Dr.Web(R) Scanner for Windows v4.33.2 (4.33.2.03283) Copyright (c) Igor Daniloff, 1992-2006 Log generated on: 2006-06-13, 05:52:27 [PALANIAPPAN-LT][palaniappan] Command-line: "C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\cureit.exe" /lng /ini:cureit_XP.ini Engine version: 4.33 (4.33.3.06020) Engine API version: 2.01 [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crwtoday.cdb - 57 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43339.cdb - 1071 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43338.cdb - 989 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43337.cdb - 855 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43336.cdb - 1297 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43335.cdb - 1195 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43334.cdb - 900 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43333.cdb - 1381 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43332.cdb - 1340 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43331.cdb - 2735 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43330.cdb - 2078 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43329.cdb - 2490 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43328.cdb - 743 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43327.cdb - 958 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43326.cdb - 793 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43325.cdb - 713 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43324.cdb - 655 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43323.cdb - 655 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43322.cdb - 778 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43321.cdb - 846 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43320.cdb - 808 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43319.cdb - 764 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43318.cdb - 838 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43317.cdb - 363 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43316.cdb - 730 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43315.cdb - 627 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43314.cdb - 824 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43313.cdb - 842 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43312.cdb - 830 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43311.cdb - 862 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43310.cdb - 853 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43309.cdb - 733 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43308.cdb - 708 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43307.cdb - 839 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43306.cdb - 930 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43305.cdb - 759 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43304.cdb - 721 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43303.cdb - 638 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43302.cdb - 806 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43301.cdb - 504 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43300.cdb - 24 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crwebase.cdb - 78674 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\cwrtoday.cdb - 57 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\cwr43301.cdb - 697 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crwrisky.cdb - 1271 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\cwntoday.cdb - 3 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\cwn43303.cdb - 766 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\cwn43302.cdb - 850 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\cwn43301.cdb - 773 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crwnasty.cdb - 4867 virus records Total virus records: 125490 Key file: C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\cureit.key License key number: 0000000010 Registered to: Dr.Web CureIt Project License key activates: 2005-03-05 License key expires: 2007-03-05 Scan statistics Objects scanned: 0 Infected objects found: 0 Objects with modifications found: 0 Suspicious objects found: 0 Adware programs found: 0 Dialer programs found: 0 Joke programs found: 0 Riskware programs found: 0 Hacktool programs found: 0 Objects cured: 0 Objects deleted: 0 Objects renamed: 0 Objects moved: 0 Objects ignored: 0 Scan speed: 0 Kb/s Scan time: 00:00:00 [Scan path] C:\WINDOWS\system32\smss.exe [Scan path] C:\WINDOWS\system32\csrss.exe [Scan path] C:\WINDOWS\system32\winlogon.exe [Scan path] C:\WINDOWS\system32\services.exe [Scan path] C:\WINDOWS\system32\lsass.exe [Scan path] C:\WINDOWS\system32\ibmpmsvc.exe [Scan path] C:\WINDOWS\system32\svchost.exe [Scan path] C:\Program Files\Intel\Wireless\Bin\EvtEng.exe [Scan path] C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe [Scan path] C:\WINDOWS\system32\spoolsv.exe [Scan path] C:\WINDOWS\system32\qosservm.exe [Scan path] C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [Scan path] C:\WINDOWS\system32\QCONSVC.EXE [Scan path] C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe [Scan path] C:\WINDOWS\system32\TPHDEXLG.exe [Scan path] C:\WINDOWS\system32\TpKmpSvc.exe [Scan path] C:\WINDOWS\system32\wdfmgr.exe [Scan path] C:\WINDOWS\system32\alg.exe [Scan path] C:\WINDOWS\system32\igfxtray.exe [Scan path] C:\WINDOWS\system32\hkcmd.exe [Scan path] C:\WINDOWS\system32\TpShocks.exe [Scan path] C:\PROGRA~1\ThinkPad\PkgMgr\HOTKEY\TPHKMGR.exe [Scan path] C:\Program Files\ThinkPad\PkgMgr\HOTKEY_1\TpScrex.exe [Scan path] C:\PROGRA~1\ThinkPad\UTILIT~1\EzEjMnAp.Exe [Scan path] C:\WINDOWS\system32\rundll32.exe [Scan path] C:\WINDOWS\system32\ctfmon.exe [Scan path] C:\Program Files\Digital Line Detect\DLG.exe [Scan path] C:\Program Files\WinZip\WZQKPICK.EXE [Scan path] C:\WINDOWS\explorer.exe [Scan path] C:\WINDOWS\system32\notepad.exe [Scan path] C:\WINDOWS\system32\javaw.exe [Scan path] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\_start.exe [Scan path] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\cureit.exe [Scan path] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe [Scan path] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [Scan path] C:\Program Files\ThinkPad\Utilities\TpKmapAp.exe [Scan path] C:\Program Files\IBM fingerprint software\ctlcntr.exe [Scan path] C:\WINDOWS\system32\tp4ex.exe [Scan path] C:\Program Files\IBM\Updater\ucstartup.exe [Scan path] C:\Program Files\IBM\Messages By IBM\ibmmessages.exe [Scan path] C:\IBMTOOLS\UTILS\ibmprc.exe [Scan path] C:\Program Files\ThinkPad\ConnectUtilities\QCTRAY.EXE [Scan path] C:\Program Files\ThinkPad\ConnectUtilities\QCWLICON.EXE [Scan path] C:\PROGRA~1\SYMANT~1\SYMANT~1\vptray.exe [Scan path] C:\Program Files\Common Files\Real\Update_OB\realsched.exe [Scan path] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe [Scan path] C:\Program Files\QuickTime\qttask.exe [Scan path] C:\Program Files\Avaya\Avaya IP Softphone\IP Service Provider\pwreset.exe [Scan path] C:\Program Files\Windows Defender\MSASCui.exe [Scan path] C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe [Scan path] C:\Program Files\Messenger\msmsgs.exe [Scan path] C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe [Scan path] C:\Documents and Settings\palaniappan\Start Menu\Programs\Startup\desktop.ini [Scan path] C:\Program Files\SpywareGuard\sgmain.exe [Scan path] C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe [Scan path] C:\Program Files\IBM\Bluetooth Software\BTTray.exe [Scan path] C:\Documents and Settings\All Users\Start Menu\Programs\Startup\desktop.ini [Scan path] C:\WINDOWS\system32\mmsys.cpl [Scan path] C:\WINDOWS\system32\icmui.dll [Scan path] C:\WINDOWS\system32\rshx32.dll [Scan path] C:\WINDOWS\system32\docprop.dll [Scan path] C:\WINDOWS\system32\ntshrui.dll [Scan path] C:\WINDOWS\system32\themeui.dll [Scan path] C:\WINDOWS\system32\deskadp.dll [Scan path] C:\WINDOWS\system32\deskmon.dll [Scan path] C:\WINDOWS\system32\dssec.dll [Scan path] C:\WINDOWS\system32\SlayerXP.dll [Scan path] C:\WINDOWS\system32\shscrap.dll [Scan path] C:\WINDOWS\system32\diskcopy.dll [Scan path] C:\WINDOWS\system32\ntlanui2.dll [Scan path] C:\WINDOWS\system32\printui.dll [Scan path] C:\WINDOWS\system32\dskquoui.dll [Scan path] C:\WINDOWS\system32\syncui.dll [Scan path] C:\WINDOWS\system32\hticons.dll [Scan path] C:\WINDOWS\system32\fontext.dll [Scan path] C:\WINDOWS\system32\deskperf.dll [Scan path] C:\WINDOWS\system32\cryptext.dll [Scan path] C:\WINDOWS\system32\NETSHELL.dll [Scan path] C:\WINDOWS\system32\wiashext.dll [Scan path] C:\WINDOWS\system32\remotepg.dll [Scan path] C:\WINDOWS\system32\wshext.dll [Scan path] C:\Program Files\Common Files\System\Ole DB\oledb32.dll [Scan path] C:\WINDOWS\system32\mstask.dll [Scan path] C:\WINDOWS\system32\shdocvw.dll [Scan path] C:\WINDOWS\system32\wuaucpl.cpl [Scan path] C:\WINDOWS\system32\twext.dll [Scan path] C:\WINDOWS\system32\shmedia.dll [Scan path] C:\WINDOWS\system32\browseui.dll [Scan path] C:\WINDOWS\system32\sendmail.dll [Scan path] C:\WINDOWS\system32\occache.dll [Scan path] C:\WINDOWS\system32\webcheck.dll [Scan path] C:\WINDOWS\system32\appwiz.cpl [Scan path] C:\WINDOWS\system32\shimgvw.dll [Scan path] C:\WINDOWS\system32\netplwiz.dll [Scan path] C:\WINDOWS\system32\zipfldr.dll [Scan path] C:\WINDOWS\system32\cdfview.dll [Scan path] C:\WINDOWS\system32\extmgr.dll [Scan path] C:\WINDOWS\system32\msieftp.dll [Scan path] C:\WINDOWS\system32\docprop2.dll [Scan path] C:\WINDOWS\system32\dsquery.dll [Scan path] C:\WINDOWS\system32\dsuiext.dll [Scan path] C:\WINDOWS\system32\mydocs.dll [Scan path] C:\WINDOWS\System32\cscui.dll [Scan path] C:\WINDOWS\msagent\agentpsh.dll [Scan path] C:\WINDOWS\system32\dfsshlex.dll [Scan path] C:\WINDOWS\system32\photowiz.dll [Scan path] C:\WINDOWS\System32\mmcshext.dll [Scan path] C:\WINDOWS\system32\cabview.dll [Scan path] C:\Program Files\Outlook Express\wabfind.dll [Scan path] C:\WINDOWS\system32\wmpshell.dll [Scan path] C:\WINDOWS\system32\Audiodev.dll [Scan path] C:\WINDOWS\system32\mscoree.dll [Scan path] C:\WINDOWS\system32\btneighborhood.dll [Scan path] C:\PROGRA~1\WINZIP\WZSHLSTB.DLL [Scan path] C:\PROGRA~1\COMMON~1\MICROS~1\WEBFOL~1\MSONSEXT.DLL [Scan path] C:\PROGRA~1\MICROS~2\OFFICE11\MLSHEXT.DLL [Scan path] C:\PROGRA~1\MICROS~2\OFFICE11\OLKFSTUB.DLL [Scan path] C:\Program Files\Microsoft Office\OFFICE11\msohev.dll [Scan path] C:\Program Files\Real\RealPlayer\rpshell.dll [Scan path] C:\Program Files\Common Files\Symantec Shared\SSC\vpshell2.dll [Scan path] C:\Program Files\WinRAR\rarext.dll [Scan path] C:\PROGRA~1\Webroot\SPYSWE~1\SSCtxMnu.dll [Scan path] C:\Program Files\SpywareGuard\spywareguard.dll [Scan path] C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll [Scan path] C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll [Scan path] c:\program files\google\googletoolbar2.dll [Scan path] C:\Program Files\Avaya\Avaya IP Softphone\AvayaWebDial.dll [Scan path] C:\WINDOWS\system32\SHELL32.dll [Scan path] C:\WINDOWS\system32\stobject.dll [Scan path] C:\WINDOWS\system32\crypt32.dll [Scan path] C:\WINDOWS\system32\cryptnet.dll [Scan path] C:\WINDOWS\system32\cscdll.dll [Scan path] C:\WINDOWS\system32\igfxsrvc.dll [Scan path] C:\WINDOWS\system32\NavLogon.dll [Scan path] C:\Program Files\IBM fingerprint software\psfus.dll [Scan path] C:\WINDOWS\system32\QConGina.dll [Scan path] C:\WINDOWS\system32\wlnotify.dll [Scan path] C:\WINDOWS\system32\sclgntfy.dll [Scan path] C:\WINDOWS\system32\tphklock.dll [Scan path] C:\WINDOWS\system32\WgaLogon.dll [Scan path] C:\WINDOWS\system32\WRLogonNTF.dll [Scan path] C:\WINDOWS\system32\DRIVERS\ABP480N5.SYS [Scan path] C:\WINDOWS\system32\drivers\ac97intc.sys [Scan path] C:\WINDOWS\system32\DRIVERS\ACPI.sys [Scan path] C:\WINDOWS\system32\DRIVERS\ACPIEC.sys [Scan path] C:\WINDOWS\system32\DRIVERS\adpu160m.sys [Scan path] C:\WINDOWS\system32\drivers\aeaudio.sys [Scan path] C:\WINDOWS\system32\drivers\aec.sys [Scan path] C:\WINDOWS\system32\DRIVERS\AegisP.sys [Scan path] C:\WINDOWS\System32\drivers\afd.sys [Scan path] C:\WINDOWS\system32\DRIVERS\agp440.sys [Scan path] C:\WINDOWS\system32\DRIVERS\agpCPQ.sys [Scan path] C:\WINDOWS\system32\DRIVERS\aha154x.sys [Scan path] C:\WINDOWS\system32\DRIVERS\aic78u2.sys [Scan path] C:\WINDOWS\system32\DRIVERS\aic78xx.sys [Scan path] C:\WINDOWS\system32\DRIVERS\aliide.sys [Scan path] C:\WINDOWS\system32\DRIVERS\alim1541.sys [Scan path] C:\WINDOWS\system32\DRIVERS\amdagp.sys [Scan path] C:\WINDOWS\system32\DRIVERS\amsint.sys [Scan path] C:\WINDOWS\System32\drivers\ANC.SYS [Scan path] C:\WINDOWS\system32\DRIVERS\asc.sys [Scan path] C:\WINDOWS\system32\DRIVERS\asc3350p.sys [Scan path] C:\WINDOWS\system32\DRIVERS\asc3550.sys [Scan path] C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_state.exe [Scan path] C:\WINDOWS\system32\DRIVERS\asyncmac.sys [Scan path] C:\WINDOWS\system32\DRIVERS\atapi.sys [Scan path] C:\WINDOWS\system32\DRIVERS\atmarpc.sys [Scan path] C:\WINDOWS\system32\DRIVERS\audstub.sys [Scan path] C:\WINDOWS\system32\DRIVERS\b57xp32.sys [Scan path] C:\WINDOWS\system32\drivers\btaudio.sys [Scan path] C:\WINDOWS\system32\DRIVERS\btport.sys [Scan path] C:\WINDOWS\system32\drivers\btkrnl.sys [Scan path] C:\Program Files\IBM\Bluetooth Software\bin\btwdins.exe [Scan path] C:\WINDOWS\system32\DRIVERS\btwdndis.sys [Scan path] C:\WINDOWS\System32\Drivers\btwusb.sys [Scan path] C:\WINDOWS\system32\DRIVERS\cbidf2k.sys [Scan path] C:\WINDOWS\system32\DRIVERS\cd20xrnt.sys [Scan path] C:\WINDOWS\system32\DRIVERS\cdrom.sys [Scan path] C:\WINDOWS\system32\cisvc.exe [Scan path] C:\WINDOWS\system32\clipsrv.exe [Scan path] C:\WINDOWS\system32\DRIVERS\CmBatt.sys [Scan path] C:\WINDOWS\system32\DRIVERS\cmdide.sys [Scan path] C:\WINDOWS\system32\DRIVERS\compbatt.sys [Scan path] C:\WINDOWS\system32\dllhost.exe [Scan path] C:\WINDOWS\system32\DRIVERS\cpqarray.sys [Scan path] C:\WINDOWS\system32\DRIVERS\dac2w2k.sys [Scan path] C:\WINDOWS\system32\DRIVERS\dac960nt.sys [Scan path] C:\PROGRA~1\SYMANT~1\SYMANT~1\DefWatch.exe [Scan path] C:\WINDOWS\system32\DRIVERS\disk.sys [Scan path] C:\WINDOWS\System32\dmadmin.exe [Scan path] C:\WINDOWS\System32\drivers\dmboot.sys [Scan path] C:\WINDOWS\System32\drivers\dmio.sys [Scan path] C:\WINDOWS\System32\drivers\dmload.sys [Scan path] C:\WINDOWS\system32\drivers\DMusic.sys [Scan path] C:\WINDOWS\system32\DRIVERS\dpti2o.sys [Scan path] C:\WINDOWS\system32\drivers\drmkaud.sys [Scan path] C:\WINDOWS\system32\DRIVERS\dsNcAdpt.sys [Scan path] C:\Program Files\Juniper Networks\Common Files\dsNcService.exe [Scan path] C:\WINDOWS\system32\DRIVERS\e100b325.sys [Scan path] C:\WINDOWS\SYSTEM32\EGATHDRV.SYS [Scan path] C:\WINDOWS\system32\DRIVERS\fdc.sys [Scan path] C:\WINDOWS\system32\DRIVERS\flpydisk.sys [Scan path] C:\WINDOWS\system32\DRIVERS\fltMgr.sys [Scan path] C:\WINDOWS\system32\DRIVERS\ftdisk.sys [Scan path] C:\WINDOWS\System32\DRIVERS\gmer.sys [Scan path] C:\WINDOWS\system32\DRIVERS\msgpc.sys [Scan path] C:\WINDOWS\system32\DRIVERS\hidusb.sys [Scan path] C:\WINDOWS\system32\DRIVERS\hpn.sys [Scan path] C:\WINDOWS\system32\DRIVERS\HSFHWICH.sys [Scan path] C:\WINDOWS\system32\DRIVERS\HSF_DP.sys [Scan path] C:\WINDOWS\System32\Drivers\HTTP.sys [Scan path] C:\WINDOWS\system32\DRIVERS\i2omp.sys [Scan path] C:\WINDOWS\system32\DRIVERS\i8042prt.sys [Scan path] C:\WINDOWS\system32\DRIVERS\ialmnt5.sys [Scan path] C:\WINDOWS\system32\drivers\ibmfilter.sys [Scan path] C:\WINDOWS\system32\DRIVERS\ibmpmdrv.sys [Scan path] C:\WINDOWS\System32\drivers\IBMBLDID.SYS [Scan path] C:\WINDOWS\system32\DRIVERS\imapi.sys [Scan path] C:\WINDOWS\system32\imapi.exe [Scan path] C:\WINDOWS\system32\DRIVERS\ini910u.sys [Scan path] C:\WINDOWS\system32\DRIVERS\intelide.sys [Scan path] C:\WINDOWS\system32\DRIVERS\intelppm.sys [Scan path] C:\WINDOWS\system32\DRIVERS\Ip6Fw.sys [Scan path] C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys [Scan path] C:\WINDOWS\system32\DRIVERS\ipinip.sys [Scan path] C:\WINDOWS\system32\DRIVERS\ipnat.sys [Scan path] C:\WINDOWS\system32\DRIVERS\ipsec.sys [Scan path] C:\WINDOWS\system32\DRIVERS\irda.sys [Scan path] C:\WINDOWS\system32\DRIVERS\irenum.sys [Scan path] C:\WINDOWS\system32\DRIVERS\isapnp.sys [Scan path] C:\WINDOWS\system32\DRIVERS\kbdclass.sys [Scan path] C:\WINDOWS\system32\drivers\kmixer.sys [Scan path] C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys [Scan path] C:\WINDOWS\system32\mnmsrvc.exe [Scan path] C:\WINDOWS\system32\DRIVERS\mouclass.sys [Scan path] C:\WINDOWS\system32\DRIVERS\mouhid.sys [Scan path] C:\WINDOWS\system32\DRIVERS\mraid35x.sys [Scan path] C:\WINDOWS\system32\DRIVERS\mrxdav.sys [Scan path] C:\WINDOWS\system32\DRIVERS\mrxsmb.sys [Scan path] C:\WINDOWS\system32\msdtc.exe [Scan path] C:\WINDOWS\system32\msiexec.exe [Scan path] C:\WINDOWS\system32\drivers\MSKSSRV.sys [Scan path] C:\WINDOWS\system32\drivers\MSPCLOCK.sys [Scan path] C:\WINDOWS\system32\drivers\MSPQM.sys [Scan path] C:\WINDOWS\system32\DRIVERS\mssmbios.sys [Scan path] C:\PROGRA~1\SYMANT~1\SYMANT~1\NAVAP.sys [Scan path] C:\Program Files\Symantec_Client_Security\Symantec AntiVirus\NAVAPEL.SYS [Scan path] C:\PROGRA~1\COMMON~1\SYMANT~1\VIRUSD~1\20060607.018\NAVENG.sys [Scan path] C:\PROGRA~1\COMMON~1\SYMANT~1\VIRUSD~1\20060607.018\NAVEX15.sys [Scan path] C:\WINDOWS\system32\DRIVERS\ndistapi.sys [Scan path] C:\WINDOWS\system32\DRIVERS\ndisuio.sys [Scan path] C:\WINDOWS\system32\DRIVERS\ndiswan.sys [Scan path] C:\WINDOWS\system32\DRIVERS\netbios.sys [Scan path] C:\WINDOWS\system32\DRIVERS\netbt.sys [Scan path] C:\WINDOWS\system32\netdde.exe [Scan path] C:\WINDOWS\system32\DRIVERS\NMnt.sys [Scan path] C:\PROGRA~1\SYMANT~1\SYMANT~1\Rtvscan.exe [Scan path] C:\WINDOWS\system32\drivers\npf.sys [Scan path] C:\WINDOWS\system32\DRIVERS\nscirda.sys [Scan path] C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [Scan path] C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys [Scan path] C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys [Scan path] C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [Scan path] C:\WINDOWS\system32\DRIVERS\parport.sys [Scan path] C:\WINDOWS\system32\DRIVERS\pci.sys [Scan path] C:\WINDOWS\system32\DRIVERS\pciide.sys [Scan path] C:\WINDOWS\system32\DRIVERS\pcmcia.sys [Scan path] C:\WINDOWS\system32\DRIVERS\perc2.sys [Scan path] C:\WINDOWS\system32\DRIVERS\perc2hib.sys [Scan path] C:\WINDOWS\SYSTEM32\Drivers\PMEMNT.SYS [Scan path] C:\WINDOWS\system32\DRIVERS\NscTpmDD.sys [Scan path] C:\WINDOWS\system32\DRIVERS\raspptp.sys [Scan path] C:\WINDOWS\system32\DRIVERS\processr.sys [Scan path] C:\WINDOWS\system32\Drivers\psadd.sys [Scan path] C:\WINDOWS\system32\DRIVERS\psched.sys [Scan path] C:\WINDOWS\system32\DRIVERS\ptilink.sys [Scan path] C:\WINDOWS\System32\Drivers\PxHelp20.sys [Scan path] C:\WINDOWS\System32\drivers\qcndisif.SYS [Scan path] C:\WINDOWS\system32\DRIVERS\ql1080.sys [Scan path] C:\WINDOWS\system32\DRIVERS\ql10wnt.sys [Scan path] C:\WINDOWS\system32\DRIVERS\ql12160.sys [Scan path] C:\WINDOWS\system32\DRIVERS\ql1240.sys [Scan path] C:\WINDOWS\system32\DRIVERS\ql1280.sys [Scan path] C:\WINDOWS\system32\DRIVERS\rasacd.sys [Scan path] C:\WINDOWS\system32\DRIVERS\rasirda.sys [Scan path] C:\WINDOWS\system32\DRIVERS\rasl2tp.sys [Scan path] C:\WINDOWS\system32\DRIVERS\raspppoe.sys [Scan path] C:\WINDOWS\system32\DRIVERS\raspti.sys [Scan path] C:\WINDOWS\system32\DRIVERS\rdbss.sys [Scan path] C:\WINDOWS\System32\DRIVERS\RDPCDD.sys [Scan path] C:\WINDOWS\system32\DRIVERS\rdpdr.sys [Scan path] C:\WINDOWS\system32\sessmgr.exe [Scan path] C:\WINDOWS\system32\DRIVERS\redbook.sys [Scan path] C:\Program Files\WinPcap\rpcapd.exe [Scan path] C:\WINDOWS\system32\locator.exe [Scan path] C:\WINDOWS\system32\rsvp.exe [Scan path] C:\WINDOWS\system32\DRIVERS\s24trans.sys [Scan path] C:\WINDOWS\System32\SCardSvr.exe [Scan path] C:\WINDOWS\system32\DRIVERS\secdrv.sys [Scan path] C:\WINDOWS\system32\DRIVERS\serenum.sys [Scan path] C:\WINDOWS\system32\DRIVERS\serial.sys [Scan path] C:\WINDOWS\system32\DRIVERS\sfloppy.sys [Scan path] C:\WINDOWS\system32\DRIVERS\sisagp.sys [Scan path] C:\WINDOWS\System32\drivers\Smapint.sys [Scan path] C:\WINDOWS\system32\drivers\smwdm.sys [Scan path] C:\WINDOWS\system32\DRIVERS\sparrow.sys [Scan path] C:\WINDOWS\system32\drivers\splitter.sys [Scan path] C:\Documents and Settings\All Users\Application Data\Spyware Terminator\sp_rsdrv2.sys [Scan path] C:\WINDOWS\system32\DRIVERS\sr.sys [Scan path] C:\WINDOWS\system32\DRIVERS\srv.sys [Scan path] C:\WINDOWS\system32\Drivers\SSI.SYS [Scan path] C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe [Scan path] C:\WINDOWS\system32\DRIVERS\swenum.sys [Scan path] C:\WINDOWS\system32\drivers\swmidi.sys [Scan path] C:\WINDOWS\system32\DRIVERS\symc810.sys [Scan path] C:\WINDOWS\system32\DRIVERS\symc8xx.sys [Scan path] C:\Program Files\Symantec\SYMEVENT.SYS [Scan path] C:\WINDOWS\system32\DRIVERS\sym_hi.sys [Scan path] C:\WINDOWS\system32\DRIVERS\sym_u3.sys [Scan path] C:\WINDOWS\system32\DRIVERS\SynTP.sys [Scan path] C:\WINDOWS\system32\drivers\sysaudio.sys [Scan path] C:\WINDOWS\system32\smlogsvc.exe [Scan path] C:\WINDOWS\system32\DRIVERS\tcpip.sys [Scan path] C:\WINDOWS\System32\Drivers\tcusb.sys [Scan path] C:\WINDOWS\System32\drivers\TDSMAPI.SYS [Scan path] C:\WINDOWS\system32\DRIVERS\termdd.sys [Scan path] C:\WINDOWS\system32\tlntsvr.exe [Scan path] C:\WINDOWS\system32\DRIVERS\toside.sys [Scan path] C:\WINDOWS\System32\DRIVERS\TPInput.sys [Scan path] C:\WINDOWS\System32\drivers\Tppwrif.sys [Scan path] C:\WINDOWS\System32\drivers\TSMAPIP.SYS [Scan path] C:\WINDOWS\system32\DRIVERS\ultra.sys [Scan path] C:\WINDOWS\system32\DRIVERS\update.sys [Scan path] C:\WINDOWS\System32\ups.exe [Scan path] C:\WINDOWS\system32\DRIVERS\usbehci.sys [Scan path] C:\WINDOWS\system32\DRIVERS\usbhub.sys [Scan path] C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [Scan path] C:\WINDOWS\system32\DRIVERS\usbuhci.sys [Scan path] C:\WINDOWS\System32\drivers\vga.sys [Scan path] C:\WINDOWS\system32\DRIVERS\viaagp.sys [Scan path] C:\WINDOWS\system32\DRIVERS\viaide.sys [Scan path] C:\WINDOWS\System32\vssvc.exe [Scan path] C:\Program Files\Common Files\Virtual Token\vtserver.exe [Scan path] C:\WINDOWS\system32\DRIVERS\w29n51.sys [Scan path] C:\WINDOWS\system32\DRIVERS\wanarp.sys [Scan path] C:\WINDOWS\system32\drivers\wdmaud.sys [Scan path] C:\WINDOWS\system32\DRIVERS\HSF_CNXT.sys [Scan path] C:\Program Files\Windows Defender\MsMpEng.exe [Scan path] c:\program files\windows media connect\mswmccds.exe [Scan path] C:\Program Files\Windows Media Connect\mswmcls.exe [Scan path] C:\WINDOWS\system32\wbem\wmiapsrv.exe [Scan path] C:\WINDOWS\System32\drivers\ws2ifsl.sys [Scan path] C:\Program Files\IBM\IBM Rapid Restore Ultra\rrpcsb.exe [Scan path] C:\Documents and Settings\palaniappan\Start Menu\Programs\Startup\SpywareGuard.lnk [Scan path] C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Adobe Reader Speed Launch.lnk [Scan path] C:\Documents and Settings\All Users\Start Menu\Programs\Startup\BTTray.lnk [Scan path] C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Digital Line Detect.lnk [Scan path] C:\Documents and Settings\All Users\Start Menu\Programs\Startup\WinZip Quick Pick.lnk Scan statistics Objects scanned: 361 Infected objects found: 0 Objects with modifications found: 0 Suspicious objects found: 0 Adware programs found: 0 Dialer programs found: 0 Joke programs found: 0 Riskware programs found: 0 Hacktool programs found: 0 Objects cured: 0 Objects deleted: 0 Objects renamed: 0 Objects moved: 0 Objects ignored: 0 Scan speed: 2649 Kb/s Scan time: 00:00:27 [Scan path] C:\ C:\hiberfil.sys - read error C:\Documents and Settings\LocalService\NTUSER.DAT - read error C:\Documents and Settings\LocalService\NTUSER~1.LOG - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS02~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS08~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS09~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS0A~2.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS0A~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS11~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS12~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS13~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS14~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS16~2.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS16~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS1A~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS1D~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS20~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS21~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS23~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS28~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS2E~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS2F~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS30~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS32~3.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS32~2.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS32~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS36~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS38~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS3A~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS3A~2.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS42~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS43~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS47~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS4C~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS4E~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS53~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS55~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS60~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS62~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS64~2.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS64~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS67~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS68~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS68~2.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS6E~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS73~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS75~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS78~2.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS78~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS79~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS7E~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS81~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS82~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS85~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS86~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS86~2.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS87~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS8A~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS8C~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS8D~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS8E~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS8F~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS90~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS94~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS95~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS9C~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSA0~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSA1~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSA2~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSA3~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSA4~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSA5~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSA5~2.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSA6~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSA8~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSB0~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSB6~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSB8~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSB9~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSB9~2.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSBB~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSBE~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSC0~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSC9~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSCB~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSCB~3.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSCB~2.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSCB~4.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSD0~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSD3~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSD4~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSD8~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSD9~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSDA~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSDF~2.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSDF~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSE5~2.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSE5~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSE7~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSEA~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSF0~2.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSF0~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSF2~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSF2~2.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSF6~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSFC~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSFF~1.TMP - read error C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat - read error C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\USRCLA~1.LOG - read error C:\Documents and Settings\NetworkService\NTUSER.DAT - read error C:\Documents and Settings\NetworkService\NTUSER~1.LOG - read error C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat - read error C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\USRCLA~1.LOG - read error C:\Documents and Settings\palaniappan\NTUSER.DAT - read error C:\Documents and Settings\palaniappan\NTUSER~1.LOG - read error C:\Documents and Settings\palaniappan\Application Data\Adobe\Acrobat\7.0\Updater\udlog.txt - read error C:\Documents and Settings\palaniappan\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat - read error C:\Documents and Settings\palaniappan\Local Settings\Application Data\Microsoft\Windows\USRCLA~1.LOG - read error C:\Documents and Settings\palaniappan\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{CAC16~1 - read error C:\Documents and Settings\palaniappan\Local Settings\Temp\~DF35E4.tmp - read error C:\Documents and Settings\palaniappan\Local Settings\Temp\hsperfdata_palaniappan\13480 - read error C:\Documents and Settings\palaniappan\Local Settings\Temp\MFPrint_PCL5c_5484\map00000.tmp - read error C:\Program Files\IBM\IBM Rapid Restore Ultra\osfilter.txt probably infected with SCRIPT.BATCH.Virus Total session statistics Objects scanned: 129397 Infected objects found: 0 Objects with modifications found: 0 Suspicious objects found: 1 Adware programs found: 0 Dialer programs found: 0 Joke programs found: 0 Riskware programs found: 0 Hacktool programs found: 0 Objects cured: 0 Objects deleted: 0 Objects renamed: 0 Objects moved: 0 Objects ignored: 0 Scan speed: 1042 Kb/s Scan time: 00:44:44 Dr.Web(R) Scanner for Windows v4.33.2 (4.33.2.03283) Copyright (c) Igor Daniloff, 1992-2006 Log generated on: 2006-06-13, 07:39:36 [PALANIAPPAN-LT][palaniappan] Command-line: "C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\cureit.exe" /lng /ini:cureit_XP.ini Engine version: 4.33 (4.33.3.06020) Engine API version: 2.01 [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crwtoday.cdb - 57 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43339.cdb - 1071 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43338.cdb - 989 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43337.cdb - 855 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43336.cdb - 1297 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43335.cdb - 1195 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43334.cdb - 900 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43333.cdb - 1381 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43332.cdb - 1340 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43331.cdb - 2735 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43330.cdb - 2078 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43329.cdb - 2490 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43328.cdb - 743 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43327.cdb - 958 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43326.cdb - 793 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43325.cdb - 713 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43324.cdb - 655 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43323.cdb - 655 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43322.cdb - 778 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43321.cdb - 846 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43320.cdb - 808 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43319.cdb - 764 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43318.cdb - 838 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43317.cdb - 363 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43316.cdb - 730 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43315.cdb - 627 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43314.cdb - 824 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43313.cdb - 842 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43312.cdb - 830 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43311.cdb - 862 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43310.cdb - 853 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43309.cdb - 733 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43308.cdb - 708 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43307.cdb - 839 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43306.cdb - 930 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43305.cdb - 759 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43304.cdb - 721 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43303.cdb - 638 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43302.cdb - 806 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43301.cdb - 504 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crw43300.cdb - 24 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crwebase.cdb - 78674 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\cwrtoday.cdb - 57 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\cwr43301.cdb - 697 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crwrisky.cdb - 1271 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\cwntoday.cdb - 3 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\cwn43303.cdb - 766 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\cwn43302.cdb - 850 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\cwn43301.cdb - 773 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\crwnasty.cdb - 4867 virus records Total virus records: 125490 Key file: C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\cureit.key License key number: 0000000010 Registered to: Dr.Web CureIt Project License key activates: 2005-03-05 License key expires: 2007-03-05 Scan statistics Objects scanned: 0 Infected objects found: 0 Objects with modifications found: 0 Suspicious objects found: 0 Adware programs found: 0 Dialer programs found: 0 Joke programs found: 0 Riskware programs found: 0 Hacktool programs found: 0 Objects cured: 0 Objects deleted: 0 Objects renamed: 0 Objects moved: 0 Objects ignored: 0 Scan speed: 0 Kb/s Scan time: 00:00:00 [Scan path] C:\WINDOWS\system32\smss.exe [Scan path] C:\WINDOWS\system32\csrss.exe [Scan path] C:\WINDOWS\system32\winlogon.exe [Scan path] C:\WINDOWS\system32\services.exe [Scan path] C:\WINDOWS\system32\lsass.exe [Scan path] C:\WINDOWS\system32\ibmpmsvc.exe [Scan path] C:\WINDOWS\system32\svchost.exe [Scan path] C:\Program Files\Intel\Wireless\Bin\EvtEng.exe [Scan path] C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe [Scan path] C:\WINDOWS\system32\spoolsv.exe [Scan path] C:\WINDOWS\system32\qosservm.exe [Scan path] C:\WINDOWS\system32\QCONSVC.EXE [Scan path] C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe [Scan path] C:\WINDOWS\system32\TPHDEXLG.exe [Scan path] C:\WINDOWS\system32\TpKmpSvc.exe [Scan path] C:\WINDOWS\system32\wdfmgr.exe [Scan path] C:\WINDOWS\system32\alg.exe [Scan path] C:\WINDOWS\system32\wuauclt.exe [Scan path] C:\WINDOWS\Explorer.EXE [Scan path] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe [Scan path] C:\WINDOWS\system32\igfxtray.exe [Scan path] C:\WINDOWS\system32\hkcmd.exe [Scan path] C:\WINDOWS\system32\TpShocks.exe [Scan path] C:\Program Files\ThinkPad\Utilities\EZEJMNAP.EXE [Scan path] C:\WINDOWS\system32\rundll32.exe [Scan path] C:\WINDOWS\System32\Wbem\wmiprvse.exe [Scan path] C:\PROGRA~1\SYMANT~1\SYMANT~1\vptray.exe [Scan path] C:\Program Files\QuickTime\qttask.exe [Scan path] C:\WINDOWS\system32\ctfmon.exe [Scan path] C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe [Scan path] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\_start.exe [Scan path] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\cureit.exe [Scan path] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [Scan path] C:\Program Files\ThinkPad\Utilities\TpKmapAp.exe [Scan path] C:\PROGRA~1\ThinkPad\PkgMgr\HOTKEY\TPHKMGR.exe [Scan path] C:\Program Files\IBM fingerprint software\ctlcntr.exe [Scan path] C:\WINDOWS\system32\tp4ex.exe [Scan path] C:\PROGRA~1\ThinkPad\UTILIT~1\EzEjMnAp.Exe [Scan path] C:\Program Files\IBM\Updater\ucstartup.exe [Scan path] C:\Program Files\IBM\Messages By IBM\ibmmessages.exe [Scan path] C:\IBMTOOLS\UTILS\ibmprc.exe [Scan path] C:\Program Files\ThinkPad\ConnectUtilities\QCTRAY.EXE [Scan path] C:\Program Files\ThinkPad\ConnectUtilities\QCWLICON.EXE [Scan path] C:\Program Files\Common Files\Real\Update_OB\realsched.exe [Scan path] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe [Scan path] C:\Program Files\Avaya\Avaya IP Softphone\IP Service Provider\pwreset.exe [Scan path] C:\Program Files\Windows Defender\MSASCui.exe [Scan path] C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe [Scan path] C:\Program Files\Messenger\msmsgs.exe [Scan path] C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe [Scan path] C:\Documents and Settings\palaniappan\Start Menu\Programs\Startup\desktop.ini [Scan path] C:\Program Files\SpywareGuard\sgmain.exe [Scan path] C:\Program Files\IBM\Bluetooth Software\BTTray.exe [Scan path] C:\Documents and Settings\All Users\Start Menu\Programs\Startup\desktop.ini [Scan path] C:\Program Files\Digital Line Detect\DLG.exe [Scan path] C:\Program Files\WinZip\WZQKPICK.EXE [Scan path] C:\WINDOWS\system32\mmsys.cpl [Scan path] C:\WINDOWS\system32\icmui.dll [Scan path] C:\WINDOWS\system32\rshx32.dll [Scan path] C:\WINDOWS\system32\docprop.dll [Scan path] C:\WINDOWS\system32\ntshrui.dll [Scan path] C:\WINDOWS\system32\themeui.dll [Scan path] C:\WINDOWS\system32\deskadp.dll [Scan path] C:\WINDOWS\system32\deskmon.dll [Scan path] C:\WINDOWS\system32\dssec.dll [Scan path] C:\WINDOWS\system32\SlayerXP.dll [Scan path] C:\WINDOWS\system32\shscrap.dll [Scan path] C:\WINDOWS\system32\diskcopy.dll [Scan path] C:\WINDOWS\system32\ntlanui2.dll [Scan path] C:\WINDOWS\system32\printui.dll [Scan path] C:\WINDOWS\system32\dskquoui.dll [Scan path] C:\WINDOWS\system32\syncui.dll [Scan path] C:\WINDOWS\system32\hticons.dll [Scan path] C:\WINDOWS\system32\fontext.dll [Scan path] C:\WINDOWS\system32\deskperf.dll [Scan path] C:\WINDOWS\system32\cryptext.dll [Scan path] C:\WINDOWS\system32\NETSHELL.dll [Scan path] C:\WINDOWS\system32\wiashext.dll [Scan path] C:\WINDOWS\system32\remotepg.dll [Scan path] C:\WINDOWS\system32\wshext.dll [Scan path] C:\Program Files\Common Files\System\Ole DB\oledb32.dll [Scan path] C:\WINDOWS\system32\mstask.dll [Scan path] C:\WINDOWS\system32\shdocvw.dll [Scan path] C:\WINDOWS\system32\wuaucpl.cpl [Scan path] C:\WINDOWS\system32\twext.dll [Scan path] C:\WINDOWS\system32\shmedia.dll [Scan path] C:\WINDOWS\system32\browseui.dll [Scan path] C:\WINDOWS\system32\sendmail.dll [Scan path] C:\WINDOWS\system32\occache.dll [Scan path] C:\WINDOWS\system32\webcheck.dll [Scan path] C:\WINDOWS\system32\appwiz.cpl [Scan path] C:\WINDOWS\system32\shimgvw.dll [Scan path] C:\WINDOWS\system32\netplwiz.dll [Scan path] C:\WINDOWS\system32\zipfldr.dll [Scan path] C:\WINDOWS\system32\cdfview.dll [Scan path] C:\WINDOWS\system32\extmgr.dll [Scan path] C:\WINDOWS\system32\msieftp.dll [Scan path] C:\WINDOWS\system32\docprop2.dll [Scan path] C:\WINDOWS\system32\dsquery.dll [Scan path] C:\WINDOWS\system32\dsuiext.dll [Scan path] C:\WINDOWS\system32\mydocs.dll [Scan path] C:\WINDOWS\System32\cscui.dll [Scan path] C:\WINDOWS\msagent\agentpsh.dll [Scan path] C:\WINDOWS\system32\dfsshlex.dll [Scan path] C:\WINDOWS\system32\photowiz.dll [Scan path] C:\WINDOWS\System32\mmcshext.dll [Scan path] C:\WINDOWS\system32\cabview.dll [Scan path] C:\Program Files\Outlook Express\wabfind.dll [Scan path] C:\WINDOWS\system32\wmpshell.dll [Scan path] C:\WINDOWS\system32\Audiodev.dll [Scan path] C:\WINDOWS\system32\mscoree.dll [Scan path] C:\WINDOWS\system32\btneighborhood.dll [Scan path] C:\PROGRA~1\WINZIP\WZSHLSTB.DLL [Scan path] C:\PROGRA~1\COMMON~1\MICROS~1\WEBFOL~1\MSONSEXT.DLL [Scan path] C:\PROGRA~1\MICROS~2\OFFICE11\MLSHEXT.DLL [Scan path] C:\PROGRA~1\MICROS~2\OFFICE11\OLKFSTUB.DLL [Scan path] C:\Program Files\Microsoft Office\OFFICE11\msohev.dll [Scan path] C:\Program Files\Real\RealPlayer\rpshell.dll [Scan path] C:\Program Files\Common Files\Symantec Shared\SSC\vpshell2.dll [Scan path] C:\Program Files\WinRAR\rarext.dll [Scan path] C:\PROGRA~1\Webroot\SPYSWE~1\SSCtxMnu.dll [Scan path] C:\Program Files\SpywareGuard\spywareguard.dll [Scan path] C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll [Scan path] C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll [Scan path] c:\program files\google\googletoolbar2.dll [Scan path] C:\Program Files\Avaya\Avaya IP Softphone\AvayaWebDial.dll [Scan path] C:\WINDOWS\system32\SHELL32.dll [Scan path] C:\WINDOWS\system32\stobject.dll [Scan path] C:\WINDOWS\system32\crypt32.dll [Scan path] C:\WINDOWS\system32\cryptnet.dll [Scan path] C:\WINDOWS\system32\cscdll.dll [Scan path] C:\WINDOWS\system32\igfxsrvc.dll [Scan path] C:\WINDOWS\system32\NavLogon.dll [Scan path] C:\Program Files\IBM fingerprint software\psfus.dll [Scan path] C:\WINDOWS\system32\QConGina.dll [Scan path] C:\WINDOWS\system32\wlnotify.dll [Scan path] C:\WINDOWS\system32\sclgntfy.dll [Scan path] C:\WINDOWS\system32\tphklock.dll [Scan path] C:\WINDOWS\system32\WgaLogon.dll [Scan path] C:\WINDOWS\system32\WRLogonNTF.dll [Scan path] C:\WINDOWS\system32\DRIVERS\ABP480N5.SYS [Scan path] C:\WINDOWS\system32\drivers\ac97intc.sys [Scan path] C:\WINDOWS\system32\DRIVERS\ACPI.sys [Scan path] C:\WINDOWS\system32\DRIVERS\ACPIEC.sys [Scan path] C:\WINDOWS\system32\DRIVERS\adpu160m.sys [Scan path] C:\WINDOWS\system32\drivers\aeaudio.sys [Scan path] C:\WINDOWS\system32\drivers\aec.sys [Scan path] C:\WINDOWS\system32\DRIVERS\AegisP.sys [Scan path] C:\WINDOWS\System32\drivers\afd.sys [Scan path] C:\WINDOWS\system32\DRIVERS\agp440.sys [Scan path] C:\WINDOWS\system32\DRIVERS\agpCPQ.sys [Scan path] C:\WINDOWS\system32\DRIVERS\aha154x.sys [Scan path] C:\WINDOWS\system32\DRIVERS\aic78u2.sys [Scan path] C:\WINDOWS\system32\DRIVERS\aic78xx.sys [Scan path] C:\WINDOWS\system32\DRIVERS\aliide.sys [Scan path] C:\WINDOWS\system32\DRIVERS\alim1541.sys [Scan path] C:\WINDOWS\system32\DRIVERS\amdagp.sys [Scan path] C:\WINDOWS\system32\DRIVERS\amsint.sys [Scan path] C:\WINDOWS\System32\drivers\ANC.SYS [Scan path] C:\WINDOWS\system32\DRIVERS\asc.sys [Scan path] C:\WINDOWS\system32\DRIVERS\asc3350p.sys [Scan path] C:\WINDOWS\system32\DRIVERS\asc3550.sys [Scan path] C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_state.exe [Scan path] C:\WINDOWS\system32\DRIVERS\asyncmac.sys [Scan path] C:\WINDOWS\system32\DRIVERS\atapi.sys [Scan path] C:\WINDOWS\system32\DRIVERS\atmarpc.sys [Scan path] C:\WINDOWS\system32\DRIVERS\audstub.sys [Scan path] C:\WINDOWS\system32\DRIVERS\b57xp32.sys [Scan path] C:\WINDOWS\system32\drivers\btaudio.sys [Scan path] C:\WINDOWS\system32\DRIVERS\btport.sys [Scan path] C:\WINDOWS\system32\drivers\btkrnl.sys [Scan path] C:\Program Files\IBM\Bluetooth Software\bin\btwdins.exe [Scan path] C:\WINDOWS\system32\DRIVERS\btwdndis.sys [Scan path] C:\WINDOWS\System32\Drivers\btwusb.sys [Scan path] C:\WINDOWS\system32\DRIVERS\cbidf2k.sys [Scan path] C:\WINDOWS\system32\DRIVERS\cd20xrnt.sys [Scan path] C:\WINDOWS\system32\DRIVERS\cdrom.sys [Scan path] C:\WINDOWS\system32\cisvc.exe [Scan path] C:\WINDOWS\system32\clipsrv.exe [Scan path] C:\WINDOWS\system32\DRIVERS\CmBatt.sys [Scan path] C:\WINDOWS\system32\DRIVERS\cmdide.sys [Scan path] C:\WINDOWS\system32\DRIVERS\compbatt.sys [Scan path] C:\WINDOWS\system32\dllhost.exe [Scan path] C:\WINDOWS\system32\DRIVERS\cpqarray.sys [Scan path] C:\WINDOWS\system32\DRIVERS\dac2w2k.sys [Scan path] C:\WINDOWS\system32\DRIVERS\dac960nt.sys [Scan path] C:\PROGRA~1\SYMANT~1\SYMANT~1\DefWatch.exe [Scan path] C:\WINDOWS\system32\DRIVERS\disk.sys [Scan path] C:\WINDOWS\System32\dmadmin.exe [Scan path] C:\WINDOWS\System32\drivers\dmboot.sys [Scan path] C:\WINDOWS\System32\drivers\dmio.sys [Scan path] C:\WINDOWS\System32\drivers\dmload.sys [Scan path] C:\WINDOWS\system32\drivers\DMusic.sys [Scan path] C:\WINDOWS\system32\DRIVERS\dpti2o.sys [Scan path] C:\WINDOWS\system32\drivers\drmkaud.sys [Scan path] C:\WINDOWS\system32\DRIVERS\dsNcAdpt.sys [Scan path] C:\Program Files\Juniper Networks\Common Files\dsNcService.exe [Scan path] C:\WINDOWS\system32\DRIVERS\e100b325.sys [Scan path] C:\WINDOWS\SYSTEM32\EGATHDRV.SYS [Scan path] C:\WINDOWS\system32\DRIVERS\fdc.sys [Scan path] C:\WINDOWS\system32\DRIVERS\flpydisk.sys [Scan path] C:\WINDOWS\system32\DRIVERS\fltMgr.sys [Scan path] C:\WINDOWS\system32\DRIVERS\ftdisk.sys [Scan path] C:\WINDOWS\System32\DRIVERS\gmer.sys [Scan path] C:\WINDOWS\system32\DRIVERS\msgpc.sys [Scan path] C:\WINDOWS\system32\DRIVERS\hidusb.sys [Scan path] C:\WINDOWS\system32\DRIVERS\hpn.sys [Scan path] C:\WINDOWS\system32\DRIVERS\HSFHWICH.sys [Scan path] C:\WINDOWS\system32\DRIVERS\HSF_DP.sys [Scan path] C:\WINDOWS\System32\Drivers\HTTP.sys [Scan path] C:\WINDOWS\system32\DRIVERS\i2omp.sys [Scan path] C:\WINDOWS\system32\DRIVERS\i8042prt.sys [Scan path] C:\WINDOWS\system32\DRIVERS\ialmnt5.sys [Scan path] C:\WINDOWS\system32\drivers\ibmfilter.sys [Scan path] C:\WINDOWS\system32\DRIVERS\ibmpmdrv.sys [Scan path] C:\WINDOWS\System32\drivers\IBMBLDID.SYS [Scan path] C:\WINDOWS\system32\DRIVERS\imapi.sys [Scan path] C:\WINDOWS\system32\imapi.exe [Scan path] C:\WINDOWS\system32\DRIVERS\ini910u.sys [Scan path] C:\WINDOWS\system32\DRIVERS\intelide.sys [Scan path] C:\WINDOWS\system32\DRIVERS\intelppm.sys [Scan path] C:\WINDOWS\system32\DRIVERS\Ip6Fw.sys [Scan path] C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys [Scan path] C:\WINDOWS\system32\DRIVERS\ipinip.sys [Scan path] C:\WINDOWS\system32\DRIVERS\ipnat.sys [Scan path] C:\WINDOWS\system32\DRIVERS\ipsec.sys [Scan path] C:\WINDOWS\system32\DRIVERS\irda.sys [Scan path] C:\WINDOWS\system32\DRIVERS\irenum.sys [Scan path] C:\WINDOWS\system32\DRIVERS\isapnp.sys [Scan path] C:\WINDOWS\system32\DRIVERS\kbdclass.sys [Scan path] C:\WINDOWS\system32\drivers\kmixer.sys [Scan path] C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [Scan path] C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys [Scan path] C:\WINDOWS\system32\mnmsrvc.exe [Scan path] C:\WINDOWS\system32\DRIVERS\mouclass.sys [Scan path] C:\WINDOWS\system32\DRIVERS\mouhid.sys [Scan path] C:\WINDOWS\system32\DRIVERS\mraid35x.sys [Scan path] C:\WINDOWS\system32\DRIVERS\mrxdav.sys [Scan path] C:\WINDOWS\system32\DRIVERS\mrxsmb.sys [Scan path] C:\WINDOWS\system32\msdtc.exe [Scan path] C:\WINDOWS\system32\msiexec.exe [Scan path] C:\WINDOWS\system32\drivers\MSKSSRV.sys [Scan path] C:\WINDOWS\system32\drivers\MSPCLOCK.sys [Scan path] C:\WINDOWS\system32\drivers\MSPQM.sys [Scan path] C:\WINDOWS\system32\DRIVERS\mssmbios.sys [Scan path] C:\PROGRA~1\SYMANT~1\SYMANT~1\NAVAP.sys [Scan path] C:\Program Files\Symantec_Client_Security\Symantec AntiVirus\NAVAPEL.SYS [Scan path] C:\PROGRA~1\COMMON~1\SYMANT~1\VIRUSD~1\20060607.018\NAVENG.sys [Scan path] C:\PROGRA~1\COMMON~1\SYMANT~1\VIRUSD~1\20060607.018\NAVEX15.sys [Scan path] C:\WINDOWS\system32\DRIVERS\ndistapi.sys [Scan path] C:\WINDOWS\system32\DRIVERS\ndisuio.sys [Scan path] C:\WINDOWS\system32\DRIVERS\ndiswan.sys [Scan path] C:\WINDOWS\system32\DRIVERS\netbios.sys [Scan path] C:\WINDOWS\system32\DRIVERS\netbt.sys [Scan path] C:\WINDOWS\system32\netdde.exe [Scan path] C:\WINDOWS\system32\DRIVERS\NMnt.sys [Scan path] C:\PROGRA~1\SYMANT~1\SYMANT~1\Rtvscan.exe [Scan path] C:\WINDOWS\system32\drivers\npf.sys [Scan path] C:\WINDOWS\system32\DRIVERS\nscirda.sys [Scan path] C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [Scan path] C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys [Scan path] C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys [Scan path] C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [Scan path] C:\WINDOWS\system32\DRIVERS\parport.sys [Scan path] C:\WINDOWS\system32\DRIVERS\pci.sys [Scan path] C:\WINDOWS\system32\DRIVERS\pciide.sys [Scan path] C:\WINDOWS\system32\DRIVERS\pcmcia.sys [Scan path] C:\WINDOWS\system32\DRIVERS\perc2.sys [Scan path] C:\WINDOWS\system32\DRIVERS\perc2hib.sys [Scan path] C:\WINDOWS\SYSTEM32\Drivers\PMEMNT.SYS [Scan path] C:\WINDOWS\system32\DRIVERS\NscTpmDD.sys [Scan path] C:\WINDOWS\system32\DRIVERS\raspptp.sys [Scan path] C:\WINDOWS\system32\DRIVERS\processr.sys [Scan path] C:\WINDOWS\system32\Drivers\psadd.sys [Scan path] C:\WINDOWS\system32\DRIVERS\psched.sys [Scan path] C:\WINDOWS\system32\DRIVERS\ptilink.sys [Scan path] C:\WINDOWS\System32\Drivers\PxHelp20.sys [Scan path] C:\WINDOWS\System32\drivers\qcndisif.SYS [Scan path] C:\WINDOWS\system32\DRIVERS\ql1080.sys [Scan path] C:\WINDOWS\system32\DRIVERS\ql10wnt.sys [Scan path] C:\WINDOWS\system32\DRIVERS\ql12160.sys [Scan path] C:\WINDOWS\system32\DRIVERS\ql1240.sys [Scan path] C:\WINDOWS\system32\DRIVERS\ql1280.sys [Scan path] C:\WINDOWS\system32\DRIVERS\rasacd.sys [Scan path] C:\WINDOWS\system32\DRIVERS\rasirda.sys [Scan path] C:\WINDOWS\system32\DRIVERS\rasl2tp.sys [Scan path] C:\WINDOWS\system32\DRIVERS\raspppoe.sys [Scan path] C:\WINDOWS\system32\DRIVERS\raspti.sys [Scan path] C:\WINDOWS\system32\DRIVERS\rdbss.sys [Scan path] C:\WINDOWS\System32\DRIVERS\RDPCDD.sys [Scan path] C:\WINDOWS\system32\DRIVERS\rdpdr.sys [Scan path] C:\WINDOWS\system32\sessmgr.exe [Scan path] C:\WINDOWS\system32\DRIVERS\redbook.sys [Scan path] C:\Program Files\WinPcap\rpcapd.exe [Scan path] C:\WINDOWS\system32\locator.exe [Scan path] C:\WINDOWS\system32\rsvp.exe [Scan path] C:\WINDOWS\system32\DRIVERS\s24trans.sys [Scan path] C:\WINDOWS\System32\SCardSvr.exe [Scan path] C:\WINDOWS\system32\DRIVERS\secdrv.sys [Scan path] C:\WINDOWS\system32\DRIVERS\serenum.sys [Scan path] C:\WINDOWS\system32\DRIVERS\serial.sys [Scan path] C:\WINDOWS\system32\DRIVERS\sfloppy.sys [Scan path] C:\WINDOWS\system32\DRIVERS\sisagp.sys [Scan path] C:\WINDOWS\System32\drivers\Smapint.sys [Scan path] C:\WINDOWS\system32\drivers\smwdm.sys [Scan path] C:\WINDOWS\system32\DRIVERS\sparrow.sys [Scan path] C:\WINDOWS\system32\drivers\splitter.sys [Scan path] C:\Documents and Settings\All Users\Application Data\Spyware Terminator\sp_rsdrv2.sys [Scan path] C:\WINDOWS\system32\DRIVERS\sr.sys [Scan path] C:\WINDOWS\system32\DRIVERS\srv.sys [Scan path] C:\WINDOWS\system32\Drivers\SSI.SYS [Scan path] C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe [Scan path] C:\WINDOWS\system32\DRIVERS\swenum.sys [Scan path] C:\WINDOWS\system32\drivers\swmidi.sys [Scan path] C:\WINDOWS\system32\DRIVERS\symc810.sys [Scan path] C:\WINDOWS\system32\DRIVERS\symc8xx.sys [Scan path] C:\Program Files\Symantec\SYMEVENT.SYS [Scan path] C:\WINDOWS\system32\DRIVERS\sym_hi.sys [Scan path] C:\WINDOWS\system32\DRIVERS\sym_u3.sys [Scan path] C:\WINDOWS\system32\DRIVERS\SynTP.sys [Scan path] C:\WINDOWS\system32\drivers\sysaudio.sys [Scan path] C:\WINDOWS\system32\smlogsvc.exe [Scan path] C:\WINDOWS\system32\DRIVERS\tcpip.sys [Scan path] C:\WINDOWS\System32\Drivers\tcusb.sys [Scan path] C:\WINDOWS\System32\drivers\TDSMAPI.SYS [Scan path] C:\WINDOWS\system32\DRIVERS\termdd.sys [Scan path] C:\WINDOWS\system32\tlntsvr.exe [Scan path] C:\WINDOWS\system32\DRIVERS\toside.sys [Scan path] C:\WINDOWS\System32\DRIVERS\TPInput.sys [Scan path] C:\WINDOWS\System32\drivers\Tppwrif.sys [Scan path] C:\WINDOWS\System32\drivers\TSMAPIP.SYS [Scan path] C:\WINDOWS\system32\DRIVERS\ultra.sys [Scan path] C:\WINDOWS\system32\DRIVERS\update.sys [Scan path] C:\WINDOWS\System32\ups.exe [Scan path] C:\WINDOWS\system32\DRIVERS\usbehci.sys [Scan path] C:\WINDOWS\system32\DRIVERS\usbhub.sys [Scan path] C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [Scan path] C:\WINDOWS\system32\DRIVERS\usbuhci.sys [Scan path] C:\WINDOWS\System32\drivers\vga.sys [Scan path] C:\WINDOWS\system32\DRIVERS\viaagp.sys [Scan path] C:\WINDOWS\system32\DRIVERS\viaide.sys [Scan path] C:\WINDOWS\System32\vssvc.exe [Scan path] C:\Program Files\Common Files\Virtual Token\vtserver.exe [Scan path] C:\WINDOWS\system32\DRIVERS\w29n51.sys [Scan path] C:\WINDOWS\system32\DRIVERS\wanarp.sys [Scan path] C:\WINDOWS\system32\drivers\wdmaud.sys [Scan path] C:\WINDOWS\system32\DRIVERS\HSF_CNXT.sys [Scan path] C:\Program Files\Windows Defender\MsMpEng.exe [Scan path] c:\program files\windows media connect\mswmccds.exe [Scan path] C:\Program Files\Windows Media Connect\mswmcls.exe [Scan path] C:\WINDOWS\system32\wbem\wmiapsrv.exe [Scan path] C:\WINDOWS\System32\drivers\ws2ifsl.sys [Scan path] C:\Program Files\IBM\IBM Rapid Restore Ultra\rrpcsb.exe [Scan path] C:\Documents and Settings\palaniappan\Start Menu\Programs\Startup\SpywareGuard.lnk [Scan path] C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Adobe Reader Speed Launch.lnk [Scan path] C:\Documents and Settings\All Users\Start Menu\Programs\Startup\BTTray.lnk [Scan path] C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Digital Line Detect.lnk [Scan path] C:\Documents and Settings\All Users\Start Menu\Programs\Startup\WinZip Quick Pick.lnk Scan statistics Objects scanned: 361 Infected objects found: 0 Objects with modifications found: 0 Suspicious objects found: 0 Adware programs found: 0 Dialer programs found: 0 Joke programs found: 0 Riskware programs found: 0 Hacktool programs found: 0 Objects cured: 0 Objects deleted: 0 Objects renamed: 0 Objects moved: 0 Objects ignored: 0 Scan speed: 2479 Kb/s Scan time: 00:00:29 Dr.Web(R) Scanner for Windows v4.33.2 (4.33.2.03283) Copyright (c) Igor Daniloff, 1992-2006 Log generated on: 2006-06-13, 07:40:51 [PALANIAPPAN-LT][palaniappan] Command-line: "C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX1\cureit.exe" /lng /ini:cureit_XP.ini Engine version: 4.33 (4.33.3.06020) Engine API version: 2.01 [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX1\crwtoday.cdb - 57 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX1\crw43339.cdb - 1071 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX1\crw43338.cdb - 989 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX1\crw43337.cdb - 855 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX1\crw43336.cdb - 1297 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX1\crw43335.cdb - 1195 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX1\crw43334.cdb - 900 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX1\crw43333.cdb - 1381 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX1\crw43332.cdb - 1340 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX1\crw43331.cdb - 2735 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX1\crw43330.cdb - 2078 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX1\crw43329.cdb - 2490 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX1\crw43328.cdb - 743 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX1\crw43327.cdb - 958 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX1\crw43326.cdb - 793 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX1\crw43325.cdb - 713 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX1\crw43324.cdb - 655 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX1\crw43323.cdb - 655 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX1\crw43322.cdb - 778 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX1\crw43321.cdb - 846 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX1\crw43320.cdb - 808 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX1\crw43319.cdb - 764 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX1\crw43318.cdb - 838 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX1\crw43317.cdb - 363 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX1\crw43316.cdb - 730 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX1\crw43315.cdb - 627 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX1\crw43314.cdb - 824 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX1\crw43313.cdb - 842 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX1\crw43312.cdb - 830 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX1\crw43311.cdb - 862 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX1\crw43310.cdb - 853 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX1\crw43309.cdb - 733 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX1\crw43308.cdb - 708 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX1\crw43307.cdb - 839 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX1\crw43306.cdb - 930 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX1\crw43305.cdb - 759 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX1\crw43304.cdb - 721 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX1\crw43303.cdb - 638 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX1\crw43302.cdb - 806 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX1\crw43301.cdb - 504 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX1\crw43300.cdb - 24 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX1\crwebase.cdb - 78674 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX1\cwrtoday.cdb - 57 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX1\cwr43301.cdb - 697 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX1\crwrisky.cdb - 1271 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX1\cwntoday.cdb - 3 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX1\cwn43303.cdb - 766 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX1\cwn43302.cdb - 850 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX1\cwn43301.cdb - 773 virus records [Virus base] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX1\crwnasty.cdb - 4867 virus records Total virus records: 125490 Key file: C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX1\cureit.key License key number: 0000000010 Registered to: Dr.Web CureIt Project License key activates: 2005-03-05 License key expires: 2007-03-05 Scan statistics Objects scanned: 0 Infected objects found: 0 Objects with modifications found: 0 Suspicious objects found: 0 Adware programs found: 0 Dialer programs found: 0 Joke programs found: 0 Riskware programs found: 0 Hacktool programs found: 0 Objects cured: 0 Objects deleted: 0 Objects renamed: 0 Objects moved: 0 Objects ignored: 0 Scan speed: 0 Kb/s Scan time: 00:00:00 [Scan path] C:\WINDOWS\System32\smss.exe [Scan path] C:\WINDOWS\system32\csrss.exe [Scan path] C:\WINDOWS\system32\winlogon.exe [Scan path] C:\WINDOWS\system32\services.exe [Scan path] C:\WINDOWS\system32\lsass.exe [Scan path] C:\Program Files\Common Files\Virtual Token\vtserver.exe [Scan path] C:\WINDOWS\system32\ibmpmsvc.exe [Scan path] C:\WINDOWS\system32\svchost.exe [Scan path] C:\Program Files\Windows Defender\MsMpEng.exe [Scan path] C:\Program Files\Intel\Wireless\Bin\EvtEng.exe [Scan path] C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe [Scan path] C:\WINDOWS\system32\spoolsv.exe [Scan path] C:\Program Files\IBM\IBM Rapid Restore Ultra\rrpcsb.exe [Scan path] C:\WINDOWS\system32\qosservm.exe [Scan path] C:\WINDOWS\system32\QCONSVC.EXE [Scan path] C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe [Scan path] C:\WINDOWS\System32\TPHDEXLG.EXE [Scan path] C:\WINDOWS\system32\TpKmpSVC.exe [Scan path] C:\WINDOWS\system32\wdfmgr.exe [Scan path] C:\WINDOWS\system32\alg.exe [Scan path] C:\WINDOWS\system32\wuauclt.exe [Scan path] C:\WINDOWS\explorer.exe [Scan path] C:\WINDOWS\system32\igfxtray.exe [Scan path] C:\WINDOWS\system32\hkcmd.exe [Scan path] C:\WINDOWS\system32\TpShocks.exe [Scan path] C:\Program Files\ThinkPad\PkgMgr\HOTKEY_1\TpScrex.exe [Scan path] C:\Program Files\ThinkPad\Utilities\EZEJMNAP.EXE [Scan path] C:\WINDOWS\system32\rundll32.exe [Scan path] C:\WINDOWS\System32\Wbem\wmiprvse.exe [Scan path] C:\WINDOWS\system32\ctfmon.exe [Scan path] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX0\_start.exe [Scan path] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX1\cureit.exe [Scan path] C:\DOCUME~1\PALANI~2\LOCALS~1\Temp\RarSFX1\_start.exe [Scan path] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe [Scan path] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [Scan path] C:\Program Files\ThinkPad\Utilities\TpKmapAp.exe [Scan path] C:\PROGRA~1\ThinkPad\PkgMgr\HOTKEY\TPHKMGR.exe [Scan path] C:\Program Files\IBM fingerprint software\ctlcntr.exe [Scan path] C:\WINDOWS\system32\tp4ex.exe [Scan path] C:\PROGRA~1\ThinkPad\UTILIT~1\EzEjMnAp.Exe [Scan path] C:\Program Files\IBM\Updater\ucstartup.exe [Scan path] C:\Program Files\IBM\Messages By IBM\ibmmessages.exe [Scan path] C:\IBMTOOLS\UTILS\ibmprc.exe [Scan path] C:\Program Files\ThinkPad\ConnectUtilities\QCTRAY.EXE [Scan path] C:\Program Files\ThinkPad\ConnectUtilities\QCWLICON.EXE [Scan path] C:\PROGRA~1\SYMANT~1\SYMANT~1\vptray.exe [Scan path] C:\Program Files\Common Files\Real\Update_OB\realsched.exe [Scan path] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe [Scan path] C:\Program Files\QuickTime\qttask.exe [Scan path] C:\Program Files\Avaya\Avaya IP Softphone\IP Service Provider\pwreset.exe [Scan path] C:\Program Files\Windows Defender\MSASCui.exe [Scan path] C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe [Scan path] C:\Program Files\Messenger\msmsgs.exe [Scan path] C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe [Scan path] C:\Documents and Settings\palaniappan\Start Menu\Programs\Startup\desktop.ini [Scan path] C:\Program Files\SpywareGuard\sgmain.exe [Scan path] C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe [Scan path] C:\Program Files\IBM\Bluetooth Software\BTTray.exe [Scan path] C:\Documents and Settings\All Users\Start Menu\Programs\Startup\desktop.ini [Scan path] C:\Program Files\Digital Line Detect\DLG.exe [Scan path] C:\Program Files\WinZip\WZQKPICK.EXE [Scan path] C:\WINDOWS\system32\mmsys.cpl [Scan path] C:\WINDOWS\system32\icmui.dll [Scan path] C:\WINDOWS\system32\rshx32.dll [Scan path] C:\WINDOWS\system32\docprop.dll [Scan path] C:\WINDOWS\system32\ntshrui.dll [Scan path] C:\WINDOWS\system32\themeui.dll [Scan path] C:\WINDOWS\system32\deskadp.dll [Scan path] C:\WINDOWS\system32\deskmon.dll [Scan path] C:\WINDOWS\system32\dssec.dll [Scan path] C:\WINDOWS\system32\SlayerXP.dll [Scan path] C:\WINDOWS\system32\shscrap.dll [Scan path] C:\WINDOWS\system32\diskcopy.dll [Scan path] C:\WINDOWS\system32\ntlanui2.dll [Scan path] C:\WINDOWS\system32\printui.dll [Scan path] C:\WINDOWS\system32\dskquoui.dll [Scan path] C:\WINDOWS\system32\syncui.dll [Scan path] C:\WINDOWS\system32\hticons.dll [Scan path] C:\WINDOWS\system32\fontext.dll [Scan path] C:\WINDOWS\system32\deskperf.dll [Scan path] C:\WINDOWS\system32\cryptext.dll [Scan path] C:\WINDOWS\system32\NETSHELL.dll [Scan path] C:\WINDOWS\system32\wiashext.dll [Scan path] C:\WINDOWS\system32\remotepg.dll [Scan path] C:\WINDOWS\system32\wshext.dll [Scan path] C:\Program Files\Common Files\System\Ole DB\oledb32.dll [Scan path] C:\WINDOWS\system32\mstask.dll [Scan path] C:\WINDOWS\system32\shdocvw.dll [Scan path] C:\WINDOWS\system32\wuaucpl.cpl [Scan path] C:\WINDOWS\system32\twext.dll [Scan path] C:\WINDOWS\system32\shmedia.dll [Scan path] C:\WINDOWS\system32\browseui.dll [Scan path] C:\WINDOWS\system32\sendmail.dll [Scan path] C:\WINDOWS\system32\occache.dll [Scan path] C:\WINDOWS\system32\webcheck.dll [Scan path] C:\WINDOWS\system32\appwiz.cpl [Scan path] C:\WINDOWS\system32\shimgvw.dll [Scan path] C:\WINDOWS\system32\netplwiz.dll [Scan path] C:\WINDOWS\system32\zipfldr.dll [Scan path] C:\WINDOWS\system32\cdfview.dll [Scan path] C:\WINDOWS\system32\extmgr.dll [Scan path] C:\WINDOWS\system32\msieftp.dll [Scan path] C:\WINDOWS\system32\docprop2.dll [Scan path] C:\WINDOWS\system32\dsquery.dll [Scan path] C:\WINDOWS\system32\dsuiext.dll [Scan path] C:\WINDOWS\system32\mydocs.dll [Scan path] C:\WINDOWS\System32\cscui.dll [Scan path] C:\WINDOWS\msagent\agentpsh.dll [Scan path] C:\WINDOWS\system32\dfsshlex.dll [Scan path] C:\WINDOWS\system32\photowiz.dll [Scan path] C:\WINDOWS\System32\mmcshext.dll [Scan path] C:\WINDOWS\system32\cabview.dll [Scan path] C:\Program Files\Outlook Express\wabfind.dll [Scan path] C:\WINDOWS\system32\wmpshell.dll [Scan path] C:\WINDOWS\system32\Audiodev.dll [Scan path] C:\WINDOWS\system32\mscoree.dll [Scan path] C:\WINDOWS\system32\btneighborhood.dll [Scan path] C:\PROGRA~1\WINZIP\WZSHLSTB.DLL [Scan path] C:\PROGRA~1\COMMON~1\MICROS~1\WEBFOL~1\MSONSEXT.DLL [Scan path] C:\PROGRA~1\MICROS~2\OFFICE11\MLSHEXT.DLL [Scan path] C:\PROGRA~1\MICROS~2\OFFICE11\OLKFSTUB.DLL [Scan path] C:\Program Files\Microsoft Office\OFFICE11\msohev.dll [Scan path] C:\Program Files\Real\RealPlayer\rpshell.dll [Scan path] C:\Program Files\Common Files\Symantec Shared\SSC\vpshell2.dll [Scan path] C:\Program Files\WinRAR\rarext.dll [Scan path] C:\PROGRA~1\Webroot\SPYSWE~1\SSCtxMnu.dll [Scan path] C:\Program Files\SpywareGuard\spywareguard.dll [Scan path] C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll [Scan path] C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll [Scan path] c:\program files\google\googletoolbar2.dll [Scan path] C:\Program Files\Avaya\Avaya IP Softphone\AvayaWebDial.dll [Scan path] C:\WINDOWS\system32\SHELL32.dll [Scan path] C:\WINDOWS\system32\stobject.dll [Scan path] C:\WINDOWS\system32\crypt32.dll [Scan path] C:\WINDOWS\system32\cryptnet.dll [Scan path] C:\WINDOWS\system32\cscdll.dll [Scan path] C:\WINDOWS\system32\igfxsrvc.dll [Scan path] C:\WINDOWS\system32\NavLogon.dll [Scan path] C:\Program Files\IBM fingerprint software\psfus.dll [Scan path] C:\WINDOWS\system32\QConGina.dll [Scan path] C:\WINDOWS\system32\wlnotify.dll [Scan path] C:\WINDOWS\system32\sclgntfy.dll [Scan path] C:\WINDOWS\system32\tphklock.dll [Scan path] C:\WINDOWS\system32\WgaLogon.dll [Scan path] C:\WINDOWS\system32\WRLogonNTF.dll [Scan path] C:\WINDOWS\system32\DRIVERS\ABP480N5.SYS [Scan path] C:\WINDOWS\system32\drivers\ac97intc.sys [Scan path] C:\WINDOWS\system32\DRIVERS\ACPI.sys [Scan path] C:\WINDOWS\system32\DRIVERS\ACPIEC.sys [Scan path] C:\WINDOWS\system32\DRIVERS\adpu160m.sys [Scan path] C:\WINDOWS\system32\drivers\aeaudio.sys [Scan path] C:\WINDOWS\system32\drivers\aec.sys [Scan path] C:\WINDOWS\system32\DRIVERS\AegisP.sys [Scan path] C:\WINDOWS\System32\drivers\afd.sys [Scan path] C:\WINDOWS\system32\DRIVERS\agp440.sys [Scan path] C:\WINDOWS\system32\DRIVERS\agpCPQ.sys [Scan path] C:\WINDOWS\system32\DRIVERS\aha154x.sys [Scan path] C:\WINDOWS\system32\DRIVERS\aic78u2.sys [Scan path] C:\WINDOWS\system32\DRIVERS\aic78xx.sys [Scan path] C:\WINDOWS\system32\DRIVERS\aliide.sys [Scan path] C:\WINDOWS\system32\DRIVERS\alim1541.sys [Scan path] C:\WINDOWS\system32\DRIVERS\amdagp.sys [Scan path] C:\WINDOWS\system32\DRIVERS\amsint.sys [Scan path] C:\WINDOWS\System32\drivers\ANC.SYS [Scan path] C:\WINDOWS\system32\DRIVERS\asc.sys [Scan path] C:\WINDOWS\system32\DRIVERS\asc3350p.sys [Scan path] C:\WINDOWS\system32\DRIVERS\asc3550.sys [Scan path] C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_state.exe [Scan path] C:\WINDOWS\system32\DRIVERS\asyncmac.sys [Scan path] C:\WINDOWS\system32\DRIVERS\atapi.sys [Scan path] C:\WINDOWS\system32\DRIVERS\atmarpc.sys [Scan path] C:\WINDOWS\system32\DRIVERS\audstub.sys [Scan path] C:\WINDOWS\system32\DRIVERS\b57xp32.sys [Scan path] C:\WINDOWS\system32\drivers\btaudio.sys [Scan path] C:\WINDOWS\system32\DRIVERS\btport.sys [Scan path] C:\WINDOWS\system32\drivers\btkrnl.sys [Scan path] C:\Program Files\IBM\Bluetooth Software\bin\btwdins.exe [Scan path] C:\WINDOWS\system32\DRIVERS\btwdndis.sys [Scan path] C:\WINDOWS\System32\Drivers\btwusb.sys [Scan path] C:\WINDOWS\system32\DRIVERS\cbidf2k.sys [Scan path] C:\WINDOWS\system32\DRIVERS\cd20xrnt.sys [Scan path] C:\WINDOWS\system32\DRIVERS\cdrom.sys [Scan path] C:\WINDOWS\system32\cisvc.exe [Scan path] C:\WINDOWS\system32\clipsrv.exe [Scan path] C:\WINDOWS\system32\DRIVERS\CmBatt.sys [Scan path] C:\WINDOWS\system32\DRIVERS\cmdide.sys [Scan path] C:\WINDOWS\system32\DRIVERS\compbatt.sys [Scan path] C:\WINDOWS\system32\dllhost.exe [Scan path] C:\WINDOWS\system32\DRIVERS\cpqarray.sys [Scan path] C:\WINDOWS\system32\DRIVERS\dac2w2k.sys [Scan path] C:\WINDOWS\system32\DRIVERS\dac960nt.sys [Scan path] C:\PROGRA~1\SYMANT~1\SYMANT~1\DefWatch.exe [Scan path] C:\WINDOWS\system32\DRIVERS\disk.sys [Scan path] C:\WINDOWS\System32\dmadmin.exe [Scan path] C:\WINDOWS\System32\drivers\dmboot.sys [Scan path] C:\WINDOWS\System32\drivers\dmio.sys [Scan path] C:\WINDOWS\System32\drivers\dmload.sys [Scan path] C:\WINDOWS\system32\drivers\DMusic.sys [Scan path] C:\WINDOWS\system32\DRIVERS\dpti2o.sys [Scan path] C:\WINDOWS\system32\drivers\drmkaud.sys [Scan path] C:\WINDOWS\system32\DRIVERS\dsNcAdpt.sys [Scan path] C:\Program Files\Juniper Networks\Common Files\dsNcService.exe [Scan path] C:\WINDOWS\system32\DRIVERS\e100b325.sys [Scan path] C:\WINDOWS\SYSTEM32\EGATHDRV.SYS [Scan path] C:\WINDOWS\system32\DRIVERS\fdc.sys [Scan path] C:\WINDOWS\system32\DRIVERS\flpydisk.sys [Scan path] C:\WINDOWS\system32\DRIVERS\fltMgr.sys [Scan path] C:\WINDOWS\system32\DRIVERS\ftdisk.sys [Scan path] C:\WINDOWS\System32\DRIVERS\gmer.sys [Scan path] C:\WINDOWS\system32\DRIVERS\msgpc.sys [Scan path] C:\WINDOWS\system32\DRIVERS\hidusb.sys [Scan path] C:\WINDOWS\system32\DRIVERS\hpn.sys [Scan path] C:\WINDOWS\system32\DRIVERS\HSFHWICH.sys [Scan path] C:\WINDOWS\system32\DRIVERS\HSF_DP.sys [Scan path] C:\WINDOWS\System32\Drivers\HTTP.sys [Scan path] C:\WINDOWS\system32\DRIVERS\i2omp.sys [Scan path] C:\WINDOWS\system32\DRIVERS\i8042prt.sys [Scan path] C:\WINDOWS\system32\DRIVERS\ialmnt5.sys [Scan path] C:\WINDOWS\system32\drivers\ibmfilter.sys [Scan path] C:\WINDOWS\system32\DRIVERS\ibmpmdrv.sys [Scan path] C:\WINDOWS\System32\drivers\IBMBLDID.SYS [Scan path] C:\WINDOWS\system32\DRIVERS\imapi.sys [Scan path] C:\WINDOWS\system32\imapi.exe [Scan path] C:\WINDOWS\system32\DRIVERS\ini910u.sys [Scan path] C:\WINDOWS\system32\DRIVERS\intelide.sys [Scan path] C:\WINDOWS\system32\DRIVERS\intelppm.sys [Scan path] C:\WINDOWS\system32\DRIVERS\Ip6Fw.sys [Scan path] C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys [Scan path] C:\WINDOWS\system32\DRIVERS\ipinip.sys [Scan path] C:\WINDOWS\system32\DRIVERS\ipnat.sys [Scan path] C:\WINDOWS\system32\DRIVERS\ipsec.sys [Scan path] C:\WINDOWS\system32\DRIVERS\irda.sys [Scan path] C:\WINDOWS\system32\DRIVERS\irenum.sys [Scan path] C:\WINDOWS\system32\DRIVERS\isapnp.sys [Scan path] C:\WINDOWS\system32\DRIVERS\kbdclass.sys [Scan path] C:\WINDOWS\system32\drivers\kmixer.sys [Scan path] C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [Scan path] C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys [Scan path] C:\WINDOWS\system32\mnmsrvc.exe [Scan path] C:\WINDOWS\system32\DRIVERS\mouclass.sys [Scan path] C:\WINDOWS\system32\DRIVERS\mouhid.sys [Scan path] C:\WINDOWS\system32\DRIVERS\mraid35x.sys [Scan path] C:\WINDOWS\system32\DRIVERS\mrxdav.sys [Scan path] C:\WINDOWS\system32\DRIVERS\mrxsmb.sys [Scan path] C:\WINDOWS\system32\msdtc.exe [Scan path] C:\WINDOWS\system32\msiexec.exe [Scan path] C:\WINDOWS\system32\drivers\MSKSSRV.sys [Scan path] C:\WINDOWS\system32\drivers\MSPCLOCK.sys [Scan path] C:\WINDOWS\system32\drivers\MSPQM.sys [Scan path] C:\WINDOWS\system32\DRIVERS\mssmbios.sys [Scan path] C:\PROGRA~1\SYMANT~1\SYMANT~1\NAVAP.sys [Scan path] C:\Program Files\Symantec_Client_Security\Symantec AntiVirus\NAVAPEL.SYS [Scan path] C:\PROGRA~1\COMMON~1\SYMANT~1\VIRUSD~1\20060607.018\NAVENG.sys [Scan path] C:\PROGRA~1\COMMON~1\SYMANT~1\VIRUSD~1\20060607.018\NAVEX15.sys [Scan path] C:\WINDOWS\system32\DRIVERS\ndistapi.sys [Scan path] C:\WINDOWS\system32\DRIVERS\ndisuio.sys [Scan path] C:\WINDOWS\system32\DRIVERS\ndiswan.sys [Scan path] C:\WINDOWS\system32\DRIVERS\netbios.sys [Scan path] C:\WINDOWS\system32\DRIVERS\netbt.sys [Scan path] C:\WINDOWS\system32\netdde.exe [Scan path] C:\WINDOWS\system32\DRIVERS\NMnt.sys [Scan path] C:\PROGRA~1\SYMANT~1\SYMANT~1\Rtvscan.exe [Scan path] C:\WINDOWS\system32\drivers\npf.sys [Scan path] C:\WINDOWS\system32\DRIVERS\nscirda.sys [Scan path] C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [Scan path] C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys [Scan path] C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys [Scan path] C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [Scan path] C:\WINDOWS\system32\DRIVERS\parport.sys [Scan path] C:\WINDOWS\system32\DRIVERS\pci.sys [Scan path] C:\WINDOWS\system32\DRIVERS\pciide.sys [Scan path] C:\WINDOWS\system32\DRIVERS\pcmcia.sys [Scan path] C:\WINDOWS\system32\DRIVERS\perc2.sys [Scan path] C:\WINDOWS\system32\DRIVERS\perc2hib.sys [Scan path] C:\WINDOWS\SYSTEM32\Drivers\PMEMNT.SYS [Scan path] C:\WINDOWS\system32\DRIVERS\NscTpmDD.sys [Scan path] C:\WINDOWS\system32\DRIVERS\raspptp.sys [Scan path] C:\WINDOWS\system32\DRIVERS\processr.sys [Scan path] C:\WINDOWS\system32\Drivers\psadd.sys [Scan path] C:\WINDOWS\system32\DRIVERS\psched.sys [Scan path] C:\WINDOWS\system32\DRIVERS\ptilink.sys [Scan path] C:\WINDOWS\System32\Drivers\PxHelp20.sys [Scan path] C:\WINDOWS\System32\drivers\qcndisif.SYS [Scan path] C:\WINDOWS\system32\DRIVERS\ql1080.sys [Scan path] C:\WINDOWS\system32\DRIVERS\ql10wnt.sys [Scan path] C:\WINDOWS\system32\DRIVERS\ql12160.sys [Scan path] C:\WINDOWS\system32\DRIVERS\ql1240.sys [Scan path] C:\WINDOWS\system32\DRIVERS\ql1280.sys [Scan path] C:\WINDOWS\system32\DRIVERS\rasacd.sys [Scan path] C:\WINDOWS\system32\DRIVERS\rasirda.sys [Scan path] C:\WINDOWS\system32\DRIVERS\rasl2tp.sys [Scan path] C:\WINDOWS\system32\DRIVERS\raspppoe.sys [Scan path] C:\WINDOWS\system32\DRIVERS\raspti.sys [Scan path] C:\WINDOWS\system32\DRIVERS\rdbss.sys [Scan path] C:\WINDOWS\System32\DRIVERS\RDPCDD.sys [Scan path] C:\WINDOWS\system32\DRIVERS\rdpdr.sys [Scan path] C:\WINDOWS\system32\sessmgr.exe [Scan path] C:\WINDOWS\system32\DRIVERS\redbook.sys [Scan path] C:\Program Files\WinPcap\rpcapd.exe [Scan path] C:\WINDOWS\system32\locator.exe [Scan path] C:\WINDOWS\system32\rsvp.exe [Scan path] C:\WINDOWS\system32\DRIVERS\s24trans.sys [Scan path] C:\WINDOWS\System32\SCardSvr.exe [Scan path] C:\WINDOWS\system32\DRIVERS\secdrv.sys [Scan path] C:\WINDOWS\system32\DRIVERS\serenum.sys [Scan path] C:\WINDOWS\system32\DRIVERS\serial.sys [Scan path] C:\WINDOWS\system32\DRIVERS\sfloppy.sys [Scan path] C:\WINDOWS\system32\DRIVERS\sisagp.sys [Scan path] C:\WINDOWS\System32\drivers\Smapint.sys [Scan path] C:\WINDOWS\system32\drivers\smwdm.sys [Scan path] C:\WINDOWS\system32\DRIVERS\sparrow.sys [Scan path] C:\WINDOWS\system32\drivers\splitter.sys [Scan path] C:\Documents and Settings\All Users\Application Data\Spyware Terminator\sp_rsdrv2.sys [Scan path] C:\WINDOWS\system32\DRIVERS\sr.sys [Scan path] C:\WINDOWS\system32\DRIVERS\srv.sys [Scan path] C:\WINDOWS\system32\Drivers\SSI.SYS [Scan path] C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe [Scan path] C:\WINDOWS\system32\DRIVERS\swenum.sys [Scan path] C:\WINDOWS\system32\drivers\swmidi.sys [Scan path] C:\WINDOWS\system32\DRIVERS\symc810.sys [Scan path] C:\WINDOWS\system32\DRIVERS\symc8xx.sys [Scan path] C:\Program Files\Symantec\SYMEVENT.SYS [Scan path] C:\WINDOWS\system32\DRIVERS\sym_hi.sys [Scan path] C:\WINDOWS\system32\DRIVERS\sym_u3.sys [Scan path] C:\WINDOWS\system32\DRIVERS\SynTP.sys [Scan path] C:\WINDOWS\system32\drivers\sysaudio.sys [Scan path] C:\WINDOWS\system32\smlogsvc.exe [Scan path] C:\WINDOWS\system32\DRIVERS\tcpip.sys [Scan path] C:\WINDOWS\System32\Drivers\tcusb.sys [Scan path] C:\WINDOWS\System32\drivers\TDSMAPI.SYS [Scan path] C:\WINDOWS\system32\DRIVERS\termdd.sys [Scan path] C:\WINDOWS\system32\tlntsvr.exe [Scan path] C:\WINDOWS\system32\DRIVERS\toside.sys [Scan path] C:\WINDOWS\System32\DRIVERS\TPInput.sys [Scan path] C:\WINDOWS\System32\drivers\Tppwrif.sys [Scan path] C:\WINDOWS\System32\drivers\TSMAPIP.SYS [Scan path] C:\WINDOWS\system32\DRIVERS\ultra.sys [Scan path] C:\WINDOWS\system32\DRIVERS\update.sys [Scan path] C:\WINDOWS\System32\ups.exe [Scan path] C:\WINDOWS\system32\DRIVERS\usbehci.sys [Scan path] C:\WINDOWS\system32\DRIVERS\usbhub.sys [Scan path] C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [Scan path] C:\WINDOWS\system32\DRIVERS\usbuhci.sys [Scan path] C:\WINDOWS\System32\drivers\vga.sys [Scan path] C:\WINDOWS\system32\DRIVERS\viaagp.sys [Scan path] C:\WINDOWS\system32\DRIVERS\viaide.sys [Scan path] C:\WINDOWS\System32\vssvc.exe [Scan path] C:\WINDOWS\system32\DRIVERS\w29n51.sys [Scan path] C:\WINDOWS\system32\DRIVERS\wanarp.sys [Scan path] C:\WINDOWS\system32\drivers\wdmaud.sys [Scan path] C:\WINDOWS\system32\DRIVERS\HSF_CNXT.sys [Scan path] c:\program files\windows media connect\mswmccds.exe [Scan path] C:\Program Files\Windows Media Connect\mswmcls.exe [Scan path] C:\WINDOWS\system32\wbem\wmiapsrv.exe [Scan path] C:\WINDOWS\System32\drivers\ws2ifsl.sys [Scan path] C:\Documents and Settings\palaniappan\Start Menu\Programs\Startup\SpywareGuard.lnk [Scan path] C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Adobe Reader Speed Launch.lnk [Scan path] C:\Documents and Settings\All Users\Start Menu\Programs\Startup\BTTray.lnk [Scan path] C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Digital Line Detect.lnk [Scan path] C:\Documents and Settings\All Users\Start Menu\Programs\Startup\WinZip Quick Pick.lnk Scan statistics Objects scanned: 363 Infected objects found: 0 Objects with modifications found: 0 Suspicious objects found: 0 Adware programs found: 0 Dialer programs found: 0 Joke programs found: 0 Riskware programs found: 0 Hacktool programs found: 0 Objects cured: 0 Objects deleted: 0 Objects renamed: 0 Objects moved: 0 Objects ignored: 0 Scan speed: 3131 Kb/s Scan time: 00:00:23 [Scan path] C:\ C:\hiberfil.sys - read error C:\Documents and Settings\LocalService\NTUSER.DAT - read error C:\Documents and Settings\LocalService\NTUSER~1.LOG - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS02~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS03~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS06~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS08~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS0C~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS0F~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS12~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS13~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS14~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS17~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS19~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS1A~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS1B~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS1D~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS1D~2.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS1E~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS26~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS28~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS32~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS33~3.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS33~2.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS33~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS35~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS36~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS38~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS3A~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS3C~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS3D~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS3E~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS3F~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS41~2.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS41~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS44~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS46~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS47~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS49~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS4A~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS4B~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS4C~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS4C~2.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS50~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS51~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS64~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS64~2.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS65~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS66~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS67~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS6A~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS72~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS73~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS75~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS76~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS78~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS7C~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS80~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS81~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS87~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS8B~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS8F~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS98~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS9D~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS9E~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSA3~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSAA~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSAB~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSAE~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSAE~3.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSAE~2.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSAF~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSB1~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSB7~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSBA~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSBF~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSC5~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSC5~2.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSC6~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSC7~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSC7~2.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSC9~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSCA~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSCD~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSCF~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSCF~2.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSD3~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSD4~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSD5~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSD6~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSD7~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSDC~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSDD~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSDF~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSE3~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSEC~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSEF~2.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSEF~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSF0~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSF1~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSF6~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSF6~2.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSF7~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSFA~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSFA~2.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSFC~1.TMP - read error C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSFD~1.TMP - read error C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat - read error C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\USRCLA~1.LOG - read error C:\Documents and Settings\NetworkService\NTUSER.DAT - read error C:\Documents and Settings\NetworkService\NTUSER~1.LOG - read error C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat - read error C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\USRCLA~1.LOG - read error C:\Documents and Settings\palaniappan\NTUSER.DAT - read error C:\Documents and Settings\palaniappan\NTUSER~1.LOG - read error C:\Documents and Settings\palaniappan\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat - read error C:\Documents and Settings\palaniappan\Local Settings\Application Data\Microsoft\Windows\USRCLA~1.LOG - read error C:\Documents and Settings\palaniappan\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{BB65A~1 - read error C:\Program Files\IBM\IBM Rapid Restore Ultra\osfilter.txt probably infected with SCRIPT.BATCH.Virus C:\Program Files\TightVNC\VNCHooks.dll is riskware program Program.RemoteAdmin - ignored C:\Program Files\TightVNC\WinVNC.exe is riskware program Program.RemoteAdmin - ignored C:\WINDOWS\system32\config\DEFAULT - read error C:\WINDOWS\system32\config\default.LOG - read error C:\WINDOWS\system32\config\SAM - read error C:\WINDOWS\system32\config\SAM.LOG - read error C:\WINDOWS\system32\config\SECURITY - read error C:\WINDOWS\system32\config\SECURITY.LOG - read error C:\WINDOWS\system32\config\SOFTWARE - read error C:\WINDOWS\system32\config\software.LOG - read error C:\WINDOWS\system32\config\SYSTEM - read error C:\WINDOWS\system32\config\system.LOG - read error Scan statistics Objects scanned: 192121 Infected objects found: 0 Objects with modifications found: 0 Suspicious objects found: 1 Adware programs found: 0 Dialer programs found: 0 Joke programs found: 0 Riskware programs found: 0 Hacktool programs found: 0 Objects cured: 0 Objects deleted: 0 Objects renamed: 0 Objects moved: 0 Objects ignored: 2 Scan speed: 150 Kb/s Scan time: 01:13:33