Hello DaveM59,
Thanks a lot for your reply. I have scanned my computer as you had desired. Two of the drives were found to have malware by Kasperski (which I have removed with avast).
Here are the logs from AVGSpyware, Kasperski and HijackThis in the same order:
As you would notice that MDM.exe was found by AVG in E:\virus --- I had found it on some other computer and copied here for virustotal. They reported it as virus. However, most of their results were same as AVG result (found below).
By the way, much problem occured only because AVAST was not set to download updates automatically and wasnt really updated. The two instances, left by AVG and found by by Kasperski (marked with CRAZY icon) were detected by updated AVAST and have been cleaned.
I do not really understand why some objects were locked when kasperski was scanning as no programs were being run nor were some explorer windows open (except FreeCell).
---------------------------------------------------------
AVG Anti-Spyware - Scan Report
---------------------------------------------------------
+ Created at: 11:19:31 AM 3/13/2007
+ Scan result:
F:\Downloads\PEBuilder\Plugins\sysinttools.cab/Files\psexec.exe -> Not-A-Virus.NetTool.Win32.RemoteStartProcess.a : Cleaned.
:mozilla.327:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.426:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.437:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.589:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.98:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@112.2o7[2].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@acronis.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@cneteurope.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@cnn.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@highbeam.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@msnaccountservices.112.2o7[2].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@pinnaclesystems.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@usatoday1.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Others\Cookies\others@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.15:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.16:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.17:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.18:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.23:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.27:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.28:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.29:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@adbrite[1].txt -> TrackingCookie.Adbrite : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@ads.adbrite[1].txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.340:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Adjuggler : Cleaned.
:mozilla.341:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Adjuggler : Cleaned.
:mozilla.342:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Adjuggler : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@rotator.adjuggler[1].txt -> TrackingCookie.Adjuggler : Cleaned.
C:\Documents and Settings\Others\Cookies\others@adjuggler[1].txt -> TrackingCookie.Adjuggler : Cleaned.
C:\Documents and Settings\Others\Cookies\others@rotator.adjuggler[2].txt -> TrackingCookie.Adjuggler : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@ad.adocean[1].txt -> TrackingCookie.Adocean : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@adtech[2].txt -> TrackingCookie.Adtech : Cleaned.
:mozilla.58:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.59:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.60:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.61:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.62:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@advertising[1].txt -> TrackingCookie.Advertising : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@adviva[2].txt -> TrackingCookie.Adviva : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@atdmt[2].txt -> TrackingCookie.Atdmt : Cleaned.
C:\Documents and Settings\Others\Cookies\others@atdmt[2].txt -> TrackingCookie.Atdmt : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@bfast[2].txt -> TrackingCookie.Bfast : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@bluestreak[2].txt -> TrackingCookie.Bluestreak : Cleaned.
C:\Documents and Settings\Others\Cookies\others@bluestreak[2].txt -> TrackingCookie.Bluestreak : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@burstnet[2].txt -> TrackingCookie.Burstnet : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@www.burstnet[2].txt -> TrackingCookie.Burstnet : Cleaned.
C:\Documents and Settings\Others\Cookies\others@burstnet[2].txt -> TrackingCookie.Burstnet : Cleaned.
C:\Documents and Settings\Others\Cookies\others@www.burstnet[2].txt -> TrackingCookie.Burstnet : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@casalemedia[2].txt -> TrackingCookie.Casalemedia : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@ads.guardian.co[1].txt -> TrackingCookie.Co : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@com[1].txt -> TrackingCookie.Com : Cleaned.
:mozilla.113:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Coremetrics : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@twci.coremetrics[1].txt -> TrackingCookie.Coremetrics : Cleaned.
C:\Documents and Settings\Others\Cookies\others@twci.coremetrics[1].txt -> TrackingCookie.Coremetrics : Cleaned.
:mozilla.160:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Dealtime : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@dealtime[1].txt -> TrackingCookie.Dealtime : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@stat.dealtime[1].txt -> TrackingCookie.Dealtime : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@doubleclick[1].txt -> TrackingCookie.Doubleclick : Cleaned.
C:\Documents and Settings\Others\Cookies\others@doubleclick[2].txt -> TrackingCookie.Doubleclick : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@e-2dj6wgkiuocjmkq.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@e-2dj6wglisgc5ggp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@e-2dj6wgmywpcjwgo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@e-2dj6wjlyspcjcdo.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.385:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Estat : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@estat[1].txt -> TrackingCookie.Estat : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@adopt.euroclick[2].txt -> TrackingCookie.Euroclick : Cleaned.
:mozilla.540:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@fastclick[1].txt -> TrackingCookie.Fastclick : Cleaned.
C:\Documents and Settings\Others\Cookies\others@fastclick[2].txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.345:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Fortunecity : Cleaned.
:mozilla.346:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Fortunecity : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@fortunecity[2].txt -> TrackingCookie.Fortunecity : Cleaned.
:mozilla.273:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.317:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.343:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.344:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.403:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.415:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.429:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.448:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.470:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.601:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@ehg-fluorcorp.hitbox[1].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@ehg-ittoolbox.hitbox[1].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@ehg-moma.hitbox[1].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@ehg-superwarehouse.hitbox[1].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@ehg-theheritagefoundation.hitbox[1].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@ehg-tigerdirect2.hitbox[1].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@ehg-wssuk.hitbox[2].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@ehg.hitbox[1].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@hg1.hitbox[1].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@hitbox[1].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@counter.hitslink[1].txt -> TrackingCookie.Hitslink : Cleaned.
:mozilla.287:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Hotlog : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@hotlog[2].txt -> TrackingCookie.Hotlog : Cleaned.
:mozilla.453:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Information : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@searchportal.information[1].txt -> TrackingCookie.Information : Cleaned.
:mozilla.284:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Ivwbox : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@ivwbox[2].txt -> TrackingCookie.Ivwbox : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@linksynergy[1].txt -> TrackingCookie.Linksynergy : Cleaned.
:mozilla.582:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@sales.liveperson[2].txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.337:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@mediaplex[1].txt -> TrackingCookie.Mediaplex : Cleaned.
C:\Documents and Settings\Others\Cookies\others@mediaplex[1].txt -> TrackingCookie.Mediaplex : Cleaned.
:mozilla.546:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.551:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.552:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.553:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@data2.perf.overture[1].txt -> TrackingCookie.Overture : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@overture[2].txt -> TrackingCookie.Overture : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@perf.overture[1].txt -> TrackingCookie.Overture : Cleaned.
C:\Documents and Settings\Others\Cookies\others@overture[1].txt -> TrackingCookie.Overture : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@ads.pointroll[1].txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.514:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.515:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@questionmarket[2].txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.386:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.387:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@realmedia[1].txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.528:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Revenue : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@revenue[1].txt -> TrackingCookie.Revenue : Cleaned.
:mozilla.288:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.289:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.290:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.291:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.292:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.293:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.294:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@revsci[2].txt -> TrackingCookie.Revsci : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@edge.ru4[1].txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.369:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.370:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.371:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.372:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.373:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@bs.serving-sys[1].txt -> TrackingCookie.Serving-sys : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@serving-sys[2].txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.156:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Spylog : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@spylog[2].txt -> TrackingCookie.Spylog : Cleaned.
:mozilla.111:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.155:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.166:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.219:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.223:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.226:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.227:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.95:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.97:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@statcounter[1].txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.240:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.264:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.69:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@anad.tacoda[1].txt -> TrackingCookie.Tacoda : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@tacoda[2].txt -> TrackingCookie.Tacoda : Cleaned.
C:\Documents and Settings\Others\Cookies\others@tacoda[1].txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.180:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Targetnet : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@targetnet[1].txt -> TrackingCookie.Targetnet : Cleaned.
:mozilla.73:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Trafic : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@trafic[1].txt -> TrackingCookie.Trafic : Cleaned.
C:\Documents and Settings\Others\Cookies\others@trafic[1].txt -> TrackingCookie.Trafic : Cleaned.
:mozilla.32:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@tribalfusion[1].txt -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.302:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Valuead : Cleaned.
:mozilla.303:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Valuead : Cleaned.
:mozilla.307:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Valuead : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@reduxads.valuead[1].txt -> TrackingCookie.Valuead : Cleaned.
:mozilla.579:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned.
:mozilla.580:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned.
:mozilla.581:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned.
:mozilla.72:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@statse.webtrendslive[2].txt -> TrackingCookie.Webtrendslive : Cleaned.
:mozilla.19:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.20:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.21:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.22:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.24:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.25:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.26:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@ad.yieldmanager[2].txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.230:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
:mozilla.231:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
:mozilla.235:C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
C:\Documents and Settings\Arshad\Cookies\arshad@zedo[2].txt -> TrackingCookie.Zedo : Cleaned.
C:\System Volume Information\_restore{7DBE98D2-8E71-41BC-868C-978576CA2811}\RP101\A0090234.exe -> Trojan.Agent.abt : Cleaned.
C:\System Volume Information\_restore{7DBE98D2-8E71-41BC-868C-978576CA2811}\RP101\A0090235.EXE -> Trojan.Agent.abt : Cleaned.
C:\System Volume Information\_restore{7DBE98D2-8E71-41BC-868C-978576CA2811}\RP107\A0098465.exe -> Trojan.Agent.abt : Cleaned.
C:\WINDOWS\SVCHOST.EXE -> Trojan.Agent.abt : Cleaned.
D:\System Volume Information\_restore{7DBE98D2-8E71-41BC-868C-978576CA2811}\RP101\A0090236.exe -> Trojan.Agent.abt : Cleaned.
D:\System Volume Information\_restore{7DBE98D2-8E71-41BC-868C-978576CA2811}\RP107\A0098463.exe -> Trojan.Agent.abt : Cleaned.
E:\System Volume Information\_restore{7DBE98D2-8E71-41BC-868C-978576CA2811}\RP101\A0090237.exe -> Trojan.Agent.abt : Cleaned.
E:\System Volume Information\_restore{7DBE98D2-8E71-41BC-868C-978576CA2811}\RP107\A0098459.exe -> Trojan.Agent.abt : Cleaned.
F:\System Volume Information\_restore{7DBE98D2-8E71-41BC-868C-978576CA2811}\RP101\A0090238.exe -> Trojan.Agent.abt : Cleaned.
F:\System Volume Information\_restore{7DBE98D2-8E71-41BC-868C-978576CA2811}\RP107\A0098461.exe -> Trojan.Agent.abt : Cleaned.
C:\System Volume Information\_restore{7DBE98D2-8E71-41BC-868C-978576CA2811}\RP100\A0087199.EXE -> Trojan.Agent.aei : Cleaned.
C:\System Volume Information\_restore{7DBE98D2-8E71-41BC-868C-978576CA2811}\RP100\A0087212.EXE -> Trojan.Agent.aei : Cleaned.
C:\System Volume Information\_restore{7DBE98D2-8E71-41BC-868C-978576CA2811}\RP100\A0088211.EXE -> Trojan.Agent.aei : Cleaned.
C:\System Volume Information\_restore{7DBE98D2-8E71-41BC-868C-978576CA2811}\RP101\A0088231.EXE -> Trojan.Agent.aei : Cleaned.
C:\System Volume Information\_restore{7DBE98D2-8E71-41BC-868C-978576CA2811}\RP101\A0089229.EXE -> Trojan.Agent.aei : Cleaned.
C:\System Volume Information\_restore{7DBE98D2-8E71-41BC-868C-978576CA2811}\RP101\A0090229.EXE -> Trojan.Agent.aei : Cleaned.
C:\System Volume Information\_restore{7DBE98D2-8E71-41BC-868C-978576CA2811}\RP107\A0095460.EXE -> Trojan.Agent.aei : Cleaned.
C:\System Volume Information\_restore{7DBE98D2-8E71-41BC-868C-978576CA2811}\RP107\A0097454.EXE -> Trojan.Agent.aei : Cleaned.
C:\System Volume Information\_restore{7DBE98D2-8E71-41BC-868C-978576CA2811}\RP83\A0084763.EXE -> Trojan.Agent.aei : Cleaned.
C:\System Volume Information\_restore{7DBE98D2-8E71-41BC-868C-978576CA2811}\RP84\A0084802.EXE -> Trojan.Agent.aei : Cleaned.
C:\System Volume Information\_restore{7DBE98D2-8E71-41BC-868C-978576CA2811}\RP84\A0084887.EXE -> Trojan.Agent.aei : Cleaned.
C:\System Volume Information\_restore{7DBE98D2-8E71-41BC-868C-978576CA2811}\RP85\A0084888.EXE -> Trojan.Agent.aei : Cleaned.
C:\System Volume Information\_restore{7DBE98D2-8E71-41BC-868C-978576CA2811}\RP85\A0084904.EXE -> Trojan.Agent.aei : Cleaned.
C:\System Volume Information\_restore{7DBE98D2-8E71-41BC-868C-978576CA2811}\RP86\A0085907.EXE -> Trojan.Agent.aei : Cleaned.
C:\System Volume Information\_restore{7DBE98D2-8E71-41BC-868C-978576CA2811}\RP87\A0085920.EXE -> Trojan.Agent.aei : Cleaned.
C:\System Volume Information\_restore{7DBE98D2-8E71-41BC-868C-978576CA2811}\RP88\A0085923.EXE -> Trojan.Agent.aei : Cleaned.
C:\System Volume Information\_restore{7DBE98D2-8E71-41BC-868C-978576CA2811}\RP88\A0085938.EXE -> Trojan.Agent.aei : Cleaned.
C:\System Volume Information\_restore{7DBE98D2-8E71-41BC-868C-978576CA2811}\RP89\A0085941.EXE -> Trojan.Agent.aei : Cleaned.
C:\System Volume Information\_restore{7DBE98D2-8E71-41BC-868C-978576CA2811}\RP91\A0086059.EXE -> Trojan.Agent.aei : Cleaned.
C:\System Volume Information\_restore{7DBE98D2-8E71-41BC-868C-978576CA2811}\RP92\A0087044.EXE -> Trojan.Agent.aei : Cleaned.
C:\System Volume Information\_restore{7DBE98D2-8E71-41BC-868C-978576CA2811}\RP93\A0087054.EXE -> Trojan.Agent.aei : Cleaned.
C:\System Volume Information\_restore{7DBE98D2-8E71-41BC-868C-978576CA2811}\RP93\A0087077.EXE -> Trojan.Agent.aei : Cleaned.
C:\System Volume Information\_restore{7DBE98D2-8E71-41BC-868C-978576CA2811}\RP94\A0087078.EXE -> Trojan.Agent.aei : Cleaned.
C:\System Volume Information\_restore{7DBE98D2-8E71-41BC-868C-978576CA2811}\RP94\A0087096.EXE -> Trojan.Agent.aei : Cleaned.
C:\System Volume Information\_restore{7DBE98D2-8E71-41BC-868C-978576CA2811}\RP95\A0087101.EXE -> Trojan.Agent.aei : Cleaned.
C:\System Volume Information\_restore{7DBE98D2-8E71-41BC-868C-978576CA2811}\RP96\A0087111.EXE -> Trojan.Agent.aei : Cleaned.
C:\System Volume Information\_restore{7DBE98D2-8E71-41BC-868C-978576CA2811}\RP96\A0087133.EXE -> Trojan.Agent.aei : Cleaned.
C:\System Volume Information\_restore{7DBE98D2-8E71-41BC-868C-978576CA2811}\RP97\A0087139.EXE -> Trojan.Agent.aei : Cleaned.
C:\System Volume Information\_restore{7DBE98D2-8E71-41BC-868C-978576CA2811}\RP98\A0087156.EXE -> Trojan.Agent.aei : Cleaned.
C:\System Volume Information\_restore{7DBE98D2-8E71-41BC-868C-978576CA2811}\RP99\A0087181.EXE -> Trojan.Agent.aei : Cleaned.
C:\System Volume Information\_restore{7DBE98D2-8E71-41BC-868C-978576CA2811}\RP99\A0087192.EXE -> Trojan.Agent.aei : Cleaned.
E:\virus\MDM.EXE -> Trojan.Agent.aei : Cleaned.
::Report end
-------------------------
KASPERSKY ONLINE SCANNER REPORT
Tuesday, March 13, 2007 12:40:47 PM
Operating System: Microsoft Windows XP Professional, Service Pack 2 (Build 2600)
Kaspersky Online Scanner version: 5.0.83.0
Kaspersky Anti-Virus database last update: 13/03/2007
Kaspersky Anti-Virus database records: 265101
Scan Settings
Scan using the following antivirus database standard
Scan Archives true
Scan Mail Bases true
Scan Target My Computer
A:\
C:\
D:\
E:\
F:\
G:\
H:\
Scan Statistics
Total number of scanned objects 42191
Number of viruses found 2
Number of infected objects 2 / 0
Number of suspicious objects 0
Duration of the scan process 00:30:53
Infected Object Name Virus Name Last Action
C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\cert8.db Object is locked skipped
C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\formhistory.dat Object is locked skipped
C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\history.dat Object is locked skipped
C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\key3.db Object is locked skipped
C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\parent.lock Object is locked skipped
C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\search.sqlite Object is locked skipped
C:\Documents and Settings\Arshad\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\urlclassifier2.sqlite Object is locked skipped
C:\Documents and Settings\Arshad\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\Arshad\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\Arshad\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\Arshad\Local Settings\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\Cache\_CACHE_001_ Object is locked skipped
C:\Documents and Settings\Arshad\Local Settings\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\Cache\_CACHE_002_ Object is locked skipped
C:\Documents and Settings\Arshad\Local Settings\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\Cache\_CACHE_003_ Object is locked skipped
C:\Documents and Settings\Arshad\Local Settings\Application Data\Mozilla\Firefox\Profiles\8yrtga7j.default\Cache\_CACHE_MAP_ Object is locked skipped
C:\Documents and Settings\Arshad\Local Settings\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\Arshad\Local Settings\Temp\Free Download Manager\tic9.tmp Object is locked skipped
C:\Documents and Settings\Arshad\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\Arshad\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\Arshad\NTUSER.DAT.LOG Object is locked skipped
C:\Documents and Settings\LocalService\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\aswResp.dat Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\Avast4.db Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\integ\avast.int Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\log\AshWebSv.ws Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\log\aswMaiSv.log Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\log\nshield.log Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\report\Resident protection.txt Object is locked skipped
C:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped
C:\System Volume Information\_restore{7DBE98D2-8E71-41BC-868C-978576CA2811}\RP108\A0100466.EXE Infected: Trojan.Win32.Agent.abt skipped
C:\System Volume Information\_restore{7DBE98D2-8E71-41BC-868C-978576CA2811}\RP108\change.log Object is locked skipped
C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped
C:\WINDOWS\SchedLgU.Txt Object is locked skipped
C:\WINDOWS\SoftwareDistribution\DataStore\DataStore.edb Object is locked skipped
C:\WINDOWS\SoftwareDistribution\DataStore\Logs\edb.log Object is locked skipped
C:\WINDOWS\SoftwareDistribution\DataStore\Logs\tmp.edb Object is locked skipped
C:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked skipped
C:\WINDOWS\Sti_Trace.log Object is locked skipped
C:\WINDOWS\system32\CatRoot2\edb.log Object is locked skipped
C:\WINDOWS\system32\CatRoot2\tmp.edb Object is locked skipped
C:\WINDOWS\system32\config\Antivirus.Evt Object is locked skipped
C:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\default Object is locked skipped
C:\WINDOWS\system32\config\default.LOG Object is locked skipped
C:\WINDOWS\system32\config\SAM Object is locked skipped
C:\WINDOWS\system32\config\SAM.LOG Object is locked skipped
C:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\SECURITY Object is locked skipped
C:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped
C:\WINDOWS\system32\config\software Object is locked skipped
C:\WINDOWS\system32\config\software.LOG Object is locked skipped
C:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\system Object is locked skipped
C:\WINDOWS\system32\config\system.LOG Object is locked skipped
C:\WINDOWS\system32\h323log.txt Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP Object is locked skipped
C:\WINDOWS\Temp\Perflib_Perfdata_ec.dat Object is locked skipped
C:\WINDOWS\Temp\_avast4_\Webshlock.txt Object is locked skipped
C:\WINDOWS\wiadebug.log Object is locked skipped
C:\WINDOWS\wiaservc.log Object is locked skipped
C:\WINDOWS\WindowsUpdate.log Object is locked skipped
D:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped
E:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped
E:\System Volume Information\_restore{7DBE98D2-8E71-41BC-868C-978576CA2811}\RP108\A0100465.EXE Infected: Trojan.Win32.Agent.aei skipped
F:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped
Scan process completed.
-----------
Logfile of HijackThis v1.99.1
Scan saved at 1:18:10 PM, on 3/13/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe
C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\Program Files\Adobe\Acrobat 7.0\Acrobat\acrobat_sl.exe
C:\Program Files\ITEDC MCS\Map Security System Client\SYSTEM_TRAY.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\WINDOWS\system32\inetsrv\inetinfo.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\HijackThis\HijackThis.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\wuauclt.exe
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: 100% Free Spades Toolbar Helper - {3EBD3651-4CCA-4656-9F98-BAB4B72C6031} - C:\Program Files\100% Free Spades Toolbar\v2.0.0.5\100%_Free_Spades_Toolbar.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O2 - BHO: FDMIECookiesBHO Class - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files\Free Download Manager\iefdmcks.dll
O3 - Toolbar: 100% Free Spades Toolbar - {00490D79-3A7F-4c8a-9E04-2BC1D89676F1} - C:\Program Files\100% Free Spades Toolbar\v2.0.0.5\100%_Free_Spades_Toolbar.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe"
O4 - HKLM\..\Run: [Acrobat Assistant 7.0] "C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe"
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AdobeUpdateManager.exe" AcPro7_0_8 -reboot 1
O4 - Global Startup: Adobe Acrobat Speed Launcher.lnk = ?
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: MSS Client.lnk = ?
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O8 - Extra context menu item: Convert link target to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convert link target to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convert selected links to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Convert selected links to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Convert selection to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convert selection to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convert to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convert to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Download all with Free Download Manager - file://C:\Program Files\Free Download Manager\dlall.htm
O8 - Extra context menu item: Download selected with Free Download Manager - file://C:\Program Files\Free Download Manager\dlselected.htm
O8 - Extra context menu item: Download with Free Download Manager - file://C:\Program Files\Free Download Manager\dllink.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) -
http://www.kaspersky.com/kos/english/kavwebscan_unicode.cabO16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) -
http://cdn2.zone.msn.com/binFramework/v10/...ro.cab53083.cabO16 - DPF: {E5D419D6-A846-4514-9FAD-97E826C84822} (HeartbeatCtl Class) -
http://fdl.msn.com/zone/datafiles/heartbeat.cabO23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
Thanks again: