Jotti Report:File: qmifsscp.ini
Status: OK
MD5: 56943c36112911a655a77bcce2f0a6a5
Scanner results
Scan taken on 19 Jul 2008 21:38:09 (GMT)
A-Squared Found nothing
AntiVir Found nothing
ArcaVir Found nothing
Avast Found nothing
AVG Antivirus Found nothing
BitDefender Found nothing
ClamAV Found nothing
CPsecure Found nothing
Dr.Web Found nothing
F-Prot Antivirus Found nothing
F-Secure Anti-Virus Found nothing
Fortinet Found nothing
Ikarus Found nothing
Kaspersky Anti-Virus Found nothing
NOD32 Found nothing
Norman Virus Control Found nothing
Panda Antivirus Found nothing
Sophos Antivirus Found nothing
VirusBuster Found nothing
VBA32 Found nothing
New Combofix:ComboFix 08-07-18.1 - Owner 2008-07-19 14:51:29.2 - NTFSx86
Microsoft Windows XP Home Edition 5.1.2600.2.1252.1.1033.18.376 [GMT -7:00]
Running from: C:\Documents and Settings\Owner\Desktop\ComboFix.exe
Command switches used :: C:\Documents and Settings\Owner\Desktop\CFScript.txt
* Created a new restore point
FILE ::
C:\WINDOWS\agpqlrfm.exe
C:\WINDOWS\DUMP668a.tmp
C:\WINDOWS\DUMP6699.tmp
C:\WINDOWS\DUMP669a.tmp
C:\WINDOWS\DUMP66bb.tmp
C:\WINDOWS\DUMP66bc.tmp
C:\WINDOWS\DUMP6757.tmp
C:\WINDOWS\DUMP6776.tmp
C:\WINDOWS\DUMP6813.tmp
C:\WINDOWS\DUMP6814.tmp
C:\WINDOWS\DUMP688e.tmp
C:\WINDOWS\DUMP689d.tmp
C:\WINDOWS\DUMP689e.tmp
C:\WINDOWS\DUMP689f.tmp
C:\WINDOWS\DUMP68cc.tmp
C:\WINDOWS\DUMP68dc.tmp
C:\WINDOWS\DUMP68fd.tmp
C:\WINDOWS\DUMP690a.tmp
C:\WINDOWS\DUMP691b.tmp
C:\WINDOWS\DUMP6969.tmp
C:\WINDOWS\DUMP69d5.tmp
C:\WINDOWS\DUMP6a52.tmp
C:\WINDOWS\DUMP6a91.tmp
C:\WINDOWS\DUMP6ad0.tmp
C:\WINDOWS\DUMP6af0.tmp
C:\WINDOWS\DUMP6baa.tmp
C:\WINDOWS\DUMP6bf8.tmp
C:\WINDOWS\DUMP6d50.tmp
C:\WINDOWS\DUMP7501.tmp
C:\WINDOWS\DUMP7714.tmp
C:\WINDOWS\DUMP7cf0.tmp
C:\WINDOWS\Internet Logs\xDB12A.tmp
C:\WINDOWS\Internet Logs\xDB12B.tmp
C:\WINDOWS\Internet Logs\xDB12C.tmp
C:\WINDOWS\Internet Logs\xDB12D.tmp
C:\WINDOWS\Internet Logs\xDB12E.tmp
C:\WINDOWS\Internet Logs\xDB12F.tmp
C:\WINDOWS\Internet Logs\xDB130.tmp
C:\WINDOWS\Internet Logs\xDB131.tmp
C:\WINDOWS\Internet Logs\xDB132.tmp
C:\WINDOWS\Internet Logs\xDB133.tmp
C:\WINDOWS\Internet Logs\xDB134.tmp
C:\WINDOWS\Internet Logs\xDB135.tmp
C:\WINDOWS\Internet Logs\xDB136.tmp
C:\WINDOWS\Internet Logs\xDB137.tmp
C:\WINDOWS\Internet Logs\xDB138.tmp
C:\WINDOWS\Internet Logs\xDB139.tmp
C:\WINDOWS\Internet Logs\xDB13A.tmp
C:\WINDOWS\Internet Logs\xDB13B.tmp
C:\WINDOWS\Internet Logs\xDB13C.tmp
C:\WINDOWS\Internet Logs\xDB13D.tmp
C:\WINDOWS\Internet Logs\xDB13E.tmp
C:\WINDOWS\Internet Logs\xDB13F.tmp
C:\WINDOWS\Internet Logs\xDB140.tmp
C:\WINDOWS\Internet Logs\xDB141.tmp
C:\WINDOWS\Internet Logs\xDB142.tmp
C:\WINDOWS\Internet Logs\xDB143.tmp
C:\WINDOWS\Internet Logs\xDB144.tmp
C:\WINDOWS\Internet Logs\xDB145.tmp
C:\WINDOWS\Internet Logs\xDB146.tmp
C:\WINDOWS\Internet Logs\xDB147.tmp
C:\WINDOWS\Internet Logs\xDB148.tmp
C:\WINDOWS\Internet Logs\xDB149.tmp
C:\WINDOWS\Internet Logs\xDB14A.tmp
C:\WINDOWS\Internet Logs\xDB14B.tmp
C:\WINDOWS\Internet Logs\xDB14C.tmp
C:\WINDOWS\Internet Logs\xDB14D.tmp
C:\WINDOWS\Internet Logs\xDB14E.tmp
C:\WINDOWS\Internet Logs\xDB14F.tmp
C:\WINDOWS\Internet Logs\xDB150.tmp
C:\WINDOWS\Internet Logs\xDB151.tmp
C:\WINDOWS\Internet Logs\xDB152.tmp
C:\WINDOWS\Internet Logs\xDB153.tmp
C:\WINDOWS\Internet Logs\xDB154.tmp
C:\WINDOWS\Internet Logs\xDB155.tmp
C:\WINDOWS\Internet Logs\xDB156.tmp
C:\WINDOWS\Internet Logs\xDB157.tmp
C:\WINDOWS\Internet Logs\xDB158.tmp
C:\WINDOWS\Internet Logs\xDB159.tmp
C:\WINDOWS\Internet Logs\xDB15A.tmp
C:\WINDOWS\Internet Logs\xDB15B.tmp
C:\WINDOWS\Internet Logs\xDB15C.tmp
C:\WINDOWS\Internet Logs\xDB15D.tmp
C:\WINDOWS\Internet Logs\xDB15E.tmp
C:\WINDOWS\Internet Logs\xDB15F.tmp
C:\WINDOWS\Internet Logs\xDB160.tmp
C:\WINDOWS\Internet Logs\xDB161.tmp
C:\WINDOWS\Internet Logs\xDB162.tmp
C:\WINDOWS\Internet Logs\xDB163.tmp
C:\WINDOWS\system32\32.tmp
C:\WINDOWS\system32\52.tmp
C:\WINDOWS\system32\5C.tmp
C:\WINDOWS\system32\5D.tmp
C:\WINDOWS\system32\64.tmp
C:\WINDOWS\system32\73.tmp
C:\WINDOWS\system32\74.tmp
C:\WINDOWS\system32\79.tmp
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\Documents and Settings\Owner\Desktop\Vista Antivirus 2008.lnk
C:\WINDOWS\agpqlrfm.exe
C:\WINDOWS\DUMP668a.tmp
C:\WINDOWS\DUMP6699.tmp
C:\WINDOWS\DUMP669a.tmp
C:\WINDOWS\DUMP66bb.tmp
C:\WINDOWS\DUMP66bc.tmp
C:\WINDOWS\DUMP6757.tmp
C:\WINDOWS\DUMP6776.tmp
C:\WINDOWS\DUMP6813.tmp
C:\WINDOWS\DUMP6814.tmp
C:\WINDOWS\DUMP688e.tmp
C:\WINDOWS\DUMP689d.tmp
C:\WINDOWS\DUMP689e.tmp
C:\WINDOWS\DUMP689f.tmp
C:\WINDOWS\DUMP68cc.tmp
C:\WINDOWS\DUMP68dc.tmp
C:\WINDOWS\DUMP68fd.tmp
C:\WINDOWS\DUMP690a.tmp
C:\WINDOWS\DUMP691b.tmp
C:\WINDOWS\DUMP6969.tmp
C:\WINDOWS\DUMP69d5.tmp
C:\WINDOWS\DUMP6a52.tmp
C:\WINDOWS\DUMP6a91.tmp
C:\WINDOWS\DUMP6ad0.tmp
C:\WINDOWS\DUMP6af0.tmp
C:\WINDOWS\DUMP6baa.tmp
C:\WINDOWS\DUMP6bf8.tmp
C:\WINDOWS\DUMP6d50.tmp
C:\WINDOWS\DUMP7501.tmp
C:\WINDOWS\DUMP7714.tmp
C:\WINDOWS\DUMP7cf0.tmp
C:\WINDOWS\Internet Logs\xDB12A.tmp
C:\WINDOWS\Internet Logs\xDB12B.tmp
C:\WINDOWS\Internet Logs\xDB12C.tmp
C:\WINDOWS\Internet Logs\xDB12D.tmp
C:\WINDOWS\Internet Logs\xDB12E.tmp
C:\WINDOWS\Internet Logs\xDB12F.tmp
C:\WINDOWS\Internet Logs\xDB130.tmp
C:\WINDOWS\Internet Logs\xDB131.tmp
C:\WINDOWS\Internet Logs\xDB132.tmp
C:\WINDOWS\Internet Logs\xDB133.tmp
C:\WINDOWS\Internet Logs\xDB134.tmp
C:\WINDOWS\Internet Logs\xDB135.tmp
C:\WINDOWS\Internet Logs\xDB136.tmp
C:\WINDOWS\Internet Logs\xDB137.tmp
C:\WINDOWS\Internet Logs\xDB138.tmp
C:\WINDOWS\Internet Logs\xDB139.tmp
C:\WINDOWS\Internet Logs\xDB13A.tmp
C:\WINDOWS\Internet Logs\xDB13B.tmp
C:\WINDOWS\Internet Logs\xDB13C.tmp
C:\WINDOWS\Internet Logs\xDB13D.tmp
C:\WINDOWS\Internet Logs\xDB13E.tmp
C:\WINDOWS\Internet Logs\xDB13F.tmp
C:\WINDOWS\Internet Logs\xDB140.tmp
C:\WINDOWS\Internet Logs\xDB141.tmp
C:\WINDOWS\Internet Logs\xDB142.tmp
C:\WINDOWS\Internet Logs\xDB143.tmp
C:\WINDOWS\Internet Logs\xDB144.tmp
C:\WINDOWS\Internet Logs\xDB145.tmp
C:\WINDOWS\Internet Logs\xDB146.tmp
C:\WINDOWS\Internet Logs\xDB147.tmp
C:\WINDOWS\Internet Logs\xDB148.tmp
C:\WINDOWS\Internet Logs\xDB149.tmp
C:\WINDOWS\Internet Logs\xDB14A.tmp
C:\WINDOWS\Internet Logs\xDB14B.tmp
C:\WINDOWS\Internet Logs\xDB14C.tmp
C:\WINDOWS\Internet Logs\xDB14D.tmp
C:\WINDOWS\Internet Logs\xDB14E.tmp
C:\WINDOWS\Internet Logs\xDB14F.tmp
C:\WINDOWS\Internet Logs\xDB150.tmp
C:\WINDOWS\Internet Logs\xDB151.tmp
C:\WINDOWS\Internet Logs\xDB152.tmp
C:\WINDOWS\Internet Logs\xDB153.tmp
C:\WINDOWS\Internet Logs\xDB154.tmp
C:\WINDOWS\Internet Logs\xDB155.tmp
C:\WINDOWS\Internet Logs\xDB156.tmp
C:\WINDOWS\Internet Logs\xDB157.tmp
C:\WINDOWS\Internet Logs\xDB158.tmp
C:\WINDOWS\Internet Logs\xDB159.tmp
C:\WINDOWS\Internet Logs\xDB15A.tmp
C:\WINDOWS\Internet Logs\xDB15B.tmp
C:\WINDOWS\Internet Logs\xDB15C.tmp
C:\WINDOWS\Internet Logs\xDB15D.tmp
C:\WINDOWS\Internet Logs\xDB15E.tmp
C:\WINDOWS\Internet Logs\xDB15F.tmp
C:\WINDOWS\Internet Logs\xDB160.tmp
C:\WINDOWS\Internet Logs\xDB161.tmp
C:\WINDOWS\Internet Logs\xDB162.tmp
C:\WINDOWS\Internet Logs\xDB163.tmp
C:\WINDOWS\system32\32.tmp
C:\WINDOWS\system32\52.tmp
C:\WINDOWS\system32\5C.tmp
C:\WINDOWS\system32\5D.tmp
C:\WINDOWS\system32\64.tmp
C:\WINDOWS\system32\73.tmp
C:\WINDOWS\system32\74.tmp
C:\WINDOWS\system32\79.tmp
.
((((((((((((((((((((((((( Files Created from 2008-06-19 to 2008-07-19 )))))))))))))))))))))))))))))))
.
2008-07-19 11:09 . 2008-07-19 11:09 244 --ah----- C:\sqmnoopt17.sqm
2008-07-19 11:09 . 2008-07-19 11:09 232 --ah----- C:\sqmdata17.sqm
2008-07-18 20:33 . 2008-07-18 20:33 244 --ah----- C:\sqmnoopt16.sqm
2008-07-18 20:33 . 2008-07-18 20:33 232 --ah----- C:\sqmdata16.sqm
2008-07-17 13:42 . 2008-07-17 13:42 244 --ah----- C:\sqmnoopt15.sqm
2008-07-17 13:42 . 2008-07-17 13:42 232 --ah----- C:\sqmdata15.sqm
2008-07-17 12:13 . 2008-07-17 12:13 244 --ah----- C:\sqmnoopt14.sqm
2008-07-17 12:13 . 2008-07-17 12:13 232 --ah----- C:\sqmdata14.sqm
2008-07-17 12:03 . 2008-07-19 14:59 10,352,672 --ahs---- C:\WINDOWS\system32\drivers\fidbox.dat
2008-07-17 12:03 . 2008-07-19 10:51 97,940 --ahs---- C:\WINDOWS\system32\drivers\fidbox.idx
2008-07-17 11:59 . 2008-07-17 11:59 <DIR> d-------- C:\Program Files\ZoneAlarmSB
2008-07-17 10:53 . 2008-07-17 10:53 <DIR> d-------- C:\Documents and Settings\Owner\Application Data\MailFrontier
2008-07-17 10:53 . 2008-07-17 12:14 4,212 --ah----- C:\WINDOWS\system32\zllictbl.dat
2008-07-17 09:42 . 2008-07-17 09:42 244 --ah----- C:\sqmnoopt13.sqm
2008-07-17 09:42 . 2008-07-17 09:42 232 --ah----- C:\sqmdata13.sqm
2008-07-16 23:02 . 2008-07-16 23:02 244 --ah----- C:\sqmnoopt12.sqm
2008-07-16 23:02 . 2008-07-16 23:02 232 --ah----- C:\sqmdata12.sqm
2008-07-16 22:36 . 2008-07-16 22:36 244 --ah----- C:\sqmnoopt11.sqm
2008-07-16 22:36 . 2008-07-16 22:36 232 --ah----- C:\sqmdata11.sqm
2008-07-16 22:01 . 2008-07-17 09:40 309 --a------ C:\WINDOWS\wininit.ini
2008-07-16 21:48 . 2008-07-16 22:47 4,018 --a------ C:\WINDOWS\system32\tmp.reg
2008-07-16 21:38 . 2008-05-29 09:35 86,528 --a------ C:\WINDOWS\system32\VACFix.exe
2008-07-16 21:38 . 2008-05-18 21:40 82,944 --a------ C:\WINDOWS\system32\IEDFix.exe
2008-07-16 21:38 . 2008-07-02 13:33 82,432 --a------ C:\WINDOWS\system32\IEDFix.C.exe
2008-07-16 21:38 . 2008-05-23 18:21 81,920 --a------ C:\WINDOWS\system32\404Fix.exe
2008-07-16 21:37 . 2007-09-06 00:22 289,144 --a------ C:\WINDOWS\system32\VCCLSID.exe
2008-07-16 21:37 . 2006-04-27 17:49 288,417 --a------ C:\WINDOWS\system32\SrchSTS.exe
2008-07-16 21:37 . 2003-06-05 21:13 53,248 --a------ C:\WINDOWS\system32\Process.exe
2008-07-16 21:37 . 2004-07-31 18:50 51,200 --a------ C:\WINDOWS\system32\dumphive.exe
2008-07-16 21:37 . 2007-10-04 00:36 25,600 --a------ C:\WINDOWS\system32\WS2Fix.exe
2008-07-16 21:17 . 2008-07-16 21:17 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Lavasoft
2008-07-16 21:14 . 2008-07-16 21:14 <DIR> d-------- C:\Program Files\Common Files\Wise Installation Wizard
2008-07-16 21:09 . 2008-07-16 21:09 <DIR> d-------- C:\Program Files\Spybot - Search & Destroy
2008-07-16 21:09 . 2008-07-16 21:21 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
2008-07-16 21:04 . 2008-07-16 21:04 <DIR> d-------- C:\Program Files\Trend Micro
2008-07-16 20:28 . 2008-07-16 20:28 244 --ah----- C:\sqmnoopt10.sqm
2008-07-16 20:28 . 2008-07-16 20:28 232 --ah----- C:\sqmdata10.sqm
2008-07-16 19:17 . 2008-07-16 19:17 244 --ah----- C:\sqmnoopt09.sqm
2008-07-16 19:17 . 2008-07-16 19:17 232 --ah----- C:\sqmdata09.sqm
2008-07-16 19:12 . 2008-07-16 19:12 244 --ah----- C:\sqmnoopt08.sqm
2008-07-16 19:12 . 2008-07-16 19:12 232 --ah----- C:\sqmdata08.sqm
2008-07-16 19:01 . 2008-07-19 10:56 <DIR> d-------- C:\WINDOWS\system32\drivers\Avg
2008-07-16 19:01 . 2008-07-16 19:01 96,520 --a------ C:\WINDOWS\system32\drivers\avgldx86.sys
2008-07-16 19:01 . 2008-07-16 19:01 76,040 --a------ C:\WINDOWS\system32\drivers\avgtdix.sys
2008-07-16 19:01 . 2008-07-16 19:01 10,520 --a------ C:\WINDOWS\system32\avgrsstx.dll
2008-07-16 18:50 . 2008-07-16 23:01 594 --ahs---- C:\WINDOWS\system32\qmifsscp.ini
2008-07-16 18:44 . 2008-07-16 18:45 <DIR> d-------- C:\Program Files\USS
2008-07-16 18:44 . 2008-07-16 18:44 0 --a------ C:\END
2008-07-13 09:31 . 2008-07-13 09:31 244 --ah----- C:\sqmnoopt07.sqm
2008-07-13 09:31 . 2008-07-13 09:31 232 --ah----- C:\sqmdata07.sqm
2008-07-11 23:51 . 2008-07-11 23:51 244 --ah----- C:\sqmnoopt06.sqm
2008-07-11 23:51 . 2008-07-11 23:51 232 --ah----- C:\sqmdata06.sqm
2008-07-11 09:56 . 2008-07-11 09:56 244 --ah----- C:\sqmnoopt05.sqm
2008-07-11 09:56 . 2008-07-11 09:56 232 --ah----- C:\sqmdata05.sqm
2008-07-10 16:05 . 2008-07-10 16:05 244 --ah----- C:\sqmnoopt04.sqm
2008-07-10 16:05 . 2008-07-10 16:05 232 --ah----- C:\sqmdata04.sqm
2008-07-10 12:26 . 2008-07-10 12:26 244 --ah----- C:\sqmnoopt03.sqm
2008-07-10 12:26 . 2008-07-10 12:26 232 --ah----- C:\sqmdata03.sqm
2008-07-05 19:43 . 2008-07-05 19:43 244 --ah----- C:\sqmnoopt02.sqm
2008-07-05 19:43 . 2008-07-05 19:43 232 --ah----- C:\sqmdata02.sqm
2008-07-04 08:12 . 2008-07-04 08:12 244 --ah----- C:\sqmnoopt01.sqm
2008-07-04 08:12 . 2008-07-04 08:12 232 --ah----- C:\sqmdata01.sqm
2008-07-03 16:20 . 2008-07-03 16:20 244 --ah----- C:\sqmnoopt00.sqm
2008-07-03 16:20 . 2008-07-03 16:20 232 --ah----- C:\sqmdata00.sqm
2008-07-03 15:45 . 2008-07-03 15:45 <DIR> d-------- C:\Program Files\Musicnotes
2008-07-03 08:06 . 2008-04-22 21:16 6,066,176 --a--c--- C:\WINDOWS\system32\dllcache\ieframe.dll
2008-07-03 08:06 . 2007-04-17 02:32 2,455,488 --a--c--- C:\WINDOWS\system32\dllcache\ieapfltr.dat
2008-07-03 08:06 . 2007-03-07 22:10 991,232 --a--c--- C:\WINDOWS\system32\dllcache\ieframe.dll.mui
2008-07-03 08:06 . 2008-04-22 21:16 459,264 --a--c--- C:\WINDOWS\system32\dllcache\msfeeds.dll
2008-07-03 08:06 . 2008-04-22 21:16 383,488 --a--c--- C:\WINDOWS\system32\dllcache\ieapfltr.dll
2008-07-03 08:06 . 2008-04-22 21:16 267,776 --a--c--- C:\WINDOWS\system32\dllcache\iertutil.dll
2008-07-03 08:06 . 2008-04-22 21:16 63,488 --a--c--- C:\WINDOWS\system32\dllcache\icardie.dll
2008-07-03 08:06 . 2008-04-22 21:16 52,224 --a--c--- C:\WINDOWS\system32\dllcache\msfeedsbs.dll
2008-07-03 08:06 . 2008-04-22 00:39 13,824 --a--c--- C:\WINDOWS\system32\dllcache\ieudinit.exe
2008-07-02 22:48 . 2006-08-21 02:14 128,896 --a--c--- C:\WINDOWS\system32\dllcache\fltmgr.sys
2008-07-02 22:48 . 2006-08-21 02:14 23,040 --a--c--- C:\WINDOWS\system32\dllcache\fltmc.exe
2008-07-02 22:48 . 2006-08-21 05:21 16,896 --a--c--- C:\WINDOWS\system32\dllcache\fltlib.dll
2008-07-02 16:57 . 2006-10-04 07:06 1,197,294 --a--c--- C:\WINDOWS\system32\dllcache\sysmain.sdb
2008-07-02 16:57 . 2006-10-04 07:06 764,868 --a--c--- C:\WINDOWS\system32\dllcache\apph_sp.sdb
2008-07-02 16:57 . 2006-10-04 07:06 217,118 --a--c--- C:\WINDOWS\system32\dllcache\apphelp.sdb
2008-07-02 16:54 . 2008-07-04 10:15 <DIR> d-------- C:\WINDOWS\system32\drivers\UMDF
2008-07-02 16:54 . 2008-07-02 16:55 <DIR> d-------- C:\e49d3fd325957d9bc62ee2002c
2008-07-02 09:00 . 2007-07-09 06:09 584,192 --a--c--- C:\WINDOWS\system32\dllcache\rpcrt4.dll
2008-07-02 09:00 . 2008-06-13 06:10 272,128 --a--c--- C:\WINDOWS\system32\dllcache\bthport.sys
2008-07-01 16:50 . 2008-07-02 16:54 <DIR> d-------- C:\WINDOWS\system32\LogFiles
2008-07-01 09:37 . 2004-08-03 23:56 1,888,992 --a------ C:\WINDOWS\system32\ati3duag.dll
2008-07-01 09:18 . 2006-09-25 16:58 23,856 --a------ C:\WINDOWS\system32\spupdsvc.exe
2008-07-01 09:17 . 2008-07-01 09:17 <DIR> d-------- C:\WINDOWS\system32\bits
2008-07-01 09:16 . 2004-08-03 23:56 438,784 --a------ C:\WINDOWS\system32\xpob2res.dll
2008-07-01 09:16 . 2004-08-03 23:56 351,232 --a------ C:\WINDOWS\system32\winhttp.dll
2008-07-01 09:16 . 2004-08-03 23:56 18,944 --a------ C:\WINDOWS\system32\qmgrprxy.dll
2008-07-01 09:16 . 2004-08-03 23:56 8,192 --a------ C:\WINDOWS\system32\bitsprx2.dll
2008-07-01 09:16 . 2004-08-03 23:56 7,168 --a------ C:\WINDOWS\system32\bitsprx3.dll
2008-07-01 09:15 . 2007-07-30 18:19 549,720 --a------ C:\WINDOWS\system32\wuapi.dll
2008-07-01 09:15 . 2007-07-30 18:19 325,976 --a------ C:\WINDOWS\system32\wucltui.dll
2008-07-01 09:15 . 2007-07-30 18:19 216,408 --a------ C:\WINDOWS\system32\wuaucpl.cpl
2008-07-01 09:15 . 2007-07-30 18:19 43,352 --a------ C:\WINDOWS\system32\wups2.dll
2008-07-01 09:15 . 2007-07-30 18:18 34,136 --a------ C:\WINDOWS\system32\wucltui.dll.mui
2008-07-01 09:15 . 2007-07-30 18:18 33,624 --a------ C:\WINDOWS\system32\wups.dll
2008-07-01 09:15 . 2007-07-30 18:19 25,944 --a------ C:\WINDOWS\system32\wuaucpl.cpl.mui
2008-07-01 09:15 . 2007-07-30 18:19 25,944 --a------ C:\WINDOWS\system32\wuapi.dll.mui
2008-07-01 09:15 . 2007-07-30 18:18 20,312 --a------ C:\WINDOWS\system32\wuaueng.dll.mui
2008-07-01 09:11 . 2008-07-01 09:11 9,509 --a------ C:\WINDOWS\system32\QuickTime.qtp
2008-06-21 23:09 . 2008-06-21 23:09 <DIR> d-------- C:\Documents and Settings\Owner\Application Data\HP
2008-06-21 23:03 . 2004-08-03 23:56 221,184 --a------ C:\WINDOWS\system32\wmpns.dll
2008-06-21 22:43 . 2008-06-21 22:43 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\HPSSUPPLY
2008-06-21 22:40 . 2008-06-21 22:41 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\HP
2008-06-21 22:38 . 2006-12-03 14:45 49,920 -ra------ C:\WINDOWS\system32\drivers\HPZid412.sys
2008-06-21 22:38 . 2006-12-03 14:45 16,496 -ra------ C:\WINDOWS\system32\drivers\HPZipr12.sys
2008-06-21 22:37 . 2007-01-12 02:44 892,928 -ra------ C:\WINDOWS\system32\hpwtiop2.dll
2008-06-21 22:37 . 2007-01-12 02:44 675,840 -ra------ C:\WINDOWS\system32\hpwwiax2.dll
2008-06-21 22:37 . 2006-12-03 14:45 364,544 -ra------ C:\WINDOWS\system32\hppldcoi.dll
2008-06-21 22:37 . 2006-12-03 14:44 309,760 -ra------ C:\WINDOWS\system32\difxapi.dll
2008-06-21 22:37 . 2006-12-27 07:24 294,912 -ra------ C:\WINDOWS\system32\hpovst11.dll
2008-06-21 22:37 . 2007-01-31 11:08 258,048 -ra------ C:\WINDOWS\system32\hpzids01.dll
2008-06-21 22:37 . 2006-12-29 08:57 117,760 --a------ C:\WINDOWS\system32\hpz3l4v2.dll
2008-06-21 22:37 . 2006-12-03 14:46 21,568 -ra------ C:\WINDOWS\system32\drivers\HPZius12.sys
2008-06-21 22:37 . 2004-08-03 21:58 15,104 --a------ C:\WINDOWS\system32\drivers\usbscan.sys
2008-06-21 22:36 . 2008-07-01 10:08 <DIR> d----c--- C:\WINDOWS\system32\DRVSTORE
2008-06-21 22:36 . 2008-06-21 22:36 <DIR> d-------- C:\WINDOWS\marco
2008-06-21 22:31 . 2008-06-21 23:10 135,162 --a------ C:\WINDOWS\hpwins10.dat
2008-06-21 16:55 . 2008-06-21 16:55 3,684 --a------ C:\WINDOWS\system32\OEMINFO.PNF
2008-06-20 11:32 . 2004-08-03 22:10 61,056 --a------ C:\WINDOWS\system32\drivers\ohci1394.sys
2008-06-20 11:32 . 2004-08-03 22:15 60,800 --a------ C:\WINDOWS\system32\drivers\sysaudio.sys
2008-06-20 11:32 . 2001-08-17 14:00 54,272 --a------ C:\WINDOWS\system32\drivers\swmidi.sys
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-07-19 21:58 --------- d-----w C:\Program Files\QuickTime
2008-07-19 21:58 --------- d-----w C:\Program Files\iTunes
2008-07-19 03:52 94,208 ----a-w C:\WINDOWS\system32\F3A.tmp
2008-07-19 03:52 94,208 ----a-w C:\WINDOWS\system32\F38.tmp
2008-07-19 03:52 94,208 ----a-w C:\WINDOWS\system32\F37.tmp
2008-07-19 03:52 94,208 ----a-w C:\WINDOWS\system32\F36.tmp
2008-07-19 03:52 94,208 ----a-w C:\WINDOWS\system32\F35.tmp
2008-07-19 03:52 94,208 ----a-w C:\WINDOWS\system32\F34.tmp
2008-07-19 03:52 94,208 ----a-w C:\WINDOWS\system32\F33.tmp
2008-07-19 03:52 94,208 ----a-w C:\WINDOWS\system32\F32.tmp
2008-07-19 03:51 94,208 ----a-w C:\WINDOWS\system32\F31.tmp
2008-07-19 03:51 94,208 ----a-w C:\WINDOWS\system32\F30.tmp
2008-07-19 03:51 94,208 ----a-w C:\WINDOWS\system32\F2F.tmp
2008-07-19 03:51 94,208 ----a-w C:\WINDOWS\system32\F2E.tmp
2008-07-19 03:51 94,208 ----a-w C:\WINDOWS\system32\F2D.tmp
2008-07-19 03:51 94,208 ----a-w C:\WINDOWS\system32\F2C.tmp
2008-07-19 03:51 94,208 ----a-w C:\WINDOWS\system32\F2B.tmp
2008-07-19 03:51 94,208 ----a-w C:\WINDOWS\system32\F2A.tmp
2008-07-19 03:50 94,208 ----a-w C:\WINDOWS\system32\F29.tmp
2008-07-19 03:50 94,208 ----a-w C:\WINDOWS\system32\F28.tmp
2008-07-19 03:50 94,208 ----a-w C:\WINDOWS\system32\F27.tmp
2008-07-19 03:50 94,208 ----a-w C:\WINDOWS\system32\F26.tmp
2008-07-19 03:50 94,208 ----a-w C:\WINDOWS\system32\F25.tmp
2008-07-19 03:50 94,208 ----a-w C:\WINDOWS\system32\F24.tmp
2008-07-19 03:50 94,208 ----a-w C:\WINDOWS\system32\F23.tmp
2008-07-19 03:50 94,208 ----a-w C:\WINDOWS\system32\F22.tmp
2008-07-19 03:49 94,208 ----a-w C:\WINDOWS\system32\F21.tmp
2008-07-19 03:49 94,208 ----a-w C:\WINDOWS\system32\F20.tmp
2008-07-19 03:49 94,208 ----a-w C:\WINDOWS\system32\F1F.tmp
2008-07-19 03:49 94,208 ----a-w C:\WINDOWS\system32\F1E.tmp
2008-07-19 03:49 94,208 ----a-w C:\WINDOWS\system32\F1D.tmp
2008-07-19 03:49 94,208 ----a-w C:\WINDOWS\system32\F1C.tmp
2008-07-19 03:49 94,208 ----a-w C:\WINDOWS\system32\F1B.tmp
2008-07-19 03:49 94,208 ----a-w C:\WINDOWS\system32\F1A.tmp
2008-07-19 03:48 94,208 ----a-w C:\WINDOWS\system32\F19.tmp
2008-07-19 03:48 94,208 ----a-w C:\WINDOWS\system32\F18.tmp
2008-07-19 03:48 94,208 ----a-w C:\WINDOWS\system32\F17.tmp
2008-07-19 03:48 94,208 ----a-w C:\WINDOWS\system32\F16.tmp
2008-07-19 03:48 94,208 ----a-w C:\WINDOWS\system32\F15.tmp
2008-07-19 03:48 94,208 ----a-w C:\WINDOWS\system32\F14.tmp
2008-07-19 03:48 94,208 ----a-w C:\WINDOWS\system32\F13.tmp
2008-07-19 03:48 94,208 ----a-w C:\WINDOWS\system32\F12.tmp
2008-07-19 03:48 94,208 ----a-w C:\WINDOWS\system32\F11.tmp
2008-07-19 03:47 94,208 ----a-w C:\WINDOWS\system32\F0E.tmp
2008-07-19 03:47 94,208 ----a-w C:\WINDOWS\system32\F0C.tmp
2008-07-19 03:47 94,208 ----a-w C:\WINDOWS\system32\F0A.tmp
2008-07-19 03:47 94,208 ----a-w C:\WINDOWS\system32\F08.tmp
2008-07-19 03:47 94,208 ----a-w C:\WINDOWS\system32\F06.tmp
2008-07-19 03:47 94,208 ----a-w C:\WINDOWS\system32\F04.tmp
2008-07-19 03:47 94,208 ----a-w C:\WINDOWS\system32\F02.tmp
2008-07-19 03:46 94,208 ----a-w C:\WINDOWS\system32\F00.tmp
2008-07-19 03:46 94,208 ----a-w C:\WINDOWS\system32\EFF.tmp
2008-07-19 03:46 94,208 ----a-w C:\WINDOWS\system32\EFD.tmp
2008-07-19 03:46 94,208 ----a-w C:\WINDOWS\system32\EFB.tmp
2008-07-19 03:46 94,208 ----a-w C:\WINDOWS\system32\EF9.tmp
2008-07-19 03:46 94,208 ----a-w C:\WINDOWS\system32\EF7.tmp
2008-07-19 03:46 94,208 ----a-w C:\WINDOWS\system32\EF5.tmp
2008-07-19 03:46 94,208 ----a-w C:\WINDOWS\system32\EF3.tmp
2008-07-19 03:45 94,208 ----a-w C:\WINDOWS\system32\EF1.tmp
2008-07-19 03:45 94,208 ----a-w C:\WINDOWS\system32\EEF.tmp
2008-07-19 03:45 94,208 ----a-w C:\WINDOWS\system32\EED.tmp
2008-07-19 03:45 94,208 ----a-w C:\WINDOWS\system32\EEB.tmp
2008-07-19 03:45 94,208 ----a-w C:\WINDOWS\system32\EE9.tmp
2008-07-19 03:45 94,208 ----a-w C:\WINDOWS\system32\EE7.tmp
2008-07-19 03:45 94,208 ----a-w C:\WINDOWS\system32\EE5.tmp
2008-07-19 03:45 94,208 ----a-w C:\WINDOWS\system32\EE3.tmp
2008-07-19 03:44 94,208 ----a-w C:\WINDOWS\system32\EDF.tmp
2008-07-19 03:44 94,208 ----a-w C:\WINDOWS\system32\EDD.tmp
2008-07-19 03:44 94,208 ----a-w C:\WINDOWS\system32\EDB.tmp
2008-07-19 03:44 94,208 ----a-w C:\WINDOWS\system32\ED9.tmp
2008-07-19 03:44 94,208 ----a-w C:\WINDOWS\system32\ED7.tmp
2008-07-19 03:44 94,208 ----a-w C:\WINDOWS\system32\ED5.tmp
2008-07-19 03:44 94,208 ----a-w C:\WINDOWS\system32\ED4.tmp
2008-07-19 03:44 94,208 ----a-w C:\WINDOWS\system32\ED3.tmp
2008-07-19 03:44 94,208 ----a-w C:\WINDOWS\system32\ED2.tmp
2008-07-19 03:43 94,208 ----a-w C:\WINDOWS\system32\ED0.tmp
2008-07-19 03:43 94,208 ----a-w C:\WINDOWS\system32\ECF.tmp
2008-07-19 03:43 94,208 ----a-w C:\WINDOWS\system32\ECE.tmp
2008-07-19 03:43 94,208 ----a-w C:\WINDOWS\system32\ECD.tmp
2008-07-19 03:43 94,208 ----a-w C:\WINDOWS\system32\ECC.tmp
2008-07-19 03:43 94,208 ----a-w C:\WINDOWS\system32\ECB.tmp
2008-07-19 03:43 94,208 ----a-w C:\WINDOWS\system32\ECA.tmp
2008-07-19 03:43 94,208 ----a-w C:\WINDOWS\system32\EC9.tmp
2008-07-19 03:42 94,208 ----a-w C:\WINDOWS\system32\EC8.tmp
2008-07-19 03:42 94,208 ----a-w C:\WINDOWS\system32\EC7.tmp
2008-07-19 03:42 94,208 ----a-w C:\WINDOWS\system32\EC6.tmp
2008-07-19 03:42 94,208 ----a-w C:\WINDOWS\system32\EC5.tmp
2008-07-19 03:42 94,208 ----a-w C:\WINDOWS\system32\EC4.tmp
2008-07-19 03:42 94,208 ----a-w C:\WINDOWS\system32\EC3.tmp
2008-07-19 03:42 94,208 ----a-w C:\WINDOWS\system32\EC2.tmp
2008-07-19 03:42 94,208 ----a-w C:\WINDOWS\system32\EC1.tmp
2008-07-19 03:42 94,208 ----a-w C:\WINDOWS\system32\EC0.tmp
2008-07-19 03:41 94,208 ----a-w C:\WINDOWS\system32\EBF.tmp
2008-07-19 03:41 94,208 ----a-w C:\WINDOWS\system32\EBE.tmp
2008-07-19 03:41 94,208 ----a-w C:\WINDOWS\system32\EBD.tmp
2008-07-19 03:41 94,208 ----a-w C:\WINDOWS\system32\EBC.tmp
2008-07-19 03:41 94,208 ----a-w C:\WINDOWS\system32\EBB.tmp
2008-07-19 03:41 94,208 ----a-w C:\WINDOWS\system32\EBA.tmp
2008-07-19 03:40 94,208 ----a-w C:\WINDOWS\system32\EB9.tmp
2008-07-19 03:40 94,208 ----a-w C:\WINDOWS\system32\EB8.tmp
2008-04-17 15:04 27,976 ----a-w C:\Program Files\mozilla firefox\plugins\atgpcdec.dll
2008-04-17 15:04 125,848 ----a-w C:\Program Files\mozilla firefox\plugins\atgpcext.dll
2005-04-25 01:19 25,677 --sha-w C:\WINDOWS\Registration\ksatrc.bak1
2005-05-03 15:34 496,232 --sha-w C:\WINDOWS\Registration\ksatrc.bak2
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"MSMSGS"="C:\Program Files\Messenger\msmsgs.exe" [2004-10-13 09:24 1694208]
"updateMgr"="C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" [2006-03-30 15:45 313472]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-03 23:56 15360]
"msnmsgr"="C:\Program Files\MSN Messenger\msnmsgr.exe" [2007-01-19 11:54 5674352]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"="C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe" [2004-01-20 18:53 32881]
"hpsysdrv"="c:\windows\system\hpsysdrv.exe" [1998-05-07 17:04 52736]
"HPHUPD05"="c:\Program Files\HP\{45B6180B-DCAB-4093-8EE8-6164457517F0}\hphupd05.exe" [2003-08-21 04:23 49152]
"HPHmon05"="C:\WINDOWS\System32\hphmon05.exe" [2003-08-21 04:15 483328]
"KBD"="C:\HP\KBD\KBD.EXE" [2003-02-11 20:02 61440]
"UpdateManager"="C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" [2003-08-19 09:01 110592]
"TkBellExe"="C:\Program Files\Common Files\Real\Update_OB\realsched.exe" [2007-08-29 07:11 185632]
"Recguard"="C:\WINDOWS\SMINST\RECGUARD.EXE" [2003-11-03 17:50 221184]
"ccApp"="c:\Program Files\Common Files\Symantec Shared\ccApp.exe" [2003-08-15 01:59 70816]
"NAV CfgWiz"="c:\Program Files\Common Files\Symantec Shared\CfgWiz.exe" [2003-08-15 19:24 124096]
"PS2"="C:\WINDOWS\system32\ps2.exe" [2002-10-16 16:57 81920]
"NvCplDaemon"="C:\WINDOWS\System32\NvCpl.dll" [2003-12-05 20:50 3022848]
"Sunkist2k"="C:\Program Files\Multimedia Card Reader\shwicon2k.exe" [2003-10-29 10:17 135168]
"Reminder"="C:\Windows\Creator\Remind_XP.exe" [2003-12-18 00:31 118784]
"QuickTime Task"="C:\Program Files\QuickTime\QTTask.exe" [2005-12-11 15:48 155648]
"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [2005-09-16 08:43 274432]
"USS"="C:\Program Files\USS\USS.exe" [2008-07-15 20:35 167936]
"AVG8_TRAY"="C:\PROGRA~1\AVG\AVG8\avgtray.exe" [2008-07-16 19:00 1232152]
"LTMSG"="LTMSG.exe" [2003-07-14 18:52 40960 C:\WINDOWS\ltmsg.exe]
"nwiz"="nwiz.exe" [2003-12-05 20:50 753664 C:\WINDOWS\system32\nwiz.exe]
C:\WINDOWS\system32\config\systemprofile\Start Menu\Programs\Startup\
AutoTBar.exe [2003-11-14 19:44:40 32768]
C:\Documents and Settings\Owner\Start Menu\Programs\Startup\
Billminder.lnk - C:\QUICKENW\billmind.exe [2004-09-27 21:15:30 25600]
HotSync Manager.lnk - C:\Program Files\Palm\HOTSYNC.EXE [2003-03-17 17:50:26 299008]
PowerReg Scheduler V3.exe [2005-06-20 09:54:37 225280]
PowerReg Scheduler.exe [2006-07-07 15:32:30 256000]
spamsubtract.lnk - C:\Program Files\interMute\SpamSubtract\SpamSub.exe [2004-01-21 02:52:52 557056]
C:\Documents and Settings\All Users\Start Menu\Programs\Startup\
Adobe Reader Speed Launch.lnk - C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe [2008-04-23 02:38:16 29696]
Google Updater.lnk - C:\Program Files\Google\Google Updater\GoogleUpdater.exe [2006-12-27 12:03:57 125624]
HP Digital Imaging Monitor.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe [2007-01-02 20:40:10 210520]
Logitech Desktop Messenger.lnk - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\bak\LogitechDesktopMessenger.exe [2007-03-26 02:48:00 67128]
Quicken Scheduled Updates.lnk - C:\Program Files\Quicken\bagent.exe [2003-07-30 05:49:48 57344]
Updates from HP.lnk - C:\Program Files\Updates from HP\137903\Program\BackWeb-137903.exe [2004-01-20 20:59:55 16384]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=avgrsstx.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"VTTimer"=VTTimer.exe
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\ZoneLabsFirewall]
"DisableMonitoring"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"C:\\Program Files\\Messenger\\msmsgs.exe"=
"C:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"C:\\Program Files\\iTunes\\iTunes.exe"=
"C:\\Program Files\\Updates from HP\\137903\\Program\\BackWeb-137903.exe"=
"C:\\Program Files\\AVG\\AVG8\\avgemc.exe"=
"C:\\Program Files\\AVG\\AVG8\\avgupd.exe"=
R1 AvgLdx86;AVG Free AVI Loader Driver x86;C:\WINDOWS\system32\Drivers\avgldx86.sys [2008-07-16 19:01]
R2 avg8emc;AVG Free8 E-mail Scanner;C:\PROGRA~1\AVG\AVG8\avgemc.exe [2008-07-16 19:00]
R2 avg8wd;AVG Free8 WatchDog;C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe [2008-07-16 19:00]
R2 AvgTdiX;AVG Free8 Network Redirector;C:\WINDOWS\system32\Drivers\avgtdix.sys [2008-07-16 19:01]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{dd446d44-4460-11dd-a848-001596fe0aae}]
\Shell\AutoRun\command - K:\LinksysConnectPC.exe
.
Contents of the 'Scheduled Tasks' folder
"2008-06-19 02:26:02 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job"
- C:\Program Files\Apple Software Update\SoftwareUpdate.exe
"2008-06-20 16:52:57 C:\WINDOWS\Tasks\Easy Internet Sign-up.job"
- C:\Program Files\Easy Internet signup\HPSdpApp.exe
"2008-07-15 08:00:00 C:\WINDOWS\Tasks\McDefragTask.job"
- c:\PROGRA~1\mcafee\mqc\QcConsol.exe'
"2008-07-01 07:00:00 C:\WINDOWS\Tasks\McQcTask.job"
- c:\PROGRA~1\mcafee\mqc\QcConsol.exe
"2007-09-28 20:09:53 C:\WINDOWS\Tasks\SecureIE2007Upgrade.job"
- C:\Program Files\Winferno\Secure IE 2007 Upgrade\SecureIE2007Upgrade.exe
"2004-01-21 09:49:59 C:\WINDOWS\Tasks\Symantec NetDetect.job"
- C:\Program Files\Symantec\LiveUpdate\NDETECT.EXE
"2008-06-29 21:53:00 C:\WINDOWS\Tasks\Uniblue SpeedUpMyPC Nag.job"
- C:\Program Files\Uniblue\SpeedUpMyPC 3\SpeedUpMyPC.exe
"2008-02-10 22:53:14 C:\WINDOWS\Tasks\Uniblue SpeedUpMyPC.job"
- C:\Program Files\Uniblue\SpeedUpMyPC 3\SpeedUpMyPC.exe
.
**************************************************************************
catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.netRootkit scan 2008-07-19 14:58:35
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
**************************************************************************
.
Completion time: 2008-07-19 15:02:17
ComboFix-quarantined-files.txt 2008-07-19 22:01:01
ComboFix2.txt 2008-07-19 18:03:07
Pre-Run: 108,518,232,064 bytes free
Post-Run: 108,498,423,808 bytes free
544 --- E O F --- 2008-07-11 07:26:38
Kaspersky Scan Report:--------------------------------------------------------------------------------
KASPERSKY ONLINE SCANNER 7 REPORT
Sunday, July 20, 2008
Operating System: Microsoft Windows XP Home Edition Service Pack 2 (build 2600)
Kaspersky Online Scanner 7 version: 7.0.25.0
Program database last update: Saturday, July 19, 2008 21:38:15
Records in database: 974923
--------------------------------------------------------------------------------
Scan settings:
Scan using the following database: extended
Scan archives: yes
Scan mail databases: yes
Scan area - My Computer:
A:\
C:\
D:\
E:\
F:\
G:\
H:\
I:\
J:\
Scan statistics:
Files scanned: 162234
Threat name: 14
Infected objects: 3856
Suspicious objects: 0
Duration of the scan: 03:03:48
File name / Threat name / Threats count
C:\Documents and Settings\Owner\Desktop\SmitfraudFix\Reboot.exe Infected: not-a-virus:RiskTool.Win32.Reboot.f 1
C:\Documents and Settings\Owner\Desktop\SmitfraudFix.exe Infected: not-a-virus:RiskTool.Win32.Reboot.f 1
C:\Documents and Settings\Owner\Yugma\lib\DskHooks.dll Infected: not-a-virus:RemoteAdmin.Win32.WinVNC.1370 1
C:\Documents and Settings\Owner\Yugma\lib\YugmaPlugin.dll Infected: not-a-virus:RemoteAdmin.Win32.WinVNC.1360 1
C:\Program Files\Common Files\Real\Toolbar\RealBar.dll Infected: not-a-virus:AdWare.Win32.MegaSearch.s 1
C:\Program Files\Moyea\FLV to Video Pro\FLVDownloader_Install.exe Infected: not-a-virus:AdWare.Win32.AdMoke.agg 1
C:\Program Files\Moyea\FLV to Video Pro\FLVDownloader_Install.exe Infected: Backdoor.Win32.Sheldor.aw 1
C:\Program Files\Mozilla Firefox\SmitfraudFix\Reboot.exe Infected: not-a-virus:RiskTool.Win32.Reboot.f 1
C:\Program Files\USS\{826F15BF-1A4C-4290-BFD1-794AF7A2CB8F}\kernel.dll Infected: not-a-virus:FraudTool.Win32.ErrClean.a 1
C:\QooBox\Quarantine\C\Program Files\PCHealthCenter\0.exe.vir Infected: not-a-virus:FraudTool.Win32.WinAntiVirus.ac 1
C:\QooBox\Quarantine\C\Program Files\PCHealthCenter\3.exe.vir Infected: not-a-virus:FraudTool.Win32.WinAntiVirus.x 1
C:\QooBox\Quarantine\C\Program Files\VAV\vav.cpl.vir Infected: not-a-virus:FraudTool.Win32.UltimateAntivirus.s 1
C:\QooBox\Quarantine\C\WINDOWS\agpqlrfm.exe.vir Infected: Trojan.Win32.Vapsup.ilz 1
C:\QooBox\Quarantine\C\WINDOWS\Sys1FA.exe.vir Infected: not-a-virus:FraudTool.Win32.WinAntiVirus.x 1
C:\QooBox\Quarantine\C\WINDOWS\system32\2.tmp.vir Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\QooBox\Quarantine\C\WINDOWS\system32\3.tmp.vir Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\QooBox\Quarantine\C\WINDOWS\system32\4.tmp.vir Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\QooBox\Quarantine\C\WINDOWS\system32\5.tmp.vir Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\QooBox\Quarantine\C\WINDOWS\system32\6.tmp.vir Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\QooBox\Quarantine\C\WINDOWS\system32\7.tmp.vir Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\QooBox\Quarantine\C\WINDOWS\system32\8.tmp.vir Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\QooBox\Quarantine\C\WINDOWS\system32\9.tmp.vir Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\QooBox\Quarantine\C\WINDOWS\system32\A.tmp.vir Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\QooBox\Quarantine\C\WINDOWS\system32\B.tmp.vir Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\QooBox\Quarantine\C\WINDOWS\system32\C.tmp.vir Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\QooBox\Quarantine\C\WINDOWS\system32\D.tmp.vir Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\QooBox\Quarantine\C\WINDOWS\system32\E.tmp.vir Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\QooBox\Quarantine\C\WINDOWS\system32\F.tmp.vir Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\QooBox\Quarantine\C\WINDOWS\system32\fbluogtf.dll.vir Infected: Trojan.Win32.Monder.ama 1
C:\QooBox\Quarantine\C\WINDOWS\system32\geBqPFYR.dll.vir Infected: not-a-virus:AdWare.Win32.Virtumonde.aati 1
C:\QooBox\Quarantine\C\WINDOWS\system32\pphcro7j0ea2e.exe.vir Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\QooBox\Quarantine\C\WINDOWS\system32\vav.cpl.vir Infected: not-a-virus:FraudTool.Win32.UltimateAntivirus.s 1
C:\WINDOWS\system32\10.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\100.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\101.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\102.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\103.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\104.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\105.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\106.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\107.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\108.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\109.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\10A.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\10B.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\10C.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\10D.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\10E.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\10F.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\11.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\110.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\111.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\112.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\113.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\114.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\115.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\116.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\117.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\118.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\119.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\11A.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\11B.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\11C.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\11D.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\11E.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\11F.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\12.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\120.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\121.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\122.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\123.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\124.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\125.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\126.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\127.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\128.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\129.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\12A.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\12B.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\12C.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\12D.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\12E.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\12F.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\13.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\130.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\131.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\132.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\133.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\134.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\135.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\136.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\137.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\138.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\139.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\13A.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\13B.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\13C.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\13D.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\13E.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\13F.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\14.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\140.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\141.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\142.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\143.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\144.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\145.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\146.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\147.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\148.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\149.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\14A.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\14B.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\14C.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\14D.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\14E.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\14F.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\15.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\150.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\151.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\152.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\153.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\154.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\155.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\156.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\157.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\158.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\159.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\15A.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\15B.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\15C.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\15D.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\15E.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\15F.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\16.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\160.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\161.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\162.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\163.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\164.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\165.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\166.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\167.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\168.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\169.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\16A.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\16B.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\16C.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\16D.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\16E.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\16F.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\17.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\170.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\171.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\172.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\173.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\174.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\175.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\176.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\177.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\178.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\179.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\17A.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\17B.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\17C.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\17D.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\17E.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\17F.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\18.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\180.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\181.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\182.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\183.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\184.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\185.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\186.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\187.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\188.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\189.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\18A.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\18B.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\18C.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\18D.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\18E.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\18F.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\19.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\190.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\191.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\192.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\193.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\194.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\195.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\196.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\197.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\198.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\199.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\19A.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\19B.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\19C.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\19D.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\19E.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\19F.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1A.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1A0.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1A1.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1A2.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1A3.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1A4.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1A5.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1A6.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1A7.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1A8.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1A9.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1AA.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1AB.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1AC.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1AD.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1AE.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1AF.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1B.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1B0.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1B1.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1B2.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1B3.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1B4.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1B5.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1B6.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1B7.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1B8.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1B9.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1BA.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1BB.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1BC.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1BD.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1BE.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1BF.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1C.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1C0.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1C1.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1C2.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1C3.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1C4.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1C5.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1C6.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1C7.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1C8.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1C9.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1CA.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1CB.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1CC.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1CD.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1CE.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1CF.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1D.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1D0.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1D1.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1D2.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1D3.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1D4.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1D5.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1D6.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1D7.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1D8.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1D9.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1DA.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1DB.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1DC.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1DD.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1DE.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1DF.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1E.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1E0.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1E1.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1E2.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1E3.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1E4.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1E5.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1E6.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1E7.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1E8.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1E9.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1EA.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1EB.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1EC.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1ED.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1EE.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1EF.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1F.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1F0.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1F1.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1F2.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1F3.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1F4.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1F5.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1F6.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1F7.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1F8.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1F9.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1FA.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1FB.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1FC.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1FD.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1FE.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\1FF.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\20.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\200.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\201.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\202.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\203.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\204.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\205.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\206.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\207.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\208.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\209.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\20A.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\20B.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\20C.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\20D.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\20E.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\20F.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\21.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\210.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\211.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\212.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\213.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\214.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\215.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\216.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\217.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\218.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\219.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\21A.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\21B.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\21C.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\21D.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\21E.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\21F.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\22.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\220.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\221.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\222.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\223.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\224.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\225.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\226.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\227.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\228.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\229.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\22A.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\22B.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\22C.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\22D.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\22E.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\22F.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\23.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\230.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\231.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\232.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\233.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\234.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\235.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\236.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\237.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\238.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\239.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\23A.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\23B.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\23C.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\23D.tmp Infected: not-a-virus:FraudTool.Win32.MalwareProtector.d 1
C:\WINDOWS\system32\23E.tmp Infected