ralphygarfield
Thread Starter
- Joined
- May 23, 2008
- Messages
- 93
It looks like I have some kind of vicious-circle of a virus problem. Seems they keep replicating themselves after I delete them. What's funny is that I'm not actually noticing any problems with my computer.
I don't really have a clue where I keep getting these from. Some are from Key-Gens, although I don't make any revisions to these files, yet it keeps detecting new ones each time!! What's interesting is that I have another computer which I do all the same type of things from, and after a month of owning it, it has not had one virus that I know of.
Please, Please take a look at the logs and let me know what could be happening and how to fix it!
Here are all my Avast logs ever since this latest install of Windows XP:
06/02/2008 20:45
Scan of all local drives
File C:\Documents and Settings\Admin\Desktop\Unused Desktop Items\AMV_Convert_400.zip\MP3 Player Utilities 4.00\MSI.CAB\_6227252443C841BF9FFDFF29A9856421 is infected by Win32
eleter [Tool], Deleted
File C:\Documents and Settings\Admin\Desktop\Unused Desktop Items\AMV_Convert_400.zip\MP3 Player Utilities 4.00\MSI.CAB\_D0894C466A324CC8A6726E1FE41CBFB7 is infected by Win32:Trojan-gen {Other}, Deleted
File C:\Documents and Settings\Admin\Desktop\Unused Desktop Items\AMV_Convert_400.zip\MP3 Player Utilities 4.00\SETUP.EXE is infected by Win32
eleter [Tool], Deleted
File C:\Documents and Settings\Admin\Desktop\Unused Desktop Items\keys for programs\R-Studio 4 Net Keygen\keygen.exe is infected by Win32:Trojan-gen {Other}, Deleted
File C:\Program Files\MP3 Player Utilities 4.00\DelDrv.exe is infected by Win32
eleter [Tool], Deleted
File C:\Program Files\MP3 Player Utilities 4.00\MediaManager\net.dll is infected by Win32:Trojan-gen {Other}, Deleted
File C:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP46\A0020712.exe is infected by Win32:Trojan-gen {Other}, Deleted
File C:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP46\A0020713.exe is infected by Win32
eleter [Tool], Deleted
File C:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP46\A0020714.dll is infected by Win32:Trojan-gen {Other}, Deleted
Number of searched folders: 5596
Number of tested files: 346617
Number of infected files: 9
----------------------------------------
06/19/2008 20:26
Scan of all local drives
File C:\Documents and Settings\Admin\Desktop\Unused Desktop Items\AMV_Convert_400.zip\MP3 Player Utilities 4.00\MSI.CAB Error 42125 {ZIP archive is corrupted.}
Number of searched folders: 6757
Number of tested files: 333914
Number of infected files: 0
----------------------------------------
07/25/2008 17:33
Scan of C:\
Scan of F:\
File C:\Documents and Settings\Admin\Desktop\Unused Desktop Items\AMV_Convert_400.zip\MP3 Player Utilities 4.00\MSI.CAB Error 42125 {ZIP archive is corrupted.}
File C:\Documents and Settings\Admin\Desktop\Unused Desktop Items\keys for programs\DDVDFabPlat3200Reg.ICU\All.Fengtao.Software.Universal.Patch.1.01-ICU\All.Fengtao.Software.Universal.Patch.1.01-ICU.exe is infected by Win32:Trojan-gen {Other}, Deleted
File C:\Documents and Settings\Admin\Local Settings\Temporary Internet Files\Content.IE5\Y1ELSNKZ\favicon1[1].ico is infected by Win32:Zlob-CGW [Trj], Deleted
File C:\Documents and Settings\Secondary Admin\Local Settings\Application Data\Mozilla\Firefox\Profiles\b4pdvwqx.default\Cache\BC436E78d01 is infected by Win32:Spyware-gen [Trj], Deleted
File C:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP99\A0027906.exe is infected by Win32:Trojan-gen {Other}, Deleted
Number of searched folders: 21116
Number of tested files: 678921
Number of infected files: 4
----------------------------------------
08/07/2008 04:25
Scan of C:\
Scan of G:\
File C:\$RECYCLE.BIN\S-1-5-21-2958512360-3919329639-593960396-1000\$RQ8GU3L\keygen.exe is infected by Win32:Trojan-gen {Other}, Deleted
File C:\Documents and Settings\Admin\Desktop\Unused Desktop Items\AMV_Convert_400.zip\MP3 Player Utilities 4.00\MSI.CAB Error 42125 {ZIP archive is corrupted.}
File C:\Program Files\NeoSmart Technologies\EasyBCD\TweakVI Setup.exe\tweakvi-basic.exe\%AppFolder%\TweakVI.exe Error 42146 {Installer archive is corrupted.}
File C:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP110\A0031439.exe is infected by Win32:Trojan-gen {Other}, Deleted
File G:\found.000\dir0002.chk\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP56\A0021280.exe is infected by Win32:Trojan-gen {Other}, Deleted
File G:\found.000\dir0002.chk\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP56\A0021281.exe is infected by Win32:Trojan-gen {Other}, Deleted
File G:\found.000\dir0002.chk\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP77\A0023966.exe is infected by Win32:Trojan-gen {Other}, Deleted
File G:\found.000\dir0002.chk\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP77\A0023967.exe is infected by Win32:Agent-YIM [Trj], Deleted
File G:\found.000\dir0002.chk\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP77\A0023968.exe is infected by Win32:Agent-YIM [Trj], Deleted
File G:\found.000\dir0002.chk\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP77\A0023970.exe is infected by Win32:Trojan-gen {Other}, Deleted
File G:\found.000\dir0002.chk\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP99\A0027832.exe is infected by Win32:Trojan-gen {Other}, Deleted
File G:\Maxtor backup\PAL\C\Documents and Settings\Admin\Desktop\Unused Desktop Items\AMV_Convert_400.zip\MP3 Player Utilities 4.00\MSI.CAB Error 42125 {ZIP archive is corrupted.}
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP100\A0030009.exe is infected by Win32:Trojan-gen {Other}, Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP100\A0030198.exe is infected by Win32:Trojan-gen {Other}, Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP100\A0030552.exe is infected by Win32:Trojan-gen {Other}, Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP100\A0030597.exe is infected by Win32:Trojan-gen {Other}, Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP100\A0030728.exe is infected by Win32:Trojan-gen {Other}, Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP104\A0031311.exe is infected by Win32:Trojan-gen {Other}, Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP104\A0031312.exe is infected by Win32:Agent-YIM [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP104\A0031313.exe is infected by Win32:Trojan-gen {Other}, Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP104\A0031314.exe is infected by Win32:Trojan-gen {Other}, Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP110\A0031440.exe is infected by Win32:Trojan-gen {Other}, Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP110\A0031441.exe is infected by Win32:Trojan-gen {Other}, Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP110\A0031442.exe is infected by Win32:Trojan-gen {Other}, Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP110\A0031443.exe is infected by Win32:Agent-YIM [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP110\A0031444.exe is infected by Win32:Agent-YIM [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP110\A0031445.exe is infected by Win32:Trojan-gen {Other}, Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP110\A0031446.exe is infected by Win32:Trojan-gen {Other}, Deleted
File G:\x\Downloads\Drivers, Programs & More\Unused Desktop Items\AMV_Convert_400.zip\MP3 Player Utilities 4.00\MSI.CAB Error 42125 {ZIP archive is corrupted.}
Number of searched folders: 9861
Number of tested files: 1126960
Number of infected files: 25
----------------------------------------
08/09/2008 11:40
Scan of C:\
Scan of G:\
File C:\Program Files\NeoSmart Technologies\EasyBCD\TweakVI Setup.exe\tweakvi-basic.exe\%AppFolder%\TweakVI.exe Error 42146 {Installer archive is corrupted.}
File G:\Maxtor backup\PAL\History\Level2\C\Documents and Settings\Admin\Desktop\Unused Desktop Items\AMV_Convert_400.zip\MP3 Player Utilities 4.00\MSI.CAB Error 42125 {ZIP archive is corrupted.}
Number of searched folders: 9714
Number of tested files: 1078626
Number of infected files: 0
----------------------------------------
09/16/2008 19:23
Scan of C:\
Scan of G:\
File C:\Program Files\NeoSmart Technologies\EasyBCD\TweakVI Setup.exe\tweakvi-basic.exe\%AppFolder%\TweakVI.exe Error 42146 {Installer archive is corrupted.}
File C:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP163\A0040912.exe is infected by Win32:Monga [Trj], Deleted
File C:\WINDOWS\system32\reboot.exe is infected by Win32:Trojan-gen {Other}, Deleted
File G:\System Volume Information\_restore{BF71FC7C-C3ED-41AB-842B-5E69B0FE98F8}\RP22\A0002314.exe is infected by Win32:Monga [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP100\A0030197.exe is infected by Win32:Monga [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP100\A0030551.exe is infected by Win32:Monga [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP100\A0030727.exe is infected by Win32:Monga [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP100\A0030749.exe is infected by Win32
ownloader-BQD [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP100\A0030767.exe is infected by Win32:Agent-ABII [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP110\A0031750.exe is infected by Win32:Monga [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP163\A0040946.exe is infected by Win32:Monga [Trj], Deleted
Number of searched folders: 10448
Number of tested files: 1041979
Number of infected files: 10
----------------------------------------
10/08/2008 21:30
Scan of C:\
Scan of G:\
File C:\Documents and Settings\Admin\Desktop\Unused Desktop Items\keys for programs\BitDefender AntiVirus 2008 Build 11.0.13 Keygen\Keymaker.exe is infected by Win32:VB-KHX [Trj], Deleted
File C:\Documents and Settings\Admin\Desktop\Unused Desktop Items\keys for programs\BitDefender IS 2008 New KeyGen\Keymaker.exe is infected by Win32:VB-KHX [Trj], Deleted
File C:\Documents and Settings\Admin\Desktop\Unused Desktop Items\keys for programs\BitDefender Total Security 2008 Keygen\Keymaker.exe is infected by Win32:VB-KHX [Trj], Deleted
File C:\Documents and Settings\Admin\Desktop\Unused Desktop Items\keys for programs\Helium.Music.Manager_2007.0.0.5630.Crack-NoPE\helium.music.manager.2007.0.0.5630-NoPE.exe is infected by Win32:IRCBot-DIZ [Trj], Deleted
File C:\Documents and Settings\Admin\Desktop\Unused Desktop Items\keys for programs\Registry.Mechanic.v7.0.0.1010.Incl.Keymaker-TSRh\Keygen\KeyGen.exe is infected by Win32:VB-KHW [Trj], Deleted
File C:\Program Files\NeoSmart Technologies\EasyBCD\TweakVI Setup.exe\tweakvi-basic.exe\%AppFolder%\TweakVI.exe Error 42146 {Installer archive is corrupted.}
File C:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP168\A0041090.exe is infected by Win32:Trojan-gen {Other}, Deleted
File C:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP183\A0042468.exe is infected by Win32:VB-KHX [Trj], Deleted
File C:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP183\A0042469.exe is infected by Win32:VB-KHX [Trj], Deleted
File C:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP183\A0042470.exe is infected by Win32:VB-KHX [Trj], Deleted
File C:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP183\A0042471.exe is infected by Win32:IRCBot-DIZ [Trj], Deleted
File C:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP183\A0042472.exe is infected by Win32:VB-KHW [Trj], Deleted
File G:\Maxtor backup\PAL\C\Documents and Settings\Admin\Desktop\Unused Desktop Items\keys for programs\BitDefender AntiVirus 2008 Build 11.0.13 Keygen\Keymaker.exe is infected by Win32:VB-KHX [Trj], Deleted
File G:\Maxtor backup\PAL\C\Documents and Settings\Admin\Desktop\Unused Desktop Items\keys for programs\BitDefender IS 2008 New KeyGen\Keymaker.exe is infected by Win32:VB-KHX [Trj], Deleted
File G:\Maxtor backup\PAL\C\Documents and Settings\Admin\Desktop\Unused Desktop Items\keys for programs\BitDefender Total Security 2008 Keygen\Keymaker.exe is infected by Win32:VB-KHX [Trj], Deleted
File G:\Maxtor backup\PAL\C\Documents and Settings\Admin\Desktop\Unused Desktop Items\keys for programs\Helium.Music.Manager_2007.0.0.5630.Crack-NoPE\helium.music.manager.2007.0.0.5630-NoPE.exe is infected by Win32:IRCBot-DIZ [Trj], Deleted
File G:\Maxtor backup\PAL\C\Documents and Settings\Admin\Desktop\Unused Desktop Items\keys for programs\Registry.Mechanic.v7.0.0.1010.Incl.Keymaker-TSRh\Keygen\KeyGen.exe is infected by Win32:VB-KHW [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP100\A0030162.exe is infected by Win32:VB-KHW [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP100\A0030192.exe is infected by Win32:IRCBot-DIZ [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP100\A0030200.exe is infected by Win32:VB-KHX [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP100\A0030202.exe is infected by Win32:VB-KHX [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP100\A0030204.exe is infected by Win32:VB-KHX [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP100\A0030516.exe is infected by Win32:VB-KHW [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP100\A0030546.exe is infected by Win32:IRCBot-DIZ [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP100\A0030554.exe is infected by Win32:VB-KHX [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP100\A0030556.exe is infected by Win32:VB-KHX [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP100\A0030558.exe is infected by Win32:VB-KHX [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP100\A0030692.exe is infected by Win32:VB-KHW [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP100\A0030722.exe is infected by Win32:IRCBot-DIZ [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP100\A0030730.exe is infected by Win32:VB-KHX [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP100\A0030732.exe is infected by Win32:VB-KHX [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP100\A0030734.exe is infected by Win32:VB-KHX [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP110\A0031742.exe is infected by Win32:VB-KHX [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP110\A0031744.exe is infected by Win32:VB-KHX [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP110\A0031746.exe is infected by Win32:VB-KHX [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP110\A0031753.exe is infected by Win32:IRCBot-DIZ [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP110\A0031784.exe is infected by Win32:VB-KHW [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP183\A0042473.exe is infected by Win32:VB-KHX [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP183\A0042474.exe is infected by Win32:VB-KHX [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP183\A0042475.exe is infected by Win32:VB-KHX [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP183\A0042476.exe is infected by Win32:IRCBot-DIZ [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP183\A0042477.exe is infected by Win32:VB-KHW [Trj], Deleted
File G:/x\Downloads\Drivers, Programs & More\Programs\KEYS\keys for programs\BitDefender AntiVirus 2008 Build 11.0.13 Keygen\Keymaker.exe is infected by Win32:VB-KHX [Trj], Deleted
File G:\x\Downloads\Drivers, Programs & More\Programs\KEYS\keys for programs\BitDefender IS 2008 New KeyGen\Keymaker.exe is infected by Win32:VB-KHX [Trj], Deleted
File G:\x\Downloads\Drivers, Programs & More\Programs\KEYS\keys for programs\BitDefender Total Security 2008 Keygen\Keymaker.exe is infected by Win32:VB-KHX [Trj], Deleted
File G:\x\Downloads\Drivers, Programs & More\Programs\KEYS\keys for programs\Helium.Music.Manager_2007.0.0.5630.Crack-NoPE\helium.music.manager.2007.0.0.5630-NoPE.exe is infected by Win32:IRCBot-DIZ [Trj], Deleted
File G:\x\Downloads\Drivers, Programs & More\Programs\KEYS\keys for programs\Registry.Mechanic.v7.0.0.1010.Incl.Keymaker-TSRh\Keygen\KeyGen.exe is infected by Win32:VB-KHW [Trj], Deleted
Number of searched folders: 10282
Number of tested files: 1038955
Number of infected files: 46
I don't really have a clue where I keep getting these from. Some are from Key-Gens, although I don't make any revisions to these files, yet it keeps detecting new ones each time!! What's interesting is that I have another computer which I do all the same type of things from, and after a month of owning it, it has not had one virus that I know of.
Please, Please take a look at the logs and let me know what could be happening and how to fix it!
Here are all my Avast logs ever since this latest install of Windows XP:
06/02/2008 20:45
Scan of all local drives
File C:\Documents and Settings\Admin\Desktop\Unused Desktop Items\AMV_Convert_400.zip\MP3 Player Utilities 4.00\MSI.CAB\_6227252443C841BF9FFDFF29A9856421 is infected by Win32
File C:\Documents and Settings\Admin\Desktop\Unused Desktop Items\AMV_Convert_400.zip\MP3 Player Utilities 4.00\MSI.CAB\_D0894C466A324CC8A6726E1FE41CBFB7 is infected by Win32:Trojan-gen {Other}, Deleted
File C:\Documents and Settings\Admin\Desktop\Unused Desktop Items\AMV_Convert_400.zip\MP3 Player Utilities 4.00\SETUP.EXE is infected by Win32
File C:\Documents and Settings\Admin\Desktop\Unused Desktop Items\keys for programs\R-Studio 4 Net Keygen\keygen.exe is infected by Win32:Trojan-gen {Other}, Deleted
File C:\Program Files\MP3 Player Utilities 4.00\DelDrv.exe is infected by Win32
File C:\Program Files\MP3 Player Utilities 4.00\MediaManager\net.dll is infected by Win32:Trojan-gen {Other}, Deleted
File C:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP46\A0020712.exe is infected by Win32:Trojan-gen {Other}, Deleted
File C:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP46\A0020713.exe is infected by Win32
File C:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP46\A0020714.dll is infected by Win32:Trojan-gen {Other}, Deleted
Number of searched folders: 5596
Number of tested files: 346617
Number of infected files: 9
----------------------------------------
06/19/2008 20:26
Scan of all local drives
File C:\Documents and Settings\Admin\Desktop\Unused Desktop Items\AMV_Convert_400.zip\MP3 Player Utilities 4.00\MSI.CAB Error 42125 {ZIP archive is corrupted.}
Number of searched folders: 6757
Number of tested files: 333914
Number of infected files: 0
----------------------------------------
07/25/2008 17:33
Scan of C:\
Scan of F:\
File C:\Documents and Settings\Admin\Desktop\Unused Desktop Items\AMV_Convert_400.zip\MP3 Player Utilities 4.00\MSI.CAB Error 42125 {ZIP archive is corrupted.}
File C:\Documents and Settings\Admin\Desktop\Unused Desktop Items\keys for programs\DDVDFabPlat3200Reg.ICU\All.Fengtao.Software.Universal.Patch.1.01-ICU\All.Fengtao.Software.Universal.Patch.1.01-ICU.exe is infected by Win32:Trojan-gen {Other}, Deleted
File C:\Documents and Settings\Admin\Local Settings\Temporary Internet Files\Content.IE5\Y1ELSNKZ\favicon1[1].ico is infected by Win32:Zlob-CGW [Trj], Deleted
File C:\Documents and Settings\Secondary Admin\Local Settings\Application Data\Mozilla\Firefox\Profiles\b4pdvwqx.default\Cache\BC436E78d01 is infected by Win32:Spyware-gen [Trj], Deleted
File C:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP99\A0027906.exe is infected by Win32:Trojan-gen {Other}, Deleted
Number of searched folders: 21116
Number of tested files: 678921
Number of infected files: 4
----------------------------------------
08/07/2008 04:25
Scan of C:\
Scan of G:\
File C:\$RECYCLE.BIN\S-1-5-21-2958512360-3919329639-593960396-1000\$RQ8GU3L\keygen.exe is infected by Win32:Trojan-gen {Other}, Deleted
File C:\Documents and Settings\Admin\Desktop\Unused Desktop Items\AMV_Convert_400.zip\MP3 Player Utilities 4.00\MSI.CAB Error 42125 {ZIP archive is corrupted.}
File C:\Program Files\NeoSmart Technologies\EasyBCD\TweakVI Setup.exe\tweakvi-basic.exe\%AppFolder%\TweakVI.exe Error 42146 {Installer archive is corrupted.}
File C:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP110\A0031439.exe is infected by Win32:Trojan-gen {Other}, Deleted
File G:\found.000\dir0002.chk\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP56\A0021280.exe is infected by Win32:Trojan-gen {Other}, Deleted
File G:\found.000\dir0002.chk\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP56\A0021281.exe is infected by Win32:Trojan-gen {Other}, Deleted
File G:\found.000\dir0002.chk\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP77\A0023966.exe is infected by Win32:Trojan-gen {Other}, Deleted
File G:\found.000\dir0002.chk\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP77\A0023967.exe is infected by Win32:Agent-YIM [Trj], Deleted
File G:\found.000\dir0002.chk\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP77\A0023968.exe is infected by Win32:Agent-YIM [Trj], Deleted
File G:\found.000\dir0002.chk\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP77\A0023970.exe is infected by Win32:Trojan-gen {Other}, Deleted
File G:\found.000\dir0002.chk\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP99\A0027832.exe is infected by Win32:Trojan-gen {Other}, Deleted
File G:\Maxtor backup\PAL\C\Documents and Settings\Admin\Desktop\Unused Desktop Items\AMV_Convert_400.zip\MP3 Player Utilities 4.00\MSI.CAB Error 42125 {ZIP archive is corrupted.}
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP100\A0030009.exe is infected by Win32:Trojan-gen {Other}, Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP100\A0030198.exe is infected by Win32:Trojan-gen {Other}, Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP100\A0030552.exe is infected by Win32:Trojan-gen {Other}, Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP100\A0030597.exe is infected by Win32:Trojan-gen {Other}, Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP100\A0030728.exe is infected by Win32:Trojan-gen {Other}, Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP104\A0031311.exe is infected by Win32:Trojan-gen {Other}, Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP104\A0031312.exe is infected by Win32:Agent-YIM [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP104\A0031313.exe is infected by Win32:Trojan-gen {Other}, Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP104\A0031314.exe is infected by Win32:Trojan-gen {Other}, Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP110\A0031440.exe is infected by Win32:Trojan-gen {Other}, Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP110\A0031441.exe is infected by Win32:Trojan-gen {Other}, Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP110\A0031442.exe is infected by Win32:Trojan-gen {Other}, Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP110\A0031443.exe is infected by Win32:Agent-YIM [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP110\A0031444.exe is infected by Win32:Agent-YIM [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP110\A0031445.exe is infected by Win32:Trojan-gen {Other}, Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP110\A0031446.exe is infected by Win32:Trojan-gen {Other}, Deleted
File G:\x\Downloads\Drivers, Programs & More\Unused Desktop Items\AMV_Convert_400.zip\MP3 Player Utilities 4.00\MSI.CAB Error 42125 {ZIP archive is corrupted.}
Number of searched folders: 9861
Number of tested files: 1126960
Number of infected files: 25
----------------------------------------
08/09/2008 11:40
Scan of C:\
Scan of G:\
File C:\Program Files\NeoSmart Technologies\EasyBCD\TweakVI Setup.exe\tweakvi-basic.exe\%AppFolder%\TweakVI.exe Error 42146 {Installer archive is corrupted.}
File G:\Maxtor backup\PAL\History\Level2\C\Documents and Settings\Admin\Desktop\Unused Desktop Items\AMV_Convert_400.zip\MP3 Player Utilities 4.00\MSI.CAB Error 42125 {ZIP archive is corrupted.}
Number of searched folders: 9714
Number of tested files: 1078626
Number of infected files: 0
----------------------------------------
09/16/2008 19:23
Scan of C:\
Scan of G:\
File C:\Program Files\NeoSmart Technologies\EasyBCD\TweakVI Setup.exe\tweakvi-basic.exe\%AppFolder%\TweakVI.exe Error 42146 {Installer archive is corrupted.}
File C:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP163\A0040912.exe is infected by Win32:Monga [Trj], Deleted
File C:\WINDOWS\system32\reboot.exe is infected by Win32:Trojan-gen {Other}, Deleted
File G:\System Volume Information\_restore{BF71FC7C-C3ED-41AB-842B-5E69B0FE98F8}\RP22\A0002314.exe is infected by Win32:Monga [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP100\A0030197.exe is infected by Win32:Monga [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP100\A0030551.exe is infected by Win32:Monga [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP100\A0030727.exe is infected by Win32:Monga [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP100\A0030749.exe is infected by Win32
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP100\A0030767.exe is infected by Win32:Agent-ABII [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP110\A0031750.exe is infected by Win32:Monga [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP163\A0040946.exe is infected by Win32:Monga [Trj], Deleted
Number of searched folders: 10448
Number of tested files: 1041979
Number of infected files: 10
----------------------------------------
10/08/2008 21:30
Scan of C:\
Scan of G:\
File C:\Documents and Settings\Admin\Desktop\Unused Desktop Items\keys for programs\BitDefender AntiVirus 2008 Build 11.0.13 Keygen\Keymaker.exe is infected by Win32:VB-KHX [Trj], Deleted
File C:\Documents and Settings\Admin\Desktop\Unused Desktop Items\keys for programs\BitDefender IS 2008 New KeyGen\Keymaker.exe is infected by Win32:VB-KHX [Trj], Deleted
File C:\Documents and Settings\Admin\Desktop\Unused Desktop Items\keys for programs\BitDefender Total Security 2008 Keygen\Keymaker.exe is infected by Win32:VB-KHX [Trj], Deleted
File C:\Documents and Settings\Admin\Desktop\Unused Desktop Items\keys for programs\Helium.Music.Manager_2007.0.0.5630.Crack-NoPE\helium.music.manager.2007.0.0.5630-NoPE.exe is infected by Win32:IRCBot-DIZ [Trj], Deleted
File C:\Documents and Settings\Admin\Desktop\Unused Desktop Items\keys for programs\Registry.Mechanic.v7.0.0.1010.Incl.Keymaker-TSRh\Keygen\KeyGen.exe is infected by Win32:VB-KHW [Trj], Deleted
File C:\Program Files\NeoSmart Technologies\EasyBCD\TweakVI Setup.exe\tweakvi-basic.exe\%AppFolder%\TweakVI.exe Error 42146 {Installer archive is corrupted.}
File C:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP168\A0041090.exe is infected by Win32:Trojan-gen {Other}, Deleted
File C:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP183\A0042468.exe is infected by Win32:VB-KHX [Trj], Deleted
File C:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP183\A0042469.exe is infected by Win32:VB-KHX [Trj], Deleted
File C:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP183\A0042470.exe is infected by Win32:VB-KHX [Trj], Deleted
File C:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP183\A0042471.exe is infected by Win32:IRCBot-DIZ [Trj], Deleted
File C:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP183\A0042472.exe is infected by Win32:VB-KHW [Trj], Deleted
File G:\Maxtor backup\PAL\C\Documents and Settings\Admin\Desktop\Unused Desktop Items\keys for programs\BitDefender AntiVirus 2008 Build 11.0.13 Keygen\Keymaker.exe is infected by Win32:VB-KHX [Trj], Deleted
File G:\Maxtor backup\PAL\C\Documents and Settings\Admin\Desktop\Unused Desktop Items\keys for programs\BitDefender IS 2008 New KeyGen\Keymaker.exe is infected by Win32:VB-KHX [Trj], Deleted
File G:\Maxtor backup\PAL\C\Documents and Settings\Admin\Desktop\Unused Desktop Items\keys for programs\BitDefender Total Security 2008 Keygen\Keymaker.exe is infected by Win32:VB-KHX [Trj], Deleted
File G:\Maxtor backup\PAL\C\Documents and Settings\Admin\Desktop\Unused Desktop Items\keys for programs\Helium.Music.Manager_2007.0.0.5630.Crack-NoPE\helium.music.manager.2007.0.0.5630-NoPE.exe is infected by Win32:IRCBot-DIZ [Trj], Deleted
File G:\Maxtor backup\PAL\C\Documents and Settings\Admin\Desktop\Unused Desktop Items\keys for programs\Registry.Mechanic.v7.0.0.1010.Incl.Keymaker-TSRh\Keygen\KeyGen.exe is infected by Win32:VB-KHW [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP100\A0030162.exe is infected by Win32:VB-KHW [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP100\A0030192.exe is infected by Win32:IRCBot-DIZ [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP100\A0030200.exe is infected by Win32:VB-KHX [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP100\A0030202.exe is infected by Win32:VB-KHX [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP100\A0030204.exe is infected by Win32:VB-KHX [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP100\A0030516.exe is infected by Win32:VB-KHW [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP100\A0030546.exe is infected by Win32:IRCBot-DIZ [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP100\A0030554.exe is infected by Win32:VB-KHX [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP100\A0030556.exe is infected by Win32:VB-KHX [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP100\A0030558.exe is infected by Win32:VB-KHX [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP100\A0030692.exe is infected by Win32:VB-KHW [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP100\A0030722.exe is infected by Win32:IRCBot-DIZ [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP100\A0030730.exe is infected by Win32:VB-KHX [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP100\A0030732.exe is infected by Win32:VB-KHX [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP100\A0030734.exe is infected by Win32:VB-KHX [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP110\A0031742.exe is infected by Win32:VB-KHX [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP110\A0031744.exe is infected by Win32:VB-KHX [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP110\A0031746.exe is infected by Win32:VB-KHX [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP110\A0031753.exe is infected by Win32:IRCBot-DIZ [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP110\A0031784.exe is infected by Win32:VB-KHW [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP183\A0042473.exe is infected by Win32:VB-KHX [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP183\A0042474.exe is infected by Win32:VB-KHX [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP183\A0042475.exe is infected by Win32:VB-KHX [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP183\A0042476.exe is infected by Win32:IRCBot-DIZ [Trj], Deleted
File G:\System Volume Information\_restore{DA4D9D20-E441-45BB-8C44-502785DEC9EF}\RP183\A0042477.exe is infected by Win32:VB-KHW [Trj], Deleted
File G:/x\Downloads\Drivers, Programs & More\Programs\KEYS\keys for programs\BitDefender AntiVirus 2008 Build 11.0.13 Keygen\Keymaker.exe is infected by Win32:VB-KHX [Trj], Deleted
File G:\x\Downloads\Drivers, Programs & More\Programs\KEYS\keys for programs\BitDefender IS 2008 New KeyGen\Keymaker.exe is infected by Win32:VB-KHX [Trj], Deleted
File G:\x\Downloads\Drivers, Programs & More\Programs\KEYS\keys for programs\BitDefender Total Security 2008 Keygen\Keymaker.exe is infected by Win32:VB-KHX [Trj], Deleted
File G:\x\Downloads\Drivers, Programs & More\Programs\KEYS\keys for programs\Helium.Music.Manager_2007.0.0.5630.Crack-NoPE\helium.music.manager.2007.0.0.5630-NoPE.exe is infected by Win32:IRCBot-DIZ [Trj], Deleted
File G:\x\Downloads\Drivers, Programs & More\Programs\KEYS\keys for programs\Registry.Mechanic.v7.0.0.1010.Incl.Keymaker-TSRh\Keygen\KeyGen.exe is infected by Win32:VB-KHW [Trj], Deleted
Number of searched folders: 10282
Number of tested files: 1038955
Number of infected files: 46