Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Trojan (I Think)


  • Please log in to reply

#1
kernan

kernan

    New Member

  • Member
  • Pip
  • 8 posts
Problem1)
when opening windows xp I get two Errors (from startup menu)

Rundll
Error loading C:\windows\system32\icmup.dll
The Specified Module could not be found

and

Rundll
Error loading C:\windows\system32\zsmcheck080415.dll
The Specified Module could not be found

okay now the Virus part..

I Have Followed The Cleaning Guide

Malwarebytes' Anti-Malware Detected over 2,000 infections but the program
would crash everytime, so I couldn't save a report.

[SUPERAntiSpyware]

SUPERAntiSpyware Scan Log
Generated 04/20/2008 at 07:47 PM

Application Version : 3.6.1000

Core Rules Database Version : 3442
Trace Rules Database Version: 1434

Scan type : Complete Scan
Total Scan Time : 01:04:21

Memory items scanned : 379
Memory threats detected : 0
Registry items scanned : 4501
Registry threats detected : 10
File items scanned : 53524
File threats detected : 3

Unclassified.Unknown Origin
HKLM\Software\Classes\CLSID\{0EAF6278-BD19-4153-BA3B-9B850F31E67B}
HKCR\CLSID\{0EAF6278-BD19-4153-BA3B-9B850F31E67B}
HKCR\CLSID\{0EAF6278-BD19-4153-BA3B-9B850F31E67B}
HKCR\CLSID\{0EAF6278-BD19-4153-BA3B-9B850F31E67B}\InprocServer32
HKCR\CLSID\{0EAF6278-BD19-4153-BA3B-9B850F31E67B}\InprocServer32#ThreadingModel
HKCR\CLSID\{0EAF6278-BD19-4153-BA3B-9B850F31E67B}\ProgID
HKCR\CLSID\{0EAF6278-BD19-4153-BA3B-9B850F31E67B}\Programmable
HKCR\CLSID\{0EAF6278-BD19-4153-BA3B-9B850F31E67B}\TypeLib
HKCR\CLSID\{0EAF6278-BD19-4153-BA3B-9B850F31E67B}\VersionIndependentProgID
C:\WINDOWS\SYSTEM32\CE61.DLL
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0EAF6278-BD19-4153-BA3B-9B850F31E67B}

Adware.Tracking Cookie
C:\Documents and Settings\petal\Cookies\[email protected][2].txt
C:\Documents and Settings\petal\Cookies\[email protected][1].txt

END [SUPERAntiSpyware]

[HIJACK THIS STARTS]
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 9:46:35 PM, on 20/04/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16640)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
C:\Program Files\StormII\stormliv.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\DOCUME~1\petal\LOCALS~1\Temp\RtkBtMnt.EXE
C:\Program Files\D-Link\AirPlus XtremeG\AirPlusCFG.exe
C:\PROGRA~1\Grisoft\AVG7\avgcc.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\uTorrent\uTorrent.exe
C:\Program Files\MSN Messenger\usnsvc.exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\PROGRA~1\Mozilla Firefox\firefox.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

O1 - Hosts: 127.0.0.2 localhost
O4 - HKLM\..\Run: [D-Link AirPlus XtremeG DWL-G132] C:\Program Files\D-Link\AirPlus XtremeG DWL-G132\AirPlusCFG.exe
O4 - HKLM\..\Run: [ANIWZCS2Service] C:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [IMJPMIG8.1] ; "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [FlashGet] "C:\Program Files\FlashGet Network\Flashget\FlashGet.exe" /min
O4 - HKLM\..\Run: [D-Link AirPlus XtremeG] C:\Program Files\D-Link\AirPlus XtremeG\AirPlusCFG.exe
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [KASStart] "C:\Documents and Settings\petal\Desktop\?¥?t??1?????o??ˉ\?e?????μ3??ר?\KASStart.EXE" -Startup
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - HKCU\..\Run: [uTorrent] "C:\Program Files\uTorrent\uTorrent.exe"
O4 - HKCU\..\Policies\Explorer\Run: [zsms_check] rundll32.exe C:\WINDOWS\system32\zsmscheck080415.dll ccwljk16
O4 - HKUS\S-1-5-19\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'Default user')
O4 - Startup: QQ游戏启动加速程序.lnk = C:\Program Files\Tencent\QQGame\Accel.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: &使用快车(FlashGet)下载 - C:\Program Files\FlashGet Network\Flashget\ComDlls\Bholink.htm
O8 - Extra context menu item: &使用快车(FlashGet)下载全部链接 - C:\Program Files\FlashGet Network\Flashget\ComDlls\Bhoall.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Set As Messenger Live Display Picture - \SetMSNDP.htm
O8 - Extra context menu item: 添加到QQ表情 - C:\Program Files\Tencent\QQ\AddEmotion.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll (file missing)
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O15 - ESC Trusted Zone: http://*.update.microsoft.com
O16 - DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} (Office Genuine Advantage Validation Tool) - http://go.microsoft....k/?linkid=67633
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zon...nt.cab56907.cab
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL
O23 - Service: ANIWZCSd Service (ANIWZCSdService) - Wireless Service - C:\Program Files\ANI\ANIWZCS2 Service\ANIWZCSdS.exe
O23 - Service: Ares Chatroom server (AresChatServer) - Ares Development Group - C:\Program Files\Ares\chatServer.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
O23 - Service: Contrl Center of Storm Media (ccosm) - 北京暴风网际科技有限公司 - C:\Program Files\StormII\stormliv.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe

--
End of file - 6372 bytes

Uninstalll list..
?3μ(FlashGet)2-Beta4
???
¢?(?|?)
Adobe Flash Player ActiveX
Adobe Flash Player Plugin
Adobe Reader 8.1.2
AirPlus XtremeG
AirPlus XtremeG DWL-G132
ANIO Service
ANIWZCS2 Service
Ares 2.0.9
AVG 7.5
AVG Anti-Spyware 7.5
Chinese (Simplified) Language Support
Compatibility Pack for the 2007 Office system (Beta)
Google Toolbar for Internet Explorer
Google Toolbar for Internet Explorer
HijackThis 2.0.2
Hotfix for Windows Internet Explorer 7 (KB947864)
Hotfix for Windows XP (KB915865)
Hotfix for Windows XP (KB931678-v2)
Hotfix for Windows XP (KB934428-v3)
Hotfix for Windows XP (KB935843)
Hotfix for Windows XP (KB940275-v3)
Hotfix for Windows XP (KB943198-v2)
Ink Blog Plugin - Beta 2
Java™ 6 Update 3
Malwarebytes' Anti-Malware
Microsoft Internationalized Domain Names Mitigation APIs
Microsoft National Language Support Downlevel APIs
Microsoft Office XP Professional with FrontPage
Microsoft Silverlight
Mozilla Firefox (2.0.0.14)
MSN
MSNShell 4
Panda ActiveScan 2.0
QQ??7.2Beta01
QQ2008 o???
QQ??
RealPlayer
Realtek AC'97 Audio
Security Update for Windows Internet Explorer 7 (KB929969)
Security Update for Windows Internet Explorer 7 (KB933566)
Security Update for Windows Internet Explorer 7 (KB937143)
Security Update for Windows Internet Explorer 7 (KB938127)
Security Update for Windows Internet Explorer 7 (KB944533)
Security Update for Windows Media Player (KB911564)
Security Update for Windows Media Player 6.4 (KB925398)
Security Update for Windows Media Player 9 (KB917734)
Security Update for Windows Media Player 9 (KB936782)
Security Update for Windows XP (KB890046)
Security Update for Windows XP (KB893756)
Security Update for Windows XP (KB896358)
Security Update for Windows XP (KB896423)
Security Update for Windows XP (KB896424)
Security Update for Windows XP (KB896428)
Security Update for Windows XP (KB899587)
Security Update for Windows XP (KB899588)
Security Update for Windows XP (KB899589)
Security Update for Windows XP (KB899591)
Security Update for Windows XP (KB900725)
Security Update for Windows XP (KB901017)
Security Update for Windows XP (KB901190)
Security Update for Windows XP (KB901214)
Security Update for Windows XP (KB902400)
Security Update for Windows XP (KB905414)
Security Update for Windows XP (KB905749)
Security Update for Windows XP (KB908519)
Security Update for Windows XP (KB911562)
Security Update for Windows XP (KB911567)
Security Update for Windows XP (KB911927)
Security Update for Windows XP (KB912919)
Security Update for Windows XP (KB913580)
Security Update for Windows XP (KB914388)
Security Update for Windows XP (KB914389)
Security Update for Windows XP (KB917344)
Security Update for Windows XP (KB917422)
Security Update for Windows XP (KB918118)
Security Update for Windows XP (KB918439)
Security Update for Windows XP (KB919007)
Security Update for Windows XP (KB920213)
Security Update for Windows XP (KB920214)
Security Update for Windows XP (KB920670)
Security Update for Windows XP (KB920683)
Security Update for Windows XP (KB920685)
Security Update for Windows XP (KB921503)
Security Update for Windows XP (KB921883)
Security Update for Windows XP (KB922616)
Security Update for Windows XP (KB922819)
Security Update for Windows XP (KB923191)
Security Update for Windows XP (KB923414)
Security Update for Windows XP (KB923694)
Security Update for Windows XP (KB923980)
Security Update for Windows XP (KB924270)
Security Update for Windows XP (KB924496)
Security Update for Windows XP (KB924667)
Security Update for Windows XP (KB925902)
Security Update for Windows XP (KB926255)
Security Update for Windows XP (KB926436)
Security Update for Windows XP (KB927779)
Security Update for Windows XP (KB927802)
Security Update for Windows XP (KB928255)
Security Update for Windows XP (KB928843)
Security Update for Windows XP (KB929123)
Security Update for Windows XP (KB930178)
Security Update for Windows XP (KB931261)
Security Update for Windows XP (KB931784)
Security Update for Windows XP (KB932168)
Security Update for Windows XP (KB933729)
Security Update for Windows XP (KB935839)
Security Update for Windows XP (KB935840)
Security Update for Windows XP (KB936021)
Security Update for Windows XP (KB937894)
Security Update for Windows XP (KB938127)
Security Update for Windows XP (KB938829)
Security Update for Windows XP (KB941202)
Security Update for Windows XP (KB941568)
Security Update for Windows XP (KB941569)
Security Update for Windows XP (KB941644)
Security Update for Windows XP (KB941693)
Security Update for Windows XP (KB942615)
Security Update for Windows XP (KB943055)
Security Update for Windows XP (KB943460)
Security Update for Windows XP (KB943485)
Security Update for Windows XP (KB944533)
Security Update for Windows XP (KB944653)
Security Update for Windows XP (KB945553)
Security Update for Windows XP (KB946026)
Security Update for Windows XP (KB948590)
Security Update for Windows XP (KB948881)
SUPERAntiSpyware Free Edition
Update for Windows XP (KB894391)
Update for Windows XP (KB898461)
Update for Windows XP (KB900485)
Update for Windows XP (KB908531)
Update for Windows XP (KB910437)
Update for Windows XP (KB911280)
Update for Windows XP (KB916595)
Update for Windows XP (KB920872)
Update for Windows XP (KB922582)
Update for Windows XP (KB927891)
Update for Windows XP (KB929338)
Update for Windows XP (KB930916)
Update for Windows XP (KB936357)
Update for Windows XP (KB938828)
Update for Windows XP (KB942763)
Update for Windows XP (KB942840)
Update for Windows XP (KB946501-v2)
Update for Windows XP (KB946627)
VideoLAN VLC media player 0.8.6f
VobSub v2.23 (Remove Only)
Windows Installer 3.1 (KB893803)
Windows Internet Explorer 7
Windows Live installer
Windows Live Messenger
Windows XP Hotfix - KB873339
Windows XP Hotfix - KB885835
Windows XP Hotfix - KB885836
Windows XP Hotfix - KB885884
Windows XP Hotfix - KB886185
Windows XP Hotfix - KB886677
Windows XP Hotfix - KB887472
Windows XP Hotfix - KB888302
Windows XP Hotfix - KB890859
Windows XP Hotfix - KB891781
Windows??ˉ′|
WinRAR ?1?????t1?
X Codec Pack
Xvid 1.1.3 final uninstall

END uninstall list


;*******************************************************************************
********************************************************************************
*
*******************
ANALYSIS: 2008-04-20 21:38:25
PROTECTIONS: 1
MALWARE: 9
SUSPECTS: 0
;*******************************************************************************
********************************************************************************
*
*******************
PROTECTIONS
Description Version Active Updated
;===============================================================================
================================================================================
=
===================
AVG 7.5.524 7.5.524 Yes Yes
;===============================================================================
================================================================================
=
===================
MALWARE
Id Description Type Active Severity Disinfectable Disinfected Location
;===============================================================================
================================================================================
=
===================
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt[.atdmt.com/]
00145731 Cookie/Tribalfusion TrackingCookie No 0 Yes No C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt[.tribalfusion.com/]
00340367 Trj/QQpass.NB Virus/Trojan No 1 No No H:\MUSIC\qq2006beta3.exe[QQexternal.exe]
00518189 Application/WebThunder HackTools No 0 No No C:\Program Files\webxl_g00008.exe[historyinfo_manage.dll]
01469292 Generic Malware Virus/Trojan No 0 No No C:\Program Files\webxl_g00008.exe[WebThunder_SetupHelper.dll]
02894356 Adware/BaiduBar Adware No 0 Yes No C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007363.dll
02894356 Adware/BaiduBar Adware No 0 Yes No C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007342.dll
02903469 Adware/AdHelper Adware No 0 Yes No C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP36\A0006619.dll
02903469 Adware/AdHelper Adware No 0 Yes No C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007388.dll
02903469 Adware/AdHelper Adware No 0 Yes No C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP46\A0007065.dll
02903469 Adware/AdHelper Adware No 0 Yes No C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP46\A0007205.dll
02912311 Adware/BaiduBar Adware No 0 Yes No C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP49\A0008944.dll
02917333 Adware/Wsearch Adware No 0 Yes No C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007682.dll
02917333 Adware/Wsearch Adware No 0 Yes No C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007450.dll
;===============================================================================
================================================================================
=
===================
SUSPECTS
Sent Location d
;===============================================================================
================================================================================
=
===================
;===============================================================================
================================================================================
=
===================
VULNERABILITIES
Id Severity Description d
;===============================================================================
================================================================================
=
===================
;===============================================================================
================================================================================
=
===================



heres my AVG antispyware REPORT

---------------------------------------------------------
AVG Anti-Spyware - Scan Report
---------------------------------------------------------

+ Created at: 4:33:01 PM 18/04/2008

+ Scan result:



C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP47\A0007309.exe -> Downloader.Adload : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP49\A0007864.dll -> Downloader.Agent.fpu : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP36\A0006617.exe -> Downloader.Agent.jrs : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP46\A0007063.exe -> Downloader.Agent.jrs : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP46\A0007203.exe -> Downloader.Agent.kag : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007386.exe -> Downloader.Agent.kag : Cleaned with backup (quarantined).
C:\WINDOWS\Downloaded Program Files\e7w.dll -> Downloader.Agent.knt : Cleaned with backup (quarantined).
C:\WINDOWS\Downloaded Program Files\fz1dvdg.dll -> Downloader.Agent.knt : Cleaned with backup (quarantined).
C:\WINDOWS\Downloaded Program Files\ivxof.dll -> Downloader.Agent.knt : Cleaned with backup (quarantined).
C:\WINDOWS\Downloaded Program Files\kkml1x.dll -> Downloader.Agent.knt : Cleaned with backup (quarantined).
C:\WINDOWS\Downloaded Program Files\qcs.dll -> Downloader.Agent.knt : Cleaned with backup (quarantined).
C:\WINDOWS\Downloaded Program Files\sv0fw.dll -> Downloader.Agent.knt : Cleaned with backup (quarantined).
C:\WINDOWS\Downloaded Program Files\tk8eei.dll -> Downloader.Agent.knt : Cleaned with backup (quarantined).
C:\WINDOWS\Downloaded Program Files\uclp.dll -> Downloader.Agent.knt : Cleaned with backup (quarantined).
C:\WINDOWS\Downloaded Program Files\x6ew.dll -> Downloader.Agent.knt : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP49\A0007903.exe -> Dropper.BHO.av : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP49\A0007777.dll -> Logger.Agent.bml : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP49\A0007806.dll -> Logger.Agent.bml : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011065.dll -> Logger.Agent.bml : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007397.dll -> Logger.Pophot.aeq : Error during cleaning.
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007398.dll -> Logger.Pophot.aeq : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007396.scr -> Logger.Pophot.aeu : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007399.exe -> Logger.Pophot.aeu : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007433.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007490.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007540.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007541.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007579.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007620.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007657.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007711.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP49\A0007778.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP49\A0007781.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP49\A0007840.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP49\A0007888.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP49\A0008923.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0010923.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0010948.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011082.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011083.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011121.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011160.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011206.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011207.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011246.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011247.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011290.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011324.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011325.dll -> Logger.Pophot.agh : Error during cleaning.
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011372.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011419.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011467.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011503.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011504.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP51\A0011655.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP51\A0011754.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP51\A0011786.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP52\A0011949.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP52\A0012063.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP52\A0012143.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP52\A0012144.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP52\A0012178.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP52\A0012207.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP52\A0012274.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP52\A0012307.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP52\A0012308.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP54\A0012358.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP54\A0012387.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP54\A0012435.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP54\A0012499.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP54\A0012500.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP54\A0012545.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP54\A0012546.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP54\A0012569.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP54\A0012638.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP56\A0012720.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP56\A0012766.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP56\A0012804.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP58\A0012856.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP58\A0012893.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP58\A0012895.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP59\A0012963.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP59\A0013059.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP59\A0013150.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP59\A0013151.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP59\A0013200.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP59\A0013221.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP59\A0013222.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP81\A0015222.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP81\A0015242.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP81\A0015283.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP81\A0015319.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP81\A0015460.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP81\A0015506.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP81\A0015507.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP82\A0015553.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP82\A0015606.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP82\A0015632.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP82\A0015665.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP82\A0015718.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP82\A0015762.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP83\A0015816.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP83\A0015838.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP83\A0016833.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP83\A0017839.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP83\A0017867.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP83\A0017887.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP83\A0017939.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP83\A0017971.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP83\A0018015.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP83\A0018058.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP83\A0018088.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP85\A0019205.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP85\A0019280.dll -> Logger.Pophot.agh : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007342.dll -> Not-A-Virus.Adware.BDSearch : Ignored.
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007363.dll -> Not-A-Virus.Adware.BDSearch : Ignored.
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP49\A0008944.dll -> Not-A-Virus.Adware.BDSearch : Ignored.
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP36\A0006621.dll -> Not-A-Virus.Adware.BHO : Ignored.
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007679.dll -> Not-A-Virus.Adware.BHO : Ignored.
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP49\A0007902.dll -> Not-A-Virus.Adware.BHO : Ignored.
:mozilla.542:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
:mozilla.419:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.434:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.57:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.58:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.59:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.60:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.61:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.62:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.63:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.64:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.65:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.66:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.67:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.68:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.69:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.70:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.754:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.101:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.105:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.107:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.98:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.239:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.240:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.241:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.242:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.243:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.637:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.
:mozilla.134:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.136:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.137:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.138:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.139:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.16:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned.
C:\Documents and Settings\petal\Cookies\[email protected][1].txt -> TrackingCookie.Atdmt : Cleaned.
:mozilla.607:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Bluestreak : Cleaned.
:mozilla.877:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Burstbeacon : Cleaned.
:mozilla.735:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
:mozilla.736:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
:mozilla.135:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.140:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.141:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.142:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.143:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.144:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.145:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.146:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.147:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.148:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.90:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.502:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.246:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
:mozilla.247:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
:mozilla.248:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
:mozilla.249:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
:mozilla.482:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.483:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.484:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.485:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.809:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.810:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.879:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.880:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.280:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Imrworldwide : Cleaned.
:mozilla.281:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Imrworldwide : Cleaned.
:mozilla.282:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.414:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.526:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned.
:mozilla.110:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Netflame : Cleaned.
:mozilla.356:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.794:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.552:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.553:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.554:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.555:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.556:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.557:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.558:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.219:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.220:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
C:\Documents and Settings\petal\Cookies\[email protected][1].txt -> TrackingCookie.Real : Cleaned.
:mozilla.625:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.626:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.627:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.628:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.629:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.630:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.631:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.413:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.420:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.421:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.422:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.423:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.424:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.425:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:moz

Edited by kernan, 21 April 2008 - 10:35 AM.

  • 0

Advertisements


#2
kernan

kernan

    New Member

  • Topic Starter
  • Member
  • Pip
  • 8 posts
:mozilla.426:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.427:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.462:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.463:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.464:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.465:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.466:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.467:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.468:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.895:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.
:mozilla.452:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.453:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.454:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.455:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.456:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.457:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.458:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.459:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.520:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.521:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.522:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.523:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.620:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.621:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.622:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.623:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.624:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.117:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.322:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.
:mozilla.470:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Webtrends : Cleaned.
:mozilla.472:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Webtrends : Cleaned.
:mozilla.528:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned.
:mozilla.77:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.78:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.79:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.80:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.81:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.82:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.83:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.84:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.85:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.86:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.100:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
:mozilla.102:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
:mozilla.103:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
:mozilla.104:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
:mozilla.106:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
:mozilla.97:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
:mozilla.99:C:\Documents and Settings\petal\Application Data\Mozilla\Firefox\Profiles\lza2yuq1.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
C:\Documents and Settings\petal\Favorites\收藏.url -> Trojan.Agent : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP49\A0007846.sys -> Trojan.Zapchast.dm : Error during cleaning.


::Report end




And i also have the AVG Scan



<history>
<!-- 01c8a15a6eb54080 -->
<rec time="2008/04/18 13:45:15" user="SYSTEM" source="Update">
<value>@HL_UpdateOK</value>
<attr name="version">avi:1295-1289;iavi:1396-1378;</attr>
</rec>
<rec time="2008/04/18 13:45:30" user="petal" source="General">
<value>@HL_TestStarted</value>
<attr name="testname">@TestName_02</attr>
</rec>
<rec time="2008/04/18 13:48:25" user="petal" source="Virus">
<value>@HL_ReportFind</value>
<attr name="where">C:\Documents and Settings\petal\Local Settings\Temp\znt10.tmp</attr>
<attr name="type">@EID_Id_trj</attr>
<attr name="what">Downloader.Agent.AEQG</attr>
</rec>
<rec time="2008/04/18 13:48:26" user="petal" source="Virus">
<value>@HL_ReportFind</value>
<attr name="where">C:\Documents and Settings\petal\Local Settings\Temp\znt14.tmp</attr>
<attr name="type">@EID_Id_trj</attr>
<attr name="what">SHeur.AYKD</attr>
</rec>
<rec time="2008/04/18 13:48:26" user="petal" source="Virus">
<value>@HL_ReportFind</value>
<attr name="where">C:\Documents and Settings\petal\Local Settings\Temp\znt6.tmp</attr>
<attr name="type">@EID_Id_trj</attr>
<attr name="what">Downloader.Agent.ADRS</attr>
</rec>
<rec time="2008/04/18 13:50:48" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\WINDOWS\system32\2ck7v2u.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">Downloader.Generic6.AJZR</attr>
</rec>
<rec time="2008/04/18 13:51:29" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\WINDOWS\system32\2ck7v2u.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 13:57:27" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\WINDOWS\system32\zsmscheck080415.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">Downloader.Generic7.HAE</attr>
</rec>
<rec time="2008/04/18 13:58:03" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\WINDOWS\system32\zsmscheck080415.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 14:02:14" user="petal" source="Virus">
<value>@HL_ReportFind</value>
<attr name="where">C:\WINDOWS\1781.exe</attr>
<attr name="type">@EID_Id_trj</attr>
<attr name="what">BHO.DHD</attr>
</rec>
<rec time="2008/04/18 14:02:16" user="petal" source="Virus">
<value>@HL_ReportFind</value>
<attr name="where">C:\WINDOWS\28000.exe</attr>
<attr name="type">@EID_Id_trj</attr>
<attr name="what">Downloader.Generic7.NG</attr>
</rec>
<rec time="2008/04/18 14:02:16" user="petal" source="Virus">
<value>@HL_ReportFind</value>
<attr name="where">C:\WINDOWS\78611.txt</attr>
<attr name="type">@EID_Id_trj</attr>
<attr name="what">Downloader.Agent.ADFU</attr>
</rec>
<rec time="2008/04/18 14:02:38" user="petal" source="Virus">
<value>@HL_ReportFind</value>
<attr name="where">C:\WINDOWS\my_70476.exe</attr>
<attr name="type">@EID_Id_trj</attr>
<attr name="what">Downloader.Adload.C</attr>
</rec>
<rec time="2008/04/18 14:02:39" user="petal" source="Virus">
<value>@HL_ReportFind</value>
<attr name="where">C:\WINDOWS\my_70477.exe</attr>
<attr name="type">@EID_Id_trj</attr>
<attr name="what">Downloader.Generic6.AKSM</attr>
</rec>
<rec time="2008/04/18 14:02:39" user="petal" source="Virus">
<value>@HL_ReportFind</value>
<attr name="where">C:\WINDOWS\my_70512.exe</attr>
<attr name="type">@EID_Id_trj</attr>
<attr name="what">Downloader.Small.61.B</attr>
</rec>
<rec time="2008/04/18 14:02:42" user="petal" source="Virus">
<value>@HL_ReportFind</value>
<attr name="where">C:\WINDOWS\tempaq</attr>
<attr name="type">@EID_Id_trj</attr>
<attr name="what">Downloader.Generic6.AMDZ</attr>
</rec>
<rec time="2008/04/18 14:04:49" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\WINDOWS\system32\ccwlae080416.exe</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.EYW</attr>
</rec>
<rec time="2008/04/18 14:05:17" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\WINDOWS\system32\ccwlae080416.exe</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 14:06:00" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\WINDOWS\080221.exe</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.EYW</attr>
</rec>
<rec time="2008/04/18 14:06:10" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\WINDOWS\080221.exe</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 14:06:15" user="petal" source="Virus">
<value>@HL_ReportFind</value>
<attr name="where">C:\WINDOWS\Downloaded Program Files\an37qvrv.dll</attr>
<attr name="type">@EID_Id_trj</attr>
<attr name="what">BackDoor.Generic9.WBU</attr>
</rec>
<rec time="2008/04/18 14:06:15" user="petal" source="Virus">
<value>@HL_ReportFind</value>
<attr name="where">C:\WINDOWS\Downloaded Program Files\atbe4ktm.dll</attr>
<attr name="type">@EID_Id_trj</attr>
<attr name="what">BackDoor.Generic9.WPR</attr>
</rec>
<rec time="2008/04/18 14:06:15" user="petal" source="Virus">
<value>@HL_ReportFind</value>
<attr name="where">C:\WINDOWS\Downloaded Program Files\bi60.dll</attr>
<attr name="type">@EID_Id_trj</attr>
<attr name="what">Downloader.Agent.ACJO</attr>
</rec>
<rec time="2008/04/18 14:06:15" user="petal" source="Virus">
<value>@HL_ReportFind</value>
<attr name="where">C:\WINDOWS\Downloaded Program Files\etipakp.dll</attr>
<attr name="type">@EID_Id_trj</attr>
<attr name="what">BackDoor.Generic9.WPR</attr>
</rec>
<rec time="2008/04/18 14:06:15" user="petal" source="Virus">
<value>@HL_ReportFind</value>
<attr name="where">C:\WINDOWS\Downloaded Program Files\gxb3q.dll</attr>
<attr name="type">@EID_Id_trj</attr>
<attr name="what">BackDoor.Generic9.WBU</attr>
</rec>
<rec time="2008/04/18 14:06:15" user="petal" source="Virus">
<value>@HL_ReportFind</value>
<attr name="where">C:\WINDOWS\Downloaded Program Files\i6k.dll</attr>
<attr name="type">@EID_Id_trj</attr>
<attr name="what">BackDoor.Generic9.WPR</attr>
</rec>
<rec time="2008/04/18 14:06:15" user="petal" source="Virus">
<value>@HL_ReportFind</value>
<attr name="where">C:\WINDOWS\Downloaded Program Files\irg.dll</attr>
<attr name="type">@EID_Id_trj</attr>
<attr name="what">BackDoor.Generic9.WON</attr>
</rec>
<rec time="2008/04/18 14:06:16" user="petal" source="Virus">
<value>@HL_ReportFind</value>
<attr name="where">C:\WINDOWS\Downloaded Program Files\mw29.dll</attr>
<attr name="type">@EID_Id_trj</attr>
<attr name="what">Downloader.Agent.ACJO</attr>
</rec>
<rec time="2008/04/18 14:06:16" user="petal" source="Virus">
<value>@HL_ReportFind</value>
<attr name="where">C:\WINDOWS\Downloaded Program Files\nwc5o6.dll</attr>
<attr name="type">@EID_Id_trj</attr>
<attr name="what">Downloader.Agent.ACJO</attr>
</rec>
<rec time="2008/04/18 14:06:16" user="petal" source="Virus">
<value>@HL_ReportFind</value>
<attr name="where">C:\WINDOWS\Downloaded Program Files\qaue1.dll</attr>
<attr name="type">@EID_Id_trj</attr>
<attr name="what">BackDoor.Generic9.WPR</attr>
</rec>
<rec time="2008/04/18 14:06:16" user="petal" source="Virus">
<value>@HL_ReportFind</value>
<attr name="where">C:\WINDOWS\Downloaded Program Files\rmmspq.dll</attr>
<attr name="type">@EID_Id_trj</attr>
<attr name="what">BackDoor.Generic9.ABTM</attr>
</rec>
<rec time="2008/04/18 14:06:16" user="petal" source="Virus">
<value>@HL_ReportFind</value>
<attr name="where">C:\WINDOWS\Downloaded Program Files\rr8.dll</attr>
<attr name="type">@EID_Id_trj</attr>
<attr name="what">BackDoor.Generic9.WBU</attr>
</rec>
<rec time="2008/04/18 14:06:16" user="petal" source="Virus">
<value>@HL_ReportFind</value>
<attr name="where">C:\WINDOWS\Downloaded Program Files\sh6r.dll</attr>
<attr name="type">@EID_Id_trj</attr>
<attr name="what">BackDoor.Generic9.ADHJ</attr>
</rec>
<rec time="2008/04/18 14:06:16" user="petal" source="Virus">
<value>@HL_ReportFind</value>
<attr name="where">C:\WINDOWS\Downloaded Program Files\thy5.dll</attr>
<attr name="type">@EID_Id_trj</attr>
<attr name="what">BackDoor.Generic9.ADOF</attr>
</rec>
<rec time="2008/04/18 14:06:16" user="petal" source="Virus">
<value>@HL_ReportFind</value>
<attr name="where">C:\WINDOWS\Downloaded Program Files\z9tm6.dll</attr>
<attr name="type">@EID_Id_trj</attr>
<attr name="what">Downloader.Agent.ACJO</attr>
</rec>
<rec time="2008/04/18 14:10:28" user="petal" source="Virus">
<value>@HL_ReportFind</value>
<attr name="where">C:\WINDOWS\system32\ccwld16_080416.dll</attr>
<attr name="type">@EID_Id_trj</attr>
<attr name="what">PSW.Generic6.EVV</attr>
</rec>
<rec time="2008/04/18 14:10:29" user="petal" source="Virus">
<value>@HL_ReportFind</value>
<attr name="where">C:\WINDOWS\system32\ccwld32_080412.dll</attr>
<attr name="type">@EID_Id_trj</attr>
<attr name="what">PSW.Generic6.EFK</attr>
</rec>
<rec time="2008/04/18 14:10:29" user="petal" source="Virus">
<value>@HL_ReportFind</value>
<attr name="where">C:\WINDOWS\system32\ccwld32_080414.dll</attr>
<attr name="type">@EID_Id_trj</attr>
<attr name="what">PSW.Generic6.EKK</attr>
</rec>
<rec time="2008/04/18 14:10:29" user="petal" source="Virus">
<value>@HL_ReportFind</value>
<attr name="where">C:\WINDOWS\system32\ccwld32_080416.dll</attr>
<attr name="type">@EID_Id_trj</attr>
<attr name="what">PSW.Generic6.EYX</attr>
</rec>
<rec time="2008/04/18 14:10:30" user="petal" source="Virus">
<value>@HL_ReportFind</value>
<attr name="where">C:\WINDOWS\system32\ce61.dlltmp</attr>
<attr name="type">@EID_Id_trj</attr>
<attr name="what">BHO.DHD</attr>
</rec>
<rec time="2008/04/18 14:10:44" user="petal" source="Virus">
<value>@HL_ReportFind</value>
<attr name="where">C:\WINDOWS\system32\e6591.exe</attr>
<attr name="type">@EID_Id_trj</attr>
<attr name="what">Downloader.Agent.ADFU</attr>
</rec>
<rec time="2008/04/18 14:11:22" user="petal" source="Virus">
<value>@HL_ReportFind</value>
<attr name="where">C:\WINDOWS\system32\mscmsr.dll</attr>
<attr name="type">@EID_Id_trj</attr>
<attr name="what">Downloader.Agent.ACJU</attr>
</rec>
<rec time="2008/04/18 14:12:07" user="petal" source="Virus">
<value>@HL_ReportFind</value>
<attr name="where">C:\WINDOWS\system32\zsmscheck080415.dll</attr>
<attr name="type">@EID_Id_trj</attr>
<attr name="what">Downloader.Generic7.HAE</attr>
</rec>
<rec time="2008/04/18 14:14:50" user="petal" source="Virus">
<value>@HL_ReportFind</value>
<attr name="where">C:\WINDOWS\system32\drivers\flzbdg3xly.sys</attr>
<attr name="type">@EID_Id_trj</attr>
<attr name="what">BackDoor.Generic9.UUR</attr>
</rec>
<rec time="2008/04/18 14:16:13" user="petal" source="General">
<value>@HL_TestEnded</value>
<attr name="testname">@TestName_02</attr>
<attr name="infectedfiles">34</attr>
</rec>
<rec time="2008/04/18 14:16:15" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\Documents and Settings\petal\Local Settings\Temp\znt10.tmp</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 14:16:15" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\Documents and Settings\petal\Local Settings\Temp\znt14.tmp</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 14:16:15" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\Documents and Settings\petal\Local Settings\Temp\znt6.tmp</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 14:16:15" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\WINDOWS\1781.exe</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 14:16:15" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\WINDOWS\28000.exe</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 14:16:15" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\WINDOWS\78611.txt</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 14:16:15" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\WINDOWS\my_70476.exe</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 14:16:15" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\WINDOWS\my_70477.exe</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 14:16:15" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\WINDOWS\my_70512.exe</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 14:16:15" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\WINDOWS\tempaq</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 14:16:15" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\WINDOWS\Downloaded Program Files\an37qvrv.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 14:16:15" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\WINDOWS\Downloaded Program Files\atbe4ktm.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 14:16:16" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\WINDOWS\Downloaded Program Files\bi60.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 14:16:16" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\WINDOWS\Downloaded Program Files\etipakp.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 14:16:16" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\WINDOWS\Downloaded Program Files\gxb3q.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 14:16:16" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\WINDOWS\Downloaded Program Files\i6k.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 14:16:16" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\WINDOWS\Downloaded Program Files\irg.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 14:16:16" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\WINDOWS\Downloaded Program Files\mw29.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 14:16:16" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\WINDOWS\Downloaded Program Files\nwc5o6.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 14:16:16" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\WINDOWS\Downloaded Program Files\qaue1.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 14:16:16" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\WINDOWS\Downloaded Program Files\rmmspq.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 14:16:16" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\WINDOWS\Downloaded Program Files\rr8.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 14:16:16" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\WINDOWS\Downloaded Program Files\sh6r.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 14:16:16" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\WINDOWS\Downloaded Program Files\thy5.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 14:16:16" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\WINDOWS\Downloaded Program Files\z9tm6.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 14:16:19" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\WINDOWS\system32\ccwld16_080416.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 14:16:19" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\WINDOWS\system32\ccwld32_080412.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 14:16:19" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\WINDOWS\system32\ccwld32_080414.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 14:16:20" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\WINDOWS\system32\ccwld32_080416.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 14:16:20" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\WINDOWS\system32\ce61.dlltmp</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 14:16:20" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\WINDOWS\system32\e6591.exe</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 14:16:21" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\WINDOWS\system32\mscmsr.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 14:16:21" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\WINDOWS\system32\zsmscheck080415.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 14:16:21" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\WINDOWS\system32\drivers\flzbdg3xly.sys</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 15:01:31" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP90\A0019649.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.EQX</attr>
</rec>
<rec time="2008/04/18 15:44:16" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP90\A0019649.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.EQX</attr>
</rec>
<rec time="2008/04/18 16:11:16" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP36\A0006617.exe</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">Downloader.Agent.ACAA</attr>
</rec>
<rec time="2008/04/18 16:11:25" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP36\A0006617.exe</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 16:11:30" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP46\A0007063.exe</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">Downloader.Agent.ACAA</attr>
</rec>
<rec time="2008/04/18 16:11:33" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP46\A0007063.exe</attr>
<attr name="action">@HL_ActVVInserted</attr>
</rec>
<rec time="2008/04/18 16:11:35" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP46\A0007203.exe</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">Downloader.Agent.ACCL</attr>
</rec>
<rec time="2008/04/18 16:11:39" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP46\A0007203.exe</attr>
<attr name="action">@HL_ActVVInserted</attr>
</rec>
<rec time="2008/04/18 16:11:40" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007386.exe</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">Downloader.Agent.ACCL</attr>
</rec>
<rec time="2008/04/18 16:11:42" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007386.exe</attr>
<attr name="action">@HL_ActVVInserted</attr>
</rec>
<rec time="2008/04/18 16:11:44" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007396.scr</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic5.ALCC</attr>
</rec>
<rec time="2008/04/18 16:11:45" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007399.exe</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic5.ALCC</attr>
</rec>
<rec time="2008/04/18 16:11:46" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007396.scr</attr>
<attr name="action">@HL_ActVVInserted</attr>
</rec>
<rec time="2008/04/18 16:11:48" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007399.exe</attr>
<attr name="action">@HL_ActVVInserted</attr>
</rec>
<rec time="2008/04/18 16:11:50" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007397.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic5.ALCD</attr>
</rec>
<rec time="2008/04/18 16:11:50" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007398.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic5.ALCD</attr>
</rec>
<rec time="2008/04/18 16:11:51" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007433.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.CF</attr>
</rec>
<rec time="2008/04/18 16:11:52" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007397.dll</attr>
<attr name="action">@HL_ActVVInserted</attr>
</rec>
<rec time="2008/04/18 16:11:55" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007433.dll</attr>
<attr name="action">@HL_ActVVInserted</attr>
</rec>
<rec time="2008/04/18 16:11:57" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007490.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.CF</attr>
</rec>
<rec time="2008/04/18 16:11:58" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007540.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.CF</attr>
</rec>
<rec time="2008/04/18 16:11:59" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007490.dll</attr>
<attr name="action">@HL_ActVVInserted</attr>
</rec>
<rec time="2008/04/18 16:12:01" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007540.dll</attr>
<attr name="action">@HL_ActVVInserted</attr>
</rec>
<rec time="2008/04/18 16:12:03" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007541.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.CJ</attr>
</rec>
<rec time="2008/04/18 16:12:04" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007541.dll</attr>
<attr name="action">@HL_ActVVInserted</attr>
</rec>
<rec time="2008/04/18 16:12:06" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007579.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.CJ</attr>
</rec>
<rec time="2008/04/18 16:12:07" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007579.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 16:12:09" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007620.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.CJ</attr>
</rec>
<rec time="2008/04/18 16:12:10" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007620.dll</attr>
<attr name="action">@HL_ActVVInserted</attr>
</rec>
<rec time="2008/04/18 16:12:13" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007657.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.CJ</attr>
</rec>
<rec time="2008/04/18 16:12:15" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007657.dll</attr>
<attr name="action">@HL_ActVVInserted</attr>
</rec>
<rec time="2008/04/18 16:12:18" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007711.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.CJ</attr>
</rec>
<rec time="2008/04/18 16:12:20" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007711.dll</attr>
<attr name="action">@HL_ActVVInserted</attr>
</rec>
<rec time="2008/04/18 16:12:22" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP49\A0007778.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.CJ</attr>
</rec>
<rec time="2008/04/18 16:12:23" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011083.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.BV</attr>
</rec>
<rec time="2008/04/18 16:12:25" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011083.dll</attr>
<attr name="action">@HL_ActVVInserted</attr>
</rec>
<rec time="2008/04/18 16:12:27" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011121.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.BV</attr>
</rec>
<rec time="2008/04/18 16:12:28" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011121.dll</attr>
<attr name="action">@HL_ActVVInserted</attr>
</rec>
<rec time="2008/04/18 16:12:30" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011160.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.BV</attr>
</rec>
<rec time="2008/04/18 16:12:31" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011160.dll</attr>
<attr name="action">@HL_ActVVInserted</attr>
</rec>
<rec time="2008/04/18 16:12:33" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011206.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.BV</attr>
</rec>
<rec time="2008/04/18 16:12:34" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011206.dll</attr>
<attr name="action">@HL_ActVVInserted</attr>
</rec>
<rec time="2008/04/18 16:12:35" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011207.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.AR</attr>
</rec>
<rec time="2008/04/18 16:12:36" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011207.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 16:12:40" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011246.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.AR</attr>
</rec>
<rec time="2008/04/18 16:12:41" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011246.dll</attr>
<attr name="action">@HL_ActVVInserted</attr>
</rec>
<rec time="2008/04/18 16:12:43" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011247.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.FB</attr>
</rec>
<rec time="2008/04/18 16:12:44" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011290.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.FB</attr>
</rec>
<rec time="2008/04/18 16:12:44" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011324.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.FB</attr>
</rec>
<rec time="2008/04/18 16:12:45" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011290.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 16:12:46" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011324.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 16:12:48" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011325.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.YL</attr>
</rec>
<rec time="2008/04/18 16:12:48" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011372.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.YL</attr>
</rec>
<rec time="2008/04/18 16:12:49" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011325.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 16:12:50" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<at
  • 0

#3
kernan

kernan

    New Member

  • Topic Starter
  • Member
  • Pip
  • 8 posts
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011419.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.YL</attr>
</rec>
<rec time="2008/04/18 16:12:51" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011372.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 16:12:54" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011419.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 16:12:56" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011467.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.YL</attr>
</rec>
<rec time="2008/04/18 16:12:59" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011467.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 16:13:01" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011503.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.YL</attr>
</rec>
<rec time="2008/04/18 16:13:22" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011503.dll</attr>
<attr name="action">@HL_ActVVInserted</attr>
</rec>
<rec time="2008/04/18 16:13:23" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011504.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.CUX</attr>
</rec>
<rec time="2008/04/18 16:13:24" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011504.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 16:13:25" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP51\A0011655.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.CUX</attr>
</rec>
<rec time="2008/04/18 16:13:26" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP51\A0011754.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.CUX</attr>
</rec>
<rec time="2008/04/18 16:13:27" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP51\A0011754.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 16:13:29" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP51\A0011786.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.CUX</attr>
</rec>
<rec time="2008/04/18 16:13:30" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP52\A0011949.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.CUX</attr>
</rec>
<rec time="2008/04/18 16:13:32" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP52\A0012063.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.CUX</attr>
</rec>
<rec time="2008/04/18 16:13:35" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP52\A0012143.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.CUX</attr>
</rec>
<rec time="2008/04/18 16:13:36" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP52\A0012144.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.AJF</attr>
</rec>
<rec time="2008/04/18 16:13:37" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP52\A0012178.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.AJF</attr>
</rec>
<rec time="2008/04/18 16:13:37" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP52\A0012207.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.AJF</attr>
</rec>
<rec time="2008/04/18 16:13:38" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP52\A0012274.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.AJF</attr>
</rec>
<rec time="2008/04/18 16:13:38" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP52\A0012307.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.AJF</attr>
</rec>
<rec time="2008/04/18 16:13:39" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP52\A0012308.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.CUW</attr>
</rec>
<rec time="2008/04/18 16:13:40" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP54\A0012358.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.CUW</attr>
</rec>
<rec time="2008/04/18 16:13:42" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP54\A0012387.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.CUW</attr>
</rec>
<rec time="2008/04/18 16:13:43" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP54\A0012435.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.CUW</attr>
</rec>
<rec time="2008/04/18 16:13:43" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP54\A0012499.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.CUW</attr>
</rec>
<rec time="2008/04/18 16:13:44" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP54\A0012500.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.AJG</attr>
</rec>
<rec time="2008/04/18 16:13:44" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP54\A0012545.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.AJG</attr>
</rec>
<rec time="2008/04/18 16:13:45" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP54\A0012546.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.AZG</attr>
</rec>
<rec time="2008/04/18 16:13:45" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP54\A0012569.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.AZG</attr>
</rec>
<rec time="2008/04/18 16:13:46" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP54\A0012638.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.AZG</attr>
</rec>
<rec time="2008/04/18 16:13:47" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP56\A0012720.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.AZG</attr>
</rec>
<rec time="2008/04/18 16:13:47" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP56\A0012766.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.AZG</attr>
</rec>
<rec time="2008/04/18 16:13:48" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP56\A0012804.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.AZG</attr>
</rec>
<rec time="2008/04/18 16:13:49" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP51\A0011786.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 16:13:51" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP58\A0012856.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.AZG</attr>
</rec>
<rec time="2008/04/18 16:13:51" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP58\A0012893.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.AZG</attr>
</rec>
<rec time="2008/04/18 16:13:52" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP58\A0012895.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.BSO</attr>
</rec>
<rec time="2008/04/18 16:13:54" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP58\A0012895.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 16:13:55" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP59\A0012963.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.BSO</attr>
</rec>
<rec time="2008/04/18 16:13:56" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP59\A0012963.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 16:13:57" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP59\A0013059.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.BSO</attr>
</rec>
<rec time="2008/04/18 16:13:58" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP59\A0013059.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 16:13:59" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP59\A0013150.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.BSO</attr>
</rec>
<rec time="2008/04/18 16:14:01" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP59\A0013150.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 16:14:03" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP81\A0015507.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.DNM</attr>
</rec>
<rec time="2008/04/18 16:14:05" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP81\A0015507.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 16:14:07" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP82\A0015553.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.DNM</attr>
</rec>
<rec time="2008/04/18 16:14:08" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP82\A0015606.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.DNM</attr>
</rec>
<rec time="2008/04/18 16:14:09" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP82\A0015606.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 16:14:11" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP82\A0015632.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.DNM</attr>
</rec>
<rec time="2008/04/18 16:14:12" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP82\A0015632.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 16:14:13" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP82\A0015665.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.DNM</attr>
</rec>
<rec time="2008/04/18 16:14:15" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP82\A0015665.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 16:14:16" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP82\A0015718.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.DNM</attr>
</rec>
<rec time="2008/04/18 16:14:21" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP82\A0015718.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 16:14:23" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP82\A0015762.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.DNM</attr>
</rec>
<rec time="2008/04/18 16:14:23" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP82\A0015762.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 16:14:25" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP83\A0015816.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.DNM</attr>
</rec>
<rec time="2008/04/18 16:14:26" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP83\A0015838.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.DNM</attr>
</rec>
<rec time="2008/04/18 16:14:26" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP83\A0016833.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.DNM</attr>
</rec>
<rec time="2008/04/18 16:14:27" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP83\A0015838.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 16:14:28" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP83\A0016833.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 16:14:29" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP83\A0017839.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.DNM</attr>
</rec>
<rec time="2008/04/18 16:14:30" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP83\A0017867.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.DNM</attr>
</rec>
<rec time="2008/04/18 16:14:30" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP83\A0017839.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 16:14:31" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP83\A0017867.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 16:14:32" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP83\A0017887.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.DNM</attr>
</rec>
<rec time="2008/04/18 16:14:33" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP83\A0017939.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.DNM</attr>
</rec>
<rec time="2008/04/18 16:14:33" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP83\A0017887.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 16:14:34" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP83\A0017939.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 16:14:36" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP83\A0017971.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.DNM</attr>
</rec>
<rec time="2008/04/18 16:14:36" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP83\A0018015.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.DNM</attr>
</rec>
<rec time="2008/04/18 16:14:37" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP83\A0017971.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 16:14:37" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP83\A0018015.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 16:14:39" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP83\A0018058.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.DNM</attr>
</rec>
<rec time="2008/04/18 16:14:39" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP83\A0018058.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 16:14:41" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP83\A0018088.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.DNM</attr>
</rec>
<rec time="2008/04/18 16:14:41" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP85\A0019205.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.DNM</attr>
</rec>
<rec time="2008/04/18 16:14:42" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP85\A0019280.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.DNM</attr>
</rec>
<rec time="2008/04/18 16:14:43" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP49\A0007777.dll</attr>
<attr name="finding">@EID_Fi_vir</attr>
<attr name="virusname">Downloader.Agent</attr>
</rec>
<rec time="2008/04/18 16:14:43" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP85\A0019280.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 16:14:49" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP49\A0007777.dll</attr>
<attr name="action">@HL_ActVVInserted</attr>
</rec>
<rec time="2008/04/18 16:14:51" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP49\A0007806.dll</attr>
<attr name="finding">@EID_Fi_vir</attr>
<attr name="virusname">Downloader.Agent</attr>
</rec>
<rec time="2008/04/18 16:14:55" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP49\A0007806.dll</attr>
<attr name="action">@HL_ActVVInserted</attr>
</rec>
<rec time="2008/04/18 16:14:56" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011065.dll</attr>
<attr name="finding">@EID_Fi_vir</attr>
<attr name="virusname">Downloader.Agent</attr>
</rec>
<rec time="2008/04/18 16:14:58" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011065.dll</attr>
<attr name="action">@HL_ActVVInserted</attr>
</rec>
<rec time="2008/04/18 16:14:59" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP49\A0007846.sys</attr>
<attr name="finding">@EID_Id_vir</attr>
<attr name="virusname">Obfustat.AADN</attr>
</rec>
<rec time="2008/04/18 16:15:01" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP49\A0007864.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">Downloader.Agent.WDH</attr>
</rec>
<rec time="2008/04/18 16:15:01" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP49\A0007846.sys</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 16:15:02" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP49\A0007864.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/18 23:04:28" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP90\A0019649.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.EQX</attr>
</rec>
<rec time="2008/04/18 23:53:07" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP90\A0019649.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.EQX</attr>
</rec>
<rec time="2008/04/19 00:58:06" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP90\A0019649.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.EQX</attr>
</rec>
<rec time="2008/04/20 12:39:03" user="SYSTEM" source="Update">
<value>@HL_UpdateOK</value>
<attr name="version">iavi:1397-1396;</attr>
</rec>
<rec time="2008/04/20 14:47:52" user="SYSTEM" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP90\A0019649.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.EQX</attr>
</rec>
<rec time="2008/04/20 18:53:10" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\Documents and Settings\petal\Application Data\QQMusicUpdate\5F359D5B2CCE3DAA82862C21ECE0313C\QQMusic\7_14_0\QQMusicUpdate714.zip.exe</attr>
<attr name="finding">@Maskovaci_jmeno</attr>
<attr name="virusname">.exe</attr>
</rec>
<rec time="2008/04/20 19:18:38" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP30\A0006189.sys</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">BackDoor.Ntrootkit.AP</attr>
</rec>
<rec time="2008/04/20 19:18:55" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP33\A0006350.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic5.ALDO</attr>
</rec>
<rec time="2008/04/20 19:19:02" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP35\A0006426.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic5.ALDO</attr>
</rec>
<rec time="2008/04/20 19:19:04" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP35\A0006470.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic5.ALDO</attr>
</rec>
<rec time="2008/04/20 19:19:20" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP36\A0006600.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic5.ALDO</attr>
</rec>
<rec time="2008/04/20 19:19:21" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP36\A0006618.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">BHO.DHD</attr>
</rec>
<rec time="2008/04/20 19:19:21" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP36\A0006620.exe</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">BHO.DHD</attr>
</rec>
<rec time="2008/04/20 19:19:21" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP36\A0006621.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">Clicker.KFI</attr>
</rec>
<rec time="2008/04/20 19:19:26" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP33\A0006350.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:19:30" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP35\A0006426.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:19:33" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP35\A0006470.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:19:34" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP36\A0006600.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:19:35" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP36\A0006618.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:19:37" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP36\A0006620.exe</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:19:38" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP36\A0006621.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:19:49" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP39\A0006806.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic5.ALDO</attr>
</rec>
<rec time="2008/04/20 19:19:56" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP39\A0006806.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:20:05" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP43\A0006923.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic5.ALDO</attr>
</rec>
<rec time="2008/04/20 19:20:08" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP43\A0006923.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:20:12" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP45\A0007016.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic5.ALDO</attr>
</rec>
<rec time="2008/04/20 19:20:15" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP46\A0007064.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">BHO.DHD</attr>
</rec>
<rec time="2008/04/20 19:20:15" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP46\A0007066.exe</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">BHO.DHD</attr>
</rec>
<rec time="2008/04/20 19:20:16" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP46\A0007087.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic5.ALDO</attr>
</rec>
<rec time="2008/04/20 19:20:19" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP46\A0007147.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic5.ALDO</attr>
</rec>
<rec time="2008/04/20 19:20:20" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP46\A0007186.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic5.ALDO</attr>
</rec>
<rec time="2008/04/20 19:20:21" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP46\A0007204.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">BHO.DHD</attr>
</rec>
<rec time="2008/04/20 19:20:21" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP46\A0007206.exe</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">BHO.DHD</attr>
</rec>
<rec time="2008/04/20 19:20:23" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP46\A0007242.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic5.ALDO</attr>
</rec>
<rec time="2008/04/20 19:20:25" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP46\A0007280.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic5.ALDO</attr>
</rec>
<rec time="2008/04/20 19:20:37" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007375.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic5.ALDO</attr>
</rec>
<rec time="2008/04/20 19:20:38" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007387.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">BHO.DHD</attr>
</rec>
<rec time="2008/04/20 19:20:38" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007389.exe</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">BHO.DHD</attr>
</rec>
<rec time="2008/04/20 19:20:40" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007432.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic5.ALDO</attr>
</rec>
<rec time="2008/04/20 19:20:40" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007448.exe</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">Downloader.Agent.ADFU</attr>
</rec>
<rec time="2008/04/20 19:20:40" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007449.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">BHO.DHD</attr>
</rec>
<rec time="2008/04/20 19:20:41" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007451.exe</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">BHO.DHD</attr>
</rec>
<rec time="2008/04/20 19:20:43" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007506.exe</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.EL</attr>
</rec>
<rec time="2008/04/20 19:20:45" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007538.dll</attr>
<attr name="finding">@EID_Fi_vir</attr>
<attr name="virusname">Downloader.Agent</attr>
</rec>
<rec time="2008/04/20 19:20:48" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP46\A0007064.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:20:50" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP46\A0007066.exe</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:20:51" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007679.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">Clicker.11.K</attr>
</rec>
<rec time="2008/04/20 19:20:51" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007680.exe</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">Downloader.Agent.ADFU</attr>
</rec>
<rec time="2008/04/20 19:20:51" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007681.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">BHO.DHD</attr>
</rec>
<rec time="2008/04/20 19:20:51" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007683.exe</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">BHO.DHD</attr>
</rec>
<rec time="2008/04/20 19:20:54" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP46\A0007087.dll</attr&
  • 0

#4
kernan

kernan

    New Member

  • Topic Starter
  • Member
  • Pip
  • 8 posts
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP46\A0007087.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:20:56" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP46\A0007147.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:20:57" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP46\A0007186.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:20:58" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP46\A0007204.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:21:00" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP49\A0007790.exe</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">Downloader.Agent.ADFU</attr>
</rec>
<rec time="2008/04/20 19:21:00" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP46\A0007206.exe</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:21:00" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP49\A0007791.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">BHO.DHD</attr>
</rec>
<rec time="2008/04/20 19:21:00" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP49\A0007793.exe</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">BHO.DHD</attr>
</rec>
<rec time="2008/04/20 19:21:01" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP46\A0007242.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:21:02" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP46\A0007280.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:21:03" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP49\A0007851.exe</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">Downloader.Agent.ADFU</attr>
</rec>
<rec time="2008/04/20 19:21:03" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP49\A0007852.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">BHO.DHD</attr>
</rec>
<rec time="2008/04/20 19:21:04" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP49\A0007854.exe</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">BHO.DHD</attr>
</rec>
<rec time="2008/04/20 19:21:04" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP49\A0007863.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">Downloader.Agent.AFLO</attr>
</rec>
<rec time="2008/04/20 19:21:04" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP49\A0007865.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">Downloader.Agent.AFLU</attr>
</rec>
<rec time="2008/04/20 19:21:04" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP49\A0007869.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">Downloader.Generic6.UZS</attr>
</rec>
<rec time="2008/04/20 19:21:05" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007375.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:21:06" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP49\A0007901.sys</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">BackDoor.Ntrootkit.AP</attr>
</rec>
<rec time="2008/04/20 19:21:06" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP49\A0007902.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">Clicker.11.K</attr>
</rec>
<rec time="2008/04/20 19:21:06" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP49\A0007906.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">BHO.DHD</attr>
</rec>
<rec time="2008/04/20 19:21:07" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007387.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:21:08" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007389.exe</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:21:08" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP49\A0008941.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">Downloader.Bho.D</attr>
</rec>
<rec time="2008/04/20 19:21:09" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007432.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:21:10" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007448.exe</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:21:14" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007449.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:21:14" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0009906.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">Downloader.Agent.AFLU</attr>
</rec>
<rec time="2008/04/20 19:21:14" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0009907.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">BHO.DHD</attr>
</rec>
<rec time="2008/04/20 19:21:18" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007451.exe</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:21:24" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007506.exe</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:21:31" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011170.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Agent.SIG</attr>
</rec>
<rec time="2008/04/20 19:21:31" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011171.exe</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Agent.SIF</attr>
</rec>
<rec time="2008/04/20 19:21:33" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011219.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.AS</attr>
</rec>
<rec time="2008/04/20 19:21:33" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011220.exe</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.AQ</attr>
</rec>
<rec time="2008/04/20 19:21:36" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007538.dll</attr>
<attr name="action">@HL_ActVVInserted</attr>
</rec>
<rec time="2008/04/20 19:21:36" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011299.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.FC</attr>
</rec>
<rec time="2008/04/20 19:21:37" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011300.exe</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.FA</attr>
</rec>
<rec time="2008/04/20 19:21:39" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007679.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:21:41" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007680.exe</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:21:43" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007681.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:21:44" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP48\A0007683.exe</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:21:45" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011479.exe</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.BPG</attr>
</rec>
<rec time="2008/04/20 19:21:45" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP49\A0007790.exe</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:21:46" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP49\A0007791.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:21:46" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011502.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.YK</attr>
</rec>
<rec time="2008/04/20 19:21:47" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP49\A0007793.exe</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:21:48" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP49\A0007851.exe</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:21:49" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP49\A0007852.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:21:50" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP49\A0007854.exe</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:21:51" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP49\A0007863.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:21:53" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP49\A0007865.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:21:54" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP49\A0007869.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:21:55" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP49\A0007901.sys</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:21:57" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP49\A0007902.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:21:58" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP49\A0007906.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:21:59" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP49\A0008941.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:22:01" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0009906.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:22:02" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0009907.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:22:03" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011170.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:22:04" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011171.exe</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:22:05" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011219.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:22:07" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011220.exe</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:22:08" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011299.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:22:10" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011300.exe</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:22:12" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011479.exe</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:22:14" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP50\A0011502.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:22:29" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP52\A0012069.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.CTD</attr>
</rec>
<rec time="2008/04/20 19:22:34" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP52\A0012083.exe</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">Downloader.Generic6.AKVF</attr>
</rec>
<rec time="2008/04/20 19:22:35" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP52\A0012084.exe</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">Downloader.Generic6.AKVF</attr>
</rec>
<rec time="2008/04/20 19:22:35" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP52\A0012085.exe</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">Downloader.Generic6.AKVF</attr>
</rec>
<rec time="2008/04/20 19:22:40" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP52\A0012097.exe</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">Downloader.Generic6.AKES</attr>
</rec>
<rec time="2008/04/20 19:22:40" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP52\A0012098.exe</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">Downloader.Generic6.AKES</attr>
</rec>
<rec time="2008/04/20 19:22:55" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP52\A0012286.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.ZU</attr>
</rec>
<rec time="2008/04/20 19:23:05" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP54\A0012438.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.CUV</attr>
</rec>
<rec time="2008/04/20 19:23:06" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP52\A0012083.exe</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:23:08" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP52\A0012084.exe</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:23:09" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP54\A0012505.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.AJH</attr>
</rec>
<rec time="2008/04/20 19:23:09" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP54\A0012506.exe</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.AIS</attr>
</rec>
<rec time="2008/04/20 19:23:09" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP52\A0012085.exe</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:23:11" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP52\A0012097.exe</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:23:12" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP52\A0012098.exe</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:23:13" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP52\A0012286.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:23:14" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP54\A0012438.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:23:16" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP54\A0012505.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:23:17" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP54\A0012506.exe</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:23:33" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP58\A0012865.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.AZH</attr>
</rec>
<rec time="2008/04/20 19:23:37" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP58\A0012865.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:23:53" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP59\A0013118.exe</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.BGJ</attr>
</rec>
<rec time="2008/04/20 19:23:54" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP59\A0013149.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.BMO</attr>
</rec>
<rec time="2008/04/20 19:23:56" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP59\A0013203.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.CVH</attr>
</rec>
<rec time="2008/04/20 19:23:56" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP59\A0013204.exe</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.BDI</attr>
</rec>
<rec time="2008/04/20 19:24:26" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP59\A0013149.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:24:31" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP59\A0013203.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:24:33" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP59\A0013204.exe</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:24:51" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP81\A0015488.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.CVT</attr>
</rec>
<rec time="2008/04/20 19:24:51" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP81\A0015489.exe</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.CHG</attr>
</rec>
<rec time="2008/04/20 19:25:03" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP81\A0015488.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:25:05" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP81\A0015489.exe</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:25:38" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP85\A0019218.exe</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">BackDoor.Hupigon4.EYU</attr>
</rec>
<rec time="2008/04/20 19:25:41" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP85\A0019218.exe</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:25:51" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP87\A0019402.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.EES</attr>
</rec>
<rec time="2008/04/20 19:25:54" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP87\A0019464.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.EFK</attr>
</rec>
<rec time="2008/04/20 19:25:55" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP87\A0019471.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.EFI</attr>
</rec>
<rec time="2008/04/20 19:25:55" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP87\A0019472.exe</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.EFJ</attr>
</rec>
<rec time="2008/04/20 19:25:57" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP87\A0019402.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:25:59" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP88\A0019528.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.EHO</attr>
</rec>
<rec time="2008/04/20 19:25:59" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP87\A0019464.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:26:00" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP88\A0019546.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.EKK</attr>
</rec>
<rec time="2008/04/20 19:26:01" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP87\A0019471.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:26:01" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP88\A0019569.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.EKK</attr>
</rec>
<rec time="2008/04/20 19:26:04" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP87\A0019472.exe</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:26:06" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP89\A0019612.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.EKK</attr>
</rec>
<rec time="2008/04/20 19:26:06" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP88\A0019528.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:26:06" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP89\A0019617.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.EKM</attr>
</rec>
<rec time="2008/04/20 19:26:06" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP89\A0019618.exe</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.EKL</attr>
</rec>
<rec time="2008/04/20 19:26:07" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP88\A0019546.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:26:08" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP88\A0019569.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:26:09" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP89\A0019612.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:26:10" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP89\A0019617.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:26:11" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP89\A0019618.exe</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:26:12" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP90\A0019649.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.EQX</attr>
</rec>
<rec time="2008/04/20 19:26:12" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP90\A0019650.exe</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.EQV</attr>
</rec>
<rec time="2008/04/20 19:26:13" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP90\A0019649.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:26:15" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP90\A0019650.exe</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:26:18" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP90\A0019760.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.EQW</attr>
</rec>
<rec time="2008/04/20 19:26:18" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP90\A0019761.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.EYX</attr>
</rec>
<rec time="2008/04/20 19:26:19" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP90\A0019786.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.EYX</attr>
</rec>
<rec time="2008/04/20 19:26:21" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP90\A0019760.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:26:23" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP90\A0019761.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:26:25" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP90\A0019786.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:26:27" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP90\A0019871.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.EYX</attr>
</rec>
<rec time="2008/04/20 19:26:31" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP90\A0019871.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:27:12" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP91\A0020211.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.EYX</attr>
</rec>
<rec time="2008/04/20 19:27:22" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP92\A0020297.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.EYX</attr>
</rec>
<rec time="2008/04/20 19:27:48" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP93\A0020551.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">Downloader.Generic6.AJZR</attr>
</rec>
<rec time="2008/04/20 19:28:06" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP92\A0020297.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:29:14" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP93\A0020584.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">Downloader.Generic7.HAE</attr>
</rec>
<rec time="2008/04/20 19:29:15" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP93\A0020586.exe</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.EYW</attr>
</rec>
<rec time="2008/04/20 19:29:18" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP93\A0020594.exe</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">BHO.DHD</attr>
</rec>
<rec time="2008/04/20 19:29:18" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP93\A0020595.exe</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">Downloader.Generic7.NG</attr>
</rec>
<rec time="2008/04/20 19:29:18" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP93\A0020596.exe</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">Downloader.Adload.C</attr>
</rec>
<rec time="2008/04/20 19:29:18" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP93\A0020597.exe</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">Downloader.Generic6.AKSM</attr>
</rec>
<rec time="2008/04/20 19:29:19" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP93\A0020598.exe</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">Downloader.Small.61.B</attr>
</rec>
<rec time="2008/04/20 19:29:19" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP93\A0020599.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.EVV</attr>
</rec>
<rec time="2008/04/20 19:29:19" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP93\A0020600.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.EFK</attr>
</rec>
<rec time="2008/04/20 19:29:19" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP93\A0020601.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.EKK</attr>
</rec>
<rec time="2008/04/20 19:29:19" use
  • 0

#5
kernan

kernan

    New Member

  • Topic Starter
  • Member
  • Pip
  • 8 posts
r="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP93\A0020598.exe</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">Downloader.Small.61.B</attr>
</rec>
<rec time="2008/04/20 19:29:19" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP93\A0020599.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.EVV</attr>
</rec>
<rec time="2008/04/20 19:29:19" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP93\A0020600.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.EFK</attr>
</rec>
<rec time="2008/04/20 19:29:19" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP93\A0020601.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.EKK</attr>
</rec>
<rec time="2008/04/20 19:29:19" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP93\A0020602.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.EYX</attr>
</rec>
<rec time="2008/04/20 19:29:19" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP93\A0020603.exe</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">Downloader.Agent.ADFU</attr>
</rec>
<rec time="2008/04/20 19:29:19" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP93\A0020604.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">Downloader.Agent.ACJU</attr>
</rec>
<rec time="2008/04/20 19:29:19" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP93\A0020605.sys</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">BackDoor.Generic9.UUR</attr>
</rec>
<rec time="2008/04/20 19:30:29" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP93\A0020594.exe</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:30:32" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP93\A0020595.exe</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:30:39" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP93\A0020596.exe</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:31:00" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP93\A0020597.exe</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:31:27" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP93\A0020598.exe</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:31:29" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP93\A0020599.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:31:31" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP93\A0020600.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:31:32" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP93\A0020601.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:31:34" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP93\A0020602.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:31:40" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP93\A0020603.exe</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:31:42" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP93\A0020604.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 19:31:44" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP93\A0020605.sys</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 20:28:31" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP30\A0006189.sys</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">BackDoor.Ntrootkit.AP</attr>
</rec>
<rec time="2008/04/20 20:28:52" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP30\A0006189.sys</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 20:31:00" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP45\A0007016.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic5.ALDO</attr>
</rec>
<rec time="2008/04/20 20:31:06" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP45\A0007016.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 20:32:19" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP52\A0012069.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.CTD</attr>
</rec>
<rec time="2008/04/20 20:32:21" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP52\A0012069.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 20:33:16" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP59\A0013118.exe</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.BGJ</attr>
</rec>
<rec time="2008/04/20 20:33:36" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP59\A0013118.exe</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 20:35:59" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP91\A0020211.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.EYX</attr>
</rec>
<rec time="2008/04/20 20:36:02" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP91\A0020211.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 20:36:19" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP93\A0020551.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">Downloader.Generic6.AJZR</attr>
</rec>
<rec time="2008/04/20 20:36:33" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP93\A0020551.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 20:37:31" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP93\A0020584.dll</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">Downloader.Generic7.HAE</attr>
</rec>
<rec time="2008/04/20 20:37:32" user="petal" source="Virus">
<value>@HL_ReportFindRS</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP93\A0020586.exe</attr>
<attr name="finding">@EID_Id_trj</attr>
<attr name="virusname">PSW.Generic6.EYW</attr>
</rec>
<rec time="2008/04/20 20:37:37" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP93\A0020584.dll</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
<rec time="2008/04/20 20:37:40" user="petal" source="Virus">
<value>@HL_ActionTaken</value>
<attr name="filename">C:\System Volume Information\_restore{A7B32A19-F009-4FA2-BE1E-4A256197BC7D}\RP93\A0020586.exe</attr>
<attr name="action">@HL_ActCleaned</attr>
</rec>
</history>
  • 0

#6
kernan

kernan

    New Member

  • Topic Starter
  • Member
  • Pip
  • 8 posts
Also get this error at times

XPCOM: Event Reveiver: firefox.exe - Application Error

The instruction at "0x602006df" referenced memory at "0x00000000:.
The memory could not be "read"

Click on ok to terminate the program
Click on cancel to debug the program

I always just click OK. Thanksss

Let me know if theres anyway i can further assist anyone who wants to help thanks
i appreciate anyone who takes the time to look at this

Edited by kernan, 21 April 2008 - 10:34 AM.

  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP