Okay. Done and done. Here are the logs.
Deckard's System Scanner v20071014.68
Run by Vince on 2008-02-11 21:46:50
Computer is in Normal Mode.
--------------------------------------------------------------------------------
-- HijackThis (run as Vince.exe) -----------------------------------------------
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 9:46:57 PM, on 2/11/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\WINDOWS\system32\drivers\CDAC11BA.EXE
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Microsoft SQL Server\MSSQL$VAIO_VEDB\Binn\sqlservr.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\Program Files\Sony\VAIO Event Service\VESMgr.exe
C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe
C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe
C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzFw.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Apoint\Apoint.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
C:\Program Files\Sony\VAIO Power Management\SPMgr.exe
C:\Program Files\Sony\ISB Utility\ISBMgr.exe
C:\Program Files\Sony\VAIO Update 2\VAIOUpdt.exe
C:\Program Files\Saitek\Software\Profiler.exe
C:\Program Files\Saitek\Software\SaiSmart.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Windows Media Player\WMPNSCFG.exe
C:\Program Files\Last.fm\LastFMHelper.exe
C:\Program Files\Apoint\Apntex.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\Explorer.EXE
C:\Documents and Settings\Vince\Desktop\dss.exe
C:\PROGRA~1\TRENDM~1\HIJACK~1\Vince.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.comcast.net/R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.yahoo.com/?.home=ytieR0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.comcast.net/R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext =
http://www.sony.com/vaiopeopleR3 - URLSearchHook: AOLSearchHook Class - {54EB34EA-E6BE-4CFD-9F4F-C4A0C2EAFA22} - C:\Program Files\AOL\AOL Search Enhancement\AOLSearch.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: AOL Search Enhancement - {54EB34EA-E6BE-4CFD-9F4F-C4A0C2EAFA22} - C:\Program Files\AOL\AOL Search Enhancement\AOLSearch.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint\Apoint.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [AzMixerSel] C:\Program Files\Realtek\InstallShield\AzMixerSel.exe
O4 - HKLM\..\Run: [VAIO Recovery] C:\WINDOWS\Sonysys\VAIO Recovery\PartSeal.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [SonyPowerCfg] C:\Program Files\Sony\VAIO Power Management\SPMgr.exe
O4 - HKLM\..\Run: [ISBMgr.exe] C:\Program Files\Sony\ISB Utility\ISBMgr.exe
O4 - HKLM\..\Run: [VAIO Update 2] "C:\Program Files\Sony\VAIO Update 2\VAIOUpdt.exe" /Stationary
O4 - HKLM\..\Run: [Profiler] C:\Program Files\Saitek\Software\Profiler.exe
O4 - HKLM\..\Run: [SaiSmart] C:\Program Files\Saitek\Software\SaiSmart.exe
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [IMEKRMIG6.1] C:\WINDOWS\ime\imkr6_1\IMEKRMIG.EXE
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [BitTorrent] "C:\Program Files\BitTorrent\bittorrent.exe" --force_start_minimized
O4 - HKCU\..\Run: [CCWinTray] C:\WINDOWS\Tray\wintmr.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - Startup: Last.fm Helper.lnk = C:\Program Files\Last.fm\LastFMHelper.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: ShopperReports - Compare product prices - {C5428486-50A0-4a02-9D20-520B59A9F9B2} - C:\Program Files\ShoppingReport\Bin\2.0.26\ShoppingReport.dll (file missing)
O9 - Extra button: ShopperReports - Compare travel rates - {C5428486-50A0-4a02-9D20-520B59A9F9B3} - C:\Program Files\ShoppingReport\Bin\2.0.26\ShoppingReport.dll (file missing)
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=http://www.sony.com/vaiopeople
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) -
http://www.kaspersky...can_unicode.cabO16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) -
http://security.syma...n/bin/cabsa.cabO16 - DPF: {A90A5822-F108-45AD-8482-9BC8B12DD539} (Crucial cpcScan) -
http://www.crucial.c.../cpcScanner.cabO16 - DPF: {BF985246-09BF-11D2-BE62-006097DF57F6} (SimCityX Control) -
http://simcity.ea.co...ic/SimCityX.cabO16 - DPF: {CD995117-98E5-4169-9920-6C12D4C0B548} -
http://gamedownload....GPlugin9USA.cabO16 - DPF: {D88C7675-7CEE-4C9A-BDD4-7A43EED7794D} (Logout Class) -
http://www.gamengame...utComponent.cabO16 - DPF: {FE0BD779-44EE-4A4B-AA2E-743C63F2E5E6} (IWinAmpActiveX Class) -
http://pdl.stream.ao.../ampx_en_dl.cabO23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\system32\drivers\CDAC11BA.EXE
O23 - Service: EvtEng - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Image Converter video recording monitor for VAIO Entertainment - Sony Corporation - C:\Program Files\Sony\Image Converter 2\IcVzMon.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: MSCSPTISRV - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe
O23 - Service: PACSPTISVR - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe
O23 - Service: RegSrvc - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe
O23 - Service: SonicStage SCSI Service (SSScsiSV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SSScsiSV.exe
O23 - Service: Symantec Core LC - Unknown owner - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: VAIO Entertainment TV Device Arbitration Service - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCs\VzHardwareResourceManager\VzHardwareResourceManager.exe
O23 - Service: VAIO Event Service - Sony Corporation - C:\Program Files\Sony\VAIO Event Service\VESMgr.exe
O23 - Service: VAIO Media Integrated Server (VAIOMediaPlatform-IntegratedServer-AppServer) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\VMISrv.exe
O23 - Service: VAIO Media Integrated Server (HTTP) (VAIOMediaPlatform-IntegratedServer-HTTP) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe
O23 - Service: VAIO Media Integrated Server (UPnP) (VAIOMediaPlatform-IntegratedServer-UPnP) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe
O23 - Service: VAIO Media Gateway Server (VAIOMediaPlatform-Mobile-Gateway) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\VmGateway.exe
O23 - Service: VAIO Entertainment UPnP Client Adapter (Vcsw) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe
O23 - Service: VAIO Entertainment Database Service (VzCdbSvc) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe
O23 - Service: VAIO Entertainment File Import Service (VzFw) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzFw.exe
--
End of file - 11584 bytes
-- Files created between 2008-01-11 and 2008-02-11 -----------------------------
2008-02-11 15:24:32 0 d-------- C:\WINDOWS\system32\Kaspersky Lab
2008-02-11 15:24:32 0 d-------- C:\Documents and Settings\All Users\Application Data\Kaspersky Lab
2008-02-11 15:24:30 0 d-------- C:\WINDOWS\LastGood
2008-02-09 13:24:53 0 d------c- C:\Q3Ademo
2008-02-08 23:30:55 0 d-------- C:\Documents and Settings\All Users\Application Data\Lavasoft
2008-02-07 21:56:04 691545 --a------ C:\WINDOWS\unins000.exe
2008-02-07 21:56:04 3452 --a------ C:\WINDOWS\unins000.dat
2008-02-07 21:22:32 846848 -r-hs---- C:\WINDOWS\wkssvc.exe
2008-02-03 13:43:25 0 d-------- C:\WINDOWS\system32\NtmsData
2008-02-02 20:47:01 0 d-------- C:\Program Files\Free iPod Video Converter
2008-01-30 16:25:49 0 d-------- C:\Documents and Settings\Franco\Application Data\tor
2008-01-30 16:25:29 0 d-------- C:\Documents and Settings\Franco\Application Data\Vidalia
2008-01-22 18:07:36 0 d-------- C:\Documents and Settings\NetworkService\My Documents
2008-01-21 19:36:18 0 d-------- C:\Program Files\Drum Machine
2008-01-21 17:16:27 0 d-------- C:\Program Files\thriXXX
2008-01-20 21:24:39 0 d-------- C:\Documents and Settings\Franco\Application Data\ShoppingReport
2008-01-20 13:54:01 0 d-------- C:\Program Files\iPod
-- Find3M Report ---------------------------------------------------------------
2008-02-10 20:28:21 0 d-------- C:\Program Files\Trillian
2008-02-08 23:42:15 0 d-------- C:\Program Files\Trend Micro
2008-02-08 23:31:25 0 d-------- C:\Program Files\Lavasoft
2008-02-08 23:31:24 0 d-------- C:\Documents and Settings\Vince\Application Data\Lavasoft
2008-02-08 23:30:05 0 d-------- C:\Program Files\Common Files\Wise Installation Wizard
2008-02-08 12:01:54 0 d-------- C:\Documents and Settings\Vince\Application Data\uTorrent
2008-02-07 21:49:36 0 d-------- C:\Program Files\SpywareBlaster
2008-02-05 13:30:17 8748 --a------ C:\Documents and Settings\Vince\Application Data\wklnhst.dat
2008-02-02 19:55:13 0 d-------- C:\Documents and Settings\Vince\Application Data\dvdcss
2008-01-21 18:37:58 0 d-------- C:\Program Files\Common Files\Tray
2008-01-21 18:37:58 0 d-------- C:\Program Files\Common Files\System Shared
2008-01-21 18:37:56 146 --a------ C:\WINDOWS\system32\swctl.dll
2008-01-21 18:37:34 0 d-------- C:\Program Files\PopCap Games
2008-01-21 15:08:59 0 d-------- C:\Program Files\DivX
2008-01-20 13:54:19 0 d-------- C:\Program Files\iTunes
2008-01-20 13:52:38 0 d-------- C:\Program Files\QuickTime
2008-01-20 13:48:48 0 d-------- C:\Program Files\Last.fm
2008-01-06 12:09:13 0 d-------- C:\Documents and Settings\Vince\Application Data\vlc
2008-01-06 12:08:11 0 d-------- C:\Program Files\VideoLAN
2008-01-05 23:22:21 0 d-------- C:\Program Files\GRETECH
2008-01-05 19:25:51 0 --a----c- C:\________
2008-01-05 19:25:17 0 d-------- C:\Program Files\Common Files
2008-01-05 19:25:17 0 d-------- C:\Program Files\Common Files\Macrovision Shared
2008-01-05 19:24:19 0 d-------- C:\Program Files\BoontyGames
2008-01-02 21:23:59 0 d-------- C:\Program Files\Parental Control Tool
2007-12-30 23:28:16 0 d-------- C:\Documents and Settings\Vince\Application Data\Adobe
2007-12-28 15:40:45 0 d-------- C:\Program Files\UrbanTerror
2007-12-19 21:23:01 0 d-------- C:\Program Files\GabbaSoft
2007-12-16 17:06:34 0 d-------- C:\Program Files\Java
2007-11-15 18:06:12 21840 --a-----t C:\WINDOWS\system32\SIntfNT.dll
2007-11-15 18:06:11 17212 --a-----t C:\WINDOWS\system32\SIntf32.dll
2007-11-15 18:06:11 12067 --a-----t C:\WINDOWS\system32\SIntf16.dll
-- Registry Dump ---------------------------------------------------------------
*Note* empty entries & legit default entries are not shown
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{54EB34EA-E6BE-4CFD-9F4F-C4A0C2EAFA22}]
10/14/2005 09:21 AM 102400 --a------ C:\Program Files\AOL\AOL Search Enhancement\AOLSearch.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Apoint"="C:\Program Files\Apoint\Apoint.exe" [11/07/2003 04:21 PM]
"RTHDCPL"="RTHDCPL.EXE" [06/29/2005 12:25 PM C:\WINDOWS\RTHDCPL.EXE]
"Alcmtr"="ALCMTR.EXE" [05/03/2005 05:43 PM C:\WINDOWS\ALCMTR.EXE]
"AzMixerSel"="C:\Program Files\Realtek\InstallShield\AzMixerSel.exe" [04/29/2005 01:56 PM]
"VAIO Recovery"="C:\WINDOWS\Sonysys\VAIO Recovery\PartSeal.exe" [04/19/2003 08:08 PM]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe" [09/25/2007 01:11 AM]
"SonyPowerCfg"="C:\Program Files\Sony\VAIO Power Management\SPMgr.exe" [10/19/2005 10:07 PM]
"ISBMgr.exe"="C:\Program Files\Sony\ISB Utility\ISBMgr.exe" [02/20/2004 02:12 PM]
"VAIO Update 2"="C:\Program Files\Sony\VAIO Update 2\VAIOUpdt.exe" [10/11/2005 09:36 PM]
"Profiler"="C:\Program Files\Saitek\Software\Profiler.exe" [07/26/2004 12:04 PM]
"SaiSmart"="C:\Program Files\Saitek\Software\SaiSmart.exe" [07/26/2004 12:04 PM]
"IgfxTray"="C:\WINDOWS\system32\igfxtray.exe" [01/13/2007 08:47 AM]
"HotKeysCmds"="C:\WINDOWS\system32\hkcmd.exe" [01/13/2007 08:47 AM]
"Persistence"="C:\WINDOWS\system32\igfxpers.exe" [01/13/2007 08:46 AM]
"avast!"="C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe" [12/04/2007 05:00 AM]
"IMJPMIG8.1"="C:\WINDOWS\IME\imjp8_1\IMJPMIG.exe" [08/04/2004 04:00 AM]
"IMEKRMIG6.1"="C:\WINDOWS\ime\imkr6_1\IMEKRMIG.EXE" [08/04/2004 04:00 AM]
"MSPY2002"="C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe" [08/04/2004 04:00 AM]
"PHIME2002ASync"="C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.exe" [08/04/2004 04:00 AM]
"PHIME2002A"="C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.exe" [08/04/2004 04:00 AM]
"QuickTime Task"="C:\Program Files\QuickTime\QTTask.exe" [01/10/2008 03:27 PM]
"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [01/15/2008 03:22 AM]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"MSMSGS"="C:\Program Files\Messenger\msmsgs.exe" [10/13/2004 08:24 AM]
"BitTorrent"="C:\Program Files\BitTorrent\bittorrent.exe" []
"CCWinTray"="C:\WINDOWS\Tray\wintmr.exe" []
"WMPNSCFG"="C:\Program Files\Windows Media Player\WMPNSCFG.exe" [10/18/2006 08:05 PM]
C:\Documents and Settings\Vince\Start Menu\Programs\Startup\
Last.fm Helper.lnk - C:\Program Files\Last.fm\LastFMHelper.exe [6/28/2007 12:22:46 PM]
C:\Documents and Settings\All Users\Start Menu\Programs\Startup\
Adobe Reader Speed Launch.lnk - C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe [9/23/2005 10:05:26 PM]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system]
"DisableClock"=0 (0x0)
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\VESWinlogon]
VESWinlogon.dll 05/20/2005 05:42 PM 73728 C:\WINDOWS\system32\VESWinlogon.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aawservice]
@="Service"
-- End of Deckard's System Scanner: finished at 2008-02-11 21:47:30 ------------
-------------------------------------------------------------------------------
KASPERSKY ONLINE SCANNER REPORT
Monday, February 11, 2008 9:45:38 PM
Operating System: Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600)
Kaspersky Online Scanner version: 5.0.98.0
Kaspersky Anti-Virus database last update: 11/02/2008
Kaspersky Anti-Virus database records: 558130
-------------------------------------------------------------------------------
Scan Settings:
Scan using the following antivirus database: extended
Scan Archives: true
Scan Mail Bases: true
Scan Target - My Computer:
C:\
D:\
E:\
F:\
G:\
H:\
I:\
Scan Statistics:
Total number of scanned objects: 144439
Number of viruses found: 11
Number of infected objects: 26
Number of suspicious objects: 0
Duration of the scan process: 02:42:55
Infected Object Name / Virus Name / Last Action
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Sony Corporation\SonicStage\Packages\MtData.ldb Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Sony Corporation\SonicStage\Packages\MtData.mdb Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Sony Corporation\VAIO Entertainment Platform\1.0\VzCdb\VzCdb_Mgr.ldf Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Sony Corporation\VAIO Entertainment Platform\1.0\VzCdb\VzCdb_Mgr.mdf Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5BEE7BE4.def Infected: not-a-virus:AdWare.Win32.180Solutions.as skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5FDC0DDA.tmp/BlackBox.class Infected: Exploit.Java.ByteVerify skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5FDC0DDA.tmp/VerifierBug.class Infected: Exploit.Java.ByteVerify skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5FDC0DDA.tmp/Beyond.class Infected: Trojan-Downloader.Java.OpenConnection.aa skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5FDC0DDA.tmp ZIP: infected - 3 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5FDC0DDA.tmp CryptFF: infected - 3 skipped
C:\Documents and Settings\All Users\DRM\drmstore.hds Object is locked skipped
C:\Documents and Settings\Franco\Application Data\Sun\Java\Deployment\cache\6.0\18\9346752-5f11cdaf/HiPointInstallShieldRT.class Infected: Trojan-Downloader.Java.OpenConnection.ap skipped
C:\Documents and Settings\Franco\Application Data\Sun\Java\Deployment\cache\6.0\18\9346752-5f11cdaf ZIP: infected - 1 skipped
C:\Documents and Settings\Franco\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\eRT.jar-351f6d8c-328ef84f.zip/HiPointInstallShieldRT.class Infected: Trojan-Downloader.Java.OpenConnection.ap skipped
C:\Documents and Settings\Franco\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\eRT.jar-351f6d8c-328ef84f.zip ZIP: infected - 1 skipped
C:\Documents and Settings\Franco\Local Settings\Application Data\Microsoft\Media Player\CurrentDatabase_360.wmdb Object is locked skipped
C:\Documents and Settings\Franco\Local Settings\Temp\9csnxr1a.exe Infected: not-a-virus:AdTool.Win32.Zango.e skipped
C:\Documents and Settings\Franco\Local Settings\Temp\9uaf6zxc.exe/stream/data0006 Infected: not-a-virus:Client-IRC.Win32.mIRC.62 skipped
C:\Documents and Settings\Franco\Local Settings\Temp\9uaf6zxc.exe/stream Infected: not-a-virus:Client-IRC.Win32.mIRC.62 skipped
C:\Documents and Settings\Franco\Local Settings\Temp\9uaf6zxc.exe NSIS: infected - 2 skipped
C:\Documents and Settings\Franco\My Documents\Setup.exe Infected: not-a-virus:AdTool.Win32.Zango.e skipped
C:\Documents and Settings\LocalService\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\Vince\Application Data\Mozilla\Firefox\Profiles\vklhkr5a.default\cert8.db Object is locked skipped
C:\Documents and Settings\Vince\Application Data\Mozilla\Firefox\Profiles\vklhkr5a.default\history.dat Object is locked skipped
C:\Documents and Settings\Vince\Application Data\Mozilla\Firefox\Profiles\vklhkr5a.default\key3.db Object is locked skipped
C:\Documents and Settings\Vince\Application Data\Mozilla\Firefox\Profiles\vklhkr5a.default\parent.lock Object is locked skipped
C:\Documents and Settings\Vince\Application Data\Mozilla\Firefox\Profiles\vklhkr5a.default\search.sqlite Object is locked skipped
C:\Documents and Settings\Vince\Application Data\Mozilla\Firefox\Profiles\vklhkr5a.default\urlclassifier2.sqlite Object is locked skipped
C:\Documents and Settings\Vince\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\Vince\Local Settings\Application Data\Last.fm\Client\lastfmhelper.log Object is locked skipped
C:\Documents and Settings\Vince\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\Vince\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\Vince\Local Settings\Application Data\Mozilla\Firefox\Profiles\vklhkr5a.default\Cache\_CACHE_001_ Object is locked skipped
C:\Documents and Settings\Vince\Local Settings\Application Data\Mozilla\Firefox\Profiles\vklhkr5a.default\Cache\_CACHE_002_ Object is locked skipped
C:\Documents and Settings\Vince\Local Settings\Application Data\Mozilla\Firefox\Profiles\vklhkr5a.default\Cache\_CACHE_003_ Object is locked skipped
C:\Documents and Settings\Vince\Local Settings\Application Data\Mozilla\Firefox\Profiles\vklhkr5a.default\Cache\_CACHE_MAP_ Object is locked skipped
C:\Documents and Settings\Vince\Local Settings\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\Vince\Local Settings\History\History.IE5\MSHist012008021120080212\index.dat Object is locked skipped
C:\Documents and Settings\Vince\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\Vince\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\Vince\ntuser.dat.LOG Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\aswResp.dat Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\Avast4.db Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\log\nshield.log Object is locked skipped
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcrst.dll Object is locked skipped
C:\Program Files\Microsoft SQL Server\MSSQL$VAIO_VEDB\Data\master.mdf Object is locked skipped
C:\Program Files\Microsoft SQL Server\MSSQL$VAIO_VEDB\Data\mastlog.ldf Object is locked skipped
C:\Program Files\Microsoft SQL Server\MSSQL$VAIO_VEDB\Data\model.mdf Object is locked skipped
C:\Program Files\Microsoft SQL Server\MSSQL$VAIO_VEDB\Data\modellog.ldf Object is locked skipped
C:\Program Files\Microsoft SQL Server\MSSQL$VAIO_VEDB\Data\tempdb.mdf Object is locked skipped
C:\Program Files\Microsoft SQL Server\MSSQL$VAIO_VEDB\Data\templog.ldf Object is locked skipped
C:\Program Files\Microsoft SQL Server\MSSQL$VAIO_VEDB\LOG\ERRORLOG Object is locked skipped
C:\Program Files\Trend Micro\HijackThis\backups\backup-20080209-092111-866.dll Infected: not-a-virus:AdWare.Win32.Shopper.q skipped
C:\Program Files\Yahoo!\YPSR\Quarantine\20061012022628.zip Object is locked skipped
C:\Program Files\Yahoo!\YPSR\Quarantine\ppq83E.tmp Object is locked skipped
C:\Program Files\Yahoo!\YPSR\Quarantine\ppqdb.dat Object is locked skipped
C:\Program Files\Yahoo!\YPSR\Quarantine\ppqsdb.dat Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc19.com Infected: Email-Worm.Win32.Anker.x skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2001-1al.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2001-1bl.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2001-1cl.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2001-1dl.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2001-1el.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2001-1fl.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2001-1gl.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2001-1hl.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2001-1il.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2001-1jl.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2001-2al.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2001-2bl.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2001-2cl.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2001-2dl.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2001-2el.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2001-2fl.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2001-2gl.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2001-2hl.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2002-1al.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2002-1bl.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2002-1cl.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2002-1dl.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2002-1el.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2002-2al.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2002-2bl.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2002-2cl.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2002-2dl.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2002-2el.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2003-1al.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2003-1bl.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2003-1cl.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2003-1dl.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2003-1el.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2003-1fl.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2003-1gl.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2003-2al.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2003-2bl.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2003-2cl.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2003-2dl.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2003-2el.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2003-2fl.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2003-2gl.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2004-1al.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2004-1bl.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2004-1cl.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2004-2al.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2004-2bl.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2004-2dl.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2005-1bal.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2005-1bbl.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2005-1bcl.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2005-1bdl.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2005-1pal.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2005-1pbl.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2005-1pcl.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2005-1pdl.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2005-1ppal.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2005-1ppbl.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2005-1ppcl.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2005-1ppdl.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2005-1sal.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2005-1sbl.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2005-1scl.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2005-1sdl.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2005-2al.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\a2005-2bl.jpg Object is locked skipped
C:\RECYCLER\S-1-5-21-2963488982-2739525461-2397197817-1007\Dc4\Evangelion A+\Thumbs.db Object is locked skipped
C:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped
C:\System Volume Information\_restore{85D8F67A-9556-4D4D-A80C-B684FCCBE8C6}\RP491\A0102941.dll Infected: not-a-virus:AdTool.Win32.Zango.e skipped
C:\System Volume Information\_restore{85D8F67A-9556-4D4D-A80C-B684FCCBE8C6}\RP508\A0105666.bat Infected: Trojan.BAT.KillFire.d skipped
C:\System Volume Information\_restore{85D8F67A-9556-4D4D-A80C-B684FCCBE8C6}\RP509\A0105710.dll Infected: not-a-virus:AdWare.Win32.Shopper.q skipped
C:\System Volume Information\_restore{85D8F67A-9556-4D4D-A80C-B684FCCBE8C6}\RP511\change.log Object is locked skipped
C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped
C:\WINDOWS\SchedLgU.Txt Object is locked skipped
C:\WINDOWS\SoftwareDistribution\DataStore\DataStore.edb Object is locked skipped
C:\WINDOWS\SoftwareDistribution\DataStore\Logs\edb.log Object is locked skipped
C:\WINDOWS\SoftwareDistribution\DataStore\Logs\tmp.edb Object is locked skipped
C:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked skipped
C:\WINDOWS\Sti_Trace.log Object is locked skipped
C:\WINDOWS\system32\CatRoot2\edb.log Object is locked skipped
C:\WINDOWS\system32\CatRoot2\tmp.edb Object is locked skipped
C:\WINDOWS\system32\config\Antivirus.Evt Object is locked skipped
C:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\default Object is locked skipped
C:\WINDOWS\system32\config\default.LOG Object is locked skipped
C:\WINDOWS\system32\config\SAM Object is locked skipped
C:\WINDOWS\system32\config\SAM.LOG Object is locked skipped
C:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\SECURITY Object is locked skipped
C:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped
C:\WINDOWS\system32\config\software Object is locked skipped
C:\WINDOWS\system32\config\software.LOG Object is locked skipped
C:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\system Object is locked skipped
C:\WINDOWS\system32\config\system.LOG Object is locked skipped
C:\WINDOWS\system32\drivers\etc\hosts.20080207-215843.backup Infected: Trojan.Win32.Qhost skipped
C:\WINDOWS\system32\drivers\etc\hosts.20080207-223213.backup Infected: Trojan.Win32.Qhost skipped
C:\WINDOWS\system32\drivers\etc\hosts.20080207-223214.backup Infected: Trojan.Win32.Qhost skipped
C:\WINDOWS\system32\drivers\etc\hosts.20080207-223215.backup Infected: Trojan.Win32.Qhost skipped
C:\WINDOWS\system32\drivers\sptd.sys Object is locked skipped
C:\WINDOWS\system32\h323log.txt Object is locked skipped
C:\WINDOWS\system32\LogFiles\WUDF\WUDFTrace.etl Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP Object is locked skipped
C:\WINDOWS\Temp\JETDFF0.tmp Object is locked skipped
C:\WINDOWS\Temp\Perflib_Perfdata_5c0.dat Object is locked skipped
C:\WINDOWS\Temp\Perflib_Perfdata_788.dat Object is locked skipped
C:\WINDOWS\wiadebug.log Object is locked skipped
C:\WINDOWS\wiaservc.log Object is locked skipped
C:\WINDOWS\WindowsUpdate.log Object is locked skipped
C:\WINDOWS\wkssvc.exe Infected: Email-Worm.Win32.Anker.x skipped
F:\MUSICS\Temp\TOTALLY HIP TRACK.wma Infected: Trojan-Downloader.WMA.Wimad.k skipped
Scan process completed.