View Single Post
Old 08-09-2007, 03:10 AM   #2 (permalink)
burnsbabyburns
Registered User
 
Join Date: Aug 2007
Posts: 12
OS: XP


Re: Vundo and Downloader-BDF

I'm not sure if I was supposed to post my Panda Active scan, but here it is:

Incident Status Location

Virus:Trj/Downloader.PJT Disinfected Operating system
Adware:Adware/PopupSearches Not disinfected C:\WINDOWS\system32\qwerty12.exe
Spyware:Spyware/Virtumonde Not disinfected C:\WINDOWS\system32\IMGDIT.dll
Virus:Trj/ConHook.CV Disinfected Operating system
Potentially unwanted tool:application/altnet Not disinfected c:\windows\smdat32a.sys
Potentially unwanted tool:application/bestoffer Not disinfected c:\windows\smdat32m.sys
Potentially unwanted tool:application/need2find Not disinfected c:\program files\Need2Find
Dialer:dialer.su Not disinfected hkey_local_machine\software\microsoft\windows\currentversion\uninstall\Switch
Potentially unwanted tool:application/myway Not disinfected hkey_classes_root\clsid\{66FC8717-EFA7-4546-8C4A-E224F3A80C76}
Virus:Trj/SpaBot.AI Disinfected C:\Documents and Settings\All Users\Documents\Shareaza\Downloads\3d Matrix Screensaver Endless Corridors 1.4.zip[3d Matrix Screensaver Endless Corridors 1.4.exe]
Virus:Trj/SpaBot.AI Disinfected C:\Documents and Settings\All Users\Documents\Shareaza\Downloads\3D Titanic Screensaver + Keygen.zip[3D Titanic Screensaver + Keygen/3dT Keygen.exe]
Virus:Trj/SpaBot.AI Disinfected C:\Documents and Settings\All Users\Documents\Shareaza\Downloads\3D Titanic Screensaver + Keygen.zip[3D Titanic Screensaver + Keygen/titanic.exe]
Virus:Trj/SpaBot.AI Disinfected C:\Documents and Settings\All Users\Documents\Shareaza\Downloads\Christmas Time 3D Screensaver 2007 + PACH.zip[Christmas Time 3D Screensaver 2007 + PACH/christmas3d.exe]
Virus:Trj/SpaBot.AI Disinfected C:\Documents and Settings\All Users\Documents\Shareaza\Downloads\Christmas Time 3D Screensaver 2007 + PACH.zip[Christmas Time 3D Screensaver 2007 + PACH/patch/christmas.time.3d.screensaver.1.1.patch-iNDUCT.exe]
Virus:W32/Gaobot.MJA.worm Disinfected C:\Documents and Settings\All Users\Documents\Shareaza\Downloads\_\xzxzxzxzxzxz.exe
Spyware:Cookie/Atwola Not disinfected C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\cf7mj29r.default\cookies.txt[.atwola.com/]
Spyware:Cookie/Doubleclick Not disinfected C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\cf7mj29r.default\cookies.txt[.doubleclick.net/]
Spyware:Cookie/2o7 Not disinfected C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\cf7mj29r.default\cookies.txt[.2o7.net/]
Spyware:Cookie/Tribalfusion Not disinfected C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\cf7mj29r.default\cookies.txt[.tribalfusion.com/]
Spyware:Cookie/Mediaplex Not disinfected C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\cf7mj29r.default\cookies.txt[.mediaplex.com/]
Spyware:Cookie/Atlas DMT Not disinfected C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\cf7mj29r.default\cookies.txt[.atdmt.com/]
Spyware:Cookie/GoStats Not disinfected C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\cf7mj29r.default\cookies.txt[.gostats.com/]
Spyware:Cookie/Toplist Not disinfected C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\cf7mj29r.default\cookies.txt[.toplist.cz/]
Spyware:Cookie/Reliablestats Not disinfected C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\cf7mj29r.default\cookies.txt[stats1.reliablestats.com/]
Spyware:Cookie/Winantivirus Not disinfected C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\cf7mj29r.default\cookies.txt[www.winantiviruspro.com/]
Spyware:Cookie/Advertising Not disinfected C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\cf7mj29r.default\cookies.txt[.advertising.com/]
Spyware:Cookie/YieldManager Not disinfected C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\cf7mj29r.default\cookies.txt[ad.yieldmanager.com/]
Spyware:Cookie/Advertising Not disinfected C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\cf7mj29r.default\cookies.txt[.advertising.com/]
Spyware:Cookie/BurstBeacon Not disinfected C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\cf7mj29r.default\cookies.txt[www.burstbeacon.com/]
Spyware:Cookie/BurstNet Not disinfected C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\cf7mj29r.default\cookies.txt[.burstnet.com/]
Spyware:Cookie/Zedo Not disinfected C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\cf7mj29r.default\cookies.txt[.zedo.com/]
Spyware:Cookie/QuestionMarket Not disinfected C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\cf7mj29r.default\cookies.txt[.questionmarket.com/]
Spyware:Cookie/Apmebf Not disinfected C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\cf7mj29r.default\cookies.txt[.apmebf.com/]
Spyware:Cookie/Winantivirus Not disinfected C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\cf7mj29r.default\cookies.txt[winantivirus.com/]
Spyware:Cookie/Winantivirus Not disinfected C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\cf7mj29r.default\cookies.txt[.winantivirus.com/]
Spyware:Cookie/Winantivirus Not disinfected C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\cf7mj29r.default\cookies.txt[winantivirus.com/]
Spyware:Cookie/Winantivirus Not disinfected C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\cf7mj29r.default\cookies.txt[.winantivirus.com/]
Spyware:Cookie/Systemdoctor Not disinfected C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\cf7mj29r.default\cookies.txt[systemdoctor.com/]
Spyware:Cookie/PointRoll Not disinfected C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\cf7mj29r.default\cookies.txt[.ads.pointroll.com/]
Spyware:Cookie/Bluestreak Not disinfected C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\cf7mj29r.default\cookies.txt[.bluestreak.com/]
Spyware:Cookie/Bfast Not disinfected C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\cf7mj29r.default\cookies.txt[.bfast.com/]
Spyware:Cookie/Statcounter Not disinfected C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\cf7mj29r.default\cookies.txt[.statcounter.com/]
Spyware:Cookie/Adrevolver Not disinfected C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\cf7mj29r.default\cookies.txt[.adrevolver.com/]
Spyware:Cookie/Hitbox Not disinfected C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\cf7mj29r.default\cookies.txt[.ehg-dig.hitbox.com/]
Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\cf7mj29r.default\cookies.txt[.go.com/]
Spyware:Cookie/WebtrendsLive Not disinfected C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\cf7mj29r.default\cookies.txt[statse.webtrendslive.com/]
Spyware:Cookie/Traffic Marketplace Not disinfected C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\cf7mj29r.default\cookies.txt[.trafficmp.com/]
Spyware:Cookie/Com.com Not disinfected C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\cf7mj29r.default\cookies.txt[.com.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\cf7mj29r.default\cookies.txt[.casalemedia.com/]
Spyware:Cookie/FastClick Not disinfected C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\cf7mj29r.default\cookies.txt[.fastclick.net/]
Spyware:Cookie/Serving-sys Not disinfected C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\cf7mj29r.default\cookies.txt[.serving-sys.com/]
Spyware:Cookie/Serving-sys Not disinfected C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\cf7mj29r.default\cookies.txt[.bs.serving-sys.com/]
Spyware:Cookie/Serving-sys Not disinfected C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\cf7mj29r.default\cookies.txt[.serving-sys.com/]
Virus:Trj/Downloader.PJT Disinfected C:\Documents and Settings\Default\Application Data\tmp10.tmp.exe
Virus:Trj/Downloader.PJT Disinfected C:\Documents and Settings\Default\Application Data\tmp11.tmp.exe
Adware:Adware/PopupSearches Not disinfected C:\Documents and Settings\Default\Application Data\tmp51.tmp.exe
Adware:Adware/PopupSearches Not disinfected C:\Documents and Settings\Default\Application Data\tmp55.tmp.exe
Virus:Trj/Downloader.PJT Disinfected C:\Documents and Settings\Default\Application Data\tmp7E.tmp.exe
Virus:Trj/Downloader.PJT Disinfected C:\Documents and Settings\Default\Application Data\tmp84.tmp.exe
Adware:Adware/PopupSearches Not disinfected C:\Documents and Settings\Default\Application Data\tmp87.tmp.exe
Virus:Trj/Downloader.PJT Disinfected C:\Documents and Settings\Default\Application Data\tmp8A.tmp.exe
Adware:Adware/PopupSearches Not disinfected C:\Documents and Settings\Default\Application Data\tmp8B.tmp.exe
Virus:Trj/Downloader.PJT Disinfected C:\Documents and Settings\Default\Application Data\tmp8E.tmp.exe
Adware:Adware/PopupSearches Not disinfected C:\Documents and Settings\Default\Application Data\tmpB.tmp.exe
Spyware:Cookie/2o7 Not disinfected C:\Documents and Settings\Default\Cookies\default@2o7[2].txt
Spyware:Cookie/YieldManager Not disinfected C:\Documents and Settings\Default\Cookies\default@ad.yieldmanager[2].txt
Spyware:Cookie/Adrevolver Not disinfected C:\Documents and Settings\Default\Cookies\default@adrevolver[2].txt
Spyware:Cookie/AdDynamix Not disinfected C:\Documents and Settings\Default\Cookies\default@ads.addynamix[1].txt
Spyware:Cookie/PointRoll Not disinfected C:\Documents and Settings\Default\Cookies\default@ads.pointroll[2].txt
Spyware:Cookie/adultfriendfinder Not disinfected C:\Documents and Settings\Default\Cookies\default@adultfriendfinder[1].txt
Spyware:Cookie/Advertising Not disinfected C:\Documents and Settings\Default\Cookies\default@advertising[1].txt
Spyware:Cookie/Atlas DMT Not disinfected C:\Documents and Settings\Default\Cookies\default@atdmt[2].txt
Spyware:Cookie/Atwola Not disinfected C:\Documents and Settings\Default\Cookies\default@atwola[1].txt
Spyware:Cookie/Bluestreak Not disinfected C:\Documents and Settings\Default\Cookies\default@bluestreak[1].txt
Spyware:Cookie/BurstNet Not disinfected C:\Documents and Settings\Default\Cookies\default@burstnet[2].txt
Spyware:Cookie/Casalemedia Not disinfected C:\Documents and Settings\Default\Cookies\default@casalemedia[2].txt
Spyware:Cookie/Doubleclick Not disinfected C:\Documents and Settings\Default\Cookies\default@doubleclick[1].txt
Spyware:Cookie/DriveCleaner Not disinfected C:\Documents and Settings\Default\Cookies\default@drivecleaner[1].txt
Spyware:Cookie/Enhance Not disinfected C:\Documents and Settings\Default\Cookies\default@enhance[1].txt
Spyware:Cookie/ErrorSafe Not disinfected C:\Documents and Settings\Default\Cookies\default@errorsafe[1].txt
Spyware:Cookie/FastClick Not disinfected C:\Documents and Settings\Default\Cookies\default@fastclick[2].txt
Spyware:Cookie/Findwhat Not disinfected C:\Documents and Settings\Default\Cookies\default@findwhat[1].txt
Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Default\Cookies\default@go[1].txt
Spyware:Cookie/DriveCleaner Not disinfected C:\Documents and Settings\Default\Cookies\default@klik.klikadvertising[1].txt
Spyware:Cookie/Linksynergy Not disinfected C:\Documents and Settings\Default\Cookies\default@linksynergy[2].txt
Spyware:Cookie/Mediaplex Not disinfected C:\Documents and Settings\Default\Cookies\default@mediaplex[1].txt
Spyware:Cookie/RealMedia Not disinfected C:\Documents and Settings\Default\Cookies\default@realmedia[1].txt
Spyware:Cookie/Statcounter Not disinfected C:\Documents and Settings\Default\Cookies\default@statcounter[2].txt
Spyware:Cookie/DriveCleaner Not disinfected C:\Documents and Settings\Default\Cookies\default@stats.drivecleaner[2].txt
Spyware:Cookie/Reliablestats Not disinfected C:\Documents and Settings\Default\Cookies\default@stats1.reliablestats[1].txt
Spyware:Cookie/Systemdoctor Not disinfected C:\Documents and Settings\Default\Cookies\default@systemdoctor[2].txt
Spyware:Cookie/Tradedoubler Not disinfected C:\Documents and Settings\Default\Cookies\default@tradedoubler[2].txt
Spyware:Cookie/Tradedoubler Not disinfected C:\Documents and Settings\Default\Cookies\default@tradedoubler[3].txt
Spyware:Cookie/Tradedoubler Not disinfected C:\Documents and Settings\Default\Cookies\default@tradedoubler[4].txt
Spyware:Cookie/Tradedoubler Not disinfected C:\Documents and Settings\Default\Cookies\default@tradedoubler[5].txt
Spyware:Cookie/Traffic Marketplace Not disinfected C:\Documents and Settings\Default\Cookies\default@trafficmp[2].txt
Spyware:Cookie/Traffic Marketplace Not disinfected C:\Documents and Settings\Default\Cookies\default@trafficmp[3].txt
Spyware:Cookie/Tribalfusion Not disinfected C:\Documents and Settings\Default\Cookies\default@tribalfusion[2].txt
Spyware:Cookie/BurstBeacon Not disinfected C:\Documents and Settings\Default\Cookies\default@www.burstbeacon[1].txt
Spyware:Cookie/DriveCleaner Not disinfected C:\Documents and Settings\Default\Cookies\default@www.drivecleaner[1].txt
Spyware:Cookie/ErrorSafe Not disinfected C:\Documents and Settings\Default\Cookies\default@www.errorsafe[1].txt
Spyware:Cookie/Systemdoctor Not disinfected C:\Documents and Settings\Default\Cookies\default@www.systemdoctor[1].txt
Spyware:Cookie/Winantivirus Not disinfected C:\Documents and Settings\Default\Cookies\default@www.winantiviruspro[2].txt
Spyware:Cookie/Zedo Not disinfected C:\Documents and Settings\Default\Cookies\default@zedo[1].txt
Potentially unwanted tool:Application/Processor Not disinfected C:\Documents and Settings\Default\Local Settings\Temp\nsbA.tmp
Virus:Trj/Downloader.PNC Disinfected C:\Documents and Settings\Default\Local Settings\Temp\Setup(1).exe
Adware:Adware/IST.ISTBar Not disinfected C:\Documents and Settings\Default\Local Settings\Temp\Setup(2).exe
Adware:Adware/PopupSearches Not disinfected C:\Documents and Settings\Default\Local Settings\Temp\temp.fr2B1D
Virus:Trj/Agent.ECP Disinfected C:\Documents and Settings\Default\Local Settings\Temp\~DP10.exe
Virus:Trj/Agent.ECP Disinfected C:\Documents and Settings\Default\Local Settings\Temp\~DP12.exe
Virus:Trj/Agent.ECP Disinfected C:\Documents and Settings\Default\Local Settings\Temp\~DP14.exe
Virus:Trj/Agent.ECP Disinfected C:\Documents and Settings\Default\Local Settings\Temp\~DP17.exe
Virus:Trj/Agent.ECP Disinfected C:\Documents and Settings\Default\Local Settings\Temp\~DP1B.exe
Virus:Trj/Agent.ECP Disinfected C:\Documents and Settings\Default\Local Settings\Temp\~DP2.exe
Virus:Trj/Agent.ECP Disinfected C:\Documents and Settings\Default\Local Settings\Temp\~DP20.exe
Virus:Trj/Agent.ECP Disinfected C:\Documents and Settings\Default\Local Settings\Temp\~DP2D.exe
Virus:Trj/Spabot.AK Disinfected C:\Documents and Settings\Default\Local Settings\Temp\~DP30.exe
Virus:Trj/Spammer.AAT Disinfected C:\Documents and Settings\Default\Local Settings\Temp\~DP6.exe
Virus:Trj/Spammer.AAT Disinfected C:\Documents and Settings\Default\Local Settings\Temp\~DP8.exe
Virus:Trj/Agent.ECP Disinfected C:\Documents and Settings\Default\Local Settings\Temp\~DPD.exe
Potentially unwanted tool:Application/ErrorSafe Not disinfected C:\Documents and Settings\Default\Local Settings\Temporary Internet Files\Content.IE5\30XTFGO8\ErrorSafeFreeInstallW[1].cab[UERS_9999_N91S1502NetInstaller.exe]
Virus:Trj/Downloader.PJT Disinfected C:\Documents and Settings\Default\Local Settings\Temporary Internet Files\Content.IE5\3KGWHVR7\kcehc_eicooc20070702[1]
Virus:Trj/Downloader.PJT Disinfected C:\Documents and Settings\Default\Local Settings\Temporary Internet Files\Content.IE5\90H1Z9L3\kcehc_eicooc20070702[1]
Adware:Adware/PopupSearches Not disinfected C:\Documents and Settings\Default\Local Settings\Temporary Internet Files\Content.IE5\EDYPKT8B\dedamisha[1]
Virus:Generic Malware Disinfected C:\Documents and Settings\Default\Local Settings\Temporary Internet Files\Content.IE5\EDYPKT8B\masiyxanidi[1]
Virus:Trj/Downloader.PCQ Disinfected C:\Documents and Settings\Default\Local Settings\Temporary Internet Files\Content.IE5\HF7RPXSE\adfcook[1]
Potentially unwanted tool:Application/ErrorSafe Not disinfected C:\Documents and Settings\Default\My Documents\My Programs\WinAntiVirusPro2007FreeInstall.exe
Virus:Trj/Downloader.PJT Disinfected C:\VundoFix Backups\cckqvedo.exe.bad
Virus:Trj/ConHook.CV Disinfected C:\VundoFix Backups\geebxxu.dll.bad
Spyware:Spyware/Virtumonde Not disinfected C:\VundoFix Backups\jkklj.exe.bad
Virus:Trj/Downloader.PJT Disinfected C:\VundoFix Backups\leivchyo.exe.bad
Spyware:Spyware/Virtumonde Not disinfected C:\VundoFix Backups\ssqoopp.dll.bad
Virus:W32/Gaobot.MJA.worm Disinfected C:\WINDOWS\b.exe
Spyware:Spyware/Virtumonde Not disinfected C:\WINDOWS\SYSTEM32\CHCUSD.dll.vir
Virus:Trj/Downloader.OZB Disinfected C:\WINDOWS\SYSTEM32\eiwoowil.exe
Virus:Trj/ConHook.CV Disinfected C:\WINDOWS\SYSTEM32\geebxxu.dll
Virus:Trj/Downloader.OZB Disinfected C:\WINDOWS\SYSTEM32\mcfktmet.exe
Spyware:Spyware/Virtumonde Not disinfected C:\WINDOWS\SYSTEM32\mljhfcd.dll
Spyware:Spyware/Virtumonde Not disinfected C:\WINDOWS\SYSTEM32\opnnkhg.dll
burnsbabyburns is offline