------------------------------------------------------------------------------- KASPERSKY ON-LINE SCANNER REPORT Monday, August 15, 2005 12:39:57 Operating System: Microsoft Windows XP Professional, Service Pack 1 (Build 2600) Kaspersky On-line Scanner version: 5.0.67.0 Kaspersky Anti-Virus database last update: 15/08/2005 Kaspersky Anti-Virus database records: 135310 ------------------------------------------------------------------------------- Scan Settings: Scan using the following antivirus database: standard Scan Archives: true Scan Mail Bases: true Scan Target - My Computer: C:\ D:\ Scan Statistics: Total number of scanned objects: 86789 Number of viruses found: 82 Number of infected objects: 256 Number of suspicious objects: 16 Duration of the scan process: 7987 sec Infected Object Name - Virus Name C:\Documents and Settings\All Users.WINDOWS\Application Data\Spybot - Search & Destroy\Recovery\Altnet.zip/asmend.exe Suspicious: Password-protected-EXE C:\Documents and Settings\All Users.WINDOWS\Application Data\Spybot - Search & Destroy\Recovery\Altnet.zip Suspicious: Password-protected-EXE C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\a.jar-228d5c98-3644f92e.zip/a.class Infected: Trojan.Java.ClassLoader.b C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\a.jar-228d5c98-3644f92e.zip/Dummy.class Infected: Trojan.Java.ClassLoader.Dummy.a C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\a.jar-228d5c98-3644f92e.zip/VerifierBug.class Infected: Trojan.Java.ClassLoader.u C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\a.jar-228d5c98-3644f92e.zip Infected: Trojan.Java.ClassLoader.u C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\ar.jar-6a28554b-6343c670.zip/BlackBox.class Infected: Trojan.Java.ClassLoader.c C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\ar.jar-6a28554b-6343c670.zip/VerifierBug.class Infected: Exploit.Java.Bytverify C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\ar.jar-6a28554b-6343c670.zip/Dummy.class Infected: Trojan.Java.ClassLoader.Dummy.d C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\ar.jar-6a28554b-6343c670.zip/Beyond.class Infected: Trojan-Downloader.Java.OpenStream.d C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\ar.jar-6a28554b-6343c670.zip Infected: Trojan-Downloader.Java.OpenStream.d C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\archive.jar-30b03371-2cc38b2e.zip/BlackBox.class Infected: Trojan.Java.ClassLoader.z C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\archive.jar-30b03371-2cc38b2e.zip/VB.class Infected: Trojan.Java.ClassLoader.z C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\archive.jar-30b03371-2cc38b2e.zip/Beyond.class Infected: Trojan-Downloader.Java.OpenConnection.v C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\archive.jar-30b03371-2cc38b2e.zip Infected: Trojan-Downloader.Java.OpenConnection.v C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\archive.jar-4430eec2-7fa9c7d1.zip/Mein.class Infected: Trojan.Java.ClassLoader.aj C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\archive.jar-4430eec2-7fa9c7d1.zip/Prober.class Infected: Exploit.Java.Bytverify C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\archive.jar-4430eec2-7fa9c7d1.zip/Beyond.class Infected: Trojan.Java.Binny.a C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\archive.jar-4430eec2-7fa9c7d1.zip/binny/binny.class Infected: Trojan-Dropper.Java.Beyond.d C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\archive.jar-4430eec2-7fa9c7d1.zip/binny/binny2.class Infected: Trojan.Java.Binny.a C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\archive.jar-4430eec2-7fa9c7d1.zip Infected: Trojan.Java.Binny.a C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\archive.jar-4d69f49e-394793f0.zip/BlackBox.class Infected: Trojan.Java.ClassLoader.z C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\archive.jar-4d69f49e-394793f0.zip/VB.class Infected: Trojan.Java.ClassLoader.z C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\archive.jar-4d69f49e-394793f0.zip/Beyond.class Infected: Trojan-Downloader.Java.OpenConnection.v C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\archive.jar-4d69f49e-394793f0.zip Infected: Trojan-Downloader.Java.OpenConnection.v C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\classload.jar-1cf39f94-5bc9398c.zip/GetAccess.class Infected: Trojan.Java.ClassLoader.c C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\classload.jar-1cf39f94-5bc9398c.zip/InsecureClassLoader.class Infected: Exploit.Java.Bytverify C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\classload.jar-1cf39f94-5bc9398c.zip/Dummy.class Infected: Trojan.Java.ClassLoader.Dummy.a C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\classload.jar-1cf39f94-5bc9398c.zip/Installer.class Infected: Trojan-Downloader.Java.OpenConnection.v C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\classload.jar-1cf39f94-5bc9398c.zip Infected: Trojan-Downloader.Java.OpenConnection.v C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\classload.jar-26acfdd0-60eb734a.zip/GetAccess.class Infected: Trojan.Java.ClassLoader.c C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\classload.jar-26acfdd0-60eb734a.zip/InsecureClassLoader.class Infected: Exploit.Java.Bytverify C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\classload.jar-26acfdd0-60eb734a.zip/Dummy.class Infected: Trojan.Java.ClassLoader.Dummy.a C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\classload.jar-26acfdd0-60eb734a.zip/Installer.class Infected: Trojan-Downloader.Java.OpenConnection.v C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\classload.jar-26acfdd0-60eb734a.zip Infected: Trojan-Downloader.Java.OpenConnection.v C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\classload.jar-2fa9f21f-65c4038a.zip/GetAccess.class Infected: Trojan.Java.ClassLoader.c C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\classload.jar-2fa9f21f-65c4038a.zip/InsecureClassLoader.class Infected: Exploit.Java.Bytverify C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\classload.jar-2fa9f21f-65c4038a.zip/Dummy.class Infected: Trojan.Java.ClassLoader.Dummy.a C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\classload.jar-2fa9f21f-65c4038a.zip/Installer.class Infected: Trojan-Downloader.Java.OpenConnection.v C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\classload.jar-2fa9f21f-65c4038a.zip Infected: Trojan-Downloader.Java.OpenConnection.v C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\classload.jar-4dd78ab8-6eb8404f.zip/GetAccess.class Infected: Trojan.Java.ClassLoader.c C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\classload.jar-4dd78ab8-6eb8404f.zip/InsecureClassLoader.class Infected: Exploit.Java.Bytverify C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\classload.jar-4dd78ab8-6eb8404f.zip/Dummy.class Infected: Trojan.Java.ClassLoader.Dummy.a C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\classload.jar-4dd78ab8-6eb8404f.zip/Installer.class Infected: Trojan-Downloader.Java.OpenConnection.v C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\classload.jar-4dd78ab8-6eb8404f.zip Infected: Trojan-Downloader.Java.OpenConnection.v C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\classload.jar-50757294-651ee131.zip/GetAccess.class Infected: Trojan.Java.ClassLoader.c C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\classload.jar-50757294-651ee131.zip/InsecureClassLoader.class Infected: Exploit.Java.Bytverify C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\classload.jar-50757294-651ee131.zip/Dummy.class Infected: Trojan.Java.ClassLoader.Dummy.a C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\classload.jar-50757294-651ee131.zip/Installer.class Infected: Trojan-Downloader.Java.OpenConnection.v C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\classload.jar-50757294-651ee131.zip Infected: Trojan-Downloader.Java.OpenConnection.v C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\classload.jar-6a8a3121-1ef86726.zip/GetAccess.class Infected: Trojan.Java.ClassLoader.c C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\classload.jar-6a8a3121-1ef86726.zip/InsecureClassLoader.class Infected: Exploit.Java.Bytverify C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\classload.jar-6a8a3121-1ef86726.zip/Dummy.class Infected: Trojan.Java.ClassLoader.Dummy.a C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\classload.jar-6a8a3121-1ef86726.zip/Installer.class Infected: Trojan-Downloader.Java.OpenConnection.v C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\classload.jar-6a8a3121-1ef86726.zip Infected: Trojan-Downloader.Java.OpenConnection.v C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\classload.jar-7660c386-22383795.zip/GetAccess.class Infected: Trojan.Java.ClassLoader.c C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\classload.jar-7660c386-22383795.zip/InsecureClassLoader.class Infected: Exploit.Java.Bytverify C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\classload.jar-7660c386-22383795.zip/Dummy.class Infected: Trojan.Java.ClassLoader.Dummy.a C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\classload.jar-7660c386-22383795.zip/Installer.class Infected: Trojan-Downloader.Java.OpenConnection.v C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\classload.jar-7660c386-22383795.zip Infected: Trojan-Downloader.Java.OpenConnection.v C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\classload.jar-d73f6a9-38444cd2.zip/GetAccess.class Infected: Trojan.Java.ClassLoader.c C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\classload.jar-d73f6a9-38444cd2.zip/InsecureClassLoader.class Infected: Exploit.Java.Bytverify C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\classload.jar-d73f6a9-38444cd2.zip/Dummy.class Infected: Trojan.Java.ClassLoader.Dummy.a C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\classload.jar-d73f6a9-38444cd2.zip/Installer.class Infected: Trojan-Downloader.Java.OpenConnection.v C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\classload.jar-d73f6a9-38444cd2.zip Infected: Trojan-Downloader.Java.OpenConnection.v C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\count.jar-1ec7e93-22bb5838.zip/BlackBox.class Infected: Exploit.Java.ByteVerify C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\count.jar-1ec7e93-22bb5838.zip/VerifierBug.class Infected: Exploit.Java.ByteVerify C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\count.jar-1ec7e93-22bb5838.zip/Beyond.class Infected: Trojan-Downloader.Java.OpenConnection.aa C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\count.jar-1ec7e93-22bb5838.zip Infected: Trojan-Downloader.Java.OpenConnection.aa C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\count.jar-58231911-176fe047.zip/BlackBox.class Infected: Exploit.Java.ByteVerify C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\count.jar-58231911-176fe047.zip/VerifierBug.class Infected: Exploit.Java.ByteVerify C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\count.jar-58231911-176fe047.zip/Beyond.class Infected: Trojan-Downloader.Java.OpenConnection.aa C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\count.jar-58231911-176fe047.zip Infected: Trojan-Downloader.Java.OpenConnection.aa C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\Counters.jar-23d835ad-7d649a27.zip/Counter.class Infected: Trojan.Java.ClassLoader.ah C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\Counters.jar-23d835ad-7d649a27.zip/VerifierBug.class Infected: Trojan.Java.ClassLoader.ah C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\Counters.jar-23d835ad-7d649a27.zip/Xeyond.class Infected: Trojan.Java.ClassLoader.ah C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\Counters.jar-23d835ad-7d649a27.zip/Worker.class Infected: Trojan.Java.ClassLoader.ah C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\Counters.jar-23d835ad-7d649a27.zip/web.exe Infected: Trojan-Clicker.Win32.Femac.k C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\Counters.jar-23d835ad-7d649a27.zip Infected: Trojan-Clicker.Win32.Femac.k C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\dialarch.jar-56e86951-7076281c.zip/Dummy.class Infected: Trojan.Java.ClassLoader.Dummy.a C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\dialarch.jar-56e86951-7076281c.zip/GetAccess.class Infected: Trojan.Java.ClassLoader.c C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\dialarch.jar-56e86951-7076281c.zip/InsecureClassLoader.class Infected: Exploit.Java.Bytverify C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\dialarch.jar-56e86951-7076281c.zip/Installer.class Infected: Trojan-Downloader.Java.OpenStream.v C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\dialarch.jar-56e86951-7076281c.zip Infected: Trojan-Downloader.Java.OpenStream.v C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\loaderadv428.jar-3312bf07-16b34700.zip/Counter.class Infected: Trojan.Java.ClassLoader.h C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\loaderadv428.jar-3312bf07-16b34700.zip/Matrix.class Infected: Trojan-Downloader.Java.OpenStream.c C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\loaderadv428.jar-3312bf07-16b34700.zip/Parser.class Infected: Trojan.Java.ClassLoader.d C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\loaderadv428.jar-3312bf07-16b34700.zip Infected: Trojan.Java.ClassLoader.d C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\loaderadv428.jar-79a2800c-5afce692.zip/Matrix.class Infected: Trojan-Downloader.Java.OpenStream.c C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\loaderadv428.jar-79a2800c-5afce692.zip/Counter.class Infected: Trojan.Java.ClassLoader.h C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\loaderadv428.jar-79a2800c-5afce692.zip/Parser.class Infected: Trojan.Java.ClassLoader.d C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\loaderadv428.jar-79a2800c-5afce692.zip Infected: Trojan.Java.ClassLoader.d C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\msjld.jar-5fa973e1-21ffc201.zip/GetAccess.class Infected: Trojan.Java.ClassLoader.c C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\msjld.jar-5fa973e1-21ffc201.zip/InsecureClassLoader.class Infected: Exploit.Java.Bytverify C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\msjld.jar-5fa973e1-21ffc201.zip/Dummy.class Infected: Trojan.Java.ClassLoader.Dummy.a C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\msjld.jar-5fa973e1-21ffc201.zip/Installer.class Infected: Trojan-Downloader.Java.OpenConnection.v C:\Documents and Settings\Chad\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\msjld.jar-5fa973e1-21ffc201.zip Infected: Trojan-Downloader.Java.OpenConnection.v C:\Documents and Settings\Chad\Local Settings\Temporary Internet Files\Content.IE5\4923CP2F\x[1].chm/exec.htm Infected: Exploit.HTML.CodeBaseExec C:\Documents and Settings\Chad\Local Settings\Temporary Internet Files\Content.IE5\4923CP2F\x[1].chm/update.exe Infected: Trojan-Dropper.Win32.Vidro.p C:\Documents and Settings\Chad\Local Settings\Temporary Internet Files\Content.IE5\4923CP2F\x[1].chm/x.htm Infected: Exploit.HTML.CodeBaseExec C:\Documents and Settings\Chad\Local Settings\Temporary Internet Files\Content.IE5\4923CP2F\x[1].chm Infected: Exploit.HTML.CodeBaseExec C:\Documents and Settings\Chad\Local Settings\Temporary Internet Files\Content.IE5\DZRZTXG6\html[1].chm/html.exe Infected: Trojan-Downloader.Win32.Delf.ks C:\Documents and Settings\Chad\Local Settings\Temporary Internet Files\Content.IE5\DZRZTXG6\html[1].chm/html.html Suspicious: Exploit.HTML.CodeBaseExec C:\Documents and Settings\Chad\Local Settings\Temporary Internet Files\Content.IE5\DZRZTXG6\html[1].chm Infected: Exploit.HTML.CodeBaseExec C:\Documents and Settings\Chad\Local Settings\Temporary Internet Files\Content.IE5\DZRZTXG6\x[1].chm/exec.htm Infected: Exploit.HTML.CodeBaseExec C:\Documents and Settings\Chad\Local Settings\Temporary Internet Files\Content.IE5\DZRZTXG6\x[1].chm/update.exe Infected: Trojan-Dropper.Win32.Agent.qb C:\Documents and Settings\Chad\Local Settings\Temporary Internet Files\Content.IE5\DZRZTXG6\x[1].chm/x.htm Infected: Exploit.HTML.CodeBaseExec C:\Documents and Settings\Chad\Local Settings\Temporary Internet Files\Content.IE5\DZRZTXG6\x[1].chm Infected: Exploit.HTML.CodeBaseExec C:\Documents and Settings\Chad\Local Settings\Temporary Internet Files\Content.IE5\Q99YBM9O\html[1].chm/html.exe Infected: Trojan-Downloader.Win32.Delf.ks C:\Documents and Settings\Chad\Local Settings\Temporary Internet Files\Content.IE5\Q99YBM9O\html[1].chm/html.html Suspicious: Exploit.HTML.CodeBaseExec C:\Documents and Settings\Chad\Local Settings\Temporary Internet Files\Content.IE5\Q99YBM9O\html[1].chm Infected: Exploit.HTML.CodeBaseExec C:\Documents and Settings\Chad\Local Settings\Temporary Internet Files\Content.IE5\WJJNUGHD\index[1].chm/index.htm Infected: Trojan-Downloader.VBS.Psyme.ac C:\Documents and Settings\Chad\Local Settings\Temporary Internet Files\Content.IE5\WJJNUGHD\index[1].chm Infected: Trojan-Downloader.VBS.Psyme.ac C:\Documents and Settings\Chad\Local Settings\Temporary Internet Files\Content.IE5\X8W3T9K9\newexpl[1].php/[From ]/html Infected: Exploit.VBS.Phel.i C:\Documents and Settings\Chad\Local Settings\Temporary Internet Files\Content.IE5\X8W3T9K9\newexpl[1].php Infected: Exploit.VBS.Phel.i C:\Documents and Settings\Default User\My Documents\Data\all_files4.exe/data0003 Infected: Trojan-Downloader.Win32.Agent.ec C:\Documents and Settings\Default User\My Documents\Data\all_files4.exe/data0006 Infected: Trojan.Win32.SecondThought.h C:\Documents and Settings\Default User\My Documents\Data\all_files4.exe Infected: Trojan.Win32.SecondThought.h C:\Documents and Settings\Default User\My Documents\Data\Data\all_files4.exe/data0003 Infected: Trojan-Downloader.Win32.Agent.ec C:\Documents and Settings\Default User\My Documents\Data\Data\all_files4.exe/data0006 Infected: Trojan.Win32.SecondThought.h C:\Documents and Settings\Default User\My Documents\Data\Data\all_files4.exe Infected: Trojan.Win32.SecondThought.h C:\Documents and Settings\Default User\My Documents\Data\Data\MemoryWatcher.exe/data0004 Infected: Trojan-Downloader.Win32.VB.q C:\Documents and Settings\Default User\My Documents\Data\Data\MemoryWatcher.exe Infected: Trojan-Downloader.Win32.VB.q C:\Documents and Settings\Default User\My Documents\Data\Data\MemWatcher.exe/data0004 Infected: Backdoor.Win32.VB.nb C:\Documents and Settings\Default User\My Documents\Data\Data\MemWatcher.exe/data0006 Infected: Backdoor.Win32.VB.nb C:\Documents and Settings\Default User\My Documents\Data\Data\MemWatcher.exe Infected: Backdoor.Win32.VB.nb C:\Documents and Settings\Default User\My Documents\Data\Data\MemWatcher2.exe/data0004 Infected: Backdoor.Win32.VB.nb C:\Documents and Settings\Default User\My Documents\Data\Data\MemWatcher2.exe/data0006 Infected: Backdoor.Win32.VB.nb C:\Documents and Settings\Default User\My Documents\Data\Data\MemWatcher2.exe Infected: Backdoor.Win32.VB.nb C:\Documents and Settings\Default User\My Documents\Data\Data\popinstlite.exe Infected: Trojan-Downloader.Win32.Poplite.a C:\Documents and Settings\Default User\My Documents\Data\MemoryWatcher.exe/data0004 Infected: Trojan-Downloader.Win32.VB.q C:\Documents and Settings\Default User\My Documents\Data\MemoryWatcher.exe Infected: Trojan-Downloader.Win32.VB.q C:\Documents and Settings\Default User\My Documents\Data\MemWatcher.exe/data0004 Infected: Backdoor.Win32.VB.nb C:\Documents and Settings\Default User\My Documents\Data\MemWatcher.exe/data0006 Infected: Backdoor.Win32.VB.nb C:\Documents and Settings\Default User\My Documents\Data\MemWatcher.exe Infected: Backdoor.Win32.VB.nb C:\Documents and Settings\Default User\My Documents\Data\MemWatcher2.exe/data0004 Infected: Backdoor.Win32.VB.nb C:\Documents and Settings\Default User\My Documents\Data\MemWatcher2.exe/data0006 Infected: Backdoor.Win32.VB.nb C:\Documents and Settings\Default User\My Documents\Data\MemWatcher2.exe Infected: Backdoor.Win32.VB.nb C:\Documents and Settings\Default User\My Documents\Data\popinstlite.exe Infected: Trojan-Downloader.Win32.Poplite.a C:\Documents and Settings\Owner\Local Settings\Temp\all_files10.exe/data0003 Infected: Trojan-Downloader.Win32.Agent.ec C:\Documents and Settings\Owner\Local Settings\Temp\all_files10.exe/data0005 Infected: Trojan-Downloader.Win32.Apropo.e C:\Documents and Settings\Owner\Local Settings\Temp\all_files10.exe/data0006 Infected: Trojan-Downloader.Win32.Agent.ab C:\Documents and Settings\Owner\Local Settings\Temp\all_files10.exe/data0008 Infected: Backdoor.Win32.Ruledor.c C:\Documents and Settings\Owner\Local Settings\Temp\all_files10.exe Infected: Backdoor.Win32.Ruledor.c C:\Documents and Settings\Owner\Local Settings\Temp\ckz3dd6e3\Files\ieupdate.exe Infected: Trojan-Downloader.Win32.Turown.b C:\Documents and Settings\Owner\Local Settings\Temp\ckz46e85\Files\IEDRIVER.EXE Infected: Trojan-Downloader.Win32.Turown.b C:\Documents and Settings\Owner\Local Settings\Temp\ckz46e85\Files\ieupdate.exe Infected: Trojan-Downloader.Win32.Turown.b C:\Documents and Settings\Owner\Local Settings\Temp\ckz46e85\Files\td.exe Infected: Trojan-Downloader.Win32.Turown.c C:\Documents and Settings\Owner\Local Settings\Temp\GLF16.EXE/WISE0007.BIN Infected: Trojan-Downloader.Win32.VB.ah C:\Documents and Settings\Owner\Local Settings\Temp\GLF16.EXE Infected: Trojan-Downloader.Win32.VB.ah C:\Documents and Settings\Owner\Local Settings\Temp\GLFA6.EXE/WISE0009.BIN Infected: Trojan-Downloader.Win32.Adroar C:\Documents and Settings\Owner\Local Settings\Temp\GLFA6.EXE Infected: Trojan-Downloader.Win32.Adroar C:\Documents and Settings\Owner\Local Settings\Temp\ICD11.tmp\QDow.dll Infected: Trojan-Downloader.Win32.QDown.f C:\Documents and Settings\Owner\Local Settings\Temp\ICD12.tmp\QDow.dll Infected: Trojan-Downloader.Win32.QDown.f C:\Documents and Settings\Owner\Local Settings\Temp\ICD13.tmp\QDow.dll Infected: Trojan-Downloader.Win32.QDown.f C:\Documents and Settings\Owner\Local Settings\Temp\ICD14.tmp\QDow.dll Infected: Trojan-Downloader.Win32.QDown.f C:\Documents and Settings\Owner\Local Settings\Temp\ICD15.tmp\QDow.dll Infected: Trojan-Downloader.Win32.QDown.f C:\Documents and Settings\Owner\Local Settings\Temp\ICD16.tmp\whistlesilent.exe Infected: Trojan-Downloader.Win32.Small.pv C:\Documents and Settings\Owner\Local Settings\Temp\ICD9.tmp\QDow.dll Infected: Trojan-Downloader.Win32.QDown.f C:\Documents and Settings\Owner\Local Settings\Temp\inetadpt.te_/ Infected: Trojan-Downloader.Win32.TargetSoft.b C:\Documents and Settings\Owner\Local Settings\Temp\inetadpt.te_ Infected: Trojan-Downloader.Win32.TargetSoft.b C:\Documents and Settings\Owner\Local Settings\Temp\MemoryWatcher_b.exe/data0004 Infected: Backdoor.Win32.VB.oq C:\Documents and Settings\Owner\Local Settings\Temp\MemoryWatcher_b.exe/data0006 Infected: Backdoor.Win32.VB.nb C:\Documents and Settings\Owner\Local Settings\Temp\MemoryWatcher_b.exe Infected: Backdoor.Win32.VB.nb C:\Documents and Settings\Owner\Local Settings\Temp\~7572907972.tmp Infected: Trojan-Downloader.Win32.Siboco C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\55R8WVU3\Matrix_01[1].exe Infected: Trojan.Win32.SecondThought.h C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\55R8WVU3\MemoryWatcher_b[1].exe/data0004 Infected: Backdoor.Win32.VB.oq C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\55R8WVU3\MemoryWatcher_b[1].exe/data0006 Infected: Backdoor.Win32.VB.nb C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\55R8WVU3\MemoryWatcher_b[1].exe Infected: Backdoor.Win32.VB.nb C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\I7831QU1\fsc2k[1].htm Infected: Trojan-Downloader.JS.Cobase.a C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\I7831QU1\whistlesilent610[1].cab/whistlesilent.exe Infected: Trojan-Downloader.Win32.Small.pv C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\I7831QU1\whistlesilent610[1].cab Infected: Trojan-Downloader.Win32.Small.pv C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\ZETYTFKS\all_files10[1].exe/data0003 Infected: Trojan-Downloader.Win32.Agent.ec C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\ZETYTFKS\all_files10[1].exe/data0005 Infected: Trojan-Downloader.Win32.Apropo.e C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\ZETYTFKS\all_files10[1].exe/data0006 Infected: Trojan-Downloader.Win32.Agent.ab C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\ZETYTFKS\all_files10[1].exe/data0008 Infected: Backdoor.Win32.Ruledor.c C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\ZETYTFKS\all_files10[1].exe Infected: Backdoor.Win32.Ruledor.c C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\ZETYTFKS\yesup_acx[1].exe/data0002 Infected: Trojan-Downloader.Win32.Vivia.q C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\ZETYTFKS\yesup_acx[1].exe/data0003 Infected: Trojan-Downloader.Win32.Vivia.a C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\ZETYTFKS\yesup_acx[1].exe/data0005 Infected: Trojan-Downloader.Win32.Vivia.a C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\ZETYTFKS\yesup_acx[1].exe/data0006 Infected: Trojan-Downloader.Win32.Vivia.p C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\ZETYTFKS\yesup_acx[1].exe Infected: Trojan-Downloader.Win32.Vivia.p C:\Program Files\Norton AntiVirus\Quarantine\01385328.exe Infected: Trojan-Proxy.Win32.Agent.f C:\Program Files\Norton AntiVirus\Quarantine\181C70A4.exe Infected: Backdoor.Win32.VB.nb C:\Program Files\Norton AntiVirus\Quarantine\3B707529.exe Infected: Backdoor.Win32.VB.nb C:\Program Files\Norton AntiVirus\Quarantine\3D9F7CF9.exe Infected: Trojan-Downloader.Win32.Stubby.a C:\Program Files\Norton AntiVirus\Quarantine\41353DB2.exe Infected: Backdoor.Win32.VB.nb C:\Program Files\Norton AntiVirus\Quarantine\413867AE.exe Infected: Trojan-Downloader.Win32.VB.q C:\Program Files\Norton AntiVirus\Quarantine\413C11AA.exe Infected: Backdoor.Win32.VB.nb C:\Program Files\Norton AntiVirus\Quarantine\413F3BA7.exe Infected: Backdoor.Win32.VB.nb C:\Program Files\Norton AntiVirus\Quarantine\414265A3.exe Infected: Backdoor.Win32.VB.nb C:\Program Files\Norton AntiVirus\Quarantine\41450FA0.exe Infected: Trojan-Downloader.Win32.Delf.an C:\Program Files\Norton AntiVirus\Quarantine\4149399C.exe Infected: Backdoor.Win32.VB.nb C:\Program Files\Norton AntiVirus\Quarantine\414C6399.exe Infected: Backdoor.Win32.VB.nb C:\Program Files\Norton AntiVirus\Quarantine\44AE3421.exe Infected: Trojan.Win32.SecondThought.b C:\Program Files\Norton AntiVirus\Quarantine\45FC5430.js Infected: Trojan.JS.Seeker-based C:\Program Files\Norton AntiVirus\Quarantine\60F56F2E.exe Infected: Trojan.Win32.SecondThought.a C:\Program Files\Norton AntiVirus\Quarantine\60F8192B.exe Infected: Trojan.Win32.SecondThought.a C:\Program Files\Norton AntiVirus\Quarantine\67445146.exe Infected: Backdoor.Win32.Sinit.c C:\Program Files\Norton AntiVirus\Quarantine\731B742B.exe Infected: Backdoor.Win32.VB.nb C:\Program Files\Norton AntiVirus\Quarantine\75A8172A.exe Infected: Trojan-Downloader.Win32.Donn.aa C:\Program Files\Norton AntiVirus\Quarantine\78712DC7.exe Infected: Backdoor.Win32.VB.nb C:\Program Files\Norton AntiVirus\Quarantine\78A834FE.exe Infected: Trojan-Proxy.Win32.Agent.f C:\Program Files\SpyHunter\Backup\winservn.exe.bak Infected: Trojan.Win32.Scapur.g C:\Program Files\STC\Matrix_01.exe Infected: Trojan.Win32.SecondThought.h C:\quarantine\connect[1].php.Vir/packed Suspicious: Exploit.HTML.Mht C:\quarantine\connect[1].php.Vir Suspicious: Exploit.HTML.Mht C:\quarantine\connect[1].php.Vir.0/packed Suspicious: Exploit.HTML.Mht C:\quarantine\connect[1].php.Vir.0 Suspicious: Exploit.HTML.Mht C:\quarantine\connect[1].php.Vir.1/packed Suspicious: Exploit.HTML.Mht C:\quarantine\connect[1].php.Vir.1 Suspicious: Exploit.HTML.Mht C:\quarantine\doit[1].exe.Vir/packed Infected: Exploit.HTML.Mht C:\quarantine\doit[1].exe.Vir Infected: Exploit.HTML.Mht C:\quarantine\doit[1].exe.Vir.0/packed Infected: Exploit.HTML.Mht C:\quarantine\doit[1].exe.Vir.0 Infected: Exploit.HTML.Mht C:\quarantine\doit[1].exe.Vir.1/packed Infected: Exploit.HTML.Mht C:\quarantine\doit[1].exe.Vir.1 Infected: Exploit.HTML.Mht C:\quarantine\doit[1].exe.Vir.2/packed Infected: Exploit.HTML.Mht C:\quarantine\doit[1].exe.Vir.2 Infected: Exploit.HTML.Mht C:\quarantine\doit[1].exe.Vir.3/packed Infected: Exploit.HTML.Mht C:\quarantine\doit[1].exe.Vir.3 Infected: Exploit.HTML.Mht C:\quarantine\doit[1].exe.Vir.4/packed Infected: Exploit.HTML.Mht C:\quarantine\doit[1].exe.Vir.4 Infected: Exploit.HTML.Mht C:\quarantine\n[1].htm.Vir/packed Infected: Trojan-Downloader.VBS.Psyme.j C:\quarantine\n[1].htm.Vir Infected: Trojan-Downloader.VBS.Psyme.j C:\quarantine\object[1].html.Vir/packed Infected: Trojan-Downloader.JS.Weis.b C:\quarantine\object[1].html.Vir Infected: Trojan-Downloader.JS.Weis.b C:\quarantine\object[1].html.Vir.0/packed Infected: Trojan-Downloader.JS.Weis.b C:\quarantine\object[1].html.Vir.0 Infected: Trojan-Downloader.JS.Weis.b C:\quarantine\paycounter[1].php.Vir/packed Suspicious: Exploit.HTML.Mht C:\quarantine\paycounter[1].php.Vir Suspicious: Exploit.HTML.Mht C:\quarantine\payload[1].ani.Vir Infected: Trojan-Downloader.Win32.Ani.b C:\quarantine\s3[1].js.Vir/packed Infected: Trojan-Downloader.JS.Psyme.m C:\quarantine\s3[1].js.Vir Infected: Trojan-Downloader.JS.Psyme.m C:\quarantine\stats[1].php.Vir/packed Suspicious: Exploit.HTML.Mht C:\quarantine\stats[1].php.Vir Suspicious: Exploit.HTML.Mht C:\quarantine\stats[1].php.Vir.0/packed Suspicious: Exploit.HTML.Mht C:\quarantine\stats[1].php.Vir.0 Suspicious: Exploit.HTML.Mht C:\System Volume Information\_restore{35623BD8-4EC4-4C03-A9BE-87FE1BB1D946}\RP237\A0036749.exe Infected: Trojan-Dropper.Win32.Small.abs C:\System Volume Information\_restore{35623BD8-4EC4-4C03-A9BE-87FE1BB1D946}\RP252\A0046336.exe Infected: Trojan-Dropper.Win32.Small.of C:\System Volume Information\_restore{35623BD8-4EC4-4C03-A9BE-87FE1BB1D946}\RP252\A0046340.EXE Infected: Trojan-Downloader.Win32.Turown.h C:\System Volume Information\_restore{35623BD8-4EC4-4C03-A9BE-87FE1BB1D946}\RP252\A0046341.exe Infected: Trojan-Downloader.Win32.Turown.a C:\System Volume Information\_restore{35623BD8-4EC4-4C03-A9BE-87FE1BB1D946}\RP252\A0046345.dll Infected: Trojan-Downloader.Win32.IstBar.s C:\System Volume Information\_restore{35623BD8-4EC4-4C03-A9BE-87FE1BB1D946}\RP252\A0046346.exe Infected: Trojan-Downloader.Win32.Small.ch C:\System Volume Information\_restore{35623BD8-4EC4-4C03-A9BE-87FE1BB1D946}\RP252\A0046347.exe Infected: Trojan-Downloader.Win32.Small.ch C:\System Volume Information\_restore{35623BD8-4EC4-4C03-A9BE-87FE1BB1D946}\RP252\A0046348.dll Infected: Trojan-Downloader.Win32.QDown.a C:\System Volume Information\_restore{35623BD8-4EC4-4C03-A9BE-87FE1BB1D946}\RP252\A0046350.exe Infected: Trojan.Win32.Small.i C:\System Volume Information\_restore{35623BD8-4EC4-4C03-A9BE-87FE1BB1D946}\RP252\A0046351.exe Infected: Trojan.Win32.Small.i C:\System Volume Information\_restore{35623BD8-4EC4-4C03-A9BE-87FE1BB1D946}\RP252\A0046354.exe Infected: Trojan.Win32.Tb.a C:\System Volume Information\_restore{35623BD8-4EC4-4C03-A9BE-87FE1BB1D946}\RP252\A0046365.EXE Infected: Trojan-Dropper.Win32.Small.gj C:\System Volume Information\_restore{35623BD8-4EC4-4C03-A9BE-87FE1BB1D946}\RP252\A0046372.exe Infected: Trojan.Win32.SecondThought.c C:\System Volume Information\_restore{35623BD8-4EC4-4C03-A9BE-87FE1BB1D946}\RP252\A0046373.dll Infected: Trojan.Win32.SecondThought.ag C:\System Volume Information\_restore{35623BD8-4EC4-4C03-A9BE-87FE1BB1D946}\RP252\A0046374.exe Infected: Trojan.Win32.SecondThought.ai C:\System Volume Information\_restore{35623BD8-4EC4-4C03-A9BE-87FE1BB1D946}\RP252\A0046376.exe Infected: Trojan-Downloader.Win32.Agent.ab C:\System Volume Information\_restore{35623BD8-4EC4-4C03-A9BE-87FE1BB1D946}\RP252\A0046377.exe Infected: Trojan-Dropper.Win32.Small.gj C:\System Volume Information\_restore{35623BD8-4EC4-4C03-A9BE-87FE1BB1D946}\RP252\A0046385.exe Infected: Trojan-Dropper.Win32.Small.gj C:\System Volume Information\_restore{35623BD8-4EC4-4C03-A9BE-87FE1BB1D946}\RP252\A0046386.dll Infected: Trojan-Proxy.Win32.Small.cn C:\System Volume Information\_restore{35623BD8-4EC4-4C03-A9BE-87FE1BB1D946}\RP252\A0046387.exe Infected: Trojan-Downloader.Win32.Delf.ks C:\System Volume Information\_restore{35623BD8-4EC4-4C03-A9BE-87FE1BB1D946}\RP252\A0046389.dll Infected: Trojan-Downloader.Win32.Keenval.e C:\System Volume Information\_restore{35623BD8-4EC4-4C03-A9BE-87FE1BB1D946}\RP252\A0046402.exe Infected: Backdoor.Win32.Ruledor.b C:\System Volume Information\_restore{35623BD8-4EC4-4C03-A9BE-87FE1BB1D946}\RP252\A0046416.exe Infected: Trojan-Downloader.Win32.Agent.nn C:\System Volume Information\_restore{E144E665-8959-4686-AD12-B148C9C948E3}\RP19\A0025555.exe/WISE0009.BIN Infected: Trojan-Downloader.Win32.Adroar C:\System Volume Information\_restore{E144E665-8959-4686-AD12-B148C9C948E3}\RP19\A0025555.exe Infected: Trojan-Downloader.Win32.Adroar C:\System Volume Information\_restore{E144E665-8959-4686-AD12-B148C9C948E3}\RP20\A0026580.exe/WISE0007.BIN Infected: Trojan-Downloader.Win32.VB.ah C:\System Volume Information\_restore{E144E665-8959-4686-AD12-B148C9C948E3}\RP20\A0026580.exe Infected: Trojan-Downloader.Win32.VB.ah C:\System Volume Information\_restore{E144E665-8959-4686-AD12-B148C9C948E3}\RP20\A0026609.exe Infected: Trojan-Downloader.Win32.Swizzor.do C:\WINDOWS\3640e.txt Infected: Trojan.Win32.Zapchast C:\WINDOWS\f423f.txt Infected: Trojan.Win32.Zapchast C:\WINDOWS\system32\hehehe.exe Infected: Trojan-Dropper.Win32.Small.abs C:\WINDOWS\system32\idr_load12.exe Infected: Trojan-Dropper.Win32.Small.abs C:\winupdt2.exe/TargetSoft.exe Infected: Trojan-Downloader.Win32.TargetSoft.a C:\winupdt2.exe Infected: Trojan-Downloader.Win32.TargetSoft.a Scan process completed.