Log Files
Looks like it is still infected :sad: Here are the three logs:
Combo Fix Log:
ComboFix 08-07-31.06 - kileyp 2008-08-02 17:37:52.3 - NTFSx86 MINIMAL
Microsoft Windows XP Home Edition 5.1.2600.2.1252.1.1033.18.369 [GMT -4:00]
Running from: C:\Documents and Settings\kileyp\Desktop\ComboFxx.exe
Command switches used :: C:\Documents and Settings\kileyp\Desktop\CFScript.txt
WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!
FILE ::
C:\WINDOWS\system32\beep.sys
C:\WINDOWS\system32\drivers\mrxdavv.sys
C:\WINDOWS\system32\g25.exe
C:\WINDOWS\system32\lufhyfanuj.exe
C:\WINDOWS\system32\vbzip10.dll
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
---- Previous Run -------
.
C:\Temp\stmpv4
C:\Temp\stmpv4\bnwe7.log
C:\WINDOWS\system32\beep.sys
C:\WINDOWS\system32\g25.exe
C:\WINDOWS\system32\imp32
C:\WINDOWS\system32\imp32\keysrve.exe
C:\WINDOWS\system32\lufhyfanuj.exe
C:\WINDOWS\system32\OBDE
C:\WINDOWS\system32\olixds18
C:\WINDOWS\system32\olixds18\olixds182328.exe
C:\WINDOWS\system32\provdll
C:\WINDOWS\system32\provdll\globsetup.exe
C:\WINDOWS\system32\sfig
C:\WINDOWS\system32\vbzip10.dll
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\Legacy_MRXDAVV
-------\Service_mrxdavv
((((((((((((((((((((((((( Files Created from 2008-07-02 to 2008-08-02 )))))))))))))))))))))))))))))))
.
2008-07-25 12:35 . 2008-07-25 12:35 <DIR> d-------- C:\Documents and Settings\LocalService\Application Data\Webroot
2008-07-25 11:35 . 2008-07-25 11:35 552 --a------ C:\WINDOWS\system32\d3d8caps.dat
2008-07-25 09:30 . 2008-07-25 09:30 <DIR> d-------- C:\Documents and Settings\NetworkService\Application Data\Webroot
2008-07-25 09:30 . 2008-01-04 20:34 163,696 --a------ C:\WINDOWS\system32\drivers\ssidrv.sys
2008-07-25 09:30 . 2008-01-04 20:34 21,872 --a------ C:\WINDOWS\system32\drivers\sshrmd.sys
2008-07-25 09:30 . 2008-01-04 20:34 20,336 --a------ C:\WINDOWS\system32\drivers\SSFS0BB9.sys
2008-07-25 09:29 . 2008-07-25 09:29 <DIR> d-------- C:\Program Files\Webroot
2008-07-25 09:29 . 2008-07-25 09:29 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Webroot
2008-07-25 09:29 . 2008-01-04 20:56 1,526,640 --a------ C:\WINDOWS\WRSetup.dll
2008-07-25 09:16 . 2008-07-25 09:25 <DIR> d-------- C:\Program Files\SpywareGuard
2008-07-13 16:25 . 2008-07-13 16:25 <DIR> d-------- C:\Documents and Settings\kileyp\Application Data\Webroot
2008-07-13 13:39 . 2008-07-13 13:39 <DIR> d-------- C:\Webroot
2008-07-12 13:47 . 2008-08-02 01:07 <DIR> d-------- C:\Temp
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-07-13 20:46 --------- d-----w C:\Program Files\SpywareBlaster
2008-07-13 04:54 --------- d-----w C:\Program Files\Quicken
2008-06-13 13:10 272,128 ----a-w C:\WINDOWS\system32\drivers\bthport.sys
2005-11-01 13:24 28,672 ----a-w C:\Documents and Settings\kileyp\atwbxdet.dll
2005-08-09 13:03 28,672 -c--a-w C:\Program Files\mozilla firefox\plugins\atgpcdec.dll
2005-09-27 14:00 98,304 -c--a-w C:\Program Files\mozilla firefox\plugins\atgpcext.dll
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-04 08:00 15360]
"MSMSGS"="C:\Program Files\Messenger\msmsgs.exe" [2004-10-13 12:24 1694208]
"updateMgr"="C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AdobeUpdateManager.exe" [2006-03-30 17:45 313472]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [2006-10-25 19:58 282624]
"McAfeeUpdaterUI"="C:\Program Files\Network Associates\Common Framework\UpdaterUI.exe" [2005-02-25 15:50 139320]
"ShStatEXE"="C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE" [2004-09-22 20:00 94208]
"NvCplDaemon"="C:\WINDOWS\system32\NvCpl.dll" [2004-04-07 15:22 4730880]
"Cpqset"="C:\Program Files\HPQ\Default Settings\cpqset.exe" [2004-03-01 13:05 200766]
"eabconfg.cpl"="C:\Program Files\HPQ\Quick Launch Buttons\EabServr.exe" [2004-07-30 09:33 286720]
"SSC_UserPrompt"="C:\Program Files\Common Files\Symantec Shared\Security Center\UsrPrmpt.exe" [2004-08-05 18:23 218240]
"Acrobat Assistant 7.0"="C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe" [2006-01-12 21:52 483328]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.5.0_09\bin\jusched.exe" [2006-09-07 15:51 49263]
"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [2006-10-30 10:36 256576]
"nwiz"="nwiz.exe" [2004-04-07 15:22 323584 C:\WINDOWS\system32\nwiz.exe]
"AGRSMMSG"="AGRSMMSG.exe" [2004-01-30 03:01 88363 C:\WINDOWS\AGRSMMSG.exe]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE" [2004-08-04 08:00 15360]
C:\Documents and Settings\kileyp\Start Menu\Programs\Startup\
SpywareGuard.lnk - C:\Program Files\SpywareGuard\sgmain.exe [2003-08-29 19:05:35 360448]
C:\Documents and Settings\All Users\Start Menu\Programs\Startup\
Adobe Acrobat Speed Launcher.lnk - C:\WINDOWS\Installer\{AC76BA86-1033-0000-7760-000000000002}\SC_Acrobat.exe [2006-08-03 16:00:18 25214]
Adobe Reader Speed Launch.lnk - C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe [2005-09-24 02:05:26 29696]
EMC VPN Client.lnk - C:\Program Files\EMC VPN\VPN Client\vpngui.exe [2006-02-21 09:24:21 1445904]
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk]
path=C:\Documents and Settings\All Users\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk
backup=C:\WINDOWS\pss\HP Digital Imaging Monitor.lnkCommon Startup
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Quicken Scheduled Updates.lnk]
path=C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Quicken Scheduled Updates.lnk
backup=C:\WINDOWS\pss\Quicken Scheduled Updates.lnkCommon Startup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Apoint]
-ra--c--- 2003-10-07 23:40 159744 C:\Program Files\Apoint2K\Apoint.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Cpqset]
--a------ 2004-03-01 13:05 200766 C:\Program Files\HPQ\Default Settings\Cpqset.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CTFMON.EXE]
--a------ 2004-08-04 08:00 15360 C:\WINDOWS\system32\ctfmon.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\eabconfg.cpl]
--a------ 2004-07-30 09:33 286720 C:\Program Files\HPQ\Quick Launch Buttons\eabservr.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Component Manager]
--a--c--- 2003-12-22 09:38 241664 C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Software Update]
--a--c--- 2003-08-04 18:28 49152 C:\Program Files\HP\HP Software Update\hpwuSchd.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HPHmon05]
--a--c--- 2003-05-22 20:55 483328 C:\WINDOWS\system32\hphmon05.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IMJPMIG8.1]
--a--c--- 2004-08-04 08:00 208952 C:\WINDOWS\ime\IMJP8_1\imjpmig.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
--a------ 2006-10-30 10:36 256576 C:\Program Files\iTunes\iTunesHelper.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS]
--a------ 2004-10-13 12:24 1694208 C:\Program Files\Messenger\msmsgs.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon]
-ra------ 2004-04-07 15:22 4730880 C:\WINDOWS\system32\nvcpl.dll
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PHIME2002A]
--a--c--- 2004-08-04 08:00 455168 C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PHIME2002ASync]
--a--c--- 2004-08-04 08:00 455168 C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
--a------ 2006-10-25 19:58 282624 C:\Program Files\QuickTime\qttask.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SSC_UserPrompt]
--a------ 2004-08-05 18:23 218240 C:\Program Files\Common Files\Symantec Shared\Security Center\UsrPrmpt.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
--a--c--- 2005-02-20 18:06 32881 C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UpdateManager]
--a--c--- 2003-08-19 02:01 110592 C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AGRSMMSG]
-ra------ 2004-01-30 03:01 88363 C:\WINDOWS\AGRSMMSG.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\nwiz]
-ra------ 2004-04-07 15:22 323584 C:\WINDOWS\system32\nwiz.exe
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"C:\\Program Files\\NetMeeting\\conf.exe"=
"C:\\Program Files\\BearShare\\BearShare.exe"=
"C:\\Program Files\\Network Associates\\Common Framework\\FrameworkService.exe"=
"C:\\Program Files\\Real\\RealPlayer\\realplay.exe"=
"C:\\Program Files\\iTunes\\iTunes.exe"=
R4 black;black;C:\WINDOWS\system32\drivers\BlackDrv.sys [2004-09-09 10:30]
S3 RapFile;RapFile;C:\WINDOWS\system32\drivers\RapFile.sys [2003-06-19 18:40]
S3 RapNet;RapNet;C:\WINDOWS\system32\drivers\RapNet.sys [2003-06-19 18:40]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{b3557d82-2d83-11dc-a05a-000fb04483b2}]
\Shell\AutoRun\command - E:\DTSP_Launcher.exe
*Newly Created Service* - ENTDRV51
.
Contents of the 'Scheduled Tasks' folder
2008-07-12 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job
- C:\Program Files\Apple Software Update\SoftwareUpdate.exe [2006-10-10 18:13]
2005-03-10 C:\WINDOWS\Tasks\Symantec NetDetect.job
- C:\Program Files\Symantec\LiveUpdate\NDETECT.EXE [2003-08-13 19:38]
.
**************************************************************************
catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2008-08-02 17:44:24
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
HKLM\Software\Microsoft\Windows\CurrentVersion\Run
Cpqset = C:\Program Files\HPQ\Default Settings\cpqset.exe????????0?6?7?3??????? ???B???????????????B? ??????
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
------------------------ Other Running Processes ------------------------
.
C:\Program Files\ISS\issSensors\DesktopProtection\blackd.exe
C:\Program Files\EMC VPN\VPN Client\cvpnd.exe
C:\Program Files\Network Associates\Common Framework\FrameworkService.exe
C:\Program Files\Network Associates\VirusScan\Mcshield.exe
C:\Program Files\Network Associates\VirusScan\VsTskMgr.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\wdfmgr.exe
C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
C:\PROGRA~1\NETWOR~1\COMMON~1\naPrdMgr.exe
C:\Program Files\Canon\CAL\CALMAIN.exe
C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\SpywareGuard\sgbhp.exe
.
**************************************************************************
.
Completion time: 2008-08-02 17:52:18 - machine was rebooted [kileyp]
ComboFix-quarantined-files.txt 2008-08-02 21:52:13
ComboFix2.txt 2008-08-01 21:04:36
Pre-Run: 44,142,141,440 bytes free
Post-Run: 43,576,942,592 bytes free
192 --- E O F --- 2008-06-22 21:21:54
Kapersky log:
-------------------------------------------------------------------------------
KASPERSKY ONLINE SCANNER REPORT
Saturday, August 02, 2008 9:26 PM
Operating System: Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600)
Kaspersky Online Scanner version: 5.0.98.0
Kaspersky Anti-Virus database last update: 2/08/2008
Kaspersky Anti-Virus database records: 1045635
-------------------------------------------------------------------------------
Scan Settings:
Scan using the following antivirus database: extended
Scan Archives: true
Scan Mail Bases: true
Scan Target - My Computer:
C:\
D:\
Scan Statistics:
Total number of scanned objects: 63804
Number of viruses found: 19
Number of infected objects: 258
Number of suspicious objects: 0
Duration of the scan process: 02:46:42
Infected Object Name / Virus Name / Last Action
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Network Associates\BOPDATA\_Date-20080802_Time-174316953_EnterceptExceptions.dat Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Network Associates\BOPDATA\_Date-20080802_Time-174316953_EnterceptRules.dat Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Network Associates\Common Framework\Db\Agent_PATRICK_KILEY_7.log Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Network Associates\Common Framework\Db\PrdMgr_PATRICK_KILEY_7.log Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Network Associates\Common Framework\Db\UpdaterUI_PATRICK_KILEY_7.log Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Network Associates\VirusScan\AccessProtectionLog.txt Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Network Associates\VirusScan\BufferOverflowProtectionLog.txt Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Network Associates\VirusScan\OnAccessScanLog.txt Object is locked skipped
C:\Documents and Settings\kileyp\Application Data\Mozilla\Firefox\Profiles\cq3e4rz6.default\cert8.db Object is locked skipped
C:\Documents and Settings\kileyp\Application Data\Mozilla\Firefox\Profiles\cq3e4rz6.default\formhistory.dat Object is locked skipped
C:\Documents and Settings\kileyp\Application Data\Mozilla\Firefox\Profiles\cq3e4rz6.default\history.dat Object is locked skipped
C:\Documents and Settings\kileyp\Application Data\Mozilla\Firefox\Profiles\cq3e4rz6.default\key3.db Object is locked skipped
C:\Documents and Settings\kileyp\Application Data\Mozilla\Firefox\Profiles\cq3e4rz6.default\parent.lock Object is locked skipped
C:\Documents and Settings\kileyp\Application Data\Mozilla\Firefox\Profiles\cq3e4rz6.default\search.sqlite Object is locked skipped
C:\Documents and Settings\kileyp\Application Data\Mozilla\Firefox\Profiles\cq3e4rz6.default\urlclassifier2.sqlite Object is locked skipped
C:\Documents and Settings\kileyp\Application Data\Mozilla\Firefox\Profiles\cq3e4rz6.default\webappsstore.sqlite Object is locked skipped
C:\Documents and Settings\kileyp\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\kileyp\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\kileyp\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\kileyp\Local Settings\Application Data\Mozilla\Firefox\Profiles\cq3e4rz6.default\Cache\_CACHE_001_ Object is locked skipped
C:\Documents and Settings\kileyp\Local Settings\Application Data\Mozilla\Firefox\Profiles\cq3e4rz6.default\Cache\_CACHE_002_ Object is locked skipped
C:\Documents and Settings\kileyp\Local Settings\Application Data\Mozilla\Firefox\Profiles\cq3e4rz6.default\Cache\_CACHE_003_ Object is locked skipped
C:\Documents and Settings\kileyp\Local Settings\Application Data\Mozilla\Firefox\Profiles\cq3e4rz6.default\Cache\_CACHE_MAP_ Object is locked skipped
C:\Documents and Settings\kileyp\Local Settings\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\kileyp\Local Settings\temp\~DF7AC0.tmp Object is locked skipped
C:\Documents and Settings\kileyp\Local Settings\temp\~DF881.tmp Object is locked skipped
C:\Documents and Settings\kileyp\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\kileyp\ntuser.dat Object is locked skipped
C:\Documents and Settings\kileyp\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Data\settings.dat Object is locked skipped
C:\Documents and Settings\LocalService\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped
C:\MUSIC\Bear Share\Quicken 2008 Premium.zip/Setup.exe Infected: Trojan-Downloader.Win32.VB.bsa skipped
C:\MUSIC\Bear Share\Quicken 2008 Premium.zip ZIP: infected - 1 skipped
C:\Program Files\BearShare\Installer\BSINSTALL.exe/WISE0023.BIN/data0001.cab/VVSN.exe Infected: not-a-virus:AdWare.Win32.SaveNow.z skipped
C:\Program Files\BearShare\Installer\BSINSTALL.exe/WISE0023.BIN/data0001.cab Infected: not-a-virus:AdWare.Win32.SaveNow.z skipped
C:\Program Files\BearShare\Installer\BSINSTALL.exe/WISE0023.BIN Infected: not-a-virus:AdWare.Win32.SaveNow.z skipped
C:\Program Files\BearShare\Installer\BSINSTALL.exe/WISE0027.BIN Infected: not-a-virus:AdTool.Win32.WhenU.a skipped
C:\Program Files\BearShare\Installer\BSINSTALL.exe WiseSFX: infected - 4 skipped
C:\Program Files\BearShare\Installer\BSINSTALL.exe WiseSFXDropper: infected - 4 skipped
C:\Program Files\ISS\issSensors\DesktopProtection\blackice-service.log Object is locked skipped
C:\Program Files\Webroot\Spy Sweeper\Masters\masters.bak Object is locked skipped
C:\Program Files\Webroot\Spy Sweeper\Masters\Masters.const Object is locked skipped
C:\Program Files\Webroot\Spy Sweeper\Masters\masters.mst Object is locked skipped
C:\Program Files\Webroot\Spy Sweeper\Masters.base Object is locked skipped
C:\QooBox\Quarantine\C\WINDOWS\444.470.vir Infected: Trojan.Win32.DNSChanger.eys skipped
C:\QooBox\Quarantine\C\WINDOWS\Fonts\a.zip.vir/Setup.exe Infected: Trojan-Downloader.Win32.VB.bsa skipped
C:\QooBox\Quarantine\C\WINDOWS\Fonts\a.zip.vir ZIP: infected - 1 skipped
C:\QooBox\Quarantine\C\WINDOWS\lfn.exe.vir Infected: Hoax.Win32.Renos.vajj skipped
C:\QooBox\Quarantine\C\WINDOWS\system32\byXNeFvV.dll.vir Infected: Trojan.Win32.Monder.gen skipped
C:\QooBox\Quarantine\C\WINDOWS\system32\ddcApMgG.dll.vir Infected: Trojan.Win32.Monder.gen skipped
C:\QooBox\Quarantine\C\WINDOWS\system32\gside.exe.vir/data0003 Infected: not-a-virus:AdWare.Win32.BHO.cdk skipped
C:\QooBox\Quarantine\C\WINDOWS\system32\gside.exe.vir NSIS: infected - 1 skipped
C:\QooBox\Quarantine\C\WINDOWS\system32\hGVnNhij.dll.vir Infected: Trojan.Win32.Monder.gen skipped
C:\QooBox\Quarantine\C\WINDOWS\system32\hssjyvdq.dll.vir Infected: Trojan.Win32.Monder.gen skipped
C:\QooBox\Quarantine\C\WINDOWS\system32\iifCuTNF.dll.vir Infected: Trojan.Win32.Monder.gen skipped
C:\QooBox\Quarantine\C\WINDOWS\system32\imp32\keysrve.exe.vir Infected: not-a-virus:AdWare.Win32.ZenoSearch.bp skipped
C:\QooBox\Quarantine\C\WINDOWS\system32\olixds18\olixds182328.exe.vir Infected: Trojan-Downloader.Win32.VB.eyc skipped
C:\QooBox\Quarantine\C\WINDOWS\system32\provdll\globsetup.exe.vir Infected: Trojan.Win32.DNSChanger.eyr skipped
C:\QooBox\Quarantine\C\WINDOWS\system32\setup.exe.tmp.vir Infected: Trojan-Downloader.Win32.VB.eyh skipped
C:\QooBox\Quarantine\C\WINDOWS\system32\tcntptdm.exe.vir Infected: not-a-virus:AdWare.Win32.ZenoSearch.bv skipped
C:\QooBox\Quarantine\C\WINDOWS\system32\uoyzsydz.exe.vir Infected: Hoax.Win32.Renos.vajj skipped
C:\QooBox\Quarantine\C\WINDOWS\system32\ushjuchq.dll.vir Infected: Trojan.Win32.Monder.gen skipped
C:\QooBox\Quarantine\catchme2008-08-01_164537.81.zip/clbdll.dll Infected: Rootkit.Win32.Clbd.ez skipped
C:\QooBox\Quarantine\catchme2008-08-01_164537.81.zip ZIP: infected - 1 skipped
C:\quarantine\0Dayz Nokia Gamez Appz Torrentboyz com Pack 12.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\0Dayz Nokia Gamez Appz Torrentboyz com Pack 12.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\202 ICONs aplics.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\202 ICONs aplics.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\a.zip.Vir/Setup.exe Infected: Worm.Win32.VB.an skipped
C:\quarantine\a.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\ABBA - Rare Collected Remixes.(
WWW.FACTORFORUMS.CO.UKFORUMS).zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\ABBA - Rare Collected Remixes.(
WWW.FACTORFORUMS.CO.UKFORUMS).zip.Vir ZIP: infected - 1 skipped
C:\quarantine\Adobe Photoshop Plugins.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\Adobe Photoshop Plugins.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\Adobe Photoshop Pro CS2 v9 0 Full + Keygen.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\Adobe Photoshop Pro CS2 v9 0 Full + Keygen.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\Advanced search.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\Advanced search.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\Aero Glass Themes XP Version IV + 32 themes (AIO).zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\Aero Glass Themes XP Version IV + 32 themes (AIO).zip.Vir ZIP: infected - 1 skipped
C:\quarantine\Air America Radio - The Al Franken Show 080406 [mp3].zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\Air America Radio - The Al Franken Show 080406 [mp3].zip.Vir ZIP: infected - 1 skipped
C:\quarantine\Alcohol 120 retail v1 9 5 4327 + Alcohol 120 retail - v1 95 4212.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\Alcohol 120 retail v1 9 5 4327 + Alcohol 120 retail - v1 95 4212.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\AOL Search records for 500,000 users AOL-data tgz.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\AOL Search records for 500,000 users AOL-data tgz.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\Barnyard CAM XViD-SubAtom[www moviex info].zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\Barnyard CAM XViD-SubAtom[www moviex info].zip.Vir ZIP: infected - 1 skipped
C:\quarantine\Big Brother US S07E14 PDTV XviD-VSS [eztv].zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\Big Brother US S07E14 PDTV XviD-VSS [eztv].zip.Vir ZIP: infected - 1 skipped
C:\quarantine\Blur-The Best Of 2CD(Darkside RG).zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\Blur-The Best Of 2CD(Darkside RG).zip.Vir ZIP: infected - 1 skipped
C:\quarantine\Browse categories.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\Browse categories.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\Burn the Fat, Feed the Muscle { www IPTorrents com }.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\Burn the Fat, Feed the Muscle { www IPTorrents com }.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\CAPCOM CPS2 Emulator for PSP beta 4.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\CAPCOM CPS2 Emulator for PSP beta 4.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\Copyright policy.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\Copyright policy.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\DC Batman - The Killing Joke (comic book).zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\DC Batman - The Killing Joke (comic book).zip.Vir ZIP: infected - 1 skipped
C:\quarantine\Deadwood S03E09 HDTV XviD-LOL [eztv].zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\Deadwood S03E09 HDTV XviD-LOL [eztv].zip.Vir ZIP: infected - 1 skipped
C:\quarantine\DJ Shadow - The Outsider - (Proper Advance) - 2006 - VOiCE.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\DJ Shadow - The Outsider - (Proper Advance) - 2006 - VOiCE.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\Dungeon Siege 2 Broken World KEYGEN-RELOADED.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\Dungeon Siege 2 Broken World KEYGEN-RELOADED.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\EasyFileSearch com-Jessica Simpson 1500+pix.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\EasyFileSearch com-Jessica Simpson 1500+pix.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\EasyFileSearch com-Pamela Anderson 500+pix.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\EasyFileSearch com-Pamela Anderson 500+pix.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\Ember rar.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\Ember rar.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\Entourage S03E09 HDTV XviD-LOL [eztv].zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\Entourage S03E09 HDTV XviD-LOL [eztv].zip.Vir ZIP: infected - 1 skipped
C:\quarantine\Flat Out 2 Crack Only-RELOADED.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\Flat Out 2 Crack Only-RELOADED.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\Google Earth Pro 4 Patch NeW Release 08-06-06 by Glbez Team Hackz zip.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\Google Earth Pro 4 Patch NeW Release 08-06-06 by Glbez Team Hackz zip.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\Google Earth Pro Final And a tutorial to make it a perfect working pro (full).zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\Google Earth Pro Final And a tutorial to make it a perfect working pro (full).zip.Vir ZIP: infected - 1 skipped
C:\quarantine\Harvard Business Review (July-August 2006) - [www slotorrent net].zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\Harvard Business Review (July-August 2006) - [www slotorrent net].zip.Vir ZIP: infected - 1 skipped
C:\quarantine\Harvard Business Review Jan 2005.zip.Vir/Setup.exe Infected: Worm.Win32.VB.an skipped
C:\quarantine\Harvard Business Review Jan 2005.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\Harvard Business Review July-Aug 2005(1).zip.Vir/Setup.exe Infected: Worm.Win32.VB.an skipped
C:\quarantine\Harvard Business Review July-Aug 2005(1).zip.Vir ZIP: infected - 1 skipped
C:\quarantine\Harvard Business Review July-Aug 2005.zip.Vir/Setup.exe Infected: Worm.Win32.VB.an skipped
C:\quarantine\Harvard Business Review July-Aug 2005.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\Harvard Business Review, June 2006.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\Harvard Business Review, June 2006.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\Harvard Business Review, June 2006.zip.Vir.0/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\Harvard Business Review, June 2006.zip.Vir.0 ZIP: infected - 1 skipped
C:\quarantine\Harvard Business Review, May 2006.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\Harvard Business Review, May 2006.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\How To Do Everything With vol 1 - 5in1 (AIO).zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\How To Do Everything With vol 1 - 5in1 (AIO).zip.Vir ZIP: infected - 1 skipped
C:\quarantine\How To Do Everything With vol 2 - 5in1 (AIO).zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\How To Do Everything With vol 2 - 5in1 (AIO).zip.Vir ZIP: infected - 1 skipped
C:\quarantine\How To Do Everything With vol 3 - 6in1 (AIO).zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\How To Do Everything With vol 3 - 6in1 (AIO).zip.Vir ZIP: infected - 1 skipped
C:\quarantine\How to Solve Every Sudoku (Number Place) Puzzle { www IPTorrents com }.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\How to Solve Every Sudoku (Number Place) Puzzle { www IPTorrents com }.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\Howard the Duck Issues 1-2.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\Howard the Duck Issues 1-2.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\IGPX - 023 - Fate [C-W] HQ.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\IGPX - 023 - Fate [C-W] HQ.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\IRC chat.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\IRC chat.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\Justin Timberlake feat T I- My Love.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\Justin Timberlake feat T I- My Love.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\l'Equipe du 06 08 2006 pdf.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\l'Equipe du 06 08 2006 pdf.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\Lucky Louie S01E09 HDTV XviD-LOL [eztv].zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\Lucky Louie S01E09 HDTV XviD-LOL [eztv].zip.Vir ZIP: infected - 1 skipped
C:\quarantine\Marvel Civil War.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\Marvel Civil War.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\Mastodon - Blood Mountain [2006].zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\Mastodon - Blood Mountain [2006].zip.Vir ZIP: infected - 1 skipped
C:\quarantine\MegaArchive 8ooo Karaoke ita fr eng esp VanBascos ByMiraiam rar.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\MegaArchive 8ooo Karaoke ita fr eng esp VanBascos ByMiraiam rar.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\Nancy Drew Danger By Design [PCCD][English][www newpct com].zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\Nancy Drew Danger By Design [PCCD][English][www newpct com].zip.Vir ZIP: infected - 1 skipped
C:\quarantine\National Geographic August 2006.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\National Geographic August 2006.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\New WordPress blog.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\New WordPress blog.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\Noein - Mou Hitori no Kimi e [Shinsen-Subs].zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\Noein - Mou Hitori no Kimi e [Shinsen-Subs].zip.Vir ZIP: infected - 1 skipped
C:\quarantine\p.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\p.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\PC Civilization IV 4 RELOADED ShadowCast.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\PC Civilization IV 4 RELOADED ShadowCast.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\PC World Power Guides - Available only to Subscribers { www IPTorrents com }.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\PC World Power Guides - Available only to Subscribers { www IPTorrents com }.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\Privacy policy.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\Privacy policy.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\Rapidshare Premium Pack 2006 version 4 - 43in1 (AIO).zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\Rapidshare Premium Pack 2006 version 4 - 43in1 (AIO).zip.Vir ZIP: infected - 1 skipped
C:\quarantine\Redneck Rampage Rides Again.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\Redneck Rampage Rides Again.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\Redneck Rampage.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\Redneck Rampage.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\Scripts 2006 (AIO).zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\Scripts 2006 (AIO).zip.Vir ZIP: infected - 1 skipped
C:\quarantine\Search Cloud.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\Search Cloud.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\SHOCKING! British Police destroy a memorial to race victims .wmv.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\SHOCKING! British Police destroy a memorial to race victims .wmv.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\Show all of today →.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\Show all of today →.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\Simply Acoustic Various 2CD's With covers (NiTrO).zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\Simply Acoustic Various 2CD's With covers (NiTrO).zip.Vir ZIP: infected - 1 skipped
C:\quarantine\Sinchronicity S01E04 WS PDTV XviD-RiVER [eztv].zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\Sinchronicity S01E04 WS PDTV XviD-RiVER [eztv].zip.Vir ZIP: infected - 1 skipped
C:\quarantine\SlySoft new Update 3-8-06 - 5in1 (AIO).zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\SlySoft new Update 3-8-06 - 5in1 (AIO).zip.Vir ZIP: infected - 1 skipped
C:\quarantine\Space images super-high resolution [www ultratorrent net].zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\Space images super-high resolution [www ultratorrent net].zip.Vir ZIP: infected - 1 skipped
C:\quarantine\Speed 2 - Cruise Control 1997 DVDrip SWE.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\Speed 2 - Cruise Control 1997 DVDrip SWE.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\Spikes Women of Action 2006 WS PDTV XviD-PAP [eztv].zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\Spikes Women of Action 2006 WS PDTV XviD-PAP [eztv].zip.Vir ZIP: infected - 1 skipped
C:\quarantine\Talladega Nights CAM XViD-SubAtom( widges-den com ).zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\Talladega Nights CAM XViD-SubAtom( widges-den com ).zip.Vir ZIP: infected - 1 skipped
C:\quarantine\Talladega Nights CAM XViD-SubAtom-ZCCUSTOMS.NET.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\Talladega Nights CAM XViD-SubAtom-ZCCUSTOMS.NET.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\Talladega Nights CAM XViD-SubAtom[www moviex info].zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\Talladega Nights CAM XViD-SubAtom[www moviex info].zip.Vir ZIP: infected - 1 skipped
C:\quarantine\The 4400 3x10 (DSRip-ORENJi)[VTV].zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\The 4400 3x10 (DSRip-ORENJi)[VTV].zip.Vir ZIP: infected - 1 skipped
C:\quarantine\The 4400 S03E10 DSR XviD-ORENJi [eztv].zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\The 4400 S03E10 DSR XviD-ORENJi [eztv].zip.Vir ZIP: infected - 1 skipped
C:\quarantine\The Ant Bully [TS-Screener][V O English+Subs Spanish][2006][www newpct com].zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\The Ant Bully [TS-Screener][V O English+Subs Spanish][2006][www newpct com].zip.Vir ZIP: infected - 1 skipped
C:\quarantine\The Beatles Complete Songbook.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\The Beatles Complete Songbook.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\The Complete Idiots Guide To Learning French On Your Own { www IPTorrents com }.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\The Complete Idiots Guide To Learning French On Your Own { www IPTorrents com }.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\The Dead Zone 5x08 (DSRip-ORENJi)[VTV].zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\The Dead Zone 5x08 (DSRip-ORENJi)[VTV].zip.Vir ZIP: infected - 1 skipped
C:\quarantine\The Economist 2006-08-05 { www IPTorrents com }.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\The Economist 2006-08-05 { www IPTorrents com }.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\The Night Listener 2006 CAM XViD - SubAtom { www IPTorrents com }.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\The Night Listener 2006 CAM XViD - SubAtom { www IPTorrents com }.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\Three Moons Over Milford S01E01 DSR XviD-ORENJi [eztv].zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\Three Moons Over Milford S01E01 DSR XviD-ORENJi [eztv].zip.Vir ZIP: infected - 1 skipped
C:\quarantine\TMPGEnc Xpress v3 3 8 117 rar.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\TMPGEnc Xpress v3 3 8 117 rar.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\Top 100 [HipHop+R&B]Billboard][August-06[Vol2]+Charts[@224].zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\Top 100 [HipHop+R&B]Billboard][August-06[Vol2]+Charts[@224].zip.Vir ZIP: infected - 1 skipped
C:\quarantine\TV Shows.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\TV Shows.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\Ultimate Ghosts n Goblins Goku Makaimura - JAP-PSP.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\Ultimate Ghosts n Goblins Goku Makaimura - JAP-PSP.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\Upload a torrent.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\Upload a torrent.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\user-ct-test-collection-01 txt-PARTIAL rar.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\user-ct-test-collection-01 txt-PARTIAL rar.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\VA - Big Tunes X-Rated.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\VA - Big Tunes X-Rated.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\VA-Miami Vice-OST-2006-RNS [SOUNDTRACK].zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\VA-Miami Vice-OST-2006-RNS [SOUNDTRACK].zip.Vir ZIP: infected - 1 skipped
C:\quarantine\XG Step Up 06.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\XG Step Up 06.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\You're Under Arrest Artbook.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\You're Under Arrest Artbook.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\[A-Keep & gg] Night Head Genesis - 02 [5E35B201] mkv.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\[A-Keep & gg] Night Head Genesis - 02 [5E35B201] mkv.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\[ADC-Elites] One Piece 274 [128ABB09] avi.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\[ADC-Elites] One Piece 274 [128ABB09] avi.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\[A_Z]Greg Martin {Hi Res}.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\[A_Z]Greg Martin {Hi Res}.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\[EMD][Zero no Tsukaima][06][GB] rmvb.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\[EMD][Zero no Tsukaima][06][GB] rmvb.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\[HCG] Jya no Michi wa [Hebi Soft] zip.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\[HCG] Jya no Michi wa [Hebi Soft] zip.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\[KissSub]Innocent Venus - 02[D1F2079C]Xvid avi.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\[KissSub]Innocent Venus - 02[D1F2079C]Xvid avi.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\[maplesnow][one piece][274][jap chn][HDTV][rv10] rmvb.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\[maplesnow][one piece][274][jap chn][HDTV][rv10] rmvb.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\[Nipponsei] NARUTO BEST HIT COLLECTION 2 zip.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\[Nipponsei] NARUTO BEST HIT COLLECTION 2 zip.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\[PSP]Every Extend Extra[JAP] [FULL] - [www ESPALPSP com] rar.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\[PSP]Every Extend Extra[JAP] [FULL] - [www ESPALPSP com] rar.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\[Shinsen-Subs] Noein 24 [FINAL][CA131F86] avi.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\[Shinsen-Subs] Noein 24 [FINAL][CA131F86] avi.zip.Vir ZIP: infected - 1 skipped
C:\quarantine\[S^M] One Piece 274 RAW avi.zip.Vir/Setup.exe Infected: P2P-Worm.Win32.VB.dw skipped
C:\quarantine\[S^M] One Piece 274 RAW avi.zip.Vir ZIP: infected - 1 skipped
C:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped
C:\System Volume Information\_restore{A53AFC92-EDE6-4047-A115-B8F9660A6BBE}\RP544\A0227874.dll Infected: not-a-virus:AdWare.Win32.BHO.cdk skipped
C:\System Volume Information\_restore{A53AFC92-EDE6-4047-A115-B8F9660A6BBE}\RP545\A0228019.exe Infected: Trojan.Win32.Agent.sdd skipped
C:\System Volume Information\_restore{A53AFC92-EDE6-4047-A115-B8F9660A6BBE}\RP545\A0228021.dll Infected: not-a-virus:AdWare.Win32.BHO.cdk skipped
C:\System Volume Information\_restore{A53AFC92-EDE6-4047-A115-B8F9660A6BBE}\RP545\A0228333.dll Infected: Trojan.Win32.Monder.gen skipped
C:\System Volume Information\_restore{A53AFC92-EDE6-4047-A115-B8F9660A6BBE}\RP546\A0229367.exe Infected: Trojan-Downloader.Win32.VB.eyc skipped
C:\System Volume Information\_restore{A53AFC92-EDE6-4047-A115-B8F9660A6BBE}\RP546\A0229398.exe Infected: not-a-virus:AdWare.Win32.ZenoSearch.bp skipped
C:\System Volume Information\_restore{A53AFC92-EDE6-4047-A115-B8F9660A6BBE}\RP547\A0229410.exe Infected: Trojan-Downloader.Win32.Homles.br skipped
C:\System Volume Information\_restore{A53AFC92-EDE6-4047-A115-B8F9660A6BBE}\RP547\A0229411.dll Infected: Trojan.Win32.Monder.gen skipped
C:\System Volume Information\_restore{A53AFC92-EDE6-4047-A115-B8F9660A6BBE}\RP547\A0229412.sys Infected: Rootkit.Win32.Agent.aol skipped
C:\System Volume Information\_restore{A53AFC92-EDE6-4047-A115-B8F9660A6BBE}\RP549\A0230457.EXE Infected: Backdoor.Win32.Delf.jgi skipped
C:\System Volume Information\_restore{A53AFC92-EDE6-4047-A115-B8F9660A6BBE}\RP550\A0234961.exe Infected: Hoax.Win32.Renos.vajj skipped
C:\System Volume Information\_restore{A53AFC92-EDE6-4047-A115-B8F9660A6BBE}\RP550\A0235012.exe/data0003 Infected: not-a-virus:AdWare.Win32.BHO.cdk skipped
C:\System Volume Information\_restore{A53AFC92-EDE6-4047-A115-B8F9660A6BBE}\RP550\A0235012.exe NSIS: infected - 1 skipped
C:\System Volume Information\_restore{A53AFC92-EDE6-4047-A115-B8F9660A6BBE}\RP550\A0235013.exe Infected: Hoax.Win32.Renos.vajj skipped
C:\System Volume Information\_restore{A53AFC92-EDE6-4047-A115-B8F9660A6BBE}\RP550\A0235021.exe Infected: not-a-virus:AdWare.Win32.ZenoSearch.bv skipped
C:\System Volume Information\_restore{A53AFC92-EDE6-4047-A115-B8F9660A6BBE}\RP550\A0235022.dll Infected: Trojan.Win32.Monder.gen skipped
C:\System Volume Information\_restore{A53AFC92-EDE6-4047-A115-B8F9660A6BBE}\RP550\A0235023.dll Infected: Trojan.Win32.Monder.gen skipped
C:\System Volume Information\_restore{A53AFC92-EDE6-4047-A115-B8F9660A6BBE}\RP550\A0235024.dll Infected: Trojan.Win32.Monder.gen skipped
C:\System Volume Information\_restore{A53AFC92-EDE6-4047-A115-B8F9660A6BBE}\RP550\A0235025.dll Infected: Trojan.Win32.Monder.gen skipped
C:\System Volume Information\_restore{A53AFC92-EDE6-4047-A115-B8F9660A6BBE}\RP550\A0235026.dll Infected: Trojan.Win32.Monder.gen skipped
C:\System Volume Information\_restore{A53AFC92-EDE6-4047-A115-B8F9660A6BBE}\RP550\A0235027.dll Infected: Trojan.Win32.Monder.gen skipped
C:\System Volume Information\_restore{A53AFC92-EDE6-4047-A115-B8F9660A6BBE}\RP551\A0235129.exe Infected: not-a-virus:AdWare.Win32.ZenoSearch.bp skipped
C:\System Volume Information\_restore{A53AFC92-EDE6-4047-A115-B8F9660A6BBE}\RP551\A0235130.exe Infected: Trojan-Downloader.Win32.VB.eyc skipped
C:\System Volume Information\_restore{A53AFC92-EDE6-4047-A115-B8F9660A6BBE}\RP551\A0235131.exe Infected: Trojan.Win32.DNSChanger.eyr skipped
C:\System Volume Information\_restore{A53AFC92-EDE6-4047-A115-B8F9660A6BBE}\RP551\change.log Object is locked skipped
C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped
C:\WINDOWS\Internet Logs\tvDebug.log Object is locked skipped
C:\WINDOWS\SchedLgU.Txt Object is locked skipped
C:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked skipped
C:\WINDOWS\Sti_Trace.log Object is locked skipped
C:\WINDOWS\system32\CatRoot2\edb.log Object is locked skipped
C:\WINDOWS\system32\CatRoot2\edbtmp.log Object is locked skipped
C:\WINDOWS\system32\CatRoot2\tmp.edb Object is locked skipped
C:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\default Object is locked skipped
C:\WINDOWS\system32\config\default.LOG Object is locked skipped
C:\WINDOWS\system32\config\SAM Object is locked skipped
C:\WINDOWS\system32\config\SAM.LOG Object is locked skipped
C:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\SECURITY Object is locked skipped
C:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped
C:\WINDOWS\system32\config\software Object is locked skipped
C:\WINDOWS\system32\config\software.LOG Object is locked skipped
C:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\system Object is locked skipped
C:\WINDOWS\system32\config\system.LOG Object is locked skipped
C:\WINDOWS\system32\h323log.txt Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP Object is locked skipped
C:\WINDOWS\wiadebug.log Object is locked skipped
C:\WINDOWS\wiaservc.log Object is locked skipped
C:\WINDOWS\WindowsUpdate.log Object is locked skipped
Scan process completed.
Hijack This Log:
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 9:28 PM, on 8/2/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\ISS\issSensors\DesktopProtection\blackd.exe
C:\Program Files\EMC VPN\VPN Client\cvpnd.exe
C:\Program Files\Network Associates\Common Framework\FrameworkService.exe
C:\Program Files\Network Associates\VirusScan\Mcshield.exe
C:\Program Files\Network Associates\VirusScan\VsTskMgr.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
C:\Program Files\Canon\CAL\CALMAIN.exe
C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Network Associates\Common Framework\UpdaterUI.exe
C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE
C:\Program Files\HPQ\Quick Launch Buttons\EabServr.exe
C:\WINDOWS\AGRSMMSG.exe
C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe
C:\Program Files\Java\jre1.5.0_09\bin\jusched.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\SpywareGuard\sgmain.exe
C:\Program Files\SpywareGuard\sgbhp.exe
C:\WINDOWS\explorer.exe
C:\Documents and Settings\kileyp\Desktop\HiJackThis.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext =
http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=EN_US&c=Q304&bd=pavilion&pf=laptop
O2 - BHO: SpywareGuard Download Protection - {4A368E80-174F-4872-96B5-0B27DDD11DB2} - C:\Program Files\SpywareGuard\dlprotect.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [McAfeeUpdaterUI] "C:\Program Files\Network Associates\Common Framework\UpdaterUI.exe" /StartedFromRunKey
O4 - HKLM\..\Run: [ShStatEXE] "C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE" /STANDALONE
O4 - HKLM\..\Run: [NvCplDaemon] "RUNDLL32.EXE" C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] "nwiz.exe" /install
O4 - HKLM\..\Run: [Cpqset] C:\Program Files\HPQ\Default Settings\cpqset.exe
O4 - HKLM\..\Run: [eabconfg.cpl] "C:\Program Files\HPQ\Quick Launch Buttons\EabServr.exe" /Start
O4 - HKLM\..\Run: [SSC_UserPrompt] "C:\Program Files\Common Files\Symantec Shared\Security Center\UsrPrmpt.exe"
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [Acrobat Assistant 7.0] "C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_09\bin\jusched.exe"
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AdobeUpdateManager.exe" AcPro7_0_8 -reboot 1
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: SpywareGuard.lnk = C:\Program Files\SpywareGuard\sgmain.exe
O4 - Global Startup: Adobe Acrobat Speed Launcher.lnk = ?
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: EMC VPN Client.lnk = C:\Program Files\EMC VPN\VPN Client\vpngui.exe
O8 - Extra context menu item: Convert link target to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convert link target to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convert selected links to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Convert selected links to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Convert selection to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convert selection to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convert to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convert to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O15 - Trusted Zone:
http://itcentral.corp.emc.com
O15 - Trusted Zone:
http://itonline.isus.emc.com
O15 - Trusted Zone:
http://itportal.corp.emc.com
O15 - Trusted Zone:
http://www.emcu.isus.emc.com
O15 - Trusted Zone:
http://itcentral.corp.emc.com (HKLM)
O15 - Trusted Zone:
http://itonline.isus.emc.com (HKLM)
O15 - Trusted Zone:
http://itportal.corp.emc.com (HKLM)
O16 - DPF: {036F8A56-0BC8-4607-8F98-D3231E6FF5ED} (CentraUpdaterAxCtl Class) -
http://www.vclass.emc.com/SiteRoots/main/Install/win32/CentraUpdaterAx.cab
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) -
http://www.kaspersky.nl/scanforvirus-en/kavwebscan_unicode.cab
O16 - DPF: {C3CBFE35-9BE8-11D1-B31B-006008948294} (OrgPublisher PluginX) -
http://www.aquire.com/codebase70/OrgPubX.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: BlackICE - Internet Security Systems, Inc. - C:\Program Files\ISS\issSensors\DesktopProtection\blackd.exe
O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe
O23 - Service: Cisco Systems, Inc. VPN Service (CVPND) - Cisco Systems, Inc. - C:\Program Files\EMC VPN\VPN Client\cvpnd.exe
O23 - Service: HP WMI Interface (hpqwmi) - Hewlett-Packard Development Company, L.P. - C:\Program Files\HPQ\SHARED\HPQWMI.exe
O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: McAfee Framework Service (McAfeeFramework) - Network Associates, Inc. - C:\Program Files\Network Associates\Common Framework\FrameworkService.exe
O23 - Service: Network Associates McShield (McShield) - Network Associates, Inc. - C:\Program Files\Network Associates\VirusScan\Mcshield.exe
O23 - Service: Network Associates Task Manager (McTaskManager) - Network Associates, Inc. - C:\Program Files\Network Associates\VirusScan\VsTskMgr.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: RapApp - Internet Security Systems, Inc. - C:\Program Files\ISS\issSensors\DesktopProtection\RapApp.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
O23 - Service: Webroot Spy Sweeper Engine (WebrootSpySweeperService) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
--
End of file - 9488 bytes