9/9/2012 8:09:38 AM Real-time file system protection file C:\METASP~1\apps\pro\msf3\modules\exploits\windows\browser\ms10_002_aurora.rb JS/Exploit.CVE-2010-0249 trojan cleaned by deleting - quarantined NT AUTHORITY\SYSTEM Event occurred during an attempt to access the file by the application: C:\metasploit\ruby\bin\ruby.exe. 9/9/2012 8:09:38 AM Real-time file system protection file C:\METASP~1\apps\pro\msf3\modules\exploits\windows\browser\ie_createobject.rb JS/TrojanDownloader.Psyme.NCX trojan cleaned by deleting - quarantined NT AUTHORITY\SYSTEM Event occurred during an attempt to access the file by the application: C:\metasploit\ruby\bin\ruby.exe. 9/9/2012 8:09:38 AM Real-time file system protection file C:\METASP~1\apps\pro\msf3\modules\exploits\windows\browser\ms10_018_ie_behaviors.rb JS/Exploit.CVE-2010-0806.NAH trojan cleaned by deleting - quarantined NT AUTHORITY\SYSTEM Event occurred during an attempt to access the file by the application: C:\metasploit\ruby\bin\ruby.exe. 9/9/2012 8:09:38 AM Real-time file system protection file C:\METASP~1\apps\pro\msf3\modules\exploits\windows\browser\ms10_042_helpctr_xss_cmd_exec.rb HTML/Exploit.CVE-2010-1885.A trojan cleaned by deleting - quarantined NT AUTHORITY\SYSTEM Event occurred during an attempt to access the file by the application: C:\metasploit\ruby\bin\ruby.exe. 9/9/2012 8:05:56 AM Real-time file system protection file C:\METASP~1\apps\pro\msf3\data\eicar.com Eicar test file cleaned by deleting - quarantined NT AUTHORITY\SYSTEM Event occurred during an attempt to access the file by the application: C:\metasploit\ruby\bin\ruby.exe. 9/8/2012 8:14:31 PM Startup scanner file Operating memory » C:\Users\JOENIQ~1\AppData\Local\Temp\winjlwot.exe a variant of Win32/SpamTool.Agent.NET trojan cleaned by deleting - quarantined 9/8/2012 8:13:56 PM Startup scanner file Operating memory » C:\Users\JOENIQ~1\AppData\Local\Temp\hcfmd.exe probably a variant of Win32/Agent.HLU trojan cleaned by deleting - quarantined 9/8/2012 7:56:02 PM Startup scanner file C:\Program Files (x86)\PC Cleaners\PCCleaners.exe a variant of Win32/PCCleaners potentially unwanted application 9/8/2012 6:51:54 AM Real-time file system protection file C:\OEM\SS\Screensaver_HM51_1366_Acer_1[1].02.0804.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:51:47 AM Real-time file system protection file C:\OEM\Preload\Autorun\DRV\Synaptics Touchpad\WinWDF\x86\Tutorial.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:51:47 AM Real-time file system protection file C:\OEM\Preload\Autorun\DRV\Synaptics Touchpad\WinWDF\x86\SynZMetr.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:51:47 AM Real-time file system protection file C:\OEM\Preload\Autorun\DRV\Synaptics Touchpad\WinWDF\x86\SynTPEnh.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:51:45 AM Real-time file system protection file C:\OEM\Preload\Autorun\DRV\Synaptics Touchpad\WinWDF\x86\SynTPHelper.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:51:43 AM Real-time file system protection file C:\OEM\Preload\Autorun\DRV\Synaptics Touchpad\WinWDF\x86\SynAcer.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:51:43 AM Real-time file system protection file C:\OEM\Preload\Autorun\DRV\Synaptics Touchpad\WinWDF\x86\SynMood.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:51:42 AM Real-time file system protection file C:\OEM\Preload\Autorun\DRV\Synaptics Touchpad\WinWDF\x86\setup.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:51:42 AM Real-time file system protection file C:\OEM\Preload\Autorun\DRV\Synaptics Touchpad\WinWDF\x86\InstNT.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:51:42 AM Real-time file system protection file C:\OEM\Preload\Autorun\DRV\Synaptics Touchpad\WinWDF\x64\Tutorial.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:51:40 AM Real-time file system protection file C:\OEM\Preload\Autorun\DRV\Synaptics Touchpad\WinWDF\x64\SynMood.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:51:39 AM Real-time file system protection file C:\OEM\Preload\Autorun\DRV\Synaptics Touchpad\WinWDF\x64\setup.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:51:38 AM Real-time file system protection file C:\OEM\Preload\Autorun\DRV\Synaptics Touchpad\Setup.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:51:37 AM Real-time file system protection file C:\OEM\Preload\Autorun\DRV\Synaptics Touchpad\INT15_Detect.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:51:37 AM Real-time file system protection file C:\OEM\Preload\Autorun\DRV\Realtek Card Reader Chip RTS5159-GR\DriverBin_32bit\revcon.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:51:36 AM Real-time file system protection file C:\OEM\Preload\Autorun\DRV\Realtek Audio Codec ALC272X\WDM\SkyTel.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:51:35 AM Real-time file system protection file C:\OEM\Preload\Autorun\DRV\Realtek Audio Codec ALC272X\WDM\vncutil.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:51:35 AM Real-time file system protection file C:\OEM\Preload\Autorun\DRV\Realtek Card Reader Chip RTS5159-GR\SetEHCIKey.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:51:35 AM Real-time file system protection file C:\OEM\Preload\Autorun\DRV\Realtek Card Reader Chip RTS5159-GR\RmbChange.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:51:35 AM Real-time file system protection file C:\OEM\Preload\Autorun\DRV\Realtek Audio Codec ALC272X\WDM\SoundMan.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:51:34 AM Real-time file system protection file C:\OEM\Preload\Autorun\DRV\Realtek Card Reader Chip RTS5159-GR\setup.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:51:33 AM Real-time file system protection file C:\OEM\Preload\Autorun\DRV\Realtek Audio Codec ALC272X\WDM\RtlUpd.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:51:31 AM Real-time file system protection file C:\OEM\Preload\Autorun\DRV\Realtek Audio Codec ALC272X\WDM\RtkAudioService.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:51:22 AM Real-time file system protection file C:\OEM\Preload\Autorun\DRV\Realtek Audio Codec ALC272X\WDM\Alcmtr.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:51:21 AM Real-time file system protection file C:\OEM\Preload\Autorun\DRV\Realtek Audio Codec ALC272X\Vista64\SkyTel.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:51:14 AM Real-time file system protection file C:\OEM\Preload\Autorun\DRV\Realtek Audio Codec ALC272X\Vista\SkyTel.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:51:14 AM Real-time file system protection file C:\OEM\Preload\Autorun\DRV\Realtek Audio Codec ALC272X\Vista\vncutil.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:51:13 AM Real-time file system protection file C:\OEM\Preload\Autorun\DRV\Realtek Audio Codec ALC272X\Vista\RtHDVCpl.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:51:11 AM Real-time file system protection file C:\OEM\Preload\Autorun\DRV\Realtek Audio Codec ALC272X\Vista\RtlUpd.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:51:09 AM Real-time file system protection file C:\OEM\Preload\Autorun\DRV\Realtek Audio Codec ALC272X\Vista\RtHDVBg.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:51:08 AM Real-time file system protection file C:\OEM\Preload\Autorun\DRV\Realtek Audio Codec ALC272X\Vista\RtkAudioService.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:51:07 AM Real-time file system protection file C:\OEM\Preload\Autorun\DRV\Realtek Audio Codec ALC272X\MSHDQFE\Win2K_XP\us\kb888111xpsp1.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:51:06 AM Real-time file system protection file C:\OEM\Preload\Autorun\DRV\Realtek Audio Codec ALC272X\Vista\AERTSrv.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:51:03 AM Real-time file system protection file C:\OEM\Preload\Autorun\DRV\Realtek Audio Codec ALC272X\MSHDQFE\Win2K_XP\us\kb888111xpsp2.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:51:03 AM Real-time file system protection file C:\OEM\Preload\Autorun\DRV\Realtek Audio Codec ALC272X\MSHDQFE\Win2K_XP\us\kb888111w2ksp4.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:51:02 AM Real-time file system protection file C:\OEM\Preload\Autorun\DRV\Realtek Audio Codec ALC272X\MSHDQFE\Win2K3\us\kb888111srvrtm.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:51:00 AM Real-time file system protection file C:\OEM\Preload\Autorun\DRV\Realtek Audio Codec ALC272X\Setup.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:50:59 AM Real-time file system protection file C:\OEM\Preload\Autorun\DRV\Realtek Audio Codec ALC272X\ChCfg.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:50:58 AM Real-time file system protection file C:\OEM\Preload\Autorun\DRV\LITE-ON Wireless LAN 3rd WiFi 1x2 BGN Atheros HB93\setup.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:50:55 AM Real-time file system protection file C:\OEM\Preload\Autorun\DRV\Dritek Launch Manager (Acer)\Setup.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:50:55 AM Real-time file system protection file C:\OEM\Preload\Autorun\DRV\Dritek Launch Manager (Acer)\CloseApp\CloseHookApp.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:50:55 AM Real-time file system protection file C:\OEM\Preload\Autorun\DRV\Dritek Launch Manager (Acer)\UNINST32.EXE Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:50:53 AM Real-time file system protection file C:\OEM\Preload\Autorun\DRV\Chicony Camera utility Crystal Eye\RemoveAutorun.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:50:48 AM Real-time file system protection file C:\OEM\Preload\Autorun\DRV\Atheros Lan AR8132L\setup.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:50:47 AM Real-time file system protection file C:\OEM\Preload\Autorun\DRV\Atheros Lan AR8132L\DriUpdate32.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:50:36 AM Real-time file system protection file C:\OEM\Preload\Autorun\DRV\AMD VGA Chip UMA\Bin\InstallManagerApp.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:50:34 AM Real-time file system protection file C:\OEM\Preload\Autorun\DRV\AMD VGA Chip UMA\Bin\Setup.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:50:33 AM Real-time file system protection file C:\OEM\Preload\Autorun\DRV\AMD VGA Chip UMA\Bin\ATISetup.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:50:30 AM Real-time file system protection file C:\OEM\Preload\Autorun\DRV\AMD VGA Chip UMA\Setup.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:50:24 AM Real-time file system protection file C:\OEM\Preload\Autorun\DRV\ALPS Touchpad\Vi32\Ezcapt.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:50:24 AM Real-time file system protection file C:\OEM\Preload\Autorun\DRV\ALPS Touchpad\Vi32\Uninstap.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:50:20 AM Real-time file system protection file C:\OEM\Preload\Autorun\DRV\ALPS Touchpad\Vi32\ApMsgFwd.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:50:20 AM Real-time file system protection file C:\OEM\Preload\Autorun\DRV\ALPS Touchpad\Vi32\Apoint.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:50:19 AM Real-time file system protection file C:\OEM\Preload\Autorun\APP\Welcome Center\SetupOWC.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:50:18 AM Real-time file system protection file C:\OEM\Preload\Autorun\DRV\ALPS Touchpad\Setup.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:50:16 AM Real-time file system protection file C:\OEM\Preload\Autorun\DRV\ALPS Touchpad\RemoveAutorun.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:50:13 AM Real-time file system protection file C:\OEM\Preload\Autorun\APP\NTI Media Maker v8.0\setup.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:50:13 AM Real-time file system protection file C:\OEM\Preload\Autorun\APP\Norton Online Backup\OnlineBackupARASetup-PackardBell.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:50:12 AM Real-time file system protection file C:\OEM\Preload\Autorun\APP\Norton Online Backup\OnlineBackupARASetup-eMachines.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:50:12 AM Real-time file system protection file C:\OEM\Preload\Autorun\APP\NTI Media Maker v8.0\BurnRights.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:50:11 AM Real-time file system protection file C:\OEM\Preload\Autorun\APP\Norton Online Backup\OnlineBackupARASetup-Acer.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:50:11 AM Real-time file system protection file C:\OEM\Preload\Autorun\APP\Netflix Shortcut\StartURL.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:50:07 AM Real-time file system protection file C:\OEM\Preload\Autorun\APP\Netflix Shortcut\RemoveAutorun.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:49:52 AM Real-time file system protection file C:\OEM\Preload\Autorun\APP\MyWinLocker v3\program files\EgisTec\MyWinLocker 3\x86\xp32\OnlineHelp.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:49:52 AM Real-time file system protection file C:\OEM\Preload\Autorun\APP\MyWinLocker v3\program files\EgisTec\MyWinLocker 3\x86\xp32\PMMdatamgr.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:49:52 AM Real-time file system protection file C:\OEM\Preload\Autorun\APP\MyWinLocker v3\program files\EgisTec\MyWinLocker 3\x86\xp32\mwlTBMNGR.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:49:51 AM Real-time file system protection file C:\OEM\Preload\Autorun\APP\MyWinLocker v3\program files\EgisTec\MyWinLocker 3\x86\xp32\mwlRF.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:49:51 AM Real-time file system protection file C:\OEM\Preload\Autorun\APP\MyWinLocker v3\program files\EgisTec\MyWinLocker 3\x86\xp32\MWLfsu.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:49:50 AM Real-time file system protection file C:\OEM\Preload\Autorun\APP\MyWinLocker v3\program files\EgisTec\MyWinLocker 3\x86\xp32\mwlMgtConsole.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:49:50 AM Real-time file system protection file C:\OEM\Preload\Autorun\APP\MyWinLocker v3\program files\EgisTec\MyWinLocker 3\x86\xp32\mwlCSP.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:49:50 AM Real-time file system protection file C:\OEM\Preload\Autorun\APP\MyWinLocker v3\program files\EgisTec\MyWinLocker 3\x86\xp32\mwlCCPSD.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:49:49 AM Real-time file system protection file C:\OEM\Preload\Autorun\APP\MyWinLocker v3\program files\EgisTec\MyWinLocker 3\x86\xp32\Encryption.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:49:49 AM Real-time file system protection file C:\OEM\Preload\Autorun\APP\MyWinLocker v3\program files\EgisTec\MyWinLocker 3\x86\xp32\Decryption.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:49:48 AM Real-time file system protection file C:\OEM\Preload\Autorun\APP\MyWinLocker v3\program files\EgisTec\MyWinLocker 3\x86\vista32\mwlRF.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:49:47 AM Real-time file system protection file C:\OEM\Preload\Autorun\APP\MyWinLocker v3\program files\EgisTec\MyWinLocker 3\x86\vista32\PMMdatamgr.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:49:47 AM Real-time file system protection file C:\OEM\Preload\Autorun\APP\MyWinLocker v3\program files\EgisTec\MyWinLocker 3\x86\vista32\mwlTBMNGR.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:49:47 AM Real-time file system protection file C:\OEM\Preload\Autorun\APP\MyWinLocker v3\program files\EgisTec\MyWinLocker 3\x86\vista32\mwlCSP.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:49:47 AM Real-time file system protection file C:\OEM\Preload\Autorun\APP\MyWinLocker v3\program files\EgisTec\MyWinLocker 3\x86\vista32\MWLfsu.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:49:46 AM Real-time file system protection file C:\OEM\Preload\Autorun\APP\MyWinLocker v3\program files\EgisTec\MyWinLocker 3\x86\vista32\Encryption.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:49:46 AM Real-time file system protection file C:\OEM\Preload\Autorun\APP\MyWinLocker v3\program files\EgisTec\MyWinLocker 3\x86\vista32\Decryption.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:49:42 AM Real-time file system protection file C:\OEM\Preload\Autorun\APP\MyWinLocker v3\program files\EgisTec\MyWinLocker 3\x86\MWLService.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:49:21 AM Real-time file system protection file C:\OEM\Preload\Autorun\APP\eSobi\eSobiLiteSetup-SAB-204.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:49:17 AM Real-time file system protection file C:\OEM\Preload\Autorun\APP\Google Toolbar Acer Edition\Installer_v6.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:49:15 AM Real-time file system protection file C:\OEM\Preload\Autorun\APP\MyWinLocker v3\program files\EgisTec\MyWinLocker 3\Shredder.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:49:09 AM Real-time file system protection file C:\OEM\Preload\Autorun\APP\MyWinLocker v3\MyWinLocker.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:49:07 AM Real-time file system protection file C:\OEM\Preload\Autorun\APP\Arcade Deluxe v3.0\SDMA\Setup.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:49:04 AM Real-time file system protection file C:\OEM\Preload\Autorun\APP\Arcade Deluxe v3.0\PCinema\vcredist_x86.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:49:02 AM Real-time file system protection file C:\OEM\Preload\Autorun\APP\Arcade Deluxe v3.0\PCinema\setup.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:48:58 AM Real-time file system protection file C:\OEM\Preload\Autorun\APP\Acer Registration\SetupGREG.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:48:54 AM Real-time file system protection file C:\OEM\Preload\Autorun\APP\Acer Updater\LiveUpdater_v1.01.3017.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:48:52 AM Real-time file system protection file C:\OEM\Preload\Autorun\APP\Adobe Flash Player\Install Flash Player 10 ActiveX.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:48:50 AM Real-time file system protection file C:\OEM\Preload\Autorun\APP\Acer Identity Card\IDCardSetup_1.00.3003.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:48:43 AM Real-time file system protection file C:\Windows\TacoFilez\New folder\Dev-Cpp\haha.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Windows\explorer.exe. 9/8/2012 6:48:41 AM Real-time file system protection file C:\Windows\TacoFilez\New folder\Dev-Cpp\uninstall.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Windows\explorer.exe. 9/8/2012 6:48:39 AM Real-time file system protection file C:\Windows\TacoFilez\New folder\Dev-Cpp\Packman.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Windows\explorer.exe. 9/8/2012 6:48:36 AM Real-time file system protection file C:\Windows\TacoFilez\New folder\Dev-Cpp\devcpp.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Windows\explorer.exe. 9/8/2012 6:48:35 AM Real-time file system protection file C:\Windows\TacoFilez\New folder\Dev-Cpp\devcpp - Copy.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Windows\explorer.exe. 9/8/2012 6:48:35 AM Real-time file system protection file C:\OEM\Preload\Autorun\APP\Acer eRecovery Management\Recovery Management_v4.05.3006.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:48:29 AM Real-time file system protection file C:\Windows\TacoFilez\New folder\Dev-Cpp\Bash2.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Windows\explorer.exe. 9/8/2012 6:48:28 AM Real-time file system protection file C:\OEM\Preload\Autorun\APP\Acer GridVista\Setup.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:48:24 AM Real-time file system protection file C:\Windows\TacoFilez\yC1.3\yC.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Windows\explorer.exe. 9/8/2012 6:48:22 AM Real-time file system protection file C:\OEM\Preload\Autorun\APP\Acer ePower Management\Power_Management_Utility_v4.05.3006_20091029_1119_signed.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:48:19 AM Real-time file system protection file C:\OEM\Preload\Autorun\CheckFiles.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:48:14 AM Real-time file system protection file C:\Myro Install Files\pygame-1.7.1release.win32-py2.4.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:48:14 AM Real-time file system protection file C:\Myro Install Files\pywin32-210.win32-py2.4.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:48:14 AM Real-time file system protection file C:\Myro Install Files\numpy-1.0.3.1.win32-py2.4.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:48:13 AM Real-time file system protection file C:\Myro Install Files\pyserial-2.2.win32.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:48:13 AM Real-time file system protection file C:\Myro Install Files\xmpppy-0.4.0.win32.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:48:11 AM Real-time file system protection file C:\Myro Install Files\pyTTS-3.0.win32-py2.4.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:48:10 AM Real-time file system protection file C:\Myro Install Files\myro-2.2.5.win32.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:48:10 AM Real-time file system protection file C:\Myro Install Files\PIL-1.1.6.win32-py2.4.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:48:07 AM Real-time file system protection file C:\metasploit\tools\vncviewer.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:48:07 AM Real-time file system protection file C:\metasploit\tools\winvi32.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 6:48:04 AM Real-time file system protection file C:\metasploit\tools\Console.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Users\joeniqua c\Downloads\sality_off\Sality_off.exe. 9/8/2012 3:04:56 AM HTTP filter file http://205.196.121.27/tztp3p9uqbig/t18hn4u2yap1cvw/DarkCometRAT531.zip multiple threats connection terminated - quarantined Owner-PC\joeniqua c Threat was detected upon access to web by the application: C:\Program Files (x86)\Mozilla Firefox\firefox.exe. 9/8/2012 12:02:17 AM Real-time file system protection file C:\windows\tacofilez\pol\pol.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Windows\explorer.exe. 9/8/2012 12:02:16 AM Real-time file system protection file C:\windows\tacofilez\pol\uninstall.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Windows\explorer.exe. 9/8/2012 12:02:15 AM Real-time file system protection file C:\windows\tacofilez\pol\akv.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Windows\explorer.exe. 9/7/2012 11:40:36 PM Real-time file system protection file C:\cygwin\bin\mintty.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Windows\explorer.exe. 9/7/2012 10:49:54 PM Real-time file system protection file C:\Windows\TacoFilez\New folder\Dev-Cpp\Packman.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Windows\explorer.exe. 9/7/2012 10:49:54 PM Real-time file system protection file C:\Windows\TacoFilez\New folder\Dev-Cpp\haha.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Windows\explorer.exe. 9/7/2012 10:49:53 PM Real-time file system protection file C:\Windows\TacoFilez\New folder\Dev-Cpp\devcpp - Copy.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Windows\explorer.exe. 9/7/2012 10:49:52 PM Real-time file system protection file C:\Windows\TacoFilez\New folder\Dev-Cpp\devcpp.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Windows\explorer.exe. 9/7/2012 10:49:52 PM Real-time file system protection file C:\Windows\TacoFilez\New folder\Dev-Cpp\uninstall.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Windows\explorer.exe. 9/7/2012 10:49:50 PM Real-time file system protection file C:\Windows\TacoFilez\New folder\Dev-Cpp\Bash2.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Windows\explorer.exe. 9/7/2012 10:49:48 PM Real-time file system protection file C:\Windows\TacoFilez\yC1.3\yC.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Windows\explorer.exe. 9/7/2012 9:17:29 PM Startup scanner file C:\Program Files (x86)\Coupon Companion\Coupon Companion.dll Win32/Toolbar.CrossRider potentially unwanted application cleaned by deleting - quarantined 9/7/2012 8:14:11 PM Real-time file system protection file C:\metasploit\msf3\.svn\pristine\33\3395856ce81f2b7382dee72602f798b642f14140.svn-base Eicar test file cleaned by deleting - quarantined NT AUTHORITY\SYSTEM Event occurred during an attempt to access the file by the application: C:\metasploit\svn\bin\svn.exe. 9/7/2012 4:44:12 PM Real-time file system protection file C:\Windows\TacoFilez\Games\Shaiya\remi2\game3.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Windows\explorer.exe. 9/7/2012 9:57:01 AM Real-time file system protection file C:\Program Files (x86)\Xeus Technologies\Hotfusion\is-C9AP9.tmp a variant of Win32/TrojanDropper.VB.OBL trojan cleaned by deleting - quarantined Owner-PC\joeniqua c Event occurred on a new file created by the application: C:\Users\joeniqua c\AppData\Local\Temp\is-K4LRU.tmp\Hotfusion-0.8.0-installer.tmp. 9/7/2012 9:56:40 AM Real-time file system protection file C:\Program Files (x86)\Xeus Technologies\Hotfusion\is-HNGB9.tmp a variant of Win32/TrojanDropper.VB.OBL trojan cleaned by deleting - quarantined Owner-PC\joeniqua c Event occurred on a new file created by the application: C:\Users\joeniqua c\AppData\Local\Temp\is-K4LRU.tmp\Hotfusion-0.8.0-installer.tmp. 9/7/2012 9:55:27 AM Real-time file system protection file C:\Program Files (x86)\Xeus Technologies\Hotfusion\is-9DP4M.tmp a variant of Win32/TrojanDropper.VB.OBL trojan cleaned by deleting - quarantined Owner-PC\joeniqua c Event occurred on a new file created by the application: C:\Users\joeniqua c\AppData\Local\Temp\is-NHJ7Q.tmp\Hotfusion-0.8.0-installer.tmp. 9/7/2012 9:54:26 AM Real-time file system protection file C:\Users\joeniqua c\Downloads\Hotfusion080installerexezip\Hotfusion-0.8.0-installer.exe a variant of Win32/TrojanDropper.VB.OBL trojan cleaned by deleting - quarantined Owner-PC\joeniqua c Event occurred on a file modified by the application: C:\Windows\explorer.exe. 9/7/2012 9:53:46 AM Real-time file system protection file C:\$RECYCLE.BIN\S-1-5-21-1311796233-3422863359-2725502379-1001\$R0UKDJ3.exe a variant of Win32/TrojanDropper.VB.OBL trojan cleaned by deleting - quarantined Owner-PC\joeniqua c Event occurred on a file modified by the application: C:\Windows\explorer.exe. 9/7/2012 9:53:25 AM Real-time file system protection file C:\Program Files (x86)\Xeus Technologies\Hotfusion\is-R92N9.tmp a variant of Win32/TrojanDropper.VB.OBL trojan cleaned by deleting - quarantined Owner-PC\joeniqua c Event occurred on a new file created by the application: C:\Users\joeniqua c\AppData\Local\Temp\is-L0262.tmp\Hotfusion-0.8.0-installer.tmp. 9/7/2012 9:53:12 AM Real-time file system protection file C:\Program Files (x86)\Xeus Technologies\Hotfusion\is-DH9QF.tmp a variant of Win32/TrojanDropper.VB.OBL trojan cleaned by deleting - quarantined Owner-PC\joeniqua c Event occurred on a new file created by the application: C:\Users\joeniqua c\AppData\Local\Temp\is-L0262.tmp\Hotfusion-0.8.0-installer.tmp. 9/7/2012 9:51:50 AM Real-time file system protection file C:\Users\joeniqua c\Downloads\Hotfusion080installerexezip\Hotfusion-0.8.0-installer.exe a variant of Win32/TrojanDropper.VB.OBL trojan cleaned by deleting - quarantined Owner-PC\joeniqua c Event occurred on a new file created by the application: C:\Users\joeniqua c\Downloads\cbsidlm-tr1_6-Hotfusion_File_Binder-10895406.exe. 9/7/2012 8:54:02 AM Startup scanner file C:\Program Files (x86)\Yontoo\YontooIEClient.dll a variant of Win32/Adware.Yontoo.A application cleaned by deleting - quarantined 9/7/2012 8:53:54 AM Startup scanner file C:\Program Files (x86)\Coupon Companion\Coupon Companion.dll Win32/Toolbar.CrossRider potentially unwanted application 9/7/2012 7:59:36 AM Real-time file system protection file C:\Windows\TacoFilez\POL\Uninstall.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Windows\explorer.exe. 9/7/2012 7:59:28 AM Real-time file system protection file C:\Windows\TacoFilez\POL\POL.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Windows\explorer.exe. 9/7/2012 7:59:27 AM Real-time file system protection file C:\Windows\TacoFilez\POL\AKV.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Windows\explorer.exe. 9/7/2012 7:50:37 AM Real-time file system protection file C:\Windows\TacoFilez\POL\POL.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Windows\explorer.exe. 9/7/2012 7:50:37 AM Real-time file system protection file C:\Windows\TacoFilez\POL\Uninstall.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Windows\explorer.exe. 9/7/2012 7:50:36 AM Real-time file system protection file C:\Windows\TacoFilez\POL\AKV.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Windows\explorer.exe. 9/7/2012 7:50:36 AM Real-time file system protection file C:\Windows\TacoFilez\yC1.3\yC.exe Win32/Sality.NBA virus cleaned - quarantined Owner-PC\joeniqua c Event occurred during an attempt to access the file by the application: C:\Windows\explorer.exe.