Bullguard Antivirus Forum Download A Free Copy Of Bullguard Antivirus Software
Free Antivirus Forum - Learn about antivirus, firewalls and personal security Free Antivirus Forum - Learn about antivirus, firewalls and personal security
 HomeLog InRegisterCommunity CalendarSearch the ForumView The Member ListHelp
Please help
   
BullGuard Antivirus Forum > General Security > Spyware > Please help  
Forum Quick Jump
 
New Topic Post reply to : Please help Printable version of : Please help
[ << Previous Thread | Next Thread >> ]

Turgiflex
New Member


Date Joined Dec 2005
Total Posts : 5
 
   Posted 8-3-2006 10:39 (GMT +1)    Quote: Please helpAlert an admin about: Please help
Hello. Could someone help me?? I have some problems with spywares that I can't delete from my pc. I did everything that is told in the "Before posting a log..." discussion, but some of them are still there. Here are some log from different programs I used. And Norton Antivirus is always saying that there are trojans in the Temporary Internet Files folder, that I delete but always come back. And it says also that this file "C:\WINDOWS\system32\wintfj32.dll" is a trojan horse and that he's unable to repair it.
Please help... Thanks a lot.
 
Hijackthis:
 
Logfile of HijackThis v1.99.1
Scan saved at 11.26.57, on 03/08/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\ishost.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\WINDOWS\system32\ismon.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\WINDOWS\system32\rundll32.exe
C:\Documents and Settings\Famiglia\Application Data\a?sembly\m?config.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\ewido anti-spyware 4.0\guard.exe
C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton SystemWorks\Norton AntiVirus\IWP\NPFMntor.exe
C:\WINDOWS\system32\slserv.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\PROGRA~1\NORTON~1\NORTON~3\SPEEDD~1\NOPDB.EXE
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\Program Files\Canon\CAL\CALMAIN.exe
C:\WINDOWS\system32\slrundll.exe
C:\WINDOWS\system32\cool.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Hijackthis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
R3 - URLSearchHook: (no name) - {B842C0FD-511B-58E3-1B56-5810912270B3} - (no file)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: (no name) - {B842C0FD-511B-58E3-1B56-5810912270B3} - (no file)
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton SystemWorks\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton SystemWorks\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033 -noicon
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKCU\..\Run: [Norton SystemWorks] "C:\Program Files\Norton SystemWorks\cfgwiz.exe" /GUID {05858CFD-5CC4-4ceb-AAAF-CF00BF39736A} /MODE CfgWiz
O4 - HKCU\..\Run: [Tont] "C:\PROGRA~1\STEM~1\nslookup.exe" -vt yazr
O4 - HKCU\..\Run: [Qdgx] C:\Documents and Settings\Famiglia\Application Data\a?sembly\m?config.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: &Clean Traces - C:\Program Files\DAP\Privacy Package\dapcleanerie.htm
O8 - Extra context menu item: &Download with &DAP - C:\Program Files\DAP\dapextie.htm
O8 - Extra context menu item: Download &all with DAP - C:\Program Files\DAP\dapextie2.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://materozz.spaces.msn.com//PhotoUpload/MsnPUpld.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1154553481765
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1145380252202
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {BB21F850-63F4-4EC9-BF9D-565BD30C9AE9} (a-squared Scanner) - http://ax.emsisoft.com/asquared.cab
O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) - http://download.mcafee.com/molbin/iss-loc/mcfscan/2,1,0,4820/mcfscan.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - AppInit_DLLs: , dvdplay.dll
O20 - Winlogon Notify: wintfj32 - C:\WINDOWS\SYSTEM32\wintfj32.dll
O21 - SSODL: coursings - {f8d02387-789a-4c0f-a1d8-8a93f33ee4df} - (no file)
O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\IWP\NPFMntor.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: SmartLinkService (SLService) - Smart Link - C:\WINDOWS\SYSTEM32\slserv.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Speed Disk service - Symantec Corporation - C:\PROGRA~1\NORTON~1\NORTON~3\SPEEDD~1\NOPDB.EXE
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
 
 
Ewido:
 
---------------------------------------------------------
ewido anti-spyware - Scan Report
---------------------------------------------------------
 + Created at: 23.09.29 02/08/2006
 + Scan result: 
 
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{873eb32d-ae1a-4183-89bd-45a77f761be4} -> Adware.Generic : No action taken.
HKU\S-1-5-21-1801674531-412668190-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{052B12F7-86FA-4921-8482-26C42316B522} -> Adware.Generic : No action taken.
HKU\S-1-5-21-1801674531-412668190-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{873EB32D-AE1A-4183-89BD-45A77F761BE4} -> Adware.Generic : No action taken.
C:\System Volume Information\_restore{D444EF27-BF5D-439E-B26F-A0734F202511}\RP100\A0008148.dll -> Adware.PurityScan : No action taken.
C:\System Volume Information\_restore{D444EF27-BF5D-439E-B26F-A0734F202511}\RP100\A0008149.exe -> Adware.PurityScan : No action taken.
C:\System Volume Information\_restore{D444EF27-BF5D-439E-B26F-A0734F202511}\RP102\A0009367.dll -> Adware.PurityScan : No action taken.
C:\WINDOWS\system32\__delete_on_reboot__d_v_d_p_l_a_y_._d_l_l_ -> Adware.PurityScan : No action taken.
C:\WINDOWS\system32\gceyallf.dll -> Adware.PurityScan : No action taken.
[1036] C:\WINDOWS\system32\dvdplay.dll -> Adware.PurityScan : No action taken.
[1848] C:\WINDOWS\System32\dvdplay.dll -> Adware.PurityScan : No action taken.
[2128] C:\WINDOWS\system32\dvdplay.dll -> Adware.PurityScan : No action taken.
[272] C:\WINDOWS\system32\dvdplay.dll -> Adware.PurityScan : No action taken.
[2884] C:\WINDOWS\system32\dvdplay.dll -> Adware.PurityScan : No action taken.
[400] C:\WINDOWS\system32\dvdplay.dll -> Adware.PurityScan : No action taken.
[436] C:\WINDOWS\system32\dvdplay.dll -> Adware.PurityScan : No action taken.
[4388] C:\WINDOWS\system32\dvdplay.dll -> Adware.PurityScan : No action taken.
[4988] C:\WINDOWS\system32\dvdplay.dll -> Adware.PurityScan : No action taken.
[5296] C:\WINDOWS\system32\dvdplay.dll -> Adware.PurityScan : No action taken.
[5512] C:\WINDOWS\system32\dvdplay.dll -> Adware.PurityScan : No action taken.
[5644] C:\WINDOWS\system32\dvdplay.dll -> Adware.PurityScan : No action taken.
[5804] C:\WINDOWS\system32\dvdplay.dll -> Adware.PurityScan : No action taken.
C:\System Volume Information\_restore{D444EF27-BF5D-439E-B26F-A0734F202511}\RP98\A0007877.exe -> Downloader.Zlob.abj : No action taken.
C:\System Volume Information\_restore{D444EF27-BF5D-439E-B26F-A0734F202511}\RP98\A0007884.exe -> Downloader.Zlob.abj : No action taken.
C:\System Volume Information\_restore{D444EF27-BF5D-439E-B26F-A0734F202511}\RP98\A0007889.exe -> Downloader.Zlob.abq : No action taken.
C:\System Volume Information\_restore{D444EF27-BF5D-439E-B26F-A0734F202511}\RP100\A0008077.dll -> Not-A-Virus.Hoax.Win32.Renos.dw : No action taken.
C:\Documents and Settings\Famiglia\Cookies\famiglia@com[1].txt -> TrackingCookie.Com : No action taken.
C:\Documents and Settings\Famiglia\Local Settings\Temporary Internet Files\Content.IE5\OD2745QB\srvuek[1].exe -> Trojan.Dialer.qs : No action taken.
C:\System Volume Information\_restore{D444EF27-BF5D-439E-B26F-A0734F202511}\RP100\A0007983.exe -> Trojan.Dialer.qs : No action taken.
C:\System Volume Information\_restore{D444EF27-BF5D-439E-B26F-A0734F202511}\RP100\A0008069.exe -> Trojan.Dialer.qs : No action taken.
C:\System Volume Information\_restore{D444EF27-BF5D-439E-B26F-A0734F202511}\RP100\A0008165.exe -> Trojan.Dialer.qs : No action taken.
C:\System Volume Information\_restore{D444EF27-BF5D-439E-B26F-A0734F202511}\RP102\A0009204.exe -> Trojan.Dialer.qs : No action taken.
C:\System Volume Information\_restore{D444EF27-BF5D-439E-B26F-A0734F202511}\RP102\A0009219.exe -> Trojan.Dialer.qs : No action taken.
C:\System Volume Information\_restore{D444EF27-BF5D-439E-B26F-A0734F202511}\RP99\A0007899.exe -> Trojan.Dialer.qs : No action taken.
C:\System Volume Information\_restore{D444EF27-BF5D-439E-B26F-A0734F202511}\RP99\A0007925.exe -> Trojan.Dialer.qs : No action taken.
C:\WINDOWS\system32\__delete_on_reboot__c_o_o_l_._e_x_e_ -> Trojan.Dialer.qs : No action taken.
C:\System Volume Information\_restore{D444EF27-BF5D-439E-B26F-A0734F202511}\RP101\A0009179.exe -> Trojan.Starter.65 : No action taken.

::Report end
 
 
 
Bit-Defender:
 
BitDefender Online Scanner




Scan report generated at: Thu, Aug 03, 2006 - 11:24:19
 




Scan path: C:\;D:\;E:\;G:\;H:\;X:\;




 




Statistics
Time
00:58:02
Files
199807
Folders
4058
Boot Sectors
3
Archives
2326
Packed Files
14774




Results
Identified Viruses
6
Infected Files
17
Suspect Files
0
Warnings
0
Disinfected
0
Deleted Files
27




Engines Info
Virus Definitions
426465
Engine build
AVCORE v1.0 (build 2310) (i386) (Apr 17 2006 16:24:38)
Scan plugins
13
Archive plugins
39
Unpack plugins
5
E-mail plugins
6
System plugins
1




Scan Settings
First Action
Disinfect
Second Action
Delete
Heuristics
Yes
Enable Warnings
Yes
Scanned Extensions
*;
Exclude Extensions
 
Scan Emails
Yes
Scan Archives
Yes
Scan Packed
Yes
Scan Files
Yes
Scan Boot
Yes




 
Scanned File
 Status
C:\Documents and Settings\Famiglia\Local Settings\Temporary Internet Files\Content.IE5\2NQDI9C1\srvzxi[1].exe
Infected with: BehavesLike:Win32.ExplorerHijack
C:\Documents and Settings\Famiglia\Local Settings\Temporary Internet Files\Content.IE5\2NQDI9C1\srvzxi[1].exe
Disinfection failed
C:\Documents and Settings\Famiglia\Local Settings\Temporary Internet Files\Content.IE5\2NQDI9C1\srvzxi[1].exe
Deleted
C:\Program Files\Norton SystemWorks\Norton AntiVirus\Quarantine\0A3C5279.exe=>(Quarantine-2)
Infected with: Trojan.Dialer.QO
C:\Program Files\Norton SystemWorks\Norton AntiVirus\Quarantine\0A3C5279.exe=>(Quarantine-2)
Disinfection failed
C:\Program Files\Norton SystemWorks\Norton AntiVirus\Quarantine\0A3C5279.exe=>(Quarantine-2)
Deleted
C:\Program Files\Norton SystemWorks\Norton AntiVirus\Quarantine\292527B0.exe=>(Quarantine-2)
Infected with: Trojan.Dialer.PA
C:\Program Files\Norton SystemWorks\Norton AntiVirus\Quarantine\292527B0.exe=>(Quarantine-2)
Disinfection failed
C:\Program Files\Norton SystemWorks\Norton AntiVirus\Quarantine\292527B0.exe=>(Quarantine-2)
Deleted
C:\Program Files\Norton SystemWorks\Norton AntiVirus\Quarantine\292851AD.tmp=>(Quarantine-2)
Infected with: Trojan.Dialer.Riprova.B
C:\Program Files\Norton SystemWorks\Norton AntiVirus\Quarantine\292851AD.tmp=>(Quarantine-2)
Disinfection failed
C:\Program Files\Norton SystemWorks\Norton AntiVirus\Quarantine\292851AD.tmp=>(Quarantine-2)
Deleted
C:\Program Files\Norton SystemWorks\Norton AntiVirus\Quarantine\292B7BA9.exe=>(Quarantine-2)
Infected with: Trojan.Dialer.Riprova.B
C:\Program Files\Norton SystemWorks\Norton AntiVirus\Quarantine\292B7BA9.exe=>(Quarantine-2)
Disinfection failed
C:\Program Files\Norton SystemWorks\Norton AntiVirus\Quarantine\292B7BA9.exe=>(Quarantine-2)
Deleted
C:\Program Files\Norton SystemWorks\Norton AntiVirus\Quarantine\542917FB.exe=>(Quarantine-2)
Infected with: Trojan.Dialer.QO
C:\Program Files\Norton SystemWorks\Norton AntiVirus\Quarantine\542917FB.exe=>(Quarantine-2)
Disinfection failed
C:\Program Files\Norton SystemWorks\Norton AntiVirus\Quarantine\542917FB.exe=>(Quarantine-2)
Deleted
C:\Program Files\Norton SystemWorks\Norton AntiVirus\Quarantine\66BF0D87.exe=>(Quarantine-2)
Infected with: Trojan.Dialer.QO
C:\Program Files\Norton SystemWorks\Norton AntiVirus\Quarantine\66BF0D87.exe=>(Quarantine-2)
Disinfection failed
C:\Program Files\Norton SystemWorks\Norton AntiVirus\Quarantine\66BF0D87.exe=>(Quarantine-2)
Deleted
C:\System Volume Information\_restore{D444EF27-BF5D-439E-B26F-A0734F202511}\RP105\A0009876.exe
Infected with: BehavesLike:Win32.ExplorerHijack
C:\System Volume Information\_restore{D444EF27-BF5D-439E-B26F-A0734F202511}\RP105\A0009876.exe
Disinfection failed
C:\System Volume Information\_restore{D444EF27-BF5D-439E-B26F-A0734F202511}\RP105\A0009876.exe
Deleted
C:\System Volume Information\_restore{D444EF27-BF5D-439E-B26F-A0734F202511}\RP105\A0009879.exe=>(Quarantine-2)
Infected with: Trojan.Dialer.QO
C:\System Volume Information\_restore{D444EF27-BF5D-439E-B26F-A0734F202511}\RP105\A0009879.exe=>(Quarantine-2)
Disinfection failed
C:\System Volume Information\_restore{D444EF27-BF5D-439E-B26F-A0734F202511}\RP105\A0009879.exe=>(Quarantine-2)
Deleted
C:\System Volume Information\_restore{D444EF27-BF5D-439E-B26F-A0734F202511}\RP105\A0009880.exe=>(Quarantine-2)
Infected with: Trojan.Dialer.PA
C:\System Volume Information\_restore{D444EF27-BF5D-439E-B26F-A0734F202511}\RP105\A0009880.exe=>(Quarantine-2)
Disinfection failed
C:\System Volume Information\_restore{D444EF27-BF5D-439E-B26F-A0734F202511}\RP105\A0009880.exe=>(Quarantine-2)
Deleted
C:\System Volume Information\_restore{D444EF27-BF5D-439E-B26F-A0734F202511}\RP105\A0009881.exe=>(Quarantine-2)
Infected with: Trojan.Dialer.Riprova.B
C:\System Volume Information\_restore{D444EF27-BF5D-439E-B26F-A0734F202511}\RP105\A0009881.exe=>(Quarantine-2)
Disinfection failed
C:\System Volume Information\_restore{D444EF27-BF5D-439E-B26F-A0734F202511}\RP105\A0009881.exe=>(Quarantine-2)
Deleted
C:\System Volume Information\_restore{D444EF27-BF5D-439E-B26F-A0734F202511}\RP105\A0009882.exe=>(Quarantine-2)
Infected with: Trojan.Dialer.QO
C:\System Volume Information\_restore{D444EF27-BF5D-439E-B26F-A0734F202511}\RP105\A0009882.exe=>(Quarantine-2)
Disinfection failed
C:\System Volume Information\_restore{D444EF27-BF5D-439E-B26F-A0734F202511}\RP105\A0009882.exe=>(Quarantine-2)
Deleted
C:\System Volume Information\_restore{D444EF27-BF5D-439E-B26F-A0734F202511}\RP105\A0009883.exe=>(Quarantine-2)
Infected with: Trojan.Dialer.QO
C:\System Volume Information\_restore{D444EF27-BF5D-439E-B26F-A0734F202511}\RP105\A0009883.exe=>(Quarantine-2)
Disinfection failed
C:\System Volume Information\_restore{D444EF27-BF5D-439E-B26F-A0734F202511}\RP105\A0009883.exe=>(Quarantine-2)
Deleted
C:\System Volume Information\_restore{D444EF27-BF5D-439E-B26F-A0734F202511}\RP98\A0007887.exe
Infected with: Trojan.Agent.Zlob.F
C:\System Volume Information\_restore{D444EF27-BF5D-439E-B26F-A0734F202511}\RP98\A0007887.exe
Disinfection failed
C:\System Volume Information\_restore{D444EF27-BF5D-439E-B26F-A0734F202511}\RP98\A0007887.exe
Deleted
C:\System Volume Information\_restore{D444EF27-BF5D-439E-B26F-A0734F202511}\RP98\A0007888.exe
Infected with: Trojan.Agent.Zlob.A
C:\System Volume Information\_restore{D444EF27-BF5D-439E-B26F-A0734F202511}\RP98\A0007888.exe
Disinfection failed
C:\System Volume Information\_restore{D444EF27-BF5D-439E-B26F-A0734F202511}\RP98\A0007888.exe
Deleted
C:\System Volume Information\_restore{D444EF27-BF5D-439E-B26F-A0734F202511}\RP98\A0007893.exe
Infected with: Trojan.Agent.Zlob.F
C:\System Volume Information\_restore{D444EF27-BF5D-439E-B26F-A0734F202511}\RP98\A0007893.exe
Disinfection failed
C:\System Volume Information\_restore{D444EF27-BF5D-439E-B26F-A0734F202511}\RP98\A0007893.exe
Deleted
C:\WINDOWS\system32\cool.exe
Infected with: BehavesLike:Win32.ExplorerHijack
C:\WINDOWS\system32\cool.exe
Disinfection failed
C:\WINDOWS\system32\cool.exe
Delete failed


 




 






Back to Top
 
New Topic Post reply to : Please help Printable version of : Please help
 
Forum Information
Currently it is Thursday, December 04, 2008 8:16 PM (GMT +1)
There are a total of 64.634 posts in 15.923 threads.
In the last 3 days there were 21 new threads and 135 reply posts. View Active Threads
Who's Online
This forum has 27355 registered members. Please welcome our newest member, bigstu.
48 Guest(s), 1 Registered Member(s) are currently online.  Details
JHT
5 Latest Threads
Virtrigger removal (27)04-12-2008 19:02:53 (JHT)
About a worm "recycled/boot.com" (0)04-12-2008 18:27:11 (Wello)
Vundo. BG & Generic 10.AMUY Trojan Horse...How do I get rid of them? (6)04-12-2008 17:25:37 (arusell)
Used MBAM to remove Virtrigger... But (2)04-12-2008 17:24:19 (Churrosgomoo)
Command Service (10)04-12-2008 17:21:11 (yogendra)