My system cant run safemode for some reason.. it still automatically restarts when it loads itself on the login screen..
The winpfind gives a file not found in the middle of the scan and stops working.
Cleanup is unable to cleanup the entire folder, even after restart, and I cant start in safe mode.
Heres my hijack this log:
Logfile of HijackThis v1.99.1
Scan saved at 10:35:10 AM, on 9/4/2005
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Alienware Themes\wbload.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\ewido\security suite\ewidoctrl.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\CursorXP\CursorXP.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Logitech\SetPoint\KEM.exe
C:\Program Files\Logitech\SetPoint\KHALMNPR.EXE
C:\PROGRA~1\WINZIP\winzip32.exe
C:\Documents and Settings\Calvin Cheng\Local Settings\Temp\HijackThis.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKCU\..\Run: [CursorXP] C:\Program Files\CursorXP\CursorXP.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\WINDOWS\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\RunServices: [Required Service Drivers] micront.exe
O4 - HKCU\..\RunServices: [MediaXPServicePack2] msncx.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\KEM.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O8 - Extra context menu item: &Download with &DAP - C:\PROGRA~1\DAP\dapextie.htm
O8 - Extra context menu item: Download &all with DAP - C:\PROGRA~1\DAP\dapextie2.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} (McAfee.com Operating System Class) -
http://download.mcaf...90/mcinsctl.cabO16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
http://v5.windowsupd...b?1116304501562O16 - DPF: {7149E79C-DC19-4C5E-A53C-A54DDF75EEE9} (IObjSafety.DemoCtl) -
http://cabs.media-mo...bs/joysaver.cabO16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} (DwnldGroupMgr Class) -
http://download.mcaf...,23/mcgdmgr.cabO16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) -
http://download.mcaf...489/mcfscan.cabO20 - Winlogon Notify: WB - C:\Program Files\Alienware Themes\fastload.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: kavsvc - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Security Suite\Kaspersky Anti-Virus Personal\kavsvc.exe
O23 - Service: MSCSPTISRV - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe
O23 - Service: PACSPTISVR - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe
O23 - Service: SonicStage SCSI Service (SSScsiSV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SSScsiSV.exe
And heres my Ewido scan:
---------------------------------------------------------
ewido security suite - Scan report
---------------------------------------------------------
+ Created on: 10:20:05 AM, 9/4/2005
+ Report-Checksum: 5F528732
+ Scan result:
HKLM\SOFTWARE\Classes\IObjSafety.DemoCtl -> Spyware.MediaMotor : Cleaned with backup
HKLM\SOFTWARE\Classes\IObjSafety.DemoCtl\Clsid -> Spyware.MediaMotor : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{669695BC-A811-4A9D-8CDF-BA8C795F261C} -> Spyware.PowerStrip : Cleaned with backup
:mozilla.6:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.21:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.22:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.23:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.24:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.25:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.26:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.27:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.28:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.29:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.30:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.31:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.32:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.33:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.34:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.35:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.36:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.37:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.38:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.39:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.40:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.41:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.42:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.43:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.44:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.45:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.46:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.47:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.48:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.49:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.50:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.51:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.52:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.53:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.54:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.55:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.56:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.57:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.58:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.59:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.60:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.61:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.62:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.63:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.64:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.65:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.66:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.67:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.68:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.69:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.70:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.75:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.76:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.77:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.78:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.82:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.85:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.86:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.87:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.101:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.102:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.103:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.104:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.105:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.106:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.107:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.108:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.109:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Valueclick : Cleaned with backup
:mozilla.110:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Valueclick : Cleaned with backup
:mozilla.114:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.115:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.129:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.130:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.131:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.132:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.133:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.134:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.154:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.155:C:\Documents and Settings\Calvin Cheng\Application Data\Mozilla\Firefox\Profiles\uox3pa01.default\cookies.txt -> Spyware.Cookie.Overture : Cleaned with backup
C:\My Shared Folder\(DAP).Download.Accelerator.Plus.v7.4.0.1.Cracked.WORKING-SG\DAP.exe -> Spyware.Dap : Cleaned with backup
C:\My Shared Folder\(DAP).Download.Accelerator.Plus.v7.4.0.1.Cracked.WORKING-SG..rar/DAP.exe -> Spyware.Dap : Cleaned with backup
C:\Program Files\DAP\DAP.exe -> Spyware.Dap : Cleaned with backup
C:\WINDOWS\dreese.exe -> Spyware.EliteBar : Cleaned with backup
::Report End
And finally my Panda scan:
Incident Status Location
Spyware:spyware/media-motor No disinfected C:\WINDOWS\DOWNLOADED PROGRAM FILES\mm81.ocx
Adware:adware/lop No disinfected \C2Media
Adware:adware/elitebar No disinfected C:\DOCUMENTS AND SETTINGS\CALVIN CHENG\FAVORITES\Casino & Carrers
Adware:adware/hotoffers No disinfected Windows Registry
Adware:Adware/Lop No disinfected C:\Documents and Settings\All Users\Application Data\License inside global dvd\road list.exe
Adware:Adware/Lop No disinfected C:\Documents and Settings\Calvin Cheng\Application Data\Stylemess\gjwvfktq.exe
Virus:W32/Gaobot.DTS.worm Disinfected C:\WINDOWS\system32\TFTP6120