Jump to content

Build Theme!
  •  
  • Infected?

WE'RE SURE THAT YOU'LL LOVE US!

Hey there! :wub: Looks like you're enjoying the discussion, but you're not signed up for an account. When you create an account, we remember exactly what you've read, so you always come right back where you left off. You also get notifications, here and via email, whenever new posts are made. You can like posts to share the love. :D Join 91733 other members! Anybody can ask, anybody can answer. Consistently helpful members may be invited to become staff. Here's how it works. Virus cleanup? Start here -> Malware Removal Forum.

Try What the Tech -- It's free!


Photo

backdoor and 2 other viruses found; 11 infected areas


  • This topic is locked This topic is locked
No replies to this topic

#1 rol32

rol32

    New Member

  • New Member
  • Pip
  • 6 posts

Posted 18 May 2008 - 12:17 PM

My computer has been performing poorly for 3 weeks, since I switched from dial-up to wi-fi. 1. THE computer is slower now most of the time, although it is fast sometimes. 2. I get stuck on many websites--the message "Program not responding" frequently appears, 3. Real Player NO LONGER plays audio programs--the sound is either constantly interrupted or completely garbled. I downloaded a new real player, but have the same results. THE real player troubleshooting fixes do not help. 4. a Kaspersky online scan found a Backdoor virus and 2 other viruses, plus 11 infected areas.

Hijack this log:

Logfile of HijackThis v1.99.1
Scan saved at 10:21:17 AM, on 5/18/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16640)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\D-Link\RangeBooster G WDA-2320\AirPlusCFG.exe
C:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\ANI\ANIWZCS2 Service\ANIWZCSdS.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Windows Live\Messenger\usnsvc.exe
c:\windows\system\hpsysdrv.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
C:\Program Files\Hijackthis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://ie.redirect.h...a...&pf=desktop
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://ie.redirect.h...a...&pf=desktop
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://ie.redirect.h...a...&pf=desktop
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft....k/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft....k/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://ie.redirect.h...a...&pf=desktop
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft....k/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.h...a...&pf=desktop
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.redirect.h...a...&pf=desktop
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: hpWebHelper Class - {AAAE832A-5FFF-4661-9C8F-369692D1DCB9} - C:\WINDOWS\pchealth\helpctr\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\plugin\WebHelper.dll
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Reminder] "C:\Windows\Creator\Remind_XP.exe"
O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [HPBootOp] "C:\Program Files\Hewlett-Packard\HP Boot Optimizer\HPBootOp.exe" /run
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [ftutil2] rundll32.exe ftutil2.dll,SetWriteCacheMode
O4 - HKLM\..\Run: [D-Link RangeBooster G WDA-2320] C:\Program Files\D-Link\RangeBooster G WDA-2320\AirPlusCFG.exe
O4 - HKLM\..\Run: [ANIWZCS2Service] C:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: Internet Connection Help - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra 'Tools' menuitem: Internet Connection Help - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky...can_unicode.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.mi...b?1209263480218
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.6.0) - http://sdlc-esd.sun....ows-i586-jc.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: ANIWZCSd Service (ANIWZCSdService) - Alpha Networks Inc. - C:\Program Files\ANI\ANIWZCS2 Service\ANIWZCSdS.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

*******************MBAM log

Malwarebytes' Anti-Malware 1.12
Database version: 762

Scan type: Quick Scan
Objects scanned: 35577
Time elapsed: 3 minute(s), 23 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 4
Files Infected: 4

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
(No malicious items detected)

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
C:\Program Files\RegistrySmart (Rogue.RegistrySmart) -> Quarantined and deleted successfully.
C:\Documents and Settings\Compaq_Owner\Application Data\RegistrySmart (Rogue.RegistrySmart) -> Quarantined and deleted successfully.
C:\Documents and Settings\Compaq_Owner\Application Data\RegistrySmart\Log (Rogue.RegistrySmart) -> Quarantined and deleted successfully.
C:\Documents and Settings\Compaq_Owner\Application Data\RegistrySmart\Registry Backups (Rogue.RegistrySmart) -> Quarantined and deleted successfully.

Files Infected:
C:\Documents and Settings\Compaq_Owner\Application Data\RegistrySmart\Errors.stg (Rogue.RegistrySmart) -> Quarantined and deleted successfully.
C:\Documents and Settings\Compaq_Owner\Application Data\RegistrySmart\Results.stg (Rogue.RegistrySmart) -> Quarantined and deleted successfully.
C:\Documents and Settings\Compaq_Owner\Application Data\RegistrySmart\Registry Backups\2007-04-06_11-15-15.reg (Rogue.RegistrySmart) -> Quarantined and deleted successfully.
C:\Documents and Settings\Compaq_Owner\Application Data\RegistrySmart\Registry Backups\2007-07-06_16-46-15.reg (Rogue.RegistrySmart) -> Quarantined and deleted successfully.

*********************Kaspersky online scanner


KASPERSKY ONLINE SCANNER REPORTKASPERSKY ONLINE SCANNER REPORT
Friday, May 16, 2008 5:44:15 PM
Operating System: Microsoft Windows XP Home Edition, Service Pack 2 (Build
2600)
Kaspersky Online Scanner version: 5.0.98.0
Kaspersky Anti-Virus database last update: 16/05/2008
Kaspersky Anti-Virus database records: 779339


Scan Settings
Scan using the following antivirus databaseextended
Scan Archivestrue
Scan Mail Basestrue

Scan TargetFolders
C:\
D:\
E:\

Scan Statistics
Total number of scanned objects88053
Number of viruses found3
Number of infected objects11
Number of suspicious objects0
Duration of the scan process01:12:21

Infected Object NameVirus NameLast Action
C:\Documents and Settings\All Users\Application
Data\Microsoft\Network\Downloader\qmgr0.dat Object is locked skipped

C:\Documents and Settings\All Users\Application
Data\Microsoft\Network\Downloader\qmgr1.dat Object is locked skipped

C:\Documents and Settings\Compaq_Owner\Cookies\index.dat Object is locked
skipped

C:\Documents and Settings\Compaq_Owner\Local Settings\Application
Data\Apple
Computer\QuickTime\downloads\01\05\15f7fdf9-d756f020-20421a2f-5027ea36.qtch
Object is locked skipped

C:\Documents and Settings\Compaq_Owner\Local Settings\Application
Data\Microsoft\Messenger\pix@hotmail.com\SharingMetadata\Logs\Dfsr00005.log
Object is locked skipped

C:\Documents and Settings\Compaq_Owner\Local Settings\Application
Data\Microsoft\Messenger\pix@hotmail.com\SharingMetadata\pending.dat
Object is locked skipped

C:\Documents and Settings\Compaq_Owner\Local Settings\Application
Data\Microsoft\Messenger\pix@hotmail.com\SharingMetadata\Working\database_864C_AB13_4CAA_FD55\dfsr.db
Object is locked skipped

C:\Documents and Settings\Compaq_Owner\Local Settings\Application
Data\Microsoft\Messenger\pix@hotmail.com\SharingMetadata\Working\database_864C_AB13_4CAA_FD55\fsr.log
Object is locked skipped

C:\Documents and Settings\Compaq_Owner\Local Settings\Application
Data\Microsoft\Messenger\pix@hotmail.com\SharingMetadata\Working\database_864C_AB13_4CAA_FD55\fsrtmp.log
Object is locked skipped

C:\Documents and Settings\Compaq_Owner\Local Settings\Application
Data\Microsoft\Messenger\pix@hotmail.com\SharingMetadata\Working\database_864C_AB13_4CAA_FD55\tmp.edb
Object is locked skipped

C:\Documents and Settings\Compaq_Owner\Local Settings\Application
Data\Microsoft\Windows\UsrClass.dat Object is locked skipped

C:\Documents and Settings\Compaq_Owner\Local Settings\Application
Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

C:\Documents and Settings\Compaq_Owner\Local Settings\Application
Data\Microsoft\Windows Live
Contacts\pix@hotmail.com\real\members.stg Object is locked skipped


C:\Documents and Settings\Compaq_Owner\Local Settings\Application
Data\Microsoft\Windows Live
Contacts\pix@hotmail.com\shadow\members.stg Object is locked
skipped

C:\Documents and Settings\Compaq_Owner\Local
Settings\History\History.IE5\index.dat Object is locked skipped

C:\Documents and Settings\Compaq_Owner\Local
Settings\History\History.IE5\MSHist012008051220080513\index.dat Object is
locked skipped

C:\Documents and Settings\Compaq_Owner\Local
Settings\History\History.IE5\MSHist012008051320080514\index.dat Object is
locked skipped

C:\Documents and Settings\Compaq_Owner\Local
Settings\History\History.IE5\MSHist012008051420080515\index.dat Object is
locked skipped

C:\Documents and Settings\Compaq_Owner\Local
Settings\History\History.IE5\MSHist012008051520080516\index.dat Object is
locked skipped

C:\Documents and Settings\Compaq_Owner\Local
Settings\History\History.IE5\MSHist012008051620080517\index.dat Object is
locked skipped

C:\Documents and Settings\Compaq_Owner\Local Settings\Temp\hpodvd09.log
Object is locked skipped

C:\Documents and Settings\Compaq_Owner\Local
Settings\Temp\hsperfdata_Compaq_Owner\3932 Object is locked skipped

C:\Documents and Settings\Compaq_Owner\Local Settings\Temp\~DF205F.tmp
Object is locked skipped

C:\Documents and Settings\Compaq_Owner\Local Settings\Temp\~DF2076.tmp
Object is locked skipped

C:\Documents and Settings\Compaq_Owner\Local Settings\Temp\~DF3B4B.tmp
Object is locked skipped

C:\Documents and Settings\Compaq_Owner\Local Settings\Temp\~DF3B75.tmp
Object is locked skipped

C:\Documents and Settings\Compaq_Owner\Local Settings\Temp\~DF5410.tmp
Object is locked skipped

C:\Documents and Settings\Compaq_Owner\Local Settings\Temp\~DF5429.tmp
Object is locked skipped

C:\Documents and Settings\Compaq_Owner\Local Settings\Temp\~DF7117.tmp
Object is locked skipped

C:\Documents and Settings\Compaq_Owner\Local Settings\Temp\~DF7183.tmp
Object is locked skipped

C:\Documents and Settings\Compaq_Owner\Local Settings\Temp\~DF792D.tmp
Object is locked skipped

C:\Documents and Settings\Compaq_Owner\Local Settings\Temp\~DF7944.tmp
Object is locked skipped

C:\Documents and Settings\Compaq_Owner\Local Settings\Temporary Internet
Files\Content.IE5\index.dat Object is locked skipped

C:\Documents and Settings\Compaq_Owner\NTUSER.DAT Object is locked skipped


C:\Documents and Settings\Compaq_Owner\ntuser.dat.LOG Object is locked
skipped

C:\Documents and Settings\LocalService\Local Settings\Application
Data\Microsoft\Windows\UsrClass.dat Object is locked skipped

C:\Documents and Settings\LocalService\Local Settings\Application
Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

C:\Documents and Settings\LocalService\Local
Settings\Temp\Cookies\index.dat Object is locked skipped

C:\Documents and Settings\LocalService\Local
Settings\Temp\History\History.IE5\index.dat Object is locked skipped

C:\Documents and Settings\LocalService\Local Settings\Temp\Temporary
Internet Files\Content.IE5\index.dat Object is locked skipped

C:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped


C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked
skipped

C:\Documents and Settings\NetworkService\Local Settings\Application
Data\Microsoft\Windows\UsrClass.dat Object is locked skipped

C:\Documents and Settings\NetworkService\Local Settings\Application
Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked
skipped

C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked
skipped

C:\Program Files\Alwil Software\Avast4\DATA\aswResp.dat Object is locked
skipped

C:\Program Files\Alwil Software\Avast4\DATA\Avast4.db Object is locked
skipped

C:\Program Files\Alwil Software\Avast4\DATA\integ\avast.int Object is
locked skipped

C:\Program Files\Alwil Software\Avast4\DATA\log\AshWebSv.ws Object is
locked skipped

C:\Program Files\Alwil Software\Avast4\DATA\log\aswMaiSv.log Object is
locked skipped

C:\Program Files\Alwil Software\Avast4\DATA\log\nshield.log Object is
locked skipped

C:\Program Files\Alwil Software\Avast4\DATA\log\selfdef.log Object is
locked skipped

C:\Program Files\Alwil Software\Avast4\DATA\report\Resident protection.txt
Object is locked skipped

C:\Program Files\Online
Services\PeoplePC\ISP5900\Branding\ppal3ppc.exe/data0004 Infected:
not-a-virus:AdWare.Win32.Agent.aeh skipped

C:\Program Files\Online Services\PeoplePC\ISP5900\Branding\ppal3ppc.exe
NSIS: infected - 1 skipped

C:\Program Files\Online Services\Vonage\Xtras\regxtra121.x32 Infected:
Backdoor.Win32.RAdmin.ag skipped

C:\System Volume Information\MountPointManagerRemoteDatabase Object is
locked skipped

C:\System Volume
Information\_restore{00EFF98B-5705-4D9A-BA78-7681A60AFB54}\RP232\change.log
Object is locked skipped

C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped

C:\WINDOWS\SchedLgU.Txt Object is locked skipped

C:\WINDOWS\SoftwareDistribution\EventCache\{834F6F3C-2116-43C9-B13C-2BA0A0459948}.bin
Object is locked skipped

C:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked
skipped

C:\WINDOWS\system32\CatRoot2\edb.log Object is locked skipped

C:\WINDOWS\system32\CatRoot2\tmp.edb Object is locked skipped

C:\WINDOWS\system32\config\Antivirus.Evt Object is locked skipped

C:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped

C:\WINDOWS\system32\config\default Object is locked skipped

C:\WINDOWS\system32\config\default.LOG Object is locked skipped

C:\WINDOWS\system32\config\Internet.evt Object is locked skipped

C:\WINDOWS\system32\config\SAM Object is locked skipped

C:\WINDOWS\system32\config\SAM.LOG Object is locked skipped

C:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped

C:\WINDOWS\system32\config\SECURITY Object is locked skipped

C:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped

C:\WINDOWS\system32\config\software Object is locked skipped

C:\WINDOWS\system32\config\software.LOG Object is locked skipped

C:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped

C:\WINDOWS\system32\config\system Object is locked skipped

C:\WINDOWS\system32\config\system.LOG Object is locked skipped

C:\WINDOWS\system32\h323log.txt Object is locked skipped

C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped

C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP Object is locked skipped

C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER Object is locked
skipped

C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP Object is locked
skipped

C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP Object is locked
skipped

C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA Object is locked
skipped

C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP Object is locked
skipped

C:\WINDOWS\Temp\Perflib_Perfdata_5f8.dat Object is locked skipped

C:\WINDOWS\Temp\_avast4_\Webshlock.txt Object is locked skipped

C:\WINDOWS\WindowsUpdate.log Object is locked skipped

D:\I386\APPS\APP13206\src\CompaqPresario_Spring06.exe/WISE0015.BIN
Infected: not-a-virus:AdWare.Win32.WeatherBug.a skipped

D:\I386\APPS\APP13206\src\CompaqPresario_Spring06.exe/WISE0016.BIN
Infected: not-a-virus:AdWare.Win32.WeatherBug.a skipped

D:\I386\APPS\APP13206\src\CompaqPresario_Spring06.exe WiseSFX: infected -
2 skipped

D:\I386\APPS\APP13206\src\CompaqPresario_Spring06.exe WiseSFXDropper:
infected - 2 skipped

D:\I386\APPS\APP13206\src\HPPavillion_Spring06.exe/WISE0015.BIN Infected:
not-a-virus:AdWare.Win32.WeatherBug.a skipped

D:\I386\APPS\APP13206\src\HPPavillion_Spring06.exe/WISE0016.BIN Infected:
not-a-virus:AdWare.Win32.WeatherBug.a skipped

D:\I386\APPS\APP13206\src\HPPavillion_Spring06.exe WiseSFX: infected - 2
skipped

D:\I386\APPS\APP13206\src\HPPavillion_Spring06.exe WiseSFXDropper:
infected - 2 skipped

D:\System Volume
Information\_restore{00EFF98B-5705-4D9A-BA78-7681A60AFB54}\RP232\change.log
Object is locked skipped

Scan process completed.


****************************THANKS in advance. Your help is greatly appreciated as this computer is only 17 months old and I expected greater results from wi-fi.

Edited by rol32, 18 May 2008 - 01:21 PM.

    Advertisements

Register to Remove

Related Topics



0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users