Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

W32/Mabezat.B.worm shredding my PC apart [RESOLVED]


  • This topic is locked This topic is locked

#1
Hussam Magdy

Hussam Magdy

    Member

  • Member
  • PipPip
  • 37 posts
Hello there , I tried each step described in the tutorial but I'm still infected everywhere with W32/Mabezat.B.worm & ALOT of other weird stuff ... It all begad after connecting a USB flash drive without even opening any file on it ... when I double click my C drive or D drive , they open in a maximized new windows in explorer mode .. The main file is zPharaoh in the root of all my drives , it is a system file in the shape of a folder , whenever I show hidden and system files , my options are resetted again in seconds and I have to show system and hidden files again, sometimes my mouse pointer is changed to this WEIRD black pointer but it returns back to normal ...... kaspersky is going nuts and notifications DOESNT stop , cant disinfect and all infected files are skipped without me deciding to skip them , alot of my MAIN programs' EXEs got infected too "acrobat , winrar , ....."... That's all I can think of to help beside the following logs from mentioned scans ... I scanned and restarted and all the infections were back ...



Panda ActiveScan

;*******************************************************************************
********************************************************************************
*
*******************
ANALYSIS: 2008-05-22 17:09:03
PROTECTIONS: 0
MALWARE: 9
SUSPECTS: 1
;*******************************************************************************
********************************************************************************
*
*******************
PROTECTIONS
Description Version Active Updated
;===============================================================================
================================================================================
=
===================
;===============================================================================
================================================================================
=
===================
MALWARE
Id Description Type Active Severity Disinfectable Disinfected Location
;===============================================================================
================================================================================
=
===================
00034347 dialer.su Dialers No 0 Yes No hkey_local_machine\software\microsoft\windows\currentversion\uninstall\switch
00293079 Spyware/7r7t Spyware No 1 No No D:\Others\Books\Magic Tricks Collection VOL2.rar[Magic Tricks Collection VOL1 - AutoUNZIP.exe]
01048397 Generic Malware Virus/Trojan No 0 Yes No F:\Educational\Style XP v3.19 - Female + Male (full)+1000 Themes +1000 Boot Screens +1000 Walls\prog\- crk\StyleXP_Keygen.exe
02197130 Trj/Rebooter.J Virus/Trojan No 1 Yes No E:\Sources\L2MFIX.EXE[l2mfix/Reboot.exe]
02197130 Trj/Rebooter.J Virus/Trojan No 1 Yes No E:\Sources\Spyware\L2MFIX\Reboot.exe
02871031 W32/Mabezat.B.worm Virus/Worm No 0 Yes No F:\VIDEO_TS\WinrRarSerialInstall.exe
02871031 W32/Mabezat.B.worm Virus/Worm No 0 Yes No E:\System Volume Information\_restore{E31535B5-06E2-4AA2-856B-3D3ED86808FF}\RP4\A0000312.EXE
02871031 W32/Mabezat.B.worm Virus/Worm No 0 Yes No F:\Books\WinrRarSerialInstall.exe
02871031 W32/Mabezat.B.worm Virus/Worm No 0 Yes No F:\Educational\Hussam\Engineers Library F-Z\FEA & CFD\The Finite Element Method Using Matlab 2nd Ed\WinrRarSerialInstall.exe
02889246 W32/Mabezat.C.worm Virus/Worm No 0 Yes No C:\Documents and Settings\tazebama.dll
02889246 W32/Mabezat.C.worm Virus/Worm No 0 Yes No C:\System Volume Information\_restore{E31535B5-06E2-4AA2-856B-3D3ED86808FF}\RP4\A0000222.dll
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Documents and Settings\Hussamofe\Local Settings\Temp\SAINST\VideoAcceleratorEngine.exe
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Documents and Settings\Hussamofe\Local Settings\Temp\SAINST\VideoAcceleratorService.exe
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Documents and Settings\Hussamofe\My Documents\Downloads\Compressed\anycapturescreen\anycapturescreen.exe
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Documents and Settings\Hussamofe\My Documents\Downloads\Programs\93.71_forceware_winxp2k_english_whql.exe
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Documents and Settings\Hussamofe\My Documents\Downloads\Programs\ATF_Cleaner.exe
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Documents and Settings\Hussamofe\My Documents\Downloads\Programs\BWLBBYPSetup.exe
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Documents and Settings\Hussamofe\My Documents\Downloads\Programs\CheatEngine54.exe
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Documents and Settings\Hussamofe\My Documents\Downloads\Programs\Combined-Community-Codec-Pack-2008-01-24.exe
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Documents and Settings\Hussamofe\My Documents\Downloads\Programs\dotnetfx.exe
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Documents and Settings\Hussamofe\My Documents\Downloads\Programs\download-ipodmgr.exe.exe
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Documents and Settings\Hussamofe\My Documents\Downloads\Programs\download-speeder.zip.exe
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Documents and Settings\Hussamofe\My Documents\Downloads\Programs\Download_mbam-setup.exe
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Documents and Settings\Hussamofe\My Documents\Downloads\Programs\install_flash_player.exe
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Documents and Settings\Hussamofe\My Documents\Downloads\Programs\install_flash_player_2.exe
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Documents and Settings\Hussamofe\My Documents\Downloads\Programs\install_flash_player_3.exe
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Documents and Settings\Hussamofe\My Documents\Downloads\Programs\LimeWireWin.exe
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Documents and Settings\Hussamofe\My Documents\Downloads\Programs\MaestroLiveSetup1.61.exe
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Documents and Settings\Hussamofe\My Documents\Downloads\Programs\mailer_setup.exe
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Documents and Settings\Hussamofe\My Documents\Downloads\Programs\MatroskaDiag.exe
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Documents and Settings\Hussamofe\My Documents\Downloads\Programs\MsgPlusLive-450.exe
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Documents and Settings\Hussamofe\My Documents\Downloads\Programs\msgr8us.exe
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Documents and Settings\Hussamofe\My Documents\Downloads\Programs\pci_us_smartrecovery.exe
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Documents and Settings\Hussamofe\My Documents\Downloads\Programs\qpassgen.exe
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Documents and Settings\Hussamofe\My Documents\Downloads\Programs\Rct.exe
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Documents and Settings\Hussamofe\My Documents\Downloads\Programs\RealPlayer11GOLD_2.exe
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Documents and Settings\Hussamofe\My Documents\Downloads\Programs\setup_magicdisc.exe
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Documents and Settings\Hussamofe\My Documents\Downloads\Programs\SUPERAntiSpyware.exe
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Documents and Settings\Hussamofe\My Documents\Downloads\Programs\SUPERsetup.exe
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Documents and Settings\Hussamofe\Local Settings\Temp\SAINST\VideoAccelerator.exe
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Documents and Settings\Hussamofe\My Documents\Downloads\Programs\videoraipodconverter_Installer.exe
02889720 W32/Mabezat.C Virus No 0 Yes No C:\EES_AV\ees.exe
02889720 W32/Mabezat.C Virus No 0 Yes No C:\GMouse20\Gmouse.exe
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Program Files\Adobe\Acrobat 8.0\Acrobat\Acrobat.exe
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Program Files\Common Files\Real\Update_OB\rnxproc.exe
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Program Files\HP\hpqSSupply.exe
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Program Files\HP\Digital Imaging\bin\hpqwrg.exe
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Program Files\HP\Digital Imaging\{58535A90-1788-44f5-80BB-CFF62D9CE6D5}\setup\hpzscr01.exe
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Program Files\iTunes\iTunes.exe
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Program Files\Java\jre1.6.0_03\bin\javaws.exe
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Program Files\Messenger\msmsgs.exe
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Program Files\Microsoft Office\Office12\EXCEL.EXE
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Program Files\Microsoft Office\Office12\INFOPATH.EXE
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Program Files\Microsoft Office\Office12\MSACCESS.EXE
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Program Files\Microsoft Office\Office12\MSPUB.EXE
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Program Files\Microsoft Office\Office12\OIS.EXE
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Program Files\MSN\MSNCoreFiles\Install\msnsusii.exe
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Program Files\NCH Swift Sound\Switch\switch.exe
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Program Files\Nokia\Nokia Software Updater\nsu_ui_client.exe
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Program Files\QuickTime\PictureViewer.exe
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Program Files\QuickTime\QuickTimePlayer.exe
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Program Files\Real\RealPlayer\realplay.exe
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Program Files\SpeederXP\Register.exe
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Program Files\SpeederXP\unins000.exe
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Program Files\VideoLAN\VLC\vlc.exe
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Program Files\WinRAR\WinRAR.exe
02889720 W32/Mabezat.C Virus No 0 Yes No C:\System Volume Information\_restore{E31535B5-06E2-4AA2-856B-3D3ED86808FF}\RP3\A0000197.exe
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Documents and Settings\Hussamofe\My Documents\Downloads\Programs\TryWoW.exe
02889720 W32/Mabezat.C Virus No 0 Yes No C:\WINDOWS\system32\notepad.exe.tmp
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Documents and Settings\Hussamofe\Local Settings\Temp\DRDld\mbam-setup.exe
02889720 W32/Mabezat.C Virus No 0 Yes No F:\Educational\Hussam\Mechanical Engineering\SteamTab\SteamTab.exe
02889720 W32/Mabezat.C Virus No 0 Yes No F:\Educational\Hussam\Mechanical Engineering\LaunchU3.exe
02889720 W32/Mabezat.C Virus No 0 Yes No F:\Educational\Hussam\Mechanical Engineering\AdbeRdr70_enu_full.exe
02889720 W32/Mabezat.C Virus No 0 Yes No F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\WindowMode.exe
02889720 W32/Mabezat.C Virus No 0 Yes No F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\FullScreenMode.exe
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Documents and Settings\Hussamofe\Local Settings\Temp\ose00000.exe
02889720 W32/Mabezat.C Virus No 0 Yes No F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\WindowMode.exe
02889720 W32/Mabezat.C Virus No 0 Yes No F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\FullScreenMode.exe
02889720 W32/Mabezat.C Virus No 0 Yes No F:\Educational\Hussam\Handbook Of Chemistry & Physics\software\psi.exe
02889720 W32/Mabezat.C Virus No 0 Yes No F:\Educational\Hussam\Handbook Of Chemistry & Physics\software\crchpc.exe
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Documents and Settings\All Users\Application Data\Apple Computer\Installer Cache\iTunes 7.4.3.1\iTunesSetupAdmin.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\System Volume Information\_restore{E31535B5-06E2-4AA2-856B-3D3ED86808FF}\RP4\A0000221.EXE
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Documents and Settings\Hussamofe\Local Settings\Temp\n1setup.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Kaspersky.Anti-Virus.v7.0.0.125.WinAll-DEC0DE\DEKAV70B\DECKAV70\KAVSETUP.EXE
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\DRTCP021.EXE
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Documents and Settings\Hussamofe\Desktop\setup_ees.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\MsgPlusLive-423.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\flashplayer6axinstaller.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\jre-6u3-windows-i586-p.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\WinZip 8.1.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\daemon4111-lite-x86.exe
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Documents and Settings\Hussamofe\Local Settings\Application Data\Adobe\Updater5\Install\acrobat8pro-EFG\Setup.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\Windows Live Installer.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\MP10Setup.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\169.21_forceware_winxp_32bit_english_whql.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\ATF-Cleaner.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\VLC media player.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\avgas-setup-7[1].5.0.50.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\L2MFIX.EXE
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Documents and Settings\Hussamofe\Desktop\WHTBBBot13\WHTBBBot.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\winamp532_full_emusic-7plus.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\Azureus_2.4.0.0_Win32.setup.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\Azureus_2.4.0.2_Win32.setup.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\nouf-R.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\SDSETUP.EXE
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\wmp11-windowsxp-x86-enu.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\cixX3.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\avgas-setup-7.5.1.43.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\avg75free_476a1048.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\Azureus_2.5.0.4a_Win32.setup.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\karafun_116a.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\AVSVideotoArchos.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\SkypeSetup.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\WinRAR.v3.70.Incl.Keymaker.And.Patch-CORE\CR-WR370\WRAR370.EXE
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\Itunes\iTunesSetup.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\wmp11-windowsxp-x86-enu\WMP11.EXE
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\YouTube FLV to AVI Converter PRO 2.0.5\SETUP.EXE
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\YouTube FLV to AVI Converter PRO 2.0.5\MKDEV TEAM CRACK\MKDEV TEAM CRACK\YouTubeFLVtoAVIconverterPro.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\Internet.Download.Manager.5.12.With.All.Patches.MiYAN\idman512f.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\Internet.Download.Manager.5.12.With.All.Patches.MiYAN\IDM PATCH's AND KEYGEN's\IDM.5.12.Patch.ASTALAVISTA\IDMan.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\Internet.Download.Manager.5.12.With.All.Patches.MiYAN\IDM PATCH's AND KEYGEN's\IDM.5.12.Keygen.By.TCK\Keygen.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\Power DVD\Keygen.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\Power DVD\Setup.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\wmp11-windowsxp-x86-enu\wmfdist11.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\WinAVI VideoConverter 6.3 PL\myWinAVI 6.3.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\WinAVI VideoConverter 6.3 PL\WinAVI VideoConverter 6.3 PL.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\DirectX9\DXSETUP.EXE
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\wmp11-windowsxp-x86-enu\UMDF.EXE
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\DirectX9\DirectX 9.0 C\DXSETUP.EXE
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\DirectX9\DirectX 9.0 C\directx_9c_redist.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\MSN Messenger\Install_MSN_Messenger.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\Codecs\SLDcodecpack1.5.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\Codecs\SLDCODECPACKV13.EXE
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\Codecs\sld.codec.pack.2.2.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\Codecs\sld.codec.pack.basic.2.1.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\LimeWire PRO Version 4.12.6\LimeWire4.12.6Win\LimeWire4.12.6Win.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\Important files\vbrun60sp5.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\TempClean\TCini.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\TempClean\TempClean.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\FamilyGuy_XtremeDesktop_Setup\FamilyGuy_XtremeDesktop_Setup\FamilyGuy_XtremeDesktop_Setup.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\Bittorrent clients\BITCOMET.EXE
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\Bittorrent clients\BitComet_0.58[www.click-now.net].exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\Bittorrent clients\BitTornado-0.3.8-w32install.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\Bittorrent clients\Azureus_2.3.0.2_Win32.setup.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\Bittorrent clients\bitcomet_setup.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\Bittorrent clients\Azureus_2.5.0.0_Win32.setup.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\Sharing clients\pioletsetup105.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\Sharing clients\KMD.EXE
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\Sharing clients\Lime Wire LimeWire Pro 4.9.23\LimeWire Pro 4.9.23\LimeWireWin.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\Spyware\CleanUp40.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\ImTOO iPod Movie Converter 2.1\ipod-movie-converter.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\Spyware\Anti-Spyware\IE-SPYAD.EXE
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\Spyware\L2MFIX\Ntrights.exe
02889720 W32/Mabezat.C Virus No 0 Yes No C:\Documents and Settings\Hussamofe\Desktop\WHTBBBot12\WHTBBBot.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\Spyware\L2MFIX\RegDACL.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\Spyware\L2MFIX\STRINGS.EXE
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\Spyware\L2MFIX\ZIP.EXE
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\Spyware\CWShredder\CWShredder\cwshredder.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\BLACK.AND.WHITE.2.KEYGEN-DEViANCE\DEV-BW2K\KEYGEN.EXE
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\Spy\avg71free_371a669.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\Spy\ewido-setup.exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\Spy\Microsoft AntiSpyware 2006 Upgrade\MicrosoftAntiSpyware Newest Upgrade (2006).exe
02889720 W32/Mabezat.C Virus No 0 Yes No E:\Sources\WLinstaller.exe
02900740 W32/Mabezat.C.worm Virus/Worm No 0 Yes No E:\Sources\Spyware\Spyware .exe
02900740 W32/Mabezat.C.worm Virus/Worm No 0 Yes No E:\Sources\TempClean\TempClean .exe
02900740 W32/Mabezat.C.worm Virus/Worm No 0 Yes No E:\Sources\Codecs\Codecs .exe
02900740 W32/Mabezat.C.worm Virus/Worm No 0 Yes No E:\Sources\DirectX9\DirectX9 .exe
02900740 W32/Mabezat.C.worm Virus/Worm No 0 Yes No E:\Sources\Power DVD\Power DVD .exe
02900740 W32/Mabezat.C.worm Virus/Worm No 0 Yes No E:\Sources\Itunes\Itunes .exe
02900740 W32/Mabezat.C.worm Virus/Worm No 0 Yes No E:\Sources\Karaoke\Karaoke .exe
02900740 W32/Mabezat.C.worm Virus/Worm No 0 Yes No E:\Sources\Sources .exe
02900740 W32/Mabezat.C.worm Virus/Worm No 0 Yes No D:\$RECYCLE.BIN\$R09PV1Q\ShowDesktop.exe
02900740 W32/Mabezat.C.worm Virus/Worm No 0 Yes No E:\$RECYCLE.BIN\$RECYCLE.BIN .exe
02900740 W32/Mabezat.C.worm Virus/Worm No 0 Yes No E:\Nickelback\Nickelback .exe
02900740 W32/Mabezat.C.worm Virus/Worm No 0 Yes No D:\$RECYCLE.BIN\$R09PV1Q\Wav32000\HP_LaserJetAllInOneConfig.exe
02900740 W32/Mabezat.C.worm Virus/Worm No 0 Yes No E:\How it's Made\How it's Made .exe
02900740 W32/Mabezat.C.worm Virus/Worm No 0 Yes No D:\Songs\Songs .exe
02900740 W32/Mabezat.C.worm Virus/Worm No 0 Yes No D:\Others\Others .exe
02900740 W32/Mabezat.C.worm Virus/Worm No 0 Yes No D:\Videos\Videos .exe
02900740 W32/Mabezat.C.worm Virus/Worm No 0 Yes No D:\Recycled\Recycled .exe
02900740 W32/Mabezat.C.worm Virus/Worm No 0 Yes No E:\Sources\Spy\Spy .exe
02966298 W32/Mabezat.B.worm Virus/Worm No 0 Yes No F:\Educational\Educational .exe
02966298 W32/Mabezat.B.worm Virus/Worm No 0 Yes No E:\The.Oxford.Murders.2008.LiMiTED.DVDRiP.XViD-iKA\The.Oxford.Murders.2008.LiMiTED.DVDRiP.XViD-iKA .exe
02966298 W32/Mabezat.B.worm Virus/Worm No 0 Yes No D:\Recycled\Recycled .exe
;===============================================================================
================================================================================
=
===================
SUSPECTS
Sent Location \
;===============================================================================
================================================================================
=
===================
No C:\PROGRAM FILES\SPEEDERXP\SPEEDERXP.EXE \
;===============================================================================
================================================================================
=
===================
VULNERABILITIES
Id Severity Description \
;===============================================================================
================================================================================
=
===================
157262 HIGH MS07-022 \
150249 HIGH MS07-013 \
150243 HIGH MS07-008 \
126087 HIGH MS06-046 \
120823 MEDIUM MS06-030 \
93454 MEDIUM MS05-049 \
;===============================================================================
================================================================================
=
===================


Malwarebytes log :


Malwarebytes' Anti-Malware 1.12
Database version: 775

Scan type: Quick Scan
Objects scanned: 39851
Time elapsed: 12 minute(s), 17 second(s)

Memory Processes Infected: 1
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 6

Memory Processes Infected:
C:\Documents and Settings\tazebama.dl_ (Worm.Mabezat) -> Unloaded process successfully.

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
(No malicious items detected)

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Files Infected:
C:\Documents and Settings\tazebama.dll (Worm.Mabezat) -> Quarantined and deleted successfully.
C:\Documents and Settings\tazebama.dl_ (Worm.Mabezat) -> Quarantined and deleted successfully.
C:\Documents and Settings\hook.dl_ (Worm.Mabezat) -> Quarantined and deleted successfully.
C:\zPharaoh.exe (Worm.Mabezat) -> Quarantined and deleted successfully.
C:\WINDOWS\svchost.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Documents and Settings\Hussamofe\Application Data\tazebama\zPharaoh.dat (Worm.Mabezat) -> Quarantined and deleted successfully.




Hijack this LOG :



Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 6:22:25 AM, on 5/23/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.20696)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Adobe\Acrobat 8.0\Acrobat\Acrotray.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Internet Download Manager\IEMonitor.exe
C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\tazebama.dl_
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Internet Download Manager\IDMan.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft....k/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft....ink/?linkid=677
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft....k/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft....k/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft....k/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft....k/?LinkId=69157
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [Acrobat Assistant 8.0] "C:\Program Files\Adobe\Acrobat 8.0\Acrobat\Acrotray.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [IDMan] C:\Program Files\Internet Download Manager\IDMan.exe /onboot
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe"
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quiet
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - HKUS\S-1-5-19\..\RunOnce: [ShowDeskFix] regsvr32 /s /n /i:u shell32 (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [ShowDeskFix] regsvr32 /s /n /i:u shell32 (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [ShowDeskFix] regsvr32 /s /n /i:u shell32 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [ShowDeskFix] regsvr32 /s /n /i:u shell32 (User 'Default user')
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O8 - Extra context menu item: Append to existing PDF - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convert link target to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convert link target to existing PDF - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convert selected links to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Convert selected links to existing PDF - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Convert selection to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convert selection to existing PDF - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convert to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Download all links with IDM - C:\Program Files\Internet Download Manager\IEGetAll.htm
O8 - Extra context menu item: Download FLV video content with IDM - C:\Program Files\Internet Download Manager\IEGetVL.htm
O8 - Extra context menu item: Download with IDM - C:\Program Files\Internet Download Manager\IEExt.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: Web Anti-Virus statistics - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\SCIEPlgn.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {2D8ED06D-3C30-438B-96AE-4D110FDC1FB8} (ActiveScan 2.0 Installer Class) - http://acs.pandasoft...s/as2stubie.cab
O16 - DPF: {67A5F8DC-1A4B-4D66-9F24-A704AD929EEE} (System Requirements Lab) - http://www.systemreq.../sysreqlab2.cab
O16 - DPF: {6B75345B-AA36-438A-BBE6-4078B4C6984D} (HpProductDetection Class) - http://h20270.www2.h...ctDetection.cab
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft AB - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Kaspersky Anti-Virus 7.0 (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

--
End of file - 9320 bytes



If anyody could help me , I'd be very thankful ... my computer is falling apart literally
UPDATE: My windows live messenger no longer works , realplayer no longer works , microsoft word no longer works , and PANDA antivirus doesnt open too ... I get a microsoft error and option to send report to microsoft or not ... I cant UNINSTALL panda antivirus , I get another error ...

Update2 : Unfortunately , Hijackthis doesnt open anymore I get the same error , Hijack This has encountered a Problem and needs to close , We are sorry for the inconvenience ... I think this is getting more and more serious :)

Edited by Hussam Magdy, 25 May 2008 - 05:02 AM.

  • 0

Advertisements


#2
RatHat

RatHat

    Ex Malware Expert

  • Expert
  • 7,829 posts
Hassam,

As I mentioned in my reply to your PM, you have a very bad file infecter with the Mabezat Worm. Most of your programs look to be infected as shown in the Panda ActiveScan, and all will need to be reinstalled to get them working again.

The best course of action that I can recommend here is for you to reformat your hard drive, then reinstall Windows, and your programs.

If you choose not to do this, I can try to help you clean the machine, but expect very little success.

Regards,
RatHat
  • 0

#3
Hussam Magdy

Hussam Magdy

    Member

  • Topic Starter
  • Member
  • PipPip
  • 37 posts
Thanks for replying rathat... I would really love if u could help me TRY cleaning it ... I hope it wouldnt be of a bother ... I have alot if important files and I would hate to format my hard drive as I wouldnt be able to copy any of them to any external drive for fear of them being infected in anyway "even with mp3s , there's an exe file with any weird name" Fa I guess my best option is to try anything taht MIGHT help and then unfortunately format everything ...

Edited by Hussam Magdy, 27 May 2008 - 10:15 PM.

  • 0

#4
RatHat

RatHat

    Ex Malware Expert

  • Expert
  • 7,829 posts
OK, lets give it a go!

First thing I would like you to do is to run an online scan with Kaspersky WebScanner. Note: You must use Internet Explorer to run this scan.

Click the Accept button.

You will be promted to install an ActiveX component from Kaspersky, Click Yes.
  • The program will launch and then begin downloading the latest definition files:
  • Once the files have been downloaded click on NEXT
  • Now click on Scan Settings
  • In the scan settings make that the following are selected:
    • Scan using the following Anti-Virus database:
    Extended (if available otherwise Standard)
    • Scan Options:
    Scan Archives
    Scan Mail Bases
  • Click OK
  • Now under select a target to scan:Select My Computer
  • This will program will start and scan your system.
  • The scan will take a while so be patient and let it run.
  • Once the scan is complete it will display the results if your system has been infected.
    • Now click on the Save as Text button:
  • Save the file to your desktop as Kaspersky.txt.
  • Copy and paste that information in your next post.
Regards,
RatHat
  • 0

#5
Hussam Magdy

Hussam Magdy

    Member

  • Topic Starter
  • Member
  • PipPip
  • 37 posts
-------------------------------------------------------------------------------
KASPERSKY ONLINE SCANNER REPORT
Wednesday, May 28, 2008 9:44:57 AM
Operating System: Microsoft Windows XP Professional, Service Pack 2 (Build 2600)
Kaspersky Online Scanner version: 5.0.98.0
Kaspersky Anti-Virus database last update: 28/05/2008
Kaspersky Anti-Virus database records: 807832
-------------------------------------------------------------------------------

Scan Settings:
Scan using the following antivirus database: extended
Scan Archives: true
Scan Mail Bases: true

Scan Target - My Computer:
C:\
D:\
E:\
F:\
H:\
I:\

Scan Statistics:
Total number of scanned objects: 67246
Number of viruses found: 3
Number of infected objects: 833
Number of suspicious objects: 0
Duration of the scan process: 01:49:06

Infected Object Name / Virus Name / Last Action
C:\autorun.inf Infected: Worm.Win32.Mabezat.b skipped
C:\Documents and Settings\All Users\Application Data\sentinel\2.1\gwhashs.dat Object is locked skipped
C:\Documents and Settings\hook.dl_ Infected: Worm.Win32.Mabezat.b skipped
C:\Documents and Settings\Hussamofe\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\QUAR1.76434 Infected: Worm.Win32.Mabezat.b skipped
C:\Documents and Settings\Hussamofe\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\Hussamofe\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\Hussamofe\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\Hussamofe\Local Settings\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\Hussamofe\Local Settings\History\History.IE5\MSHist012008052720080528\index.dat Object is locked skipped
C:\Documents and Settings\Hussamofe\Local Settings\History\History.IE5\MSHist012008052820080529\index.dat Object is locked skipped
C:\Documents and Settings\Hussamofe\Local Settings\Temp\fla187.tmp Object is locked skipped
C:\Documents and Settings\Hussamofe\Local Settings\Temp\Perflib_Perfdata_f8.dat Object is locked skipped
C:\Documents and Settings\Hussamofe\Local Settings\Temp\~DF62A8.tmp Object is locked skipped
C:\Documents and Settings\Hussamofe\Local Settings\Temp\~DFCB47.tmp Object is locked skipped
C:\Documents and Settings\Hussamofe\Local Settings\Temp\~DFCB4C.tmp Object is locked skipped
C:\Documents and Settings\Hussamofe\Local Settings\Temporary Internet Files\AntiPhishing\B3BB5BBA-E7D5-40AB-A041-A5B1C0B26C8F.dat Object is locked skipped
C:\Documents and Settings\Hussamofe\Local Settings\Temporary Internet Files\Content.IE5\F993CRQ9\update[1].php Object is locked skipped
C:\Documents and Settings\Hussamofe\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\Hussamofe\My Documents\Downloads\Compressed\anycapturescreen\anycapturescreen.exe Infected: Win32.Mabezat.b skipped
C:\Documents and Settings\Hussamofe\My Documents\Downloads\Programs\93.71_forceware_winxp2k_english_whql.exe Infected: Win32.Mabezat.b skipped
C:\Documents and Settings\Hussamofe\My Documents\Downloads\Programs\Combined-Community-Codec-Pack-2008-01-24.exe Infected: Win32.Mabezat.b skipped
C:\Documents and Settings\Hussamofe\My Documents\Downloads\Programs\dotnetfx.exe Infected: Win32.Mabezat.b skipped
C:\Documents and Settings\Hussamofe\My Documents\Downloads\Programs\download-ipodmgr.exe.exe Infected: Win32.Mabezat.b skipped
C:\Documents and Settings\Hussamofe\My Documents\Downloads\Programs\install_flash_player.exe Infected: Win32.Mabezat.b skipped
C:\Documents and Settings\Hussamofe\My Documents\Downloads\Programs\install_flash_player_2.exe Infected: Win32.Mabezat.b skipped
C:\Documents and Settings\Hussamofe\My Documents\Downloads\Programs\LimeWireWin.exe Infected: Win32.Mabezat.b skipped
C:\Documents and Settings\Hussamofe\My Documents\Downloads\Programs\MaestroLiveSetup1.61.exe Infected: Win32.Mabezat.b skipped
C:\Documents and Settings\Hussamofe\My Documents\Downloads\Programs\mailer_setup.exe Infected: Win32.Mabezat.b skipped
C:\Documents and Settings\Hussamofe\My Documents\Downloads\Programs\MatroskaDiag.exe Infected: Win32.Mabezat.b skipped
C:\Documents and Settings\Hussamofe\My Documents\Downloads\Programs\MsgPlusLive-450.exe Infected: Win32.Mabezat.b skipped
C:\Documents and Settings\Hussamofe\My Documents\Downloads\Programs\pci_us_smartrecovery.exe Infected: Win32.Mabezat.b skipped
C:\Documents and Settings\Hussamofe\My Documents\Downloads\Programs\Rct.exe Infected: Win32.Mabezat.b skipped
C:\Documents and Settings\Hussamofe\My Documents\Downloads\Programs\RealPlayer11GOLD_2.exe Infected: Win32.Mabezat.b skipped
C:\Documents and Settings\Hussamofe\My Documents\Downloads\Programs\setup_magicdisc.exe Infected: Win32.Mabezat.b skipped
C:\Documents and Settings\Hussamofe\My Documents\Downloads\Programs\SUPERsetup.exe Infected: Win32.Mabezat.b skipped
C:\Documents and Settings\Hussamofe\My Documents\Downloads\Programs\TryWoW.exe Infected: Win32.Mabezat.b skipped
C:\Documents and Settings\Hussamofe\My Documents\Downloads\Programs\videoraipodconverter_Installer.exe Infected: Win32.Mabezat.b skipped
C:\Documents and Settings\Hussamofe\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\Hussamofe\NTUSER.DAT.LOG Object is locked skipped
C:\Documents and Settings\LocalService\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\tazebama.dl_ Infected: Worm.Win32.Mabezat.b skipped
C:\EES_AV\ees.exe Infected: Win32.Mabezat.b skipped
C:\GMouse20\Gmouse.exe Infected: Win32.Mabezat.b skipped
C:\Program Files\Adobe\Acrobat 8.0\Acrobat\Acrobat.exe Infected: Win32.Mabezat.b skipped
C:\Program Files\Common Files\Real\Update_OB\rnxproc.exe Infected: Win32.Mabezat.b skipped
C:\Program Files\HP\Digital Imaging\bin\hpqwrg.exe Infected: Win32.Mabezat.b skipped
C:\Program Files\HP\hpqSSupply.exe Infected: Win32.Mabezat.b skipped
C:\Program Files\Internet Explorer\iexplore.exe.tmp Infected: Win32.Mabezat.b skipped
C:\Program Files\iTunes\iTunes.exe Infected: Win32.Mabezat.b skipped
C:\Program Files\Java\jre1.6.0_03\bin\javaws.exe Infected: Win32.Mabezat.b skipped
C:\Program Files\Messenger\msmsgs.exe Infected: Win32.Mabezat.b skipped
C:\Program Files\Microsoft Office\Office12\EXCEL.EXE Infected: Win32.Mabezat.b skipped
C:\Program Files\Microsoft Office\Office12\INFOPATH.EXE Infected: Win32.Mabezat.b skipped
C:\Program Files\Microsoft Office\Office12\MSACCESS.EXE Infected: Win32.Mabezat.b skipped
C:\Program Files\Microsoft Office\Office12\MSPUB.EXE Infected: Win32.Mabezat.b skipped
C:\Program Files\Microsoft Office\Office12\OIS.EXE Infected: Win32.Mabezat.b skipped
C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE Infected: Win32.Mabezat.b skipped
C:\Program Files\MSN\MSNCoreFiles\Install\msnsusii.exe Infected: Win32.Mabezat.b skipped
C:\Program Files\NCH Swift Sound\Switch\switch.exe Infected: Win32.Mabezat.b skipped
C:\Program Files\Panda Security\Panda Antivirus 2008\AVLtMain.exe Infected: Win32.Mabezat.b skipped
C:\Program Files\Panda Security\Panda Antivirus 2008\cace2423dfb97c58fe7dd9f120557063PSK_NAMES Object is locked skipped
C:\Program Files\Panda Security\Panda Antivirus 2008\cace2423dfb97c58fe7dd9f120557063PSK_NAMES2 Object is locked skipped
C:\Program Files\QuickTime\PictureViewer.exe Infected: Win32.Mabezat.b skipped
C:\Program Files\QuickTime\QuickTimePlayer.exe Infected: Win32.Mabezat.b skipped
C:\Program Files\Real\RealPlayer\realplay.exe Infected: Win32.Mabezat.b skipped
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe Infected: Win32.Mabezat.b skipped
C:\Program Files\Windows Live\Messenger\msnmsgr.exe Infected: Win32.Mabezat.b skipped
C:\Program Files\WindowsUpdate\log.dat Object is locked skipped
C:\Program Files\WinRAR\WinRAR.exe Infected: Win32.Mabezat.b skipped
C:\Program Files\Yahoo!\Messenger\logs\billing_Hussamofe.log Object is locked skipped
C:\Program Files\Yahoo!\Messenger\logs\client_Hussamofe.log Object is locked skipped
C:\Program Files\Yahoo!\Messenger\logs\network_Hussamofe.log Object is locked skipped
C:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped
C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped
C:\WINDOWS\SchedLgU.Txt Object is locked skipped
C:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked skipped
C:\WINDOWS\system32\CatRoot2\edb.log Object is locked skipped
C:\WINDOWS\system32\CatRoot2\tmp.edb Object is locked skipped
C:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\default Object is locked skipped
C:\WINDOWS\system32\config\default.LOG Object is locked skipped
C:\WINDOWS\system32\config\Internet.evt Object is locked skipped
C:\WINDOWS\system32\config\ODiag.evt Object is locked skipped
C:\WINDOWS\system32\config\OSession.evt Object is locked skipped
C:\WINDOWS\system32\config\SAM Object is locked skipped
C:\WINDOWS\system32\config\SAM.LOG Object is locked skipped
C:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\SECURITY Object is locked skipped
C:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped
C:\WINDOWS\system32\config\software Object is locked skipped
C:\WINDOWS\system32\config\software.LOG Object is locked skipped
C:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\system Object is locked skipped
C:\WINDOWS\system32\config\system.LOG Object is locked skipped
C:\WINDOWS\system32\drivers\sptd.sys Object is locked skipped
C:\WINDOWS\system32\h323log.txt Object is locked skipped
C:\WINDOWS\system32\notepad.exe.tmp Infected: Win32.Mabezat.b skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP Object is locked skipped
C:\WINDOWS\WindowsUpdate.log Object is locked skipped
C:\zPharaoh.exe Infected: Worm.Win32.Mabezat.b skipped
D:\$RECYCLE.BIN\$R09PV1Q\Wav32000\Wav32000 .exe Infected: Worm.Win32.Mabezat.b skipped
D:\$RECYCLE.BIN\$R09PV1Q\Wav32000\NokiaN73Tools.exe Infected: Worm.Win32.Mabezat.b skipped
D:\$RECYCLE.BIN\$R09PV1Q\English\English .exe Infected: Worm.Win32.Mabezat.b skipped
D:\$RECYCLE.BIN\$R09PV1Q\English\Disk Defragmenter.exe Infected: Worm.Win32.Mabezat.b skipped
D:\$RECYCLE.BIN\$R09PV1Q\$R09PV1Q .exe Infected: Worm.Win32.Mabezat.b skipped
D:\$RECYCLE.BIN\$R09PV1Q\WinrRarSerialInstall.exe Infected: Worm.Win32.Mabezat.b skipped
D:\$RECYCLE.BIN\$R0RO2PQ.com]\$R0RO2PQ.com] .exe Infected: Worm.Win32.Mabezat.b skipped
D:\$RECYCLE.BIN\$R0RO2PQ.com]\Antenna2Net.exe Infected: Worm.Win32.Mabezat.b skipped
D:\autorun.inf Infected: Worm.Win32.Mabezat.b skipped
D:\Recycled\Recycled .exe Infected: Worm.Win32.Mabezat.b skipped
D:\Recycled\RecycleBinProtect.exe Infected: Worm.Win32.Mabezat.b skipped
D:\Videos\Videos .exe Infected: Worm.Win32.Mabezat.b skipped
D:\Videos\Videos .exe Infected: Worm.Win32.Mabezat.b skipped
D:\Videos\FaxSend.exe Infected: Worm.Win32.Mabezat.b skipped
D:\System Volume Information\System Volume Information .exe Infected: Worm.Win32.Mabezat.b skipped
D:\System Volume Information\Windows Keys Secrets.exe Infected: Worm.Win32.Mabezat.b skipped
D:\Tom.And.Jerry.Classic.Collection.COMPLETE.iNTERNAL .DVDR.PAL\Sony Erikson DigitalCam.exe Infected: Worm.Win32.Mabezat.b skipped
D:\zPharaoh.exe Infected: Worm.Win32.Mabezat.b skipped
D:\Nadafa campaig__videos\Nadafa campaig__videos .exe Infected: Worm.Win32.Mabezat.b skipped
D:\Nadafa campaig__videos\IDE Conector P2P.exe Infected: Worm.Win32.Mabezat.b skipped
D:\Others\Others .exe Infected: Worm.Win32.Mabezat.b skipped
D:\Others\Others .exe Infected: Worm.Win32.Mabezat.b skipped
D:\Others\Microsoft MSN.exe Infected: Worm.Win32.Mabezat.b skipped
D:\Songs\RadioTV.exe Infected: Worm.Win32.Mabezat.b skipped
D:\Songs\Songs .exe Infected: Worm.Win32.Mabezat.b skipped
D:\Songs\Songs .exe Infected: Worm.Win32.Mabezat.b skipped
E:\How it's Made\How It's Made S1\How It's Made S1 .exe Infected: Worm.Win32.Mabezat.b skipped
E:\How it's Made\How It's Made S1\Win98compatibleXP.exe Infected: Worm.Win32.Mabezat.b skipped
E:\How it's Made\How It's Made S2\How It's Made S2 .exe Infected: Worm.Win32.Mabezat.b skipped
E:\How it's Made\How It's Made S2\MyDocuments.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
E:\How it's Made\How It's Made S2\MyDocuments.rar RAR: infected - 1 skipped
E:\How it's Made\How It's Made S3\How It's Made S3 .exe Infected: Worm.Win32.Mabezat.b skipped
E:\How it's Made\How It's Made S3\backup.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
E:\How it's Made\How It's Made S3\backup.rar RAR: infected - 1 skipped
E:\How it's Made\How It's Made S4\How It's Made S4 .exe Infected: Worm.Win32.Mabezat.b skipped
E:\How it's Made\How It's Made S4\documents_backup.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
E:\How it's Made\How It's Made S4\documents_backup.rar RAR: infected - 1 skipped
E:\How it's Made\How It's Made S5\How It's Made S5 .exe Infected: Worm.Win32.Mabezat.b skipped
E:\How it's Made\How It's Made S5\windows_secrets.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
E:\How it's Made\How It's Made S5\windows_secrets.rar RAR: infected - 1 skipped
E:\How it's Made\How It's Made S6\How It's Made S6 .exe Infected: Worm.Win32.Mabezat.b skipped
E:\How it's Made\How It's Made S6\passwords.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
E:\How it's Made\How It's Made S6\passwords.rar RAR: infected - 1 skipped
E:\How it's Made\How It's Made S7\How It's Made S7 .exe Infected: Worm.Win32.Mabezat.b skipped
E:\How it's Made\How It's Made S7\office_crack.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
E:\How it's Made\How It's Made S7\office_crack.rar RAR: infected - 1 skipped
E:\How it's Made\How It's Made S8\How It's Made S8 .exe Infected: Worm.Win32.Mabezat.b skipped
E:\How it's Made\How It's Made S8\windows.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
E:\How it's Made\How It's Made S8\windows.rar RAR: infected - 1 skipped
E:\How it's Made\How it's Made .exe Infected: Worm.Win32.Mabezat.b skipped
E:\How it's Made\Crack_GoogleEarthPro.exe Infected: Worm.Win32.Mabezat.b skipped
E:\The.Oxford.Murders.2008.LiMiTED.DVDRiP.XViD-iKA\Cd1\Cd1 .exe Infected: Worm.Win32.Mabezat.b skipped
E:\The.Oxford.Murders.2008.LiMiTED.DVDRiP.XViD-iKA\Cd1\LockWindowsPartition.exe Infected: Worm.Win32.Mabezat.b skipped
E:\The.Oxford.Murders.2008.LiMiTED.DVDRiP.XViD-iKA\Cd2\Cd2 .exe Infected: Worm.Win32.Mabezat.b skipped
E:\The.Oxford.Murders.2008.LiMiTED.DVDRiP.XViD-iKA\Cd2\BrowseAllUsers.exe Infected: Worm.Win32.Mabezat.b skipped
E:\The.Oxford.Murders.2008.LiMiTED.DVDRiP.XViD-iKA\Sample\Sample .exe Infected: Worm.Win32.Mabezat.b skipped
E:\The.Oxford.Murders.2008.LiMiTED.DVDRiP.XViD-iKA\Sample\ShowDesktop.exe Infected: Worm.Win32.Mabezat.b skipped
E:\The.Oxford.Murders.2008.LiMiTED.DVDRiP.XViD-iKA\Subs\Subs .exe Infected: Worm.Win32.Mabezat.b skipped
E:\The.Oxford.Murders.2008.LiMiTED.DVDRiP.XViD-iKA\Subs\CD Burner.exe Infected: Worm.Win32.Mabezat.b skipped
E:\The.Oxford.Murders.2008.LiMiTED.DVDRiP.XViD-iKA\AmericanOnLine.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Nickelback\All The Right Reasons [2005]\All The Right Reasons [2005] .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Nickelback\All The Right Reasons [2005]\Disk Defragmenter.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Nickelback\Curb [2002]\Curb [2002] .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Nickelback\Curb [2002]\RecycleBinProtect.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Nickelback\Long Road [2004]\Long Road [2004] .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Nickelback\Long Road [2004]\FaxSend.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Nickelback\Savin Me (Promo CD) [2006]\Savin Me (Promo CD) [2006] .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Nickelback\Savin Me (Promo CD) [2006]\Windows Keys Secrets.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Nickelback\Silver Side Up [2001]\Silver Side Up [2001] .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Nickelback\Silver Side Up [2001]\IDE Conector P2P.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Nickelback\The State [2000]\The State [2000] .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Nickelback\The State [2000]\Sony Erikson DigitalCam.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Nickelback\Nickelback .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Nickelback\msjavx86.exe Infected: Worm.Win32.Mabezat.b skipped
E:\$RECYCLE.BIN\$RECYCLE.BIN .exe Infected: Worm.Win32.Mabezat.b skipped
E:\$RECYCLE.BIN\FloppyDiskPartion.exe Infected: Worm.Win32.Mabezat.b skipped
E:\System Volume Information\System Volume Information .exe Infected: Worm.Win32.Mabezat.b skipped
E:\System Volume Information\HP_LaserJetAllInOneConfig.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Mariah_Carey-EMC2-2008-ESC\Mariah_Carey-EMC2-2008-ESC .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Mariah_Carey-EMC2-2008-ESC\Microsoft Windows Network.exe Infected: Worm.Win32.Mabezat.b skipped
E:\autorun.inf Infected: Worm.Win32.Mabezat.b skipped
E:\zPharaoh.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Kaspersky.Anti-Virus.v7.0.0.125.WinAll-DEC0DE\dekav70b\deckav70\deckav70 .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Kaspersky.Anti-Virus.v7.0.0.125.WinAll-DEC0DE\dekav70b\deckav70\imp_data.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Kaspersky.Anti-Virus.v7.0.0.125.WinAll-DEC0DE\dekav70b\deckav70\imp_data.rar RAR: infected - 1 skipped
E:\Kaspersky.Anti-Virus.v7.0.0.125.WinAll-DEC0DE\dekav70b\dekav70b .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Kaspersky.Anti-Virus.v7.0.0.125.WinAll-DEC0DE\dekav70b\documents_backup.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Kaspersky.Anti-Virus.v7.0.0.125.WinAll-DEC0DE\dekav70b\documents_backup.rar RAR: infected - 1 skipped
E:\Kaspersky.Anti-Virus.v7.0.0.125.WinAll-DEC0DE\Kaspersky.Anti-Virus.v7.0.0.125.WinAll-DEC0DE .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Kaspersky.Anti-Virus.v7.0.0.125.WinAll-DEC0DE\Adjust Time.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Estelle - Shine [2008]\Estelle - Shine [2008] .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Bun B - II Trill (2008)\NokiaN73Tools.exe Infected: Worm.Win32.Mabezat.b skipped
E:\FOUND.000\FILE0000.CHK Infected: Worm.Win32.Mabezat.b skipped
E:\FOUND.000\FOUND.000 .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Pop Piano Sheet music (1000++ sheets)\Pop Piano Sheet music (1000++ sheets) .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Pop Piano Sheet music (1000++ sheets)\Recycle Bin.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Creed - Discografia (1997-2001)\(1997) Creed - My Own Prison\(1997) Creed - My Own Prison .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Creed - Discografia (1997-2001)\(1997) Creed - My Own Prison\WinrRarSerialInstall.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Creed - Discografia (1997-2001)\(1999) Creed - Human Clay\(1999) Creed - Human Clay .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Creed - Discografia (1997-2001)\(1999) Creed - Human Clay\NokiaN73Tools.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Creed - Discografia (1997-2001)\(2001) Creed - Weathered\(2001) Creed - Weathered .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Creed - Discografia (1997-2001)\(2001) Creed - Weathered\Make Windows Original.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Creed - Discografia (1997-2001)\Creed - Discografia (1997-2001) .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Creed - Discografia (1997-2001)\WindowsXp StartMenu Settings.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Panda.Antivirus.v2008.MULTILINGUAL-TFTISO\Panda.Antivirus.v2008.MULTILINGUAL-TFTISO .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Panda.Antivirus.v2008.MULTILINGUAL-TFTISO\Make Windows Original.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Panda.Antivirus.v2008.MULTILINGUAL-TFTISO\tft-pa08\tft-pa08 .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Panda.Antivirus.v2008.MULTILINGUAL-TFTISO\tft-pa08\WinrRarSerialInstall.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Leona Lewis - Spirit [DL] [2008][CD+5 SkidVid_XviD+Cov]192Kbps\Office2003 CD-Key.doc.exe Infected: Worm.Win32.Mabezat.b skipped
E:\TOP 100 Hot-Pop 2008-05-03 Billboard - Torrent Tatty Feat RIAA Stars @224\Office2007 Serial.txt.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Usher - Here I Stand (2008) - Rap [www.torrentazos.com]\Usher - Here I Stand (2008) - Rap [www.torrentazos.com] .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Usher - Here I Stand (2008) - Rap [www.torrentazos.com]\KasperSky6.0 Key.doc.exe Infected: Worm.Win32.Mabezat.b skipped
E:\BrainBot_v1\NokiaN73Tools.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\DRTCP021.exe Infected: Win32.Mabezat.b skipped
E:\Sources\MakeUrOwnFamilyTree.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Sources .exe Infected: Win32.Mabezat.b skipped
E:\Sources\Karaoke\(M's) The Sunfly Karaoke Collection Cdg (14 Of 26)\(M's) The Sunfly Karaoke Collection Cdg (14 Of 26) .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Karaoke\(M's) The Sunfly Karaoke Collection Cdg (14 Of 26)\Microsoft MSN.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Karaoke\(D's) The Sunfly Karaoke Collection CDG (5 of 25)\(D's) The Sunfly Karaoke Collection CDG (5 of 25) .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Karaoke\(D's) The Sunfly Karaoke Collection CDG (5 of 25)\RadioTV.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Karaoke\Karaoke .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Karaoke\Karaoke .exe Infected: Win32.Mabezat.b skipped
E:\Sources\Karaoke\Office2003 CD-Key.doc.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\MsgPlusLive-423.exe Infected: Win32.Mabezat.b skipped
E:\Sources\flashplayer6axinstaller.exe Infected: Win32.Mabezat.b skipped
E:\Sources\jre-6u3-windows-i586-p.exe Infected: Win32.Mabezat.b skipped
E:\Sources\Rarlab.WinRAR.v3.71.FiNAL.VALENCIAN.Cracked-BRAiGHTLiNG\bl-rwr371fva\bl-rwr371fva .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Rarlab.WinRAR.v3.71.FiNAL.VALENCIAN.Cracked-BRAiGHTLiNG\bl-rwr371fva\Antenna2Net.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Rarlab.WinRAR.v3.71.FiNAL.VALENCIAN.Cracked-BRAiGHTLiNG\Office2007 Serial.txt.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Itunes\iTunesSetup.exe Infected: Win32.Mabezat.b skipped
E:\Sources\Itunes\Itunes .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Itunes\Itunes .exe Infected: Win32.Mabezat.b skipped
E:\Sources\Itunes\KasperSky6.0 Key.doc.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\WinZip 8.1.exe Infected: Win32.Mabezat.b skipped
E:\Sources\Apple.QuickTime.Pro.v7.3.0.70.Multilingual.Regged-CORE\Apple.QuickTime.Pro.v7.3.0.70.Multilingual\MyDocuments.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Apple.QuickTime.Pro.v7.3.0.70.Multilingual.Regged-CORE\Apple.QuickTime.Pro.v7.3.0.70.Multilingual\MyDocuments.rar RAR: infected - 1 skipped
E:\Sources\Apple.QuickTime.Pro.v7.3.0.70.Multilingual.Regged-CORE\Apple.QuickTime.Pro.v7.3.0.70.Multilingual.Regged-CORE .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Apple.QuickTime.Pro.v7.3.0.70.Multilingual.Regged-CORE\JetAudio dump.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\daemon4111-lite-x86.exe Infected: Win32.Mabezat.b skipped
E:\Sources\YouTube FLV to AVI Converter PRO 2.0.5\setup.exe Infected: Win32.Mabezat.b skipped
E:\Sources\YouTube FLV to AVI Converter PRO 2.0.5\MKDEV TEAM CRACK\MKDEV TEAM CRACK\YouTubeFLVtoAVIconverterPro.exe Infected: Win32.Mabezat.b skipped
E:\Sources\YouTube FLV to AVI Converter PRO 2.0.5\MKDEV TEAM CRACK\MKDEV TEAM CRACK\MKDEV TEAM CRACK .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\YouTube FLV to AVI Converter PRO 2.0.5\MKDEV TEAM CRACK\MKDEV TEAM CRACK\GoogleToolbarNotifier.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\YouTube FLV to AVI Converter PRO 2.0.5\MKDEV TEAM CRACK\MKDEV TEAM CRACK .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\YouTube FLV to AVI Converter PRO 2.0.5\MKDEV TEAM CRACK\PanasonicDVD_DigitalCam.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\YouTube FLV to AVI Converter PRO 2.0.5\YouTube FLV to AVI Converter PRO 2.0.5 .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\YouTube FLV to AVI Converter PRO 2.0.5\InstallMSN11Ar.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\WLinstaller.exe Infected: Win32.Mabezat.b skipped
E:\Sources\Windows Live Installer.exe Infected: Win32.Mabezat.b skipped
E:\Sources\MP10Setup.exe Infected: Win32.Mabezat.b skipped
E:\Sources\169.21_forceware_winxp_32bit_english_whql.exe Infected: Win32.Mabezat.b skipped
E:\Sources\ATF-Cleaner.exe Infected: Win32.Mabezat.b skipped
E:\Sources\Internet.Download.Manager.5.12.With.All.Patches.MiYAN\idman512f.exe Infected: Win32.Mabezat.b skipped
E:\Sources\Internet.Download.Manager.5.12.With.All.Patches.MiYAN\IDM PATCH's AND KEYGEN's\IDM.5.12.Patch.UNREAL\backup.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Internet.Download.Manager.5.12.With.All.Patches.MiYAN\IDM PATCH's AND KEYGEN's\IDM.5.12.Patch.UNREAL\backup.rar RAR: infected - 1 skipped
E:\Sources\Internet.Download.Manager.5.12.With.All.Patches.MiYAN\IDM PATCH's AND KEYGEN's\IDM.5.12.Patch.ASTALAVISTA\IDMan.exe Infected: Win32.Mabezat.b skipped
E:\Sources\Internet.Download.Manager.5.12.With.All.Patches.MiYAN\IDM PATCH's AND KEYGEN's\IDM.5.12.Keygen.By.TCK\Keygen.exe Infected: Win32.Mabezat.b skipped
E:\Sources\Internet.Download.Manager.5.12.With.All.Patches.MiYAN\IDM PATCH's AND KEYGEN's\IDM.5.12.Keygen.By.TCK\imp_data.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Internet.Download.Manager.5.12.With.All.Patches.MiYAN\IDM PATCH's AND KEYGEN's\IDM.5.12.Keygen.By.TCK\imp_data.rar RAR: infected - 1 skipped
E:\Sources\Internet.Download.Manager.5.12.With.All.Patches.MiYAN\IDM PATCH's AND KEYGEN's\IDM PATCH's AND KEYGEN's .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Internet.Download.Manager.5.12.With.All.Patches.MiYAN\IDM PATCH's AND KEYGEN's\MyDocuments.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Internet.Download.Manager.5.12.With.All.Patches.MiYAN\IDM PATCH's AND KEYGEN's\MyDocuments.rar RAR: infected - 1 skipped
E:\Sources\Internet.Download.Manager.5.12.With.All.Patches.MiYAN\Internet.Download.Manager.5.12.With.All.Patches.MiYAN .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Internet.Download.Manager.5.12.With.All.Patches.MiYAN\InstallMSN11En.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Sources .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\VLC media player.exe Infected: Win32.Mabezat.b skipped
E:\Sources\avgas-setup-7[1].5.0.50.exe Infected: Win32.Mabezat.b skipped
E:\Sources\l2mfix.exe Infected: Win32.Mabezat.b skipped
E:\Sources\winamp532_full_emusic-7plus.exe Infected: Win32.Mabezat.b skipped
E:\Sources\Power DVD\Keygen.exe Infected: Win32.Mabezat.b skipped
E:\Sources\Power DVD\Setup.exe Infected: Win32.Mabezat.b skipped
E:\Sources\Power DVD\Power DVD .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Power DVD\Power DVD .exe Infected: Win32.Mabezat.b skipped
E:\Sources\Power DVD\Lock Folder.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\WinAVI VideoConverter 6.3 PL\myWinAVI 6.3.exe Infected: Win32.Mabezat.b skipped
E:\Sources\WinAVI VideoConverter 6.3 PL\WinAVI VideoConverter 6.3 PL.exe Infected: Win32.Mabezat.b skipped
E:\Sources\WinAVI VideoConverter 6.3 PL\RMdll\RMdll .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\WinAVI VideoConverter 6.3 PL\RMdll\windows_secrets.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\WinAVI VideoConverter 6.3 PL\RMdll\windows_secrets.rar RAR: infected - 1 skipped
E:\Sources\WinAVI VideoConverter 6.3 PL\WinAVI VideoConverter 6.3 PL .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\WinAVI VideoConverter 6.3 PL\Crack_GoogleEarthPro.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\DirectX9\DXSETUP.EXE Infected: Win32.Mabezat.b skipped
E:\Sources\DirectX9\DirectX 9.0 C\DXSETUP.EXE Infected: Win32.Mabezat.b skipped
E:\Sources\DirectX9\DirectX 9.0 C\directx_9c_redist.exe Infected: Win32.Mabezat.b skipped
E:\Sources\DirectX9\DirectX 9.0 C\DirectX 9.0 C .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\DirectX9\DirectX 9.0 C\passwords.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\DirectX9\DirectX 9.0 C\passwords.rar RAR: infected - 1 skipped
E:\Sources\DirectX9\DirectX9 .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\DirectX9\AmericanOnLine.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\MSN Messenger\MSN 7\smileys\smileys .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\MSN Messenger\MSN 7\smileys\Office2007 Serial.txt.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\MSN Messenger\MSN 7\moods\moods .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\MSN Messenger\MSN 7\moods\KasperSky6.0 Key.doc.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\MSN Messenger\MSN 7\installer\installer .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\MSN Messenger\MSN 7\installer\JetAudio dump.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\MSN Messenger\MSN 7\winks\winks .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\MSN Messenger\MSN 7\winks\InstallMSN11Ar.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\MSN Messenger\MSN 7\MSN 7 .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\MSN Messenger\MSN 7\serials.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\MSN Messenger\MSN 7\serials.rar RAR: infected - 1 skipped
E:\Sources\MSN Messenger\Winks\Winks .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\MSN Messenger\Winks\office_crack.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\MSN Messenger\Winks\office_crack.rar RAR: infected - 1 skipped
E:\Sources\MSN Messenger\MSN Stuff\Mood II Display Pictures\Mood II Display Pictures .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\MSN Messenger\MSN Stuff\Mood II Display Pictures\PanasonicDVD_DigitalCam.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\MSN Messenger\MSN Stuff\Love MSN Pack\Backgrounds\Backgrounds .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\MSN Messenger\MSN Stuff\Love MSN Pack\Backgrounds\backup.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\MSN Messenger\MSN Stuff\Love MSN Pack\Backgrounds\backup.rar RAR: infected - 1 skipped
E:\Sources\MSN Messenger\MSN Stuff\Love MSN Pack\Emoticons\Emoticons .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\MSN Messenger\MSN Stuff\Love MSN Pack\Emoticons\documents_backup.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\MSN Messenger\MSN Stuff\Love MSN Pack\Emoticons\documents_backup.rar RAR: infected - 1 skipped
E:\Sources\MSN Messenger\MSN Stuff\Love MSN Pack\Display Pictures\Display Pictures .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\MSN Messenger\MSN Stuff\Love MSN Pack\Display Pictures\imp_data.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\MSN Messenger\MSN Stuff\Love MSN Pack\Display Pictures\imp_data.rar RAR: infected - 1 skipped
E:\Sources\MSN Messenger\MSN Stuff\Love MSN Pack\Love MSN Pack .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\MSN Messenger\MSN Stuff\Love MSN Pack\GoogleToolbarNotifier.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\MSN Messenger\MSN Stuff\EmoPack V1\EmoPack V1 .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\MSN Messenger\MSN Stuff\EmoPack V1\MyDocuments.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\MSN Messenger\MSN Stuff\EmoPack V1\MyDocuments.rar RAR: infected - 1 skipped
E:\Sources\MSN Messenger\MSN Stuff\MSN Stuff .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\MSN Messenger\MSN Stuff\windows.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\MSN Messenger\MSN Stuff\windows.rar RAR: infected - 1 skipped
E:\Sources\MSN Messenger\New BlueMountain Emoticons (5 Packs Including 32 Emoticons)\WinrRarSerialInstall.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\MSN Messenger\New BlueMountain Moods (7)\New BlueMountain Moods (7) .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\MSN Messenger\New BlueMountain Moods (7)\NokiaN73Tools.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\MSN Messenger\New BlueMountain Winks (13)\New BlueMountain Winks (13) .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\MSN Messenger\New BlueMountain Winks (13)\Make Windows Original.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\MSN Messenger\New Winks (Pucca & The Ring) 7\New Winks (Pucca & The Ring) 7 .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\MSN Messenger\New Winks (Pucca & The Ring) 7\Office2003 CD-Key.doc.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\MSN Messenger\MSN Messenger .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\MSN Messenger\msjavx86.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Codecs\SLDcodecpack1.5.exe Infected: Win32.Mabezat.b skipped
E:\Sources\Codecs\sld.codec.pack.2.2.exe Infected: Win32.Mabezat.b skipped
E:\Sources\Codecs\sld.codec.pack.basic.2.1.exe Infected: Win32.Mabezat.b skipped
E:\Sources\Codecs\Codecs .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Codecs\FloppyDiskPartion.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Important files\vbrun60sp5.exe Infected: Win32.Mabezat.b skipped
E:\Sources\Important files\Important files .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Important files\HP_LaserJetAllInOneConfig.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\TempClean\TCini.exe Infected: Win32.Mabezat.b skipped
E:\Sources\TempClean\TempClean.exe Infected: Win32.Mabezat.b skipped
E:\Sources\TempClean\TempClean .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\TempClean\Microsoft Windows Network.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Mobile Stuff\Mobile Stuff .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Mobile Stuff\Adjust Time.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Bittorrent clients\bitcomet.exe Infected: Win32.Mabezat.b skipped
E:\Sources\Bittorrent clients\BitComet_0.58[www.click-now.net].exe Infected: Win32.Mabezat.b skipped
E:\Sources\Bittorrent clients\BitTornado-0.3.8-w32install.exe Infected: Win32.Mabezat.b skipped
E:\Sources\Bittorrent clients\Azureus_2.3.0.2_Win32.setup.exe Infected: Win32.Mabezat.b skipped
E:\Sources\Bittorrent clients\bitcomet_setup.exe Infected: Win32.Mabezat.b skipped
E:\Sources\Bittorrent clients\Azureus_2.5.0.0_Win32.setup.exe Infected: Win32.Mabezat.b skipped
E:\Sources\Bittorrent clients\Bittorrent clients .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Bittorrent clients\Recycle Bin.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Sharing clients\pioletsetup105.exe Infected: Win32.Mabezat.b skipped
E:\Sources\Sharing clients\Lime Wire LimeWire Pro 4.9.23\LimeWire Pro 4.9.23\LimeWireWin.exe Infected: Win32.Mabezat.b skipped
E:\Sources\Sharing clients\Lime Wire LimeWire Pro 4.9.23\LimeWire Pro 4.9.23\LimeWire Pro 4.9.23 .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Sharing clients\Lime Wire LimeWire Pro 4.9.23\LimeWire Pro 4.9.23\windows_secrets.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Sharing clients\Lime Wire LimeWire Pro 4.9.23\LimeWire Pro 4.9.23\windows_secrets.rar RAR: infected - 1 skipped
E:\Sources\Sharing clients\Lime Wire LimeWire Pro 4.9.23\Lime Wire LimeWire Pro 4.9.23 .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Sharing clients\Lime Wire LimeWire Pro 4.9.23\source.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Sharing clients\Lime Wire LimeWire Pro 4.9.23\source.rar RAR: infected - 1 skipped
E:\Sources\Sharing clients\Sharing clients .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Sharing clients\WindowsXp StartMenu Settings.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Spyware\CleanUp40.exe Infected: Win32.Mabezat.b skipped
E:\Sources\Spyware\Anti-Spyware\ie-spyad.exe Infected: Win32.Mabezat.b skipped
E:\Sources\Spyware\Anti-Spyware\Anti-Spyware .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Spyware\Anti-Spyware\passwords.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Spyware\Anti-Spyware\passwords.rar RAR: infected - 1 skipped
E:\Sources\Spyware\KillBox\KillBox .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Spyware\KillBox\serials.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Spyware\KillBox\serials.rar RAR: infected - 1 skipped
E:\Sources\Spyware\l2mfix\Ntrights.exe Infected: Win32.Mabezat.b skipped
E:\Sources\Spyware\l2mfix\Reboot.exe Infected: not-a-virus:RiskTool.Win32.Reboot.f skipped
E:\Sources\Spyware\l2mfix\RegDACL.exe Infected: Win32.Mabezat.b skipped
E:\Sources\Spyware\l2mfix\strings.exe Infected: Win32.Mabezat.b skipped
E:\Sources\Spyware\l2mfix\zip.exe Infected: Win32.Mabezat.b skipped
E:\Sources\Spyware\l2mfix\backregs\backregs .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Spyware\l2mfix\backregs\NokiaN73Tools.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Spyware\l2mfix\regfixes\regfixes .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Spyware\l2mfix\regfixes\Make Windows Original.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Spyware\l2mfix\l2mfix .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Spyware\l2mfix\office_crack.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Spyware\l2mfix\office_crack.rar RAR: infected - 1 skipped
E:\Sources\Spyware\Nailfix\Nailfix\Nailfix .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Spyware\Nailfix\Nailfix\Office2003 CD-Key.doc.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Spyware\Nailfix\Nailfix .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Spyware\Nailfix\windows.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Spyware\Nailfix\windows.rar RAR: infected - 1 skipped
E:\Sources\Spyware\CWShredder\CWShredder\cwshredder.exe Infected: Win32.Mabezat.b skipped
E:\Sources\Spyware\CWShredder\CWShredder\CWShredder .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Spyware\CWShredder\CWShredder\Office2007 Serial.txt.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Spyware\CWShredder\CWShredder .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Spyware\CWShredder\WinrRarSerialInstall.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Spyware\Spyware .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Spyware\MakeUrOwnFamilyTree.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\BLACK.AND.WHITE.2.KEYGEN-DEViANCE\dev-bw2k\keygen.exe Infected: Win32.Mabezat.b skipped
E:\Sources\BLACK.AND.WHITE.2.KEYGEN-DEViANCE\dev-bw2k\dev-bw2k .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\BLACK.AND.WHITE.2.KEYGEN-DEViANCE\dev-bw2k\KasperSky6.0 Key.doc.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\BLACK.AND.WHITE.2.KEYGEN-DEViANCE\BLACK.AND.WHITE.2.KEYGEN-DEViANCE .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\BLACK.AND.WHITE.2.KEYGEN-DEViANCE\Win98compatibleXP.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Spy\avg71free_371a669.exe Infected: Win32.Mabezat.b skipped
E:\Sources\Spy\ewido-setup.exe Infected: Win32.Mabezat.b skipped
E:\Sources\Spy\Microsoft AntiSpyware 2006 Upgrade\MicrosoftAntiSpyware Newest Upgrade (2006).exe Infected: Win32.Mabezat.b skipped
E:\Sources\Spy\Microsoft AntiSpyware 2006 Upgrade\Microsoft AntiSpyware 2006 Upgrade .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Spy\Microsoft AntiSpyware 2006 Upgrade\JetAudio dump.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Spy\Spy .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Spy\Spy .exe Infected: Win32.Mabezat.b skipped
E:\Sources\Spy\LockWindowsPartition.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\ImTOO iPod Movie Converter 2.1\ipod-movie-converter.exe Infected: Win32.Mabezat.b skipped
E:\Sources\ImTOO iPod Movie Converter 2.1\ImTOO iPod Movie Converter 2.1 .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\ImTOO iPod Movie Converter 2.1\BrowseAllUsers.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Azureus_2.4.0.0_Win32.setup.exe Infected: Win32.Mabezat.b skipped
E:\Sources\Azureus_2.4.0.2_Win32.setup.exe Infected: Win32.Mabezat.b skipped
E:\Sources\FamilyGuy_XtremeDesktop_Setup\FamilyGuy_XtremeDesktop_Setup\FamilyGuy_XtremeDesktop_Setup.exe Infected: Win32.Mabezat.b skipped
E:\Sources\FamilyGuy_XtremeDesktop_Setup\FamilyGuy_XtremeDesktop_Setup\FamilyGuy_XtremeDesktop_Setup .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\FamilyGuy_XtremeDesktop_Setup\FamilyGuy_XtremeDesktop_Setup\InstallMSN11Ar.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\FamilyGuy_XtremeDesktop_Setup\FamilyGuy_XtremeDesktop_Setup .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\FamilyGuy_XtremeDesktop_Setup\ShowDesktop.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\nouf-R.exe Infected: Win32.Mabezat.b skipped
E:\Sources\sdsetup.exe Infected: Win32.Mabezat.b skipped
E:\Sources\LimeWire PRO Version 4.12.6\LimeWire4.12.6Win\LimeWire4.12.6Win.exe Infected: Win32.Mabezat.b skipped
E:\Sources\LimeWire PRO Version 4.12.6\LimeWire4.12.6Win\LimeWire4.12.6Win .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\LimeWire PRO Version 4.12.6\LimeWire4.12.6Win\InstallMSN11En.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\LimeWire PRO Version 4.12.6\LimeWire PRO Version 4.12.6 .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\LimeWire PRO Version 4.12.6\CD Burner.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\wmp11-windowsxp-x86-enu.exe Infected: Win32.Mabezat.b skipped
E:\Sources\TOEFL IBT CD1&CD2\TOEFL IBT CD1&CD2 .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\TOEFL IBT CD1&CD2\Disk Defragmenter.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\wmp11-windowsxp-x86-enu\umdf.exe Infected: Win32.Mabezat.b skipped
E:\Sources\wmp11-windowsxp-x86-enu\wmfdist11.exe Infected: Win32.Mabezat.b skipped
E:\Sources\wmp11-windowsxp-x86-enu\wmp11.exe Infected: Win32.Mabezat.b skipped
E:\Sources\wmp11-windowsxp-x86-enu\wmp11-windowsxp-x86-enu .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\wmp11-windowsxp-x86-enu\RecycleBinProtect.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Folder Lock 5.2.6 With [Serial]\Folder Lock 5.2.6 With [Serial] .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Folder Lock 5.2.6 With [Serial]\FaxSend.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\cixX3.exe Infected: Win32.Mabezat.b skipped
E:\Sources\Internet explorer 7+ CRACK in FOUR STEPS 100 % WOrking\Internet explorer 7+ CRACK in FOUR STEPS 100 % WOrking .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Internet explorer 7+ CRACK in FOUR STEPS 100 % WOrking\Windows Keys Secrets.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\avgas-setup-7.5.1.43.exe Infected: Win32.Mabezat.b skipped
E:\Sources\avg75free_476a1048.exe Infected: Win32.Mabezat.b skipped
E:\Sources\Azureus_2.5.0.4a_Win32.setup.exe Infected: Win32.Mabezat.b skipped
E:\Sources\karafun_116a.exe Infected: Win32.Mabezat.b skipped
E:\Sources\WinRAR.v3.70.Incl.Keymaker.And.Patch-CORE\cr-wr370\wrar370.exe Infected: Win32.Mabezat.b skipped
E:\Sources\WinRAR.v3.70.Incl.Keymaker.And.Patch-CORE\cr-wr370\cr-wr370 .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\WinRAR.v3.70.Incl.Keymaker.And.Patch-CORE\cr-wr370\Lock Folder.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\WinRAR.v3.70.Incl.Keymaker.And.Patch-CORE\WinRAR.v3.70.Incl.Keymaker.And.Patch-CORE .exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\WinRAR.v3.70.Incl.Keymaker.And.Patch-CORE\IDE Conector P2P.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\AVSVideotoArchos.exe Infected: Win32.Mabezat.b skipped
E:\Sources\SkypeSetup.exe Infected: Win32.Mabezat.b skipped
E:\Sources\Windows.Media.Player.11.Final_+_VALIDATION.CRACK-SystemGhost\Windows.Media.Player.11-SystemGhost\InstallMSN11En.exe Infected: Worm.Win32.Mabezat.b skipped
E:\Sources\Windows.Media.Player.11.Final_+_VALIDATION.CRACK-SystemGhost\Sony Erikson DigitalCam.exe Infected: Worm.Win32.Mabezat.b skipped
F:\autorun.inf Infected: Worm.Win32.Mabezat.b skipped
F:\Books\13.Hypnosis.Ebooks\13.Hypnosis.Ebooks .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Books\13.Hypnosis.Ebooks\LockWindowsPartition.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Books\Books .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Books\Illegal_Collection\CD Burner.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Books\Illegal_Collection\Illegal_Collection .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Books\Poker for Dummies\Poker for Dummies .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Books\Poker for Dummies\RecycleBinProtect.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Books\Remember.Every.Thing.You.Read\FaxSend.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Books\Remember.Every.Thing.You.Read\Remember.Every.Thing.You.Read .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Heba\Heba .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Heba\imp_data.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Heba\imp_data.rar RAR: infected - 1 skipped
F:\Educational\Heba\Photoshop.Top.Secret-DOCS\DVD Covers and Labels\DVD Covers\DVD Covers .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Heba\Photoshop.Top.Secret-DOCS\DVD Covers and Labels\DVD Covers\msjavx86.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Heba\Photoshop.Top.Secret-DOCS\DVD Covers and Labels\DVD Covers and Labels .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Heba\Photoshop.Top.Secret-DOCS\DVD Covers and Labels\DVD Labels\DVD Labels .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Heba\Photoshop.Top.Secret-DOCS\DVD Covers and Labels\DVD Labels\Microsoft Windows Network.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Heba\Photoshop.Top.Secret-DOCS\DVD Covers and Labels\JetAudio dump.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Heba\Photoshop.Top.Secret-DOCS\DVD1\DVD1 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Heba\Photoshop.Top.Secret-DOCS\DVD1\InstallMSN11En.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Heba\Photoshop.Top.Secret-DOCS\DVD2\Crack_GoogleEarthPro.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Heba\Photoshop.Top.Secret-DOCS\DVD2\DVD2 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Heba\Photoshop.Top.Secret-DOCS\NokiaN73Tools.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Heba\Photoshop.Top.Secret-DOCS\Photoshop.Top.Secret-DOCS .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\A Course in Mathematics For Students in Engineering\Adjust Time.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library A-E\Aerodynamics & Flight Mechanics\Aerodynamics & Flight Mechanics .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library A-E\Aerodynamics & Flight Mechanics\ShowDesktop.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library A-E\Aerospace Design\Aerospace Design .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library A-E\Aerospace Design\CD Burner.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library A-E\Aerospace Propulsion\Aerospace Propulsion .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library A-E\Aerospace Propulsion\Disk Defragmenter.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library A-E\CAD\CAD .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library A-E\CAD\RecycleBinProtect.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library A-E\Civil Eng\Civil Eng .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library A-E\Civil Eng\FaxSend.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library A-E\Composites, Plastics & Adhesives\Composites, Plastics & Adhesives .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library A-E\Composites, Plastics & Adhesives\Windows Keys Secrets.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library A-E\Computational & Numerical Methods\Computational & Numerical Methods .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library A-E\Computational & Numerical Methods\IDE Conector P2P.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineer
  • 0

#6
Hussam Magdy

Hussam Magdy

    Member

  • Topic Starter
  • Member
  • PipPip
  • 37 posts
rest of report


F:\Educational\Hussam\Engineers Library A-E\Computational & Numerical Methods\Computational & Numerical Methods .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library A-E\Computational & Numerical Methods\IDE Conector P2P.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library A-E\Computational & Numerical Methods\TeX & LISP\TeX & LISP .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library A-E\Computational & Numerical Methods\TeX & LISP\WinrRarSerialInstall.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library A-E\Control Systems & Analysis\Control Systems & Analysis .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library A-E\Control Systems & Analysis\Sony Erikson DigitalCam.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library A-E\Dictionary\Dictionary .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library A-E\Dictionary\Microsoft MSN.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library A-E\Electrical & Electronic Eng\Electrical & Electronic Eng .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library A-E\Electrical & Electronic Eng\RadioTV.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library A-E\Electrical & Electronic Eng\Unknown - Electromagnetism Lectures\NokiaN73Tools.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library A-E\Encyclopedia\Antenna2Net.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library A-E\Encyclopedia\Encyclopedia .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library A-E\Engineering Formulae & Data\Engineering Formulae & Data .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library A-E\Engineering Formulae & Data\PanasonicDVD_DigitalCam.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library A-E\Engineers Library A-E .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library A-E\Environmental Engineering\Environmental Engineering .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library A-E\Environmental Engineering\GoogleToolbarNotifier.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library A-E\Experimentation & Testing\Experimentation & Testing .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library A-E\Experimentation & Testing\MyDocuments.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library A-E\Experimentation & Testing\MyDocuments.rar RAR: infected - 1 skipped
F:\Educational\Hussam\Engineers Library A-E\Recycle Bin.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Engineers Library F-Z\documents_backup.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Engineers Library F-Z\documents_backup.rar RAR: infected - 1 skipped
F:\Educational\Hussam\Engineers Library F-Z\Engineers Library F-Z\Engineers Library F-Z .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Engineers Library F-Z\FEA & CFD\FEA & CFD .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Engineers Library F-Z\FEA & CFD\FloppyDiskPartion.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Engineers Library F-Z\Fluid Mechanics\Fluid Mechanics .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Engineers Library F-Z\Fluid Mechanics\HP_LaserJetAllInOneConfig.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Engineers Library F-Z\Manufacturing\Manufacturing .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Engineers Library F-Z\Manufacturing\Microsoft Windows Network.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Engineers Library F-Z .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Fatigue & Fracture Mechanics\Fatigue & Fracture Mechanics .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Fatigue & Fracture Mechanics\imp_data.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Fatigue & Fracture Mechanics\imp_data.rar RAR: infected - 1 skipped
F:\Educational\Hussam\Engineers Library F-Z\FEA & CFD\FEA & CFD .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\FEA & CFD\source.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\FEA & CFD\source.rar RAR: infected - 1 skipped
F:\Educational\Hussam\Engineers Library F-Z\FEA & CFD\The Finite Element Method Using Matlab 2nd Ed\WinrRarSerialInstall.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Fluid Mechanics\Fluid Mechanics .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Fluid Mechanics\Foundations of fluid mechanics\Foundations of fluid mechanics .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Fluid Mechanics\Foundations of fluid mechanics\Sony Erikson DigitalCam.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Fluid Mechanics\Fundamentals of Computational Fluid Dynamics\Microsoft MSN.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Fluid Mechanics\windows_secrets.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Fluid Mechanics\windows_secrets.rar RAR: infected - 1 skipped
F:\Educational\Hussam\Engineers Library F-Z\HVAC\Glicksman - Fundamentals of Energy in Buildings [1997]\RadioTV.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\HVAC\HVAC .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\HVAC\passwords.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\HVAC\passwords.rar RAR: infected - 1 skipped
F:\Educational\Hussam\Engineers Library F-Z\HVAC\US Air Force courses - HVAC\Antenna2Net.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\HVAC\US Air Force courses - HVAC\US Air Force courses - HVAC .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Hydraulic & Pneumatic\Hydraulic & Pneumatic .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Hydraulic & Pneumatic\serials.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Hydraulic & Pneumatic\serials.rar RAR: infected - 1 skipped
F:\Educational\Hussam\Engineers Library F-Z\Manufacturing\Manufacturing .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Manufacturing\office_crack.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Manufacturing\office_crack.rar RAR: infected - 1 skipped
F:\Educational\Hussam\Engineers Library F-Z\Mathematics\Mathematics .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Mathematics\windows.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Mathematics\windows.rar RAR: infected - 1 skipped
F:\Educational\Hussam\Engineers Library F-Z\Mechanical Analysis & Design\FAG Bearings\FAG Bearings .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Mechanical Analysis & Design\FAG Bearings\lubrication\GoogleToolbarNotifier.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Mechanical Analysis & Design\FAG Bearings\lubrication\lubrication .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Mechanical Analysis & Design\FAG Bearings\mounting\mounting .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Mechanical Analysis & Design\FAG Bearings\mounting\MyDocuments.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Mechanical Analysis & Design\FAG Bearings\mounting\MyDocuments.rar RAR: infected - 1 skipped
F:\Educational\Hussam\Engineers Library F-Z\Mechanical Analysis & Design\FAG Bearings\PanasonicDVD_DigitalCam.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Mechanical Analysis & Design\Mechanical Analysis & Design .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Mechanical Analysis & Design\WinrRarSerialInstall.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Mechanics & Science of Materials\Mechanics & Science of Materials .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Mechanics & Science of Materials\NokiaN73Tools.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Mechanics - Statics & Dynamics\Make Windows Original.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Mechanics - Statics & Dynamics\Mechanics - Statics & Dynamics .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Mechatronics\Mechatronics .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Mechatronics\Office2003 CD-Key.doc.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Problems & Solutions\Office2007 Serial.txt.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Problems & Solutions\Problems & Solutions .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Problems & Solutions\Wankat & Oreovicz - Teaching Engineering\NokiaN73Tools.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Shock & Vibration\InstallMSN11Ar.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Shock & Vibration\Shock & Vibration .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Software\InstallMSN11En.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Software\Software .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Software Eng\Lock Folder.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Software Eng\Software Eng .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Standards\ASME-ANSI-AWS\ASME-ANSI-AWS .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Standards\ASME-ANSI-AWS\ShowDesktop.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Standards\Crack_GoogleEarthPro.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Standards\Eurocode\CD Burner.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Standards\Eurocode\Eurocode .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Standards\FAA\Disk Defragmenter.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Standards\FAA\FAA .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Standards\Standards .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Standards\US Military Standards\RecycleBinProtect.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Standards\US Military Standards\US Military Standards .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Systems Eng\AmericanOnLine.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Systems Eng\Systems Eng .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Thermodynamics\msjavx86.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\Thermodynamics\Thermodynamics .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Engineers Library F-Z\WindowsXp StartMenu Settings.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Handbook Of Chemistry & Physics\data\data .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Handbook Of Chemistry & Physics\data\FaxSend.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Handbook Of Chemistry & Physics\Handbook Of Chemistry & Physics .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Handbook Of Chemistry & Physics\MakeUrOwnFamilyTree.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Handbook Of Chemistry & Physics\pdf\pdf .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Handbook Of Chemistry & Physics\pdf\Windows Keys Secrets.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Handbook Of Chemistry & Physics\software\crchpc.exe Infected: Win32.Mabezat.b skipped
F:\Educational\Hussam\Handbook Of Chemistry & Physics\software\IDE Conector P2P.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Handbook Of Chemistry & Physics\software\psi.exe Infected: Win32.Mabezat.b skipped
F:\Educational\Hussam\Handbook Of Chemistry & Physics\software\software .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Handbook Of Chemistry & Physics\software\template\Sony Erikson DigitalCam.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Handbook Of Chemistry & Physics\software\template\template .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Hussam .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\art\art .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\art\MyDocuments.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\art\MyDocuments.rar RAR: infected - 1 skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\data .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\help\backup.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\help\backup.rar RAR: infected - 1 skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\help\help .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\Microsoft MSN.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap00\chap00 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap00\source.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap00\source.rar RAR: infected - 1 skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap01\chap01 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap01\windows_secrets.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap01\windows_secrets.rar RAR: infected - 1 skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap02\chap02 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap02\passwords.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap02\passwords.rar RAR: infected - 1 skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap03\chap03 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap03\serials.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap03\serials.rar RAR: infected - 1 skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap04\chap04 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap04\office_crack.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap04\office_crack.rar RAR: infected - 1 skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap05\chap05 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap05\windows.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap05\windows.rar RAR: infected - 1 skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap06\chap06 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap06\WinrRarSerialInstall.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap07\chap07 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap07\NokiaN73Tools.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap08\chap08 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap08\Make Windows Original.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap09\chap09 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap09\Office2003 CD-Key.doc.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap10\chap10 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap10\Office2007 Serial.txt.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap11\chap11 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap11\KasperSky6.0 Key.doc.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap12\chap12 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap12\JetAudio dump.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap13\chap13 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap13\InstallMSN11Ar.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap14\chap14 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap14\InstallMSN11En.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap15\chap15 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap15\Lock Folder.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap16\chap16 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap16\Crack_GoogleEarthPro.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap17\AmericanOnLine.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap17\chap17 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap18\chap18 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap18\msjavx86.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap19\chap19 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap19\FloppyDiskPartion.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap20\chap20 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap20\HP_LaserJetAllInOneConfig.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap21\chap21 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap21\Microsoft Windows Network.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap22\Adjust Time.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap22\chap22 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap23\chap23 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap23\Recycle Bin.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\documents_backup.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\documents_backup.rar RAR: infected - 1 skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\movies .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\os9\imp_data.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\os9\imp_data.rar RAR: infected - 1 skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\os9\os9 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\exercise files\01_Getting_Started\01_Getting_Started .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\exercise files\01_Getting_Started\Make Windows Original.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\exercise files\02_Setting_Up_Excel_2007\FloppyDiskPartion.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\exercise files\03_Modifying_Worksheets\JetAudio dump.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\exercise files\04_Basic_Formatting\04_Basic_Formatting .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\exercise files\04_Basic_Formatting\Office2003 CD-Key.doc.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\exercise files\05_Advanced_Formatting\KasperSky6.0 Key.doc.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\exercise files\06_Using_Templates\06_Using_Templates .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\exercise files\06_Using_Templates\Office2007 Serial.txt.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\exercise files\07_Managing_Tables\07_Managing_Tables .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\exercise files\07_Managing_Tables\KasperSky6.0 Key.doc.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\exercise files\08_Reviewing_Worksheet\JetAudio dump.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\exercise files\09_Sharing_Worksheet\09_Sharing_Worksheet .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\exercise files\09_Sharing_Worksheet\InstallMSN11Ar.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\exercise files\10_Printing_Workbooks\InstallMSN11En.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\exercise files\11_Enhancing_Worksheets\Lock Folder.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\exercise files\12_Manipulating_Screen_Display\Lock Folder.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\exercise files\13_Using_Templates\13_Using_Templates .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\exercise files\13_Using_Templates\Crack_GoogleEarthPro.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\exercise files\14_Importing_Exporting_Data\AmericanOnLine.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\exercise files\15_Find_Replace_Data\15_Find_Replace_Data .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\exercise files\15_Find_Replace_Data\msjavx86.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\exercise files\16_Formulas\16_Formulas .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\exercise files\16_Formulas\WindowsXp StartMenu Settings.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\exercise files\17_Basic_Functions\17_Basic_Functions .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\exercise files\17_Basic_Functions\MakeUrOwnFamilyTree.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\exercise files\18_Advanced_Functions\Win98compatibleXP.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\exercise files\19_Charts\19_Charts .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\exercise files\19_Charts\LockWindowsPartition.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\exercise files\20_Pivot_Tables\20_Pivot_Tables .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\exercise files\20_Pivot_Tables\BrowseAllUsers.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\exercise files\21_Macros\21_Macros .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\exercise files\21_Macros\ShowDesktop.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\exercise files\22_Workflow_in_Excel\22_Workflow_in_Excel .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\exercise files\22_Workflow_in_Excel\CD Burner.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\exercise files\exercise files .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\exercise files\RadioTV.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\FullScreenMode.exe Infected: Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\Lynda.com - Excel 2007 Essential Training .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\Mac GUI\Antenna2Net.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\Mac GUI\Mac GUI .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\QuickTime\PanasonicDVD_DigitalCam.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\QuickTime\QuickTime .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\Win98compatibleXP.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\WindowMode.exe Infected: Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\Xtras\GoogleToolbarNotifier.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\Xtras\Xtras .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\art\art .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\art\Sony Erikson DigitalCam.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\data .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\Disk Defragmenter.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\help\help .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\help\Microsoft MSN.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap00\chap00 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap00\PanasonicDVD_DigitalCam.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap01\chap01 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap01\GoogleToolbarNotifier.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap02\chap02 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap02\MyDocuments.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap02\MyDocuments.rar RAR: infected - 1 skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap03\backup.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap03\backup.rar RAR: infected - 1 skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap03\chap03 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap04\chap04 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap04\documents_backup.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap04\documents_backup.rar RAR: infected - 1 skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap05\chap05 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap05\imp_data.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap05\imp_data.rar RAR: infected - 1 skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap06\chap06 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap06\source.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap06\source.rar RAR: infected - 1 skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap07\chap07 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap07\windows_secrets.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap07\windows_secrets.rar RAR: infected - 1 skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap08\chap08 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap08\passwords.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap08\passwords.rar RAR: infected - 1 skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap09\chap09 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap09\serials.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap09\serials.rar RAR: infected - 1 skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap10\chap10 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap10\office_crack.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap10\office_crack.rar RAR: infected - 1 skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap11\chap11 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap11\windows.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap11\windows.rar RAR: infected - 1 skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap12\chap12 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap12\WinrRarSerialInstall.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap13\chap13 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap13\NokiaN73Tools.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap14\chap14 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap14\Make Windows Original.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap15\chap15 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap15\Office2003 CD-Key.doc.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap16\chap16 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap16\Office2007 Serial.txt.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap17\chap17 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap17\KasperSky6.0 Key.doc.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap18\chap18 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap18\JetAudio dump.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap19\chap19 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap19\InstallMSN11Ar.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap20\chap20 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap20\InstallMSN11En.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\movies .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\RadioTV.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\os9\Antenna2Net.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\os9\os9 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\exercise files .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson01\Lesson01 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson01\Lock Folder.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson02\Crack_GoogleEarthPro.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson02\Job_Posting.doc .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson02\Lesson02 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson03\AmericanOnLine.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson03\Lesson03 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson04\Lesson04 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson04\msjavx86.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson05\FloppyDiskPartion.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson05\Lesson05 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson06\HP_LaserJetAllInOneConfig.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson06\Lesson06 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson07\Lesson07 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson07\Microsoft Windows Network.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson08\Adjust Time.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson08\Lesson08 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson09\Lesson09 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson09\Recycle Bin.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson10\Lesson10 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson10\WindowsXp StartMenu Settings.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson11\Lesson11 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson11\MakeUrOwnFamilyTree.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson12\Lesson12 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson12\Win98compatibleXP.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson13\Lesson13 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson13\LockWindowsPartition.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson14\BrowseAllUsers.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson14\Lesson14 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson15\Lesson15 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson15\ShowDesktop.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson16\CD Burner.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson16\Lesson16 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson17\Disk Defragmenter.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson17\Lesson17 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson18\Lesson18 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson18\Newsletter18a.doc .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson18\Newsletter18b.doc .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson18\Newsletter18c.doc .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson18\Newsletter18d.doc .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson18\Newsletter18e.doc .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson18\RecycleBinProtect.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson19\FaxSend.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson19\Lesson19 .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson19\recipe_book19a.doc .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson19\recipe_book19b.doc .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\RecycleBinProtect.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\FullScreenMode.exe Infected: Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\LockWindowsPartition.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\Lynda.com - Word 2007 Essential Training .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\Mac GUI\FaxSend.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\Mac GUI\Mac GUI .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\QuickTime\QuickTime .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\QuickTime\Windows Keys Secrets.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\WindowMode.exe Infected: Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\Xtras\IDE Conector P2P.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Lynda.com - Word 2007 Essential Training\Xtras\Xtras .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Mechanical Engineering\AdbeRdr70_enu_full.exe Infected: Win32.Mabezat.b skipped
F:\Educational\Hussam\Mechanical Engineering\Books\Books .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Mechanical Engineering\Books\Windows Keys Secrets.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Mechanical Engineering\BrowseAllUsers.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Mechanical Engineering\Cast lab1.doc .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Mechanical Engineering\Documents\Documents .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Mechanical Engineering\Documents\IDE Conector P2P.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Mechanical Engineering\LaunchU3.exe Infected: Win32.Mabezat.b skipped
F:\Educational\Hussam\Mechanical Engineering\Mechanical Engineering .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Mechanical Engineering\Molding\Molding .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Mechanical Engineering\Molding\Molding.doc .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Mechanical Engineering\Molding\Sony Erikson DigitalCam.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Mechanical Engineering\SteamTab\Microsoft MSN.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Mechanical Engineering\SteamTab\SteamTab .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Mechanical Engineering\SteamTab\SteamTab.exe Infected: Win32.Mabezat.b skipped
F:\Educational\Hussam\Mechanical Engineering\System\Apps\79EB5C19-AB0E-4dd7-BE89-BF96301D35Z8\Data\Data .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Mechanical Engineering\System\Apps\79EB5C19-AB0E-4dd7-BE89-BF96301D35Z8\Data\GoogleToolbarNotifier.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Mechanical Engineering\System\Apps\79EB5C19-AB0E-4dd7-BE89-BF96301D35Z8\Exec\Exec .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Mechanical Engineering\System\Apps\79EB5C19-AB0E-4dd7-BE89-BF96301D35Z8\Exec\MyDocuments.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Mechanical Engineering\System\Apps\79EB5C19-AB0E-4dd7-BE89-BF96301D35Z8\Exec\MyDocuments.rar RAR: infected - 1 skipped
F:\Educational\Hussam\Mechanical Engineering\System\Apps\79EB5C19-AB0E-4dd7-BE89-BF96301D35Z8\PanasonicDVD_DigitalCam.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Mechanical Engineering\System\Apps\Antenna2Net.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Mechanical Engineering\System\Apps\Apps .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Mechanical Engineering\System\RadioTV.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\Mechanical Engineering\System\System .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\source.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Hussam\source.rar RAR: infected - 1 skipped
F:\Educational\Office2007 Serial.txt.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Style XP v3.19 - Female + Male (full)+1000 Themes +1000 Boot Screens +1000 Walls\passwords.rar/Documents and Settings/MyDocuments/Readme.doc .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Educational\Style XP v3.19 - Female + Male (full)+1000 Themes +1000 Boot Screens +1000 Walls\passwords.rar RAR: infected - 1 skipped
F:\Emulators\Emulators .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Emulators\JetAudio dump.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Movies\InstallMSN11Ar.exe
  • 0

#7
Hussam Magdy

Hussam Magdy

    Member

  • Topic Starter
  • Member
  • PipPip
  • 37 posts
F:\Movies\Movies .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Music\Lock Folder.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Music\Music .exe Infected: Worm.Win32.Mabezat.b skipped
F:\Recycled\AmericanOnLine.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Recycled\Recycled .exe Infected: Worm.Win32.Mabezat.b skipped
F:\RECYCLER\HP_LaserJetAllInOneConfig.exe Infected: Worm.Win32.Mabezat.b skipped
F:\RECYCLER\RECYCLER .exe Infected: Worm.Win32.Mabezat.b skipped
F:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped
F:\Teach.Me.Piano.Deluxe\Adjust Time.exe Infected: Worm.Win32.Mabezat.b skipped
F:\Teach.Me.Piano.Deluxe\Teach.Me.Piano.Deluxe .exe Infected: Worm.Win32.Mabezat.b skipped
F:\VA_-_UEFA_Euro_2008_Soundtrack-2008-FRESH\MakeUrOwnFamilyTree.exe Infected: Worm.Win32.Mabezat.b skipped
F:\VA_-_UEFA_Euro_2008_Soundtrack-2008-FRESH\VA_-_UEFA_Euro_2008_Soundtrack-2008-FRESH .exe Infected: Worm.Win32.Mabezat.b skipped
F:\VIDEO_TS\VIDEO_TS .exe Infected: Worm.Win32.Mabezat.b skipped
F:\VIDEO_TS\WinrRarSerialInstall.exe Infected: Worm.Win32.Mabezat.b skipped
F:\zPharaoh.exe Infected: Worm.Win32.Mabezat.b skipped

Scan process completed.
  • 0

#8
RatHat

RatHat

    Ex Malware Expert

  • Expert
  • 7,829 posts
OK, what we will do now is to see if we can delete all the infected files that have been found by Kaspersky. The side effect of doing this is that we have to delete a lot of files that are needed to run programs, so you may have to reinstall some essential programs just to be able to access this site.

Please download OTMoveIt2 by OldTimer.
  • Save it to your desktop.
  • Double-click OTMoveIt2.exe to run it.
Copy the file paths below to the clipboard by highlighting ALL of them and pressing CTRL + C (or, after highlighting, right-click and choose copy):<b>[color="red"]


LIST TOO LONG ATTACHED IN POST BELOW
  • 0

#9
RatHat

RatHat

    Ex Malware Expert

  • Expert
  • 7,829 posts
As the list of files was too long to post, I have attached it below.



Download the list to your desktop, then open it and Copy All file paths by using Ctrl + A to highlight All, then Ctrl + C to Copy all.

Open OTMoveIt2.exe then right click on the "Paste List of Files/Folders to be moved" window and choose Paste.
  • Click the red Moveit! button.
  • Open Notepad, and copy everything in the Results window to the clipboard by highlighting ALL of them and pressing CTRL + C (or, after highlighting, right-click and choose copy).
  • Save the Notepad file to your Desktop as OTM.txt.
  • Close OTMoveIt
Note: If a file or folder cannot be moved immediately you may be asked to reboot the machine to finish the move process. If you are asked to reboot the machine choose Yes.

Please include the contents of OTM.txt in your next reply.

Regards,
RatHat
  • 0

#10
Hussam Magdy

Hussam Magdy

    Member

  • Topic Starter
  • Member
  • PipPip
  • 37 posts
I attached the text u wanted ... The files that says "file not found" are actually THERE ... they have a folder icon but exe extension ...

Attached Files

  • Attached File  OTM.txt   74.29KB   259 downloads

  • 0

Advertisements


#11
RatHat

RatHat

    Ex Malware Expert

  • Expert
  • 7,829 posts
OK, well that's a start.

Please download ATF Cleaner by Atribune.Double-click ATF-Cleaner.exe to run the program.
Under Main choose: Select All
Click the Empty Selected button.
If you use Firefox browserClick Firefox at the top and choose: Select All
Click the Empty Selected button.
NOTE: If you would like to keep your saved passwords, please click No at the prompt.
If you use Opera browserClick Opera at the top and choose: Select All
Click the Empty Selected button.
NOTE: If you would like to keep your saved passwords, please click No at the prompt.
Click Exit on the Main menu to close the program.
For Technical Support, double-click the e-mail address located at the bottom of each menu.

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~


Please read this Combofix tutorial before continuing, then follow the instructions below.

Please ensure you read this guide carefully and install the Recovery Console first.

Next, download ComboFix from Here or Here to your Desktop.

Go to Microsoft's website => http://support.microsoft.com/kb/310994
Select the download that's appropriate for your Operating System.

Posted Image

Download the file & save it as it's originally named, next to ComboFix.exe.

Posted Image

Now close all open windows and programs, then drag the setup package onto ComboFix.exe and drop it. Follow the prompts to start ComboFix and when prompted, agree to the End-User License Agreement to install the Microsoft Recovery Console.

The Windows Recovery Console will allow you to boot up into a special recovery (repair) mode. This allows us to more easily help you should your computer have a problem after an attempted removal of malware. It is a simple procedure that will only take a few moments of your time.

Once installed, you should see a blue screen prompt that says:

The Recovery Console was successfully installed.

Please continue as follows:
  • Close/disable all anti virus and anti malware programs so they do not interfere with the running of ComboFix.
  • Click Yes to allow ComboFix to continue scanning for malware.
When the tool is finished, it will produce a report for you. Save this log to your desktop as Combofix.txt and post it in your next reply.

(Note: Combofix will also save the report to C:\Combofix.txt)

Regards,
RatHat
  • 0

#12
Hussam Magdy

Hussam Magdy

    Member

  • Topic Starter
  • Member
  • PipPip
  • 37 posts
Attached file contains wanted text :) thx for ur patience so far ...


ComboFix 08-05-27.4 - Hussamofe 2008-05-28 14:58:44.1 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.2.1252.1.1033.18.303 [GMT 3:00]
Running from: C:\Documents and Settings\Hussamofe\Desktop\ComboFix.exe
Command switches used :: C:\Documents and Settings\Hussamofe\Desktop\WindowsXP-KB310994-SP2-Pro-BootDisk-ENU.exe
* Created a new restore point
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

C:\Documents and Settings\Hussamofe\Application Data\tazebama
C:\Documents and Settings\Hussamofe\Application Data\tazebama\tazebama.log
C:\Documents and Settings\Hussamofe\Application Data\tazebama\zPharaoh.dat
C:\Documents and Settings\tazebama.dll
C:\WINDOWS\Downloaded Program Files\setup.inf
F:\RECYCLER\RECYCLER .exe

.
((((((((((((((((((((((((( Files Created from 2008-04-28 to 2008-05-28 )))))))))))))))))))))))))))))))
.

2008-05-28 11:11 . 2008-05-28 11:11 <DIR> d-------- C:\_OTMoveIt
2008-05-28 07:29 . 2008-05-28 07:29 <DIR> d-------- C:\WINDOWS\system32\Kaspersky Lab
2008-05-28 07:29 . 2008-05-28 07:29 <DIR> d-------- C:\WINDOWS\LastGood
2008-05-28 07:29 . 2008-05-28 07:29 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Kaspersky Lab
2008-05-25 07:27 . 2008-05-25 07:27 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\sentinel
2008-05-25 07:22 . 2008-05-25 07:56 <DIR> d-------- C:\WINDOWS\system32\PAV
2008-05-25 07:22 . 2008-05-25 07:22 <DIR> d--h----- C:\Program Files\InstallShield Installation Information
2008-05-25 07:22 . 2007-06-06 12:43 83,640 --a------ C:\WINDOWS\system32\drivers\pavdrv51.sys
2008-05-25 07:22 . 2007-03-15 18:38 54,832 --a------ C:\WINDOWS\system32\pavcpl.cpl
2008-05-25 07:22 . 2007-02-15 20:02 50,736 --a------ C:\WINDOWS\system32\avldr.dll
2008-05-25 07:22 . 2008-05-25 07:22 248 --a------ C:\WINDOWS\system32\PavCPL.dat
2008-05-23 06:30 . 2001-08-23 18:00 66,082 --a--c--- C:\WINDOWS\system32\dllcache\c_10021.nls
2008-05-23 06:22 . 2008-05-23 06:22 <DIR> d-------- C:\Program Files\Trend Micro
2008-05-22 13:44 . 2008-05-22 13:44 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Kaspersky Lab Setup Files
2008-05-22 12:52 . 2008-05-25 09:18 <DIR> d-------- C:\Program Files\Panda Security
2008-05-22 12:44 . 2008-05-25 09:15 <DIR> d-------- C:\Program Files\SUPERAntiSpyware
2008-05-22 12:44 . 2008-05-22 12:44 <DIR> d-------- C:\Documents and Settings\Hussamofe\Application Data\SUPERAntiSpyware.com
2008-05-22 12:44 . 2008-05-22 12:44 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com
2008-05-22 12:37 . 2008-05-22 12:37 <DIR> d-------- C:\Program Files\Malwarebytes' Anti-Malware
2008-05-22 12:37 . 2008-05-22 12:37 <DIR> d-------- C:\Program Files\Common Files\Download Manager
2008-05-22 12:37 . 2008-05-22 12:37 <DIR> d-------- C:\Documents and Settings\Hussamofe\Application Data\Malwarebytes
2008-05-22 12:37 . 2008-05-22 12:37 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2008-05-22 12:37 . 2008-05-05 20:46 27,048 --a------ C:\WINDOWS\system32\drivers\mbamcatchme.sys
2008-05-22 12:37 . 2008-05-05 20:46 15,864 --a------ C:\WINDOWS\system32\drivers\mbam.sys
2008-05-21 16:07 . 2004-08-03 23:08 25,600 --a------ C:\WINDOWS\system32\drivers\usbser.sys
2008-05-21 16:07 . 2004-08-03 23:08 25,600 --a--c--- C:\WINDOWS\system32\dllcache\usbser.sys
2008-05-21 16:04 . 2008-05-21 16:04 0 --ah----- C:\WINDOWS\system32\drivers\MsftWdf_Kernel_01005_Coinstaller_Critical.Wdf
2008-05-21 16:04 . 2008-05-21 16:04 0 --ah----- C:\WINDOWS\system32\drivers\Msft_Kernel_ccdcmb_01005.Wdf
2008-05-21 15:59 . 2008-05-21 15:59 <DIR> d-------- C:\Program Files\MSXML 6.0
2008-05-21 15:59 . 2007-11-29 10:33 1,419,232 --a------ C:\WINDOWS\system32\wdfcoinstaller01005.dll
2008-05-21 15:59 . 2008-02-01 15:17 138,112 --a------ C:\WINDOWS\system32\drivers\nmwcdnsu.sys
2008-05-21 15:59 . 2007-11-29 10:39 95,744 --a------ C:\WINDOWS\system32\nmwcdcocls.dll
2008-05-21 15:59 . 2007-11-29 10:39 19,328 --a------ C:\WINDOWS\system32\drivers\ccdcmbo.sys
2008-05-21 15:59 . 2007-11-29 10:39 16,896 --a------ C:\WINDOWS\system32\drivers\ccdcmb.sys
2008-05-21 15:59 . 2008-02-01 15:17 8,320 --a------ C:\WINDOWS\system32\drivers\nmwcdnsuc.sys
2008-05-21 15:59 . 2007-11-29 10:39 8,064 --a------ C:\WINDOWS\system32\drivers\usbser_lowerfltj.sys
2008-05-21 15:59 . 2007-11-29 10:39 8,064 --a------ C:\WINDOWS\system32\drivers\usbser_lowerflt.sys
2008-05-21 15:58 . 2008-05-21 15:58 <DIR> d-------- C:\Program Files\Common Files\Nokia
2008-05-20 12:56 . 2008-05-20 12:56 <DIR> d-------- C:\WINDOWS\Downloaded Installations
2008-05-13 03:52 . 2008-05-23 10:01 110 --a------ C:\WINDOWS\GMouse.ini
2008-05-13 03:35 . 2008-05-28 11:11 <DIR> d-------- C:\GMouse20
2008-05-13 03:34 . 2008-05-13 03:34 <DIR> d-------- C:\Documents and Settings\Hussamofe\WINDOWS
2008-05-13 03:34 . 1996-01-09 10:38 283,648 --a------ C:\WINDOWS\uninst.exe
2008-05-13 03:29 . 2008-05-13 03:29 <DIR> d-------- C:\Program Files\Common Files\eSellerate
2008-05-13 03:28 . 2008-05-13 03:34 <DIR> d-------- C:\Program Files\Bowling Buddy Pogo
2008-05-10 03:07 . 1999-05-06 16:00 140,288 --a------ C:\WINDOWS\system32\COMDLG32.OCX
2008-05-10 03:07 . 1998-06-23 16:00 115,016 --a------ C:\WINDOWS\system32\MSINET.OCX
2008-05-09 20:35 . 2008-05-09 20:35 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Yahoo!
2008-05-09 20:33 . 2008-05-09 20:33 <DIR> d-------- C:\Program Files\Yahoo!
2008-05-04 19:09 . 2008-05-04 19:09 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\ESET
2008-04-29 02:38 . 2008-04-29 02:38 <DIR> d--h----- C:\Documents and Settings\All Users\Application Data\{BDCA43E2-16ED-4BCA-B950-384A11D71F26}

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-05-28 11:43 --------- d-----w C:\Documents and Settings\Hussamofe\Application Data\DMCache
2008-05-28 08:11 --------- d-----w C:\Program Files\QuickTime
2008-05-28 08:11 --------- d-----w C:\Program Files\iTunes
2008-05-28 08:11 --------- d-----w C:\Program Files\HP
2008-05-25 06:12 --------- d-----w C:\Documents and Settings\Hussamofe\Application Data\Azureus
2008-05-23 02:55 768,512 ----a-w C:\WINDOWS\pchealth\helpctr\binaries\helpctr.exe
2008-05-23 02:55 169,984 ----a-w C:\WINDOWS\pchealth\helpctr\binaries\msconfig.exe
2008-05-22 09:43 --------- d-----w C:\Program Files\Common Files\Wise Installation Wizard
2008-05-22 07:58 --------- d-----w C:\Program Files\SpeederXP
2008-05-22 07:58 --------- d-----w C:\Documents and Settings\Hussamofe\Application Data\GetRightToGo
2008-05-21 12:59 --------- d-----w C:\Program Files\Nokia
2008-05-21 12:17 --------- d-----w C:\Documents and Settings\All Users\Application Data\Installations
2008-05-20 09:40 --------- d-----w C:\Documents and Settings\Hussamofe\Application Data\HP
2008-05-19 14:31 --------- d-----w C:\Documents and Settings\Hussamofe\Application Data\LimeWire
2008-05-10 00:26 --------- d-----w C:\Program Files\Cheat Engine
2008-04-29 01:31 --------- d-----w C:\Documents and Settings\All Users\Application Data\Microsoft Help
2008-04-26 14:38 1,923,646 ----a-w C:\TypingTutor.zip
2008-04-26 14:27 --------- d-----w C:\Documents and Settings\Hussamofe\Application Data\vlc
2008-04-25 02:04 --------- d-----w C:\Program Files\VideoLAN
2008-04-18 13:31 --------- d-----w C:\Documents and Settings\All Users\Application Data\AnyCapture
2008-04-18 09:59 --------- d-----w C:\Program Files\Azureus
2008-04-05 14:38 --------- d-----w C:\Documents and Settings\Hussamofe\Application Data\Talkback
2008-03-28 18:46 --------- d-----w C:\Program Files\Messenger Plus! Live
2007-09-20 04:48 22,040 ---h--w C:\Documents and Settings\Hussamofe\Application Data\user.dat
2008-01-30 20:44 32,768 --sha-w C:\WINDOWS\system32\config\systemprofile\Local Settings\History\History.IE5\MSHist012008013020080131\index.dat
.
[code=auto:0]<pre>
----a-w 161,775 2008-05-23 02:51:12 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\$RECYCLE.BIN\$R09PV1Q\$R09PV1Q .exe
----a-w 161,575 2008-05-23 02:51:16 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\$RECYCLE.BIN\$R09PV1Q\English\English .exe
----a-w 161,105 2008-05-23 02:51:14 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\$RECYCLE.BIN\$R09PV1Q\Wav32000\Wav32000 .exe
----a-w 161,815 2008-05-23 02:51:20 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\$RECYCLE.BIN\$R0RO2PQ.com]\$R0RO2PQ.com] .exe
----a-w 161,785 2008-05-22 08:36:58 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Books\13.Hypnosis.Ebooks\13.Hypnosis.Ebooks .exe
----a-w 161,735 2008-05-22 08:36:58 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Books\Illegal_Collection\Illegal_Collection .exe
----a-w 161,245 2008-05-22 08:36:58 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Books\Poker for Dummies\Poker for Dummies .exe
----a-w 161,075 2008-05-22 08:36:58 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Books\Remember.Every.Thing.You.Read\Remember.Every.Thing.You.Read .exe
----a-w 161,635 2008-05-22 08:37:02 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Creed - Discografia (1997-2001)\Creed - Discografia (1997-2001) .exe
----a-w 160,955 2008-05-22 08:38:30 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Creed - Discografia (1997-2001)\(1997) Creed - My Own Prison\(1997) Creed - My Own Prison .exe
----a-w 161,875 2008-05-22 08:38:30 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Creed - Discografia (1997-2001)\(1999) Creed - Human Clay\(1999) Creed - Human Clay .exe
----a-w 161,155 2008-05-22 08:38:30 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Creed - Discografia (1997-2001)\(2001) Creed - Weathered\(2001) Creed - Weathered .exe
----a-w 161,865 2008-05-22 08:37:04 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Heba\Photoshop.Top.Secret-DOCS\Photoshop.Top.Secret-DOCS .exe
----a-w 161,815 2008-05-22 08:37:04 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Heba\Photoshop.Top.Secret-DOCS\DVD Covers and Labels\DVD Covers and Labels .exe
----a-w 161,475 2008-05-22 08:37:04 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Heba\Photoshop.Top.Secret-DOCS\DVD Covers and Labels\DVD Covers\DVD Covers .exe
----a-w 161,025 2008-05-22 08:37:05 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Heba\Photoshop.Top.Secret-DOCS\DVD Covers and Labels\DVD Labels\DVD Labels .exe
----a-w 161,325 2008-05-22 08:37:04 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Heba\Photoshop.Top.Secret-DOCS\DVD1\DVD1 .exe
----a-w 161,005 2008-05-22 08:37:04 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Heba\Photoshop.Top.Secret-DOCS\DVD2\DVD2 .exe
----a-w 161,775 2008-05-22 08:37:03 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Hussam .exe
----a-w 161,245 2008-05-22 08:37:24 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Engineers Library A-E\Engineers Library A-E .exe
----a-w 161,765 2008-05-22 08:37:24 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Engineers Library A-E\Aerodynamics & Flight Mechanics\Aerodynamics & Flight Mechanics .exe
----a-w 161,405 2008-05-22 08:37:24 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Engineers Library A-E\Aerospace Design\Aerospace Design .exe
----a-w 161,745 2008-05-22 08:37:24 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Engineers Library A-E\Aerospace Propulsion\Aerospace Propulsion .exe
----a-w 161,485 2008-05-22 08:37:24 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Engineers Library A-E\CAD\CAD .exe
----a-w 161,525 2008-05-22 08:37:24 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Engineers Library A-E\Civil Eng\Civil Eng .exe
----a-w 161,375 2008-05-22 08:37:24 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Engineers Library A-E\Composites, Plastics & Adhesives\Composites, Plastics & Adhesives .exe
----a-w 160,975 2008-05-22 08:37:25 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Engineers Library A-E\Computational & Numerical Methods\Computational & Numerical Methods .exe
----a-w 161,625 2008-05-22 08:38:21 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Engineers Library A-E\Computational & Numerical Methods\TeX & LISP\TeX & LISP .exe
----a-w 161,185 2008-05-22 08:37:25 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Engineers Library A-E\Control Systems & Analysis\Control Systems & Analysis .exe
----a-w 161,475 2008-05-22 08:37:25 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Engineers Library A-E\Dictionary\Dictionary .exe
----a-w 161,195 2008-05-22 08:37:25 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Engineers Library A-E\Electrical & Electronic Eng\Electrical & Electronic Eng .exe
----a-w 161,535 2008-05-22 08:37:26 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Engineers Library A-E\Encyclopedia\Encyclopedia .exe
----a-w 161,155 2008-05-22 08:37:26 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Engineers Library A-E\Engineering Formulae & Data\Engineering Formulae & Data .exe
----a-w 161,835 2008-05-22 08:37:26 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Engineers Library A-E\Environmental Engineering\Environmental Engineering .exe
----a-w 161,685 2008-05-22 08:37:26 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Engineers Library A-E\Experimentation & Testing\Experimentation & Testing .exe
----a-w 161,465 2008-05-22 08:37:24 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Engineers Library F-Z\Engineers Library F-Z .exe
----a-w 161,495 2008-05-22 08:38:41 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Engineers Library F-Z\Engineers Library F-Z\Engineers Library F-Z .exe
----a-w 161,595 2008-05-22 08:38:43 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Engineers Library F-Z\Engineers Library F-Z\FEA & CFD\FEA & CFD .exe
----a-w 161,285 2008-05-22 08:38:43 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Engineers Library F-Z\Engineers Library F-Z\Fluid Mechanics\Fluid Mechanics .exe
----a-w 161,545 2008-05-22 08:38:43 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Engineers Library F-Z\Engineers Library F-Z\Manufacturing\Manufacturing .exe
----a-w 160,985 2008-05-22 08:38:41 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Engineers Library F-Z\Fatigue & Fracture Mechanics\Fatigue & Fracture Mechanics .exe
----a-w 161,315 2008-05-22 08:38:41 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Engineers Library F-Z\FEA & CFD\FEA & CFD .exe
----a-w 161,735 2008-05-22 08:38:41 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Engineers Library F-Z\Fluid Mechanics\Fluid Mechanics .exe
----a-w 161,055 2008-05-22 08:38:50 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Engineers Library F-Z\Fluid Mechanics\Foundations of fluid mechanics\Foundations of fluid mechanics .exe
----a-w 161,185 2008-05-22 08:38:41 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Engineers Library F-Z\HVAC\HVAC .exe
----a-w 161,155 2008-05-22 08:39:38 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Engineers Library F-Z\HVAC\US Air Force courses - HVAC\US Air Force courses - HVAC .exe
----a-w 161,375 2008-05-22 08:38:41 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Engineers Library F-Z\Hydraulic & Pneumatic\Hydraulic & Pneumatic .exe
----a-w 161,615 2008-05-22 08:38:41 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Engineers Library F-Z\Manufacturing\Manufacturing .exe
----a-w 160,945 2008-05-22 08:38:41 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Engineers Library F-Z\Mathematics\Mathematics .exe
----a-w 161,125 2008-05-22 08:38:42 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Engineers Library F-Z\Mechanical Analysis & Design\Mechanical Analysis & Design .exe
----a-w 160,955 2008-05-22 08:40:42 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Engineers Library F-Z\Mechanical Analysis & Design\FAG Bearings\FAG Bearings .exe
----a-w 161,055 2008-05-22 08:40:42 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Engineers Library F-Z\Mechanical Analysis & Design\FAG Bearings\lubrication\lubrication .exe
----a-w 161,025 2008-05-22 08:40:42 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Engineers Library F-Z\Mechanical Analysis & Design\FAG Bearings\mounting\mounting .exe
----a-w 161,755 2008-05-22 08:38:42 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Engineers Library F-Z\Mechanics & Science of Materials\Mechanics & Science of Materials .exe
----a-w 161,535 2008-05-22 08:38:42 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Engineers Library F-Z\Mechanics - Statics & Dynamics\Mechanics - Statics & Dynamics .exe
----a-w 161,535 2008-05-22 08:38:42 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Engineers Library F-Z\Mechatronics\Mechatronics .exe
----a-w 161,105 2008-05-22 08:38:42 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Engineers Library F-Z\Problems & Solutions\Problems & Solutions .exe
----a-w 161,565 2008-05-22 08:38:42 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Engineers Library F-Z\Shock & Vibration\Shock & Vibration .exe
----a-w 161,035 2008-05-22 08:38:42 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Engineers Library F-Z\Software\Software .exe
----a-w 161,265 2008-05-22 08:38:42 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Engineers Library F-Z\Software Eng\Software Eng .exe
----a-w 161,015 2008-05-22 08:38:42 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Engineers Library F-Z\Standards\Standards .exe
----a-w 161,835 2008-05-22 08:46:09 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Engineers Library F-Z\Standards\ASME-ANSI-AWS\ASME-ANSI-AWS .exe
----a-w 161,425 2008-05-22 08:46:09 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Engineers Library F-Z\Standards\Eurocode\Eurocode .exe
----a-w 161,825 2008-05-22 08:46:09 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Engineers Library F-Z\Standards\FAA\FAA .exe
----a-w 161,305 2008-05-22 08:46:09 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Engineers Library F-Z\Standards\US Military Standards\US Military Standards .exe
----a-w 161,245 2008-05-22 08:38:42 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Engineers Library F-Z\Systems Eng\Systems Eng .exe
----a-w 161,545 2008-05-22 08:38:42 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Engineers Library F-Z\Thermodynamics\Thermodynamics .exe
----a-w 161,495 2008-05-22 08:37:24 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Handbook Of Chemistry & Physics\Handbook Of Chemistry & Physics .exe
----a-w 161,195 2008-05-22 08:46:10 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Handbook Of Chemistry & Physics\data\data .exe
----a-w 161,595 2008-05-22 08:46:10 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Handbook Of Chemistry & Physics\pdf\pdf .exe
----a-w 161,145 2008-05-22 08:46:10 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Handbook Of Chemistry & Physics\software\software .exe
----a-w 161,015 2008-05-22 08:51:21 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Handbook Of Chemistry & Physics\software\template\template .exe
----a-w 160,955 2008-05-22 08:37:24 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\Lynda.com - Excel 2007 Essential Training .exe
----a-w 160,905 2008-05-22 08:51:21 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\data .exe
----a-w 161,755 2008-05-22 08:51:21 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\art\art .exe
----a-w 161,015 2008-05-22 08:51:21 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\help\help .exe
----a-w 161,575 2008-05-22 08:51:21 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\movies .exe
----a-w 161,135 2008-05-22 08:51:21 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap00\chap00 .exe
----a-w 161,005 2008-05-22 08:51:22 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap01\chap01 .exe
----a-w 161,485 2008-05-22 08:51:22 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap02\chap02 .exe
----a-w 161,185 2008-05-22 08:51:22 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap03\chap03 .exe
----a-w 161,715 2008-05-22 08:51:22 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap04\chap04 .exe
----a-w 161,465 2008-05-22 08:51:22 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap05\chap05 .exe
----a-w 161,765 2008-05-22 08:51:22 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap06\chap06 .exe
----a-w 161,185 2008-05-22 08:51:22 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap07\chap07 .exe
----a-w 161,315 2008-05-22 08:51:22 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap08\chap08 .exe
----a-w 161,685 2008-05-22 08:51:22 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap09\chap09 .exe
----a-w 161,875 2008-05-22 08:51:22 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap10\chap10 .exe
----a-w 161,875 2008-05-22 08:51:22 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap11\chap11 .exe
----a-w 160,985 2008-05-22 08:51:22 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap12\chap12 .exe
----a-w 161,225 2008-05-22 08:51:22 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap13\chap13 .exe
----a-w 161,745 2008-05-22 08:51:22 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap14\chap14 .exe
----a-w 161,685 2008-05-22 08:51:22 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap15\chap15 .exe
----a-w 160,985 2008-05-22 08:51:22 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap16\chap16 .exe
----a-w 161,075 2008-05-22 08:51:22 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap17\chap17 .exe
----a-w 161,415 2008-05-22 08:51:22 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap18\chap18 .exe
----a-w 161,305 2008-05-22 08:51:22 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap19\chap19 .exe
----a-w 161,575 2008-05-22 08:51:22 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap20\chap20 .exe
----a-w 161,495 2008-05-22 08:51:22 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap21\chap21 .exe
----a-w 161,455 2008-05-22 08:51:22 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap22\chap22 .exe
----a-w 161,885 2008-05-22 08:51:22 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\movies\chap23\chap23 .exe
----a-w 161,325 2008-05-22 08:51:21 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\data\os9\os9 .exe
----a-w 161,425 2008-05-22 08:51:21 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\exercise files\exercise files .exe
----a-w 161,895 2008-05-22 08:51:22 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\exercise files\[u]0[/u]1_Getting_Started\[u]0[/u]1_Getting_Started .exe
----a-w 161,645 2008-05-22 08:51:22 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\exercise files\[u]0[/u]4_Basic_Formatting\[u]0[/u]4_Basic_Formatting .exe
----a-w 161,555 2008-05-22 08:51:22 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\exercise files\[u]0[/u]6_Using_Templates\[u]0[/u]6_Using_Templates .exe
----a-w 161,805 2008-05-22 08:51:22 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\exercise files\[u]0[/u]7_Managing_Tables\[u]0[/u]7_Managing_Tables .exe
----a-w 161,215 2008-05-22 08:51:22 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\exercise files\[u]0[/u]9_Sharing_Worksheet\[u]0[/u]9_Sharing_Worksheet .exe
----a-w 161,565 2008-05-22 08:51:23 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\exercise files\13_Using_Templates\13_Using_Templates .exe
----a-w 161,745 2008-05-22 08:51:23 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\exercise files\15_Find_Replace_Data\15_Find_Replace_Data .exe
----a-w 160,965 2008-05-22 08:51:23 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\exercise files\16_Formulas\16_Formulas .exe
----a-w 161,705 2008-05-22 08:51:23 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\exercise files\17_Basic_Functions\17_Basic_Functions .exe
----a-w 160,905 2008-05-22 08:51:23 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\exercise files\19_Charts\19_Charts .exe
----a-w 161,725 2008-05-22 08:51:23 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\exercise files\20_Pivot_Tables\20_Pivot_Tables .exe
----a-w 161,705 2008-05-22 08:51:23 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\exercise files\21_Macros\21_Macros .exe
----a-w 161,435 2008-05-22 08:51:23 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\exercise files\22_Workflow_in_Excel\22_Workflow_in_Excel .exe
----a-w 161,575 2008-05-22 08:51:21 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\Mac GUI\Mac GUI .exe
----a-w 161,825 2008-05-22 08:51:21 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\QuickTime\QuickTime .exe
----a-w 161,585 2008-05-22 08:51:21 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Excel 2007 Essential Training\Xtras\Xtras .exe
----a-w 161,875 2008-05-22 08:37:24 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Word 2007 Essential Training\Lynda.com - Word 2007 Essential Training .exe
----a-w 161,225 2008-05-22 08:51:24 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\data .exe
----a-w 161,865 2008-05-22 08:51:24 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\art\art .exe
----a-w 161,475 2008-05-22 08:51:24 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\help\help .exe
----a-w 161,175 2008-05-22 08:51:25 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\movies .exe
----a-w 161,445 2008-05-22 08:51:25 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap00\chap00 .exe
----a-w 161,065 2008-05-22 08:51:25 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap01\chap01 .exe
----a-w 161,455 2008-05-22 08:51:25 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap02\chap02 .exe
----a-w 161,095 2008-05-22 08:51:25 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap03\chap03 .exe
----a-w 161,265 2008-05-22 08:51:25 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap04\chap04 .exe
----a-w 161,815 2008-05-22 08:51:25 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap05\chap05 .exe
----a-w 161,705 2008-05-22 08:51:25 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap06\chap06 .exe
----a-w 161,315 2008-05-22 08:51:25 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap07\chap07 .exe
----a-w 161,775 2008-05-22 08:51:25 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap08\chap08 .exe
----a-w 160,955 2008-05-22 08:51:25 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap09\chap09 .exe
----a-w 161,295 2008-05-22 08:51:25 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap10\chap10 .exe
----a-w 161,715 2008-05-22 08:51:25 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap11\chap11 .exe
----a-w 161,395 2008-05-22 08:51:25 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap12\chap12 .exe
----a-w 161,005 2008-05-22 08:51:25 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap13\chap13 .exe
----a-w 161,575 2008-05-22 08:51:25 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap14\chap14 .exe
----a-w 161,265 2008-05-22 08:51:25 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap15\chap15 .exe
----a-w 161,055 2008-05-22 08:51:25 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap16\chap16 .exe
----a-w 161,835 2008-05-22 08:51:25 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap17\chap17 .exe
----a-w 160,925 2008-05-22 08:51:25 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap18\chap18 .exe
----a-w 161,475 2008-05-22 08:51:25 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap19\chap19 .exe
----a-w 161,595 2008-05-22 08:51:25 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\movies\chap20\chap20 .exe
----a-w 161,415 2008-05-22 08:51:25 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Word 2007 Essential Training\data\os9\os9 .exe
----a-w 161,835 2008-05-22 08:51:24 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\exercise files .exe
----a-w 161,215 2008-05-22 08:51:25 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson01\Lesson01 .exe
----a-w 161,355 2008-05-22 08:51:28 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson02\Job_Posting.doc .exe
----a-w 161,125 2008-05-22 08:51:26 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson02\Lesson02 .exe
----a-w 161,475 2008-05-22 08:51:26 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson03\Lesson03 .exe
----a-w 161,575 2008-05-22 08:51:26 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson04\Lesson04 .exe
----a-w 160,975 2008-05-22 08:51:26 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson05\Lesson05 .exe
----a-w 161,645 2008-05-22 08:51:26 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson06\Lesson06 .exe
----a-w 161,735 2008-05-22 08:51:27 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson07\Lesson07 .exe
----a-w 161,715 2008-05-22 08:51:27 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson08\Lesson08 .exe
----a-w 161,125 2008-05-22 08:51:27 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson09\Lesson09 .exe
----a-w 161,455 2008-05-22 08:51:27 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson10\Lesson10 .exe
----a-w 161,825 2008-05-22 08:51:27 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson11\Lesson11 .exe
----a-w 161,215 2008-05-22 08:51:27 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson12\Lesson12 .exe
----a-w 161,835 2008-05-22 08:51:27 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson13\Lesson13 .exe
----a-w 161,335 2008-05-22 08:51:27 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson14\Lesson14 .exe
----a-w 161,165 2008-05-22 08:51:27 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson15\Lesson15 .exe
----a-w 161,805 2008-05-22 08:51:27 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson16\Lesson16 .exe
----a-w 161,795 2008-05-22 08:51:27 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson17\Lesson17 .exe
----a-w 161,265 2008-05-22 08:51:27 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson18\Lesson18 .exe
----a-w 161,635 2008-05-22 08:51:28 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson18\Newsletter18a.doc .exe
----a-w 161,155 2008-05-22 08:51:28 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson18\Newsletter18b.doc .exe
----a-w 161,295 2008-05-22 08:51:28 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson18\Newsletter18c.doc .exe
----a-w 161,715 2008-05-22 08:51:28 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educational\Hussam\Lynda.com - Word 2007 Essential Training\exercise files\Lesson18\Newsletter18d.doc .exe
----a-w 161,065 2008-05-22 08:51:28 C:\_OTMoveIt\MovedFiles\[u]0[/u]5282008_111140\Educat

Attached Files


Edited by RatHat, 28 May 2008 - 06:28 AM.
Added CF Log for Clarity

  • 0

#13
RatHat

RatHat

    Ex Malware Expert

  • Expert
  • 7,829 posts
Lets clean your Flash Drives before doing anything else:

Download Flash_Disinfector.exe by sUBs from here and save it to your desktop.
  • Double-click Flash_Disinfector.exe to run it and follow any prompts that may appear.
  • The utility may ask you to insert your flash drive and/or other removable drives including your mobile phone. Please do so and allow the utility to clean up those drives as well.
  • Wait until it has finished scanning and then exit the program.
  • Reboot your computer when done.
Note: Flash_Disinfector will create a hidden folder named autorun.inf in each partition and every USB drive plugged in when you ran it. Don't delete this folder...it will help protect your drives from future infection.

Please don't use them until we have finished with your computer.

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~


Now lets run another online scan, this time with F-Secure:
  • Go to http://support.f-sec.../home/ols.shtml
  • Scroll to the bottom of the page and click the Start scanning button. A window will pop up.
  • Allow the Active X control to be installed on your computer, then click the Accept button
  • Click Full System Scan and allow the components to download and the scan to complete.
  • If malware is found, check Submit samples to F-Secure then select Automatic cleaning
  • When cleaning has finished, click Show report (this will open an Internet Explorer window containing the report)
  • Highlight and Copy (CTRL + C) the complete report, and Paste (CTRL + V) in a new reply to this post
If Automatic cleaning with Submit samples hangs, click Cancel, then New Scan
  • When the cleaning option is presented, Uncheck Submit samples to F-Secure
  • Click Automatic cleaning
  • When cleaning has finitished, click Show report (this will open an Internet Explorer window containing the report)
  • Highlight and Copy (CTRL + C) the complete report, and Paste (CTRL + V) in a new reply to this post
Notes:
  • This scan will only work with Internet Explorer
  • You must have administrator rights to run this scan
  • This scan can take a while, so please be patient


Regards,
RatHat
  • 0

#14
Hussam Magdy

Hussam Magdy

    Member

  • Topic Starter
  • Member
  • PipPip
  • 37 posts
God, It took 2 hours to scan and almost 5 hours to disinfect & submit ... sorry for the late reply ...

Attached Files


  • 0

#15
RatHat

RatHat

    Ex Malware Expert

  • Expert
  • 7,829 posts
This is reinfecting as fast as we remove files, so we'll remove all the tools we have used first, then download new.

Click Here to download OTCleanIt
Double-click OTCleanIt.exe to run it.
Click the Clean up button
Click Yes to the reboot.


Please download OTMoveIt2 by OldTimer.
  • Save it to your desktop.
  • Double-click OTMoveIt2.exe to run it.
Copy the file paths below to the clipboard by highlighting ALL of them and pressing CTRL + C (or, after highlighting, right-click and choose copy):

D:\SONGS
D:\OTHERS
D:\VIDEOS
E:\SOURCES
E:\TOP 100 HOT-POP 2008-05-03 BILLBOARD - TORRENT TATTY FEAT RIAA STARS @224\OFFICE2007 SERIAL.TXT.EXE
E:\FOUND.000
E:\NICKELBACK
E:\HOW IT'S MADE
F:\VIDEO_TS
F:\MUSIC
F:\MOVIES
F:\EMULATORS
F:\EDUCATIONAL\HEBA
F:\BOOKS


Return to OTMoveIt, right click on the "Paste List of Files/Folders to be moved" window and choose Paste.
  • Click the red Moveit! button.
  • Open Notepad, and copy everything in the Results window to the clipboard by highlighting ALL of them and pressing CTRL + C (or, after highlighting, right-click and choose copy).
  • Save the Notepad file to your Desktop as OTM.txt.
  • Close OTMoveIt
Note: If a file or folder cannot be moved immediately you may be asked to reboot the machine to finish the move process. If you are asked to reboot the machine choose Yes.

Please include the contents of OTM.txt in your next reply.

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~


Please download DrWeb-CureIt & save it to your desktop. DO NOT perform a scan yet.

Reboot your computer in "SAFE MODE" using the F8 method. To do this, restart your computer and after hearing your computer beep once during startup (but before the Windows icon appears) press the F8 key repeatedly. A menu will appear with several options. Use the arrow keys to navigate and select the option to run Windows in "Safe Mode".

Scan with DrWeb-CureIt as follows:
  • Double-click on drweb-cureit.exe to start the program. An "Express Scan of your PC" notice will appear.
  • Under "Start the Express Scan Now", Click "OK" to start. This is a short scan that will scan the files currently running in memory and when something is found, click the Yes button when it asks you if you want to cure it.
  • Once the short scan has finished, Click Options > Change settings
  • Choose the "Scan tab" and UNcheck "Heuristic analysis"
  • Back at the main window, click "Select drives" (a red dot will show which drives have been chosen)
  • Then click the "Start/Stop Scanning" button (green arrow on the right) and the scan will start.
  • When done, a message will be displayed at the bottom advising if any viruses were found.
  • Click "Yes to all" if it asks if you want to cure/move the file.
  • When the scan has finished, look if you can see the icon next to the files found. If so, click it, then click the next icon right below and select "Move incurable".
    (This will move it to the C:\Documents and Settings\userprofile\DoctorWeb\Quarantine folder if it can't be cured)
  • Next, in the Dr.Web CureIt menu on top, click file and choose save report list.
  • Save the DrWeb.csv report to your desktop.
  • Exit Dr.Web Cureit when done.
  • Important! Reboot your computer because it could be possible that files in use will be moved/deleted during reboot.
  • After reboot, post the contents of the log from Dr.Web in your next reply. (You can use Notepad to open the DrWeb.cvs report)
Regards,
RatHat
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP