Welcome to MalwareRemoval.com,
What if we told you that you could get malware removal help from experts, and that it was 100% free? MalwareRemoval.com provides free support for people with infected computers. Our help, and the tools we use are always 100% free. No hidden catch. We simply enjoy helping others. You enjoy a clean, safe computer.

Malware Removal Instructions

New computer with problems

MalwareRemoval.com provides free support for people with infected computers. Using plain language that anyone can understand, our community of volunteer experts will walk you through each step.

New computer with problems

Unread postby UofTguy » August 13th, 2006, 4:11 pm

I downloaded adaware and spyware doctor. Neither has been able to remove the problems that I am receiving.

I started having problems after I downloaded a codec that I was told that I needed to view a movie file. I've tried deleting the coded, but it won't let me because it says it is in use.

My problems are as follows:

My homepage is being redirected to an anti-spyware site. Popups constantly come up asking me to buy anti-spyware software. Limewire won't stay closed. Some websites are blocked. A flashing icon in the taskbar tells me that I am infected and need to buy their software.

This laptop is relatively new, and I've never had a problem before this. I hope I can reverse these new problems.

Here is my log:

Logfile of HijackThis v1.99.1
Scan saved at 3:54:33 PM, on 8/13/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\ZcfgSvc.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\wdfmgr.exe
C:\WINDOWS\System32\alg.exe
C:\Program Files\IntCodec\isamonitor.exe
C:\Program Files\IntCodec\pmsngr.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\AGRSMMSG.exe
C:\Program Files\Apoint2K\Apoint.exe
C:\Program Files\Fujitsu\Fujitsu Hotkey Utility\IndicatorUty.exe
C:\Program Files\Fujitsu\Application Panel\QuickTouch.exe
C:\Program Files\Fujitsu\BtnHnd\BtnHnd.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\IntCodec\isamini.exe
C:\Program Files\IntCodec\pmmon.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\Program Files\Fujitsu\fjdvrupd\fjdvrupd.exe
C:\Program Files\Java\jre1.5.0_05\bin\jusched.exe
C:\Program Files\Apoint2K\Apntex.exe
C:\Program Files\Apoint2K\HidFind.exe
C:\Program Files\DAEMON Tools\daemon.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\Active Desktop Calendar\ADC.exe
C:\Documents and Settings\All Users\Start Menu\Programs\Startup\svchost.exe
C:\Program Files\limewire\limewire.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\PROGRA~1\SPYWAR~1\swdoctor.exe
C:\Program Files\HijackThis\HijackThis.exe
C:\Program Files\Messenger\msmsgs.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.ca/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.computers.us.fujitsu.com/
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {1da7dbe8-c51b-4ae4-bc6e-21863349b0b4} - C:\Program Files\IntCodec\isaddon.dll
O2 - BHO: PCTools Site Guard - {5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB} - C:\PROGRA~1\SPYWAR~1\tools\iesdsg.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: PCTools Browser Monitor - {B56A7D7D-6927-48C8-A975-17DF180C71AC} - C:\PROGRA~1\SPYWAR~1\tools\iesdpb.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: Protection Bar - {a2595f37-48d0-46a1-9b51-478591a97764} - C:\Program Files\IntCodec\iesplugin.dll (file missing)
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint2K\Apoint.exe
O4 - HKLM\..\Run: [IndicatorUtility] C:\Program Files\Fujitsu\Fujitsu Hotkey Utility\IndicatorUty.exe
O4 - HKLM\..\Run: [LoadFujitsuQuickTouch] C:\Program Files\Fujitsu\Application Panel\QuickTouch.exe
O4 - HKLM\..\Run: [LoadBtnHnd] C:\Program Files\Fujitsu\BtnHnd\BtnHnd.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [IntelWireless] C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [FJUPDNV_Chitose] C:\Program Files\Fujitsu\fjdvrupd\fjdvrupd.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_05\bin\jusched.exe
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [Active Desktop Calendar] C:\Program Files\Active Desktop Calendar\ADC.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: svchost.exe
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar2.dll/cmwordtrans.html
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html
O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar2.dll/cmtrans.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_05\bin\npjpi150_05.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_05\bin\npjpi150_05.dll
O9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - C:\PROGRA~1\SPYWAR~1\tools\iesdpb.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=http://www.computers.us.fujitsu.com/
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {5F8469B4-B055-49DD-83F7-62B522420ECC} (Facebook Photo Uploader Control) - http://upload.facebook.com/controls/Fac ... loader.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftup ... 3292702015
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMe ... loader.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: IntelWireless - C:\Program Files\Intel\Wireless\Bin\LgNotify.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: bestreak - {874443fe-aa33-4ebf-a6ac-73208787e62d} - C:\WINDOWS\system32\viruxz.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: EvtEng - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
O23 - Service: RegSrvc - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
UofTguy
Active Member
 
Posts: 7
Joined: August 13th, 2006, 3:59 pm
Advertisement
Register to Remove

Unread postby Navigator » August 13th, 2006, 4:23 pm

Hello UofTguy..welcome to Malware Removal!

You have a Smitfraud infection....

1. Please download SmitfraudFix (by S!Ri)
Extract the content (a folder named SmitfraudFix) to your Desktop.

Open the SmitfraudFix folder and double-click smitfraudfix.cmd
Select option #1 - Search by typing 1 and press "Enter"; a text file will appear, which lists infected files (if present).
Please copy/paste the content of that report into your next reply.

IMPORTANT: Do NOT run option #2 OR any other option until you are directed to do so!

Note : process.exe is detected by some antivirus programs (AntiVir, Dr.Web, Kaspersky) as a "RiskTool"; it is not a virus, but a program used to stop system processes. Antivirus programs cannot distinguish between "good" and "malicious" use of such programs, therefore they may alert the user.
http://www.beyondlogic.org/consulting/proc...processutil.htm
User avatar
Navigator
MRU Honors Grad Emeritus
 
Posts: 1237
Joined: December 21st, 2005, 8:35 pm
Location: Missouri

Unread postby UofTguy » August 13th, 2006, 5:03 pm

Hi,

Thanks for your help.

Unfortunately, after trying to open the smitfraud.cmd file, I received a msg saying "Another program is currently using this file". I rebooted and tried again, with the same result.

I am not sure what other program would be running the file. Could it be an effect of the malware?
UofTguy
Active Member
 
Posts: 7
Joined: August 13th, 2006, 3:59 pm

Unread postby Navigator » August 13th, 2006, 6:07 pm

UofTguy wrote:Hi,

Thanks for your help.

Unfortunately, after trying to open the smitfraud.cmd file, I received a msg saying "Another program is currently using this file". I rebooted and tried again, with the same result.

I am not sure what other program would be running the file. Could it be an effect of the malware?


Never seen that before....interesting to say the least. I see it in your HJT log, so let's see if Smitfraudfix.cmd will work in safe mode..

Go ahead and try do this please, we are going to do the 'fix' part:

You should print out these instructions, or copy them to a NotePad file for reading while in Safe Mode, because you will not be able to connect to the Internet to read from this site.

Next, please reboot your computer in Safe Mode by doing the following :
  • Restart your computer
  • After hearing your computer beep once during startup, but before the Windows icon appears, tap the F8 key continually;
  • Instead of Windows loading as normal, a menu with options should appear;
  • Select the first option, to run Windows in Safe Mode, then press "Enter".
  • Choose your usual account.
Once in Safe Mode, open the SmitfraudFix folder again and double-click smitfraudfix.cmd
Select option #2 - Clean by typing 2 and press "Enter" to delete infected files.

You will be prompted : "Registry cleaning - Do you want to clean the registry ?"; answer "Yes" by typing Y and press "Enter" in order to remove the Desktop background and clean registry keys associated with the infection.

The tool will now check if wininet.dll is infected. You may be prompted to replace the infected file (if found); answer "Yes" by typing Y and press "Enter".

The tool may need to restart your computer to finish the cleaning process; if it doesn't, please restart it into Normal Windows.
A text file will appear onscreen, with results from the cleaning process; please copy/paste the content of that report into your next reply.
The report can also be found at the root of the system drive, usually at C:\rapport.txt

Post the log it produces, or let me know if you have problems...
User avatar
Navigator
MRU Honors Grad Emeritus
 
Posts: 1237
Joined: December 21st, 2005, 8:35 pm
Location: Missouri

Unread postby UofTguy » August 13th, 2006, 8:14 pm

Hey,

So whatever you did seems to have fixed many of the problems. The codec was deleted. There is no longer the annoying flashing icon in the taskbar telling me to buy software. I can use my old homepage. But the problem of limewire continually reopening after being closed is still occurring.

Is there anything else to be done?

Thank you very much for all your help.

Here is the log file:

SmitFraudFix v2.81

Scan done at 20:00:32.92, Sun 08/13/2006
Run from C:\Documents and Settings\Owner\Desktop\SmitfraudFix\SmitfraudFix
OS: Microsoft Windows XP [Version 5.1.2600] - Windows_NT
Fix ran in safe mode

»»»»»»»»»»»»»»»»»»»»»»»» Before SmitFraudFix
!!!Attention, following keys are not inevitably infected!!!

SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler]
"bestreak"="{874443fe-aa33-4ebf-a6ac-73208787e62d}"


»»»»»»»»»»»»»»»»»»»»»»»» Killing process


»»»»»»»»»»»»»»»»»»»»»»»» Generic Renos Fix

GenericRenosFix by S!Ri

C:\WINDOWS\system32\viruxz.dll -> Hoax.Win32.Renos.gen.bHoax.Win32.Renos.gen.c
C:\WINDOWS\system32\viruxz.dll -> Deleted


»»»»»»»»»»»»»»»»»»»»»»»» Deleting infected files

C:\DOCUME~1\ALLUSE~1\STARTM~1\Online Security Guide.url Deleted
C:\DOCUME~1\ALLUSE~1\STARTM~1\Security Troubleshooting.url Deleted
C:\Program Files\IntCodec\ Deleted

»»»»»»»»»»»»»»»»»»»»»»»» Deleting Temp Files


»»»»»»»»»»»»»»»»»»»»»»»» Registry Cleaning

Registry Cleaning done.

»»»»»»»»»»»»»»»»»»»»»»»» After SmitFraudFix
!!!Attention, following keys are not inevitably infected!!!

SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll


»»»»»»»»»»»»»»»»»»»»»»»» End
UofTguy
Active Member
 
Posts: 7
Joined: August 13th, 2006, 3:59 pm

Unread postby Navigator » August 13th, 2006, 9:47 pm

Hello UofTguy....good job!

While it is not my place to tell you what to do, P2p apps like LimeWire and others like it are the largest source of malware we see. You'll be doing yourself a favor by removing it.

References for the risk of these programs are here: http://www.microsoft.com/windows/ie/com ... ction.mspx here: http://www.techweb.com/wire/160500554 and here: http://www.internetworldstats.com/articles/art053.htm

I would recommend that you uninstall LimeWire, however that choice is up to you. If you choose to remove this program, you can do so via Control Panel >> Add or Remove Programs.

I am not sure why LimeWire would behave as you are describing...it may be malware, but maybe not.

Let's continue cleaning your computer and then see if it resolves.

1. First download ewido anti-spyware from HERE and save that file to your desktop.
This is a 30 day trial of the program
  • Once you have downloaded ewido anti-spyware, locate the icon on the desktop and double-click it to launch the set up program.
  • Once the setup is complete you will need run ewido and update the definition files.
  • On the main screen select the icon "Update" then select the "Update now" link.
    • Next select the "Start Update" button, the update will start and a progress bar will show the updates being installed.
  • Once the update has completed select the "Scanner" icon at the top of the screen, then select the "Settings" tab.
  • Once in the Settings screen click on "Recommended actions" and then select "Quarantine".
  • Under "Reports"
    • Select "Automatically generate report after every scan"
    • Un-Select "Only if threats were found"
Close ewido anti-spyware, Do Not run a scan just yet, we will shortly.
  • Reboot your computer into SafeMode. You can do this by restarting your computer and continually tapping the F8 key until a menu appears. Use your up arrow key to highlight SafeMode then hit enter.
    IMPORTANT: Do not open any other windows or programs while ewido is scanning, it may interfere with the scanning proccess:
  • Lauch ewido-anti-spyware by double-clicking the icon on your desktop.
  • Select the "Scanner" icon at the top and then the "Scan" tab then click on "Complete System Scan".
  • ewido will now begin the scanning process, be patient this may take a little time.
    Once the scan is complete do the following:
  • If you have any infections you will prompted, then select "Apply all actions"
  • Next select the "Reports" icon at the top.
  • Select the "Save report as" button in the lower left hand of the screen and save it to a text file on your system (make sure to remember where you saved that file, this is important).
  • Close ewido and reboot your system back into Normal Mode .


2. Post the results of the ewido report scan and a new HJT log.
User avatar
Navigator
MRU Honors Grad Emeritus
 
Posts: 1237
Joined: December 21st, 2005, 8:35 pm
Location: Missouri

Unread postby UofTguy » August 14th, 2006, 12:24 pm

Hi,

It seems that the ewido scan found 404 infected objects.

Here is the ewido report (and the HJT report following):

---------------------------------------------------------
ewido anti-spyware - Scan Report
---------------------------------------------------------

+ Created at: 12:07:21 PM 8/14/2006

+ Scan result:



HKU\S-1-5-21-2570065018-4292475346-2058834457-1003\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1DA7DBE8-C51B-4AE4-BC6E-21863349B0B4} -> Adware.Generic : No action taken.
HKU\S-1-5-21-2570065018-4292475346-2058834457-1003\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A2595F37-48D0-46A1-9B51-478591A97764} -> Adware.Generic : No action taken.
C:\Documents and Settings\Owner\Shared\_\1 Click Boost v2.4.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\1 Click Fixer PLUS v3.0.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\1 Video Converter 4.1.14.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\1944 Battle Of The Bulge.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\1st Security Agent v6.5.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\2006 FIFA World Cup Germany.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\25th Hour.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\2Flyer Screensaver Builder Pro v7.5.3.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\3D Box Maker Professional 2.0.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\50 First Dates 2004.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\A4 Dvd Shrinker.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Ace CD Burner v1.31.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Advanced Host Monitor 4.16.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Advanced Image Resizer v2.0.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Age Of Wonder.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Alcohol 120 v1.9.5.4327 Retail.WinALL.Cracked-BLiZZARD.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Alexander The Great.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Allok AVI MPEG Converter v1.6.2.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Anchorman The Legend Of Ron Burgundy Xvid.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Animated Gif Producer V3.0.2.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Anti Tracks v5.54.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Anti Tracks v6.7.5.15.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\AntispamSniper for The Bat v1.6.3.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\AnyDVD v5.8.3.1.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Apollo DVD Copy v4.5.2.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Apollo DVD To iPod v2.0.0.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Apollo DVD To iPod v3.11.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Apollo PSP Video Converter v3.0.1.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Ardosoft Privacy Guard 2.0.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Arial Audio Converter v2.3.32.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Armor Tools v7.0.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Aston 1.9.2.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Aurora Media Workshop 3.3.16 + Keygen.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Aurora Media Workshop 3.3.9.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Aurora Media Workshop v2.4.16.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Aurora Media Workshop v3.3.9.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\AutoTyping Pro Edition v2.0.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Autodesk Maya Unlimited v8.0 Full.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Avast! Virus Cleaner v1.0.209.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Avid Xpress Pro HD V5.2.2.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\BPS Spyware Adware Remover v9.3.0.8.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\BT Engine v4.8.0605.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Babylon Pro 6.0.0.R29.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Bandidas 2006 DVDRip High Quality.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Bandidas 2006 dvdrip.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Bandidas 2006.DVDRip.XViD-TUBE.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Bash HTML Editor v4.31.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Batch Image Commander v1.22a.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Battlefield 2.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Bewod v0.20.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Beyond Good Evil.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Beyond Good and Evil.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Bezerk Wallpapers 141 HQ JPEG.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\BitDefender Internet Security 9.0.9.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\BlindWrite v5.0.7 122.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Blood Ranch 2006 DVDRip.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Bluff Titler DX9 4.0.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Brian Lara International Cricket 2005.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Button Studio v2.0.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\CSI 3 Dimensions of Murder.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Cars The Videogame RIP.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Cfont Pro v2.2.1.15.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Championship Manager 2006.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Chessmaster 8000.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Chicken Little RELOADED.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Click XViD.TS-maVen.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\CloneDVD 2.0.8.4.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Close Combat 3 The Russian Front.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Command and Conquer The First Decade.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Convert DVDs To MPEGs.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Corel Painter Essentials 3.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Crazy Taxi 3 High Roller.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Cute FTP Pro v3.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\CuteFTP Pro v8.0.08.09.2006.1.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\CwGet v1.50.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Cyberlink Powerdvd Copy 1.0.0.701.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\DFX Audio Enhancer 7.300 - Retail.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\DVDFab Platinum 2.9.8.3.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\DVDIdle Pro v5.9.6.2.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\DVDZip Copy v1.2.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Da Vincis Secret.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\DesignCAD 3D Max v17 Retail.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Devil May Cry 3 Dantes Awakening Special Edition.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Diet Power Weight Nutrition Coach 4.0.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\DirectDVD 5.0.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Dirty Dancing Havana Nights.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\DiscBlaze v1.1.1.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\DivX Create Bundle 6.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\DivX Player 5.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Download Accel.pl7.0.1.3.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Dr Hardware 2006 v7.0.0e.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Dungeon Siege 2 Broken World - RELOADED.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Dungeon Siege 2 Broken World.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\DynAdvance Notifier 1.1.68.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\EaseXP Password Master v1.12.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Easy CD-DA Extractor Pro 10.0.1 Build 2.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Easy FlashMaker 1.3.415.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Electronic Recipe Manager 3.5.2.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Ellusionist - Mind Bender.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Embarcadero Rapid SQL v7.4.0.3214.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\EtreSoft Decoder v3.1.5.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\FIFA Soccer 2006.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\FTP Cafe v1.5.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Fable The Lost Chapters.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\FairStars Audio Converter 1.34.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Fallen Lords Condemnation 2006.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Fast Cleaner 4.70.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Fight Night Round 3 xbox 360.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Final Destination 3.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Flash Wallpaper Maker v1.10.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\FlashGet v1.71.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\FlatOut 2.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Folder Guard 7.6.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Freddy vs Jason - DVDRip.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Fresh Download v7.56.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Fruit Machine Mania.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Full Speed v2.1.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Gadget Tycoon.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Game XP v1.5.8.10.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Garfield A Tail Of Two Kitties CAM VCD-PreVail.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Get Rich Or Die Tryin Xvid.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Get Rich Or Die Tryin.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\GetRight Professional v6.0A.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\GetRight Professional v6.0b+02.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Global DiVX Player 1.9.9.6.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Grand Theft Auto San Andreas.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Gun Metal.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\GutterBall 2.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\HTTP Prey ISO - DVD.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Half-Life 2.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Halo 2 xbox 360.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Headhunter 2005.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Headspace 2005 DVDRip.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Henta 3d Cracked Xxx Game.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Hero Video Convert 2.5.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Hex Workshop 4.2.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Hide IP Platinum 2.32.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Hide IP Platinum v2.82.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Hitman Blood Money xbox 360.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Hitman Blood Money.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Horrors of War 2006.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Hugo Cannon Cruise.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\ICQ Lite build 1300.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\IS CRM System v1.01.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\ImToo 11 Products Datecode 20060809.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\IndigoRose Setup Factory v7.0.5.1.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Ink Saver v2.0.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Internet Downloader Accelerate v2.6.1.657.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Ionworx ActivLicense Online for Delphi.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Kaspersky Anti-Virus 6.0.1.359 beta.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Kaspersky Internet Security 6.0.1.359 beta.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Kingdia CD Extractor v1.2.0.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Kingdom Under Fire Gold Edition.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\KitchenDraw v4.53.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Knights Of The Temple 2 Cloned DVD - By CEDRIC.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Kotkas Paax 2 Pro VSTi v2.1.2.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\LOTR Battle For Middle Earth 2.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Lady in the Water.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Lan Viewer v1.52.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\LightTEK Talisman Desktop 2.98.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Little Man TS.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Logo Creator 5.0 + All Extras.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\London Racer.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\LoveChess Age Of Egypt v.2.29 NEW.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\MLB 2006 xbox 360.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\MOBILedit! v2.0.0.13.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\MS virtual server 2005 plus Virtual pc 2004.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\MTX Mototrax.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Magic DVD Copier v4.3.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\MagicISO Maker v5.1.0185.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\McAfee AntiSpyware 2.1.112.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\McAfee VirusScan Professional 2006 10.0.25 Full.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\McFunSoft Audio Editor 5.1.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\MechWarrior 4.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\MegaMan Anniversary Collection PS2 ISO NTSC.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Merak Mail Server v8.5.0-7.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Metal Slug 5.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Miami Vice2006 DVDRip High Quality.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Microsoft Windows XP Pro SP2 Full Student Release.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Midtown Madness 2.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Mind Coder v1.1.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Moorhuhn Piraten XXL.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\MotoGP 3 Full.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\MotoGP 3.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Motor City Online.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Mp3 Doctor 5.11.049.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Multimedia Fusion 1.5 Pro.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Music Library v1.2.30.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\My Super Ex Girlfriend XViD.TS-maVen.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\My Super Ex-Girlfriend 2006.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Need For Speed Most Wanted xbox 360.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Neomesh Image Converter v3.0.1.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Nero 7.2.3.2b Premium.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Net Detective v5.19.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Netscape Browser 8.1.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Nicos Mailer v1.12.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Nik Sharpener Pro v2.0.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Nokia Media Studio V2.0.2.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Old Magic Tricks by Penguin Magic.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Once Upon A Knight.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\OutlookEX Recovery v3.1.1.1.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\PC Wizard 2006.1.68.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\PCBoost v3.1.23.2006.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\PCMedik v6.1.23.2006.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\PDF Extract TIFF v2.0.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Padus DiscJuggler v4.10.1140.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\PcMedik 6.1.23.2006.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Perfect Keylogger v1.5.3.6.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Phat Girlz Xvid.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Pimp My Ride Season 5.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Pirates Of Treasure Island.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Portable Winamp 5.1.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Privacy Defender 7.0.2.m.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Pro Chef Plus v9.6.0.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Pterodactyl 2005.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Quake 4 Mac.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Rails Across America.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Rainbow Six Lockdown.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Recover My Files v3.91.3336.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Reel Deal Slots Bonus Mania ISO.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\RegDoctor 1.53.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\RegFreeze v5.31.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\RegWorks v1.3.1.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Registry Defragmentation 8.2.6.11.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Robot Arena 2 Design Destroy 2003.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\RollerCoaster Tycoon 2.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Rome Total War Alexander.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\RonyaSoft ProPoster v1.01.26.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Roxio Easy Media Creator 8 Delux Suite With Working Key.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Roxio MyTV To Go v3.10.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\SMS-it v3.3.9.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\SMS-it! v3.3.9.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Sail Simulator 4.0.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Save Flash v3.0.0067.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Scary Movie 1.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Scary Movie 2.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Shark Tale.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\ShirazTech WSSpy v1.0.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Showshifter v3.12.2945.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Sid Meiers Pirates.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Silent Hill 2 Directors Cut iSO.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Silent Hill 2006 DVDRip.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Sims 2 Open For Business.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Ski-Doo X-Team Racing.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Speed DVD Creator v4.016.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Speed-Up your PC AIO.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Splinter Cell Chaos Theory.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\SpyRemover v2.57.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\SpyStopper Pro 4.40.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Spyware Doctor 2006 4.0.0.2603.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Spyware Doctor 4.0.0.2603.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Star Wars Empire At War.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Startup Mechanic v1.0.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Style XP v3.15.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\StyleXP v.3.18 All In One.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Subdreamer CMS Pro 2.3.5.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Summoner ISO.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Sunbelt Network Security Inspector v1.6.57.0.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Super DVD Creator 7.0.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\SuperRam v5.1.23.2006.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Sweet Insanity 2006.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Tactical Ops Assault On Terror.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Talladega Nights The Ballad of Ricky Bobby CAM.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Talladega Nights-The Ballad of Ricky Bobby movie.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\TechSmith Camtasia Studio 3.1.2.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\TerraWars - New York Invasion.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\TerraWars New York Invasion.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\The Benchwarmers High Quality.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\The Business 2005.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\The Chronicles of Riddick DVDRip.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\The Devil Wears Prada.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\The Essential Guide To - Tai Chi Meditation Purificat.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\The Fast And The Furious Tokyo Drift.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\The Fearless Vampire Killers1966.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\The Ghost of Mae Nak 2005.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\The Hills Have Eyes UNRATED DVDRip XviD.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\The Hulk.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\The Longest Yard DVDRip.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\The PC Jukebox 4.0.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\The Passion Of Christ.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\The Pleasure Drivers.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\The Punisher.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\The Sims 2.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\The Suffering Ties That Bind.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\The Ultimate Troubleshooter V3.30.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\The night patrol.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Tiger Woods PGA Tour 2006 xbox 360.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Tiny XP rev.05 - Stripped version of XP..exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Titan FTP Server Enterprise 5.26.361.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Titan Quest.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Tomb Raider Legen xbox 360.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\TracePlus Web Detective 5.11.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Trackmania Sunrise.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Treasure Manager 1.0.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Tropico 2 Pirate Cove.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\TuneUp Utilities 2006 5.0.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\TurboFTP v5.00.533.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\UHS Reader 5.10a.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Ultra MPEG Converter v2.0.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\VCOM PowerDesk Pro v6.0.3.4.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\VSO ConvertXToDVD 2.0.16.137.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Vertical Limit 2000.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Video Caster 2.5.9.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Vietcong 2.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Virtua Tennis.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Virtually Jenna2 Cracked Xxx Game.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\VueScan Professional Edition 8.3.59.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\WWW File Share Pro 4.0.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Wallpapers Nature.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\War of the States.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\WarHazard W3 Expansion!.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Warcraft III The Frozen Throne.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Warhammer 40000 Dawn of War Winter Assault.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Web Pictures Grabber 2.00.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\WebRoot SpySweeper v5.0.7.1608 -Retail.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Wichio Browser v4.5.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Will Rock.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\WinCapture v8.4.0.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\WinDesign v7.0.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\WinZip 10.0 Build 6698.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Winamp Pro 5.25 Build 812 Beta.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Windows 2003 eXPerience Edition.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Windows Genuine Advantage Validation v1.5.540.0 Cracked.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Windows XP Corporate Edition ISO.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Windows XP Pro Corporate SP2 Full Release 100 genui.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Worms 3D.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Worms 4 Mayhem.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\X-Men The Last Stand 2006 REAL-TC.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Xplorer2 Pro v1.6.0.0.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\Xtreme Beach Soccer.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\YahooBin v1.03.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\ZModeler 2.0.6 Build 753.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\microsoft office 2003 stripped.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\superman returns.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Shared\_\xzxzxzxzxzxz.exe -> Dropper.VB.lu : No action taken.
C:\Documents and Settings\Owner\Cookies\owner@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : No action taken.
C:\Documents and Settings\Owner\Cookies\owner@adbrite[1].txt -> TrackingCookie.Adbrite : No action taken.
C:\Documents and Settings\Owner\Cookies\owner@rotator.adjuggler[1].txt -> TrackingCookie.Adjuggler : No action taken.
:mozilla.129:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Adrevolver : No action taken.
:mozilla.130:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Adrevolver : No action taken.
:mozilla.131:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Adrevolver : No action taken.
:mozilla.132:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Adrevolver : No action taken.
:mozilla.133:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Adrevolver : No action taken.
:mozilla.194:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Adrevolver : No action taken.
C:\Documents and Settings\Owner\Cookies\owner@adrevolver[3].txt -> TrackingCookie.Adrevolver : No action taken.
C:\Documents and Settings\Owner\Cookies\owner@atdmt[2].txt -> TrackingCookie.Atdmt : No action taken.
:mozilla.59:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Burstbeacon : No action taken.
C:\Documents and Settings\Owner\Cookies\owner@www.burstbeacon[2].txt -> TrackingCookie.Burstbeacon : No action taken.
:mozilla.116:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Burstnet : No action taken.
C:\Documents and Settings\Owner\Cookies\owner@burstnet[2].txt -> TrackingCookie.Burstnet : No action taken.
C:\Documents and Settings\Owner\Cookies\owner@www.burstnet[1].txt -> TrackingCookie.Burstnet : No action taken.
C:\Documents and Settings\Owner\Cookies\owner@cz7.clickzs[2].txt -> TrackingCookie.Clickzs : No action taken.
C:\Documents and Settings\Owner\Cookies\owner@vip.clickzs[2].txt -> TrackingCookie.Clickzs : No action taken.
:mozilla.85:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Com : No action taken.
:mozilla.86:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Com : No action taken.
C:\Documents and Settings\Owner\Cookies\owner@com[2].txt -> TrackingCookie.Com : No action taken.
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wfmicmcjkbp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : No action taken.
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wjliooazefo.stats.esomniture[1].txt -> TrackingCookie.Esomniture : No action taken.
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wjliwlcjilp.stats.esomniture[1].txt -> TrackingCookie.Esomniture : No action taken.
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wjmisiazsbp.stats.esomniture[1].txt -> TrackingCookie.Esomniture : No action taken.
C:\Documents and Settings\Owner\Cookies\owner@adopt.euroclick[2].txt -> TrackingCookie.Euroclick : No action taken.
C:\Documents and Settings\Owner\Cookies\owner@kmpads[1].txt -> TrackingCookie.Kmpads : No action taken.
:mozilla.28:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Masterstats : No action taken.
C:\Documents and Settings\Owner\Cookies\owner@image.masterstats[1].txt -> TrackingCookie.Masterstats : No action taken.
C:\Documents and Settings\Owner\Cookies\owner@mediaplex[1].txt -> TrackingCookie.Mediaplex : No action taken.
:mozilla.226:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Pro-market : No action taken.
:mozilla.227:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Pro-market : No action taken.
C:\Documents and Settings\Owner\Cookies\owner@pro-market[2].txt -> TrackingCookie.Pro-market : No action taken.
C:\Documents and Settings\Owner\Cookies\owner@edge.ru4[1].txt -> TrackingCookie.Ru4 : No action taken.
:mozilla.162:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
:mozilla.163:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
:mozilla.164:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
:mozilla.165:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
C:\Documents and Settings\Owner\Cookies\owner@bs.serving-sys[1].txt -> TrackingCookie.Serving-sys : No action taken.
C:\Documents and Settings\Owner\Cookies\owner@serving-sys[2].txt -> TrackingCookie.Serving-sys : No action taken.
:mozilla.23:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.24:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.25:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.26:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
C:\Documents and Settings\Owner\Cookies\owner@cs.sexcounter[2].txt -> TrackingCookie.Sexcounter : No action taken.
C:\Documents and Settings\Owner\Cookies\owner@counter9.sextracker[1].txt -> TrackingCookie.Sextracker : No action taken.
C:\Documents and Settings\Owner\Cookies\owner@sextracker[1].txt -> TrackingCookie.Sextracker : No action taken.
C:\Documents and Settings\Owner\Cookies\owner@adopt.specificclick[2].txt -> TrackingCookie.Specificclick : No action taken.
:mozilla.166:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Tacoda : No action taken.
:mozilla.167:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Tacoda : No action taken.
C:\Documents and Settings\Owner\Cookies\owner@tacoda[1].txt -> TrackingCookie.Tacoda : No action taken.
C:\Documents and Settings\Owner\Cookies\owner@free.wegcash[2].txt -> TrackingCookie.Wegcash : No action taken.
C:\Documents and Settings\Owner\Cookies\owner@xxxcounter[1].txt -> TrackingCookie.Xxxcounter : No action taken.
:mozilla.10:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.11:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.12:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.13:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.14:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.15:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.16:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.8:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.9:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
C:\Documents and Settings\Owner\Cookies\owner@ad.yieldmanager[2].txt -> TrackingCookie.Yieldmanager : No action taken.
C:\Documents and Settings\Owner\Cookies\owner@yieldmanager[1].txt -> TrackingCookie.Yieldmanager : No action taken.
C:\Documents and Settings\Owner\Shared\Max Secure Spyware Detector Enterprise 2.4.zip/Setup.exe -> Worm.VB.an : No action taken.
C:\Documents and Settings\Owner\Shared\Spyware Doctor 3 2 With Working serial zip.zip/Setup.exe -> Worm.VB.dw : No action taken.
C:\Documents and Settings\Owner\Shared\Spyware Doctor 3 8 [With Serial-Crack!].zip/Setup.exe -> Worm.VB.dw : No action taken.


::Report end


HJT REPORT:

Logfile of HijackThis v1.99.1
Scan saved at 12:20:58 PM, on 8/14/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\Intel\Wireless\Bin\ZcfgSvc.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\ewido anti-spyware 4.0\guard.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\wdfmgr.exe
C:\WINDOWS\System32\alg.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\AGRSMMSG.exe
C:\Program Files\Apoint2K\Apoint.exe
C:\Program Files\Apoint2K\Apntex.exe
C:\Program Files\Apoint2K\HidFind.exe
C:\Program Files\Fujitsu\Fujitsu Hotkey Utility\IndicatorUty.exe
C:\Program Files\Fujitsu\Application Panel\QuickTouch.exe
C:\Program Files\Fujitsu\BtnHnd\BtnHnd.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\Program Files\Fujitsu\fjdvrupd\fjdvrupd.exe
C:\Program Files\Java\jre1.5.0_05\bin\jusched.exe
C:\Program Files\DAEMON Tools\daemon.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\ewido anti-spyware 4.0\ewido.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\Active Desktop Calendar\ADC.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\PROGRA~1\SPYWAR~1\swdoctor.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\HijackThis\HijackThis.exe

O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: PCTools Site Guard - {5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB} - C:\PROGRA~1\SPYWAR~1\tools\iesdsg.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: PCTools Browser Monitor - {B56A7D7D-6927-48C8-A975-17DF180C71AC} - C:\PROGRA~1\SPYWAR~1\tools\iesdpb.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint2K\Apoint.exe
O4 - HKLM\..\Run: [IndicatorUtility] C:\Program Files\Fujitsu\Fujitsu Hotkey Utility\IndicatorUty.exe
O4 - HKLM\..\Run: [LoadFujitsuQuickTouch] C:\Program Files\Fujitsu\Application Panel\QuickTouch.exe
O4 - HKLM\..\Run: [LoadBtnHnd] C:\Program Files\Fujitsu\BtnHnd\BtnHnd.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [IntelWireless] C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [FJUPDNV_Chitose] C:\Program Files\Fujitsu\fjdvrupd\fjdvrupd.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_05\bin\jusched.exe
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [!ewido] "C:\Program Files\ewido anti-spyware 4.0\ewido.exe" /minimized
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [Active Desktop Calendar] C:\Program Files\Active Desktop Calendar\ADC.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar2.dll/cmwordtrans.html
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html
O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar2.dll/cmtrans.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_05\bin\npjpi150_05.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_05\bin\npjpi150_05.dll
O9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - C:\PROGRA~1\SPYWAR~1\tools\iesdpb.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=http://www.computers.us.fujitsu.com/
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {5F8469B4-B055-49DD-83F7-62B522420ECC} (Facebook Photo Uploader Control) - http://upload.facebook.com/controls/Fac ... loader.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftup ... 3292702015
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMe ... loader.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: IntelWireless - C:\Program Files\Intel\Wireless\Bin\LgNotify.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: EvtEng - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
O23 - Service: RegSrvc - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
UofTguy
Active Member
 
Posts: 7
Joined: August 13th, 2006, 3:59 pm

Unread postby Navigator » August 14th, 2006, 1:52 pm

Hey..

I do not believe you set up Ewido properly...it didn't quarantine anything it found!

Do the Ewido Scan again, make sure to follow the directions below especially the part about setting Ewido to quarantine found bad items:
  1. Once you have downloaded ewido anti-spyware, locate the icon on the desktop and double-click it to launch the set up program.
  2. Once the setup is complete you will need run ewido and update the definition files.
  3. On the main screen select the icon "Update" then select the "Update now" link.
    • Next select the "Start Update" button, the update will start and a progress bar will show the updates being installed.
  4. Once the update has completed select the "Scanner" icon at the top of the screen, then select the "Settings" tab.
  5. Once in the Settings screen click on "Recommended actions" and then select "Quarantine".
  6. Under "Reports"
    • Select "Automatically generate report after every scan"
    • Un-Select "Only if threats were found"
Close ewido anti-spyware, Do Not run a scan just yet, we will shortly.
  1. Reboot your computer into SafeMode. You can do this by restarting your computer and continually tapping the F8 key until a menu appears. Use your up arrow key to highlight SafeMode then hit enter.
    IMPORTANT: Do not open any other windows or programs while ewido is scanning, it may interfere with the scanning proccess:
  2. Lauch ewido-anti-spyware by double-clicking the icon on your desktop.
  3. Select the "Scanner" icon at the top and then the "Scan" tab then click on "Complete System Scan".
  4. ewido will now begin the scanning process, be patient this may take a little time.
    Once the scan is complete do the following:
  5. If you have any infections you will prompted, then select "Apply all actions"
  6. Next select the "Reports" icon at the top.
  7. Select the "Save report as" button in the lower left hand of the screen and save it to a text file on your system (make sure to remember where you saved that file, this is important).
  8. Close ewido and reboot your system back into Normal Mode and post the results of the ewido report scan.
User avatar
Navigator
MRU Honors Grad Emeritus
 
Posts: 1237
Joined: December 21st, 2005, 8:35 pm
Location: Missouri

Unread postby UofTguy » August 14th, 2006, 3:54 pm

Hey,

Not too sure what happened last time. I did everything you said. But this time it seems to have quarantined everything.

Here are the results:

---------------------------------------------------------
ewido anti-spyware - Scan Report
---------------------------------------------------------

+ Created at: 3:40:05 PM 8/14/2006

+ Scan result:



HKU\S-1-5-21-2570065018-4292475346-2058834457-1003\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1DA7DBE8-C51B-4AE4-BC6E-21863349B0B4} -> Adware.Generic : Cleaned with backup (quarantined).
HKU\S-1-5-21-2570065018-4292475346-2058834457-1003\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A2595F37-48D0-46A1-9B51-478591A97764} -> Adware.Generic : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\1 Click Boost v2.4.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\1 Click Fixer PLUS v3.0.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\1 Video Converter 4.1.14.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\1944 Battle Of The Bulge.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\1st Security Agent v6.5.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\2006 FIFA World Cup Germany.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\25th Hour.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\2Flyer Screensaver Builder Pro v7.5.3.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\3D Box Maker Professional 2.0.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\50 First Dates 2004.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\A4 Dvd Shrinker.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Ace CD Burner v1.31.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Advanced Host Monitor 4.16.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Advanced Image Resizer v2.0.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Age Of Wonder.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Alcohol 120 v1.9.5.4327 Retail.WinALL.Cracked-BLiZZARD.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Alexander The Great.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Allok AVI MPEG Converter v1.6.2.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Anchorman The Legend Of Ron Burgundy Xvid.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Animated Gif Producer V3.0.2.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Anti Tracks v5.54.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Anti Tracks v6.7.5.15.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\AntispamSniper for The Bat v1.6.3.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\AnyDVD v5.8.3.1.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Apollo DVD Copy v4.5.2.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Apollo DVD To iPod v2.0.0.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Apollo DVD To iPod v3.11.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Apollo PSP Video Converter v3.0.1.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Ardosoft Privacy Guard 2.0.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Arial Audio Converter v2.3.32.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Armor Tools v7.0.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Aston 1.9.2.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Aurora Media Workshop 3.3.16 + Keygen.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Aurora Media Workshop 3.3.9.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Aurora Media Workshop v2.4.16.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Aurora Media Workshop v3.3.9.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\AutoTyping Pro Edition v2.0.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Autodesk Maya Unlimited v8.0 Full.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Avast! Virus Cleaner v1.0.209.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Avid Xpress Pro HD V5.2.2.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\BPS Spyware Adware Remover v9.3.0.8.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\BT Engine v4.8.0605.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Babylon Pro 6.0.0.R29.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Bandidas 2006 DVDRip High Quality.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Bandidas 2006 dvdrip.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Bandidas 2006.DVDRip.XViD-TUBE.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Bash HTML Editor v4.31.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Batch Image Commander v1.22a.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Battlefield 2.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Bewod v0.20.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Beyond Good Evil.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Beyond Good and Evil.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Bezerk Wallpapers 141 HQ JPEG.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\BitDefender Internet Security 9.0.9.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\BlindWrite v5.0.7 122.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Blood Ranch 2006 DVDRip.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Bluff Titler DX9 4.0.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Brian Lara International Cricket 2005.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Button Studio v2.0.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\CSI 3 Dimensions of Murder.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Cars The Videogame RIP.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Cfont Pro v2.2.1.15.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Championship Manager 2006.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Chessmaster 8000.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Chicken Little RELOADED.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Click XViD.TS-maVen.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\CloneDVD 2.0.8.4.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Close Combat 3 The Russian Front.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Command and Conquer The First Decade.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Convert DVDs To MPEGs.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Corel Painter Essentials 3.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Crazy Taxi 3 High Roller.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Cute FTP Pro v3.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\CuteFTP Pro v8.0.08.09.2006.1.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\CwGet v1.50.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Cyberlink Powerdvd Copy 1.0.0.701.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\DFX Audio Enhancer 7.300 - Retail.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\DVDFab Platinum 2.9.8.3.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\DVDIdle Pro v5.9.6.2.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\DVDZip Copy v1.2.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Da Vincis Secret.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\DesignCAD 3D Max v17 Retail.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Devil May Cry 3 Dantes Awakening Special Edition.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Diet Power Weight Nutrition Coach 4.0.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\DirectDVD 5.0.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Dirty Dancing Havana Nights.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\DiscBlaze v1.1.1.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\DivX Create Bundle 6.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\DivX Player 5.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Download Accel.pl7.0.1.3.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Dr Hardware 2006 v7.0.0e.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Dungeon Siege 2 Broken World - RELOADED.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Dungeon Siege 2 Broken World.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\DynAdvance Notifier 1.1.68.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\EaseXP Password Master v1.12.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Easy CD-DA Extractor Pro 10.0.1 Build 2.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Easy FlashMaker 1.3.415.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Electronic Recipe Manager 3.5.2.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Ellusionist - Mind Bender.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Embarcadero Rapid SQL v7.4.0.3214.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\EtreSoft Decoder v3.1.5.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\FIFA Soccer 2006.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\FTP Cafe v1.5.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Fable The Lost Chapters.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\FairStars Audio Converter 1.34.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Fallen Lords Condemnation 2006.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Fast Cleaner 4.70.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Fight Night Round 3 xbox 360.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Final Destination 3.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Flash Wallpaper Maker v1.10.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\FlashGet v1.71.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\FlatOut 2.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Folder Guard 7.6.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Freddy vs Jason - DVDRip.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Fresh Download v7.56.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Fruit Machine Mania.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Full Speed v2.1.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Gadget Tycoon.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Game XP v1.5.8.10.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Garfield A Tail Of Two Kitties CAM VCD-PreVail.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Get Rich Or Die Tryin Xvid.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Get Rich Or Die Tryin.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\GetRight Professional v6.0A.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\GetRight Professional v6.0b+02.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Global DiVX Player 1.9.9.6.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Grand Theft Auto San Andreas.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Gun Metal.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\GutterBall 2.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\HTTP Prey ISO - DVD.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Half-Life 2.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Halo 2 xbox 360.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Headhunter 2005.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Headspace 2005 DVDRip.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Henta 3d Cracked Xxx Game.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Hero Video Convert 2.5.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Hex Workshop 4.2.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Hide IP Platinum 2.32.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Hide IP Platinum v2.82.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Hitman Blood Money xbox 360.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Hitman Blood Money.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Horrors of War 2006.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Hugo Cannon Cruise.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\ICQ Lite build 1300.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\IS CRM System v1.01.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\ImToo 11 Products Datecode 20060809.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\IndigoRose Setup Factory v7.0.5.1.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Ink Saver v2.0.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Internet Downloader Accelerate v2.6.1.657.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Ionworx ActivLicense Online for Delphi.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Kaspersky Anti-Virus 6.0.1.359 beta.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Kaspersky Internet Security 6.0.1.359 beta.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Kingdia CD Extractor v1.2.0.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Kingdom Under Fire Gold Edition.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\KitchenDraw v4.53.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Knights Of The Temple 2 Cloned DVD - By CEDRIC.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Kotkas Paax 2 Pro VSTi v2.1.2.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\LOTR Battle For Middle Earth 2.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Lady in the Water.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Lan Viewer v1.52.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\LightTEK Talisman Desktop 2.98.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Little Man TS.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Logo Creator 5.0 + All Extras.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\London Racer.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\LoveChess Age Of Egypt v.2.29 NEW.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\MLB 2006 xbox 360.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\MOBILedit! v2.0.0.13.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\MS virtual server 2005 plus Virtual pc 2004.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\MTX Mototrax.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Magic DVD Copier v4.3.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\MagicISO Maker v5.1.0185.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\McAfee AntiSpyware 2.1.112.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\McAfee VirusScan Professional 2006 10.0.25 Full.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\McFunSoft Audio Editor 5.1.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\MechWarrior 4.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\MegaMan Anniversary Collection PS2 ISO NTSC.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Merak Mail Server v8.5.0-7.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Metal Slug 5.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Miami Vice2006 DVDRip High Quality.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Microsoft Windows XP Pro SP2 Full Student Release.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Midtown Madness 2.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Mind Coder v1.1.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Moorhuhn Piraten XXL.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\MotoGP 3 Full.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\MotoGP 3.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Motor City Online.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Mp3 Doctor 5.11.049.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Multimedia Fusion 1.5 Pro.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Music Library v1.2.30.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\My Super Ex Girlfriend XViD.TS-maVen.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\My Super Ex-Girlfriend 2006.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Need For Speed Most Wanted xbox 360.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Neomesh Image Converter v3.0.1.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Nero 7.2.3.2b Premium.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Net Detective v5.19.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Netscape Browser 8.1.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Nicos Mailer v1.12.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Nik Sharpener Pro v2.0.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Nokia Media Studio V2.0.2.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Old Magic Tricks by Penguin Magic.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Once Upon A Knight.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\OutlookEX Recovery v3.1.1.1.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\PC Wizard 2006.1.68.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\PCBoost v3.1.23.2006.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\PCMedik v6.1.23.2006.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\PDF Extract TIFF v2.0.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Padus DiscJuggler v4.10.1140.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\PcMedik 6.1.23.2006.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Perfect Keylogger v1.5.3.6.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Phat Girlz Xvid.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Pimp My Ride Season 5.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Pirates Of Treasure Island.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Portable Winamp 5.1.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Privacy Defender 7.0.2.m.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Pro Chef Plus v9.6.0.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Pterodactyl 2005.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Quake 4 Mac.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Rails Across America.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Rainbow Six Lockdown.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Recover My Files v3.91.3336.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Reel Deal Slots Bonus Mania ISO.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\RegDoctor 1.53.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\RegFreeze v5.31.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\RegWorks v1.3.1.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Registry Defragmentation 8.2.6.11.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Robot Arena 2 Design Destroy 2003.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\RollerCoaster Tycoon 2.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Rome Total War Alexander.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\RonyaSoft ProPoster v1.01.26.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Roxio Easy Media Creator 8 Delux Suite With Working Key.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Roxio MyTV To Go v3.10.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\SMS-it v3.3.9.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\SMS-it! v3.3.9.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Sail Simulator 4.0.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Save Flash v3.0.0067.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Scary Movie 1.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Scary Movie 2.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Shark Tale.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\ShirazTech WSSpy v1.0.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Showshifter v3.12.2945.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Sid Meiers Pirates.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Silent Hill 2 Directors Cut iSO.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Silent Hill 2006 DVDRip.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Sims 2 Open For Business.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Ski-Doo X-Team Racing.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Speed DVD Creator v4.016.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Speed-Up your PC AIO.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Splinter Cell Chaos Theory.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\SpyRemover v2.57.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\SpyStopper Pro 4.40.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Spyware Doctor 2006 4.0.0.2603.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Spyware Doctor 4.0.0.2603.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Star Wars Empire At War.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Startup Mechanic v1.0.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Style XP v3.15.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\StyleXP v.3.18 All In One.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Subdreamer CMS Pro 2.3.5.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Summoner ISO.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Sunbelt Network Security Inspector v1.6.57.0.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Super DVD Creator 7.0.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\SuperRam v5.1.23.2006.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Sweet Insanity 2006.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Tactical Ops Assault On Terror.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Talladega Nights The Ballad of Ricky Bobby CAM.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Talladega Nights-The Ballad of Ricky Bobby movie.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\TechSmith Camtasia Studio 3.1.2.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\TerraWars - New York Invasion.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\TerraWars New York Invasion.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\The Benchwarmers High Quality.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\The Business 2005.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\The Chronicles of Riddick DVDRip.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\The Devil Wears Prada.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\The Essential Guide To - Tai Chi Meditation Purificat.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\The Fast And The Furious Tokyo Drift.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\The Fearless Vampire Killers1966.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\The Ghost of Mae Nak 2005.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\The Hills Have Eyes UNRATED DVDRip XviD.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\The Hulk.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\The Longest Yard DVDRip.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\The PC Jukebox 4.0.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\The Passion Of Christ.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\The Pleasure Drivers.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\The Punisher.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\The Sims 2.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\The Suffering Ties That Bind.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\The Ultimate Troubleshooter V3.30.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\The night patrol.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Tiger Woods PGA Tour 2006 xbox 360.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Tiny XP rev.05 - Stripped version of XP..exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Titan FTP Server Enterprise 5.26.361.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Titan Quest.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Tomb Raider Legen xbox 360.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\TracePlus Web Detective 5.11.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Trackmania Sunrise.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Treasure Manager 1.0.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Tropico 2 Pirate Cove.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\TuneUp Utilities 2006 5.0.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\TurboFTP v5.00.533.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\UHS Reader 5.10a.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Ultra MPEG Converter v2.0.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\VCOM PowerDesk Pro v6.0.3.4.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\VSO ConvertXToDVD 2.0.16.137.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Vertical Limit 2000.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Video Caster 2.5.9.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Vietcong 2.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Virtua Tennis.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Virtually Jenna2 Cracked Xxx Game.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\VueScan Professional Edition 8.3.59.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\WWW File Share Pro 4.0.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Wallpapers Nature.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\War of the States.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\WarHazard W3 Expansion!.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Warcraft III The Frozen Throne.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Warhammer 40000 Dawn of War Winter Assault.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Web Pictures Grabber 2.00.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\WebRoot SpySweeper v5.0.7.1608 -Retail.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Wichio Browser v4.5.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Will Rock.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\WinCapture v8.4.0.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\WinDesign v7.0.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\WinZip 10.0 Build 6698.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Winamp Pro 5.25 Build 812 Beta.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Windows 2003 eXPerience Edition.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Windows Genuine Advantage Validation v1.5.540.0 Cracked.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Windows XP Corporate Edition ISO.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Windows XP Pro Corporate SP2 Full Release 100 genui.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Worms 3D.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Worms 4 Mayhem.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\X-Men The Last Stand 2006 REAL-TC.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Xplorer2 Pro v1.6.0.0.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\Xtreme Beach Soccer.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\YahooBin v1.03.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\ZModeler 2.0.6 Build 753.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\microsoft office 2003 stripped.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\superman returns.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\_\xzxzxzxzxzxz.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Cookies\owner@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Cookies\owner@adbrite[1].txt -> TrackingCookie.Adbrite : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Cookies\owner@rotator.adjuggler[1].txt -> TrackingCookie.Adjuggler : Cleaned with backup (quarantined).
:mozilla.129:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup (quarantined).
:mozilla.130:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup (quarantined).
:mozilla.131:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup (quarantined).
:mozilla.132:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup (quarantined).
:mozilla.133:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup (quarantined).
:mozilla.194:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Cookies\owner@adrevolver[3].txt -> TrackingCookie.Adrevolver : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Cookies\owner@atdmt[2].txt -> TrackingCookie.Atdmt : Cleaned with backup (quarantined).
:mozilla.59:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Burstbeacon : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Cookies\owner@www.burstbeacon[2].txt -> TrackingCookie.Burstbeacon : Cleaned with backup (quarantined).
:mozilla.116:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Cookies\owner@burstnet[2].txt -> TrackingCookie.Burstnet : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Cookies\owner@www.burstnet[1].txt -> TrackingCookie.Burstnet : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Cookies\owner@cz7.clickzs[2].txt -> TrackingCookie.Clickzs : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Cookies\owner@vip.clickzs[2].txt -> TrackingCookie.Clickzs : Cleaned with backup (quarantined).
:mozilla.85:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Com : Cleaned with backup (quarantined).
:mozilla.86:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Com : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Cookies\owner@com[2].txt -> TrackingCookie.Com : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wfmicmcjkbp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wjliooazefo.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wjliwlcjilp.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wjmisiazsbp.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Cookies\owner@adopt.euroclick[2].txt -> TrackingCookie.Euroclick : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Cookies\owner@kmpads[1].txt -> TrackingCookie.Kmpads : Cleaned with backup (quarantined).
:mozilla.28:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Masterstats : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Cookies\owner@image.masterstats[1].txt -> TrackingCookie.Masterstats : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Cookies\owner@mediaplex[1].txt -> TrackingCookie.Mediaplex : Cleaned with backup (quarantined).
:mozilla.226:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Pro-market : Cleaned with backup (quarantined).
:mozilla.227:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Pro-market : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Cookies\owner@pro-market[2].txt -> TrackingCookie.Pro-market : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Cookies\owner@edge.ru4[1].txt -> TrackingCookie.Ru4 : Cleaned with backup (quarantined).
:mozilla.162:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned with backup (quarantined).
:mozilla.163:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned with backup (quarantined).
:mozilla.164:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned with backup (quarantined).
:mozilla.165:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Cookies\owner@bs.serving-sys[1].txt -> TrackingCookie.Serving-sys : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Cookies\owner@serving-sys[2].txt -> TrackingCookie.Serving-sys : Cleaned with backup (quarantined).
:mozilla.23:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup (quarantined).
:mozilla.24:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup (quarantined).
:mozilla.25:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup (quarantined).
:mozilla.26:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Cookies\owner@cs.sexcounter[2].txt -> TrackingCookie.Sexcounter : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Cookies\owner@counter9.sextracker[1].txt -> TrackingCookie.Sextracker : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Cookies\owner@sextracker[1].txt -> TrackingCookie.Sextracker : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Cookies\owner@adopt.specificclick[2].txt -> TrackingCookie.Specificclick : Cleaned with backup (quarantined).
:mozilla.166:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup (quarantined).
:mozilla.167:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Cookies\owner@tacoda[1].txt -> TrackingCookie.Tacoda : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Cookies\owner@free.wegcash[2].txt -> TrackingCookie.Wegcash : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Cookies\owner@xxxcounter[1].txt -> TrackingCookie.Xxxcounter : Cleaned with backup (quarantined).
:mozilla.10:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup (quarantined).
:mozilla.11:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup (quarantined).
:mozilla.12:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup (quarantined).
:mozilla.13:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup (quarantined).
:mozilla.14:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup (quarantined).
:mozilla.15:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup (quarantined).
:mozilla.16:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup (quarantined).
:mozilla.8:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup (quarantined).
:mozilla.9:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7x4ompe7.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Cookies\owner@ad.yieldmanager[2].txt -> TrackingCookie.Yieldmanager : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Cookies\owner@yieldmanager[1].txt -> TrackingCookie.Yieldmanager : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\Max Secure Spyware Detector Enterprise 2.4.zip/Setup.exe -> Worm.VB.an : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\Spyware Doctor 3 2 With Working serial zip.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Shared\Spyware Doctor 3 8 [With Serial-Crack!].zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).


::Report end


HJT results:

Logfile of HijackThis v1.99.1
Scan saved at 3:53:57 PM, on 8/14/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\ZcfgSvc.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\ewido anti-spyware 4.0\guard.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\wdfmgr.exe
C:\WINDOWS\System32\alg.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\AGRSMMSG.exe
C:\Program Files\Apoint2K\Apoint.exe
C:\Program Files\Fujitsu\Fujitsu Hotkey Utility\IndicatorUty.exe
C:\Program Files\Fujitsu\Application Panel\QuickTouch.exe
C:\Program Files\Fujitsu\BtnHnd\BtnHnd.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\Program Files\Fujitsu\fjdvrupd\fjdvrupd.exe
C:\Program Files\Java\jre1.5.0_05\bin\jusched.exe
C:\Program Files\DAEMON Tools\daemon.exe
C:\Program Files\Apoint2K\Apntex.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\ewido anti-spyware 4.0\ewido.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\Active Desktop Calendar\ADC.exe
C:\Program Files\Apoint2K\HidFind.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\PROGRA~1\SPYWAR~1\swdoctor.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\HijackThis\HijackThis.exe

O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: PCTools Site Guard - {5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB} - C:\PROGRA~1\SPYWAR~1\tools\iesdsg.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: PCTools Browser Monitor - {B56A7D7D-6927-48C8-A975-17DF180C71AC} - C:\PROGRA~1\SPYWAR~1\tools\iesdpb.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint2K\Apoint.exe
O4 - HKLM\..\Run: [IndicatorUtility] C:\Program Files\Fujitsu\Fujitsu Hotkey Utility\IndicatorUty.exe
O4 - HKLM\..\Run: [LoadFujitsuQuickTouch] C:\Program Files\Fujitsu\Application Panel\QuickTouch.exe
O4 - HKLM\..\Run: [LoadBtnHnd] C:\Program Files\Fujitsu\BtnHnd\BtnHnd.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [IntelWireless] C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [FJUPDNV_Chitose] C:\Program Files\Fujitsu\fjdvrupd\fjdvrupd.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_05\bin\jusched.exe
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [!ewido] "C:\Program Files\ewido anti-spyware 4.0\ewido.exe" /minimized
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [Active Desktop Calendar] C:\Program Files\Active Desktop Calendar\ADC.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar2.dll/cmwordtrans.html
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html
O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar2.dll/cmtrans.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_05\bin\npjpi150_05.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_05\bin\npjpi150_05.dll
O9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - C:\PROGRA~1\SPYWAR~1\tools\iesdpb.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=http://www.computers.us.fujitsu.com/
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {5F8469B4-B055-49DD-83F7-62B522420ECC} (Facebook Photo Uploader Control) - http://upload.facebook.com/controls/Fac ... loader.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftup ... 3292702015
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMe ... loader.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: IntelWireless - C:\Program Files\Intel\Wireless\Bin\LgNotify.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: EvtEng - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
O23 - Service: RegSrvc - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
UofTguy
Active Member
 
Posts: 7
Joined: August 13th, 2006, 3:59 pm

Unread postby Navigator » August 14th, 2006, 4:59 pm

Hello UofTguy.....

You're HJT log is clean...how is your computer running now? I see you removed LimeWire...good choice.

Since Ewido found so much, let's clean out the temp files a bit and do another online scan. Your Java is also out of date which can be a security risk, so we'll update that below too:

1. Please download ATF Cleaner by Atribune.
This program is for XP and Windows 2000 only
    Double-click ATF-Cleaner.exe to run the program.
    Under Main choose: Select All
    Click the Empty Selected button.
If you use Firefox browser
    Click Firefox at the top and choose: Select All
    Click the Empty Selected button.
    NOTE: If you would like to keep your saved passwords, please click No at the prompt.
If you use Opera browser
    Click Opera at the top and choose: Select All
    Click the Empty Selected button.
    NOTE: If you would like to keep your saved passwords, please click No at the prompt.
Click Exit on the Main menu to close the program.

2. Update Java
  • Download the latest version of Java Runtime Environment (JRE) 5.0 Update 8.<== scroll down the list to find THIS entry
  • Click the "Download" button to the right.
  • Check the box that says: "Accept License Agreement".
  • The page will refresh.
  • Click on the link to download Windows Offline Installation with or without Multi-language and save to your desktop.
  • Close any programs you may have running - especially your web browser.
  • Go to Start > Control Panel double-click on Add/Remove programs and remove all older versions of Java. (in your case Java - jre1.5.0_05 and any others that are present).
  • Click the Remove or Change/Remove button to remove them.
  • Repeat as many times as necessary to remove each Java versions.
  • Reboot your computer once all Java components are removed.
  • Then from your desktop double-click on jre-1_5_0_08-windows-i586-p to install the newest version.


3. Please go HERE to run Panda's ActiveScan
  • Once you are on the Panda site click the Scan your PC button
  • A new window will open...click the Check Now button
  • Enter your Country
  • Enter your State/Province
  • Enter your e-mail address and click send
  • Select either Home User or Company
  • Click the big Scan Now button
  • If it wants to install an ActiveX component allow it
  • It will start downloading the files it requires for the scan (Note: It may take a couple of minutes)
  • When download is complete, click on My Computer to start the scan
  • When the scan completes, if anything malicious is detected, click the See Report button, then Save Report and save it to a convenient location. Post the contents of the ActiveScan report


4. Post back with the ActiveScan results and a new HJT log....also let me know how your system is running and if you are having any problems!
User avatar
Navigator
MRU Honors Grad Emeritus
 
Posts: 1237
Joined: December 21st, 2005, 8:35 pm
Location: Missouri

Unread postby UofTguy » August 14th, 2006, 6:18 pm

Hey,

I updated my java and ran the panda scan. It found a few problems. My computer seems to be running fine. It's just a little slow. That's probably from all the programs I have running though. Perhaps I could get rid of some of these programs and files I've downloaded? Anyway, here is the panda scan report:


Incident Status Location

Adware:adware/intcodec Not disinfected Windows Registry
Spyware:Cookie/2o7 Not disinfected C:\Documents and Settings\Owner\Cookies\owner@2o7[1].txt
Spyware:Cookie/Atlas DMT Not disinfected C:\Documents and Settings\Owner\Cookies\owner@atdmt[2].txt
Potentially unwanted tool:Application/Processor Not disinfected C:\Documents and Settings\Owner\Desktop\SmitfraudFix\SmitfraudFix\Process.exe
Potentially unwanted tool:Application/Processor Not disinfected C:\Documents and Settings\Owner\Desktop\SmitfraudFix.zip[SmitfraudFix/Process.exe]
Adware:Adware/PestTrap Not disinfected C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\NS9XFS8K\safetyhomepage[1].htm
Here is the new HJT report:

Logfile of HijackThis v1.99.1
Scan saved at 6:18:28 PM, on 8/14/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Intel\Wireless\Bin\ZcfgSvc.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\ewido anti-spyware 4.0\guard.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\wdfmgr.exe
C:\WINDOWS\System32\alg.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\AGRSMMSG.exe
C:\Program Files\Apoint2K\Apoint.exe
C:\Program Files\Fujitsu\Fujitsu Hotkey Utility\IndicatorUty.exe
C:\Program Files\Fujitsu\Application Panel\QuickTouch.exe
C:\Program Files\Apoint2K\Apntex.exe
C:\Program Files\Apoint2K\HidFind.exe
C:\Program Files\Fujitsu\BtnHnd\BtnHnd.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\Program Files\Fujitsu\fjdvrupd\fjdvrupd.exe
C:\Program Files\DAEMON Tools\daemon.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\ewido anti-spyware 4.0\ewido.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\Active Desktop Calendar\ADC.exe
C:\PROGRA~1\SPYWAR~1\swdoctor.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Messenger\msmsgs.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Program Files\HijackThis\HijackThis.exe

O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: PCTools Site Guard - {5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB} - C:\PROGRA~1\SPYWAR~1\tools\iesdsg.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_08\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: PCTools Browser Monitor - {B56A7D7D-6927-48C8-A975-17DF180C71AC} - C:\PROGRA~1\SPYWAR~1\tools\iesdpb.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint2K\Apoint.exe
O4 - HKLM\..\Run: [IndicatorUtility] C:\Program Files\Fujitsu\Fujitsu Hotkey Utility\IndicatorUty.exe
O4 - HKLM\..\Run: [LoadFujitsuQuickTouch] C:\Program Files\Fujitsu\Application Panel\QuickTouch.exe
O4 - HKLM\..\Run: [LoadBtnHnd] C:\Program Files\Fujitsu\BtnHnd\BtnHnd.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [IntelWireless] C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [FJUPDNV_Chitose] C:\Program Files\Fujitsu\fjdvrupd\fjdvrupd.exe
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [!ewido] "C:\Program Files\ewido anti-spyware 4.0\ewido.exe" /minimized
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_08\bin\jusched.exe"
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [Active Desktop Calendar] C:\Program Files\Active Desktop Calendar\ADC.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar2.dll/cmwordtrans.html
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html
O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar2.dll/cmtrans.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_08\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_08\bin\ssv.dll
O9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - C:\PROGRA~1\SPYWAR~1\tools\iesdpb.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=http://www.computers.us.fujitsu.com/
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {5F8469B4-B055-49DD-83F7-62B522420ECC} (Facebook Photo Uploader Control) - http://upload.facebook.com/controls/Fac ... loader.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftup ... 3292702015
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan ... asinst.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMe ... loader.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: IntelWireless - C:\Program Files\Intel\Wireless\Bin\LgNotify.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: EvtEng - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
O23 - Service: RegSrvc - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
UofTguy
Active Member
 
Posts: 7
Joined: August 13th, 2006, 3:59 pm

Unread postby Navigator » August 14th, 2006, 7:41 pm

Hello UofTguy....

All panda found was some cookies and stuff...nothing major. You can take care of what it found by doing this:

Clean out the Temporary Internet files folder for (EVERY LISTED USER). Proceed like this...
- Quit Internet Explorer and quit any instances of Windows Explorer.
- Click Start button, click Control Panel, and then double-click Internet Options.
- On the General tab, click Delete Files under Temporary Internet Files.
- In the Delete Files dialog box, click to select the Delete all offline content check box , and then click OK.
- On the General tab, click Delete Cookies under Temporary Internet Files, and then click OK.
- Click OK

As far as your computer 'running a bit slow' do you mean at startup or in normal use? I do not see too much extraneous stuff in your HJT log.

If your slowness is at startup, Bleeping Computer has a Startup list here so that you could research all the programs you have running at start up and decide which you can remove. The link is here: http://www.bleepingcomputer.com/startups/

You can feel free to remove any program I had you download to help with removing the malware from you system, like SmitfraudFix. You can even remove Ewido and ATF cleaner, but you may find these programs useful in the future...your choice.

Ewido is a trial, but I believe after the trial period ends it retains it's functionality, you just have to update it manually. ATF file cleaner is a great little (non-resource using) program to clean temp files.

If I can do anything else for you let me know...please be certain to do the system restore steps below...this is VERY important!

Now that you are clean, please follow these simple steps in order to keep your computer clean and secure:
  • THIS IS IMPORTANT! - If you are using Windows XP then you should reset system restore to make sure there are no infected files found in a restore point and that you have a clean restore point should you need one!

    Now let's reset your restore points.

    Click Start Menu >> All Programs >> Accessories >> System Tools >> SystemRestore

    Press OK. Choose 'Create a Restore Point' then Next. Name it and press 'Create' then when the confirmation screen shows the restore point has been created click 'Close'.

    Next go to Start Menu >> Run, then type:

    cleanmgr


    click OK, when Disk Cleanup opens go to the 'More Options' tab and press 'Cleanup' on the system restore area which will remove all the restore points except the one we just created. To close Disk Cleanup and remove the Temporary Internet Files detected in the initial scan click OK then choose Yes on the confirmation window.

  • Make your Internet Explorer more secure - This can be done by following these simple instructions:
    • From within Internet Explorer click on the Tools menu and then click on Options.
    • Click once on the Security tab
    • Click once on the Internet icon so it becomes highlighted.
    • Click once on the Custom Level button.
      • Change the Download signed ActiveX controls to Prompt
      • Change the Download unsigned ActiveX controls to Disable
      • Change the Initialize and script ActiveX controls not marked as safe to Disable
      • Change the Installation of desktop items to Prompt
      • Change the Launching programs and files in an IFRAME to Prompt
      • Change the Navigate sub-frames across different domains to Prompt
    • When all these settings have been made, click on the OK button.
    • If it prompts you as to whether or not you want to save the settings, press the Yes button.
    • Next press the Apply button and then the OK to exit the Internet Properties page.
The following is a list of tools and utilities that I like to suggest to people. This list is full of great tools and utilities to help you understand how you got infected and how to keep from getting infected again.
  • Spybot Search & Destroy- Uber powerful tool which can search and annhilate nasties that make it onto your system. Now with an Immunize section that will help prevent future infections.
  • AdAware - Another very powerful tool which searches and kills nasties that infect your system. AdAware and Spybot Search & Destroy compliment each other very well.
  • SpywareBlaster - Great prevention tool to keep nasties from installing on your system.
  • SpywareGuard - Works as a Spyware "Shield" to protect your computer from getting malware in the first place.
  • IE-SpyAd - puts over 5000 sites in your restricted zone so you'll be protected when you visit innocent-looking sites that aren't actually innocent at all.
  • ATF Cleaner by Atribune. This program is for XP and Windows 2000 only. ATF is a new, freeware, temporary file cleaner for Windows, IE, Firefox and Opera with a simple, easy-to-use interface. The main screen allows the user to either clean all temporary files, or select files for cleaning. The program also knows if Firefox and or Opera is being used, and gives the option of cleaning the temporary files associated with those applications.
To find out more information about how you got infected in the first place and some great guidelines to follow to prevent future infections you can read this article by Tony Klein. These are excellent reads too: I'm not pulling your leg and Malware: Preventing the Infection



Remember...be careful out there!
User avatar
Navigator
MRU Honors Grad Emeritus
 
Posts: 1237
Joined: December 21st, 2005, 8:35 pm
Location: Missouri

Unread postby UofTguy » August 14th, 2006, 8:07 pm

Hey,

I've finished the last of your instructions. Things seem to be back to normal. I have to be honest, I really didn't believe that this would work. You have been such a big help! I really appreciate it. I'm going to recommend your site to all of my friends with malware problems.

Thanks again!
UofTguy
Active Member
 
Posts: 7
Joined: August 13th, 2006, 3:59 pm

Unread postby Navigator » August 14th, 2006, 8:15 pm

UofTguy wrote:Hey,

I've finished the last of your instructions. Things seem to be back to normal. I have to be honest, I really didn't believe that this would work. You have been such a big help! I really appreciate it. I'm going to recommend your site to all of my friends with malware problems.

Thanks again!


Now THAT'S what I'm talking about! Making believers out of disbelievers! :lol:

Would you believe me if I told you my real job was being an MD? :shock: (it's true...I treat all types of 'infections'!)

You are very welcome...good luck!
User avatar
Navigator
MRU Honors Grad Emeritus
 
Posts: 1237
Joined: December 21st, 2005, 8:35 pm
Location: Missouri

Unread postby 'KotaGuy » August 20th, 2006, 4:38 pm

This topic is now closed. If you wish it reopened, please send us an email to 'admin at malwareremoval.com' with a link to your thread.

You can help support this site from this link :
Donations For Malware Removal

Do not bother contacting us if you are not the topic starter. A valid, working link to the closed topic is required along with the user name used. If the user name does not match the one in the thread linked, the email will be deleted.
User avatar
'KotaGuy
Admin/Teacher Emeritus
 
Posts: 12472
Joined: April 7th, 2005, 7:06 pm
Location: Alberta, Canada
Advertisement
Register to Remove


  • Similar Topics
    Replies
    Views
    Last post

Return to Infected? Virus, malware, adware, ransomware, oh my!



Who is online

Users browsing this forum: No registered users and 201 guests

Contact us:

Advertisements do not imply our endorsement of that product or service. Register to remove all ads. The forum is run by volunteers who donate their time and expertise. We make every attempt to ensure that the help and advice posted is accurate and will not cause harm to your computer. However, we do not guarantee that they are accurate and they are to be used at your own risk. All trademarks are the property of their respective owners.

Member site: UNITE Against Malware