Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

HiJackThis Log


  • Please log in to reply

#1
Tiff Tiff

Tiff Tiff

    New Member

  • Member
  • Pip
  • 9 posts
I had a few problems with a program called Limewire, so I removed it from my computer. But my computer is now running extremely slow and Internet Explorer does not work at all. I can still use the Mozilla Browser, but it takes forever to load, and I constantly have to restart the computer. Any help would be appreciated. Thanks



Logfile of HijackThis v1.99.1
Scan saved at 3:17:22 PM, on 10/31/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\LEXPPS.EXE
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Program Files\Java\jre1.5.0_03\bin\jusched.exe
C:\Program Files\Intel\Modem Event Monitor\IntelMEM.exe
C:\Program Files\Real\RealPlayer\RealPlay.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\Program Files\Musicmatch\Musicmatch Jukebox\mm_server.exe
C:\WINDOWS\system32\f5d44c17.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Musicmatch\Musicmatch Jukebox\MMDiag.exe
C:\PROGRA~1\McAfee.com\Agent\mcregwiz.exe
C:\PROGRA~1\mcafee.com\vso\mcvsshld.exe
C:\PROGRA~1\mcafee.com\agent\mcagent.exe
c:\progra~1\mcafee.com\vso\mcvsescn.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
C:\Program Files\outlook\outlook.exe
C:\WINDOWS\system32\winlog.exe
C:\Program Files\winupdates\winupdates.exe
C:\Program Files\Dell Support\DSAgnt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Kodak\KODAK Software Updater\7288971\Program\Kodak Software Updater.exe
C:\PROGRA~1\EARTHL~2\PROTEC~1\ADSSER~1.EXE
C:\PROGRA~1\McAfee.com\PERSON~1\MpfAgent.exe
C:\Program Files\Common Files\Command Software\dvpapi.exe
C:\WINDOWS\system32\drivers\KodakCCS.exe
c:\PROGRA~1\mcafee.com\vso\mcvsrte.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
c:\progra~1\mcafee.com\vso\mcvsftsn.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MPFSERVICE.exe
C:\WINDOWS\system32\wscntfy.exe
c:\PROGRA~1\mcafee.com\vso\mcshield.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Hijackthis\HijackThis.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.c...rch/search.html
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://as.starware.c...7Ke4Q65UAC5Le0=
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=localhost:8080
R3 - URLSearchHook: (no name) - - (no file)
O2 - BHO: EarthLink BHO Guard - {00000000-0000-0000-0000-000000000002} - C:\Program Files\EarthLink TotalAccess\Toolbar\EScamBlk.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: EarthLink ScamBlocker V3 - {15F4D456-5BAA-4076-8486-EECB38CD3E57} - C:\Program Files\EarthLink TotalAccess\Toolbar\EScamBlk.dll
O2 - BHO: EarthLink PopUp Blocker V2 - {512ACF1B-64D9-4928-B382-A80556F28DB4} - C:\Program Files\EarthLink TotalAccess\Toolbar\ElnkPuB.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: Earthlink Protection BHO - {9579D574-D4D8-4335-9560-FE8641A013BD} - C:\Program Files\EarthLink TotalAccess\Toolbar\ProtctIE.dll
O2 - BHO: Uninstall Legacy Earthlink Toolbar - {E713904C-DF05-4C79-BBAD-02DB923253BE} - C:\Program Files\EarthLink TotalAccess\Toolbar\uninsttb.dll
O2 - BHO: (no name) - {f72f5229-dc8c-4bf4-ab19-62c56dcced40} - C:\WINDOWS\system32\ipxcsy.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: EarthLink Toolbar - {C7768536-96F8-4001-B1A2-90EE21279187} - C:\Program Files\EarthLink TotalAccess\Toolbar\Toolbar.dll
O3 - Toolbar: McAfee VirusScan - {BA52B914-B692-46c4-B683-905236F6F655} - c:\progra~1\mcafee.com\vso\mcvsshl.dll
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_03\bin\jusched.exe
O4 - HKLM\..\Run: [IntelMeM] C:\Program Files\Intel\Modem Event Monitor\IntelMEM.exe
O4 - HKLM\..\Run: [RealTray] C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [links] links.exe
O4 - HKLM\..\Run: [lich] lich.exe
O4 - HKLM\..\Run: [mm_server] C:\Program Files\Musicmatch\Musicmatch Jukebox\mm_server.exe
O4 - HKLM\..\Run: [f5d44c17.exe] C:\WINDOWS\system32\f5d44c17.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Earthlink Protection Control Center] C:\Program Files\EarthLink TotalAccess\ProtectionControlCenter\elnk_pcc.exe /minimize
O4 - HKLM\..\Run: [My Web Search Bar] rundll32 C:\PROGRA~1\MYWEBS~1\bar\2.bin\MWSBAR.DLL,S
O4 - HKLM\..\Run: [MyWebSearch Email Plugin] C:\PROGRA~1\MYWEBS~1\bar\2.bin\mwsoemon.exe
O4 - HKLM\..\Run: [McRegWiz] C:\PROGRA~1\McAfee.com\Agent\mcregwiz.exe /autorun
O4 - HKLM\..\Run: [VSOCheckTask] "c:\PROGRA~1\mcafee.com\vso\mcmnhdlr.exe" /checktask
O4 - HKLM\..\Run: [VirusScan Online] c:\PROGRA~1\mcafee.com\vso\mcvsshld.exe
O4 - HKLM\..\Run: [MCAgentExe] c:\PROGRA~1\mcafee.com\agent\mcagent.exe
O4 - HKLM\..\Run: [MCUpdateExe] C:\PROGRA~1\mcafee.com\agent\McUpdate.exe
O4 - HKLM\..\Run: [MPFExe] C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
O4 - HKLM\..\Run: [outlook] C:\Program Files\outlook\outlook.exe /auto
O4 - HKLM\..\Run: [winlog] winlog.exe
O4 - HKLM\..\Run: [winupdates] C:\Program Files\winupdates\winupdates.exe /auto
O4 - HKLM\..\RunServices: [winlog] winlog.exe
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\Dell Support\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Registry Cleaner] "C:\Program Files\Registry Cleaner Trial\regclean.exe" -startminimize
O4 - HKCU\..\Run: [f5d44c17.exe] C:\Documents and Settings\Computer Owner\Local Settings\Application Data\f5d44c17.exe
O4 - HKCU\..\Run: [MyWebSearch Email Plugin] C:\PROGRA~1\MYWEBS~1\bar\2.bin\mwsoemon.exe
O4 - Startup: .protected
O4 - Global Startup: .protected
O4 - Global Startup: Kodak EasyShare software.lnk = C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe
O4 - Global Startup: Kodak software updater.lnk = C:\Program Files\Kodak\KODAK Software Updater\7288971\Program\Kodak Software Updater.exe
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: &AOL Toolbar search - res://C:\Program Files\AOL Toolbar\toolbar.dll/SEARCH.HTML
O8 - Extra context menu item: &Search - http://edits.mywebse...html?p=ZJfox000
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: EarthLink Google Search - res://C:\Program Files\EarthLink TotalAccess\Toolbar\SearchUI.dll/search.html
O8 - Extra context menu item: Refresh Pa&ge with Full Quality - C:\Program Files\EarthLink TotalAccess\Accelerator\\pac-page.html
O8 - Extra context menu item: Refresh Pi&cture with Full Quality - C:\Program Files\EarthLink TotalAccess\Accelerator\\pac-image.html
O8 - Extra context menu item: Yahoo! &SMS - file:///C:\Program Files\Yahoo!\Common/ycsms.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {2D2BEE6E-3C9A-4D58-B9EC-458EDB28D0F6} - http://drivecleaner....leanerstart.cab
O16 - DPF: {4BB2EF59-0F5B-207C-3A05-10AF58405725} - http://85.255.115.229/1/gdnUS250.exe
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.micros...b?1145481562953
O17 - HKLM\System\CCS\Services\Tcpip\..\{C833E274-0029-48F9-A611-7A56AC6EA187}: NameServer = 207.69.188.185,207.69.188.186
O20 - Winlogon Notify: ipxcsy - C:\WINDOWS\SYSTEM32\ipxcsy.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: ADSService - Aluria Software, LLC - C:\PROGRA~1\EARTHL~2\PROTEC~1\ADSSER~1.EXE
O23 - Service: DvpApi (dvpapi) - Command Software Systems, Inc. - C:\Program Files\Common Files\Command Software\dvpapi.exe
O23 - Service: EarthLink Firewall Process Path Service (ElnkFWPPService) - Aluria Software, LLC. - C:\PROGRA~1\EARTHL~2\PROTEC~1\EFWPPS~1.EXE
O23 - Service: EarthLink Protection Control Center Service (ELNKService) - Aluria Software, LLC. - C:\Program Files\EarthLink TotalAccess\\ProtectionControlCenter\ELNKServ.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Kodak Camera Connection Software (KodakCCS) - Eastman Kodak Company - C:\WINDOWS\system32\drivers\KodakCCS.exe
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
O23 - Service: McAfee.com McShield (McShield) - Unknown owner - c:\PROGRA~1\mcafee.com\vso\mcshield.exe
O23 - Service: McAfee SecurityCenter Update Manager (mcupdmgr.exe) - Networks Associates Technology, Inc - C:\PROGRA~1\McAfee.com\Agent\mcupdmgr.exe
O23 - Service: McAfee.com VirusScan Online Realtime Engine (MCVSRte) - Networks Associates Technology, Inc - c:\PROGRA~1\mcafee.com\vso\mcvsrte.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee Corporation - C:\PROGRA~1\McAfee.com\PERSON~1\MPFSERVICE.exe
O23 - Service: Intel NCS NetService (NetSvc) - Intel® Corporation - C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe
  • 0

Advertisements


#2
Buckeye_Sam

Buckeye_Sam

    Malware Expert

  • Member
  • PipPipPipPipPipPipPipPip
  • 10,019 posts
Hi and welcome to GeeksToGo! My name is Sam and I will be helping you. :whistling:

Please download ComboFix and save it to your desktop.
Double click combofix.exe and follow the prompts.
When it's done running it will produce a log for you. Please post that log in your next reply.

Important Note - Do not mouseclick combofix's window whilst it's running. That may cause it to stall.
  • 0

#3
Tiff Tiff

Tiff Tiff

    New Member

  • Topic Starter
  • Member
  • Pip
  • 9 posts
Well I downloaded it and it started saying everything was infected and then it shut down which freaked me out a little, haha but then this poped up so here you go

Computer Owner - 06-11-02 9:35:26.50 Service Pack 2
ComboFix 06.10.19 - Running from: "C:\Documents and Settings\Computer Owner\Desktop"

(((((((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))


C:\Documents and Settings\Computer Owner\Application Data\Install.dat
C:\WINDOWS\system32\bszip.dll
C:\WINDOWS\system32\cmd.com
C:\WINDOWS\system32\netstat.com
C:\WINDOWS\system32\ping.com
C:\WINDOWS\system32\regedit.com
C:\WINDOWS\system32\taskkill.com
C:\WINDOWS\system32\tasklist.com
C:\WINDOWS\system32\tracert.com
C:\WINDOWS\system32\winlog.exe
C:\Program Files\outlook
C:\Program Files\winupdates


((((((((((((((((((((((((((((((( Files Created from 2006-10-02 to 2006-11-02 ))))))))))))))))))))))))))))))))))


No new files created in this timespan


(((((((((((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))))


2006-11-02 07:58 -------- d-------- C:\Program Files\Mozilla Firefox
2006-10-31 15:59 -------- d-------- C:\Documents and Settings\Computer Owner\Application Data\Lavasoft
2006-10-31 15:58 -------- d-------- C:\Program Files\Lavasoft
2006-10-31 15:17 -------- d-------- C:\Program Files\Hijackthis
2006-10-31 15:05 -------- d-------- C:\Program Files\EarthLink TotalAccess
2006-09-12 21:01 1084416 --a------ C:\WINDOWS\system32\msxml3.dll
2006-08-25 07:45 617472 --a------ C:\WINDOWS\system32\comctl32.dll
2006-08-21 04:21 16896 --a------ C:\WINDOWS\system32\fltlib.dll
2006-08-21 01:14 23040 --a------ C:\WINDOWS\system32\fltmc.exe
2006-08-16 03:58 100352 --a------ C:\WINDOWS\system32\6to4svc.dll


(((((((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))

*Note* empty entries are not shown

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run]
"DellSupport"="\"C:\\Program Files\\Dell Support\\DSAgnt.exe\" /startup"
"ctfmon.exe"="C:\\WINDOWS\\system32\\ctfmon.exe"
"MSMSGS"="\"C:\\Program Files\\Messenger\\msmsgs.exe\" /background"
"Registry Cleaner"="\"C:\\Program Files\\Registry Cleaner Trial\\regclean.exe\" -startminimize"
"f5d44c17.exe"="C:\\Documents and Settings\\Computer Owner\\Local Settings\\Application Data\\f5d44c17.exe"
"MyWebSearch Email Plugin"="C:\\PROGRA~1\\MYWEBS~1\\bar\\2.bin\\mwsoemon.exe"

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run]
"SoundMAXPnP"="C:\\Program Files\\Analog Devices\\Core\\smax4pnp.exe"
"SunJavaUpdateSched"="C:\\Program Files\\Java\\jre1.5.0_03\\bin\\jusched.exe"
"IntelMeM"="C:\\Program Files\\Intel\\Modem Event Monitor\\IntelMEM.exe"
"RealTray"="C:\\Program Files\\Real\\RealPlayer\\RealPlay.exe SYSTEMBOOTHIDEPLAYER"
"dla"="C:\\WINDOWS\\system32\\dla\\tfswctrl.exe"
"ISUSPM Startup"="C:\\PROGRA~1\\COMMON~1\\INSTAL~1\\UPDATE~1\\ISUSPM.exe -startup"
"ISUSScheduler"="\"C:\\Program Files\\Common Files\\InstallShield\\UpdateService\\issch.exe\" -start"
"links"="links.exe"
"lich"="lich.exe"
"mm_server"="C:\\Program Files\\Musicmatch\\Musicmatch Jukebox\\mm_server.exe"
"f5d44c17.exe"="C:\\WINDOWS\\system32\\f5d44c17.exe"
"QuickTime Task"="\"C:\\Program Files\\QuickTime\\qttask.exe\" -atboottime"
"Earthlink Protection Control Center"="C:\\Program Files\\EarthLink TotalAccess\\ProtectionControlCenter\\elnk_pcc.exe /minimize"
"My Web Search Bar"="rundll32 C:\\PROGRA~1\\MYWEBS~1\\bar\\2.bin\\MWSBAR.DLL,S"
"MyWebSearch Email Plugin"="C:\\PROGRA~1\\MYWEBS~1\\bar\\2.bin\\mwsoemon.exe"
"McRegWiz"="C:\\PROGRA~1\\McAfee.com\\Agent\\mcregwiz.exe /autorun"
"VSOCheckTask"="\"c:\\PROGRA~1\\mcafee.com\\vso\\mcmnhdlr.exe\" /checktask"
"VirusScan Online"="c:\\PROGRA~1\\mcafee.com\\vso\\mcvsshld.exe"
"MCAgentExe"="c:\\PROGRA~1\\mcafee.com\\agent\\mcagent.exe"
"MCUpdateExe"="C:\\PROGRA~1\\mcafee.com\\agent\\mcupdate.exe"
"MPFExe"="C:\\PROGRA~1\\McAfee.com\\PERSON~1\\MpfTray.exe"

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\runonceex]
@=""

[HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop\components]
"DeskHtmlVersion"=dword:00000110
"DeskHtmlMinorVersion"=dword:00000005
"Settings"=dword:00000001
"GeneralFlags"=dword:00000005

[HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop\components\0]
"Source"="About:Home"
"SubscribedURL"="About:Home"
"FriendlyName"="My Current Home Page"
"Flags"=dword:00000002
"Position"=hex:2c,00,00,00,cc,00,00,00,00,00,00,00,34,03,00,00,00,03,00,00,00,\
00,00,00,01,00,00,00,01,00,00,00,01,00,00,00,00,00,00,00,00,00,00,00
"CurrentState"=hex:04,00,00,40
"OriginalStateInfo"=hex:18,00,00,00,ff,ff,00,00,ff,ff,00,00,ff,ff,ff,ff,ff,ff,\
ff,ff,04,00,00,00
"RestoredStateInfo"=hex:18,00,00,00,6a,02,00,00,23,00,00,00,a4,00,00,00,9a,00,\
00,00,01,00,00,00

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\sharedtaskscheduler]
"{438755C2-A8BA-11D1-B96B-00A0C90312E1}"="Browseui preloader"
"{8C7461EF-2B13-11d2-BE35-3078302C2030}"="Component Categories cache daemon"

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"NoDriveTypeAutoRun"=dword:00000091

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer\Run]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"dontdisplaylastusername"=dword:00000000
"legalnoticecaption"=""
"legalnoticetext"=""
"shutdownwithoutlogon"=dword:00000001
"undockwithoutlogon"=dword:00000001

[HKEY_USERS\.default\software\microsoft\windows\currentversion\policies\explorer]
"NoDriveTypeAutoRun"=dword:00000091

[HKEY_USERS\s-1-5-18\software\microsoft\windows\currentversion\policies\explorer]
"NoDriveTypeAutoRun"=dword:00000091

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shellserviceobjectdelayload]
"PostBootReminder"="{7849596a-48ea-486e-8937-a2a3009f31a9}"
"CDBurn"="{fbeb8a05-beee-4442-804e-409d6c4515e9}"
"WebCheck"="{E6FB5E20-DE35-11CF-9C87-00AA005127ED}"
"SysTray"="{35CEC8A3-2BE6-11D2-8773-92E220524153}"

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\ipxcsy

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"="msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll"


Contents of the 'Scheduled Tasks' folder
C:\WINDOWS\tasks\McAfee.com Scan for Viruses - My Computer (D9P35Z71-Computer Owner).job
C:\WINDOWS\tasks\McAfee.com Update Check (D9P35Z71-Computer Owner).job
C:\WINDOWS\tasks\MP Scheduled Scan.job

Completion time: 06-11-02 9:39:10.53
C:\ComboFix.txt ... 06-11-02 09:39
  • 0

#4
Buckeye_Sam

Buckeye_Sam

    Malware Expert

  • Member
  • PipPipPipPipPipPipPipPip
  • 10,019 posts
Run Hijackthis again, click scan, and Put a checkmark next to each of the lines listed below. Then close all other windows--you should only see HijackThis on your Desktop--and click the Fix Checked button.

R3 - URLSearchHook: (no name) - - (no file)
O2 - BHO: (no name) - {f72f5229-dc8c-4bf4-ab19-62c56dcced40} - C:\WINDOWS\system32\ipxcsy.dll
O4 - HKLM\..\Run: [links] links.exe
O4 - HKLM\..\Run: [lich] lich.exe
O4 - HKLM\..\Run: [f5d44c17.exe] C:\WINDOWS\system32\f5d44c17.exe
O4 - HKLM\..\Run: [My Web Search Bar] rundll32 C:\PROGRA~1\MYWEBS~1\bar\2.bin\MWSBAR.DLL,S
O4 - HKLM\..\Run: [MyWebSearch Email Plugin] C:\PROGRA~1\MYWEBS~1\bar\2.bin\mwsoemon.exe
O4 - HKLM\..\Run: [outlook] C:\Program Files\outlook\outlook.exe /auto
O4 - HKLM\..\Run: [winlog] winlog.exe
O4 - HKLM\..\Run: [winupdates] C:\Program Files\winupdates\winupdates.exe /auto
O4 - HKLM\..\RunServices: [winlog] winlog.exe
O4 - HKCU\..\Run: [f5d44c17.exe] C:\Documents and Settings\Computer Owner\Local Settings\Application Data\f5d44c17.exe
O4 - HKCU\..\Run: [MyWebSearch Email Plugin] C:\PROGRA~1\MYWEBS~1\bar\2.bin\mwsoemon.exe
O4 - Startup: .protected
O4 - Global Startup: .protected
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O16 - DPF: {2D2BEE6E-3C9A-4D58-B9EC-458EDB28D0F6} - http://drivecleaner....leanerstart.cab
O16 - DPF: {4BB2EF59-0F5B-207C-3A05-10AF58405725} - http://85.255.115.229/1/gdnUS250.exe
O20 - Winlogon Notify: ipxcsy - C:\WINDOWS\SYSTEM32\ipxcsy.dll



=============


Please download the Killbox by Option^Explicit.

Note: In the event you already have Killbox, this is a new version that I need you to download.
  • Save it to your desktop.
  • Please double-click Killbox.exe to run it.
  • Select:
    • Delete on Reboot
    • then Click on the All Files button.
  • Please copy the file paths below to the clipboard by highlighting ALL of them and pressing CTRL + C (or, after highlighting, right-click and choose copy):



    C:\WINDOWS\system32\ipxcsy.dll
    C:\WINDOWS\system32\f5d44c17.exe
    C:\Documents and Settings\Computer Owner\Local Settings\Application Data\f5d44c17.exe



  • Return to Killbox, go to the File menu, and choose Paste from Clipboard.
  • Click the red-and-white Delete File button. Click Yes at the Delete on Reboot prompt. Click OK at any PendingFileRenameOperations prompt (and please let me know if you receive this message!).

    If your computer does not restart automatically, please restart it manually.

  • After rebooting, open up Killbox again. Click File -> Logs -> Actions History Log
  • Post this log in your next reply.

=============



Please download AVG Anti-Spyware and save that file to your desktop.
This is a 30 day trial of the program
  • Once you have downloaded AVG Anti-Spyware, locate the icon on the desktop and double-click it to launch the set up program.
  • Once the setup is complete you will need run Ewido and update the definition files.
  • On the main screen select the icon "Update" then select the "Update now" link.
    • Next select the "Start Update" button, the update will start and a progress bar will show the updates being installed.
  • Once the update has completed select the "Scanner" icon at the top of the screen, then select the "Settings" tab.
  • Once in the Settings screen click on "Recommended actions" and then select "Quarantine".
  • Under "Reports"
    • Select "Automatically generate report after every scan"
    • Un-Select "Only if threats were found"
Close AVG Anti-Spyware, Do Not run a scan just yet, we will shortly.
  • Reboot your computer into SafeMode. You can do this by restarting your computer and continually tapping the F8 key until a menu appears. Use your up arrow key to highlight SafeMode then hit enter.

  • Clean out your Temporary Internet files.
    • Internet Explorer
      • Close Internet Explorer and close any instances of Windows Explorer.
      • Click Start -> Control Panel and then double-click Internet Options.
      • On the General tab, click Delete Files under Temporary Internet Files.
      • In the Delete Files dialog box, tick the Delete all offline content check box , and then click OK.
      • On the General tab, click Delete Cookies under Temporary Internet Files, and then click OK.
      • Click on the Programs tab then click the Reset Web Settings button. Click Apply then OK.
      • Click OK.
    • Firefox (In case you also have Firefox installed)
      • Open Firefox and go to Tools -> Options.
      • Click Privacy in the menu on the left side of the Options window.
      • Click the Clear button located to the right of each option (History, Cookies, Cache).
      • Click OK to close the Options window.
        Alternatively, you can clear all information stored while browsing by clicking Clear All.
        A confirmation dialog box will be shown before clearing the information.

    IMPORTANT: Close all windows and do not open any other windows or programs while AVG Anti-Spyware is scanning, it may interfere with the scanning proccess:

  • Lauch AVG Anti-Spyware by double-clicking the icon on your desktop.
    • Select the "Scanner" icon at the top and then the "Scan" tab then click on "Complete System Scan".
    • AVG Anti-Spyware will now begin the scanning process, be patient this may take a little time.
      Once the scan is complete do the following:
    • If you have any infections you will prompted, then select "Apply all actions"
    • Next select the "Reports" icon at the top.
    • Select the "Save report as" button in the lower left hand of the screen and save it to a text file on your system (make sure to remember where you saved that file, this is important).
    • Close AVG Anti-Spyware and reboot your system back into Normal Mode.
Please post the results of the AVG Anti-Spyware scan report along with a new Hijackthis log.
  • 0

#5
Tiff Tiff

Tiff Tiff

    New Member

  • Topic Starter
  • Member
  • Pip
  • 9 posts
Pocket Killbox version 2.0.0.881
Running on Windows XP as Computer Owner(Administrator)
was started @ Thursday, November 02, 2006, 1:35 PM

# 1 [Delete on Reboot]
Path = C:\WINDOWS\system32\ipxcsy.dll


I Rebooted @ 1:36:21 PM
Killbox Closed(Exit) @ 1:36:31 PM
__________________________________________________

Pocket Killbox version 2.0.0.881
Running on Windows XP as Computer Owner(Administrator)
was started @ Thursday, November 02, 2006, 1:40 PM

Killbox Closed(Exit) @ 1:42:06 PM
__________________________________________________

Pocket Killbox version 2.0.0.881
Running on Windows XP as Computer Owner(Administrator)
was started @ Thursday, November 02, 2006, 1:43 PM

# 1 [Delete on Reboot]
Path = C:\Documents and Settings\Computer Owner\Local Settings\Application Data\f5d44c17.exe


I Rebooted @ 1:47:08 PM
Killbox Closed(Exit) @ 1:47:19 PM
__________________________________________________

Pocket Killbox version 2.0.0.881
Running on Windows XP as Computer Owner(Administrator)
was started @ Thursday, November 02, 2006, 1:50 PM
  • 0

#6
Buckeye_Sam

Buckeye_Sam

    Malware Expert

  • Member
  • PipPipPipPipPipPipPipPip
  • 10,019 posts
Please post the results of the AVG Anti-Spyware scan report along with a new Hijackthis log.
  • 0

#7
Tiff Tiff

Tiff Tiff

    New Member

  • Topic Starter
  • Member
  • Pip
  • 9 posts
ArchiveData(virus's.bckp)
Referencefile : SE1R130 02.11.2006
======================================================

STARWARE TOOLBAR
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
obj[0]=RegValue : .DEFAULT\software\microsoft\internet explorer\toolbar\webbrowser "{D49E9D35-254C-4C6A-9D17-95018D228FF5}"
obj[1]=RegValue : S-1-5-18\software\microsoft\internet explorer\toolbar\webbrowser "{D49E9D35-254C-4C6A-9D17-95018D228FF5}"
obj[2]=RegValue : S-1-5-21-692170369-814017084-3130361404-1006\software\microsoft\internet explorer\toolbar\webbrowser "{D49E9D35-254C-4C6A-9D17-95018D228FF5}"
obj[3]=RegValue : S-1-5-21-692170369-814017084-3130361404-1006\software\microsoft\internet explorer\toolbar\Webbrowser "{2d51d869-c36b-42bd-ae68-0a81bc771fa5}"
obj[4]=RegValue : S-1-5-21-692170369-814017084-3130361404-1006\software\microsoft\internet explorer\toolbar\Webbrowser "{7bed0340-176b-44bc-915e-c21c1dd6f617}"

WIN32.TROJANDOWNLOADER.CONHOOK
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
obj[5]=File : C:\WINDOWS\system32\pmnlkjh.dll
  • 0

#8
Buckeye_Sam

Buckeye_Sam

    Malware Expert

  • Member
  • PipPipPipPipPipPipPipPip
  • 10,019 posts
That's not the right log and I still need to see a hijackthis log.

Lauch AVG Anti-Spyware by double-clicking the icon on your desktop.

* Next select the "Reports" icon at the top.
* Select the "Save report as" button in the lower left hand of the screen and save it to a text file on your system (make sure to remember where you saved that file, this is important).

  • 0

#9
Tiff Tiff

Tiff Tiff

    New Member

  • Topic Starter
  • Member
  • Pip
  • 9 posts
Ok

Edited by Tiff Tiff, 03 November 2006 - 03:22 PM.

  • 0

#10
Tiff Tiff

Tiff Tiff

    New Member

  • Topic Starter
  • Member
  • Pip
  • 9 posts
---------------------------------------------------------
AVG Anti-Spyware - Scan Report
---------------------------------------------------------

+ Created at: 3:30:25 PM 11/3/2006

+ Scan result:



C:\Program Files\Hijackthis\backups\backup-20060616-115823-106.dll -> Adware.Comet : No action taken.
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP195\A0174903.DLL -> Adware.IWon : No action taken.
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP195\A0174884.EXE -> Adware.MyWebSearch : No action taken.
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP195\A0174930.EXE -> Adware.MyWebSearch : No action taken.
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP195\A0174915.exe -> Adware.NewDotNet : No action taken.
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP195\A0174916.dll -> Adware.NewDotNet : No action taken.
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP195\A0174917.exe -> Adware.NewDotNet : No action taken.
HKU\S-1-5-21-692170369-814017084-3130361404-1006\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{4A2AACF3-ADF6-11D5-98A9-00E018981B9E} -> Adware.NewDotNet : No action taken.
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP195\A0174920.exe -> Adware.SaveNow : No action taken.
HKLM\SOFTWARE\Classes\WUSN.1 -> Adware.SaveNow : No action taken.
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{CA356D79-679B-4B4C-8E49-5AF97014F4C1} -> Adware.Starware : No action taken.
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D49E9D35-254C-4C6A-9D17-95018D228FF5} -> Adware.Starware : No action taken.
HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{CA356D79-679B-4B4C-8E49-5AF97014F4C1} -> Adware.Starware : No action taken.
HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D49E9D35-254C-4C6A-9D17-95018D228FF5} -> Adware.Starware : No action taken.
HKU\S-1-5-21-692170369-814017084-3130361404-1006\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D49E9D35-254C-4C6A-9D17-95018D228FF5} -> Adware.Starware : No action taken.
HKU\S-1-5-21-692170369-814017084-3130361404-1006\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{CA356D79-679B-4B4C-8E49-5AF97014F4C1} -> Adware.Starware : No action taken.
HKU\S-1-5-21-692170369-814017084-3130361404-1006\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D49E9D35-254C-4C6A-9D17-95018D228FF5} -> Adware.Starware : No action taken.
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP202\A0179098.exe -> Backdoor.Rbot : No action taken.
C:\WINDOWS\Downloaded Program Files\CONFLICT.42\gdnUS2161.exe -> Downloader.Agent.alf : No action taken.
C:\WINDOWS\Downloaded Program Files\CONFLICT.43\gdnUS2161.exe -> Downloader.Agent.alf : No action taken.
C:\WINDOWS\Downloaded Program Files\CONFLICT.44\gdnUS2161.exe -> Downloader.Agent.alf : No action taken.
C:\WINDOWS\Downloaded Program Files\CONFLICT.45\gdnUS2161.exe -> Downloader.Agent.alf : No action taken.
C:\WINDOWS\Downloaded Program Files\CONFLICT.46\gdnUS2161.exe -> Downloader.Agent.alf : No action taken.
C:\Program Files\Hijackthis\backups\backup-20061102-133301-151.dll -> Downloader.ConHook.aa : No action taken.
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP203\A0179166.dll -> Downloader.ConHook.aa : No action taken.
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP203\A0179220.dll -> Downloader.ConHook.ab : No action taken.
C:\WINDOWS\system32\pmnli.exe -> Downloader.ConHook.ab : No action taken.
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP195\A0174891.DLL -> Downloader.IstBar : No action taken.
C:\WINDOWS\Downloaded Program Files\CONFLICT.10\gdnUS2161.exe -> Downloader.Small.ayl : No action taken.
C:\WINDOWS\Downloaded Program Files\CONFLICT.10\gdnUS250.exe -> Downloader.Small.ayl : No action taken.
C:\WINDOWS\Downloaded Program Files\CONFLICT.11\gdnUS2161.exe -> Downloader.Small.ayl : No action taken.
C:\WINDOWS\Downloaded Program Files\CONFLICT.11\gdnUS250.exe -> Downloader.Small.ayl : No action taken.
C:\WINDOWS\Downloaded Program Files\CONFLICT.12\gdnUS2161.exe -> Downloader.Small.ayl : No action taken.
C:\WINDOWS\Downloaded Program Files\CONFLICT.12\gdnUS250.exe -> Downloader.Small.ayl : No action taken.
C:\WINDOWS\Downloaded Program Files\CONFLICT.13\gdnUS2161.exe -> Downloader.Small.ayl : No action taken.
C:\WINDOWS\Downloaded Program Files\CONFLICT.1\gdnUS2161.exe -> Downloader.Small.ayl : No action taken.
C:\WINDOWS\Downloaded Program Files\CONFLICT.1\gdnUS250.exe -> Downloader.Small.ayl : No action taken.
C:\WINDOWS\Downloaded Program Files\CONFLICT.28\gdnUS2161.exe -> Downloader.Small.ayl : No action taken.
C:\WINDOWS\Downloaded Program Files\CONFLICT.3\gdnUS2161.exe -> Downloader.Small.ayl : No action taken.
C:\WINDOWS\Downloaded Program Files\CONFLICT.3\gdnUS250.exe -> Downloader.Small.ayl : No action taken.
C:\WINDOWS\Downloaded Program Files\CONFLICT.4\gdnUS2161.exe -> Downloader.Small.ayl : No action taken.
C:\WINDOWS\Downloaded Program Files\CONFLICT.4\gdnUS250.exe -> Downloader.Small.ayl : No action taken.
C:\WINDOWS\Downloaded Program Files\CONFLICT.5\gdnUS2161.exe -> Downloader.Small.ayl : No action taken.
C:\WINDOWS\Downloaded Program Files\CONFLICT.5\gdnUS250.exe -> Downloader.Small.ayl : No action taken.
C:\WINDOWS\Downloaded Program Files\CONFLICT.7\gdnUS2161.exe -> Downloader.Small.ayl : No action taken.
C:\WINDOWS\Downloaded Program Files\CONFLICT.7\gdnUS250.exe -> Downloader.Small.ayl : No action taken.
C:\WINDOWS\Downloaded Program Files\CONFLICT.9\gdnUS2161.exe -> Downloader.Small.ayl : No action taken.
C:\WINDOWS\Downloaded Program Files\CONFLICT.9\gdnUS250.exe -> Downloader.Small.ayl : No action taken.
C:\WINDOWS\Downloaded Program Files\gdnUS1402.exe -> Downloader.Small.ayl : No action taken.
C:\WINDOWS\Downloaded Program Files\gdnUS2161.exe -> Downloader.Small.ayl : No action taken.
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP195\A0174919.exe -> Downloader.Small.cpg : No action taken.
C:\nj.exe -> Downloader.Small.cpg : No action taken.
C:\WINDOWS\Downloaded Program Files\CONFLICT.18\gdnUS2161.exe -> Downloader.Small.cxg : No action taken.
C:\WINDOWS\Downloaded Program Files\CONFLICT.19\gdnUS2161.exe -> Downloader.Small.cxg : No action taken.
C:\WINDOWS\Downloaded Program Files\CONFLICT.20\gdnUS2161.exe -> Downloader.Small.cxg : No action taken.
C:\WINDOWS\Downloaded Program Files\CONFLICT.21\gdnUS2161.exe -> Downloader.Small.cxg : No action taken.
C:\WINDOWS\Downloaded Program Files\CONFLICT.22\gdnUS2161.exe -> Downloader.Small.cxg : No action taken.
C:\WINDOWS\Downloaded Program Files\CONFLICT.23\gdnUS2161.exe -> Downloader.Small.cxg : No action taken.
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP186\A0167127.exe -> Dropper.VB.lu : No action taken.
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP186\A0167128.exe -> Dropper.VB.lu : No action taken.

C:\WINDOWS\Downloaded Program Files\UDC6_0001_D10M2905NetInstaller.exe -> Trojan.Fakealert : No action taken.
C:\WINDOWS\system32\links.exe -> Trojan.LowZones.df : No action taken.
C:\fdj.exe -> Trojan.LowZones.df : No action taken.
C:\WINDOWS\system32\lich.exe -> Trojan.LowZones.dm : No action taken.
C:\zdj.exe -> Trojan.LowZones.dm : No action taken.
C:\Documents and Settings\Computer Owner\Shared\Return to Castle Wolfenstein.zip/Setup.exe -> Worm.VB.an : No action taken.
C:\Documents and Settings\Computer Owner\Shared\Return to Castle Wolfenstein\Setup.exe -> Worm.VB.an : No action taken.
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP202\A0179103.exe -> Worm.VB.an : No action taken.
C:\Documents and Settings\Computer Owner\Complete\ Games.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\ Music.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\ Software.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\!! Career Press - Write To The Point - How To Communicate In Business With Style And Purpose pdf.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\!! Learn to Speak Japanese I Reading Booklet © Pimsleur pdf.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\!! Lost Magazine V1 pdf.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\!! Maximum Energy For Life - A 21 Day Strategic Plan To Feel Great, Reverse The Aging Process, And O.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\!! Memory Management Algorithms and Implementation in C C++ pdf.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\!! Metalworking - Handbook of Lost Wax or investment casting pdf.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\!! Programming - Write Great Code, Volume 2 Thinking Low Level Writing High Level - 2006 [ No Starch.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\!! The McKinsey Mind-Understanding and Implementing the Problem-Solving Tools and Management Techniq.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\!! Wiley - How To Write A Grant Proposal - 2003 pdf.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\!! Yamashiro Toshitora Secret Guide To Making Ninja Weapons Complete pdf.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\!!!NEW DEVHOOK ULTIMATE INSTALLER!!!.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\#1 DVD Ripper 4.3.2 + key gen updated on October 9, 2006.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\>>>>The Simpsons S18E04 PDTV XViD-4SPiTE NOV4 PREAIR IRAQ READNFO <<<<<&l.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\"Heroes" [S01][E05] DVDRip XviD.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\"Lost" [S03] [E04] DVDRip XviD.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\» Read more.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\' PIRATES CARAIBES 2 ISO french rar.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\''Inhale'' Yoga with Steve Ross - 01 avi.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\''Inhale'' Yoga with Steve Ross - 04 avi.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\''Inhale'' Yoga with Steve Ross - 06 avi tracker repair.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\''Inhale'' Yoga with Steve Ross - 09 avi.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\''Inhale'' Yoga with Steve Ross - 16 avi.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\'Give Up Smoking' Advice to Muslims Article in Nottingham Evening Post 16-10-06 {1 in 3 adult mal.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\'Imagine' Magazine - Socialist Party of Canada.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\(522) PHP Scripts rar.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\(Cooking) Men's Health Recipes pdf.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\(Cucusoft) Movie iPod PSP Converters.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\(Cucusoft) iPod Video Converter + DVD to iPod Converter Suite 5.15.5.2.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\(E-book) Learn Japanese (in English) pdf.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\(ES) Prison Break S01E19 FRENCH DVTV XViD.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\(ES) Prison Break S01E20 FRENCH DVTV XViD.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\(ES) Prison Break S01E21 FRENCH DVTV XViD.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\(ES) Prison Break S01E22 FiNAL FRENCH DVTV XViD.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\(Ebook) - Diet Exercise - Martial Arts Pressure Points pdf.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\(Ebook) Alternative English Dictionary (Comprehensive, Vulgar Slang And Sex Related) pdf.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\(Ebook) Teach Yourself Cgi Programming With Perl 5 In A Week pdf.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\(Kids PC Games) Reader Rabbit - Sparkle iso.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\(Marvel) Civil War Frontline 07 (New) - [www slotorrent net].zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\(October 2006) Windows Update Genuine Advantage Patch crack [l33t] FiXeD exe.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\(PQ) Pocket DVD Studio.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\(TBK) Diskeeper 11 0 686 Pro Premier for Windows 32-bit.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\(cooking) Keep the Beat - Heart Healthy Recipes pdf.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\(eBook) Macromedia Flash MX Game Design Demystified The Official Guide to Creating Games with Flash.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\(ebook) - VBA - Beginner How To - Computer Programming Concepts and Visual Basic pdf.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\(ebook) Mathemagic (magic tricks) pdf.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\(ebook) Sams - Teach Yourself Java In 28 Days pdf.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\(ebook) Teach Yourself Samba in 24 Hours - Sams pdf.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\(ebook)(math) Probability Theory - The Logic of Science pdf.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\(ebook-math-pdf) Math Handbook of Formulas & Tables pdf.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\(ebook-pdf) - Mathematics - Foundations Of Calculus pdf.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\(ebook-pdf) - Mathematics - Introduction to Finite Element M pdf.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\(ebook-pdf) - Mathematics - Mathematics and Art pdf.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\(ebook-pdf) - Mathematics - Stochastic Calculus and Finance pdf.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\-= NVIDIA PureVideo Decoder v1 02 233 Incl Keygen-SSG =-.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\-Demonoid com- Star Trek Tactical Assault [English][BADR1X].zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\-Demonoid com- Windows Vista Pre-RTM Build 5840 x86.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\10 25 06 Dark Messiah Of Might And Magic NODVD zip.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\10 28 06 Final Fantasy XII RETAIL USA PS2DVD-iNSTEON.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\10 Barbie Games.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\10 CC - Collection - (Studio and Live Albums).zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\100 Funny Clips - Part 2 - (torrential.kicks-[bleep].org).zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\100 Funny Clips - Part 3 - (torrential.kicks-[bleep].org).zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\100 Funny Clips - Part 4 - (torrential.kicks-[bleep].org).zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\100.Funny.Clips.-.Part.5 - (torrential.kicks-[bleep].org).zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\100.Funny.Clips.-.Part.6 - (torrential.kicks-[bleep].org).zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\1000 professional fonts.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\10000 Wallpapers Site.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\1001 iPOD ready Hip-Hop & RnB videos.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\101 Recipes from God's Garden pdf.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\10NasseTeens exe.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\111 Cool Hand Writing Fonts.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\12000 icones pour personnaliser ton pc.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\15 Great - Web Templates with flash - Designload com.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\18 top password recovery programs httpwww.severedbytes.com.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\187 Good Logos Collection.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\1Click DVD COPY Pro 2 3 1 1.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\1Click DVD Copy Pro v2 2 2 4+patcher.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\1Click DVD Copy Version 5 WinALL Incl Keygen-BLiZZARD.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\1Click DVD Copy v5 WinALL Incl Keygen-BLiZZARD.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\2006 Toronto Raptors - Behind the Draft.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\2006 US Open of Supercross.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\204 Disney Pictures For Coloring pack 2.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\213 MSN Winks - 44 Moods and 255 Emoticons (Includes Self Installer) rar.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\25 Custom made Software Labels.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\250 HTML & Web Design Secrets [eBook][Eng].zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\250 HTML & Web Design Secrets.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\250 Photoshop Plugins.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\250 html & webdesign secrets pdf.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\2nd Plexmar VIDEO TS zip.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\2pac - Pac´s Life 2006 Advanced.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\2pac - Pac´s Life 2006-The Pirate Bay-.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\2pac - Pacs Life 2006 -VÖ 24 11 06- [found on www deluxeBits to].zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\2pac-Pac's Life-2006-RNS.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\30 Minutes Indian Recipes pdf.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\30 Rock S01E02 HDTV XviD-LOL [eztv].zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\30 Rock S01E03 HDTV XviD-LOL [eztv].zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\344 XXX passwords LESBIAN-PLATINUM[2K6].zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\35 Website Templates with PSD & Flash.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\394 Halloween Pumpkin Carving Stencils Patterns - (torrential.kicks-[bleep].org).zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\3D Driving School { www IPTorrents com }.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\3D HOME ARCHITECT DESIGN 6 [Viper666].zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\3DS max plugins.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\4Grand Atlas de l'histoire du monde Les guerres de religion.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\50 Sexyest Women in the world - [www slotorrent net].zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\500 Recipes for Bread pdf.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\531 Nude Wallpaper VERY HOT.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\55 Ways to Have Fun with Google pdf.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\55 Ways to Have Fun with Google.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\5ive Girls 2006 DVDrip XviD.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\65 Fonts Collection.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\7 Barbie Movies.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\7th Heaven S11E04 HDTV XviD-LOL [eztv].zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\7th Heaven S11E05 PDTV XviD-LOL [eztv].zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\80's - Collection.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\800 Amateur Bilder Part 13.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\800 Amateur Bilder Part 14.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\800 Amateur Bilder Part 15.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\800000 Good Logos Collection CooL.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\80s Party Mix - Various Artists + covers.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\860000 Good Logos Collection CooL.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\911 - The Great Conspiracy The 911 News Special You Never Saw (2004).zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A Beginner's Guide to Starting a High-Income Business on the Internet 5.0.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A Better Finder Attributes 1.6.1.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A Better Finder Attributes X 3.5.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A Better Finder Rename 5.9.6.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A Better Finder Rename 6.9.5.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A Better Finder Rename 7.2.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A Better Job Interview - Questions and Technique 1.2.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A Better Job Interviews - Answer Book (Abridged) 1.3.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A Better Switchboard for MS Access 2.1.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A Biblical Pilgrimage to the Holy Lands 2.0.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A Bit O Blarney.com Irish Pubs Screensaver 1.0.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A Christmas Snow Scene Reflection 1.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A Christmas Tree Screensaver 3.1.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A Cinderella Story Screensaver .zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A Day With Charlie 1.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A Day in the Life 1.2.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A Day on the Farm 3.6.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A Digg-like site for torrents.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A Farewell to Kings (OS X) 2.1.1.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A Farewell to Kings 2.0.4.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A General Practice Library 2.2.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A Great Grabber 1.2.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A Handful of Beans 1.2.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A History of Violence Screensaver .zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A Horribly 3D Halloween Screen Saver 2.05.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A Horribly 3D Halloween Screensaver for Mac OS X 1.0.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A Legal Good Time 1.0.1.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A Matrix 3D Screensaver 1.2.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A Movie Album Zapper 6.61.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A Plus Report Card Maker 2.4.108.5.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A Point in Time 2.2.7.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A Prairie Home Companion .zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A QuickEStore 8.1.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A Really Small App 2.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A Scanner Darkly [www iPodNova net].zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A Second Chance 108.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A Series of Unfortunate Events demo.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A Simple Contact Manager 2.05.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A Simple Guide To Creating Your Own e-Books 1.0.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A Simple Guide To Creating Your Own eBooks 1.0.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A Skeptic’s Guide to 'An Inconvenient Truth' (CEI 08-2006) 5478 pdf.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A Snake's Life 2.0.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A Speeder 2006.9.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A Study in Scarlet .zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A Taste of Italy pdf.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A Terrible Taco Adventure 1.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A Thanksgiving Reflection 1.0.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A Time For Love 1.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A Tree for all Seasons 1.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A Tropical Fish & Coral Reef Collection 1.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A VIP Organizer 2.50 build 421.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A VIP Task Manager 1.0.1.233.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A Valentine Wish Screensaver 5.0.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A Very 3D Christmas Screen Saver (OS X) 1.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A Very 3D Christmas Screen Saver 2.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A Viking Saga 1.0.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A Waterfall World 1.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A White Christmas 1.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A White Christmas Screen Saver 1.0.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A Winter Wonderland 1.0.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A Young Girl's Diary eBook 1.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A collection of fitness, weightlifting, stretching ebooks { www IPTorrents com }.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A to Z Project Billing 1.5.4.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A “Napster Moment” for TV Downloads.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A&AM Manager 1.0.1.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A&G Grapher 5.51.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A+ Calc 2.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A+ File Protection 2.6.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A+ Flashcards 2.0.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A+ Printer Monitor 3.2.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A+ Screensaver Creator 3.41.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A-10 Cuba .zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A-10 Cuba patch .zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A-Auto for Windows 5.14.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A-Dock 2.8.5.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A-Dock X 1.3.5.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A-Flow 3.5.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A-Kit 1.4.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A-Lex Enligsh Dictionary 1.65.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A-Lex Talking English Dictionary 2.4.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A-Mac Address Change 5.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A-Media Scanner 1.6.1.41.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A-OK The Wings of Mercury 3.7.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A-PDF Info Changer 1.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A-PDF Merger 2.4.1.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A-PDF Number 1.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A-PDF PPT2PDF 1.0.1.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A-PDF Split 2.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A-PDF Text Extractor 1.0.2.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A-Pop 1.0.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A-PopupKiller 0.8.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A-Soft SysOCX Control 1.4.4.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A-Systems JobView 6.1.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A-Systems Visual Bookkeeper 6.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A-ToolBar 3.01.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A-Z Typing Test 1.1.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A-book 3.1.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A-media.nu 1.0.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A-one 3GP Video Converter 4.22.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A-one DVD Copy 4.32.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A-one DVD Creator 4.32.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A-one DVD Ripper 4.32.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A-one DVD to MP3 Ripper 4.22.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A-one Home Looker 1.13.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A-one PSP Video Convertor 4.32.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A-one Video Converter 4.32.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A-one Video Joiner 4.32.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A-one Video To Audio Convertor 2.23.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A-one iPod PSP 3GP Converter 4.32.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A-one iPod Video Convertor 4.32.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A-squared (a2) Personal 1.6.5.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A-squared Free 1.6.5.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A.A.L.--Alien Eliminator 1.85.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A.D.A.M. Interactive Anatomy 2.0.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A.F.5 Rename your files 1.1.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A.I. Wars (The Insect Mind) 3D Screen Saver 1.0.1.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A.I.Studio WatzNew 1.9.5.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A.L.A.R.M. 1.01.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A.M.S.- Active Monitoring System 1.1.65.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A.R.S.E.N.A.L. Extended Power 2.E.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A.S.C 4.01.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A1 - Quicktoolbar 1.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A1 Audio Ripper 2.0.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A1 DVD Copy 1.2.22.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A1 DVD Ripper 1.1.16.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A1 Google Toolbar 1.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A1 HangWord 1.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A1 Jummfa Audio Converter 5.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A1 Multiplicatron 3.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A1 Sitemap Generator 1.3.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A1 SpeechTRON 1.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A1 Suns 1.1.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A1 VCTinyXML 1.0.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A1 Website Analyzer 1.0.8.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A1 Website Download 1.0.7.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A1 iPod Video Converter 1.2.1.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A1Click Ultra PC Cleaner 1.1.1.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A1Monitor Network Monitoring & Server Monitor 7.0.1.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A2 Flash Preloader 1.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A2 Media Player Pro 2.51.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A2E Quizzing Module 1.3.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A2Flash Slideshow Photo-Gallery 1.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A2QB 1.4.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A2Z Gradebook 5.0.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A2Z Hangman 4.1.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A2Z Home Inventory 2.1.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A2Z Recipe File 1.7.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A2ZCyberCafe 1.9.53 release 1.9.0.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A3D Presentation 2.0.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A3D Viewer 1.0.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A3DStitcher 1.0.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A4 Audio CD Studio 6.0.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A4 Flash Menu Builder 1.44.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A4 Video Converter 2.3.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A4Desk Flash Site Builder 5.64.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A4Mark Bookmark Converter & Printing Utility 6.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A4Pocket Newsreader 2.1.5.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A7 Active Protection 3.20.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A9 Toolbar 1.0.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A9CAD 2.2.1.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A9CAD Pro 2.3.2.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A9Converter 1.0.4.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\A9Converter Pro 1.0.4.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\AA Allocation Manage System 4.1.0.1.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\AA Mail Server 1.2.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\AAA Font Viewer 1.4.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\AAA Logo 1.21.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\AACoder Plus 1.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\AAMS Auto Audio Mastering System 2 rev 005.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\AAP System 1.0.1.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\AARON 2.1.01.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\AARSoft AirSwitch 1.0.2.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\AASync 1.2.1.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\AAVoice 1.3.1.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\AB Commander XP 6.9.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\AB Extension Pack 1.1.9.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\AB Hide Folder 5.01.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\AB Invoicing 5.1.1.36.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\AB SuDoKu 1.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\AB System Spy 5.1.1 build 3.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\AB Transfer 1.8.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\AB for Web 1.2.1.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\ABACUS Online Backups 5.0.1.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\ABBA - The Complete Studio Recordings - Box Set 9CD.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\ABBIcon Pro 5 build 2005.10.18.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\ABBUND Timber Frame Construction 20.1.512.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\ABBYY FineReader Professional Edition 8.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\ABBYY PDF TRANSFORMER.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\ABBYY PDF Transformer 2.0.98.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\ABBYY ScanTo Office 1.0.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\ABC 4 Kids Workshop 1.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\ABC Accounts Budgets Cashflows 1.0.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\ABC Advertise 1.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\ABC Amber AutoCad Converter 1.03.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\ABC Amber BlackBerry Converter 3.06.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\ABC Amber CHM Converter 5.10.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\ABC Amber CHM Merger 1.03.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\ABC Amber EarthLink Converter 1.03.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\ABC Amber HxS Converter 1.03.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\ABC Amber Internet Explorer Converter 1.03.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\ABC Amber Nokia Converter 1.03.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\ABC Amber Outlook Converter 6.08.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\ABC Amber Outlook Express Converter 4.21.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\ABC Amber Psion Converter 1.03.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\ABC Amber Rocket eBook Converter 1.03.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\ABC Amber SVG Converter 1.03.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\ABC Amber ScrapBook Converter 1.03.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\ABC Amber iCalendar Converter 1.04.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\ABC Animals 1.0.2.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\ABC Backup 3.7.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\ABC Backup Pro 4.58.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\ABC CMS Pro 4.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\ABC Chinese Learning Tools 1.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\ABC Family for Media Center 1.0.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\ABC Flash Cards 1.2.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\ABC Image Browser 4.8.7.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\ABC Island 1.0.4.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\ABC MailManager 2.5.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\ABC Monday Night Football '98 Update patch .zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\ABC Outlook Backup 1.8.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\ABC Outlook Express Backup 1.5.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\ABC Security Protector 5.3.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\ABC Spanish 1.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Computer Owner\Complete\ABC Spelling Games and Math Games 3.0.zip/S
  • 0

#11
Tiff Tiff

Tiff Tiff

    New Member

  • Topic Starter
  • Member
  • Pip
  • 9 posts
I will post the rest tomorrow
  • 0

#12
Buckeye_Sam

Buckeye_Sam

    Malware Expert

  • Member
  • PipPipPipPipPipPipPipPip
  • 10,019 posts
Ok. No need to post the rest. But you need to be sure that you allow AVG to clean or quarantine what it found. Your log shows that "no action taken" on all of these items.

Please post a new hijackthis log.
  • 0

#13
Tiff Tiff

Tiff Tiff

    New Member

  • Topic Starter
  • Member
  • Pip
  • 9 posts
Ok well when I applyed the actions it froze and wouldn't let me do anything, so I had to shut it down, When I brought it back up it had somehow quarentined all of the worms but not the other stuff but I can't get a report of that, Im going to scan again for the other stuff and hopefuly it won't mess up this time. THanks for being so patient.

Edited by Tiff Tiff, 04 November 2006 - 08:47 PM.

  • 0

#14
Buckeye_Sam

Buckeye_Sam

    Malware Expert

  • Member
  • PipPipPipPipPipPipPipPip
  • 10,019 posts
We'll work around it. Please post a new hijackthis log.
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP