of the scan process: 04:07:00
Infected Object Name / Virus Name / Last Action
C:\WINDOWS\system32\config\system.LOG Object is locked skipped
C:\WINDOWS\system32\config\software.LOG Object is locked skipped
C:\WINDOWS\system32\config\default.LOG Object is locked skipped
C:\WINDOWS\system32\config\SAM.LOG Object is locked skipped
C:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped
C:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\SECURITY Object is locked skipped
C:\WINDOWS\system32\config\SOFTWARE Object is locked skipped
C:\WINDOWS\system32\config\SYSTEM Object is locked skipped
C:\WINDOWS\system32\config\DEFAULT Object is locked skipped
C:\WINDOWS\system32\config\SAM Object is locked skipped
C:\WINDOWS\system32\drivers\sfloppyy.sys Object is locked skipped
C:\WINDOWS\system32\drivers\core.cache.dsk Object is locked skipped
C:\WINDOWS\system32\drivers\fidbox.idx Object is locked skipped
C:\WINDOWS\system32\drivers\fidbox.dat Object is locked skipped
C:\WINDOWS\system32\drivers\fidbox2.idx Object is locked skipped
C:\WINDOWS\system32\drivers\fidbox2.dat Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP Object is locked skipped
C:\WINDOWS\system32\mljgfdd.dll Infected: Trojan.Win32.BHO.auf skipped
C:\WINDOWS\system32\h323log.txt Object is locked skipped
C:\WINDOWS\system32\nGpxx01\nGpxx011065.exe Infected: Trojan-Downloader.Win32.VB.cge skipped
C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped
C:\WINDOWS\Sti_Trace.log Object is locked skipped
C:\WINDOWS\wiaservc.log Object is locked skipped
C:\WINDOWS\wiadebug.log Object is locked skipped
C:\WINDOWS\SchedLgU.Txt Object is locked skipped
C:\WINDOWS\WindowsUpdate.log Object is locked skipped
C:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked skipped
C:\WINDOWS\b147.exe Infected: Trojan-Downloader.Win32.Agent.fjn skipped
C:\WINDOWS\b122.exe Infected: Trojan-Downloader.Win32.Agent.hvj skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\WebBuyingAssistant.zip/v1.8.6/wbuninst.exe Suspicious: Password-protected-EXE skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\WebBuyingAssistant.zip ZIP: suspicious - 1 skipped
C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\LocalService\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\User1\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\User1\Local Settings\Temp\!update.exe Infected: Trojan-Downloader.Win32.PurityScan.fk skipped
C:\Documents and Settings\User1\Local Settings\Temp\snapsnet.exe/data0006 Infected: Trojan-Downloader.Win32.VB.cge skipped
C:\Documents and Settings\User1\Local Settings\Temp\snapsnet.exe NSIS: infected - 1 skipped
C:\Documents and Settings\User1\Local Settings\Temp\Perflib_Perfdata_4fc.dat Object is locked skipped
C:\Documents and Settings\User1\Local Settings\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\User1\Local Settings\History\History.IE5\MSHist012008020120080202\index.dat Object is locked skipped
C:\Documents and Settings\User1\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\User1\Local Settings\Temporary Internet Files\Content.IE5\7EHSDR7N\rasesnet[1].exe Infected: not-a-virus:AdWare.Win32.Virtumonde.edv skipped
C:\Documents and Settings\User1\Local Settings\Temporary Internet Files\Content.IE5\7EHSDR7N\4db3e14be68297b54dc897edcc80680f[1].zip/b147.exe Infected: Trojan-Downloader.Win32.Agent.fjn skipped
C:\Documents and Settings\User1\Local Settings\Temporary Internet Files\Content.IE5\7EHSDR7N\4db3e14be68297b54dc897edcc80680f[1].zip ZIP: infected - 1 skipped
C:\Documents and Settings\User1\Local Settings\Temporary Internet Files\Content.IE5\RP4K4NRR\!update-4495[1].0000 Infected: Trojan-Downloader.Win32.PurityScan.fk skipped
C:\Documents and Settings\User1\Local Settings\Temporary Internet Files\Content.IE5\QE7TXNLB\a8f5a020e4b833865a1034489887c8b9[1].zip/b122.exe Infected: Trojan-Downloader.Win32.Agent.hvj skipped
C:\Documents and Settings\User1\Local Settings\Temporary Internet Files\Content.IE5\QE7TXNLB\a8f5a020e4b833865a1034489887c8b9[1].zip ZIP: infected - 1 skipped
C:\Documents and Settings\User1\Local Settings\Temporary Internet Files\Content.IE5\QE7TXNLB\26453da423d82a5fc6fae941d05f1151[1].zip/b116.exe Infected: Trojan-Downloader.Win32.Agent.ezc skipped
C:\Documents and Settings\User1\Local Settings\Temporary Internet Files\Content.IE5\QE7TXNLB\26453da423d82a5fc6fae941d05f1151[1].zip ZIP: infected - 1 skipped
C:\Documents and Settings\User1\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\User1\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\User1\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\User1\Application Data\ѕystem\wucrtupd.exe Infected: Trojan-Downloader.Win32.PurityScan.fk skipped
C:\Documents and Settings\User1\ntuser.dat.LOG Object is locked skipped
C:\Program Files\Common Files\Yazzle1560OinAdmin.exe Infected: Trojan.Win32.Scapur.k skipped
C:\Program Files\Common Files\Yazzle1560OinUninstaller.exe/data0001 Infected: not-a-virus:AdWare.Win32.PurityScan.gp skipped
C:\Program Files\Common Files\Yazzle1560OinUninstaller.exe NSIS: infected - 1 skipped
C:\Program Files\Yahoo!\Messenger\logs\client_User1.log Object is locked skipped
C:\Program Files\Yahoo!\Messenger\logs\network_User1.log Object is locked skipped
C:\Program Files\Yahoo!\Messenger\logs\billing_User1.log Object is locked skipped
C:\Program Files\Insider\Insider.exe Infected: not-a-virus:AdWare.Win32.Insider.a skipped
C:\Program Files\Outerinfo\FF\components\FF.dll Infected: not-a-virus:AdWare.Win32.ZenoSearch.ad skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP597\A0345269.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.dnn skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP597\A0345273.exe Infected: Trojan-Downloader.Win32.Agent.gwe skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP597\A0346255.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.dnn skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP599\A0347255.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.edz skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP599\A0347256.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.edz skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP600\A0351340.exe Infected: Trojan-Downloader.Win32.Agent.gwe skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP600\A0351365.exe Infected: Trojan-Downloader.Win32.Agent.hvj skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP600\A0351369.exe Infected: not-a-virus:RemoteAdmin.Win32.WinVNC-based.h skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP600\A0351370.dll Infected: not-a-virus:RemoteAdmin.Win32.WinVNC-based.b skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP602\A0352403.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.dnn skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP602\A0352408.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.edx skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP602\A0352409.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.dnn skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP602\A0352413.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.eby skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP602\A0352414.exe Infected: Trojan-Downloader.Win32.Agent.gwe skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP602\A0352415.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.dxb skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP602\A0352416.exe Infected: Trojan-Downloader.Win32.Agent.gwe skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP602\A0352417.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.dnn skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP602\A0352418.exe Infected: Trojan-Downloader.Win32.Agent.gwe skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP602\A0352419.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.edw skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP603\A0352451.exe Infected: Trojan-Downloader.Win32.Agent.hql skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP603\A0352452.exe Infected: Trojan-Downloader.Win32.Agent.hql skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP603\A0352453.exe Infected: Trojan-Downloader.Win32.Agent.gwe skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP603\A0352455.DLL Infected: not-a-virus:AdWare.Win32.Virtumonde.dxb skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP603\A0352456.dll Infected: not-a-virus:AdWare.Win32.SuperJuan.kp skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP603\A0352457.exe Infected: Trojan.Win32.Agent.edq skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP603\A0352512.exe Infected: Trojan-Downloader.Win32.VB.cge skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP604\A0352523.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.edz skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP604\A0352529.dll Infected: Trojan.Win32.BHO.auf skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP604\A0352530.exe Infected: Trojan-Downloader.Win32.Adload.pr skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP604\A0352531.exe Infected: Trojan-Downloader.Win32.Agent.idv skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP604\A0352532.exe Infected: Trojan-Downloader.Win32.PurityScan.fj skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP604\A0352533.dll Infected: not-a-virus:AdWare.Win32.PurityScan.gv skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP604\A0352534.exe Infected: Trojan-Downloader.Win32.Agent.ezc skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP604\A0352540.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.edz skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP608\change.log Object is locked skipped
C:\FOUND.032\FILE0002.CHK Infected: Trojan-Downloader.Win32.Agent.gwe skipped
C:\FOUND.032\FILE0041.CHK Infected: not-a-virus:AdWare.Win32.Virtumonde.edz skipped
C:\FOUND.032\FILE0042.CHK Infected: not-a-virus:AdWare.Win32.Virtumonde.edz skipped
C:\FOUND.033\FILE0003.CHK Infected: Trojan-Downloader.Win32.Agent.gwe skipped
C:\VundoFix Backups\avifnipw.dll.bad Infected: not-a-virus:AdWare.Win32.Virtumonde.dnn skipped
C:\VundoFix Backups\efeby.dll.bad Infected: not-a-virus:AdWare.Win32.Virtumonde.edx skipped
C:\VundoFix Backups\fnbrgrgg.dll.bad Infected: not-a-virus:AdWare.Win32.Virtumonde.dnn skipped
C:\VundoFix Backups\ghtwtdpr.dll.bad Infected: not-a-virus:AdWare.Win32.Virtumonde.eby skipped
C:\VundoFix Backups\ivybysbg.exe.bad Infected: Trojan-Downloader.Win32.Agent.gwe skipped
C:\VundoFix Backups\jukwksej.exe.bad Infected: Trojan-Downloader.Win32.Agent.gwe skipped
C:\VundoFix Backups\khfcyvv.dll.bad Infected: not-a-virus:AdWare.Win32.Virtumonde.dxb skipped
C:\VundoFix Backups\kmlxdojw.exe.bad Infected: Trojan-Downloader.Win32.Agent.gwe skipped
C:\VundoFix Backups\nqselevc.dll.bad Infected: not-a-virus:AdWare.Win32.Virtumonde.dnn skipped
C:\VundoFix Backups\ogdviytl.exe.bad Infected: Trojan-Downloader.Win32.Agent.gwe skipped
C:\VundoFix Backups\omyrgoma.dll.bad Infected: not-a-virus:AdWare.Win32.Virtumonde.edw skipped
C:\VundoFix Backups\pmnkhge.dll.bad Infected: not-a-virus:AdWare.Win32.Virtumonde.dxb skipped
C:\QooBox\Quarantine\C\WINDOWS\mrofinu1000106.exe.vir Infected: Trojan-Downloader.Win32.Agent.hql skipped
C:\QooBox\Quarantine\C\WINDOWS\mrofinu572.exe.vir Infected: Trojan-Downloader.Win32.Agent.hql skipped
C:\QooBox\Quarantine\C\WINDOWS\system32\ivybysbg.exe.vir Infected: Trojan-Downloader.Win32.Agent.gwe skipped
C:\QooBox\Quarantine\C\WINDOWS\system32\pmnkhge.dll.vir Infected: not-a-virus:AdWare.Win32.Virtumonde.dxb skipped
C:\QooBox\Quarantine\C\WINDOWS\system32\yrevbmql.dll.vir Infected: not-a-virus:AdWare.Win32.SuperJuan.kp skipped
C:\QooBox\Quarantine\C\WINDOWS\system32\windows.vir Infected: Trojan.Win32.Zapchast.dt skipped
C:\QooBox\Quarantine\C\Program Files\Temporary\kernInst.exe.vir Infected: Trojan.Win32.Agent.edq skipped
Scan process completed.
KASPERSKY ONLINE SCANNER REPORT
Friday, February 01, 2008 4:26:15 PM
Operating System: Microsoft Windows XP Professional, Service Pack 2 (Build 2600)
Kaspersky Online Scanner version: 5.0.98.0
Kaspersky Anti-Virus database last update: 1/02/2008
Kaspersky Anti-Virus database records: 545342
-------------------------------------------------------------------------------
Scan Settings:
Scan using the following antivirus database: extended
Scan Archives: true
Scan Mail Bases: true
Scan Target - My Computer:
Scan Statistics:
Total number of scanned objects: 56120
Number of viruses found: 29
Number of infected objects: 78
Number of suspicious objects: 2
Duration of the scan process: 04:07:00
Infected Object Name / Virus Name / Last Action
C:\WINDOWS\system32\config\system.LOG Object is locked skipped
C:\WINDOWS\system32\config\software.LOG Object is locked skipped
C:\WINDOWS\system32\config\default.LOG Object is locked skipped
C:\WINDOWS\system32\config\SAM.LOG Object is locked skipped
C:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped
C:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\SECURITY Object is locked skipped
C:\WINDOWS\system32\config\SOFTWARE Object is locked skipped
C:\WINDOWS\system32\config\SYSTEM Object is locked skipped
C:\WINDOWS\system32\config\DEFAULT Object is locked skipped
C:\WINDOWS\system32\config\SAM Object is locked skipped
C:\WINDOWS\system32\drivers\sfloppyy.sys Object is locked skipped
C:\WINDOWS\system32\drivers\core.cache.dsk Object is locked skipped
C:\WINDOWS\system32\drivers\fidbox.idx Object is locked skipped
C:\WINDOWS\system32\drivers\fidbox.dat Object is locked skipped
C:\WINDOWS\system32\drivers\fidbox2.idx Object is locked skipped
C:\WINDOWS\system32\drivers\fidbox2.dat Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP Object is locked skipped
C:\WINDOWS\system32\mljgfdd.dll Infected: Trojan.Win32.BHO.auf skipped
C:\WINDOWS\system32\h323log.txt Object is locked skipped
C:\WINDOWS\system32\nGpxx01\nGpxx011065.exe Infected: Trojan-Downloader.Win32.VB.cge skipped
C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped
C:\WINDOWS\Sti_Trace.log Object is locked skipped
C:\WINDOWS\wiaservc.log Object is locked skipped
C:\WINDOWS\wiadebug.log Object is locked skipped
C:\WINDOWS\SchedLgU.Txt Object is locked skipped
C:\WINDOWS\WindowsUpdate.log Object is locked skipped
C:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked skipped
C:\WINDOWS\b147.exe Infected: Trojan-Downloader.Win32.Agent.fjn skipped
C:\WINDOWS\b122.exe Infected: Trojan-Downloader.Win32.Agent.hvj skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\WebBuyingAssistant.zip/v1.8.6/wbuninst.exe Suspicious: Password-protected-EXE skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\WebBuyingAssistant.zip ZIP: suspicious - 1 skipped
C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\LocalService\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\User1\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\User1\Local Settings\Temp\!update.exe Infected: Trojan-Downloader.Win32.PurityScan.fk skipped
C:\Documents and Settings\User1\Local Settings\Temp\snapsnet.exe/data0006 Infected: Trojan-Downloader.Win32.VB.cge skipped
C:\Documents and Settings\User1\Local Settings\Temp\snapsnet.exe NSIS: infected - 1 skipped
C:\Documents and Settings\User1\Local Settings\Temp\Perflib_Perfdata_4fc.dat Object is locked skipped
C:\Documents and Settings\User1\Local Settings\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\User1\Local Settings\History\History.IE5\MSHist012008020120080202\index.dat Object is locked skipped
C:\Documents and Settings\User1\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\User1\Local Settings\Temporary Internet Files\Content.IE5\7EHSDR7N\rasesnet[1].exe Infected: not-a-virus:AdWare.Win32.Virtumonde.edv skipped
C:\Documents and Settings\User1\Local Settings\Temporary Internet Files\Content.IE5\7EHSDR7N\4db3e14be68297b54dc897edcc80680f[1].zip/b147.exe Infected: Trojan-Downloader.Win32.Agent.fjn skipped
C:\Documents and Settings\User1\Local Settings\Temporary Internet Files\Content.IE5\7EHSDR7N\4db3e14be68297b54dc897edcc80680f[1].zip ZIP: infected - 1 skipped
C:\Documents and Settings\User1\Local Settings\Temporary Internet Files\Content.IE5\RP4K4NRR\!update-4495[1].0000 Infected: Trojan-Downloader.Win32.PurityScan.fk skipped
C:\Documents and Settings\User1\Local Settings\Temporary Internet Files\Content.IE5\QE7TXNLB\a8f5a020e4b833865a1034489887c8b9[1].zip/b122.exe Infected: Trojan-Downloader.Win32.Agent.hvj skipped
C:\Documents and Settings\User1\Local Settings\Temporary Internet Files\Content.IE5\QE7TXNLB\a8f5a020e4b833865a1034489887c8b9[1].zip ZIP: infected - 1 skipped
C:\Documents and Settings\User1\Local Settings\Temporary Internet Files\Content.IE5\QE7TXNLB\26453da423d82a5fc6fae941d05f1151[1].zip/b116.exe Infected: Trojan-Downloader.Win32.Agent.ezc skipped
C:\Documents and Settings\User1\Local Settings\Temporary Internet Files\Content.IE5\QE7TXNLB\26453da423d82a5fc6fae941d05f1151[1].zip ZIP: infected - 1 skipped
C:\Documents and Settings\User1\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\User1\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\User1\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\User1\Application Data\ѕystem\wucrtupd.exe Infected: Trojan-Downloader.Win32.PurityScan.fk skipped
C:\Documents and Settings\User1\ntuser.dat.LOG Object is locked skipped
C:\Program Files\Common Files\Yazzle1560OinAdmin.exe Infected: Trojan.Win32.Scapur.k skipped
C:\Program Files\Common Files\Yazzle1560OinUninstaller.exe/data0001 Infected: not-a-virus:AdWare.Win32.PurityScan.gp skipped
C:\Program Files\Common Files\Yazzle1560OinUninstaller.exe NSIS: infected - 1 skipped
C:\Program Files\Yahoo!\Messenger\logs\client_User1.log Object is locked skipped
C:\Program Files\Yahoo!\Messenger\logs\network_User1.log Object is locked skipped
C:\Program Files\Yahoo!\Messenger\logs\billing_User1.log Object is locked skipped
C:\Program Files\Insider\Insider.exe Infected: not-a-virus:AdWare.Win32.Insider.a skipped
C:\Program Files\Outerinfo\FF\components\FF.dll Infected: not-a-virus:AdWare.Win32.ZenoSearch.ad skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP597\A0345269.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.dnn skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP597\A0345273.exe Infected: Trojan-Downloader.Win32.Agent.gwe skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP597\A0346255.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.dnn skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP599\A0347255.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.edz skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP599\A0347256.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.edz skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP600\A0351340.exe Infected: Trojan-Downloader.Win32.Agent.gwe skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP600\A0351365.exe Infected: Trojan-Downloader.Win32.Agent.hvj skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP600\A0351369.exe Infected: not-a-virus:RemoteAdmin.Win32.WinVNC-based.h skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP600\A0351370.dll Infected: not-a-virus:RemoteAdmin.Win32.WinVNC-based.b skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP602\A0352403.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.dnn skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP602\A0352408.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.edx skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP602\A0352409.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.dnn skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP602\A0352413.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.eby skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP602\A0352414.exe Infected: Trojan-Downloader.Win32.Agent.gwe skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP602\A0352415.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.dxb skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP602\A0352416.exe Infected: Trojan-Downloader.Win32.Agent.gwe skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP602\A0352417.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.dnn skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP602\A0352418.exe Infected: Trojan-Downloader.Win32.Agent.gwe skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP602\A0352419.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.edw skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP603\A0352451.exe Infected: Trojan-Downloader.Win32.Agent.hql skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP603\A0352452.exe Infected: Trojan-Downloader.Win32.Agent.hql skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP603\A0352453.exe Infected: Trojan-Downloader.Win32.Agent.gwe skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP603\A0352455.DLL Infected: not-a-virus:AdWare.Win32.Virtumonde.dxb skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP603\A0352456.dll Infected: not-a-virus:AdWare.Win32.SuperJuan.kp skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP603\A0352457.exe Infected: Trojan.Win32.Agent.edq skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP603\A0352512.exe Infected: Trojan-Downloader.Win32.VB.cge skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP604\A0352523.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.edz skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP604\A0352529.dll Infected: Trojan.Win32.BHO.auf skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP604\A0352530.exe Infected: Trojan-Downloader.Win32.Adload.pr skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP604\A0352531.exe Infected: Trojan-Downloader.Win32.Agent.idv skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP604\A0352532.exe Infected: Trojan-Downloader.Win32.PurityScan.fj skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP604\A0352533.dll Infected: not-a-virus:AdWare.Win32.PurityScan.gv skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP604\A0352534.exe Infected: Trojan-Downloader.Win32.Agent.ezc skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP604\A0352540.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.edz skipped
C:\System Volume Information\_restore{47597587-21DB-4D2B-B644-2809A8848C80}\RP608\change.log Object is locked skipped
C:\FOUND.032\FILE0002.CHK Infected: Trojan-Downloader.Win32.Agent.gwe skipped
C:\FOUND.032\FILE0041.CHK Infected: not-a-virus:AdWare.Win32.Virtumonde.edz skipped
C:\FOUND.032\FILE0042.CHK Infected: not-a-virus:AdWare.Win32.Virtumonde.edz skipped
C:\FOUND.033\FILE0003.CHK Infected: Trojan-Downloader.Win32.Agent.gwe skipped
C:\VundoFix Backups\avifnipw.dll.bad Infected: not-a-virus:AdWare.Win32.Virtumonde.dnn skipped
C:\VundoFix Backups\efeby.dll.bad Infected: not-a-virus:AdWare.Win32.Virtumonde.edx skipped
C:\VundoFix Backups\fnbrgrgg.dll.bad Infected: not-a-virus:AdWare.Win32.Virtumonde.dnn skipped
C:\VundoFix Backups\ghtwtdpr.dll.bad Infected: not-a-virus:AdWare.Win32.Virtumonde.eby skipped
C:\VundoFix Backups\ivybysbg.exe.bad Infected: Trojan-Downloader.Win32.Agent.gwe skipped
C:\VundoFix Backups\jukwksej.exe.bad Infected: Trojan-Downloader.Win32.Agent.gwe skipped
C:\VundoFix Backups\khfcyvv.dll.bad Infected: not-a-virus:AdWare.Win32.Virtumonde.dxb skipped
C:\VundoFix Backups\kmlxdojw.exe.bad Infected: Trojan-Downloader.Win32.Agent.gwe skipped
C:\VundoFix Backups\nqselevc.dll.bad Infected: not-a-virus:AdWare.Win32.Virtumonde.dnn skipped
C:\VundoFix Backups\ogdviytl.exe.bad Infected: Trojan-Downloader.Win32.Agent.gwe skipped
C:\VundoFix Backups\omyrgoma.dll.bad Infected: not-a-virus:AdWare.Win32.Virtumonde.edw skipped
C:\VundoFix Backups\pmnkhge.dll.bad Infected: not-a-virus:AdWare.Win32.Virtumonde.dxb skipped
C:\QooBox\Quarantine\C\WINDOWS\mrofinu1000106.exe.vir Infected: Trojan-Downloader.Win32.Agent.hql skipped
C:\QooBox\Quarantine\C\WINDOWS\mrofinu572.exe.vir Infected: Trojan-Downloader.Win32.Agent.hql skipped
C:\QooBox\Quarantine\C\WINDOWS\system32\ivybysbg.exe.vir Infected: Trojan-Downloader.Win32.Agent.gwe skipped
C:\QooBox\Quarantine\C\WINDOWS\system32\pmnkhge.dll.vir Infected: not-a-virus:AdWare.Win32.Virtumonde.dxb skipped
C:\QooBox\Quarantine\C\WINDOWS\system32\yrevbmql.dll.vir Infected: not-a-virus:AdWare.Win32.SuperJuan.kp skipped
C:\QooBox\Quarantine\C\WINDOWS\system32\windows.vir Infected: Trojan.Win32.Zapchast.dt skipped
C:\QooBox\Quarantine\C\Program Files\Temporary\kernInst.exe.vir Infected: Trojan.Win32.Agent.edq skipped
Scan process completed.