Your help will be sooo much appreciated since I don't know my head from my toes when it comes to pc, especially viruses.
I have follwed the guidelines set out above and downloaded the programs.
Problem. a week ago I used a friends portal Hard Disk to copy over work files, directly after that my virus program dtected a number of virus on my pc (turns out my friend pc was infected with the trojan horse PSW and Online.PSW trojan horse and it some how mutated to the portable and then to my pc). It has made my pc slower and prevented me from accessing program files via the start button and sometimes just shuts down my pc for no reason.
I did not download new antivirus but used my one, its is chinese version called rising
Below re the data you require. Let me just say thank you in advance here..........
KH
HIJACK THIS FILE
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 2:25:20, on 2008-1-6
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\ibmpmsvc.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\PROGRAM FILES\RISING\RAV\CCENTER.EXE
C:\Program Files\Rising\Rav\Ravmond.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Rising\Rav\RavStub.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\Program Files\Rising\Rav\RavService.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\system32\tp4mon.exe
C:\Program Files\Rising\Rav\RavTray.exe
C:\Program Files\Rising\Rav\RavTask.exe
C:\Program Files\Java\jre1.5.0_09\bin\jusched.exe
C:\Program Files\Rising\Rav\Ravmon.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe
C:\PROGRA~1\Yahoo!\ASSIST~1\YLive.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
F2 - REG:system.ini: UserInit=userinit.exe,
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [TrackPointSrv] tp4mon.exe
O4 - HKLM\..\Run: [IMSCMig] C:\PROGRA~1\COMMON~1\MICROS~1\IME\IMSC40A\IMSCMIG.EXE /Preload
O4 - HKLM\..\Run: [RavTray] "C:\Program Files\Rising\Rav\RavTray.exe"
O4 - HKLM\..\Run: [RavTask] "C:\Program Files\Rising\Rav\RavTask.exe" -system
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_09\bin\jusched.exe"
O4 - HKLM\..\Run: [ISUSPM Startup] "C:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe" -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [Acrobat Assistant 7.0] "C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe"
O4 - HKLM\..\Run: [YLive.exe] C:\PROGRA~1\Yahoo!\ASSIST~1\YLive.exe
O4 - HKLM\..\Run: [CnsM.dll] Rundll32.exe C:\PROGRA~1\3721\CnsM.dll,Rundll32
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - HKUS\S-1-5-19\..\Run: [ctfmon.exe] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [ctfmon.exe] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [ctfmon.exe] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [ctfmon.exe] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: >> ²ÊÐÅ·¢ËÍ << - res://C:\PROGRA~1\MMSASS~1\Mmsass~1.dll/mms.htm
O8 - Extra context menu item: µ¼³öµ½ Microsoft Office Excel(&X) - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: ת»»Îª Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: ת»»ÎªÏÖÓÐ PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: ת»»Ñ¡¶¨µÄÁ´½ÓΪ Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: ת»»Ñ¡¶¨µÄÁ´½ÓΪÏÖÓÐ PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: ת»»Ñ¡ÏîΪ Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: ת»»Ñ¡ÏîΪÏÖÓÐ PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: ת»»Á´½ÓÄ¿±êΪ Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: ת»»Á´½ÓÄ¿±êΪÏÖÓÐ PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java ¿ØÖÆ̨ - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
O9 - Extra button: Yahoo 3.5GµçÓÊ - {507F9113-CD77-4866-BA92-0E86DA3D0B97} - http://cn.zs.yahoo.c...p;btn=yahoomail (file missing)
O9 - Extra button: ÃûÆ·ÕÛ¿Û - {59BC54A2-56B3-44a0-93E5-432D58746E26} - http://adtaobao.ally...?allyesPara=816 (file missing)
O9 - Extra button: ÑÅ»¢ÖúÊÖ - {5D73EE86-05F1-49ed-B850-E423120EC338} - http://cn.zs.yahoo.c...amp;btn=yassist (file missing)
O9 - Extra button: ÑÅ»¢WIDGET - {6354ABE6-05F1-49ed-B850-E423120EC338} - http://cn.widget.yah....htm?source=Cns (file missing)
O9 - Extra button: (no name) - {6671A433-5C3D-463d-A7CF-5587F9B7E191} - C:\WINDOWS\system32\shdocvw.dll
O9 - Extra 'Tools' menuitem: MMSAssist¹¤¾ßÌõÉèÖà - {6671A433-5C3D-463d-A7CF-5587F9B7E191} - C:\WINDOWS\system32\shdocvw.dll
O9 - Extra button: Skype add-on - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\PROGRA~1\Skype\Phone\IEPlugin\SKYPEI~1.DLL
O9 - Extra button: ÐÅÏ¢¼ìË÷ - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: ´Ê°Ô - {9A687CA6-D585-4947-9ED9-BE96071F5CD9} - C:\PROGRA~1\Kingsoft\POWERW~1\XDictExB.dll
O9 - Extra button: Ò×Ȥ¹ºÎï - {DE607142-AC19-422e-863A-3D70ABDF119A} - http://click2.ad4all...ge/url.asp?id=5 (file missing)
O9 - Extra 'Tools' menuitem: Ò×Ȥ¹ºÎï - {DE607142-AC19-422e-863A-3D70ABDF119A} - http://click2.ad4all...ge/url.asp?id=5 (file missing)
O9 - Extra button: Çé¾°ÁÄÌì - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - http://cn.zs.yahoo.c...mp;btn=yahoomsg (file missing)
O9 - Extra button: (no name) - {ECF2E268-F28C-48d2-9AB7-8F69C11CCB71} - http://cn.zs.yahoo.c...c...&btn=repair (file missing)
O9 - Extra 'Tools' menuitem: ÐÞ¸´ä¯ÀÀÆ÷ - {ECF2E268-F28C-48d2-9AB7-8F69C11CCB71} - http://cn.zs.yahoo.c...c...&btn=repair (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: (no name) - {FD00D911-7529-4084-9946-A29F1BDF4FE5} - http://cn.zs.yahoo.c...c...s&btn=clean (file missing)
O9 - Extra 'Tools' menuitem: ÇåÀíÉÏÍø¼Ç¼ - {FD00D911-7529-4084-9946-A29F1BDF4FE5} - http://cn.zs.yahoo.c...c...s&btn=clean (file missing)
O11 - Options group: [!CNS] ÖÐÎÄÉÏÍø
O16 - DPF: {05C1004E-2596-48E5-8E26-39362985EEB9} (MMCPlayer Class) - http://p3p.sogou.com/MMCShell.cab
O16 - DPF: {0CA54D3F-CEAE-48AF-9A2B-31909CB9515D} (Edit Class) - https://www.sz1.cmbc...oad/CMBEdit.cab
O16 - DPF: {A3CD7F74-93C9-4BC4-B892-CCDF1514F714} (Submit Class) - https://pbank.95559....nk/ocx/safe.cab
O16 - DPF: {ECCBA956-80E5-11D3-9285-0080ADB811C9} (safeInput Class) - https://pbank.95559....fe_bankcomm.cab
O18 - Protocol: dic - {C21F5C32-F57A-4A0D-8E0A-B672691C52D0} - C:\PROGRA~1\Kingsoft\POWERW~1\XDictExB.dll
O20 - AppInit_DLLs: hookhelp.dll
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O20 - Winlogon Notify: ImpsSensor - C:\WINDOWS\SYSTEM32\ImpsSensor.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: IBM PM Service (IBMPMSVC) - Unknown owner - C:\WINDOWS\system32\ibmpmsvc.exe
O23 - Service: P4P Service - Unknown owner - C:\Program Files\Common Files\Sogou PXP\p2psvr.exe (file missing)
O23 - Service: RavService - Beijing Rising Technology Co., Ltd. - C:\Program Files\Rising\Rav\RavService.exe
O23 - Service: Rising Process Communication Center (RsCCenter) - Beijing Rising Technology Co., Ltd. - C:\PROGRAM FILES\RISING\RAV\CCENTER.EXE
O23 - Service: RsRavMon Service (RsRavMon) - Beijing Rising Technology Co., Ltd. - C:\Program Files\Rising\Rav\Ravmond.exe
--
End of file - 9477 bytes
HIJACK THIS UNINSTALL
3ivx D4 4.0.3 (remove only)
Adobe Acrobat 7.0 Professional - ChineseS
Adobe Flash Player 9 ActiveX
Adobe Photoshop Album 2.0 Starter Edition
Adobe Reader 7.0 - Chinese Simplified
AVG Anti-Spyware 7.5
CMBEdit
Fetion 2006
HijackThis 2.0.2
IBM ThinkPad Power Management Driver
J2SE Runtime Environment 5.0 Update 9
Microsoft Office Professional Edition 2003
MMSAssist
Mozilla Firefox (2.0.0.11)
MSXML 4.0 SP2 (KB927978)
MSXML 4.0 SP2 (KB936181)
Print Server
RealPlayer
safeInput2.3
Samsung SCX-4x21 Series
Skype (BETA)
Skype add-on for IE
Sony Ericsson PC Suite
SUPERAntiSpyware Free Edition
Tencent Traveler 3.1 Beta2
Windows Installer 3.1 (KB893803)
Windows Live Messenger
Windows Live Sign-in Assistant
Windows Media Player (KB911564) °²È«¸üÐÂ
Windows Media Player 6.4 (KB925398) °²È«¸üÐÂ
Windows Media Player 9 (KB917734) °²È«¸üÐÂ
Windows Media Player 9 (KB936782) °²È«¸üÐÂ
Windows XP (KB923689) °²È«¸üÐÂ
Windows XP (KB941569) °²È«¸üÐÂ
Windows XP °²È«¸üР(KB890046)
Windows XP °²È«¸üР(KB893756)
Windows XP °²È«¸üР(KB896358)
Windows XP °²È«¸üР(KB896423)
Windows XP °²È«¸üР(KB896424)
Windows XP °²È«¸üР(KB896428)
Windows XP °²È«¸üР(KB899587)
Windows XP °²È«¸üР(KB899589)
Windows XP °²È«¸üР(KB899591)
Windows XP °²È«¸üР(KB900725)
Windows XP °²È«¸üР(KB901017)
Windows XP °²È«¸üР(KB901190)
Windows XP °²È«¸üР(KB901214)
Windows XP °²È«¸üР(KB902400)
Windows XP °²È«¸üР(KB904706)
Windows XP °²È«¸üР(KB905414)
Windows XP °²È«¸üР(KB905749)
Windows XP °²È«¸üР(KB908519)
Windows XP °²È«¸üР(KB911562)
Windows XP °²È«¸üР(KB911567)
Windows XP °²È«¸üР(KB911927)
Windows XP °²È«¸üР(KB912919)
Windows XP °²È«¸üР(KB913433)
Windows XP °²È«¸üР(KB913580)
Windows XP °²È«¸üР(KB914388)
Windows XP °²È«¸üР(KB914389)
Windows XP °²È«¸üР(KB917159)
Windows XP °²È«¸üР(KB917344)
Windows XP °²È«¸üР(KB917422)
Windows XP °²È«¸üР(KB917953)
Windows XP °²È«¸üР(KB918118)
Windows XP °²È«¸üР(KB918439)
Windows XP °²È«¸üР(KB918899)
Windows XP °²È«¸üР(KB919007)
Windows XP °²È«¸üР(KB920213)
Windows XP °²È«¸üР(KB920214)
Windows XP °²È«¸üР(KB920670)
Windows XP °²È«¸üР(KB920683)
Windows XP °²È«¸üР(KB920685)
Windows XP °²È«¸üР(KB921398)
Windows XP °²È«¸üР(KB921503)
Windows XP °²È«¸üР(KB921883)
Windows XP °²È«¸üР(KB922616)
Windows XP °²È«¸üР(KB922760)
Windows XP °²È«¸üР(KB922819)
Windows XP °²È«¸üР(KB923191)
Windows XP °²È«¸üР(KB923414)
Windows XP °²È«¸üР(KB923694)
Windows XP °²È«¸üР(KB923980)
Windows XP °²È«¸üР(KB924191)
Windows XP °²È«¸üР(KB924270)
Windows XP °²È«¸üР(KB924496)
Windows XP °²È«¸üР(KB924667)
Windows XP °²È«¸üР(KB925454)
Windows XP °²È«¸üР(KB925486)
Windows XP °²È«¸üР(KB925902)
Windows XP °²È«¸üР(KB926255)
Windows XP °²È«¸üР(KB926436)
Windows XP °²È«¸üР(KB927779)
Windows XP °²È«¸üР(KB927802)
Windows XP °²È«¸üР(KB928090)
Windows XP °²È«¸üР(KB928255)
Windows XP °²È«¸üР(KB928843)
Windows XP °²È«¸üР(KB929123)
Windows XP °²È«¸üР(KB929969)
Windows XP °²È«¸üР(KB930178)
Windows XP °²È«¸üР(KB931261)
Windows XP °²È«¸üР(KB931768)
Windows XP °²È«¸üР(KB931784)
Windows XP °²È«¸üР(KB932168)
Windows XP °²È«¸üР(KB933566)
Windows XP °²È«¸üР(KB933729)
Windows XP °²È«¸üР(KB935839)
Windows XP °²È«¸üР(KB935840)
Windows XP °²È«¸üР(KB936021)
Windows XP °²È«¸üР(KB937143)
Windows XP °²È«¸üР(KB937894)
Windows XP °²È«¸üР(KB938127)
Windows XP °²È«¸üР(KB938829)
Windows XP °²È«¸üР(KB939653)
Windows XP °²È«¸üР(KB941202)
Windows XP °²È«¸üР(KB941568)
Windows XP °²È«¸üР(KB942615)
Windows XP °²È«¸üР(KB943460)
Windows XP °²È«¸üР(KB944653)
Windows XP ¸üР(KB894391)
Windows XP ¸üР(KB898461)
Windows XP ¸üР(KB900485)
Windows XP ¸üР(KB908531)
Windows XP ¸üР(KB910437)
Windows XP ¸üР(KB911280)
Windows XP ¸üР(KB916595)
Windows XP ¸üР(KB920872)
Windows XP ¸üР(KB922582)
Windows XP ¸üР(KB927891)
Windows XP ¸üР(KB929338)
Windows XP ¸üР(KB930916)
Windows XP ¸üР(KB931836)
Windows XP ¸üР(KB933360)
Windows XP ¸üР(KB936357)
Windows XP ¸üР(KB938828)
Windows XP ¸üР(KB942763)
Windows XP ¸üР(KB942840)
Windows XP ÐÞ²¹³ÌÐò°ü - KB873339
Windows XP ÐÞ²¹³ÌÐò°ü - KB885835
Windows XP ÐÞ²¹³ÌÐò°ü - KB885836
Windows XP ÐÞ²¹³ÌÐò°ü - KB886185
Windows XP ÐÞ²¹³ÌÐò°ü - KB886677
Windows XP ÐÞ²¹³ÌÐò°ü - KB887472
Windows XP ÐÞ²¹³ÌÐò°ü - KB888302
Windows XP ÐÞ²¹³ÌÐò°ü - KB890859
Windows XP ÐÞ²¹³ÌÐò°ü - KB891781
WinRAR ѹËõÎļþ¹ÜÀíÆ÷
±©·çÓ°Òô
½ðɽ´Ê°Ô 2003
¿ìÀÖÓ°Òô 3.52
ÈðÐÇɱ¶¾Èí¼þÍøÂç°æ
ËѺü²¥·ÅÆ÷ 2.1.0.8
ÖÐÎÄÉÏÍø
AVG SPYWARE REPORT
---------------------------------------------------------
AVG Anti-Spyware - Scan Report
---------------------------------------------------------
+ Created at: 17:24:55 2008-1-5
+ Scan result:
C:\WINDOWS\system32\cacb.dll -> Adware.BHO : Cleaned with backup (quarantined).
C:\WINDOWS\system32\webdll.dll -> Adware.BHO : Cleaned with backup (quarantined).
C:\Program Files\MMSAssist\Mmsass~1.dll -> Adware.Boran : Cleaned with backup (quarantined).
C:\Program Files\3721\CNSMIN.DAT -> Adware.Cdn : Cleaned with backup (quarantined).
C:\Program Files\3721\alliveex.dll -> Adware.Cdn : Cleaned with backup (quarantined).
C:\Program Files\3721\alrex.dll -> Adware.Cdn : Cleaned with backup (quarantined).
C:\Program Files\3721\scrblock.dll -> Adware.Cdn : Cleaned with backup (quarantined).
C:\WINDOWS\Downloaded Program Files\CnsHint.cab/CnsHint.dll -> Adware.Cdn : Cleaned with backup (quarantined).
C:\WINDOWS\Downloaded Program Files\CnsMinDT.cab/cnsmin2.dat -> Adware.Cdn : Cleaned with backup (quarantined).
C:\WINDOWS\Downloaded Program Files\CnsMinDT.cab/cnsmindt.dll -> Adware.Cdn : Cleaned with backup (quarantined).
C:\WINDOWS\Downloaded Program Files\CnsMinDT.dll -> Adware.Cdn : Cleaned with backup (quarantined).
C:\WINDOWS\Downloaded Program Files\CnsMinEx.cab/CnsMinEx.dll -> Adware.Cdn : Cleaned with backup (quarantined).
C:\WINDOWS\Downloaded Program Files\CnsMinEx.dll -> Adware.Cdn : Cleaned with backup (quarantined).
C:\WINDOWS\Downloaded Program Files\CnsMinIO.cab/CnsIO.dll -> Adware.Cdn : Cleaned with backup (quarantined).
C:\WINDOWS\Downloaded Program Files\cnshint.dll -> Adware.Cdn : Cleaned with backup (quarantined).
C:\WINDOWS\Downloaded Program Files\cnsio.dll -> Adware.Cdn : Cleaned with backup (quarantined).
C:\WINDOWS\Downloaded Program Files\keepmainM.cab/cnsminkp.vxd -> Adware.Cdn : Cleaned with backup (quarantined).
C:\WINDOWS\Downloaded Program Files\keepmainM.cab/cnsminkp2k.sys -> Adware.Cdn : Cleaned with backup (quarantined).
C:\WINDOWS\Downloaded Program Files\keepmainM.cab/cnsminkpxp.sys -> Adware.Cdn : Cleaned with backup (quarantined).
C:\WINDOWS\system32\drivers\CnsMinKP.sys -> Adware.Cdn : Cleaned with backup (quarantined).
[1000] C:\WINDOWS\DOWNLO~1\cnsio.dll -> Adware.Cdn : Cleaned with backup (quarantined).
C:\Program Files\Yahoo!\Assistant\yalliveex.dll -> Adware.Cdnup : Cleaned with backup (quarantined).
HKLM\SOFTWARE\3721 -> Adware.CnsMin : Cleaned with backup (quarantined).
HKLM\SOFTWARE\3721\Assist -> Adware.CnsMin : Cleaned with backup (quarantined).
HKLM\SOFTWARE\3721\Assist\Modules -> Adware.CnsMin : Cleaned with backup (quarantined).
HKLM\SOFTWARE\3721\AutoLive -> Adware.CnsMin : Cleaned with backup (quarantined).
HKLM\SOFTWARE\3721\AutoLive\scrblock -> Adware.CnsMin : Cleaned with backup (quarantined).
HKLM\SOFTWARE\3721\CnsMin -> Adware.CnsMin : Cleaned with backup (quarantined).
HKLM\SOFTWARE\3721\CnsMinCg -> Adware.CnsMin : Cleaned with backup (quarantined).
HKLM\SOFTWARE\3721\CnsMin\CnsMinEx -> Adware.CnsMin : Cleaned with backup (quarantined).
HKLM\SOFTWARE\3721\CnsMin\Variant -> Adware.CnsMin : Cleaned with backup (quarantined).
HKLM\SOFTWARE\Classes\AutoLive.Live -> Adware.CnsMin : Cleaned with backup (quarantined).
HKLM\SOFTWARE\Classes\AutoLive.Live.1 -> Adware.CnsMin : Cleaned with backup (quarantined).
HKLM\SOFTWARE\Classes\AutoLive.Live\CLSID -> Adware.CnsMin : Cleaned with backup (quarantined).
HKLM\SOFTWARE\Classes\AutoLive.Live\CurVer -> Adware.CnsMin : Cleaned with backup (quarantined).
HKLM\SOFTWARE\Classes\CnsHelper.CH -> Adware.CnsMin : Error during cleaning.
HKLM\SOFTWARE\Classes\CnsHelper.CH.1 -> Adware.CnsMin : Error during cleaning.
HKLM\SOFTWARE\Classes\CnsHelper.CH\CLSID -> Adware.CnsMin : Error during cleaning.
HKLM\SOFTWARE\Classes\CnsHelper.CH\CurVer -> Adware.CnsMin : Error during cleaning.
HKLM\SOFTWARE\Classes\CnsMinHK.CnsHook -> Adware.CnsMin : Cleaned with backup (quarantined).
HKLM\SOFTWARE\Classes\CnsMinHK.CnsHook.1 -> Adware.CnsMin : Cleaned with backup (quarantined).
HKLM\SOFTWARE\Classes\CnsMinHK.CnsHook\CLSID -> Adware.CnsMin : Cleaned with backup (quarantined).
HKLM\SOFTWARE\Classes\CnsMinHK.CnsHook\CurVer -> Adware.CnsMin : Cleaned with backup (quarantined).
HKLM\SOFTWARE\Classes\CoolBar.CoolBarObj -> Adware.CnsMin : Cleaned with backup (quarantined).
HKLM\SOFTWARE\Classes\CoolBar.CoolBarObj.1 -> Adware.CnsMin : Cleaned with backup (quarantined).
HKLM\SOFTWARE\Classes\CoolBar.CoolBarObj\CLSID -> Adware.CnsMin : Cleaned with backup (quarantined).
HKLM\SOFTWARE\Classes\CoolBar.CoolBarObj\CurVer -> Adware.CnsMin : Cleaned with backup (quarantined).
HKLM\SOFTWARE\Microsoft\Internet Explorer\AdvancedOptions\!CNS -> Adware.CnsMin : Cleaned with backup (quarantined).
HKLM\SOFTWARE\Microsoft\Internet Explorer\AdvancedOptions\!CNS\AutoUpdate -> Adware.CnsMin : Cleaned with backup (quarantined).
HKLM\SOFTWARE\Microsoft\Internet Explorer\AdvancedOptions\!CNS\Enable -> Adware.CnsMin : Cleaned with backup (quarantined).
HKLM\SOFTWARE\Microsoft\Internet Explorer\AdvancedOptions\!CNS\Hint -> Adware.CnsMin : Cleaned with backup (quarantined).
HKLM\SOFTWARE\Microsoft\Internet Explorer\AdvancedOptions\!CNS\List -> Adware.CnsMin : Cleaned with backup (quarantined).
HKLM\SOFTWARE\Microsoft\Internet Explorer\AdvancedOptions\!CNS\Reset -> Adware.CnsMin : Cleaned with backup (quarantined).
HKLM\SOFTWARE\Microsoft\Internet Explorer\AdvancedOptions\!CNS\ResetCatch -> Adware.CnsMin : Cleaned with backup (quarantined).
HKLM\SOFTWARE\Microsoft\Internet Explorer\AdvancedOptions\!CNS\Tips -> Adware.CnsMin : Cleaned with backup (quarantined).
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\CnsMin -> Adware.CnsMin : Cleaned with backup (quarantined).
HKU\S-1-5-21-1409082233-1993962763-842925246-1004\Software\3721 -> Adware.CnsMin : Cleaned with backup (quarantined).
HKU\S-1-5-21-1409082233-1993962763-842925246-1004\Software\3721\CnsMin -> Adware.CnsMin : Cleaned with backup (quarantined).
HKU\S-1-5-21-1409082233-1993962763-842925246-1004\Software\3721\CnsMin\Variant -> Adware.CnsMin : Cleaned with backup (quarantined).
HKU\S-1-5-21-1409082233-1993962763-842925246-1004\Software\3721\CnsUrl -> Adware.CnsMin : Cleaned with backup (quarantined).
HKU\S-1-5-21-1409082233-1993962763-842925246-1004\Software\3721\InputCns -> Adware.CnsMin : Cleaned with backup (quarantined).
HKU\S-1-5-21-1409082233-1993962763-842925246-1004\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{38928D50-8A48-44C2-945F-D2F23F771410} -> Adware.CnsMin : Cleaned with backup (quarantined).
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6671A431-5C3D-463d-A7CF-5587F9B7E191} -> Adware.Generic : Cleaned with backup (quarantined).
HKU\S-1-5-21-1409082233-1993962763-842925246-1004\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{6671A431-5C3D-463D-A7CF-5587F9B7E191} -> Adware.Generic : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{8152047B-A644-4F45-AEA3-2C176348448F}\RP323\A0073159.exe -> Adware.Sohu : Cleaned with backup (quarantined).
C:\Program Files\Yahoo!\Assistant\YAlive.dll/Assist\yasbar.dll/sremove.exe -> Adware.Yassist : Cleaned with backup (quarantined).
C:\Program Files\Yahoo!\Assistant\YAlive.dll/yhelper.dll -> Adware.Yassist : Cleaned with backup (quarantined).
C:\Program Files\Yahoo!\Assistant\YAlive.dll/ylive.exe -> Adware.Yassist : Cleaned with backup (quarantined).
C:\Program Files\Tencent\TT\TCPlus.exe -> Downloader.Agent : Cleaned with backup (quarantined).
C:\Program Files\3721\helper.dll -> Downloader.AutoLive : Cleaned with backup (quarantined).
C:\WINDOWS\Downloaded Program Files\CnsMinAL.cab/AutoLive.dll/Helper.dll -> Downloader.AutoLive : Cleaned with backup (quarantined).
C:\WINDOWS\Downloaded Program Files\keepmainM.cab/cns1.exe -> Downloader.Baido : Cleaned with backup (quarantined).
C:\WINDOWS\system32\cns.exe -> Downloader.Baido : Cleaned with backup (quarantined).
D:\3people\HR\中石化人力处长刘凯股权激励.htm -> Downloader.IFrame.ay : Cleaned with backup (quarantined).
C:\WINDOWS\system32\ratbqtl.exe -> Trojan.Agent : Cleaned with backup (quarantined).
C:\Program Files\Herosoft\Hero 9\SysExplr.exe -> Trojan.Inject.av : Cleaned with backup (quarantined).
C:\WINDOWS\system32\kvdxkis.exe -> Trojan.OnLineGames.dwe : Cleaned with backup (quarantined).
C:\WINDOWS\system32\swrcfac.exe -> Trojan.OnLineGames.dwe : Cleaned with backup (quarantined).
C:\WINDOWS\system32\jsqxazc.exe -> Trojan.OnLineGames.eza : Cleaned with backup (quarantined).
C:\WINDOWS\system32\kawdhaz.exe -> Trojan.OnLineGames.gih : Cleaned with backup (quarantined).
C:\WINDOWS\system32\sidjjaz.exe -> Trojan.OnLineGames.gih : Cleaned with backup (quarantined).
C:\WINDOWS\system32\okmhbaz.exe -> Trojan.OnLineGames.khi : Cleaned with backup (quarantined).
C:\WINDOWS\system32\sidjhaz.exe -> Trojan.OnLineGames.kpq : Cleaned with backup (quarantined).
C:\WINDOWS\system32\avwlgst.exe -> Trojan.OnLineGames.kqd : Cleaned with backup (quarantined).
C:\WINDOWS\system32\kawdfaz.exe -> Trojan.OnLineGames.kqd : Cleaned with backup (quarantined).
C:\WINDOWS\PTSShell.exe -> Trojan.OnLineGames.ksq : Cleaned with backup (quarantined).
C:\WINDOWS\system32\kvdxskis.exe -> Trojan.OnLineGames.ktk : Cleaned with backup (quarantined).
C:\WINDOWS\system32\ratbotl.exe -> Trojan.OnLineGames.ktl : Cleaned with backup (quarantined).
C:\WINDOWS\LotusHlp.exe -> Trojan.OnLineGames.kvn : Cleaned with backup (quarantined).
C:\WINDOWS\SSLDyn.exE -> Trojan.OnLineGames.kwk : Cleaned with backup (quarantined).
C:\WINDOWS\system32\SSLDyn.dll -> Trojan.OnLineGames.kwk : Cleaned with backup (quarantined).
C:\WINDOWS\system32\irlbtp.dll -> Trojan.OnLineGames.kwk : Cleaned with backup (quarantined).
C:\WINDOWS\system32\kvdxjisa.exe -> Trojan.OnLineGames.let : Cleaned with backup (quarantined).
C:\WINDOWS\system32\swjqbac.exe -> Trojan.OnLineGames.let : Cleaned with backup (quarantined).
C:\WINDOWS\system32\sidjiaz.exe -> Trojan.OnLineGames.lrb : Cleaned with backup (quarantined).
C:\Program Files\lsassc.exe -> Trojan.QQPass.ajl : Cleaned with backup (quarantined).
C:\WINDOWS\system32\wxptdi.sys -> Worm.Downloader.aw : Cleaned with backup (quarantined).
[1000] C:\WINDOWS\DOWNLO~1\cnsio.dll -> Adware.Cdn : Cleaned.
HKLM\SOFTWARE\3721 -> Adware.CnsMin : Cleaned.
HKLM\SOFTWARE\3721\CnsMin -> Adware.CnsMin : Cleaned.
HKLM\SOFTWARE\Classes\CnsHelper.CH -> Adware.CnsMin : Error during cleaning.
HKLM\SOFTWARE\Classes\CnsHelper.CH.1 -> Adware.CnsMin : Error during cleaning.
HKLM\SOFTWARE\Classes\CnsHelper.CH\CLSID -> Adware.CnsMin : Error during cleaning.
HKLM\SOFTWARE\Classes\CnsHelper.CH\CurVer -> Adware.CnsMin : Error during cleaning.
SUPER SPYWARE REPORT
SUPERAntiSpyware Scan Log
Generated 01/05/2008 at 08:14 PM
Application Version : 3.6.1000
Core Rules Database Version : 3190
Trace Rules Database Version: 1200
Scan type : Complete Scan
Total Scan Time : 02:20:55
Memory items scanned : 405
Memory threats detected : 0
Registry items scanned : 4848
Registry threats detected : 47
File items scanned : 66786
File threats detected : 3
Unclassified.Unknown Origin
HKLM\Software\Classes\CLSID\{77962960-536E-47EC-9DDB-52651519705F}
HKCR\CLSID\{77962960-536E-47EC-9DDB-52651519705F}
HKCR\CLSID\{77962960-536E-47EC-9DDB-52651519705F}
HKCR\CLSID\{77962960-536E-47EC-9DDB-52651519705F}\InprocServer32
HKCR\CLSID\{77962960-536E-47EC-9DDB-52651519705F}\InprocServer32#ThreadingModel
HKCR\CLSID\{77962960-536E-47EC-9DDB-52651519705F}\ProgID
HKCR\CLSID\{77962960-536E-47EC-9DDB-52651519705F}\Programmable
HKCR\CLSID\{77962960-536E-47EC-9DDB-52651519705F}\TypeLib
HKCR\CLSID\{77962960-536E-47EC-9DDB-52651519705F}\VersionIndependentProgID
C:\WINDOWS\SYSTEM32\CACB.DLL
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{77962960-536E-47EC-9DDB-52651519705F}
Coolbar Shell Execute Hook by 3721.com
HKLM\Software\Classes\CLSID\{B83FC273-3522-4CC6-92EC-75CC86678DA4}
HKCR\CLSID\{B83FC273-3522-4CC6-92EC-75CC86678DA4}
HKCR\CLSID\{B83FC273-3522-4CC6-92EC-75CC86678DA4}
HKCR\CLSID\{B83FC273-3522-4CC6-92EC-75CC86678DA4}\Control
HKCR\CLSID\{B83FC273-3522-4CC6-92EC-75CC86678DA4}\Implemented Categories
HKCR\CLSID\{B83FC273-3522-4CC6-92EC-75CC86678DA4}\InprocServer32
HKCR\CLSID\{B83FC273-3522-4CC6-92EC-75CC86678DA4}\InprocServer32#ThreadingModel
HKCR\CLSID\{B83FC273-3522-4CC6-92EC-75CC86678DA4}\Insertable
HKCR\CLSID\{B83FC273-3522-4CC6-92EC-75CC86678DA4}\MiscStatus
HKCR\CLSID\{B83FC273-3522-4CC6-92EC-75CC86678DA4}\MiscStatus\1
HKCR\CLSID\{B83FC273-3522-4CC6-92EC-75CC86678DA4}\ProgID
HKCR\CLSID\{B83FC273-3522-4CC6-92EC-75CC86678DA4}\Programmable
HKCR\CLSID\{B83FC273-3522-4CC6-92EC-75CC86678DA4}\ToolboxBitmap32
HKCR\CLSID\{B83FC273-3522-4CC6-92EC-75CC86678DA4}\TypeLib
HKCR\CLSID\{B83FC273-3522-4CC6-92EC-75CC86678DA4}\Version
HKCR\CLSID\{B83FC273-3522-4CC6-92EC-75CC86678DA4}\VersionIndependentProgID
C:\WINDOWS\DOWNLOADED PROGRAM FILES\CNSMIN.DLL
CNS Module BHO
HKLM\Software\Classes\CLSID\{D157330A-9EF3-49F8-9A67-4141AC41ADD4}
HKCR\CLSID\{D157330A-9EF3-49F8-9A67-4141AC41ADD4}
HKCR\CLSID\{D157330A-9EF3-49F8-9A67-4141AC41ADD4}
HKCR\CLSID\{D157330A-9EF3-49F8-9A67-4141AC41ADD4}\Implemented Categories
HKCR\CLSID\{D157330A-9EF3-49F8-9A67-4141AC41ADD4}\Implemented Categories\{56FFCC30-D398-11D0-B2AE-00A0C908FA49}
HKCR\CLSID\{D157330A-9EF3-49F8-9A67-4141AC41ADD4}\InprocServer32
HKCR\CLSID\{D157330A-9EF3-49F8-9A67-4141AC41ADD4}\InprocServer32#ThreadingModel
HKCR\CLSID\{D157330A-9EF3-49F8-9A67-4141AC41ADD4}\ProgID
HKCR\CLSID\{D157330A-9EF3-49F8-9A67-4141AC41ADD4}\Programmable
HKCR\CLSID\{D157330A-9EF3-49F8-9A67-4141AC41ADD4}\TypeLib
HKCR\CLSID\{D157330A-9EF3-49F8-9A67-4141AC41ADD4}\VersionIndependentProgID
C:\WINDOWS\DOWNLO~1\CNSHOOK.DLL
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D157330A-9EF3-49F8-9A67-4141AC41ADD4}
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks#{D157330A-9EF3-49F8-9A67-4141AC41ADD4}
HKCR\CnsMinHK.CnsHook.1
HKCR\CnsMinHK.CnsHook
HKCR\TypeLib\{A5ADEAE7-A8B4-4F94-9128-BF8D8DB5E927}
HKCR\TypeLib\{A5ADEAE7-A8B4-4F94-9128-BF8D8DB5E927}\1.0
HKCR\TypeLib\{A5ADEAE7-A8B4-4F94-9128-BF8D8DB5E927}\1.0\0
HKCR\TypeLib\{A5ADEAE7-A8B4-4F94-9128-BF8D8DB5E927}\1.0\0\win32
HKCR\TypeLib\{A5ADEAE7-A8B4-4F94-9128-BF8D8DB5E927}\1.0\FLAGS
HKCR\TypeLib\{A5ADEAE7-A8B4-4F94-9128-BF8D8DB5E927}\1.0\HELPDIR
MY ANTI VIRUS - I use RISING
²¡¶¾Ãû³Æ ´¦Àí½á¹û ·¢ÏÖÈÕÆÚ É¨Ã跽ʽ ·¾¶ Îļþ ²¡¶¾À´Ô´
Trojan.Win32.Malagent.a ɾ³ý³É¹¦ 2007-12-15 01:27 ÊÖ¶¯É¨Ãè F:\ComboFix ntp.exe ±¾»ú
Trojan.PSW.Win32.OnlineGames.GENɾ³ý³É¹¦ 2007-12-15 01:49 ÊÖ¶¯É¨Ãè F:\Documents and Settings\sf\Local Settings\Temporary Internet Files\Content.IE5\8XEJOTYR wow0617[1].exe ±¾»ú
Trojan.PSW.Win32.OnlineGames.GENɾ³ý³É¹¦ 2007-12-15 01:49 ÊÖ¶¯É¨Ãè F:\Documents and Settings\sf\Local Settings\Temporary Internet Files\Content.IE5\8XEJOTYR zt0616[1].exe ±¾»ú
Trojan.PSW.Win32.OnlineGames.GENɾ³ý³É¹¦ 2007-12-15 01:50 ÊÖ¶¯É¨Ãè F:\Documents and Settings\sf\Local Settings\Temporary Internet Files\Content.IE5\ALETCLOB jh0619[1].exe ±¾»ú
Trojan.PSW.Win32.OnlineGames.GENɾ³ý³É¹¦ 2007-12-15 01:51 ÊÖ¶¯É¨Ãè F:\Documents and Settings\sf\Local Settings\Temporary Internet Files\Content.IE5\ALETCLOB wd0618[1].exe ±¾»ú
Trojan.PSW.Win32.OnlineGames.GENɾ³ý³É¹¦ 2007-12-15 01:52 ÊÖ¶¯É¨Ãè F:\Documents and Settings\sf\Local Settings\Temporary Internet Files\Content.IE5\CH6VCDUB qj0617[1].exe ±¾»ú
Trojan.PSW.Win32.OnlineGames.GENɾ³ý³É¹¦ 2007-12-15 01:52 ÊÖ¶¯É¨Ãè F:\Documents and Settings\sf\Local Settings\Temporary Internet Files\Content.IE5\CH6VCDUB tl0619[1].exe ±¾»ú
Trojan.PSW.Win32.OnlineGames.GENɾ³ý³É¹¦ 2007-12-15 01:52 ÊÖ¶¯É¨Ãè F:\Documents and Settings\sf\Local Settings\Temporary Internet Files\Content.IE5\CJRJY4X9 dh3[1].exe ±¾»ú
Trojan.PSW.Win32.OnlineGames.GENɾ³ý³É¹¦ 2007-12-15 01:52 ÊÖ¶¯É¨Ãè F:\Documents and Settings\sf\Local Settings\Temporary Internet Files\Content.IE5\CJRJY4X9 tl0619[1].exe ±¾»ú
Trojan.PSW.Win32.OnlineGames.GENɾ³ý³É¹¦ 2007-12-15 01:52 ÊÖ¶¯É¨Ãè F:\Documents and Settings\sf\Local Settings\Temporary Internet Files\Content.IE5\CJRJY4X9 tl0619[2].exe ±¾»ú
Trojan.PSW.Win32.OnlineGames.GENɾ³ý³É¹¦ 2007-12-15 01:53 ÊÖ¶¯É¨Ãè F:\Documents and Settings\sf\Local Settings\Temporary Internet Files\Content.IE5\CPURO927 jh0619[1].exe ±¾»ú
Trojan.PSW.Win32.OnlineGames.GENɾ³ý³É¹¦ 2007-12-15 01:54 ÊÖ¶¯É¨Ãè F:\Documents and Settings\sf\Local Settings\Temporary Internet Files\Content.IE5\CPURO927 wd0618[1].exe ±¾»ú
Trojan.PSW.Win32.OnlineGames.GENɾ³ý³É¹¦ 2007-12-15 01:55 ÊÖ¶¯É¨Ãè F:\Documents and Settings\sf\Local Settings\Temporary Internet Files\Content.IE5\IPZC1CNY jh0619[1].exe ±¾»ú
Trojan.PSW.Win32.OnlineGames.GENɾ³ý³É¹¦ 2007-12-15 01:55 ÊÖ¶¯É¨Ãè F:\Documents and Settings\sf\Local Settings\Temporary Internet Files\Content.IE5\IPZC1CNY qj0617[1].exe ±¾»ú
Trojan.PSW.Win32.OnlineGames.GENɾ³ý³É¹¦ 2007-12-15 01:55 ÊÖ¶¯É¨Ãè F:\Documents and Settings\sf\Local Settings\Temporary Internet Files\Content.IE5\IPZC1CNY qqsg[1].exe ±¾»ú
Trojan.PSW.Win32.OnlineGames.GENɾ³ý³É¹¦ 2007-12-15 01:55 ÊÖ¶¯É¨Ãè F:\Documents and Settings\sf\Local Settings\Temporary Internet Files\Content.IE5\IPZC1CNY wl0618[1].exe ±¾»ú
Trojan.PSW.Win32.OnlineGames.GENɾ³ý³É¹¦ 2007-12-15 01:56 ÊÖ¶¯É¨Ãè F:\Documents and Settings\sf\Local Settings\Temporary Internet Files\Content.IE5\J71J758W dh0616[1].exe ±¾»ú
Trojan.PSW.Win32.OnlineGames.GENɾ³ý³É¹¦ 2007-12-15 01:56 ÊÖ¶¯É¨Ãè F:\Documents and Settings\sf\Local Settings\Temporary Internet Files\Content.IE5\J71J758W dh0616[2].exe ±¾»ú
Trojan.PSW.Win32.OnlineGames.GENɾ³ý³É¹¦ 2007-12-15 01:56 ÊÖ¶¯É¨Ãè F:\Documents and Settings\sf\Local Settings\Temporary Internet Files\Content.IE5\J71J758W qqsg[1].exe ±¾»ú
Trojan.PSW.Win32.OnlineGames.GENɾ³ý³É¹¦ 2007-12-15 01:58 ÊÖ¶¯É¨Ãè F:\Documents and Settings\sf\Local Settings\Temporary Internet Files\Content.IE5\O52XQ1A5 dh3[1].exe ±¾»ú
Trojan.PSW.Win32.OnlineGames.GENɾ³ý³É¹¦ 2007-12-15 01:58 ÊÖ¶¯É¨Ãè F:\Documents and Settings\sf\Local Settings\Temporary Internet Files\Content.IE5\O52XQ1A5 jh0619[1].exe ±¾»ú
Trojan.PSW.Win32.OnlineGames.GENɾ³ý³É¹¦ 2007-12-15 01:58 ÊÖ¶¯É¨Ãè F:\Documents and Settings\sf\Local Settings\Temporary Internet Files\Content.IE5\O52XQ1A5 qqsg[1].exe ±¾»ú
Trojan.PSW.Win32.OnlineGames.GENɾ³ý³É¹¦ 2007-12-15 02:01 ÊÖ¶¯É¨Ãè F:\Documents and Settings\sf\Local Settings\Temporary Internet Files\Content.IE5\S123G5IV zt0616[1].exe ±¾»ú
Trojan.PSW.Win32.OnlineGames.GENɾ³ý³É¹¦ 2007-12-15 02:01 ÊÖ¶¯É¨Ãè F:\Documents and Settings\sf\Local Settings\Temporary Internet Files\Content.IE5\S5Y70XIN dh0616[1].exe ±¾»ú
Trojan.PSW.Win32.OnlineGames.GENɾ³ý³É¹¦ 2007-12-15 02:01 ÊÖ¶¯É¨Ãè F:\Documents and Settings\sf\Local Settings\Temporary Internet Files\Content.IE5\S5Y70XIN dh0616[2].exe ±¾»ú
Trojan.PSW.Win32.OnlineGames.GENɾ³ý³É¹¦ 2007-12-15 02:04 ÊÖ¶¯É¨Ãè F:\Documents and Settings\sf\Local Settings\Temporary Internet Files\Content.IE5\X9TZIEF6 dh0616[1].exe ±¾»ú
Trojan.PSW.Win32.OnlineGames.GENɾ³ý³É¹¦ 2007-12-15 02:05 ÊÖ¶¯É¨Ãè F:\Documents and Settings\sf\Local Settings\Temporary Internet Files\Content.IE5\X9TZIEF6 tl0619[1].exe ±¾»ú
Trojan.Win32.Malagent.a ɾ³ý³É¹¦ 2007-12-15 02:06 ÊÖ¶¯É¨Ãè F:\Downloads ComboFix.exe>>ntp.exe ±¾»ú
Trojan.Win32.Malagent.a ɾ³ý³É¹¦ 2007-12-15 02:39 ÊÖ¶¯É¨Ãè F:\Program Files\Anti virus files downloaded ComboFix.exe>>ntp.exe ±¾»ú
Trojan.Win32.Malagent.a ɾ³ý³É¹¦ 2007-12-15 02:40 ÊÖ¶¯É¨Ãè F:\Program Files\Anti virus files downloaded\dec07 ComboFix.exe>>ntp.exe ±¾»ú
Trojan.PSW.Win32.OnlineGames.GENɾ³ý³É¹¦ 2007-12-15 04:46 ÊÖ¶¯É¨Ãè F:\WINDOWS anrjsc.exe ±¾»ú
Trojan.PSW.Win32.OnlineGames.GENɾ³ý³É¹¦ 2007-12-15 04:46 ÊÖ¶¯É¨Ãè F:\WINDOWS AVPSrv.exE ±¾»ú
Trojan.PSW.Win32.OnlineGames.GENɾ³ý³É¹¦ 2007-12-15 04:46 ÊÖ¶¯É¨Ãè F:\WINDOWS cktvmz.exe ±¾»ú
Trojan.PSW.Win32.OnlineGames.GENɾ³ý³É¹¦ 2007-12-15 04:46 ÊÖ¶¯É¨Ãè F:\WINDOWS cmdbcs.exe ±¾»ú
Trojan.PSW.Win32.OnlineGames.GENɾ³ý³É¹¦ 2007-12-15 04:46 ÊÖ¶¯É¨Ãè F:\WINDOWS DbgHlp32.exe ±¾»ú
Trojan.PSW.Win32.OnlineGames.GENɾ³ý³É¹¦ 2007-12-15 04:50 ÊÖ¶¯É¨Ãè F:\WINDOWS eqpmml.exe ±¾»ú
Trojan.PSW.Win32.OnlineGames.GENɾ³ý³É¹¦ 2007-12-15 04:52 ÊÖ¶¯É¨Ãè F:\WINDOWS gwvfnt.exe ±¾»ú
Trojan.PSW.Win32.OnlineGames.GENɾ³ý³É¹¦ 2007-12-15 05:04 ÊÖ¶¯É¨Ãè F:\WINDOWS Kvsc3.exE ±¾»ú
Trojan.PSW.Win32.OnlineGames.GENɾ³ý³É¹¦ 2007-12-15 05:04 ÊÖ¶¯É¨Ãè F:\WINDOWS mppds.exe ±¾»ú
Trojan.PSW.Win32.OnlineGames.GENɾ³ý³É¹¦ 2007-12-15 05:04 ÊÖ¶¯É¨Ãè F:\WINDOWS msccrt.exe ±¾»ú
Trojan.PSW.Win32.OnlineGames.GENɾ³ý³É¹¦ 2007-12-15 05:04 ÊÖ¶¯É¨Ãè F:\WINDOWS MsIMMs32.exE ±¾»ú
Trojan.PSW.Win32.OnlineGames.GENɾ³ý³É¹¦ 2007-12-15 05:06 ÊÖ¶¯É¨Ãè F:\WINDOWS pmgfiy.exe ±¾»ú
Trojan.PSW.Win32.OnlineGames.GENɾ³ý³É¹¦ 2007-12-15 05:06 ÊÖ¶¯É¨Ãè F:\WINDOWS rdwegt.exe ±¾»ú
Trojan.PSW.Win32.OnlineGames.GENɾ³ý³É¹¦ 2007-12-15 06:01 ÊÖ¶¯É¨Ãè F:\WINDOWS\system32 k11976504193.exe ±¾»ú
Trojan.PSW.Win32.OnlineGames.GENɾ³ý³É¹¦ 2007-12-15 06:01 ÊÖ¶¯É¨Ãè F:\WINDOWS\system32 k11976504204.exe ±¾»ú
Trojan.PSW.Win32.OnlineGames.GENɾ³ý³É¹¦ 2007-12-15 06:01 ÊÖ¶¯É¨Ãè F:\WINDOWS\system32 k11976504215.exe ±¾»ú
Trojan.PSW.Win32.OnlineGames.GENɾ³ý³É¹¦ 2007-12-15 06:01 ÊÖ¶¯É¨Ãè F:\WINDOWS\system32 k11976504226.exe ±¾»ú
Trojan.PSW.Win32.OnlineGames.GENɾ³ý³É¹¦ 2007-12-15 06:13 ÊÖ¶¯É¨Ãè F:\WINDOWS upxdnd.exe ±¾»ú
Trojan.PSW.Win32.OnlineGames.GENɾ³ý³É¹¦ 2007-12-15 06:14 ÊÖ¶¯É¨Ãè F:\WINDOWS xkfefx.exe ±¾»ú
Trojan.PSW.Win32.Shanda.bd ɾ³ý³É¹¦ 2007-12-15 22:47 ÊÖ¶¯É¨Ãè f:\documents and settings\sfvb\local settings\temporary internet files\content.ie5\bxybjy50 cs0619[1].exe>>Aspack212r ±¾»ú
Trojan.PSW.Win32.OnlineGames.GENɾ³ý³É¹¦ 2007-12-15 22:48 ÊÖ¶¯É¨Ãè F:\Documents and Settings\SFVB\Local Settings\Temporary Internet Files\Content.IE5\BXYBJY50 jh0619[1].exe ±¾»ú
Trojan.PSW.Win32.GameOnline.ahx ɾ³ý³É¹¦ 2007-12-15 22:48 ÊÖ¶¯É¨Ãè f:\documents and settings\sfvb\local settings\temporary internet files\content.ie5\bxybjy50 qqhx[1].exe>>upack0.32 ±¾»ú
Trojan.PSW.Win32.OnlineGames.GENɾ³ý³É¹¦ 2007-12-15 22:48 ÊÖ¶¯É¨Ãè F:\Documents and Settings\SFVB\Local Settings\Temporary Internet Files\Content.IE5\BXYBJY50 tl0619[1].exe ±¾»ú
Trojan.PSW.Win32.OnlineGames.GENɾ³ý³É¹¦ 2007-12-15 22:49 ÊÖ¶¯É¨Ãè F:\Documents and Settings\SFVB\Local Settings\Temporary Internet Files\Content.IE5\BXYBJY50 wd0618[1].exe ±¾»ú
Trojan.PSW.Win32.OnlineGames.GENɾ³ý³É¹¦ 2007-12-15 22:49 ÊÖ¶¯É¨Ãè F:\Documents and Settings\SFVB\Local Settings\Temporary Internet Files\Content.IE5\FUYYPFE9 dh3[1].exe ±¾»ú
Trojan.PSW.Win32.OnlineGames.GENɾ³ý³É¹¦ 2007-12-15 22:49 ÊÖ¶¯É¨Ãè F:\Documents and Settings\SFVB\Local Settings\Temporary Internet Files\Content.IE5\FUYYPFE9 qj0617[1].exe ±¾»ú
Trojan.PSW.Win32.OnlineGames.GENɾ³ý³É¹¦ 2007-12-15 22:50 ÊÖ¶¯É¨Ãè F:\Documents and Settings\SFVB\Local Settings\Temporary Internet Files\Content.IE5\FUYYPFE9 wow0617[1].exe ±¾»ú
Trojan.PSW.Win32.OnlineGames.GENɾ³ý³É¹¦ 2007-12-15 22:51 ÊÖ¶¯É¨Ãè F:\Documents and Settings\SFVB\Local Settings\Temporary Internet Files\Content.IE5\HIVN0YQ6 qqsg[1].exe ±¾»ú
Trojan.PSW.Win32.LMir.yys ɾ³ý³É¹¦ 2007-12-15 22:52 ÊÖ¶¯É¨Ãè f:\documents and settings\sfvb\local settings\temporary internet files\content.ie5\jhl1bfmb cq0619[1].exe>>Aspack212r ±¾»ú
Trojan.PSW.Win32.OnlineGames.GENɾ³ý³É¹¦ 2007-12-15 22:52 ÊÖ¶¯É¨Ãè F:\Documents and Settings\SFVB\Local Settings\Temporary Internet Files\Content.IE5\JHL1BFMB dh0616[1].exe ±¾»ú
Trojan.PSW.Win32.OnlineGames.GENɾ³ý³É¹¦ 2007-12-15 22:52 ÊÖ¶¯É¨Ãè F:\Documents and Settings\SFVB\Local Settings\Temporary Internet Files\Content.IE5\JHL1BFMB jh0619[1].exe ±¾»ú
Trojan.PSW.Win32.OnlineGames.GENɾ³ý³É¹¦ 2007-12-15 22:53 ÊÖ¶¯É¨Ãè F:\Documents and Settings\SFVB\Local Settings\Temporary Internet Files\Content.IE5\JHL1BFMB wl0618[1].exe ±¾»ú
Trojan.PSW.Win32.OnlineGames.GENɾ³ý³É¹¦ 2007-12-15 22:53 ÊÖ¶¯É¨Ãè F:\Documents and Settings\SFVB\Local Settings\Temporary Internet Files\Content.IE5\JHL1BFMB zt0616[1].exe ±¾»ú
Trojan.Win32.Malagent.a ɾ³ý³É¹¦ 2007-12-15 23:20 ÊÖ¶¯É¨Ãè F:\Program Files\Anti virus files downloaded ComboFix.exe>>ntp.exe ±¾»ú
Trojan.Win32.Malagent.a ɾ³ý³É¹¦ 2007-12-15 23:20 ÊÖ¶¯É¨Ãè F:\Program Files\Anti virus files downloaded\dec07 ComboFix.exe>>ntp.exe