Kaspersky Log:
Friday, 08 June, 2007 1:27:23 AM
Operating System: Microsoft Windows XP Professional, Service Pack 2 (Build 2600)
Kaspersky Online Scanner version: 5.0.83.0
Kaspersky Anti-Virus database last update: 7/06/2007
Kaspersky Anti-Virus database records: 341373
Scan Settings
Scan using the following antivirus database extended
Scan Archives true
Scan Mail Bases true
Scan Target My Computer
C:\
D:\
E:\
F:\
Scan Statistics
Total number of scanned objects 100338
Number of viruses found 10
Number of infected objects 54 / 0
Number of suspicious objects 0
Duration of the scan process 02:46:44
Infected Object Name Virus Name Last Action
C:\Documents and Settings\All Users\Application Data\Network Associates\BOPDATA\_Date-20070607_Time-185811968_EnterceptExceptions.dat Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Network Associates\BOPDATA\_Date-20070607_Time-185811968_EnterceptRules.dat Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Network Associates\Common Framework\Db\Agent_DBE-NB0713160.log Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Network Associates\Common Framework\Db\PrdMgr_DBE-NB0713160.log Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Network Associates\VirusScan\AccessProtectionLog.txt Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Network Associates\VirusScan\BufferOverflowProtectionLog.txt Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Network Associates\VirusScan\OnAccessScanLog.txt Object is locked skipped
C:\Documents and Settings\Default User\Desktop\Setup\Free-SpyHunter-Scanner-Install.exe/PRE/data/{65145FC9-DEA0-4738-A4FE-376C2BA51806}/1/EnigmaUpdater.dll Infected: not-a-virus:FraudTool.Win32.SpyHunter.b skipped
C:\Documents and Settings\Default User\Desktop\Setup\Free-SpyHunter-Scanner-Install.exe/PRE/data/{65145FC9-DEA0-4738-A4FE-376C2BA51806}/2/esgi_md5h.dll Infected: not-a-virus:FraudTool.Win32.SpyHunter.b skipped
C:\Documents and Settings\Default User\Desktop\Setup\Free-SpyHunter-Scanner-Install.exe/PRE/data/{65145FC9-DEA0-4738-A4FE-376C2BA51806}/7/SpyHunter.exe Infected: not-a-virus:FraudTool.Win32.SpyHunter.b skipped
C:\Documents and Settings\Default User\Desktop\Setup\Free-SpyHunter-Scanner-Install.exe/PRE/data/{65145FC9-DEA0-4738-A4FE-376C2BA51806}/17/Esgiutl1.dll Infected: not-a-virus:FraudTool.Win32.SpyHunter.b skipped
C:\Documents and Settings\Default User\Desktop\Setup\Free-SpyHunter-Scanner-Install.exe/PRE/data/{65145FC9-DEA0-4738-A4FE-376C2BA51806}/18/SHSched.dll Infected: not-a-virus:FraudTool.Win32.SpyHunter.b skipped
C:\Documents and Settings\Default User\Desktop\Setup\Free-SpyHunter-Scanner-Install.exe/PRE Infected: not-a-virus:FraudTool.Win32.SpyHunter.b skipped
C:\Documents and Settings\Default User\Desktop\Setup\Free-SpyHunter-Scanner-Install.exe Ghost Installer: infected - 6 skipped
C:\Documents and Settings\Default User\Desktop\Setup\Free-SpyHunter-Scanner-Install.exe UPX: infected - 6 skipped
C:\Documents and Settings\Default User\Desktop\Setup\mIRC v6.2 [Keygen Included]\mIRC 6.2 [Installer].exe/stream/data0006 Infected: not-a-virus:Client-IRC.Win32.mIRC.62 skipped
C:\Documents and Settings\Default User\Desktop\Setup\mIRC v6.2 [Keygen Included]\mIRC 6.2 [Installer].exe/stream Infected: not-a-virus:Client-IRC.Win32.mIRC.62 skipped
C:\Documents and Settings\Default User\Desktop\Setup\mIRC v6.2 [Keygen Included]\mIRC 6.2 [Installer].exe NSIS: infected - 2 skipped
C:\Documents and Settings\Default User\Desktop\Setup\SmitfraudFix\Reboot.exe Infected: not-a-virus:RiskTool.Win32.Reboot.f skipped
C:\Documents and Settings\Default User\Desktop\Setup\SmitfraudFix.exe/data.rar/SmitfraudFix/Reboot.exe Infected: not-a-virus:RiskTool.Win32.Reboot.f skipped
C:\Documents and Settings\Default User\Desktop\Setup\SmitfraudFix.exe/data.rar Infected: not-a-virus:RiskTool.Win32.Reboot.f skipped
C:\Documents and Settings\Default User\Desktop\Setup\SmitfraudFix.exe RarSFX: infected - 2 skipped
C:\Documents and Settings\LocalService\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\p0713160\Application Data\Azureus\ipfilter.cache Object is locked skipped
C:\Documents and Settings\p0713160\Application Data\Azureus\tmp\AZU40320.tmp Object is locked skipped
C:\Documents and Settings\p0713160\Application Data\Azureus\tmp\AZU40321.tmp Object is locked skipped
C:\Documents and Settings\p0713160\Application Data\Azureus\tmp\AZU40322.tmp Object is locked skipped
C:\Documents and Settings\p0713160\Application Data\Azureus\tmp\AZU40323.tmp Object is locked skipped
C:\Documents and Settings\p0713160\Application Data\Azureus\tmp\AZU40324.tmp Object is locked skipped
C:\Documents and Settings\p0713160\Application Data\Azureus\tmp\AZU40325.tmp Object is locked skipped
C:\Documents and Settings\p0713160\Application Data\Lavasoft\Ad-Aware\Logs\AWEVLOG.txt Object is locked skipped
C:\Documents and Settings\p0713160\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\p0713160\Desktop\Setup\Free-SpyHunter-Scanner-Install.exe/PRE/data/{65145FC9-DEA0-4738-A4FE-376C2BA51806}/1/EnigmaUpdater.dll Infected: not-a-virus:FraudTool.Win32.SpyHunter.b skipped
C:\Documents and Settings\p0713160\Desktop\Setup\Free-SpyHunter-Scanner-Install.exe/PRE/data/{65145FC9-DEA0-4738-A4FE-376C2BA51806}/2/esgi_md5h.dll Infected: not-a-virus:FraudTool.Win32.SpyHunter.b skipped
C:\Documents and Settings\p0713160\Desktop\Setup\Free-SpyHunter-Scanner-Install.exe/PRE/data/{65145FC9-DEA0-4738-A4FE-376C2BA51806}/7/SpyHunter.exe Infected: not-a-virus:FraudTool.Win32.SpyHunter.b skipped
C:\Documents and Settings\p0713160\Desktop\Setup\Free-SpyHunter-Scanner-Install.exe/PRE/data/{65145FC9-DEA0-4738-A4FE-376C2BA51806}/17/Esgiutl1.dll Infected: not-a-virus:FraudTool.Win32.SpyHunter.b skipped
C:\Documents and Settings\p0713160\Desktop\Setup\Free-SpyHunter-Scanner-Install.exe/PRE/data/{65145FC9-DEA0-4738-A4FE-376C2BA51806}/18/SHSched.dll Infected: not-a-virus:FraudTool.Win32.SpyHunter.b skipped
C:\Documents and Settings\p0713160\Desktop\Setup\Free-SpyHunter-Scanner-Install.exe/PRE Infected: not-a-virus:FraudTool.Win32.SpyHunter.b skipped
C:\Documents and Settings\p0713160\Desktop\Setup\Free-SpyHunter-Scanner-Install.exe Ghost Installer: infected - 6 skipped
C:\Documents and Settings\p0713160\Desktop\Setup\Free-SpyHunter-Scanner-Install.exe UPX: infected - 6 skipped
C:\Documents and Settings\p0713160\Desktop\Setup\mIRC v6.2 [Keygen Included]\mIRC 6.2 [Installer].exe/stream/data0006 Infected: not-a-virus:Client-IRC.Win32.mIRC.62 skipped
C:\Documents and Settings\p0713160\Desktop\Setup\mIRC v6.2 [Keygen Included]\mIRC 6.2 [Installer].exe/stream Infected: not-a-virus:Client-IRC.Win32.mIRC.62 skipped
C:\Documents and Settings\p0713160\Desktop\Setup\mIRC v6.2 [Keygen Included]\mIRC 6.2 [Installer].exe NSIS: infected - 2 skipped
C:\Documents and Settings\p0713160\Desktop\SmitfraudFix\Reboot.exe Infected: not-a-virus:RiskTool.Win32.Reboot.f skipped
C:\Documents and Settings\p0713160\Desktop\SmitfraudFix.exe/data.rar/SmitfraudFix/Reboot.exe Infected: not-a-virus:RiskTool.Win32.Reboot.f skipped
C:\Documents and Settings\p0713160\Desktop\SmitfraudFix.exe/data.rar Infected: not-a-virus:RiskTool.Win32.Reboot.f skipped
C:\Documents and Settings\p0713160\Desktop\SmitfraudFix.exe RarSFX: infected - 2 skipped
C:\Documents and Settings\p0713160\Local Settings\Application Data\ApplicationHistory\ePower_DMC.exe.3ca0acde.ini.inuse Object is locked skipped
C:\Documents and Settings\p0713160\Local Settings\Application Data\ApplicationHistory\ePresentation.exe.e70224e9.ini.inuse Object is locked skipped
C:\Documents and Settings\p0713160\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\p0713160\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\p0713160\Local Settings\Application Data\Mozilla\Firefox\Profiles\acrrpwvo.default\Cache\5FD15371d01 Object is locked skipped
C:\Documents and Settings\p0713160\Local Settings\Application Data\Mozilla\Firefox\Profiles\acrrpwvo.default\Cache\_CACHE_001_ Object is locked skipped
C:\Documents and Settings\p0713160\Local Settings\Application Data\Mozilla\Firefox\Profiles\acrrpwvo.default\Cache\_CACHE_002_ Object is locked skipped
C:\Documents and Settings\p0713160\Local Settings\Application Data\Mozilla\Firefox\Profiles\acrrpwvo.default\Cache\_CACHE_003_ Object is locked skipped
C:\Documents and Settings\p0713160\Local Settings\Application Data\Mozilla\Firefox\Profiles\acrrpwvo.default\Cache\_CACHE_MAP_ Object is locked skipped
C:\Documents and Settings\p0713160\Local Settings\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\p0713160\Local Settings\History\History.IE5\MSHist012007060720070608\index.dat Object is locked skipped
C:\Documents and Settings\p0713160\Local Settings\Temp\hsperfdata_p0713160\6048 Object is locked skipped
C:\Documents and Settings\p0713160\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\p0713160\ntuser.dat Object is locked skipped
C:\Documents and Settings\p0713160\ntuser.dat.LOG Object is locked skipped
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\logs\starwind.2007-06-07.18-57-58.log Object is locked skipped
C:\Program Files\mIRC\mirc.exe Infected: not-a-virus:Client-IRC.Win32.mIRC.62 skipped
C:\System Volume Information\_restore{0CCD9644-D39E-4420-B10D-C01657D7298C}\RP72\A0054081.exe/data.rar/keygen.exe Infected: Trojan-Downloader.Win32.LoadAdv.gen skipped
C:\System Volume Information\_restore{0CCD9644-D39E-4420-B10D-C01657D7298C}\RP72\A0054081.exe/data.rar/crack.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.jp skipped
C:\System Volume Information\_restore{0CCD9644-D39E-4420-B10D-C01657D7298C}\RP72\A0054081.exe/data.rar/serial.exe Infected: Trojan.Win32.Dialer.qn skipped
C:\System Volume Information\_restore{0CCD9644-D39E-4420-B10D-C01657D7298C}\RP72\A0054081.exe/data.rar Infected: Trojan.Win32.Dialer.qn skipped
C:\System Volume Information\_restore{0CCD9644-D39E-4420-B10D-C01657D7298C}\RP72\A0054081.exe RarSFX: infected - 4 skipped
C:\System Volume Information\_restore{0CCD9644-D39E-4420-B10D-C01657D7298C}\RP72\A0054152.exe/data.rar/keygen.exe Infected: Trojan-Downloader.Win32.LoadAdv.gen skipped
C:\System Volume Information\_restore{0CCD9644-D39E-4420-B10D-C01657D7298C}\RP72\A0054152.exe/data.rar/crack.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.jp skipped
C:\System Volume Information\_restore{0CCD9644-D39E-4420-B10D-C01657D7298C}\RP72\A0054152.exe/data.rar/serial.exe Infected: Trojan.Win32.Dialer.qn skipped
C:\System Volume Information\_restore{0CCD9644-D39E-4420-B10D-C01657D7298C}\RP72\A0054152.exe/data.rar Infected: Trojan.Win32.Dialer.qn skipped
C:\System Volume Information\_restore{0CCD9644-D39E-4420-B10D-C01657D7298C}\RP72\A0054152.exe RarSFX: infected - 4 skipped
C:\System Volume Information\_restore{0CCD9644-D39E-4420-B10D-C01657D7298C}\RP72\A0054207.dll Infected: Trojan.Win32.BHO.bd skipped
C:\System Volume Information\_restore{0CCD9644-D39E-4420-B10D-C01657D7298C}\RP72\A0054209.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.jp skipped
C:\System Volume Information\_restore{0CCD9644-D39E-4420-B10D-C01657D7298C}\RP72\A0055373.dll Infected: not-a-virus:FraudTool.Win32.SpyHunter.b skipped
C:\System Volume Information\_restore{0CCD9644-D39E-4420-B10D-C01657D7298C}\RP72\A0055374.dll Infected: not-a-virus:FraudTool.Win32.SpyHunter.b skipped
C:\System Volume Information\_restore{0CCD9644-D39E-4420-B10D-C01657D7298C}\RP72\A0055378.dll Infected: not-a-virus:FraudTool.Win32.SpyHunter.b skipped
C:\System Volume Information\_restore{0CCD9644-D39E-4420-B10D-C01657D7298C}\RP72\A0055379.dll Infected: not-a-virus:FraudTool.Win32.SpyHunter.b skipped
C:\System Volume Information\_restore{0CCD9644-D39E-4420-B10D-C01657D7298C}\RP72\A0055382.dll Infected: Trojan-Clicker.Win32.Small.mw skipped
C:\System Volume Information\_restore{0CCD9644-D39E-4420-B10D-C01657D7298C}\RP72\A0055383.exe Infected: Trojan.Win32.Agent.anr skipped
C:\System Volume Information\_restore{0CCD9644-D39E-4420-B10D-C01657D7298C}\RP74\A0055627.exe/data.rar/SmitfraudFix/Reboot.exe Infected: not-a-virus:RiskTool.Win32.Reboot.f skipped
C:\System Volume Information\_restore{0CCD9644-D39E-4420-B10D-C01657D7298C}\RP74\A0055627.exe/data.rar Infected: not-a-virus:RiskTool.Win32.Reboot.f skipped
C:\System Volume Information\_restore{0CCD9644-D39E-4420-B10D-C01657D7298C}\RP74\A0055627.exe RarSFX: infected - 2 skipped
C:\System Volume Information\_restore{0CCD9644-D39E-4420-B10D-C01657D7298C}\RP74\A0055634.exe Infected: not-a-virus:RiskTool.Win32.Reboot.f skipped
C:\System Volume Information\_restore{0CCD9644-D39E-4420-B10D-C01657D7298C}\RP74\change.log Object is locked skipped
C:\WINDOWS\CSC\00000001 Object is locked skipped
C:\WINDOWS\Debug\Netlogon.log Object is locked skipped
C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped
C:\WINDOWS\Prefetch\layout.ini Object is locked skipped
C:\WINDOWS\SchedLgU.Txt Object is locked skipped
C:\WINDOWS\ServicePackFiles\mmwnd.exe Infected: Trojan-Proxy.Win32.Delf.an skipped
C:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked skipped
C:\WINDOWS\Sti_Trace.log Object is locked skipped
C:\WINDOWS\system32\CatRoot2\edb.log Object is locked skipped
C:\WINDOWS\system32\CatRoot2\tmp.edb Object is locked skipped
C:\WINDOWS\system32\CCM\Logs\CcmExec.log Object is locked skipped
C:\WINDOWS\system32\CCM\Logs\CertificateMaintenance.log Object is locked skipped
C:\WINDOWS\system32\CCM\Logs\ClientIDManagerStartup.log Object is locked skipped
C:\WINDOWS\system32\CCM\Logs\LocationServices.log Object is locked skipped
C:\WINDOWS\system32\CCM\Logs\mtrmgr.log Object is locked skipped
C:\WINDOWS\system32\CCM\Logs\PatchInstall.log Object is locked skipped
C:\WINDOWS\system32\CCM\Logs\PatchUIMonitor.log Object is locked skipped
C:\WINDOWS\system32\CCM\Logs\PolicyAgent.log Object is locked skipped
C:\WINDOWS\system32\CCM\Logs\PolicyAgentProvider.log Object is locked skipped
C:\WINDOWS\system32\CCM\Logs\PolicyEvaluator.log Object is locked skipped
C:\WINDOWS\system32\CCM\Logs\Scheduler.log Object is locked skipped
C:\WINDOWS\system32\CCM\Logs\SrcUpdateMgr.log Object is locked skipped
C:\WINDOWS\system32\CCM\Logs\StatusAgent.log Object is locked skipped
C:\WINDOWS\system32\CCM\ServiceData\Messaging\EndpointQueues\CertificateMaintenanceEndpoint\0000000I.msg Object is locked skipped
C:\WINDOWS\system32\CCM\ServiceData\Messaging\EndpointQueues\CertificateMaintenanceEndpoint\0000000I.que Object is locked skipped
C:\WINDOWS\system32\CCM\ServiceData\Messaging\EndpointQueues\CTMDTSReply\00000009.msg Object is locked skipped
C:\WINDOWS\system32\CCM\ServiceData\Messaging\EndpointQueues\CTMDTSReply\00000009.que Object is locked skipped
C:\WINDOWS\system32\CCM\ServiceData\Messaging\EndpointQueues\execmgr\00000001.msg Object is locked skipped
C:\WINDOWS\system32\CCM\ServiceData\Messaging\EndpointQueues\execmgr\00000001.que Object is locked skipped
C:\WINDOWS\system32\CCM\ServiceData\Messaging\EndpointQueues\InventoryAgent\00000001.msg Object is locked skipped
C:\WINDOWS\system32\CCM\ServiceData\Messaging\EndpointQueues\InventoryAgent\00000001.que Object is locked skipped
C:\WINDOWS\system32\CCM\ServiceData\Messaging\EndpointQueues\LS_ReplyLocations\00000005.msg Object is locked skipped
C:\WINDOWS\system32\CCM\ServiceData\Messaging\EndpointQueues\LS_ReplyLocations\00000005.que Object is locked skipped
C:\WINDOWS\system32\CCM\ServiceData\Messaging\EndpointQueues\LS_ScheduledCleanup\0000000I.msg Object is locked skipped
C:\WINDOWS\system32\CCM\ServiceData\Messaging\EndpointQueues\LS_ScheduledCleanup\0000000I.que Object is locked skipped
C:\WINDOWS\system32\CCM\ServiceData\Messaging\EndpointQueues\MtrMgr\00000001.msg Object is locked skipped
C:\WINDOWS\system32\CCM\ServiceData\Messaging\EndpointQueues\MtrMgr\00000001.que Object is locked skipped
C:\WINDOWS\system32\CCM\ServiceData\Messaging\EndpointQueues\PatchUIMonitor\00000001.msg Object is locked skipped
C:\WINDOWS\system32\CCM\ServiceData\Messaging\EndpointQueues\PatchUIMonitor\00000001.que Object is locked skipped
C:\WINDOWS\system32\CCM\ServiceData\Messaging\EndpointQueues\PolicyAgent_Cleanup\0000000B.msg Object is locked skipped
C:\WINDOWS\system32\CCM\ServiceData\Messaging\EndpointQueues\PolicyAgent_Cleanup\0000000B.que Object is locked skipped
C:\WINDOWS\system32\CCM\ServiceData\Messaging\EndpointQueues\PolicyAgent_PolicyDownload\00000001.msg Object is locked skipped
C:\WINDOWS\system32\CCM\ServiceData\Messaging\EndpointQueues\PolicyAgent_PolicyDownload\00000001.que Object is locked skipped
C:\WINDOWS\system32\CCM\ServiceData\Messaging\EndpointQueues\PolicyAgent_PolicyEvaluator\0000005P.msg Object is locked skipped
C:\WINDOWS\system32\CCM\ServiceData\Messaging\EndpointQueues\PolicyAgent_PolicyEvaluator\0000005P.que Object is locked skipped
C:\WINDOWS\system32\CCM\ServiceData\Messaging\EndpointQueues\PolicyAgent_ReplyAssignments\00000005.msg Object is locked skipped
C:\WINDOWS\system32\CCM\ServiceData\Messaging\EndpointQueues\PolicyAgent_ReplyAssignments\00000005.que Object is locked skipped
C:\WINDOWS\system32\CCM\ServiceData\Messaging\EndpointQueues\PolicyAgent_RequestAssignments\0000003L.msg Object is locked skipped
C:\WINDOWS\system32\CCM\ServiceData\Messaging\EndpointQueues\PolicyAgent_RequestAssignments\0000003L.que Object is locked skipped
C:\WINDOWS\system32\CCM\ServiceData\Messaging\EndpointQueues\PolicyAgent_ReRequestPolicy\00000001.msg Object is locked skipped
C:\WINDOWS\system32\CCM\ServiceData\Messaging\EndpointQueues\PolicyAgent_ReRequestPolicy\00000001.que Object is locked skipped
C:\WINDOWS\system32\CCM\ServiceData\Messaging\EndpointQueues\RemoteToolsAgent\00000001.msg Object is locked skipped
C:\WINDOWS\system32\CCM\ServiceData\Messaging\EndpointQueues\RemoteToolsAgent\00000001.que Object is locked skipped
C:\WINDOWS\system32\CCM\ServiceData\Messaging\EndpointQueues\SrcUpdateMgr\00000001.msg Object is locked skipped
C:\WINDOWS\system32\CCM\ServiceData\Messaging\EndpointQueues\SrcUpdateMgr\00000001.que Object is locked skipped
C:\WINDOWS\system32\CCM\ServiceData\Messaging\EndpointQueues\SWMTRReportGen\00000001.msg Object is locked skipped
C:\WINDOWS\system32\CCM\ServiceData\Messaging\EndpointQueues\SWMTRReportGen\00000001.que Object is locked skipped
C:\WINDOWS\system32\CCM\ServiceData\Messaging\EndpointQueues\UpdatesInstallMgr\00000001.msg Object is locked skipped
C:\WINDOWS\system32\CCM\ServiceData\Messaging\EndpointQueues\UpdatesInstallMgr\00000001.que Object is locked skipped
C:\WINDOWS\system32\CCM\ServiceData\Messaging\EndpointQueues\UploadProtocol\00000001.msg Object is locked skipped
C:\WINDOWS\system32\CCM\ServiceData\Messaging\EndpointQueues\UploadProtocol\00000001.que Object is locked skipped
C:\WINDOWS\system32\CCM\ServiceData\Messaging\OutgoingQueues\amp_[http]mp_locationmanager\0000000O.msg Object is locked skipped
C:\WINDOWS\system32\CCM\ServiceData\Messaging\OutgoingQueues\amp_[http]mp_locationmanager\0000000O.que Object is locked skipped
C:\WINDOWS\system32\CCM\ServiceData\Messaging\OutgoingQueues\mp_mp_ddrendpoint\00000001.msg Object is locked skipped
C:\WINDOWS\system32\CCM\ServiceData\Messaging\OutgoingQueues\mp_mp_ddrendpoint\00000001.que Object is locked skipped
C:\WINDOWS\system32\CCM\ServiceData\Messaging\OutgoingQueues\mp_mp_hinvendpoint\00000001.msg Object is locked skipped
C:\WINDOWS\system32\CCM\ServiceData\Messaging\OutgoingQueues\mp_mp_hinvendpoint\00000001.que Object is locked skipped
C:\WINDOWS\system32\CCM\ServiceData\Messaging\OutgoingQueues\mp_mp_sinvendpoint\00000001.msg Object is locked skipped
C:\WINDOWS\system32\CCM\ServiceData\Messaging\OutgoingQueues\mp_mp_sinvendpoint\00000001.que Object is locked skipped
C:\WINDOWS\system32\CCM\ServiceData\Messaging\OutgoingQueues\mp_statusreceiver\00000001.msg Object is locked skipped
C:\WINDOWS\system32\CCM\ServiceData\Messaging\OutgoingQueues\mp_statusreceiver\00000001.que Object is locked skipped
C:\WINDOWS\system32\CCM\ServiceData\Messaging\OutgoingQueues\mp_[http]mp_locationmanager\00000001.msg Object is locked skipped
C:\WINDOWS\system32\CCM\ServiceData\Messaging\OutgoingQueues\mp_[http]mp_locationmanager\00000001.que Object is locked skipped
C:\WINDOWS\system32\CCM\ServiceData\Messaging\OutgoingQueues\mp_[http]mp_policymanager\0000003A.msg Object is locked skipped
C:\WINDOWS\system32\CCM\ServiceData\Messaging\OutgoingQueues\mp_[http]mp_policymanager\0000003A.que Object is locked skipped
C:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\default Object is locked skipped
C:\WINDOWS\system32\config\default.LOG Object is locked skipped
C:\WINDOWS\system32\config\SAM Object is locked skipped
C:\WINDOWS\system32\config\SAM.LOG Object is locked skipped
C:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\SECURITY Object is locked skipped
C:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped
C:\WINDOWS\system32\config\software Object is locked skipped
C:\WINDOWS\system32\config\software.LOG Object is locked skipped
C:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\system Object is locked skipped
C:\WINDOWS\system32\config\system.LOG Object is locked skipped
C:\WINDOWS\system32\drivers\sptd.sys Object is locked skipped
C:\WINDOWS\system32\h323log.txt Object is locked skipped
C:\WINDOWS\system32\LogFiles\HTTPERR\httperr1.log Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP Object is locked skipped
C:\WINDOWS\Temp\$_2341233.TMP Object is locked skipped
C:\WINDOWS\Temp\$_2341234.TMP Object is locked skipped
C:\WINDOWS\Temp\Perflib_Perfdata_ab8.dat Object is locked skipped
C:\WINDOWS\wiadebug.log Object is locked skipped
C:\WINDOWS\wiaservc.log Object is locked skipped
C:\WINDOWS\WindowsUpdate.log Object is locked skipped
D:\My Documents\Azureus Downloads\Nacho Libre [DVDRip][Eng][2006]\Nacho Libre [DVDRip][Eng][2006].rar Object is locked skipped
D:\My Documents\Azureus Downloads\[a.f.k.] Kanon - 01-24 & Prelude\[a.f.k.] Kanon - 01.avi Object is locked skipped
D:\My Documents\Azureus Downloads\[a.f.k.] Kanon - 01-24 & Prelude\[a.f.k.] Kanon - 02.avi Object is locked skipped
D:\My Documents\Azureus Downloads\[a.f.k.] Kanon - 01-24 & Prelude\[a.f.k.] Kanon - 03.avi Object is locked skipped
D:\My Documents\Azureus Downloads\[a.f.k.] Kanon - 01-24 & Prelude\[a.f.k.] Kanon - 04.avi Object is locked skipped
D:\My Documents\Azureus Downloads\[a.f.k.] Kanon - 01-24 & Prelude\[a.f.k.] Kanon - 05.avi Object is locked skipped
D:\My Documents\Azureus Downloads\[a.f.k.] Kanon - 01-24 & Prelude\[a.f.k.] Kanon - 06.avi Object is locked skipped
D:\My Documents\Azureus Downloads\[a.f.k.] Kanon - 01-24 & Prelude\[a.f.k.] Kanon - 07.avi Object is locked skipped
D:\My Documents\Azureus Downloads\[a.f.k.] Kanon - 01-24 & Prelude\[a.f.k.] Kanon - 08.avi Object is locked skipped
D:\My Documents\Azureus Downloads\[a.f.k.] Kanon - 01-24 & Prelude\[a.f.k.] Kanon - 09.avi Object is locked skipped
D:\My Documents\Azureus Downloads\[a.f.k.] Kanon - 01-24 & Prelude\[a.f.k.] Kanon - 10.avi Object is locked skipped
D:\My Documents\Azureus Downloads\[a.f.k.] Kanon - 01-24 & Prelude\[a.f.k.] Kanon - 11.avi Object is locked skipped
D:\My Documents\Azureus Downloads\[a.f.k.] Kanon - 01-24 & Prelude\[a.f.k.] Kanon - 12.avi Object is locked skipped
D:\My Documents\Azureus Downloads\[a.f.k.] Kanon - 01-24 & Prelude\[a.f.k.] Kanon - 13.avi Object is locked skipped
D:\My Documents\Azureus Downloads\[a.f.k.] Kanon - 01-24 & Prelude\[a.f.k.] Kanon - 14.avi Object is locked skipped
D:\My Documents\Azureus Downloads\[a.f.k.] Kanon - 01-24 & Prelude\[a.f.k.] Kanon - 15.avi Object is locked skipped
D:\My Documents\Azureus Downloads\[a.f.k.] Kanon - 01-24 & Prelude\[a.f.k.] Kanon - 16.avi Object is locked skipped
D:\My Documents\Azureus Downloads\[a.f.k.] Kanon - 01-24 & Prelude\[a.f.k.] Kanon - 17.avi Object is locked skipped
D:\My Documents\Azureus Downloads\[a.f.k.] Kanon - 01-24 & Prelude\[a.f.k.] Kanon - 18.avi Object is locked skipped
D:\My Documents\Azureus Downloads\[a.f.k.] Kanon - 01-24 & Prelude\[a.f.k.] Kanon - 19.avi Object is locked skipped
D:\My Documents\Azureus Downloads\[a.f.k.] Kanon - 01-24 & Prelude\[a.f.k.] Kanon - 20.avi Object is locked skipped
D:\My Documents\Azureus Downloads\[a.f.k.] Kanon - 01-24 & Prelude\[a.f.k.] Kanon - 21.avi Object is locked skipped
D:\My Documents\Azureus Downloads\[a.f.k.] Kanon - 01-24 & Prelude\[a.f.k.] Kanon - 22.avi Object is locked skipped
D:\My Documents\Azureus Downloads\[a.f.k.] Kanon - 01-24 & Prelude\[a.f.k.] Kanon - 23.avi Object is locked skipped
D:\My Documents\Azureus Downloads\[a.f.k.] Kanon - 01-24 & Prelude\[a.f.k.] Kanon - 24.avi Object is locked skipped
D:\My Documents\Azureus Downloads\[a.f.k.] Kanon - 01-24 & Prelude\[a.f.k.] Kanon - Prelude.avi Object is locked skipped
D:\System Volume Information\_restore{0CCD9644-D39E-4420-B10D-C01657D7298C}\RP74\change.log Object is locked skipped
Scan process completed.
AVG Log:
Note:I've selected to make them quarentine but only high risks objects are abled to quarentine , the medium risked objects can only be deleted.---------------------------------------------------------
AVG Anti-Spyware - Scan Report
---------------------------------------------------------
+ Created at: 2:20:21 AM 08/06/2007
+ Scan result:
C:\System Volume Information\_restore{0CCD9644-D39E-4420-B10D-C01657D7298C}\RP72\A0055382.dll -> Hijacker.Small.mw : Cleaned with backup (quarantined).
:mozilla.47:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\acrrpwvo.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.69:C:\Documents and Settings\p0713160\Application Data\Mozilla\Firefox\Profiles\acrrpwvo.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.29:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\acrrpwvo.default\cookies.txt -> TrackingCookie.Clickhype : Cleaned.
:mozilla.55:C:\Documents and Settings\p0713160\Application Data\Mozilla\Firefox\Profiles\acrrpwvo.default\cookies.txt -> TrackingCookie.Clickhype : Cleaned.
:mozilla.15:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\acrrpwvo.default\cookies.txt -> TrackingCookie.Com : Cleaned.
:mozilla.7:C:\Documents and Settings\p0713160\Application Data\Mozilla\Firefox\Profiles\acrrpwvo.default\cookies.txt -> TrackingCookie.Com : Cleaned.
:mozilla.10:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\acrrpwvo.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.41:C:\Documents and Settings\p0713160\Application Data\Mozilla\Firefox\Profiles\acrrpwvo.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.42:C:\Documents and Settings\p0713160\Application Data\Mozilla\Firefox\Profiles\acrrpwvo.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.43:C:\Documents and Settings\p0713160\Application Data\Mozilla\Firefox\Profiles\acrrpwvo.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.8:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\acrrpwvo.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.9:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\acrrpwvo.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.42:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\acrrpwvo.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned.
:mozilla.66:C:\Documents and Settings\p0713160\Application Data\Mozilla\Firefox\Profiles\acrrpwvo.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned.
C:\Documents and Settings\p0713160\Cookies\
[email protected][1].txt -> TrackingCookie.Netflame : Cleaned.
:mozilla.28:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\acrrpwvo.default\cookies.txt -> TrackingCookie.Paypal : Cleaned.
:mozilla.54:C:\Documents and Settings\p0713160\Application Data\Mozilla\Firefox\Profiles\acrrpwvo.default\cookies.txt -> TrackingCookie.Paypal : Cleaned.
:mozilla.13:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\acrrpwvo.default\cookies.txt -> TrackingCookie.Toplist : Cleaned.
:mozilla.46:C:\Documents and Settings\p0713160\Application Data\Mozilla\Firefox\Profiles\acrrpwvo.default\cookies.txt -> TrackingCookie.Toplist : Cleaned.
:mozilla.37:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\acrrpwvo.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.61:C:\Documents and Settings\p0713160\Application Data\Mozilla\Firefox\Profiles\acrrpwvo.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned.
C:\System Volume Information\_restore{0CCD9644-D39E-4420-B10D-C01657D7298C}\RP72\A0055383.exe -> Trojan.Agent.anr : Cleaned with backup (quarantined).
::Report end