Well, help me out please!
-------------------------------------------------------------------------------
KASPERSKY ONLINE SCANNER REPORT
Tuesday, May 20, 2008 9:06:35 PM
Operating System: Microsoft Windows XP Professional, Service Pack 2 (Build 2600)
Kaspersky Online Scanner version: 5.0.98.0
Kaspersky Anti-Virus database last update: 20/05/2008
Kaspersky Anti-Virus database records: 703457
-------------------------------------------------------------------------------
Scan Settings:
Scan using the following antivirus database: standard
Scan Archives: true
Scan Mail Bases: true
Scan Target - My Computer:
C:\
D:\
E:\
G:\
H:\
I:\
J:\
Scan Statistics:
Total number of scanned objects: 124605
Number of viruses found: 2
Number of infected objects: 6
Number of suspicious objects: 0
Duration of the scan process: 00:58:11
Infected Object Name / Virus Name / Last Action
C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\3ad391678a806ec4d691e83aaa393b6f_24adf822-76f7-4481-b30b-ff1b40f8687f Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\eHome\logs\ehRecvr.log Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Trend Micro\PC-cillin\log\pcc_S-1-5-21-2793611041-2877753586-1880569462-1006.log Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Trend Micro\PC-cillin\log\pcc_S-1-5-21-2793611041-2877753586-1880569462-1006u.log Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Trend Micro\PC-cillin\log\pcc_S-1-5-21-2793611041-2877753586-1880569462-500.log Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Trend Micro\PC-cillin\log\TmPfw_S-1-5-21-2793611041-2877753586-1880569462-500.log Object is locked skipped
C:\Documents and Settings\LocalService\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\Nick\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\jvmimpro.jar-51fad18-265a46c2.zip/vmain.class Infected: Exploit.Java.Gimsh.a skipped
C:\Documents and Settings\Nick\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\jvmimpro.jar-51fad18-265a46c2.zip ZIP: infected - 1 skipped
C:\Documents and Settings\Nick\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\jvmimpro.jar-5efd1945-63a8d871.zip/vmain.class Infected: Exploit.Java.Gimsh.b skipped
C:\Documents and Settings\Nick\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\jvmimpro.jar-5efd1945-63a8d871.zip ZIP: infected - 1 skipped
C:\Documents and Settings\Nick\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\jvmimpro.jar-6d3811e3-45aeeee1.zip/vmain.class Infected: Exploit.Java.Gimsh.b skipped
C:\Documents and Settings\Nick\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\jvmimpro.jar-6d3811e3-45aeeee1.zip ZIP: infected - 1 skipped
C:\Documents and Settings\Nick\Application Data\Sun\Java\Deployment\log\plugin150_06.trace Object is locked skipped
C:\Documents and Settings\Nick\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\Nick\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\Nick\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\Nick\Local Settings\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\Nick\Local Settings\Temp\hsperfdata_Nick\2968 Object is locked skipped
C:\Documents and Settings\Nick\Local Settings\Temp\~DF9D54.tmp Object is locked skipped
C:\Documents and Settings\Nick\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\Nick\Local Settings\Temporary Internet Files\Content.IE5\MJ9V4SGH\UserStatusChange[30].html Object is locked skipped
C:\Documents and Settings\Nick\Local Settings\Temporary Internet Files\Content.IE5\MJ9V4SGH\UserStatusChange[32].html Object is locked skipped
C:\Documents and Settings\Nick\ntuser.dat Object is locked skipped
C:\Documents and Settings\Nick\ntuser.dat.LOG Object is locked skipped
C:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped
C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP491\change.log Object is locked skipped
C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped
C:\WINDOWS\ModemLog_Conexant D850 56K V.9x DFVc Modem.txt Object is locked skipped
C:\WINDOWS\Registration\{02D4B3F1-FD88-11D1-960D-00805FC79235}.{32B03CF4-053F-4A97-8E21-FBD1EC840768}.crmlog Object is locked skipped
C:\WINDOWS\SchedLgU.Txt Object is locked skipped
C:\WINDOWS\SoftwareDistribution\EventCache\{99A991BC-643A-43D7-9750-B2B9AF68A15C}.bin Object is locked skipped
C:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked skipped
C:\WINDOWS\Sti_Trace.log Object is locked skipped
C:\WINDOWS\system32\audipsub32.dll Object is locked skipped
C:\WINDOWS\system32\CatRoot2\edb.log Object is locked skipped
C:\WINDOWS\system32\CatRoot2\tmp.edb Object is locked skipped
C:\WINDOWS\system32\cmpedpop.dll Object is locked skipped
C:\WINDOWS\system32\config\ACEEvent.evt Object is locked skipped
C:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\DEFAULT Object is locked skipped
C:\WINDOWS\system32\config\default.LOG Object is locked skipped
C:\WINDOWS\system32\config\IntelDH.evt Object is locked skipped
C:\WINDOWS\system32\config\Media Ce.evt Object is locked skipped
C:\WINDOWS\system32\config\SAM Object is locked skipped
C:\WINDOWS\system32\config\SAM.LOG Object is locked skipped
C:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\SECURITY Object is locked skipped
C:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped
C:\WINDOWS\system32\config\SOFTWARE Object is locked skipped
C:\WINDOWS\system32\config\software.LOG Object is locked skipped
C:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\SYSTEM Object is locked skipped
C:\WINDOWS\system32\config\system.LOG Object is locked skipped
C:\WINDOWS\system32\delivmag\01FE10C22BD6C28A33B6C2BA14341E040515E7C2.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\065731DD58DC2BAC208BD5C45E62F36ACE7F0B02.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\096C549D569C00A7BDF037562334751BF234F3EF.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\096EA7FCD56E786A85C8816F803DB011E4801EF8.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\0AA6268E5FDD071835B1C9741590480D60D95679.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\0CAA32C31941886EAED6B3D178A4EB3D5511EF91.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\0CAEBEB0386225DADD148C2E4AC2FB0415692899.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\0D4BF9B076FBE1D05978786F6D25407E510D1201.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\0F15278F195B50EAEC99BFAE4B090355CBC63DC2.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\11083761C3B027003329AD98BB4F0964C71C5FA4.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\12C5C781F596FAED9BC98EAE28638DB76FF6A111.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\144115B97978886201E566BD95384218A8A8E6A3.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\151230C36C049AB99C1FB0F1A0CD5DF7D7AD25C3.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\181B5C57B8DA8E0E5028CCD59ECDA8154CA68942.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\1893B764C8E7DCDEE828C0AC8CF5EFFDD180E570.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\192299536580FA9AB72871E8607B8A6317049094.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\1AE008F600A454E53A90C5DE576C43825B96645F.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\1B36B4614C2A62771842E0002C2346A1217471EF.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\1D520FB35311DEE42D4327C0ED70DF079C863D50.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\1F6211FF4CDD733CC90CFBC9F2E7D77EC158F86A.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\1F70323256EA86D8DE8586EF2FFC9283463697D9.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\2082051ED096F6291D601ACF9BE118BE19E7619B.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\2114DEE8548D7910C33C007394D3F101403FCD0B.ji0 Object is locked skipped
C:\WINDOWS\system32\delivmag\2114DEE8548D7910C33C007394D3F101403FCD0B.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\21A3A2B93A235E4520D477C8E3651635CCCFD32B.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\2200A87DAADA04AF16477D172EF6A2E41893D26F.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\22D5D6DF7C2EE992255A558C9BDB802986DD5213.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\27720E220F5682112F3444B7873BF425160D86D8.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\29DD79C737E4C7D2B80273FC9CDB5097B578CA86.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\2A87D3DF3F00B2B0DF09D0514D398C1BECC3E13B.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\2AEA1710F67362EDA9962B128188231129C3892F.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\2B62E3B75FE453E90A63310DDC7C4772C33294E2.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\2DCD3B8AA7F200975DA9F73D43F2767B8A249CB8.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\303427523269216873738EDD9306A0E0570349D8.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\31B2E53E9E0579A7D3473E77D8987E2C6A7A5698.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\34C48A95965D1DA36E6A193B245926CF7AF4FBFD.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\34CA0E5B95505F9EEDC7090E940671DF5905F053.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\3A663C935625F8172BC5543F7536B00EF9C46083.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\3EAA4474D9AB83C0BCC8EC239C2FE0300B07C5A1.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\423FD806D447BB8611EA14A455AFB1242D62B46C.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\424C5A930F6C0E819772FE462A4224A21B01409D.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\450403B37E1544C49227643E85CC878AE95C75B4.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\456F55C42E0E2801E962A806C71E24919CFE12B8.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\45E479069C026A38EAB60A73EE9B66D057A938D7.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\4A011BA28A86A527D6DB896C868B45AA90C48509.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\4A708CB225DD87492B1D248A79B246D113EE1554.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\4B71256B57F49C9EC2DB3FE3333B3F55A7193014.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\4ED508DFCA50AFFA159BD7511C9C5FBE4A05C602.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\510BD395FC741D6EC87B733304D6A1027C06B6FE.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\52772FF2849B356D72FF1F1353F6899CBE8AFC2C.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\542AE5EB578A782E47E0B24341DBB43AB2FAFCEF.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\54CB2943D16E930B64EC3B179DFEC329115875D3.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\57653F4BA37A54070261FECE0F91BDF6725B7A8D.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\586911B661FDDB1F8BD59C87BDE12D46B9553691.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\591E40D52ADC327EB0CE7F39EC1F2835A86A599F.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\5B97D1097F8429C3C91B1450338E22B3224ACDCD.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\5C54D7E603D3F6855AE90FCF3AE61DDEBD8ACD7C.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\6059E4B7B817C805A156F0476F8E1536CAE965BA.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\64C9BACBC1D99AA502B1420C93C839E2539BC62E.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\650B6E940BA6943EB1E79B20433B9D386F4BC031.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\65A177959E81FE72B7C00CD3F44F94AD48F24E33.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\67A2A033E5A962ECE62D344087F79624052416DD.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\695AE66F191F861CEFE87FF40BF5B60B6AE00BB9.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\6A4FE901E42EA636C90A60D044A9BCDE5FF27FD0.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\6AD32A07033533992C6062CA9D6CA38FB1E083AA.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\6C076FA1A80486E8E3BDBA0A28D328F7A766D29B.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\6D67E7217B31A2E4F6A8B919BE20C3764293E17D.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\6FAAE8FBEDEEB43A69B67BB9396CCE3F0E412A27.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\7008E5DF7225BFAA2DB4B19AF97B10A7719C9F90.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\70137589403BAEC5A821C3DE08957052B07D35C2.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\705A6707D52A4C56D37642E36E2084E07EBB6C43.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\737CDC31A55FA2369A71371297D9E6BAB8D322D3.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\75EDF6807BAA68417B7421A4026C5DA57A4A8986.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\767ECC4F737FCC994270D192E9BA417B835FAA0B.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\7FBA110A28A02C98F951A209E0AB92D4D91BB20E.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\83720187A51F0D458249B4DBD9EB9BD59394AE0A.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\86BBDDA07F3EBAA592CCA2F0BC1D06BE678F62CE.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\872ADB2444BE10C80726FA95D9351DFE76F2061E.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\879D236494160292AF6D10E5FACDAC83234B5398.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\87EF674DA02E25EAA212B6282C25348685E05C11.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\886B462A1576939ECB2AF63E7E3A72E36737C6C7.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\8C699678C3892B1912857B7D969C72C51CBEA881.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\90E4E2F8A93A12AC0661275756944965C66A59EF.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\911E2F879E3B06CFBAFA7105B85255F30A82C567.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\9D1E3081EDB0A7D149F16ECA897E020BF95F44BF.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\9E7E1A962FFDB672E6C15CD6CD473277F69ECF33.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\A1352A3CA6C618226B2693AACAEF7CB9A0E2E3AA.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\A235461726A4D7F60F395764A633E4686C3139CA.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\A30B68FBD5E3A574DE2D4607367222E6D07877D8.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\AA1D7FF1EB8D733658DA8E37E1AC138161CFB3F5.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\B32A071CE8EE4C6B13D67B99AE60392E2B72DA79.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\B557BAFF60B164F687A5284162472FCD99AFB13A.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\B574C23FA527261BF32FCBE49249B238ED913EC5.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\B7528155BE48A49FCDA0B4360496C55961BA8251.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\BBDEEBCB6957AE59D8AD14A30F4597B4FD9A7783.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\BC6FCCD7452C1B00C51988418D1993940B452E35.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\C0A605DE5916C4E65A4F210A8ED43E4232C9F3A5.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\C130FCFB0B471987E5BDD87421C0F80C3D99B328.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\C19DEACEBB1C7502D9FBC0E672F93A3034460083.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\C3ED3B7EC0B466BC98FD2E35022D126FEB048EE4.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\C40FD7338CF5DCE2553569B1DB32D2654A99CB01.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\C4652CE7F82A8EC7A865C9A12E218EC1785DAEF6.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\CA69870CBD5C52EC2A2C1B569C89457A88476C7B.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\CB2A268BD957C359CD493BA6A28090F78A7CDE14.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\CC147177C691D93EFC3D0C4E42701734F91B2972.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\CCEE55CA51C22DF2B3FA764AF55DE5B8DBE5D49C.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\D2DF67BA9D80353AC71D254F8E1FF51ED9FCF0B0.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\D3CA86882FCEE36209D9FA9293D03C58CD013339.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\D6D0F915A0FB13BEF708A56267714BD965850145.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\D73B8BD2028D19CBFECE749277BEDAC38019CAB9.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\D7BFF75160FB9239974E2B61E4EC97624DD6C03C.ji0 Object is locked skipped
C:\WINDOWS\system32\delivmag\D7BFF75160FB9239974E2B61E4EC97624DD6C03C.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\D82B851EBE5577272516917E51E25550B3654436.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\D915DB0FB23D000D31429E2AB4CA2CFFF79A3A17.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\DBA3D4FB6C1E7EA1FBE82C247791714ACEC55929.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\DD8E57FB74EA31E4098438083E092C31D75B4CAF.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\DEFFA7B4050B13E53C4EB3BF538E9061DCE3305A.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\DF68FF1A7034C0533C6CDC6E204DD1E8199C8532.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\DF9ABF693CC926F88ED694A6D281B18DA27368B2.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\E04BFC635541E9EA9D12DEA214ECC091128BD359.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\E9C2C04AC9BD94432FA2B61CC95D5639BD3B2A20.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\EB095C7C1924E7506D93B960FB5025C2D892BBFB.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\EBC1CAFDCB76884286463367148E3C8C315CF615.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\EC9F6E129DB93D88C7299FA17F422CD4E69DBD6F.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\EE4AB068CC0B0163288260AB1FC7B84706681D7C.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\EF05D3960A68A13783DC679C24624313CF1084BC.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\EFED8A6E6BE56CADD1E0A5C5B27CBDBA60B253CA.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\F1820683429A764E93D851648E81ABECE0DB73AF.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\F5DE2FEBB6DA0433FA97A2A9E366EB58ADFBEF6B.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\F819FF87F84F6C0CF7CACB19B91B884B721DDA49.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\FE11C3ADC713B9F381677B66D8C670E80C44A681.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\ihadqzlf\data.html Object is locked skipped
C:\WINDOWS\system32\delivmag\ihadqzlf\iosubsys\Account_Icon.gif Object is locked skipped
C:\WINDOWS\system32\delivmag\ihadqzlf\iosubsys\blogPosted_icon.gif Object is locked skipped
C:\WINDOWS\system32\delivmag\ihadqzlf\iosubsys\BrowseRequest_icon.gif Object is locked skipped
C:\WINDOWS\system32\delivmag\ihadqzlf\iosubsys\bubble.gif Object is locked skipped
C:\WINDOWS\system32\delivmag\ihadqzlf\iosubsys\clickForInfo.gif Object is locked skipped
C:\WINDOWS\system32\delivmag\ihadqzlf\iosubsys\clock_icon.gif Object is locked skipped
C:\WINDOWS\system32\delivmag\ihadqzlf\iosubsys\groupPosted_icon.gif Object is locked skipped
C:\WINDOWS\system32\delivmag\ihadqzlf\iosubsys\images_icon.gif Object is locked skipped
C:\WINDOWS\system32\delivmag\ihadqzlf\iosubsys\Invitations_icon.gif Object is locked skipped
C:\WINDOWS\system32\delivmag\ihadqzlf\iosubsys\loginRed.gif Object is locked skipped
C:\WINDOWS\system32\delivmag\ihadqzlf\iosubsys\Logo.gif Object is locked skipped
C:\WINDOWS\system32\delivmag\ihadqzlf\iosubsys\Logo_Facebook.gif Object is locked skipped
C:\WINDOWS\system32\delivmag\ihadqzlf\iosubsys\messageReceived_icon.gif Object is locked skipped
C:\WINDOWS\system32\delivmag\ihadqzlf\iosubsys\messageSent_icon.gif Object is locked skipped
C:\WINDOWS\system32\delivmag\ihadqzlf\iosubsys\Others_visited_icon.gif Object is locked skipped
C:\WINDOWS\system32\delivmag\ihadqzlf\iosubsys\profile.gif Object is locked skipped
C:\WINDOWS\system32\delivmag\ihadqzlf\iosubsys\spacer20x20.gif Object is locked skipped
C:\WINDOWS\system32\delivmag\ihadqzlf\iosubsys\view.gif Object is locked skipped
C:\WINDOWS\system32\delivmag\maduhdis.ocx Object is locked skipped
C:\WINDOWS\system32\getukmin.dll Object is locked skipped
C:\WINDOWS\system32\h323log.txt Object is locked skipped
C:\WINDOWS\system32\sapikimg.dll Object is locked skipped
C:\WINDOWS\system32\sapotdis.dll Object is locked skipped
C:\WINDOWS\system32\tcpadpnp.dll Object is locked skipped
C:\WINDOWS\system32\vocundde.exe Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP Object is locked skipped
C:\WINDOWS\Temp\Perflib_Perfdata_324.dat Object is locked skipped
C:\WINDOWS\wiadebug.log Object is locked skipped
C:\WINDOWS\wiaservc.log Object is locked skipped
C:\WINDOWS\WindowsUpdate.log Object is locked skipped
Scan process completed.
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 10:10:45 PM, on 5/20/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\stsystra.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe
C:\Program Files\Trend Micro\Internet Security 14\pccguide.exe
C:\WINDOWS\System32\DLA\DLACTRLW.EXE
C:\Program Files\Canon\MyPrinter\BJMyPrt.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Trend Micro\Internet Security 14\TMAS_OE\TMAS_OEMon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\DNA\btdna.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\PcCtlCom.exe
C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
C:\WINDOWS\ehome\RMSvc.exe
C:\WINDOWS\system32\svchost.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\Tmntsrv.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\TmPfw.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\tmproxy.exe
C:\Program Files\Intel\IntelDH\Intel(R) Quick Resume Technology Drivers\Elservice.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Nick\Desktop\HiJackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com/ig/dell?hl=en&client=dell-usuk-rel&channel=us&ibd=6061228
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://g.msn.com/0SEENUS/SAOS13
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bluebeards.net/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.html
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Page_URL = www.google.com/ig/dell?hl=en&client=dell-usuk-rel&channel=us&ibd=6061228
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll (file missing)
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\System32\DLA\DLASHX_W.DLL
O2 - BHO: Canon Easy Web Print Helper - {68F9551E-0411-48E4-9AAF-4BC42A6A46BE} - C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: CBrowserHelperObject Object - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\BAE\BAE.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O4 - HKLM\..\Run: [SigmatelSysTrayApp] stsystra.exe
O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe
O4 - HKLM\..\Run: [pccguide.exe] "C:\Program Files\Trend Micro\Internet Security 14\pccguide.exe"
O4 - HKLM\..\Run: [DLA] C:\WINDOWS\System32\DLA\DLACTRLW.EXE
O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon
O4 - HKLM\..\Run: [wodiw] c:\program files\wodiwkcalb\csrss.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\RunOnce: [SpybotDeletingA5892] command /c del "C:\WINDOWS\system32\mstrc32.dll_old"
O4 - HKCU\..\Run: [OE_OEM] "C:\Program Files\Trend Micro\Internet Security 14\TMAS_OE\TMAS_OEMon.exe"
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [wodiw] c:\program files\wodiwkcalb\csrss.exe
O4 - HKCU\..\Run: [BitTorrent DNA] "C:\Program Files\DNA\btdna.exe"
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm
O8 - Extra context menu item: Easy-WebPrint Add To Print List - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint High Speed Print - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Preview - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Preview.html
O8 - Extra context menu item: Easy-WebPrint Print - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Print.html
O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycmap.htm
O8 - Extra context menu item: Yahoo! &SMS - file:///C:\Program Files\Yahoo!\Common/ycsms.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: (no name) - {B205A35E-1FC4-4CE3-818B-899DBBB3388C} - C:\Program Files\Common Files\Microsoft Shared\Encarta Search Bar\ENCSBAR.DLL
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {01A88BB1-1174-41EC-ACCB-963509EAE56B} (SysProWmi Class) - http://support.dell.com/systemprofiler/SysPro.CAB
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/eng/partner/us/kavwebscan_unicode.cab
O16 - DPF: {11260943-421B-11D0-8EAC-0000C07D88CF} (iPIX ActiveX Control) - http://www.ipix.com/download/ipixx.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - http://go.divx.com/plugin/DivXBrowserPlugin.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/mic...ls/en/x86/client/muweb_site.cab?1181966514625
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - http://aolsvc.aol.com/onlinegames/bejeweled2/popcaploader_v10.cab
O21 - SSODL: Sndebser - {0592A1A7-46AF-48A6-9BA3-0F17D49E5707} - C:\WINDOWS\system32\tcpadpnp.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Intel(R) Quick Resume technology (ELService) - Intel Corporation - C:\Program Files\Intel\IntelDH\Intel(R) Quick Resume Technology Drivers\Elservice.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Trend Micro Central Control Component (PcCtlCom) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~1\PcCtlCom.exe
O23 - Service: Trend Micro Real-time Service (Tmntsrv) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~1\Tmntsrv.exe
O23 - Service: Trend Micro Personal Firewall (TmPfw) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~1\TmPfw.exe
O23 - Service: Trend Micro Proxy Service (tmproxy) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~1\tmproxy.exe
--
End of file - 9360 bytes
-------------------------------------------------------------------------------
KASPERSKY ONLINE SCANNER REPORT
Tuesday, May 20, 2008 9:06:35 PM
Operating System: Microsoft Windows XP Professional, Service Pack 2 (Build 2600)
Kaspersky Online Scanner version: 5.0.98.0
Kaspersky Anti-Virus database last update: 20/05/2008
Kaspersky Anti-Virus database records: 703457
-------------------------------------------------------------------------------
Scan Settings:
Scan using the following antivirus database: standard
Scan Archives: true
Scan Mail Bases: true
Scan Target - My Computer:
C:\
D:\
E:\
G:\
H:\
I:\
J:\
Scan Statistics:
Total number of scanned objects: 124605
Number of viruses found: 2
Number of infected objects: 6
Number of suspicious objects: 0
Duration of the scan process: 00:58:11
Infected Object Name / Virus Name / Last Action
C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\3ad391678a806ec4d691e83aaa393b6f_24adf822-76f7-4481-b30b-ff1b40f8687f Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\eHome\logs\ehRecvr.log Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Trend Micro\PC-cillin\log\pcc_S-1-5-21-2793611041-2877753586-1880569462-1006.log Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Trend Micro\PC-cillin\log\pcc_S-1-5-21-2793611041-2877753586-1880569462-1006u.log Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Trend Micro\PC-cillin\log\pcc_S-1-5-21-2793611041-2877753586-1880569462-500.log Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Trend Micro\PC-cillin\log\TmPfw_S-1-5-21-2793611041-2877753586-1880569462-500.log Object is locked skipped
C:\Documents and Settings\LocalService\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\Nick\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\jvmimpro.jar-51fad18-265a46c2.zip/vmain.class Infected: Exploit.Java.Gimsh.a skipped
C:\Documents and Settings\Nick\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\jvmimpro.jar-51fad18-265a46c2.zip ZIP: infected - 1 skipped
C:\Documents and Settings\Nick\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\jvmimpro.jar-5efd1945-63a8d871.zip/vmain.class Infected: Exploit.Java.Gimsh.b skipped
C:\Documents and Settings\Nick\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\jvmimpro.jar-5efd1945-63a8d871.zip ZIP: infected - 1 skipped
C:\Documents and Settings\Nick\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\jvmimpro.jar-6d3811e3-45aeeee1.zip/vmain.class Infected: Exploit.Java.Gimsh.b skipped
C:\Documents and Settings\Nick\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\jvmimpro.jar-6d3811e3-45aeeee1.zip ZIP: infected - 1 skipped
C:\Documents and Settings\Nick\Application Data\Sun\Java\Deployment\log\plugin150_06.trace Object is locked skipped
C:\Documents and Settings\Nick\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\Nick\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\Nick\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\Nick\Local Settings\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\Nick\Local Settings\Temp\hsperfdata_Nick\2968 Object is locked skipped
C:\Documents and Settings\Nick\Local Settings\Temp\~DF9D54.tmp Object is locked skipped
C:\Documents and Settings\Nick\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\Nick\Local Settings\Temporary Internet Files\Content.IE5\MJ9V4SGH\UserStatusChange[30].html Object is locked skipped
C:\Documents and Settings\Nick\Local Settings\Temporary Internet Files\Content.IE5\MJ9V4SGH\UserStatusChange[32].html Object is locked skipped
C:\Documents and Settings\Nick\ntuser.dat Object is locked skipped
C:\Documents and Settings\Nick\ntuser.dat.LOG Object is locked skipped
C:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped
C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP491\change.log Object is locked skipped
C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped
C:\WINDOWS\ModemLog_Conexant D850 56K V.9x DFVc Modem.txt Object is locked skipped
C:\WINDOWS\Registration\{02D4B3F1-FD88-11D1-960D-00805FC79235}.{32B03CF4-053F-4A97-8E21-FBD1EC840768}.crmlog Object is locked skipped
C:\WINDOWS\SchedLgU.Txt Object is locked skipped
C:\WINDOWS\SoftwareDistribution\EventCache\{99A991BC-643A-43D7-9750-B2B9AF68A15C}.bin Object is locked skipped
C:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked skipped
C:\WINDOWS\Sti_Trace.log Object is locked skipped
C:\WINDOWS\system32\audipsub32.dll Object is locked skipped
C:\WINDOWS\system32\CatRoot2\edb.log Object is locked skipped
C:\WINDOWS\system32\CatRoot2\tmp.edb Object is locked skipped
C:\WINDOWS\system32\cmpedpop.dll Object is locked skipped
C:\WINDOWS\system32\config\ACEEvent.evt Object is locked skipped
C:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\DEFAULT Object is locked skipped
C:\WINDOWS\system32\config\default.LOG Object is locked skipped
C:\WINDOWS\system32\config\IntelDH.evt Object is locked skipped
C:\WINDOWS\system32\config\Media Ce.evt Object is locked skipped
C:\WINDOWS\system32\config\SAM Object is locked skipped
C:\WINDOWS\system32\config\SAM.LOG Object is locked skipped
C:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\SECURITY Object is locked skipped
C:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped
C:\WINDOWS\system32\config\SOFTWARE Object is locked skipped
C:\WINDOWS\system32\config\software.LOG Object is locked skipped
C:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\SYSTEM Object is locked skipped
C:\WINDOWS\system32\config\system.LOG Object is locked skipped
C:\WINDOWS\system32\delivmag\01FE10C22BD6C28A33B6C2BA14341E040515E7C2.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\065731DD58DC2BAC208BD5C45E62F36ACE7F0B02.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\096C549D569C00A7BDF037562334751BF234F3EF.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\096EA7FCD56E786A85C8816F803DB011E4801EF8.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\0AA6268E5FDD071835B1C9741590480D60D95679.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\0CAA32C31941886EAED6B3D178A4EB3D5511EF91.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\0CAEBEB0386225DADD148C2E4AC2FB0415692899.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\0D4BF9B076FBE1D05978786F6D25407E510D1201.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\0F15278F195B50EAEC99BFAE4B090355CBC63DC2.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\11083761C3B027003329AD98BB4F0964C71C5FA4.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\12C5C781F596FAED9BC98EAE28638DB76FF6A111.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\144115B97978886201E566BD95384218A8A8E6A3.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\151230C36C049AB99C1FB0F1A0CD5DF7D7AD25C3.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\181B5C57B8DA8E0E5028CCD59ECDA8154CA68942.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\1893B764C8E7DCDEE828C0AC8CF5EFFDD180E570.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\192299536580FA9AB72871E8607B8A6317049094.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\1AE008F600A454E53A90C5DE576C43825B96645F.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\1B36B4614C2A62771842E0002C2346A1217471EF.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\1D520FB35311DEE42D4327C0ED70DF079C863D50.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\1F6211FF4CDD733CC90CFBC9F2E7D77EC158F86A.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\1F70323256EA86D8DE8586EF2FFC9283463697D9.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\2082051ED096F6291D601ACF9BE118BE19E7619B.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\2114DEE8548D7910C33C007394D3F101403FCD0B.ji0 Object is locked skipped
C:\WINDOWS\system32\delivmag\2114DEE8548D7910C33C007394D3F101403FCD0B.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\21A3A2B93A235E4520D477C8E3651635CCCFD32B.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\2200A87DAADA04AF16477D172EF6A2E41893D26F.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\22D5D6DF7C2EE992255A558C9BDB802986DD5213.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\27720E220F5682112F3444B7873BF425160D86D8.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\29DD79C737E4C7D2B80273FC9CDB5097B578CA86.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\2A87D3DF3F00B2B0DF09D0514D398C1BECC3E13B.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\2AEA1710F67362EDA9962B128188231129C3892F.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\2B62E3B75FE453E90A63310DDC7C4772C33294E2.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\2DCD3B8AA7F200975DA9F73D43F2767B8A249CB8.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\303427523269216873738EDD9306A0E0570349D8.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\31B2E53E9E0579A7D3473E77D8987E2C6A7A5698.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\34C48A95965D1DA36E6A193B245926CF7AF4FBFD.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\34CA0E5B95505F9EEDC7090E940671DF5905F053.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\3A663C935625F8172BC5543F7536B00EF9C46083.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\3EAA4474D9AB83C0BCC8EC239C2FE0300B07C5A1.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\423FD806D447BB8611EA14A455AFB1242D62B46C.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\424C5A930F6C0E819772FE462A4224A21B01409D.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\450403B37E1544C49227643E85CC878AE95C75B4.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\456F55C42E0E2801E962A806C71E24919CFE12B8.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\45E479069C026A38EAB60A73EE9B66D057A938D7.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\4A011BA28A86A527D6DB896C868B45AA90C48509.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\4A708CB225DD87492B1D248A79B246D113EE1554.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\4B71256B57F49C9EC2DB3FE3333B3F55A7193014.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\4ED508DFCA50AFFA159BD7511C9C5FBE4A05C602.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\510BD395FC741D6EC87B733304D6A1027C06B6FE.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\52772FF2849B356D72FF1F1353F6899CBE8AFC2C.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\542AE5EB578A782E47E0B24341DBB43AB2FAFCEF.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\54CB2943D16E930B64EC3B179DFEC329115875D3.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\57653F4BA37A54070261FECE0F91BDF6725B7A8D.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\586911B661FDDB1F8BD59C87BDE12D46B9553691.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\591E40D52ADC327EB0CE7F39EC1F2835A86A599F.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\5B97D1097F8429C3C91B1450338E22B3224ACDCD.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\5C54D7E603D3F6855AE90FCF3AE61DDEBD8ACD7C.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\6059E4B7B817C805A156F0476F8E1536CAE965BA.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\64C9BACBC1D99AA502B1420C93C839E2539BC62E.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\650B6E940BA6943EB1E79B20433B9D386F4BC031.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\65A177959E81FE72B7C00CD3F44F94AD48F24E33.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\67A2A033E5A962ECE62D344087F79624052416DD.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\695AE66F191F861CEFE87FF40BF5B60B6AE00BB9.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\6A4FE901E42EA636C90A60D044A9BCDE5FF27FD0.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\6AD32A07033533992C6062CA9D6CA38FB1E083AA.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\6C076FA1A80486E8E3BDBA0A28D328F7A766D29B.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\6D67E7217B31A2E4F6A8B919BE20C3764293E17D.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\6FAAE8FBEDEEB43A69B67BB9396CCE3F0E412A27.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\7008E5DF7225BFAA2DB4B19AF97B10A7719C9F90.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\70137589403BAEC5A821C3DE08957052B07D35C2.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\705A6707D52A4C56D37642E36E2084E07EBB6C43.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\737CDC31A55FA2369A71371297D9E6BAB8D322D3.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\75EDF6807BAA68417B7421A4026C5DA57A4A8986.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\767ECC4F737FCC994270D192E9BA417B835FAA0B.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\7FBA110A28A02C98F951A209E0AB92D4D91BB20E.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\83720187A51F0D458249B4DBD9EB9BD59394AE0A.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\86BBDDA07F3EBAA592CCA2F0BC1D06BE678F62CE.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\872ADB2444BE10C80726FA95D9351DFE76F2061E.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\879D236494160292AF6D10E5FACDAC83234B5398.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\87EF674DA02E25EAA212B6282C25348685E05C11.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\886B462A1576939ECB2AF63E7E3A72E36737C6C7.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\8C699678C3892B1912857B7D969C72C51CBEA881.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\90E4E2F8A93A12AC0661275756944965C66A59EF.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\911E2F879E3B06CFBAFA7105B85255F30A82C567.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\9D1E3081EDB0A7D149F16ECA897E020BF95F44BF.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\9E7E1A962FFDB672E6C15CD6CD473277F69ECF33.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\A1352A3CA6C618226B2693AACAEF7CB9A0E2E3AA.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\A235461726A4D7F60F395764A633E4686C3139CA.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\A30B68FBD5E3A574DE2D4607367222E6D07877D8.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\AA1D7FF1EB8D733658DA8E37E1AC138161CFB3F5.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\B32A071CE8EE4C6B13D67B99AE60392E2B72DA79.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\B557BAFF60B164F687A5284162472FCD99AFB13A.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\B574C23FA527261BF32FCBE49249B238ED913EC5.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\B7528155BE48A49FCDA0B4360496C55961BA8251.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\BBDEEBCB6957AE59D8AD14A30F4597B4FD9A7783.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\BC6FCCD7452C1B00C51988418D1993940B452E35.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\C0A605DE5916C4E65A4F210A8ED43E4232C9F3A5.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\C130FCFB0B471987E5BDD87421C0F80C3D99B328.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\C19DEACEBB1C7502D9FBC0E672F93A3034460083.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\C3ED3B7EC0B466BC98FD2E35022D126FEB048EE4.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\C40FD7338CF5DCE2553569B1DB32D2654A99CB01.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\C4652CE7F82A8EC7A865C9A12E218EC1785DAEF6.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\CA69870CBD5C52EC2A2C1B569C89457A88476C7B.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\CB2A268BD957C359CD493BA6A28090F78A7CDE14.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\CC147177C691D93EFC3D0C4E42701734F91B2972.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\CCEE55CA51C22DF2B3FA764AF55DE5B8DBE5D49C.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\D2DF67BA9D80353AC71D254F8E1FF51ED9FCF0B0.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\D3CA86882FCEE36209D9FA9293D03C58CD013339.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\D6D0F915A0FB13BEF708A56267714BD965850145.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\D73B8BD2028D19CBFECE749277BEDAC38019CAB9.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\D7BFF75160FB9239974E2B61E4EC97624DD6C03C.ji0 Object is locked skipped
C:\WINDOWS\system32\delivmag\D7BFF75160FB9239974E2B61E4EC97624DD6C03C.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\D82B851EBE5577272516917E51E25550B3654436.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\D915DB0FB23D000D31429E2AB4CA2CFFF79A3A17.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\DBA3D4FB6C1E7EA1FBE82C247791714ACEC55929.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\DD8E57FB74EA31E4098438083E092C31D75B4CAF.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\DEFFA7B4050B13E53C4EB3BF538E9061DCE3305A.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\DF68FF1A7034C0533C6CDC6E204DD1E8199C8532.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\DF9ABF693CC926F88ED694A6D281B18DA27368B2.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\E04BFC635541E9EA9D12DEA214ECC091128BD359.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\E9C2C04AC9BD94432FA2B61CC95D5639BD3B2A20.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\EB095C7C1924E7506D93B960FB5025C2D892BBFB.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\EBC1CAFDCB76884286463367148E3C8C315CF615.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\EC9F6E129DB93D88C7299FA17F422CD4E69DBD6F.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\EE4AB068CC0B0163288260AB1FC7B84706681D7C.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\EF05D3960A68A13783DC679C24624313CF1084BC.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\EFED8A6E6BE56CADD1E0A5C5B27CBDBA60B253CA.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\F1820683429A764E93D851648E81ABECE0DB73AF.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\F5DE2FEBB6DA0433FA97A2A9E366EB58ADFBEF6B.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\F819FF87F84F6C0CF7CACB19B91B884B721DDA49.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\FE11C3ADC713B9F381677B66D8C670E80C44A681.jib Object is locked skipped
C:\WINDOWS\system32\delivmag\ihadqzlf\data.html Object is locked skipped
C:\WINDOWS\system32\delivmag\ihadqzlf\iosubsys\Account_Icon.gif Object is locked skipped
C:\WINDOWS\system32\delivmag\ihadqzlf\iosubsys\blogPosted_icon.gif Object is locked skipped
C:\WINDOWS\system32\delivmag\ihadqzlf\iosubsys\BrowseRequest_icon.gif Object is locked skipped
C:\WINDOWS\system32\delivmag\ihadqzlf\iosubsys\bubble.gif Object is locked skipped
C:\WINDOWS\system32\delivmag\ihadqzlf\iosubsys\clickForInfo.gif Object is locked skipped
C:\WINDOWS\system32\delivmag\ihadqzlf\iosubsys\clock_icon.gif Object is locked skipped
C:\WINDOWS\system32\delivmag\ihadqzlf\iosubsys\groupPosted_icon.gif Object is locked skipped
C:\WINDOWS\system32\delivmag\ihadqzlf\iosubsys\images_icon.gif Object is locked skipped
C:\WINDOWS\system32\delivmag\ihadqzlf\iosubsys\Invitations_icon.gif Object is locked skipped
C:\WINDOWS\system32\delivmag\ihadqzlf\iosubsys\loginRed.gif Object is locked skipped
C:\WINDOWS\system32\delivmag\ihadqzlf\iosubsys\Logo.gif Object is locked skipped
C:\WINDOWS\system32\delivmag\ihadqzlf\iosubsys\Logo_Facebook.gif Object is locked skipped
C:\WINDOWS\system32\delivmag\ihadqzlf\iosubsys\messageReceived_icon.gif Object is locked skipped
C:\WINDOWS\system32\delivmag\ihadqzlf\iosubsys\messageSent_icon.gif Object is locked skipped
C:\WINDOWS\system32\delivmag\ihadqzlf\iosubsys\Others_visited_icon.gif Object is locked skipped
C:\WINDOWS\system32\delivmag\ihadqzlf\iosubsys\profile.gif Object is locked skipped
C:\WINDOWS\system32\delivmag\ihadqzlf\iosubsys\spacer20x20.gif Object is locked skipped
C:\WINDOWS\system32\delivmag\ihadqzlf\iosubsys\view.gif Object is locked skipped
C:\WINDOWS\system32\delivmag\maduhdis.ocx Object is locked skipped
C:\WINDOWS\system32\getukmin.dll Object is locked skipped
C:\WINDOWS\system32\h323log.txt Object is locked skipped
C:\WINDOWS\system32\sapikimg.dll Object is locked skipped
C:\WINDOWS\system32\sapotdis.dll Object is locked skipped
C:\WINDOWS\system32\tcpadpnp.dll Object is locked skipped
C:\WINDOWS\system32\vocundde.exe Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP Object is locked skipped
C:\WINDOWS\Temp\Perflib_Perfdata_324.dat Object is locked skipped
C:\WINDOWS\wiadebug.log Object is locked skipped
C:\WINDOWS\wiaservc.log Object is locked skipped
C:\WINDOWS\WindowsUpdate.log Object is locked skipped
Scan process completed.
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 10:10:45 PM, on 5/20/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\stsystra.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe
C:\Program Files\Trend Micro\Internet Security 14\pccguide.exe
C:\WINDOWS\System32\DLA\DLACTRLW.EXE
C:\Program Files\Canon\MyPrinter\BJMyPrt.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Trend Micro\Internet Security 14\TMAS_OE\TMAS_OEMon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\DNA\btdna.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\PcCtlCom.exe
C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
C:\WINDOWS\ehome\RMSvc.exe
C:\WINDOWS\system32\svchost.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\Tmntsrv.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\TmPfw.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\tmproxy.exe
C:\Program Files\Intel\IntelDH\Intel(R) Quick Resume Technology Drivers\Elservice.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Nick\Desktop\HiJackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com/ig/dell?hl=en&client=dell-usuk-rel&channel=us&ibd=6061228
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://g.msn.com/0SEENUS/SAOS13
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bluebeards.net/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.html
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Page_URL = www.google.com/ig/dell?hl=en&client=dell-usuk-rel&channel=us&ibd=6061228
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll (file missing)
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\System32\DLA\DLASHX_W.DLL
O2 - BHO: Canon Easy Web Print Helper - {68F9551E-0411-48E4-9AAF-4BC42A6A46BE} - C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: CBrowserHelperObject Object - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\BAE\BAE.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O4 - HKLM\..\Run: [SigmatelSysTrayApp] stsystra.exe
O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe
O4 - HKLM\..\Run: [pccguide.exe] "C:\Program Files\Trend Micro\Internet Security 14\pccguide.exe"
O4 - HKLM\..\Run: [DLA] C:\WINDOWS\System32\DLA\DLACTRLW.EXE
O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon
O4 - HKLM\..\Run: [wodiw] c:\program files\wodiwkcalb\csrss.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\RunOnce: [SpybotDeletingA5892] command /c del "C:\WINDOWS\system32\mstrc32.dll_old"
O4 - HKCU\..\Run: [OE_OEM] "C:\Program Files\Trend Micro\Internet Security 14\TMAS_OE\TMAS_OEMon.exe"
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [wodiw] c:\program files\wodiwkcalb\csrss.exe
O4 - HKCU\..\Run: [BitTorrent DNA] "C:\Program Files\DNA\btdna.exe"
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm
O8 - Extra context menu item: Easy-WebPrint Add To Print List - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint High Speed Print - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Preview - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Preview.html
O8 - Extra context menu item: Easy-WebPrint Print - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Print.html
O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycmap.htm
O8 - Extra context menu item: Yahoo! &SMS - file:///C:\Program Files\Yahoo!\Common/ycsms.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: (no name) - {B205A35E-1FC4-4CE3-818B-899DBBB3388C} - C:\Program Files\Common Files\Microsoft Shared\Encarta Search Bar\ENCSBAR.DLL
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {01A88BB1-1174-41EC-ACCB-963509EAE56B} (SysProWmi Class) - http://support.dell.com/systemprofiler/SysPro.CAB
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/eng/partner/us/kavwebscan_unicode.cab
O16 - DPF: {11260943-421B-11D0-8EAC-0000C07D88CF} (iPIX ActiveX Control) - http://www.ipix.com/download/ipixx.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - http://go.divx.com/plugin/DivXBrowserPlugin.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/mic...ls/en/x86/client/muweb_site.cab?1181966514625
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - http://aolsvc.aol.com/onlinegames/bejeweled2/popcaploader_v10.cab
O21 - SSODL: Sndebser - {0592A1A7-46AF-48A6-9BA3-0F17D49E5707} - C:\WINDOWS\system32\tcpadpnp.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Intel(R) Quick Resume technology (ELService) - Intel Corporation - C:\Program Files\Intel\IntelDH\Intel(R) Quick Resume Technology Drivers\Elservice.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Trend Micro Central Control Component (PcCtlCom) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~1\PcCtlCom.exe
O23 - Service: Trend Micro Real-time Service (Tmntsrv) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~1\Tmntsrv.exe
O23 - Service: Trend Micro Personal Firewall (TmPfw) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~1\TmPfw.exe
O23 - Service: Trend Micro Proxy Service (tmproxy) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~1\tmproxy.exe
--
End of file - 9360 bytes