BullGuard
 HomeLog InRegisterCommunity CalendarSearch the ForumView The Member ListHelp
My video files on my pc is all changed to .exe files, Please help me guys
   
BullGuard Antivirus Forum > Virus Removal > Removal Help > My video files on my pc is all changed to .exe files, Please help me guys  
Forum Quick Jump
 
New Topic Post reply to : My video files on my pc is all changed to .exe files, Please help me guys Printable version of : My video files on my pc is all changed to .exe files, Please help me guys
[ << Previous Thread | Next Thread >> ]

gade_behn
New Member


Date Joined Sep 2009
Total Posts : 5
 
   Posted 9/28/2009 9:37 AM (GMT +3)    Quote: My video files on my pc is all changed to .exe files, Please help me guysAlert an admin about: My video files on my pc is all changed to .exe files, Please help me guys
Moreover, all the video files size changed to 240kb, and i could not open all the video files anymore. All my movies and videos changed into that .exe files, 240kb, and this is very annoying. When i checked back my hard drive space, my hard disk space increased, as i have deleted all the movies inside. Huhu... is it possible to recover the files back, or myb to remove the virus from my PC??
Back to Top
 

Jintan
Senior Member




Date Joined Dec 2006
Total Posts : 1428
 
   Posted 9/29/2009 5:14 AM (GMT +3)    Quote: My video files on my pc is all changed to .exe files, Please help me guysAlert an admin about: My video files on my pc is all changed to .exe files, Please help me guys
Welcome to BullGuard forums gade_behn,

I have seen many times where certain files get wrongly associated as file types, but don't recall any that also became the same file size. Let's see what all is there.


To keep them from interfering with the repairs, be sure to temporarily disable all antivirus/anti-spyware softwares while these steps are being completed. This can usually be done through right clicking the software's Taskbar icons, or accessing each software through Start - Programs.


First, go here, press new topic, fill in the needed details and just give a link to your post back here (see the "Instructions for uploading files" there for help, if needed). Then press the browse button and then navigate to & select at least two of those ".exe" changed video files.

You DO NOT need to be a member to upload, anybody can upload the files. You will not be able to see the file once uploaded. Just click the "(more attachments)" next to the Browse button to upload more than one file.

Then I can check it's code to see what has changed.

------------

Download RSIT (random's system information tool) from here to your desktop. Then click on the RSIT.exe to open the RSIT display, and click the Continue button.

If necessary allow it to locate or download a copy of HijackThis as needed.

Once the scan completes a textbox will open - copy/paste those contents here for review please. The log can also be found at C:\rsit\log.txt.

RSIT will also create a second log, info.txt, which will be minimized to your taskbar. Post that here as well please (it will also be stored at C:\rsit\info.txt).

You can break logs into parts and use separate posts here when replying and posting the log files, if needed.


Click here and help my friend help stop leukemia, lymphoma, Hodgkin lymphoma and myeloma from taking more lives.

Back to Top
 

gade_behn
New Member


Date Joined Sep 2009
Total Posts : 5
 
   Posted 9/29/2009 12:16 PM (GMT +3)    Quote: My video files on my pc is all changed to .exe files, Please help me guysAlert an admin about: My video files on my pc is all changed to .exe files, Please help me guys
this is the uploaded sample files
http://thespykiller.co.uk/index.php/topic,8840.0.html

info.txt

info.txt logfile of random's system information tool 1.06 2009-09-29 17:13:47

======Uninstall list======

-->"C:\WINDOWS\$NtUninstallMSCompPackV1$\spuninst\spuninst.exe"
-->C:\Program Files\Conexant\SmartAudio\SETUP.EXE -U -ISmartAudio -SM=SMAUDIO.EXE,1801
-->C:\Program Files\InstallShield Installation Information\{36C41D70-56F5-4E2B-81DA-6BEB7502D7A1}\setup.exe -runfromtemp -l0x0009 -removeonly
-->C:\Program Files\InstallShield Installation Information\{B2C4A8C4-AA20-425D-9FEE-C78039238C81}\setup.exe -runfromtemp -l0x0009 -removeonly
-->C:\Program Files\Nero\Nero 7\\nero\uninstall\UNNERO.exe /UNINSTALL
-->C:\WINDOWS\system32\\MSIEXEC.EXE /x {1206EF92-2E83-4859-ACCB-2048C3CB7DA6}
-->C:\WINDOWS\UNNeroBackItUp.exe /UNINSTALL
-->C:\WINDOWS\UNNeroMediaHome.exe /UNINSTALL
-->C:\WINDOWS\UNNeroShowTime.exe /UNINSTALL
-->C:\WINDOWS\UNNeroVision.exe /UNINSTALL
-->C:\WINDOWS\UNRecode.exe /UNINSTALL
-->MsiExec.exe /X{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}
-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{2E47302B-8081-46D3-9FEA-BEB2E5F5C3EC}\setup.exe" -l0x9 anything
-->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
3GP Video Converter 3-->C:\Program Files\Xilisoft\3GP Video Converter 3\Uninstall.exe
Add or Remove Adobe Creative Suite 3 Master Collection-->C:\Program Files\Common Files\Adobe\Installers\4dcfd9b7e901b57f81f667144603236\Setup.exe
Adobe After Effects CS3 Presets-->MsiExec.exe /I{193EAFD0-1BAF-4FB4-B18F-79D5D6A4B285}
Adobe After Effects CS3 Third Party Content-->C:\Program Files\Common Files\Adobe\Installers\3675c95c239b992d5d0ee8fce969b9e\Setup.exe
Adobe After Effects CS3 Third Party Content-->MsiExec.exe /I{7ECEF10B-F1C2-4FD5-861F-A3FCB4653304}
Adobe After Effects CS3-->MsiExec.exe /I{EB0202F7-016A-410C-ADE4-40F848CCC661}
Adobe After Effects CS4 Third Party Content-->MsiExec.exe /I{67A9747A-E1F5-4E9A-81CC-12B5D5B81B6E}
Adobe AIR-->C:\Program Files\Common Files\Adobe AIR\Versions\1.0\Resources\Adobe AIR Updater.exe -arp:uninstall
Adobe AIR-->MsiExec.exe /I{197A3012-8C85-4FD3-AB66-9EC7E13DB92E}
Adobe Anchor Service CS3-->MsiExec.exe /I{90176341-0A8B-4CCC-A78D-F862228A6B95}
Adobe Anchor Service CS4-->MsiExec.exe /I{1618734A-3957-4ADD-8199-F973763109A8}
Adobe Asset Services CS3-->MsiExec.exe /I{6FF5DD7A-FE28-4439-B8CF-1E9AF4EA0A61}
Adobe Bridge CS3-->MsiExec.exe /I{9C9824D9-9000-4373-A6A5-D0E5D4831394}
Adobe Bridge CS4-->MsiExec.exe /I{83877DB1-8B77-45BC-AB43-2BAC22E093E0}
Adobe Bridge Start Meeting-->MsiExec.exe /I{08B32819-6EEF-4057-AEDA-5AB681A36A23}
Adobe BridgeTalk Plugin CS3-->MsiExec.exe /I{B73CFB12-C814-4638-AFFD-7E3AAFAF0B4E}
Adobe Camera Raw 4.0-->MsiExec.exe /I{B3BF6689-A81D-40D8-9A86-4AC4ACD9FC1C}
Adobe CMaps CS4-->MsiExec.exe /I{94D398EB-D2FD-4FD1-B8C4-592635E8A191}
Adobe Color - Photoshop Specific-->MsiExec.exe /I{A2D81E70-2A98-4A08-A628-94388B063C5E}
Adobe Color EU Extra Settings CS4-->MsiExec.exe /I{5570C7F0-43D0-4916-8A9E-AEDD52FA86F4}
Adobe Color JA Extra Settings CS4-->MsiExec.exe /I{0D6013AB-A0C7-41DC-973C-E93129C9A29F}
Adobe Color NA Recommended Settings CS4-->MsiExec.exe /I{00ADFB20-AE75-46F4-AD2C-F48B15AC3100}
Adobe Creative Suite 3 Master Collection-->MsiExec.exe /I{8718DC03-D066-4957-94E5-50C3C5042E8E}
Adobe Creative Suite 4 Master Collection-->C:\Program Files\Common Files\Adobe\Installers\b2d6abde968e6f277ddbfd501383e02\Setup.exe --uninstall=1
Adobe Creative Suite 4 Master Collection-->MsiExec.exe /I{61D6891E-E822-4448-9F9A-0AAAAEB6AF6C}
Adobe CSI CS4-->MsiExec.exe /I{0F723FC1-7606-4867-866C-CE80AD292DAF}
Adobe Default Language CS4-->MsiExec.exe /I{C52E3EC1-048C-45E1-8D53-10B0C6509683}
Adobe Device Central CS3-->MsiExec.exe /I{8D2BA474-F406-4710-9AE4-D4F22D21F0DD}
Adobe Dynamiclink Support-->MsiExec.exe /I{60DB5894-B5A1-4B62-B0F3-669A22C0EE5D}
Adobe Encore CS4 Codecs-->MsiExec.exe /I{FB2A5FCC-B81B-48C2-A009-7804694D83E9}
Adobe ExtendScript Toolkit 2-->C:\Program Files\Common Files\Adobe\Installers\3e054d2218e7aa282c2369d939e58ff\Setup.exe
Adobe ExtendScript Toolkit 2-->MsiExec.exe /I{24D7346D-D4B4-45E8-98EA-75EC14B42DD8}
Adobe ExtendScript Toolkit CS4-->MsiExec.exe /I{F8EF2B3F-C345-4F20-8FE4-791A20333CD5}
Adobe Extension Manager CS3-->MsiExec.exe /I{BE5F3842-8309-4754-92D5-83E02E6077A3}
Adobe Extension Manager CS4-->MsiExec.exe /I{054EFA56-2AC1-48F4-A883-0AB89874B972}
Adobe Flash Player 10 ActiveX-->C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
Adobe Flash Player 10 Plugin-->C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
Adobe Fonts All-->MsiExec.exe /I{FCDD51BB-CAD0-4BB1-B7DF-CE86D1032794}
Adobe Help Viewer CS3-->MsiExec.exe /I{7ACFB90E-8FD0-4397-AD3A-5195412623A3}
Adobe Illustrator CS4-->MsiExec.exe /I{87532CAB-7932-4F84-8937-823337622807}
Adobe InDesign CS3 Icon Handler-->MsiExec.exe /I{EA7B3CC4-366D-4CF6-8350-FD7A7034116E}
Adobe InDesign CS4 Application Feature Set Files (Roman)-->MsiExec.exe /I{2BAF2B96-7560-48B4-87D4-10178DDBE217}
Adobe InDesign CS4 Common Base Files-->MsiExec.exe /I{7CC7BDD5-6F10-4724-96A1-EAC7D9F2831C}
Adobe InDesign CS4 Icon Handler-->MsiExec.exe /I{1E04CB54-AF4E-4AC3-B4B7-C0A160BE57F1}
Adobe InDesign CS4-->MsiExec.exe /I{1DCA3EAA-6EB5-4563-A970-EA14D75037BA}
Adobe Linguistics CS3-->MsiExec.exe /I{54793AA1-5001-42F4-ABB6-C364617C6078}
Adobe Linguistics CS4-->MsiExec.exe /I{931AB7EA-3656-4BB7-864D-022B09E3DD67}
Adobe Media Encoder CS4 Additional Exporter-->MsiExec.exe /I{BE9CEAAA-F069-4331-BF2F-8D350F6504F4}
Adobe Media Encoder CS4 Dolby-->MsiExec.exe /I{EE353798-E875-42E0-B58D-7E6696182EA8}
Adobe Media Encoder CS4 Exporter-->MsiExec.exe /I{561968FD-56A1-49FD-9ED0-F55482C7C5BC}
Adobe Media Encoder CS4 Importer-->MsiExec.exe /I{8186FF34-D389-4B7E-9A2F-C197585BCFBD}
Adobe Media Encoder CS4-->MsiExec.exe /I{DEB90B8E-0DCB-48CE-B90E-8842A2BD643E}
Adobe Media Player-->msiexec /qb /x {39F6E2B4-CFE8-C30A-66E8-489651F0F34C}
Adobe Media Player-->MsiExec.exe /I{39F6E2B4-CFE8-C30A-66E8-489651F0F34C}
Adobe MotionPicture Color Files-->MsiExec.exe /I{6B708481-748A-4EB4-97C1-CD386244FF77}
Adobe Output Module-->MsiExec.exe /I{BB4E33EC-8181-4685-96F7-8554293DEC6A}
Adobe PDF Library Files CS4-->MsiExec.exe /I{F93C84A6-0DC6-42AF-89FA-776F7C377353}
Adobe Photoshop CS3-->MsiExec.exe /I{0046FA01-C5B9-4985-BACB-398DC480FC05}
Adobe Premiere Pro CS4 Functional Content-->MsiExec.exe /I{B169BC97-B8AA-4ACA-9CF2-9D0FF5BABDF7}
Adobe Premiere Pro CS4 Third Party Content-->MsiExec.exe /I{C938BE91-3BB5-4B84-9EF6-88F0505D0038}
Adobe Premiere Pro CS4-->MsiExec.exe /I{D499F8DE-3F31-4900-9157-61061613704B}
Adobe Reader 8.1.6-->MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A81300000003}
Adobe Search for Help-->MsiExec.exe /I{F0E64E2E-3A60-40D8-A55D-92F6831875DA}
Adobe Service Manager Extension-->MsiExec.exe /I{4943EFF5-229F-435D-BEA9-BE3CAEA783A7}
Adobe Setup-->MsiExec.exe /I{004685F7-9FB6-4789-812F-59ABB34A55AF}
Adobe Setup-->MsiExec.exe /I{4458C442-7376-4CF9-AF58-E8CEA6722363}
Adobe Setup-->MsiExec.exe /I{B3C02EC1-A7B0-4987-9A43-8789426AAA7D}
Adobe Setup-->MsiExec.exe /I{E8EE9410-8AC4-4F43-A626-DDECA75C79F3}
Adobe SGM CS4-->MsiExec.exe /I{15BF7AAF-846C-4A6D-80E1-5D1FC7FB461B}
Adobe Shockwave Player-->C:\WINDOWS\system32\Macromed\SHOCKW~1\UNWISE.EXE C:\WINDOWS\system32\Macromed\SHOCKW~1\Install.log
Adobe SING CS3-->MsiExec.exe /I{B671CBFD-4109-4D35-9252-3062D3CCB7B2}
Adobe SING CS4-->MsiExec.exe /I{4A52555C-032A-4083-BDD9-6A85ABFB39A8}
Adobe Soundbooth CS4 Codecs-->MsiExec.exe /I{52232EF4-CC12-4C21-ABCF-ADB79618302D}
Adobe Stock Photos CS3-->MsiExec.exe /I{29E5EA97-5F74-4A57-B8B2-D4F169117183}
Adobe Type Support CS4-->MsiExec.exe /I{820D3F45-F6EE-4AAF-81EF-CE21FF21D230}
Adobe Update Manager CS3-->MsiExec.exe /I{E69AE897-9E0B-485C-8552-7841F48D42D8}
Adobe Update Manager CS4-->MsiExec.exe /I{05308C4E-7285-4066-BAE3-6B50DA6ED755}
Adobe Version Cue CS3 Client-->MsiExec.exe /I{D0DFF92A-492E-4C40-B862-A74A173C25C5}
Adobe Video Profiles-->MsiExec.exe /I{845A8DB9-8802-4FD3-9FE3-938A6C46A2EC}
Adobe WAS CS3-->MsiExec.exe /I{C5BD220A-EFE8-48A5-B70E-9503D535FACE}
Adobe WinSoft Linguistics Plugin-->MsiExec.exe /I{184CE391-7E0E-4C63-9935-D7A10EDFD3C6}
Adobe WinSoft Linguistics Plugin-->MsiExec.exe /I{3DA8DF9A-044E-46C4-8531-DEDBB0EE37FF}
Adobe XMP DVA Panels CS3-->MsiExec.exe /I{0224CACC-994D-45F8-B973-D65056EA9C2F}
Adobe XMP Panels CS3-->MsiExec.exe /I{D5A31AB1-345D-47C7-A87B-036A669F6DF1}
Adobe XMP Panels CS4-->MsiExec.exe /I{3A4E8896-C2E7-4084-A4A4-B8FD1894E739}
AdobeColorCommonSetCMYK-->MsiExec.exe /I{68243FF8-83CA-466B-B2B8-9F99DA5479C4}
AdobeColorCommonSetRGB-->MsiExec.exe /I{16E6D2C1-7C90-4309-8EC4-D2212690AAA4}
Adolix Split and Merge PDF v1.6-->"C:\Program Files\Adolix\Adolix Split and Merge PDF\unins000.exe"
AHV content for Acrobat and Flash-->MsiExec.exe /I{6BBAA81D-6A7E-43AD-8889-2F002DCAAFDD}
Apple Mobile Device Support-->MsiExec.exe /I{8355F970-601D-442D-A79B-1D7DB4F24CAD}
Apple Software Update-->MsiExec.exe /I{6956856F-B6B3-4BE0-BA0B-8F495BE32033}
Audacity 1.3.7 (Unicode)-->"C:\Program Files\Audacity 1.3 Beta (Unicode)\unins000.exe"
Avant Browser (remove only)-->"C:\Program Files\Avant Browser\uninst.exe"
Avira Premium Security Suite-->C:\Program Files\Avira\AntiVir Desktop\setup.exe /REMOVE
AVS Update Manager 1.0-->"C:\Program Files\AVS4YOU\AVSUpdateManager\unins000.exe"
AVS Video Converter 6-->"C:\Program Files\AVS4YOU\AVSVideoConverter6\unins000.exe"
AVS4YOU Software Navigator 1.3-->"C:\Program Files\AVS4YOU\AVSSoftwareNavigator\unins000.exe"
Bonjour-->MsiExec.exe /I{07287123-B8AC-41CE-8346-3D777245C35B}
BookWorm Deluxe 1.02-->C:\Program Files\PopCap Games\BookWorm Deluxe\PopUninstall.exe "C:\Program Files\PopCap Games\BookWorm Deluxe\Install.log"
CastRipper 2.9.6.000 2007.06.09-->"C:\Program Files\Mini-stream\CastRipper\unins000.exe"
Chinese (Simplified) Language Support-->RunDll32 advpack.dll,LaunchINFSection C:\WINDOWS\INF\cn.inf, Uninstall
Conexant HD Audio-->C:\Program Files\CONEXANT\CNXT_AUDIO_HDA\UIU32a.exe -U -I*.INF
Conexant HD Audio-->C:\Program Files\CONEXANT\CNXT_HDAUDIO\HXFSETUP.EXE -U -Iwis30B5a.INF
Connect-->MsiExec.exe /I{B29AD377-CC12-490A-A480-1452337C618D}
Cucusoft DVD to iPod + iPod Video Converter Suite 7.22.7.16-->"C:\Program Files\Cucusoft\ipod-converter\unins000.exe"
CyberLink YouCam-->"C:\Program Files\InstallShield Installation Information\{01FB4998-33C4-4431-85ED-079E3EEFE75D}\setup.exe" /z-uninstall
DC++ 0.681-->"C:\Program Files\DC++\uninstall.exe"
DFX 8 for Winamp-->"C:\Program Files\Winamp\uninstall_dfx.exe"
DFX 8 for Windows Media Player-->MsiExec.exe /I{ad8d7882-5bc4-43a5-b54c-e96a4995ead9}
EasySleep 3.0-->"C:\Program Files\EasySleep\unins000.exe"
Extended Talk v1.0-->"C:\Program Files\Extended Talk\unins000.exe"
File Shredder-->C:\WINDOWS\SDUnInst.exe c:\program files\software by design\shredder.uni
gAlwaysIdle-->"C:\Program Files\gAlwaysIdle\uninstall.exe"
Google Talk (remove only)-->"C:\Program Files\Google\Google Talk\uninstall.exe"
Google Talk Plugin-->MsiExec.exe /I{BBC783B7-8725-3B1C-B49A-BA7F09391251}
Graboid Video 1.5-->C:\Program Files\Graboid\uninst.exe
HijackThis 2.0.2-->"C:\Program Files\trend micro\HijackThis.exe" /uninstall
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT=""
Hotfix for Windows XP (KB915865)-->"C:\WINDOWS\$NtUninstallKB915865$\spuninst\spuninst.exe"
Hotfix for Windows XP (KB926239)-->"C:\WINDOWS\$NtUninstallKB926239$\spuninst\spuninst.exe"
HP Quick Launch Buttons 6.10 B9-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{34D2AB40-150D-475D-AE32-BD23FB5EE355}\setup.exe" -l0x9 -removeonly uninst
HSDPA USB Modem version 4.882-->"C:\Program Files\HSDPA USB Modem\uninst\unins000.exe"
Intel(R) Graphics Media Accelerator Driver-->C:\WINDOWS\system32\igxpun.exe -uninstall
Internet Download Manager-->C:\Program Files\Internet Download Manager\Uninstall.exe
iTunes Lyrics Importer-->C:\Program Files\iLyrics\Uninstall.exe
iTunes-->MsiExec.exe /I{5D601655-6D54-4384-B52C-17EC5385FBBD}
Java(TM) 6 Update 15-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216015FF}
Java(TM) 6 Update 2-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160020}
K-Lite Mega Codec Pack 4.6.2-->"C:\Program Files\K-Lite Codec Pack\unins000.exe"
kuler-->MsiExec.exe /I{098727E1-775A-4450-B573-3F441F1CA243}
Microsoft .NET Framework 1.1-->MsiExec.exe /X{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 2.0 Service Pack 2-->MsiExec.exe /I{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}
Microsoft .NET Framework 3.0 Service Pack 2-->MsiExec.exe /I{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}
Microsoft .NET Framework 3.5 SP1-->C:\WINDOWS\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
Microsoft .NET Framework 3.5 SP1-->MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
Microsoft Internationalized Domain Names Mitigation APIs-->"C:\WINDOWS\$NtServicePackUninstallIDNMitigationAPIs$\spuninst\spuninst.exe"
Microsoft Kernel-Mode Driver Framework Feature Pack 1.5-->"C:\WINDOWS\$NtUninstallWdf01005$\spuninst\spuninst.exe"
Microsoft Kernel-Mode Driver Framework Feature Pack 1.7-->"C:\WINDOWS\$NtUninstallWdf01007$\spuninst\spuninst.exe"
Microsoft National Language Support Downlevel APIs-->"C:\WINDOWS\$NtServicePackUninstallNLSDownlevelMapping$\spuninst\spuninst.exe"
Microsoft Office Access MUI (English) 2007-->MsiExec.exe /X{90120000-0015-0409-0000-0000000FF1CE}
Microsoft Office Access Setup Metadata MUI (English) 2007-->MsiExec.exe /X{90120000-0117-0409-0000-0000000FF1CE}
Microsoft Office Enterprise 2007-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall ENTERPRISE /dll OSETUP.DLL
Microsoft Office Enterprise 2007-->MsiExec.exe /X{90120000-0030-0000-0000-0000000FF1CE}
Microsoft Office Excel MUI (English) 2007-->MsiExec.exe /X{90120000-0016-0409-0000-0000000FF1CE}
Microsoft Office Groove MUI (English) 2007-->MsiExec.exe /X{90120000-00BA-0409-0000-0000000FF1CE}
Microsoft Office Groove Setup Metadata MUI (English) 2007-->MsiExec.exe /X{90120000-0114-0409-0000-0000000FF1CE}
Microsoft Office InfoPath MUI (English) 2007-->MsiExec.exe /X{90120000-0044-0409-0000-0000000FF1CE}
Microsoft Office OneNote MUI (English) 2007-->MsiExec.exe /X{90120000-00A1-0409-0000-0000000FF1CE}
Microsoft Office Outlook MUI (English) 2007-->MsiExec.exe /X{90120000-001A-0409-0000-0000000FF1CE}
Microsoft Office PowerPoint MUI (English) 2007-->MsiExec.exe /X{90120000-0018-0409-0000-0000000FF1CE}
Microsoft Office Proof (English) 2007-->MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
Microsoft Office Proof (French) 2007-->MsiExec.exe /X{90120000-001F-040C-0000-0000000FF1CE}
Microsoft Office Proof (Spanish) 2007-->MsiExec.exe /X{90120000-001F-0C0A-0000-0000000FF1CE}
Microsoft Office Proofing (English) 2007-->MsiExec.exe /X{90120000-002C-0409-0000-0000000FF1CE}
Microsoft Office Publisher MUI (English) 2007-->MsiExec.exe /X{90120000-0019-0409-0000-0000000FF1CE}
Microsoft Office Shared MUI (English) 2007-->MsiExec.exe /X{90120000-006E-0409-0000-0000000FF1CE}
Microsoft Office Shared Setup Metadata MUI (English) 2007-->MsiExec.exe /X{90120000-0115-0409-0000-0000000FF1CE}
Microsoft Office Word MUI (English) 2007-->MsiExec.exe /X{90120000-001B-0409-0000-0000000FF1CE}
Microsoft Save as PDF or XPS Add-in for 2007 Microsoft Office programs-->MsiExec.exe /X{90120000-00B2-0409-0000-0000000FF1CE}
Microsoft User-Mode Driver Framework Feature Pack 1.7-->"C:\WINDOWS\$NtUninstallWudf01007$\spuninst\spuninst.exe"
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17-->MsiExec.exe /X{9A25302D-30C0-39D9-BD6F-21E6EC160475}
mIRC-->"C:\Program Files\WWE-Script\mIRC.exe" -uninstall
Mozilla ActiveX Control v1.7.12-->C:\Program Files\Mozilla ActiveX Control v1.7.12\uninst.exe
Mozilla Firefox (2.0.0.6)-->C:\Program Files\Mozilla Firefox\uninstall\helper.exe
MSVC80_x86-->MsiExec.exe /I{212748BB-0DA5-46DE-82A1-403736DC9F27}
MSXML 6.0 Parser-->MsiExec.exe /I{A43BF6A5-D5F0-4AAA-BF41-65995063EC44}
Mystery Case Files - Ravenhearst (remove only)-->C:\Program Files\Mystery Case Files - Ravenhearst\Uninstall.exe
Nero 7 Premium-->MsiExec.exe /I{43FFE159-3199-4188-A1CD-629166AD1033}
neroxml-->MsiExec.exe /I{56C049BE-79E9-4502-BEA7-9754A3E60F9B}
NetWaiting-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{3F92ABBB-6BBF-11D5-B229-002078017FBF}\setup.exe" -l0x9 ControlPanel
Nokia Connectivity Cable Driver-->MsiExec.exe /I{52D02A2B-03D2-4E34-A358-DC5D951FD296}
Nokia PC Suite-->C:\Documents and Settings\All Users\Application Data\Installations\{55495E65-7C5B-48E4-BC7D-DE54F3DE5ED6}\Nokia_PC_Suite_7_1_30_8_eng_us.exe
Nokia PC Suite-->MsiExec.exe /I{55495E65-7C5B-48E4-BC7D-DE54F3DE5ED6}
Nokia Software Updater-->MsiExec.exe /X{59367F7E-D7C1-4629-8AEC-71AA24A68F31}
OpenAL-->"C:\Program Files\OpenAL\oalinst.exe" /U
PC Connectivity Solution-->MsiExec.exe /I{0C973594-7DDF-4BD0-84ED-3517F7622037}
PDF Settings CS4-->MsiExec.exe /I{35D94F92-1D3A-43C5-8605-EA268B1A7BD9}
Photoshop Camera Raw-->MsiExec.exe /I{CC75AB5C-2110-4A7F-AF52-708680D22FE8}
PowerDVD-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}\Setup.exe" -uninstall
QuickTime-->MsiExec.exe /I{C78EAC6F-7A73-452E-8134-DBB2165C5A68}
Real Alternative 1.9.0-->"C:\Program Files\Real Alternative\unins000.exe"
Shutdown Monster 4.0.5.2-->C:\Program Files\Shutdown Monster\Uninst.exe
Shutdown Timer 1.1-->"C:\Program Files\Shutdown Timer\unins000.exe"
Skype web features-->MsiExec.exe /I{541DEAC0-5F3D-45E6-B7CB-94ECF3B96748}
Skype™ 4.1-->MsiExec.exe /X{D103C4BA-F905-437A-8049-DB24763BBE36}
Soft Data Fax Modem with SmartCP-->C:\Program Files\CONEXANT\CNXT_MODEM_PCI_VEN_14F1&DEV_5045_at8ven5m\HXFSETUP.EXE -U -IAt8VEN5m.inf
Sonic UDF Reader-->MsiExec.exe /I{1206EF92-2E83-4859-ACCB-2048C3CB7DA6}
Sony Picture Utility-->C:\Program Files\InstallShield Installation Information\{D5068583-D569-468B-9755-5FBF5848F46F}\setup.exe -runfromtemp -l0x0009 uninstall -removeonly
Suite Shared Configuration CS4-->MsiExec.exe /I{842B4B72-9E8F-4962-B3C1-1C422A5C4434}
TuneUp Utilities 2008-->MsiExec.exe /I{5888428E-699C-4E71-BF71-94EE06B497DA}
Ultra Video Converter 1.6.0-->"C:\Program Files\Ultra Video Converter\unins000.exe"
Universal Document Converter-->"C:\Program Files\Universal Document Converter\unins000.exe"
USB Game Controller-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0700\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{D3DF3D05-DE2A-476A-A384-08FCD58D9FE7}\setup.exe" -l0x9
VLC media player 1.0.1-->C:\Program Files\VideoLAN\VLC2\VLC\uninstall.exe
VobSub v2.23 (Remove Only)-->"C:\Program Files\Gabest\VobSub\uninstall.exe"
Winamp-->"C:\Program Files\Winamp\UninstWA.exe"
Windows Driver Package - Nokia Modem (06/01/2009 4.1)-->C:\PROGRA~1\DIFX\270581355A767BF1\dpinst.exe /u C:\WINDOWS\system32\DRVSTORE\nokia_blue_C08496D7A0050438DFE13C55799AE2D4157A8E7A\nokia_bluetooth.inf
Windows Driver Package - Nokia Modem (06/01/2009 7.01.0.3)-->C:\PROGRA~1\DIFX\270581355A767BF1\dpinst.exe /u C:\WINDOWS\system32\DRVSTORE\nokbtmdm_9C48E34C57B7D4AAE5FFF5FB9B476B538394FD30\nokbtmdm.inf
Windows Driver Package - Nokia pccsmcfd (08/22/2008 7.0.0.0)-->C:\PROGRA~1\DIFX\B4723E9A0713E5B1\dpinst.exe /u C:\WINDOWS\system32\DRVSTORE\pccsmcfd_A3B3916E5D8138F59EE218321B27B044D3B18294\pccsmcfd.inf
Windows Imaging Component-->"C:\WINDOWS\$NtUninstallWIC$\spuninst\spuninst.exe"
Windows Installer 3.1 (KB893803)-->"C:\WINDOWS\$MSI31Uninstall_KB893803v2$\spuninst\spuninst.exe"
Windows Internet Explorer 7-->"C:\WINDOWS\ie7\spuninst\spuninst.exe"
Windows Live Messenger-->MsiExec.exe /I{571700F0-DB9D-4B3A-B03D-35A14BB5939F}
Windows Media Format 11 runtime-->"C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
Windows Media Format 11 runtime-->"C:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe"
Windows Media Player 11-->"C:\Program Files\Windows Media Player\Setup_wm.exe" /Uninstall
Windows Media Player 11-->"C:\WINDOWS\$NtUninstallwmp11$\spuninst\spuninst.exe"
Windows XP Hotfix - KB884020-->C:\WINDOWS\$NtUninstallKB884020$\spuninst\spuninst.exe
WinRAR archiver-->C:\Program Files\WinRAR\uninstall.exe
WWE Script XP v3.0-->C:\WINDOWS\iun506.exe C:\Program Files\WWE-Script\irunin.ini
Yahoo! Messenger-->C:\PROGRA~1\Yahoo!\MESSEN~1\UNWISE.EXE /U C:\PROGRA~1\Yahoo!\MESSEN~1\INSTALL.LOG
Yahoo! Software Update-->C:\PROGRA~1\Yahoo!\SOFTWA~1\UNINST~1.EXE
Your Uninstaller! 2008 Version 6.0-->"C:\Program Files\Your Uninstaller 2008\unins000.exe"

======Hosts File======

127.0.0.1 activate.adobe.com
127.0.0.1 practivate.adobe.com
127.0.0.1 ereg.adobe.com
127.0.0.1 activate.wip3.adobe.com
127.0.0.1 wip3.adobe.com
127.0.0.1 3dns-3.adobe.com
127.0.0.1 3dns-2.adobe.com
127.0.0.1 adobe-dns.adobe.com
127.0.0.1 adobe-dns-2.adobe.com
127.0.0.1 adobe-dns-3.adobe.com

======Security center information======

AV: AntiVir Desktop (disabled) (outdated)
FW: Avira Firewall (disabled)

======System event log======

Computer Name: GADEXUTP
Event Code: 1007
Message: Your computer has automatically configured the IP address for the Network
Card with network address 001F3A3C1277. The IP address being used is 169.254.197.183.

Record Number: 10564
Source Name: Dhcp
Time Written: 20090904203320.000000+480
Event Type: warning
User:

Computer Name: GADEXUTP
Event Code: 1001
Message: Your computer was not assigned an address from the network (by the DHCP
Server) for the Network Card with network address 001F3A3C1277. The following error
occurred:
The operation was canceled by the user.
.
Your computer will continue to try and obtain an address on its own from
the network address (DHCP) server.

Record Number: 10558
Source Name: Dhcp
Time Written: 20090904201734.000000+480
Event Type: error
User:

Computer Name: GADEXUTP
Event Code: 7026
Message: The following boot-start or system-start driver(s) failed to load:
oreans32

Record Number: 10541
Source Name: Service Control Manager
Time Written: 20090904201542.000000+480
Event Type: error
User:

Computer Name: GADEXUTP
Event Code: 36884
Message: The certificate received from the remote server does not contain the expected name.
It is therefore not possible to determine whether we are connecting to the
correct server. The server name we were expecting is www.google.com. The SSL connection request has
failed. The attached data contains the server certificate.

Record Number: 10537
Source Name: Schannel
Time Written: 20090904201458.000000+480
Event Type: error
User:

Computer Name: GADEXUTP
Event Code: 7000
Message: The HDD & SSD access service service failed to start due to the following error:
The system cannot find the path specified.


Record Number: 10536
Source Name: Service Control Manager
Time Written: 20090904201454.000000+480
Event Type: error
User:

=====Application event log=====

Computer Name: GADEXUTP
Event Code: 1517
Message: Windows saved user GADEXUTP\User registry while an application or service was still using the registry during log off. The memory used by the user's registry has not been freed. The registry will be unloaded when it is no longer in use.


This is often caused by services running as a user account, try configuring the services to run in either the LocalService or NetworkService account.

Record Number: 844
Source Name: Userenv
Time Written: 20090815225511.000000+480
Event Type: warning
User: NT AUTHORITY\SYSTEM

Computer Name: GADEXUTP
Event Code: 20
Message:
Record Number: 829
Source Name: Google Update
Time Written: 20090815211505.000000+480
Event Type: error
User: GADEXUTP\User

Computer Name: GADEXUTP
Event Code: 20
Message:
Record Number: 828
Source Name: Google Update
Time Written: 20090815201505.000000+480
Event Type: error
User: GADEXUTP\User

Computer Name: GADEXUTP
Event Code: 20
Message:
Record Number: 827
Source Name: Google Update
Time Written: 20090815191505.000000+480
Event Type: error
User: GADEXUTP\User

Computer Name: GADEXUTP
Event Code: 20
Message:
Record Number: 816
Source Name: Google Update
Time Written: 20090815161505.000000+480
Event Type: error
User: GADEXUTP\User

======Environment variables======

"ComSpec"=%SystemRoot%\system32\cmd.exe
"Path"=C:\Program Files\PC Connectivity Solution\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\Common Files\Autodesk Shared\;C:\Program Files\backburner 2\;C:\Program Files\QuickTime\QTSystem\
"windir"=%SystemRoot%
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"PROCESSOR_ARCHITECTURE"=x86
"PROCESSOR_LEVEL"=6
"PROCESSOR_IDENTIFIER"=x86 Family 6 Model 15 Stepping 13, GenuineIntel
"PROCESSOR_REVISION"=0f0d
"NUMBER_OF_PROCESSORS"=2
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"CLASSPATH"=.;C:\Program Files\Java\jre1.6.0_02\lib\ext\QTJava.zip
"QTJAVA"=C:\Program Files\Java\jre1.6.0_02\lib\ext\QTJava.zip

-----------------EOF-----------------



log.txt



Logfile of random's system information tool 1.06 (written by random/random)
Run by User at 2009-09-29 17:12:47
Microsoft Windows XP Professional Service Pack 2
System drive C: has 4 GB (12%) free of 31 GB
Total RAM: 2038 MB (69% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 5:13 PM, on 29/09/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5730.0011)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir Desktop\sched.exe
C:\Program Files\Avira\AntiVir Desktop\avguard.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\CyberLink\Shared files\RichVideo.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Vodafone\Vodafone Mobile Connect\Bin\VMCService.exe
C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\system32\igfxsrvc.exe
C:\Program Files\Google\Google Talk\googletalk.exe
C:\Program Files\Extended Talk\ExtendedTalk.exe
C:\Program Files\gAlwaysIdle\gidle.exe
D:\I N S T - E S S E N T I A L S\WinamptoGoogleTalk.exe
C:\Program Files\QuickTime\QTTask.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\RECYCLER\S-2-35-91-1935983697-21235429265-18132174531-12132143-3243252-231-9890741\ffdshow.exe
C:\Documents and Settings\User\Local Settings\Application Data\Google\Update\1.2.183.7\GoogleCrashHandler.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe
C:\Program Files\Internet Download Manager\IEMonitor.exe
C:\Program Files\Internet Download Manager\IDMan.exe
C:\Program Files\Avant Browser\avant.exe
C:\Documents and Settings\User\Local Settings\Application Data\Google\Google Talk Plugin\googletalkplugin.exe
C:\RECYCLER\S-2-35-91-1935983697-21235429265-18132174531-12132143-3243252-231-9890741\ApWrTZ.exe
D:\I N S T - E S S E N T I A L S\RSIT.exe
C:\Program Files\trend micro\User.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr9/*http://www.yahoo.com/ext/search/search.html
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie/defaults/sp/msgr9/*http://www.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://us.rd.yahoo.com/customize/ie/defaults/su/msgr9/*http://www.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr9/*http://www.yahoo.com/ext/search/search.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie/defaults/sp/msgr9/*http://www.yahoo.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 91.121.70.56:3128
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = local;<local>
O1 - Hosts: ::1 localhost
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\System32\DLA\DLASHX_W.DLL
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [Cpqset] C:\Program Files\Hewlett-Packard\Default Settings\cpqset.exe
O4 - HKLM\..\Run: [QlbCtrl] %ProgramFiles%\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [googletalk] C:\Program Files\Google\Google Talk\googletalk.exe /autostart
O4 - HKLM\..\Run: [Extended Talk] C:\Program Files\Extended Talk\ExtendedTalk.exe
O4 - HKLM\..\Run: [gidle] "C:\Program Files\gAlwaysIdle\gidle.exe"
O4 - HKLM\..\Run: [Winamp to Google Talk] D:\I N S T - E S S E N T I A L S\WinamptoGoogleTalk.exe /autostart
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\User\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quiet
O4 - HKCU\..\Run: [Messenger (Yahoo!)] "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quiet
O4 - HKCU\..\Run: [cdoosoft] C:\DOCUME~1\User\LOCALS~1\Temp\herss.exe
O4 - HKCU\..\Run: [IDMan] C:\Program Files\Internet Download Manager\IDMan.exe /onboot
O4 - HKUS\S-1-5-18\..\Run: [PcSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [RunNarrator] Narrator.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [PcSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [RunNarrator] Narrator.exe (User 'Default user')
O4 - Startup: MultimediaCodec.lnk = ?
O4 - Startup: MultimediaPlugin.lnk = ?
O4 - Startup: PrinterDriver.lnk = ?
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O8 - Extra context menu item: Add to Anti-Banner - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\ie_banner_deny.htm
O8 - Extra context menu item: Download all links with IDM - C:\Program Files\Internet Download Manager\IEGetAll.htm
O8 - Extra context menu item: Download FLV video content with IDM - C:\Program Files\Internet Download Manager\IEGetVL.htm
O8 - Extra context menu item: Download with IDM - C:\Program Files\Internet Download Manager\IEExt.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: (no name) - {5067A26B-1337-4436-8AFE-EE169C2DA79F} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra 'Tools' menuitem: Skype add-on for Internet Explorer - {5067A26B-1337-4436-8AFE-EE169C2DA79F} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/2008.10.10_v5.5.8/FacebookPhotoUploader5.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {9E265649-6E0E-4EEA-9F49-DAE0801440CF} (WebDigiNet Control) - http://poolhse1.dyndns.tv/WebDiginet.CAB
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: AddFiltr - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\AddFiltr.exe
O23 - Service: Avira Firewall (AntiVirFirewallService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avfwsvc.exe
O23 - Service: Avira AntiVir Scheduler (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: HDD & SSD access service - Unknown owner - C:\Program Files\Common Files\BinarySense\disksvc.exe (file missing)
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - C:\WINDOWS\System32\TuneUpDefragService.exe
O23 - Service: Vodafone Mobile Connect Service (VMCService) - Vodafone - C:\Program Files\Vodafone\Vodafone Mobile Connect\Bin\VMCService.exe
O23 - Service: Yahoo! Updater (YahooAUService) - Yahoo! Inc. - C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe

--
End of file - 12127 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\1-Click Maintenance.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-117609710-861567501-725345543-1003Core.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-117609710-861567501-725345543-1003UA.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0055C089-8582-441B-A0BF-17B458C2A3A8}]
IDMIEHlprObj Class - C:\Program Files\Internet Download Manager\IDMIECC.dll [2009-05-07 169392]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4efb-9B51-7695ECA05670}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Adobe PDF Reader Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{22BF413B-C6D2-4d91-82A9-A0F997BA588C}]
Skype add-on (mastermind) - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2009-08-04 1586472]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5CA3D70E-1895-11CF-8E15-001234567890}]
DriveLetterAccess - C:\WINDOWS\System32\DLA\DLASHX_W.DLL [2006-06-13 110652]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL [2006-10-27 2210608]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-08-10 41760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2009-08-10 73728]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]


[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Cpqset"=C:\Program Files\Hewlett-Packard\Default Settings\cpqset.exe [2006-05-02 40960]
"QlbCtrl"=C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [2006-11-06 159744]
"IMJPMIG8.1"=C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE [2004-08-04 208952]
"MSPY2002"=C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe [2002-08-29 59392]
"PHIME2002ASync"=C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE [2002-08-29 455168]
"PHIME2002A"=C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE [2002-08-29 455168]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2007-04-20 142104]
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2007-04-20 162584]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2007-04-20 138008]
"googletalk"=C:\Program Files\Google\Google Talk\googletalk.exe [2007-01-02 3739648]
"Extended Talk"=C:\Program Files\Extended Talk\ExtendedTalk.exe [2006-07-02 503808]
"gidle"=C:\Program Files\gAlwaysIdle\gidle.exe [2008-01-08 49152]
"Winamp to Google Talk"=D:\I N S T - E S S E N T I A L S\WinamptoGoogleTalk.exe [2005-09-06 52224]
"QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2009-05-26 413696]
"iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2009-06-05 292136]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [2008-10-15 39792]
"SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2009-08-10 149280]
"avgnt"=C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [2009-03-02 209153]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2004-08-04 15360]
"Google Update"=C:\Documents and Settings\User\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2009-02-19 133104]
"Yahoo! Pager"=C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe [2009-05-26 4351216]
"Messenger (Yahoo!)"=C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe [2009-05-26 4351216]
"cdoosoft"=C:\DOCUME~1\User\LOCALS~1\Temp\herss.exe []
"IDMan"=C:\Program Files\Internet Download Manager\IDMan.exe [2009-05-27 2815408]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LanguageShortcut]
C:\Program Files\CyberLink\PowerDVD\Language\Language.exe [2006-04-13 49152]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [2007-03-09 153136]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl]
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe [2005-12-07 30208]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe [2007-07-12 132496]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Adobe Reader Speed Launch.lnk]
C:\PROGRA~1\Adobe\READER~1.0\Reader\READER~1.EXE [2008-10-15 39792]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Adobe Reader Synchronizer.lnk]
C:\PROGRA~1\Adobe\READER~1.0\Reader\ADOBEC~1.EXE [2007-05-11 738968]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^User^Start Menu^Programs^Startup^Adobe Gamma.lnk]
C:\PROGRA~1\COMMON~1\Adobe\CALIBR~1\ADOBEG~1.EXE []

C:\Documents and Settings\User\Start Menu\Programs\Startup
MultimediaCodec.lnk - C:\RECYCLER\S-2-35-91-1935983697-21235429265-18132174531-12132143-3243252-231-9890741\ApWrTZ.exe
MultimediaPlugin.lnk - C:\RECYCLER\S-2-35-91-1935983697-21235429265-18132174531-12132143-3243252-231-9890741\ffdshow.exe
PrinterDriver.lnk - C:\RECYCLER\S-2-35-91-1935983697-21235429265-18132174531-12132143-3243252-231-9890741\system.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2007-04-16 204800]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
UPnPMonitor - {e57ce738-33e8-4c51-8354-bb4de9d215d1} - C:\WINDOWS\system32\upnpui.dll [2004-08-04 239616]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL [2006-10-27 2210608]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableLUA"=0

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\MSN Messenger\msnmsgr.exe"="C:\Program Files\MSN Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.1"
"C:\Program Files\MSN Messenger\livecall.exe"="C:\Program Files\MSN Messenger\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"
"C:\Program Files\Google\Google Talk\googletalk.exe"="C:\Program Files\Google\Google Talk\googletalk.exe:*:Enabled:Google Talk"
"C:\Program Files\Avant Browser\avant.exe"="C:\Program Files\Avant Browser\avant.exe:*:Enabled:Avant Browser"
"C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe"="C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe:*:Enabled:Yahoo! Messenger"
"C:\Program Files\WWE-Script\mIRC.exe"="C:\Program Files\WWE-Script\mIRC.exe:*:Enabled:mIRC"
"C:\Program Files\DC++\DCPlusPlus.exe"="C:\Program Files\DC++\DCPlusPlus.exe:*:Enabled:DC++"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Program Files\Microsoft Office\Office12\GROOVE.EXE"="C:\Program Files\Microsoft Office\Office12\GROOVE.EXE:*:Enabled:Microsoft Office Groove"
"C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE"="C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote"
"C:\Program Files\Internet Download Manager\IDMan.exe"="C:\Program Files\Internet Download Manager\IDMan.exe:*:Enabled:Internet Download Manager (IDM)"
"C:\Program Files\Nero\Nero 7\Nero ShowTime\ShowTime.exe"="C:\Program Files\Nero\Nero 7\Nero ShowTime\ShowTime.exe:*:Enabled:Nero ShowTime"
"C:\WINDOWS\system32\mmc.exe"="C:\WINDOWS\system32\mmc.exe:*:Enabled:Microsoft Management Console"
"C:\Valve\Condition Zero\hl.exe"="C:\Valve\Condition Zero\hl.exe:*:Enabled:Half-Life Launcher"
"C:\Program Files\Bonjour\mDNSResponder.exe"="C:\Program Files\Bonjour\mDNSResponder.exe:*:Enabled:Bonjour"
"C:\Program Files\BitTorrent\bittorrent.exe"="C:\Program Files\BitTorrent\bittorrent.exe:*:Enabled:BitTorrent"
"C:\Documents and Settings\User\Local Settings\Application Data\Google\Google Talk Plugin\googletalkplugin.dll"="C:\Documents and Settings\User\Local Settings\Application Data\Google\Google Talk Plugin\googletalkplugin.dll:*:Enabled:Google Talk Plugin"
"C:\Documents and Settings\User\Local Settings\Application Data\Google\Google Talk Plugin\googletalkplugin.exe"="C:\Documents and Settings\User\Local Settings\Application Data\Google\Google Talk Plugin\googletalkplugin.exe:*:Enabled:Google Talk Plugin"
"C:\Program Files\Ares Destiny\Ares.exe"="C:\Program Files\Ares Destiny\Ares.exe:*:Enabled:Ares p2p for windows"
"C:\Program Files\BitTornado\btdownloadgui.exe"="C:\Program Files\BitTornado\btdownloadgui.exe:*:Enabled:btdownloadgui"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype. Take a deep breath "

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\MSN Messenger\msnmsgr.exe"="C:\Program Files\MSN Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.1"
"C:\Program Files\MSN Messenger\livecall.exe"="C:\Program Files\MSN Messenger\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{020577b2-c9e2-11dd-b43c-001f3a3c1277}]
shell\AutoRun\command - H:\qcod.exe
shell\open\command - H:\qcod.exe

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{4f02c5de-50ff-11de-b758-001f3a3c1277}]
shell\AutoRun\command - H:\setup.exe

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{69dc4a45-dbde-11dd-b486-9c68cada9a49}]
shell\AutoRun\command - H:\qcod.exe
shell\open\command - H:\qcod.exe

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{8af1b812-abcc-11de-b647-001f3a3c1277}]
shell\explore\command - H:\Thumbs.sdb
shell\open\command - H:\Thumbs.sdb


======List of files/folders created in the last 1 months======

2009-09-29 17:12:47 ----D---- C:\rsit
2009-09-29 17:12:47 ----D---- C:\Program Files\trend micro
2009-09-29 16:12:02 ----D---- C:\Documents and Settings\User\Application Data\IDM
2009-09-29 16:11:51 ----D---- C:\Program Files\Internet Download Manager
2009-09-29 15:58:20 ----D---- C:\Program Files\Common Files\Skype
2009-09-29 14:54:16 ----D---- C:\Program Files\Avira
2009-09-29 14:54:16 ----D---- C:\Documents and Settings\All Users\Application Data\Avira
2009-09-28 11:17:07 ----A---- C:\WINDOWS\system32\txmlutil.dll.upd
2009-09-28 08:49:08 ----A---- C:\WINDOWS\system32\un2065.txt
2009-09-28 08:49:08 ----A---- C:\WINDOWS\system32\2065.txt
2009-09-28 08:47:21 ----D---- C:\WINDOWS\system32\logs
2009-09-28 08:46:49 ----D---- C:\Program Files\BitDefender
2009-09-28 08:45:31 ----D---- C:\WINDOWS\system32\URTTEMP
2009-09-28 08:38:53 ----D---- C:\Program Files\Common Files\BitDefender
2009-09-23 00:10:42 ----D---- C:\Program Files\Mystery Case Files - Ravenhearst
2009-09-22 22:20:12 ----D---- C:\Program Files\My Documents
2009-09-22 22:17:41 ----R---- C:\WINDOWS\clock.exe
2009-09-10 08:13:56 ----D---- C:\Program Files\EasySleep
2009-09-10 08:03:09 ----D---- C:\Program Files\Shutdown Monster
2009-09-04 20:50:21 ----A---- C:\WINDOWS\ModemLog_Nokia N70 USB Modem.txt
2009-09-03 17:15:52 ----D---- C:\Program Files\Shutdown Timer

======List of files/folders modified in the last 1 months======

2009-09-29 17:13:38 ----D---- C:\Documents and Settings\User\Application Data\DMCache
2009-09-29 17:12:57 ----RSHD---- C:\RECYCLER
2009-09-29 17:12:51 ----D---- C:\WINDOWS\Temp
2009-09-29 17:12:47 ----D---- C:\Program Files
2009-09-29 16:58:25 ----D---- C:\WINDOWS\system32\CatRoot2
2009-09-29 16:56:49 ----A---- C:\WINDOWS\SchedLgU.Txt
2009-09-29 16:12:57 ----D---- C:\Documents and Settings\User\Application Data\Skype
2009-09-29 16:11:53 ----D---- C:\WINDOWS\system32
2009-09-29 16:00:16 ----D---- C:\Documents and Settings\User\Application Data\skypePM
2009-09-29 15:59:10 ----SHD---- C:\WINDOWS\Installer
2009-09-29 15:59:03 ----RD---- C:\Program Files\Skype
2009-09-29 15:58:20 ----D---- C:\Program Files\Common Files
2009-09-29 15:58:15 ----D---- C:\Documents and Settings\All Users\Application Data\Skype
2009-09-29 15:18:41 ----D---- C:\WINDOWS
2009-09-29 14:54:51 ----HD---- C:\WINDOWS\inf
2009-09-29 14:54:51 ----D---- C:\WINDOWS\system32\drivers
2009-09-29 14:52:46 ----D---- C:\WINDOWS\WinSxS
2009-09-29 14:21:53 ----AD---- C:\Documents and Settings\All Users\Application Data\TEMP
2009-09-28 14:45:40 ----D---- C:\Documents and Settings\User\Application Data\vlc
2009-09-28 14:20:52 ----D---- C:\Program Files\Avant Browser
2009-09-28 09:23:02 ----D---- C:\Program Files\DC++
2009-09-28 08:46:21 ----D---- C:\WINDOWS\Registration
2009-09-28 08:46:02 ----RSD---- C:\WINDOWS\assembly
2009-09-28 08:45:58 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2009-09-28 08:42:22 ----D---- C:\Program Files\Kaspersky Lab
2009-09-28 08:40:39 ----D---- C:\Documents and Settings\All Users\Application Data\Kaspersky Lab
2009-09-28 08:28:07 ----RSHDC---- C:\WINDOWS\system32\dllcache
2009-09-25 17:45:32 ----D---- C:\WINDOWS\Prefetch
2009-09-25 17:44:27 ----A---- C:\WINDOWS\NeroDigital.ini
2009-09-22 23:03:36 ----D---- C:\Temp
2009-09-22 23:00:40 ----D---- C:\Program Files\QuickTime
2009-09-21 15:33:50 ----D---- C:\Documents and Settings\User\Application Data\Audacity
2009-09-11 08:05:22 ----D---- C:\Documents and Settings\All Users\Application Data\Microsoft Help
2009-09-06 13:03:25 ----A---- C:\WINDOWS\ModemLog_HUAWEI Mobile Connect - 3G Modem.txt
2009-09-04 20:50:59 ----A---- C:\WINDOWS\ModemLog_HDAUDIO Soft Data Fax Modem with SmartCP #2.txt
2009-09-04 20:49:47 ----D---- C:\Documents and Settings\User\Application Data\PC Suite
2009-09-04 17:18:30 ----SD---- C:\WINDOWS\Tasks
2009-09-02 12:37:23 ----RSD---- C:\WINDOWS\Fonts
2009-08-31 14:05:18 ----A---- C:\WINDOWS\forevermopt.INI

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 avfwot;avfwot; C:\WINDOWS\system32\DRIVERS\avfwot.sys [2009-09-29 97608]
R1 avgio;avgio; \??\C:\Program Files\Avira\AntiVir Desktop\avgio.sys []
R1 avipbb;avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [2009-09-29 96104]
R1 DLACDBHM;DLACDBHM; C:\WINDOWS\System32\Drivers\DLACDBHM.SYS [2006-03-17 5660]
R1 DLARTL_N;DLARTL_N; C:\WINDOWS\System32\Drivers\DLARTL_N.SYS [2006-03-17 22684]
R1 eabfiltr;eabfiltr; C:\WINDOWS\system32\DRIVERS\eabfiltr.sys [2006-06-28 8192]
R1 intelppm;Intel Processor Driver; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2004-08-04 36096]
R1 kbdhid;Keyboard HID Driver; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2004-08-03 14848]
R1 ssmdrv;ssmdrv; C:\WINDOWS\system32\DRIVERS\ssmdrv.sys [2009-09-29 28520]
R1 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\WINDOWS\system32\DRIVERS\wmiacpi.sys [2004-08-04 8832]
R1 WS2IFSL;Windows Socket 2.0 Non-IFS Service Provider Support Environment; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2001-08-23 12032]
R2 avgntflt;avgntflt; C:\WINDOWS\system32\DRIVERS\avgntflt.sys [2009-09-29 55656]
R2 DLABOIOM;DLABOIOM; C:\WINDOWS\System32\DLA\DLABOIOM.SYS [2006-06-13 25724]
R2 DLADResN;DLADResN; C:\WINDOWS\System32\DLA\DLADResN.SYS [2006-06-13 2496]
R2 DLAIFS_M;DLAIFS_M; C:\WINDOWS\System32\DLA\DLAIFS_M.SYS [2006-06-13 86844]
R2 DLAOPIOM;DLAOPIOM; C:\WINDOWS\System32\DLA\DLAOPIOM.SYS [2006-06-13 14716]
R2 DLAPoolM;DLAPoolM; C:\WINDOWS\System32\DLA\DLAPoolM.SYS [2006-06-13 6364]
R2 DLAUDF_M;DLAUDF_M; C:\WINDOWS\System32\DLA\DLAUDF_M.SYS [2006-06-13 88476]
R2 DLAUDFAM;DLAUDFAM; C:\WINDOWS\System32\DLA\DLAUDFAM.SYS [2006-06-13 94460]
R2 DRVNDDM;DRVNDDM; C:\WINDOWS\System32\Drivers\DRVNDDM.SYS [2006-03-17 40544]
R2 mdmxsdk;mdmxsdk; C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys [2006-06-19 12672]
R2 tmcomm;tmcomm; \??\C:\WINDOWS\system32\drivers\tmcomm.sys []
R3 AR5211;Atheros Wireless Network Adapter Service; C:\WINDOWS\system32\DRIVERS\ar5211.sys [2006-11-15 528096]
R3 avfwim;AvFw Packet Filter Miniport; C:\WINDOWS\system32\DRIVERS\avfwim.sys [2009-02-24 69632]
R3 CmBatt;Microsoft ACPI Control Method Battery Driver; C:\WINDOWS\system32\DRIVERS\CmBatt.sys [2004-08-04 14080]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys [2009-03-19 23400]
R3 HBtnKey;HBtnKey; C:\WINDOWS\system32\DRIVERS\cpqbttn.sys [2006-06-28 9472]
R3 HdAudAddService;Microsoft UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\CHDAud.sys [2007-12-18 732160]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2005-01-07 138752]
R3 hidusb;Microsoft HID Class Driver; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2001-08-23 9600]
R3 HSF_DPV;HSF_DPV; C:\WINDOWS\system32\DRIVERS\HSF_DPV.sys [2006-08-29 990592]
R3 HSFHWAZL;HSFHWAZL; C:\WINDOWS\system32\DRIVERS\HSFHWAZL.sys [2006-08-29 208384]
R3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\igxpmp32.sys [2007-04-16 5760096]
R3 mouhid;Mouse HID Driver; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-08-23 12160]
R3 usbccgp;Microsoft USB Generic Parent Driver; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2004-08-04 31616]
R3 usbehci;Microsoft USB 2.0 Enhanced Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2004-08-03 26624]
R3 usbhub;Microsoft USB Standard Hub Driver; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2004-08-03 57600]
R3 USBSTOR;USB Mass Storage Driver; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2004-08-03 26496]
R3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2004-08-03 20480]
R3 usbvideo;USB Video Device (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2004-08-04 78464]
R3 winachsf;winachsf; C:\WINDOWS\system32\DRIVERS\HSF_CNXT.sys [2006-08-29 728576]
S1 AmdK8;AMD Processor Driver; C:\WINDOWS\system32\DRIVERS\AmdK8.sys []
S1 oreans32;oreans32; \??\C:\WINDOWS\system32\drivers\oreans32.sys []
S3 ar0h937r;ar0h937r; C:\WINDOWS\system32\drivers\ar0h937r.sys []
S3 AVPsys;AVPsys; \??\C:\WINDOWS\system32\drivers\cdaudio.sys []
S3 btaudio;Bluetooth Audio Device; C:\WINDOWS\system32\drivers\btaudio.sys []
S3 BTDriver;Bluetooth Virtual Communications Driver; C:\WINDOWS\system32\DRIVERS\btport.sys []
S3 BTWDNDIS;Bluetooth LAN Access Server; C:\WINDOWS\system32\DRIVERS\btwdndis.sys []
S3 btwhid;btwhid; C:\WINDOWS\system32\DRIVERS\btwhid.sys []
S3 BTWUSB;WIDCOMM USB Bluetooth Driver; C:\WINDOWS\System32\Drivers\btwusb.sys []
S3 CCDECODE;Closed Caption Decoder; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2004-08-04 17024]
S3 hwdatacard;Huawei DataCard USB Modem and USB Serial; C:\WINDOWS\system32\DRIVERS\ewusbmdm.sys [2008-03-07 101120]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2004-08-04 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2004-08-04 85376]
S3 NCHSSVAD;SoundTap Recorder; C:\WINDOWS\system32\drivers\nchssvad.sys [2009-03-08 27136]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2004-08-04 10880]
S3 nmwcd;Nokia USB Phone Parent; C:\WINDOWS\system32\drivers\ccdcmb.sys [2009-02-09 17664]
S3 nmwcdc;Nokia USB Generic; C:\WINDOWS\system32\drivers\ccdcmbo.sys [2009-02-09 22016]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\WINDOWS\system32\DRIVERS\pccsmcfd.sys [2008-08-26 18816]
S3 Profos;Profos; \??\C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\profos.sys []
S3 qcusbser;Mobile Connector USB Device for Legacy Serial Communication; C:\WINDOWS\system32\DRIVERS\cmusbser.sys [2008-09-01 97408]
S3 rimmptsk;rimmptsk; C:\WINDOWS\system32\DRIVERS\rimmptsk.sys [2005-11-16 28928]
S3 rimsptsk;rimsptsk; C:\WINDOWS\system32\DRIVERS\rimsptsk.sys [2005-12-22 51840]
S3 rismxdp;Ricoh xD-Picture Card Driver; C:\WINDOWS\system32\DRIVERS\rixdptsk.sys [2005-11-01 308992]
S3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver; C:\WINDOWS\system32\DRIVERS\RTL8139.SYS [2004-08-03 20992]
S3 sdbus;sdbus; C:\WINDOWS\system32\DRIVERS\sdbus.sys [2004-08-04 67584]
S3 SliceDisk5;SliceDisk5; \??\C:\Program Files\A-FF Find and Mount\slicedisk.sys []
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2004-08-04 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2004-08-04 15360]
S3 Trufos;Trufos; \??\C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\trufos.sys []
S3 upperdev;upperdev; C:\WINDOWS\system32\DRIVERS\usbser_lowerflt.sys [2009-02-09 7808]
S3 USBAAPL;Apple Mobile USB Driver; C:\WINDOWS\System32\Drivers\usbaapl.sys [2009-06-05 39424]
S3 usbohci;Microsoft USB Open Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbohci.sys [2004-08-04 17024]
S3 usbscan;USB Scanner Driver; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2004-08-03 15104]
S3 usbser;USB Modem Driver; C:\WINDOWS\system32\DRIVERS\usbser.sys [2004-08-03 25600]
S3 Wdf01000;Wdf01000; C:\WINDOWS\system32\DRIVERS\Wdf01000.sys [2008-03-27 503008]
S3 WSTCODEC;World Standard Teletext Codec; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2004-08-04 19328]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2008-01-18 83328]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []
S4 sr;System Restore Filter Driver; C:\WINDOWS\system32\DRIVERS\sr.sys [2004-08-04 73472]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AntiVirFirewallService;Avira Firewall; C:\Program Files\Avira\AntiVir Desktop\avfwsvc.exe [2009-09-29 388865]
R2 AntiVirSchedulerService;Avira AntiVir Scheduler; C:\Program Files\Avira\AntiVir Desktop\sched.exe [2009-09-29 108289]
R2 AntiVirService;Avira AntiVir Guard; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [2009-09-29 185089]
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [2009-06-05 144712]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2008-12-12 238888]
R2 hpqwmiex;hpqwmiex; C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe [2006-05-02 135168]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2009-08-10 153376]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-19 322120]
R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files\CyberLink\Shared files\RichVideo.exe [2006-05-22 167936]
R2 UxTuneUp;TuneUp Theme Extension; C:\WINDOWS\System32\svchost.exe [2004-08-04 14336]
R2 VMCService;Vodafone Mobile Connect Service; C:\Program Files\Vodafone\Vodafone Mobile Connect\Bin\VMCService.exe [2008-03-13 24576]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2004-08-04 14336]
R2 YahooAUService;Yahoo! Updater; C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe [2008-11-10 602392]
R3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2009-06-05 541992]
S2 HDD & SSD access service;HDD & SSD access service; C:\Program Files\Common Files\BinarySense\disksvc.exe []
S3 AddFiltr;AddFiltr; C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\AddFiltr.exe [2006-06-26 126976]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2009-05-25 655624]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2006-10-27 65824]
S3 NBService;NBService; C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe [2007-03-14 779824]
S3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe [2007-03-12 271920]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2009-06-02 637952]
S3 TuneUp.Defrag;TuneUp Drive Defrag Service; C:\WINDOWS\System32\TuneUpDefragService.exe [2008-11-02 306432]
S3 usnjsvc;Messenger Sharing Folders USN Journal Reader service; C:\Program Files\MSN Messenger\usnsvc.exe [2007-01-19 97136]
S3 WMPNetworkSvc;Windows Media Player Network Sharing Service; C:\Program Files\Windows Media Player\WMPNetwk.exe [2006-10-18 913408]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------
Back to Top
 

Jintan
Senior Member




Date Joined Dec 2006
Total Posts : 1428
 
   Posted 9/29/2009 3:20 PM (GMT +3)    Quote: My video files on my pc is all changed to .exe files, Please help me guysAlert an admin about: My video files on my pc is all changed to .exe files, Please help me guys
Badly infected with an autorun worm variant. Let's start some repairs. You are running RSIT from a D drive. Please be sure to do the steps as posted, as this will effect the outcomes of some of the repair scans.

The malware has included an autorun type component, so if any external drives have been used on this computer recently be sure to install them now, and leave them installed until ALL repairs on it are completed. If not, they will remain infected and can re-infect the computer (or others).


To keep them from interfering with the repairs, be sure to temporarily disable all antivirus/anti-spyware softwares while these steps are being completed. This can usually be done through right clicking the software's Taskbar icons, or accessing each software through Start - Programs.



Open HijackThis, and choose None of the above, just start the program. Click Config – Misc Tools – Open process manager. From the list, click each of the following if it is present, and Kill Process. Close HijackThis.

C:\RECYCLER\S-2-35-91-1935983697-21235429265-18132174531-12132143-3243252-231-9890741\ffdshow.exe
C:\RECYCLER\S-2-35-91-1935983697-21235429265-18132174531-12132143-3243252-231-9890741\ApWrTZ.exe


(Or anything running from that "RECYCLER" folder)

------------------------

Go here, fill out the basic info they ask for (carefully, since it includes offers of email notices), and download Panda's USB Vaccine tool.

Unzip that download, and click the USBVaccine.exe file to open the display. For now go ahead and click the option to "Vaccinate computer", which will disable autorun for CD drives and USB drives. Also use the USB drive Vaccination option dropdown to "Vaccinate" all attached USB drives there. Then just close that display when done.

----------------------

Download ComboFix.exe from here to your desktop, but I would like you to rename the file as you download it (do not download it directly without renaming it - use right click "Save Target/Link As" ). For this, rename the downloading file to 456out.com, then click the renamed 456out.com to run that scan.

Be sure to install the Recovery Console if you are asked to do so. When the scan completes, a text window with your log will open. Please copy and paste that log back here.

A caution - do not touch your mouse/keyboard until the scan has completed. The scan will temporarily disable your desktop, and if interrupted may leave your desktop disabled. If this occurs, please reboot to restore the desktop.

Allow the scan to run. When completed a text window will appear - please copy/paste the contents back here. This log can also be found at C:\ComboFix.txt.


Click here and help my friend help stop leukemia, lymphoma, Hodgkin lymphoma and myeloma from taking more lives.

Back to Top
 

gade_behn
New Member


Date Joined Sep 2009
Total Posts : 5
 
   Posted 9/30/2009 5:07 AM (GMT +3)    Quote: My video files on my pc is all changed to .exe files, Please help me guysAlert an admin about: My video files on my pc is all changed to .exe files, Please help me guys
DONE


ComboFix 09-09-28.01 - User 30/09/2009 9:46.1.2 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.2.1252.1.1033.18.2038.1037 [GMT 8:00]
Running from: c:\documents and settings\User\Desktop\456out.com
AV: AntiVir Desktop *On-access scanning disabled* (Outdated) {11638345-E4FC-4BEE-BB73-EC754659C5F6}
FW: Avira Firewall *disabled* {11638345-E4FC-4BEE-BB73-EC754659C5F6}
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\recycler\S-1-5-21-1482476501-1644491937-682003330-1013
c:\recycler\S-2-35-91-1935983697-21235429265-18132174531-12132143-3243252-231-9890741
c:\windows\Installer\2e643b.msi
c:\windows\Installer\43c595.msi
c:\windows\Installer\8aaa43.msi
c:\windows\system32\logs
H:\Autorun.inf

.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.

-------\Legacy_OREANS32
-------\Service_AVPsys
-------\Service_oreans32


((((((((((((((((((((((((( Files Created from 2009-08-28 to 2009-09-30 )))))))))))))))))))))))))))))))
.

2009-09-29 09:12 . 2009-09-30 00:57 -------- d-----w- c:\program files\trend micro
2009-09-29 09:12 . 2009-09-29 09:13 -------- d-----w- C:\rsit
2009-09-29 08:12 . 2009-09-30 01:05 -------- d-----w- c:\documents and settings\User\Application Data\IDM
2009-09-29 08:11 . 2009-09-29 08:11 -------- d-----w- c:\program files\Internet Download Manager
2009-09-29 07:58 . 2009-09-29 07:58 -------- d-----w- c:\program files\Common Files\Skype
2009-09-29 06:54 . 2009-09-29 07:15 97608 ----a-w- c:\windows\system32\drivers\avfwot.sys
2009-09-29 06:54 . 2009-09-29 07:15 96104 ----a-w- c:\windows\system32\drivers\avipbb.sys
2009-09-29 06:54 . 2009-09-29 07:15 55656 ----a-w- c:\windows\system32\drivers\avgntflt.sys
2009-09-29 06:54 . 2009-02-24 04:06 69632 ----a-w- c:\windows\system32\drivers\avfwim.sys
2009-09-29 06:54 . 2009-02-13 03:29 22360 ----a-w- c:\windows\system32\drivers\avgntmgr.sys
2009-09-29 06:54 . 2009-02-13 03:17 45416 ----a-w- c:\windows\system32\drivers\avgntdd.sys
2009-09-29 06:54 . 2009-09-29 06:54 -------- d-----w- c:\documents and settings\All Users\Application Data\Avira
2009-09-29 06:54 . 2009-09-29 06:54 -------- d-----w- c:\program files\Avira
2009-09-28 00:46 . 2009-09-29 06:26 -------- d-----w- c:\program files\BitDefender
2009-09-28 00:45 . 2009-09-28 00:45 -------- d-----w- c:\windows\system32\URTTEMP
2009-09-28 00:38 . 2009-09-29 06:26 -------- d-----w- c:\program files\Common Files\BitDefender
2009-09-22 16:10 . 2009-09-23 02:19 -------- d-----w- c:\program files\Mystery Case Files - Ravenhearst
2009-09-22 14:20 . 2009-09-22 14:20 -------- d-----w- c:\program files\My Documents
2009-09-22 14:17 . 2009-02-05 16:12 246631 ------r- c:\windows\clock.exe
2009-09-22 14:17 . 2009-02-05 16:12 246631 ------r- c:\temp\This is Kaamatan.exe
2009-09-22 14:17 . 2009-02-05 16:12 246631 ------r- c:\temp\How To Be The Perfect Boyfriend.exe
2009-09-22 14:17 . 2009-02-05 16:12 246631 ------r- c:\temp\AAR - Gives you hell.exe
2009-09-21 21:28 . 2009-09-21 21:28 -------- d-----w- c:\documents and settings\haha\Application Data\vlc
2009-09-21 20:47 . 2009-09-21 20:47 -------- d-----w- c:\documents and settings\haha\Application Data\Media Player Classic
2009-09-21 20:47 . 2009-09-21 20:47 -------- d-----w- c:\documents and settings\haha\Application Data\DivX
2009-09-10 00:13 . 2009-09-10 00:13 -------- d-----w- c:\program files\EasySleep
2009-09-10 00:03 . 2009-09-10 00:03 -------- d-----w- c:\program files\Shutdown Monster
2009-09-03 09:15 . 2009-09-10 09:39 -------- d-----w- c:\program files\Shutdown Timer

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-09-30 01:56 . 2008-04-16 05:10 -------- d-----w- c:\documents and settings\User\Application Data\DMCache
2009-09-30 01:41 . 2008-03-06 20:46 -------- d-----w- c:\documents and settings\User\Application Data\Skype
2009-09-30 00:59 . 2009-06-22 00:49 -------- d-----w- c:\documents and settings\User\Application Data\skypePM
2009-09-29 07:59 . 2009-06-22 00:49 -------- d-----r- c:\program files\Skype
2009-09-29 07:58 . 2008-03-06 20:46 -------- d-----w- c:\documents and settings\All Users\Application Data\Skype
2009-09-29 06:21 . 2008-10-28 04:41 -------- d---a-w- c:\documents and settings\All Users\Application Data\TEMP
2009-09-28 06:45 . 2009-08-24 00:51 -------- d-----w- c:\documents and settings\User\Application Data\vlc
2009-09-28 06:20 . 2008-03-11 06:56 -------- d-----w- c:\program files\Avant Browser
2009-09-28 03:17 . 2009-09-28 03:17 242184 ----a-w- c:\windows\system32\drivers\bdfsfltr.sys.upd
2009-09-28 03:17 . 2009-09-28 03:17 82696 ----a-w- c:\windows\system32\drivers\BDVEDISK.sys.upd
2009-09-28 03:17 . 2009-09-28 03:17 111112 ----a-w- c:\windows\system32\drivers\bdfm.sys.upd
2009-09-28 03:17 . 2009-09-28 03:17 104456 ----a-w- c:\windows\system32\drivers\bdfndisf.sys.upd
2009-09-28 01:23 . 2008-03-23 12:47 -------- d-----w- c:\program files\DC++
2009-09-28 00:42 . 2008-03-20 12:00 -------- d-----w- c:\program files\Kaspersky Lab
2009-09-28 00:40 . 2008-03-20 12:00 -------- d-----w- c:\documents and settings\All Users\Application Data\Kaspersky Lab
2009-09-22 15:00 . 2009-03-08 15:13 -------- d-----w- c:\program files\QuickTime
2009-09-21 07:33 . 2009-03-24 09:28 -------- d-----w- c:\documents and settings\User\Application Data\Audacity
2009-09-13 05:52 . 2008-03-10 13:13 43 ----a-w- c:\windows\popcinfo.dat
2009-09-11 00:05 . 2008-08-14 11:16 -------- d-----w- c:\documents and settings\All Users\Application Data\Microsoft Help
2009-09-04 12:49 . 2008-06-23 05:15 -------- d-----w- c:\documents and settings\User\Application Data\PC Suite
2009-09-02 09:27 . 2007-12-04 08:29 191544 ----a-w- c:\documents and settings\User\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2009-08-24 23:59 . 2009-07-30 05:41 -------- d-----w- c:\program files\Replay Music 3
2009-08-24 04:46 . 2009-08-24 04:46 -------- d-----w- c:\program files\Universal Document Converter
2009-08-24 02:07 . 2009-08-24 02:07 -------- d-----w- c:\program files\Adolix
2009-08-14 08:58 . 2009-08-14 02:07 371168 ----a-w- c:\documents and settings\LocalService\Local Settings\Application Data\FontCache3.0.0.0.dat
2009-08-14 03:48 . 2008-03-20 11:22 -------- d-----w- c:\program files\WWE-Script
2009-08-14 02:12 . 2009-08-14 02:12 -------- d-----w- c:\documents and settings\User\Application Data\MP3Helper
2009-08-14 02:06 . 2008-08-14 11:28 -------- d-----w- c:\program files\MSBuild
2009-08-14 02:06 . 2009-08-14 02:06 -------- d-----w- c:\program files\Reference Assemblies
2009-08-12 04:21 . 2009-08-12 04:21 -------- d-----w- c:\documents and settings\User\Application Data\AVS4YOU
2009-08-12 04:21 . 2009-08-12 04:21 -------- d-----w- c:\documents and settings\All Users\Application Data\AVS4YOU
2009-08-12 04:21 . 2009-08-12 04:19 -------- d-----w- c:\program files\AVS4YOU
2009-08-12 04:21 . 2009-08-12 04:19 -------- d-----w- c:\program files\Common Files\AVSMedia
2009-08-10 03:56 . 2009-08-10 03:57 411368 ----a-w- c:\windows\system32\deploytk.dll
2009-08-10 03:56 . 2007-12-05 07:50 -------- d-----w- c:\program files\Java
2009-08-07 11:46 . 2009-08-07 11:46 -------- d-----w- c:\program files\HSDPA USB Modem
2009-08-07 06:31 . 2007-12-05 08:36 -------- d-----w- c:\documents and settings\User\Application Data\Ahead
2009-08-06 10:50 . 2009-07-14 07:31 -------- d-----w- c:\program files\Mozilla ActiveX Control v1.7.12
2009-08-06 05:32 . 2009-08-01 00:53 -------- d-----w- c:\program files\Parasol
2009-07-14 07:34 . 2009-07-14 07:34 187952 ----a-w- c:\documents and settings\haha\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2007-07-26 19:32 . 2007-12-05 07:35 66408 ------w- c:\program files\mozilla firefox\components\jar50.dll
2007-07-26 19:32 . 2007-12-05 07:35 54112 ------w- c:\program files\mozilla firefox\components\jsd3250.dll
2007-07-26 19:32 . 2007-12-05 07:35 34688 ------w- c:\program files\mozilla firefox\components\myspell.dll
2007-07-26 19:32 . 2007-12-05 07:35 46456 ------w- c:\program files\mozilla firefox\components\spellchk.dll
2007-07-26 19:32 . 2007-12-05 07:35 171880 ------w- c:\program files\mozilla firefox\components\xpinstal.dll
.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Google Update"="c:\documents and settings\User\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" [2009-02-18 133104]
"Yahoo! Pager"="c:\program files\Yahoo!\Messenger\YahooMessenger.exe" [2009-05-26 4351216]
"Messenger (Yahoo!)"="c:\program files\Yahoo!\Messenger\YahooMessenger.exe" [2009-05-26 4351216]
"IDMan"="c:\program files\Internet Download Manager\IDMan.exe" [2009-05-27 2815408]
"ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2004-08-03 15360]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Cpqset"="c:\program files\Hewlett-Packard\Default Settings\cpqset.exe" [2006-05-02 40960]
"QlbCtrl"="c:\program files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe" [2006-11-06 159744]
"IMJPMIG8.1"="c:\windows\IME\imjp8_1\IMJPMIG.EXE" [2004-08-03 208952]
"MSPY2002"="c:\windows\system32\IME\PINTLGNT\ImScInst.exe" [2002-08-29 59392]
"PHIME2002ASync"="c:\windows\system32\IME\TINTLGNT\TINTSETP.EXE" [2002-08-29 455168]
"PHIME2002A"="c:\windows\system32\IME\TINTLGNT\TINTSETP.EXE" [2002-08-29 455168]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2007-04-20 142104]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2007-04-20 162584]
"Persistence"="c:\windows\system32\igfxpers.exe" [2007-04-20 138008]
"googletalk"="c:\program files\Google\Google Talk\googletalk.exe" [2007-01-01 3739648]
"Extended Talk"="c:\program files\Extended Talk\ExtendedTalk.exe" [2006-07-02 503808]
"gidle"="c:\program files\gAlwaysIdle\gidle.exe" [2008-01-07 49152]
"Winamp to Google Talk"="d:\i n s t - e s s e n t i a l s\WinamptoGoogleTalk.exe" [2005-09-06 52224]
"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2009-05-26 413696]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2009-06-05 292136]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2008-10-14 39792]
"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2009-08-10 149280]
"avgnt"="c:\program files\Avira\AntiVir Desktop\avgnt.exe" [2009-03-02 209153]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"RunNarrator"="Narrator.exe" - c:\windows\system32\narrator.exe [2004-08-03 53760]

[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Adobe Reader Speed Launch.lnk]
path=c:\documents and settings\All Users\Start Menu\Programs\Startup\Adobe Reader Speed Launch.lnk
backup=c:\windows\pss\Adobe Reader Speed Launch.lnkCommon Startup

[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Adobe Reader Synchronizer.lnk]
path=c:\documents and settings\All Users\Start Menu\Programs\Startup\Adobe Reader Synchronizer.lnk
backup=c:\windows\pss\Adobe Reader Synchronizer.lnkCommon Startup

[HKLM\~\startupfolder\C:^Documents and Settings^User^Start Menu^Programs^Startup^Adobe Gamma.lnk]
path=c:\documents and settings\User\Start Menu\Programs\Startup\Adobe Gamma.lnk
backup=c:\windows\pss\Adobe Gamma.lnkStartup

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-]
"Yahoo! Pager"="c:\program files\Yahoo!\Messenger\YahooMessenger.exe" -quiet
"IDMan"=c:\program files\Internet Download Manager\IDMan.exe /onboot
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\daemon.exe" -autorun

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"Make A Voozie"="c:\documents and settings\All Users\Application Data\Make A Voozie\VoozieMaker.exe" /startup
"QuickTime Task"="c:\program files\QuickTime\qttask.exe" -atboottime

[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"UpdatesDisableNotify"=dword:00000001

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\MSN Messenger\\msnmsgr.exe"=
"c:\\Program Files\\MSN Messenger\\livecall.exe"=
"c:\\Program Files\\Google\\Google Talk\\googletalk.exe"=
"c:\\Program Files\\Avant Browser\\avant.exe"=
"c:\\Program Files\\Yahoo!\\Messenger\\YahooMessenger.exe"=
"c:\\Program Files\\WWE-Script\\mIRC.exe"=
"c:\\Program Files\\DC++\\DCPlusPlus.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"=
"c:\\Program Files\\Internet Download Manager\\IDMan.exe"=
"c:\\Program Files\\Nero\\Nero 7\\Nero ShowTime\\ShowTime.exe"=
"c:\\WINDOWS\\system32\\mmc.exe"=
"c:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"c:\\Documents and Settings\\User\\Local Settings\\Application Data\\Google\\Google Talk Plugin\\googletalkplugin.dll"=
"c:\\Documents and Settings\\User\\Local Settings\\Application Data\\Google\\Google Talk Plugin\\googletalkplugin.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=

R1 avfwot;avfwot;c:\windows\system32\drivers\avfwot.sys [29/09/2009 2:54 PM 97608]
R2 AntiVirFirewallService;Avira Firewall;c:\program files\Avira\AntiVir Desktop\avfwsvc.exe [29/09/2009 2:54 PM 388865]
R2 AntiVirSchedulerService;Avira AntiVir Scheduler;c:\program files\Avira\AntiVir Desktop\sched.exe [29/09/2009 2:54 PM 108289]
R2 VMCService;Vodafone Mobile Connect Service;c:\program files\Vodafone\Vodafone Mobile Connect\Bin\VMCService.exe [13/03/2008 7:08 PM 24576]
R3 avfwim;AvFw Packet Filter Miniport;c:\windows\system32\drivers\avfwim.sys [29/09/2009 2:54 PM 69632]
S2 HDD & SSD access service;HDD & SSD access service;"c:\program files\Common Files\BinarySense\disksvc.exe" --> c:\program files\Common Files\BinarySense\disksvc.exe [?]
S3 qcusbser;Mobile Connector USB Device for Legacy Serial Communication;c:\windows\system32\drivers\cmusbser.sys [07/08/2009 7:46 PM 97408]
S3 SliceDisk5;SliceDisk5;\??\c:\program files\A-FF Find and Mount\slicedisk.sys --> c:\program files\A-FF Find and Mount\slicedisk.sys [?]

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
UxTuneUp

[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{28ABC5C0-4FCB-11CF-AAX5-81CX1C735612}]
c:\recycler\S-1-5-21-1482476501-1644491937-682003330-1013\winde32.exe
.
Contents of the 'Scheduled Tasks' folder

2009-09-25 c:\windows\Tasks\1-Click Maintenance.job
- c:\program files\TuneUp Utilities 2008\OneClick.exe [2007-12-21 07:17]

2009-09-29 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-117609710-861567501-725345543-1003Core.job
- c:\documents and settings\User\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2009-02-18 17:24]

2009-09-30 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-117609710-861567501-725345543-1003UA.job
- c:\documents and settings\User\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2009-02-18 17:24]
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://www.google.com/
mStart Page = hxxp://www.yahoo.com/
mSearch Bar = hxxp://us.rd.yahoo.com/customize/ie/defaults/sb/msgr9/*http://www.yahoo.com/ext/search/search.html
uInternet Settings,ProxyServer = 91.121.70.56:3128
uInternet Settings,ProxyOverride = local;<local>
IE: Add to Anti-Banner - c:\program files\Kaspersky Lab\Kaspersky Internet Security 7.0\ie_banner_deny.htm
IE: Download all links with IDM - c:\program files\Internet Download Manager\IEGetAll.htm
IE: Download FLV video content with IDM - c:\program files\Internet Download Manager\IEGetVL.htm
IE: Download with IDM - c:\program files\Internet Download Manager\IEExt.htm
IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
LSP: c:\windows\system32\idmmbc.dll
DPF: {9E265649-6E0E-4EEA-9F49-DAE0801440CF} - hxxp://poolhse1.dyndns.tv/WebDiginet.CAB
FF - ProfilePath - c:\documents and settings\User\Application Data\Mozilla\Firefox\Profiles\oruwricf.default\
FF - prefs.js: browser.search.defaulturl - hxxp://search.yahoo.com/search?fr=ffsp1&p=
FF - prefs.js: browser.search.selectedEngine - Yahoo
FF - prefs.js: browser.startup.homepage - hxxp://www.yahoo.com/
FF - prefs.js: keyword.URL - hxxp://search.yahoo.com/search?fr=ffds1&p=
FF - component: c:\documents and settings\User\Application Data\IDM\idmmzcc3\components\idmmzcc.dll
FF - component: c:\program files\Mozilla Firefox\components\xpinstal.dll

---- FIREFOX POLICIES ----
FF - user.js: yahoo.homepage.dontask - true.
- - - - ORPHANS REMOVED - - - -

HKU-Default-Run-PcSync - c:\program files\Nokia\Nokia PC Suite 6\PcSync2.exe



**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-09-30 09:56
Windows 5.1.2600 Service Pack 2 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

HKLM\Software\Microsoft\Windows\CurrentVersion\Run
Cpqset = c:\program files\Hewlett-Packard\Default Settings\cpqset.exe????????????,?@? ???X_??????R?@?????,?@

scanning hidden files ...

scan completed successfully
hidden files: 0

**************************************************************************
.
--------------------- LOCKED REGISTRY KEYS ---------------------

[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{7B8E9164-324D-4A2E-A46D-0165FB2000EC}]
@Denied: (Full) (Everyone)
"scansk"=hex(0):d8,30,4b,bb,38,ba,9a,d4,be,f0,9c,bd,ed,55,aa,c6,ca,09,32,f5,40,
74,ad,82,cc,1d,0a,b0,ac,57,4f,09,d9,13,18,cb,31,b3,f1,26,00,00,00,00,00,00,\

[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{a6432e6e-c765-4e63-b58d-2eefe32f0242}]
@Denied: (Full) (Everyone)
"Model"=dword:000000af
"Therad"=dword:0000000f
"MData"=hex(0):73,d5,cf,b8,a4,07,89,80,31,e4,35,6b,2a,ca,fe,43,98,07,ff,fc,5d,
df,1c,2f,3b,8a,0a,32,11,89,01,b5,01,47,7d,43,a1,dd,fd,14,93,13,0a,ec,4b,95,\

[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{BEB3C0C7-B648-4257-96D9-B5D024816E27}\Version*Version]
"Version"=hex:45,82,c2,2e,88,17,bd,47,9a,11,72,71,36,16,66,96,5a,b3,60,25,c8,
c3,6f,78,ec,fe,05,a1,c3,c6,8c,2d,8a,ed,dc,0e,5e,b8,28,44,83,51,97,3e,55,1c,\

[HKEY_LOCAL_MACHINE\software\Minnetonka Audio Software\SurCode Dolby Digital Premiere\Version*Version]
"Version"=hex:45,82,c2,2e,88,17,bd,47,9a,11,72,71,36,16,66,96,5a,b3,60,25,c8,
c3,6f,78,ec,fe,05,a1,c3,c6,8c,2d,8a,ed,dc,0e,5e,b8,28,44,83,51,97,3e,55,1c,\
.
--------------------- DLLs Loaded Under Running Processes ---------------------

- - - - - - - > 'lsass.exe'(852)
c:\windows\system32\idmmbc.dll

- - - - - - - > 'explorer.exe'(2696)
c:\windows\system32\msi.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\hnetcfg.dll
c:\windows\system32\idmmbc.dll
c:\program files\Nokia\Nokia PC Suite 7\PhoneBrowser.dll
c:\program files\Nokia\Nokia PC Suite 7\NGSCM.DLL
c:\program files\Nokia\Nokia PC Suite 7\Lang\PhoneBrowser_eng-us.nlr
c:\program files\Nokia\Nokia PC Suite 7\Resource\PhoneBrowser_Nokia.ngr
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
------------------------ Other Running Processes ------------------------
.
c:\program files\Avira\AntiVir Desktop\avguard.exe
c:\program files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
c:\program files\Bonjour\mDNSResponder.exe
c:\program files\Java\jre6\bin\jqs.exe
c:\program files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
c:\program files\CyberLink\Shared files\RichVideo.exe
c:\program files\Yahoo!\SoftwareUpdate\YahooAUService.exe
c:\program files\Hewlett-Packard\Shared\hpqwmiex.exe
c:\windows\system32\igfxsrvc.exe
c:\documents and settings\User\Local Settings\Application Data\Google\Update\1.2.183.7\GoogleCrashHandler.exe
c:\program files\Internet Download Manager\IEMonitor.exe
c:\program files\iPod\bin\iPodService.exe
c:\windows\system32\wscntfy.exe
c:\program files\Yahoo!\Messenger\Ymsgr_tray.exe
.
**************************************************************************
.
Completion time: 2009-09-30 10:02 - machine was rebooted
ComboFix-quarantined-files.txt 2009-09-30 02:02

Pre-Run: 3,716,231,168 bytes free
Post-Run: 3,771,908,096 bytes free

WindowsXP-KB310994-SP2-Pro-BootDisk-ENU.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect /usepmtimer

294
Back to Top
 

Jintan
Senior Member




Date Joined Dec 2006
Total Posts : 1428
 
   Posted 10/1/2009 12:25 AM (GMT +3)    Quote: My video files on my pc is all changed to .exe files, Please help me guysAlert an admin about: My video files on my pc is all changed to .exe files, Please help me guys
I am still not sure if these many altered music files are that, or the file names used for malware files. Of course that second one is what is preferred.


Be sure to continue to temporarily disable any protective software when running the scan tools we use here.


Close Internet Explorer and all running programs and run a scan in HijackThis. Place a check next to all of the following lines, then select “Fix Checked” and close HijackThis. If you yourself chose that "proxyserver" setting item then you do not need to have HijackThis correct it (I'm pretty sure it is malware created though).

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 91.121.70.56:3128
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = local;<local>
O1 - Hosts: ::1 localhost


--------------------

Open notepad (go to Start, Run, type notepad and press Enter) and copy/paste the text in the codebox below into it:

Registry::
[-HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{28ABC5C0-4FCB-11CF-AAX5-81CX1C735612}]
Reglock::
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{7B8E9164-324D-4A2E-A46D-0165FB2000EC}]
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{a6432e6e-c765-4e63-b58d-2eefe32f0242}]

Save this to your desktop as CFScript.txt


You should now have both ComboFix and that CFScript.txt on the desktop. Just left click/hold on the CFScript file, and drag it into ComboFix to start the scan.

ComboFix will now run as it did before. Allow the scan to run. When completed a text window will appear - please copy/paste the contents back here. This log can also be found at C:\ComboFix.txt.

A caution - do not touch your mouse/keyboard until the scan has completed. The scan will temporarily disable your desktop, and if interrupted may leave your desktop disabled. If this occurs, please reboot to restore the desktop.

----------

Then Go here and run the Kaspersky online scan, and post back the log it creates.

To use the scan, accept the agreement and make sure you allow the ActiveX object to download and install (check the "yellow bar" at the top if needed to allow this). Once the Database download is completed, under Scan in the left column click My Computer to start the scan. This may take a very long time, so allow the scan to run and perhaps find something else to do.

When the scan completes click View Scan Report. Then click Save Report As, and using the dropdown box save the report as "Files of Type: -> Text file (.txt)" to a location where you can find it again. Use any name you wish for the log.

Then locate that log and copy/paste those contents back here please.

The scan requires a good bit of database downloading and can take quite a while to complete.

---------

Post that log along with the C:\ComboFix.txt log please.


Click here and help my friend help stop leukemia, lymphoma, Hodgkin lymphoma and myeloma from taking more lives.

Back to Top
 

gade_behn
New Member


Date Joined Sep 2009
Total Posts : 5
 
   Posted 10/1/2009 10:15 AM (GMT +3)    Quote: My video files on my pc is all changed to .exe files, Please help me guysAlert an admin about: My video files on my pc is all changed to .exe files, Please help me guys
Here the ComboFix.txt,

ComboFix 09-09-28.01 - User 01/10/2009 8:53.2.2 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.2.1252.1.1033.18.2038.1503 [GMT 8:00]
Running from: c:\documents and settings\User\Desktop\456out.com
Command switches used :: c:\docume~1\User\Desktop\CFScript.txt
AV: AntiVir Desktop *On-access scanning disabled* (Updated) {11638345-E4FC-4BEE-BB73-EC754659C5F6}
FW: Avira Firewall *disabled* {11638345-E4FC-4BEE-BB73-EC754659C5F6}
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\windows\msa.exe
c:\windows\msb.exe

.
((((((((((((((((((((((((( Files Created from 2009-09-01 to 2009-10-01 )))))))))))))))))))))))))))))))
.

2009-09-30 03:28 . 2007-12-26 09:30 679936 ----a-w- c:\windows\system32\D3DX81ab.dll
2009-09-30 03:28 . 2007-12-26 09:30 1970176 ----a-w- c:\windows\system32\d3dx9.dll
2009-09-30 03:28 . 2009-09-30 04:14 -------- d-----w- c:\program files\Cheat Engine
2009-09-30 02:33 . 2009-09-30 02:33 -------- d-----w- c:\documents and settings\All Users\Application Data\Yahoo! Companion
2009-09-30 02:32 . 2009-09-30 02:33 -------- d-----w- c:\program files\CCleaner
2009-09-29 09:12 . 2009-09-30 00:57 -------- d-----w- c:\program files\trend micro
2009-09-29 09:12 . 2009-09-29 09:13 -------- d-----w- C:\rsit
2009-09-29 08:12 . 2009-09-30 02:23 -------- d-----w- c:\documents and settings\User\Application Data\IDM
2009-09-29 08:11 . 2009-09-29 08:11 -------- d-----w- c:\program files\Internet Download Manager
2009-09-29 07:58 . 2009-09-29 07:58 -------- d-----w- c:\program files\Common Files\Skype
2009-09-29 06:54 . 2009-09-29 07:15 97608 ----a-w- c:\windows\system32\drivers\avfwot.sys
2009-09-29 06:54 . 2009-09-29 07:15 96104 ----a-w- c:\windows\system32\drivers\avipbb.sys
2009-09-29 06:54 . 2009-09-29 07:15 55656 ----a-w- c:\windows\system32\drivers\avgntflt.sys
2009-09-29 06:54 . 2009-02-24 04:06 69632 ----a-w- c:\windows\system32\drivers\avfwim.sys
2009-09-29 06:54 . 2009-02-13 03:29 22360 ----a-w- c:\windows\system32\drivers\avgntmgr.sys
2009-09-29 06:54 . 2009-02-13 03:17 45416 ----a-w- c:\windows\system32\drivers\avgntdd.sys
2009-09-29 06:54 . 2009-09-29 06:54 -------- d-----w- c:\documents and settings\All Users\Application Data\Avira
2009-09-29 06:54 . 2009-09-29 06:54 -------- d-----w- c:\program files\Avira
2009-09-28 00:46 . 2009-09-29 06:26 -------- d-----w- c:\program files\BitDefender
2009-09-28 00:45 . 2009-09-28 00:45 -------- d-----w- c:\windows\system32\URTTEMP
2009-09-28 00:38 . 2009-09-29 06:26 -------- d-----w- c:\program files\Common Files\BitDefender
2009-09-22 16:10 . 2009-09-23 02:19 -------- d-----w- c:\program files\Mystery Case Files - Ravenhearst
2009-09-22 14:20 . 2009-09-22 14:20 -------- d-----w- c:\program files\My Documents
2009-09-22 14:17 . 2009-02-05 16:12 246631 ------r- c:\windows\clock.exe
2009-09-22 14:17 . 2009-02-05 16:12 246631 ------r- c:\temp\This is Kaamatan.exe
2009-09-22 14:17 . 2009-02-05 16:12 246631 ------r- c:\temp\How To Be The Perfect Boyfriend.exe
2009-09-22 14:17 . 2009-02-05 16:12 246631 ------r- c:\temp\AAR - Gives you hell.exe
2009-09-21 21:28 . 2009-09-21 21:28 -------- d-----w- c:\documents and settings\haha\Application Data\vlc
2009-09-21 20:47 . 2009-09-21 20:47 -------- d-----w- c:\documents and settings\haha\Application Data\Media Player Classic
2009-09-21 20:47 . 2009-09-21 20:47 -------- d-----w- c:\documents and settings\haha\Application Data\DivX
2009-09-10 00:13 . 2009-09-10 00:13 -------- d-----w- c:\program files\EasySleep
2009-09-10 00:03 . 2009-09-10 00:03 -------- d-----w- c:\program files\Shutdown Monster
2009-09-03 09:15 . 2009-09-10 09:39 -------- d-----w- c:\program files\Shutdown Timer

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-10-01 00:29 . 2008-04-16 05:10 -------- d-----w- c:\documents and settings\User\Application Data\DMCache
2009-09-30 10:08 . 2008-03-06 20:46 -------- d-----w- c:\documents and settings\User\Application Data\Skype
2009-09-30 07:51 . 2009-08-24 00:51 -------- d-----w- c:\documents and settings\User\Application Data\vlc
2009-09-30 02:33 . 2008-03-11 13:32 -------- d-----w- c:\program files\Yahoo!
2009-09-30 00:59 . 2009-06-22 00:49 -------- d-----w- c:\documents and settings\User\Application Data\skypePM
2009-09-29 07:59 . 2009-06-22 00:49 -------- d-----r- c:\program files\Skype
2009-09-29 07:58 . 2008-03-06 20:46 -------- d-----w- c:\documents and settings\All Users\Application Data\Skype
2009-09-29 06:21 . 2008-10-28 04:41 -------- d---a-w- c:\documents and settings\All Users\Application Data\TEMP
2009-09-28 06:20 . 2008-03-11 06:56 -------- d-----w- c:\program files\Avant Browser
2009-09-28 03:17 . 2009-09-28 03:17 242184 ----a-w- c:\windows\system32\drivers\bdfsfltr.sys.upd
2009-09-28 03:17 . 2009-09-28 03:17 82696 ----a-w- c:\windows\system32\drivers\BDVEDISK.sys.upd
2009-09-28 03:17 . 2009-09-28 03:17 111112 ----a-w- c:\windows\system32\drivers\bdfm.sys.upd
2009-09-28 03:17 . 2009-09-28 03:17 104456 ----a-w- c:\windows\system32\drivers\bdfndisf.sys.upd
2009-09-28 01:23 . 2008-03-23 12:47 -------- d-----w- c:\program files\DC++
2009-09-28 00:42 . 2008-03-20 12:00 -------- d-----w- c:\program files\Kaspersky Lab
2009-09-28 00:40 . 2008-03-20 12:00 -------- d-----w- c:\documents and settings\All Users\Application Data\Kaspersky Lab
2009-09-22 15:00 . 2009-03-08 15:13 -------- d-----w- c:\program files\QuickTime
2009-09-21 07:33 . 2009-03-24 09:28 -------- d-----w- c:\documents and settings\User\Application Data\Audacity
2009-09-13 05:52 . 2008-03-10 13:13 43 ----a-w- c:\windows\popcinfo.dat
2009-09-11 00:05 . 2008-08-14 11:16 -------- d-----w- c:\documents and settings\All Users\Application Data\Microsoft Help
2009-09-04 12:49 . 2008-06-23 05:15 -------- d-----w- c:\documents and settings\User\Application Data\PC Suite
2009-09-02 09:27 . 2007-12-04 08:29 191544 ----a-w- c:\documents and settings\User\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2009-08-24 23:59 . 2009-07-30 05:41 -------- d-----w- c:\program files\Replay Music 3
2009-08-24 04:46 . 2009-08-24 04:46 -------- d-----w- c:\program files\Universal Document Converter
2009-08-24 02:07 . 2009-08-24 02:07 -------- d-----w- c:\program files\Adolix
2009-08-14 08:58 . 2009-08-14 02:07 371168 ----a-w- c:\documents and settings\LocalService\Local Settings\Application Data\FontCache3.0.0.0.dat
2009-08-14 03:48 . 2008-03-20 11:22 -------- d-----w- c:\program files\WWE-Script
2009-08-14 02:12 . 2009-08-14 02:12 -------- d-----w- c:\documents and settings\User\Application Data\MP3Helper
2009-08-14 02:06 . 2008-08-14 11:28 -------- d-----w- c:\program files\MSBuild
2009-08-14 02:06 . 2009-08-14 02:06 -------- d-----w- c:\program files\Reference Assemblies
2009-08-12 04:21 . 2009-08-12 04:21 -------- d-----w- c:\documents and settings\User\Application Data\AVS4YOU
2009-08-12 04:21 . 2009-08-12 04:21 -------- d-----w- c:\documents and settings\All Users\Application Data\AVS4YOU
2009-08-12 04:21 . 2009-08-12 04:19 -------- d-----w- c:\program files\AVS4YOU
2009-08-12 04:21 . 2009-08-12 04:19 -------- d-----w- c:\program files\Common Files\AVSMedia
2009-08-10 03:56 . 2009-08-10 03:57 411368 ----a-w- c:\windows\system32\deploytk.dll
2009-08-10 03:56 . 2007-12-05 07:50 -------- d-----w- c:\program files\Java
2009-08-07 11:46 . 2009-08-07 11:46 -------- d-----w- c:\program files\HSDPA USB Modem
2009-08-07 06:31 . 2007-12-05 08:36 -------- d-----w- c:\documents and settings\User\Application Data\Ahead
2009-08-06 10:50 . 2009-07-14 07:31 -------- d-----w- c:\program files\Mozilla ActiveX Control v1.7.12
2009-08-06 05:32 . 2009-08-01 00:53 -------- d-----w- c:\program files\Parasol
2009-07-14 07:34 . 2009-07-14 07:34 187952 ----a-w- c:\documents and settings\haha\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2007-07-26 19:32 . 2007-12-05 07:35 66408 ------w- c:\program files\mozilla firefox\components\jar50.dll
2007-07-26 19:32 . 2007-12-05 07:35 54112 ------w- c:\program files\mozilla firefox\components\jsd3250.dll
2007-07-26 19:32 . 2007-12-05 07:35 34688 ------w- c:\program files\mozilla firefox\components\myspell.dll
2007-07-26 19:32 . 2007-12-05 07:35 46456 ------w- c:\program files\mozilla firefox\components\spellchk.dll
2007-07-26 19:32 . 2007-12-05 07:35 171880 ------w- c:\program files\mozilla firefox\components\xpinstal.dll
.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Adobe Reader Speed Launch.lnk]
path=c:\documents and settings\All Users\Start Menu\Programs\Startup\Adobe Reader Speed Launch.lnk
backup=c:\windows\pss\Adobe Reader Speed Launch.lnkCommon Startup

[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Adobe Reader Synchronizer.lnk]
path=c:\documents and settings\All Users\Start Menu\Programs\Startup\Adobe Reader Synchronizer.lnk
backup=c:\windows\pss\Adobe Reader Synchronizer.lnkCommon Startup

[HKLM\~\startupfolder\C:^Documents and Settings^User^Start Menu^Programs^Startup^Adobe Gamma.lnk]
path=c:\documents and settings\User\Start Menu\Programs\Startup\Adobe Gamma.lnk
backup=c:\windows\pss\Adobe Gamma.lnkStartup

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-]
"Yahoo! Pager"="c:\program files\Yahoo!\Messenger\YahooMessenger.exe" -quiet
"IDMan"=c:\program files\Internet Download Manager\IDMan.exe /onboot
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\daemon.exe" -autorun

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"Make A Voozie"="c:\documents and settings\All Users\Application Data\Make A Voozie\VoozieMaker.exe" /startup
"QuickTime Task"="c:\program fi les\QuickTime\qttask.exe" -atboottime

[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"UpdatesDisableNotify"=dword:00000001

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\MSN Messenger\\msnmsgr.exe"=
"c:\\Program Files\\MSN Messenger\\livecall.exe"=
"c:\\Program Files\\Google\\Google Talk\\googletalk.exe"=
"c:\\Program Files\\Avant Browser\\avant.exe"=
"c:\\Program Files\\Yahoo!\\Messenger\\YahooMessenger.exe"=
"c:\\Program Files\\WWE-Script\\mIRC.exe"=
"c:\\Program Files\\DC++\\DCPlusPlus.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"=
"c:\\Program Files\\Internet Download Manager\\IDMan.exe"=
"c:\\Program Files\\Nero\\Nero 7\\Nero ShowTime\\ShowTime.exe"=
"c:\\WINDOWS\\system32\\mmc.exe"=
"c:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"c:\\Documents and Settings\\User\\Local Settings\\Application Data\\Google\\Google Talk Plugin\\googletalkplugin.dll"=
"c:\\Documents and Settings\\User\\Local Settings\\Application Data\\Google\\Google Talk Plugin\\googletalkplugin.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=

R1 avfwot;avfwot;c:\windows\system32\drivers\avfwot.sys [29/09/2009 2:54 PM 97608]
R2 AntiVirFirewallService;Avira Firewall;c:\program files\Avira\AntiVir Desktop\avfwsvc.exe [29/09/2009 2:54 PM 388865]
R2 AntiVirSchedulerService;Avira AntiVir Scheduler;c:\program files\Avira\AntiVir Desktop\sched.exe [29/09/2009 2:54 PM 108289]
R2 VMCService;Vodafone Mobile Connect Service;c:\program files\Vodafone\Vodafone Mobile Connect\Bin\VMCService.exe [13/03/2008 7:08 PM 24576]
R3 avfwim;AvFw Packet Filter Miniport;c:\windows\system32\drivers\avfwim.sys [29/09/2009 2:54 PM 69632]
S3 qcusbser;Mobile Connector USB Device for Legacy Serial Communication;c:\windows\system32\drivers\cmusbser.sys [07/08/2009 7:46 PM 97408]
S3 SliceDisk5;SliceDisk5;\??\c:\program files\A-FF Find and Mount\slicedisk.sys --> c:\program files\A-FF Find and Mount\slicedisk.sys [?]
S4 HDD & SSD access service;HDD & SSD access service;"c:\program files\Common Files\BinarySense\disksvc.exe" --> c:\program files\Common Files\BinarySense\disksvc.exe [?]

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
UxTuneUp
.
Contents of the 'Scheduled Tasks' folder

2009-09-25 c:\windows\Tasks\1-Click Maintenance.job
- c:\program files\TuneUp Utilities 2008\OneClick.exe [2007-12-21 07:17]

2009-09-30 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-117609710-861567501-725345543-1003Core.job
- c:\documents and settings\User\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2009-02-18 17:24]

2009-09-30 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-117609710-861567501-725345543-1003UA.job
- c:\documents and settings\User\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2009-02-18 17:24]
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://www.google.com/
LSP: c:\windows\system32\idmmbc.dll
FF - ProfilePath - c:\documents and settings\User\Application Data\Mozilla\Firefox\Profiles\oruwricf.default\
FF - prefs.js: browser.search.defaulturl - hxxp://search.yahoo.com/search?fr=ffsp1&p=
FF - prefs.js: browser.search.selectedEngine - Yahoo
FF - prefs.js: browser.startup.homepage - hxxp://www.yahoo.com/
FF - prefs.js: keyword.URL - hxxp://search.yahoo.com/search?fr=ffds1&p=
FF - component: c:\documents and settings\User\Application Data\IDM\idmmzcc3\components\idmmzcc.dll
FF - component: c:\program files\Mozilla Firefox\components\xpinstal.dll

---- FIREFOX POLICIES ----
FF - user.js: yahoo.homepage.dontask - true.

**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-10-01 08:58
Windows 5.1.2600 Service Pack 2 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully
hidden files: 0

**************************************************************************
.
--------------------- LOCKED REGISTRY KEYS ---------------------

[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{BEB3C0C7-B648-4257-96D9-B5D024816E27}\Version*Version]
"Version"=hex:45,82,c2,2e,88,17,bd,47,9a,11,72,71,36,16,66,96,5a,b3,60,25,c8,
c3,6f,78,ec,fe,05,a1,c3,c6,8c,2d,8a,ed,dc,0e,5e,b8,28,44,83,51,97,3e,55,1c,\

[HKEY_LOCAL_MACHINE\software\Minnetonka Audio Software\SurCode Dolby Digital Premiere\Version*Version]
"Version"=hex:45,82,c2,2e,88,17,bd,47,9a,11,72,71,36,16,66,96,5a,b3,60,25,c8,
c3,6f,78,ec,fe,05,a1,c3,c6,8c,2d,8a,ed,dc,0e,5e,b8,28,44,83,51,97,3e,55,1c,\
.
--------------------- DLLs Loaded Under Running Processes ---------------------

- - - - - - - > 'lsass.exe'(844)
c:\windows\system32\idmmbc.dll
.
Completion time: 2009-10-01 9:01
ComboFix-quarantined-files.txt 2009-10-01 01:00
ComboFix2.txt 2009-09-30 02:02

Pre-Run: 3,729,616,896 bytes free
Post-Run: 3,702,759,424 bytes free

202

------------------------------------------------------------------------------------------

so sorry, i couldn't get through the kaspersky online scan,
i've been trying many times but, it always failed during the update, and i have to start it all over again and again.
is there any possible way?
Back to Top
 

Jintan
Senior Member




Date Joined Dec 2006
Total Posts : 1428
 
   Posted 10/1/2009 3:11 PM (GMT +3)    Quote: My video files on my pc is all changed to .exe files, Please help me guysAlert an admin about: My video files on my pc is all changed to .exe files, Please help me guys
Try a different one for now, since you can use a local installer for it.

Disable your antivirus program and go here and run an online scan using ESET Online Scanner (you will need to use Internet Explorer for this scan, or download the installer to run it in a different browser). If you accept the Terms of Use, check the box and click Start. After the ActiveX Control has loaded, it will take a couple minutes for the scanner to get ready. Next, check the following boxes:

Remove found threats
Scan unwanted applications


Click Start. This scan may take a while, so please be patient. A log may open when the scan is complete (if not, go to C:\Program Files\EsetOnlineScanner\ and open the file log.txt). Click Edit - Select All then copy/paste that log back here please.


If you have any problems getting Eset started, one work-around is to have an open Internet connection, and then click here and download the esetsmartinstaller_enu.exe Eset installer. Then click that file, and follow the same previous steps to run the scan.


Click here and help my friend help stop leukemia, lymphoma, Hodgkin lymphoma and myeloma from taking more lives.

Back to Top
 

gade_behn
New Member


Date Joined Sep 2009
Total Posts : 5
 
   Posted 10/2/2009 6:38 AM (GMT +3)    Quote: My video files on my pc is all changed to .exe files, Please help me guysAlert an admin about: My video files on my pc is all changed to .exe files, Please help me guys
The Report

ESETSmartInstaller@High as downloader log:
all ok
# version=6
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.6050
# api_version=3.0.2
# EOSSerial=10e616ec4fb4634d8c61288f496555be
# end=finished
# remove_checked=true
# archives_checked=false
# unwanted_checked=true
# unsafe_checked=false
# antistealth_checked=false
# utc_time=2009-10-02 03:15:45
# local_time=2009-10-02 11:15:45 (+0800, Malay Peninsula Standard Time)
# country="Malaysia"
# lang=1033
# osver=5.1.2600 NT Service Pack 2
# compatibility_mode=1283 62 16 0 529034097450924
# compatibility_mode=1798 37 100 100 83675468750
# scanned=243242
# found=3817
# cleaned=3817
# scan_time=6917
C:\Documents and Settings\User\Desktop\Beph Pic\grl kjmt\Video000.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\beph raya 2009\25-09-2009\20090920114352.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\beph raya 2009\25-09-2009\20090920114420.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\beph raya 2009\25-09-2009\20090920114501.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\beph raya 2009\25-09-2009\20090920114531.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\beph raya 2009\25-09-2009\20090920121047.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\beph raya 2009\25-09-2009\20090920121116.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\beph raya 2009\25-09-2009\20090920121132.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\beph raya 2009\25-09-2009\20090920153905.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\beph raya 2009\25-09-2009\20090920153923.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\beph raya 2009\25-09-2009(1)\20090920154659.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\beph raya 2009\25-09-2009(1)\20090920154731.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\beph raya 2009\25-09-2009(1)\20090920160922.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\beph,ct n jasz hari raya mari\20090920173653.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\beph,ct n jasz hari raya mari\20090920173842.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\beph,ct n jasz hari raya mari\20090920174023.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\beph,ct n jasz hari raya mari\20090920183811.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\beph,ct n jasz hari raya mari\20090920184141.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\beph,ct n jasz hari raya mari\20090920184211.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\beph,ct n jasz hari raya mari\20090920184342.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\beph,ct n jasz hari raya mari\20090920191922.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\hari raya 2009\21-09-2009\20090920154659.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\hari raya 2009\21-09-2009\20090920154731.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\hari raya 2009\21-09-2009\20090920160828.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\hari raya 2009\21-09-2009\20090920160922.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\hari raya 2009\21-09-2009\20090920161336.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\hari raya 2009\21-09-2009\20090920162302.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\hari raya 2009\21-09-2009\20090920162309.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\hari raya 2009\21-09-2009\20090920162311.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\hari raya 2009\21-09-2009\20090920162318.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\hari raya 2009\21-09-2009\20090920163333.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\hari raya 2009\21-09-2009\20090920164721.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\hari raya 2009\21-09-2009\20090920165203.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\hari raya 2009\21-09-2009\20090920171220.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\hari raya 2009\21-09-2009\20090920173243.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\hari raya 2009\21-09-2009\20090920173419.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\hari raya 2009\21-09-2009\20090920173653.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\hari raya 2009\21-09-2009\20090920173842.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\hari raya 2009\21-09-2009\20090920174023.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\hari raya 2009\21-09-2009\20090920183811.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\hari raya 2009\21-09-2009\20090920184141.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\hari raya 2009\21-09-2009\20090920184211.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\hari raya 2009\21-09-2009\20090920184342.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\hari raya 2009\21-09-2009\20090920191922.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\hari raya 2009\21-09-2009(1)\20090920114215.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\hari raya 2009\21-09-2009(1)\20090920114248.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\hari raya 2009\21-09-2009(1)\20090920114306.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\hari raya 2009\21-09-2009(1)\20090920114314.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\hari raya 2009\21-09-2009(1)\20090920114337.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\hari raya 2009\21-09-2009(1)\20090920114352.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\hari raya 2009\21-09-2009(1)\20090920114420.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\hari raya 2009\21-09-2009(1)\20090920114501.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\hari raya 2009\21-09-2009(1)\20090920114513.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\hari raya 2009\21-09-2009(1)\20090920114531.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\hari raya 2009\21-09-2009(1)\20090920115101.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\hari raya 2009\21-09-2009(1)\20090920120417.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\hari raya 2009\21-09-2009(1)\20090920121047.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\hari raya 2009\21-09-2009(1)\20090920121116.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\hari raya 2009\21-09-2009(1)\20090920121132.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\hari raya 2009\21-09-2009(1)\20090920153905.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\hari raya 2009\21-09-2009(1)\20090920153923.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\Gigi - Ya ya ya.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\Desktop\try.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\My Documents\Downloads\OneClickMoviez.Com-KillerBeanForever.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\My Documents\Google Talk Received Files\Photos from DGCAM\MVI_0760.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\My Documents\Google Talk Received Files\Photos from DGCAM\MVI_0762.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\My Documents\Google Talk Received Files\Photos from DGCAM\MVI_0779.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Documents and Settings\User\My Documents\Google Talk Received Files\Photos from DGCAM\MVI_0787.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Adobe\Adobe Photoshop CS3\MATLAB\demos\psintrowalk.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Adobe\Adobe Photoshop CS3\Samples\CheeziPuffs.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Cheat Engine\dbk32.sys probably a variant of Win32/Genetik trojan (cleaned by deleting - quarantined) 6360AB8304A7B4948D6BE43BDE3F41C2 C
C:\Program Files\DC++\Downloads\Hand Sex.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Icons\double-sphere.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Icons\double-sphere2.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Icons\Dual.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Icons\Extended.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Icons\single-sphere.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Icons\Single.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\My Documents\My Videos\Bangbros_-SiTi_Nurhaliza avi.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\My Documents\My Videos\Bok3p AbiSss.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\My Documents\My Videos\Lokal Vs Bule 3gp.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\My Documents\My Videos\MeMek~Mungil.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\My Documents\My Videos\SeX NgenTot sama Kuda !!!.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\My Documents\My Videos\sMu_5 NgSexs.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\My Documents\My Videos\Video Hardcore SeX avi.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero ScratchBox\Loops\Loop1.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero ScratchBox\Loops\Loop2.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero ScratchBox\Loops\Loop3.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero ScratchBox\Loops\Loop4.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero ScratchBox\Loops\Loop5.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero ScratchBox\Loops\Loop6.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero ScratchBox\Samples\Sample1.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero ScratchBox\Samples\Sample2.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero ScratchBox\Samples\Sample3.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero ScratchBox\Samples\Sample4.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero ScratchBox\Samples\Sample5.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero ScratchBox\Samples\Sample6.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\808\808CYM01.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\808\808HHO03.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\808\808KICK09.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\808\808SD01.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\808\808SD13.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\808\808TOM01.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\808\808TOM07.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\808\808TOM15.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Acoustic\ACO_HHCL02.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Acoustic\ACO_KICK03.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Acoustic\ACO_RIDE01.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Acoustic\ACO_SNARE01.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Acoustic\ACO_SNARE06.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Acoustic\ACO_Tom7_Hi.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Acoustic\ACO_Tom7_Lo.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Acoustic\ACO_Tom7_Mi.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Funk\FUNK_CYM03.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Funk\FUNK_KICK11.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Funk\FUNK_SNAP01.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Funk\FUNK_SNARE01.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Funk\FUNK_SNARE04.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Funk\FUNK_TAMB01.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Funk\FUNK_TOM02.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Funk\FUNK_TOM03.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Hiphop\HHP_CLAP02.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Hiphop\HHP_HAT05.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Hiphop\HHP_HAT17.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Hiphop\HHP_KICK03.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Hiphop\HHP_RIM02.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Hiphop\HHP_SNARE07.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Hiphop\HHP_SNARE16.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Hiphop\HHP_TOM03.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\House\HSE_HAT13.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\House\HSE_HAT14.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\House\HSE_KICK02.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\House\HSE_PERC01.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\House\HSE_PERC06.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\House\HSE_RIM02.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\House\HSE_SNARE02.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\House\HSE_SNARE20.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Industrial\IN_CLICK02.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Industrial\IN_HAT07.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Industrial\IN_KICK18.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Industrial\IN_PERC02.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Industrial\IN_PERC06.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Industrial\IN_PERC09.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Industrial\IN_SNARE23.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Industrial\IN_SNARE24.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Jazz\JZ_CYM09.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Jazz\JZ_HAT02.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Jazz\JZ_KICK05.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Jazz\JZ_PERC02.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Jazz\JZ_PERC03.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Jazz\JZ_PERC04.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Jazz\JZ_SNARE01.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Jazz\JZ_SNARE06.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Jazz\JZ_TOM01.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Jazz\JZ_TOM02.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Jazz\JZ_TOM04.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Rock\ROC_CYMB04.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Rock\ROC_HAT02.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Rock\ROC_KICK02.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Rock\ROC_SNARE03.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Rock\ROC_SNARE04.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Rock\ROC_TOM04.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Rock\ROC_TOM05.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Rock\ROC_TOM09.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Synth\SYN_CYM08.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Synth\SYN_FX04.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Synth\SYN_FX10.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Synth\SYN_FX16.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Synth\SYN_HAT01.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Synth\SYN_KICK03.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Synth\SYN_PERC01.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Synth\SYN_SNARE01.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Synth\SYN_SNARE03.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Synth\SYN_TOM07.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Synth\SYN_TOM08.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Techno\PWR_HAT05.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Techno\SYN_FX04.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Techno\TEC_CLAP04.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Techno\TEC_HAT13.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Techno\TEC_KICK02.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Techno\TEC_PERC01.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Techno\TEC_PERC02.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Techno\TEC_SNARE06.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Concert\Concert_1.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Concert\Concert_2.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Concert\Concert_3.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Concert\Concert_4.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Farm\Farm_1.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Farm\Farm_2.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Farm\Farm_3.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Farm\Farm_4.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Farm\Farm_5.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Farm\Farm_6.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Horror\Horror_1.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Horror\Horror_2.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Horror\Horror_3.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Horror\Horror_4.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Jungle\Jungle_1.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Jungle\Jungle_2.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Jungle\Jungle_3.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Jungle\Jungle_4.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Jungle\Jungle_5.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Jungle\Jungle_6.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Jungle\Jungle_7.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Jungle\Jungle_8.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Jungle\Jungle_9.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Office\Office_1.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Office\Office_2.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Office\Office_3.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Office\Office_4.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Party\Party_1.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Party\Party_2.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Party\Party_3.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Party\Party_4.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Sequencer\bass.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Sequencer\flute.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Sequencer\GrandPiano.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Sequencer\guitar.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Sequencer\Sax.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Stadion\Stadion_1.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Stadion\Stadion_2.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Stadion\Stadion_3.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Stadion\Stadion_4.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Stadion\Stadion_5.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Traffic\Traffic_1.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Traffic\Traffic_2.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Traffic\Traffic_3.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Traffic\Traffic_4.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Vehicles\Vehicles_1.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Vehicles\Vehicles_2.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Vehicles\Vehicles_3.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Vehicles\Vehicles_4.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Weather\Weather_1.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Weather\Weather_2.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Weather\Weather_3.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Weather\Weather_4.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero Vision\3DAnimations\Menus\4_3\Cube\cube.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero Vision\3DAnimations\Menus\4_3\Cube\cube_intro.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero Vision\3DAnimations\Menus\4_3\Cube\cube_menu_to_menu.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero Vision\3DAnimations\Menus\4_3\Cube\cube_menu_to_menu_rev.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero Vision\3DAnimations\Menus\4_3\Cube\cube_menu_to_sub.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero Vision\3DAnimations\Menus\4_3\Cube\cube_menu_to_sub_rev.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero Vision\3DAnimations\Menus\4_3\Cube\cube_title.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero Vision\3DAnimations\Menus\4_3\Cube\cube_title_rev.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\Nero\Nero 7\Nero Vision\Video\Black.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\QuickTime\Sample.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\trend micro\HijackThis\backups\backup-20091001-084629-898.dll a variant of Win32/Kryptik.AQZ trojan (cleaned by deleting - quarantined) 897A2C63970C56B39294E1D025AD82CC C
C:\Program Files\TuneUp Utilities 2008\Data\cpuscan.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\TuneUp Utilities 2008\Data\FileSearch.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\TuneUp Utilities 2008\Data\serverdownload.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\TuneUp Utilities 2008\Data\shredder.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Program Files\TuneUp Utilities 2008\Data\update.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Qoobox\Quarantine\C\WINDOWS\msa.exe.vir a variant of Win32/Kryptik.APQ trojan (cleaned by deleting - quarantined) 6D6D5AE64CACAB308CC5B3A534A6D3D6 C
C:\Qoobox\Quarantine\C\WINDOWS\msb.exe.vir a variant of Win32/Kryptik.APQ trojan (cleaned by deleting - quarantined) B12BB0D45AE158225AC69DCD93484DF4 C
C:\RECYCLER\S-2-35-91-1935983697-21235429265-18132174531-12132143-3243252-231-9890741\ApWrTZ.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\RECYCLER\S-2-35-91-1935983697-21235429265-18132174531-12132143-3243252-231-9890741\ffdshow.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Temp\AAR - Gives you hell.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Temp\How To Be The Perfect Boyfriend.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\Temp\This is Kaamatan.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\WINDOWS\Help\Tours\WindowsMediaPlayer\Video\copycd.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting - quarantined) 3B08C5AB895C567AB65832D1415B536F C
C:\WINDOWS\Help\Tours\WindowsMediaPlayer\Video\mdlib.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
C:\WINDOWS\Help\Tours\WindowsMediaPlayer\Video\nuskin.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
C:\WINDOWS\Help\Tours\WindowsMediaPlayer\Video\rtuner.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
C:\WINDOWS\Help\Tours\WindowsMediaPlayer\Video\viz.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
C:\WINDOWS\system32\oobe\images\intro.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
C:\WINDOWS\clock.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
C:\bdguictl.dll.vcd probably a variant of Win32/Patched.NAE virus (deleted - quarantined) 2957E80040B05E9DE68A174105E4AAC7 C
C:\bdsubmit.dll.vcd probably a variant of Win32/Patched.NAE virus (deleted - quarantined) E22274EF016E01BBAF702048F2BC7DF0 C
C:\bdsubwiz.exe.vcd probably a variant of Win32/Patched.NAE virus (deleted - quarantined) 05B9ABFE4DE5CFC30CA4A5AED68E9370 C
C:\bdutils.dll.vcd probably a variant of Win32/Patched.NAE virus (deleted - quarantined) 8062CA6E4412ED267AF4AB9B7CB97851 C
C:\npcomm.dll.vcd probably a variant of Win32/Patched.NAE virus (deleted - quarantined) 1C32C3272A3A7EF417B2209F1C35B0D5 C
C:\txmlutil.dll.vcd probably a variant of Win32/Patched.NAE virus (deleted - quarantined) 034469AAE72286F700B95AE9C47441F6 C
C:\txmlx.dll.vcd probably a variant of Win32/Patched.NAE virus (deleted - quarantined) 95F8E409E728E85D01858B8FEE772680 C
C:\upgrepl.exe.vcd probably a variant of Win32/Patched.NAE virus (deleted - quarantined) 04F295031BF834C3015E7AF564DBCB8C C
D:\Desktop\Britney - Womanizer.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\Desktop\GMB - Tiba Saatnya.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\Desktop\This is Kaamatan.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\Desktop\womanizer.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\I N S T - E S S E N T I A L S\RTR\RTR\stb_installer.exe a variant of Win32/Adware.DoubleD.AB application (cleaned by deleting - quarantined) 64B287D2584D0F30267EE4C7BB544895 C
D:\I N S T - E S S E N T I A L S\YouTube Downloader\Gears.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\I N S T - E S S E N T I A L S\CheatEngine54.exe probably a variant of Win32/Genetik trojan (deleted - quarantined) DBBB3CE2F5A2126DD9D20A32FA7E5310 C
D:\Indo Top Musik Klip\8 Hari Seminggu-Syuga.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\Indo Top Musik Klip\Agnes Monica - Matahariku.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\Indo Top Musik Klip\AKU MILIKMU - DEWA.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\Indo Top Musik Klip\D'MASIV-Cinta Sampai Disini (Super HD Video Clip).exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\Indo Top Musik Klip\Dewa 19 - Kamulah Satu-Satunya.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\Indo Top Musik Klip\Dewi Dewi - Dokter Cinta.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\Indo Top Musik Klip\DEWI LESTARI - MALAIKAT JUGA TAHU (VIDEO MUSIK).exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\Indo Top Musik Klip\Dunia Terlupa - Peterpan.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\Indo Top Musik Klip\FIVE MINUTE salah apa.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\Indo Top Musik Klip\Hits - Peterpan medley with St.12.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\Indo Top Musik Klip\Kisah Cintaku - Peterpan feat. Bunga Citra Lestari.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\Indo Top Musik Klip\Kisah Kasih Di Sekolah.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\Indo Top Musik Klip\Laskar Pelangi - Nidji.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\Indo Top Musik Klip\Letto - Permintaan Hati.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\Indo Top Musik Klip\letto - sebelum cahaya.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\Indo Top Musik Klip\Lucky Laki - Supermanx.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\Indo Top Musik Klip\Melly Goeslaw & Eric - Ada Apa Dengan Cinta.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\Indo Top Musik Klip\Nidji - Shadow.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\Indo Top Musik Klip\Oh Baby - Cinta Laura.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\Indo Top Musik Klip\Peterpan - Di Balik Awan.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\Indo Top Musik Klip\Peterpan - Jauh Mimpiku.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\Indo Top Musik Klip\Peterpan - Khayalan Tingkat Tinggi ft. Charly `ST.12.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\Indo Top Musik Klip\Peterpan - Kisah Cinta ku.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\Indo Top Musik Klip\Peterpan - Menunggu Pagi.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\Indo Top Musik Klip\PETERPAN - Walau Habis Terang ( VIDEO CLIP ).exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\Indo Top Musik Klip\Peterpan Kisah Cintaku VideoClip.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\Indo Top Musik Klip\Peterpan-Menghapus Jejakmu versi KaraOke.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\Indo Top Musik Klip\puspa - st.12 featuring Ariel `peterpan on Hits.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\Indo Top Musik Klip\Radja - aku ada karena kau ada.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\Indo Top Musik Klip\Rossa - Ayat-ayat Cinta.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\Indo Top Musik Klip\Samsons - Luluh (HIGH QUALITY - Better Audio).exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\Indo Top Musik Klip\Satu Hati - Dewa19.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\Indo Top Musik Klip\SLANK DANCE.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\Indo Top Musik Klip\ST 12 - Jangan Pernah Berubah.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\Indo Top Musik Klip\Tercipta Untukmu -- Unggu.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\Indo Top Musik Klip\The Lucky Laki - Superman (Super Video HQ).exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\Indo Top Musik Klip\The Lucky Laki - Superman.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\Indo Top Musik Klip\The Titans - Jangan Sakiti.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\Indo Top Musik Klip\THE TITANS - Rasa ini.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\Indo Top Musik Klip\the titans-seandainya.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\Indo Top Musik Klip\Titi DJ - Separuh Hidupku.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\Indo Top Musik Klip\vDewa19 - Aku Milikmu (Original Clip).exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\M Y - M O V I E S\9.XviD.Cam-Fatal.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\M Y - M O V I E S\All.About.The.Benjamins[2002]DVDRip-MP3.ENG.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\M Y - M O V I E S\Away.We.Go.2009.480p.BRRip.XviD.AC3-WHiiZz.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\M Y - M O V I E S\Black.Snake.Moan.DVDRip.XviD-DiAMOND.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\M Y - M O V I E S\Blood.The.Last.Vampire.DVDRip.XviD-BiFOS.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\M Y - M O V I E S\Dead.Snow.2009.DVDRip.XviD-LAP.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\M Y - M O V I E S\Good.2008.LiMiTED.WS.DVDRiP.XviD-DiVERSE.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\M Y - M O V I E S\Invitation.Only.2009.DVDRip.XviD-!!!!!!.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\M Y - M O V I E S\Lie.With.Me.2005.PROPER.DVDRip-ESPiSE.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\M Y - M O V I E S\Lymelife.2008.LIMITED.DVDRip.XviD-AMIABLE.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\M Y - M O V I E S\Madea Goes To Jail TS XVID-PrisM.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\M Y - M O V I E S\Next.Day.Air.DVDRip.XviD-DiAMOND.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\M Y - M O V I E S\Not.Forgotten.2009.LIMITED.DVDRip.XviD-BeStDivX.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\M Y - M O V I E S\Observe.And.Report.DVDRip.XviD-DiAMOND.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\M Y - M O V I E S\Ponyo.On.the.Cliff.ENG.DUBBED.DVDRip.Mic.XviD-DEViSE.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\M Y - M O V I E S\Roving.Mars.LIMITED.DVDrip.XVID-ALLiANCE.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\M Y - M O V I E S\Shinjuku.Incident.2009.DUBBED.DVDRiP.XviD-DvF.PART1.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\M Y - M O V I E S\Shinjuku.Incident.2009.DUBBED.DVDRiP.XviD-DvF.PART2.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\M Y - M O V I E S\Smash.Cut.DVDRip.XviD-DiVERSE.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\M Y - M O V I E S\Supernatural.S05E01.Sympathy.for.the.Devil.HDTV.XviD-FQM.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\M Y - M O V I E S\The.Brothers.Bloom.HDTVRip.XviD-DEViSE.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\M Y - M O V I E S\The.Kind.City.DVDRIP.XVID–STG.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\M Y - M O V I E S\The.Last.House.On.The.Left.UNRATED.DVDRip.XviD-DASH CD1.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\M Y - M O V I E S\The.thin.red.line.1998.DVDRip.Xvid.Hibees1875.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\M Y - M O V I E S\Walk.Hard.The.Dewey.Cox.Story.DC.DVDRip.XviD-DiAMOND.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\M Y - V I D E O S\Band Jamen - Eupho Prelim\9th.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\M Y - V I D E O S\Band Jamen - Eupho Prelim\Band Jamen - Eupho Prelim.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\M Y - V I D E O S\Band Jamen - Eupho Prelim\Band Jamen live in euphonious 2008[an punye]HandyCam version in process.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\M Y - V I D E O S\Blink Review - New Album 2009\Blink 182 demo song from NEW ALBUM SUMMER 2009.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\M Y - V I D E O S\Blink Review - New Album 2009\Blink 182 Summer 2009.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\M Y - V I D E O S\Blink Review - New Album 2009\BLINK 182 TRAVIS BARKER BADLY BURNED AND ALMOST KILLED IN PLANE CRASH.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\M Y - V I D E O S\Blink Review - New Album 2009\New Demos - blink-182 (New Album 2009).exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\M Y - V I D E O S\Blink Review - New Album 2009\The Macarena - NEW LEAKED SONG!!!.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\M Y - V I D E O S\Blink Review - New Album 2009\tom delonge - new riff.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\M Y - V I D E O S\Dusun Online Imeem.com\Justin Lusah - Joget Tambunan.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\M Y - V I D E O S\Dusun Online Imeem.com\Justin Lusah - Kosusaan Id Piginawaan.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\M Y - V I D E O S\Dusun Online Imeem.com\Justin Lusah - Mantad Timpun Nokopiruba.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\Movie Editing\Keyem.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\Movie Editing\Milah Intro.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\Movie Editing\Petronella Suan - Insan Tadau Kopiruba Wagu.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\Movie Editing\This is Kaamatan.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\New - Aug.7.09\Aug 10, 09\48214cf341682.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\New - Aug.7.09\ok\080801ex6022_01.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\New - Aug.7.09\ok\080810ero6917_02.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\New - Aug.7.09\ok\081013san6762_01.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\New - Aug.7.09\ok\081013san6762_02.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\New - Aug.7.09\ok\081024san5434_01.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\New - Aug.7.09\ok\081024san5434_02.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\New - Aug.7.09\ok\090505san7435_003.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\New - Aug.7.09\ok\090505san7435_01.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\New - Aug.7.09\ok\090505san7435_02.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\New - Aug.7.09\ok\090706xxx5518_01.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\New - Aug.7.09\ok\090706xxx5518_02.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\New - Aug.7.09\ok\090706xxx5518_03.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\New - Aug.7.09\ok\090711kag2501_01.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\New - Aug.7.09\ok\090711kag2501_02.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\New - Aug.7.09\ok\090711kag2501_03.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\New - Aug.7.09\ok\090730xxx6482_01.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\New - Aug.7.09\ok\090730xxx6482_02.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\New - Aug.7.09\ok\090730xxx6482_03.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
D:\New - Aug.7.09\Waa\080222ex5188_01.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\New Movie[2009] Gade\The Number 23 Unrated Edition\The Number 23 Unrated Edition (kiwikool_team).exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\New Movie[2009] Gade\Across.the.Hall.2009.DVDRip.XviD-BeStDivX.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\New Movie[2009] Gade\Against.the.Dark(2009)DvdScr[MiNdSkiN].exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\New Movie[2009] Gade\Aliens.In.The.Attic.R5.LiNE.XviD-DEViSE.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\New Movie[2009] Gade\Anti.Christ.DVDRip.XViD.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\New Movie[2009] Gade\Banlieue.13.Ultimatum.2009.480p.BRRip.XviD.AC3-ViSiON.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\New Movie[2009] Gade\Bionicle.The.Legend.Reborn.2009.STV.DVDRip.XviD-LAP.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\New Movie[2009] Gade\Blood.And.Bone.2009.DVDRip.XviD-DOMiNO.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\New Movie[2009] Gade\Bring.It.On.Fight.To.The.Finish.2009.DvdRip.Xvid-Noir.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\New Movie[2009] Gade\Dance.Flick.UNRATED.BDRip.XviD-NeDiVx.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\New Movie[2009] Gade\Death.In.Love.PPV.XviD-DEViSE.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\New Movie[2009] Gade\District.9.TS.V2.Xvid.EnG.SUBsLynks.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\New Movie[2009] Gade\Driven.To.Kill.2009.BRRip.XviD.AC3-ViSiON.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\New Movie[2009] Gade\Fire.Down.Below.DVDRip.XviD-iMBT.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\New Movie[2009] Gade\G-Force.2009.CAM.XVID-PrisM.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\New Movie[2009] Gade\Green.Street.Hooligans.2.UNRATED.DVDRip.XviD-HNR.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\New Movie[2009] Gade\Grindhouse-Death Proof[2007][Unrated.Edition]DvDrip-aXXo.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\New Movie[2009] Gade\Halo.Wars.2009.DVDRip.XviD-ViSiON.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\New Movie[2009] Gade\High.Noon.2009.DVDRip.XviD-VH-PROD.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\New Movie[2009] Gade\Hot.Shots.Part.Deux.1993.INTERNAL.DVDRip.XviD-LnR.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\New Movie[2009] Gade\How She Move [2008] [English].exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\New Movie[2009] Gade\I.Sell.The.Dead.REPACK.PPV.XviD-DEViSE.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\New Movie[2009] Gade\Killer.Bean.Forever[2009]DvDrip-NoScene.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\New Movie[2009] Gade\Rules_of_Dating.[d0t].exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\New Movie[2009] Gade\Sauna.2008.DVDRip.XviD-DOMiNO.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\New Movie[2009] Gade\See You After School.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\New Movie[2009] Gade\sex_is_zero.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\New Movie[2009] Gade\The.!!!!ed.United.2009.DVDRip.XviD-wobferry.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\New Movie[2009] Gade\The.Final.Destination.TS.XviD-DEViSE.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\New Movie[2009] Gade\The.Hurt.Locker.2008.BRRip.XviD.AC3-BMB.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\New Movie[2009] Gade\The.Night.Listener.DVDRip.XviD-DiAMOND.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\New Movie[2009] Gade\Up.SCREENER.XviD-ROAR.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Chuck\chuck season 1\Chuck 101 - Pilot.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Chuck\chuck season 1\Chuck 102 - Chuck Versus the Helicopter.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Chuck\chuck season 1\Chuck 103 - Chuck Versus the Tango.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Chuck\chuck season 1\Chuck 104 - Chuck Versus the Wookie.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Chuck\chuck season 1\Chuck 105 - Chuck Versus the Sizzling Shrimp.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Chuck\chuck season 1\Chuck 106 - Chuck Versus the Sandworm.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Chuck\chuck season 1\Chuck 107 - Chuck Versus the Alma Mater.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Chuck\chuck season 1\Chuck 108 - Chuck Versus the Truth.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Chuck\chuck season 1\Chuck 109 - Chuck Versus the Imported Hard Salami.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Chuck\chuck season 1\Chuck 110 - Chuck Versus the Nemesis.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Chuck\chuck season 1\Chuck 111 - Chuck Versus the Crown Vic.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Chuck\chuck season 1\Chuck 112 - Chuck Versus the Undercover Lover.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Chuck\chuck season 1\Chuck 113 - Chuck Versus the Marlin.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Chuck\chuck season 2\Chuck - 2x16 - Chuck Versus the Lethal Weapon.HDTV.XOR.en.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Chuck\chuck season 2\Chuck - 2x21 - Chuck Versus the Colonel.HDTV.DIRFIX-2HD.en.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Chuck\chuck season 2\Chuck - 2x22 - Chuck vs. the Ring.HDTV.NoTV.en.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Chuck\chuck season 2\Chuck 201.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Chuck\chuck season 2\Chuck 202 - Chuck Versus The Seduction.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Chuck\chuck season 2\Chuck 205.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Chuck\chuck season 2\Chuck 206.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Chuck\chuck season 2\Chuck 207 - Chuck In Real Life.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Chuck\chuck season 2\Chuck 208 - Chuck Versus the Gravitron.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Chuck\chuck season 2\Chuck 210 Chuck Versus the DeLorean.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Chuck\chuck season 2\Chuck 211 - Chuck Versus Santa Claus.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Chuck\chuck season 2\Chuck 212.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Chuck\chuck season 2\Chuck 213.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Chuck\chuck season 2\Chuck 214.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Chuck\chuck season 2\Chuck 215.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Chuck\chuck season 2\chuck.0218.xvid-notv.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Chuck\chuck season 2\chuck.0220.hdtv.xvid-notv.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Chuck\chuck season 2\chuck.203.hdtv-lol.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Chuck\chuck season 2\chuck.204.hdtv-lol.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Chuck\chuck season 2\chuck.209.hdtv-lol.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Chuck\chuck season 2\chuck.219.hdtv-0tv.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Chuck\chuck season 2\Chuck.s02e17.hdtv.xvid-notv.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\chuck season 2\Chuck - 2x16 - Chuck Versus the Lethal Weapon.HDTV.XOR.en.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\chuck season 2\Chuck - 2x21 - Chuck Versus the Colonel.HDTV.DIRFIX-2HD.en.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\chuck season 2\Chuck - 2x22 - Chuck vs. the Ring.HDTV.NoTV.en.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\chuck season 2\Chuck 201.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\chuck season 2\Chuck 202 - Chuck Versus The Seduction.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\chuck season 2\Chuck 205.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\chuck season 2\Chuck 206.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\chuck season 2\Chuck 207 - Chuck In Real Life.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\chuck season 2\Chuck 208 - Chuck Versus the Gravitron.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\chuck season 2\Chuck 210 Chuck Versus the DeLorean.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\chuck season 2\Chuck 211 - Chuck Versus Santa Claus.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\chuck season 2\Chuck 212.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\chuck season 2\Chuck 213.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\chuck season 2\Chuck 214.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\chuck season 2\Chuck 215.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\chuck season 2\chuck.0218.xvid-notv.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\chuck season 2\chuck.0220.hdtv.xvid-notv.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\chuck season 2\chuck.203.hdtv-lol.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\chuck season 2\chuck.204.hdtv-lol.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\chuck season 2\chuck.209.hdtv-lol.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\chuck season 2\chuck.219.hdtv-0tv.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\chuck season 2\Chuck.s02e17.hdtv.xvid-notv.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Dirty Sex Money\Dirty Sexy Money - 1x02 - The Lions.en.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Dirty Sex Money\Dirty Sexy Money - 1x03 - The Italian Banker.en.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Dirty Sex Money\Dirty Sexy Money - 1x04 - The Chiavennasca.en.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Dirty Sex Money\Dirty Sexy Money - 1x05 - The Bridge.en.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Dirty Sex Money\Dirty Sexy Money 6 - The Game.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Dirty Sex Money\Dirty Sexy Money 7 - The Wedding.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Dirty Sex Money\Dirty.Sexy.Money.108.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Dirty Sex Money\Dirty.Sexy.Money.109.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Dirty Sex Money\Dirty.Sexy.Money.110 - The Nutcracker.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\FG\Season 6\Episode 14.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\FG\Season 6\Episode 15.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\FG\Season 6\Episode 16.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\FG\Season 6\Episode 17.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\FG\Season 6\Episode 18.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\FG\Season 6\Family Guy - 6x02 - Movin' Out (Brian's Song).XOR.en.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\FG\Season 6\Family Guy 06x03 - Believe It or Not, Joe's Walking on Air.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\FG\Season 6\Family Guy 602.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\FG\Season 6\family guy 618.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\FG\Season 6\Family Guy 6x10 - Play It Again, Brian.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\FG\Season 6\Family.Guy.S06.Special.100th.Episode.PDTV.XviD-LOL.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\FG\Season 6\Family.Guy.S06E03.PDTV.XviD-XOR.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\FG\Season 6\Family.Guy.S06E05.REPACK.PDTV.XviD-XOR.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\FG\Season 6\Family.Guy.S06E06.PDTV.XviD-LOL.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\FG\Season 6\Family.Guy.S06E07.PDTV.XviD-XOR.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\FG\Season 6\Family.Guy.S06E08.PDTV.XviD-0TV.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\FG\Season 7\Family Guy 701.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\FG\Season 7\Family Guy 702.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\FG\Season 7\Family Guy 703.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\FG\Season 7\Family Guy 704.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\FG\Season 7\Family Guy 705.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\FG\Season 7\Family Guy 706.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\FG\Season 7\Family Guy 707.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\FG\Season 7\Family Guy 710.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\FG\Season 7\Family Guy 711.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\FG\Season 7\family.guy.708.pdtv-lol.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\FG\Season 7\family.guy.715.pdtv-lol[mikeibrahim].exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\FG\Season 7\family.guy.716.pdtv-lol.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\FG\Season 7\family.guy.s07e12.pdtv.xvid-fqm.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\FG\Season 7\Family.Guy.S07E13.PDTV.XviD-LOL_IRFree.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\FG\Family.Guy.Creating.The.Chaos.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\FG\Family.Guy.The.Story.So.Far.WS.PDTV.XviD-aAF.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Fringe\Fringe 101 - Pilot.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Fringe\Fringe 102 - The Same Old Story.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Fringe\Fringe 103 - The Ghost Network.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Fringe\Fringe 104 - The Arrival.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Fringe\Fringe 105 - Power Hungry.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Fringe\Fringe 106 - The Cure.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Fringe\Fringe 107 - In Which We Meet Mr. Jone.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Fringe\Fringe 108 - The Equation.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Fringe\Fringe 109 - Dreamscape.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Fringe\Fringe 110 - Safe.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Fringe\Fringe 111 - Bound.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Fringe\Fringe 112 - The No-Brainer.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Fringe\Fringe 113 - The Transformation.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Fringe\Fringe 114 - Ability.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Fringe\Fringe 115- Inner Child.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Fringe\Fringe 116 - Unleashed.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Fringe\Fringe 117 - Bad Dreams.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\heroes\Heroes Season 3\Heroes 301.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\heroes\Heroes Season 3\Heroes 302.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\heroes\Heroes Season 3\Heroes 303 - One of Us, One of Them.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\heroes\Heroes Season 3\Heroes S03E04.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\heroes\Heroes Season 3\Heroes S03E05.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\heroes\Heroes Season 3\Heroes S03E06.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\heroes\Heroes Season 3\Heroes S03E07.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\heroes\Heroes Season 3\Heroes S03E08.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\heroes\Heroes Season 3\heroes S03E09.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\heroes\Heroes Season 3\Heroes S03E10.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\heroes\Heroes Season 3\Heroes S03E11.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\heroes\Heroes Season 3\Heroes S03E12.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\heroes\Heroes Season 3\Heroes S03E13.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\heroes\season 1\Heroes 101 - Genesis.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\heroes\season 1\Heroes 102 - Don't Look Back.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\heroes\season 1\Heroes 103 - One Giant Leap.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\heroes\season 1\Heroes 104 - Collision.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\heroes\season 1\Heroes 105.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\heroes\season 1\Heroes 106 - Better Halves.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\heroes\season 1\Heroes 107.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\heroes\season 1\Heroes 108 - Seven Minutes To Midnight[Aiver_Clan].exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\heroes\season 1\Heroes 109.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\heroes\season 1\Heroes 110 - Six Months Ago.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\heroes\season 1\Heroes 111.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\heroes\season 1\Heroes 112.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\heroes\season 1\Heroes 113 - The Fix.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\heroes\season 1\Heroes 114.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\heroes\season 1\heroes 115 [kiwikoolteam].exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\heroes\season 1\heroes 116.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\heroes\season 1\heroes 117.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\heroes\season 1\Heroes 120 - String Theory.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\heroes\season 1\heroes.118.hdtv-lol.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\heroes\season 1\heroes.119.hdtv-lol.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\heroes\season 1\heroes.121.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\heroes\season 1\heroes.122.hdtv-lol.It4Ch1.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\heroes\season 1\heroes.123.hdtv-lol.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\heroes\season 2\Heroes 201 - Four Months Later.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\heroes\season 2\Heroes 204 - The Kindness of Strangers[abeyious].exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\heroes\season 2\Heroes 205 - Fight or Flight.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\heroes\season 2\Heroes 208 - Four Months Ago.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\heroes\season 2\Heroes s02e02.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\heroes\season 2\Heroes S203 - Kindred.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\heroes\season 2\heroes.209.hdtv-lol.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\heroes\season 2\heroes.210.hdtv-lol.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\heroes\season 2\heroes.211.hdtv-lol.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\heroes\season 2\Heroes.S02E06.The.Line.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\heroes\season 2\Heroes.S02E07 - Out of Time.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\heroes\Season 4\Heroes 320.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\heroes\Season 4\Heroes 321.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\heroes\Season 4\heroes 322.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\heroes\Season 4\Heroes S04E01.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\heroes\Season 4\Heroes S04E02.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\heroes\Season 4\Heroes S04E03.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\heroes\Season 4\Heroes S04E04.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\heroes\Season 4\Heroes S04E05.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\heroes\Season 4\Heroes S04E06.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\heroes\Season 4\Heroes.S03E23.HDTV.XviD-LOL.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\House\Season 5\House 501.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\House\Season 5\House 502.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\House\Season 5\House 503.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\House\Season 5\House 504.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\House\Season 5\House 505.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\House\Season 5\House 506.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\House\Season 5\House 507.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\House\Season 5\House 508.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\House\Season 5\House 509.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\House\Season 5\House 510.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\House\Season 5\House 511.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\House\Season 5\House 512.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\House\Season 5\House 513.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\House\Season 5\House 514.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\House\Season 5\House 515.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\House\Season 5\House 516.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\House\Season 5\House 517.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 1\Lost 101 (Pilot Part 1).exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 1\Lost 102 (Pilot Part 2).exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 1\Lost 103 (Tabula Rasa).exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 1\Lost 104 (Walkabout).exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 1\Lost 105 (White Rabbit).exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 1\Lost 106 (House of the Rising Sun).exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 1\Lost 107 (The Moth).exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 1\Lost 108 (Confidence Man).exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 1\Lost 109 (Solitary).exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 1\Lost 110 (Raised by Another).exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 1\Lost 111 (All the Best Cowboys Have Daddy Issues).exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 1\Lost 112 (Whatever the Case May Be).exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 1\Lost 113 (Hearts and Minds).exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 1\Lost 114 (Special).exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 1\Lost 115 (Homecoming).exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 1\Lost 116 (Outlaws).exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 1\Lost 117 (... In Translation).exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 1\Lost 118 (Numbers).exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 1\Lost 119 (Deus Ex Machina).exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 1\Lost 120 (Do No Harm).exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 1\Lost 121 (The Greater Good).exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 1\Lost 122 (Born to Run).exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 1\Lost 123 (Exodus Part 1).exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 1\Lost 124 & 125 (Exodus Parts 2 and 3).exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 2\lost 201.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 2\lost 202.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 2\lost 203.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 2\lost 204.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 2\lost 205.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 2\lost 206.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 2\lost 207.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 2\lost 208.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 2\lost 209.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 2\lost 210.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 2\lost 211.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 2\lost 212.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 2\lost 213.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 2\lost 214.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 2\lost 215.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 2\lost 216.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 2\lost 217.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 2\lost 218.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 2\lost 219.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 2\lost 220.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 2\lost 221.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 2\lost 222.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 2\lost 223.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 2\lost 224.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 3\Lost - 303.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 3\Lost 307.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 3\Lost 320.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 3\Lost 321.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 3\Lost 322 - Through The Looking Glass 1.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 3\Lost 323 - Through The Looking Glass 2.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 3\lost.305.hdtv.xvid.-lol[aiver_clan].exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 3\lost.312.hdtv-caph[it4ch1].exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 3\Lost.315.Left.Behind.PROPER.HDTV.XviD-FQM (kiwikool_team).exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 3\lost.316-it4ch1-.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 3\lost.318-caph.[VTV] (kiwikool_team).exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 3\Lost.319.hdtv-xor-It4Ch1-.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 3\lost.3E09.hdtv.xvid-notv (kiwikool_team).exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 3\Lost.S03E01.HDTV.XviD-XOR[gula^gula].exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 3\Lost.S03E02.HDTV.XviD-XOR[Int_13h&aiver_clan].exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 3\Lost.S03E04.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 3\Lost.S03E06.HDTV.XviD-XOR.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 3\Lost.S03E10.HR.HDTV.XviD-CRiMSON (kiwikool_team).exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 3\Lost.S03E11.HDTV.XViD-NoTV (kiwikool_team).exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 3\lost.s03e13.hdtv.xvid-xor[it4ch1].exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 3\Lost.S03E14.HDTV.XViD-Caph (kiwikool_team).exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 3\Lost.S3E08.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 4\Lost 403.HDTV.XviD-XOR [MX].exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 4\Lost 404.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 4\Lost 405 - The Constant.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 4\Lost S04E00 - Past, Present and Future.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 4\Lost S04E01 - The Beginning of the End.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 4\Lost S04E02 - Confirmed Dead [baqbaq_team].exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 4\Lost.4x06.The_Other_Woman.PROPER.HDTV_XviD-FoV.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 4\lost.4x12.theres_no_place_like_home.hdtv_xvid-fov.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 4\Lost.S04E07.HDTV.XViD-DOT with forced subs.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 4\Lost.S04E08 - Meet Kevin Johnson [baqbaq_team].exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 4\Lost.S04E09 - The Shape of Things to Come [peckham].exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 4\Lost.S04E10 - Something Nice Back Home.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 4\lost.s04e11.hdtv.xvid-2hd.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 4\Lost.S04E13-E14.HDTV.XviD-2HD.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 4\Lost.Survival.Guide.PDTV.XviD-TBS(kiwikool_team).exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 5\Lost - 5x07 - The Life and Death of Jeremy Bentham.HDTV.XOR.en.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 5\Lost - 5x08 - LeFleur.HDTV.XOR.en.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 5\Lost - 5x09 - Namaste.HDTV.NoTV.en.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 5\Lost - 5x10 - He's Our You.HDTV.XOR.en.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 5\Lost - 5x11 - Whatever Happened Happened.HDTV.XOR.en.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 5\Lost - 5x12 - Dead is Dead.HDTV.NoTV.en.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 5\Lost - 5x13 - Some Like It Hoth.HDTV.NoTV.en.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 5\Lost - 5x14 - The Variable.HDTV.NoTV.en.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 5\Lost - 5x15 - Follow the Leader.HDTV.NoTV.en.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 5\Lost - 5x16-17 - The Incident (1).HDTV.FQM.en.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 5\lost.s0502.the.lie.hdtv.xvid-2nd.eng.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 5\lost.s05e01.hdtv.xvid.pushercrew.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 5\lost.s05e03.hdtv.xvid-xor (X).exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 5\lost.s05e04.hdtv.xvid-xor.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 5\lost.s05e05.hdtv.xvid.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\Season 5\lost.s05e06.hdtv.xvid-xor.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\L O S T\lost.the.story.of.the.oceanic.six.hdtv.xvid-2hd.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break S4\Prison Break 403 - Shut Down.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break S4\Prison Break 407.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break S4\Prison Break 408.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break S4\Prison Break 409.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break S4\Prison Break 410.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break S4\Prison Break 411.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break S4\Prison Break 412.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break S4\Prison Break 413.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break S4\Prison Break 414.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break S4\Prison Break 415.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break S4\Prison Break 416.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break S4\prison.break.401.hdtv-lol [MX].exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break S4\prison.break.402.hdtv-lol [MX].exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break S4\prison.break.404.hdtv-lol [MX].exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break S4\prison.break.406.hdtv.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break S4\prison.break.409.sneak.peek.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break S4\prison.break.417.repack.hdtv-0tv (x).exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break S4\prison.break.419.hdtv-lol.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break S4\prison.break.s04e05-notv.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break S4\Prison.Break.S04E18.HDTV.XviD-LOL.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break S4\Prison.Break.S04E20.HDTV.XviD-LOL.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break S4\Prison.Break.S04E21.HDTV.XviD-LOL.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break S4\Prison.Break.S04E22.HDTV.XviD-LOL.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break Season 1\Prison Break 101 [29 Aug 05] - Pilot.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break Season 1\Prison Break 102 [29 Aug 05] - Allen.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break Season 1\Prison Break 103 [05 Sep 05] - Cell Test.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break Season 1\Prison Break 104 [12 Sep 05] - Cute Poison.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break Season 1\Prison Break 105 [19 Sep 05] - English, Fitz or Percy.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break Season 1\Prison Break 106 [26 Sep 05] - Riots, Drills and the Devil (1).exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break Season 1\Prison Break 107 [03 Oct 05] - Part 2 (2).exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break Season 1\Prison Break 108 [24 Oct 05] - The Old Head.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break Season 1\Prison Break 109 [31 Oct 05] - Tweener.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break Season 1\Prison Break 110 [07 Nov 05] - Sleight of Hand.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break Season 1\Prison Break 111 [14 Nov 05] - And Then There Were 7.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break Season 1\Prison Break 112 [21 Nov 05] - Odd Man Out.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break Season 1\Prison Break 113 [28 Nov 05] - End of the Tunnel.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break Season 1\Prison Break 114 [20 Mar 06] - The Rat.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break Season 1\Prison Break 115 [27 Mar 06] - By the Skin and the Teeth.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break Season 1\Prison Break 116 [03 Apr 06] - Brother's Keeper.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break Season 1\Prison Break 117 [10 Apr 06] - J-Cat.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break Season 1\Prison Break 118 [17 Apr 06] - Bluff.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break Season 1\Prison Break 119 [24 Apr 06] - The Key.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break Season 1\Prison Break 120 [01 May 06] - Tonight.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break Season 1\Prison Break 121 [08 May 06] - Go.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break Season 1\Prison Break 122 [15 May 06] - Flight.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break Season 1\Prison Break Season 1 Special [11 Oct 05] - Behind the Walls.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break Season 2\Prison Break 201 [21 Aug 06] - Manhunt.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break Season 2\Prison Break 202 [28 Aug 06] - Otis.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break Season 2\Prison Break 203 [04 Sep 06] - Scan.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break Season 2\Prison Break 204 [11 Sep 06] - First Down.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break Season 2\Prison Break 205 [18 Sep 06] - Map 1213.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break Season 2\Prison Break 206 [25 Sep 06] - Subdivision.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break Season 2\Prison Break 207 [02 Oct 06] - Buried.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break Season 2\Prison Break 208 [23 Oct 06] - Dead Fall.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break Season 2\Prison Break 209 [30 Oct 06] - Unearthed.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break Season 2\Prison Break 210 [06 Nov 06] - Rendezvous.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break Season 2\Prison Break 211 [13 Nov 06] - Bolshoi Booze.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break Season 2\Prison Break 212 [20 Nov 06] - Disconnect.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break Season 2\Prison Break 213 [27 Nov 06] - The Killing Box.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break Season 2\Prison Break 214 [22 Jan 07] - John Doe.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break Season 2\Prison Break 215 [29 Jan 07] - The Message.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break Season 2\Prison Break 216 [05 Feb 07] - Chicago.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break Season 2\Prison Break 217 [19 Feb 07] - Bad Blood.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break Season 2\Prison Break 218 [26 Feb 07] - Wash.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break Season 2\Prison Break 219 [05 Mar 07] - Sweet Caroline.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break Season 2\Prison Break 220 [19 Mar 07] - Panama.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break Season 2\Prison Break 221 [26 Mar 07] - Fin Del Camino.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break Season 2\Prison Break 222 [02 Apr 07] - Sona.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break Season 2\prison.break.212.disconnect.CERS.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Prison Break Season 2\prison.break.s02e09[fire_chrome].exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Season 3\Prison Break 301 - Orientación.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Season 3\Prison Break 302 - Fire,Water.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Season 3\Prison Break 303.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Season 3\Prison Break 304 - Good Fences.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Season 3\Prison Break 305.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Season 3\Prison Break 306 - Photo Finish.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Season 3\Prison Break 307.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Season 3\Prison Break 308 - Bang and Burn.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Season 3\Prison Break 309 - Boxed In.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Season 3\Prison Break 310 - Dirt Nap.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Season 3\Prison Break 311.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Season 3\Prison Break 312 - Hell or High Water.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\P R I S O N B R E A K\Season 3\Prison Break 313 - The Art of the Deal.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Pingu\pingu\05_Pingu is jealous.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Pingu\pingu\10_Pingu has music lessons from his grandfather.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Pingu\pingu\14_Pingus first kiss.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Pingu\pingu\15_Pingus family celebrate christmas.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Pingu\pingu\16_Pingus outing.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Pingu\pingu\17_Pingus birthday.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Pingu\pingu\18_Pingu at the fairground.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Pingu\[zero]pingu1.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\Pingu\[zero]pingu2.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural 1\S1E01.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural 1\S1E02 - Wendigo.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural 1\S1E03 - Dead In The Water.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural 1\S1E04 - Phantom Traveler.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural 1\S1E05 - Bloody Mary.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural 1\S1E06 - Skin.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural 1\S1E07 - Hook Man.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural 1\S1E08 - Bugs.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural 1\S1E09 - Home.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural 1\S1E10 - Asylum.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural 1\S1E11 - Scarecrow.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural 1\S1E12 - Faith.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural 1\S1E13 - Route 666.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural 1\S1E14 - Nightmare.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural 1\S1E15 - Benders.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural 1\S1E16 - Shadow.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural 1\S1E17 - Hell House.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural 1\S1E18 - Something Wicked.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural 1\S1E19 - Provenance.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural 1\S1E20 - Dead Man's Blood.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural 1\S1E21 - Salvation.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural 1\S1E22 - Devils Trap.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural S3\Supernatural 301.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural S3\Supernatural 302 The Kids are alright.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural S3\Supernatural 303 Bad day at Black Rock.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural S3\Supernatural 305 - .exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural S3\Supernatural 308 - A very Supernatural Christmas.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural S3\Supernatural 309.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural S3\Supernatural 310 - Dream A Little Dream Of Me.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural S3\Supernatural 311.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural S3\Supernatural 315.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural S3\Supernatural.306.hdtv.xvid-xor.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural S3\Supernatural.307.Fresh Blood [peckham].exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural S3\supernatural.313.hdtv.xvid-hdq.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural S3\Supernatural.S03E04.Sin City [peckham].exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural S3\supernatural.s03e12.hdtv.xvid-notv.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural S3\supernatural.s03e14.hdtv.xvid-xor.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural S3\supernatural.s03e16.hdtv.xvid-fqm.SeriesGringas.Org.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural S4\Supernatural - 4x17 - It's a Terrible Life.HDTV.NoTV.en.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural S4\Supernatural 402 - Are You There God It's Me Dean Winchester.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural S4\Supernatural 403.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural S4\supernatural 404.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural S4\Supernatural 405.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural S4\Supernatural 406.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural S4\supernatural 407.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural S4\Supernatural 408.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural S4\supernatural 409.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural S4\Supernatural 410.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural S4\Supernatural 411.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural S4\supernatural 412.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural S4\Supernatural 413.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural S4\supernatural 414.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural S4\Supernatural.s04e01-notv.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural S4\supernatural.s04e15.hdtv.xvid-fqm.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural S4\supernatural.s04e16.hdtv.xvid-fqm.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural S4\supernatural.s04e18.hdtv.xvid-xor.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural S4\supernatural.s04e19.hdtv.xvid-fqm.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural S4\supernatural.s04e21.hdtv.xvid-fqm.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural S4\supernatural.s04e22.hdtv.xvid-xii.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural Season 2\episode 1.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural Season 2\episode 10.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural Season 2\episode 11.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural Season 2\episode 12.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural Season 2\episode 13.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural Season 2\episode 14.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural Season 2\episode 15.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural Season 2\episode 16.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural Season 2\episode 17.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural Season 2\episode 18.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural Season 2\episode 19.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural Season 2\episode 2.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural Season 2\episode 20.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural Season 2\episode 21.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural Season 2\episode 22.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural Season 2\episode 3.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural Season 2\episode 4.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural Season 2\episode 5.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural Season 2\episode 6.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural Season 2\episode 7.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural Season 2\episode 8.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\S U P E R N A T U R A L\Supernatural Season 2\episode 9.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory\The Big BAng Theory S1\The Big Bang Theory 101 - Pilot.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory\The Big BAng Theory S1\The Big Bang Theory 102 - The big bran hypothesis.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory\The Big BAng Theory S1\The Big Bang Theory 103 - The fuzzy boots collorary.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory\The Big BAng Theory S1\The Big Bang Theory 104 - The luminous fish effect.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory\The Big BAng Theory S1\The Big Bang Theory 105 - The hamburger postulate.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory\The Big BAng Theory S1\The Big Bang Theory 106 - The middle earth paradigm.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory\The Big BAng Theory S1\The Big Bang Theory 107 - The dumpling paradox.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory\The Big BAng Theory S1\The Big Bang Theory 108 - The grasshopper experiment.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory\The Big BAng Theory S1\The Big Bang Theory 109 - The Cooper-Hofstadter polarization.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory\The Big BAng Theory S1\The Big Bang Theory 110 - The Loobenfeld decay.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory\The Big BAng Theory S1\The Big Bang Theory 111 - The pancake batter anomaly.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory\The Big BAng Theory S1\the.big.bang.theory.117.hdtv-lol.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory\The Big BAng Theory S1\the.big.bang.theory.s01e14.hdtv.xvid-xor.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory\The Big BAng Theory S1\The.Big.Bang.Theory.S01E15.The.Shiksa.Indeterminancy.HDTV.XviD-FoV.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory\The Big BAng Theory S1\the.big.bang.theory.s01e16.hdtv.xvid-xor.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory\The Big BAng Theory S1\the_big_bang_theory.1x12.the_jerusalem_duality.hdtv_xvid-fov.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory\The Big BAng Theory S1\the_big_bang_theory.1x13.the_bat_jar_conjecture.hdtv_xvid-fov.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory\The Big Bang Theory S2\The Big Bang Theory 201.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory\The Big Bang Theory S2\The Big Bang Theory 202.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory\The Big Bang Theory S2\The Big Bang Theory 203.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory\The Big Bang Theory S2\The Big Bang Theory 204.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory\The Big Bang Theory S2\The Big Bang Theory 205.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory\The Big Bang Theory S2\The Big Bang Theory 206.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory\The Big Bang Theory S2\the.big.bang.theory.0211.notv.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory\The Big Bang Theory S2\the.big.bang.theory.0213.notv.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory\The Big Bang Theory S2\the.big.bang.theory.222.hdtv-0tv.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory\The Big Bang Theory S2\the.big.bang.theory.s02e10.hdtv.xvid-2hd.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory\The Big Bang Theory S2\the.big.bang.theory.s02e12.hdtv.xvid-xor.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory\The Big Bang Theory S2\the.big.bang.theory.s02e14.hdtv.xvid-xor.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory\The Big Bang Theory S2\the.big.bang.theory.s02e15.hdtv.xvid-2hd.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory\The Big Bang Theory S2\the.big.bang.theory.s02e16.hdtv.xvid-xor.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory\The Big Bang Theory S2\the.big.bang.theory.s02e17.hdtv.xvid-xor.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory\The Big Bang Theory S2\the.big.bang.theory.s02e18.hdtv.xvid.notv.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory\The Big Bang Theory S2\the.big.bang.theory.s02e19.hdtv.xvid-xor.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory\The Big Bang Theory S2\the.big.bang.theory.s02e20.hdtv.xvid.vain.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory\The Big Bang Theory S2\the_big_bang_theory.2x07.the_panty_pinata_polarization.hdtv_xvid-fov.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory\The Big Bang Theory S2\the_big_bang_theory.2x08.the_lizard-spock_expansion.hdtv_xvid-fov.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory\The Big Bang Theory S2\the_big_bang_theory.2x09.the_white_asparagus_triangulation.hdtv_xvid-fov.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory S2\The Big Bang Theory 201.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory S2\The Big Bang Theory 202.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory S2\The Big Bang Theory 203.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory S2\The Big Bang Theory 204.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory S2\The Big Bang Theory 205.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory S2\The Big Bang Theory 206.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory S2\the.big.bang.theory.0211.notv.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory S2\the.big.bang.theory.0213.notv.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory S2\the.big.bang.theory.0223.hdtv.xvid-notv.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory S2\the.big.bang.theory.222.hdtv-0tv.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory S2\the.big.bang.theory.s02e10.hdtv.xvid-2hd.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory S2\the.big.bang.theory.s02e12.hdtv.xvid-xor.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory S2\the.big.bang.theory.s02e14.hdtv.xvid-xor.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory S2\the.big.bang.theory.s02e15.hdtv.xvid-2hd.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory S2\the.big.bang.theory.s02e16.hdtv.xvid-xor.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory S2\the.big.bang.theory.s02e17.hdtv.xvid-xor.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory S2\the.big.bang.theory.s02e18.hdtv.xvid.notv.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory S2\the.big.bang.theory.s02e19.hdtv.xvid-xor.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory S2\the.big.bang.theory.s02e20.hdtv.xvid.vain.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory S2\the_big_bang_theory.2x07.the_panty_pinata_polarization.hdtv_xvid-fov.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory S2\the_big_bang_theory.2x08.the_lizard-spock_expansion.hdtv_xvid-fov.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\The Big Bang Theory S2\the_big_bang_theory.2x09.the_white_asparagus_triangulation.hdtv_xvid-fov.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\True Blood\True Blood 106 - Cold Ground.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\True Blood\true.blood.104.hdtv.xvid.notv.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\True Blood\true.blood.108.hdtv-0tv.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\True Blood\true.blood.109.hdtv-0tv.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\True Blood\true.blood.110.hdtv-0tv.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\True Blood\true.blood.112.season.finale.hdtv-0tv.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\True Blood\True.Blood.s01e01.hdtv.xvid-0tv.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\True Blood\True.Blood.s01e02.hstv.xvid-0tv.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\True Blood\true.blood.s01e03.hdtv.xvid-0tv.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\True Blood\true.blood.s01e05.hdtv.xvid-0tv.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\True Blood\true.blood.s01e07.hdtv.xvid-0tv.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\True Blood\true.blood.s01e11.hdtv-0tv.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\xoxo Gossip Girl\Season 1\Gossip Girl - 01x05 - Dare devil (English (US)).exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\xoxo Gossip Girl\Season 1\Gossip Girl - 01x08 - Seventeen candles.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\xoxo Gossip Girl\Season 1\Gossip Girl - 01x10 - Hi, society (English (US)).exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\xoxo Gossip Girl\Season 1\Gossip Girl - 1x17 - Woman On The Verge.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\xoxo Gossip Girl\Season 1\Gossip Girl 107.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\xoxo Gossip Girl\Season 1\Gossip Girl 115 - Desperately Seeking Serena.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\xoxo Gossip Girl\Season 1\Gossip Girl 118 - Much 'I Do' About Nothing (Season 1 Finale).exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\xoxo Gossip Girl\Season 1\gossip girl s01e01 pilot hdtv xvid-caph.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\xoxo Gossip Girl\Season 1\gossip girl s01e04 hdtv xvid-xor [vtv].exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\xoxo Gossip Girl\Season 1\gossip.girl.106-caph.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\xoxo Gossip Girl\Season 1\gossip.girl.112-caph.[VTV].exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\xoxo Gossip Girl\Season 1\gossip.girl.114.hdtv-lol.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\xoxo Gossip Girl\Season 1\gossip.girl.s01e02.hdtv.xvid-xor.[VTV].exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\xoxo Gossip Girl\Season 1\gossip.girl.s01e03.hdtv.xvid-xor.[VTV].exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\xoxo Gossip Girl\Season 1\Gossip.Girl.S01E11.RERiP.HDTV.XviD-XOR.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\xoxo Gossip Girl\Season 1\gossip.girl.s01e13.hdtv.xvid-2hd.[VTV].exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\xoxo Gossip Girl\Season 1\gossip.girl.s01e16.hdtv.xvid-fqm.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\xoxo Gossip Girl\Season 2\Gossip Girl - 2x18 - The Age of Dissonance.HDTV.XOR.en.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\xoxo Gossip Girl\Season 2\Gossip Girl 201.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\xoxo Gossip Girl\Season 2\Gossip Girl S02E20.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\xoxo Gossip Girl\Season 2\gossip.girl.217.carnal.knowledge-notv.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\xoxo Gossip Girl\Season 2\Gossip.Girl.S02E02.HDTV.XviD-2HD.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\xoxo Gossip Girl\Season 2\gossip.girl.s02e03.hdtv.xvid-2hd.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\xoxo Gossip Girl\Season 2\gossip.girl.s02e04.hdtv.xvid-xor.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\xoxo Gossip Girl\Season 2\gossip.girl.s02e05.hdtv.xvid.notv.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\xoxo Gossip Girl\Season 2\gossip.girl.s02e06.hdtv.xvid-dot.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\xoxo Gossip Girl\Season 2\gossip.girl.s02e07.hdtv.xvid-2hd.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\xoxo Gossip Girl\Season 2\gossip.girl.s02e08.hdtv.xvid.notv.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\xoxo Gossip Girl\Season 2\gossip.girl.s02e09.hdtv.xvid-xor.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\xoxo Gossip Girl\Season 2\gossip.girl.s02e10.hdtv.xvid-dot.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\xoxo Gossip Girl\Season 2\gossip.girl.s02e11.hdtv.xvid-xor.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\xoxo Gossip Girl\Season 2\gossip.girl.s02e12.hdtv.xvid-xor.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\xoxo Gossip Girl\Season 2\gossip.girl.s02e13.hdtv.xvid-2hd.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\xoxo Gossip Girl\Season 2\gossip.girl.s02e14.hdtv.xvid-xor.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\xoxo Gossip Girl\Season 2\gossip.girl.s02e15.hdtv.xvid-xor.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\xoxo Gossip Girl\Season 2\gossip.girl.s02e16.hdtv.xvid-2hd.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Series - [NeeA™]\xoxo Gossip Girl\Season 2\gossip.girl.s02e19.hdtv.xvid-xor.exe Win32/AutoRun.Agent.PB worm (cleaned by deleting) 3B08C5AB895C567AB65832D1415B536F C
H:\Software Temp\Adobe CS4 Master Collection\Crack\xfcs4mckg\adobe-master-cs4-keygen.exe probably a variant of Win32/Agent trojan (cleaned by deleting - quarantined) 4A0924EC5A96895EF65666A0CC97B48C C
Back to Top
 

Jintan
Senior Member




Date Joined Dec 2006
Total Posts : 1428
 
   Posted 10/3/2009 2:06 AM (GMT +3)    Quote: My video files on my pc is all changed to .exe files, Please help me guysAlert an admin about: My video files on my pc is all changed to .exe files, Please help me guys
Shoot, a keygen. These security forums do not assist when illegal software is present or in use. That Eset log shows that CS4 keygen, and so I will not be able to assist with your request here any longer. Best I can offer is to reformat and reinstall to ensure all infection is removed.


Click here and help my friend help stop leukemia, lymphoma, Hodgkin lymphoma and myeloma from taking more lives.

Back to Top
 
New Topic Post reply to : My video files on my pc is all changed to .exe files, Please help me guys Printable version of : My video files on my pc is all changed to .exe files, Please help me guys
 
Forum Information
Currently it is Saturday, October 25, 2014 6:57 PM (GMT +3)
There are a total of 60,698 posts in 13,332 threads.
In the last 3 days there were 1 new threads and 20 reply posts. View Active Threads
Who's Online
This forum has 36552 registered members. Please welcome our newest member, BigStone.
3 Guest(s), 0 Registered Member(s) are currently online.  Details
5 Latest Threads
Errors, warnings, infections, trojans and junk (29)10/25/2014 7:27:58 AM (Touch)
Bullguard dosent update to latest versions (13)10/25/2014 3:59:32 AM (BigStone)
Bullguard firewall blocks dns requests for virtual machine clients (3)10/24/2014 11:55:39 AM (leok)