![]() |
![]() |
![]() |
|||||
![]() |
![]() |
![]() |
![]() |
![]() |
|||
| Welcome
to Tech Support Forum home to more then 136,000 problems solved. Issues
have included: Spyware, Malware, Virus Issues, Windows, Microsoft,
Linux, Networking, Security, Hardware, and Gaming Getting your
problem solved is as easy as: 1. Registering for a free account 2. Asking your question 3. Receiving an answer Registered members: * See fewer ads. * And much more..
|
| Want to know how to post a question? click here | Having problems with spyware and pop-ups? First Steps |
|
|||||||
| Resolved HJT Threads Resolved spyware and popup issues. |
|
|
LinkBack | Thread Tools |
|
|
#1 (permalink) |
|
Registered User
Join Date: Feb 2006
Location: Canada
Posts: 5
OS: XP Home
|
Alcra.B, Sillyp2p & dedler.worm...OH MY!
Hello there,
My problems started about 3 days ago when I would try to use ACDSee and the computer would freeze up. I would open Task Manager and CPU usage would be around 98% for explorer.exe - I would end that process and would have no desktop. Then I started having problems with LimeWire and Shareaza opening up on their own, so I removed those programs...it didn't stop. Then I started having problems opening the Task Manager. I ran a complete hard drive scan with Norton Anti-Virus Corporate Edition and it said that it found 3 worms...W32.Dedler.worm, W32.SillyP2P and W32.Alcra.B, but could not remove them and that they were left alone. I am not a newbie but this is starting to drive me nuts...even though the computer appears to be running okay now, I know that there are problems in the background. Would somebody please take pity on my ignorance and take a look at my HJT log. Here it is: Logfile of HijackThis v1.99.1 Scan saved at 4:15:28 PM, on 13/02/2006 Platform: Windows XP SP1 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\System32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe C:\Program Files\Norton Personal Firewall\NISUM.EXE C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Norton Personal Firewall\ccPxySvc.exe C:\Program Files\NavNT\defwatch.exe C:\Program Files\Executive Software\DiskeeperWorkstation\DKService.exe C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe C:\Program Files\NavNT\rtvscan.exe C:\Program Files\Norton Utilities\NPROTECT.EXE C:\WINDOWS\system32\pctspk.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\fxssvc.exe C:\WINDOWS\System32\MsgSys.EXE C:\Program Files\NavNT\vptray.exe C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe C:\Program Files\Hewlett-Packard\Digital Imaging\Unload\hpqcmon.exe C:\Program Files\Common Files\Symantec Shared\ccApp.exe C:\Program Files\Common Files\Real\Update_OB\realsched.exe C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnf.exe C:\Program Files\QuickTime\qttask.exe C:\Program Files\BenQ\QMusic2\QMAgent.exe C:\Program Files\Microsoft Hardware\Mouse\point32.exe C:\Program Files\ATI Technologies\ATI HYDRAVISION\HydraDM.exe C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe C:\WINDOWS\System32\winlog.exe C:\WINDOWS\System32\ctfmon.exe C:\Program Files\Hewlett-Packard\AiO\hp psc 700 series\Bin\hpobrt07.exe C:\Program Files\Norton Utilities\SYSDOC32.EXE C:\PROGRA~1\HEWLET~1\AiO\Shared\Bin\hpoevm07.exe C:\WINDOWS\System32\hpoipm07.exe C:\Program Files\MSN Messenger\msnmsgr.exe C:\Program Files\Internet Explorer\IEXPLORE.EXE C:\HJT\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.ca/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.daewoointernational.ca R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page_bak = http://www.google.ca/ O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx O4 - HKLM\..\Run: [CountrySelection] pctptt.exe O4 - HKLM\..\Run: [vptray] C:\Program Files\NavNT\vptray.exe O4 - HKLM\..\Run: [Share-to-Web Namespace Daemon] C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe O4 - HKLM\..\Run: [CamMonitor] C:\Program Files\Hewlett-Packard\Digital Imaging\Unload\hpqcmon.exe O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe" O4 - HKLM\..\Run: [ccRegVfy] "C:\Program Files\Common Files\Symantec Shared\ccRegVfy.exe" O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [BenQ] E:\BenQJoybeePlayer.exe O4 - HKLM\..\Run: [QMusic2] "C:\Program Files\BenQ\QMusic2\QMAgent.exe" O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [POINTER] point32.exe O4 - HKLM\..\Run: [HydraVisionDesktopManager] C:\Program Files\ATI Technologies\ATI HYDRAVISION\HydraDM.exe O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\isuspm.exe -startup O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe O4 - HKLM\..\Run: [winlog] winlog.exe O4 - HKLM\..\Run: [winsysupd] C:\windows\winsysupd7.exe O4 - HKLM\..\RunServices: [winlog] winlog.exe O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\System32\ctfmon.exe O4 - HKCU\..\Run: [Startup Manager] C:\Documents and Settings\Andrea\Application Data\Systweak\ASO 2\smstartUp manager.exe O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe O4 - Global Startup: HPAiODevice(hp psc 700 series) - 1.lnk = C:\Program Files\Hewlett-Packard\AiO\hp psc 700 series\Bin\hpobrt07.exe O4 - Global Startup: Norton System Doctor.lnk = C:\Program Files\Norton Utilities\SYSDOC32.EXE O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE O9 - Extra 'Tools' menuitem: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll O14 - IERESET.INF: START_PAGE_URL=http://www.daewoointernational.ca O15 - Trusted Zone: http://www.petrescueshelter.com O15 - Trusted Zone: www.pier1.com O15 - Trusted Zone: http://download.windowsupdate.com O15 - Trusted Zone: http://www.download.windowsupdate.com O16 - DPF: {0E5F0222-96B9-11D3-8997-00104BD12D94} (PCPitstop Utility) - http://www.pcpitstop.com/pcpitstop/PCPitStop.CAB O16 - DPF: {1954A4B1-9627-4CF2-A041-58AA2045CB35} (Brix6ie Control) - http://ftp.coupons.com/v6/brix6ie.cab O16 - DPF: {2B323CD9-50E3-11D3-9466-00A0C9700498} (Yahoo! Audio Conferencing) - http://us.chat1.yimg.com/us.yimg.com...45/yacscom.cab O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/S...in/AvSniff.cab O16 - DPF: {406B5949-7190-4245-91A9-30A17DE16AD0} (Snapfish Activia) - http://www.snapfish.com/SnapfishActivia.cab O16 - DPF: {41F17733-B041-4099-A042-B518BB6A408C} - http://appldnld.m7z.net/qtinstall.in...lInstaller.exe O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/S.../bin/cabsa.cab O16 - DPF: {70BA88C8-DAE8-4CE9-92BB-979C4A75F53B} (GSDACtl Class) - http://launch.gamespyarcade.com/soft...ch/alaunch.cab O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2...ll/xscan53.cab O16 - DPF: {7CF052DE-C74F-421B-B04A-3B3037EF5887} (CCMPGui Class) - http://64.124.45.181/chaincast/proxy/CCMP.cab O16 - DPF: {7D1E9C49-BD6A-11D3-87A8-009027A35D73} (Yahoo! Audio UI1) - http://chat.yahoo.com/cab/yacsui.cab O16 - DPF: {9600F64D-755F-11D4-A47F-0001023E6D5A} (Shutterfly Picture Upload Plugin) - http://web1.shutterfly.com/downloads/Uploader.cab O16 - DPF: {9AA73F41-EC64-489E-9A73-9CD52E528BC4} (ZoneAxRcMgr Class) - http://zone.msn.com/binGame/ZAxRcMgr.cab O16 - DPF: {C2FCEF52-ACE9-11D3-BEBD-00105AA9B6AE} (Symantec RuFSI Registry Information Class) - http://security1.norton.com/SSC/Shar.../bin/cabsa.cab O16 - DPF: {CE28D5D2-60CF-4C7D-9FE8-0F47A3308078} (ActiveDataInfo Class) - https://www-secure.symantec.com/tech...a/SymAData.dll O16 - DPF: {E77C0D62-882A-456F-AD8F-7C6C9569B8C7} (ActiveDataObj Class) - https://www-secure.symantec.com/tech...ActiveData.cab O16 - DPF: {EB387D2F-E27B-4D36-979E-847D1036C65D} (QDiagHUpdateObj Class) - http://h30043.www3.hp.com/aio/eng/check/qdiagh.cab?312 O16 - DPF: {F127B9BA-89EA-4B04-9C67-2074A9DF61FD} (Photo Upload Plugin Class) - http://costco.pnimedia.com/upload/ac...pv2.0.0.9.cab? O16 - DPF: {F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6} (MSN Chat Control 4.5) - http://chat.msn.com/bin/msnchat45.cab O17 - HKLM\System\CCS\Services\Tcpip\..\{FD34381F-B60B-4843-9978-E74A9D7145B2}: NameServer = 142.161.130.155 142.161.2.155 O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing) O20 - Winlogon Notify: GoToMyPC - C:\Program Files\Citrix\GoToMyPC\G2WinLogon.dll O20 - Winlogon Notify: NavLogon - C:\WINDOWS\System32\NavLogon.dll O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\System32\Ati2evxx.exe O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe O23 - Service: Symantec Password Validation Service (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe O23 - Service: Symantec Proxy Service (ccPxySvc) - Symantec Corporation - C:\Program Files\Norton Personal Firewall\ccPxySvc.exe O23 - Service: DefWatch - Symantec Corporation - C:\Program Files\NavNT\defwatch.exe O23 - Service: Diskeeper - Executive Software International, Inc. - C:\Program Files\Executive Software\DiskeeperWorkstation\DKService.exe O23 - Service: GoToMyPC - Unknown owner - C:\Program Files\Citrix\GoToMyPC\g2svc.exe" -service (file missing) O23 - Service: Norton Personal Firewall Accounts Manager (NISUM) - Symantec Corporation - C:\Program Files\Norton Personal Firewall\NISUM.EXE O23 - Service: Norton AntiVirus Client (Norton AntiVirus Server) - Symantec Corporation - C:\Program Files\NavNT\rtvscan.exe O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\Program Files\Norton Utilities\NPROTECT.EXE O23 - Service: W2k PCtel speaker phone (Pctspk) - PCtel, Inc. - C:\WINDOWS\system32\pctspk.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe Thank you in advance! |
|
|
| Important Information |
|
Join the #1 Tech Support Forum Today - It's Totally Free!
TechSupportForum.com is a leading support website for your computer needs. We offer free, friendly and personalized computer support. Why pay to have your computer fixed when you can do it for free. Join TechSupportforum.com Today - Click Here |
|
|
#2 (permalink) |
|
Manager, Security Center, TSF Academy; Analyst, Security Team
Join Date: Jan 2005
Location: Transylvania County, North Carolina, USA
Posts: 35,580
OS: 2000 Pro; XP Pro; XP Home
|
Using P2P programs can open you to all sorts of risk. Be cautious of what you download.
Did your Norton scan give file names and locations? They are more helpful than infection names. Did you run the scan in safe mode? It's often more effective to do so, as many processes are not loaded, and so are more readily removed. Please print out or copy this page to Notepad. Make sure to work through the fixes in the exact order it is mentioned below. If there's anything that you don't understand, ask your question(s) before proceeding with the fixes. You should 'not' have any open browsers when you are following the procedures below. Download and unzip BFUzip from http://www.merijn.org/files/bfu.zip Run the program and click the Web button as shown here: ![]() Highlight and copy this URL to paste into the address bar of the Download script window: http://metallica.geekstogo.com/p2pnetwork.bfu Execute the script by clicking the Execute button. If you have any questions about the use of BFU please read here: http://metallica.geekstogo.com/BFUinstructions.html ------------------------------------------------------------------ Download Ewido Security Suite
If you are having problems with the updater, you can use this link to manually update Ewido When you have finished updating, EXIT Ewido. ------------------------------------------------------------------ The Temp folders should be cleaned out periodically as installation programs and hijack programs leave a lot of junk there. Download CleanUp! (Alternate Link if main link doesn't work) and install it. *NOTE* Cleanup deletes EVERYTHING out of temp/temporary folders and does not make backups. If you have any documents or programs that are saved in any Temporary Folders, please make a backup of these before running CleanUp! If you have a 64 bit Operating System do NOT run Cleanup and let me know as we will use another utility. Run Cleanup! using the following configuration: 1. Click Options... 2. Set the slider to Standard CleanUp! 3. Uncheck the following:
5. Press the CleanUp! button to start the program. Reboot/logoff when prompted. * CleanUp! will not create any backups!! ------------------------------------------------------------------ Restart your computer and boot into Safe Mode by hitting the F8 key repeatedly until a menu shows up (and choose Safe Mode from the list). In some systems, this may be the F5 key, so try that if F8 doesn't work. Make sure to close any open browsers. ------------------------------------------------------------------ Run Ewido with it's updated definitions:(...it's important that all windows must be closed)
** Ewido scan would require at least an hour. ------------------------------------------------------------------ Run a scan in HijackThis. Check each of the following and hit 'Fix checked' (after checking them) if they still exist (make sure not to miss any): R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = O4 - HKLM\..\Run: [winlog] winlog.exe O4 - HKLM\..\Run: [winsysupd] C:\windows\winsysupd7.exe O4 - HKLM\..\RunServices: [winlog] winlog.exe O14 - IERESET.INF: START_PAGE_URL=http://www.daewoointernational.ca O16 - DPF: {1954A4B1-9627-4CF2-A041-58AA2045CB35} (Brix6ie Control) - http://ftp.coupons.com/v6/brix6ie.cab ------------------------------------------------------------------ Go to My Computer->Tools->Folder Options->View tab: * Under the Hidden files and folders heading, select Show hidden files and folders. * Uncheck the Hide protected operating system files (recommended) option. * Also make sure there is no checkmark beside Hide file extensions for known file types * Click Yes to confirm and then click OK. ------------------------------------------------------------------ Delete the following Files/Folders if they exist: C:\windows\winsysupd7.exe C:\WINDOWS\System32\ winlog.exe ------------------------------------------------------------------ Restart in normal mode. ------------------------------------------------------------------ Perform an online scan with Internet Explorer with Panda ActiveScan Click on the "Free To Use ActiveScan" located on the top right hand corner
------------------------------------------------------------------ Run a new HijackThis scan. Save the log file and post it here. ------------------------------------------------------------------ Please return with logs from: Ewido Panda HJT
__________________
Practice Safe Surfing Because what you don't know, CAN hurt you. Microsoft MVP - Consumer Security 2009
|
|
|
|
|
#3 (permalink) |
|
Registered User
Join Date: Feb 2006
Location: Canada
Posts: 5
OS: XP Home
|
FINALLY...I have done everything you directed.
I have also save a copy of my virus scan log (which I did in Safe Mode) from Norton Anti-Virus in Excel. It seems that it was able to remove Alcra.B but the others are still there. What information do you require - just the file names and current locations for the SillyP2P and Dedler.Worm viruses...or the entire log? There seems to be a ton of Trojans. Here is the Ewido Log: --------------------------------------------------------- ewido anti-malware - Scan report --------------------------------------------------------- + Created on: 12:19:37 AM, 14/02/2006 + Report-Checksum: 9B10EEC2 + Scan result: C:\Documents and Settings\Andrea\Complete\3d Studio Max 8.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\40 Year Old Virgin Xvid Mp3 Dvdrip Mercifulrelease.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\About CNET Networks.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Acdc Discography 19cd.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Adobe Acrobat 7 0 Professional Incl Keygen Paradox.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Adobe Audition V2 0 English Www Pctorrent Com.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Adobe Photoshop Cs2 Iso Keygen.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Adobe Premiere Pro 7 0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Ahead Nero V7 0 Premium Edition.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Alcohol 120 1 9 3105 Latest Corporate Edition With Patch.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Alicia Keys Complete Collection.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\All Software.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Anastacia Pieces Of A Dream 2005 Cd 3vid Covers.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Arctic Monkeys Whatever People 2006 Cd Vid Cov.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Autocad 2006 Eng.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Autodesk 3d Studio Max V8 0 Webinstall Incl Keymaker Xforce.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Azureus2 4 0 0 Jar.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Billboard Top 100 Of 2005 192 Kbits.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Billboard Top Usa Singles 1990 2004 3 3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Bob Marley 16 Albums.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Busty Beauties Tit ******* Vixens Xxx Dvdrip Big Boobs Www Sexotorrent Com.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Chris Brown Chris Brown 2005 Rns.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\CNET .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\CNET Channel.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\CNET Download.com.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\CNET News.com.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\CNET Reviews.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\CNET Shopper.com.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Cnwarez Adobe After Effects 6 5.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Computer Shopper.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Corel Draw Graphics Suite V 12 3cds Complete Multi Spanish En Fr It Ge Www Pctorrent Com.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Depeche Mode Collection Of 11 Albums Cd With R.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Deutschland Sucht Den Superstar Love Songs.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Dj Kombinate Old Skool Drum Bass Mix.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Dj Tiesto 13 Albums.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Elvis Presley Original Elvis Collection Pack 1di 2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Encarta 2006.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Four Fingers Deep Sex Rip Adult Xxx.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Free Screensavers.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Ginny Owens Discography.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Help Center.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\I Ching Connexion X 3.0.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\I Ching, the Book of Oracles 2.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\I Hate This Key Deluxe Edition 3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\I Heart Huckabees Screensaver .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\I Heart Huckabees Trailer .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\I Love Clipboard 1.3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\I of the Dragon 2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\I of the Dragon demo .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\I of the Enemy Ril'Cerat 2.25.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\I Pick'em 2.6.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\I Want it Now 1.2.5.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\I Was an Atomic Mutant 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\I Was an Atomic Mutant 1.1 patch .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\i! Alert 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\I'm InTouch 5.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\I'm InTouch French 4.5.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\I'm InTouch German 4.51.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\I'm InTouch Palm OS 4.5.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\I'm InTouch Pocket PC 5.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\I'm InTouch Spanish 4.51.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\I, Robot Screensaver .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\I, Robot Trailer .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\i-Card Family 2.0.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\i-Catcher 2.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\i-Catcher Console 2.3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\I-Ching 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\I-Ching Insider 4.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\i-Covers 2005 c.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\i-Dialer PPC 1.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\I-Doser 3.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\I-Fun Viewer 8.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\i-Guard MailPal 3.8.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\I-Load 1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\i-Nav 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\I-Navigation 3.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\i-net Crystal-Clear 6.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\I-Net Ftp 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\i-Net+Cert for CompTIA IK0-002 Exam 2.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\i-netLock+ 3.1.3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\i-Recipes 2004.0.3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\i-ScanCam 3.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\i-ScanCam Light Edition 3.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\I-Screen EC 1.4.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\I-WayInfo 2004.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\i-Yas.com's Multi Clipboard 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\I.ching 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\i.Disk 1.7.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\I.S.L. Generator 1.0.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\i.Xchange MP3 Editor 1.6.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\i2Phex.tk - First anonymous gnutella client 0.11.36.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\I300AlertMgr 0.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\I300EasyKeyGuard 0.12.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\I300SpkrPhMgr 0.22.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\I300VibraBlinkHack 0.41.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IA eMail Server 4.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IA WebMail Server 2.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IAB Studio Enterprise RIA Server 4.5.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iAddressX 3.2.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iAlarm 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iAlbumArt 1.5.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iAlias 0.4.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Iamanywhere 1.00.414.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IamTheWinner Snipe Tool 2.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IAP In-Store Announcement Player 2.5.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iAutoArtwork 1.6.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IBackup for Windows 5.5.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IBackup Personal 3.0.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Iban 2.75.0004.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iBank 1.4.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iBanner 3.0.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IBasic Professional 1.11.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IBasic Standard 2.02c.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IBDesc 1.0.6.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iBeenFramed 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IBFirstAid Diagnostician 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iBible 2.5.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iBirthday (OS X) 2.3.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iBirthday 2.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Ibis 2.6.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iBlog 0.5.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iBlogiCal 1.01.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IBM 4247 Multi-Form Printer Driver 3.02.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IBM DB2 Everyplace Query by Example (Pocket PC) 7.2.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IBM PostScript Printer Drivers 3.2 (9298).zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IBM Practice Tests from Boson 5.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iBook G4 Graphics Update 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iBrowse 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iBrowser 1.4.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IBS-Eureka 2.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IBSDiary 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iBudget 1.8.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iC Client 2.0.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IC Soft Site Manager 1.8.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IC Studio 1.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iCab 2.9.8.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iCab Pro (OS X) 2.9.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iCab Pro 2.9.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iCal 1.5.5.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iCal Web Calendar 3.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iCalendar 1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iCalMaker 1.8.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iCamMaster (OS X) 1.9.5.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iCamMaster Lite 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iCamShare 2.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iCanary (Classic) 1.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iCarousels Visual Web 01.02.08.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Icarus 2.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iCash 3.0.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iCast 4.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ICCAD 1.1.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Ice and Fire demo .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ICE Book Reader Professional 7.6.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Ice Breaker 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ICE ECC 2.2.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ICE iMap Image Mapper 1.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Ice Inside LAN Office Messenger 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Ice Jam 1.51.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Ice XML SAXDOM Parser 1.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Icebreaker demo .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IceCendol Mobile Phone Instant Messenger 1.0.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IceChat IRC Client 5.5.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Icechip Keeper 1.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IceFTP 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IceProjector 1.5.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IceWarp Web Mail 5.2.8.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Icewind Dale 1.05 patch .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Icewind Dale 1.06 patch .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Icewind Dale 1.3.053018 beta patch .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Icewind Dale Heart of Winter - Trials of the Luremaster patch .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Icewind Dale Heart of Winter 1.41 patch .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Icewind Dale patch (UK) .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Icewind Dale script editor patch .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\icExcel 2.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IceXX 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iChat 2005.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iChat AV 2.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iChatbox 1.4.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iChatStatus 1.2.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ICL-Icon Extractor 2.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ICLinx 3001 1.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iClip 3.6.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iClock 2.5.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iClock for Windows 1.0.4.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iClone 1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ICMP Interceptor 2 2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ICO Screensaver .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IcoAniCur 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iCoco 1.2.3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iCodeLibrary.NET 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IcoEdit 1.4.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Icon Arranger 2.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Icon Bank (Desktop Edition) 4.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Icon Catcher 4.0.15.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Icon Clock 5.5.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Icon Collector Tool 1.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Icon Constructor 2.3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Icon Converter Plus 1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Icon Extractor 2000 4.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Icon Genesis 1.00.026.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Icon InDepth 1.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Icon Lock-iT XP 3.3 build 3301.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Icon Maker Deluxe 2002 .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Icon Pallet 1.0.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Icon Processor 2.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Icon Restore 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Icon Scanner 1.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Icon Searcher 3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Icon Seizer 1.7.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ICon Ship 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Icon Sucker 2.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Icon to Any 2.05.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Icon to Image Converter 1.3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Icon Tools 1.6.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Icon Tray 8.1.3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Icon Viewer 3.51.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IconBox 1.5.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IconBuilder 8.0.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IconBuilder Pro 3.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IconBuilder XP 1.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IconChanger 3.5.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iconcool Editor 4.86.51115.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IconCool Icon Editor 4.86.51115.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IconCool Manager 4.36 build 51115.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IconCool Manager 4.36.51115.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IconCool Studio 1.6.51011.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IconCool Studio 1.72 Build 51201.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IconDeveloper 1.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IconDIY 3.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IconEdit2 4.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Iconeer (OS X) 1.3.3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Iconeer 1.3.3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IconEmpire 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IconFilter 1.7.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IconFinder 2.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IconForge 7.12.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Iconic Tray 1.21.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IconIt 1.1.4.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Iconix eMail ID 1.9.11.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IconLab .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IconLib 3.2.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IconLover 4.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IconMagic 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IconMaker 3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IconMasterXP 4.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iConnectHere PC Phone 5.2.3.4.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Iconographer (OS X) 2.5.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Iconographer 2.4.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Iconoid 3.8.4.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IconoMaker 3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IconPackager 3.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IconsExtract 1.4.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IconStudio 5.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iContax 0.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iControl 1.2.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IconTweaker 1.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IconUtils 4.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IconView Pro 3.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IconX 1.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IconXP 2.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IconXpert 1.02 build 129.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ICopyDVDs2 Standard Edition 4.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iCoverArt 1.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ICQ (OS X) 3.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ICQ 3.2b5.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ICQ 4 Lite Edition with Xtraz French.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ICQ 4 Lite Edition with Xtraz Russian.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ICQ 4 Lite Edition with Xtraz Spanish.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ICQ 4 Lite Edition with Xtraz Swedish.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ICQ 4 Lite Edition with Xtraz Turkish.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ICQ 5.04 .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ICQ 5.04 Chinese Simplified.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ICQ 5.04 Chinese Traditional.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ICQ 5.04 Hebrew.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ICQ 5.04 Portuguese.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ICQ 5.06 German.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ICQ 5.06 Hebrew.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ICQ ActiveList Invitation 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ICQ Away Message Generator 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ICQ BufferZone Security 1.70-6.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ICQ Fixer 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ICQ for Java 0.981a.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ICQ for Palm OS 2.1 beta.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ICQ Help 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ICQ Homepages Notification 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ICQ Lite build 1309 Italian.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ICQ Lite build 1323 Danish.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ICQ Lite build 1323 Norwegian.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ICQ Lite build 1324 Dutch.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ICQ Lite build 1337 Thai.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ICQ Lite build 1340 Arabic.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ICQ Lite build 1341 Japanese.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ICQ Lite build 1341 Korean.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ICQ Lite localized.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ICQ Message Archive .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ICQ Monitor 1.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ICQ Pro 2003b build 3916.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ICQ Snif 2.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ICQ Sniffer 1.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ICQ Spy Monitor 1.3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ICQ Translator 2.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ICQ Voice Message 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ICQr Information 1.5.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ICQure 5.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ICS - Internet Component Suite 4.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ICT Atlas 1.7.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ICT PrintScreen 2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ICT ScreenMovieAX 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ICU Conference 1.48.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iCueMix 1.17.3.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ICUII 7.6.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Icverify 3.1.6.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\icWord 3.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Icy Christmas Screensaver 1.0.3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Icy Inside 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Icy Tower 1.3.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iCyrsh 1.01.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ID Consultants Shutdown Manager 2.5.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ID-Sign for Microsoft Office 2.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ID3 Editor 1.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Id3 Editor Lite 1.4.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ID3 Tag 1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ID3man 3.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ID3Tag InfoTip 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Id3ToFolder 2.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IDA - The Interactive Disassembler 4.9 SP.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iDailyDiary 3.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IDAutomation .NET Forms Control Barcode Package 4.7.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IDAutomation 2D Barcode Generator 5.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IDAutomation ASP Barcode Server Component for IIS 1.4.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IDAutomation ASP.NET Web Component 5.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IDAutomation Barcode Label Software 5.06.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IDAutomation Code 128 Barcode Font Advantage 5.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IDAutomation Code 39 Barcode Font Advantage 3.7.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IDAutomation Data Matrix Font and Encoder 3.7.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IDAutomation File Replicator 1.21.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IDAutomation Interleaved 2 of 5 Font Advantage 3.7.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IDAutomation OCR-A and OCR-B Fonts 4.9.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IDAutomation PDF417 Font and Encoder 3.7.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IDAutomation Reporting Services Barcode DLL 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IDAutomation Security Fonts 4.8.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IDAutomation TrueType Barcode Font Advantage 3.7.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IDAutomation Universal Font Advantage 5.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IDAutomation XML Barcode Webservice 1.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IDE Plus for VB 6.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Idea 2 Free Edition build 2.1.5.62.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Idea 2.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Idea Free Edition 2.1.4.33.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Idea Knot 0.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Idea Tracker 2.10.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Ideal Administration 6.5.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Ideal Browser 2.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Ideal Browser Firefox Edition 2.4.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Ideal Dispatch 1.11.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Ideal Migration 3.03.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Ideal Soccer Trainer 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IdeaMason 2005 2.0.2.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Ideas Property Clerk 4.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Ideaspad 2005 1.1.9.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iDecide 4.11.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Idem 2.2g.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Ident Server 1.16.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IdentADrug 6.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IDentify 4.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Identity Theft Protector 2.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iDesk 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IdFramer 1.9.5.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IdImager Professional Image Manager 3.0.4.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IdiomaX Office Translator 2.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IdiomaX Translation Assistant 2.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IdiomaX Translation Suite 2.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IdiomaX Web Translator 2.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iDirectionz 1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iDisk Utility 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iDiskPro 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iDive 1.4.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IdleScreen Organizer 1.42.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\idManage 4.4.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iDo Wedding Couple Edition 7.6.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iDoc Writer 1.2.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Idokorro Mobile Admin 3.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IDPhotoStudio 1.5.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iDriveRepair 3.6.5.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iDrum 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IDSync 1.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IdTracks-Gauges Basic Edition 1.1.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\idTunes 1.0.3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iDump 1.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IDView 1.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IE 2 PSP 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IE 2 VS Jumper AddIn 1.0.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IE 5.01 SP1 File Upload via Form Vulnerability Patch MS00-093.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IE Accelerator 2.21.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IE Assistant 2.3.3 build 109.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IE AutoFill 2.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IE AutoLogin 1.6.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IE Cache&History Viewer 1.2 build 1.2.1.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IE Catcher 1.3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IE Doctor 3.6.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IE DOM Inspector 1.0.5.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IE FTP Plugin 1.5.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IE Ink 2004 1.2.0.3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IE Lock 1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IE Popup Killer 2.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IE Privacy Cleaner 1.6.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IE Privacy Keeper 2.7.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IE Protector And Tracks Eraser 1.4.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IE Quick Saver 1.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IE Secure Master 2.3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IE Selective History Removal Tool 2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IE Snapshot 1.03.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IE Tab 1.0.7.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IE Toolbar Builder 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IE Translator 2.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IE Xtreme 2.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IE2PDB Explorer Bar 1.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IE5 Cached Web Credentials Vulnerability Patch .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IE5.5 File Upload via Form Vulnerability Patch MS00-093.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IE5.5 SP1 File Upload via Form Vulnerability Patch MS00-093.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IEBMaker 1.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IeCacheExplorer 1.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IECookiesView 1.7.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IECount 3.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IeHip Media Platform 3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IEHistoryView 1.3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IEJet - Popup Killer & Ad Stopper 1.43.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IELaunchPad 1.0.16.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IElogin 2.02.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IEmage 2.5.2.4.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IEManager 4.3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IEMonitor 2.3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IENavigator Standard 2.0.12.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IEpal 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IEPassword 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IERescuer 1.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IESaver 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IEscan 3.5.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IESnap 1.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IESpell 2.1.1 build 325.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ieSpell plugin for Wordpress 0.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ieSupportManager Helpdesk (Web Edition) 1.48.02.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IeToolbox 2.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IEToolKit 1.5.3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IETools 2.6.1.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IEWatch 3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\If You Believe You Can .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iF-16 demo .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iFA-18E Carrier Strike Fighter demo .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IFAebook 7.7.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iFastViewer 0.3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iFD Bundle 1.6.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iFD Calc 1.6.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iFD Christmas 1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iFD Explorer 1.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iFD Formula 1.6.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iFD Geometry 1.8.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iFetcher 1.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IFH - Income From Home Toolbar 4.5.85.0 (for IE 5+).zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iFlash 2.6.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iFriendCAM 0.9.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IFTA Report Software 2.010 build QC.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iFufi2 2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iFunPix 0.16.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IGA 3.3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iGamebar 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IGC SE 1.01.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IGES Import for AutoCAD 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iGet 1.1.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iGetter 2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iGetter Download Manager 1.9.5.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iGetter Download Manager 2.4.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Iggle Pop 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IGI 2 Covert Strike 1.1 - 1.2 patch (UK) .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IGI 2 Covert Strike 1.1 patch (UK) .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IGI 2 Covert Strike Safemode patch .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IGI 2 Covert Strike - Area 27 map .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IGI 2 Covert Strike - Dockside multiplayer map .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IGI 2 Covert Strike - Libyan Village map .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IGI 2 Covert Strike - Winterland map .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IGI 2 Covert Strike map editor .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IGI 2 Covert Strike Single-player demo .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Igneon Test Maker 2.1.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Ignition 2.9.1.51.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Ignition demo .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iGolf 1.04.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IgtEditor 1.22.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iHatePopups 1.5.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iHateSpam for Exchange 1.5.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iHavePhotos 1.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iHelp 1.5.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iHOC Query .NET 1.0.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IHRA Drag Racing 1.01 patch .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IHRA Drag Racing 1.02 patch .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\II WorkSchedule 5.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iIChat Logger 2.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iInventory 7.0.1.12.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IIS 4.0 Cumulative Security Update MS01-044.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IIS 5.0 Cumulative Security Update MS01-044.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IIS Metabase Explorer 1.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IIS Security Audit 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IIS5 File-Fragment Reading via Malformed HTR Request Vulnerabili (MS01-004).zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IIS5 Malformed URL Service Failure Vulnerability Patch MS01-014 (3101).zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IIS5 Malformed WebDAV Request Vulnerability Patch MS01-016 (30801).zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IISGate 4.71.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IISGuard 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IISShield 1.0.3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IISxpress 1.2.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iISystem Wiper 2.4.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\II_Calendar 2.6.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iKey 2.0.3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iKeyword 0.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iKnow Process Scanner 1.0.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IL-2 Sturmovik 1.0.3a patch .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IL-2 Sturmovik 1.0.4a patch (supplemental) .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IL-2 Sturmovik 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IL-2 Sturmovik 1.1a patch .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IL-2 Sturmovik 1.2 patch .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IL-2 Sturmovik 1.2ov patch .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IL-2 Sturmovik demo .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IL-2 Sturmovik Forgotten Battles Rebirth of Honor demo .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IL-2 Sturmovik The Forgotten Battles 1.0 Patch 1.22.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IL-2 Sturmovik The Forgotten Battles 1.21 Patch 1.22.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iLab Easy Leaves 1.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\iLab Job Manager 1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Ilife 06 Install Dvd Dmg.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Ilixis Image Console 2.0.3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Illuminati 1.05.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Illumination 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Illumination 3.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Illustrix Butterfly Dream (Pocket) 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Illustrix Cat Dream (Palm) 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Illustrix Dog Dream 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ILook 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IM Cocktails 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IM Commander 1.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IM Hangman 1.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\In Her Shoes 2005 Dvdrip Kvcd Jamgood Tus Release.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\IO ActiveX Control 2.09.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Iron Maiden Every Album.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\ITalk 7.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Jam Packs.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Jamie Foxx Unpredictable 2005 Rns.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Johnny Cash The Legend Of Johnny Cash.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Kelly Clarkson Breakaway 2005 Cd 3vids Covers.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Kelly Clarkson Breakaway Album.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\King Kong 2005 Xvid.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Led Zeppelin Discography.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Live8 Dvd 1 Dvd R.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Live8 Dvd Disc 3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Live8 Dvd Disc2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Mac Os X Tiger Plus Adobe Cs2 Filemaker Pro 8 Toas.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Mac Os X X86 10 Tiger.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Macromedia Studio V8 Www Limitedivx Com.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Madonna Confessions 2005 Cd Vid Covers.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Madonna Sorry Music Video Dvdrip Dance 2006.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Mariah Carey Emancipation Upe 2005 Cd 5vid Co.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Massive Music Video Torrent.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Mcsa Mcse Testout Com Dec 2005.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Metallica 13 Albums.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Microsoft 1 Windows Vista 32bit Build 5270 Dvd Internal Winbeta Btc Mininova Org.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Microsoft Digital Image Suite 2006.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Microsoft Office 2003 Professional Word Excel Powerpoint Access Frontpage Outlook Infopath Visio Pro.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Microsoft Sql Server 2005 32321 39636 20225 26989 29256 2cd.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Microsoft Visual Studio 2005 Team Edition For Software Developers Dvd Zwtiso.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Microsoft Windows Vista 32bit Build 5270 Dvd Internal Winbeta.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Microsoft Windows Xp Media Center 2005 Spanish Www Limitedivx Com Iso.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Microsoft Windows Xp Media Center Edition 2005.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Next ».zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Norton 2006 Systemworks Internet Security Ghost 9 0 Goback All Keygens Rar.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Norton Antivirus 2006 All In One.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Norton Internet Security 2006 Original Cd.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\One Tree Hill Enhanced Soundtrack Season 2 2cd 40tracks Kmn Music De.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Ost Underworld Evolution 2006 Mp3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Partnership Opportunities.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Photoshop Cs2 V9 0 Working Keygen.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Pink Floyd Complete Collection.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Pink Floyd Complete Live8.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Pinnacle Studio Media Suite V10 1 Multilenguaje 3cds Www Limitedivx Com.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Pinnacle Studio Plus 10 Multilanguage Www Torrentboyz Com.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Placebo Meds 2006 R3d.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Pocket Pc Mega Pack.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Porn Camel Toe Model Xxx.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Privacy Policy.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Product reviews.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Release 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Robbie Williams Intensive Care 2005.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Slackware 10 2 Iso.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Smallville The Ultimate Soundtrack 2cd 36tracks Kmn Music De.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Solidworks 2006.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Spyware Removal.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Sugababes Taller In More Ways 2005 Cd Vid Cov.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Symantec Norton Ghost 2005 V9 0 Eng Bootable Iso.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Tech news.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Terms of Use.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\The Doors 31 Albums.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\The Flaming Lips At War With The Mystics Advanc.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\The Logo Creator 4 1 Mega Pack Full.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\The Rosetta Stone Language System 25 Languages 38 Levels Version 2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Todo En Uno V6 By Borrass Darketernal Net Rar.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Tomtom Navigator 5 000 Complete With Installer And Maps.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Top 30 Most Famous Music Videos Ever Mpeg Skidvid.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\U2 Complete Cds Collection.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Ulead Videostudio 9 Full Retail Crack.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Va Greatest Lovesong Collection 2cds Pop 2006.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Va Major Factor Records Presents The Jumpoff 2006 Www Limitedivx Com.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Va Pacha Ibiza Winter Session Vol 4 House 2006.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Visual Studio 2005 Professional Edition Dvd.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Windows Xp Borg Edition V5 0 Final.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Windows Xp Pro Sp2 2006 01 02 Dvd.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Windows Xp X64bit Professional Corporate Edition Xiso.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\Documents and Settings\Andrea\Complete\Www X Eeme De Magix Music Maker V2006 Deluxe Dvd German Shooters.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\drsmartload1.exe -> Downloader.VB.wj : Cleaned with backup C:\Program Files\Common Files\Totem Shared\Update\DialerOffline.dll.010 -> Dialer.DialerOffline : Cleaned with backup C:\Program Files\Norton AntiVirus\nv930td\norton 2002 serial Crack.exe -> Backdoor.SubSeven.pac : Cleaned with backup C:\RECYCLER\NPROTECT\00076729.exe -> Backdoor.Rbot : Cleaned with backup C:\RECYCLER\NPROTECT\00076730.exe -> Worm.VB.dw : Cleaned with backup C:\RECYCLER\NPROTECT\00076731.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup C:\visfx500.exe -> Dropper.Agent.aie : Cleaned with backup C:\WINDOWS\brix6ie.ocx -> Adware.Coupons : Cleaned with backup C:\WINDOWS\Downloaded Program Files\gsda.dll -> Not-A-Virus.Downloader.Win32.SpyGame : Cleaned with backup ::Report End Here is the Panda Log: Incident Status Location Adware:adware/maxifiles Not disinfected C:\mc-110-12-0000228.exe Adware:adware/ist.istbar Not disinfected C:\PROGRAM FILES\COMMON FILES\Totem Shared Adware:adware/dollarrevenue Not disinfected C:\PROGRAM FILES\COMMON FILES\VCClient Adware:adware/commad Not disinfected Windows Registry Spyware:Cookie/Atlas DMT Not disinfected C:\Documents and Settings\Andrea\Cookies\andrea@atdmt[2].txt Spyware:Cookie/Tribalfusion Not disinfected C:\Documents and Settings\Andrea\Cookies\andrea@tribalfusion[2].txt Spyware:Cookie/Atlas DMT Not disinfected C:\Documents and Settings\Andrea\Cookies\andrea@atdmt[2].txt Spyware:Cookie/Tribalfusion Not disinfected C:\Documents and Settings\Andrea\Cookies\andrea@tribalfusion[2].txt Virus:Exploit/ByteVerify Disinfected C:\Documents and Settings\Trevor\.jpi_cache\jar\1.0\arc.zip-53b4229a-13c20775.zip[VerifierBug.class] Virus:Exploit/ByteVerify Disinfected C:\Documents and Settings\Trevor\.jpi_cache\jar\1.0\arc.zip-53b4229a-13c20775.zip[Counter.class] Virus:Exploit/ByteVerify Disinfected C:\Documents and Settings\Trevor\.jpi_cache\jar\1.0\arc.zip-53b4229a-13c20775.zip[Gummy.class] Virus:Exploit/ByteVerify Disinfected C:\Documents and Settings\Trevor\.jpi_cache\jar\1.0\arc.zip-53b4229a-13c20775.zip[Beyond.class] Virus:Exploit/ByteVerify Disinfected C:\Documents and Settings\Trevor\.jpi_cache\jar\1.0\arc.zip-53b4229a-13c20775.zip[Worker.class] Spyware:Spyware/AdClicker Not disinfected C:\Documents and Settings\Trevor\.jpi_cache\jar\1.0\arc.zip-53b4229a-13c20775.zip[web.exe] Virus:Exploit/ByteVerify Disinfected C:\Documents and Settings\Trevor\.jpi_cache\jar\1.0\archive.jar-397e945d-681bd812.zip[BlackBox.class] Virus:Exploit/ByteVerify Disinfected C:\Documents and Settings\Trevor\.jpi_cache\jar\1.0\archive.jar-397e945d-681bd812.zip[VB.class] Virus:Exploit/ByteVerify Disinfected C:\Documents and Settings\Trevor\.jpi_cache\jar\1.0\archive.jar-397e945d-681bd812.zip[Dummy.class] Virus:Exploit/ByteVerify Disinfected C:\Documents and Settings\Trevor\.jpi_cache\jar\1.0\archive.jar-397e945d-681bd812.zip[Beyond.class] Virus:Trj/Mitglieder.CP Disinfected C:\Documents and Settings\Trevor\.jpi_cache\jar\1.0\menu.jr-c78a21d-4e469ac9.zip[javautil.zip] Virus:Exploit/ByteVerify Disinfected C:\Documents and Settings\Trevor\.jpi_cache\jar\1.0\menu.jr-c78a21d-4e469ac9.zip[Beyond.class] Virus:Exploit/ByteVerify Disinfected C:\Documents and Settings\Trevor\.jpi_cache\jar\1.0\menu.jr-c78a21d-4e469ac9.zip[Dummy.class] Virus:Exploit/ByteVerify Disinfected C:\Documents and Settings\Trevor\.jpi_cache\jar\1.0\menu.jr-c78a21d-4e469ac9.zip[NudeBox.class] Virus:Exploit/ByteVerify Disinfected C:\Documents and Settings\Trevor\.jpi_cache\jar\1.0\menu.jr-c78a21d-4e469ac9.zip[VerifierBug.class] Virus:Exploit/ByteVerify Disinfected C:\Documents and Settings\Trevor\.jpi_cache\jar\1.0\menu.jr-c78a21d-4e469ac9.zip[Worker.class] Adware:Adware/Maxifiles Not disinfected C:\mc-110-12-0000228.exe Virus:Trj/Downloader.HPT Disinfected C:\Program Files\Common Files\Download\mc-110-12-0000228.exe Here is the HJT Log: Logfile of HijackThis v1.99.1 Scan saved at 5:14:30 PM, on 14/02/2006 Platform: Windows XP SP1 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\System32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe C:\Program Files\Norton Personal Firewall\NISUM.EXE C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\Explorer.EXE C:\Program Files\NavNT\vptray.exe C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe C:\Program Files\Hewlett-Packard\Digital Imaging\Unload\hpqcmon.exe C:\Program Files\Common Files\Symantec Shared\ccApp.exe C:\Program Files\Common Files\Real\Update_OB\realsched.exe C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe C:\Program Files\QuickTime\qttask.exe C:\Program Files\BenQ\QMusic2\QMAgent.exe C:\Program Files\Microsoft Hardware\Mouse\point32.exe C:\Program Files\ATI Technologies\ATI HYDRAVISION\HydraDM.exe C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnf.exe C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe C:\WINDOWS\System32\ctfmon.exe C:\Program Files\Hewlett-Packard\AiO\hp psc 700 series\Bin\hpobrt07.exe C:\Program Files\Norton Utilities\SYSDOC32.EXE C:\PROGRA~1\HEWLET~1\AiO\Shared\Bin\hpoevm07.exe C:\WINDOWS\System32\hpoipm07.exe C:\Program Files\Norton Personal Firewall\ccPxySvc.exe C:\Program Files\NavNT\defwatch.exe C:\Program Files\Executive Software\DiskeeperWorkstation\DKService.exe C:\Program Files\ewido anti-malware\ewidoctrl.exe C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe C:\Program Files\NavNT\rtvscan.exe C:\Program Files\Norton Utilities\NPROTECT.EXE C:\WINDOWS\system32\pctspk.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\fxssvc.exe C:\WINDOWS\System32\MsgSys.EXE C:\HJT\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.ca/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.daewoointernational.ca R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page_bak = http://www.google.ca/ O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx O4 - HKLM\..\Run: [CountrySelection] pctptt.exe O4 - HKLM\..\Run: [vptray] C:\Program Files\NavNT\vptray.exe O4 - HKLM\..\Run: [Share-to-Web Namespace Daemon] C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe O4 - HKLM\..\Run: [CamMonitor] C:\Program Files\Hewlett-Packard\Digital Imaging\Unload\hpqcmon.exe O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe" O4 - HKLM\..\Run: [ccRegVfy] "C:\Program Files\Common Files\Symantec Shared\ccRegVfy.exe" O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [BenQ] E:\BenQJoybeePlayer.exe O4 - HKLM\..\Run: [QMusic2] "C:\Program Files\BenQ\QMusic2\QMAgent.exe" O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [POINTER] point32.exe O4 - HKLM\..\Run: [HydraVisionDesktopManager] C:\Program Files\ATI Technologies\ATI HYDRAVISION\HydraDM.exe O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\isuspm.exe -startup O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\System32\ctfmon.exe O4 - HKCU\..\Run: [Startup Manager] C:\Documents and Settings\Andrea\Application Data\Systweak\ASO 2\smstartUp manager.exe O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe O4 - Global Startup: HPAiODevice(hp psc 700 series) - 1.lnk = C:\Program Files\Hewlett-Packard\AiO\hp psc 700 series\Bin\hpobrt07.exe O4 - Global Startup: Norton System Doctor.lnk = C:\Program Files\Norton Utilities\SYSDOC32.EXE O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE O9 - Extra 'Tools' menuitem: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll O15 - Trusted Zone: http://www.petrescueshelter.com O15 - Trusted Zone: www.pier1.com O15 - Trusted Zone: http://download.windowsupdate.com O15 - Trusted Zone: http://www.download.windowsupdate.com O16 - DPF: {0E5F0222-96B9-11D3-8997-00104BD12D94} (PCPitstop Utility) - http://www.pcpitstop.com/pcpitstop/PCPitStop.CAB O16 - DPF: {2B323CD9-50E3-11D3-9466-00A0C9700498} (Yahoo! Audio Conferencing) - http://us.chat1.yimg.com/us.yimg.com...45/yacscom.cab O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/S...in/AvSniff.cab O16 - DPF: {406B5949-7190-4245-91A9-30A17DE16AD0} (Snapfish Activia) - http://www.snapfish.com/SnapfishActivia.cab O16 - DPF: {41F17733-B041-4099-A042-B518BB6A408C} - http://appldnld.m7z.net/qtinstall.in...lInstaller.exe O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/S.../bin/cabsa.cab O16 - DPF: {70BA88C8-DAE8-4CE9-92BB-979C4A75F53B} (GSDACtl Class) - http://launch.gamespyarcade.com/soft...ch/alaunch.cab O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2...ll/xscan53.cab O16 - DPF: {7CF052DE-C74F-421B-B04A-3B3037EF5887} (CCMPGui Class) - http://64.124.45.181/chaincast/proxy/CCMP.cab O16 - DPF: {7D1E9C49-BD6A-11D3-87A8-009027A35D73} (Yahoo! Audio UI1) - http://chat.yahoo.com/cab/yacsui.cab O16 - DPF: {9600F64D-755F-11D4-A47F-0001023E6D5A} (Shutterfly Picture Upload Plugin) - http://web1.shutterfly.com/downloads/Uploader.cab O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/actives...ree/asinst.cab O16 - DPF: {9AA73F41-EC64-489E-9A73-9CD52E528BC4} (ZoneAxRcMgr Class) - http://zone.msn.com/binGame/ZAxRcMgr.cab O16 - DPF: {C2FCEF52-ACE9-11D3-BEBD-00105AA9B6AE} (Symantec RuFSI Registry Information Class) - http://security1.norton.com/SSC/Shar.../bin/cabsa.cab O16 - DPF: {CE28D5D2-60CF-4C7D-9FE8-0F47A3308078} (ActiveDataInfo Class) - https://www-secure.symantec.com/tech...a/SymAData.dll O16 - DPF: {E77C0D62-882A-456F-AD8F-7C6C9569B8C7} (ActiveDataObj Class) - https://www-secure.symantec.com/tech...ActiveData.cab O16 - DPF: {EB387D2F-E27B-4D36-979E-847D1036C65D} (QDiagHUpdateObj Class) - http://h30043.www3.hp.com/aio/eng/check/qdiagh.cab?312 O16 - DPF: {F127B9BA-89EA-4B04-9C67-2074A9DF61FD} (Photo Upload Plugin Class) - http://costco.pnimedia.com/upload/ac...pv2.0.0.9.cab? O16 - DPF: {F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6} (MSN Chat Control 4.5) - http://chat.msn.com/bin/msnchat45.cab O17 - HKLM\System\CCS\Services\Tcpip\..\{FD34381F-B60B-4843-9978-E74A9D7145B2}: NameServer = 142.161.130.155 142.161.2.155 O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing) O20 - Winlogon Notify: GoToMyPC - C:\Program Files\Citrix\GoToMyPC\G2WinLogon.dll O20 - Winlogon Notify: NavLogon - C:\WINDOWS\System32\NavLogon.dll O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\System32\Ati2evxx.exe O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe O23 - Service: Symantec Password Validation Service (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe O23 - Service: Symantec Proxy Service (ccPxySvc) - Symantec Corporation - C:\Program Files\Norton Personal Firewall\ccPxySvc.exe O23 - Service: DefWatch - Symantec Corporation - C:\Program Files\NavNT\defwatch.exe O23 - Service: Diskeeper - Executive Software International, Inc. - C:\Program Files\Executive Software\DiskeeperWorkstation\DKService.exe O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe O23 - Service: GoToMyPC - Unknown owner - C:\Program Files\Citrix\GoToMyPC\g2svc.exe" -service (file missing) O23 - Service: Norton Personal Firewall Accounts Manager (NISUM) - Symantec Corporation - C:\Program Files\Norton Personal Firewall\NISUM.EXE O23 - Service: Norton AntiVirus Client (Norton AntiVirus Server) - Symantec Corporation - C:\Program Files\NavNT\rtvscan.exe O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\Program Files\Norton Utilities\NPROTECT.EXE O23 - Service: W2k PCtel speaker phone (Pctspk) - PCtel, Inc. - C:\WINDOWS\system32\pctspk.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe Anxiously awaiting your reply, Smithson |
|
|
|
|
#4 (permalink) |
|
Manager, Security Center, TSF Academy; Analyst, Security Team
Join Date: Jan 2005
Location: Transylvania County, North Carolina, USA
Posts: 35,580
OS: 2000 Pro; XP Pro; XP Home
|
My humblest apologies, Smithson...I had you run the P2Pnetworking BFU script. This next one shall remove the Shorty/Silly files, and other registry entries not shown.
---------------------------------------------- Please run the BFU once again. Run the program and click the Web button as shown here: ![]() Use this URL to copy into the address bar of the Download script window: http://metallica.geekstogo.com/alcanshorty.bfu Execute the script by clicking the Execute button. If you have any questions about the use of BFU please read here: http://metallica.geekstogo.com/BFUinstructions.html ---------------------------------------------- To Clear java's cache of temporary files: Click on Start->Control Panel->Java->Settings->Delete Files and click OK and OK. ---------------------------------------------- Next, Delete these files/folders: C:\PROGRAM FILES\COMMON FILES\Totem Shared C:\PROGRAM FILES\COMMON FILES\VCClient ---------------------------------------------- Clear your IE cookies. Start>Settings>Control Panel>Internet Options>General tab>under Temporary files, click on Delete Cookies ---------------------------------------------- Show me the Norton log....IF there are any items NOT in Quarantine, and IF it was run AFTER Ewido and Panda. If it was run BEFORE those....hold off for now. ---------------------------------------------- Perform this online scan: Establish an internet connection & perform an online scan with Internet Explorer at Kaspersky Online Scanner Answer Yes, when prompted to install an ActiveX component.
__________________
Practice Safe Surfing Because what you don't know, CAN hurt you. Microsoft MVP - Consumer Security 2009
|
|
|
|
|
#5 (permalink) |
|
Registered User
Join Date: Feb 2006
Location: Canada
Posts: 5
OS: XP Home
|
I did run the virus scan after Ewido and Panda in safe mode...before BFU the second time around. Here are the results:
Date Filename Virus Name Virus Type Action Taken Computer User Original Location Status Current Location Primary Action Secondary Action Scan Type 13/02/2006 14:17 A0719206.EXE Trojan Horse File Left alone YOUR-8GFY4RXDBE SYSTEM C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1291\ Infected C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1291\ Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 WLD4VOUPRKWL6NWIJQXIYYBDQTTEUKSK Adobe Photoshop 7 keygen.exe W32.SillyP2P File Left alone YOUR-8GFY4RXDBE SYSTEM C:\Program Files\Shareaza\Incomplete\ Infected C:\Program Files\Shareaza\Incomplete\ Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 VCUpdate.exe Download.Trojan File Left alone YOUR-8GFY4RXDBE SYSTEM C:\Program Files\Common Files\VCClient\ Infected C:\Program Files\Common Files\VCClient\ Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 offun.exe Download.Trojan File Left alone YOUR-8GFY4RXDBE SYSTEM C:\WINDOWS\ Infected C:\WINDOWS\ Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 spfjhyt.exe Trojan.Popper File Left alone YOUR-8GFY4RXDBE SYSTEM C:\WINDOWS\ Infected C:\WINDOWS\ Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 VCClient.exe Download.Trojan File Left alone YOUR-8GFY4RXDBE SYSTEM C:\Program Files\Common Files\VCClient\ Infected C:\Program Files\Common Files\VCClient\ Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 Counters.jar-32fc5068-56912b25.zip Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\Documents and Settings\Trevor\.jpi_cache\jar\1.0\ Still contains 6 infected items C:\Documents and Settings\Trevor\.jpi_cache\jar\1.0\ Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 Xeyond.class Downloader.Trojan File; Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\Documents and Settings\Trevor\.jpi_cache\jar\1.0\Counters.jar-32fc5068-56912b25.zip Infected C:\Documents and Settings\Trevor\.jpi_cache\jar\1.0\Counters.jar-32fc5068-56912b25.zip Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 Worker.class Trojan.ByteVerify File; Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\Documents and Settings\Trevor\.jpi_cache\jar\1.0\Counters.jar-32fc5068-56912b25.zip Infected C:\Documents and Settings\Trevor\.jpi_cache\jar\1.0\Counters.jar-32fc5068-56912b25.zip Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 web.exe Trojan.Mitglieder File; Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\Documents and Settings\Trevor\.jpi_cache\jar\1.0\Counters.jar-32fc5068-56912b25.zip Infected C:\Documents and Settings\Trevor\.jpi_cache\jar\1.0\Counters.jar-32fc5068-56912b25.zip Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 VerifierBug.class Trojan.ByteVerify File; Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\Documents and Settings\Trevor\.jpi_cache\jar\1.0\Counters.jar-32fc5068-56912b25.zip Infected C:\Documents and Settings\Trevor\.jpi_cache\jar\1.0\Counters.jar-32fc5068-56912b25.zip Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 Counter.class Trojan.ByteVerify File; Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\Documents and Settings\Trevor\.jpi_cache\jar\1.0\Counters.jar-32fc5068-56912b25.zip Infected C:\Documents and Settings\Trevor\.jpi_cache\jar\1.0\Counters.jar-32fc5068-56912b25.zip Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 Counters.jar-32fc5068-56912b25.zip Trojan.ByteVerify File Left alone YOUR-8GFY4RXDBE SYSTEM C:\Documents and Settings\Trevor\.jpi_cache\jar\1.0\ Infected C:\Documents and Settings\Trevor\.jpi_cache\jar\1.0\ Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 classload.jar-6525cbb1-24c3cdc6.zip Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\Documents and Settings\Trevor\.jpi_cache\jar\1.0\ Still contains 5 infected items C:\Documents and Settings\Trevor\.jpi_cache\jar\1.0\ Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 Installer.class Trojan.ByteVerify File; Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\Documents and Settings\Trevor\.jpi_cache\jar\1.0\classload.jar-6525cbb1-24c3cdc6.zip Infected C:\Documents and Settings\Trevor\.jpi_cache\jar\1.0\classload.jar-6525cbb1-24c3cdc6.zip Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 Dummy.class Trojan.ByteVerify File; Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\Documents and Settings\Trevor\.jpi_cache\jar\1.0\classload.jar-6525cbb1-24c3cdc6.zip Infected C:\Documents and Settings\Trevor\.jpi_cache\jar\1.0\classload.jar-6525cbb1-24c3cdc6.zip Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 InsecureClassLoader.class Trojan.ByteVerify File; Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\Documents and Settings\Trevor\.jpi_cache\jar\1.0\classload.jar-6525cbb1-24c3cdc6.zip Infected C:\Documents and Settings\Trevor\.jpi_cache\jar\1.0\classload.jar-6525cbb1-24c3cdc6.zip Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 GetAccess.class Trojan.ByteVerify File; Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\Documents and Settings\Trevor\.jpi_cache\jar\1.0\classload.jar-6525cbb1-24c3cdc6.zip Infected C:\Documents and Settings\Trevor\.jpi_cache\jar\1.0\classload.jar-6525cbb1-24c3cdc6.zip Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 classload.jar-6525cbb1-24c3cdc6.zip Trojan.ByteVerify File Left alone YOUR-8GFY4RXDBE SYSTEM C:\Documents and Settings\Trevor\.jpi_cache\jar\1.0\ Infected C:\Documents and Settings\Trevor\.jpi_cache\jar\1.0\ Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 index3[1].htm Bloodhound.Exploit.6 File Left alone YOUR-8GFY4RXDBE SYSTEM C:\abc\Temporary Internet Files\Content.IE5\C1AR0PEZ\ Infected C:\abc\Temporary Internet Files\Content.IE5\C1AR0PEZ\ Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 TuneUp.Utilities.2004.Keygenerator.exe Trojan Horse File Left alone YOUR-8GFY4RXDBE SYSTEM C:\Documents and Settings\Andrea\My Documents\My Received Files\ Infected C:\Documents and Settings\Andrea\My Documents\My Received Files\ Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 index3[2].htm Bloodhound.Exploit.6 File Left alone YOUR-8GFY4RXDBE SYSTEM C:\abc\Temporary Internet Files\Content.IE5\LJZN114E\ Infected C:\abc\Temporary Internet Files\Content.IE5\LJZN114E\ Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 index3[2].htm Bloodhound.Exploit.6 File Left alone YOUR-8GFY4RXDBE SYSTEM C:\abc\Temporary Internet Files\Content.IE5\LJZN114E\ Infected C:\abc\Temporary Internet Files\Content.IE5\LJZN114E\ Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 jar_cache1266.tmp Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\DOCUME~1\Andrea\LOCALS~1\Temp\ Still contains 4 infected items C:\DOCUME~1\Andrea\LOCALS~1\Temp\ Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 Beyond.class Trojan.ByteVerify File; Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\DOCUME~1\Andrea\LOCALS~1\Temp\jar_cache1266.tmp Infected C:\DOCUME~1\Andrea\LOCALS~1\Temp\jar_cache1266.tmp Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 VerifierBug.class Trojan.ByteVerify File; Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\DOCUME~1\Andrea\LOCALS~1\Temp\jar_cache1266.tmp Infected C:\DOCUME~1\Andrea\LOCALS~1\Temp\jar_cache1266.tmp Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 BlackBox.class Trojan.ByteVerify File; Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\DOCUME~1\Andrea\LOCALS~1\Temp\jar_cache1266.tmp Infected C:\DOCUME~1\Andrea\LOCALS~1\Temp\jar_cache1266.tmp Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 jar_cache1266.tmp Trojan.ByteVerify File Left alone YOUR-8GFY4RXDBE SYSTEM C:\DOCUME~1\Andrea\LOCALS~1\Temp\ Infected C:\DOCUME~1\Andrea\LOCALS~1\Temp\ Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 count.jar-6d412d27-36b20351.zip Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\ Still contains 4 infected items C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\ Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 Beyond.class Trojan.ByteVerify File; Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\count.jar-6d412d27-36b20351.zip Infected C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\count.jar-6d412d27-36b20351.zip Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 VerifierBug.class Trojan.ByteVerify File; Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\count.jar-6d412d27-36b20351.zip Infected C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\count.jar-6d412d27-36b20351.zip Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 BlackBox.class Trojan.ByteVerify File; Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\count.jar-6d412d27-36b20351.zip Infected C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\count.jar-6d412d27-36b20351.zip Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 count.jar-6d412d27-36b20351.zip Trojan.ByteVerify File Left alone YOUR-8GFY4RXDBE SYSTEM C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\ Infected C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\ Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 count.jar-6d412d27-65f8d968.zip Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\ Still contains 4 infected items C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\ Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 Beyond.class Trojan.ByteVerify File; Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\count.jar-6d412d27-65f8d968.zip Infected C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\count.jar-6d412d27-65f8d968.zip Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 VerifierBug.class Trojan.ByteVerify File; Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\count.jar-6d412d27-65f8d968.zip Infected C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\count.jar-6d412d27-65f8d968.zip Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 BlackBox.class Trojan.ByteVerify File; Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\count.jar-6d412d27-65f8d968.zip Infected C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\count.jar-6d412d27-65f8d968.zip Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 count.jar-6d412d27-65f8d968.zip Trojan.ByteVerify File Left alone YOUR-8GFY4RXDBE SYSTEM C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\ Infected C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\ Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 jar_cache1261.tmp Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\DOCUME~1\Andrea\LOCALS~1\Temp\ Still contains 4 infected items C:\DOCUME~1\Andrea\LOCALS~1\Temp\ Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 Beyond.class Trojan.ByteVerify File; Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\DOCUME~1\Andrea\LOCALS~1\Temp\jar_cache1261.tmp Infected C:\DOCUME~1\Andrea\LOCALS~1\Temp\jar_cache1261.tmp Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 VerifierBug.class Trojan.ByteVerify File; Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\DOCUME~1\Andrea\LOCALS~1\Temp\jar_cache1261.tmp Infected C:\DOCUME~1\Andrea\LOCALS~1\Temp\jar_cache1261.tmp Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 BlackBox.class Trojan.ByteVerify File; Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\DOCUME~1\Andrea\LOCALS~1\Temp\jar_cache1261.tmp Infected C:\DOCUME~1\Andrea\LOCALS~1\Temp\jar_cache1261.tmp Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 jar_cache1261.tmp Trojan.ByteVerify File Left alone YOUR-8GFY4RXDBE SYSTEM C:\DOCUME~1\Andrea\LOCALS~1\Temp\ Infected C:\DOCUME~1\Andrea\LOCALS~1\Temp\ Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 count.jar-6d412d27-3eeb0633.zip Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\ Still contains 4 infected items C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\ Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 Beyond.class Trojan.ByteVerify File; Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\count.jar-6d412d27-3eeb0633.zip Infected C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\count.jar-6d412d27-3eeb0633.zip Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 VerifierBug.class Trojan.ByteVerify File; Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\count.jar-6d412d27-3eeb0633.zip Infected C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\count.jar-6d412d27-3eeb0633.zip Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 BlackBox.class Trojan.ByteVerify File; Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\count.jar-6d412d27-3eeb0633.zip Infected C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\count.jar-6d412d27-3eeb0633.zip Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 count.jar-6d412d27-3eeb0633.zip Trojan.ByteVerify File Left alone YOUR-8GFY4RXDBE SYSTEM C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\ Infected C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\ Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 count.jar-6d412d27-3fdeddb5.zip Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\ Still contains 4 infected items C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\ Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 Beyond.class Trojan.ByteVerify File; Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\count.jar-6d412d27-3fdeddb5.zip Infected C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\count.jar-6d412d27-3fdeddb5.zip Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 VerifierBug.class Trojan.ByteVerify File; Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\count.jar-6d412d27-3fdeddb5.zip Infected C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\count.jar-6d412d27-3fdeddb5.zip Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 BlackBox.class Trojan.ByteVerify File; Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\count.jar-6d412d27-3fdeddb5.zip Infected C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\count.jar-6d412d27-3fdeddb5.zip Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 count.jar-6d412d27-3fdeddb5.zip Trojan.ByteVerify File Left alone YOUR-8GFY4RXDBE SYSTEM C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\ Infected C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\ Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 jar_cache1260.tmp Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\DOCUME~1\Andrea\LOCALS~1\Temp\ Still contains 4 infected items C:\DOCUME~1\Andrea\LOCALS~1\Temp\ Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 Beyond.class Trojan.ByteVerify File; Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\DOCUME~1\Andrea\LOCALS~1\Temp\jar_cache1260.tmp Infected C:\DOCUME~1\Andrea\LOCALS~1\Temp\jar_cache1260.tmp Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 VerifierBug.class Trojan.ByteVerify File; Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\DOCUME~1\Andrea\LOCALS~1\Temp\jar_cache1260.tmp Infected C:\DOCUME~1\Andrea\LOCALS~1\Temp\jar_cache1260.tmp Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 BlackBox.class Trojan.ByteVerify File; Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\DOCUME~1\Andrea\LOCALS~1\Temp\jar_cache1260.tmp Infected C:\DOCUME~1\Andrea\LOCALS~1\Temp\jar_cache1260.tmp Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 jar_cache1260.tmp Trojan.ByteVerify File Left alone YOUR-8GFY4RXDBE SYSTEM C:\DOCUME~1\Andrea\LOCALS~1\Temp\ Infected C:\DOCUME~1\Andrea\LOCALS~1\Temp\ Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 jar_cache1265.tmp Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\DOCUME~1\Andrea\LOCALS~1\Temp\ Still contains 4 infected items C:\DOCUME~1\Andrea\LOCALS~1\Temp\ Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 Beyond.class Trojan.ByteVerify File; Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\DOCUME~1\Andrea\LOCALS~1\Temp\jar_cache1265.tmp Infected C:\DOCUME~1\Andrea\LOCALS~1\Temp\jar_cache1265.tmp Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 VerifierBug.class Trojan.ByteVerify File; Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\DOCUME~1\Andrea\LOCALS~1\Temp\jar_cache1265.tmp Infected C:\DOCUME~1\Andrea\LOCALS~1\Temp\jar_cache1265.tmp Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 BlackBox.class Trojan.ByteVerify File; Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\DOCUME~1\Andrea\LOCALS~1\Temp\jar_cache1265.tmp Infected C:\DOCUME~1\Andrea\LOCALS~1\Temp\jar_cache1265.tmp Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 jar_cache1265.tmp Trojan.ByteVerify File Left alone YOUR-8GFY4RXDBE SYSTEM C:\DOCUME~1\Andrea\LOCALS~1\Temp\ Infected C:\DOCUME~1\Andrea\LOCALS~1\Temp\ Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 jar_cache1264.tmp Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\DOCUME~1\Andrea\LOCALS~1\Temp\ Still contains 4 infected items C:\DOCUME~1\Andrea\LOCALS~1\Temp\ Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 Beyond.class Trojan.ByteVerify File; Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\DOCUME~1\Andrea\LOCALS~1\Temp\jar_cache1264.tmp Infected C:\DOCUME~1\Andrea\LOCALS~1\Temp\jar_cache1264.tmp Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 VerifierBug.class Trojan.ByteVerify File; Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\DOCUME~1\Andrea\LOCALS~1\Temp\jar_cache1264.tmp Infected C:\DOCUME~1\Andrea\LOCALS~1\Temp\jar_cache1264.tmp Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 BlackBox.class Trojan.ByteVerify File; Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\DOCUME~1\Andrea\LOCALS~1\Temp\jar_cache1264.tmp Infected C:\DOCUME~1\Andrea\LOCALS~1\Temp\jar_cache1264.tmp Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 jar_cache1264.tmp Trojan.ByteVerify File Left alone YOUR-8GFY4RXDBE SYSTEM C:\DOCUME~1\Andrea\LOCALS~1\Temp\ Infected C:\DOCUME~1\Andrea\LOCALS~1\Temp\ Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 count.jar-6d412d27-75013408.zip Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\ Still contains 4 infected items C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\ Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 Beyond.class Trojan.ByteVerify File; Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\count.jar-6d412d27-75013408.zip Infected C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\count.jar-6d412d27-75013408.zip Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 VerifierBug.class Trojan.ByteVerify File; Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\count.jar-6d412d27-75013408.zip Infected C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\count.jar-6d412d27-75013408.zip Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 BlackBox.class Trojan.ByteVerify File; Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\count.jar-6d412d27-75013408.zip Infected C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\count.jar-6d412d27-75013408.zip Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 count.jar-6d412d27-75013408.zip Trojan.ByteVerify File Left alone YOUR-8GFY4RXDBE SYSTEM C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\ Infected C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\ Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 count.jar-6d412d27-1e0e2a22.zip Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\ Still contains 4 infected items C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\ Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 Beyond.class Trojan.ByteVerify File; Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\count.jar-6d412d27-1e0e2a22.zip Infected C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\count.jar-6d412d27-1e0e2a22.zip Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 VerifierBug.class Trojan.ByteVerify File; Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\count.jar-6d412d27-1e0e2a22.zip Infected C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\count.jar-6d412d27-1e0e2a22.zip Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 BlackBox.class Trojan.ByteVerify File; Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\count.jar-6d412d27-1e0e2a22.zip Infected C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\count.jar-6d412d27-1e0e2a22.zip Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 count.jar-6d412d27-1e0e2a22.zip Trojan.ByteVerify File Left alone YOUR-8GFY4RXDBE SYSTEM C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\ Infected C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\ Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 jar_cache1262.tmp Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\DOCUME~1\Andrea\LOCALS~1\Temp\ Still contains 4 infected items C:\DOCUME~1\Andrea\LOCALS~1\Temp\ Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 Beyond.class Trojan.ByteVerify File; Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\DOCUME~1\Andrea\LOCALS~1\Temp\jar_cache1262.tmp Infected C:\DOCUME~1\Andrea\LOCALS~1\Temp\jar_cache1262.tmp Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 VerifierBug.class Trojan.ByteVerify File; Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\DOCUME~1\Andrea\LOCALS~1\Temp\jar_cache1262.tmp Infected C:\DOCUME~1\Andrea\LOCALS~1\Temp\jar_cache1262.tmp Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 BlackBox.class Trojan.ByteVerify File; Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\DOCUME~1\Andrea\LOCALS~1\Temp\jar_cache1262.tmp Infected C:\DOCUME~1\Andrea\LOCALS~1\Temp\jar_cache1262.tmp Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 jar_cache1262.tmp Trojan.ByteVerify File Left alone YOUR-8GFY4RXDBE SYSTEM C:\DOCUME~1\Andrea\LOCALS~1\Temp\ Infected C:\DOCUME~1\Andrea\LOCALS~1\Temp\ Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 count.jar-6d412d27-78e48317.zip Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\ Still contains 4 infected items C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\ Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 Beyond.class Trojan.ByteVerify File; Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\count.jar-6d412d27-78e48317.zip Infected C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\count.jar-6d412d27-78e48317.zip Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 VerifierBug.class Trojan.ByteVerify File; Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\count.jar-6d412d27-78e48317.zip Infected C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\count.jar-6d412d27-78e48317.zip Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 BlackBox.class Trojan.ByteVerify File; Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\count.jar-6d412d27-78e48317.zip Infected C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\count.jar-6d412d27-78e48317.zip Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 count.jar-6d412d27-78e48317.zip Trojan.ByteVerify File Left alone YOUR-8GFY4RXDBE SYSTEM C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\ Infected C:\Documents and Settings\Andrea\.jpi_cache\jar\1.0\ Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 jar_cache1263.tmp Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\DOCUME~1\Andrea\LOCALS~1\Temp\ Still contains 4 infected items C:\DOCUME~1\Andrea\LOCALS~1\Temp\ Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 Beyond.class Trojan.ByteVerify File; Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\DOCUME~1\Andrea\LOCALS~1\Temp\jar_cache1263.tmp Infected C:\DOCUME~1\Andrea\LOCALS~1\Temp\jar_cache1263.tmp Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 VerifierBug.class Trojan.ByteVerify File; Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\DOCUME~1\Andrea\LOCALS~1\Temp\jar_cache1263.tmp Infected C:\DOCUME~1\Andrea\LOCALS~1\Temp\jar_cache1263.tmp Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 BlackBox.class Trojan.ByteVerify File; Compressed file Left alone YOUR-8GFY4RXDBE SYSTEM C:\DOCUME~1\Andrea\LOCALS~1\Temp\jar_cache1263.tmp Infected C:\DOCUME~1\Andrea\LOCALS~1\Temp\jar_cache1263.tmp Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 jar_cache1263.tmp Trojan.ByteVerify File Left alone YOUR-8GFY4RXDBE SYSTEM C:\DOCUME~1\Andrea\LOCALS~1\Temp\ Infected C:\DOCUME~1\Andrea\LOCALS~1\Temp\ Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 DC51.exe Trojan Horse File Left alone YOUR-8GFY4RXDBE SYSTEM C:\Recycler\S-1-5-21-3495054330-963918322-4271176276-1005\ Infected C:\Recycler\S-1-5-21-3495054330-963918322-4271176276-1005\ Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 A0707603.exe Trojan Horse File Left alone YOUR-8GFY4RXDBE SYSTEM C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1276\ Infected C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1276\ Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 update32.exe Trojan.Webus File Left alone YOUR-8GFY4RXDBE SYSTEM C:\DOCUMENTS AND SETTINGS\ALL USERS\DOCUMENTS\ Infected C:\DOCUMENTS AND SETTINGS\ALL USERS\DOCUMENTS\ Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 WLD4VOUPRKWL6NWIJQXIYYBDQTTEUKSK Adobe Photoshop 7 keygen.exe W32.SillyP2P File Left alone YOUR-8GFY4RXDBE SYSTEM C:\Program Files\Shareaza\Incomplete\ Infected C:\Program Files\Shareaza\Incomplete\ Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 setup32.exe W32.Dedler.Worm File Left alone YOUR-8GFY4RXDBE SYSTEM C:\DOCUMENTS AND SETTINGS\ALL USERS\DOCUMENTS\ Infected C:\DOCUMENTS AND SETTINGS\ALL USERS\DOCUMENTS\ Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 arun.exe Trojan Horse File Left alone YOUR-8GFY4RXDBE SYSTEM C:\DOCUMENTS AND SETTINGS\ALL USERS\DOCUMENTS\ Infected C:\DOCUMENTS AND SETTINGS\ALL USERS\DOCUMENTS\ Clean virus from file Leave alone (log only) Manual scan 13/02/2006 0:53 install.exe Backdoor.Trojan File Left alone YOUR-8GFY4RXDBE SYSTEM C:\Documents and Settings\All Users\Documents\ Infected C:\Documents and Settings\All Users\Documents\ Clean virus from file Leave alone (log only) Manual scan Here are the results of the Kaspersky Scan: ------------------------------------------------------------------------------- KASPERSKY ON-LINE SCANNER REPORT Wednesday, February 15, 2006 2:20:21 AM Operating System: Microsoft Windows XP Home Edition, Service Pack 1 (Build 2600) Kaspersky On-line Scanner version: 5.0.78.0 Kaspersky Anti-Virus database last update: 15/02/2006 Kaspersky Anti-Virus database records: 176840 ------------------------------------------------------------------------------- Scan Settings: Scan using the following antivirus database: extended Scan Archives: true Scan Mail Bases: true Scan Target - My Computer: A:\ C:\ D:\ E:\ Scan Statistics: Total number of scanned objects: 79677 Number of viruses found: 31 Number of infected objects: 82 Number of suspicious objects: 2 Duration of the scan process: 02:15:02 Infected Object Name / Virus Name / Last Action C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\032C0000.VBN/Setup.exe Infected: Email-Worm.Win32.VB.an skipped C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\032C0000.VBN ZIP: infected - 1 skipped C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\032C0000.VBN CryptZ: infected - 1 skipped C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\05440000.VBN Infected: Virus.Win32.Tenga.a skipped C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\05EC0000.VBN Infected: Trojan-Clicker.Win32.Delf.dm skipped C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\08F40000.VBN/Setup.exe Infected: Email-Worm.Win32.VB.an skipped C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\08F40000.VBN ZIP: infected - 1 skipped C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\08F40000.VBN CryptZ: infected - 1 skipped C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\0C3C0000.VBN/Setup.exe Infected: Email-Worm.Win32.VB.an skipped C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\0C3C0000.VBN ZIP: infected - 1 skipped C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\0C3C0000.VBN CryptZ: infected - 1 skipped C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\0C900000.VBN/Setup.exe Infected: Email-Worm.Win32.VB.an skipped C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\0C900000.VBN ZIP: infected - 1 skipped C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\0C900000.VBN CryptZ: infected - 1 skipped C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\0FF40000.VBN/Setup.exe Infected: Email-Worm.Win32.VB.an skipped C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\0FF40000.VBN ZIP: infected - 1 skipped C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\0FF40000.VBN CryptZ: infected - 1 skipped C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\0FF40002.VBN/Setup.exe Infected: Email-Worm.Win32.VB.an skipped C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\0FF40002.VBN ZIP: infected - 1 skipped C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\0FF40002.VBN CryptZ: infected - 1 skipped C:\Documents and Settings\Trevor\.jpi_cache\jar\1.0\arc.zip-53b4229a-13c20775.zip/web.exe/WISE0006.BIN Infected: Trojan.Win32.Revop.e skipped C:\Documents and Settings\Trevor\.jpi_cache\jar\1.0\arc.zip-53b4229a-13c20775.zip/web.exe Infected: Trojan.Win32.Revop.e skipped C:\Documents and Settings\Trevor\.jpi_cache\jar\1.0\arc.zip-53b4229a-13c20775.zip ZIP: infected - 2 skipped C:\Documents and Settings\Trevor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Personal Folders/Sent Items/16 Apr 2003 19:31 to 'ninestarsugar':RE: Your password.rtf Suspicious: Exploit.HTML.Iframe.FileDownload skipped C:\Documents and Settings\Trevor\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst Mail MS Mail: suspicious - 1 skipped C:\mc-110-12-0000228.exe/data0001 Infected: Trojan-Downloader.NSIS.Agent.p skipped C:\mc-110-12-0000228.exe NSIS: infected - 1 skipped C:\syslibie.dll Infected: Trojan-Clicker.Win32.Libie.g skipped C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1200\A0688190.EXE/data0012 Infected: not-a-virus:AdWare.Win32.DownloadWare.a skipped C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1200\A0688190.EXE NSIS: infected - 1 skipped C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1200\A0688191.EXE/stream/data0013 Infected: not-a-virus:AdWare.Win32.DownloadWare.a skipped C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1200\A0688191.EXE/stream Infected: not-a-virus:AdWare.Win32.DownloadWare.a skipped C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1200\A0688191.EXE NSIS: infected - 2 skipped C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1200\A0688227.DLL Infected: not-a-virus:AdWare.Win32.DownloadWare.a skipped C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1204\A0688374.DLL Infected: not-a-virus:AdWare.Win32.DownloadWare.a skipped C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1289\A0717120.exe Infected: not-a-virus:Client-IRC.Win32.mIRC.616 skipped C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1291\A0719203.exe Infected: Backdoor.Win32.Rbot.gen skipped C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1291\A0720507.exe Infected: Trojan-Downloader.Win32.VB.wg skipped C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1291\A0720526.dll Infected: not-a-virus:AdWare.Win32.Softomate.j skipped C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1292\A0721259.exe/data0010 Infected: Trojan-Dropper.Win32.Small.qn skipped C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1292\A0721259.exe NSIS: infected - 1 skipped C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1292\A0721260.EXE/unknown2.bin Infected: not-a-virus:AdWare.Win32.Ucmore.e skipped C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1292\A0721260.EXE/UCMTSAIE.DLL Infected: not-a-virus:AdWare.Win32.Ucmore.a skipped C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1292\A0721260.EXE/IUCMORE.DLL Infected: not-a-virus:AdWare.Win32.Ucmore skipped C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1292\A0721260.EXE ZIP: infected - 3 skipped C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1292\A0721260.EXE WiseSFX Dropper: infected - 3 skipped C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1292\A0721263.EXE Infected: not-a-virus:AdWare.Win32.Maxifiles.h skipped C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1292\A0721264.EXE Infected: not-a-virus:AdWare.Win32.Maxifiles.h skipped C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1292\A0721265.EXE Infected: Trojan-Dropper.Win32.Agent.aac skipped C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1292\A0721266.EXE Infected: Trojan-Dropper.Win32.Agent.aac skipped C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1292\A0721267.EXE Infected: Trojan-Dropper.Win32.Agent.aac skipped C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1292\A0721268.EXE Infected: Trojan-Dropper.Win32.Agent.aac skipped C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1292\A0721269.exe Infected: Trojan-Dropper.Win32.Small.qn skipped C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1292\A0721270.exe Infected: Trojan-Downloader.Win32.TSUpdate.p skipped C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1292\A0721271.exe Infected: Trojan-Downloader.Win32.TSUpdate.n skipped C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1292\A0721272.exe Infected: Trojan-Downloader.Win32.TSUpdate.l skipped C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1292\A0721273.EXE/data0001 Infected: Trojan-Downloader.NSIS.Agent.p skipped C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1292\A0721273.EXE NSIS: infected - 1 skipped C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1292\A0721306.EXE Infected: Trojan-Clicker.Win32.Libie.g skipped C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1292\A0721313.DLL Infected: not-a-virus:AdWare.Win32.Softomate.j skipped C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1292\A0721314.EXE Infected: Trojan-Downloader.Win32.Small.buy skipped C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1292\A0721315.EXE Infected: Trojan-Downloader.Win32.TSUpdate.o skipped C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1292\A0721354.exe Infected: not-a-virus:AdWare.Win32.CommAd.a skipped C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1292\A0721356.EXE/data0001 Infected: Trojan-Downloader.NSIS.Agent.p skipped C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1292\A0721356.EXE NSIS: infected - 1 skipped C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1295\A0721482.EXE/data0001 Infected: Trojan-Downloader.NSIS.Agent.p skipped C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1295\A0721482.EXE NSIS: infected - 1 skipped C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1295\A0721484.exe Infected: Trojan-Downloader.Win32.VB.vz skipped C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1295\A0721485.EXE/data0001 Infected: Trojan-Downloader.NSIS.Agent.p skipped C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1295\A0721485.EXE NSIS: infected - 1 skipped C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1295\A0721959.EXE/stream/data0007 Infected: not-a-virus:AdWare.Win32.Softomate.j skipped C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1295\A0721959.EXE/stream Infected: not-a-virus:AdWare.Win32.Softomate.j skipped C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1295\A0721959.EXE NSIS: infected - 2 skipped C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1295\A0722041.exe Infected: not-a-virus:Monitor.Win32.NetMon.a skipped C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1295\A0722365.exe Infected: Trojan-Downloader.Win32.VB.wr skipped C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1295\A0722366.exe Infected: Backdoor.Win32.SubSeven.pac skipped C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1295\A0722367.exe Infected: Backdoor.Win32.Rbot.gen skipped C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1295\A0722368.exe Infected: P2P-Worm.Win32.VB.dw skipped C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1295\A0722369.exe Infected: Trojan-Dropper.Win32.Agent.aie skipped C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1295\A0722370.ocx Infected: not-a-virus:AdWare.Win32.Coupons.b skipped C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1295\A0722547.EXE/data0001 Infected: Trojan-Downloader.NSIS.Agent.p skipped C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1295\A0722547.EXE NSIS: infected - 1 skipped C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1295\A0722731.EXE/data0001 Infected: Trojan-Downloader.NSIS.Agent.p skipped C:\System Volume Information\_restore{E1FE2446-40A9-418F-A903-50F76A762C8C}\RP1295\A0722731.EXE NSIS: infected - 1 skipped Scan process completed. Please let me know what's next. |
|
|
|
|
#6 (permalink) | |
|
Manager, Security Center, TSF Academy; Analyst, Security Team
Join Date: Jan 2005
Location: Transylvania County, North Carolina, USA
Posts: 35,580
OS: 2000 Pro; XP Pro; XP Home
|
Most of those finds are in TEMP, System Restore points, and Java's Cache. It's important to report any troubles you're having with the instructions, or if any folders/files resist our deletion efforts, as there are some items still present which should have been removed.. Were you able to clear Java's cache last time?
See this page for instructions on how to clear java's cache. Please empty your Outlook Express Sent Items Items folder, as Kaspersky has found suspicious mail there, in particular, this one: 16 Apr 2003 19:31 to 'ninestarsugar' The format in which your Norton log has been presented makes it very difficult to wade through, but I'll do my best. It also appears that your settings are not allowing Norton to clean what it finds. Quote:
This is an example of what P2P can bring you: 13/02/2006 0:53 WLD4VOUPRKWL6NWIJQXIYYBDQTTEUKSK Adobe Photoshop 7 keygen.exe W32.SillyP2P File Left alone YOUR-8GFY4RXDBE SYSTEM C:\Program Files\Shareaza\Incomplete\ Infected C:\Program Files\Shareaza\Incomplete\ Clean virus from file Leave alone (log only) Manual scan Get rid of Shareaza. Please use Symantec's guide to remove the Norton Quarantine files. Delete these files/folders if present: C:\mc-110-12-0000228.exe C:\syslibie.dll C:\Windows\offun.exe C:\Windows\spfjhyt.exe C:\Program Files\Common Files\VCClient C:\DOCUMENTS AND SETTINGS\ALL USERS\DOCUMENTS\setup32.exe C:\DOCUMENTS AND SETTINGS\ALL USERS\DOCUMENTS\arun.exe C:\Documents and Settings\All Users\Documents\install.exe C:\Documents and Settings\All Users\Documents\update32.exe If they resist deletion, boot to safe mode and delete them from there. Run CleanUp once again. Be sure to reboot when prompted. CLEAR & RESET SYSTEM RESTORE'S CACHE Go to Start >> Run - type control sysdm.cpl,,4 & press Enter * Tick on the checkbox - Turn off System Restore on all drives * Click Apply Turn it back 'On' by unticking the same checkbox & click Apply, and then OK Run a new scan with Panda, and also post a new HJT log. How is your system behaving?
__________________
Practice Safe Surfing Because what you don't know, CAN hurt you. Microsoft MVP - Consumer Security 2009
|
|
|
|
|
|
#7 (permalink) |
|
Registered User
Join Date: Feb 2006
Location: Canada
Posts: 5
OS: XP Home
|
Okay, here's the scoop. I am getting totally fed up with chasing my tail trying to get this system cleaned up and decided to attempt to format my hard drive in hopes of making it like it was when I brought it home from the store...no program but Windows XP...all clean and ready for installs. I re-installed Windows XP and in my ignorance thought that this would do it (WRONG). I installed XP from the CD like Windows said to do. Fresh install, not a clean up. It is supposed to wipe out the hard drive and start again. There were a ton of files from before. I changed my BIOS so that when the machine starts up, it checks the CD first. Now I can't format my C drive. If I do it Windows, it says we can't do this because I am trying to format a program that is open. (This made sense.) I want to try and catch my PC while it is booting up and be able to type " format c: " prior to it going into Windows but I'll be damned if I can. I've hit Del, page up, down, F8, F2, I am even willing to light a few candles and kill a chicken if required. Is there a way to wipe the hard drive clean so it will be as I said before...no programs but Windows XP Home Edition and ready for new installs?
Maybe this post needs to be moved. I am now praying to Bill Gates and repenting my sins of free music. |
|
|
|
|
#8 (permalink) |
|
Manager, Security Center, TSF Academy; Analyst, Security Team
Join Date: Jan 2005
Location: Transylvania County, North Carolina, USA
Posts: 35,580
OS: 2000 Pro; XP Pro; XP Home
|
We didn't seem that far away from a clean system. You gave up too soon, I think.
See if this page and this page helps you with your repair install. You may want to look here for a Clean Install tutorial. Booting from the CD is how to format and install Windows XP. No need to try old DOS commands. Otherwise, yes, please take it over to Windows XP forum now.
__________________
Practice Safe Surfing Because what you don't know, CAN hurt you. Microsoft MVP - Consumer Security 2009
Last edited by tetonbob; 02-16-2006 at 01:52 PM. |
|
|
|
|
#9 (permalink) |
|
Registered User
Join Date: Feb 2006
Location: Canada
Posts: 5
OS: XP Home
|
Thank you so much for your help.
We ended up caving and purchasing a new hard drive with MUCH more space than the old one and started fresh. Now we are having a serious monitor problem...but that's another story. Thanks again for all your help. |
|
|
| Thread Tools | |
|
|