View Single Post
Old 07-06-2007, 11:14 AM   #6 (permalink)
peiraster
Registered User
 
Join Date: Jul 2007
Posts: 57
OS: WinXP SP2


Re: iexplore.exe running each time I reboot/Please help

-------------------------------------------------------------------------------
KASPERSKY ONLINE SCANNER REPORT
Friday, July 06, 2007 2:03:30 PM
Operating System: Microsoft Windows XP Professional, Service Pack 2 (Build 2600)
Kaspersky Online Scanner version: 5.0.83.0
Kaspersky Anti-Virus database last update: 6/07/2007
Kaspersky Anti-Virus database records: 358808
-------------------------------------------------------------------------------

Scan Settings:
Scan using the following antivirus database: extended
Scan Archives: true
Scan Mail Bases: true

Scan Target - My Computer:
A:\
C:\
D:\
F:\
G:\
H:\
I:\
J:\
K:\

Scan Statistics:
Total number of scanned objects: 383489
Number of viruses found: 19
Number of infected objects: 31 / 0
Number of suspicious objects: 1
Duration of the scan process: 05:53:13

Infected Object Name / Virus Name / Last Action
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Common Client\Confid.log Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Common Client\Content.log Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Common Client\Privacy.log Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Common Client\Restrict.log Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Common Client\settings.dat Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Common Client\WebHist.log Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\2007-07-05_Log.ALUSchedulerSvc.LiveUpdate Object is locked skipped
C:\Documents and Settings\Dell\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\Dell\Local Settings\Application Data\Identities\{251A8766-AAED-4072-BC97-2B8DD7D681E2}\Microsoft\Outlook Express\Terry Wills.dbx/[From "Terry Wills" <TerryWills@hotmail.com>][Date Sun, 07 Jan 2001 20:13:48 -0800]/UNNAMED/BCNDA.doc Infected: Virus.MSWord.Marker.fq2 skipped
C:\Documents and Settings\Dell\Local Settings\Application Data\Identities\{251A8766-AAED-4072-BC97-2B8DD7D681E2}\Microsoft\Outlook Express\Terry Wills.dbx/[From "Terry Wills" <TerryWills@hotmail.com>][Date Sun, 07 Jan 2001 20:13:48 -0800]/UNNAMED Infected: Virus.MSWord.Marker.fq2 skipped
C:\Documents and Settings\Dell\Local Settings\Application Data\Identities\{251A8766-AAED-4072-BC97-2B8DD7D681E2}\Microsoft\Outlook Express\Terry Wills.dbx Mail MS Outlook 5: infected - 2 skipped
C:\Documents and Settings\Dell\Local Settings\Application Data\Identities\{3E7C86AD-70E7-42D6-AD97-F41AE31B593C}\Microsoft\Outlook Express\Terry Wills.dbx/[From "Terry Wills" <TerryWills@hotmail.com>][Date Sun, 07 Jan 2001 20:13:48 -0800]/UNNAMED/BCNDA.doc Infected: Virus.MSWord.Marker.fq2 skipped
C:\Documents and Settings\Dell\Local Settings\Application Data\Identities\{3E7C86AD-70E7-42D6-AD97-F41AE31B593C}\Microsoft\Outlook Express\Terry Wills.dbx/[From "Terry Wills" <TerryWills@hotmail.com>][Date Sun, 07 Jan 2001 20:13:48 -0800]/UNNAMED Infected: Virus.MSWord.Marker.fq2 skipped
C:\Documents and Settings\Dell\Local Settings\Application Data\Identities\{3E7C86AD-70E7-42D6-AD97-F41AE31B593C}\Microsoft\Outlook Express\Terry Wills.dbx Mail MS Outlook 5: infected - 2 skipped
C:\Documents and Settings\Dell\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\Dell\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\Dell\Local Settings\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\Dell\Local Settings\History\History.IE5\MSHist012007070620070707\index.dat Object is locked skipped
C:\Documents and Settings\Dell\Local Settings\Temp\Perflib_Perfdata_1370.dat Object is locked skipped
C:\Documents and Settings\Dell\Local Settings\Temp\Perflib_Perfdata_5c8.dat Object is locked skipped
C:\Documents and Settings\Dell\Local Settings\Temporary Internet Files\AntiPhishing\B3BB5BBA-E7D5-40AB-A041-A5B1C0B26C8F.dat Object is locked skipped
C:\Documents and Settings\Dell\Local Settings\Temporary Internet Files\Content.IE5\33GPVPEP\ADSAdClient31[1].htm Object is locked skipped
C:\Documents and Settings\Dell\Local Settings\Temporary Internet Files\Content.IE5\33GPVPEP\ADSAdClient31[2].htm Object is locked skipped
C:\Documents and Settings\Dell\Local Settings\Temporary Internet Files\Content.IE5\33GPVPEP\ADSAdClient31[3].htm Object is locked skipped
C:\Documents and Settings\Dell\Local Settings\Temporary Internet Files\Content.IE5\33GPVPEP\ADSAdClient31[4].htm Object is locked skipped
C:\Documents and Settings\Dell\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\Dell\My Documents\My Chat Logs\Events Log.txt Object is locked skipped
C:\Documents and Settings\Dell\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\Dell\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\LocalService\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Temp\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Temp\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Temp\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped
C:\Program Files\Common Files\Symantec Shared\AntiSpam\Log\Spam.log Object is locked skipped
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcrst.dll Object is locked skipped
C:\Program Files\Common Files\Symantec Shared\SNDALRT.log Object is locked skipped
C:\Program Files\Common Files\Symantec Shared\SNDCON.log Object is locked skipped
C:\Program Files\Common Files\Symantec Shared\SNDDBG.log Object is locked skipped
C:\Program Files\Common Files\Symantec Shared\SNDFW.log Object is locked skipped
C:\Program Files\Common Files\Symantec Shared\SNDIDS.log Object is locked skipped
C:\Program Files\Common Files\Symantec Shared\SNDSYS.log Object is locked skipped
C:\Program Files\Common Files\Symantec Shared\SPPolicy.log Object is locked skipped
C:\Program Files\Common Files\Symantec Shared\SPStart.log Object is locked skipped
C:\Program Files\Common Files\Symantec Shared\SPStop.log Object is locked skipped
C:\Program Files\Norton Internet Security\Norton AntiVirus\AVApp.log Object is locked skipped
C:\Program Files\Norton Internet Security\Norton AntiVirus\AVError.log Object is locked skipped
C:\Program Files\Norton Internet Security\Norton AntiVirus\AVVirus.log Object is locked skipped
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\0A3028A4.tmp Infected: Email-Worm.Win32.Zhelatin.a skipped
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\0A54767C.tmp Infected: Email-Worm.Win32.Zhelatin.a skipped
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\116338B7.tmp Infected: Email-Worm.Win32.Zhelatin.u skipped
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\297D20F7.bc! Infected: Virus.Win32.Sality.s skipped
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\2CFF16ED.exe Infected: Trojan-Spy.Win32.Agent.qd skipped
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\344559E4.tmp Infected: Trojan-Downloader.Win32.INService.bl skipped
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\373E009D.tmp Infected: Email-Worm.Win32.Luder.a skipped
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\37624E76.tmp Infected: Email-Worm.Win32.Luder.a skipped
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\39355275.tmp Infected: Trojan-Downloader.Win32.INService.bl skipped
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\39766AEB.tmp Infected: Trojan-Downloader.Win32.Small.dam skipped
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\3AC85866.exe Infected: not-a-virus:RiskTool.Win32.HideWindows skipped
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\58394A18.tmp Infected: Email-Worm.Win32.Zhelatin.h skipped
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\586041ED.tmp Infected: Email-Worm.Win32.Zhelatin.h skipped
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\586D69DF.tmp Infected: Email-Worm.Win32.Zhelatin.k skipped
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\588B63BF.tmp Infected: Email-Worm.Win32.Zhelatin.m skipped
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\58A109A5.tmp Infected: Email-Worm.Win32.Zhelatin.o skipped
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\648078DC.bc! Infected: Virus.Win32.Parite.b skipped
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\6F067E18.tmp Infected: Email-Worm.Win32.Luder.a skipped
C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\758E3265.bc! Infected: Trojan-Dropper.Win32.Delf.fl skipped
C:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped
C:\System Volume Information\_restore{67A3874B-ED8D-48CA-B8DB-2F1A7884CC17}\RP4\A0000021.exe/data0000.cab/is67533.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.if skipped
C:\System Volume Information\_restore{67A3874B-ED8D-48CA-B8DB-2F1A7884CC17}\RP4\A0000021.exe/data0000.cab Infected: not-a-virus:AdWare.Win32.Virtumonde.if skipped
C:\System Volume Information\_restore{67A3874B-ED8D-48CA-B8DB-2F1A7884CC17}\RP4\A0000021.exe Rsrc-Package: infected - 2 skipped
C:\System Volume Information\_restore{67A3874B-ED8D-48CA-B8DB-2F1A7884CC17}\RP4\A0000039.exe/data0062 Infected: not-a-virus:RiskTool.Win32.WFPDisabler.a skipped
C:\System Volume Information\_restore{67A3874B-ED8D-48CA-B8DB-2F1A7884CC17}\RP4\A0000039.exe NSIS: infected - 1 skipped
C:\System Volume Information\_restore{67A3874B-ED8D-48CA-B8DB-2F1A7884CC17}\RP4\A0000041.exe Suspicious: Packed.Win32.CryptExe skipped
C:\System Volume Information\_restore{67A3874B-ED8D-48CA-B8DB-2F1A7884CC17}\RP4\A0000043.exe Infected: Backdoor.Win32.Rbot.cij skipped
C:\System Volume Information\_restore{67A3874B-ED8D-48CA-B8DB-2F1A7884CC17}\RP4\change.log Object is locked skipped
C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped
C:\WINDOWS\SchedLgU.Txt Object is locked skipped
C:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked skipped
C:\WINDOWS\Sti_Trace.log Object is locked skipped
C:\WINDOWS\system32\CatRoot2\edb.log Object is locked skipped
C:\WINDOWS\system32\CatRoot2\tmp.edb Object is locked skipped
C:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\default Object is locked skipped
C:\WINDOWS\system32\config\default.LOG Object is locked skipped
C:\WINDOWS\system32\config\Internet.evt Object is locked skipped
C:\WINDOWS\system32\config\NetLimit.evt Object is locked skipped
C:\WINDOWS\system32\config\ODiag.evt Object is locked skipped
C:\WINDOWS\system32\config\OSession.evt Object is locked skipped
C:\WINDOWS\system32\config\SAM Object is locked skipped
C:\WINDOWS\system32\config\SAM.LOG Object is locked skipped
C:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\SECURITY Object is locked skipped
C:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped
C:\WINDOWS\system32\config\software Object is locked skipped
C:\WINDOWS\system32\config\software.LOG Object is locked skipped
C:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\system Object is locked skipped
C:\WINDOWS\system32\config\system.LOG Object is locked skipped
C:\WINDOWS\system32\drivers\sptd.sys Object is locked skipped
C:\WINDOWS\system32\h323log.txt Object is locked skipped
C:\WINDOWS\system32\LogFiles\WUDF\WUDFTrace.etl Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP Object is locked skipped
C:\WINDOWS\TempFile Object is locked skipped
C:\WINDOWS\wiadebug.log Object is locked skipped
C:\WINDOWS\wiaservc.log Object is locked skipped
C:\WINDOWS\WindowsUpdate.log Object is locked skipped

Scan process completed.
peiraster is offline