• WELCOME
Welcome to the Myantispyware - free site offering help and assistance on spyware, malware and adware removal. As a guest you can only browse and view the various topics in the forums, but can not create a new topic and reply to an existing topic. If you are seeking help, you will need to be a logged into the forums with a registered account. Registering is free.
Click here to Create a free account and read How to use Spyware Removal Forum

What's afflictng my computer

This forum is for removing Malware, Spyware, Adware. Post your HijackThis, DDS, RSIT, Combofix logs here.

Moderator: Moderators

What's afflictng my computer

Postby bush8917 » Fri Mar 13, 2009 6:58 pm

Hi I recently removed the UAC.trojan from my computer. However I think after I cleaned my system some more malware may have gotten onto my machine. My internet will occasionally go to another spam site, but it is not very often it does so. Also have a short time of activity my internet will cease to send data and I'm forced to restart my computer to get my internet back and working. Often when I restart my computer my speakers play random country music although I have nothing open, and no country music on my computer. At startup I believe is the problem, because AVG shows several rootkits and trojans popping up but it says they cannot be found so I dont think I can delete them from there. Also there is a popup that says I need to fix the errors with pro antispyware 2009 or something like that, but I know that's just more junk. Hijack log is below.

Thanks for any help you can provide

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 2:42:23 PM, on 3/13/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16791)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
C:\WINDOWS\system32\afisicx.exe
C:\WINDOWS\System32\svchost.exe
C:\PROGRA~1\AVG\AVG8\avgtray.exe
C:\Program Files\Nero\Nero 7\InCD\NBHGui.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Nero\Nero 7\InCD\InCD.exe
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\AIM6\aim6.exe
C:\Program Files\Panasonic\PHOTOfunSTUDIO -viewer-\PhAutoRun.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\mabidwe.exe
C:\Program Files\OpenOffice.org 3\program\soffice.exe
C:\Program Files\OpenOffice.org 3\program\soffice.bin
C:\WINDOWS\system32\sopidkc.exe
C:\Program Files\Viewpoint\Common\ViewpointService.exe
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\PROGRA~1\AVG\AVG8\avgnsx.exe
C:\PROGRA~1\AVG\AVG8\avgemc.exe
C:\Program Files\AVG\AVG8\avgcsrvx.exe
C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ArcCon.ac
C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
C:\Program Files\AIM6\aolsoftware.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Java\jre1.6.0_07\bin\jucheck.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R3 - URLSearchHook: Reganam Toolbar - {db9d7a78-a76c-4bf2-97c6-258925ee1542} - C:\Program Files\Reganam\tbReg1.dll
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,C:\WINDOWS\system32\regwiz.exe,C:\WINDOWS\system32\idaw64.exe,C:\WINDOWS\system32\ndetect.exe,C:\WINDOWS\system32\windres.exe,C:\WINDOWS\system32\7z.exe,C:\WINDOWS\system32\7z.exe,C:\WINDOWS\system32\idaw64.exe,C:\WINDOWS\system32\deviceemulator.exe,C:\WINDOWS\system32\ndetect.exe,
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O3 - Toolbar: Reganam Toolbar - {db9d7a78-a76c-4bf2-97c6-258925ee1542} - C:\Program Files\Reganam\tbReg1.dll
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [SecurDisc] C:\Program Files\Nero\Nero 7\InCD\NBHGui.exe
O4 - HKLM\..\Run: [InCD] C:\Program Files\Nero\Nero 7\InCD\InCD.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [ArcSoft Connection Service] C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [services] C:\WINDOWS\services.exe
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Aim6] "C:\Program Files\AIM6\aim6.exe" /d locale=en-US ee://aol/imApp
O4 - HKCU\..\Run: [nidle] "C:\Documents and Settings\Owner\Application Data\nidle\nidle.exe" 61A847B5BBF728173599284503996897C881250221C8670836AC4FA7C8833201749139
O4 - HKCU\..\Run: [services] C:\WINDOWS\services.exe
O4 - HKLM\..\Policies\Explorer\Run: [services] C:\WINDOWS\services.exe
O4 - HKCU\..\Policies\Explorer\Run: [services] C:\WINDOWS\services.exe
O4 - HKUS\S-1-5-18\..\Run: [nidle] "C:\Documents and Settings\Owner\Application Data\nidle\nidle.exe" 61A847B5BBF728103B9D3B466188719AB689201522886B092CBD44BD8689220221DD3257 (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Run: [services] C:\WINDOWS\services.exe (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Policies\Explorer\Run: [services] C:\WINDOWS\services.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [nidle] "C:\Documents and Settings\Owner\Application Data\nidle\nidle.exe" 61A847B5BBF728103B9D3B466188719AB689201522886B092CBD44BD8689220221DD3257 (User 'Default user')
O4 - HKUS\.DEFAULT\..\Policies\Explorer\Run: [services] C:\WINDOWS\services.exe (User 'Default user')
O4 - Startup: OpenOffice.org 3.0.lnk = C:\Program Files\OpenOffice.org 3\program\quickstart.exe
O4 - Global Startup: PHOTOfunSTUDIO -viewer-.lnk = C:\Program Files\Panasonic\PHOTOfunSTUDIO -viewer-\PhAutoRun.exe
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/200 ... oader5.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windows ... 3732816062
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O20 - AppInit_DLLs: C:\WINDOWS\system32\jasosise.dll uzigqg.dll c:\windows\system32\nivunaso.dll
O20 - Winlogon Notify: avgrsstarter - C:\WINDOWS\SYSTEM32\avgrsstx.dll
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
O23 - Service: afisicx Service (afisicx) - Unknown owner - C:\WINDOWS\system32\afisicx.exe
O23 - Service: AVG Free8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgemc.exe
O23 - Service: AVG Free8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: mabidwe Service (mabidwe) - Unknown owner - C:\WINDOWS\system32\mabidwe.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: sopidkc Service (sopidkc) - Unknown owner - C:\WINDOWS\system32\sopidkc.exe
O23 - Service: Viewpoint Manager Service - Viewpoint Corporation - C:\Program Files\Viewpoint\Common\ViewpointService.exe

--
End of file - 8943 bytes
bush8917
 
Posts: 19
Joined: Tue Mar 10, 2009 4:41 am

Re: What's afflictng my computer

Postby patrik » Sat Mar 14, 2009 1:49 am

Hello.
Run HijackThis. Click "Do a system scan only" button.
Now select the following entries by placing a tick in the left hand check box, if still present:
Code: Select all
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,C:\WINDOWS\system32\regwiz.exe,C:\WINDOWS\system32\idaw64.exe,C:\WINDOWS\system32\ndetect.exe,C:\WINDOWS\system32\windres.exe,C:\WINDOWS\system32\7z.exe,C:\WINDOWS\system32\7z.exe,C:\WINDOWS\system32\idaw64.exe,C:\WINDOWS\system32\deviceemulator.exe,C:\WINDOWS\system32\ndetect.exe,
O4 - HKLM\..\Run: [services] C:\WINDOWS\services.exe
O4 - HKCU\..\Run: [nidle] "C:\Documents and Settings\Owner\Application Data\nidle\nidle.exe" 61A847B5BBF728173599284503996897C881250221C8670836AC4FA7C8833201749139
O4 - HKCU\..\Run: [services] C:\WINDOWS\services.exe
O4 - HKLM\..\Policies\Explorer\Run: [services] C:\WINDOWS\services.exe
O4 - HKCU\..\Policies\Explorer\Run: [services] C:\WINDOWS\services.exe
O4 - HKUS\S-1-5-18\..\Run: [nidle] "C:\Documents and Settings\Owner\Application Data\nidle\nidle.exe" 61A847B5BBF728103B9D3B466188719AB689201522886B092CBD44BD8689220221DD3257 (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Run: [services] C:\WINDOWS\services.exe (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Policies\Explorer\Run: [services] C:\WINDOWS\services.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [nidle] "C:\Documents and Settings\Owner\Application Data\nidle\nidle.exe" 61A847B5BBF728103B9D3B466188719AB689201522886B092CBD44BD8689220221DD3257 (User 'Default user')
O4 - HKUS\.DEFAULT\..\Policies\Explorer\Run: [services] C:\WINDOWS\services.exe (User 'Default user')
O20 - AppInit_DLLs: C:\WINDOWS\system32\jasosise.dll uzigqg.dll c:\windows\system32\nivunaso.dll
O23 - Service: afisicx Service (afisicx) - Unknown owner - C:\WINDOWS\system32\afisicx.exe
O23 - Service: mabidwe Service (mabidwe) - Unknown owner - C:\WINDOWS\system32\mabidwe.exe
O23 - Service: sopidkc Service (sopidkc) - Unknown owner - C:\WINDOWS\system32\sopidkc.exe

Once you have selected all entries, close all running programs then click once on the "fix checked" button.
Reboot your computer.

Download and install Malwarebytes Anti-malware (MBAM).
Run, perform Quick Scan.
The scan may take some time to finish,so please be patient.
When the scan is complete, click OK, then Show Results to view the results.
Make sure that everything is checked, and click Remove Selected.
When disinfection is completed, a log will open in Notepad (save the log to your desktop) and you may be prompted to Restart.

Download RSIT by random/random from here and save it to your desktop.
* Double click on RSIT.exe to run RSIT.
* Click Continue at the disclaimer screen.
* Once it has finished, two logs will open.



Post back with MBAM log + both RSIT logs. Post each log in separate post.
patrik
Site Admin
 
Posts: 8425
Joined: Sun Jan 08, 2006 1:11 pm

Re: What's afflictng my computer

Postby bush8917 » Sun Mar 15, 2009 6:52 am

well for some reason the RSIT wouldnt run, it had some error before it finished and i reported it but im not sure what happened.

here is the mbam log though

Malwarebytes' Anti-Malware 1.34
Database version: 1830
Windows 5.1.2600 Service Pack 3

3/15/2009 2:32:43 AM
mbam-log-2009-03-15 (02-32-34).txt

Scan type: Quick Scan
Objects scanned: 61871
Time elapsed: 8 minute(s), 38 second(s)

Memory Processes Infected: 4
Memory Modules Infected: 0
Registry Keys Infected: 12
Registry Values Infected: 2
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 26

Memory Processes Infected:
C:\WINDOWS\system32\reader_s.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\afisicx.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\mabidwe.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\sopidkc.exe (Backdoor.Bot) -> No action taken.

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\protect (Trojan.NtRootkit.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\protect (Trojan.NtRootkit.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\afisicx (Trojan.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\afisicx (Trojan.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\afisicx (Trojan.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\mabidwe (Trojan.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\mabidwe (Trojan.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\mabidwe (Trojan.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\restore (Rootkit.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sopidkc (Backdoor.Bot) -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\sopidkc (Backdoor.Bot) -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\sopidkc (Backdoor.Bot) -> No action taken.

Registry Values Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\reader_s (Trojan.FakeAlert.H) -> No action taken.
HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\reader_s (Trojan.Agent) -> No action taken.

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Files Infected:
C:\WINDOWS\system32\reader_s.exe (Trojan.FakeAlert.H) -> No action taken.
C:\WINDOWS\system32\drivers\protect.sys (Trojan.NtRootkit.Agent) -> No action taken.
C:\WINDOWS\services.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\pdbcopy.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\afisicx.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\mabidwe.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\comsa32.sys (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\undname.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\windres.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\4.tmp (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\5.tmp (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\6.tmp (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\7.tmp (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\8.tmp (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\9.tmp (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\A.tmp (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\B.tmp (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\C.tmp (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\D.tmp (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\E.tmp (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\F.tmp (Trojan.Agent) -> No action taken.
C:\Documents and Settings\Owner\reader_s.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\FInstall.sys (Backdoor.Bot) -> No action taken.
C:\WINDOWS\system32\sopidkc.exe (Backdoor.Bot) -> No action taken.
C:\WINDOWS\system32\tpszxyd.sys (Backdoor.Bot) -> No action taken.
C:\WINDOWS\services.ex_ (Heuristics.Reserved.Word.Exploit) -> No action taken.

RSIT wouldnt run because of some issue with nctedit.exe? idk what that is, but it tried to open the mbam log.
bush8917
 
Posts: 19
Joined: Tue Mar 10, 2009 4:41 am

Re: What's afflictng my computer

Postby patrik » Mon Mar 16, 2009 5:05 am

Run Malwarebytes Anti-malware (MBAM) again, perform Quick Scan.
When the scan is complete, click OK, then Show Results to view the results.
Make sure that everything is checked, and click Remove Selected.
When disinfection is completed, a log will open in Notepad.

Please scan your computer using Kaspersky Online Scanner. Save a scan report to your Desktop.

Make a fresh HijackThis log.

Post back with MBAM log + Kaspersky scan report + HijackThis log.
patrik
Site Admin
 
Posts: 8425
Joined: Sun Jan 08, 2006 1:11 pm

Re: What's afflictng my computer

Postby bush8917 » Mon Mar 16, 2009 8:49 pm

My computer is currently doing the kaspersky scan, didnt have time to upload that before i left for work so ill post it later.

Malwarebytes' Anti-Malware 1.34
Database version: 1830
Windows 5.1.2600 Service Pack 3

3/16/2009 4:27:31 PM
mbam-log-2009-03-16 (16-27-31).txt

Scan type: Quick Scan
Objects scanned: 62365
Time elapsed: 17 minute(s), 30 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 1
Registry Values Infected: 0
Registry Data Items Infected: 2
Folders Infected: 0
Files Infected: 13

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\restore (Rootkit.Agent) -> Quarantined and deleted successfully.

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Userinit (Worm.Mydoom) -> Data: c:\windows\system32\i386kd.exe -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Userinit (Worm.Mydoom) -> Data: system32\i386kd.exe -> Quarantined and deleted successfully.

Folders Infected:
(No malicious items detected)

Files Infected:
C:\WINDOWS\system32\i386kd.exe (Worm.Mydoom) -> Quarantined and deleted successfully.
C:\WINDOWS\services.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4.tmp (Trojan.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\5.tmp (Trojan.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\6.tmp (Trojan.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\7.tmp (Trojan.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\8.tmp (Trojan.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\9.tmp (Trojan.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\A.tmp (Trojan.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\B.tmp (Trojan.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\D.tmp (Trojan.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\E.tmp (Trojan.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\F.tmp (Trojan.Agent) -> Quarantined and deleted successfully.
bush8917
 
Posts: 19
Joined: Tue Mar 10, 2009 4:41 am

Re: What's afflictng my computer

Postby bush8917 » Mon Mar 16, 2009 8:50 pm

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 4:37:57 PM, on 3/16/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16791)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\afisicx.exe
C:\WINDOWS\System32\svchost.exe
C:\PROGRA~1\AVG\AVG8\avgtray.exe
C:\Program Files\Nero\Nero 7\InCD\NBHGui.exe
C:\Program Files\Nero\Nero 7\InCD\InCD.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe
C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\AIM6\aim6.exe
C:\Program Files\Panasonic\PHOTOfunSTUDIO -viewer-\PhAutoRun.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
C:\Program Files\OpenOffice.org 3\program\soffice.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\Program Files\OpenOffice.org 3\program\soffice.bin
C:\Program Files\Viewpoint\Common\ViewpointService.exe
C:\PROGRA~1\AVG\AVG8\avgemc.exe
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\PROGRA~1\AVG\AVG8\avgnsx.exe
C:\Program Files\AVG\AVG8\avgcsrvx.exe
C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
C:\Program Files\AIM6\aolsoftware.exe
C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ArcCon.ac
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\Program Files\Java\jre1.6.0_07\bin\jucheck.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R3 - URLSearchHook: Reganam Toolbar - {db9d7a78-a76c-4bf2-97c6-258925ee1542} - C:\Program Files\Reganam\tbReg1.dll
F2 - REG:system.ini: UserInit=C:\WINDOWS\SYSTEM32\Userinit.exe,C:\WINDOWS\system32\regwiz.exe,
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O3 - Toolbar: Reganam Toolbar - {db9d7a78-a76c-4bf2-97c6-258925ee1542} - C:\Program Files\Reganam\tbReg1.dll
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [SecurDisc] C:\Program Files\Nero\Nero 7\InCD\NBHGui.exe
O4 - HKLM\..\Run: [InCD] C:\Program Files\Nero\Nero 7\InCD\InCD.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [ArcSoft Connection Service] C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Aim6] "C:\Program Files\AIM6\aim6.exe" /d locale=en-US ee://aol/imApp
O4 - Startup: OpenOffice.org 3.0.lnk = C:\Program Files\OpenOffice.org 3\program\quickstart.exe
O4 - Global Startup: PHOTOfunSTUDIO -viewer-.lnk = C:\Program Files\Panasonic\PHOTOfunSTUDIO -viewer-\PhAutoRun.exe
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/200 ... oader5.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windows ... 3732816062
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O20 - Winlogon Notify: avgrsstarter - C:\WINDOWS\SYSTEM32\avgrsstx.dll
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
O23 - Service: afisicx Service (afisicx) - Unknown owner - C:\WINDOWS\system32\afisicx.exe
O23 - Service: AVG Free8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgemc.exe
O23 - Service: AVG Free8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: Viewpoint Manager Service - Viewpoint Corporation - C:\Program Files\Viewpoint\Common\ViewpointService.exe

--
End of file - 7233 bytes
bush8917
 
Posts: 19
Joined: Tue Mar 10, 2009 4:41 am

Re: What's afflictng my computer

Postby patrik » Tue Mar 17, 2009 4:01 am

My computer is currently doing the kaspersky scan, didnt have time to upload that before i left for work so ill post it later.

I will wait a Kaspersky report from you.
patrik
Site Admin
 
Posts: 8425
Joined: Sun Jan 08, 2006 1:11 pm

Re: What's afflictng my computer

Postby bush8917 » Wed Mar 18, 2009 6:06 pm

everytime my computer runs the kasperky scan it slows down and gets to the point where the internet wont work unless i restart my machine. the scan takes a while to run, im scanning critical areas should i be scanning something else instead? i get the scan report but it freezes up too much when i click save scan report, is there anything else i can do? ill try the scan again later.
bush8917
 
Posts: 19
Joined: Tue Mar 10, 2009 4:41 am

Re: What's afflictng my computer

Postby bush8917 » Thu Mar 19, 2009 4:22 am

nevermind i got the kaspersky scan to come up here it is
KASPERSKY ONLINE SCANNER 7 REPORT
Wednesday, March 18, 2009
Operating System: Microsoft Windows XP Home Edition Service Pack 3 (build 2600)
Kaspersky Online Scanner 7 version: 7.0.25.0
Program database last update: Wednesday, March 18, 2009 05:19:23
Records in database: 1924916
Scan settings
Scan using the following database extended
Scan archives yes
Scan mail databases yes
Scan area Critical Areas
C:\Documents and Settings\All Users\Start Menu\Programs\Startup
C:\Documents and Settings\Owner\Start Menu\Programs\Startup
C:\Program Files
C:\WINDOWS
Scan statistics
Files scanned 31786
Threat name 5
Infected objects 1091
Suspicious objects 0
Duration of the scan 01:54:54

File name Threat name Threats count
C:\WINDOWS\system32\USER32.dll/C:\WINDOWS\system32\USER32.dll Infected: Trojan.Win32.Patched.dr 2
C:\Program Files\3GP Player\ffplay.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\3GP Player\mplayer.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Adobe\Adobe Help Viewer\1.0\ahv.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\ArcSoft\Software Suite\MediaImpression\HeatUpdate.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\ArcSoft\Software Suite\MediaImpression\MediaImpression.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\ArcSoft\Software Suite\MediaImpression\Plugins\action\EasyEmail\Sendmail.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\ArcSoft\Software Suite\MediaImpression\Plugins\action\SlideShow\MediaImpression Slideshow.scr Infected: Virus.Win32.Virut.ce 1
C:\Program Files\ArcSoft\Software Suite\MediaImpression\SlideShowPlayer.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\ArcSoft\Software Suite\Panorama Maker 4\PMK.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Armada Online Alpha\ArmadaAlpha\A.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Armada Online Alpha\ArmadaAlpha\ArmadaOnline.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Armada Online Alpha\ArmadaAlpha\ArmadaOnlineUpdater.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Armada Online Alpha\ArmadaAlpha\AutoUpdater.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Common Files\InstallShield\Driver\7\Intel 32\IDriver.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Common Files\InstallShield\Professional\RunTime\11\00\Intel32\DotNetInstaller.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Common Files\Java\Update\Base Images\jre1.6.0.b105\patch-jre1.6.0_07.b06\launcher.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Common Files\Java\Update\Base Images\jre1.6.0.b105\patch-jre1.6.0_07.b06\zipper.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Common Files\LightScribe\LSLauncher.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Common Files\LightScribe\LSPrintDialog.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Common Files\LightScribe\LSPrintingDialog.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Common Files\Microsoft Shared\MSInfo\msinfo32.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Common Files\Microsoft Shared\Speech\sapisvr.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\D-Link\530TX+\DeviceInst.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\DivX\DivX Codec\config.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\DivX\DivX Converter\Converter.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\DivX\DivX Player\DivX Player.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Internet Explorer\Connection Wizard\icwconn1.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Internet Explorer\Connection Wizard\icwconn2.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Internet Explorer\Connection Wizard\icwrmind.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Internet Explorer\Connection Wizard\icwtutor.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Internet Explorer\Connection Wizard\inetwiz.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Internet Explorer\Connection Wizard\isignup.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Internet Explorer\iedw.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Java\jre1.6.0_07\bin\java-rmi.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Java\jre1.6.0_07\bin\java.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Java\jre1.6.0_07\bin\javacpl.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Java\jre1.6.0_07\bin\javaw.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Java\jre1.6.0_07\bin\javaws.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Java\jre1.6.0_07\bin\keytool.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Java\jre1.6.0_07\bin\kinit.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Java\jre1.6.0_07\bin\klist.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Java\jre1.6.0_07\bin\ktab.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Java\jre1.6.0_07\bin\orbd.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Java\jre1.6.0_07\bin\pack200.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Java\jre1.6.0_07\bin\policytool.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Java\jre1.6.0_07\bin\rmid.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Java\jre1.6.0_07\bin\rmiregistry.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Java\jre1.6.0_07\bin\servertool.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Java\jre1.6.0_07\bin\ssvagent.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Java\jre1.6.0_07\bin\tnameserv.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Java\jre1.6.0_07\bin\unpack200.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Ken Ward's Zipper\zip4.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Messenger\msmsgs.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Movie Maker\moviemk.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\NetMeeting\cb32.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\NetMeeting\conf.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\NetMeeting\wb32.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\OpenOffice.org 3\Basis\program\gengal.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\OpenOffice.org 3\Basis\program\msfontextract.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\OpenOffice.org 3\Basis\program\nsplugin.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\OpenOffice.org 3\Basis\program\odbcconfig.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\OpenOffice.org 3\Basis\program\python-core-2.3.4\bin\python.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\OpenOffice.org 3\Basis\program\python-core-2.3.4\lib\distutils\command\wininst.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\OpenOffice.org 3\Basis\program\senddoc.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\OpenOffice.org 3\Basis\program\setofficelang.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\OpenOffice.org 3\Basis\program\stclient_wrapper.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\OpenOffice.org 3\Basis\program\testtool.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\OpenOffice.org 3\program\crashrep.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\OpenOffice.org 3\program\python.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\OpenOffice.org 3\program\quickstart.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\OpenOffice.org 3\program\sbase.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\OpenOffice.org 3\program\scalc.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\OpenOffice.org 3\program\sdraw.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\OpenOffice.org 3\program\simpress.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\OpenOffice.org 3\program\smath.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\OpenOffice.org 3\program\soffice.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\OpenOffice.org 3\program\sweb.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\OpenOffice.org 3\program\swriter.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\OpenOffice.org 3\program\unoinfo.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\OpenOffice.org 3\program\unopkg.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\OpenOffice.org 3\URE\bin\regcomp.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\OpenOffice.org 3\URE\bin\regmerge.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\OpenOffice.org 3\URE\bin\regview.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\OpenOffice.org 3\URE\bin\uno.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Outlook Express\msimn.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Outlook Express\oemig50.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Outlook Express\setup50.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Outlook Express\wab.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Outlook Express\wabmig.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Panasonic\PHOTOfunSTUDIO -viewer-\ConvDatabase.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Panasonic\PHOTOfunSTUDIO -viewer-\DPOFRenewalSlide.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Panasonic\PHOTOfunSTUDIO -viewer-\PhAutoRun.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\QuickTime\PictureViewer.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\QuickTime\QTInfo.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\QuickTime\QTSystem\ExportController.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\QuickTime\QTSystem\QuickTimeUpdateHelper.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\QuickTime\QTTask.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Reganam\UNWISE.EXE Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Spybot - Search & Destroy\SDFiles.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Spybot - Search & Destroy\SDShred.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Starcraft\bnupdate.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Starcraft\StarCraft.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Starcraft\StarEdit.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Trend Micro\HijackThis\Owner.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Viewpoint\Viewpoint Media Player\MtsAxInstaller.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Windows Media Connect 2\wmccds.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Windows Media Connect 2\WMCCFG.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Windows Media Player\dlimport.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Windows Media Player\migrate.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Windows Media Player\setup_wm.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Windows Media Player\wmdbexport.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Windows Media Player\wmlaunch.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Windows Media Player\wmpenc.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Windows Media Player\wmplayer.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Windows Media Player\wmpnetwk.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Windows Media Player\wmpnscfg.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Windows Media Player\wmpshare.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Windows Media Player\wmsetsdk.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Windows NT\Accessories\wordpad.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Windows NT\dialer.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Windows NT\hypertrm.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\Windows NT\Pinball\pinball.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\WinRAR\Rar.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\WinRAR\RarExtLoader.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\WinRAR\Uninstall.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\WinRAR\UnRAR.exe Infected: Virus.Win32.Virut.ce 1
C:\Program Files\WinRAR\WinRAR.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$hf_mig$\KB951978\SP3QFE\cscript.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$hf_mig$\KB951978\SP3QFE\wscript.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$hf_mig$\KB955839\SP3QFE\tzchange.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$hf_mig$\KB956390-IE7\SP2QFE\ie4uinit.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$hf_mig$\KB956390-IE7\SP2QFE\ieudinit.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$hf_mig$\KB958215-IE7\SP2QFE\ie4uinit.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$hf_mig$\KB958215-IE7\SP2QFE\ieudinit.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$hf_mig$\KB961260-IE7\SP2QFE\ie4uinit.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$hf_mig$\KB961260-IE7\SP2QFE\ieudinit.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\accwiz.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\actmovie.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\agentsvr.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\ahui.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\alg.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\at.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\atmadm.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\attrib.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\auditusr.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\blastcln.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\cacls.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\cisvc.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\cleanmgr.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\cliconfg.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\clipbrd.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\clipsrv.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\cmd.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\cmdl32.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\cmmon32.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\cmstp.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\comrepl.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\comrereg.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\conf.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\conime.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\cscript.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\ctfmon.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\dcomcnfg.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\ddeshare.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\defrag.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\dfrgfat.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\dfrgntfs.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\dialer.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\diantz.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\diskpart.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\dllhost.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\dmadmin.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\dmremote.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\dplaysvr.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\dpnsvr.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\dpvsetup.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\dumprep.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\dvdupgrd.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\dwwin.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\dxdiag.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\eudcedit.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\evntcmd.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\evntwin.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\explorer.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\extrac32.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\findstr.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\fltmc.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\fontview.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\forcedos.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\fsquirt.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\ftp.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\fxsclnt.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\fxscover.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\fxssvc.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\grpconv.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\help.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\helpctr.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\helpsvc.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\hh.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\hscupd.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\icwconn1.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\icwconn2.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\icwrmind.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\ie4uinit.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\iedw.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\iexplore.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\iexpress.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\imapi.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\inetwiz.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\ipconfig.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\ipv6.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\ipxroute.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\locator.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\logagent.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\logman.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\logon.scr Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\logonui.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\lsass.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\magnify.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\makecab.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\migload.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\migrate.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\migregdb.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\migwiz.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\mmc.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\mnmsrvc.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\mobsync.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\mofcomp.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\moviemk.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\mplay32.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\msconfig.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\msdtc.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\mshta.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\msiexec.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\msimn.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\msiregmv.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\msmsgs.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\msoobe.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\mspaint.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\mstinit.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\mstsc.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\mtstocom.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\narrator.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\nddeapir.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\net.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\net1.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\netdde.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\netsetup.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\netsh.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\netstat.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\notepad.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\nppagent.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\nslookup.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\ntvdm.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\odbcad32.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\odbcconf.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\oemig50.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\oobebaln.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\osk.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\packager.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\perfmon.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\pinball.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\ping.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\pintlphr.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\powercfg.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\progman.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\proquota.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\proxycfg.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\qprocess.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\rasphone.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\rcimlby.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\rcp.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\rdpclip.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\rdsaddin.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\rdshost.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\reg.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\regedit.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\regsvr32.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\rexec.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\rsh.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\rstrui.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\rtcshare.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\rundll32.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\runonce.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\savedump.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\scardsvr.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\scrcons.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\scrnsave.scr Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\sdbinst.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\services.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\sessmgr.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\sethc.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\setup.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\setup50.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\setup_wm.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\shmgrate.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\shrpubw.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\shutdown.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\sigverif.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\skeys.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\smbinst.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\smi2smir.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\smlogsvc.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\sndrec32.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\snmp.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\snmptrap.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\sort.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\spider.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\spnpinst.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\spoolsv.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\ss3dfo.scr Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\ssbezier.scr Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\ssflwbox.scr Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\ssmarque.scr Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\ssmypics.scr Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\ssmyst.scr Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\sspipes.scr Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\ssstars.scr Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\sstext3d.scr Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\stimon.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\svchost.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\sysocmgr.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\taskmgr.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\telnet.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\tourstart.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\tourstrt.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\tracert.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\unregmp2.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\uploadm.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\upnpcont.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\ups.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\userinit.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\utilman.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\vssvc.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\wab.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\wabmig.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\wbemtest.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\wextract.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\wiaacmgr.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\winhlp32.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\winlogon.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\winver.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\wmiadap.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\wmiapsrv.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\wmiprvse.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\wmplayer.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\wordpad.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\wpabaln.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\wpnpinst.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\wscntfy.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\wscript.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\wuauclt1.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtServicePackUninstall$\xcopy.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtUninstallKB939683$\unregmp2.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtUninstallKB951978$\cscript.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtUninstallKB951978$\wscript.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtUninstallKB952069_WM9$\logagent.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtUninstallKB955839$\tzchange.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtUninstallWMFDist11$\logagent.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtUninstallWMFDist11$\uwdf.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtUninstallWMFDist11$\wdfmgr.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtUninstallWMFDist11$\wmsetsdk.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtUninstallwmp11$\setup_wm.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtUninstallwmp11$\unregmp2.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\$NtUninstallwmp11$\wmplayer.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\explorer.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\hh.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ie7\ie4uinit.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ie7\iedw.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ie7\iexplore.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ie7\mshta.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ie7\spuninst\ieResetIcons.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ie7updates\KB956390-IE7\ie4uinit.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ie7updates\KB956390-IE7\ieudinit.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ie7updates\KB956390-IE7\iexplore.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ie7updates\KB958215-IE7\ie4uinit.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ie7updates\KB958215-IE7\ieudinit.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ie7updates\KB961260-IE7\ie4uinit.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ie7updates\KB961260-IE7\ieudinit.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\inf\unregmp2.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\Installer\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}\icon.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\Installer\{CC4A73BF-938E-4C19-A553-853C035C9BA1}\NewShortcut1_C673DF680CDE41FC9DFBF63D31DE4F28.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\Installer\{CC4A73BF-938E-4C19-A553-853C035C9BA1}\NewShortcut1_FE82206EF6124B479F4EDD27A1E056A4.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\Installer\{CC4A73BF-938E-4C19-A553-853C035C9BA1}\NewShortcut2_C673DF680CDE41FC9DFBF63D31DE4F28.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\Installer\{CD95F661-A5C4-44F5-A6AA-ECDD91C240B7}\IconCD95F66110.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\Installer\{F44DA61E-720D-4E79-871F-F6E628B33242}\soffice.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\msagent\agentsvr.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\network diagnostic\xpnetdiag.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\notepad.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\pchealth\helpctr\binaries\helpctr.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\pchealth\helpctr\binaries\HelpHost.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\pchealth\helpctr\binaries\helpsvc.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\pchealth\helpctr\binaries\hscupd.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\pchealth\helpctr\binaries\msconfig.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\pchealth\helpctr\binaries\notiflag.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\pchealth\UploadLB\Binaries\uploadm.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\regedit.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\RegisteredPackages\{981FB688-E76B-4246-987B-92083185B90A}\uwdf.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\RegisteredPackages\{981FB688-E76B-4246-987B-92083185B90A}\wdfmgr.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\RegisteredPackages\{AAC1D942-0B38-4E37-9E4E-5B96A9DD2170}\logagent.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\RegisteredPackages\{AAC1D942-0B38-4E37-9E4E-5B96A9DD2170}$BACKUP$\System\logagent.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ScUnin.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\accwiz.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\actmovie.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\agentsvr.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\ahui.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\alg.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\at.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\atmadm.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\attrib.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\auditusr.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\blastcln.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\cacls.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\cisvc.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\cleanmgr.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\cliconfg.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\clipbrd.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\clipsrv.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\cmd.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\cmdl32.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\cmmon32.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\cmstp.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\comrepl.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\comrereg.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\conf.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\conime.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\cscript.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\ctfmon.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\dcomcnfg.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\ddeshare.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\defrag.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\dfrgfat.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\dfrgntfs.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\dialer.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\diantz.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\diskpart.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\dllhost.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\dmadmin.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\dmremote.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\dplaysvr.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\dpnsvr.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\dpvsetup.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\dumprep.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\dvdupgrd.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\dwwin.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\dxdiag.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\eudcedit.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\evntcmd.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\evntwin.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\explorer.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\extrac32.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\faxpatch.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\findstr.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\fltmc.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\fontview.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\forcedos.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\fsquirt.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\ftp.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\fxsclnt.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\fxscover.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\fxssvc.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\grpconv.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\help.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\helpctr.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\helpsvc.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\hh.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\hscupd.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\icwconn1.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\icwconn2.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\icwrmind.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\ie4uinit.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\iedw.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\iexplore.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\iexpress.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\imapi.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\inetwiz.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\ipconfig.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\ipv6.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\ipxroute.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\irftp.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\lang\cintsetp.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\lang\imscinst.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\lang\pintlphr.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\lang\tintlphr.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\lang\tintsetp.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\lhmstsc.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\locator.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\logman.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\logon.scr Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\logonui.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\lsass.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\magnify.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\makecab.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\migload.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\migregdb.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\migwiz.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\migwiza.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\mmc.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\mmcperf.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\mnmsrvc.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\mobsync.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\mofcomp.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\moviemk.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\mplay32.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\msconfig.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\msdtc.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\mshta.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\msiexec.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\msimn.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\msiregmv.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\msmsgs.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\msoobe.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\mspaint.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\mstinit.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\mtstocom.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\muisetup.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\napstat.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\narrator.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\nddeapir.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\net.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\net1.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\netdde.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\netsetup.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\netsh.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\netstat.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\notepad.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\nppagent.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\nslookup.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\ntvdm.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\odbcad32.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\odbcconf.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\oemig50.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\oobebaln.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\osk.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\packager.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\perfmon.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\pinball.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\ping.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\powercfg.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\progman.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\proquota.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\proxycfg.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\qprocess.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\rasphone.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\rcimlby.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\rcp.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\rdpclip.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\rdsaddin.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\rdshost.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\reg.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\regedit.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\regsvr32.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\rexec.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\rsh.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\rstrui.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\rtcshare.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\rundll32.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\runonce.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\savedump.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\scardsvr.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\scrcons.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\scrnsave.scr Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\sdbinst.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\services.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\sessmgr.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\sethc.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\setup.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\setup50.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\setupn.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\shmgrate.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\shrpubw.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\shutdown.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\sigverif.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\skeys.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\smbinst.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\smi2smir.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\smlogsvc.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\sndrec32.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\snmp.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\snmptrap.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\sort.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\spdwnwxp.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\spider.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\spnpinst.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\spoolsv.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\spupdwxp.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\ss3dfo.scr Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\ssbezier.scr Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\ssflwbox.scr Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\ssmarque.scr Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\ssmypics.scr Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\ssmyst.scr Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\sspipes.scr Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\ssstars.scr Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\sstext3d.scr Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\stimon.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\svchost.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\sysocmgr.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\taskmgr.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\telnet.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\tourstrt.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\tp4mon.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\tracert.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\tzchange.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\uploadm.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\upnpcont.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\ups.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\userinit.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\utilman.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\verclsid.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\vssvc.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\wab.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\wabmig.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\wbemtest.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\wextract.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\wiaacmgr.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\winhlp32.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\winlogon.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\winver.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\wmiadap.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\wmiapsrv.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\wmiprvse.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\wordpad.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\wpabaln.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\wpnpinst.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\wscntfy.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\wscript.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\wuauclt.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\wuauclt1.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\xcopy.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\i386\xpnetdg.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\ServicePackFiles\ServicePackCache\i386\msmsgs.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\SoftwareDistribution\Download\5d9d48823dca01f9929a959c29f5edc4\SP2GDR\ie4uinit.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\SoftwareDistribution\Download\5d9d48823dca01f9929a959c29f5edc4\SP2GDR\ieudinit.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\SoftwareDistribution\Download\5d9d48823dca01f9929a959c29f5edc4\SP2QFE\ie4uinit.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\SoftwareDistribution\Download\5d9d48823dca01f9929a959c29f5edc4\SP2QFE\ieudinit.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\SoftwareDistribution\Download\c74979a750f473b6d9d8ef0bba9b356c\SP2GDR\ie4uinit.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\SoftwareDistribution\Download\c74979a750f473b6d9d8ef0bba9b356c\SP2GDR\ieudinit.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\SoftwareDistribution\Download\c74979a750f473b6d9d8ef0bba9b356c\SP2QFE\ie4uinit.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\SoftwareDistribution\Download\c74979a750f473b6d9d8ef0bba9b356c\SP2QFE\ieudinit.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\6.tmp Infected: Packed.Win32.Krap.i 1
C:\WINDOWS\system32\9.tmp Infected: Trojan.Win32.Pakes.nhm 1
C:\WINDOWS\system32\accwiz.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\actmovie.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\afisicx.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\ahui.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\alg.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\arp.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\at.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\atmadm.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\attrib.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\auditusr.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\blastcln.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\bootok.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\bootvrfy.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\cacls.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\calc.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\charmap.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\chkdsk.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\chkntfs.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\cidaemon.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\cisvc.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\ckcnv.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\cleanmgr.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\cliconfg.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\clipbrd.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\clipsrv.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\cmd.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\cmdl32.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\cmmon32.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\cmstp.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\Com\comrepl.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\Com\comrereg.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\comp.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\compact.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\conime.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\control.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\convert.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\cscript.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\ctfmon.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dcomcnfg.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\ddeshare.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\defrag.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dfrgfat.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dfrgntfs.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\diantz.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\diskpart.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\diskperf.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\DivXsm.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\arp.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\bootok.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\bootvrfy.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\calc.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\cb32.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\change.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\charmap.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\chglogon.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\chgport.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\chgusr.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\chkdsk.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\chkntfs.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\cidaemon.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\cintsetp.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\ckcnv.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\comp.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\compact.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\control.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\convert.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\cprofile.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\cscript.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\diskperf.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\dlimport.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\dllhst3g.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\doskey.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\drwtsn32.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\esentutl.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\eventvwr.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\EXCH_regtrace.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\expand.exe Infected: Virus.Win32.Virut.ce 1
bush8917
 
Posts: 19
Joined: Tue Mar 10, 2009 4:41 am

Re: What's afflictng my computer

Postby bush8917 » Thu Mar 19, 2009 4:23 am

C:\WINDOWS\system32\dllcache\fc.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\find.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\finger.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\fixmapi.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\flattemp.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\freecell.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\fsutil.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\fxssend.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\helphost.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\hostname.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\icwtutor.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\ie4uinit.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\iedw.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\ieudinit.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\imekrmig.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\imkrinst.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\imscinst.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\ipsec6.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\isignup.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\label.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\lights.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\lnkstub.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\lodctr.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\logagent.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\logoff.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\lpq.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\lpr.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\migisol.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\migrate.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\migwiz_a.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\mountvol.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\mplay32.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\mpnotify.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\mrinfo.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\msg.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\mshearts.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\mshta.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\msinfo32.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\msswchx.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\mstsc.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\nbtstat.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\notiflag.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\ntsd.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\osuninst.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\pathping.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\pentnt.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\ping6.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\pintlphr.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\print.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\qappsrv.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\query.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\quser.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\qwinsta.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\rasautou.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\rasdial.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\recover.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\regedt32.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\regini.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\register.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\regwiz.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\replace.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\reset.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\route.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\routemon.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\rsm.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\rsmsink.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\rsmui.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\rsvp.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\runas.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\rwinsta.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\sapisvr.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\sc.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\setup_wm.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\sfc.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\shadow.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\sndvol32.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\sol.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\srdiag.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\subst.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\syncapp.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\syskey.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\systray.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\taskman.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\tcmsetup.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\tcpsvcs.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\tftp.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\tintlphr.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\tintsetp.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\tracert6.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\tscon.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\tscupgrd.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\tsdiscon.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\tskill.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\tsprof.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\tsshutdn.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\twunk_32.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\unlodctr.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\unregmp2.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\unsecapp.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\verifier.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\vssadmin.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\w32tm.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\wb32.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\winhstb.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\winmgmt.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\winmine.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\winmsd.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\wmplayer.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\write.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\wscript.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllcache\wupdmgr.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllhost.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dllhst3g.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dmadmin.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dmremote.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\doskey.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dplaysvr.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dpnsvr.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dpvsetup.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\drmupgds.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\drwtsn32.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dumprep.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dvdplay.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dvdupgrd.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dwwin.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\dxdiag.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\esentutl.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\eudcedit.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\eventvwr.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\expand.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\extrac32.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\faxpatch.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\fc.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\find.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\findstr.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\finger.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\fixmapi.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\fltmc.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\fontview.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\forcedos.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\freecell.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\fsquirt.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\fsutil.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\ftp.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\grpconv.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\help.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\hostname.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\ie4uinit.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\ieudinit.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\iexpress.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\imapi.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\inf\xccdfb16_090310.dll Infected: Trojan-Spy.Win32.Pophot.hej 1
C:\WINDOWS\system32\ipconfig.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\ipsec6.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\ipv6.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\ipxroute.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\java.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\javaw.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\javaws.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\label.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\lights.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\lnkstub.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\locator.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\lodctr.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\logagent.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\logman.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\logoff.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\logon.scr Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\logonui.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\lpq.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\lpr.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\mabidwe.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\Macromed\Flash\genuinst.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\magnify.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\makecab.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\MediaImpression Slideshow.scr Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\migpwd.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\mmc.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\mmcperf.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\mnmsrvc.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\mobsync.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\mountvol.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\mplay32.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\mpnotify.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\mrinfo.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\msdtc.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\msfeedssync.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\msg.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\mshearts.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\mshta.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\msiexec.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\mspaint.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\msswchx.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\mstinit.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\mstsc.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\mtrstart.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\napstat.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\narrator.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\nbtstat.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\nctedit.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\nddeapir.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\net.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\net1.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\netdde.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\netsetup.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\netsh.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\netstat.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\notepad.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\npp\nppagent.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\nslookup.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\ntsd.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\ntvdm.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\odbcad32.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\odbcconf.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\oobe\msoobe.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\oobe\oobebaln.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\osk.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\osuninst.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\packager.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\pathping.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\pentnt.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\perfmon.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\ping.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\ping6.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\powercfg.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\print.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\progman.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\proquota.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\proxycfg.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\qappsrv.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\qprocess.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\qwinsta.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\rasautou.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\rasdial.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\rasphone.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\rcimlby.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\rcp.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\rdpclip.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\rdsaddin.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\rdshost.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\recover.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\reg.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\regedt32.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\regini.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\regsvr32.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\replace.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\reset.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\Restore\rstrui.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\Restore\srdiag.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\rexec.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\route.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\routemon.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\rsh.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\rsm.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\rsmsink.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\rsmui.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\rsvp.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\rtcshare.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\runas.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\rundll32.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\runonce.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\rwinsta.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\savedump.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\sc.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\scardsvr.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\scrnsave.scr Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\sdbinst.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\sessmgr.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\sethc.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\setup.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\setupn.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\sfc.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\shadow.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\shmgrate.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\shrpubw.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\shutdown.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\sigverif.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\skeys.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\smbinst.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\smlogsvc.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\sndrec32.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\sndvol32.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\sol.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\sort.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\spdwnwxp.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\spider.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\spnpinst.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\spoolsv.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\spupdwxp.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\ss3dfo.scr Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\ssbezier.scr Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\ssflwbox.scr Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\ssmarque.scr Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\ssmypics.scr Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\ssmyst.scr Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\sspipes.scr Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\ssstars.scr Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\sstext3d.scr Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\stimon.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\subst.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\syncapp.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\syskey.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\sysocmgr.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\systray.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\taskman.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\taskmgr.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\tcmsetup.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\tcpd.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\tcpsvcs.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\telnet.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\tftp.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\tmpxccacj0.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\tourstart.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\tracert.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\tracert6.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\tscon.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\tscupgrd.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\tsdiscon.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\tskill.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\tsshutdn.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\tzchange.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\unknown\unzip.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\unknown\zip.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\unlodctr.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\upnpcont.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\ups.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\userinit.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\usmt\migload.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\usmt\migwiz.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\usmt\migwiza.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\usmt\migwiz_a.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\utilman.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\uwdf.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\verclsid.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\verifier.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\vssadmin.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\vssvc.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\w32tm.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\wbem\mofcomp.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\wbem\scrcons.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\wbem\unsecapp.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\wbem\wbemtest.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\wbem\winmgmt.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\wbem\wmiadap.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\wbem\wmiapsrv.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\wbem\wmiprvse.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\wdfmgr.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\wextract.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\wiaacmgr.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\WinFXDocObj.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\winhlp32.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\winmine.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\winmsd.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\winver.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\wpabaln.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\wpdshextautoplay.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\wpnpinst.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\write.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\wscntfy.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\wscript.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\wuauclt1.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\WudfHost.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\wupdmgr.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\xcopy.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\system32\zh3\GT22B4E.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\TASKMAN.EXE Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\twunk_32.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\winhlp32.exe Infected: Virus.Win32.Virut.ce 1
C:\WINDOWS\xccdf16_090310a.dll Infected: Trojan-Spy.Win32.Pophot.hej 1
The selected area was scanned.
bush8917
 
Posts: 19
Joined: Tue Mar 10, 2009 4:41 am

Re: What's afflictng my computer

Postby patrik » Thu Mar 19, 2009 12:59 pm

Bad news, your computer infected with virut virus.

Download AVPTool from here.
Double click to the file for install.
AVPTool window opens.
Select My computer.
Click Scan.
Follow the prompts (Click Disinfect if need, don`t click Delete).
When finished, click Reports , Save to file and save a report to your Desktop.

Report file is big, also please zip it and attach into your reply.
patrik
Site Admin
 
Posts: 8425
Joined: Sun Jan 08, 2006 1:11 pm

Re: What's afflictng my computer

Postby bush8917 » Fri Mar 20, 2009 12:34 pm

I downloaded the Kaspersky remover, but it only made a folder of files. Are those what I'm supposed to use? Or is it supposed to actually install a program?
bush8917
 
Posts: 19
Joined: Tue Mar 10, 2009 4:41 am

Re: What's afflictng my computer

Postby patrik » Fri Mar 20, 2009 12:54 pm

You have clicked at installation file (setup_7.0.0.290_20.03.2009_13-44.exe) and result, only a folder of files ?
AVPTool window is not open ?
patrik
Site Admin
 
Posts: 8425
Joined: Sun Jan 08, 2006 1:11 pm

Re: What's afflictng my computer

Postby bush8917 » Fri Mar 20, 2009 12:58 pm

No I had folder called "Virus Tool Remover" i think, and it had a startup .exe which wouldnt go an unistall file and a couple of ms-dos batch files. I figured that wasnt supposed to happen. Maybe I'll retry downloading the install file and running it later.
bush8917
 
Posts: 19
Joined: Tue Mar 10, 2009 4:41 am

Re: What's afflictng my computer

Postby patrik » Fri Mar 20, 2009 1:06 pm

Click to the direct link for downloading AVPTool.
patrik
Site Admin
 
Posts: 8425
Joined: Sun Jan 08, 2006 1:11 pm

Next

Return to Spyware Removal

Who is online

Users browsing this forum: metalhorse and 1 guest