View Single Post
Old 06-07-2006, 07:25 PM   #3 (permalink)
ford66
Registered User
 
Join Date: Jun 2006
Posts: 60
OS: xp


Avast aswboot log

Thank you for the response.

I am currently not near the infected box at the moment, so I can't try the batch file you posted, but I can post the Avast pre-boot log. Here it is:

06/01/2006 21:02
Scan of D:\
File D:\WINDOWS\system32\hp708B.tmp\[Upack] is infected by Win32:Zlob-AF [Trj], Deleted
File D:\WINDOWS\Temp\sa875.exe is infected by Win32:Adware-gen. [Adw], Deleted
File D:\Documents and Settings\STEVE\Local Settings\Temp\sa770.exe is infected by Win32:Adware-gen. [Adw], Deleted
File D:\Documents and Settings\STEVE\Local Settings\Temp\sa7A6.exe is infected by Win32:Adware-gen. [Adw], Deleted
File D:\Documents and Settings\STEVE\Local Settings\Temp\sa875.exe is infected by Win32:Adware-gen. [Adw], Deleted
File D:\System Volume Information\_restore{71130F36-CD78-4E64-A96B-A2B4AA0DCE2F}\RP687\A0092684.exe is infected by Win32:Adware-gen. [Adw], Deleted
File D:\System Volume Information\_restore{71130F36-CD78-4E64-A96B-A2B4AA0DCE2F}\RP687\A0092685.exe is infected by Win32:Adware-gen. [Adw], Deleted
File D:\System Volume Information\_restore{71130F36-CD78-4E64-A96B-A2B4AA0DCE2F}\RP687\A0092686.exe is infected by Win32:Adware-gen. [Adw], Deleted
File D:\System Volume Information\_restore{71130F36-CD78-4E64-A96B-A2B4AA0DCE2F}\RP687\A0092687.exe is infected by Win32:Adware-gen. [Adw], Deleted

Scan of E:\

Number of searched folders: 4854
Number of tested files: 148705
Number of infected files: 9
ford66 is offline