localizedresourcename=@%sytemroot%system32\shell22 or 32 and then something else I cant read my own writing. I have to x that out everytime, is that a virus? the spyware notification is gone on my desktop background, yeah. However, when i went into control panel there is no way to apply the settings i just have to click ok and it asks if i want to reset my homepage also- i did. I installed the kaspersky file - will i be deleteing all these things later or do you have recommendations of which spyware stuff to keep? I may be going to bed soon as I get up at 6 but i will leave the forum open. I did not see your reply for some time - do i have to click on something else after posting my reply to see your next post or does it automatically come up on my screen? sorry for all the questions but i am comp illiterate. thanks for all your help
Logfile of HijackThis v1.99.1
Scan saved at 12:28:29 AM, on 1/4/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\WINDOWS\system32\drivers\KodakCCS.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
C:\WINDOWS\System32\ScsiAccess.EXE
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS\system32\wdfmgr.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\spider.exe
C:\Program Files\Hijackthis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=localhost:8080
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost;<local>
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: EarthLink Popup Blocker - {4B5F2E08-6F39-479a-B547-B2026E4C7EDF} - C:\Program Files\EarthLink TotalAccess\PnEL.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Pop-Up Blocker - {D7F30B62-8269-41AF-9539-B2697FA7D77E} - C:\Program Files\EarthLink TotalAccess\PnEL.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [MsgCenterExe] "C:\Program Files\Common Files\Real\Update_OB\RealOneMessageCenter.exe" -osboot
O4 - HKLM\..\Run: [ControlPanel] C:\WINDOWS\system32\popcorn72.exe rundll.dll,LoadMouseProfile
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [E6TaskPanel] "C:\Program Files\EarthLink TotalAccess\TaskPanl.exe" -winstart
O4 - HKCU\..\RunOnce: [DelayShred] "C:\Program Files\McAfee\McAfee Shared Components\Shredder 5\SHRED32.EXE" /q C:\DOCUME~1\XPPRP~1\LOCALS~1\Temp\PERFLI~1.SH! C:\DOCUME~1\XPPRP~1\LOCALS~1\Temp\ME_ZPE~1.SH! C:\DOCUME~1\XPPRP~1\LOCALS~1\Temp\ME_NVW~1.SH! C:\DOCUME~1\XPPRP~1\LOCALS~1\Temp\ME_FEO~1.SH! C:\DOCUME~1\XPPRP~1\LOCALS~1\Temp\ME_B40~1.SH!
O4 - Global Startup: Kodak EasyShare software.lnk = C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Refresh Pa&ge with Full Quality - C:\Program Files\EarthLink TotalAccess\Accelerator\\pac-page.html
O8 - Extra context menu item: Refresh Pi&cture with Full Quality - C:\Program Files\EarthLink TotalAccess\Accelerator\\pac-image.html
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .mov: C:\Program Files\Internet Explorer\PLUGINS\npqtplugin.dll
O12 - Plugin for .mpeg: C:\Program Files\Internet Explorer\PLUGINS\npqtplugin3.dll
O12 - Plugin for .tif: C:\Program Files\Internet Explorer\PLUGINS\npqtplugin5.dll
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky...can_unicode.cab
O16 - DPF: {49232000-16E4-426C-A231-62846947304B} - http://ipgweb.cce.hp...ads/sysinfo.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoft...free/asinst.cab
O16 - DPF: {AB86CE53-AC9F-449F-9399-D8ABCA09EC09} (Get_ActiveX Control) - https://h17000.www1....loadManager.ocx
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: Kodak Camera Connection Software (KodakCCS) - Eastman Kodak Company - C:\WINDOWS\system32\drivers\KodakCCS.exe
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: ScsiAccess - Unknown owner - C:\WINDOWS\System32\ScsiAccess.EXE
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
-------------------------------------------------------------------------------
KASPERSKY ON-LINE SCANNER REPORT
Wednesday, January 04, 2006 00:27:56
Operating System: Microsoft Windows XP Professional, Service Pack 2 (Build 2600)
Kaspersky On-line Scanner version: 5.0.67.0
Kaspersky Anti-Virus database last update: 4/01/2006
Kaspersky Anti-Virus database records: 158675
-------------------------------------------------------------------------------
Scan Settings:
Scan using the following antivirus database: standard
Scan Archives: true
Scan Mail Bases: true
Scan Target - My Computer:
A:\
C:\
D:\
E:\
Scan Statistics:
Total number of scanned objects: 34001
Number of viruses found: 21
Number of infected objects: 193
Number of suspicious objects: 4
Duration of the scan process: 2605 sec
Infected Object Name - Virus Name
C:\Program Files\Norton AntiVirus\Quarantine\038A5BFC.dll Infected: Trojan-Downloader.Win32.Delf.aeo
C:\Program Files\Norton AntiVirus\Quarantine\04C6120A.exe Infected: Trojan-Downloader.Win32.Small.cdc
C:\Program Files\Norton AntiVirus\Quarantine\04C93C06.exe Infected: Trojan-Downloader.Win32.Small.atl
C:\Program Files\Norton AntiVirus\Quarantine\0CD96327.qtd Infected: Trojan-Downloader.Win32.Small.cdc
C:\Program Files\Norton AntiVirus\Quarantine\0CDB11AA.tmp Infected: Trojan-Downloader.Win32.Small.bgp
C:\Program Files\Norton AntiVirus\Quarantine\0CDC0D23.qtd Infected: Trojan-Downloader.Win32.Small.atl
C:\Program Files\Norton AntiVirus\Quarantine\0CE03720.exe Infected: Trojan-Downloader.Win32.Agent.aca
C:\Program Files\Norton AntiVirus\Quarantine\0CF80B89.tmp Infected: Trojan-Downloader.Win32.Small.bgp
C:\Program Files\Norton AntiVirus\Quarantine\0D222D5B.tmp Infected: Trojan-Downloader.Win32.Small.bgp
C:\Program Files\Norton AntiVirus\Quarantine\14534417.htm Infected: Exploit.HTML.Mht
C:\Program Files\Norton AntiVirus\Quarantine\145A1810.htm Infected: Exploit.HTML.Mht
C:\Program Files\Norton AntiVirus\Quarantine\16C1437C.htm Suspicious: Exploit.HTML.Mht
C:\Program Files\Norton AntiVirus\Quarantine\233A1AD4.wmf Infected: Trojan-Downloader.Win32.Agent.acd
C:\Program Files\Norton AntiVirus\Quarantine\233E44D1.wmf Infected: Trojan-Downloader.Win32.Agent.acd
C:\Program Files\Norton AntiVirus\Quarantine\23416ECD.wmf Infected: Trojan-Downloader.Win32.Agent.acd
C:\Program Files\Norton AntiVirus\Quarantine\23C05441.exe Infected: Trojan-Downloader.Win32.Small.bho
C:\Program Files\Norton AntiVirus\Quarantine\23C7283A.gam Infected: Packed.Win32.Klone.b
C:\Program Files\Norton AntiVirus\Quarantine\23C7283A.qtd Infected: Trojan-Downloader.Win32.Small.bho
C:\Program Files\Norton AntiVirus\Quarantine\23CA5236.exe Infected: not-virus:Hoax.Win32.Renos.aj
C:\Program Files\Norton AntiVirus\Quarantine\23CD7C32.gam Infected: Packed.Win32.Klone.b
C:\Program Files\Norton AntiVirus\Quarantine\23CD7C32.qtd Infected: not-virus:Hoax.Win32.Renos.aj
C:\Program Files\Norton AntiVirus\Quarantine\23D1262F.exe Infected: Trojan-Downloader.Win32.Tibs.p
C:\Program Files\Norton AntiVirus\Quarantine\23D4502B.qtd Infected: Trojan-Downloader.Win32.Tibs.p
C:\Program Files\Norton AntiVirus\Quarantine\23DA2424.exe Infected: Packed.Win32.Klone.b
C:\Program Files\Norton AntiVirus\Quarantine\241C6BDC.exe Infected: Trojan-Downloader.Win32.CWS.u
C:\Program Files\Norton AntiVirus\Quarantine\24223FD5.gam Infected: Trojan-Downloader.Win32.CWS.u
C:\Program Files\Norton AntiVirus\Quarantine\242569D1.exe Infected: Trojan-Downloader.Win32.CWS.u
C:\Program Files\Norton AntiVirus\Quarantine\242913CE.gam Infected: Trojan-Downloader.Win32.CWS.u
C:\Program Files\Norton AntiVirus\Quarantine\246C63CB.dat Infected: Trojan-Downloader.Win32.Small.awa
C:\Program Files\Norton AntiVirus\Quarantine\246C63CB.exe Infected: Trojan-Downloader.Win32.Small.awa
C:\Program Files\Norton AntiVirus\Quarantine\24700DC7.dia Infected: Trojan.Win32.Dialer.ay
C:\Program Files\Norton AntiVirus\Quarantine\24700DC7.exe Infected: Trojan.Win32.Dialer.ay
C:\Program Files\Norton AntiVirus\Quarantine\247337C4.exe Infected: Trojan-Downloader.Win32.Small.awa
C:\Program Files\Norton AntiVirus\Quarantine\247337C4.gam Infected: Trojan.Win32.Dialer.ay
C:\Program Files\Norton AntiVirus\Quarantine\24AF4D3A.exe Infected: Backdoor.Win32.Agent.rw
C:\Program Files\Norton AntiVirus\Quarantine\25426F86.wmf Infected: Trojan-Downloader.Win32.Agent.acd
C:\Program Files\Norton AntiVirus\Quarantine\255D4D54.exe Infected: Trojan-Downloader.Win32.Agent.sy
C:\Program Files\Norton AntiVirus\Quarantine\271E208C.exe Infected: Trojan-Downloader.Win32.Small.bho
C:\Program Files\Norton AntiVirus\Quarantine\272B487E.gam Infected: Packed.Win32.Klone.b
C:\Program Files\Norton AntiVirus\Quarantine\272F727A.exe Infected: Trojan-Downloader.Win32.Small.bho
C:\Program Files\Norton AntiVirus\Quarantine\272F727A.qtd Infected: Trojan-Downloader.Win32.Small.bho
C:\Program Files\Norton AntiVirus\Quarantine\27354673.gam Infected: Packed.Win32.Klone.b
C:\Program Files\Norton AntiVirus\Quarantine\27354673.qtd Infected: Trojan-Downloader.Win32.Small.bho
C:\Program Files\Norton AntiVirus\Quarantine\2738706F.exe Infected: Trojan-Downloader.Win32.CWS.u
C:\Program Files\Norton AntiVirus\Quarantine\273F4468.exe Infected: Trojan-Downloader.Win32.CWS.u
C:\Program Files\Norton AntiVirus\Quarantine\27426E65.exe Infected: Trojan-Downloader.Win32.CWS.u
C:\Program Files\Norton AntiVirus\Quarantine\2749425D.exe Infected: Trojan-Downloader.Win32.CWS.u
C:\Program Files\Norton AntiVirus\Quarantine\2759144B.exe Infected: not-virus:Hoax.Win32.Renos.aj
C:\Program Files\Norton AntiVirus\Quarantine\27606844.gam Infected: Packed.Win32.Klone.b
C:\Program Files\Norton AntiVirus\Quarantine\27663C3D.qtd Infected: not-virus:Hoax.Win32.Renos.aj
C:\Program Files\Norton AntiVirus\Quarantine\276D1036.exe Infected: not-virus:Hoax.Win32.Renos.aj
C:\Program Files\Norton AntiVirus\Quarantine\27703A32.gam Infected: Packed.Win32.Klone.b
C:\Program Files\Norton AntiVirus\Quarantine\2773642F.qtd Infected: not-virus:Hoax.Win32.Renos.aj
C:\Program Files\Norton AntiVirus\Quarantine\277A3827.exe Infected: Trojan-Downloader.Win32.Tibs.p
C:\Program Files\Norton AntiVirus\Quarantine\277D6224.gam Infected: Trojan-Downloader.Win32.CWS.u
C:\Program Files\Norton AntiVirus\Quarantine\27800C20.qtd Infected: Trojan-Downloader.Win32.Tibs.p
C:\Program Files\Norton AntiVirus\Quarantine\2784361D.exe Infected: Trojan-Downloader.Win32.Tibs.p
C:\Program Files\Norton AntiVirus\Quarantine\278A0A16.exe Infected: Packed.Win32.Klone.b
C:\Program Files\Norton AntiVirus\Quarantine\278A0A16.gam Infected: Trojan-Downloader.Win32.CWS.u
C:\Program Files\Norton AntiVirus\Quarantine\27915E0E.gam Infected: Trojan-Downloader.Win32.CWS.u
C:\Program Files\Norton AntiVirus\Quarantine\2794080B.exe Infected: Packed.Win32.Klone.b
C:\Program Files\Norton AntiVirus\Quarantine\279A5C04.exe Infected: Packed.Win32.Klone.b
C:\Program Files\Norton AntiVirus\Quarantine\28961B2F.exe Infected: Trojan-Downloader.Win32.Agent.sy
C:\Program Files\Norton AntiVirus\Quarantine\29654F69.htm Suspicious: Exploit.HTML.Mht
C:\Program Files\Norton AntiVirus\Quarantine\2AFC22DE.tmp Infected: Email-Worm.Win32.Bagle.cy
C:\Program Files\Norton AntiVirus\Quarantine\2B14758E.htm Suspicious: Exploit.HTML.Mht
C:\Program Files\Norton AntiVirus\Quarantine\2F3A5367.exe Infected: Packed.Win32.Klone.b
C:\Program Files\Norton AntiVirus\Quarantine\374615A3.htm Suspicious: Exploit.HTML.Mht
C:\Program Files\Norton AntiVirus\Quarantine\3BFC4EA0.exe Infected: Packed.Win32.Klone.b
C:\Program Files\Norton AntiVirus\Quarantine\3BFC4EA0.gam Infected: Trojan-Downloader.Win32.CWS.u
C:\Program Files\Norton AntiVirus\Quarantine\43D710FB.htm Infected: Exploit.JS.CVE-2005-1790.b
C:\Program Files\Norton AntiVirus\Quarantine\485876AD.exe Infected: Backdoor.Win32.Agent.rw
C:\Program Files\Norton AntiVirus\Quarantine\4E314E94.htm Infected: Exploit.HTML.Mht
C:\Program Files\Norton AntiVirus\Quarantine\4E357891.htm Infected: Exploit.HTML.Mht
C:\Program Files\Norton AntiVirus\Quarantine\6E5F792F.exe Infected: Trojan.Win32.Dialer.ay
C:\Program Files\Norton AntiVirus\Quarantine\7DED7F93.dll Infected: Trojan-Downloader.Win32.Delf.aeo
C:\Program Files\Norton AntiVirus\Quarantine\7DF02990.dll Infected: Trojan-Downloader.Win32.Delf.aeo
C:\Program Files\Norton AntiVirus\Quarantine\7DF3538C.dll Infected: Trojan-Downloader.Win32.Delf.aeo
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP573\A0032606.exe Infected: Trojan-Downloader.Win32.Small.byj
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP616\A0041751.exe Infected: Packed.Win32.Klone.b
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP616\A0041753.exe Infected: Packed.Win32.Klone.b
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP616\A0041754.exe Infected: Packed.Win32.Klone.b
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP616\A0041756.exe Infected: Packed.Win32.Klone.b
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP616\A0041757.exe Infected: Trojan-Downloader.Win32.Tibs.p
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP616\A0041758.qtd Infected: Trojan-Downloader.Win32.Tibs.p
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP616\A0041759.exe Infected: Trojan-Downloader.Win32.Tibs.p
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP616\A0041760.qtd Infected: not-virus:Hoax.Win32.Renos.aj
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP616\A0041761.exe Infected: not-virus:Hoax.Win32.Renos.aj
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP616\A0041762.qtd Infected: not-virus:Hoax.Win32.Renos.aj
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP616\A0041764.exe Infected: not-virus:Hoax.Win32.Renos.aj
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP616\A0041765.exe Infected: Backdoor.Win32.Agent.rw
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP616\A0041767.exe Infected: Trojan-Downloader.Win32.CWS.u
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP616\A0041769.exe Infected: Trojan-Downloader.Win32.CWS.u
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP616\A0041770.exe Infected: Trojan-Downloader.Win32.CWS.u
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP616\A0041771.exe Infected: Trojan-Downloader.Win32.CWS.u
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP616\A0041772.qtd Infected: Trojan-Downloader.Win32.Small.bho
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP616\A0041773.exe Infected: Trojan-Downloader.Win32.Small.bho
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP616\A0041774.qtd Infected: Trojan-Downloader.Win32.Small.bho
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP616\A0041775.exe Infected: Trojan-Downloader.Win32.Small.bho
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP617\A0041802.exe Infected: Packed.Win32.Klone.b
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP617\A0041804.exe Infected: Packed.Win32.Klone.b
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP617\A0041805.exe Infected: Packed.Win32.Klone.b
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP617\A0041807.exe Infected: Packed.Win32.Klone.b
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP617\A0041808.exe Infected: Trojan-Downloader.Win32.Tibs.p
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP617\A0041809.qtd Infected: Trojan-Downloader.Win32.Tibs.p
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP617\A0041810.exe Infected: Trojan-Downloader.Win32.Tibs.p
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP617\A0041811.qtd Infected: not-virus:Hoax.Win32.Renos.aj
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP617\A0041812.exe Infected: not-virus:Hoax.Win32.Renos.aj
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP617\A0041813.qtd Infected: not-virus:Hoax.Win32.Renos.aj
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP617\A0041815.exe Infected: not-virus:Hoax.Win32.Renos.aj
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP617\A0041816.exe Infected: Backdoor.Win32.Agent.rw
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP617\A0041818.exe Infected: Trojan-Downloader.Win32.CWS.u
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP617\A0041820.exe Infected: Trojan-Downloader.Win32.CWS.u
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP617\A0041821.exe Infected: Trojan-Downloader.Win32.CWS.u
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP617\A0041822.exe Infected: Trojan-Downloader.Win32.CWS.u
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP617\A0041823.qtd Infected: Trojan-Downloader.Win32.Small.bho
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP617\A0041824.exe Infected: Trojan-Downloader.Win32.Small.bho
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP617\A0041825.qtd Infected: Trojan-Downloader.Win32.Small.bho
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP617\A0041826.exe Infected: Trojan-Downloader.Win32.Small.bho
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP618\A0041853.exe Infected: Packed.Win32.Klone.b
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP618\A0041855.exe Infected: Packed.Win32.Klone.b
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP618\A0041856.exe Infected: Packed.Win32.Klone.b
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP618\A0041858.exe Infected: Packed.Win32.Klone.b
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP618\A0041859.exe Infected: Trojan-Downloader.Win32.Tibs.p
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP618\A0041860.qtd Infected: Trojan-Downloader.Win32.Tibs.p
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP618\A0041861.exe Infected: Trojan-Downloader.Win32.Tibs.p
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP618\A0041862.qtd Infected: not-virus:Hoax.Win32.Renos.aj
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP618\A0041863.exe Infected: not-virus:Hoax.Win32.Renos.aj
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP618\A0041864.qtd Infected: not-virus:Hoax.Win32.Renos.aj
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP618\A0041866.exe Infected: not-virus:Hoax.Win32.Renos.aj
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP618\A0041867.exe Infected: Backdoor.Win32.Agent.rw
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP618\A0041869.exe Infected: Trojan-Downloader.Win32.CWS.u
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP618\A0041871.exe Infected: Trojan-Downloader.Win32.CWS.u
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP618\A0041872.exe Infected: Trojan-Downloader.Win32.CWS.u
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP618\A0041873.exe Infected: Trojan-Downloader.Win32.CWS.u
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP618\A0041874.qtd Infected: Trojan-Downloader.Win32.Small.bho
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP618\A0041875.exe Infected: Trojan-Downloader.Win32.Small.bho
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP618\A0041876.qtd Infected: Trojan-Downloader.Win32.Small.bho
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP618\A0041877.exe Infected: Trojan-Downloader.Win32.Small.bho
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP619\A0041904.exe Infected: Packed.Win32.Klone.b
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP619\A0041906.exe Infected: Packed.Win32.Klone.b
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP619\A0041907.exe Infected: Packed.Win32.Klone.b
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP619\A0041909.exe Infected: Packed.Win32.Klone.b
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP619\A0041910.exe Infected: Trojan-Downloader.Win32.Tibs.p
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP619\A0041911.qtd Infected: Trojan-Downloader.Win32.Tibs.p
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP619\A0041912.exe Infected: Trojan-Downloader.Win32.Tibs.p
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP619\A0041913.qtd Infected: not-virus:Hoax.Win32.Renos.aj
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP619\A0041914.exe Infected: not-virus:Hoax.Win32.Renos.aj
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP619\A0041915.qtd Infected: not-virus:Hoax.Win32.Renos.aj
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP619\A0041917.exe Infected: not-virus:Hoax.Win32.Renos.aj
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP619\A0041918.exe Infected: Backdoor.Win32.Agent.rw
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP619\A0041920.exe Infected: Trojan-Downloader.Win32.CWS.u
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP619\A0041922.exe Infected: Trojan-Downloader.Win32.CWS.u
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP619\A0041923.exe Infected: Trojan-Downloader.Win32.CWS.u
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP619\A0041924.exe Infected: Trojan-Downloader.Win32.CWS.u
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP619\A0041925.qtd Infected: Trojan-Downloader.Win32.Small.bho
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP619\A0041926.exe Infected: Trojan-Downloader.Win32.Small.bho
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP619\A0041927.qtd Infected: Trojan-Downloader.Win32.Small.bho
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP619\A0041928.exe Infected: Trojan-Downloader.Win32.Small.bho
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP620\A0041955.exe Infected: Packed.Win32.Klone.b
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP620\A0041957.exe Infected: Packed.Win32.Klone.b
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP620\A0041958.exe Infected: Packed.Win32.Klone.b
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP620\A0041960.exe Infected: Packed.Win32.Klone.b
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP620\A0041961.exe Infected: Trojan-Downloader.Win32.Tibs.p
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP620\A0041962.qtd Infected: Trojan-Downloader.Win32.Tibs.p
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP620\A0041963.exe Infected: Trojan-Downloader.Win32.Tibs.p
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP620\A0041964.qtd Infected: not-virus:Hoax.Win32.Renos.aj
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP620\A0041965.exe Infected: not-virus:Hoax.Win32.Renos.aj
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP620\A0041966.qtd Infected: not-virus:Hoax.Win32.Renos.aj
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP620\A0041968.exe Infected: not-virus:Hoax.Win32.Renos.aj
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP620\A0041969.exe Infected: Backdoor.Win32.Agent.rw
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP620\A0041971.exe Infected: Trojan-Downloader.Win32.CWS.u
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP620\A0041973.exe Infected: Trojan-Downloader.Win32.CWS.u
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP620\A0041974.exe Infected: Trojan-Downloader.Win32.CWS.u
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP620\A0041975.exe Infected: Trojan-Downloader.Win32.CWS.u
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP620\A0041976.qtd Infected: Trojan-Downloader.Win32.Small.bho
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP620\A0041977.exe Infected: Trojan-Downloader.Win32.Small.bho
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP620\A0041978.qtd Infected: Trojan-Downloader.Win32.Small.bho
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP620\A0041979.exe Infected: Trojan-Downloader.Win32.Small.bho
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP622\A0047009.exe Infected: Trojan-Downloader.Win32.Small.awa
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP622\A0047010.exe Infected: Trojan.Win32.Dialer.ay
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP622\A0047011.exe Infected: Trojan.Win32.Dialer.ay
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP622\A0047012.exe Infected: Trojan-Downloader.Win32.Agent.sy
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP622\A0047013.exe Infected: Trojan-Downloader.Win32.Small.awa
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP628\A0051108.exe Infected: Trojan-Downloader.Win32.Agent.aca
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP628\A0051109.qtd Infected: Trojan-Downloader.Win32.Small.atl
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP628\A0051110.qtd Infected: Trojan-Downloader.Win32.Small.cdc
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP629\A0051137.exe Infected: Trojan-Downloader.Win32.Agent.aca
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP629\A0051138.qtd Infected: Trojan-Downloader.Win32.Small.atl
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP629\A0051139.qtd Infected: Trojan-Downloader.Win32.Small.cdc
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP630\A0051165.exe Infected: Trojan-Downloader.Win32.Agent.aca
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP630\A0051166.qtd Infected: Trojan-Downloader.Win32.Small.atl
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP630\A0051167.qtd Infected: Trojan-Downloader.Win32.Small.cdc
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP632\A0051243.exe Infected: Trojan-Downloader.Win32.Tibs.bd
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP632\A0051246.exe Infected: not-virus:Hoax.Win32.Renos.al
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP632\A0051247.exe Infected: not-virus:Hoax.Win32.Renos.al
C:\System Volume Information\_restore{ACDD9A08-45D1-41E0-87B3-482A83ED4179}\RP632\A0052253.dll Infected: Trojan-Downloader.Win32.Delf.aeo
Scan process completed.