View Single Post
Old 08-24-2005, 08:36 AM   #6 (permalink)
dogwud
Registered User
 
Join Date: Aug 2005
Posts: 8
OS: Windows WP


Okay, here is the antispyware log:

Started Scanning
Internet Cookies
Found 'tribalfusion.com' in 'Internet Explorer Cache'
Found 'atdmt.com' in 'Internet Explorer Cache'
Programs in Memory
Windows Registry
Found '' in 'SOFTWARE\LimeWire'
Found '' in 'SOFTWARE\Magnet'
Found '' in 'SOFTWARE\Classes\magnet'
Found '' in 'SOFTWARE\Classes\magnet\shell\open\command'
Found 'URL Protocol' in 'SOFTWARE\Classes\magnet'
Internet URL Shortcuts
Files and Directories
Found '' in 'C:\Documents and Settings\Peter\Favorites\Sports'
Found 'LimeWire20.dll' in 'C:\Program Files\LimeWire'
Finished Scanning
Started Backup
Finished Backup
Started Cleaning
Checking for 'C:\Documents and Settings\Peter\Favorites\Sports' in shortcut areas.
Checking for 'C:\Documents and Settings\Peter\Favorites\Sports' in startup areas.
Cleaning 'C:\Documents and Settings\Peter\Favorites\Sports'
Checking for 'C:\Documents and Settings\Peter\Favorites\Sports\Charlie Weber Basketball.url' in shortcut areas.
Checking for 'C:\Documents and Settings\Peter\Favorites\Sports\Charlie Weber Basketball.url' in startup areas.
Cleaning 'C:\Documents and Settings\Peter\Favorites\Sports\Charlie Weber Basketball.url'
Checking for 'C:\Documents and Settings\Peter\Favorites\Sports\Jim Martin's Scouting Report.url' in shortcut areas.
Checking for 'C:\Documents and Settings\Peter\Favorites\Sports\Jim Martin's Scouting Report.url' in startup areas.
Cleaning 'C:\Documents and Settings\Peter\Favorites\Sports\Jim Martin's Scouting Report.url'
Checking for 'C:\Documents and Settings\Peter\Favorites\Sports\Keystone State Games.url' in shortcut areas.
Checking for 'C:\Documents and Settings\Peter\Favorites\Sports\Keystone State Games.url' in startup areas.
Cleaning 'C:\Documents and Settings\Peter\Favorites\Sports\Keystone State Games.url'
Checking for 'C:\Documents and Settings\Peter\Favorites\Sports\Lancaster Lebanon League High School Boys Basketball.url' in shortcut areas.
Checking for 'C:\Documents and Settings\Peter\Favorites\Sports\Lancaster Lebanon League High School Boys Basketball.url' in startup areas.
Cleaning 'C:\Documents and Settings\Peter\Favorites\Sports\Lancaster Lebanon League High School Boys Basketball.url'
Checking for 'C:\Documents and Settings\Peter\Favorites\Sports\Maine Center for Sport and Coaching Sports Done Right.url' in shortcut areas.
Checking for 'C:\Documents and Settings\Peter\Favorites\Sports\Maine Center for Sport and Coaching Sports Done Right.url' in startup areas.
Cleaning 'C:\Documents and Settings\Peter\Favorites\Sports\Maine Center for Sport and Coaching Sports Done Right.url'
Checking for 'C:\Documents and Settings\Peter\Favorites\Sports\NPR Maine Aims to Ease Pressures on Student Athletes.url' in shortcut areas.
Checking for 'C:\Documents and Settings\Peter\Favorites\Sports\NPR Maine Aims to Ease Pressures on Student Athletes.url' in startup areas.
Cleaning 'C:\Documents and Settings\Peter\Favorites\Sports\NPR Maine Aims to Ease Pressures on Student Athletes.url'
Checking for 'C:\Documents and Settings\Peter\Favorites\Sports\The Born Power Index.url' in shortcut areas.
Checking for 'C:\Documents and Settings\Peter\Favorites\Sports\The Born Power Index.url' in startup areas.
Cleaning 'C:\Documents and Settings\Peter\Favorites\Sports\The Born Power Index.url'
Checking for 'C:\Program Files\LimeWire\LimeWire20.dll' in shortcut areas.
Checking for 'C:\Program Files\LimeWire\LimeWire20.dll' in startup areas.
Cleaning 'C:\Program Files\LimeWire\LimeWire20.dll'
Finished Cleaning




Here is the activscan report:


Incident Status Location

Adware:adware program No disinfected C:\WINDOWS\SYSTEM32\cache32dsrf4535dfs
Adware:adware/pacimedia No disinfected C:\DOCUMENTS AND SETTINGS\PETER\FAVORITES\1111
Adware:adware/powerscan No disinfected Windows Registry
Virus:W32/Bagle.EA.worm Disinfected Personal Folders\Deleted Items\To_reduce_the_tax.zip[Taxes.exe]
Virus:W32/Mydoom.A.worm Disinfected Personal Folders\Inbox\PVAA\PVAA Golf Outing\Hi\file.zip[file.pif]
Virus:Trj/Mitglieder.DC Disinfected Personal Folders\Inbox\PVAA\PVAA Golf Outing\6.zip[19_04_2005.exe]
Virus:W32/Netsky.P.worm Disinfected Personal Folders\Inbox\zp@h archive\Re: Sample\word_doc.zip[data.rtf .scr]


How are we doing????
dogwud is offline