ComboFix 08-01-04.1 - Jason 2008-01-07 17:58:40.2 - NTFSx86
Microsoft Windows XP Home Edition 5.1.2600.2.949.82.1033.18.1136 [GMT -8:00]
Running from: C:\Documents and Settings\Jason\Desktop\ComboFix.exe
Command switches used :: C:\Documents and Settings\Jason\Desktop\CFScript.txt
* Created a new restore point
FILE
C:\WINDOWS\
04zt.sys
C:\WINDOWS\system\actualspystart.lnk
C:\WINDOWS\system32\
04zt.sys
C:\WINDOWS\system32\34D562D718.sys
C:\WINDOWS\system32\enb.exe
C:\WINDOWS\system32\jlx.exe
C:\WINDOWS\system32\kbass1p.dll
C:\WINDOWS\Tasks\AdwareAlert Scheduled Scan.job
C:\WINDOWS\wininit.ini
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\WINDOWS\system\actualspystart.lnk
C:\WINDOWS\system32\34D562D718.sys
C:\WINDOWS\system32\kbass1p.dll
C:\WINDOWS\Tasks\AdwareAlert Scheduled Scan.job
C:\WINDOWS\wininit.ini
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\LEGACY_SHPSV
-------\shpsv
((((((((((((((((((((((((( Files Created from 2007-12-08 to 2008-01-08 )))))))))))))))))))))))))))))))
.
2008-01-07 17:22 . 2008-01-07 17:22 <DIR> d-------- C:\Documents and Settings\Jason\Application Data\Grisoft
2008-01-07 17:22 . 2008-01-07 17:22 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Grisoft
2008-01-07 17:22 . 2007-05-30 04:10 10,872 --a------ C:\WINDOWS\system32\drivers\AvgAsCln.sys
2008-01-05 23:52 . 2000-08-31 08:00 51,200 --a------ C:\WINDOWS\NirCmd.exe
2007-12-20 06:02 . 2007-07-30 19:19 207,736 --a------ C:\WINDOWS\system32\muweb.dll
2007-12-17 20:59 . 2007-12-17 20:59 <DIR> d-------- C:\Program Files\Trend Micro
2007-12-17 18:22 . 2007-12-18 20:04 <DIR> d-------- C:\Documents and Settings\Jason\Application Data\AdwareAlert
2007-12-17 18:17 . 2007-12-17 18:17 <DIR> d-------- C:\Program Files\Anti Keylogger Elite
2007-12-16 23:00 . 2007-12-16 23:00 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Avira
2007-12-16 22:39 . 2007-12-16 22:39 <DIR> d-------- C:\WINDOWS\Sun
2007-12-15 20:52 . 2007-12-15 20:52 <DIR> d-------- C:\Program Files\Enigma Software Group
2007-12-15 18:38 . 2008-01-05 23:48 <DIR> d-a------ C:\Documents and Settings\All Users\Application Data\TEMP
2007-12-15 13:05 . 2007-12-15 13:05 <DIR> d-------- C:\Documents and Settings\Jason\Application Data\PC Tools
2007-12-15 13:05 . 2007-12-15 14:36 74,240 --a------ C:\WINDOWS\system32\drivers\iksyssec.sys
2007-12-15 13:05 . 2007-12-15 14:36 56,832 --a------ C:\WINDOWS\system32\drivers\iksysflt.sys
2007-12-15 13:05 . 2007-10-18 00:14 41,288 --a------ C:\WINDOWS\system32\drivers\ikfilesec.sys
2007-12-15 13:05 . 2007-10-18 00:16 29,000 --a------ C:\WINDOWS\system32\drivers\kcom.sys
2007-12-15 13:01 . 2005-09-23 08:29 626,688 --a------ C:\WINDOWS\system32\msvcr80.dll
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-01-03 11:18 --------- d-----w C:\Program Files\Spyware Doctor
2007-12-27 12:03 --------- d-----w C:\Documents and Settings\Jason\Application Data\LimeWire
2007-12-24 00:25 --------- d-----w C:\Documents and Settings\Jason\Application Data\Aim
2007-12-19 17:13 --------- d-----w C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
2007-12-19 08:03 --------- d-----w C:\Program Files\Peepop
2007-12-16 14:19 --------- d-----w C:\Documents and Settings\Jason\Application Data\Spybot - Search & Destroy
2007-12-14 02:17 --------- d-----w C:\Program Files\World of Warcraft
2007-11-18 00:54 --------- d-----w C:\Program Files\Ventrilo
2007-11-18 00:54 --------- d-----w C:\Program Files\Common Files\Wise Installation Wizard
2007-11-17 19:36 --------- d--h--w C:\Program Files\InstallShield Installation Information
2006-01-18 04:35 25,672 ----a-w C:\Documents and Settings\Jason\Application Data\GDIPFONTCACHEV1.DAT
2005-02-11 05:46 1,682 --sha-w C:\WINDOWS\system32\KGyGaAvL.sys
.
(((((((((((((((((((((((((((((((((((((((((((( Look )))))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
---- Directory of C:\Program Files\Peepop ----
2007-12-19 00:03 17408 --a------ C:\Program Files\Peepop\peepop.db2
2007-12-18 22:22 46 --a------ C:\Program Files\Peepop\intro.html
2007-12-18 22:22 0 --a------ C:\Program Files\Peepop\peepop.vip
2007-12-18 22:22 0 --a------ C:\Program Files\Peepop\peepop.blk
2006-09-30 14:24 0 --a------ C:\Program Files\Peepop\peepop2.db
2006-09-29 15:35 217088 --a------ C:\Program Files\Peepop\peepop.db
2005-10-18 13:27 1605632 --a------ C:\Program Files\Peepop\Peepop.exe
2005-05-31 17:12 692224 --a------ C:\Program Files\Peepop\chat.exe
2004-08-06 19:40 327680 --a------ C:\Program Files\Peepop\AutoUpdate.exe
2004-08-06 18:21 28374 --a------ C:\Program Files\Peepop\msg.wav
2004-02-29 05:53 41 --a------ C:\Program Files\Peepop\wwwroot\index.html
((((((((((((((((((((((((((((( snapshot@2008-01-05_23.57.10.87 )))))))))))))))))))))))))))))))))))))))))
.
+ 2000-08-31 16:00:00 163,328 ----a-w C:\WINDOWS\erdnt\subs\ERDNT.EXE
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Steam"="c:\valve\steam\steam.exe" [2007-12-02 16:58 1266936]
"MsnMsgr"="C:\Program Files\MSN Messenger\MsnMsgr.exe" [2006-01-24 10:37 7094272]
"AIM"="C:\Program Files\AIM\aim.exe" [2004-04-27 14:18 61440]
"googletalk"="C:\Program Files\Google\Google Talk\googletalk.exe" [2007-01-01 13:22 3739648]
"판도라TV미니"="C:\Program Files\PandoraTVMini\MiniUpdate.exe" [ ]
"Veoh"="C:\Program Files\Veoh Networks\Veoh\VeohClient.exe" [2007-12-03 13:21 3461120]
"ÆCμμ¶oTV¹I´I"="C:\Program Files\PandoraTVMini\MiniUpdate.exe" [ ]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"diagent"="C:\Program Files\Creative\SBLive\Diagnostics\diagent.exe" [2002-04-03 01:01 135264]
"SpyHunter Security Suite"="C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter3.exe" [2007-11-30 13:47 847872]
"MCUpdateExe"="C:\PROGRA~1\McAfee.com\Agent\mcupdate.exe" [2002-09-04 10:28 151552]
"NvCplDaemon"="C:\WINDOWS\system32\NvCpl.dll" [2004-07-15 11:42 4112384]
"nwiz"="nwiz.exe" [2004-07-15 11:42 843776 C:\WINDOWS\system32\nwiz.exe]
"NvMediaCenter"="C:\WINDOWS\system32\NvMcTray.dll" [2004-07-15 11:42 81920]
C:\Documents and Settings\All Users\Start Menu\Programs\Startup\
Microsoft Office.lnk - C:\Program Files\Microsoft Office\Office10\OSA.EXE [2001-02-13 01:01:04]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sdauxservice]
@=""
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sdcoreservice]
@=""
R2 AKEProtect;AKEProtect;C:\Program Files\Anti Keylogger Elite\AKEProtect.sys [2006-03-07 22:36]
S3 NOWMEMDF;NOWMEMDF;C:\WINDOWS\System32\NOWMEMDF.sys [2005-11-02 03:23]
*Newly Created Service* - AVGASCLN
.
Contents of the 'Scheduled Tasks' folder
"2008-01-08 02:04:00 C:\WINDOWS\Tasks\ ().job"
- C:\PROGRA~1\McAfee.com\Agent\mcupdate.ex
- C:\PROGRA~1\McAfee.com\Agent
"2008-01-08 02:04:00 C:\WINDOWS\Tasks\ (JASON-JXS16R924-Jason).job"
- C:\PROGRA~1\McAfee.com\Agent\mcupdate.ex
- C:\PROGRA~1\McAfee.com\Agent
"2008-01-01 02:45:01 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job"
- C:\Program Files\Apple Software Update\SoftwareUpdate.exe
"2008-01-08 00:44:07 C:\WINDOWS\Tasks\McAfee.com Update Check (JASON-JXS16R924-Jason).job"
- C:\PROGRA~1\McAfee.com\Agent\mcupdate.ex
- C:\PROGRA~1\McAfee.com\Agent
.
**************************************************************************
catchme 0.3.1344 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.netRootkit scan 2008-01-07 18:03:07
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
Completion time: 2008-01-07 18:06:11 - machine was rebooted
ComboFix-quarantined-files.txt 2008-01-08 02:06:08
ComboFix2.txt 2008-01-06 07:57:40
________________________________
---------------------------------------------------------
AVG Anti-Spyware - Scan Report
---------------------------------------------------------
+ Created at: 5:55:52 PM 1/7/2008
+ Scan result:
C:\WINDOWS\system32\007guard.exe/the007installer.exe -> Adware.007Guard : Cleaned with backup (quarantined).
C:\WINDOWS\system32\2searchinstaller.exe/main.exe -> Adware.2Search : Cleaned with backup (quarantined).
C:\Program Files\Trend Micro\HijackThis\backups\backup-20071219-172337-148.dll -> Adware.Minibug : Cleaned with backup (quarantined).
C:\Program Files\Trend Micro\HijackThis\backups\backup-20071219-172335-946.dll -> Adware.Webdir : Cleaned with backup (quarantined).
HKU\S-1-5-21-343818398-1757981266-725345543-1004\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BE2ED590-CA49-46B5-8CCE-244FB2E0D1AA} -> Adware.WebDir : Cleaned with backup (quarantined).
C:\WINDOWS\Downloaded Program Files\CONFLICT.1\installer_MARKETING11.exe -> Downloader.Adload.a : Cleaned with backup (quarantined).
C:\WINDOWS\Downloaded Program Files\CONFLICT.2\installer_MARKETING11.exe -> Downloader.Adload.a : Cleaned with backup (quarantined).
C:\WINDOWS\Downloaded Program Files\CONFLICT.3\installer_MARKETING11.exe -> Downloader.Adload.a : Cleaned with backup (quarantined).
C:\WINDOWS\Downloaded Program Files\installer_MARKETING11.exe -> Downloader.Adload.a : Cleaned with backup (quarantined).
C:\WINDOWS\Downloaded Program Files\installer_VENDARE4.exe -> Downloader.Adload.a : Cleaned with backup (quarantined).
C:\WINDOWS\system32\exactinstaller.exe -> Downloader.Adload.a : Cleaned with backup (quarantined).
C:\WINDOWS\system32\aondndw30103lib.dll -> Downloader.Lastad.h : Cleaned with backup (quarantined).
C:\WINDOWS\system32\ezkdrmaeg05.dll -> Downloader.Lastad.h : Cleaned with backup (quarantined).
C:\Documents and Settings\Jason\My Documents\Unzipped cs hacks 2 ..better!\SI Hook.rar/SI Hook\SI Hook.exe -> Downloader.Small : Cleaned with backup (quarantined).
C:\Documents and Settings\Jason\My Documents\Unzipped cs hacks 2 ..better!\hdh.zip/SI Hook.rar/SI Hook\SI Hook.exe -> Downloader.Small : Cleaned with backup (quarantined).
C:\WINDOWS\system32\Zcvjwc.exe -> Downloader.Small : Cleaned with backup (quarantined).
C:\WINDOWS\Downloaded Program Files\CONFLICT.1\EPXActiveX.ocx -> Dropper.Agent.or : Cleaned with backup (quarantined).
C:\WINDOWS\Downloaded Program Files\CONFLICT.2\EPXActiveX.ocx -> Dropper.Agent.or : Cleaned with backup (quarantined).
C:\WINDOWS\browser.exe -> Hijacker.Small : Cleaned with backup (quarantined).
:mozilla.100:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.101:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.102:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.103:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.104:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.112:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.310:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.481:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.483:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.563:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.88:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.90:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.91:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.92:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.93:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.94:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.98:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.99:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Jason\Cookies\jason@2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Jason\Cookies\jason@awarenesstech.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Jason\Cookies\jason@brightcove.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Jason\Cookies\jason@nba.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Jason\Cookies\jason@viamtvcom.112.2o7[2].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Jason\Cookies\jason@viamtvnvideo.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.230:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.231:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.232:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
C:\Documents and Settings\Jason\Cookies\jason@4.adbrite[2].txt -> TrackingCookie.Adbrite : Cleaned.
C:\Documents and Settings\Jason\Cookies\jason@adbrite[1].txt -> TrackingCookie.Adbrite : Cleaned.
C:\Documents and Settings\Jason\Cookies\jason@ads.adbrite[1].txt -> TrackingCookie.Adbrite : Cleaned.
C:\Documents and Settings\LocalService\Cookies\system@ads.addynamix[1].txt -> TrackingCookie.Addynamix : Cleaned.
:mozilla.64:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.77:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.78:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.79:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.80:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.81:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.121:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.122:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.123:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.124:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.125:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
C:\Documents and Settings\LocalService\Cookies\system@advertising[1].txt -> TrackingCookie.Advertising : Cleaned.
C:\Documents and Settings\LocalService\Cookies\system@servedby.advertising[1].txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.34:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned.
C:\Documents and Settings\LocalService\Cookies\system@atdmt[2].txt -> TrackingCookie.Atdmt : Cleaned.
C:\Documents and Settings\Jason\Cookies\jason@bluestreak[2].txt -> TrackingCookie.Bluestreak : Cleaned.
:mozilla.606:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Bridgetrack : Cleaned.
:mozilla.607:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Bridgetrack : Cleaned.
:mozilla.56:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.57:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.58:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.59:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.60:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.61:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.62:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.55:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned.
C:\Documents and Settings\LocalService\Cookies\system@doubleclick[1].txt -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.375:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
:mozilla.376:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
:mozilla.377:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
C:\Documents and Settings\Jason\Cookies\jason@adopt.euroclick[2].txt -> TrackingCookie.Euroclick : Cleaned.
:mozilla.239:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.240:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.241:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.242:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.243:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
C:\Documents and Settings\Jason\Cookies\jason@fortunecity[2].txt -> TrackingCookie.Fortunecity : Cleaned.
:mozilla.653:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.654:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.655:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.382:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.383:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.384:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.447:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.323:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Imrworldwide : Cleaned.
:mozilla.324:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Imrworldwide : Cleaned.
C:\Documents and Settings\Jason\Cookies\jason@searchportal.information[1].txt -> TrackingCookie.Information : Cleaned.
:mozilla.53:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned.
C:\Documents and Settings\Jason\Cookies\jason@auto.search.msn[1].txt -> TrackingCookie.Msn : Cleaned.
:mozilla.300:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.301:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.302:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
C:\Documents and Settings\Jason\Cookies\jason@overture[2].txt -> TrackingCookie.Overture : Cleaned.
C:\Documents and Settings\Jason\Cookies\jason@perf.overture[1].txt -> TrackingCookie.Overture : Cleaned.
C:\Documents and Settings\LocalService\Cookies\system@paypopup[2].txt -> TrackingCookie.Paypopup : Cleaned.
:mozilla.353:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.354:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.355:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.356:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.357:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.358:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.359:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.360:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.361:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.362:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.363:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
C:\Documents and Settings\Jason\Cookies\jason@ads.pointroll[1].txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.425:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.426:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
C:\Documents and Settings\Jason\Cookies\jason@questionmarket[2].txt -> TrackingCookie.Questionmarket : Cleaned.
C:\Documents and Settings\Jason\Cookies\jason@real[2].txt -> TrackingCookie.Real : Cleaned.
:mozilla.233:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.234:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.235:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.236:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.237:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.37:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.38:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.48:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.49:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.50:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.51:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.52:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.70:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
C:\Documents and Settings\Jason\Cookies\jason@revsci[2].txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.508:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.509:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.510:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.334:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.335:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.336:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.337:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.338:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.339:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.340:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
C:\Documents and Settings\Jason\Cookies\jason@bs.serving-sys[2].txt -> TrackingCookie.Serving-sys : Cleaned.
C:\Documents and Settings\Jason\Cookies\jason@serving-sys[2].txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.341:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
C:\Documents and Settings\Jason\Cookies\jason@smartadserver[1].txt -> TrackingCookie.Smartadserver : Cleaned.
:mozilla.407:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.408:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.140:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.141:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.142:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.143:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.144:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.145:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.146:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
C:\Documents and Settings\Jason\Cookies\jason@anad.tacoda[1].txt -> TrackingCookie.Tacoda : Cleaned.
C:\Documents and Settings\Jason\Cookies\jason@anat.tacoda[2].txt -> TrackingCookie.Tacoda : Cleaned.
C:\Documents and Settings\Jason\Cookies\jason@tacoda[2].txt -> TrackingCookie.Tacoda : Cleaned.
C:\Documents and Settings\Jason\Cookies\jason@sales.tfag[1].txt -> TrackingCookie.Tfag : Cleaned.
:mozilla.429:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.430:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.431:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.432:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.433:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
C:\Documents and Settings\Jason\Cookies\jason@trafficmp[1].txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.44:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned.
C:\Documents and Settings\Jason\Cookies\jason@tribalfusion[1].txt -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.570:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Valuead : Cleaned.
:mozilla.571:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Valuead : Cleaned.
:mozilla.572:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Valuead : Cleaned.
:mozilla.573:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Valuead : Cleaned.
:mozilla.574:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Valuead : Cleaned.
C:\Documents and Settings\LocalService\Cookies\system@valuead[2].txt -> TrackingCookie.Valuead : Cleaned.
C:\Documents and Settings\LocalService\Cookies\system@valueclick[1].txt -> TrackingCookie.Valueclick : Cleaned.
C:\Documents and Settings\Jason\Cookies\jason@yadro[1].txt -> TrackingCookie.Yadro : Cleaned.
:mozilla.63:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.66:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.67:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.68:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.69:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\LocalService\Cookies\system@ad.yieldmanager[2].txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.65:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
:mozilla.89:C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\ldol7pg0.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
C:\WINDOWS\system32\kbass1p.dll -> Trojan.Agent.uz : Cleaned with backup (quarantined).
[1040] C:\WINDOWS\system32\kbass1p.dll -> Trojan.Agent.uz : Cleaned with backup (quarantined).
[1928] C:\WINDOWS\system32\kbass1p.dll -> Trojan.Agent.uz : Cleaned with backup (quarantined).
[2080] C:\WINDOWS\system32\kbass1p.dll -> Trojan.Agent.uz : Cleaned with backup (quarantined).
[2152] C:\WINDOWS\system32\kbass1p.dll -> Trojan.Agent.uz : Cleaned with backup (quarantined).
[2600] C:\WINDOWS\system32\kbass1p.dll -> Trojan.Agent.uz : Cleaned with backup (quarantined).
[3384] C:\WINDOWS\system32\kbass1p.dll -> Trojan.Agent.uz : Cleaned with backup (quarantined).
[3572] C:\WINDOWS\system32\kbass1p.dll -> Trojan.Agent.uz : Cleaned with backup (quarantined).
[3684] C:\WINDOWS\system32\kbass1p.dll -> Trojan.Agent.uz : Cleaned with backup (quarantined).
[984] C:\WINDOWS\system32\kbass1p.dll -> Trojan.Agent.uz : Cleaned with backup (quarantined).
C:\WINDOWS\system32\0g09avx.dll -> Trojan.Kolweb.f : Cleaned with backup (quarantined).
C:\WINDOWS\system32\tew1lg2.dll -> Trojan.Kolweb.f : Cleaned with backup (quarantined).
C:\WINDOWS\04zt.sys -> Trojan.Kolweb.g : Cleaned with backup (quarantined).
C:\WINDOWS\system32\04zt.sys -> Trojan.Kolweb.g : Cleaned with backup (quarantined).
C:\WINDOWS\system32\enb.exe -> Trojan.Kolweb.g : Cleaned with backup (quarantined).
C:\WINDOWS\system32\jlx.exe -> Trojan.Kolweb.g : Cleaned with backup (quarantined).
C:\Documents and Settings\Jason\My Documents\Unzipped\MPHDowngrader\PSP\PHOTO\overflow.tif -> Trojan.PSPBrick : Cleaned with backup (quarantined).
C:\Documents and Settings\Jason\My Documents\psp hacks\MPHDowngrader.zip/PSP/PHOTO/overflow.tif -> Trojan.PSPBrick : Cleaned with backup (quarantined).
C:\Documents and Settings\Jason\My Documents\Unzipped cs hacks 2 ..better!\GDCS_1[1].3 another copy.rar/GDCS.exe -> Worm.Mytob.bt : Cleaned with backup (quarantined).
::Report end
_____________________________________
File 04zt.sys received on 01.08.2008 01:52:50 (CET)
Current status: finished
Result: 27/32 (84.38%)
Compact
Print results
Service is stopped in this moments, your file is waiting to be scanned (position: ) for an undefined time.
You can wait for web response (automatic reload) or type your email in the form below and click "request" so the system sends you a notification when the scan is finished.
Email:
Antivirus Version Last Update Result
AhnLab-V3 2008.1.8.10 2008.01.07 Win-Trojan/Kolweb.160384
AntiVir 7.6.0.46 2008.01.07 TR/Kolweb.G.6
Authentium 4.93.8 2008.01.07 W32/Trojan.BENV
Avast 4.7.1098.0 2008.01.07 Win32:Trojan-gen {Other}
AVG 7.5.0.516 2008.01.07 Generic.NBY
BitDefender 7.2 2008.01.08 Trojan.Kolweb.G
CAT-QuickHeal 9.00 2008.01.07 (Suspicious) - DNAScan
ClamAV 0.91.2 2008.01.08 Trojan.W32.Kolweb-2
DrWeb 4.44.0.09170 2008.01.07 Trojan.Kolweb
eSafe 7.0.15.0 2008.01.06 Suspicious File
eTrust-Vet 31.3.5440 2008.01.07 -
Ewido 4.0 2008.01.07 Trojan.Kolweb.g
FileAdvisor 1 2008.01.08 -
Fortinet 3.14.0.0 2008.01.07 -
F-Prot 4.4.2.54 2008.01.07 W32/Trojan.BENV
F-Secure 6.70.13030.0 2008.01.08 Trojan.Win32.Kolweb.g
Ikarus T3.1.1.15 2008.01.08 Trojan.Win32.Kolweb.G
Kaspersky 7.0.0.125 2008.01.08 Trojan.Win32.Kolweb.g
McAfee 5201 2008.01.07 potentially unwanted program Adware-Adtomi
Microsoft 1.3109 2008.01.08 Adware:Win32/Adtomi.B
NOD32v2 2772 2008.01.07 a variant of Win32/Kolweb
Norman 5.80.02 2008.01.07 W32/Kolweb.Z
Panda 9.0.0.4 2008.01.07 Adware/Adtomi
Prevx1 V2 2008.01.08 Heuristic: Suspicious Self Modifying EXE
Rising 20.26.02.00 2008.01.07 -
Sophos 4.24.0 2008.01.07 -
Sunbelt 2.2.907.0 2008.01.08 VIPRE.Suspicious
Symantec 10 2008.01.08 Adware.Margoc
TheHacker 6.2.9.183 2008.01.07 Trojan/Kolweb.g
VBA32 3.12.2.5 2008.01.07 Trojan.Win32.Kolweb.g
VirusBuster 4.3.26:9 2008.01.07 Trojan.Kolweb.AD
Webwasher-Gateway 6.6.2 2008.01.07 Trojan.Kolweb.G.6
Additional information
File size: 145970 bytes
MD5: 9fb59d07d5a302f81c72c9b673c28e2f
SHA1: 87e8296ad5e597397a11d126f6c1450109871214
PEiD: PECompact 2.xx --> BitSum Technologies
packers: PE_Patch.PECompact, PecBundle, PECompact
Prevx info:
http://info.prevx.com/aboutprogramtext. ... 00E5DCF6B4Sunbelt info: VIPRE.Suspicious is a generic detection for potential threats that are deemed suspicious through heuristics.
File enb.exe received on 01.08.2008 02:03:22 (CET)
Current status: finished
Result: 20/32 (62.5%)
Compact
Print results
Service is stopped in this moments, your file is waiting to be scanned (position: ) for an undefined time.
You can wait for web response (automatic reload) or type your email in the form below and click "request" so the system sends you a notification when the scan is finished.
Email:
Antivirus Version Last Update Result
AhnLab-V3 2008.1.8.10 2008.01.07 -
AntiVir 7.6.0.46 2008.01.07 -
Authentium 4.93.8 2008.01.07 W32/Trojan.IYO
Avast 4.7.1098.0 2008.01.07 Win32:Kolweb-E
AVG 7.5.0.516 2008.01.07 Generic.YQA
BitDefender 7.2 2008.01.08 Trojan.Kolweb.H
CAT-QuickHeal 9.00 2008.01.07 Trojan.Kolweb.g
ClamAV 0.91.2 2008.01.08 -
DrWeb 4.44.0.09170 2008.01.07 Trojan.Kolweb
eSafe 7.0.15.0 2008.01.06 -
eTrust-Vet 31.3.5440 2008.01.07 Win32/Startpage.UQ
Ewido 4.0 2008.01.07 Trojan.Kolweb.g
FileAdvisor 1 2008.01.08 -
Fortinet 3.14.0.0 2008.01.07 -
F-Prot 4.4.2.54 2008.01.07 W32/Trojan.IYO
F-Secure 6.70.13030.0 2008.01.08 Trojan.Win32.Kolweb.g
Ikarus T3.1.1.15 2008.01.08 Trojan.Win32.Kolweb.F
Kaspersky 7.0.0.125 2008.01.08 Trojan.Win32.Kolweb.g
McAfee 5201 2008.01.07 potentially unwanted program Adware-Adtomi
Microsoft 1.3109 2008.01.08 Adware:Win32/Adtomi.B
NOD32v2 2772 2008.01.07 Win32/Kolweb.I
Norman 5.80.02 2008.01.07 -
Panda 9.0.0.4 2008.01.07 Suspicious file
Prevx1 V2 2008.01.08 -
Rising 20.26.02.00 2008.01.07 -
Sophos 4.24.0 2008.01.07 -
Sunbelt 2.2.907.0 2008.01.08 -
Symantec 10 2008.01.08 Trojan Horse
TheHacker 6.2.9.183 2008.01.07 Trojan/Kolweb.g
VBA32 3.12.2.5 2008.01.07 Trojan.Win32.Kolweb.g
VirusBuster 4.3.26:9 2008.01.07 Trojan.Kolweb.Q
Webwasher-Gateway 6.6.2 2008.01.07 -
Additional information
File size: 187945 bytes
MD5: de4e6e8160116c149a1d7ba39a5e924d
SHA1: 6518eb3d6e1a7c1f62d4fbe88a659edc6931ecf8
PEiD: BobSoft Mini Delphi -> BoB / BobSoft
File jlx.exe received on 01.08.2008 02:07:29 (CET)
Current status: finished
Result: 21/32 (65.63%)
Compact
Print results
Service is stopped in this moments, your file is waiting to be scanned (position: ) for an undefined time.
You can wait for web response (automatic reload) or type your email in the form below and click "request" so the system sends you a notification when the scan is finished.
Email:
Antivirus Version Last Update Result
AhnLab-V3 2008.1.8.10 2008.01.07 -
AntiVir 7.6.0.46 2008.01.07 -
Authentium 4.93.8 2008.01.07 W32/Trojan.AZHO
Avast 4.7.1098.0 2008.01.07 Win32:Kolweb-E
AVG 7.5.0.516 2008.01.07 Generic.DUM
BitDefender 7.2 2008.01.08 Trojan.Kolweb.G
CAT-QuickHeal 9.00 2008.01.07 -
ClamAV 0.91.2 2008.01.08 -
DrWeb 4.44.0.09170 2008.01.07 Trojan.Click.767
eSafe 7.0.15.0 2008.01.06 -
eTrust-Vet 31.3.5440 2008.01.07 Win32/Startpage.UP
Ewido 4.0 2008.01.07 Trojan.Kolweb.g
FileAdvisor 1 2008.01.08 -
Fortinet 3.14.0.0 2008.01.07 -
F-Prot 4.4.2.54 2008.01.07 W32/Trojan.AZHO
F-Secure 6.70.13030.0 2008.01.08 Trojan.Win32.Kolweb.g
Ikarus T3.1.1.15 2008.01.08 Trojan.Win32.Kolweb.F
Kaspersky 7.0.0.125 2008.01.08 Trojan.Win32.Kolweb.g
McAfee 5201 2008.01.07 potentially unwanted program Adware-Adtomi
Microsoft 1.3109 2008.01.08 Adware:Win32/Adtomi.B
NOD32v2 2772 2008.01.07 Win32/Kolweb.G
Norman 5.80.02 2008.01.07 W32/Kolweb.G
Panda 9.0.0.4 2008.01.07 Suspicious file
Prevx1 V2 2008.01.08 -
Rising 20.26.02.00 2008.01.07 Trojan.KolWeb.be
Sophos 4.24.0 2008.01.07 -
Sunbelt 2.2.907.0 2008.01.08 -
Symantec 10 2008.01.08 Adware.Margoc
TheHacker 6.2.9.183 2008.01.07 Trojan/Kolweb.g
VBA32 3.12.2.5 2008.01.07 Trojan.Win32.Kolweb.g
VirusBuster 4.3.26:9 2008.01.07 Trojan.Kolweb.N
Webwasher-Gateway 6.6.2 2008.01.07 -
Additional information
File size: 263288 bytes
MD5: 55ed636fa259b5044c05bdd2aab281bd
SHA1: c4f2f122b2be78d72f7c097fea343ce9be449198
PEiD: BobSoft Mini Delphi -> BoB / BobSoft
File NOWMEMDF.sys received on 01.08.2008 02:14:09 (CET)
Current status: finished
Result: 0/32 (0%)
Compact
Print results
Service is stopped in this moments, your file is waiting to be scanned (position: ) for an undefined time.
You can wait for web response (automatic reload) or type your email in the form below and click "request" so the system sends you a notification when the scan is finished.
Email:
Antivirus Version Last Update Result
AhnLab-V3 2008.1.8.10 2008.01.07 -
AntiVir 7.6.0.46 2008.01.07 -
Authentium 4.93.8 2008.01.07 -
Avast 4.7.1098.0 2008.01.07 -
AVG 7.5.0.516 2008.01.07 -
BitDefender 7.2 2008.01.08 -
CAT-QuickHeal 9.00 2008.01.07 -
ClamAV 0.91.2 2008.01.08 -
DrWeb 4.44.0.09170 2008.01.07 -
eSafe 7.0.15.0 2008.01.06 -
eTrust-Vet 31.3.5440 2008.01.07 -
Ewido 4.0 2008.01.07 -
FileAdvisor 1 2008.01.08 -
Fortinet 3.14.0.0 2008.01.07 -
F-Prot 4.4.2.54 2008.01.07 -
F-Secure 6.70.13030.0 2008.01.08 -
Ikarus T3.1.1.15 2008.01.08 -
Kaspersky 7.0.0.125 2008.01.08 -
McAfee 5201 2008.01.07 -
Microsoft 1.3109 2008.01.08 -
NOD32v2 2772 2008.01.07 -
Norman 5.80.02 2008.01.07 -
Panda 9.0.0.4 2008.01.07 -
Prevx1 V2 2008.01.08 -
Rising 20.26.02.00 2008.01.07 -
Sophos 4.24.0 2008.01.07 -
Sunbelt 2.2.907.0 2008.01.08 -
Symantec 10 2008.01.08 -
TheHacker 6.2.9.183 2008.01.07 -
VBA32 3.12.2.5 2008.01.07 -
VirusBuster 4.3.26:9 2008.01.07 -
Webwasher-Gateway 6.6.2 2008.01.07 -
Additional information
File size: 14464 bytes
MD5: 22eddbd0b31562a7633c370013471774
SHA1: 186672bbcd2a1bb0883eda1f3e46ada9062ebf4d
PEiD: -