LW9090 Posted August 25, 2009 ID:114545 Share Posted August 25, 2009 I have a server 2003 and xp pc that keeps showing it has many trojans but the files are not there. Malwarebytes scans the PC and looks clean until it comes to "Performing Extra Heuristics scan" then comes up with over 2000 files. Ive searched for the files and they are not there. here are some logs from Malwarebytes and hijack this. I use Trend Officescan and it comes up clean too.Malwarebytes' Anti-Malware 1.40Database version: 2693Windows 5.2.3790 Service Pack 225/08/2009 12:50:35mbam-log-2009-08-25 (12-50-29).txtScan type: Quick ScanObjects scanned: 201528Time elapsed: 5 minute(s), 27 second(s)Memory Processes Infected: 0Memory Modules Infected: 0Registry Keys Infected: 0Registry Values Infected: 0Registry Data Items Infected: 0Folders Infected: 0Files Infected: 2560Memory Processes Infected:(No malicious items detected)Memory Modules Infected:(No malicious items detected)Registry Keys Infected:(No malicious items detected)Registry Values Infected:(No malicious items detected)Registry Data Items Infected:(No malicious items detected)Folders Infected:(No malicious items detected)Files Infected:C:\1.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Administrator\1.exe (Trojan.Dropper) -> No action taken.C:\Documents and Settings\Administrator\Application Data\dumpreport.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Administrator\Application Data\event.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Administrator\Application Data\helper.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Administrator\Application Data\lsas.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Administrator\Application Data\msiexeca.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Administrator\Application Data\rundll.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Administrator\Application Data\service.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Administrator\Application Data\sound.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Administrator\Application Data\svchosts.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Administrator\Application Data\taskmon.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Administrator\Application Data\upnpsvc.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\A.M.K.B_Pk.exe (Worm.AutoRun) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\Assus XDesktop Load.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\CTFM0N.exe (Backdoor.Hupigon) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\GbpSvm.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\Hayalan.exe (Worm.Korron) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\Installer.exe (Trojan.Downloader) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\JVM0.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\Java7.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\KB4182843.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\MS Office 2003.exe (Worm.AutoRun) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\Macromedia Doctor Load.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\Msoffice.exe (Worm.AutoRun) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\NVidia Utils Start.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\NuclearDOS.exe (Backdoor.Agent) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\Sony Try Icon XStart.exe (Trojan.Jevafus) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\System.exe (Rogue.WinAntiVirus) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\SystemIL1.exe (Virus.Sality) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\SystemIL2.exe (Virus.Sality) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\Userinit.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\Wapp.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\WinUpdate.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\Windows UpdateSP9.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\Windows32.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\WindowsUpdate.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\Windowsupdat.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\YacsMon.exe (Trojan.Lop) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\Yahoo Doctor Start.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\anjwsoinhj.exe (Trojan.Downloader) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\autorun.exe (Trojan.FakeAlert) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\autos.exe (Trojan.FakeAlert) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\avg.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\bf.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\bzts.exe (Adware.Agent) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\cmzo.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\csrss.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\ctfmonx.exe (Trojan.Downloader) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\czlq.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\deploy.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\dfjje.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\dfqupd32.exe (Worm.Autorun) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\dllhost.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\dmaupd32.exe (Trojan.Dropper) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\dniw.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\ewe.exe (Backdoor.Bot) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\findfast.exe (Trojan.FakeAlert) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\fmnupd32.exe (Trojan.Downloader) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\fqrl.exe (Adware.Agent) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\gabr.exe (Trojan.FakeAlert) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\gbplugin.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\icwsetup.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\iexpres.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\ifmq.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\ihaupd32.exe (Trojan.Dropper) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\ikowin32.exe (Trojan.Downloader) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\imad.exe (Backdoor.Bot) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\imiupd32.exe (Backdoor.Agent) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\infos.exe (Trojan.FakeAlert) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\javawins.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\k2.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\kss.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\lan.exe (Worm.Saphira) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\lans.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\legupd32.exe (Trojan.Downloader) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\lsass.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\lssas.exe (Worm.AutoRun) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\ltul.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\lwbk.exe (Adware.Agent) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\mccv.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\mscvhost.exe (Worm.Huelar) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\msdoc.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\msn.exe (Backdoor.Bot) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\msnmsgr.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\msnmsrgr.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\mstcpmvd.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\ncyc.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\necsys32.exe (Trojan.Downloader) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\nod32kut.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\norton32.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\p3.exe (Trojan.Downloader) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\pi.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\rncsys32.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\rqjupd32.exe (Trojan.PWS) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\rundll32.exe (Trojan.Downloader) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\sexy.exe (Backdoor.IRCBot) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\sndvol32.exe (Backdoor.Bot) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\stup.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\svcchostb.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\svchost.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\sxikf.exe (Worm.AutoRun) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\syskiss.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\systray.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\toaw.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\win.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\zip32.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\zqosys32.exe (Trojan.Downloader) -> No action taken.C:\Documents and Settings\Administrator\svchosts.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\All Users\1.exe (Trojan.Dropper) -> No action taken.C:\Documents and Settings\All Users\Application Data\dumpreport.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\All Users\Application Data\event.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\All Users\Application Data\helper.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\All Users\Application Data\lsas.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\All Users\Application Data\msiexeca.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\All Users\Application Data\rundll.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\All Users\Application Data\service.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\All Users\Application Data\sound.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\All Users\Application Data\svchosts.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\All Users\Application Data\taskmon.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\All Users\Application Data\upnpsvc.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\A.M.K.B_Pk.exe (Worm.AutoRun) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Assus XDesktop Load.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\CTFM0N.exe (Backdoor.Hupigon) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\GbpSvm.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Hayalan.exe (Worm.Korron) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Installer.exe (Trojan.Downloader) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\JVM0.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Java7.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\KB4182843.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\MS Office 2003.exe (Worm.AutoRun) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Macromedia Doctor Load.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Msoffice.exe (Worm.AutoRun) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\NVidia Utils Start.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\NuclearDOS.exe (Backdoor.Agent) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Sony Try Icon XStart.exe (Trojan.Jevafus) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\System.exe (Rogue.WinAntiVirus) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\SystemIL1.exe (Virus.Sality) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\SystemIL2.exe (Virus.Sality) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Userinit.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Wapp.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\WinUpdate.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Windows UpdateSP9.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Windows32.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\WindowsUpdate.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Windowsupdat.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\YacsMon.exe (Trojan.Lop) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Yahoo Doctor Start.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\anjwsoinhj.exe (Trojan.Downloader) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\autorun.exe (Trojan.FakeAlert) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\autos.exe (Trojan.FakeAlert) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\avg.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\bf.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\bzts.exe (Adware.Agent) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\cmzo.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\csrss.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\ctfmonx.exe (Trojan.Downloader) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\czlq.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\deploy.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\dfjje.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\dfqupd32.exe (Worm.Autorun) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\dllhost.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\dmaupd32.exe (Trojan.Dropper) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\dniw.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\ewe.exe (Backdoor.Bot) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\findfast.exe (Trojan.FakeAlert) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\fmnupd32.exe (Trojan.Downloader) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\fqrl.exe (Adware.Agent) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\gabr.exe (Trojan.FakeAlert) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\gbplugin.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\icwsetup.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\iexpres.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\ifmq.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\ihaupd32.exe (Trojan.Dropper) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\ikowin32.exe (Trojan.Downloader) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\imad.exe (Backdoor.Bot) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\imiupd32.exe (Backdoor.Agent) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\infos.exe (Trojan.FakeAlert) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\javawins.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\k2.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\kss.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\lan.exe (Worm.Saphira) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\lans.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\legupd32.exe (Trojan.Downloader) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\lsass.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\lssas.exe (Worm.AutoRun) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\ltul.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\lwbk.exe (Adware.Agent) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\mccv.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\mscvhost.exe (Worm.Huelar) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\msdoc.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\msn.exe (Backdoor.Bot) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\msnmsgr.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\msnmsrgr.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\mstcpmvd.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\ncyc.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\necsys32.exe (Trojan.Downloader) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\nod32kut.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\norton32.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\p3.exe (Trojan.Downloader) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\pi.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\rncsys32.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\rqjupd32.exe (Trojan.PWS) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\rundll32.exe (Trojan.Downloader) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\sexy.exe (Backdoor.IRCBot) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\sndvol32.exe (Backdoor.Bot) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\stup.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\svcchostb.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\svchost.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\sxikf.exe (Worm.AutoRun) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\syskiss.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\systray.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\toaw.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\win.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\zip32.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\All Users\Start Menu\Programs\Startup\zqosys32.exe (Trojan.Downloader) -> No action taken.C:\Documents and Settings\All Users\svchosts.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Default User\1.exe (Trojan.Dropper) -> No action taken.C:\Documents and Settings\Default User\Application Data\dumpreport.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Default User\Application Data\event.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Default User\Application Data\helper.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Default User\Application Data\lsas.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Default User\Application Data\msiexeca.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Default User\Application Data\rundll.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Default User\Application Data\service.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Default User\Application Data\sound.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Default User\Application Data\svchosts.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Default User\Application Data\taskmon.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Default User\Application Data\upnpsvc.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\A.M.K.B_Pk.exe (Worm.AutoRun) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\Assus XDesktop Load.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\CTFM0N.exe (Backdoor.Hupigon) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\GbpSvm.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\Hayalan.exe (Worm.Korron) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\Installer.exe (Trojan.Downloader) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\JVM0.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\Java7.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\KB4182843.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\MS Office 2003.exe (Worm.AutoRun) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\Macromedia Doctor Load.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\Msoffice.exe (Worm.AutoRun) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\NVidia Utils Start.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\NuclearDOS.exe (Backdoor.Agent) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\Sony Try Icon XStart.exe (Trojan.Jevafus) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\System.exe (Rogue.WinAntiVirus) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\SystemIL1.exe (Virus.Sality) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\SystemIL2.exe (Virus.Sality) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\Userinit.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\Wapp.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\WinUpdate.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\Windows UpdateSP9.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\Windows32.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\WindowsUpdate.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\Windowsupdat.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\YacsMon.exe (Trojan.Lop) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\Yahoo Doctor Start.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\anjwsoinhj.exe (Trojan.Downloader) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\autorun.exe (Trojan.FakeAlert) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\autos.exe (Trojan.FakeAlert) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\avg.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\bf.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\bzts.exe (Adware.Agent) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\cmzo.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\csrss.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\ctfmonx.exe (Trojan.Downloader) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\czlq.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\deploy.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\dfjje.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\dfqupd32.exe (Worm.Autorun) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\dllhost.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\dmaupd32.exe (Trojan.Dropper) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\dniw.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\ewe.exe (Backdoor.Bot) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\findfast.exe (Trojan.FakeAlert) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\fmnupd32.exe (Trojan.Downloader) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\fqrl.exe (Adware.Agent) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\gabr.exe (Trojan.FakeAlert) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\gbplugin.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\icwsetup.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\iexpres.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\ifmq.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\ihaupd32.exe (Trojan.Dropper) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\ikowin32.exe (Trojan.Downloader) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\imad.exe (Backdoor.Bot) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\imiupd32.exe (Backdoor.Agent) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\infos.exe (Trojan.FakeAlert) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\javawins.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\k2.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\kss.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\lan.exe (Worm.Saphira) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\lans.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\legupd32.exe (Trojan.Downloader) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\lsass.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\lssas.exe (Worm.AutoRun) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\ltul.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\lwbk.exe (Adware.Agent) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\mccv.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\mscvhost.exe (Worm.Huelar) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\msdoc.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\msn.exe (Backdoor.Bot) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\msnmsgr.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\msnmsrgr.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\mstcpmvd.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\ncyc.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\necsys32.exe (Trojan.Downloader) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\nod32kut.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\norton32.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\p3.exe (Trojan.Downloader) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\pi.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\rncsys32.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\rqjupd32.exe (Trojan.PWS) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\rundll32.exe (Trojan.Downloader) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\sexy.exe (Backdoor.IRCBot) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\sndvol32.exe (Backdoor.Bot) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\stup.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\svcchostb.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\svchost.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\sxikf.exe (Worm.AutoRun) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\syskiss.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\systray.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\toaw.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\win.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\zip32.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\Default User\Start Menu\Programs\Startup\zqosys32.exe (Trojan.Downloader) -> No action taken.C:\Documents and Settings\Default User\svchosts.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\LocalService\1.exe (Trojan.Dropper) -> No action taken.C:\Documents and Settings\LocalService\Application Data\dumpreport.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\LocalService\Application Data\event.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\LocalService\Application Data\helper.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\LocalService\Application Data\lsas.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\LocalService\Application Data\msiexeca.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\LocalService\Application Data\rundll.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\LocalService\Application Data\service.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\LocalService\Application Data\sound.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\LocalService\Application Data\svchosts.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\LocalService\Application Data\taskmon.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\LocalService\Application Data\upnpsvc.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\LocalService\svchosts.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\NetworkService\1.exe (Trojan.Dropper) -> No action taken.C:\Documents and Settings\NetworkService\Application Data\dumpreport.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\NetworkService\Application Data\event.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\NetworkService\Application Data\helper.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\NetworkService\Application Data\lsas.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\NetworkService\Application Data\msiexeca.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\NetworkService\Application Data\rundll.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\NetworkService\Application Data\service.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\NetworkService\Application Data\sound.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\NetworkService\Application Data\svchosts.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\NetworkService\Application Data\taskmon.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\NetworkService\Application Data\upnpsvc.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\NetworkService\svchosts.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\1.exe (Trojan.Dropper) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Application Data\dumpreport.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Application Data\event.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Application Data\helper.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Application Data\lsas.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Application Data\msiexeca.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Application Data\rundll.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Application Data\service.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Application Data\sound.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Application Data\svchosts.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Application Data\taskmon.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Application Data\upnpsvc.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\A.M.K.B_Pk.exe (Worm.AutoRun) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\Assus XDesktop Load.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\CTFM0N.exe (Backdoor.Hupigon) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\GbpSvm.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\Hayalan.exe (Worm.Korron) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\Installer.exe (Trojan.Downloader) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\JVM0.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\Java7.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\KB4182843.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\MS Office 2003.exe (Worm.AutoRun) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\Macromedia Doctor Load.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\Msoffice.exe (Worm.AutoRun) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\NVidia Utils Start.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\NuclearDOS.exe (Backdoor.Agent) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\Sony Try Icon XStart.exe (Trojan.Jevafus) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\System.exe (Rogue.WinAntiVirus) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\SystemIL1.exe (Virus.Sality) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\SystemIL2.exe (Virus.Sality) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\Userinit.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\Wapp.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\WinUpdate.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\Windows UpdateSP9.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\Windows32.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\WindowsUpdate.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\Windowsupdat.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\YacsMon.exe (Trojan.Lop) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\Yahoo Doctor Start.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\anjwsoinhj.exe (Trojan.Downloader) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\autorun.exe (Trojan.FakeAlert) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\autos.exe (Trojan.FakeAlert) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\avg.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\bf.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\bzts.exe (Adware.Agent) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\cmzo.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\csrss.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\ctfmonx.exe (Trojan.Downloader) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\czlq.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\deploy.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\dfjje.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\dfqupd32.exe (Worm.Autorun) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\dllhost.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\dmaupd32.exe (Trojan.Dropper) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\dniw.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\ewe.exe (Backdoor.Bot) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\findfast.exe (Trojan.FakeAlert) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\fmnupd32.exe (Trojan.Downloader) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\fqrl.exe (Adware.Agent) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\gabr.exe (Trojan.FakeAlert) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\gbplugin.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\icwsetup.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\iexpres.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\ifmq.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\ihaupd32.exe (Trojan.Dropper) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\ikowin32.exe (Trojan.Downloader) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\imad.exe (Backdoor.Bot) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\imiupd32.exe (Backdoor.Agent) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\infos.exe (Trojan.FakeAlert) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\javawins.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\k2.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\kss.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\lan.exe (Worm.Saphira) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\lans.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\legupd32.exe (Trojan.Downloader) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\lsass.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\lssas.exe (Worm.AutoRun) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\ltul.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\lwbk.exe (Adware.Agent) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\mccv.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\mscvhost.exe (Worm.Huelar) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\msdoc.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\msn.exe (Backdoor.Bot) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\msnmsgr.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\msnmsrgr.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\mstcpmvd.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\ncyc.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\necsys32.exe (Trojan.Downloader) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\nod32kut.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\norton32.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\p3.exe (Trojan.Downloader) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\pi.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\rncsys32.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\rqjupd32.exe (Trojan.PWS) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\rundll32.exe (Trojan.Downloader) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\sexy.exe (Backdoor.IRCBot) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\sndvol32.exe (Backdoor.Bot) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\stup.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\svcchostb.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\svchost.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\sxikf.exe (Worm.AutoRun) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\syskiss.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\systray.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\toaw.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\win.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\zip32.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\Start Menu\Programs\Startup\zqosys32.exe (Trojan.Downloader) -> No action taken.C:\Documents and Settings\SVC-BACKUPEXEC\svchosts.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\1.exe (Trojan.Dropper) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Application Data\dumpreport.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Application Data\event.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Application Data\helper.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Application Data\lsas.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Application Data\msiexeca.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Application Data\rundll.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Application Data\service.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Application Data\sound.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Application Data\svchosts.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Application Data\taskmon.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Application Data\upnpsvc.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\A.M.K.B_Pk.exe (Worm.AutoRun) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\Assus XDesktop Load.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\CTFM0N.exe (Backdoor.Hupigon) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\GbpSvm.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\Hayalan.exe (Worm.Korron) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\Installer.exe (Trojan.Downloader) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\JVM0.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\Java7.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\KB4182843.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\MS Office 2003.exe (Worm.AutoRun) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\Macromedia Doctor Load.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\Msoffice.exe (Worm.AutoRun) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\NVidia Utils Start.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\NuclearDOS.exe (Backdoor.Agent) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\Sony Try Icon XStart.exe (Trojan.Jevafus) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\System.exe (Rogue.WinAntiVirus) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\SystemIL1.exe (Virus.Sality) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\SystemIL2.exe (Virus.Sality) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\Userinit.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\Wapp.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\WinUpdate.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\Windows UpdateSP9.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\Windows32.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\WindowsUpdate.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\Windowsupdat.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\YacsMon.exe (Trojan.Lop) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\Yahoo Doctor Start.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\anjwsoinhj.exe (Trojan.Downloader) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\autorun.exe (Trojan.FakeAlert) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\autos.exe (Trojan.FakeAlert) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\avg.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\bf.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\bzts.exe (Adware.Agent) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\cmzo.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\csrss.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\ctfmonx.exe (Trojan.Downloader) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\czlq.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\deploy.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\dfjje.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\dfqupd32.exe (Worm.Autorun) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\dllhost.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\dmaupd32.exe (Trojan.Dropper) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\dniw.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\ewe.exe (Backdoor.Bot) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\findfast.exe (Trojan.FakeAlert) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\fmnupd32.exe (Trojan.Downloader) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\fqrl.exe (Adware.Agent) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\gabr.exe (Trojan.FakeAlert) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\gbplugin.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\icwsetup.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\iexpres.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\ifmq.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\ihaupd32.exe (Trojan.Dropper) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\ikowin32.exe (Trojan.Downloader) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\imad.exe (Backdoor.Bot) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\imiupd32.exe (Backdoor.Agent) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\infos.exe (Trojan.FakeAlert) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\javawins.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\k2.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\kss.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\lan.exe (Worm.Saphira) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\lans.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\legupd32.exe (Trojan.Downloader) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\lsass.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\lssas.exe (Worm.AutoRun) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\ltul.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\lwbk.exe (Adware.Agent) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\mccv.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\mscvhost.exe (Worm.Huelar) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\msdoc.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\msn.exe (Backdoor.Bot) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\msnmsgr.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\msnmsrgr.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\mstcpmvd.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\ncyc.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\necsys32.exe (Trojan.Downloader) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\nod32kut.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\norton32.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\p3.exe (Trojan.Downloader) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\pi.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\rncsys32.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\rqjupd32.exe (Trojan.PWS) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\rundll32.exe (Trojan.Downloader) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\sexy.exe (Backdoor.IRCBot) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\sndvol32.exe (Backdoor.Bot) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\stup.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\svcchostb.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\svchost.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\sxikf.exe (Worm.AutoRun) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\syskiss.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\systray.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\toaw.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\win.exe (Trojan.Agent) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\zip32.exe (Trojan.Banker) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\Start Menu\Programs\Startup\zqosys32.exe (Trojan.Downloader) -> No action taken.C:\Documents and Settings\SVC-GBYT-BESERVICE\svchosts.exe (Trojan.Agent) -> No action taken.C:\Program Files\1\1.exe (Trojan.Agent) -> No action taken.C:\Program Files\2\2.exe (Trojan.Agent) -> No action taken.C:\Program Files\Common Files\Win Config\service.exe (Backdoor.Bot) -> No action taken.C:\Program Files\PornCleanser\svchosts.exe (Rogue.PornCleanser) -> No action taken.C:\Program Files\pc\svchosts.exe (Rogue.PornCleanser) -> No action taken.C:\Program Files\rundll.exe (Spyware.OnlineGames) -> No action taken.C:\RECYCLER\S-1-5-21-0982818026-0792038349-964117139-9221\service.exe (Trojan.Agent) -> No action taken.C:\RECYCLER\S-1-5-21-1292832515-2685961851-318933812-6215\service.exe (Trojan.Agent) -> No action taken.C:\WINDOWS\Cursors\svchosts.exe (Trojan.Agent) -> No action taken.C:\WINDOWS\Media\sound.exe (Trojan.Downloader) -> No action taken.C:\WINDOWS\System\helper.exe (Trojan.Agent) -> No action taken.C:\WINDOWS\System\svchosts.exe (Trojan.Agent) -> No action taken.C:\WINDOWS\Temp\lsas.exe (Trojan.Dropper) -> No action taken.C:\WINDOWS\lsas.exe (Backdoor.Bot) -> No action taken.C:\WINDOWS\rundll.exe (Trojan.Agent) -> No action taken.C:\WINDOWS\service.exe (Backdoor.Bot) -> No action taken.C:\WINDOWS\svchosts.exe (Trojan.Agent) -> No action taken.C:\WINDOWS\system32\1.exe (Trojan.Agent) -> No action taken.C:\WINDOWS\system32\1\1.exe (Backdoor.Bifrose) -> No action taken.C:\WINDOWS\system32\2.exe (Trojan.Agent) -> No action taken.C:\WINDOWS\system32\Com\rundll.exe (Trojan.Sramler) -> No action taken.C:\WINDOWS\system32\Drivers\Security\service.exe (Trojan.Agent) -> No action taken.C:\WINDOWS\system32\inf\svchosts.exe (Trojan.Agent) -> No action taken.C:\WINDOWS\system32\lsas.exe (Backdoor.Bot) -> No action taken.C:\WINDOWS\system32\rundll.exe (Trojan.Agent) -> No action taken.C:\WINDOWS\system32\runwin32\rundll.exe (Backdoor.Bot) -> No action taken.C:\WINDOWS\system32\service.exe (Backdoor.Bot) -> No action taken.C:\WINDOWS\system32\svc\svchosts.exe (Trojan.Banker) -> No action taken.C:\WINDOWS\system32\svchosts.exe (Trojan.Agent) -> No action taken.C:\WINDOWS\system32\taskmon.exe (Trojan.Agent) -> No action taken.C:\WINDOWS\system32\win32ini\svchosts.exe (Backdoor.Bot) -> No action taken.C:\WINDOWS\taskmon.exe (Proxy.Agent) -> No action taken.C:\svchosts.exe (Worm.AutoRun) -> No action taken.Logfile of Trend Micro HijackThis v2.0.2Scan saved at 12:57:27, on 25/08/2009Platform: Windows 2003 SP2 (WinNT 5.02.3790)MSIE: Internet Explorer v6.00 SP2 (6.00.3790.3959)Boot mode: NormalRunning processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\WINDOWS\system32\spoolsv.exeD:\altiris\Altiris Agent\aexnsagent.exeC:\WINDOWS\system32\ccsrvc.exeC:\Program Files\Altiris\Carbon Copy\shellker.exeC:\WINDOWS\system32\CpqRcmc.exeC:\hp\hpsmh\data\cgi-bin\vcagent\vcagent.exeC:\Program Files\Executive Software\Diskeeper\DkService.exeC:\WINDOWS\System32\svchost.exeC:\WINDOWS\system32\tcpsvcs.exeC:\Program Files\Microsoft SQL Server\MSSQL$BKUPEXEC\Binn\sqlservr.exeC:\Program Files\NSClient++\NSClient++.exeC:\Program Files\Aldebaran\ServerAssist\SAMONITOR.EXEC:\WINDOWS\System32\snmp.exeC:\hp\hpsmh\bin\smhstart.exeC:\hp\hpsmh\bin\hpsmhd.exeC:\WINDOWS\system32\CPQNiMgt\cpqnimgt.exeC:\WINDOWS\system32\CPQMgmt\CqMgServ\cqmgserv.exeC:\WINDOWS\system32\CPQMgmt\CqMgStor\cqmgstor.exeC:\WINDOWS\system32\sysdown.exeC:\hp\hpsmh\bin\rotatelogs.exeC:\hp\hpsmh\bin\rotatelogs.exeC:\Program Files\VERITAS\Backup Exec\NT\beremote.exeC:\hp\hpsmh\bin\hpsmhd.exeC:\Program Files\VERITAS\Backup Exec\NT\benetns.exeC:\WINDOWS\system32\CPQMgmt\CqMgHost\cqmghost.exeC:\hp\hpsmh\bin\rotatelogs.exeC:\hp\hpsmh\bin\rotatelogs.exeC:\Program Files\VERITAS\Backup Exec\NT\pvlsvr.exeC:\Program Files\Microsoft SQL Server\MSSQL$BKUPEXEC\Binn\sqlagent.EXEC:\Program Files\VERITAS\Backup Exec\NT\beserver.exeC:\Program Files\VERITAS\Backup Exec\NT\bengine.exeC:\WINDOWS\System32\svchost.exeC:\Program Files\Trend Micro\OfficeScan Client\ntrtscan.exeC:\WINDOWS\TEMP\OBBEDE.EXEC:\Program Files\Trend Micro\OfficeScan Client\tmlisten.exeC:\Program Files\Trend Micro\OfficeScan Client\CNTAoSMgr.exeC:\Program Files\Trend Micro\OfficeScan Client\tmproxy.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\rdpclip.exeC:\WINDOWS\system32\ctfmon.exeC:\WINDOWS\Explorer.EXEC:\WINDOWS\system32\cpqteam.exeC:\Program Files\Trend Micro\OfficeScan Client\pccntmon.exeC:\Program Files\VERITAS\VxUpdate\VxTaskbarMgr.exeC:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exeD:\altiris\Altiris Agent\AeXAgentUIHost.exeC:\Program Files\Trend Micro\HijackThis\HijackThis.exeR1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = res://shdoclc.dll/hardAdmin.htmR0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = res://shdoclc.dll/hardAdmin.htmR1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigURL = http://internetproxy.sunchemical.com:8086/proxy.pacO4 - HKLM\..\Run: [CPQTEAM] cpqteam.exeO4 - HKLM\..\Run: [OfficeScanNT Monitor] "C:\Program Files\Trend Micro\OfficeScan Client\pccntmon.exe" -HideWindowO4 - HKLM\..\Run: [AeXAgentLogon] D:\altiris\Altiris Agent\AeXAgentActivate.exe /logonO4 - HKLM\..\Run: [VxTaskbarMgr] C:\Program Files\VERITAS\VxUpdate\VxTaskbarMgr.exeO4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXEO4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')O4 - HKUS\S-1-5-19\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'LOCAL SERVICE')O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')O4 - HKUS\S-1-5-20\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'NETWORK SERVICE')O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')O4 - HKUS\S-1-5-18\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'SYSTEM')O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')O4 - HKUS\.DEFAULT\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'Default user')O4 - Global Startup: Service Manager.lnk = C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exeO15 - ESC Trusted Zone: http://free.antivirus.comO15 - ESC Trusted Zone: http://www.malwarebytes.orgO15 - ESC Trusted Zone: http://us.trendmicro.comO15 - ESC Trusted Zone: http://www.trendsecure.comO15 - ESC Trusted Zone: http://*.windowsupdate.comO15 - ESC Trusted Zone: http://*.windowsupdate.com (HKLM)O16 - DPF: {00134F72-5284-44F7-95A8-52A619F70751} (ObjWinNTCheck Class) - https://ustpppas012/officescan/console/html...ll/WinNTChk.cabO16 - DPF: {08D75BC1-D2B5-11D1-88FC-0080C859833B} (OfficeScan Corp Edition Web-Deployment SetupCtrl Class) - https://ustpppas012/officescan/console/html...stall/setup.cabO16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/...b?1234951106968O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = prod.sunchemical.comO17 - HKLM\System\CCS\Services\Tcpip\..\{122732E4-53F4-425E-AC23-7A9B60CA6362}: NameServer = 171.74.65.82,10.1.5.210O17 - HKLM\System\CS1\Services\Tcpip\Parameters: Domain = prod.sunchemical.comO17 - HKLM\System\CS1\Services\Tcpip\..\{122732E4-53F4-425E-AC23-7A9B60CA6362}: NameServer = 171.74.65.82,10.1.5.210O18 - Protocol: hpapp - {24F45006-5BD9-41B7-9BD9-5F8921C8EBD1} - C:\Program Files\Compaq\Cpqacuxe\Bin\hpapp.dllO23 - Service: Altiris Agent (AeXNSClient) - Altiris, Inc. - D:\altiris\Altiris Agent\AeXNSAgent.exeO23 - Service: Backup Exec Remote Agent for Windows Servers (BackupExecAgentAccelerator) - Symantec Corporation - C:\Program Files\VERITAS\Backup Exec\NT\beremote.exeO23 - Service: Backup Exec Agent Browser (BackupExecAgentBrowser) - Symantec Corporation - C:\Program Files\VERITAS\Backup Exec\NT\benetns.exeO23 - Service: Backup Exec Device & Media Service (BackupExecDeviceMediaService) - Symantec Corporation - C:\Program Files\VERITAS\Backup Exec\NT\pvlsvr.exeO23 - Service: Backup Exec Job Engine (BackupExecJobEngine) - Symantec Corporation - C:\Program Files\VERITAS\Backup Exec\NT\bengine.exeO23 - Service: Backup Exec Server (BackupExecRPCService) - Symantec Corporation - C:\Program Files\VERITAS\Backup Exec\NT\beserver.exeO23 - Service: Altiris Carbon Copy (CarbonCopy32) - Altiris - C:\WINDOWS\system32\ccsrvc.exeO23 - Service: Carbon Copy Scheduler (CarbonCopyScheduler) - Altiris - C:\WINDOWS\system32\schdsrvc.exeO23 - Service: HP Insight NIC Agent (CpqNicMgmt) - Hewlett-Packard Company - C:\WINDOWS\system32\CPQNiMgt\cpqnimgt.exeO23 - Service: HP ProLiant Remote Monitor Service (CpqRcmc) - Hewlett-Packard Company - C:\WINDOWS\system32\CpqRcmc.exeO23 - Service: HP Version Control Agent (cpqvcagent) - Hewlett-Packard Company - C:\hp\hpsmh\data\cgi-bin\vcagent\vcagent.exeO23 - Service: HP Insight Foundation Agents (CqMgHost) - Hewlett-Packard Company - C:\WINDOWS\system32\CPQMgmt\CqMgHost\cqmghost.exeO23 - Service: HP Insight Server Agents (CqMgServ) - Hewlett-Packard Company - C:\WINDOWS\system32\CPQMgmt\CqMgServ\cqmgserv.exeO23 - Service: HP Insight Storage Agents (CqMgStor) - Hewlett-Packard Company - C:\WINDOWS\system32\CPQMgmt\CqMgStor\cqmgstor.exeO23 - Service: Diskeeper - Executive Software International, Inc. - C:\Program Files\Executive Software\Diskeeper\DkService.exeO23 - Service: NSClient++ (Win32) (NSClientpp) - Unknown owner - C:\Program Files\NSClient++\\NSClient++.exeO23 - Service: OfficeScanNT RealTime Scan (ntrtscan) - Trend Micro Inc. - C:\Program Files\Trend Micro\OfficeScan Client\ntrtscan.exeO23 - Service: ServerAssist Monitor (SAMONITOR) - Aldebaran Systems Ltd - C:\Program Files\Aldebaran\ServerAssist\SAMONITOR.EXEO23 - Service: HP ProLiant System Shutdown Service (sysdown) - Compaq Computer Corporation - C:\WINDOWS\system32\sysdown.exeO23 - Service: HP System Management Homepage (SysMgmtHp) - Hewlett-Packard Company - C:\hp\hpsmh\bin\smhstart.exeO23 - Service: OfficeScan NT Listener (tmlisten) - Trend Micro Inc. - C:\Program Files\Trend Micro\OfficeScan Client\tmlisten.exeO23 - Service: OfficeScan NT Proxy Service (TmProxy) - Trend Micro Inc. - C:\Program Files\Trend Micro\OfficeScan Client\TmProxy.exe--End of file - 8306 bytes Link to post Share on other sites More sharing options...
Maniac Posted August 25, 2009 ID:114547 Share Posted August 25, 2009 Greetings.To get you fixed up please follow the instructions here:I'm infected - What do I do now?And post your logs in a new topic here:Malware Removal - HijackThis LogsPlease be sure not to install any software or use any removal or scanning tools exept those that you are instructed to by the expert who will be assisting you as doing so can make their job much more difficult.note: if for some reason you are unable to run some or any of the tools in the first link, then skip that step and move on to the next one.If you can't even run HijackThis, then just post here: Malware Removal - HijackThis Logs describing your issues and an expert will reply with further instructions.I hope I was helpful. Good luck and safe surfing. Link to post Share on other sites More sharing options...
LW9090 Posted August 25, 2009 Author ID:114552 Share Posted August 25, 2009 Greetings.To get you fixed up please follow the instructions here:I'm infected - What do I do now?And post your logs in a new topic here:Malware Removal - HijackThis LogsPlease be sure not to install any software or use any removal or scanning tools exept those that you are instructed to by the expert who will be assisting you as doing so can make their job much more difficult.note: if for some reason you are unable to run some or any of the tools in the first link, then skip that step and move on to the next one.If you can't even run HijackThis, then just post here: Malware Removal - HijackThis Logs describing your issues and an expert will reply with further instructions.I hope I was helpful. Good luck and safe surfing. I ran malwarebytes. rebooted and it still shows the same files. Link to post Share on other sites More sharing options...
Maniac Posted August 25, 2009 ID:114561 Share Posted August 25, 2009 Please, start your own topic in Malware Removal - HijackThis Logs and post all information and logs. Link to post Share on other sites More sharing options...
Recommended Posts
Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
Register a new accountSign in
Already have an account? Sign in here.
Sign In Now