DellGAM Virus?

  1. #21
    Neal is offline Dedicated Member

    Re: DellGAM Virus?

    Your welcome,


    You may have to re-install those programs if Avast found them infected.

    What ever files in the chest are left should be able to delete them but if you feel better google the files in question and see what comes up or just leave them there for a while and if things seem to be working ok blast "em. They will be harmless in the chest or the next scanner may do it for you in a little bit.




    Go here to learn how to show hidden files/folders:

    http://www.xtra.co.nz/help/0,,4155-1916458,00.html#5

    Re-hide after we are done



    Go to next site:
    http://www.virustotal.com/en/indexf.html
    On top you'll find 'Browse'
    Click the browse button and browse to next file:


    C:\WINDOWS\system32\drivers\winsys.sys


    Click open.
    Then click the 'Send' button next to it.
    This will scan the file. Please be patient.
    Once scanned, copy and paste the results as well in your next reply.


    If that one is to busy here is another option:


    http://virusscan.jotti.org

    And

    http://www.kaspersky.com/scanforvirus.html


    Then...



    Go here BitDefender and run an online scan with BitDefender (you will need to use Internet Explorer for this scan). When the ActiveX Control has loaded, click on "Click here to scan" and grab a coffee.

    When BitDefender completes the scan, select the "Detected Problems" tab. Click on "Click here to export scan". Save the file as an HTML to your Desktop. Then click on the saved file and allow it to open with your browser. Go to Edit - Select All then copy/paste that log back here. Post back and let us know what it found (post the log).

    And post a new HJT log also..


  2. #22
    mickdundee is offline Newbie
    Hi Neal,

    Here's the first log from Virustotal.com

    File winsys.exe received on 01.28.2008 06:42:24 (CET)Antivirus Version Last Update Result
    AhnLab-V3 2008.1.26.10 2008.01.25 -
    AntiVir 7.6.0.56 2008.01.27 -
    Authentium 4.93.8 2008.01.26 -
    Avast 4.7.1098.0 2008.01.27 -
    AVG 7.5.0.516 2008.01.27 -
    BitDefender 7.2 2008.01.28 -
    CAT-QuickHeal 9.00 2008.01.25 -
    ClamAV 0.91.2 2008.01.27 -
    DrWeb 4.44.0.09170 2008.01.27 -
    eSafe 7.0.15.0 2008.01.16 -
    eTrust-Vet 31.3.5486 2008.01.26 -
    Ewido 4.0 2008.01.27 -
    FileAdvisor 1 2008.01.28 -
    Fortinet 3.14.0.0 2008.01.27 -
    F-Prot 4.4.2.54 2008.01.27 -
    F-Secure 6.70.13260.0 2008.01.28 -
    Ikarus T3.1.1.20 2008.01.28 -
    Kaspersky 7.0.0.125 2008.01.28 -
    McAfee 5216 2008.01.26 -
    Microsoft 1.3109 2008.01.27 -
    NOD32v2 2826 2008.01.27 -
    Norman 5.80.02 2008.01.24 -
    Panda 9.0.0.4 2008.01.27 -
    Prevx1 V2 2008.01.28 -
    Rising 20.29.00.00 2008.01.28 -
    Sophos 4.25.0 2008.01.27 -
    Sunbelt 2.2.907.0 2008.01.25 -
    Symantec 10 2008.01.28 -
    TheHacker 6.2.9.200 2008.01.28 -
    VBA32 3.12.2.5 2008.01.21 -
    VirusBuster 4.3.26:9 2008.01.27 -
    Webwasher-Gateway 6.6.2 2008.01.27 -

    Additional information
    File size: 21120 bytes
    MD5: 73c7f648aea393a227c073bddb8c1626
    SHA1: adcc7bbdb8fbea12f0f3e17dc5caec7ad2011d94
    PEiD: -

    I ran the BitDefender scan and it was running fine up until about 75%-80% complete, when avast started continually popping up saying it had found a sample of the DelfGam virus in this file path:
    C:\DOCUME~1\Emzie\LOCALS~1\Temp\tmp

    Wheter I delete or move it to chest, another one is just created in its place and avast will again alert me to its location (I've opened the temp file and can see it just reappearing with a new number/letter behind it each time I delete it -I'm currently up to tmp123). This file's description (under properties) is Interactive Runtime Engine from Microsoft.

    BitDefender can't continue without me telling avast what to do, but each time I move or delete the file, another one appears and avast will pop up again, casuing the BitDefender scan to pause. I'm reluctant to turn avast off to let BitDefender finish as I'm still getting warnings about D:COM attacks.

    Incidently, BitDefender's statistic screen says it has found 9 viruses and has deleted 292 infected files (majority of which I assue is this ~locals\temp\tmp file).

    There was also a Windows Protection dialouge window popping up in the middle of all this saying a file that windows needed to operate had been replaced with an unknown version - should I be concerned about this?

    Please accept my apologies for contantly coming up with new problems and queries, your help is still hugely appreciated.

    I've left BitDefender hanging, in case you get back to me tonight with a solution to save me starting the scan from scratch again! Here's a hijack this log:

    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 22:36:02, on 21/02/2008
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v7.00 (7.00.5730.0013)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    C:\Program Files\Alwil Software\Avast4\ashServ.exe
    C:\Program Files\Intel\Wireless\Bin\ZcfgSvc.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\system32\spoolsv.exe
    C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
    C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
    C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
    C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
    C:\WINDOWS\system32\igfxsrvc.exe
    C:\WINDOWS\system32\hkcmd.exe
    C:\WINDOWS\system32\igfxpers.exe
    C:\WINDOWS\stsystra.exe
    C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe
    C:\WINDOWS\system32\dla\tfswctrl.exe
    C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
    C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\WINDOWS\system32\wuauclt.exe
    C:\Program Files\HijackThis\HijackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.co.uk/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = https://loginnet.passport.com/ppsecu...th.srf?lc=1033
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
    O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
    O3 - Toolbar: McAfee VirusScan - {BA52B914-B692-46c4-B683-905236F6F655} - c:\progra~1\mcafee.com\vso\mcvsshl.dll
    O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
    O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
    O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
    O4 - HKLM\..\Run: [SigmatelSysTrayApp] stsystra.exe
    O4 - HKLM\..\Run: [AOL Spyware Protection] "C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe"
    O4 - HKLM\..\Run: [VSOCheckTask] "c:\PROGRA~1\mcafee.com\vso\mcmnhdlr.exe" /checktask
    O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
    O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
    O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
    O4 - HKLM\..\Run: [VirusScan Online] c:\PROGRA~1\mcafee.com\vso\mcvsshld.exe
    O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [updateMgr] C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_0_5 -reboot 1
    O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
    O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
    O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
    O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/reso...an8/oscan8.cab
    O16 - DPF: {5F8469B4-B055-49DD-83F7-62B522420ECC} (Facebook Photo Uploader Control) - http://upload.facebook.com/controls/...toUploader.cab
    O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/Ms...Downloader.cab
    O20 - AppInit_DLLs: windows.dll
    O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
    O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
    O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
    O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
    O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
    O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
    O23 - Service: McAfee.com McShield (McShield) - Unknown owner - c:\PROGRA~1\mcafee.com\vso\mcshield.exe (file missing)
    O23 - Service: McAfee.com VirusScan Online Realtime Engine (MCVSRte) - Unknown owner - c:\PROGRA~1\mcafee.com\vso\mcvsrte.exe (file missing)

    --
    End of file - 6227 bytes

    Thanks.

  3. #23
    Neal is offline Dedicated Member
    Remove from add/remove program

    MyWay Search Assistant
    Viewpoint Media Player


    Reboot afterwards
    -------------------------------------------

    Don't do ccleaner just yet, just install for now.


    To clean your temp folder, recycle bin, etc..please download this free tool:

    CCleaner

    Don't install any Toolbars, or other programs, should it ask you!Just uncheck the option of installing the Yahoo toolbar.
    It will put a shortcut on your Desktop.

    Uncheck cookies

    Before first use:
    Select Options then Advanced.
    UNCHECK "Only delete files in Windows Temp folder older than 48 hours"

    Click on CCleaner to start it. Then click "Run Cleaner", just use the windows tab up front by default.


    Then Reboot (Exit)
    -------------------------------------------


    Now reboot into safe mode( without networking support) by tapping your F8 key upon restart and safe mode screen appears, select safe mode and press enter.


    Now while in safe mode run ccleaner per the instructions above, if you can't from safe mode just do it from normal mode.
    -------------------------------------------

    Please download http://siri.urz.free.fr/Fix/SmitfraudFix.zip (by S!Ri)
    Extract the content (a folder named SmitfraudFix) to your Desktop.

    Open the SmitfraudFix folder and double-click smitfraudfix.cmd
    Select option #1 - Search by typing 1 and press "Enter"; a text file will appear, which lists infected files (if present).
    Please copy/paste the content of that report into your next reply.

    Please do not run any other option until asked to do so, Thanks

    Note : process.exe is detected by some antivirus programs (AntiVir, Dr.Web, Kaspersky) as a "RiskTool"; it is not a virus, but a program used to stop system processes. Antivirus programs cannot distinguish between "good" and "malicious" use of such programs, therefore they may alert the user.
    http://www.beyondlogic.org/consulting/proc...processutil.htm


    Please post a new hijackthis log and the smitfraudfix log. Thanks.

  4. #24
    mickdundee is offline Newbie
    Here's the SmitFraudFix log - this was conducted in normal mode, not safe mode, I hope this is correct:

    SmitFraudFix v2.293

    Scan done at 0:38:34.62, 22/02/2008
    Run from C:\Documents and Settings\Emzie\Desktop\SmitfraudFix\SmitfraudFix
    OS: Microsoft Windows XP [Version 5.1.2600] - Windows_NT
    The filesystem type is NTFS
    Fix run in normal mode

    »»»»»»»»»»»»»»»»»»»»»»»» Process


    »»»»»»»»»»»»»»»»»»»»»»»» hosts


    »»»»»»»»»»»»»»»»»»»»»»»» C:\


    »»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS


    »»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system


    »»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\Web


    »»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system32


    »»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system32\LogFiles


    »»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\Emzie


    »»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\Emzie\Application Data


    »»»»»»»»»»»»»»»»»»»»»»»» Start Menu


    »»»»»»»»»»»»»»»»»»»»»»»»


    »»»»»»»»»»»»»»»»»»»»»»»» Desktop


    »»»»»»»»»»»»»»»»»»»»»»»» C:\Program Files


    »»»»»»»»»»»»»»»»»»»»»»»» Corrupted keys


    »»»»»»»»»»»»»»»»»»»»»»»» Desktop Components

    [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Desktop\Components\0]
    "Source"="About:Home"
    "SubscribedURL"="About:Home"
    "FriendlyName"="My Current Home Page"


    »»»»»»»»»»»»»»»»»»»»»»»» IEDFix
    !!!Attention, following keys are not inevitably infected!!!

    IEDFix
    Credits: Malware Analysis & Diagnostic
    Code: S!Ri


    »»»»»»»»»»»»»»»»»»»»»»»» VACFix
    !!!Attention, following keys are not inevitably infected!!!

    VACFix
    Credits: Malware Analysis & Diagnostic
    Code: S!Ri


    »»»»»»»»»»»»»»»»»»»»»»»» Sharedtaskscheduler
    !!!Attention, following keys are not inevitably infected!!!

    SrchSTS.exe by S!Ri
    Search SharedTaskScheduler's .dll


    »»»»»»»»»»»»»»»»»»»»»»»» AppInit_DLLs
    !!!Attention, following keys are not inevitably infected!!!

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
    "AppInit_DLLs"="windows.dll"


    »»»»»»»»»»»»»»»»»»»»»»»» Winlogon.System
    !!!Attention, following keys are not inevitably infected!!!

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
    "System"=""


    »»»»»»»»»»»»»»»»»»»»»»»» Rustock



    »»»»»»»»»»»»»»»»»»»»»»»» DNS



    »»»»»»»»»»»»»»»»»»»»»»»» Scanning for wininet.dll infection


    »»»»»»»»»»»»»»»»»»»»»»»» End




    HiJackThis log:

    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 00:41:46, on 22/02/2008
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v7.00 (7.00.6000.16608)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    C:\Program Files\Alwil Software\Avast4\ashServ.exe
    C:\Program Files\Intel\Wireless\Bin\ZcfgSvc.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\system32\hkcmd.exe
    C:\WINDOWS\system32\igfxpers.exe
    C:\WINDOWS\stsystra.exe
    C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe
    C:\WINDOWS\system32\dla\tfswctrl.exe
    C:\WINDOWS\system32\igfxsrvc.exe
    C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
    C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
    C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
    C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
    C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
    C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\WINDOWS\system32\cmd.exe
    C:\WINDOWS\NOTEPAD.EXE
    C:\Program Files\HijackThis\HijackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.co.uk/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = https://loginnet.passport.com/ppsecu...th.srf?lc=1033
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
    O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
    O3 - Toolbar: McAfee VirusScan - {BA52B914-B692-46c4-B683-905236F6F655} - c:\progra~1\mcafee.com\vso\mcvsshl.dll
    O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
    O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
    O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
    O4 - HKLM\..\Run: [SigmatelSysTrayApp] stsystra.exe
    O4 - HKLM\..\Run: [AOL Spyware Protection] "C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe"
    O4 - HKLM\..\Run: [VSOCheckTask] "c:\PROGRA~1\mcafee.com\vso\mcmnhdlr.exe" /checktask
    O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
    O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
    O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
    O4 - HKLM\..\Run: [VirusScan Online] c:\PROGRA~1\mcafee.com\vso\mcvsshld.exe
    O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [updateMgr] C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_0_5 -reboot 1
    O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
    O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
    O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
    O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/reso...an8/oscan8.cab
    O16 - DPF: {5F8469B4-B055-49DD-83F7-62B522420ECC} (Facebook Photo Uploader Control) - http://upload.facebook.com/controls/...toUploader.cab
    O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/Ms...Downloader.cab
    O20 - AppInit_DLLs: windows.dll
    O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
    O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
    O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
    O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
    O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
    O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
    O23 - Service: McAfee.com McShield (McShield) - Unknown owner - c:\PROGRA~1\mcafee.com\vso\mcshield.exe (file missing)
    O23 - Service: McAfee.com VirusScan Online Realtime Engine (MCVSRte) - Unknown owner - c:\PROGRA~1\mcafee.com\vso\mcvsrte.exe (file missing)

    --
    End of file - 6248 bytes

    No noticeable changes in the laptop's behaviour, still getting the odd DCOM exploit warning from Avast, but no system crashes or anything like that. Don't know if I need to mention that I installed IE7 today as it came in as a system update.
    Cheers Neal.

  5. #25
    Neal is offline Dedicated Member
    from post #22

    File winsys.exe received on 01.28.2008
    I needed this scanned:

    winsys.sys > C:\WINDOWS\system32\drivers\winsys.sys


    Also find this file windows.dll, let's scan that also just like you did the other one, should be in the system32 folder.



    Download Dr.Web CureIt to the desktop:
    ftp://ftp.drweb.com/pub/drweb/cureit/drweb-cureit.exe

    * Doubleclick the drweb-cureit.exe file and Allow to run the express scan
    * This will scan the files currently running in memory and when something is found, click the yes button when it asks you if you want to cure it. This is only a short scan.
    * Once the short scan has finished, mark the drives that you want to scan.
    * Select all drives. A red dot shows which drives have been chosen.
    * Click the green arrow at the right, and the scan will start.
    * Click 'Yes to all' if it asks if you want to cure/move the file.
    * When the scan has finished, look if you can click next icon next to the files found:

    * If so, click it and then click the next icon right below and select Move incurable as you'll see in next image:


    This will move it to the %userprofile%\DoctorWeb\quarantaine-folder if it can't be cured. (this in case if we need samples)
    * After selecting, in the Dr.Web CureIt menu on top, click file and choose save report list
    * Save the report to your desktop. The report will be called DrWeb.csv
    * Close Dr.Web Cureit.
    * Reboot your computer!! Because it could be possible that files in use will be moved/deleted during reboot.
    * After reboot, post the contents of the log from Dr.Web you saved previously in your next reply. You can use Notepad to open the DrWeb.cvs report.


    New hijackthis log please.

  6. #26
    mickdundee is offline Newbie
    Apologies for the mix up:

    File winsys.sys received on 02.23.2008 01:40:39 (CET)Antivirus Version Last Update Result
    AhnLab-V3 2008.2.22.0 2008.02.22 -
    AntiVir 7.6.0.67 2008.02.22 -
    Authentium 4.93.8 2008.02.22 -
    Avast 4.7.1098.0 2008.02.22 -
    AVG 7.5.0.516 2008.02.22 -
    BitDefender 7.2 2008.02.23 -
    CAT-QuickHeal 9.50 2008.02.22 -
    ClamAV 0.92.1 2008.02.22 -
    DrWeb 4.44.0.09170 2008.02.22 -
    eSafe 7.0.15.0 2008.02.21 -
    eTrust-Vet 31.3.5557 2008.02.23 -
    Ewido 4.0 2008.02.22 -
    FileAdvisor 1 2008.02.23 -
    Fortinet 3.14.0.0 2008.02.22 -
    F-Prot 4.4.2.54 2008.02.22 -
    F-Secure 6.70.13260.0 2008.02.22 -
    Ikarus T3.1.1.20 2008.02.23 -
    Kaspersky 7.0.0.125 2008.02.23 -
    McAfee 5236 2008.02.22 -
    Microsoft 1.3204 2008.02.23 -
    NOD32v2 2897 2008.02.22 -
    Norman 5.80.02 2008.02.22 -
    Panda 9.0.0.4 2008.02.22 -
    Prevx1 V2 2008.02.23 -
    Rising 20.32.42.00 2008.02.22 -
    Sophos 4.26.0 2008.02.23 -
    Sunbelt 3.0.890.0 2008.02.22 -
    Symantec 10 2008.02.23 -
    TheHacker 6.2.9.227 2008.02.22 -
    VBA32 3.12.6.1 2008.02.21 -
    VirusBuster 4.3.26:9 2008.02.22 -
    Webwasher-Gateway 6.6.2 2008.02.22 -

    Additional information
    File size: 21120 bytes
    MD5: 73c7f648aea393a227c073bddb8c1626
    SHA1: adcc7bbdb8fbea12f0f3e17dc5caec7ad2011d94
    PEiD: -

    I'm afraid I couldn't find the windows.dll file in the system32 folder, there were a lot of .dll files but nothing named windows.
    I'll post again shortly with the Dr.WebCureIt log.
    Thanks Neal.

  7. #27
    mickdundee is offline Newbie
    Here's the Dr. Web report:

    Process.exe;C:\Documents and Settings\Emzie\Desktop\SDFix\apps;Tool.Prockill;In curable.Moved.;
    Process.exe;C:\Documents and Settings\Emzie\Desktop\SmitfraudFix\SmitfraudFix;T ool.Prockill;Incurable.Moved.;
    restart.exe;C:\Documents and Settings\Emzie\Desktop\SmitfraudFix\SmitfraudFix;T ool.ShutDown.11;Incurable.Moved.;
    xrun.exe;C:\Documents and Settings\Emzie\Local Settings\Temp;Trojan.DownLoader.38006;Deleted.;
    GTDownDE_87.ocx;C:\i386;Adware.Gdown;Incurable.Mov ed.;
    3195.exe.vir;C:\QooBox\Quarantine\C\WINDOWS;BackDo or.Generic.1624;Deleted.;
    SHQMANGR.DLL.vir;C:\QooBox\Quarantine\C\WINDOWS\sy stem32;Trojan.MulDrop.origin;Incurable.Moved.;
    A0014626.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP73;Win32.HLLW.Autoruner.1277;Delet ed.;
    A0015033.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP73;Trojan.DownLoader.37491;Cured.;
    A0015033.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP73;Trojan.DownLoader.origin;Incura ble.Moved.;
    A0015041.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP73;Win32.HLLW.Autoruner.1277;Delet ed.;
    A0015063.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP73;Trojan.DownLoader.37491;Cured.;
    A0015118.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP73;Trojan.DownLoader.37491;Cured.;
    A0015222.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Tool.Prockill;Incurable.Moved.;
    A0016280.exe\data001;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74\A0016280.exe;Trojan.DownLoader. 47703;;
    A0016280.exe\data003;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74\A0016280.exe;Trojan.DownLoader. origin;;
    A0016280.exe\data004;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74\A0016280.exe;Trojan.DownLoader. 47566;;
    A0016280.exe\data005;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74\A0016280.exe;Trojan.PWS.Gamania .origin;;
    A0016280.exe\data006;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74\A0016280.exe;Trojan.DownLoader. 39272;;
    A0016280.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Archive contains infected objects;Moved.;
    A0016307.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2699;Deleted. ;
    A0016308.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2699;Deleted. ;
    A0016309.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2699;Deleted. ;
    A0016310.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.3081;Deleted. ;
    A0016311.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.3081;Deleted. ;
    A0016312.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.3081;Deleted. ;
    A0016313.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.3081;Deleted. ;
    A0016314.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.3081;Deleted. ;
    A0016315.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.3081;Deleted. ;
    A0016316.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.3081;Deleted. ;
    A0016325.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2701;Deleted. ;
    A0016326.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2701;Deleted. ;
    A0016353.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.3083;Deleted. ;
    A0016354.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.3083;Deleted. ;
    A0016365.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2744;Deleted. ;
    A0016366.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2744;Deleted. ;
    A0016368.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2672;Deleted. ;
    A0016369.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2672;Deleted. ;
    A0016370.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2672;Deleted. ;
    A0016371.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2672;Deleted. ;
    A0016372.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2672;Deleted. ;
    A0016373.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2672;Deleted. ;
    A0016374.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2389;Deleted. ;
    A0016375.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2389;Deleted. ;
    A0016376.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2620;Deleted. ;
    A0016377.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2694;Deleted. ;
    A0016378.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2694;Deleted. ;
    A0016379.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2694;Deleted. ;
    A0016380.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2694;Deleted. ;
    A0016381.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2694;Deleted. ;
    A0016382.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2714;Deleted. ;
    A0016383.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2714;Deleted. ;
    A0016384.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2714;Deleted. ;
    A0016385.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2714;Deleted. ;
    A0016386.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2714;Deleted. ;
    A0016387.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2714;Deleted. ;
    A0016388.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2674;Deleted. ;
    A0016389.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2674;Deleted. ;
    A0016390.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2693;Deleted. ;
    A0016391.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2693;Deleted. ;
    A0016392.DLL;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Gamania.4389;Deleted .;
    A0016393.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2716;Deleted. ;
    A0016394.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2716;Deleted. ;
    A0016395.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.3085;Deleted. ;
    A0016396.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.3085;Deleted. ;
    A0016397.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2691;Deleted. ;
    A0016398.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.3082;Deleted. ;
    A0016399.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.3082;Deleted. ;
    A0016400.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.3082;Deleted. ;
    A0016401.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.3082;Deleted. ;
    A0016402.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2684;Deleted. ;
    A0016403.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2684;Deleted. ;
    A0016404.DLL;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Gamania.5719;Deleted .;
    A0016405.DLL;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2738;Deleted. ;
    A0016406.DLL;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2740;Deleted. ;
    A0016407.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2793;Deleted. ;
    A0016411.EXE;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2773;Deleted. ;
    A0016412.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2773;Deleted. ;
    A0016413.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2744;Deleted. ;
    A0016416.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2790;Deleted. ;
    A0016417.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2503;Deleted. ;
    A0016418.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2503;Deleted. ;
    A0016419.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2503;Deleted. ;
    A0016422.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Gamania.4218;Deleted .;
    A0016423.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Gamania.4218;Deleted .;
    A0016424.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Gamania.4218;Deleted .;
    A0016425.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Gamania.4218;Deleted .;
    A0016426.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Gamania.4218;Deleted .;
    A0016427.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Gamania.4218;Deleted .;
    A0016428.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2480;Deleted. ;
    A0016429.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2480;Deleted. ;
    A0016431.exE;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2795;Deleted. ;
    A0016432.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2798;Deleted. ;
    A0016434.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.1455;Deleted. ;
    A0016435.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2915;Deleted. ;
    A0016444.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.1452;Deleted. ;
    A0016445.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.1452;Deleted. ;
    A0016446.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.1440;Deleted. ;
    A0016448.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.1440;Deleted. ;
    A0016454.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.1472;Deleted. ;
    A0016455.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.1472;Deleted. ;
    A0016493.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.1453;Deleted. ;
    A0016494.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.1453;Deleted. ;
    A0016498.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.1561;Deleted. ;
    A0016508.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Legmir.2018;Deleted. ;
    A0016509.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Legmir.2018;Deleted. ;
    A0016510.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Legmir.2018;Deleted. ;
    A0016511.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Legmir.2018;Deleted. ;
    A0016512.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Legmir.2018;Deleted. ;
    A0016513.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Legmir.2018;Deleted. ;
    A0016514.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Legmir.2018;Deleted. ;
    A0016515.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Legmir.2018;Deleted. ;
    A0016516.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Legmir.2018;Deleted. ;
    A0016517.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Legmir.2018;Deleted. ;
    A0016518.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Legmir.2018;Deleted. ;
    A0016519.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Legmir.2018;Deleted. ;
    A0016520.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.1457;Deleted. ;
    A0016522.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2504;Deleted. ;
    A0016523.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2504;Deleted. ;
    A0016524.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2504;Deleted. ;
    A0016525.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2504;Deleted. ;
    A0016526.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2504;Deleted. ;
    A0016527.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2502;Deleted. ;
    A0016528.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2478;Deleted. ;
    A0016529.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2478;Deleted. ;
    A0016530.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.3125;Deleted. ;
    A0016531.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Gamania.5719;Deleted .;
    A0016532.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Gamania.5719;Deleted .;
    A0016533.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Gamania.5719;Deleted .;
    A0016534.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Gamania.5719;Deleted .;
    A0016535.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Gamania.5719;Deleted .;
    A0016536.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Gamania.5719;Deleted .;
    A0016537.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Gamania.5719;Deleted .;
    A0016538.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.3126;Deleted. ;
    A0016539.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.3126;Deleted. ;
    A0016540.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2563;Deleted. ;
    A0016541.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2563;Deleted. ;
    A0016542.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2480;Deleted. ;
    A0016543.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2565;Deleted. ;
    A0016544.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.2565;Deleted. ;
    A0016548.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP74;Trojan.PWS.Wsgame.1635;Deleted. ;
    A0016564.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.2807;Deleted. ;
    A0016565.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.2808;Deleted. ;
    A0016566.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.2806;Deleted. ;
    A0016567.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.2802;Deleted. ;
    A0016568.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.2809;Deleted. ;
    A0016569.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.2805;Deleted. ;
    A0016570.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.2807;Deleted. ;
    A0016571.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.2794;Deleted. ;
    A0016572.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.2808;Deleted. ;
    A0016573.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.2794;Deleted. ;
    A0016574.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.2804;Deleted. ;
    A0016575.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.2388;Deleted. ;
    A0016576.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.2388;Deleted. ;
    A0016577.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.origin;Incura ble.Moved.;
    A0016578.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.2605;Deleted. ;
    A0016579.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.2566;Deleted. ;
    A0016580.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.2780;Deleted. ;
    A0016581.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.2605;Deleted. ;
    A0016582.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.2572;Deleted. ;
    A0016583.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.origin;Incura ble.Moved.;
    A0016584.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.origin;Incura ble.Moved.;
    A0016585.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.origin;Incura ble.Moved.;
    A0016586.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.2568;Deleted. ;
    A0016587.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.origin;Incura ble.Moved.;
    A0016588.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.2572;Deleted. ;
    A0016589.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.origin;Incura ble.Moved.;
    A0016590.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.2605;Deleted. ;
    A0016591.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.2572;Deleted. ;
    A0016592.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.2566;Deleted. ;
    A0016593.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.2568;Deleted. ;
    A0016594.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.2388;Deleted. ;
    A0016595.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.origin;Incura ble.Moved.;
    A0016596.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.2568;Deleted. ;
    A0016597.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.origin;Incura ble.Moved.;
    A0016598.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.2568;Deleted. ;
    A0016599.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.2570;Deleted. ;
    A0016600.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.origin;Incura ble.Moved.;
    A0016601.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.origin;Incura ble.Moved.;
    A0016602.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.2562;Deleted. ;
    A0016603.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.2916;Deleted. ;
    A0016604.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.2744;Deleted. ;
    A0016605.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.2553;Deleted. ;
    A0016606.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.origin;Incura ble.Moved.;
    A0016607.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.2568;Deleted. ;
    A0016608.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.2916;Deleted. ;
    A0016609.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.1353;Deleted. ;
    A0016610.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.2388;Deleted. ;
    A0016611.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.2744;Deleted. ;
    A0016612.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.2566;Deleted. ;
    A0016613.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.2568;Deleted. ;
    A0016614.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.origin;Incura ble.Moved.;
    A0016615.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.origin;Incura ble.Moved.;
    A0016616.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.origin;Incura ble.Moved.;
    A0016617.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.2553;Deleted. ;
    A0016618.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.2568;Deleted. ;
    A0016619.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.1353;Deleted. ;
    A0016620.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.2562;Deleted. ;
    A0016621.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.2572;Deleted. ;
    A0016622.dll;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP75;Trojan.PWS.Wsgame.2553;Deleted. ;
    A0016700.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP77;Trojan.DownLoader.37491;Cured.;
    A0016715.bat;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP77;Probably BATCH.Virus;Incurable.Moved.;
    A0016754.DLL;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP78;Trojan.Popwin.origin;Incurable. Moved.;
    A0016758.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP78;Trojan.PWS.Wsgame.2605;Deleted. ;
    A0016763.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP78;Trojan.PWS.Wsgame.2605;Deleted. ;
    A0016765.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP78;Trojan.PWS.Wsgame.2605;Deleted. ;
    A0016766.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP78;Trojan.PWS.Wsgame.2571;Deleted. ;
    A0016767.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP78;Trojan.PWS.Wsgame.2571;Deleted. ;
    A0016770.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP78;Trojan.PWS.Wsgame.2605;Deleted. ;
    A0016771.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP78;Trojan.PWS.Wsgame.2571;Deleted. ;
    A0016772.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP78;BackDoor.Generic.1624;Deleted.;
    A0016773.DLL;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP78;Trojan.MulDrop.origin;Incurable .Moved.;
    A0016782.bat;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP78;Probably BATCH.Virus;Incurable.Moved.;
    A0017002.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP81;Trojan.DownLoader.37491;Cured.;
    A0017004.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP81;Trojan.DownLoader.37491;Cured.;
    A0017005.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP81;Trojan.DownLoader.37491;Cured.;
    A0017006.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP81;Trojan.DownLoader.37491;Cured.;
    A0017007.exe;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP81;Trojan.DownLoader.37491;Cured.;
    2E414E98.DLL;C:\WINDOWS\system32;Trojan.Popwin;Del eted.;
    38E31F30.EXE;C:\WINDOWS\system32;Trojan.Popwin;Del eted.;
    admin6_ver0111.exe;C:\WINDOWS\system32;BackDoor.Ge neric.1624;Deleted.;
    bsdvqm.dll;C:\WINDOWS\system32;Trojan.PWS.Wsgame.1 642;Deleted.;
    cdegxo.dll;C:\WINDOWS\system32;Trojan.PWS.Wsgame.1 466;Deleted.;
    chwsbo.dll;C:\WINDOWS\system32;Trojan.PWS.Wsgame.1 466;Deleted.;
    deabdf.dll;C:\WINDOWS\system32;Trojan.PWS.Wsgame.1 466;Deleted.;
    djrqxp.dll;C:\WINDOWS\system32;Trojan.PWS.Wsgame.1 466;Deleted.;
    k120052774411.exe;C:\WINDOWS\system32;Trojan.PWS.L egmir;Deleted.;
    lgwsld.dll;C:\WINDOWS\system32;Trojan.PWS.Wsgame.1 642;Deleted.;
    nizsbo.dll;C:\WINDOWS\system32;Trojan.PWS.Wsgame.1 466;Deleted.;
    pfcrca.dll;C:\WINDOWS\system32;Trojan.PWS.Wsgame.1 466;Deleted.;
    Process.exe;C:\WINDOWS\system32;Tool.Prockill;Incu rable.Moved.;
    qediio.dll;C:\WINDOWS\system32;Trojan.PWS.Gamania. 4300;Deleted.;
    rvreqa.dll;C:\WINDOWS\system32;Trojan.PWS.Wsgame.1 642;Deleted.;
    s173.exe;C:\WINDOWS\system32;Trojan.DownLoader.475 86;Deleted.;
    uhvtlp.dll;C:\WINDOWS\system32;Trojan.PWS.Wsgame.1 466;Deleted.;
    ukhcuw.dll;C:\WINDOWS\system32;Trojan.PWS.Gamania. 4300;Deleted.;
    ymzqkt.dll;C:\WINDOWS\system32;Trojan.PWS.Gamania. 4300;Deleted.;

    There were no files in the list with the icon you mentioned next to them.

    HiJackthis log:

    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 12:20:23, on 23/02/2008
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v7.00 (7.00.6000.16608)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\ZoneLabs\vsmon.exe
    C:\Program Files\Intel\Wireless\Bin\ZcfgSvc.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    C:\Program Files\Alwil Software\Avast4\ashServ.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
    C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
    C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
    C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
    C:\WINDOWS\system32\hkcmd.exe
    C:\WINDOWS\system32\igfxpers.exe
    C:\WINDOWS\stsystra.exe
    C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe
    C:\WINDOWS\system32\dla\tfswctrl.exe
    C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
    C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\WINDOWS\system32\igfxsrvc.exe
    C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\WINDOWS\system32\wuauclt.exe
    C:\Program Files\Microsoft Office\OFFICE11\EXCEL.EXE
    C:\Program Files\HijackThis\HijackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.co.uk/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = https://loginnet.passport.com/ppsecu...th.srf?lc=1033
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
    O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
    O2 - BHO: ZoneAlarm Spy Blocker BHO - {F0D4B231-DA4B-4daf-81E4-DFEE4931A4AA} - C:\Program Files\ZoneAlarmSB\bar\1.bin\SPYBLOCK.DLL
    O3 - Toolbar: McAfee VirusScan - {BA52B914-B692-46c4-B683-905236F6F655} - c:\progra~1\mcafee.com\vso\mcvsshl.dll
    O3 - Toolbar: ZoneAlarm Spy Blocker - {F0D4B239-DA4B-4daf-81E4-DFEE4931A4AA} - C:\Program Files\ZoneAlarmSB\bar\1.bin\SPYBLOCK.DLL
    O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
    O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
    O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
    O4 - HKLM\..\Run: [SigmatelSysTrayApp] stsystra.exe
    O4 - HKLM\..\Run: [AOL Spyware Protection] "C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe"
    O4 - HKLM\..\Run: [VSOCheckTask] "c:\PROGRA~1\mcafee.com\vso\mcmnhdlr.exe" /checktask
    O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
    O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
    O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
    O4 - HKLM\..\Run: [VirusScan Online] c:\PROGRA~1\mcafee.com\vso\mcvsshld.exe
    O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [updateMgr] C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_0_5 -reboot 1
    O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
    O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
    O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
    O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/reso...an8/oscan8.cab
    O16 - DPF: {5F8469B4-B055-49DD-83F7-62B522420ECC} (Facebook Photo Uploader Control) - http://upload.facebook.com/controls/...toUploader.cab
    O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/Ms...Downloader.cab
    O20 - AppInit_DLLs: windows.dll
    O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
    O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
    O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
    O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
    O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
    O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
    O23 - Service: McAfee.com McShield (McShield) - Unknown owner - c:\PROGRA~1\mcafee.com\vso\mcshield.exe (file missing)
    O23 - Service: McAfee.com VirusScan Online Realtime Engine (MCVSRte) - Unknown owner - c:\PROGRA~1\mcafee.com\vso\mcvsrte.exe (file missing)
    O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe

    --
    End of file - 6837 bytes

    I should mention that Microsoft phishing filter reckoned this (D-A-L.com) was a suspicious website when I attempted to post a reply - first time it's done this. Has it lost the plot, or does this just happen from time to time?

  8. #28
    Neal is offline Dedicated Member
    Other then the false phishing thing how are things now after Dr. Web?

  9. #29
    mickdundee is offline Newbie
    It seems to be behaving itself, no system crashes or anything similar for a while. I ran avast a couple of times and it still found a few things (I've posted the log below), should these be considered a problem?

    *
    * avast! Report
    * This file is generated automatically
    *
    * Task 'Simple user interface' used
    * Started on 25 February 2008 18:55:39
    * VPS: 080224-0, 24/02/2008
    *

    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\HandyKeylogger.zip\sbRecovery.reg [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\HandyKeylogger.zip\sbRecovery.ini [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\HandyKeylogger1.zip\sbRecovery.re g [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\HandyKeylogger1.zip\sbRecovery.in i [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou.zip\Uninst.exe [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou.zip\sbRecovery.ini [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou1.zip\UPD50.tmp [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou1.zip\sbRecovery.ini [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou10.zip\sbRecovery.reg [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou10.zip\sbRecovery.ini [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou11.zip\sbRecovery.reg [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou11.zip\sbRecovery.ini [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou12.zip\sbRecovery.reg [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou12.zip\sbRecovery.ini [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou13.zip\sbRecovery.reg [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou13.zip\sbRecovery.ini [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou14.zip\sbRecovery.reg [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou14.zip\sbRecovery.ini [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou15.zip\sbRecovery.reg [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou15.zip\sbRecovery.ini [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou16.zip\sbRecovery.reg [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou16.zip\sbRecovery.ini [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou17.zip\sbRecovery.reg [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou17.zip\sbRecovery.ini [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou18.zip\sbRecovery.reg [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou18.zip\sbRecovery.ini [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou19.zip\sbRecovery.reg [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou19.zip\sbRecovery.ini [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou2.zip\sbRecovery.reg [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou2.zip\sbRecovery.ini [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou20.zip\sbRecovery.reg [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou20.zip\sbRecovery.ini [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou21.zip\sbRecovery.reg [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou21.zip\sbRecovery.ini [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou3.zip\sbRecovery.reg [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou3.zip\sbRecovery.ini [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou4.zip\sbRecovery.reg [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou4.zip\sbRecovery.ini [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou5.zip\sbRecovery.reg [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou5.zip\sbRecovery.ini [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou6.zip\sbRecovery.reg [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou6.zip\sbRecovery.ini [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou7.zip\sbRecovery.reg [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou7.zip\sbRecovery.ini [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou8.zip\sbRecovery.reg [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou8.zip\sbRecovery.ini [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou9.zip\sbRecovery.reg [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou9.zip\sbRecovery.ini [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\WinAgentBU.zip\IGM.exe [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\WinAgentBU.zip\sbRecovery.ini [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\WinAgentBU1.zip\sbRecovery.reg [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\WinAgentBU1.zip\sbRecovery.ini [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\WinAgentBU2.zip\sbRecovery.reg [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\WinAgentBU2.zip\sbRecovery.ini [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\WinOnLineGames.zip\WinForm.exE [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\WinOnLineGames.zip\sbRecovery.ini [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\WinOnLineGames1.zip\sbRecovery.re g [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\WinOnLineGames1.zip\sbRecovery.in i [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\WinOnLineGamesbkz.zip\upxdnd.exe [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\WinOnLineGamesbkz.zip\sbRecovery. ini [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\WinOnLineGamesbkz1.zip\sbRecovery .reg [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\WinOnLineGamesbkz1.zip\sbRecovery .ini [E] Archive is password protected. (42056)
    C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP85\A0017490.dll [L] Win32:Trojan-gen {Other} (0)
    File was successfully deleted...
    C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP85\A0017491.dll [L] Win32:Cinmus-D [Adw] (0)
    File was successfully deleted...
    Infected files: 2
    Total files: 131572
    Total folders: 5289
    Total size: 6.8 GB

    *
    * Task stopped: 25 February 2008 22:14:03
    * Run-time was 3 hour(s), 18 minute(s), 24 second(s)
    *

    *
    * avast! Report
    * This file is generated automatically
    *
    * Task 'Simple user interface' used
    * Started on 26 February 2008 16:55:24
    * VPS: 080224-0, 24/02/2008
    *

    Infected files: 0
    Total files: 13815
    Total folders: 92
    Total size: 1.2 GB

    *
    * Task stopped: 26 February 2008 17:01:00
    * Run-time was 5 minute(s), 36 second(s)
    *

    *
    * avast! Report
    * This file is generated automatically
    *
    * Task 'Simple user interface' used
    * Started on 26 February 2008 17:09:11
    * VPS: 080226-0, 26/02/2008
    *

    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\HandyKeylogger.zip\sbRecovery.reg [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\HandyKeylogger.zip\sbRecovery.ini [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\HandyKeylogger1.zip\sbRecovery.re g [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\HandyKeylogger1.zip\sbRecovery.in i [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou.zip\Uninst.exe [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou.zip\sbRecovery.ini [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou1.zip\UPD50.tmp [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou1.zip\sbRecovery.ini [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou10.zip\sbRecovery.reg [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou10.zip\sbRecovery.ini [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou11.zip\sbRecovery.reg [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou11.zip\sbRecovery.ini [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou12.zip\sbRecovery.reg [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou12.zip\sbRecovery.ini [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou13.zip\sbRecovery.reg [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou13.zip\sbRecovery.ini [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou14.zip\sbRecovery.reg [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou14.zip\sbRecovery.ini [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou15.zip\sbRecovery.reg [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou15.zip\sbRecovery.ini [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou16.zip\sbRecovery.reg [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou16.zip\sbRecovery.ini [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou17.zip\sbRecovery.reg [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou17.zip\sbRecovery.ini [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou18.zip\sbRecovery.reg [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou18.zip\sbRecovery.ini [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou19.zip\sbRecovery.reg [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou19.zip\sbRecovery.ini [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou2.zip\sbRecovery.reg [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou2.zip\sbRecovery.ini [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou20.zip\sbRecovery.reg [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou20.zip\sbRecovery.ini [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou21.zip\sbRecovery.reg [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou21.zip\sbRecovery.ini [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou3.zip\sbRecovery.reg [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou3.zip\sbRecovery.ini [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou4.zip\sbRecovery.reg [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou4.zip\sbRecovery.ini [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou5.zip\sbRecovery.reg [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou5.zip\sbRecovery.ini [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou6.zip\sbRecovery.reg [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou6.zip\sbRecovery.ini [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou7.zip\sbRecovery.reg [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou7.zip\sbRecovery.ini [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou8.zip\sbRecovery.reg [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou8.zip\sbRecovery.ini [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou9.zip\sbRecovery.reg [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Sogou9.zip\sbRecovery.ini [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\WinAgentBU.zip\IGM.exe [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\WinAgentBU.zip\sbRecovery.ini [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\WinAgentBU1.zip\sbRecovery.reg [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\WinAgentBU1.zip\sbRecovery.ini [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\WinAgentBU2.zip\sbRecovery.reg [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\WinAgentBU2.zip\sbRecovery.ini [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\WinOnLineGames.zip\WinForm.exE [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\WinOnLineGames.zip\sbRecovery.ini [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\WinOnLineGames1.zip\sbRecovery.re g [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\WinOnLineGames1.zip\sbRecovery.in i [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\WinOnLineGamesbkz.zip\upxdnd.exe [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\WinOnLineGamesbkz.zip\sbRecovery. ini [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\WinOnLineGamesbkz1.zip\sbRecovery .reg [E] Archive is password protected. (42056)
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\WinOnLineGamesbkz1.zip\sbRecovery .ini [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{0181CF6C-A019-4510-B31C-1C9855D446A0} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{0357CE50-B97E-4B92-9350-D21C24D4D0F0} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{035A3360-AD56-455C-AC16-90889A788B0C} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{04631153-5012-4AE0-8EE8-58F5D13E1D37} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{04D63CD4-D137-4520-BBCC-00682702E544} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{058F060E-562A-4C32-9649-FD14531EDFA3} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{06D29ECE-1283-4254-8050-E3E6C1B54ED1} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{0748AF67-B369-49B4-ACEE-7A528DED0305} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{0788715F-ED9F-498E-BDFE-634C2946EDA0} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{088DF228-CB6B-42F8-BA9A-1091F4E225CC} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{09769AA9-E00B-4184-9815-08DBEC8E2805} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{09A32A70-C051-4891-9DAC-F51295868653} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{0A384693-6032-4473-B607-34C7EFE7BA40} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{0AAA6193-FE6C-45DE-B2FC-B138A99553B1} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{0BAEB59B-316D-4C15-B7B8-338B313D2E0D} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{0BFF5B3A-3B91-4D49-9959-D4EDBAA51F06} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{0C81D3F8-1068-4ED3-BE79-C446E8A7E58D} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{0CECEE35-1832-4DAA-B830-3B5DB94FE839} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{0ED02D9A-F410-4CD2-B528-9C70200DC95C} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{0F6A1EB5-3CF6-47EE-916A-CD98AE32FBF9} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{10D06F55-1864-4DB5-A112-956FBC1CF8BB} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{113493DB-3410-4F4E-98A9-835509746A86} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{1157700B-A316-45E4-B33B-7520816A321E} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{11745FA6-736C-49A4-9BA9-4BCA9BBED7BE} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{122B203D-7ABF-4A26-BC97-D836AACD97DE} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{12FC40C1-476C-40BB-9892-42CDAE370715} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{1393C38D-D153-4670-BECE-B6B79853F287} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{13A1FFC9-4212-489F-9520-E4851D23966C} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{13DD2AFA-69B7-44C2-B1E6-DD74F1A55E85} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{13F36742-4DE8-497A-B5D9-C6E1D95B1B19} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{15822672-E732-4F67-B9A8-D07B6582205A} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{17B3A2B7-03D2-4786-8CE1-981E8C349760} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{1813F1A1-29E1-4B9D-BE80-1957F0878B57} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{18F9C276-D58F-4306-B770-2C161487FAE4} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{194BC568-E0C1-4D06-8779-7FA55A4C544E} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{1AD36F01-5051-4A83-A480-E6EBBF6B2D4A} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{1AE03B8A-7E2E-4236-93ED-299736E6D848} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{1B1C44DC-2B26-4BCA-A9AA-DE2BE256FA57} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{1C0CF45D-3137-4166-8637-066A84DB16BA} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{1D03C7CF-0405-472D-9C90-4AB055E7C44D} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{1D458CC4-0BBF-4298-B6FF-AF43B30DE240} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{1DCD0E3C-D8AB-498D-9DE1-CB2439EA95CF} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{1E64007D-EB15-4C6E-B1B3-FFD5ADF9EEAA} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{1FF12F00-8B2F-497D-ACD8-85201203390E} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{217C140D-8C92-41C3-9E62-A204FB697FD5} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{21D114C9-18EC-4F71-8E0C-C2FD2DD82B1C} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{22EFBE17-5573-43FF-BDA7-4046ACC94BC4} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{235BB261-7697-45CF-816F-33EDD7EADC8A} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{24262409-227B-4B5E-8CF0-197601DDA20E} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{24E97099-6212-46F3-BA1A-27B8B12ACE6A} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{2532643F-C8E9-44E7-B2B7-B3F8E20B147D} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{25515A91-E3AA-4641-95B5-54438BE30FBE} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{273CC6E9-9F29-4D8D-BECE-90463867B4BC} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{27FFD1DB-6CAB-4FA2-B0D1-9C01EB35505E} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{2950F029-641A-4662-AB5C-A986CE512608} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{295AE11B-6B53-4651-B111-6AC1F6458E38} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{2AABA848-5018-4F11-89BC-FB5FF113E552} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{2C169E9E-C0A7-4B2D-B81D-D6CEE331240B} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{2D58948F-9904-454D-A3DC-949B95DB5D19} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{2DDBB945-2E36-472A-AA7A-FDC6BF075788} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{2F94673A-C684-44BD-8296-B610C542CCCF} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{309B0043-0B11-436B-92F4-EC9B879203F8} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{30D83B9E-98AA-43CC-9DA0-F7BDCD47FD5E} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{31972375-24A8-4FDB-9244-FBE08F5DB05D} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{3467DE3C-8D0F-44F9-9EBD-03D1231C3573} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{347FF047-FFE2-49B6-8559-89BFCE647899} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{355351F7-E3DF-49EA-BFFB-C5BF8BB2FA31} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{36E5A42E-5092-4106-9901-4C2C65F26196} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{37748E2F-12FB-41F8-BC97-B6F0C952331A} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{398820B9-8594-487C-A75B-B21F9F28E836} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{39F20A33-9078-466D-9BB4-B6655CFA6CB6} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{3B96F9A8-7687-48EF-8245-07B862DE875B} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{3C799AC0-289D-4B44-8396-878324C2EA6B} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{3CACF75B-A8D7-4D58-A97F-CE4122F7ED0A} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{3D29D4ED-9EE5-4BF1-A982-A5F19E9321D5} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{3F5B4F75-2E25-494C-8425-4E9F819AAD96} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{41805D77-6F0C-4290-B42D-8130124A3E5A} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{41A1095A-0EED-4777-8FD5-08227EE980A3} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{4274D47A-4F29-4A87-B416-34331BCB608E} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{44DD82D3-1657-4FC8-8075-D03959F2CACE} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{454A3F40-A9C4-4319-BA2E-B07F5086D47C} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{45D2A3A1-CD0A-4C8D-8CC5-2A246461DA82} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{45D5134B-6A77-40E3-94B7-CA2AA5DF30F0} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{465F8D27-1D01-499A-87B8-6A9713BFFB79} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{46FAB9EE-D73B-4EC2-B97E-BB63A61461D1} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{471D5B0C-FD06-4473-9A55-07F753DECF98} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{4BC52D56-0DC5-483E-A325-975775030CDC} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{4BD6CAFB-8B47-4A13-B3AF-3049CC52CDF9} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{4DCB28AA-FF77-4098-9FF1-5F57305AF5CC} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{4E242B9B-102A-480A-9E00-45243E80C7CF} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{4F7B3FDC-3F25-4861-91DD-4233AAE695A0} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{5000BC36-28E5-4F06-977A-B92BCC7D0B77} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{50B05255-69CB-4CE9-A414-24BEFF963462} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{51454A2B-830E-4A32-B75C-B0D2FD5B3DCA} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{518C5F0C-FA4F-43E6-B0AB-252D96EEC3AC} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{51C862F0-C3EC-47A6-8E6F-BD117B31FA5A} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{522059D8-8E42-42F6-9EC5-B4BE30FDC2C7} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{528E7E9F-586F-4D5D-BB53-1D44A03BACD1} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{530217A9-2B02-43BC-8000-A9C568C962DC} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{56151111-AE81-4EDF-9832-B8232BD14E12} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{5638861D-E83D-4591-953E-ADBCC6C111AB} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{5640044A-B0D0-40B4-B6E2-7A1413B02AB3} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{56C2BEE3-1340-485E-B555-9E6D9709D7CB} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{570E6B8D-3F2B-4E23-A8F2-0654A405BAEF} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{5A3E596E-A136-4B64-842B-1A00A860DFAA} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{5AB6F0C9-078A-4E68-A1D8-85F035D67D2E} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{5AC45FEB-3DB3-436F-9C10-1FE1350ED624} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{5B297B59-80A3-48F5-9443-9AD7C359D4D2} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{5BA038D3-5068-4560-B5B3-F6B2BDC594B1} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{5D684814-B7E5-4BBE-942E-7A6D6062E01D} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{5E68B7EB-DDB0-41F9-9069-F7CA9582540C} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{5EF3DFF1-F86C-429A-92C1-7694058B2700} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{5FA52085-29AB-4C3B-B99F-FA51DE49B4F4} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{601A0BE4-AA88-4A14-AB3D-F19BC8E9917B} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{607136E8-AFD6-4AA7-8744-3338F0A9655A} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{613AD19F-58E3-4A69-9B92-F8D0F6B04F49} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{626BD110-EAD6-4BC7-8610-A3A1B92A24AE} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{63E454B1-10F7-4CDF-BA30-780A92E7F22F} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{65EC14F3-9E57-42DF-A761-D2C247518822} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{676D7EF6-17C0-4D45-A440-1384EA6FF8F8} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{67C5176D-37C6-49DD-9987-01C3CCB221E3} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{685FEB8F-4EF9-4DBF-B4D6-ACE39382A5C8} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{68B8D036-7045-46FE-BB00-E63DF0157BD2} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{68F0C46D-304C-4D15-93A7-F148DBC7A78B} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{69668E6E-470E-42D9-AC24-D755D5A53B31} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{6A0E52D4-610F-4AAA-BBAF-0D924DF03309} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{6A238364-D29C-4B96-BADA-FCD33BDEFACA} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{6CBC62F2-EF34-4392-B886-D6D23183C32C} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{6D4F2635-7CDB-4C90-8836-FCC94C7E432F} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{6D934CFB-47A7-4582-B7A5-4BD277AAA305} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{6DAB4034-ADDD-4350-B2BF-77E7689DF428} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{6E80BA76-A85D-4963-85A9-75ED7326A930} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{6F519249-7C33-4F1B-A84A-4E73F4435B30} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{71789BC4-19CA-40B7-81B6-346084FA52CC} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{72807266-7410-4718-BFD6-852825AED7C4} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{72C3F00E-62AA-48D1-9F81-CA228A1822F8} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{75D8F12B-5470-4C70-951A-D4A0C902639D} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{76909267-C9AF-4A80-8D2E-FEBA7514E345} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{76A402F5-A0AF-441A-A26F-2486E834130C} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{76BA8FE8-7627-46F7-999E-3C07B182212C} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{782B2B3E-1888-4691-AD80-5BEDAC351DF9} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{79FCDF44-8E8C-40CD-A5FD-65725AF1202B} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{7BCEB534-72BB-4A41-AD27-F5186BD783FE} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{7C866EDC-C413-4A07-A6D2-26FB5C289C0E} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{7DD9A065-1F82-401A-8967-5F78E906F929} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{7DE58D42-7E30-4F76-9B1F-E6373E839D82} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{7EB0FFE9-DBEF-4E15-B75D-FC763BB2E40C} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{7FD0675A-B719-41AB-A79C-83F9F9DF4356} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{83A2C621-8100-458A-81ED-DD6C4719E6FE} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{83D3940C-9C5F-48D2-AE5B-2373CF10FAB8} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{878EF917-504F-41CC-84C8-D54BE01BBF06} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{87DF3008-C519-4A37-90B6-8C76F879C477} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{88062CB5-7A33-4E21-BA76-DCF68B957AFE} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{88936C0F-BD6D-4CF7-A396-D622F7C34682} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{8931E7C3-E378-4E0E-BE23-663F30126B68} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{89550718-BEA4-43D9-BD41-818BE8246AF8} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{8A0E2DB3-38C8-4E37-802A-F86C54263166} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{8B9D150D-18D9-4562-968A-F52F9D9D847B} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{8BE93690-6DB4-4DC7-BDC5-5ED386168498} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{8C4EFAB2-353F-49FB-9FCF-50E664552BDD} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{8CBB47EE-F16A-4704-8872-44ECDAA1ED88} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{8D380E44-99D1-47B0-8C61-1B609E36D5CD} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{8E4D925B-3303-44F2-BD9E-960658923E74} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{8EBD90FC-DA32-43B6-8D54-61F1DE370087} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{8F03D275-2383-4884-BC82-7FAF8FC12C46} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{8F3D5E82-C7C6-4253-971F-7C93044F94EB} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{905C4ADE-70F4-4FEF-92B8-B18BBE180644} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{9139C97E-1557-47E3-8D89-75BA031AC365} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{91C7CAA6-B9C6-4EDB-9624-D264380965D4} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{93A3177E-7B4F-4C2C-9E83-96F2045C9D16} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{95189DC4-FBA9-425B-BFAC-1330888F5E91} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{95EC2686-1DA1-44F6-AEFF-E277AB14B7EE} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{974ED603-ACC9-48D3-A587-A3CF809E74EA} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{975C63B5-76DA-41F3-9BAF-AF3B3BF66D2C} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{9BCC5766-3F88-49D5-B5C5-DF81D5674BBA} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{9E4343D4-D69E-4FF5-939B-ED387060F788} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{A067CCA9-BBF8-46B0-86E6-4141690BBEE4} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{A0D9B280-91DD-46A7-B280-CDD4F3B4F7C5} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{A165C7F6-3394-4A33-B941-6F4A8945DDCF} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{A16EA161-B4D3-47DA-8ECA-77AFEA88D0D5} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{A60779F2-19DE-4469-94A7-AFADD419C751} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{A673CF22-98CD-4791-AC28-5BF7364B82E9} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{A68B089A-AC1D-4B80-B5B6-AD7D9FB32769} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{A79E27FD-B2BC-4E5D-B8DA-1E90145E183A} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{A83E1223-BB85-4130-9280-E71A692CC32D} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{A8FB247A-E3DD-47E0-932E-0266B7DD7851} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{AA05AF46-C47F-4C0F-A184-BDB34CB77728} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{AAB4B907-F1A7-4D34-BDA0-4DCE0DCD4A66} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{AC993597-66B7-4C22-9DDC-0AC838CE0A76} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{ACFA45DF-41CD-44C7-9860-50ABC2ECB30C} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{AF511A3C-224A-423E-AE59-088AE7C74B1D} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{AFB0192F-0F21-4EBA-852C-39F3AD5D84B6} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{B0533A01-0E02-472E-ABFA-CC8D03CC4725} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{B191BA98-76C0-436E-B4E0-4F5B67DAA4B8} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{B220F48E-68F5-4E7E-A20E-CF482EEE6476} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{B2E8756F-601D-4947-A058-59A2304B9EDE} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{B3E24471-124F-40AE-8A49-B5731DB4CD99} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{B552A4D4-BA3D-45F1-92F2-C119F9565506} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{B6482270-5825-42AE-9826-14D94B6ADF39} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{B675E3BD-CFB0-4D0B-BD81-B0DA2F8CE971} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{B733B513-BEAE-42C4-AD98-B4B3BAE553BB} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{B8E9E4F8-3B99-4E4E-95A3-E89CEA7982D4} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{B9D4212C-CFD5-4656-A4C4-0D30C58F9538} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{B9D9AAC0-50CB-4A10-B363-1778216FCA08} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{BA6DFFAE-5042-4C2D-A264-4062F12D257C} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{BDD4FAA9-3952-4966-9253-B0E789363A24} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{BDD9B2B7-0C34-4AF3-91C6-A2F2DAED2BB3} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{BF9FD39D-7EDD-40C4-B02D-2A1081F25F00} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{C1433D84-EA5F-462C-9BC1-8DECCED2DF14} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{C185FE5B-A985-4AEF-BA0A-E677FED561C9} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{C1C23A80-1F4D-4818-9993-2A046E44AA13} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{C54BF675-3948-4776-9284-C912E0441C37} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{C68860B3-B34E-406C-923A-34ADEE8C1B00} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{C6CDFF94-047E-46D9-B6D9-CFA867D92061} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{C73A9025-9903-42B5-9F5D-AAAE69AE9184} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{C7A1D3AE-F3F8-4A3C-A734-45FF182F9BF4} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{C81A1175-FD10-4000-893F-D81001C9867D} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{C9F7B59C-4CA4-407A-9FD2-D05FA7C74401} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{CABB38A7-6E66-4A67-B4D9-DB5DBB79BEFD} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{CB6665D2-B68C-4211-9DDC-672B39448227} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{CC25D893-9D71-4AF9-9CE4-C47F725DB126} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{CC6D451F-7A9F-4682-9C11-81F699D40997} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{CC759297-25E3-4B84-AB5E-569AED77FD0D} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{CE35605B-9494-4CD1-9867-DC78BCBE832D} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{CFBBF875-3647-4466-9139-363A2D524777} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{CFBC572D-C814-4FFA-B0F7-BECA3A7F0DF6} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{D05297AB-E5A0-4B58-85AE-1097A0DE4EF3} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{D06B8CC1-7BA7-4BD2-96AA-7FD165DC6E23} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{D0B2EE3A-C60D-4CEF-BDD8-01CC7793F0C4} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{D0B392B4-3BF2-4792-9E28-59E0935E4F16} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{D0C9B07F-2816-4F93-B35F-DBCCA7F3A283} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{D151EE79-6B62-431C-9173-A3ED501B2195} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{D1574627-EAA3-4311-86DC-0DB589E9C655} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{D2720BFB-6D48-4055-9969-6ACAE96E2B59} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{D3AD08A0-2126-4F79-9987-E12C7E853815} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{D5EBB733-CE6F-4D78-8FC4-7CA1C69DEBB4} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{D9569AAA-EF27-4D6E-84C3-28B0E6C79E5F} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{DA294AAD-DA88-4E2C-91CB-5E73D768C892} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{DB69F0C6-E64E-475E-A1D1-A6FF13C5FB00} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{DBB5C099-B57F-4E95-A9A2-062EACB28C54} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{DC94C3A3-F8CD-4AA4-BC78-0E5BD1AE532B} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{DD83BE8E-0BAB-4517-8CB9-6BD4CF7A0569} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{DDE49594-DFFA-4D35-BDDD-52C804DA5291} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{DE9F5D14-DBA3-4A65-99CD-E078860B4F8A} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{E2B45467-1F85-426F-AC78-B3C2E5C34D02} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{E3B91534-7ED8-4234-A832-A7C699BD3322} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{E3BF82DA-3C1C-4012-8B0F-7E13B858A729} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{E444577B-2B0F-4C48-9048-D9A53F0AC6E6} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{E465E3B4-2B34-4EE8-A7EE-3D4A95ED296C} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{E6FA81C1-F0EF-4E5D-A3B5-9A793ED2917B} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{E7E33B5F-3049-4C9E-8DE5-1C9BF8A7FD8D} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{E90F1222-35AA-4671-B1A1-60A8A691F277} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{EDD0868F-A2EC-47B4-9B13-7D31068B07FE} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{EF171D5C-AA8F-4145-8AAA-21548661BD30} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{F05B9A9B-4DDF-4DF6-AC94-1FC00BEEECA3} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{F1BC8A1D-411E-47B4-A8EC-1BBE7EF80236} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{F25ADCF3-B712-4084-8403-84F6937B2F4B} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{F5636B64-F0BA-4EF6-A426-290DBED970F5} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{F859D4A2-586D-4008-8A27-FE24D3E7D95E} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{FA07B3B4-6D5C-46ED-81CE-6B6BF7503376} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{FABF3D12-0AA0-45AF-BB50-B78575B86F33} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{FD3DDEAA-CE4F-4757-AE66-09E283C72878} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{FD8A38BE-3278-4BFF-9507-2D3AA12656A4} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{FD8F1E58-5DD9-4812-8642-28B7ADBC0235} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{FE478761-21B8-4437-8B8B-51563C3CDBFB} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\{FEBA46C3-AE07-4223-A4E1-848E2732DD77} [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarant ine\Quarantine - 02-10-2008 - 23-54-50.SBU\backup.db [E] Archive is password protected. (42056)
    C:\Documents and Settings\Emzie\DoctorWeb\Quarantine\A0016280.exe\[Embedded#07ff0]\[UPX] [L] Win32elf-GAM (0)
    C:\Documents and Settings\Emzie\DoctorWeb\Quarantine\A0016280.exe\[Embedded#1edf0]\[Embedded#0c80]\[Upack]\[Embedded#04150]\[Upack] [L] Win32:OnLineGames-AUY [Trj] (0)
    C:\Documents and Settings\Emzie\DoctorWeb\Quarantine\A0016280.exe\[Embedded#255f0] [L] Win32:Trojan-gen {Other} (0)
    File was successfully deleted...
    During the file delete, error occurred: File is not packed.
    During the file delete, error occurred: File is not packed.
    C:\Program Files\McAfee.com\Agent\Uninst\screm.ui\agntcons.vb s [E] Archive is password protected. (42056)
    C:\Program Files\McAfee.com\Agent\Uninst\screm.ui\agntlang.vb s [E] Archive is password protected. (42056)
    C:\Program Files\McAfee.com\Agent\Uninst\screm.ui\comctl.lpk [E] Archive is password protected. (42056)
    C:\Program Files\McAfee.com\Agent\Uninst\screm.ui\config.ini [E] Archive is password protected. (42056)
    C:\Program Files\McAfee.com\Agent\Uninst\screm.ui\pbar.vbs [E] Archive is password protected. (42056)
    C:\Program Files\McAfee.com\Agent\Uninst\screm.ui\UnInsStr.vb s [E] Archive is password protected. (42056)
    C:\Program Files\McAfee.com\Agent\Uninst\screm.ui\uninst.vbs [E] Archive is password protected. (42056)
    C:\Program Files\McAfee.com\Agent\Uninst\screm.ui\uninstall.h tm [E] Archive is password protected. (42056)
    C:\QooBox\Quarantine\C\WINDOWS\system32\drivers\ac pidisk.sys.vir [L] Win32:Cinmus-J [Rtk] (0)
    File was successfully deleted...
    C:\QooBox\Quarantine\C\WINDOWS\system32\k119810971 56.exe.vir [L] Win32:Trojan-gen {Other} (0)
    File was successfully deleted...
    C:\QooBox\Quarantine\C\WINDOWS\system32\k119810971 66.exe.vir [L] Win32:Trojan-gen {Other} (0)
    File was successfully deleted...
    C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP78\A0016779.exe\327882R2FWJFW\catc hme.cfexe [E] RAR archive is corrupted. (42126)
    C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP84\A0017399.EXE\[Upack]\[Embedded#08010] [L] Win32:OnLineGames-BQR [Trj] (0)
    File was successfully deleted...
    C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP84\A0017406.exe\[Upack]\[Embedded#J999666] [L] Win32:Lmir-OK [Trj] (0)
    File was successfully deleted...
    C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP85\A0017541.exe\[Embedded#07ff0]\[UPX] [L] Win32elf-GAM (0)
    C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP85\A0017541.exe\[Embedded#1edf0]\[Embedded#0c80]\[Upack]\[Embedded#04150]\[Upack] [L] Win32:OnLineGames-AUY [Trj] (0)
    C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP85\A0017541.exe\[Embedded#255f0] [L] Win32:Trojan-gen {Other} (0)
    File was successfully deleted...
    During the file delete, error occurred: File is not packed.
    During the file delete, error occurred: File is not packed.
    Infected files: 11
    Total files: 683872
    Total folders: 5291
    Total size: 29.5 GB

    *
    * Task stopped: 26 February 2008 18:45:55
    * Run-time was 1 hour(s), 36 minute(s), 44 second(s)
    *


    Do you still think it would be a good idea to reformat, just to make sure it's safe for things such as internet banking (as you suggested in your orginal post)? She's already said she's not too fussed about losing most of the stuff on there in the case of a reformat, as long as all her photos could be safely removed without any chance of spreading the virus to the computer they'll be transferred to.

    Thanks for all the great help and advice so far Neal

  10. #30
    Neal is offline Dedicated Member
    Save 20% on AVG Internet Security 2012 Suite!
    If she wants to reformat it wouldn't hurt my feelings due to the amount of infections on the PC.

    You can uninstall super antispyware or delete everything in quarantine.

    Recovery from spy bot can be deleted also.

    Doing the above should help slow down avast from finding so much stuff.

    If it was me I would reformat, that is the only true way to make sure all is clean if online banking is going to be done.

+ Reply to Thread
Page 3 of 3 FirstFirst 1 2 3