Hi folks, after talking to tashi http://forums.spybot.info/showthread.php?p=172626#post172626 I'm posting my Kaspersky scan results:
Hi there,
clicked on the link and tried to download the recommended HijackThis version but got this error message:
http://www.trendsecure.com/portal/en...error_page/404
Anyway I uninstalled the previous version (v.1.99.1.) and I'm posting the Kaspersky scan results here:
-------------------------------------------------------------------------------
KASPERSKY ONLINE SCANNER REPORT
Wednesday, March 12, 2008 11:37:27 PM
Operating System: Microsoft Windows XP Professional, Service Pack 2 (Build 2600)
Kaspersky Online Scanner version: 5.0.98.0
Kaspersky Anti-Virus database last update: 12/03/2008
Kaspersky Anti-Virus database records: 626238
-------------------------------------------------------------------------------
Scan Settings:
Scan using the following antivirus database: extended
Scan Archives: true
Scan Mail Bases: true
Scan Target - My Computer:
C:\
D:\
E:\
F:\
G:\
Scan Statistics:
Total number of scanned objects: 63164
Number of viruses found: 27
Number of infected objects: 57
Number of suspicious objects: 0
Duration of the scan process: 01:41:47
Infected Object Name / Virus Name / Last Action
C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Microsoft\Network\Downloader\qmgr0.dat Object is locked skipped
C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Microsoft\Network\Downloader\qmgr1.dat Object is locked skipped
C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Network Associates\Common Framework\Db\Agent_CPQ27980732116.log Object is locked skipped
C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Network Associates\Common Framework\Db\PrdMgr_CPQ27980732116.log Object is locked skipped
C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Network Associates\VirusScan\OnAccessScanLog.txt Object is locked skipped
C:\Dokumente und Einstellungen\Debbie Suhner\Anwendungsdaten\errorsafenewreleaseinstall[1].exe Infected: not-a-virus
ownloader.Win32.WinFixer.o skipped
C:\Dokumente und Einstellungen\Debbie Suhner\Anwendungsdaten\Mozilla\Firefox\Profiles\d3mefqq2.default\Cache\_CACHE_001_ Object is locked skipped
C:\Dokumente und Einstellungen\Debbie Suhner\Anwendungsdaten\Mozilla\Firefox\Profiles\d3mefqq2.default\Cache\_CACHE_002_ Object is locked skipped
C:\Dokumente und Einstellungen\Debbie Suhner\Anwendungsdaten\Mozilla\Firefox\Profiles\d3mefqq2.default\Cache\_CACHE_003_ Object is locked skipped
C:\Dokumente und Einstellungen\Debbie Suhner\Anwendungsdaten\Mozilla\Firefox\Profiles\d3mefqq2.default\Cache\_CACHE_MAP_ Object is locked skipped
C:\Dokumente und Einstellungen\Debbie Suhner\Anwendungsdaten\Mozilla\Firefox\Profiles\d3mefqq2.default\cert8.db Object is locked skipped
C:\Dokumente und Einstellungen\Debbie Suhner\Anwendungsdaten\Mozilla\Firefox\Profiles\d3mefqq2.default\history.dat Object is locked skipped
C:\Dokumente und Einstellungen\Debbie Suhner\Anwendungsdaten\Mozilla\Firefox\Profiles\d3mefqq2.default\key3.db Object is locked skipped
C:\Dokumente und Einstellungen\Debbie Suhner\Anwendungsdaten\Mozilla\Firefox\Profiles\d3mefqq2.default\parent.lock Object is locked skipped
C:\Dokumente und Einstellungen\Debbie Suhner\Cookies\index.dat Object is locked skipped
C:\Dokumente und Einstellungen\Debbie Suhner\Lokale Einstellungen\Anwendungsdaten\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Dokumente und Einstellungen\Debbie Suhner\Lokale Einstellungen\Anwendungsdaten\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Dokumente und Einstellungen\Debbie Suhner\Lokale Einstellungen\Temp\HbToolsU.exe/stream/data0001 Infected: not-a-virus:AdWare.Win32.180Solutions.bj skipped
C:\Dokumente und Einstellungen\Debbie Suhner\Lokale Einstellungen\Temp\HbToolsU.exe/stream/data0010 Infected: not-a-virus:AdWare.Win32.180Solutions.bm skipped
C:\Dokumente und Einstellungen\Debbie Suhner\Lokale Einstellungen\Temp\HbToolsU.exe/stream Infected: not-a-virus:AdWare.Win32.180Solutions.bm skipped
C:\Dokumente und Einstellungen\Debbie Suhner\Lokale Einstellungen\Temp\HbToolsU.exe NSIS: infected - 3 skipped
C:\Dokumente und Einstellungen\Debbie Suhner\Lokale Einstellungen\Temp\~DFBE39.tmp Object is locked skipped
C:\Dokumente und Einstellungen\Debbie Suhner\Lokale Einstellungen\Temp\~DFDBE2.tmp Object is locked skipped
C:\Dokumente und Einstellungen\Debbie Suhner\Lokale Einstellungen\Temporary Internet Files\AntiPhishing\B3BB5BBA-E7D5-40AB-A041-A5B1C0B26C8F.dat Object is locked skipped
C:\Dokumente und Einstellungen\Debbie Suhner\Lokale Einstellungen\Temporary Internet Files\Content.IE5\25NYOFHK\_Zmx5Y292ZXJfZWYyX21hOV9tYjFfZ2JyczFl__a2V5aW4_[1].exe Infected: not-virus:Hoax.Win32.Renos.avw skipped
C:\Dokumente und Einstellungen\Debbie Suhner\Lokale Einstellungen\Temporary Internet Files\Content.IE5\9BT84QV2\_Zmx5Y292ZXJfZWYyX21hOV9tYjFfZ2JyczFl__a2V5aW4_[1].exe Infected: not-virus:Hoax.Win32.Renos.avw skipped
C:\Dokumente und Einstellungen\Debbie Suhner\Lokale Einstellungen\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Dokumente und Einstellungen\Debbie Suhner\Lokale Einstellungen\Verlauf\History.IE5\index.dat Object is locked skipped
C:\Dokumente und Einstellungen\Debbie Suhner\NTUSER.DAT Object is locked skipped
C:\Dokumente und Einstellungen\Debbie Suhner\ntuser.dat.LOG Object is locked skipped
C:\Dokumente und Einstellungen\LocalService\Cookies\index.dat Object is locked skipped
C:\Dokumente und Einstellungen\LocalService\Lokale Einstellungen\Anwendungsdaten\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Dokumente und Einstellungen\LocalService\Lokale Einstellungen\Anwendungsdaten\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Dokumente und Einstellungen\LocalService\Lokale Einstellungen\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Dokumente und Einstellungen\LocalService\Lokale Einstellungen\Verlauf\History.IE5\index.dat Object is locked skipped
C:\Dokumente und Einstellungen\LocalService\NTUSER.DAT Object is locked skipped
C:\Dokumente und Einstellungen\LocalService\ntuser.dat.LOG Object is locked skipped
C:\Dokumente und Einstellungen\NetworkService\Lokale Einstellungen\Anwendungsdaten\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Dokumente und Einstellungen\NetworkService\Lokale Einstellungen\Anwendungsdaten\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Dokumente und Einstellungen\NetworkService\NTUSER.DAT Object is locked skipped
C:\Dokumente und Einstellungen\NetworkService\ntuser.dat.LOG Object is locked skipped
C:\Programme\hbinst\Hbinst.exe Infected: not-a-virus:AdWare.Win32.Hotbar.p skipped
C:\Programme\Hotbar\bin\10.0.356.0\HostOE.dll Infected: not-a-virus:AdWare.Win32.HotBar.ck skipped
C:\Programme\Hotbar\bin\10.0.356.0\OEAddOn.exe Infected: not-a-virus:AdWare.Win32.HotBar.ck skipped
C:\Programme\HP\hpcoretech\hpcmerr.log Object is locked skipped
C:\Programme\Microsoft AntiSpyware\Quarantine\24805252-BDB1-4DBD-BA6A-2DEF4C\06C1B2E4-154B-4542-A23C-9A4B74 Infected: not-a-virus:AdWare.Win32.Gator.a skipped
C:\Programme\Microsoft AntiSpyware\Quarantine\24805252-BDB1-4DBD-BA6A-2DEF4C\A5E1D3E3-E782-4575-9884-4BC320 Infected: not-a-virus:AdWare.Win32.Gator.a skipped
C:\RECYCLER\S-1-5-21-590260106-135449575-3207847200-1004\Dc103.bak/[From "RICARDO" <support@ricardo.ch>][Date Tue, 9 Oct 2007 16:42:07 +0700]/UNNAMED/root_ca_ssl3.exe Infected: Trojan-Downloader.Win32.Small.fvw skipped
C:\RECYCLER\S-1-5-21-590260106-135449575-3207847200-1004\Dc103.bak/[From "RICARDO" <support@ricardo.ch>][Date Tue, 9 Oct 2007 16:42:07 +0700]/UNNAMED Infected: Trojan-Downloader.Win32.Small.fvw skipped
C:\RECYCLER\S-1-5-21-590260106-135449575-3207847200-1004\Dc103.bak/[From "RICARDO" <support@ricardo.ch>][Date Tue, 9 Oct 2007 16:42:07 +0700]/UNNAMED/root_ca_ssl3.exe Infected: Trojan-Downloader.Win32.Small.fvw skipped
C:\RECYCLER\S-1-5-21-590260106-135449575-3207847200-1004\Dc103.bak/[From "RICARDO" <support@ricardo.ch>][Date Tue, 9 Oct 2007 16:42:07 +0700]/UNNAMED Infected: Trojan-Downloader.Win32.Small.fvw skipped
C:\RECYCLER\S-1-5-21-590260106-135449575-3207847200-1004\Dc103.bak/[From "RICARDO" <support@ricardo.ch>][Date Tue, 9 Oct 2007 15:10:45 +0530]/UNNAMED/root_ca_ssl3.exe Infected: Trojan-Downloader.Win32.Small.fvw skipped
C:\RECYCLER\S-1-5-21-590260106-135449575-3207847200-1004\Dc103.bak/[From "RICARDO" <support@ricardo.ch>][Date Tue, 9 Oct 2007 15:10:45 +0530]/UNNAMED Infected: Trojan-Downloader.Win32.Small.fvw skipped
C:\RECYCLER\S-1-5-21-590260106-135449575-3207847200-1004\Dc103.bak/[From "RICARDO" <support@ricardo.ch>][Date Tue, 9 Oct 2007 11:38:01 +0200]/UNNAMED/root_ca_ssl3.exe Infected: Trojan-Downloader.Win32.Small.fvw skipped
C:\RECYCLER\S-1-5-21-590260106-135449575-3207847200-1004\Dc103.bak/[From "RICARDO" <support@ricardo.ch>][Date Tue, 9 Oct 2007 11:38:01 +0200]/UNNAMED Infected: Trojan-Downloader.Win32.Small.fvw skipped
C:\RECYCLER\S-1-5-21-590260106-135449575-3207847200-1004\Dc103.bak/[From "RICARDO" <support@ricardo.ch>][Date Tue, 9 Oct 2007 11:42:37 +0200]/UNNAMED/root_ca_ssl3.exe Infected: Trojan-Downloader.Win32.Small.fvw skipped
C:\RECYCLER\S-1-5-21-590260106-135449575-3207847200-1004\Dc103.bak/[From "RICARDO" <support@ricardo.ch>][Date Tue, 9 Oct 2007 11:42:37 +0200]/UNNAMED Infected: Trojan-Downloader.Win32.Small.fvw skipped
C:\RECYCLER\S-1-5-21-590260106-135449575-3207847200-1004\Dc103.bak/[From "RICARDO" <support@ricardo.ch>][Date Tue, 9 Oct 2007 16:42:07 +0700]/UNNAMED/root_ca_ssl3.exe Infected: Trojan-Downloader.Win32.Small.fvw skipped
C:\RECYCLER\S-1-5-21-590260106-135449575-3207847200-1004\Dc103.bak/[From "RICARDO" <support@ricardo.ch>][Date Tue, 9 Oct 2007 16:42:07 +0700]/UNNAMED Infected: Trojan-Downloader.Win32.Small.fvw skipped
C:\RECYCLER\S-1-5-21-590260106-135449575-3207847200-1004\Dc103.bak Mail MS Outlook 5: infected - 12 skipped
C:\RECYCLER\S-1-5-21-590260106-135449575-3207847200-1004\Dc188.exe Infected: Trojan-Downloader.Win32.Agent.ibg skipped
C:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped
C:\System Volume Information\_restore{7BCC083D-3E7B-430D-958D-BC665FDA7D9C}\RP895\A0048712.exe Infected: Trojan-Downloader.Win32.Agent.ibg skipped
C:\System Volume Information\_restore{7BCC083D-3E7B-430D-958D-BC665FDA7D9C}\RP902\A0050840.exe Infected: not-a-virus:FraudTool.Win32.DrAntispy.ax skipped
C:\System Volume Information\_restore{7BCC083D-3E7B-430D-958D-BC665FDA7D9C}\RP902\A0050841.dll Infected: not-a-virus:FraudTool.Win32.BraveSentry.f skipped
C:\System Volume Information\_restore{7BCC083D-3E7B-430D-958D-BC665FDA7D9C}\RP902\A0050843.dll Infected: not-a-virus:FraudTool.Win32.BraveSentry.b skipped
C:\System Volume Information\_restore{7BCC083D-3E7B-430D-958D-BC665FDA7D9C}\RP921\A0051158.exe Infected: not-a-virus:FraudTool.Win32.DrAntispy.aq skipped
C:\System Volume Information\_restore{7BCC083D-3E7B-430D-958D-BC665FDA7D9C}\RP921\A0051161.dll Infected: not-a-virus:FraudTool.Win32.BraveSentry.j skipped
C:\System Volume Information\_restore{7BCC083D-3E7B-430D-958D-BC665FDA7D9C}\RP921\A0051162.dll Infected: not-a-virus:AdWare.Win32.SearchAssistant.k skipped
C:\System Volume Information\_restore{7BCC083D-3E7B-430D-958D-BC665FDA7D9C}\RP921\A0051163.dll Infected: not-a-virus:AdWare.Win32.SearchAssistant.l skipped
C:\System Volume Information\_restore{7BCC083D-3E7B-430D-958D-BC665FDA7D9C}\RP921\A0051176.exe Infected: not-a-virus:AdWare.Win32.Gator.6041 skipped
C:\System Volume Information\_restore{7BCC083D-3E7B-430D-958D-BC665FDA7D9C}\RP921\A0051259.dll Infected: not-a-virus:AdWare.Win32.HotBar.ci skipped
C:\System Volume Information\_restore{7BCC083D-3E7B-430D-958D-BC665FDA7D9C}\RP921\A0051261.dll Infected: not-a-virus:AdWare.Win32.180Solutions.bo skipped
C:\System Volume Information\_restore{7BCC083D-3E7B-430D-958D-BC665FDA7D9C}\RP921\A0051262.exe Infected: not-a-virus:AdWare.Win32.180Solutions.bp skipped
C:\System Volume Information\_restore{7BCC083D-3E7B-430D-958D-BC665FDA7D9C}\RP921\A0051263.dll Infected: not-a-virus:AdWare.Win32.180Solutions.bq skipped
C:\System Volume Information\_restore{7BCC083D-3E7B-430D-958D-BC665FDA7D9C}\RP921\A0051264.exe/stream/data0002 Infected: not-a-virus:AdWare.Win32.180Solutions.bj skipped
C:\System Volume Information\_restore{7BCC083D-3E7B-430D-958D-BC665FDA7D9C}\RP921\A0051264.exe/stream Infected: not-a-virus:AdWare.Win32.180Solutions.bj skipped
C:\System Volume Information\_restore{7BCC083D-3E7B-430D-958D-BC665FDA7D9C}\RP921\A0051264.exe NSIS: infected - 2 skipped
C:\System Volume Information\_restore{7BCC083D-3E7B-430D-958D-BC665FDA7D9C}\RP921\A0051265.dll Infected: not-a-virus:AdWare.Win32.HotBar.ck skipped
C:\System Volume Information\_restore{7BCC083D-3E7B-430D-958D-BC665FDA7D9C}\RP921\A0051268.dll Infected: not-a-virus:AdWare.Win32.HotBar.cj skipped
C:\System Volume Information\_restore{7BCC083D-3E7B-430D-958D-BC665FDA7D9C}\RP924\change.log Object is locked skipped
C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped
C:\WINDOWS\SchedLgU.Txt Object is locked skipped
C:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked skipped
C:\WINDOWS\Sti_Trace.log Object is locked skipped
C:\WINDOWS\system32\CatRoot2\edb.log Object is locked skipped
C:\WINDOWS\system32\CatRoot2\tmp.edb Object is locked skipped
C:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\DEFAULT Object is locked skipped
C:\WINDOWS\system32\config\default.LOG Object is locked skipped
C:\WINDOWS\system32\config\Internet.evt Object is locked skipped
C:\WINDOWS\system32\config\SAM Object is locked skipped
C:\WINDOWS\system32\config\SAM.LOG Object is locked skipped
C:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\SECURITY Object is locked skipped
C:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped
C:\WINDOWS\system32\config\SOFTWARE Object is locked skipped
C:\WINDOWS\system32\config\software.LOG Object is locked skipped
C:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\SYSTEM Object is locked skipped
C:\WINDOWS\system32\config\system.LOG Object is locked skipped
C:\WINDOWS\system32\erkdrxqf.exe Infected: not-a-virus:AdWare.Win32.HotBar.an skipped
C:\WINDOWS\system32\h323log.txt Object is locked skipped
C:\WINDOWS\system32\hbnymavc.exe/data0006/data0002 Infected: not-a-virus:AdWare.Win32.180Solutions.ay skipped
C:\WINDOWS\system32\hbnymavc.exe/data0006/data0003 Infected: not-a-virus:AdWare.Win32.180Solutions.ay skipped
C:\WINDOWS\system32\hbnymavc.exe/data0006/data0004 Infected: not-a-virus:AdWare.Win32.180Solutions.ay skipped
C:\WINDOWS\system32\hbnymavc.exe/data0006 Infected: not-a-virus:AdWare.Win32.180Solutions.ay skipped
C:\WINDOWS\system32\hbnymavc.exe NSIS: infected - 4 skipped
C:\WINDOWS\system32\hxwljcnr.exe Infected: not-a-virus:AdWare.Win32.HotBar.bw skipped
C:\WINDOWS\system32\rfsqoyvr.exe/stream/data0012/stream/data0001 Infected: not-a-virus:AdWare.Win32.Shopper.c skipped
C:\WINDOWS\system32\rfsqoyvr.exe/stream/data0012/stream Infected: not-a-virus:AdWare.Win32.Shopper.c skipped
C:\WINDOWS\system32\rfsqoyvr.exe/stream/data0012 Infected: not-a-virus:AdWare.Win32.Shopper.c skipped
C:\WINDOWS\system32\rfsqoyvr.exe/stream Infected: not-a-virus:AdWare.Win32.Shopper.c skipped
C:\WINDOWS\system32\rfsqoyvr.exe NSIS: infected - 4 skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP Object is locked skipped
C:\WINDOWS\wiadebug.log Object is locked skipped
C:\WINDOWS\wiaservc.log Object is locked skipped
C:\WINDOWS\WindowsUpdate.log Object is locked skipped
C:\WINDOWS\xpupdate.exe Infected: not-virus:Hoax.Win32.Renos.aun skipped
Scan process completed.
Thank you for guiding me through this!
Hi there,
clicked on the link and tried to download the recommended HijackThis version but got this error message:
http://www.trendsecure.com/portal/en...error_page/404
Anyway I uninstalled the previous version (v.1.99.1.) and I'm posting the Kaspersky scan results here:
-------------------------------------------------------------------------------
KASPERSKY ONLINE SCANNER REPORT
Wednesday, March 12, 2008 11:37:27 PM
Operating System: Microsoft Windows XP Professional, Service Pack 2 (Build 2600)
Kaspersky Online Scanner version: 5.0.98.0
Kaspersky Anti-Virus database last update: 12/03/2008
Kaspersky Anti-Virus database records: 626238
-------------------------------------------------------------------------------
Scan Settings:
Scan using the following antivirus database: extended
Scan Archives: true
Scan Mail Bases: true
Scan Target - My Computer:
C:\
D:\
E:\
F:\
G:\
Scan Statistics:
Total number of scanned objects: 63164
Number of viruses found: 27
Number of infected objects: 57
Number of suspicious objects: 0
Duration of the scan process: 01:41:47
Infected Object Name / Virus Name / Last Action
C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Microsoft\Network\Downloader\qmgr0.dat Object is locked skipped
C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Microsoft\Network\Downloader\qmgr1.dat Object is locked skipped
C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Network Associates\Common Framework\Db\Agent_CPQ27980732116.log Object is locked skipped
C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Network Associates\Common Framework\Db\PrdMgr_CPQ27980732116.log Object is locked skipped
C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Network Associates\VirusScan\OnAccessScanLog.txt Object is locked skipped
C:\Dokumente und Einstellungen\Debbie Suhner\Anwendungsdaten\errorsafenewreleaseinstall[1].exe Infected: not-a-virus

C:\Dokumente und Einstellungen\Debbie Suhner\Anwendungsdaten\Mozilla\Firefox\Profiles\d3mefqq2.default\Cache\_CACHE_001_ Object is locked skipped
C:\Dokumente und Einstellungen\Debbie Suhner\Anwendungsdaten\Mozilla\Firefox\Profiles\d3mefqq2.default\Cache\_CACHE_002_ Object is locked skipped
C:\Dokumente und Einstellungen\Debbie Suhner\Anwendungsdaten\Mozilla\Firefox\Profiles\d3mefqq2.default\Cache\_CACHE_003_ Object is locked skipped
C:\Dokumente und Einstellungen\Debbie Suhner\Anwendungsdaten\Mozilla\Firefox\Profiles\d3mefqq2.default\Cache\_CACHE_MAP_ Object is locked skipped
C:\Dokumente und Einstellungen\Debbie Suhner\Anwendungsdaten\Mozilla\Firefox\Profiles\d3mefqq2.default\cert8.db Object is locked skipped
C:\Dokumente und Einstellungen\Debbie Suhner\Anwendungsdaten\Mozilla\Firefox\Profiles\d3mefqq2.default\history.dat Object is locked skipped
C:\Dokumente und Einstellungen\Debbie Suhner\Anwendungsdaten\Mozilla\Firefox\Profiles\d3mefqq2.default\key3.db Object is locked skipped
C:\Dokumente und Einstellungen\Debbie Suhner\Anwendungsdaten\Mozilla\Firefox\Profiles\d3mefqq2.default\parent.lock Object is locked skipped
C:\Dokumente und Einstellungen\Debbie Suhner\Cookies\index.dat Object is locked skipped
C:\Dokumente und Einstellungen\Debbie Suhner\Lokale Einstellungen\Anwendungsdaten\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Dokumente und Einstellungen\Debbie Suhner\Lokale Einstellungen\Anwendungsdaten\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Dokumente und Einstellungen\Debbie Suhner\Lokale Einstellungen\Temp\HbToolsU.exe/stream/data0001 Infected: not-a-virus:AdWare.Win32.180Solutions.bj skipped
C:\Dokumente und Einstellungen\Debbie Suhner\Lokale Einstellungen\Temp\HbToolsU.exe/stream/data0010 Infected: not-a-virus:AdWare.Win32.180Solutions.bm skipped
C:\Dokumente und Einstellungen\Debbie Suhner\Lokale Einstellungen\Temp\HbToolsU.exe/stream Infected: not-a-virus:AdWare.Win32.180Solutions.bm skipped
C:\Dokumente und Einstellungen\Debbie Suhner\Lokale Einstellungen\Temp\HbToolsU.exe NSIS: infected - 3 skipped
C:\Dokumente und Einstellungen\Debbie Suhner\Lokale Einstellungen\Temp\~DFBE39.tmp Object is locked skipped
C:\Dokumente und Einstellungen\Debbie Suhner\Lokale Einstellungen\Temp\~DFDBE2.tmp Object is locked skipped
C:\Dokumente und Einstellungen\Debbie Suhner\Lokale Einstellungen\Temporary Internet Files\AntiPhishing\B3BB5BBA-E7D5-40AB-A041-A5B1C0B26C8F.dat Object is locked skipped
C:\Dokumente und Einstellungen\Debbie Suhner\Lokale Einstellungen\Temporary Internet Files\Content.IE5\25NYOFHK\_Zmx5Y292ZXJfZWYyX21hOV9tYjFfZ2JyczFl__a2V5aW4_[1].exe Infected: not-virus:Hoax.Win32.Renos.avw skipped
C:\Dokumente und Einstellungen\Debbie Suhner\Lokale Einstellungen\Temporary Internet Files\Content.IE5\9BT84QV2\_Zmx5Y292ZXJfZWYyX21hOV9tYjFfZ2JyczFl__a2V5aW4_[1].exe Infected: not-virus:Hoax.Win32.Renos.avw skipped
C:\Dokumente und Einstellungen\Debbie Suhner\Lokale Einstellungen\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Dokumente und Einstellungen\Debbie Suhner\Lokale Einstellungen\Verlauf\History.IE5\index.dat Object is locked skipped
C:\Dokumente und Einstellungen\Debbie Suhner\NTUSER.DAT Object is locked skipped
C:\Dokumente und Einstellungen\Debbie Suhner\ntuser.dat.LOG Object is locked skipped
C:\Dokumente und Einstellungen\LocalService\Cookies\index.dat Object is locked skipped
C:\Dokumente und Einstellungen\LocalService\Lokale Einstellungen\Anwendungsdaten\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Dokumente und Einstellungen\LocalService\Lokale Einstellungen\Anwendungsdaten\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Dokumente und Einstellungen\LocalService\Lokale Einstellungen\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Dokumente und Einstellungen\LocalService\Lokale Einstellungen\Verlauf\History.IE5\index.dat Object is locked skipped
C:\Dokumente und Einstellungen\LocalService\NTUSER.DAT Object is locked skipped
C:\Dokumente und Einstellungen\LocalService\ntuser.dat.LOG Object is locked skipped
C:\Dokumente und Einstellungen\NetworkService\Lokale Einstellungen\Anwendungsdaten\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Dokumente und Einstellungen\NetworkService\Lokale Einstellungen\Anwendungsdaten\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Dokumente und Einstellungen\NetworkService\NTUSER.DAT Object is locked skipped
C:\Dokumente und Einstellungen\NetworkService\ntuser.dat.LOG Object is locked skipped
C:\Programme\hbinst\Hbinst.exe Infected: not-a-virus:AdWare.Win32.Hotbar.p skipped
C:\Programme\Hotbar\bin\10.0.356.0\HostOE.dll Infected: not-a-virus:AdWare.Win32.HotBar.ck skipped
C:\Programme\Hotbar\bin\10.0.356.0\OEAddOn.exe Infected: not-a-virus:AdWare.Win32.HotBar.ck skipped
C:\Programme\HP\hpcoretech\hpcmerr.log Object is locked skipped
C:\Programme\Microsoft AntiSpyware\Quarantine\24805252-BDB1-4DBD-BA6A-2DEF4C\06C1B2E4-154B-4542-A23C-9A4B74 Infected: not-a-virus:AdWare.Win32.Gator.a skipped
C:\Programme\Microsoft AntiSpyware\Quarantine\24805252-BDB1-4DBD-BA6A-2DEF4C\A5E1D3E3-E782-4575-9884-4BC320 Infected: not-a-virus:AdWare.Win32.Gator.a skipped
C:\RECYCLER\S-1-5-21-590260106-135449575-3207847200-1004\Dc103.bak/[From "RICARDO" <support@ricardo.ch>][Date Tue, 9 Oct 2007 16:42:07 +0700]/UNNAMED/root_ca_ssl3.exe Infected: Trojan-Downloader.Win32.Small.fvw skipped
C:\RECYCLER\S-1-5-21-590260106-135449575-3207847200-1004\Dc103.bak/[From "RICARDO" <support@ricardo.ch>][Date Tue, 9 Oct 2007 16:42:07 +0700]/UNNAMED Infected: Trojan-Downloader.Win32.Small.fvw skipped
C:\RECYCLER\S-1-5-21-590260106-135449575-3207847200-1004\Dc103.bak/[From "RICARDO" <support@ricardo.ch>][Date Tue, 9 Oct 2007 16:42:07 +0700]/UNNAMED/root_ca_ssl3.exe Infected: Trojan-Downloader.Win32.Small.fvw skipped
C:\RECYCLER\S-1-5-21-590260106-135449575-3207847200-1004\Dc103.bak/[From "RICARDO" <support@ricardo.ch>][Date Tue, 9 Oct 2007 16:42:07 +0700]/UNNAMED Infected: Trojan-Downloader.Win32.Small.fvw skipped
C:\RECYCLER\S-1-5-21-590260106-135449575-3207847200-1004\Dc103.bak/[From "RICARDO" <support@ricardo.ch>][Date Tue, 9 Oct 2007 15:10:45 +0530]/UNNAMED/root_ca_ssl3.exe Infected: Trojan-Downloader.Win32.Small.fvw skipped
C:\RECYCLER\S-1-5-21-590260106-135449575-3207847200-1004\Dc103.bak/[From "RICARDO" <support@ricardo.ch>][Date Tue, 9 Oct 2007 15:10:45 +0530]/UNNAMED Infected: Trojan-Downloader.Win32.Small.fvw skipped
C:\RECYCLER\S-1-5-21-590260106-135449575-3207847200-1004\Dc103.bak/[From "RICARDO" <support@ricardo.ch>][Date Tue, 9 Oct 2007 11:38:01 +0200]/UNNAMED/root_ca_ssl3.exe Infected: Trojan-Downloader.Win32.Small.fvw skipped
C:\RECYCLER\S-1-5-21-590260106-135449575-3207847200-1004\Dc103.bak/[From "RICARDO" <support@ricardo.ch>][Date Tue, 9 Oct 2007 11:38:01 +0200]/UNNAMED Infected: Trojan-Downloader.Win32.Small.fvw skipped
C:\RECYCLER\S-1-5-21-590260106-135449575-3207847200-1004\Dc103.bak/[From "RICARDO" <support@ricardo.ch>][Date Tue, 9 Oct 2007 11:42:37 +0200]/UNNAMED/root_ca_ssl3.exe Infected: Trojan-Downloader.Win32.Small.fvw skipped
C:\RECYCLER\S-1-5-21-590260106-135449575-3207847200-1004\Dc103.bak/[From "RICARDO" <support@ricardo.ch>][Date Tue, 9 Oct 2007 11:42:37 +0200]/UNNAMED Infected: Trojan-Downloader.Win32.Small.fvw skipped
C:\RECYCLER\S-1-5-21-590260106-135449575-3207847200-1004\Dc103.bak/[From "RICARDO" <support@ricardo.ch>][Date Tue, 9 Oct 2007 16:42:07 +0700]/UNNAMED/root_ca_ssl3.exe Infected: Trojan-Downloader.Win32.Small.fvw skipped
C:\RECYCLER\S-1-5-21-590260106-135449575-3207847200-1004\Dc103.bak/[From "RICARDO" <support@ricardo.ch>][Date Tue, 9 Oct 2007 16:42:07 +0700]/UNNAMED Infected: Trojan-Downloader.Win32.Small.fvw skipped
C:\RECYCLER\S-1-5-21-590260106-135449575-3207847200-1004\Dc103.bak Mail MS Outlook 5: infected - 12 skipped
C:\RECYCLER\S-1-5-21-590260106-135449575-3207847200-1004\Dc188.exe Infected: Trojan-Downloader.Win32.Agent.ibg skipped
C:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped
C:\System Volume Information\_restore{7BCC083D-3E7B-430D-958D-BC665FDA7D9C}\RP895\A0048712.exe Infected: Trojan-Downloader.Win32.Agent.ibg skipped
C:\System Volume Information\_restore{7BCC083D-3E7B-430D-958D-BC665FDA7D9C}\RP902\A0050840.exe Infected: not-a-virus:FraudTool.Win32.DrAntispy.ax skipped
C:\System Volume Information\_restore{7BCC083D-3E7B-430D-958D-BC665FDA7D9C}\RP902\A0050841.dll Infected: not-a-virus:FraudTool.Win32.BraveSentry.f skipped
C:\System Volume Information\_restore{7BCC083D-3E7B-430D-958D-BC665FDA7D9C}\RP902\A0050843.dll Infected: not-a-virus:FraudTool.Win32.BraveSentry.b skipped
C:\System Volume Information\_restore{7BCC083D-3E7B-430D-958D-BC665FDA7D9C}\RP921\A0051158.exe Infected: not-a-virus:FraudTool.Win32.DrAntispy.aq skipped
C:\System Volume Information\_restore{7BCC083D-3E7B-430D-958D-BC665FDA7D9C}\RP921\A0051161.dll Infected: not-a-virus:FraudTool.Win32.BraveSentry.j skipped
C:\System Volume Information\_restore{7BCC083D-3E7B-430D-958D-BC665FDA7D9C}\RP921\A0051162.dll Infected: not-a-virus:AdWare.Win32.SearchAssistant.k skipped
C:\System Volume Information\_restore{7BCC083D-3E7B-430D-958D-BC665FDA7D9C}\RP921\A0051163.dll Infected: not-a-virus:AdWare.Win32.SearchAssistant.l skipped
C:\System Volume Information\_restore{7BCC083D-3E7B-430D-958D-BC665FDA7D9C}\RP921\A0051176.exe Infected: not-a-virus:AdWare.Win32.Gator.6041 skipped
C:\System Volume Information\_restore{7BCC083D-3E7B-430D-958D-BC665FDA7D9C}\RP921\A0051259.dll Infected: not-a-virus:AdWare.Win32.HotBar.ci skipped
C:\System Volume Information\_restore{7BCC083D-3E7B-430D-958D-BC665FDA7D9C}\RP921\A0051261.dll Infected: not-a-virus:AdWare.Win32.180Solutions.bo skipped
C:\System Volume Information\_restore{7BCC083D-3E7B-430D-958D-BC665FDA7D9C}\RP921\A0051262.exe Infected: not-a-virus:AdWare.Win32.180Solutions.bp skipped
C:\System Volume Information\_restore{7BCC083D-3E7B-430D-958D-BC665FDA7D9C}\RP921\A0051263.dll Infected: not-a-virus:AdWare.Win32.180Solutions.bq skipped
C:\System Volume Information\_restore{7BCC083D-3E7B-430D-958D-BC665FDA7D9C}\RP921\A0051264.exe/stream/data0002 Infected: not-a-virus:AdWare.Win32.180Solutions.bj skipped
C:\System Volume Information\_restore{7BCC083D-3E7B-430D-958D-BC665FDA7D9C}\RP921\A0051264.exe/stream Infected: not-a-virus:AdWare.Win32.180Solutions.bj skipped
C:\System Volume Information\_restore{7BCC083D-3E7B-430D-958D-BC665FDA7D9C}\RP921\A0051264.exe NSIS: infected - 2 skipped
C:\System Volume Information\_restore{7BCC083D-3E7B-430D-958D-BC665FDA7D9C}\RP921\A0051265.dll Infected: not-a-virus:AdWare.Win32.HotBar.ck skipped
C:\System Volume Information\_restore{7BCC083D-3E7B-430D-958D-BC665FDA7D9C}\RP921\A0051268.dll Infected: not-a-virus:AdWare.Win32.HotBar.cj skipped
C:\System Volume Information\_restore{7BCC083D-3E7B-430D-958D-BC665FDA7D9C}\RP924\change.log Object is locked skipped
C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped
C:\WINDOWS\SchedLgU.Txt Object is locked skipped
C:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked skipped
C:\WINDOWS\Sti_Trace.log Object is locked skipped
C:\WINDOWS\system32\CatRoot2\edb.log Object is locked skipped
C:\WINDOWS\system32\CatRoot2\tmp.edb Object is locked skipped
C:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\DEFAULT Object is locked skipped
C:\WINDOWS\system32\config\default.LOG Object is locked skipped
C:\WINDOWS\system32\config\Internet.evt Object is locked skipped
C:\WINDOWS\system32\config\SAM Object is locked skipped
C:\WINDOWS\system32\config\SAM.LOG Object is locked skipped
C:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\SECURITY Object is locked skipped
C:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped
C:\WINDOWS\system32\config\SOFTWARE Object is locked skipped
C:\WINDOWS\system32\config\software.LOG Object is locked skipped
C:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\SYSTEM Object is locked skipped
C:\WINDOWS\system32\config\system.LOG Object is locked skipped
C:\WINDOWS\system32\erkdrxqf.exe Infected: not-a-virus:AdWare.Win32.HotBar.an skipped
C:\WINDOWS\system32\h323log.txt Object is locked skipped
C:\WINDOWS\system32\hbnymavc.exe/data0006/data0002 Infected: not-a-virus:AdWare.Win32.180Solutions.ay skipped
C:\WINDOWS\system32\hbnymavc.exe/data0006/data0003 Infected: not-a-virus:AdWare.Win32.180Solutions.ay skipped
C:\WINDOWS\system32\hbnymavc.exe/data0006/data0004 Infected: not-a-virus:AdWare.Win32.180Solutions.ay skipped
C:\WINDOWS\system32\hbnymavc.exe/data0006 Infected: not-a-virus:AdWare.Win32.180Solutions.ay skipped
C:\WINDOWS\system32\hbnymavc.exe NSIS: infected - 4 skipped
C:\WINDOWS\system32\hxwljcnr.exe Infected: not-a-virus:AdWare.Win32.HotBar.bw skipped
C:\WINDOWS\system32\rfsqoyvr.exe/stream/data0012/stream/data0001 Infected: not-a-virus:AdWare.Win32.Shopper.c skipped
C:\WINDOWS\system32\rfsqoyvr.exe/stream/data0012/stream Infected: not-a-virus:AdWare.Win32.Shopper.c skipped
C:\WINDOWS\system32\rfsqoyvr.exe/stream/data0012 Infected: not-a-virus:AdWare.Win32.Shopper.c skipped
C:\WINDOWS\system32\rfsqoyvr.exe/stream Infected: not-a-virus:AdWare.Win32.Shopper.c skipped
C:\WINDOWS\system32\rfsqoyvr.exe NSIS: infected - 4 skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP Object is locked skipped
C:\WINDOWS\wiadebug.log Object is locked skipped
C:\WINDOWS\wiaservc.log Object is locked skipped
C:\WINDOWS\WindowsUpdate.log Object is locked skipped
C:\WINDOWS\xpupdate.exe Infected: not-virus:Hoax.Win32.Renos.aun skipped
Scan process completed.
Thank you for guiding me through this!