OK, now this is really getting scary. Attached is the Kapersky Logfile.
Where is all this stuff coming from?
-------------------------------------------------------------------------------
KASPERSKY ON-LINE SCANNER REPORT
Sunday, December 11, 2005 15:25:46
Operating System: Microsoft Windows XP Professional, Service Pack 2 (Build 2600)
Kaspersky On-line Scanner version: 5.0.67.0
Kaspersky Anti-Virus database last update: 11/12/2005
Kaspersky Anti-Virus database records: 154565
-------------------------------------------------------------------------------
Scan Settings:
Scan using the following antivirus database: standard
Scan Archives: true
Scan Mail Bases: true
Scan Target - My Computer:
A:\
C:\
D:\
Scan Statistics:
Total number of scanned objects: 41920
Number of viruses found: 25
Number of infected objects: 162
Number of suspicious objects: 4
Duration of the scan process: 1820 sec
Infected Object Name - Virus Name
C:\Program Files\Norton AntiVirus\Quarantine\00AF5673.tmp Infected: Trojan.Win32.Alfora
C:\Program Files\Norton AntiVirus\Quarantine\00C62E3C Infected: Trojan-Downloader.Win32.IstBar.s
C:\Program Files\Norton AntiVirus\Quarantine\01940359 Infected: Trojan-Downloader.Win32.IstBar.s
C:\Program Files\Norton AntiVirus\Quarantine\02B176C2 Infected: Trojan.Java.ClassLoader.Dummy.d
C:\Program Files\Norton AntiVirus\Quarantine\02BD7012 Infected: Trojan-Downloader.Win32.IstBar.s
C:\Program Files\Norton AntiVirus\Quarantine\031C31AA Infected: Trojan-Downloader.Win32.IstBar.s
C:\Program Files\Norton AntiVirus\Quarantine\04B431E9 Infected: Trojan-Downloader.Win32.IstBar.s
C:\Program Files\Norton AntiVirus\Quarantine\05F11A8C Infected: Trojan-Downloader.Win32.IstBar.s
C:\Program Files\Norton AntiVirus\Quarantine\06F0209B.class Infected: Trojan.Java.ClassLoader.Dummy.e
C:\Program Files\Norton AntiVirus\Quarantine\06F67494.class Infected: Exploit.Java.Bytverify
C:\Program Files\Norton AntiVirus\Quarantine\08A333BF Infected: Trojan.Java.Femad
C:\Program Files\Norton AntiVirus\Quarantine\09963BB4 Infected: Trojan.Java.ClassLoader.Dummy.d
C:\Program Files\Norton AntiVirus\Quarantine\0AFF4171 Infected: Trojan.Java.ClassLoader.Dummy.c
C:\Program Files\Norton AntiVirus\Quarantine\0B69357B Infected: Exploit.Java.Bytverify
C:\Program Files\Norton AntiVirus\Quarantine\0DC86BC7.class Infected: Trojan.Java.ClassLoader.Dummy.e
C:\Program Files\Norton AntiVirus\Quarantine\0F5A6689 Infected: Trojan.Java.ClassLoader.Dummy.d
C:\Program Files\Norton AntiVirus\Quarantine\0F5B0965 Infected: Exploit.Java.Bytverify
C:\Program Files\Norton AntiVirus\Quarantine\1185470C Infected: Trojan.Java.ClassLoader.b
C:\Program Files\Norton AntiVirus\Quarantine\143476DB Infected: Trojan-Downloader.Win32.IstBar.s
C:\Program Files\Norton AntiVirus\Quarantine\156E686F Infected: Exploit.Java.Bytverify
C:\Program Files\Norton AntiVirus\Quarantine\173D7F83 Infected: Trojan-Downloader.Win32.IstBar.s
C:\Program Files\Norton AntiVirus\Quarantine\18B131EA Infected: Trojan-Downloader.Win32.IstBar.s
C:\Program Files\Norton AntiVirus\Quarantine\197C5D0B Infected: Trojan-Downloader.Win32.IstBar.s
C:\Program Files\Norton AntiVirus\Quarantine\1AAF47B9 Infected: Trojan-Downloader.Win32.IstBar.s
C:\Program Files\Norton AntiVirus\Quarantine\1B11334D Infected: Trojan-Downloader.Win32.IstBar.s
C:\Program Files\Norton AntiVirus\Quarantine\1B8370F9.class Infected: Trojan.Java.ClassLoader.c
C:\Program Files\Norton AntiVirus\Quarantine\1B8A44F2.class Infected: Trojan.Java.ClassLoader.Dummy.d
C:\Program Files\Norton AntiVirus\Quarantine\1BC438B1.class Infected: Exploit.Java.Bytverify
C:\Program Files\Norton AntiVirus\Quarantine\1BCF1CFF Infected: Trojan.Java.ClassLoader.Dummy.d
C:\Program Files\Norton AntiVirus\Quarantine\1C162F23 Infected: Exploit.Java.Bytverify
C:\Program Files\Norton AntiVirus\Quarantine\1C6C2336 Infected: Trojan-Downloader.Java.OpenStream.d
C:\Program Files\Norton AntiVirus\Quarantine\1CA25F93 Infected: Trojan-Downloader.Win32.IstBar.s
C:\Program Files\Norton AntiVirus\Quarantine\1D4763DF Infected: Exploit.Java.Bytverify
C:\Program Files\Norton AntiVirus\Quarantine\1DC147FA Infected: Trojan.Java.ClassLoader.Dummy.d
C:\Program Files\Norton AntiVirus\Quarantine\1DDC1E3A Infected: Trojan-Downloader.Win32.IstBar.s
C:\Program Files\Norton AntiVirus\Quarantine\1E7A1654 Infected: Exploit.Java.Bytverify
C:\Program Files\Norton AntiVirus\Quarantine\1F405F79 Infected: Exploit.Java.Bytverify
C:\Program Files\Norton AntiVirus\Quarantine\20A13017 Infected: Trojan.Java.ClassLoader.c
C:\Program Files\Norton AntiVirus\Quarantine\20F56AF7 Infected: Trojan.Java.ClassLoader.b
C:\Program Files\Norton AntiVirus\Quarantine\20FC47B3 Infected: Trojan.Java.ClassLoader.o
C:\Program Files\Norton AntiVirus\Quarantine\214F1048 Infected: Trojan.Java.Needy.c
C:\Program Files\Norton AntiVirus\Quarantine\23F51DFE Infected: Exploit.Java.Bytverify
C:\Program Files\Norton AntiVirus\Quarantine\24A659AB Infected: Trojan.Java.ClassLoader.f
C:\Program Files\Norton AntiVirus\Quarantine\24C43499.htm Infected: Trojan.VBS.StartPage.a
C:\Program Files\Norton AntiVirus\Quarantine\25491F4C Infected: Exploit.Java.Bytverify
C:\Program Files\Norton AntiVirus\Quarantine\25EC1839.class Infected: Trojan.Java.ClassLoader.Dummy.e
C:\Program Files\Norton AntiVirus\Quarantine\2606681D.class Infected: Trojan.Java.ClassLoader.Dummy.c
C:\Program Files\Norton AntiVirus\Quarantine\26106612.class Infected: Exploit.Java.Bytverify
C:\Program Files\Norton AntiVirus\Quarantine\27023113 Infected: Trojan.Java.ClassLoader.c
C:\Program Files\Norton AntiVirus\Quarantine\2A8D4611 Infected: Trojan.Java.ClassLoader.Dummy.d
C:\Program Files\Norton AntiVirus\Quarantine\2F0833C2 Infected: Trojan.Java.ClassLoader.b
C:\Program Files\Norton AntiVirus\Quarantine\30870DA6 Infected: Trojan.Java.ClassLoader.f
C:\Program Files\Norton AntiVirus\Quarantine\309745BE Infected: Exploit.Java.Bytverify
C:\Program Files\Norton AntiVirus\Quarantine\30F9260D Infected: Trojan.Java.ClassLoader.c
C:\Program Files\Norton AntiVirus\Quarantine\30FC500A Infected: Exploit.Java.Bytverify
C:\Program Files\Norton AntiVirus\Quarantine\31B04AF4 Infected: Trojan.Java.ClassLoader.Dummy.d
C:\Program Files\Norton AntiVirus\Quarantine\31E4750B Infected: Trojan.Java.ClassLoader.c
C:\Program Files\Norton AntiVirus\Quarantine\324E1540 Infected: Trojan.Java.ClassLoader.Dummy.d
C:\Program Files\Norton AntiVirus\Quarantine\32825094 Infected: Exploit.Java.Bytverify
C:\Program Files\Norton AntiVirus\Quarantine\32D61801 Infected: Trojan-Downloader.Java.OpenStream.d
C:\Program Files\Norton AntiVirus\Quarantine\333C59BF Infected: Exploit.Java.Bytverify
C:\Program Files\Norton AntiVirus\Quarantine\334E297C Infected: Trojan-Downloader.Java.OpenConnection.k
C:\Program Files\Norton AntiVirus\Quarantine\352454B9 Infected: Exploit.Java.Bytverify
C:\Program Files\Norton AntiVirus\Quarantine\35267604 Infected: Exploit.Java.Bytverify
C:\Program Files\Norton AntiVirus\Quarantine\362A6657 Infected: Trojan-Downloader.Java.OpenConnection.l
C:\Program Files\Norton AntiVirus\Quarantine\373B18E7 Infected: Exploit.Java.Bytverify
C:\Program Files\Norton AntiVirus\Quarantine\388125D8 Infected: Trojan-Downloader.Win32.IstBar.s
C:\Program Files\Norton AntiVirus\Quarantine\388A5B17 Infected: Exploit.Java.Bytverify
C:\Program Files\Norton AntiVirus\Quarantine\38FD3DAA Infected: Trojan.Java.Shiwow
C:\Program Files\Norton AntiVirus\Quarantine\3954460E Infected: Trojan.Java.ClassLoader.Dummy.d
C:\Program Files\Norton AntiVirus\Quarantine\3B694FA2.htm Suspicious: Exploit.HTML.Mht
C:\Program Files\Norton AntiVirus\Quarantine\3C0E725F Infected: Exploit.Java.Bytverify
C:\Program Files\Norton AntiVirus\Quarantine\3CBF0719 Infected: Trojan.Java.ClassLoader.c
C:\Program Files\Norton AntiVirus\Quarantine\3ED601CF Infected: Exploit.Java.Bytverify
C:\Program Files\Norton AntiVirus\Quarantine\3ED74C4B.class Infected: Trojan.Java.ClassLoader.Dummy.e
C:\Program Files\Norton AntiVirus\Quarantine\3EDB7648.class Infected: Exploit.Java.Bytverify
C:\Program Files\Norton AntiVirus\Quarantine\3FE2634D Infected: Trojan.Java.ClassLoader.c
C:\Program Files\Norton AntiVirus\Quarantine\3FE73530.htm Suspicious: Exploit.HTML.Mht
C:\Program Files\Norton AntiVirus\Quarantine\40731ED2 Infected: Exploit.Java.Bytverify
C:\Program Files\Norton AntiVirus\Quarantine\409345F2 Infected: Exploit.Java.Bytverify
C:\Program Files\Norton AntiVirus\Quarantine\416F0078 Infected: Trojan.Java.ClassLoader.c
C:\Program Files\Norton AntiVirus\Quarantine\42A915D7.class Infected: Trojan.Java.ClassLoader.Dummy.c
C:\Program Files\Norton AntiVirus\Quarantine\43183B16.js Infected: Exploit.JS.ActiveXComponent
C:\Program Files\Norton AntiVirus\Quarantine\431B5359.class Infected: Trojan.Java.StartPage.b
C:\Program Files\Norton AntiVirus\Quarantine\431E0F0F.js Infected: Exploit.JS.ActiveXComponent
C:\Program Files\Norton AntiVirus\Quarantine\433D4859 Infected: Trojan.Java.ClassLoader.f
C:\Program Files\Norton AntiVirus\Quarantine\43661907.class Infected: Trojan.Java.ClassLoader.b
C:\Program Files\Norton AntiVirus\Quarantine\436A0A26 Infected: Trojan.Java.ClassLoader.c
C:\Program Files\Norton AntiVirus\Quarantine\436E3422 Infected: Exploit.Java.Bytverify
C:\Program Files\Norton AntiVirus\Quarantine\44483131 Infected: Exploit.Java.Bytverify
C:\Program Files\Norton AntiVirus\Quarantine\444F5271 Infected: Exploit.Java.Bytverify
C:\Program Files\Norton AntiVirus\Quarantine\44516804.class Infected: Trojan.Java.ClassLoader.Dummy.c
C:\Program Files\Norton AntiVirus\Quarantine\446134A2 Infected: Trojan.Java.ClassLoader.Dummy.d
C:\Program Files\Norton AntiVirus\Quarantine\44A62D9A Infected: Exploit.Java.Bytverify
C:\Program Files\Norton AntiVirus\Quarantine\44CF749F Infected: Trojan.Java.ClassLoader.f
C:\Program Files\Norton AntiVirus\Quarantine\454B3016 Infected: Trojan.Java.ClassLoader.f
C:\Program Files\Norton AntiVirus\Quarantine\458733A9 Infected: Trojan.Java.ClassLoader.f
C:\Program Files\Norton AntiVirus\Quarantine\45B03BA6 Infected: Trojan.Java.ClassLoader.b
C:\Program Files\Norton AntiVirus\Quarantine\461174F8 Infected: Exploit.Java.Bytverify
C:\Program Files\Norton AntiVirus\Quarantine\463F7308 Infected: Trojan.Java.ClassLoader.c
C:\Program Files\Norton AntiVirus\Quarantine\46470BAC Infected: Exploit.Java.Bytverify
C:\Program Files\Norton AntiVirus\Quarantine\474945E6 Infected: Trojan.Java.ClassLoader.f
C:\Program Files\Norton AntiVirus\Quarantine\47A92880 Infected: Trojan.Java.ClassLoader.f
C:\Program Files\Norton AntiVirus\Quarantine\47AE1621 Infected: Exploit.Java.Bytverify
C:\Program Files\Norton AntiVirus\Quarantine\47F61042.css Infected: Trojan-Clicker.Win32.Axec
C:\Program Files\Norton AntiVirus\Quarantine\47F93A3E.exe Infected: Trojan-Clicker.Win32.Axec
C:\Program Files\Norton AntiVirus\Quarantine\48413CD5 Infected: Trojan.Java.ClassLoader.Dummy.c
C:\Program Files\Norton AntiVirus\Quarantine\491A6444 Infected: Trojan.Java.ClassLoader.Dummy.d
C:\Program Files\Norton AntiVirus\Quarantine\493C135C Infected: Exploit.Java.Bytverify
C:\Program Files\Norton AntiVirus\Quarantine\4985341B Infected: Trojan.Java.ClassLoader.Dummy.e
C:\Program Files\Norton AntiVirus\Quarantine\49934732 Infected: Trojan-Downloader.Java.OpenStream.d
C:\Program Files\Norton AntiVirus\Quarantine\4A04198F Infected: Trojan.Java.ClassLoader.f
C:\Program Files\Norton AntiVirus\Quarantine\4A563335 Infected: Exploit.Java.Bytverify
C:\Program Files\Norton AntiVirus\Quarantine\4B687A07 Infected: Trojan.Java.Shiwow
C:\Program Files\Norton AntiVirus\Quarantine\4E0F16E1 Infected: Trojan-Downloader.Win32.IstBar.s
C:\Program Files\Norton AntiVirus\Quarantine\4E400CE6 Infected: Trojan.Java.ClassLoader.f
C:\Program Files\Norton AntiVirus\Quarantine\4ED6522B Infected: Trojan.Java.ClassLoader.f
C:\Program Files\Norton AntiVirus\Quarantine\4EEF03DB Infected: Trojan.Java.ClassLoader.Dummy.d
C:\Program Files\Norton AntiVirus\Quarantine\4F396895.js Infected: Exploit.JS.ActiveXComponent
C:\Program Files\Norton AntiVirus\Quarantine\4F43668A.js Infected: Exploit.JS.ActiveXComponent
C:\Program Files\Norton AntiVirus\Quarantine\500D0FC6 Infected: Exploit.Java.Bytverify
C:\Program Files\Norton AntiVirus\Quarantine\525461C5.htm Suspicious: Exploit.HTML.Mht
C:\Program Files\Norton AntiVirus\Quarantine\52BD04D0 Infected: Exploit.Java.Bytverify
C:\Program Files\Norton AntiVirus\Quarantine\59B60542.class Infected: Exploit.Java.Bytverify
C:\Program Files\Norton AntiVirus\Quarantine\5ABA7EAB Infected: Trojan.Java.ClassLoader.Dummy.d
C:\Program Files\Norton AntiVirus\Quarantine\5C426B69 Infected: Trojan.Java.ClassLoader.f
C:\Program Files\Norton AntiVirus\Quarantine\5E4F5F36 Infected: Trojan.Java.ClassLoader.Dummy.d
C:\Program Files\Norton AntiVirus\Quarantine\5ED94B13.class Infected: Trojan.Java.Nocheat
C:\Program Files\Norton AntiVirus\Quarantine\5EEC46FD.htm Infected: Trojan.JS.Seeker
C:\Program Files\Norton AntiVirus\Quarantine\607D6140 Infected: Exploit.Java.Bytverify
C:\Program Files\Norton AntiVirus\Quarantine\61084712 Infected: Trojan.Java.Shiwow
C:\Program Files\Norton AntiVirus\Quarantine\633E3983 Infected: Exploit.Java.Bytverify
C:\Program Files\Norton AntiVirus\Quarantine\63F50AA5 Infected: Trojan.Java.ClassLoader.Dummy.d
C:\Program Files\Norton AntiVirus\Quarantine\64B01CD3 Infected: Trojan.Java.ClassLoader.f
C:\Program Files\Norton AntiVirus\Quarantine\656B1A60 Infected: Trojan.Java.ClassLoader.Dummy.d
C:\Program Files\Norton AntiVirus\Quarantine\658B426D Infected: Trojan.Java.ClassLoader.f
C:\Program Files\Norton AntiVirus\Quarantine\660F3423 Infected: Trojan.Java.ClassLoader.Dummy.d
C:\Program Files\Norton AntiVirus\Quarantine\66E544F8 Infected: Trojan-Downloader.Java.OpenStream.d
C:\Program Files\Norton AntiVirus\Quarantine\67AB188F Infected: Trojan.Java.ClassLoader.Dummy.d
C:\Program Files\Norton AntiVirus\Quarantine\686B2ABD Infected: Exploit.Java.Bytverify
C:\Program Files\Norton AntiVirus\Quarantine\6A544C5E Infected: Trojan.Java.ClassLoader.Dummy.d
C:\Program Files\Norton AntiVirus\Quarantine\6ABB6542 Infected: Trojan.Java.ClassLoader.Dummy.d
C:\Program Files\Norton AntiVirus\Quarantine\6B977FC5 Infected: Trojan.Java.ClassLoader.c
C:\Program Files\Norton AntiVirus\Quarantine\6C101140 Infected: Trojan.Java.ClassLoader.Dummy.c
C:\Program Files\Norton AntiVirus\Quarantine\6C7850CD Infected: Trojan.Java.ClassLoader.f
C:\Program Files\Norton AntiVirus\Quarantine\6D906E8D.class Infected: Trojan.Java.Nocheat
C:\Program Files\Norton AntiVirus\Quarantine\6DA253D6 Infected: Exploit.Java.Bytverify
C:\Program Files\Norton AntiVirus\Quarantine\6DEE3A1A Infected: Trojan.Java.ClassLoader.Dummy.d
C:\Program Files\Norton AntiVirus\Quarantine\6E335689.htm Infected: Trojan.JS.Seeker
C:\Program Files\Norton AntiVirus\Quarantine\6E5218C4 Infected: Trojan.Java.ClassLoader.f
C:\Program Files\Norton AntiVirus\Quarantine\6F7E705D Infected: Exploit.Java.Bytverify
C:\Program Files\Norton AntiVirus\Quarantine\6FAF2544 Infected: Trojan.Java.ClassLoader.f
C:\Program Files\Norton AntiVirus\Quarantine\72AF2099 Infected: Trojan.Java.StartPage.g
C:\Program Files\Norton AntiVirus\Quarantine\736F5D23 Infected: Trojan.Java.ClassLoader.Dummy.e
C:\Program Files\Norton AntiVirus\Quarantine\751364C6 Infected: Trojan.Java.ClassLoader.Dummy.c
C:\Program Files\Norton AntiVirus\Quarantine\754C3E0A Infected: Exploit.Java.Bytverify
C:\Program Files\Norton AntiVirus\Quarantine\797D18C6 Infected: Trojan.Java.ClassLoader.Dummy.d
C:\Program Files\Norton AntiVirus\Quarantine\7A955D79.class Infected: Exploit.Java.Bytverify
C:\Program Files\Norton AntiVirus\Quarantine\7C421F34 Infected: Trojan-Downloader.Win32.IstBar.s
C:\Program Files\Norton AntiVirus\Quarantine\7C5C4984.htm Suspicious: Exploit.HTML.Mht
C:\Program Files\Norton AntiVirus\Quarantine\7F3157F9 Infected: Trojan-Downloader.Win32.IstBar.s
C:\System Volume Information\_restore{EC280EEC-AB63-452F-B94A-74A3BB83BECD}\RP88\A0021073.tlb Infected: Trojan.Win32.Puper.bq
C:\System Volume Information\_restore{EC280EEC-AB63-452F-B94A-74A3BB83BECD}\RP88\A0021095.tlb Infected: Trojan.Win32.Puper.bq
C:\System Volume Information\_restore{EC280EEC-AB63-452F-B94A-74A3BB83BECD}\RP88\A0021122.tlb Infected: Trojan.Win32.Puper.bq
C:\System Volume Information\_restore{EC280EEC-AB63-452F-B94A-74A3BB83BECD}\RP88\A0021133.tlb Infected: Trojan.Win32.Puper.bq
C:\System Volume Information\_restore{EC280EEC-AB63-452F-B94A-74A3BB83BECD}\RP88\A0021142.exe Infected: Trojan.Win32.Puper.bq
Scan process completed.