Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

still blank about:blank [RESOLVED]


  • This topic is locked This topic is locked

#16
tampabelle

tampabelle

    Member 5k

  • Retired Staff
  • 6,363 posts
Looks like Ewido got all the bad files.


How is your PC behaving now ????


Do you want to do another Kaspersky scan ????
  • 0

Advertisements


#17
harley02

harley02

    Member

  • Topic Starter
  • Member
  • PipPip
  • 11 posts
yes i did the scan, file below
-------------------------------------------------------------------------------
KASPERSKY ON-LINE SCANNER REPORT
Saturday, October 01, 2005 11:41:10
Operating System: Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600)
Kaspersky On-line Scanner version: 5.0.67.0
Kaspersky Anti-Virus database last update: 1/10/2005
Kaspersky Anti-Virus database records: 142782
-------------------------------------------------------------------------------

Scan Settings:
Scan using the following antivirus database: standard
Scan Archives: true
Scan Mail Bases: true

Scan Target - My Computer:
A:\
C:\
D:\
E:\
F:\
G:\
H:\

Scan Statistics:
Total number of scanned objects: 79711
Number of viruses found: 5
Number of infected objects: 357
Number of suspicious objects: 0
Duration of the scan process: 2637 sec

Infected Object Name - Virus Name
C:\hp\region\EN_US-ie.reg Infected: Trojan.WinREG.StartPage
C:\WINDOWS\addag.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\addak.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\addbn.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\addck32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\addeb32.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\addhw.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\addot.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\addxa.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\addyg32.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\aosry.dat:mwnocw:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\apibc.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\WINDOWS\apidx32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\apief.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\WINDOWS\apihy.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\apiiv32.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\apild32.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\WINDOWS\apize.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\appby32.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\appgt32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\apphd32.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\appia.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\appkn32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\applq32.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\WINDOWS\appqa.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\appqm32.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\WINDOWS\apptk.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\apptr32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\appwf.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\appxc32.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\atleh.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\atlfo32.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\atlgy32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\atlhb32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\atljg.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\atlme32.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\atlmr.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\atlsx.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\atlwd.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\WINDOWS\atlyv32.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\WINDOWS\Blue Lace 16.bmp:fxgtwh:$DATA Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\cfnra.log:zoaaxw:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\crcl32.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\crdt.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\crek32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\crgj.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\crik.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\crkl32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\crus32.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\crvv32.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\crxq32.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\WINDOWS\cryd32.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\WINDOWS\d3cr.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\d3gl32.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\WINDOWS\d3js32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\d3lc.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\d3pm32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\d3ss.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\d3vj32.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\d3wz.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\WINDOWS\dpexe.dat:gcvwmt:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\WINDOWS\explorer.scf:cdoqlv:$DATA Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\Gone Fishing.bmp:gblnt:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\WINDOWS\iean32.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\ieba32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\iecm.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\iecp.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\iedv.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\iehm.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\WINDOWS\ieiy32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\iexz.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\ieyo32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\ieyr.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\ipdt32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\ipdx32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\ipgq.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\ipii.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\ipik32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\ipkt.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\iprp.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\iptu.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\javadr.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\javahg32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\javaia.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\javaoz32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\javapl32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\javaso.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\javayl.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\KB893066.log:vygost:$DATA Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\mfcak.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\mfcjj32.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\WINDOWS\mfcnb.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\WINDOWS\mfcnh32.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\WINDOWS\mfcpl32.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\mfcta.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\mfcuq32.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\mfcxo.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\mfczm32.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\msdp32.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\msgy32.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\msig.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\msoffice.ini:ljrjzn:$DATA Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\msyp.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\neoyu.dat:siyexc:$DATA Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\netap.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\nethy.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\netlc.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\netok.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\netql.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\netva.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\netxk.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\WINDOWS\netzm32.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\nnfrq.log:ljrjzn:$DATA Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\ntay.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\ntfm.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\ntgs.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\ntjn.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\ntjq32.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\WINDOWS\ntkc32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\ntkg.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\ntll32.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\ntmd.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\ntqv32.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\ntvr32.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\WINDOWS\ntxp32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\n_bsbjcq.log Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\n_bsbjcq.log:gvhugl:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\WINDOWS\n_klkvbp.dat Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\orun32.ini:fxmzhr:$DATA Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\pguta.log:xyffkt:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\WINDOWS\sdkcn.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\sdkgf32.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\sdkjc.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\sdkld.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\sdkmg32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\sdknw32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\sdkzt32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\spupdsvc.log:ybvdax:$DATA Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\sysda.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\sysew.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\sysha32.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\syshy32.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\sysim32.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\sysiz.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\syslc32.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\WINDOWS\sysmq.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\syspz32.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\system.ini:vpylqn:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\WINDOWS\system32\addby.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\system32\addew32.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\system32\addhj32.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\system32\addof.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\WINDOWS\system32\addpy.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\addsb32.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\system32\addsp.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\addwr.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\system32\addzl.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\apicu32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\apill.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\apimn32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\apiph32.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\WINDOWS\system32\apirw32.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\system32\appbe32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\appdn32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\appga32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\appml32.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\system32\appsw32.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\system32\apptb32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\appwy.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\system32\atlbk32.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\WINDOWS\system32\atlcq.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\WINDOWS\system32\atleo.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\system32\atlfl32.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\system32\atlfy.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\system32\atlkk32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\atlyn.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\system32\crae.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\crak32.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\WINDOWS\system32\crcq.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\creq32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\crhk.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\system32\crhz.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\crkw.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\WINDOWS\system32\crnb32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\crny.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\crqc32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\crrr32.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\WINDOWS\system32\crxf32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\cryi.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\d3hn.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\d3kv.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\d3mo.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\d3of.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\WINDOWS\system32\d3px.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\iedb.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\iehn.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\WINDOWS\system32\ieht32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\iejb32.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\system32\ielq32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\ieor.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\ieqq32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\iesq32.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\system32\ietz.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\ipht.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\ipij32.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\system32\ipld.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\system32\ipwx32.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\system32\javaaw32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\javaay.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\WINDOWS\system32\javaic32.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\system32\javamc.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\system32\javamn.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\system32\javaot32.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\system32\javash32.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\system32\javaty32.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\WINDOWS\system32\javayu.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\javayw.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\mfcaw32.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\WINDOWS\system32\mfcdb32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\mfcdz32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\mfcew.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\mfcgl32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\mfciq.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\system32\mfcko.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\mfcnl32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\mfcpe.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\mfcpu32.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\WINDOWS\system32\mfcul.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\system32\mfcwx32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\mfcwy32.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\system32\mscf.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\msed32.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\system32\msju.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\msks.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\system32\mslj.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\system32\mslv32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\msmq.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\msnx.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\msob.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\msoi32.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\system32\msqa32.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\system32\msql32.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\system32\mssz32.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\WINDOWS\system32\msxj.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\system32\netan32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\netbv32.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\system32\netdq32.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\WINDOWS\system32\netfn.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\WINDOWS\system32\netgr.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\netjo32.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\WINDOWS\system32\netry32.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\system32\netrz.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\system32\nthk32.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\system32\ntiu32.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\system32\ntmv32.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\system32\ntun.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\ntxa.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\system32\ntxl32.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\WINDOWS\system32\ntzb32.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\system32\sdkdh32.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\system32\sdkdp.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\sdkej32.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\system32\sdkex.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\WINDOWS\system32\sdkio32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\sdklb.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\system32\sdklx.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\sdkoq32.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\system32\sdkum32.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\WINDOWS\system32\sdkyp32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\sdkys.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\WINDOWS\system32\sysck32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\sysda.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\system32\sysgb.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\sysgl32.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\system32\sysqn32.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\system32\sysrn.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\systb32.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\system32\systg32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\sysvl.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\WINDOWS\system32\sysvx.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\system32\sysyu32.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\system32\syszc32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\winbv.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\winhr32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\winio.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\system32\winsw.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\system32\winvm32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\system32\winvr.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\system32\winxc32.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\system32\winyc32.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\system32\winzq.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\sysxy.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\tacow.dat:qtyiws:$DATA Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\winab32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\winat.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\wincx.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\WindowsUpdate.log:fqski:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\winee.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\winey32.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\wingn32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\wingx.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\winjn.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\winkg32.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\winma32.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\winnp.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\winqs32.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\winrf.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\winvn.exe Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\winwk32.exe Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\winzr32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\xsxqs.txt:sxovgf:$DATA Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\zdrbb.dat:rtacq:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\zhehs.txt:awdqlc:$DATA Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\_default.pif:amsrz:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\_default.pif:atfhyk:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\_default.pif:bgpljv:$DATA Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\_default.pif:btzszu:$DATA Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\_default.pif:cztogi:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\WINDOWS\_default.pif:dnvcv:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\WINDOWS\_default.pif:ecquu:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\WINDOWS\_default.pif:fnfsj:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\WINDOWS\_default.pif:gecfnd:$DATA Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\_default.pif:gilzgh:$DATA Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\_default.pif:govtkr:$DATA Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\_default.pif:ifffpl:$DATA Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\_default.pif:ispmfk:$DATA Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\_default.pif:jkhxwe:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\WINDOWS\_default.pif:jqrydx:$DATA Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\_default.pif:kgmcua:$DATA Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\_default.pif:kttoqj:$DATA Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\_default.pif:mdqcwd:$DATA Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\_default.pif:nhbumf:$DATA Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\_default.pif:nhrrbm:$DATA Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\_default.pif:qjxscc:$DATA Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\_default.pif:rrikwn:$DATA Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\_default.pif:swhqim:$DATA Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\_default.pif:tpwqzh:$DATA Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\_default.pif:twtxaf:$DATA Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\_default.pif:ukbbwj:$DATA Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\_default.pif:uvozed:$DATA Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\_default.pif:vfkfy:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\_default.pif:vkoql:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\_default.pif:vqklhm:$DATA Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\_default.pif:vqtmbb:$DATA Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\_default.pif:wigwy:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\_default.pif:wvbcmy:$DATA Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\_default.pif:wwllj:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\WINDOWS\_default.pif:xgjce:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\WINDOWS\_default.pif:xiwdlg:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\WINDOWS\_default.pif:xrybvk:$DATA Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\_default.pif:ydbfqe:$DATA Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\_default.pif:ygtqei:$DATA Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\_default.pif:yhnyeb:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\WINDOWS\_default.pif:yjenir:$DATA Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\_default.pif:zfxqql:$DATA Infected: Trojan.Win32.Agent.bi
C:\WINDOWS\_default.pif:zqpfck:$DATA Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\_default.pif:zrfui:$DATA Infected: Trojan-Downloader.Win32.Agent.bc

Scan process completed.
  • 0

#18
tampabelle

tampabelle

    Member 5k

  • Retired Staff
  • 6,363 posts
Please copy these instructions into a text file on your Desktop for easy access.


Please download the tool called about:buster from
http://www.downloads...AboutBuster.zip

Unzip it to your desktop.


Please download the Killbox.
Unzip it to the desktop but do NOT run it yet.


Then reboot into Safe Mode by tapping F8key repeatedly during bootup.

Double click aboutbuster.exe, click OK, click Start, then click OK.
This will scan your computer for the bad files and delete them.


Run Killbox. Select "Delete on Reboot".

Open the text file with these instructions in it, and copy the file names below to the clipboard by highlighting them and pressing Control-C:

C:\WINDOWS\addag.dll
C:\WINDOWS\addak.exe
C:\WINDOWS\addbn.exe
C:\WINDOWS\addck32.dll
C:\WINDOWS\addeb32.exe
C:\WINDOWS\addhw.dll
C:\WINDOWS\addot.dll
C:\WINDOWS\addxa.exe
C:\WINDOWS\addyg32.exe
C:\WINDOWS\aosry.dat
C:\WINDOWS\apibc.exe
C:\WINDOWS\apidx32.dll
C:\WINDOWS\apief.exe
C:\WINDOWS\apihy.exe
C:\WINDOWS\apiiv32.exe
C:\WINDOWS\apild32.exe
C:\WINDOWS\apize.exe
C:\WINDOWS\appby32.exe
C:\WINDOWS\appgt32.dll
C:\WINDOWS\apphd32.exe
C:\WINDOWS\appia.dll
C:\WINDOWS\appkn32.dll
C:\WINDOWS\applq32.exe
C:\WINDOWS\appqa.exe
C:\WINDOWS\appqm32.exe
C:\WINDOWS\apptk.exe
C:\WINDOWS\apptr32.dll
C:\WINDOWS\appwf.exe
C:\WINDOWS\appxc32.exe
C:\WINDOWS\atleh.exe
C:\WINDOWS\atlfo32.exe
C:\WINDOWS\atlgy32.dll
C:\WINDOWS\atlhb32.dll
C:\WINDOWS\atljg.exe
C:\WINDOWS\atlme32.exe
C:\WINDOWS\atlmr.exe
C:\WINDOWS\atlsx.dll
C:\WINDOWS\atlwd.exe
C:\WINDOWS\atlyv32.exe
C:\WINDOWS\Blue Lace 16.bmp
C:\WINDOWS\cfnra.log
C:\WINDOWS\crcl32.exe
C:\WINDOWS\crdt.exe
C:\WINDOWS\crek32.dll
C:\WINDOWS\crgj.dll
C:\WINDOWS\crik.dll
C:\WINDOWS\crkl32.dll
C:\WINDOWS\crus32.exe
C:\WINDOWS\crvv32.exe
C:\WINDOWS\crxq32.exe
C:\WINDOWS\cryd32.exe
C:\WINDOWS\d3cr.dll
C:\WINDOWS\d3gl32.exe
C:\WINDOWS\d3js32.dll
C:\WINDOWS\d3lc.dll
C:\WINDOWS\d3pm32.dll
C:\WINDOWS\d3ss.dll
C:\WINDOWS\d3vj32.exe
C:\WINDOWS\d3wz.exe
C:\WINDOWS\dpexe.dat
C:\WINDOWS\explorer.scf
C:\WINDOWS\Gone Fishing.bmp
C:\WINDOWS\iean32.exe
C:\WINDOWS\ieba32.dll
C:\WINDOWS\iecm.exe
C:\WINDOWS\iecp.exe
C:\WINDOWS\iedv.dll
C:\WINDOWS\iehm.exe
C:\WINDOWS\ieiy32.dll
C:\WINDOWS\iexz.dll
C:\WINDOWS\ieyo32.dll
C:\WINDOWS\ieyr.exe
C:\WINDOWS\ipdt32.dll
C:\WINDOWS\ipdx32.dll
C:\WINDOWS\ipgq.dll
C:\WINDOWS\ipii.exe
C:\WINDOWS\ipik32.dll
C:\WINDOWS\ipkt.dll
C:\WINDOWS\iprp.dll
C:\WINDOWS\iptu.dll
C:\WINDOWS\javadr.dll
C:\WINDOWS\javahg32.dll
C:\WINDOWS\javaia.dll
C:\WINDOWS\javaoz32.dll
C:\WINDOWS\javapl32.dll
C:\WINDOWS\javaso.exe
C:\WINDOWS\javayl.exe
C:\WINDOWS\mfcak.exe
C:\WINDOWS\mfcjj32.exe
C:\WINDOWS\mfcnb.exe
C:\WINDOWS\mfcnh32.exe
C:\WINDOWS\mfcpl32.exe
C:\WINDOWS\mfcta.exe
C:\WINDOWS\mfcuq32.exe
C:\WINDOWS\mfcxo.exe
C:\WINDOWS\mfczm32.exe
C:\WINDOWS\msdp32.exe
C:\WINDOWS\msgy32.exe
C:\WINDOWS\msig.dll
C:\WINDOWS\msyp.exe
C:\WINDOWS\neoyu.dat
C:\WINDOWS\netap.dll
C:\WINDOWS\nethy.exe
C:\WINDOWS\netlc.exe
C:\WINDOWS\netok.dll
C:\WINDOWS\netql.exe
C:\WINDOWS\netva.exe
C:\WINDOWS\netxk.exe
C:\WINDOWS\netzm32.exe
C:\WINDOWS\nnfrq.log
C:\WINDOWS\ntay.dll
C:\WINDOWS\ntfm.dll
C:\WINDOWS\ntgs.exe
C:\WINDOWS\ntjn.dll
C:\WINDOWS\ntjq32.exe
C:\WINDOWS\ntkc32.dll
C:\WINDOWS\ntkg.dll
C:\WINDOWS\ntll32.exe
C:\WINDOWS\ntmd.dll
C:\WINDOWS\ntqv32.exe
C:\WINDOWS\ntvr32.exe
C:\WINDOWS\ntxp32.dll
C:\WINDOWS\n_bsbjcq.log
C:\WINDOWS\n_bsbjcq.log
C:\WINDOWS\n_klkvbp.dat
C:\WINDOWS\orun32.ini
C:\WINDOWS\pguta.log
C:\WINDOWS\sdkcn.dll
C:\WINDOWS\sdkgf32.exe
C:\WINDOWS\sdkjc.dll
C:\WINDOWS\sdkld.dll
C:\WINDOWS\sdkmg32.dll
C:\WINDOWS\sdknw32.dll
C:\WINDOWS\sdkzt32.dll
C:\WINDOWS\spupdsvc.log
C:\WINDOWS\sysda.dll
C:\WINDOWS\sysew.exe
C:\WINDOWS\sysha32.exe
C:\WINDOWS\syshy32.exe
C:\WINDOWS\sysim32.exe
C:\WINDOWS\sysiz.exe
C:\WINDOWS\syslc32.exe
C:\WINDOWS\sysmq.dll
C:\WINDOWS\syspz32.exe
C:\WINDOWS\system32\addby.exe
C:\WINDOWS\system32\addew32.exe
C:\WINDOWS\system32\addhj32.exe
C:\WINDOWS\system32\addof.exe
C:\WINDOWS\system32\addpy.dll
C:\WINDOWS\system32\addsb32.exe
C:\WINDOWS\system32\addsp.dll
C:\WINDOWS\system32\addwr.exe
C:\WINDOWS\system32\addzl.dll
C:\WINDOWS\system32\apicu32.dll
C:\WINDOWS\system32\apill.dll
C:\WINDOWS\system32\apimn32.dll
C:\WINDOWS\system32\apiph32.exe
C:\WINDOWS\system32\apirw32.exe
C:\WINDOWS\system32\appbe32.dll
C:\WINDOWS\system32\appdn32.dll
C:\WINDOWS\system32\appga32.dll
C:\WINDOWS\system32\appml32.exe
C:\WINDOWS\system32\appsw32.exe
C:\WINDOWS\system32\apptb32.dll
C:\WINDOWS\system32\appwy.exe
C:\WINDOWS\system32\atlbk32.exe
C:\WINDOWS\system32\atlcq.exe
C:\WINDOWS\system32\atleo.exe
C:\WINDOWS\system32\atlfl32.exe
C:\WINDOWS\system32\atlfy.exe
C:\WINDOWS\system32\atlkk32.dll
C:\WINDOWS\system32\atlyn.exe
C:\WINDOWS\system32\crae.dll
C:\WINDOWS\system32\crak32.exe
C:\WINDOWS\system32\crcq.dll
C:\WINDOWS\system32\creq32.dll
C:\WINDOWS\system32\crhk.exe
C:\WINDOWS\system32\crhz.dll
C:\WINDOWS\system32\crkw.exe
C:\WINDOWS\system32\crnb32.dll
C:\WINDOWS\system32\crny.dll
C:\WINDOWS\system32\crqc32.dll
C:\WINDOWS\system32\crrr32.exe
C:\WINDOWS\system32\crxf32.dll
C:\WINDOWS\system32\cryi.dll
C:\WINDOWS\system32\d3hn.dll
C:\WINDOWS\system32\d3kv.dll
C:\WINDOWS\system32\d3mo.dll
C:\WINDOWS\system32\d3of.exe
C:\WINDOWS\system32\d3px.dll
C:\WINDOWS\system32\iedb.dll
C:\WINDOWS\system32\iehn.exe
C:\WINDOWS\system32\ieht32.dll
C:\WINDOWS\system32\iejb32.exe
C:\WINDOWS\system32\ielq32.dll
C:\WINDOWS\system32\ieor.dll
C:\WINDOWS\system32\ieqq32.dll
C:\WINDOWS\system32\iesq32.exe
C:\WINDOWS\system32\ietz.dll
C:\WINDOWS\system32\ipht.dll
C:\WINDOWS\system32\ipij32.exe
C:\WINDOWS\system32\ipld.exe
C:\WINDOWS\system32\ipwx32.exe
C:\WINDOWS\system32\javaaw32.dll
C:\WINDOWS\system32\javaay.exe
C:\WINDOWS\system32\javaic32.exe
C:\WINDOWS\system32\javamc.exe
C:\WINDOWS\system32\javamn.exe
C:\WINDOWS\system32\javaot32.exe
C:\WINDOWS\system32\javash32.exe
C:\WINDOWS\system32\javaty32.exe
C:\WINDOWS\system32\javayu.dll
C:\WINDOWS\system32\javayw.dll
C:\WINDOWS\system32\mfcaw32.exe
C:\WINDOWS\system32\mfcdb32.dll
C:\WINDOWS\system32\mfcdz32.dll
C:\WINDOWS\system32\mfcew.dll
C:\WINDOWS\system32\mfcgl32.dll
C:\WINDOWS\system32\mfciq.exe
C:\WINDOWS\system32\mfcko.dll
C:\WINDOWS\system32\mfcnl32.dll
C:\WINDOWS\system32\mfcpe.dll
C:\WINDOWS\system32\mfcpu32.exe
C:\WINDOWS\system32\mfcul.exe
C:\WINDOWS\system32\mfcwx32.dll
C:\WINDOWS\system32\mfcwy32.exe
C:\WINDOWS\system32\mscf.dll
C:\WINDOWS\system32\msed32.exe
C:\WINDOWS\system32\msju.dll
C:\WINDOWS\system32\msks.exe
C:\WINDOWS\system32\mslj.exe
C:\WINDOWS\system32\mslv32.dll
C:\WINDOWS\system32\msmq.dll
C:\WINDOWS\system32\msnx.dll
C:\WINDOWS\system32\msob.dll
C:\WINDOWS\system32\msoi32.exe
C:\WINDOWS\system32\msqa32.exe
C:\WINDOWS\system32\msql32.exe
C:\WINDOWS\system32\mssz32.exe
C:\WINDOWS\system32\msxj.exe
C:\WINDOWS\system32\netan32.dll
C:\WINDOWS\system32\netbv32.exe
C:\WINDOWS\system32\netdq32.exe
C:\WINDOWS\system32\netfn.exe
C:\WINDOWS\system32\netgr.dll
C:\WINDOWS\system32\netjo32.exe
C:\WINDOWS\system32\netry32.exe
C:\WINDOWS\system32\netrz.exe
C:\WINDOWS\system32\nthk32.exe
C:\WINDOWS\system32\ntiu32.exe
C:\WINDOWS\system32\ntmv32.exe
C:\WINDOWS\system32\ntun.dll
C:\WINDOWS\system32\ntxa.exe
C:\WINDOWS\system32\ntxl32.exe
C:\WINDOWS\system32\ntzb32.exe
C:\WINDOWS\system32\sdkdh32.exe
C:\WINDOWS\system32\sdkdp.dll
C:\WINDOWS\system32\sdkej32.exe
C:\WINDOWS\system32\sdkex.exe
C:\WINDOWS\system32\sdkio32.dll
C:\WINDOWS\system32\sdklb.exe
C:\WINDOWS\system32\sdklx.dll
C:\WINDOWS\system32\sdkoq32.exe
C:\WINDOWS\system32\sdkum32.exe
C:\WINDOWS\system32\sdkyp32.dll
C:\WINDOWS\system32\sdkys.exe
C:\WINDOWS\system32\sysck32.dll
C:\WINDOWS\system32\sysda.exe
C:\WINDOWS\system32\sysgb.dll
C:\WINDOWS\system32\sysgl32.exe
C:\WINDOWS\system32\sysqn32.exe
C:\WINDOWS\system32\sysrn.dll
C:\WINDOWS\system32\systb32.exe
C:\WINDOWS\system32\systg32.dll
C:\WINDOWS\system32\sysvl.exe
C:\WINDOWS\system32\sysvx.exe
C:\WINDOWS\system32\sysyu32.exe
C:\WINDOWS\system32\syszc32.dll
C:\WINDOWS\system32\winbv.dll
C:\WINDOWS\system32\winhr32.dll
C:\WINDOWS\system32\winio.exe
C:\WINDOWS\system32\winsw.exe
C:\WINDOWS\system32\winvm32.dll
C:\WINDOWS\system32\winvr.exe
C:\WINDOWS\system32\winxc32.exe
C:\WINDOWS\system32\winyc32.exe
C:\WINDOWS\system32\winzq.dll
C:\WINDOWS\sysxy.exe
C:\WINDOWS\tacow.dat
C:\WINDOWS\winab32.dll
C:\WINDOWS\winat.exe
C:\WINDOWS\wincx.exe
C:\WINDOWS\winee.dll
C:\WINDOWS\winey32.exe
C:\WINDOWS\wingn32.dll
C:\WINDOWS\wingx.dll
C:\WINDOWS\winjn.dll
C:\WINDOWS\winkg32.exe
C:\WINDOWS\winma32.exe
C:\WINDOWS\winnp.dll
C:\WINDOWS\winqs32.exe
C:\WINDOWS\winrf.dll
C:\WINDOWS\winvn.exe
C:\WINDOWS\winwk32.exe
C:\WINDOWS\winzr32.dll
C:\WINDOWS\xsxqs.txt
C:\WINDOWS\zdrbb.dat
C:\WINDOWS\zhehs.txt
C:\WINDOWS\_default.pif


Return to Killbox, go to the File menu, and choose "Paste from Clipboard".

Click the red-and-white "Delete File" button. Click "Yes" at the Delete on Reboot prompt. Click "No" at the Pending Operations prompt.

Reboot the PC in Normal Mode.

Now do a scan at Kaspersky and post back the scan report with a fresh HJT log and the About Buster log.
  • 0

#19
harley02

harley02

    Member

  • Topic Starter
  • Member
  • PipPip
  • 11 posts
job took all my time, back now

-------------------------------------------------------------------------------
KASPERSKY ON-LINE SCANNER REPORT
Thursday, October 06, 2005 21:27:34
Operating System: Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600)
Kaspersky On-line Scanner version: 5.0.67.0
Kaspersky Anti-Virus database last update: 7/10/2005
Kaspersky Anti-Virus database records: 143536
-------------------------------------------------------------------------------

Scan Settings:
Scan using the following antivirus database: standard
Scan Archives: true
Scan Mail Bases: true

Scan Target - My Computer:
A:\
C:\
D:\
E:\
F:\
G:\
H:\

Scan Statistics:
Total number of scanned objects: 80498
Number of viruses found: 5
Number of infected objects: 351
Number of suspicious objects: 0
Duration of the scan process: 2580 sec

Infected Object Name - Virus Name
C:\!KillBox\addag.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\addak.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\addbn.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\addby.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\addck32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\addeb32.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\addew32.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\addhj32.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\addhw.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\addof.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\!KillBox\addot.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\addpy.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\addsb32.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\addsp.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\addwr.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\addxa.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\addyg32.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\addzl.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\aosry.dat:mwnocw:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\apibc.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\!KillBox\apicu32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\apidx32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\apief.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\!KillBox\apihy.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\apiiv32.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\apild32.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\!KillBox\apill.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\apimn32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\apiph32.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\!KillBox\apirw32.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\apize.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\appbe32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\appby32.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\appdn32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\appga32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\appgt32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\apphd32.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\appia.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\appkn32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\applq32.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\!KillBox\appml32.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\appqa.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\appqm32.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\!KillBox\appsw32.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\apptb32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\apptk.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\apptr32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\appwf.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\appwy.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\appxc32.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\atlbk32.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\!KillBox\atlcq.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\!KillBox\atleh.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\atleo.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\atlfl32.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\atlfo32.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\atlfy.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\atlgy32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\atlhb32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\atljg.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\atlkk32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\atlme32.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\atlmr.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\atlsx.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\atlwd.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\!KillBox\atlyn.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\atlyv32.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\!KillBox\Blue Lace 16.bmp:fxgtwh:$DATA Infected: Trojan.Win32.Agent.bi
C:\!KillBox\cfnra.log:zoaaxw:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\crae.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\crak32.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\!KillBox\crcl32.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\crcq.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\crdt.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\crek32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\creq32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\crgj.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\crhk.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\crhz.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\crik.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\crkl32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\crkw.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\!KillBox\crnb32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\crny.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\crqc32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\crrr32.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\!KillBox\crus32.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\crvv32.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\crxf32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\crxq32.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\!KillBox\cryd32.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\!KillBox\cryi.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\d3cr.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\d3gl32.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\!KillBox\d3hn.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\d3js32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\d3kv.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\d3lc.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\d3mo.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\d3of.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\!KillBox\d3pm32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\d3px.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\d3ss.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\d3vj32.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\d3wz.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\!KillBox\dpexe.dat:gcvwmt:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\!KillBox\explorer.scf:cdoqlv:$DATA Infected: Trojan.Win32.Agent.bi
C:\!KillBox\Gone Fishing.bmp:gblnt:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\!KillBox\iean32.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\ieba32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\iecm.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\iecp.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\iedb.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\iedv.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\iehm.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\!KillBox\iehn.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\!KillBox\ieht32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\ieiy32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\iejb32.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\ielq32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\ieor.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\ieqq32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\iesq32.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\ietz.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\iexz.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\ieyo32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\ieyr.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\ipdt32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\ipdx32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\ipgq.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\ipht.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\ipii.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\ipij32.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\ipik32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\ipkt.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\ipld.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\iprp.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\iptu.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\ipwx32.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\javaaw32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\javaay.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\!KillBox\javadr.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\javahg32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\javaia.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\javaic32.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\javamc.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\javamn.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\javaot32.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\javaoz32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\javapl32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\javash32.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\javaso.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\javaty32.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\!KillBox\javayl.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\javayu.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\javayw.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\mfcak.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\mfcaw32.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\!KillBox\mfcdb32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\mfcdz32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\mfcew.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\mfcgl32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\mfciq.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\mfcjj32.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\!KillBox\mfcko.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\mfcnb.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\!KillBox\mfcnh32.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\!KillBox\mfcnl32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\mfcpe.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\mfcpl32.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\mfcpu32.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\!KillBox\mfcta.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\mfcul.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\mfcuq32.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\mfcwx32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\mfcwy32.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\mfcxo.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\mfczm32.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\mscf.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\msdp32.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\msed32.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\msgy32.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\msig.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\msju.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\msks.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\mslj.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\mslv32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\msmq.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\msnx.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\msob.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\msoi32.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\msqa32.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\msql32.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\mssz32.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\!KillBox\msxj.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\msyp.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\neoyu.dat:siyexc:$DATA Infected: Trojan.Win32.Agent.iu
C:\!KillBox\netan32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\netap.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\netbv32.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\netdq32.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\!KillBox\netfn.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\!KillBox\netgr.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\nethy.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\netjo32.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\!KillBox\netlc.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\netok.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\netql.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\netry32.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\netrz.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\netva.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\netxk.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\!KillBox\netzm32.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\nnfrq.log:ljrjzn:$DATA Infected: Trojan.Win32.Agent.iu
C:\!KillBox\ntay.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\ntfm.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\ntgs.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\nthk32.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\ntiu32.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\ntjn.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\ntjq32.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\!KillBox\ntkc32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\ntkg.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\ntll32.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\ntmd.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\ntmv32.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\ntqv32.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\ntun.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\ntvr32.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\!KillBox\ntxa.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\ntxl32.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\!KillBox\ntxp32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\ntzb32.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\n_bsbjcq.log Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\n_bsbjcq.log:gvhugl:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\!KillBox\n_klkvbp.dat Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\orun32.ini:fxmzhr:$DATA Infected: Trojan.Win32.Agent.iu
C:\!KillBox\pguta.log:xyffkt:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\!KillBox\sdkcn.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\sdkdh32.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\sdkdp.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\sdkej32.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\sdkex.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\!KillBox\sdkgf32.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\sdkio32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\sdkjc.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\sdklb.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\sdkld.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\sdklx.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\sdkmg32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\sdknw32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\sdkoq32.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\sdkum32.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\!KillBox\sdkyp32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\sdkys.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\!KillBox\sdkzt32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\spupdsvc.log:ybvdax:$DATA Infected: Trojan.Win32.Agent.iu
C:\!KillBox\sysck32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\sysda.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\sysda.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\sysew.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\sysgb.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\sysgl32.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\sysha32.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\syshy32.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\sysim32.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\sysiz.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\syslc32.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\!KillBox\sysmq.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\syspz32.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\sysqn32.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\sysrn.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\systb32.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\systg32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\sysvl.exe Infected: Trojan-Downloader.Win32.Agent.bq
C:\!KillBox\sysvx.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\sysxy.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\sysyu32.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\syszc32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\tacow.dat:qtyiws:$DATA Infected: Trojan.Win32.Agent.iu
C:\!KillBox\winab32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\winat.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\winbv.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\wincx.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\winee.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\winey32.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\wingn32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\wingx.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\winhr32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\winio.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\winjn.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\winkg32.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\winma32.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\winnp.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\winqs32.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\winrf.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\winsw.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\winvm32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\winvn.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\winvr.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\winwk32.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\winxc32.exe Infected: Trojan.Win32.Agent.iu
C:\!KillBox\winyc32.exe Infected: Trojan.Win32.Agent.bi
C:\!KillBox\winzq.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\winzr32.dll Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\xsxqs.txt:sxovgf:$DATA Infected: Trojan.Win32.Agent.iu
C:\!KillBox\zdrbb.dat:rtacq:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\zhehs.txt:awdqlc:$DATA Infected: Trojan.Win32.Agent.iu
C:\!KillBox\_default.pif:amsrz:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\_default.pif:atfhyk:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\_default.pif:bgpljv:$DATA Infected: Trojan.Win32.Agent.bi
C:\!KillBox\_default.pif:btzszu:$DATA Infected: Trojan.Win32.Agent.iu
C:\!KillBox\_default.pif:cztogi:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\!KillBox\_default.pif:dnvcv:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\!KillBox\_default.pif:ecquu:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\!KillBox\_default.pif:fnfsj:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\!KillBox\_default.pif:gecfnd:$DATA Infected: Trojan.Win32.Agent.iu
C:\!KillBox\_default.pif:gilzgh:$DATA Infected: Trojan.Win32.Agent.iu
C:\!KillBox\_default.pif:govtkr:$DATA Infected: Trojan.Win32.Agent.iu
C:\!KillBox\_default.pif:ifffpl:$DATA Infected: Trojan.Win32.Agent.bi
C:\!KillBox\_default.pif:ispmfk:$DATA Infected: Trojan.Win32.Agent.iu
C:\!KillBox\_default.pif:jkhxwe:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\!KillBox\_default.pif:jqrydx:$DATA Infected: Trojan.Win32.Agent.bi
C:\!KillBox\_default.pif:kgmcua:$DATA Infected: Trojan.Win32.Agent.bi
C:\!KillBox\_default.pif:kttoqj:$DATA Infected: Trojan.Win32.Agent.bi
C:\!KillBox\_default.pif:mdqcwd:$DATA Infected: Trojan.Win32.Agent.bi
C:\!KillBox\_default.pif:nhbumf:$DATA Infected: Trojan.Win32.Agent.iu
C:\!KillBox\_default.pif:nhrrbm:$DATA Infected: Trojan.Win32.Agent.bi
C:\!KillBox\_default.pif:qjxscc:$DATA Infected: Trojan.Win32.Agent.iu
C:\!KillBox\_default.pif:rrikwn:$DATA Infected: Trojan.Win32.Agent.iu
C:\!KillBox\_default.pif:swhqim:$DATA Infected: Trojan.Win32.Agent.bi
C:\!KillBox\_default.pif:tpwqzh:$DATA Infected: Trojan.Win32.Agent.bi
C:\!KillBox\_default.pif:twtxaf:$DATA Infected: Trojan.Win32.Agent.iu
C:\!KillBox\_default.pif:ukbbwj:$DATA Infected: Trojan.Win32.Agent.iu
C:\!KillBox\_default.pif:uvozed:$DATA Infected: Trojan.Win32.Agent.bi
C:\!KillBox\_default.pif:vfkfy:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\_default.pif:vqtmbb:$DATA Infected: Trojan.Win32.Agent.iu
C:\!KillBox\_default.pif:wigwy:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\!KillBox\_default.pif:wwllj:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\!KillBox\_default.pif:xiwdlg:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\!KillBox\_default.pif:xrybvk:$DATA Infected: Trojan.Win32.Agent.bi
C:\!KillBox\_default.pif:ydbfqe:$DATA Infected: Trojan.Win32.Agent.iu
C:\!KillBox\_default.pif:yhnyeb:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\!KillBox\_default.pif:yjenir:$DATA Infected: Trojan.Win32.Agent.iu
C:\!KillBox\_default.pif:zqpfck:$DATA Infected: Trojan.Win32.Agent.iu
C:\!KillBox\_default.pif:zrfui:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\hp\region\EN_US-ie.reg Infected: Trojan.WinREG.StartPage
C:\WINDOWS\KB893066.log:vygost:$DATA Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\msoffice.ini:ljrjzn:$DATA Infected: Trojan.Win32.Agent.iu
C:\WINDOWS\system.ini:vpylqn:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\WINDOWS\WindowsUpdate.log:fqski:$DATA Infected: Trojan-Downloader.Win32.Agent.bc

Scan process completed.

Logfile of HijackThis v1.99.1
Scan saved at 9:46:59 PM, on 10/6/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\hkcmd.exe
C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\PROGRA~1\3BSOFT~1\WINDOW~2\Windows Clean-Up Pro.uzy
C:\Program Files\ewido\security suite\ewidoctrl.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Owner\Desktop\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
O2 - BHO: AKHelper.HelperBHO - {911C4A8E-0F75-4B83-BEB9-02BDDF29D11E} - C:\Program Files\3B Software\3B Ad Blocker Pro\AKHelper.dll
O3 - Toolbar: &Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRA~1\Yahoo!\COMPAN~1\Installs\cpn\ycomp5_5_7_0.dll
O3 - Toolbar: Ad Blocker Pro Toolbar - {28BC2EC4-5EAD-45E1-9F9F-82CD5E293601} - C:\Program Files\3B Software\3B Ad Blocker Pro\AKToolbar.dll
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
O4 - HKLM\..\Run: [StorageGuard] "C:\Program Files\VERITAS Software\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Windows Clean-Up Pro] C:\PROGRA~1\3BSOFT~1\WINDOW~2\WINDOWS CLEAN-UP PRO.Exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKCU\..\Run: [NVIEW] rundll32.exe nview.dll,nViewLoadHook
O4 - HKCU\..\Run: [Windows Registry Repair Pro] C:\Program Files\3B Software\Windows Registry Repair Pro\RegistryRepairPro.exe 4
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm
O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 - Extra button: Yahoo! Login - {2499216C-4BA5-11D5-BD9C-000103C116D5} - C:\Program Files\Yahoo!\Common\ylogin.dll
O9 - Extra 'Tools' menuitem: Yahoo! Login - {2499216C-4BA5-11D5-BD9C-000103C116D5} - C:\Program Files\Yahoo!\Common\ylogin.dll
O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes0521.dll
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes0521.dll
O9 - Extra button: MoneySide - {E023F504-0C5A-4750-A1E7-A9046DEA8A21} - C:\Program Files\Microsoft Money\System\mnyside.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: ppctlcab - http://ppupdates.ca....er/ppctlcab.cab
O16 - DPF: {04E214E5-63AF-4236-83C6-A7ADCBF9BD02} (HouseCall Control) - http://housecall60.t...all/xscan60.cab
O16 - DPF: {0E5F0222-96B9-11D3-8997-00104BD12D94} (PCPitstop Utility) - http://www.pcpitstop...p/PCPitStop.CAB
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky...can_unicode.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft....k/?linkid=39204
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.micros...b?1125916279640
O16 - DPF: {7B297BFD-85E4-4092-B2AF-16A91B2EA103} (WScanCtl Class) - http://www3.ca.com/s...nfo/webscan.cab
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: Content Monitoring Tool (msCMTSrvc) - Unknown owner - C:\WINDOWS\system32\msCMTSrvc.exe (file missing)
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe

AboutBuster 5.0 reference file 31
Scan started on [9/29/2005] at [9:55:41 PM]
------------------------------------------------
No Ads Found!
------------------------------------------------
No Files Found!
------------------------------------------------
Scan was COMPLETED SUCCESSFULLY at 9:57:25 PM


AboutBuster 5.0 reference file 31
Scan started on [9/29/2005] at [10:27:48 PM]
------------------------------------------------
No Ads Found!
------------------------------------------------
No Files Found!
------------------------------------------------
Scan was COMPLETED SUCCESSFULLY at 10:28:37 PM


AboutBuster 5.0 reference file 31
Scan started on [9/29/2005] at [10:37:20 PM]
------------------------------------------------
No Ads Found!
------------------------------------------------
No Files Found!
------------------------------------------------
Scan was COMPLETED SUCCESSFULLY at 10:38:12 PM


AboutBuster 5.0 reference file 31
Scan started on [10/6/2005] at [8:30:39 PM]
------------------------------------------------
No Ads Found!
------------------------------------------------
No Files Found!
------------------------------------------------
Scan was COMPLETED SUCCESSFULLY at 8:31:28 PM


good luck
harley02
  • 0

#20
tampabelle

tampabelle

    Member 5k

  • Retired Staff
  • 6,363 posts
Hi,


Your logs look fine.



Uninstall Ewido as it is a trial product and the trial period will expire shortly.


I had earlier recommended certain steps to carry out to prevent infections in future. Please follow them.
  • 0

#21
harley02

harley02

    Member

  • Topic Starter
  • Member
  • PipPip
  • 11 posts
:tazz:
running very smooth
firewall and other stuff in place,
thanks so very much for your help.....
maybe this text will help someone else

harley02
  • 0

#22
tampabelle

tampabelle

    Member 5k

  • Retired Staff
  • 6,363 posts
Since this issue appears to be resolved ... this Topic has been closed. Glad we could help. :tazz:

If you're the topic starter, and need this topic reopened, please contact a staff member with the address of the thread.

Everyone else please begin a New Topic.
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP