Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

help removing TR/crypt.zpack.gen2


  • Please log in to reply
16 replies to this topic

#1 MikesbrokenPC

MikesbrokenPC

  • Members
  • 23 posts
  • OFFLINE
  •  
  • Local time:04:30 AM

Posted 28 December 2013 - 10:15 AM

Well my wife was clicking through some emails...and 5minutes later avira is beeping away about detections of this virus...windows xp pro sp3 platform...that is about as far as I have gotten...I have run superantispyware...but I dont see anything coming up (it is still running) I am accessing this site via my phone...I have asked you guys for h ell before and it was an extreme pleasure to be walked through the removal process...really hoping thos problem is easily dealt with too


Edited by hamluis, 28 December 2013 - 10:20 AM.
Moved from XP to Am I Infected - Hamluis.


BC AdBot (Login to Remove)

 


#2 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 72,906 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:05:30 AM

Posted 28 December 2013 - 10:35 AM

Hello Mike. let's run these next

Please download MiniToolBox, save it to your desktop and run it.
Checkmark the following checkboxes:
  • Flush DNS
  • Report IE Proxy Settings
  • Reset IE Proxy Settings
  • Report FF Proxy Settings
  • Reset FF Proxy Settings
  • List content of Hosts
  • List IP configuration
  • List Winsock Entries
  • List last 10 Event Viewer log
  • List Installed Programs
  • List Users, Partitions and Memory size.
Click Go and post the result (Result.txt). A copy of Result.txt will be saved in the same directory the tool is run.
Note: When using "Reset FF Proxy Settings" option Firefox should be closed.



Download TDSSKiller and save it to your desktop.
  • Extract (unzip) its contents to your desktop.
  • Open the TDSSKiller folder and doubleclick on TDSSKiller.exe to run the application, then on Start Scan.
  • If an infected file is detected, the default action will be Cure, click on Continue.
  • If a suspicious file is detected, the default action will be Skip, click on Continue.
  • It may ask you to reboot the computer to complete the process. Click on Reboot Now.
  • If no reboot is require, click on Report. A log file should appear. Please copy and paste the contents of that file here.
  • If a reboot is required, the report can also be found in your root directory (usually C:\ folder) in the form of TDSSKiller_xxxx_log.txt. Please copy and paste the contents of that file here.
.
.
.
ADW Cleaner

Please download AdwCleaner by Xplode and save to your Desktop.
  • Double click on AdwCleaner.exe to run the tool
  • Click on the Scan button.
  • AdwCleaner will begin to scan your computer like it did before.
  • After the scan has finished...
    <-insert any special instructions here for what to uncheck OR remove this line if there are none->
  • This time click on the Clean button.
  • Press OK when asked to close all programs and follow the onscreen prompts.
  • Press OK again to allow AdwCleaner to restart the computer and complete the removal process.
  • After rebooting, a logfile report (AdwCleaner[S#].txt) will open automatically (where the largest value of # represents the most recent report).
  • Copy and paste the contents of that logfile in your next reply.
  • A copy of that logfile will also be saved in the C:\AdwCleaner folder.
  • .
    .
    .

    thisisujrt.gif Please download Junkware Removal Tool to your desktop.
    • Shut down your protection software now to avoid potential conflicts.
    • Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right-mouse click JRT.exe and select "Run as Administrator".
    • The tool will open and start scanning your system.
    • Please be patient as this can take a while to complete depending on your system's specifications.
    • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
    • Post the contents of JRT.txt into your next message.
    .
    .
    .
    .
    • Last run ESET.
      • Hold down Control and click on this link to open ESET OnlineScan in a new window.
      • Click the esetonlinebtn.png button.
      • For alternate browsers only: (Microsoft Internet Explorer users can skip these steps)
      • Click on esetsmartinstaller_enu.exe to download the ESET Smart Installer. Save it to your desktop.
      • Double click on the esetsmartinstaller_enu.png icon on your desktop.
      • Check "YES, I accept the Terms of Use."
      • Click the Start button.
      • Accept any security warnings from your browser.
      • Under scan settings, check "Scan Archives" and "Remove found threats"
      • Click Advanced settings and select the following:
      • Scan potentially unwanted applications
      • Scan for potentially unsafe applications
      • Enable Anti-Stealth technology
      • ESET will then download updates for itself, install itself, and begin scanning your computer. Please be patient as this can take some time.
      • When the scan completes, click List Threats
      • Click Export, and save the file to your desktop using a unique name, such as ESETScan. Include the contents of this report in your next reply.
      • Click the Back button.
      • Click the Finish button.
      • NOTE:Sometimes if ESET finds no infections it will not create a log.

How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#3 MikesbrokenPC

MikesbrokenPC
  • Topic Starter

  • Members
  • 23 posts
  • OFFLINE
  •  
  • Local time:04:30 AM

Posted 28 December 2013 - 12:12 PM

Okay should I download and save all those to my desktop before proceeding with any of the scans...or do them one at a time

#4 MikesbrokenPC

MikesbrokenPC
  • Topic Starter

  • Members
  • 23 posts
  • OFFLINE
  •  
  • Local time:04:30 AM

Posted 28 December 2013 - 12:32 PM

MiniToolBox by Farbar  Version: 18-12-2013
Ran by Mike (administrator) on 28-12-2013 at 12:30:59
Running from "C:\Documents and Settings\Mike\My Documents\Downloads"
Microsoft Windows XP Professional Service Pack 3 (X86)
Boot Mode: Normal
***************************************************************************

========================= Flush DNS: ===================================


Windows IP Configuration



Successfully flushed the DNS Resolver Cache.


========================= IE Proxy Settings: ==============================

Proxy is not enabled.
No Proxy Server is set.

"Reset IE Proxy Settings": IE Proxy Settings were reset.

========================= FF Proxy Settings: ==============================


"Reset FF Proxy Settings": Firefox Proxy settings were reset.

========================= Hosts content: =================================

127.0.0.1       localhost

========================= IP Configuration: ================================

Belkin F5D5000 v2000 Desktop PCI Card = Local Area Connection (Connected)


# ----------------------------------
# Interface IP Configuration         
# ----------------------------------
pushd interface ip


# Interface IP Configuration for "Local Area Connection"

set address name="Local Area Connection" source=dhcp
set dns name="Local Area Connection" source=dhcp register=PRIMARY
set wins name="Local Area Connection" source=dhcp


popd
# End of interface IP configuration




Windows IP Configuration



        Host Name . . . . . . . . . . . . : stones

        Primary Dns Suffix  . . . . . . . :

        Node Type . . . . . . . . . . . . : Unknown

        IP Routing Enabled. . . . . . . . : No

        WINS Proxy Enabled. . . . . . . . : No

        DNS Suffix Search List. . . . . . : phub.net.cable.rogers.com



Ethernet adapter Local Area Connection:



        Connection-specific DNS Suffix  . : phub.net.cable.rogers.com

        Description . . . . . . . . . . . : Belkin F5D5000 v2000 Desktop PCI Card

        Physical Address. . . . . . . . . : 00-1C-DF-32-89-8B

        Dhcp Enabled. . . . . . . . . . . : Yes

        Autoconfiguration Enabled . . . . : Yes

        IP Address. . . . . . . . . . . . : 192.168.0.101

        Subnet Mask . . . . . . . . . . . : 255.255.255.0

        Default Gateway . . . . . . . . . : 192.168.0.1

        DHCP Server . . . . . . . . . . . : 192.168.0.1

        DNS Servers . . . . . . . . . . . : 192.168.0.1

        Lease Obtained. . . . . . . . . . : Saturday, December 28, 2013 12:16:11 PM

        Lease Expires . . . . . . . . . . : Saturday, January 04, 2014 12:16:11 PM

1.0.168.192.in-addr.arpa
    primary name server = localhost
    responsible mail addr = nobody.invalid
    serial  = 1
    refresh = 600 (10 mins)
    retry   = 1200 (20 mins)
    expire  = 604800 (7 days)
    default TTL = 10800 (3 hours)
Server:  UnKnown
Address:  192.168.0.1

Name:    google.com.phub.net.cable.rogers.com
Address:  208.69.32.145



Pinging google.com [74.125.226.104] with 32 bytes of data:



Reply from 74.125.226.104: bytes=32 time=28ms TTL=56

Reply from 74.125.226.104: bytes=32 time=26ms TTL=56



Ping statistics for 74.125.226.104:

    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),

Approximate round trip times in milli-seconds:

    Minimum = 26ms, Maximum = 28ms, Average = 27ms

Server:  UnKnown
Address:  192.168.0.1

Name:    yahoo.com.phub.net.cable.rogers.com
Address:  208.69.32.145



Pinging yahoo.com [206.190.36.45] with 32 bytes of data:



Reply from 206.190.36.45: bytes=32 time=97ms TTL=48

Reply from 206.190.36.45: bytes=32 time=142ms TTL=48



Ping statistics for 206.190.36.45:

    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),

Approximate round trip times in milli-seconds:

    Minimum = 97ms, Maximum = 142ms, Average = 119ms



Pinging 127.0.0.1 with 32 bytes of data:



Reply from 127.0.0.1: bytes=32 time<1ms TTL=128

Reply from 127.0.0.1: bytes=32 time<1ms TTL=128



Ping statistics for 127.0.0.1:

    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),

Approximate round trip times in milli-seconds:

    Minimum = 0ms, Maximum = 0ms, Average = 0ms

===========================================================================
Interface List
0x1 ........................... MS TCP Loopback interface
0x2 ...00 1c df 32 89 8b ...... Realtek RTL8139 Family PCI Fast Ethernet NIC - Packet Scheduler Miniport
===========================================================================
===========================================================================
Active Routes:
Network Destination        Netmask          Gateway       Interface  Metric
          0.0.0.0          0.0.0.0      192.168.0.1   192.168.0.101      20
        127.0.0.0        255.0.0.0        127.0.0.1       127.0.0.1      1
      169.254.0.0      255.255.0.0    192.168.0.101   192.168.0.101      20
      192.168.0.0    255.255.255.0    192.168.0.101   192.168.0.101      20
    192.168.0.101  255.255.255.255        127.0.0.1       127.0.0.1      20
    192.168.0.255  255.255.255.255    192.168.0.101   192.168.0.101      20
        224.0.0.0        240.0.0.0    192.168.0.101   192.168.0.101      20
  255.255.255.255  255.255.255.255    192.168.0.101   192.168.0.101      1
Default Gateway:       192.168.0.1
===========================================================================
Persistent Routes:
  None
========================= Winsock entries =====================================

Catalog5 01 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog5 02 C:\WINDOWS\system32\winrnr.dll [16896] (Microsoft Corporation)
Catalog5 03 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog5 04 C:\Program Files\Bonjour\mdnsNSP.dll [121704] (Apple Inc.)
Catalog9 01 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 02 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 03 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 04 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 05 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 06 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 07 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 08 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 09 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 10 C:\WINDOWS\system32\rsvpsp.dll [92672] (Microsoft Corporation)
Catalog9 11 C:\WINDOWS\system32\rsvpsp.dll [92672] (Microsoft Corporation)

========================= Event log errors: ===============================

Application errors:
==================
Error: (12/27/2013 10:14:20 PM) (Source: crypt32) (User: )
Description: Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file.

Error: (12/27/2013 10:14:20 PM) (Source: crypt32) (User: )
Description: Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file.

Error: (12/27/2013 06:22:32 PM) (Source: NativeWrapper) (User: )
Description: visualstudio7x80updatemsiexec.exe1.0.1722.5085kb28339411033643finstallx865.1.2600.2.3.0.2560

Error: (12/27/2013 06:22:19 PM) (Source: MsiInstaller) (User: NT AUTHORITY)
Description: Product: Microsoft .NET Framework 1.1 - Update '{C0F0DCDC-99EA-4405-BDAE-CACABD3D2DF0}' could not be installed. Error code 1603. Additional information is available in the log file C:\WINDOWS\TEMP\NDP1.1sp1-KB2833941-X86\NDP1.1sp1-KB2833941-X86-msi.0.log.

Error: (12/27/2013 06:22:17 PM) (Source: MsiInstaller) (User: NT AUTHORITY)
Description: Product: Microsoft .NET Framework 1.1 -- Error 1706.No valid source could be found for product Microsoft .NET Framework 1.1.  The Windows installer cannot continue.

Error: (12/27/2013 03:02:38 AM) (Source: NativeWrapper) (User: )
Description: visualstudio7x80updatemsiexec.exe1.0.1722.5085kb28339411033643finstallx865.1.2600.2.3.0.2560

Error: (12/27/2013 03:02:35 AM) (Source: MsiInstaller) (User: NT AUTHORITY)
Description: Product: Microsoft .NET Framework 1.1 - Update '{C0F0DCDC-99EA-4405-BDAE-CACABD3D2DF0}' could not be installed. Error code 1603. Additional information is available in the log file C:\WINDOWS\TEMP\NDP1.1sp1-KB2833941-X86\NDP1.1sp1-KB2833941-X86-msi.0.log.

Error: (12/27/2013 03:02:33 AM) (Source: MsiInstaller) (User: NT AUTHORITY)
Description: Product: Microsoft .NET Framework 1.1 -- Error 1706.No valid source could be found for product Microsoft .NET Framework 1.1.  The Windows installer cannot continue.

Error: (12/26/2013 03:01:31 AM) (Source: NativeWrapper) (User: )
Description: visualstudio7x80updatemsiexec.exe1.0.1722.5085kb28339411033643finstallx865.1.2600.2.3.0.2560

Error: (12/26/2013 03:01:19 AM) (Source: MsiInstaller) (User: NT AUTHORITY)
Description: Product: Microsoft .NET Framework 1.1 - Update '{C0F0DCDC-99EA-4405-BDAE-CACABD3D2DF0}' could not be installed. Error code 1603. Additional information is available in the log file C:\WINDOWS\TEMP\NDP1.1sp1-KB2833941-X86\NDP1.1sp1-KB2833941-X86-msi.0.log.


System errors:
=============
Error: (12/28/2013 00:22:47 PM) (Source: Service Control Manager) (User: )
Description: The Computer Browser service depends on the Workstation service which failed to start because of the following error:
%%1066

Error: (12/28/2013 00:22:46 PM) (Source: Service Control Manager) (User: )
Description: The Workstation service terminated with service-specific error 2250 (0x8CA).

Error: (12/28/2013 00:22:46 PM) (Source: Workstation) (User: )
Description: Could not load RDR device driver.

Error: (12/28/2013 00:22:07 PM) (Source: Service Control Manager) (User: )
Description: The Computer Browser service depends on the Workstation service which failed to start because of the following error:
%%1066

Error: (12/28/2013 00:22:07 PM) (Source: Service Control Manager) (User: )
Description: The Workstation service terminated with service-specific error 2250 (0x8CA).

Error: (12/28/2013 00:22:07 PM) (Source: Service Control Manager) (User: )
Description: The Computer Browser service depends on the Workstation service which failed to start because of the following error:
%%1066

Error: (12/28/2013 00:22:07 PM) (Source: Service Control Manager) (User: )
Description: The Workstation service terminated with service-specific error 2250 (0x8CA).

Error: (12/28/2013 00:22:07 PM) (Source: Workstation) (User: )
Description: Could not load RDR device driver.

Error: (12/28/2013 00:22:06 PM) (Source: Workstation) (User: )
Description: Could not load RDR device driver.

Error: (12/28/2013 00:16:27 PM) (Source: Service Control Manager) (User: )
Description: The Computer Browser service depends on the Workstation service which failed to start because of the following error:
%%1066


Microsoft Office Sessions:
=========================
Error: (12/27/2013 10:14:20 PM) (Source: crypt32)(User: )
Description: http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cabA required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file.

Error: (12/27/2013 10:14:20 PM) (Source: crypt32)(User: )
Description: http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cabA required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file.

Error: (12/27/2013 06:22:32 PM) (Source: NativeWrapper)(User: )
Description: visualstudio7x80updatemsiexec.exe1.0.1722.5085kb28339411033643finstallx865.1.2600.2.3.0.2560

Error: (12/27/2013 06:22:19 PM) (Source: MsiInstaller)(User: NT AUTHORITY)
Description: Microsoft .NET Framework 1.1{C0F0DCDC-99EA-4405-BDAE-CACABD3D2DF0}1603C:\WINDOWS\TEMP\NDP1.1sp1-KB2833941-X86\NDP1.1sp1-KB2833941-X86-msi.0.log

Error: (12/27/2013 06:22:17 PM) (Source: MsiInstaller)(User: NT AUTHORITY)
Description: Product: Microsoft .NET Framework 1.1 -- Error 1706.No valid source could be found for product Microsoft .NET Framework 1.1.  The Windows installer cannot continue.(NULL)(NULL)(NULL)

Error: (12/27/2013 03:02:38 AM) (Source: NativeWrapper)(User: )
Description: visualstudio7x80updatemsiexec.exe1.0.1722.5085kb28339411033643finstallx865.1.2600.2.3.0.2560

Error: (12/27/2013 03:02:35 AM) (Source: MsiInstaller)(User: NT AUTHORITY)
Description: Microsoft .NET Framework 1.1{C0F0DCDC-99EA-4405-BDAE-CACABD3D2DF0}1603C:\WINDOWS\TEMP\NDP1.1sp1-KB2833941-X86\NDP1.1sp1-KB2833941-X86-msi.0.log

Error: (12/27/2013 03:02:33 AM) (Source: MsiInstaller)(User: NT AUTHORITY)
Description: Product: Microsoft .NET Framework 1.1 -- Error 1706.No valid source could be found for product Microsoft .NET Framework 1.1.  The Windows installer cannot continue.(NULL)(NULL)(NULL)

Error: (12/26/2013 03:01:31 AM) (Source: NativeWrapper)(User: )
Description: visualstudio7x80updatemsiexec.exe1.0.1722.5085kb28339411033643finstallx865.1.2600.2.3.0.2560

Error: (12/26/2013 03:01:19 AM) (Source: MsiInstaller)(User: NT AUTHORITY)
Description: Microsoft .NET Framework 1.1{C0F0DCDC-99EA-4405-BDAE-CACABD3D2DF0}1603C:\WINDOWS\TEMP\NDP1.1sp1-KB2833941-X86\NDP1.1sp1-KB2833941-X86-msi.0.log


=========================== Installed Programs ============================

Adobe Flash Player 11 ActiveX (Version: 11.9.900.170)
Adobe Flash Player 11 Plugin (Version: 11.9.900.170)
Adobe Reader X (10.1.7) (Version: 10.1.7)
Adobe Shockwave Player 12.0 (Version: 12.0.2.122)
Apple Application Support (Version: 2.3.6)
Apple Mobile Device Support (Version: 7.0.0.117)
Apple Software Update (Version: 2.1.3.127)
ArcSoft Camera Suite 1.3
Autodesk DWF Viewer (Version: 5.1)
Avira Free Antivirus (Version: 14.0.2.286)
Belkin F5D5000 Desktop PCI Card Driver (Version: 1.00.0000)
Bonjour (Version: 3.0.0.10)
Camera Window (Version: 4.6.2)
Canon Camera Support Core Library (Version: 7.0.3.20)
Canon Camera Window for ZoomBrowser EX (Version: 4.6.2)
Canon MovieEdit Task for ZoomBrowser EX (Version: 1.1.1.41)
Canon MP250 series MP Drivers
Canon PhotoRecord (Version: 02.00.00029)
Canon RAW Image Task for ZoomBrowser EX (Version: 1.1)
Canon RemoteCapture Task for ZoomBrowser EX (Version: 1.0.3)
Canon Utilities PhotoStitch 3.1 (Version: 3.1.13)
Canon Utilities ZoomBrowser EX (Version: 04.06.01035)
Compatibility Pack for the 2007 Office system (Version: 12.0.6612.1000)
Creative Memories StoryBook Creator Plus (Version: 2.0)
Creative Memories StoryBook Creator Plus 3 (Version: 3.0)
Google Earth Plug-in (Version: 7.1.2.2041)
Google Update Helper (Version: 1.3.22.3)
Intel® Extreme Graphics 2 Driver
iPod for Windows 2005-06-26 (Version: 3.8.0)
iTunes (Version: 11.1.1.11)
Java 7 Update 40 (Version: 7.0.400)
Java Auto Updater (Version: 2.1.9.8)
McAfee Security Scan Plus (Version: 2.1.121.2)
Microsoft .NET Framework 1.1 (Version: 1.1.4322)
Microsoft .NET Framework 1.1 Security Update (KB979906)
Microsoft .NET Framework 2.0 Service Pack 2 (Version: 2.2.30729)
Microsoft .NET Framework 3.0 Service Pack 2 (Version: 3.2.30729)
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 3.5 SP1 (Version: 3.5.30729)
Microsoft Office File Validation Add-In (Version: 14.0.5130.5003)
Microsoft Office Professional Edition 2003 (Version: 11.0.8173.0)
Microsoft Silverlight (Version: 5.1.20913.0)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (Version: 10.0.40219)
MovieEdit Task (Version: 1.1.1.41)
Mozilla Firefox 26.0 (x86 en-US) (Version: 26.0)
Mozilla Maintenance Service (Version: 26.0)
MSXML 4.0 SP2 (KB954430) (Version: 4.20.9870.0)
MSXML 4.0 SP2 (KB973688) (Version: 4.20.9876.0)
MSXML 6 Service Pack 2 (KB973686) (Version: 6.20.2003.0)
PhotoStitch (Version: 3.1.13)
PokerStars
QuickTime (Version: 7.74.80.86)
Rapport (Version: 3.5.1304.29)
RAW Image Task 1.1 (Version: 1.1)
RegCure Pro (Version: 3.1.7.0)
RemoteCapture Task 1.0.3 (Version: 1.0.3)
SUPERAntiSpyware (Version: 5.5.1012)
swMSM (Version: 12.0.0.1)
Trusteer Endpoint Protection (Version: 3.5.1304.29)
TurboTax 2011 (Version: 1.00.0000)
TurboTax 2012 (Version: 1.00.0000)
Update for Microsoft .NET Framework 3.5 SP1 (KB963707) (Version: 1)
Update for Windows XP (KB2345886) (Version: 1)
Update for Windows XP (KB2541763) (Version: 1)
Update for Windows XP (KB2607712) (Version: 1)
Update for Windows XP (KB2616676) (Version: 1)
Update for Windows XP (KB2641690) (Version: 1)
Update for Windows XP (KB2661254-v2) (Version: 2)
Update for Windows XP (KB2718704) (Version: 1)
Update for Windows XP (KB2736233) (Version: 1)
Update for Windows XP (KB2749655) (Version: 1)
Update for Windows XP (KB2863058) (Version: 1)
Update for Windows XP (KB2904266) (Version: 1)
Update for Windows XP (KB951978) (Version: 1)
Update for Windows XP (KB955759) (Version: 1)
Update for Windows XP (KB967715) (Version: 1)
Update for Windows XP (KB968389) (Version: 1)
Update for Windows XP (KB971029) (Version: 1)
Update for Windows XP (KB971737) (Version: 1)
Update for Windows XP (KB973687) (Version: 1)
Update for Windows XP (KB973815) (Version: 1)
WebFldrs XP (Version: 9.50.7523)
Windows Imaging Component (Version: 3.0.0.0)
Windows XP Service Pack 3 (Version: 20080414.031525)

========================= Memory info: ===================================

Percentage of memory in use: 36%
Total physical RAM: 502.98 MB
Available physical RAM: 320.73 MB
Total Pagefile: 1227.98 MB
Available Pagefile: 672.75 MB
Total Virtual: 2047.88 MB
Available Virtual: 1979.48 MB

========================= Partitions: =====================================

2 Drive c: () (Fixed) (Total:37.26 GB) (Free:1.91 GB) NTFS
4 Drive e: (BACKUP) (Fixed) (Total:232.88 GB) (Free:151.45 GB) NTFS

========================= Users: ========================================

User accounts for \\

Administrator            ASPNET                   Guest                    
HelpAssistant            Mike                     SUPPORT_388945a0         


**** End of log ****
 



#5 MikesbrokenPC

MikesbrokenPC
  • Topic Starter

  • Members
  • 23 posts
  • OFFLINE
  •  
  • Local time:04:30 AM

Posted 28 December 2013 - 12:58 PM

12:38:06.0687 0x0d88  TDSS rootkit removing tool 3.0.0.19 Nov 18 2013 09:27:50
12:38:13.0968 0x0d88  ============================================================
12:38:13.0968 0x0d88  Current date / time: 2013/12/28 12:38:13.0968
12:38:13.0968 0x0d88  SystemInfo:
12:38:13.0968 0x0d88  
12:38:13.0968 0x0d88  OS Version: 5.1.2600 ServicePack: 3.0
12:38:13.0968 0x0d88  Product type: Workstation
12:38:13.0968 0x0d88  ComputerName: STONES
12:38:13.0968 0x0d88  UserName: Mike
12:38:13.0968 0x0d88  Windows directory: C:\WINDOWS
12:38:13.0968 0x0d88  System windows directory: C:\WINDOWS
12:38:13.0968 0x0d88  Processor architecture: Intel x86
12:38:13.0968 0x0d88  Number of processors: 1
12:38:13.0968 0x0d88  Page size: 0x1000
12:38:13.0968 0x0d88  Boot type: Normal boot
12:38:13.0968 0x0d88  ============================================================
12:38:18.0015 0x0d88  KLMD registered as C:\WINDOWS\system32\drivers\96189854.sys
12:38:18.0406 0x0d88  System UUID: {B9733637-36F7-4D7C-116E-037D7DE6C317}
12:38:20.0265 0x0d88  Drive \Device\Harddisk0\DR0 - Size: 0x3A38B2E000 (232.89 Gb), SectorSize: 0x200, Cylinders: 0x76C1, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054
12:38:20.0296 0x0d88  Drive \Device\Harddisk1\DR1 - Size: 0x9516AE000 (37.27 Gb), SectorSize: 0x200, Cylinders: 0x1301, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054
12:38:20.0390 0x0d88  ============================================================
12:38:20.0390 0x0d88  \Device\Harddisk0\DR0:
12:38:20.0390 0x0d88  MBR partitions:
12:38:20.0390 0x0d88  \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x1D1C4542
12:38:20.0390 0x0d88  \Device\Harddisk1\DR1:
12:38:20.0406 0x0d88  MBR partitions:
12:38:20.0406 0x0d88  \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x4A852C1
12:38:20.0406 0x0d88  ============================================================
12:38:20.0437 0x0d88  C: <-> \Device\Harddisk1\DR1\Partition1
12:38:20.0437 0x0d88  E: <-> \Device\Harddisk0\DR0\Partition1
12:38:20.0437 0x0d88  ============================================================
12:38:20.0437 0x0d88  Initialize success
12:38:20.0437 0x0d88  ============================================================
12:38:22.0453 0x0de8  ============================================================
12:38:22.0453 0x0de8  Scan started
12:38:22.0453 0x0de8  Mode: Manual;
12:38:22.0453 0x0de8  ============================================================
12:38:22.0453 0x0de8  KSN ping started
12:38:24.0218 0x0de8  KSN ping finished: true
12:38:24.0812 0x0de8  ================ Scan system memory ========================
12:38:24.0812 0x0de8  System memory - ok
12:38:24.0812 0x0de8  ================ Scan services =============================
12:38:25.0031 0x0de8  [ C0393EB99A6C72C6BEF9BFC4A72B33A6, 72BF029C6A37DE131FFD61C2374C8920556236218613E37B5F348AA89FA12E42 ] !SASCORE        C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
12:38:25.0203 0x0de8  !SASCORE - ok
12:38:25.0937 0x0de8  [ F7EABCA8375EA2DC6F35C4BCA4757515, D2CE677ED6EEB06D2FD6D1C7348EA025A0F3A24BE15F7B273A6DC59957361684 ] A2DDA           C:\Documents and Settings\Administrator\My Documents\Downloads\EmsisoftEmergencyKit\Run\a2ddax86.sys
12:38:26.0781 0x0de8  A2DDA - ok
12:38:30.0484 0x0de8  Abiosdsk - ok
12:38:30.0500 0x0de8  abp480n5 - ok
12:38:30.0578 0x0de8  [ 8FD99680A539792A30E97944FDAECF17, 594F8E0C3695400B0C09A797AF6BDFAC6F750ECD67D0EE803914C572B1DCC43C ] ACPI            C:\WINDOWS\system32\DRIVERS\ACPI.sys
12:38:30.0593 0x0de8  ACPI - ok
12:38:30.0656 0x0de8  [ 9859C0F6936E723E4892D7141B1327D5, 5E8F6A2FC4DF2E5E92A1D66ECC2810E08B42B64E9CD0DF4AD3F78EA8558B90AF ] ACPIEC          C:\WINDOWS\system32\drivers\ACPIEC.sys
12:38:30.0687 0x0de8  ACPIEC - ok
12:38:30.0812 0x0de8  [ 1BA1AB4141A92EB34DA99F1249CA2D4D, 43ADF35146E61E0DE58D2ACC2994538F6025135ECEB30073BEF05A804BB38107 ] AdobeFlashPlayerUpdateSvc C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
12:38:30.0828 0x0de8  AdobeFlashPlayerUpdateSvc - ok
12:38:30.0843 0x0de8  adpu160m - ok
12:38:30.0906 0x0de8  [ B2886807AC2543DA273765CEF4D82D68, AF1D6AE661828991EA2C617D5927BF9934218CBE9AE9B2D45C9953E52E9356EF ] aeaudio         C:\WINDOWS\system32\drivers\aeaudio.sys
12:38:30.0984 0x0de8  aeaudio - ok
12:38:31.0031 0x0de8  [ 8BED39E3C35D6A489438B8141717A557, 1B5796E56B0927360CE0759641B1151828BC0A9E45620D2B2D880491F5CE33D0 ] aec             C:\WINDOWS\system32\drivers\aec.sys
12:38:31.0109 0x0de8  aec - ok
12:38:31.0171 0x0de8  [ 1E44BC1E83D8FD2305F8D452DB109CF9, CF5EC07E0B589FA2A4701C6CFD69E893FC3ABF274AD57AE3C13FFE49063B02C8 ] AFD             C:\WINDOWS\System32\drivers\afd.sys
12:38:31.0296 0x0de8  AFD - ok
12:38:31.0328 0x0de8  Aha154x - ok
12:38:31.0343 0x0de8  aic78u2 - ok
12:38:31.0359 0x0de8  aic78xx - ok
12:38:31.0406 0x0de8  [ A9A3DAA780CA6C9671A19D52456705B4, 67C959144B57AE0BBF1D82DBED197F32CDB06FECD883A80C441A0202FE83FAB4 ] Alerter         C:\WINDOWS\system32\alrsvc.dll
12:38:31.0453 0x0de8  Alerter - ok
12:38:31.0484 0x0de8  [ 8C515081584A38AA007909CD02020B3D, A5E13CA10F702928E0DE84C74D0EA8ACCB117FD76FBABC55220C75C4FFD596DC ] ALG             C:\WINDOWS\System32\alg.exe
12:38:31.0484 0x0de8  ALG - ok
12:38:31.0500 0x0de8  AliIde - ok
12:38:31.0515 0x0de8  amsint - ok
12:38:31.0656 0x0de8  [ FE79366FECD444A16CCA9979134DBEA8, 91D2301E35C89B9FAD5680124EA51DC346159DC78556ACCD935F9B236B9FDCBC ] AntiVirSchedulerService C:\Program Files\Avira\AntiVir Desktop\sched.exe
12:38:31.0828 0x0de8  AntiVirSchedulerService - ok
12:38:31.0921 0x0de8  [ FDE9C7030FB1E9E2715E113EE6A10F90, 541F278D743C34C6D9940FC1250B90674EB88EC429D481012F27817DAB1B557A ] AntiVirService  C:\Program Files\Avira\AntiVir Desktop\avguard.exe
12:38:32.0015 0x0de8  AntiVirService - ok
12:38:32.0171 0x0de8  [ 30E3850F303EAE5C364782EA78579CC9, 8C94E5A9052F6E794685194EEACB31A174A947D60246908B6A0DEFA081A747A3 ] Apple Mobile Device C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
12:38:32.0218 0x0de8  Apple Mobile Device - ok
12:38:32.0296 0x0de8  [ D8849F77C0B66226335A59D26CB4EDC6, 4990031453204C57E36E850252A39B05D6ECDAB9E71A8136FB4900F17E59C9CA ] AppMgmt         C:\WINDOWS\System32\appmgmts.dll
12:38:32.0359 0x0de8  AppMgmt - ok
12:38:32.0390 0x0de8  asc - ok
12:38:32.0406 0x0de8  asc3350p - ok
12:38:32.0421 0x0de8  asc3550 - ok
12:38:32.0625 0x0de8  [ 0E5E4957549056E2BF2C49F4F6B601AD, F7F19FDC906B719A3516D30A9B4A2262C8CC5B36B94E3D4195C345EC4610FF2B ] aspnet_state    C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
12:38:32.0718 0x0de8  aspnet_state - ok
12:38:32.0765 0x0de8  [ B153AFFAC761E7F5FCFA822B9C4E97BC, 7E60F572A6B3C6219E3C86225AA37243AFFD74337DB7F108B04778042E5CC959 ] AsyncMac        C:\WINDOWS\system32\DRIVERS\asyncmac.sys
12:38:32.0812 0x0de8  AsyncMac - ok
12:38:32.0859 0x0de8  [ 9F3A2F5AA6875C72BF062C712CFA2674, B4DF1D2C56A593C6B54DE57395E3B51D288F547842893B32B0F59228A0CF70B9 ] atapi           C:\WINDOWS\system32\DRIVERS\atapi.sys
12:38:32.0859 0x0de8  atapi - ok
12:38:32.0875 0x0de8  Atdisk - ok
12:38:32.0906 0x0de8  [ 9916C1225104BA14794209CFA8012159, 5D6F05F715C52A16D05CAE15C3DFE77A139A7F27F7AE710EC9A10F9EE05115A1 ] Atmarpc         C:\WINDOWS\system32\DRIVERS\atmarpc.sys
12:38:32.0968 0x0de8  Atmarpc - ok
12:38:33.0046 0x0de8  [ DEF7A7882BEC100FE0B2CE2549188F9D, 462C95B63D0A1058291A2DC8CBFCB13D7D74CCD1CA43B613A7EB43D49E3276F8 ] AudioSrv        C:\WINDOWS\System32\audiosrv.dll
12:38:33.0093 0x0de8  AudioSrv - ok
12:38:33.0156 0x0de8  [ D9F724AA26C010A217C97606B160ED68, 329B5118F2409731D06FDAE85B6ADD64A048292801BCB3546651CEB303111695 ] audstub         C:\WINDOWS\system32\DRIVERS\audstub.sys
12:38:33.0218 0x0de8  audstub - ok
12:38:33.0265 0x0de8  [ B8C10FF9369394EB84993F331810CF29, 84D674EF4FB73FD9D1539DFCC52361C2FBAFD5A2DEF1FFF4F1F416721AA80F85 ] avgntflt        C:\WINDOWS\system32\DRIVERS\avgntflt.sys
12:38:33.0312 0x0de8  avgntflt - ok
12:38:33.0375 0x0de8  [ 4189E5AB2CAD6F395D87DAAE73EB090F, 8A98667451F0A9E81204BC9DD34B7BDA147FB867F0969361ED6F9C0CD422E49C ] avipbb          C:\WINDOWS\system32\DRIVERS\avipbb.sys
12:38:33.0437 0x0de8  avipbb - ok
12:38:33.0484 0x0de8  [ D8C712305F73CD34D1B344810E522728, 49A474FF6CA44E8427D7A8290B47395125B0148AF384CF2B3B1FA495A4718CBA ] avkmgr          C:\WINDOWS\system32\DRIVERS\avkmgr.sys
12:38:33.0546 0x0de8  avkmgr - ok
12:38:33.0609 0x0de8  [ DA1F27D85E0D1525F6621372E7B685E9, 5A81A46A3BDD19DAFC6C87D277267A5D44F3A1B5302F2CC1111D84B7BAD5610D ] Beep            C:\WINDOWS\system32\drivers\Beep.sys
12:38:33.0640 0x0de8  Beep - ok
12:38:33.0781 0x0de8  [ 574738F61FCA2935F5265DC4E5691314, 3C7CCF064397186C3A3863DD2370AB6414A61B330097DCA4F299CA7BBAA3D1B4 ] BITS            C:\WINDOWS\system32\qmgr.dll
12:38:33.0843 0x0de8  BITS - ok
12:38:33.0984 0x0de8  [ DB5BEA73EDAF19AC68B2C0FAD0F92B1A, 10F21999FF6B1D410EBF280F7F27DEACA5289739CF12F4293B614B8FC6C88DCC ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
12:38:34.0000 0x0de8  Bonjour Service - ok
12:38:34.0093 0x0de8  [ CFD4E51402DA9838B5A04AE680AF54A0, 5378F42B195B5832B00A05AD64E00473A45FFB86AC25C57241F26EA82B149FE1 ] Browser         C:\WINDOWS\System32\browser.dll
12:38:34.0125 0x0de8  Browser - ok
12:38:34.0125 0x0de8  catchme - ok
12:38:34.0187 0x0de8  [ 90A673FC8E12A79AFBED2576F6A7AAF9, BDE7858A3457DB979FEDD8577FA6321BF72848E4A7BF9F173C78A6A10CBB3EBE ] cbidf2k         C:\WINDOWS\system32\drivers\cbidf2k.sys
12:38:34.0250 0x0de8  cbidf2k - ok
12:38:34.0265 0x0de8  cd20xrnt - ok
12:38:34.0312 0x0de8  [ C1B486A7658353D33A10CC15211A873B, AA4DD9E7AAE5AAB1146B360B17001F975D2F29A1281CF7B13E7136480410F347 ] Cdaudio         C:\WINDOWS\system32\drivers\Cdaudio.sys
12:38:34.0359 0x0de8  Cdaudio - ok
12:38:34.0406 0x0de8  [ C885B02847F5D2FD45A24E219ED93B32, B26B2F8E3A831E2B65EB0C5195B0645CD50E22615CE79C9B0B391CD563B121DB ] Cdfs            C:\WINDOWS\system32\drivers\Cdfs.sys
12:38:34.0453 0x0de8  Cdfs - ok
12:38:34.0515 0x0de8  [ 1F4260CC5B42272D71F79E570A27A4FE, B51C2A3ED3C309953D0EA45869C8E464C10F2533DADE9E0286AF674979098D1D ] Cdrom           C:\WINDOWS\system32\DRIVERS\cdrom.sys
12:38:34.0578 0x0de8  Cdrom - ok
12:38:34.0593 0x0de8  Changer - ok
12:38:34.0625 0x0de8  [ 1CFE720EB8D93A7158A4EBC3AB178BDE, 65D2A9D9A88F38D4AF323134C151BA0F4B3CD0F6A134AF86E7AC9D07319F1726 ] CiSvc           C:\WINDOWS\system32\cisvc.exe
12:38:34.0656 0x0de8  CiSvc - ok
12:38:34.0687 0x0de8  [ 34CBE729F38138217F9C80212A2A0C82, A9FD7A758D12E0818A11BEEF1CE772FEFA8373E92EF6C0DA8628CD4572CC9A43 ] ClipSrv         C:\WINDOWS\system32\clipsrv.exe
12:38:34.0718 0x0de8  ClipSrv - ok
12:38:34.0781 0x0de8  [ D87ACAED61E417BBA546CED5E7E36D9C, 14AC6034A5BC0FB2A1AFDAD42BEF4DE641556E54AD30D0C46765660A4BE55462 ] clr_optimization_v2.0.50727_32 C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
12:38:34.0953 0x0de8  clr_optimization_v2.0.50727_32 - ok
12:38:34.0968 0x0de8  CmdIde - ok
12:38:34.0984 0x0de8  COMSysApp - ok
12:38:35.0015 0x0de8  Cpqarray - ok
12:38:35.0078 0x0de8  [ 3D4E199942E29207970E04315D02AD3B, 0825960894CF9C86CC8775BDD2A262948A09CA495AA7FE9F210FAF49E7086383 ] CryptSvc        C:\WINDOWS\System32\cryptsvc.dll
12:38:35.0125 0x0de8  CryptSvc - ok
12:38:35.0140 0x0de8  dac2w2k - ok
12:38:35.0156 0x0de8  dac960nt - ok
12:38:35.0296 0x0de8  [ 6B27A5C03DFB94B4245739065431322C, 6AEAC16AB4E0DFD25123AAF4D4181FEE1B919B7B2793117006CE8CF30E826CFD ] DcomLaunch      C:\WINDOWS\system32\rpcss.dll
12:38:35.0328 0x0de8  DcomLaunch - ok
12:38:35.0390 0x0de8  [ 5E38D7684A49CACFB752B046357E0589, F192AD4190BCFB6939A5CBC91648FE63168AF79A5E227A111DEAD6A92E42AB8D ] Dhcp            C:\WINDOWS\System32\dhcpcsvc.dll
12:38:35.0390 0x0de8  Dhcp - ok
12:38:35.0453 0x0de8  [ 044452051F3E02E7963599FC8F4F3E25, 584BDDB074618BE76454CF90E74829CFF588B5B5FAEB793E2F7AAD26352DD689 ] Disk            C:\WINDOWS\system32\DRIVERS\disk.sys
12:38:35.0531 0x0de8  Disk - ok
12:38:35.0546 0x0de8  dmadmin - ok
12:38:35.0640 0x0de8  [ D992FE1274BDE0F84AD826ACAE022A41, C82BD6561A14F2932A761F5883A787B99031250EE5E9B7B5714AA045545C9B99 ] dmboot          C:\WINDOWS\system32\drivers\dmboot.sys
12:38:35.0734 0x0de8  dmboot - ok
12:38:35.0781 0x0de8  [ 7C824CF7BBDE77D95C08005717A95F6F, A73CB323B7A6410C3D3F258BF204E716ADF8C84C9E4F6562C57AB73DAED8CCDE ] dmio            C:\WINDOWS\system32\drivers\dmio.sys
12:38:35.0828 0x0de8  dmio - ok
12:38:35.0890 0x0de8  [ E9317282A63CA4D188C0DF5E09C6AC5F, D41E002F555FE9015EF620975255F58BB79198CA1FF0E09EC950CB450FF77CF7 ] dmload          C:\WINDOWS\system32\drivers\dmload.sys
12:38:35.0906 0x0de8  dmload - ok
12:38:35.0953 0x0de8  [ 57EDEC2E5F59F0335E92F35184BC8631, 61F6F0DC2D1A6C61D5EF0D5CC4BE0FFC217F1E61FDA3EA9F704709293656600F ] dmserver        C:\WINDOWS\System32\dmserver.dll
12:38:35.0984 0x0de8  dmserver - ok
12:38:36.0015 0x0de8  [ 8A208DFCF89792A484E76C40E5F50B45, 4E40E2EB38C6254E7CAA488200E89EE7DEBBBA773890BC6A84313CC68178D54F ] DMusic          C:\WINDOWS\system32\drivers\DMusic.sys
12:38:36.0062 0x0de8  DMusic - ok
12:38:36.0125 0x0de8  [ 5F7E24FA9EAB896051FFB87F840730D2, 356EEFDCD54DECAD0170B34B993E4BF80DD039E2B2922D7A8D09B84031E9FC7A ] Dnscache        C:\WINDOWS\System32\dnsrslvr.dll
12:38:36.0156 0x0de8  Dnscache - ok
12:38:36.0234 0x0de8  [ 0F0F6E687E5E15579EF4DA8DD6945814, 5C32D88119EB1465B2D719BEE2E05888D1A73454B5E33F2D4928DA710F8BFBA3 ] Dot3svc         C:\WINDOWS\System32\dot3svc.dll
12:38:36.0312 0x0de8  Dot3svc - ok
12:38:36.0328 0x0de8  dpti2o - ok
12:38:36.0375 0x0de8  [ 8F5FCFF8E8848AFAC920905FBD9D33C8, C8C6FB97AB0871C8C88A2201525A5CF10D5131CB6980D32692ED7A8F58399AD5 ] drmkaud         C:\WINDOWS\system32\drivers\drmkaud.sys
12:38:36.0406 0x0de8  drmkaud - ok
12:38:36.0484 0x0de8  [ 2187855A7703ADEF0CEF9EE4285182CC, 8233CC11F637866C0074043835A785EA2B616739B6B1181B143A253CF2508CFD ] EapHost         C:\WINDOWS\System32\eapsvc.dll
12:38:36.0500 0x0de8  EapHost - ok
12:38:36.0562 0x0de8  [ BC93B4A066477954555966D77FEC9ECB, 27F5B780175EF46DA102EE33F7F33559C8B40C077EEA4405D579D9507F4B1C23 ] ERSvc           C:\WINDOWS\System32\ersvc.dll
12:38:36.0578 0x0de8  ERSvc - ok
12:38:36.0640 0x0de8  [ 65DF52F5B8B6E9BBD183505225C37315, 59C606977DB40A3443DFF0BE2A4C761824881B22C9FDB3D23F6486DB580E92A4 ] Eventlog        C:\WINDOWS\system32\services.exe
12:38:36.0687 0x0de8  Eventlog - ok
12:38:36.0765 0x0de8  [ D4991D98F2DB73C60D042F1AEF79EFAE, 58AF949EAEBF4FF3E3314DFB66CE4198BF65F0836B68CD27A6ED319742CCCCD2 ] EventSystem     C:\WINDOWS\system32\es.dll
12:38:36.0781 0x0de8  EventSystem - ok
12:38:36.0828 0x0de8  [ 38D332A6D56AF32635675F132548343E, E6909DB836AF679B4F4D62C7396D6C82769CC7ABB8C919C2AABFE934FCE268F6 ] Fastfat         C:\WINDOWS\system32\drivers\Fastfat.sys
12:38:36.0843 0x0de8  Fastfat - ok
12:38:36.0921 0x0de8  [ 99BC0B50F511924348BE19C7C7313BBF, A1006C687BD352F700B140DC741515A0CDD9E1352C0FBD1EE410D404E344444B ] FastUserSwitchingCompatibility C:\WINDOWS\System32\shsvcs.dll
12:38:36.0968 0x0de8  FastUserSwitchingCompatibility - ok
12:38:37.0015 0x0de8  [ 92CDD60B6730B9F50F6A1A0C1F8CDC81, 8307A532AB4D05CBBCE206DC2759497708BF5AAA880BD00F0E4F281D8578A1F5 ] Fdc             C:\WINDOWS\system32\DRIVERS\fdc.sys
12:38:37.0093 0x0de8  Fdc - ok
12:38:37.0125 0x0de8  [ D45926117EB9FA946A6AF572FBE1CAA3, 4C94EF009D778BE0BDF8F812F026B96F91F641BE30AA2531427A5E63DBD280DA ] Fips            C:\WINDOWS\system32\drivers\Fips.sys
12:38:37.0171 0x0de8  Fips - ok
12:38:37.0218 0x0de8  [ 9D27E7B80BFCDF1CDD9B555862D5E7F0, 69C271AD5BCEBFD8AE5A769BDD7EC51256DA3A8ADAD5D12E5C0D13F4E82D8805 ] Flpydisk        C:\WINDOWS\system32\DRIVERS\flpydisk.sys
12:38:37.0250 0x0de8  Flpydisk - ok
12:38:37.0312 0x0de8  [ B2CF4B0786F8212CB92ED2B50C6DB6B0, 280F5CF8A90F7BEDE73ADD0DD0F8952088133A7CA9A3D3B7041957E33B36845D ] FltMgr          C:\WINDOWS\system32\drivers\fltmgr.sys
12:38:37.0390 0x0de8  FltMgr - ok
12:38:37.0484 0x0de8  [ 8BA7C024070F2B7FDD98ED8A4BA41789, 47585006F86B2C6016EC54250A416794792D1E4024FF229C120BC25B684AF66A ] FontCache3.0.0.0 C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
12:38:37.0562 0x0de8  FontCache3.0.0.0 - ok
12:38:37.0593 0x0de8  [ 3E1E2BD4F39B0E2B7DC4F4D2BCC2779A, EC635E071201A766845D48973772CBE0958942B4162F3F5F70660D114CC877E0 ] Fs_Rec          C:\WINDOWS\system32\drivers\Fs_Rec.sys
12:38:37.0625 0x0de8  Fs_Rec - ok
12:38:37.0656 0x0de8  [ 6AC26732762483366C3969C9E4D2259D, FF2C9A23CC17F380093F0BEA955B1925794271C2FEA16B9B7639668E6999BAE3 ] Ftdisk          C:\WINDOWS\system32\DRIVERS\ftdisk.sys
12:38:37.0718 0x0de8  Ftdisk - ok
12:38:37.0781 0x0de8  [ 185ADA973B5020655CEE342059A86CBB, D3E352DFAF30761505480A4C557D980083F65EC5BD46E2656B2114D47B272A89 ] GEARAspiWDM     C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys
12:38:37.0843 0x0de8  GEARAspiWDM - ok
12:38:37.0906 0x0de8  [ 0A02C63C8B144BD8C86B103DEE7C86A2, 7A3235DD3E1995DD72B212FAEB3ECA2A974434DE9BF6D269EA11BA65A80E7E50 ] Gpc             C:\WINDOWS\system32\DRIVERS\msgpc.sys
12:38:37.0937 0x0de8  Gpc - ok
12:38:38.0062 0x0de8  [ F02A533F517EB38333CB12A9E8963773, 1F72CD1CF660766FA8F912E40B7323A0192A300B376186C10F6803DC5EFE28DF ] gupdate         C:\Program Files\Google\Update\GoogleUpdate.exe
12:38:38.0125 0x0de8  gupdate - ok
12:38:38.0171 0x0de8  [ F02A533F517EB38333CB12A9E8963773, 1F72CD1CF660766FA8F912E40B7323A0192A300B376186C10F6803DC5EFE28DF ] gupdatem        C:\Program Files\Google\Update\GoogleUpdate.exe
12:38:38.0187 0x0de8  gupdatem - ok
12:38:38.0281 0x0de8  [ 4FCCA060DFE0C51A09DD5C3843888BCD, D82417706B517F2610DDF7C86BE03A72EFA9A2A389DF5C8F8ADEAB8144E2C80A ] helpsvc         C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
12:38:38.0328 0x0de8  helpsvc - ok
12:38:38.0343 0x0de8  HidServ - ok
12:38:38.0390 0x0de8  [ CCF82C5EC8A7326C3066DE870C06DAF1, 93395FA4C26B2E82DC8B7025ED3BCF583885E5D8C5F60CD6EEAA6335D6A126EC ] hidusb          C:\WINDOWS\system32\DRIVERS\hidusb.sys
12:38:38.0437 0x0de8  hidusb - ok
12:38:38.0500 0x0de8  [ 8878BD685E490239777BFE51320B88E9, C5C3ECF6B049B6736E35B39518A8F830B45C45A88FFE8E3A6B7922AD946597E2 ] hkmsvc          C:\WINDOWS\System32\kmsvc.dll
12:38:38.0546 0x0de8  hkmsvc - ok
12:38:38.0562 0x0de8  hpn - ok
12:38:38.0640 0x0de8  [ F80A415EF82CD06FFAF0D971528EAD38, 524D9E9201572929522F6805011783711B7C0F76308B924C89CF75F4B7A1FDF3 ] HTTP            C:\WINDOWS\system32\Drivers\HTTP.sys
12:38:38.0656 0x0de8  HTTP - ok
12:38:38.0718 0x0de8  [ 6100A808600F44D999CEBDEF8841C7A3, 61A75118C327812C60622010985A2E80E79B6FD9030A5732390EE5426E4AF6C9 ] HTTPFilter      C:\WINDOWS\System32\w3ssl.dll
12:38:38.0781 0x0de8  HTTPFilter - ok
12:38:38.0796 0x0de8  i2omgmt - ok
12:38:38.0812 0x0de8  i2omp - ok
12:38:38.0859 0x0de8  [ 4A0B06AA8943C1E332520F7440C0AA30, DB2452390CCFE67E0C5FEB4FD42CA24ABE2DDD40D0B22DD5F5B8F70416863918 ] i8042prt        C:\WINDOWS\system32\DRIVERS\i8042prt.sys
12:38:38.0906 0x0de8  i8042prt - ok
12:38:38.0968 0x0de8  [ 8AFBDA54D93D3C14FD8686BC2F2E2E18, E02BB5CE03DB9B2E89D013D1FB413CDBB1F288578344BD14CFA4E82AD8941C61 ] ialm            C:\WINDOWS\system32\DRIVERS\ialmnt5.sys
12:38:39.0000 0x0de8  ialm - ok
12:38:39.0125 0x0de8  [ C01AC32DC5C03076CFB852CB5DA5229C, A4D7749220B5BC965D96A267F1E02FE8284A230BA249109207BD4B9EA8DFAC96 ] idsvc           C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
12:38:39.0468 0x0de8  idsvc - ok
12:38:39.0515 0x0de8  [ 083A052659F5310DD8B6A6CB05EDCF8E, 48D39B03FFB6FAA1529B774443BA12618AE3982D9F65A7B9D18F2269F78B31F4 ] Imapi           C:\WINDOWS\system32\DRIVERS\imapi.sys
12:38:39.0546 0x0de8  Imapi - ok
12:38:39.0609 0x0de8  [ 30DEAF54A9755BB8546168CFE8A6B5E1, 3936228CD3125C763ABFCB93E86E4B43838202BCC0913A28E84AC0263B43EE0D ] ImapiService    C:\WINDOWS\system32\imapi.exe
12:38:39.0625 0x0de8  ImapiService - ok
12:38:39.0640 0x0de8  ini910u - ok
12:38:39.0703 0x0de8  [ B5466A9250342A7AA0CD1FBA13420678, 87E735C4E8924A883AB692D387A83BCBFAE6E165688336AE7AB488F7CA8D339E ] IntelIde        C:\WINDOWS\system32\DRIVERS\intelide.sys
12:38:39.0734 0x0de8  IntelIde - ok
12:38:39.0812 0x0de8  [ 8C953733D8F36EB2133F5BB58808B66B, 555868F246D73652E998B0B1296476E42FCEDED30D646CC000F31ECE4EBC25E6 ] intelppm        C:\WINDOWS\system32\DRIVERS\intelppm.sys
12:38:39.0812 0x0de8  intelppm - ok
12:38:39.0843 0x0de8  [ 3BB22519A194418D5FEC05D800A19AD0, F6662F440950596DC1382DD1DB5D7891CCEA30A6062BEA942C18445B5F0D8B16 ] Ip6Fw           C:\WINDOWS\system32\drivers\ip6fw.sys
12:38:39.0875 0x0de8  Ip6Fw - ok
12:38:39.0906 0x0de8  [ 731F22BA402EE4B62748ADAF6363C182, 5C3BEBD008A5BE4DC2F92076FF41A10DDC01E10EC7E6552213CFA11970811848 ] IpFilterDriver  C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
12:38:39.0953 0x0de8  IpFilterDriver - ok
12:38:39.0984 0x0de8  [ B87AB476DCF76E72010632B5550955F5, E6E74D3A86A7917A8BAED44F8E97CCD2EB171E4E4B27E9907F60D1523FAF319A ] IpInIp          C:\WINDOWS\system32\DRIVERS\ipinip.sys
12:38:40.0015 0x0de8  IpInIp - ok
12:38:40.0062 0x0de8  [ CC748EA12C6EFFDE940EE98098BF96BB, AF523E21C25D9A1715EFEA573E4F52AF5D4FC9F28A2D613F5DB629C186C439E0 ] IpNat           C:\WINDOWS\system32\DRIVERS\ipnat.sys
12:38:40.0062 0x0de8  IpNat - ok
12:38:40.0171 0x0de8  [ 061614179585BE398A73B9B3AF111310, BE715790531CBF3E038C6C2083A0802FA492D1DCAB3ACFE035DF72E3D6A4B83B ] iPod Service    C:\Program Files\iPod\bin\iPodService.exe
12:38:40.0203 0x0de8  iPod Service - ok
12:38:40.0234 0x0de8  [ 23C74D75E36E7158768DD63D92789A91, 394D296F38E7D8EFD91A6EEC301D9CE6AF910E35EB9819F1A9E3363863AEDFDC ] IPSec           C:\WINDOWS\system32\DRIVERS\ipsec.sys
12:38:40.0281 0x0de8  IPSec - ok
12:38:40.0328 0x0de8  [ C93C9FF7B04D772627A3646D89F7BF89, 805FA48E7A46D4F10240BF880A2468F53DEA36E83004399228AB70DB7D20544A ] IRENUM          C:\WINDOWS\system32\DRIVERS\irenum.sys
12:38:40.0359 0x0de8  IRENUM - ok
12:38:40.0406 0x0de8  [ 05A299EC56E52649B1CF2FC52D20F2D7, 2654619DB3E6D6C385B63AB02F87D4241C4F0250CC31383D1B3586917166C2DC ] isapnp          C:\WINDOWS\system32\DRIVERS\isapnp.sys
12:38:40.0453 0x0de8  isapnp - ok
12:38:40.0625 0x0de8  [ A5937B2A94424CF1B13A4AD503AF6B2E, E96CE4E526E053FB410987BD444627BC7B26FCE48DC0A61916ADD0A69EFA6941 ] JavaQuickStarterService C:\Program Files\Java\jre7\bin\jqs.exe
12:38:40.0671 0x0de8  JavaQuickStarterService - ok
12:38:40.0703 0x0de8  [ 463C1EC80CD17420A542B7F36A36F128, E3B11BA26AFEAFB50B0FC168EA07F6049DA6B88BCDDEEE20310602D7FC27A3A7 ] Kbdclass        C:\WINDOWS\system32\DRIVERS\kbdclass.sys
12:38:40.0750 0x0de8  Kbdclass - ok
12:38:40.0781 0x0de8  [ 692BCF44383D056AED41B045A323D378, 1A99DEE83FFAF64E73067FC049C0A4CE07D94E4AE31EFA17B38CEFA9E41D67DC ] kmixer          C:\WINDOWS\system32\drivers\kmixer.sys
12:38:40.0843 0x0de8  kmixer - ok
12:38:40.0906 0x0de8  [ B467646C54CC746128904E1654C750C1, 3BD71BE3663EA23463D236D8A2A2E42DFA10C502BDB4B6E131FAF0FBA748219E ] KSecDD          C:\WINDOWS\system32\drivers\KSecDD.sys
12:38:40.0953 0x0de8  KSecDD - ok
12:38:41.0031 0x0de8  [ 3A7C3CBE5D96B8AE96CE81F0B22FB527, 0044F03132596A494448CCE5F3D6ECC12617BB4CF6BAE348F79D4DC40ACD6EE0 ] lanmanserver    C:\WINDOWS\System32\srvsvc.dll
12:38:41.0078 0x0de8  lanmanserver - ok
12:38:41.0140 0x0de8  [ A8888A5327621856C0CEC4E385F69309, B08B63300D824E35E31EEEA2C4C086DFA2C2A964CEDAE512E74D3D88AADAA2C1 ] lanmanworkstation C:\WINDOWS\System32\wkssvc.dll
12:38:41.0203 0x0de8  lanmanworkstation - ok
12:38:41.0218 0x0de8  lbrtfdc - ok
12:38:41.0296 0x0de8  [ A7DB739AE99A796D91580147E919CC59, EDF4E039BA277B0E6D66FEB0B28096E67D682C09DFC18ECECF062D9DCFB75ACF ] LmHosts         C:\WINDOWS\System32\lmhsvc.dll
12:38:41.0328 0x0de8  LmHosts - ok
12:38:41.0468 0x0de8  [ FD3AD5E1ECDAA94A89D6697F5C5465D6, 63DA8E601B90DA558F0B089E89DD559C3C930430270D85CACAC0C0C8D08E5BB2 ] McComponentHostService C:\Program Files\McAfee Security Scan\2.1.121\McCHSvc.exe
12:38:41.0531 0x0de8  McComponentHostService - ok
12:38:41.0656 0x0de8  [ 11F714F85530A2BD134074DC30E99FCA, BDB5FD3B2DF4ADD19B31965B3E789768B59E872B3EA85912B1FFB32B2AF9D5D8 ] MDM             C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
12:38:41.0750 0x0de8  MDM - ok
12:38:41.0828 0x0de8  [ 986B1FF5814366D71E0AC5755C88F2D3, E6AF051174531C24B38E73987755D366ABEC595476C6D17793E8DCCC73F55340 ] Messenger       C:\WINDOWS\System32\msgsvc.dll
12:38:41.0859 0x0de8  Messenger - ok
12:38:41.0906 0x0de8  [ 4AE068242760A1FB6E1A44BF4E16AFA6, 1FB771162B96AAF787AC24867B818DF8511F0780BB094FA9A38C11D8DBFE68BC ] mnmdd           C:\WINDOWS\system32\drivers\mnmdd.sys
12:38:41.0937 0x0de8  mnmdd - ok
12:38:42.0000 0x0de8  [ D18F1F0C101D06A1C1ADF26EED16FCDD, BA0837C7780BD8262E143E2935AFA63BE59C3C39EF56CB8608EED0F50AF070D4 ] mnmsrvc         C:\WINDOWS\system32\mnmsrvc.exe
12:38:42.0031 0x0de8  mnmsrvc - ok
12:38:42.0062 0x0de8  [ DFCBAD3CEC1C5F964962AE10E0BCC8E1, B342CC9EC3729AB1AB4B5E2E99F890C1E0CA649162DE91F6768AB857B719E97B ] Modem           C:\WINDOWS\system32\drivers\Modem.sys
12:38:42.0109 0x0de8  Modem - ok
12:38:42.0187 0x0de8  [ 35C9E97194C8CFB8430125F8DBC34D04, 0C0FCE6B0A23FB0ECB92E1663E1C72D2DD5B177D82E04782957690B69530DB39 ] Mouclass        C:\WINDOWS\system32\DRIVERS\mouclass.sys
12:38:42.0218 0x0de8  Mouclass - ok
12:38:42.0281 0x0de8  [ B1C303E17FB9D46E87A98E4BA6769685, 161A45488522055D0F0474ABEDA04DDD0B5DAC2411AF9154B15190BBD66E7153 ] mouhid          C:\WINDOWS\system32\DRIVERS\mouhid.sys
12:38:42.0328 0x0de8  mouhid - ok
12:38:42.0359 0x0de8  [ A80B9A0BAD1B73637DBCBBA7DF72D3FD, 2A5E15ED2C24C6C65EF2F7E1FD93374774076C9D8D451E4422561F4D269C012F ] MountMgr        C:\WINDOWS\system32\drivers\MountMgr.sys
12:38:42.0406 0x0de8  MountMgr - ok
12:38:42.0484 0x0de8  [ 3B9398E0146855B1DC0E3D9769C80F01, DF69DB5CA30A5577648635C27DD468AF98515D07DF379B3FFDCC6B40744EDE66 ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
12:38:42.0546 0x0de8  MozillaMaintenance - ok
12:38:42.0562 0x0de8  mraid35x - ok
12:38:42.0593 0x0de8  [ 11D42BB6206F33FBB3BA0288D3EF81BD, 76ABCFB62C5AC549F58C231F72A99882CDEB74928104B77FE52554765C2B1A22 ] MRxDAV          C:\WINDOWS\system32\DRIVERS\mrxdav.sys
12:38:42.0625 0x0de8  MRxDAV - ok
12:38:42.0687 0x0de8  [ A137F1470499A205ABBB9AAFB3B6F2B1, FB4951727543030D9E6ED74149C3FAACE2CA9DA8C1B5F616301B30B858C724E8 ] MSDTC           C:\WINDOWS\system32\msdtc.exe
12:38:42.0734 0x0de8  MSDTC - ok
12:38:42.0765 0x0de8  [ C941EA2454BA8350021D774DAF0F1027, C940E978C7B66A713A0FDAB54B5F995DF59D089AFCD96221DD3222948CD49BBD ] Msfs            C:\WINDOWS\system32\drivers\Msfs.sys
12:38:42.0828 0x0de8  Msfs - ok
12:38:42.0843 0x0de8  MSIServer - ok
12:38:42.0859 0x0de8  [ D1575E71568F4D9E14CA56B7B0453BF1, 4ABE0E24786C0D39FA2B885447E56204CA6942FB175E534DCE675D7BCF0B176A ] MSKSSRV         C:\WINDOWS\system32\drivers\MSKSSRV.sys
12:38:42.0890 0x0de8  MSKSSRV - ok
12:38:42.0921 0x0de8  [ 325BB26842FC7CCC1FCCE2C457317F3E, C07BE560513B1FB91D756494F0BA4AEEB2E1998DE0E1C21EE83DB1183B0CEE91 ] MSPCLOCK        C:\WINDOWS\system32\drivers\MSPCLOCK.sys
12:38:42.0953 0x0de8  MSPCLOCK - ok
12:38:43.0000 0x0de8  [ BAD59648BA099DA4A17680B39730CB3D, 9AD4C7C94C186C8815D0BC75DCAFB962158DA6935A244BA243EDDDEB33F9816C ] MSPQM           C:\WINDOWS\system32\drivers\MSPQM.sys
12:38:43.0031 0x0de8  MSPQM - ok
12:38:43.0062 0x0de8  [ AF5F4F3F14A8EA2C26DE30F7A1E17136, AC93A1E4ABB0D038B772E429015567E44CC2EDB66C54DBE23A5F98176FAC1520 ] mssmbios        C:\WINDOWS\system32\DRIVERS\mssmbios.sys
12:38:43.0062 0x0de8  mssmbios - ok
12:38:43.0140 0x0de8  [ DE6A75F5C270E756C5508D94B6CF68F5, FCC972DDC36C2C44D836913F10004C2C33B11C54DEFFF0C63E0FDF901D2F9261 ] Mup             C:\WINDOWS\system32\drivers\Mup.sys
12:38:43.0203 0x0de8  Mup - ok
12:38:43.0265 0x0de8  [ 0102140028FAD045756796E1C685D695, 5335B8278418CA200E2772124F0602C3E15A5CAF2D5CC59F6785DFAABF339B09 ] napagent        C:\WINDOWS\System32\qagentrt.dll
12:38:43.0343 0x0de8  napagent - ok
12:38:43.0390 0x0de8  [ 1DF7F42665C94B825322FAE71721130D, FE0DCB728471465B39A42A7511F4133021FBA5DF88F88BCB5FE2FF34CFD713F9 ] NDIS            C:\WINDOWS\system32\drivers\NDIS.sys
12:38:43.0453 0x0de8  NDIS - ok
12:38:43.0500 0x0de8  [ 0109C4F3850DFBAB279542515386AE22, 4F6DB1E499AC853FD36FD603FBB6D3AC9BDCEB298C7FE1FB59A9236CB46729B2 ] NdisTapi        C:\WINDOWS\system32\DRIVERS\ndistapi.sys
12:38:43.0531 0x0de8  NdisTapi - ok
12:38:43.0593 0x0de8  [ F927A4434C5028758A842943EF1A3849, B1AA3AF150C05307461774925901789456B0CCCD03A5E71ADA4AB58455962BEE ] Ndisuio         C:\WINDOWS\system32\DRIVERS\ndisuio.sys
12:38:43.0625 0x0de8  Ndisuio - ok
12:38:43.0671 0x0de8  [ EDC1531A49C80614B2CFDA43CA8659AB, 494042F790F33721328B4451E79842E21919681CC421A4F9633EC4D383E06097 ] NdisWan         C:\WINDOWS\system32\DRIVERS\ndiswan.sys
12:38:43.0703 0x0de8  NdisWan - ok
12:38:43.0765 0x0de8  [ 9282BD12DFB069D3889EB3FCC1000A9B, 09A46F1712BD9165068D8E153585FE3E6E5CBF4F1DDEC142115555D3A91AEC09 ] NDProxy         C:\WINDOWS\system32\drivers\NDProxy.sys
12:38:43.0796 0x0de8  NDProxy - ok
12:38:43.0843 0x0de8  [ 5D81CF9A2F1A3A756B66CF684911CDF0, 7989C36607CAEA17AFA2C1C9904145CA0714A54B9F712D9D4C1AB140D0B2CC0C ] NetBIOS         C:\WINDOWS\system32\DRIVERS\netbios.sys
12:38:43.0890 0x0de8  NetBIOS - ok
12:38:43.0953 0x0de8  [ 74B2B2F5BEA5E9A3DC021D685551BD3D, 7932B71F98B4122BE88F576BF6D745A757AE378A48924B7F4358837B75640A82 ] NetBT           C:\WINDOWS\system32\DRIVERS\netbt.sys
12:38:44.0000 0x0de8  NetBT - ok
12:38:44.0062 0x0de8  [ B857BA82860D7FF85AE29B095645563B, 86FF0E4CDD9C394E8BABD93A4D57E73FF9A779261717DEC6E9CDE99F1C6B0F4C ] NetDDE          C:\WINDOWS\system32\netdde.exe
12:38:44.0109 0x0de8  NetDDE - ok
12:38:44.0140 0x0de8  [ B857BA82860D7FF85AE29B095645563B, 86FF0E4CDD9C394E8BABD93A4D57E73FF9A779261717DEC6E9CDE99F1C6B0F4C ] NetDDEdsdm      C:\WINDOWS\system32\netdde.exe
12:38:44.0140 0x0de8  NetDDEdsdm - ok
12:38:44.0203 0x0de8  [ BF2466B3E18E970D8A976FB95FC1CA85, F7794B5D12DC5D820A162850F4388E2AA80426AD07CB221799CF941C682AB501 ] Netlogon        C:\WINDOWS\system32\lsass.exe
12:38:44.0250 0x0de8  Netlogon - ok
12:38:44.0328 0x0de8  [ 13E67B55B3ABD7BF3FE7AAE5A0F9A9DE, 4E0A67B3CC897E80D4B342FFE8B7B4CC4F6CA2EF2D34C136027A098B2E1C6166 ] Netman          C:\WINDOWS\System32\netman.dll
12:38:44.0328 0x0de8  Netman - ok
12:38:44.0406 0x0de8  [ D34612C5D02D026535B3095D620626AE, 1BBCCCBF49EB8807240A77DCB43C25C21682073CC5356594E2C4F53EF36BF657 ] NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
12:38:44.0500 0x0de8  NetTcpPortSharing - ok
12:38:44.0562 0x0de8  [ 943337D786A56729263071623BBB9DE5, B631B47C869FE4ACF46E4AA272435D9A9CA536E3349E3FFBB8602636FEE7AFD4 ] Nla             C:\WINDOWS\System32\mswsock.dll
12:38:44.0578 0x0de8  Nla - ok
12:38:44.0609 0x0de8  [ 3182D64AE053D6FB034F44B6DEF8034A, 4ADFC76965BA2A5F488E71789A4E4EA702A74AF42725F72130D1CA919406CF19 ] Npfs            C:\WINDOWS\system32\drivers\Npfs.sys
12:38:44.0656 0x0de8  Npfs - ok
12:38:44.0750 0x0de8  [ 78A08DD6A8D65E697C18E1DB01C5CDCA, E0E6F3ED05068E32F1D5C2D2B38CDEF4536B8656DB6756C66CF6B40B60C8F3DA ] Ntfs            C:\WINDOWS\system32\drivers\Ntfs.sys
12:38:44.0812 0x0de8  Ntfs - ok
12:38:44.0859 0x0de8  [ BF2466B3E18E970D8A976FB95FC1CA85, F7794B5D12DC5D820A162850F4388E2AA80426AD07CB221799CF941C682AB501 ] NtLmSsp         C:\WINDOWS\system32\lsass.exe
12:38:44.0859 0x0de8  NtLmSsp - ok
12:38:44.0968 0x0de8  [ 156F64A3345BD23C600655FB4D10BC08, 9611BE411586E068D9297D77102DB3BE48AA67F1BAD6F61A84F83FC3043FA9CD ] NtmsSvc         C:\WINDOWS\system32\ntmssvc.dll
12:38:45.0078 0x0de8  NtmsSvc - ok
12:38:45.0109 0x0de8  [ 73C1E1F395918BC2C6DD67AF7591A3AD, B21133A75253EC15E2DFF66D3B480AB1A7E1A2360476C810E7AA55D0F0EB08D4 ] Null            C:\WINDOWS\system32\drivers\Null.sys
12:38:45.0156 0x0de8  Null - ok
12:38:45.0203 0x0de8  [ B305F3FAD35083837EF46A0BBCE2FC57, 9D0E0E666D652D0FC9EAB97280A5D67AAF61D6B21929DF7CF8ED72A367720464 ] NwlnkFlt        C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
12:38:45.0234 0x0de8  NwlnkFlt - ok
12:38:45.0265 0x0de8  [ C99B3415198D1AAB7227F2C88FD664B9, DD8DA4B5E804F134AB9233859544C025062902DFC3E8FB8A09A67337A4E73F55 ] NwlnkFwd        C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
12:38:45.0343 0x0de8  NwlnkFwd - ok
12:38:45.0406 0x0de8  [ 7A56CF3E3F12E8AF599963B16F50FB6A, 882C82BAE96D263138D4C0D6C425458B770B7B9C8E9C1D28AC918BF6BE94A5C2 ] ose             C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
12:38:45.0453 0x0de8  ose - ok
12:38:45.0515 0x0de8  [ 5575FAF8F97CE5E713D108C2A58D7C7C, 96D4595D19A78CCBE8B325A08780AC077AE5CC99642ACD72FB47AEAE8D344D3B ] Parport         C:\WINDOWS\system32\DRIVERS\parport.sys
12:38:45.0593 0x0de8  Parport - ok
12:38:45.0640 0x0de8  [ BEB3BA25197665D82EC7065B724171C6, 7E71C13BA30CD95CEE8A9CC85E6F48A01F30EDEAADEE69D80AE828BF97E5A5CA ] PartMgr         C:\WINDOWS\system32\drivers\PartMgr.sys
12:38:45.0671 0x0de8  PartMgr - ok
12:38:45.0718 0x0de8  [ 70E98B3FD8E963A6A46A2E6247E0BEA1, 6771313EC41B3B5BFD398F60706E40BE71617046880CC352DD110B001AFC22A1 ] ParVdm          C:\WINDOWS\system32\drivers\ParVdm.sys
12:38:45.0765 0x0de8  ParVdm - ok
12:38:45.0796 0x0de8  [ A219903CCF74233761D92BEF471A07B1, D4E6C360A1D2FCA4D17C991B834D68BF20F5111DD06B1FAB8B22984804CEC269 ] PCI             C:\WINDOWS\system32\DRIVERS\pci.sys
12:38:45.0828 0x0de8  PCI - ok
12:38:45.0843 0x0de8  PCIDump - ok
12:38:45.0875 0x0de8  [ CCF5F451BB1A5A2A522A76E670000FF0, D63F7E5A39653EC9CCE94B7D84B2D3EBD4F54533BD65701020198724042C9257 ] PCIIde          C:\WINDOWS\system32\drivers\PCIIde.sys
12:38:45.0937 0x0de8  PCIIde - ok
12:38:45.0968 0x0de8  [ 9E89EF60E9EE05E3F2EEF2DA7397F1C1, 0BA3DB21DC7C641C181E2635B5C9B73965FDCDCD3EBBBE48FCFEC1C8C987F617 ] Pcmcia          C:\WINDOWS\system32\drivers\Pcmcia.sys
12:38:46.0015 0x0de8  Pcmcia - ok
12:38:46.0031 0x0de8  PDCOMP - ok
12:38:46.0046 0x0de8  PDFRAME - ok
12:38:46.0062 0x0de8  PDRELI - ok
12:38:46.0078 0x0de8  PDRFRAME - ok
12:38:46.0093 0x0de8  perc2 - ok
12:38:46.0109 0x0de8  perc2hib - ok
12:38:46.0203 0x0de8  [ ED2E7F396B4098608C95BC3806BDF6FC, 6F664818D30341906C9C0F297F6CE8C0E4E3FAB46A42204CAC0A821051ED9A88 ] pfc             C:\WINDOWS\system32\drivers\pfc.sys
12:38:46.0250 0x0de8  pfc - ok
12:38:46.0296 0x0de8  [ 65DF52F5B8B6E9BBD183505225C37315, 59C606977DB40A3443DFF0BE2A4C761824881B22C9FDB3D23F6486DB580E92A4 ] PlugPlay        C:\WINDOWS\system32\services.exe
12:38:46.0296 0x0de8  PlugPlay - ok
12:38:46.0328 0x0de8  [ BF2466B3E18E970D8A976FB95FC1CA85, F7794B5D12DC5D820A162850F4388E2AA80426AD07CB221799CF941C682AB501 ] PolicyAgent     C:\WINDOWS\system32\lsass.exe
12:38:46.0328 0x0de8  PolicyAgent - ok
12:38:46.0390 0x0de8  [ EFEEC01B1D3CF84F16DDD24D9D9D8F99, C5F0C8C66A3AF7E7BB04CEDE4AC5306F8387AB384A2107DC5BE413AAE968EFF1 ] PptpMiniport    C:\WINDOWS\system32\DRIVERS\raspptp.sys
12:38:46.0437 0x0de8  PptpMiniport - ok
12:38:46.0453 0x0de8  [ BF2466B3E18E970D8A976FB95FC1CA85, F7794B5D12DC5D820A162850F4388E2AA80426AD07CB221799CF941C682AB501 ] ProtectedStorage C:\WINDOWS\system32\lsass.exe
12:38:46.0453 0x0de8  ProtectedStorage - ok
12:38:46.0500 0x0de8  [ 09298EC810B07E5D582CB3A3F9255424, 35473A1BE25AC289474090EB0806AC6B3035DC33D1F3DF97A14BF1E361AC6AC3 ] PSched          C:\WINDOWS\system32\DRIVERS\psched.sys
12:38:46.0546 0x0de8  PSched - ok
12:38:46.0593 0x0de8  [ 80D317BD1C3DBC5D4FE7B1678C60CADD, DA76804B55D0CAB3DDD01EFC06673764AE4860693375C658B6063FB14AF7F12C ] Ptilink         C:\WINDOWS\system32\DRIVERS\ptilink.sys
12:38:46.0640 0x0de8  Ptilink - ok
12:38:46.0656 0x0de8  ql1080 - ok
12:38:46.0671 0x0de8  Ql10wnt - ok
12:38:46.0687 0x0de8  ql12160 - ok
12:38:46.0703 0x0de8  ql1240 - ok
12:38:46.0718 0x0de8  ql1280 - ok
12:38:47.0000 0x0de8  [ AB51E1F08C8E789D6C9E8B94D15BE9A9, 35386087B0D57D181FE39E4AFBFFE4DB5B827DACA6D87F1F5563B26547993E24 ] RapportCerberus_59849 C:\Documents and Settings\All Users\Application Data\Trusteer\Rapport\store\exts\RapportCerberus\baseline\RapportCerberus32_59849.sys
12:38:47.0062 0x0de8  RapportCerberus_59849 - ok
12:38:47.0187 0x0de8  [ 65A5D1C037228F1AF52CB1A7EEDF8CC8, B43468FCE31701BFFFEFE37899638756A8555119B14F6C49AD108FC93B1C807E ] RapportEI       C:\Program Files\Trusteer\Rapport\bin\RapportEI.sys
12:38:47.0187 0x0de8  RapportEI - ok
12:38:47.0218 0x0de8  [ F19F66A3E01C0684FC1C57A24E9F6824, B21DEB974C4B67CDDD99B8D13E3A2E07A93FA1198EC264DF6CC78BC9DD7D99EE ] RapportKELL     C:\WINDOWS\system32\Drivers\RapportKELL.sys
12:38:47.0281 0x0de8  RapportKELL - ok
12:38:47.0421 0x0de8  [ AD5B5C2C88A4D7E8D5AAA68576CB79C2, EBED14980CF4BC34839D81C49CE34DBBEA12282FBA890DF0DC90C013E70B41B2 ] RapportMgmtService C:\Program Files\Trusteer\Rapport\bin\RapportMgmtService.exe
12:38:47.0531 0x0de8  RapportMgmtService - ok
12:38:47.0578 0x0de8  [ 14F008C3A5FF67B563BFCEC3088B27AB, 9B6497C27FA38F4D5287F7134354D8095723D2727E6149735F69FE63F1F78245 ] RapportPG       C:\Program Files\Trusteer\Rapport\bin\RapportPG.sys
12:38:47.0593 0x0de8  RapportPG - ok
12:38:47.0656 0x0de8  [ FE0D99D6F31E4FAD8159F690D68DED9C, 998685622ABE631984B7E4DBF91AB3594B1F574378D75EB9F6265F4650470692 ] RasAcd          C:\WINDOWS\system32\DRIVERS\rasacd.sys
12:38:47.0687 0x0de8  RasAcd - ok
12:38:47.0750 0x0de8  [ AD188BE7BDF94E8DF4CA0A55C00A5073, C7D76CB579FAEBCCC2873499441BACDD6BD6668ACF5ED7F31862656E96E2B20C ] RasAuto         C:\WINDOWS\System32\rasauto.dll
12:38:47.0781 0x0de8  RasAuto - ok
12:38:47.0812 0x0de8  [ 11B4A627BC9614B885C4969BFA5FF8A6, EAE0A412A2B0F68919C32A96B3A08CC1A06585E4998819F5C9051745F63FF5AD ] Rasl2tp         C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
12:38:47.0843 0x0de8  Rasl2tp - ok
12:38:47.0921 0x0de8  [ 76A9A3CBEADD68CC57CDA5E1D7448235, 4AFD048C5D2306AB8DE46F3AA60AC0213333DDA3B09A9E91F7585DB6EB978EC8 ] RasMan          C:\WINDOWS\System32\rasmans.dll
12:38:47.0968 0x0de8  RasMan - ok
12:38:48.0000 0x0de8  [ 5BC962F2654137C9909C3D4603587DEE, A5CE5653D0105240F5E86CFAAB89E7917D42D939E2F27A5A7D6979289CA651B8 ] RasPppoe        C:\WINDOWS\system32\DRIVERS\raspppoe.sys
12:38:48.0046 0x0de8  RasPppoe - ok
12:38:48.0078 0x0de8  [ FDBB1D60066FCFBB7452FD8F9829B242, 10A2DACF944BD000032EBA8C095CB3D879CC55B28C377ADF6E52E508E47444DB ] Raspti          C:\WINDOWS\system32\DRIVERS\raspti.sys
12:38:48.0109 0x0de8  Raspti - ok
12:38:48.0140 0x0de8  [ 7AD224AD1A1437FE28D89CF22B17780A, 6645235CA27D671954E3557FA37082881C3D7D47492C71264CD8CB8D108EC801 ] Rdbss           C:\WINDOWS\system32\DRIVERS\rdbss.sys
12:38:48.0187 0x0de8  Rdbss - ok
12:38:48.0218 0x0de8  [ 4912D5B403614CE99C28420F75353332, 975341ECD660209987B5E5171B8315E032439E408CBE8A5986E67AF767F373BB ] RDPCDD          C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
12:38:48.0234 0x0de8  RDPCDD - ok
12:38:48.0281 0x0de8  [ 15CABD0F7C00C47C70124907916AF3F1, 66B5C978B7FB6359AD8BAC9F568FE9D469E358FEAB07B1F129BA9E85F1DF723E ] rdpdr           C:\WINDOWS\system32\DRIVERS\rdpdr.sys
12:38:48.0328 0x0de8  rdpdr - ok
12:38:48.0390 0x0de8  [ 43AF5212BD8FB5BA6EED9754358BD8F7, AF330F61CECA4AFA359CEABC5EB3227E6B56A9A2DCE50701381D665122D7356D ] RDPWD           C:\WINDOWS\system32\drivers\RDPWD.sys
12:38:48.0437 0x0de8  RDPWD - ok
12:38:48.0500 0x0de8  [ 3C37BF86641BDA977C3BF8A840F3B7FA, AB9A6E54DBA3F4561CD4837372BECCE0D73943D02E3288F944333039375AC08C ] RDSessMgr       C:\WINDOWS\system32\sessmgr.exe
12:38:48.0546 0x0de8  RDSessMgr - ok
12:38:48.0625 0x0de8  [ F828DD7E1419B6653894A8F97A0094C5, E6150E1F598BA4CFEDB8FF075BC0D576518C331B864388F1CAE8812EFF106ECF ] redbook         C:\WINDOWS\system32\DRIVERS\redbook.sys
12:38:48.0656 0x0de8  redbook - ok
12:38:48.0734 0x0de8  [ 7E699FF5F59B5D9DE5390E3C34C67CF5, 3FCF0442D80AB181FED4303E570378736AA1F8718C0B8B70F689A1E45200FFE4 ] RemoteAccess    C:\WINDOWS\System32\mprdim.dll
12:38:48.0781 0x0de8  RemoteAccess - ok
12:38:48.0843 0x0de8  [ 5B19B557B0C188210A56A6B699D90B8F, 0FA880B81AE615206FD1738B83428AAA491D54B24168339DE6E87FDE8C6C14B0 ] RemoteRegistry  C:\WINDOWS\system32\regsvc.dll
12:38:48.0890 0x0de8  RemoteRegistry - ok
12:38:48.0921 0x0de8  [ AAED593F84AFA419BBAE8572AF87CF6A, CC0FFC5A69394C8830DC66320DA01A820BBF41AD7E57D0FC343561DC5EF9A360 ] RpcLocator      C:\WINDOWS\system32\locator.exe
12:38:48.0984 0x0de8  RpcLocator - ok
12:38:49.0046 0x0de8  [ 6B27A5C03DFB94B4245739065431322C, 6AEAC16AB4E0DFD25123AAF4D4181FEE1B919B7B2793117006CE8CF30E826CFD ] RpcSs           C:\WINDOWS\System32\rpcss.dll
12:38:49.0062 0x0de8  RpcSs - ok
12:38:49.0140 0x0de8  [ 471B3F9741D762ABE75E9DEEA4787E47, D9ADE42965EC22AEB4B2AD21D429C3C8232A60AA9853DEFDA7AED86A13FE8623 ] RSVP            C:\WINDOWS\system32\rsvp.exe
12:38:49.0187 0x0de8  RSVP - ok
12:38:49.0250 0x0de8  [ 7988BFE882BCD94199225B5C3482F1BD, 97EDFB75A785FE3AFE40E01D8F43A66ABD083413AECC593100B6FA059C7E9C85 ] RTL8023xp       C:\WINDOWS\system32\DRIVERS\Rtnicxp.sys
12:38:49.0312 0x0de8  RTL8023xp - ok
12:38:49.0375 0x0de8  [ D507C1400284176573224903819FFDA3, DD0BDB2AB39A8A0A300B6D60FB6A7F5BA08C4DB8F59E0A784FB763EA8AD72AB2 ] rtl8139         C:\WINDOWS\system32\DRIVERS\RTL8139.SYS
12:38:49.0406 0x0de8  rtl8139 - ok
12:38:49.0468 0x0de8  [ BF2466B3E18E970D8A976FB95FC1CA85, F7794B5D12DC5D820A162850F4388E2AA80426AD07CB221799CF941C682AB501 ] SamSs           C:\WINDOWS\system32\lsass.exe
12:38:49.0468 0x0de8  SamSs - ok
12:38:49.0515 0x0de8  [ 39763504067962108505BFF25F024345, 73C9710B61EDC7FBEDE1D7A767AA3D3A169E7AD012494D05CB5EE7E5C5752BB9 ] SASDIFSV        C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS
12:38:49.0562 0x0de8  SASDIFSV - ok
12:38:49.0625 0x0de8  [ 77B9FC20084B48408AD3E87570EB4A85, B5BC5FEC1356DECB66A7A671DB67112BDAC8F942BF1C4B986B1805B41EF362B1 ] SASKUTIL        C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS
12:38:49.0671 0x0de8  SASKUTIL - ok
12:38:49.0718 0x0de8  [ 86D007E7A654B9A71D1D7D856B104353, 7B1DE53D637A5FC9619D5D07C48927AFEC89D959207F6F2E2F45DD054EEA04C7 ] SCardSvr        C:\WINDOWS\System32\SCardSvr.exe
12:38:49.0765 0x0de8  SCardSvr - ok
12:38:49.0828 0x0de8  [ 0A9A7365A1CA4319AA7C1D6CD8E4EAFA, 0B582F47BD70732BAC48B8B86E5D06CE7F299A20E8177F3F2E6F28217C3FB605 ] Schedule        C:\WINDOWS\system32\schedsvc.dll
12:38:49.0890 0x0de8  Schedule - ok
12:38:49.0953 0x0de8  [ 90A3935D05B494A5A39D37E71F09A677, F72733A69BC6E1A2BB91D7632FF3463C12563F60FDCC00A2CDD67FF20D479952 ] Secdrv          C:\WINDOWS\system32\DRIVERS\secdrv.sys
12:38:49.0984 0x0de8  Secdrv - ok
12:38:50.0031 0x0de8  [ CBE612E2BB6A10E3563336191EDA1250, C331797DC3569F0E715766561DE2562F60B924378842246C35D2B1CF867E9D96 ] seclogon        C:\WINDOWS\System32\seclogon.dll
12:38:50.0078 0x0de8  seclogon - ok
12:38:50.0109 0x0de8  [ 7FDD5D0684ECA8C1F68B4D99D124DCD0, 7105B026F966A992430F86C3698ABE15EC73E4772F1A3E362E29FD5247A5DCA6 ] SENS            C:\WINDOWS\system32\sens.dll
12:38:50.0156 0x0de8  SENS - ok
12:38:50.0187 0x0de8  [ 0F29512CCD6BEAD730039FB4BD2C85CE, 4F98AE390D1B14A755700DD6CEFB9CF921F0404AF2145D2D7E5F52394F87C6A5 ] serenum         C:\WINDOWS\system32\DRIVERS\serenum.sys
12:38:50.0250 0x0de8  serenum - ok
12:38:50.0296 0x0de8  [ CCA207A8896D4C6A0C9CE29A4AE411A7, 5999B39242283CD803319AADCA171CCCC6E2A40FB2FAFA51B1D29F3FF2DD8D6C ] Serial          C:\WINDOWS\system32\DRIVERS\serial.sys
12:38:50.0343 0x0de8  Serial - ok
12:38:50.0421 0x0de8  [ 8E6B8C671615D126FDC553D1E2DE5562, CEEC0067514555D5CA489F50E3D7562FCA8DB8E952C3C878604C9277FC77959F ] Sfloppy         C:\WINDOWS\system32\drivers\Sfloppy.sys
12:38:50.0453 0x0de8  Sfloppy - ok
12:38:50.0546 0x0de8  [ 83F41D0D89645D7235C051AB1D9523AC, B681F33EEAA511D6A2DCB9FBAA407B739184C9FF6067C6B7E51F1FC37E9D4DD7 ] SharedAccess    C:\WINDOWS\System32\ipnathlp.dll
12:38:50.0562 0x0de8  SharedAccess - ok
12:38:50.0625 0x0de8  [ 99BC0B50F511924348BE19C7C7313BBF, A1006C687BD352F700B140DC741515A0CDD9E1352C0FBD1EE410D404E344444B ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll
12:38:50.0625 0x0de8  ShellHWDetection - ok
12:38:50.0640 0x0de8  Simbad - ok
12:38:50.0718 0x0de8  [ A817845E68342D7D1C97937EA707412B, 3004FA93B013CE008D477662A0EC4839DD15E3A9E687B228A564CADF3BC7138D ] smwdm           C:\WINDOWS\system32\drivers\smwdm.sys
12:38:50.0828 0x0de8  smwdm - ok
12:38:50.0843 0x0de8  Sparrow - ok
12:38:50.0875 0x0de8  [ AB8B92451ECB048A4D1DE7C3FFCB4A9F, DD17733CBB370FCA08F0296704D7CBEACA3C8F76D0ABE4761C3B1FFDF7481D9E ] splitter        C:\WINDOWS\system32\drivers\splitter.sys
12:38:50.0921 0x0de8  splitter - ok
12:38:50.0984 0x0de8  [ 60784F891563FB1B767F70117FC2428F, E0B07F08E60FFBAD36C2E58180F4B2A16DCA47716044CBE0213DF7B74D742F1F ] Spooler         C:\WINDOWS\system32\spoolsv.exe
12:38:51.0000 0x0de8  Spooler - ok
12:38:51.0031 0x0de8  [ 76BB022C2FB6902FD5BDD4F78FC13A5D, 6031CB2344D7277FC703480EB43CF856A0F8F818EA98FF26A2CA532336CD2DFA ] sr              C:\WINDOWS\system32\DRIVERS\sr.sys
12:38:51.0062 0x0de8  sr - ok
12:38:51.0140 0x0de8  [ 3805DF0AC4296A34BA4BF93B346CC378, B57A14F1B7B0997E619DDD62B73157AA2399A9852166FB58139CBB358A88F6F3 ] srservice       C:\WINDOWS\system32\srsvc.dll
12:38:51.0187 0x0de8  srservice - ok
12:38:51.0328 0x0de8  [ 47DDFC2F003F7F9F0592C6874962A2E7, 17C643BD4EB09B5666FE41817DC785BE04A6E491CE79E8E5A702CDBD98E1BDD7 ] Srv             C:\WINDOWS\system32\DRIVERS\srv.sys
12:38:51.0406 0x0de8  Srv - ok
12:38:51.0484 0x0de8  [ 0A5679B3714EDAB99E357057EE88FCA6, 01E1A101FFF48402C77E385A78FEF27876E04533B60EB1C18558A737E57E5FA8 ] SSDPSRV         C:\WINDOWS\System32\ssdpsrv.dll
12:38:51.0515 0x0de8  SSDPSRV - ok
12:38:51.0578 0x0de8  [ A36EE93698802CD899F98BFD553D8185, 224CFED921EA230FF8025D259E34968FD2C0FD34BB3A918FB4B9B8BA42BEA5D3 ] ssmdrv          C:\WINDOWS\system32\DRIVERS\ssmdrv.sys
12:38:51.0625 0x0de8  ssmdrv - ok
12:38:51.0718 0x0de8  [ 8BAD69CBAC032D4BBACFCE0306174C30, 2AA0DA710FCBFF38FE8DA91EE02E7A4503269347E61F8D3246FCA3384BBA2305 ] stisvc          C:\WINDOWS\system32\wiaservc.dll
12:38:51.0781 0x0de8  stisvc - ok
12:38:51.0843 0x0de8  [ 3941D127AEF12E93ADDF6FE6EE027E0F, EA1F0E32E1C5E90FA4AAC421DEBBE086512340758D3217A6334E886BCE638B51 ] swenum          C:\WINDOWS\system32\DRIVERS\swenum.sys
12:38:51.0906 0x0de8  swenum - ok
12:38:51.0937 0x0de8  [ 8CE882BCC6CF8A62F2B2323D95CB3D01, B408550A581F3DA222355964AFA4E976AD8471F0AA37573C42C4948AE5A23A3B ] swmidi          C:\WINDOWS\system32\drivers\swmidi.sys
12:38:51.0984 0x0de8  swmidi - ok
12:38:52.0000 0x0de8  SwPrv - ok
12:38:52.0031 0x0de8  symc810 - ok
12:38:52.0046 0x0de8  symc8xx - ok
12:38:52.0062 0x0de8  sym_hi - ok
12:38:52.0078 0x0de8  sym_u3 - ok
12:38:52.0140 0x0de8  [ 8B83F3ED0F1688B4958F77CD6D2BF290, 546D3602183702B4F53E84413CFA2C933D64C8540378E54A8DCD148F3F36A2DA ] sysaudio        C:\WINDOWS\system32\drivers\sysaudio.sys
12:38:52.0187 0x0de8  sysaudio - ok
12:38:52.0250 0x0de8  [ C7ABBC59B43274B1109DF6B24D617051, 4384CA0AA6CE9B603CF7DB775A3C721E46715D5B120B94FB57DEADAADE18535B ] SysmonLog       C:\WINDOWS\system32\smlogsvc.exe
12:38:52.0296 0x0de8  SysmonLog - ok
12:38:52.0390 0x0de8  [ 3CB78C17BB664637787C9A1C98F79C38, F35C31F6B7F366CB949D1044B357C76DEC9170441C5E559802794F62B72FD255 ] TapiSrv         C:\WINDOWS\System32\tapisrv.dll
12:38:52.0421 0x0de8  TapiSrv - ok
12:38:52.0531 0x0de8  [ 9AEFA14BD6B182D61E3119FA5F436D3D, EA29E49434585409272E7901AF89771FE9D6E911A7DC44AB3C7020CFF8A44552 ] Tcpip           C:\WINDOWS\system32\DRIVERS\tcpip.sys
12:38:52.0609 0x0de8  Tcpip - ok
12:38:52.0656 0x0de8  [ 6471A66807F5E104E4885F5B67349397, F35CBFFB8BB235CCE30EF94A5273333900DD49FD506BF9D55D99A320B8A53A5A ] TDPIPE          C:\WINDOWS\system32\drivers\TDPIPE.sys
12:38:52.0703 0x0de8  TDPIPE - ok
12:38:52.0734 0x0de8  [ C56B6D0402371CF3700EB322EF3AAF61, 7743FA4C734BCE38EFB1CA69BC17364D8421E2CD172F856F7E38E7AE1EE93F2F ] TDTCP           C:\WINDOWS\system32\drivers\TDTCP.sys
12:38:52.0781 0x0de8  TDTCP - ok
12:38:52.0812 0x0de8  [ 88155247177638048422893737429D9E, B6D4E8691917946332C2208D01F8C8281978C1AD1E9951C5D99DF0D49AC34B3B ] TermDD          C:\WINDOWS\system32\DRIVERS\termdd.sys
12:38:52.0875 0x0de8  TermDD - ok
12:38:52.0953 0x0de8  [ FF3477C03BE7201C294C35F684B3479F, D6246521539BA4ACD022D26983182F5E323D2EF1EA7C54265A248C43A1CE5202 ] TermService     C:\WINDOWS\System32\termsrv.dll
12:38:53.0015 0x0de8  TermService - ok
12:38:53.0046 0x0de8  [ 99BC0B50F511924348BE19C7C7313BBF, A1006C687BD352F700B140DC741515A0CDD9E1352C0FBD1EE410D404E344444B ] Themes          C:\WINDOWS\System32\shsvcs.dll
12:38:53.0046 0x0de8  Themes - ok
12:38:53.0125 0x0de8  [ DB7205804759FF62C34E3EFD8A4CC76A, 13A4248F528CE98ACA66898E56822E4FC49B11F491FF1F61A687BA601BF0A802 ] TlntSvr         C:\WINDOWS\system32\tlntsvr.exe
12:38:53.0156 0x0de8  TlntSvr - ok
12:38:53.0171 0x0de8  TosIde - ok
12:38:53.0234 0x0de8  [ 55BCA12F7F523D35CA3CB833C725F54E, 849FB1AE31B143B14B298BBC0D91230693D41DEB95F46516878F53A7F4186C38 ] TrkWks          C:\WINDOWS\system32\trkwks.dll
12:38:53.0312 0x0de8  TrkWks - ok
12:38:53.0375 0x0de8  [ 5787B80C2E3C5E2F56C2A233D91FA2C9, 3774905CF77954DFCECDA5BCC7CDE3D0ED72712BFAAD85ADAE5246306447E46C ] Udfs            C:\WINDOWS\system32\drivers\Udfs.sys
12:38:53.0421 0x0de8  Udfs - ok
12:38:53.0437 0x0de8  ultra - ok
12:38:53.0531 0x0de8  [ 402DDC88356B1BAC0EE3DD1580C76A31, 32A686595710336A6BFD54C03F552AE39439611662F84EF5D24193AE5665C6F3 ] Update          C:\WINDOWS\system32\DRIVERS\update.sys
12:38:53.0609 0x0de8  Update - ok
12:38:53.0687 0x0de8  [ 1EBAFEB9A3FBDC41B8D9C7F0F687AD91, 7746916DB48E3F5B243B63C066596AD9037A494BF1AD935946DD04AC85D983DF ] upnphost        C:\WINDOWS\System32\upnphost.dll
12:38:53.0734 0x0de8  upnphost - ok
12:38:53.0765 0x0de8  [ 05365FB38FCA1E98F7A566AAAF5D1815, 16843048CEEC3DAA3B953A12FF1EE339E86783A08F2A56DA7F94AD9F9717D77D ] UPS             C:\WINDOWS\System32\ups.exe
12:38:53.0828 0x0de8  UPS - ok
12:38:53.0875 0x0de8  [ 6E421CCC57059B0186C6259CA3B6DFC9, E348BF23CCD6C14FD10C1689BBDC77E125245331F97BFE60D4C8FD9A8711CB59 ] USBAAPL         C:\WINDOWS\system32\Drivers\usbaapl.sys
12:38:53.0921 0x0de8  USBAAPL - ok
12:38:54.0000 0x0de8  [ 1B611611C28D2DF25BC057D79C6F13FC, B0D86F63E44B40413BBAE6402CC088046CFAE082D41BBC2ED5A916293356B846 ] usbccgp         C:\WINDOWS\system32\DRIVERS\usbccgp.sys
12:38:54.0031 0x0de8  usbccgp - ok
12:38:54.0078 0x0de8  [ 4BAC8DF07F1D8434FC640E677A62204E, 76C1351AF6752224BF59DEEE0F8665FE699F3DFD679F5BCD01C7D9383E6402A4 ] usbehci         C:\WINDOWS\system32\DRIVERS\usbehci.sys
12:38:54.0125 0x0de8  usbehci - ok
12:38:54.0187 0x0de8  [ 1AB3CDDE553B6E064D2E754EFE20285C, A99C4528C4227B1E96847614745AAFACD3C5F1BDFE435214DBF78740FFB300FE ] usbhub          C:\WINDOWS\system32\DRIVERS\usbhub.sys
12:38:54.0234 0x0de8  usbhub - ok
12:38:54.0265 0x0de8  [ A717C8721046828520C9EDF31288FC00, 1530BBE832EDBB0974AD89D723A03FF7A0094B368992D73C2C3E62A181DF1E0A ] usbprint        C:\WINDOWS\system32\DRIVERS\usbprint.sys
12:38:54.0312 0x0de8  usbprint - ok
12:38:54.0390 0x0de8  [ F8EDE2B6928970DCE3D5614C27D9E7F6, 6E5EBBC8B70C1D593634DAF0C190DEADFDA18C3CBC8F552A76F156F3869EF05B ] usbscan         C:\WINDOWS\system32\DRIVERS\usbscan.sys
12:38:54.0468 0x0de8  usbscan - ok
12:38:54.0500 0x0de8  [ A32426D9B14A089EAA1D922E0C5801A9, ED1DC52EE45F8EAD3AEC4B1F817BB25634141CF48295494C5947DCE6CF7A9817 ] USBSTOR         C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
12:38:54.0531 0x0de8  USBSTOR - ok
12:38:54.0578 0x0de8  [ 26496F9DEE2D787FC3E61AD54821FFE6, 8BE7FF647470B9A951CBB478FAF83D657A15CC78037F42348A6B738F21D523DA ] usbuhci         C:\WINDOWS\system32\DRIVERS\usbuhci.sys
12:38:54.0609 0x0de8  usbuhci - ok
12:38:54.0656 0x0de8  [ 0D3A8FAFCEACD8B7625CD549757A7DF1, B9CFDEFCD66AA139F3DC2F967B184669532922563AD5A71769BABDC4370D065E ] VgaSave         C:\WINDOWS\System32\drivers\vga.sys
12:38:54.0687 0x0de8  VgaSave - ok
12:38:54.0703 0x0de8  ViaIde - ok
12:38:54.0750 0x0de8  [ 4C8FCB5CC53AAB716D810740FE59D025, 010EAC43DBED700B73E4FC908FAAF9F6A0168EBBD5D86751E49BC33AAA18BFA4 ] VolSnap         C:\WINDOWS\system32\drivers\VolSnap.sys
12:38:54.0796 0x0de8  VolSnap - ok
12:38:54.0875 0x0de8  [ 7A9DB3A67C333BF0BD42E42B8596854B, D31A9A3B1AAAB373EDD73B674102395212FCB616F829E938B7B2B7BE7D4752C5 ] VSS             C:\WINDOWS\System32\vssvc.exe
12:38:54.0937 0x0de8  VSS - ok
12:38:55.0031 0x0de8  [ 54AF4B1D5459500EF0937F6D33B1914F, FA1876888BCB9C72A92369DBED4FF1A8666784523FB41E618FA0919490FCDDB9 ] W32Time         C:\WINDOWS\system32\w32time.dll
12:38:55.0078 0x0de8  W32Time - ok
12:38:55.0140 0x0de8  [ E20B95BAEDB550F32DD489265C1DA1F6, 5589B2067E6C9FBA290D8C5EADDC198EBAF39C50C3CD7D2BC5CDA7CBFBC445E5 ] Wanarp          C:\WINDOWS\system32\DRIVERS\wanarp.sys
12:38:55.0171 0x0de8  Wanarp - ok
12:38:55.0187 0x0de8  WDICA - ok
12:38:55.0234 0x0de8  [ 6768ACF64B18196494413695F0C3A00F, 3A8F8586F1D997D19A8478345338D2AECD785AEABDB61531DD3F92003D3230A5 ] wdmaud          C:\WINDOWS\system32\drivers\wdmaud.sys
12:38:55.0265 0x0de8  wdmaud - ok
12:38:55.0328 0x0de8  [ 77A354E28153AD2D5E120A5A8687BC06, 8B2D37A4443501C0A8E70BC2079BE27F0A36FD07B561E6F68B40A72EABBC2DFE ] WebClient       C:\WINDOWS\System32\webclnt.dll
12:38:55.0406 0x0de8  WebClient - ok
12:38:55.0531 0x0de8  [ 032793A8E6288C4C60FF30542EEAB22B, C6E744E66A0FCA7451C9EF48E4B4C9E358D19F910CCD3F58B64812BEB35E5F5E ] WinDriver6      C:\WINDOWS\system32\drivers\windrvr6.sys
12:38:55.0578 0x0de8  WinDriver6 - ok
12:38:55.0687 0x0de8  [ 2D0E4ED081963804CCC196A0929275B5, E1D75C7D7233D81DFDE13160B0C80138DF8B35230D04FB79B367A52FACF69BF8 ] winmgmt         C:\WINDOWS\system32\wbem\WMIsvc.dll
12:38:55.0718 0x0de8  winmgmt - ok
12:38:55.0812 0x0de8  [ C7E39EA41233E9F5B86C8DA3A9F1E4A8, 98C21DEEB7124426D749FACDAD06EBD7F500AE5C465A98D558919C2A51C08554 ] WmdmPmSN        C:\WINDOWS\system32\mspmsnsv.dll
12:38:55.0843 0x0de8  WmdmPmSN - ok
12:38:55.0953 0x0de8  [ E76F8807070ED04E7408A86D6D3A6137, BFCF5361B7335760A7AE4B6958DE516A27AC60AA09135A46F0B49F588FAFE3A0 ] Wmi             C:\WINDOWS\System32\advapi32.dll
12:38:55.0984 0x0de8  Wmi - ok
12:38:56.0078 0x0de8  [ E0673F1106E62A68D2257E376079F821, 12992F18C9653050B10DC61D12988067933FCFDF02123D3A7EF5DE607A785DDC ] WmiApSrv        C:\WINDOWS\system32\wbem\wmiapsrv.exe
12:38:56.0140 0x0de8  WmiApSrv - ok
12:38:56.0203 0x0de8  [ 6ABE6E225ADB5A751622A9CC3BC19CE8, 4061C5D0F051DFF1730E2A3BFC1CCA97B29602FC50F10F6B44D93B0D28F42024 ] WS2IFSL         C:\WINDOWS\System32\drivers\ws2ifsl.sys
12:38:56.0234 0x0de8  WS2IFSL - ok
12:38:56.0328 0x0de8  [ 7C278E6408D1DCE642230C0585A854D5, DA46079A04F6E8E3441E4AE454AEAC02B3E935DE29CE7F6D4476F57867FCC12A ] wscsvc          C:\WINDOWS\system32\wscsvc.dll
12:38:56.0390 0x0de8  wscsvc - ok
12:38:56.0437 0x0de8  [ 35321FB577CDC98CE3EB3A3EB9E4610A, C9A6F5CF282D8FCB3CDFCC4B306013480E78E1B664E1A60A4E27B161F9FFD4CD ] wuauserv        C:\WINDOWS\system32\wuauserv.dll
12:38:56.0468 0x0de8  wuauserv - ok
12:38:56.0562 0x0de8  [ 81DC3F549F44B1C1FFF022DEC9ECF30B, 3D14BFEA539F9CEB16555BD56C5E3C7C8F6692FC62C2789F8AAEA1C042E63940 ] WZCSVC          C:\WINDOWS\System32\wzcsvc.dll
12:38:56.0640 0x0de8  WZCSVC - ok
12:38:56.0703 0x0de8  [ 295D21F14C335B53CB8154E5B1F892B9, 9418477C2E3EA93E93D931A4EDD4500DA568FAD6040204B5201D1080203B0BBC ] xmlprov         C:\WINDOWS\System32\xmlprov.dll
12:38:56.0750 0x0de8  xmlprov - ok
12:38:56.0812 0x0de8  [ 9CC9BF9961726EEABB9EE70B80A7741F, 555C98B18E73B2A46A5E1E48F0F51BC9981CBFD77D614A18C3408253CCC917F8 ] {6080A529-897E-4629-A488-ABA0C29B635E} C:\WINDOWS\system32\drivers\ialmsbw.sys
12:38:56.0859 0x0de8  {6080A529-897E-4629-A488-ABA0C29B635E} - ok
12:38:56.0906 0x0de8  [ 9E23F50A94DA9D2958465853C0B9CDE6, 932C666883875D6A8A99411128BCDF04B530C28E9A4A2F474D442B70EE277B63 ] {D31A0762-0CEB-444e-ACFF-B049A1F6FE91} C:\WINDOWS\system32\drivers\ialmkchw.sys
12:38:56.0953 0x0de8  {D31A0762-0CEB-444e-ACFF-B049A1F6FE91} - ok
12:38:56.0953 0x0de8  ================ Scan global ===============================
12:38:57.0000 0x0de8  [ 42F1F4C0AFB08410E5F02D4B13EBB623, 924C30587C51C0D1E1F47991969AF492A644552E15F2480EA991DCB74A3E68D5 ] C:\WINDOWS\system32\basesrv.dll
12:38:57.0109 0x0de8  [ 69AE2B2E6968C316536E5B10B9702E63, D9C5DA7A20DDE69D91E72400C3F06F3CB099DEF42EA6C53FCE076258A0C22391 ] C:\WINDOWS\system32\winsrv.dll
12:38:57.0218 0x0de8  [ 69AE2B2E6968C316536E5B10B9702E63, D9C5DA7A20DDE69D91E72400C3F06F3CB099DEF42EA6C53FCE076258A0C22391 ] C:\WINDOWS\system32\winsrv.dll
12:38:57.0265 0x0de8  [ 65DF52F5B8B6E9BBD183505225C37315, 59C606977DB40A3443DFF0BE2A4C761824881B22C9FDB3D23F6486DB580E92A4 ] C:\WINDOWS\system32\services.exe
12:38:57.0265 0x0de8  [ Global ] - ok
12:38:57.0265 0x0de8  ================ Scan MBR ==================================
12:38:57.0281 0x0de8  [ 8F558EB6672622401DA993E1E865C861 ] \Device\Harddisk0\DR0
12:38:57.0281 0x0de8  \Device\Harddisk0\DR0 - ok
12:38:57.0328 0x0de8  [ 8F558EB6672622401DA993E1E865C861 ] \Device\Harddisk1\DR1
12:38:57.0531 0x0de8  \Device\Harddisk1\DR1 - ok
12:38:57.0531 0x0de8  ================ Scan VBR ==================================
12:38:57.0531 0x0de8  [ 93D3D3226C98498188CBAB9A4E09DB50 ] \Device\Harddisk0\DR0\Partition1
12:38:57.0531 0x0de8  \Device\Harddisk0\DR0\Partition1 - ok
12:38:57.0546 0x0de8  [ 39B6FA2F9F2C9802CF54D8200AB42533 ] \Device\Harddisk1\DR1\Partition1
12:38:57.0546 0x0de8  \Device\Harddisk1\DR1\Partition1 - ok
12:38:57.0562 0x0de8  Waiting for KSN requests completion. In queue: 231
12:38:58.0906 0x0de8  AV detected via SS1: PC Tools Spyware Doctor with AntiVirus, 9.0.0.912, enabled, updated
12:38:58.0906 0x0de8  AV detected via SS1: Avira Desktop, 14.0.1.519, enabled, updated
12:38:58.0921 0x0de8  Win FW state via NFM: disabled
12:38:59.0281 0x0de8  ============================================================
12:38:59.0281 0x0de8  Scan finished
12:38:59.0281 0x0de8  ============================================================
12:38:59.0296 0x0df0  Detected object count: 0
12:38:59.0296 0x0df0  Actual detected object count: 0
12:40:16.0578 0x0d70  Deinitialize success

 



#6 MikesbrokenPC

MikesbrokenPC
  • Topic Starter

  • Members
  • 23 posts
  • OFFLINE
  •  
  • Local time:04:30 AM

Posted 28 December 2013 - 01:10 PM

# AdwCleaner v3.016 - Report created 28/12/2013 at 13:01:59
# Updated 23/12/2013 by Xplode
# Operating System : Microsoft Windows XP Service Pack 3 (32 bits)
# Username : Mike - STONES
# Running from : C:\Documents and Settings\Mike\My Documents\Downloads\AdwCleaner(1).exe
# Option : Scan

***** [ Services ] *****


***** [ Files / Folders ] *****

File Found : C:\WINDOWS\Tasks\paretologic registration3.job
File Found : C:\WINDOWS\Tasks\paretologic update version3.job
Folder Found C:\Documents and Settings\Administrator\Application Data\DriverCure
Folder Found C:\Documents and Settings\Administrator\Application Data\ParetoLogic
Folder Found C:\Documents and Settings\Administrator\Start Menu\Programs\ParetoLogic
Folder Found C:\Documents and Settings\All Users\Application Data\ParetoLogic
Folder Found C:\Program Files\Common Files\ParetoLogic

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\F928123A039649549966D4C29D35B1C9
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0CFE535C35F99574E8340BFA75BF92C2
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E12F736682067FDE4D1158D5940A82E
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1A24B5BB8521B03E0C8D908F5ABC0AE6
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\261F213D1F55267499B1F87D0CC3BCF7
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2B0D56C4F4C46D844A57FFED6F0D2852
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49D4375FE41653242AEA4C969E4E65E0
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6AA0923513360135B272E8289C5F13FA
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6F7467AF8F29C134CBBAB394ECCFDE96
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\741B4ADF27276464790022C965AB6DA8
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7DE196B10195F5647A2B21B761F3DE01
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\922525DCC5199162F8935747CA3D8E59
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9D4F5849367142E4685ED8C25E44C5ED
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A5875B04372C19545BEB90D4D606C472
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A876D9E80B896EC44A8620248CC79296
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B66FFAB725B92594C986DE826A867888
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BCDA179D619B91648538E3394CAC94CC
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D677B1A9671D4D4004F6F2A4469E86EA
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DD1402A9DD4215A43ABDE169A41AFA0E
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E36E114A0EAD2AD46B381D23AD69CDDF
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EF8E618DB3AEDFBB384561B5C548F65E
Key Found : HKLM\Software\ParetoLogic

***** [ Browsers ] *****

-\\ Internet Explorer v6.0.2900.5512


-\\ Mozilla Firefox v26.0 (en-US)

[ File : C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\x6sg89o8.default\prefs.js ]


[ File : C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\vemgt075.default\prefs.js ]


-\\ Google Chrome v

[ File : C:\Documents and Settings\Mike\Local Settings\Application Data\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [4252 octets] - [28/12/2013 13:01:59]

########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [4312 octets] ##########



#7 MikesbrokenPC

MikesbrokenPC
  • Topic Starter

  • Members
  • 23 posts
  • OFFLINE
  •  
  • Local time:04:30 AM

Posted 28 December 2013 - 01:41 PM

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.0.8 (11.05.2013:1)
OS: Microsoft Windows XP x86
Ran by Mike on Sat 12/28/2013 at 13:14:32.92
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\installer\upgradecodes\f928123a039649549966d4c29d35b1c9



~~~ Files



~~~ Folders



~~~ FireFox

Emptied folder: C:\Documents and Settings\Mike\Application Data\mozilla\firefox\profiles\x6sg89o8.default\minidumps [7 files]





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Sat 12/28/2013 at 13:27:56.25
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 



#8 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 72,906 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:05:30 AM

Posted 28 December 2013 - 08:20 PM

Did ESET complete/?


How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#9 MikesbrokenPC

MikesbrokenPC
  • Topic Starter

  • Members
  • 23 posts
  • OFFLINE
  •  
  • Local time:04:30 AM

Posted 28 December 2013 - 09:09 PM

and finally the last one

 

C:\Documents and Settings\Administrator\My Documents\Downloads\avira_free_antivirus_en.exe    a variant of Win32/Bundled.Toolbar.Ask application    deleted - quarantined
C:\Documents and Settings\Administrator\My Documents\Downloads\PCSafeDoctor_Setup.exe    multiple threats    cleaned by deleting - quarantined
C:\Documents and Settings\Mike\Local Settings\Temporary Internet Files\Content.IE5\QHW7UH6X\exe[1].exe    a variant of Win32/Kryptik.BRYD trojan    cleaned by deleting - quarantined
C:\Documents and Settings\Mike\My Documents\Downloads\avira_free_antivirus_en(1).exe    a variant of Win32/Bundled.Toolbar.Ask application    deleted - quarantined
C:\Documents and Settings\Mike\My Documents\Downloads\avira_free_antivirus_en(2).exe    a variant of Win32/Bundled.Toolbar.Ask application    deleted - quarantined
C:\Documents and Settings\Mike\My Documents\Downloads\avira_free_antivirus_en.exe    a variant of Win32/Bundled.Toolbar.Ask application    deleted - quarantined
C:\Documents and Settings\Mike\My Documents\Downloads\PCSafeDoctor_Setup.exe    multiple threats    cleaned by deleting - quarantined
C:\Program Files\Avira\AntiVir Desktop\apnic.dll    a variant of Win32/Bundled.Toolbar.Ask application    cleaned by deleting (after the next restart) - quarantined
C:\Program Files\Avira\AntiVir Desktop\apntoolbarinstaller.exe    a variant of Win32/Bundled.Toolbar.Ask application    cleaned by deleting (after the next restart) - quarantined
C:\Program Files\Avira\AntiVir Desktop\Offercast_AVIRAV7_.exe    a variant of Win32/Bundled.Toolbar.Ask.D application    cleaned by deleting (after the next restart) - quarantined
E:\Nero-8[1].2.8.0_eng_trial.exe    Win32/Toolbar.AskSBar application    cleaned by deleting - quarantined
 


yes it took like 5 hours......i honestly dont know how you guys look at all these lines and figure out what is wrong and going on...



#10 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 72,906 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:05:30 AM

Posted 28 December 2013 - 10:33 PM

Hello, yes I read  it all.

 

Looks clean..

 

That find was a generic find.

 

Virus or unwanted program 'TR/Crypt.ZPACK.Gen2 [trojan]'
detected in file 'C:\Program Files\........
Action performed: Deny access

 

Appears you downloaded something possibly from Ask.com, Its installers had items (removed above). These are called bundled,PUPS etcc.

These generic detections are called GEN by Avira and stopped (denied access)

 

You are clean now.


How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#11 MikesbrokenPC

MikesbrokenPC
  • Topic Starter

  • Members
  • 23 posts
  • OFFLINE
  •  
  • Local time:04:30 AM

Posted 29 December 2013 - 09:22 AM

Avira is still going haywire...and keeps scanning machine and saying there is something going on with java containing tr/crypt.pack.gen2 and gen

#12 MikesbrokenPC

MikesbrokenPC
  • Topic Starter

  • Members
  • 23 posts
  • OFFLINE
  •  
  • Local time:04:30 AM

Posted 29 December 2013 - 12:01 PM

this is the lastest avira scan...done this morning after about half an hour of detection beeping...it seems there is something wrong with java or java update...is there a way to fix this so i am not getting 250 detections a day..

 


Avira Free Antivirus
Report file date: Sunday, December 29, 2013  08:42


The program is running as an unrestricted full version.
Online services are available.

Licensee        : Avira Free Antivirus
Serial number   : 0000149996-ADJIE-0000001
Platform        : Microsoft Windows XP
Windows version : (Service Pack 3)  [5.1.2600]
Boot mode       : Normally booted
Username        : SYSTEM
Computer name   : STONES

Version information:
BUILD.DAT       : 14.0.2.286     55547 Bytes   12/9/2013 11:37:00
AVSCAN.EXE      : 14.0.2.254   1032760 Bytes  12/17/2013 11:59:02
AVSCANRC.DLL    : 14.0.2.180     52280 Bytes  12/17/2013 11:59:03
LUKE.DLL        : 14.0.2.234     65592 Bytes  12/17/2013 11:59:57
AVSCPLR.DLL     : 14.0.2.254    124472 Bytes  12/17/2013 11:59:03
AVREG.DLL       : 14.0.2.212    250424 Bytes  12/17/2013 11:59:01
avlode.dll      : 14.0.2.254    540216 Bytes  12/17/2013 11:59:00
avlode.rdf      : 13.0.1.62      56973 Bytes   12/9/2013 12:55:20
VBASE000.VDF    : 7.11.70.0   66736640 Bytes    4/4/2013 09:33:41
VBASE001.VDF    : 7.11.74.226  2201600 Bytes   4/30/2013 14:36:39
VBASE002.VDF    : 7.11.80.60   2751488 Bytes   5/28/2013 11:34:06
VBASE003.VDF    : 7.11.85.214  2162688 Bytes   6/21/2013 15:50:18
VBASE004.VDF    : 7.11.91.176  3903488 Bytes   7/23/2013 14:09:38
VBASE005.VDF    : 7.11.98.186  6822912 Bytes   8/29/2013 18:13:34
VBASE006.VDF    : 7.11.103.230  2293248 Bytes   9/24/2013 10:36:40
VBASE007.VDF    : 7.11.116.38  5485568 Bytes  11/28/2013 13:19:20
VBASE008.VDF    : 7.11.120.140  1154560 Bytes  12/19/2013 17:49:50
VBASE009.VDF    : 7.11.120.141     2048 Bytes  12/19/2013 17:49:51
VBASE010.VDF    : 7.11.120.142     2048 Bytes  12/19/2013 17:49:52
VBASE011.VDF    : 7.11.120.143     2048 Bytes  12/19/2013 17:49:52
VBASE012.VDF    : 7.11.120.144     2048 Bytes  12/19/2013 17:49:52
VBASE013.VDF    : 7.11.120.145     2048 Bytes  12/19/2013 17:49:52
VBASE014.VDF    : 7.11.121.19   126976 Bytes  12/21/2013 11:46:50
VBASE015.VDF    : 7.11.121.147   122880 Bytes  12/24/2013 05:39:32
VBASE016.VDF    : 7.11.121.233   115712 Bytes  12/25/2013 17:41:29
VBASE017.VDF    : 7.11.122.57   325120 Bytes  12/27/2013 11:34:15
VBASE018.VDF    : 7.11.122.123   199680 Bytes  12/28/2013 15:09:34
VBASE019.VDF    : 7.11.122.124     2048 Bytes  12/28/2013 15:09:34
VBASE020.VDF    : 7.11.122.125     2048 Bytes  12/28/2013 15:09:34
VBASE021.VDF    : 7.11.122.126     2048 Bytes  12/28/2013 15:09:34
VBASE022.VDF    : 7.11.122.127     2048 Bytes  12/28/2013 15:09:34
VBASE023.VDF    : 7.11.122.128     2048 Bytes  12/28/2013 15:09:34
VBASE024.VDF    : 7.11.122.129     2048 Bytes  12/28/2013 15:09:35
VBASE025.VDF    : 7.11.122.130     2048 Bytes  12/28/2013 15:09:35
VBASE026.VDF    : 7.11.122.131     2048 Bytes  12/28/2013 15:09:35
VBASE027.VDF    : 7.11.122.132     2048 Bytes  12/28/2013 15:09:35
VBASE028.VDF    : 7.11.122.133     2048 Bytes  12/28/2013 15:09:35
VBASE029.VDF    : 7.11.122.134     2048 Bytes  12/28/2013 15:09:35
VBASE030.VDF    : 7.11.122.135     2048 Bytes  12/28/2013 15:09:35
VBASE031.VDF    : 7.11.122.154   124416 Bytes  12/28/2013 21:09:09
Engine version  : 8.2.12.166
AEVDF.DLL       : 8.1.3.4       102774 Bytes   5/13/2013 16:21:13
AESCRIPT.DLL    : 8.1.4.176     520574 Bytes  12/19/2013 17:50:48
AESCN.DLL       : 8.1.10.6      131447 Bytes  12/11/2013 18:16:43
AESBX.DLL       : 8.2.16.26    1245560 Bytes   8/23/2013 12:36:57
AERDL.DLL       : 8.2.0.138     704888 Bytes   12/2/2013 19:07:01
AEPACK.DLL      : 8.3.3.8       762232 Bytes  12/19/2013 17:50:48
AEOFFICE.DLL    : 8.1.2.76      205181 Bytes    8/8/2013 13:17:15
AEHEUR.DLL      : 8.1.4.830    6386042 Bytes  12/19/2013 17:50:47
AEHELP.DLL      : 8.1.27.10     266618 Bytes  11/22/2013 13:30:21
AEGEN.DLL       : 8.1.7.20      446839 Bytes  11/13/2013 20:01:59
AEEXP.DLL       : 8.4.1.138     418168 Bytes  12/13/2013 12:07:12
AEEMU.DLL       : 8.1.3.2       393587 Bytes   9/19/2012 20:42:55
AECORE.DLL      : 8.1.33.0      225657 Bytes  12/11/2013 18:16:43
AEBB.DLL        : 8.1.1.4        53619 Bytes  11/11/2012 21:18:41
AVWINLL.DLL     : 14.0.2.180     23608 Bytes  12/17/2013 11:58:51
AVPREF.DLL      : 14.0.2.180     48696 Bytes  12/17/2013 11:59:01
AVREP.DLL       : 14.0.2.180    175672 Bytes  12/17/2013 11:59:01
AVARKT.DLL      : 14.0.2.254    256056 Bytes  12/17/2013 11:58:54
AVEVTLOG.DLL    : 14.0.2.180    165944 Bytes  12/17/2013 11:58:57
SQLITE3.DLL     : 3.7.0.1       397088 Bytes   9/20/2012 00:17:40
AVSMTP.DLL      : 14.0.2.180     60472 Bytes  12/17/2013 11:59:03
NETNT.DLL       : 14.0.2.180     13368 Bytes  12/17/2013 11:59:57
RCIMAGE.DLL     : 14.0.2.180   4788792 Bytes  12/17/2013 11:58:52
RCTEXT.DLL      : 14.0.2.236     72760 Bytes  12/17/2013 11:58:52

Configuration settings for the scan:
Jobname.............................: Complete system scan
Configuration file..................: C:\Documents and Settings\All Users\Application Data\Avira\AntiVir Desktop\PROFILES\AVSCAN-20131229-081722-5EEB8A29.avp
Reporting...........................: default
Primary action......................: Interactive
Secondary action....................: Ignore
Scan master boot sector.............: on
Scan boot sector....................: on
Boot sectors........................: C:, E:,
Process scan........................: on
Extended process scan...............: on
Scan registry.......................: on
Search for rootkits.................: on
Integrity checking of system files..: off
Scan all files......................: All files
Scan archives.......................: on
Limit recursion depth...............: 20
Smart extensions....................: on
Macrovirus heuristic................: on
File heuristic......................: extended

Start of the scan: Sunday, December 29, 2013  08:42

Start scanning boot sectors:
Boot sector 'HDD1(C:)'
    [INFO]      No virus was found!
Boot sector 'HDD0(E:)'
    [INFO]      No virus was found!

Starting search for hidden objects.

The scan of running processes will be started:
Scan process 'rsmsink.exe' - '28' Module(s) have been scanned
Scan process 'msdtc.exe' - '39' Module(s) have been scanned
Scan process 'dllhost.exe' - '59' Module(s) have been scanned
Scan process 'dllhost.exe' - '44' Module(s) have been scanned
Scan process 'vssvc.exe' - '47' Module(s) have been scanned
Scan process 'wscntfy.exe' - '15' Module(s) have been scanned
Scan process 'avscan.exe' - '89' Module(s) have been scanned
Scan process 'avshadow.exe' - '25' Module(s) have been scanned
Scan process 'svchost.exe' - '33' Module(s) have been scanned
Scan process 'alg.exe' - '32' Module(s) have been scanned
Scan process 'iPodService.exe' - '29' Module(s) have been scanned
Scan process 'avconfig.exe' - '54' Module(s) have been scanned
Scan process 'jucheck.exe' - '49' Module(s) have been scanned
Scan process 'avcenter.exe' - '74' Module(s) have been scanned
Scan process 'wuauclt.exe' - '35' Module(s) have been scanned
Scan process 'svchost.exe' - '37' Module(s) have been scanned
Scan process 'MDM.EXE' - '20' Module(s) have been scanned
Scan process 'jqs.exe' - '32' Module(s) have been scanned
Scan process 'mDNSResponder.exe' - '27' Module(s) have been scanned
Scan process 'svchost.exe' - '85' Module(s) have been scanned
Scan process 'AppleMobileDeviceService.exe' - '53' Module(s) have been scanned
Scan process 'avguard.exe' - '83' Module(s) have been scanned
Scan process 'SASCORE.EXE' - '16' Module(s) have been scanned
Scan process 'SSScheduler.exe' - '16' Module(s) have been scanned
Scan process 'msmsgs.exe' - '39' Module(s) have been scanned
Scan process 'ctfmon.exe' - '23' Module(s) have been scanned
Scan process 'iTunesHelper.exe' - '59' Module(s) have been scanned
Scan process 'QTTask.exe' - '16' Module(s) have been scanned
Scan process 'jusched.exe' - '27' Module(s) have been scanned
Scan process 'avgnt.exe' - '69' Module(s) have been scanned
Scan process 'AdobeARM.exe' - '39' Module(s) have been scanned
Scan process 'hkcmd.exe' - '26' Module(s) have been scanned
Scan process 'igfxtray.exe' - '26' Module(s) have been scanned
Scan process 'svchost.exe' - '33' Module(s) have been scanned
Scan process 'sched.exe' - '39' Module(s) have been scanned
Scan process 'spoolsv.exe' - '58' Module(s) have been scanned
Scan process 'Explorer.EXE' - '80' Module(s) have been scanned
Scan process 'svchost.exe' - '40' Module(s) have been scanned
Scan process 'svchost.exe' - '31' Module(s) have been scanned
Scan process 'svchost.exe' - '159' Module(s) have been scanned
Scan process 'svchost.exe' - '39' Module(s) have been scanned
Scan process 'svchost.exe' - '52' Module(s) have been scanned
Scan process 'lsass.exe' - '57' Module(s) have been scanned
Scan process 'services.exe' - '26' Module(s) have been scanned
Scan process 'winlogon.exe' - '71' Module(s) have been scanned
Scan process 'csrss.exe' - '12' Module(s) have been scanned
Scan process 'smss.exe' - '2' Module(s) have been scanned

Starting to scan executable files (registry):
The registry was scanned ( '3653' files ).


Starting the file scan:

Begin scan in 'C:\'
C:\Documents and Settings\Mike\Local Settings\Application Data\dddkfsnn.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen2 Trojan
C:\Documents and Settings\Mike\Local Settings\Application Data\egcdeovh.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen2 Trojan
C:\Documents and Settings\Mike\Local Settings\Application Data\govcwsxe.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen2 Trojan
C:\Documents and Settings\Mike\Local Settings\Application Data\gpakeaji.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen2 Trojan
C:\Documents and Settings\Mike\Local Settings\Application Data\gqkqwqiu.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen2 Trojan
C:\Documents and Settings\Mike\Local Settings\Application Data\hgjexehl.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen2 Trojan
C:\Documents and Settings\Mike\Local Settings\Application Data\ikfpwsdg.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen2 Trojan
C:\Documents and Settings\Mike\Local Settings\Application Data\ixfvwxgw.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen2 Trojan
C:\Documents and Settings\Mike\Local Settings\Application Data\kpclwckx.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen2 Trojan
C:\Documents and Settings\Mike\Local Settings\Application Data\nvmwmaof.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen2 Trojan
C:\Documents and Settings\Mike\Local Settings\Application Data\qjpacnxx.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen2 Trojan
C:\Documents and Settings\Mike\Local Settings\Application Data\salkarws.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen2 Trojan
C:\Documents and Settings\Mike\Local Settings\Application Data\sijtqbta.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen2 Trojan
C:\Documents and Settings\Mike\Local Settings\Application Data\vbenqcvq.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen2 Trojan
C:\Documents and Settings\Mike\Local Settings\Application Data\vdmkpnjq.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen2 Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_007f4b05.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_00b779ed.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_00c19a85.exe
  [DETECTION] Is the TR/Crypt.ZPACK.Gen2 Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_00f110ee.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_01b973aa.exe
  [DETECTION] Is the TR/Crypt.ZPACK.Gen2 Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_023d4a47.exe
  [DETECTION] Is the TR/Crypt.ZPACK.Gen2 Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_02f36e52.exe
  [DETECTION] Is the TR/Crypt.ZPACK.Gen2 Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_05149dae.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_0531d9f4.exe
  [DETECTION] Is the TR/Crypt.ZPACK.Gen2 Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_05427f7e.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_068692d6.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_07e7a919.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_0b375135.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_0c7be363.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_0f3711e8.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_0fb32fbf.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_109d978f.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_110acdac.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_111de71b.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_12f5631a.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_13ab3611.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_142f4a48.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_1607a75e.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_165ea5a2.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_171cbd1f.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_17e347ac.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_1896e1f2.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_1b169c3b.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_1b692070.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_1c83e380.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_1e532846.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_1fc2a298.exe
  [DETECTION] Is the TR/Crypt.ZPACK.Gen2 Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_211588ba.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_226334a7.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_2401f612.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_2409a9fd.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_26e95fb6.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_271c700a.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_2a304924.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_2a483ec4.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_2a4ab153.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_2ce83133.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_2e252621.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_2fb2bcd6.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_3062b5a3.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_3094beaa.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_31180f33.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_32fc1d73.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_336d3a2d.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_34446f06.exe
  [DETECTION] Is the TR/Crypt.ZPACK.Gen2 Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_357491f1.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_384deaf5.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_39883672.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_3a53b3f5.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_3c84b79a.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_3d8ab988.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_3e2b4635.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_3fb62937.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_42c90f12.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_43fb08a8.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_44123290.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_467fd028.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_4789f5ca.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_4795cb4d.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_47b7a851.exe
  [DETECTION] Is the TR/Crypt.ZPACK.Gen2 Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_47fe9fbc.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_4982722d.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_49da34a1.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_4ad1c1fa.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_4b05b93c.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_4b94bb64.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_4c7bda15.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_4ed1bbc1.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_4fdd73f6.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_50f52304.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_512012f6.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_5155d327.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_51a243c8.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_51f3cbc4.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_526499b9.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_52ecd6ca.exe
  [DETECTION] Is the TR/Crypt.ZPACK.Gen2 Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_53019e00.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_53177bb4.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_54f356c7.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_5589e364.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_57648ef3.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_577714a4.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_595756c4.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_5b367ce2.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_5b40b922.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_5b715f67.exe
  [DETECTION] Is the TR/Crypt.ZPACK.Gen2 Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_5bcddde7.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_5d0a3f34.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_5ee19633.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_6021f949.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_613940bb.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_62d21e1c.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_642cb528.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_6481f0b7.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_64b48439.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_655aa2c1.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_65aa8e0e.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_67c3366d.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_6a04a508.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_6a0545a6.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_6c940dd8.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_6d91f161.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_710e10e4.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_728b3875.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_73187ea9.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_74a5b95c.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_75059611.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_78c609b3.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_7a438690.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_7b5bc966.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_7bebf661.exe
  [DETECTION] Is the TR/Crypt.ZPACK.Gen2 Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_7ed9cc87.exe
  [DETECTION] Is the TR/Crypt.ZPACK.Gen2 Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_7f6b5582.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_807229bf.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_823be4c9.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_825cff3d.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_83029102.exe
  [DETECTION] Is the TR/Crypt.ZPACK.Gen2 Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_833cf339.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_83dfb2f6.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_841be128.exe
  [DETECTION] Is the TR/Crypt.ZPACK.Gen2 Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_84491932.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_860da6c1.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_8729e8ca.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_8888040c.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_89712e36.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_8b0a6ab8.exe
  [DETECTION] Is the TR/Crypt.ZPACK.Gen2 Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_8bc58e9c.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_8c31154b.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_8dde954c.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_8de06d4b.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_8e565675.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_8e7c565f.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_8eb1444b.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_8f16729e.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_8fb335ac.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_90ff81f9.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_910f8622.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_91d51686.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_93518da7.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_93c0d3e4.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_948bdd69.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_94f28bf6.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_95ffef33.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_97a4a7f4.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_9816b723.exe
  [DETECTION] Is the TR/Crypt.ZPACK.Gen2 Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_98191c1e.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_9d5f93fa.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_a107dee1.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_a1393b69.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_a1c512b2.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_a1d0e697.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_a479d061.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_a4cadb6a.exe
  [DETECTION] Is the TR/Crypt.ZPACK.Gen2 Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_a6ed628e.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_a78eb84e.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_a7ca0b11.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_a879169e.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_aa29269d.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_acc3f6ab.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_ae09f28c.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_aece99f5.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_aee653c7.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_af0851b3.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_afc004e9.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_afdb3fe2.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_b14e6494.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_b2173dcd.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_b3f21f45.exe
  [DETECTION] Is the TR/Crypt.ZPACK.Gen2 Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_b447d039.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_b4d5f212.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_b50ede8f.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_b52e6ad1.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_b55ceb7b.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_b73949cb.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_b78e4186.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_b7ee1b26.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_b92ccf2d.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_b9304c82.exe
  [DETECTION] Is the TR/Crypt.ZPACK.Gen2 Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_bbc3ad0b.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_bc95a488.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_bca99fbc.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_bd358643.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_bf2fbecf.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_c393d3bf.exe
  [DETECTION] Is the TR/Crypt.ZPACK.Gen2 Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_c5ad3b8b.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_c80e3c63.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_c8bd6b80.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_c8f888d9.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_c9cb379f.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_ca75928b.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_cb3082f0.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_cc7c30dc.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_ce4decee.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_cf62017a.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_d0850d96.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_d13d7d47.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_d1cdcd5f.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_d264118f.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_d2ab6e18.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_d4710200.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_d6ae3c58.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_d74e86b2.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_d7562306.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_da13438b.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_db21e887.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_db486b35.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_de80dfbc.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_e0907d83.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_e30d8a5c.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_e3a40a20.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_e3a9689d.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_e3e2b3d8.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_e527d3c8.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_e65e720e.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_e706445c.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_e7b5547c.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_e7ebf8ef.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_e85510a0.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_ecc773df.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_edce3d75.exe
  [DETECTION] Is the TR/Crypt.ZPACK.Gen2 Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_ef3071f2.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_f162a8d7.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_f2674d76.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_f35c92eb.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_f3cde192.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_f41cc5f0.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_f49553ac.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_f54d2f79.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_f57d671f.exe
  [DETECTION] Is the TR/Crypt.ZPACK.Gen2 Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_f610900f.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_f796b046.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_f8b162c6.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_f9d856d3.exe
  [DETECTION] Is the TR/Crypt.ZPACK.Gen2 Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_fa6d510c.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_fa95dc2a.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_fd98e8b7.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_fe2505d7.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_ff2a970a.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
Begin scan in 'E:\' <BACKUP>

Beginning disinfection:
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_ff2a970a.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '5feff14a.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_fe2505d7.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '4778deee.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_fd98e8b7.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '15278406.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_fa95dc2a.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '7310cbc4.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_fa6d510c.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '3694e6fa.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_f9d856d3.exe
  [DETECTION] Is the TR/Crypt.ZPACK.Gen2 Trojan
  [NOTE]      The file was moved to the quarantine directory under the name '498fd4e6.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_f8b162c6.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '0537f8ac.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_f796b046.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '792fb8fc.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_f610900f.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '547597b1.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_f57d671f.exe
  [DETECTION] Is the TR/Crypt.ZPACK.Gen2 Trojan
  [NOTE]      The file was moved to the quarantine directory under the name '4d1dac2b.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_f54d2f79.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '2141801b.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_f49553ac.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '50f8b98e.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_f41cc5f0.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '5ee2894e.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_f3cde192.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '1bcbf00c.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_f35c92eb.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '12c0f4a7.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_f2674d76.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '4a81edce.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_f162a8d7.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '66759402.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_ef3071f2.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '588bf4d8.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_edce3d75.exe
  [DETECTION] Is the TR/Crypt.ZPACK.Gen2 Trojan
  [NOTE]      The file was moved to the quarantine directory under the name '3b85dfab.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_ecc773df.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '1d4d9fb6.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_e85510a0.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '2fd9e413.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_e7ebf8ef.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '259ccf6d.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_e7b5547c.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '1acfab28.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_e706445c.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '64e3a70f.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_e65e720e.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '319ba3c4.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_e527d3c8.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '3c0dd2ec.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_e3e2b3d8.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '2050c6e5.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_e3a9689d.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '11838b2b.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_e3a40a20.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '7dd59f1c.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_e30d8a5c.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '344fba1b.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_e0907d83.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '6fdab2ca.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_de80dfbc.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '0968be23.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_db486b35.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '5ee6cc8b.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_db21e887.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '7c969bff.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_da13438b.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '1486e169.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_d7562306.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '34f0e5ef.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_d74e86b2.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '61d4a35b.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_d6ae3c58.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '00f482e4.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_d4710200.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '6558c06f.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_d2ab6e18.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '008fb4ce.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_d264118f.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '136b885d.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_d1cdcd5f.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '01d2f4e0.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_d13d7d47.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '16829752.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_d0850d96.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '4ca0a5c2.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_cf62017a.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '69addfd6.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_ce4decee.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '1df6c7a5.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_cc7c30dc.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '3ff49529.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_cb3082f0.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '4a67ed30.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_ca75928b.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '6130b130.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_c9cb379f.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '0657f98f.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_c8f888d9.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '4d27c099.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_c8bd6b80.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '4dd9cac8.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_c80e3c63.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '07769fd8.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_c5ad3b8b.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '695fb011.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_c393d3bf.exe
  [DETECTION] Is the TR/Crypt.ZPACK.Gen2 Trojan
  [NOTE]      The file was moved to the quarantine directory under the name '247fee61.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_bf2fbecf.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '4c5bc95a.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_bd358643.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '36eaf393.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_bca99fbc.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '47b8afd6.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_bc95a488.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '375f85c6.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_bbc3ad0b.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '4c2ff993.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_b9304c82.exe
  [DETECTION] Is the TR/Crypt.ZPACK.Gen2 Trojan
  [NOTE]      The file was moved to the quarantine directory under the name '02748af9.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_b92ccf2d.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '7c0ff1df.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_b7ee1b26.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '0895d9ac.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_b78e4186.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '03a185c5.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_b73949cb.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '50799607.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_b55ceb7b.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '3510bd6d.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_b52e6ad1.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '1debedcf.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_b50ede8f.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '6948b47a.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_b4d5f212.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '2645ccf3.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_b447d039.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '19919555.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_b3f21f45.exe
  [DETECTION] Is the TR/Crypt.ZPACK.Gen2 Trojan
  [NOTE]      The file was moved to the quarantine directory under the name '63a796e3.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_b2173dcd.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '33af9192.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_b14e6494.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '65a79bd0.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_afdb3fe2.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '22179f03.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_afc004e9.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '015bf181.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_af0851b3.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '46d0d86f.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_aee653c7.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '34b48bfb.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_aece99f5.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '1fdbc8ed.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_ae09f28c.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '5c42c652.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_acc3f6ab.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '168cbf6a.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_aa29269d.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '1bc4a1c9.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_a879169e.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '342ee927.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_a7ca0b11.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '0beaa04d.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_a78eb84e.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '340db6d7.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_a6ed628e.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '51d4e600.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_a4cadb6a.exe
  [DETECTION] Is the TR/Crypt.ZPACK.Gen2 Trojan
  [NOTE]      The file was moved to the quarantine directory under the name '77f5c16a.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_a479d061.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '7b589212.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_a1d0e697.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '4e32e4cb.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_a1c512b2.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '3512e381.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_a1393b69.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '1312e6bb.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_a107dee1.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '7f9fab61.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_9d5f93fa.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '5ff3bed0.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_98191c1e.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '38f4d43d.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_9816b723.exe
  [DETECTION] Is the TR/Crypt.ZPACK.Gen2 Trojan
  [NOTE]      The file was moved to the quarantine directory under the name '4532b7d3.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_97a4a7f4.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '1909b8cc.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_95ffef33.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '51568335.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_94f28bf6.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '3f8eeecb.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_948bdd69.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '1a49b06d.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_93c0d3e4.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '6820a0c1.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_93518da7.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '06db9c32.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_91d51686.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '6823a4d8.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_910f8622.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '1631fd33.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_90ff81f9.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '0fbead99.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_8fb335ac.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '1f41c25c.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_8f16729e.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '06c8cf47.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_8eb1444b.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '47969218.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_8e7c565f.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '4912c679.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_8e565675.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '654bc6a7.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_8de06d4b.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '53bde91c.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_8dde954c.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '53d3811e.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_8c31154b.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '28fdbf2a.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_8bc58e9c.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '2d449c06.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_8b0a6ab8.exe
  [DETECTION] Is the TR/Crypt.ZPACK.Gen2 Trojan
  [NOTE]      The file was moved to the quarantine directory under the name '42dedb69.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_89712e36.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '6b54a0c3.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_8888040c.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '0fa2f44d.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_8729e8ca.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '660882a8.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_860da6c1.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '1343e827.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_84491932.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '32afd30c.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_841be128.exe
  [DETECTION] Is the TR/Crypt.ZPACK.Gen2 Trojan
  [NOTE]      The file was moved to the quarantine directory under the name '103ee55f.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_83dfb2f6.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '17ac891d.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_833cf339.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '4850e769.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_83029102.exe
  [DETECTION] Is the TR/Crypt.ZPACK.Gen2 Trojan
  [NOTE]      The file was moved to the quarantine directory under the name '18c8cac3.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_825cff3d.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '40d0a135.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_823be4c9.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '12a1e072.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_807229bf.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '151295ed.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_7f6b5582.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '608cb351.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_7ed9cc87.exe
  [DETECTION] Is the TR/Crypt.ZPACK.Gen2 Trojan
  [NOTE]      The file was moved to the quarantine directory under the name '0116f74c.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_7bebf661.exe
  [DETECTION] Is the TR/Crypt.ZPACK.Gen2 Trojan
  [NOTE]      The file was moved to the quarantine directory under the name '10aee16d.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_7b5bc966.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '393caa0d.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_7a438690.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '167dd60a.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_78c609b3.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '2b6bf7b5.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_75059611.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '02e2bc93.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_74a5b95c.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '0abfc5e5.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_73187ea9.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '7794f1c0.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_728b3875.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '78e3af58.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_710e10e4.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '5223d627.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_6d91f161.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '3332e641.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_6c940dd8.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '4c1590dc.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_6a0545a6.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '55eeb0ca.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_6a04a508.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '0dcdd1f1.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_67c3366d.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '1a038064.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_65aa8e0e.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '6b9f9f39.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_655aa2c1.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '6451f923.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_64b48439.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '4c4c905d.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_6481f0b7.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '01b09129.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_642cb528.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '3616c3c6.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_62d21e1c.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '300fe5c8.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_613940bb.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '79aec1d1.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_6021f949.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '4f8fb16f.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_5ee19633.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '3bbffa20.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_5d0a3f34.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '11cec364.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_5bcddde7.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '5686c912.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_5b715f67.exe
  [DETECTION] Is the TR/Crypt.ZPACK.Gen2 Trojan
  [NOTE]      The file was moved to the quarantine directory under the name '0c77903d.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_5b40b922.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '52acf9a3.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_5b367ce2.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '42d79c2e.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_595756c4.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '2a07ff8a.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_577714a4.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '0b10b7af.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_57648ef3.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '60cd8981.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_5589e364.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '6051dc8a.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_54f356c7.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The file could not be copied to quarantine!
  [NOTE]      The file does not exist!
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_53177bb4.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '07d3fd23.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_53019e00.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '125c8bab.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_52ecd6ca.exe
  [DETECTION] Is the TR/Crypt.ZPACK.Gen2 Trojan
  [NOTE]      The file was moved to the quarantine directory under the name '5f07e3a5.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_526499b9.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '5327f6fe.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_51f3cbc4.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '31b887d7.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_51a243c8.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '006e86a4.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_5155d327.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '6f61ddb8.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_512012f6.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '1904948a.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_50f52304.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '2592e980.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_4fdd73f6.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '495c96d8.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_4ed1bbc1.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '4f1fe61c.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_4c7bda15.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '2617f76a.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_4b94bb64.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '5c569307.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_4b05b93c.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '58eee8ee.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_4ad1c1fa.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '4f1fd553.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_49da34a1.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '3167f559.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_4982722d.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '0398d471.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_47fe9fbc.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '5e27a90f.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_47b7a851.exe
  [DETECTION] Is the TR/Crypt.ZPACK.Gen2 Trojan
  [NOTE]      The file was moved to the quarantine directory under the name '055af7c1.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_4795cb4d.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '441fb14e.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_4789f5ca.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '4a59f6dd.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_467fd028.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '746391dd.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_44123290.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '70caeda4.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_43fb08a8.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '3972de78.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_42c90f12.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '1ca3f707.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_3fb62937.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '39ecca79.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_3e2b4635.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '4d4fe996.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_3d8ab988.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '6c449946.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_3c84b79a.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '4ebcd44e.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_3a53b3f5.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '57be8ffa.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_39883672.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '16a59f89.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_384deaf5.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '19e0a5e7.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_357491f1.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '781cb711.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_34446f06.exe
  [DETECTION] Is the TR/Crypt.ZPACK.Gen2 Trojan
  [NOTE]      The file was moved to the quarantine directory under the name '38aba806.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_336d3a2d.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '7ba4ddd8.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_32fc1d73.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '2d50dc2a.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_31180f33.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '00f2f787.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_3094beaa.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '71ffd49e.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_3062b5a3.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '42f9d7b1.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_2fb2bcd6.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '4298a6c9.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_2e252621.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '1aabc737.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_2ce83133.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '5925b355.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_2a4ab153.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '1cee8f98.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_2a483ec4.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '53d89819.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_2a304924.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '2ddba4f2.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_271c700a.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '4d04a939.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_26e95fb6.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '28f9b37b.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_2409a9fd.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '59c1bebe.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_2401f612.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '74c9cc2e.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_226334a7.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '6cc38e5f.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_211588ba.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '26ddd212.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_1fc2a298.exe
  [DETECTION] Is the TR/Crypt.ZPACK.Gen2 Trojan
  [NOTE]      The file was moved to the quarantine directory under the name '1ba7d2f3.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_1e532846.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '07038bdd.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_1c83e380.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '7eeab9b4.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_1b692070.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '1c80c30c.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_1b169c3b.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '6ccea7e6.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_1896e1f2.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '15359992.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_17e347ac.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '084bc1c4.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_171cbd1f.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '6878c8c8.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_165ea5a2.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '5f2dc14a.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_1607a75e.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '1339dd9b.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_142f4a48.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '1616ab00.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_13ab3611.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '43b3883d.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_12f5631a.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '5f4a8c45.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_111de71b.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '5541ed43.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_110acdac.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '32b5b176.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_109d978f.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '3816ed85.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_0fb32fbf.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '0744df85.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_0f3711e8.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '1c1deef9.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_0c7be363.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '4d80e17a.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_0b375135.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '02eddaa8.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_07e7a919.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '5c3cd614.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_068692d6.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '0db9e355.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_05427f7e.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '5536ff82.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_0531d9f4.exe
  [DETECTION] Is the TR/Crypt.ZPACK.Gen2 Trojan
  [NOTE]      The file was moved to the quarantine directory under the name '2692bea3.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_05149dae.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '7cf4abb0.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_02f36e52.exe
  [DETECTION] Is the TR/Crypt.ZPACK.Gen2 Trojan
  [NOTE]      The file was moved to the quarantine directory under the name '226cf67e.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_023d4a47.exe
  [DETECTION] Is the TR/Crypt.ZPACK.Gen2 Trojan
  [NOTE]      The file was moved to the quarantine directory under the name '7aaecf36.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_01b973aa.exe
  [DETECTION] Is the TR/Crypt.ZPACK.Gen2 Trojan
  [NOTE]      The file was moved to the quarantine directory under the name '70cde1c3.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_00f110ee.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '443aaad0.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_00c19a85.exe
  [DETECTION] Is the TR/Crypt.ZPACK.Gen2 Trojan
  [NOTE]      The file was moved to the quarantine directory under the name '410cfb9b.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_00b779ed.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '2cbbb4ba.qua'!
C:\Documents and Settings\Mike\Local Settings\temp\Java_Update_007f4b05.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
  [NOTE]      The registration for this file was not remedied due to too many multiple detections. For a more exact analysis, please send us this file via Quarantine manager for closer examination.
  [NOTE]      The file was moved to the quarantine directory under the name '2c4f81af.qua'!
C:\Documents and Settings\Mike\Local Settings\Application Data\vdmkpnjq.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen2 Trojan
  [NOTE]      The file was moved to the quarantine directory under the name '559cdd3b.qua'!
C:\Documents and Settings\Mike\Local Settings\Application Data\vbenqcvq.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen2 Trojan
  [NOTE]      The file was moved to the quarantine directory under the name '4a28c59e.qua'!
C:\Documents and Settings\Mike\Local Settings\Application Data\sijtqbta.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen2 Trojan
  [NOTE]      The file was moved to the quarantine directory under the name '3c95d645.qua'!
C:\Documents and Settings\Mike\Local Settings\Application Data\salkarws.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen2 Trojan
  [NOTE]      The file was moved to the quarantine directory under the name '452a8357.qua'!
C:\Documents and Settings\Mike\Local Settings\Application Data\qjpacnxx.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen2 Trojan
  [NOTE]      The file was moved to the quarantine directory under the name '5fbbd93a.qua'!
C:\Documents and Settings\Mike\Local Settings\Application Data\nvmwmaof.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen2 Trojan
  [NOTE]      The file was moved to the quarantine directory under the name '51448a1f.qua'!
C:\Documents and Settings\Mike\Local Settings\Application Data\kpclwckx.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen2 Trojan
  [NOTE]      The file was moved to the quarantine directory under the name '7800c6d9.qua'!
C:\Documents and Settings\Mike\Local Settings\Application Data\ixfvwxgw.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen2 Trojan
  [NOTE]      The file was moved to the quarantine directory under the name '5b269998.qua'!
C:\Documents and Settings\Mike\Local Settings\Application Data\ikfpwsdg.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen2 Trojan
  [NOTE]      The file was moved to the quarantine directory under the name '47eca69b.qua'!
C:\Documents and Settings\Mike\Local Settings\Application Data\hgjexehl.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen2 Trojan
  [NOTE]      The file was moved to the quarantine directory under the name '4c7cf64a.qua'!
C:\Documents and Settings\Mike\Local Settings\Application Data\gqkqwqiu.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen2 Trojan
  [NOTE]      The file was moved to the quarantine directory under the name '2e88c1e5.qua'!
C:\Documents and Settings\Mike\Local Settings\Application Data\gpakeaji.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen2 Trojan
  [NOTE]      The file was moved to the quarantine directory under the name '46dada1e.qua'!
C:\Documents and Settings\Mike\Local Settings\Application Data\govcwsxe.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen2 Trojan
  [NOTE]      The file was moved to the quarantine directory under the name '0d67edc4.qua'!
C:\Documents and Settings\Mike\Local Settings\Application Data\egcdeovh.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen2 Trojan
  [NOTE]      The file was moved to the quarantine directory under the name '2b8d8360.qua'!
C:\Documents and Settings\Mike\Local Settings\Application Data\dddkfsnn.exe
  [DETECTION] Is the TR/Crypt.XPACK.Gen2 Trojan
  [NOTE]      The file was moved to the quarantine directory under the name '2a38ec22.qua'!


End of the scan: Sunday, December 29, 2013  12:00
Used time:  2:18:09 Hour(s)

The scan has been done completely.

  10659 Scanned directories
 541471 Files were scanned
    258 Viruses and/or unwanted programs were found
      0 Files were classified as suspicious
      0 Files were deleted
      0 Viruses and unwanted programs were repaired
    257 Files were moved to quarantine
      0 Files were renamed
      0 Files cannot be scanned
 541213 Files not concerned
   3141 Archives were scanned
      0 Warnings
    258 Notes
 379869 Objects were scanned with rootkit scan
      0 Hidden objects were found
 



#13 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 72,906 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:05:30 AM

Posted 29 December 2013 - 12:49 PM

Hmm,, that's not right.

Go into Control Panel ..Add/ Remove and remove AVira
Reboot

Go here and install and scan.
Free
Avira Antivir


How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#14 MikesbrokenPC

MikesbrokenPC
  • Topic Starter

  • Members
  • 23 posts
  • OFFLINE
  •  
  • Local time:04:30 AM

Posted 30 December 2013 - 08:20 AM

okay that is all done now...new avira found 1 detection...moved to quarintine...here is the log...anything else i should run or do...

 


Avira Free Antivirus
Report file date: Sunday, December 29, 2013  21:42


The program is running as an unrestricted full version.
Online services are available.

Licensee        : Avira Free Antivirus
Serial number   : 0000149996-ADJIE-0000001
Platform        : Microsoft Windows XP
Windows version : (Service Pack 3)  [5.1.2600]
Boot mode       : Normally booted
Username        : SYSTEM
Computer name   : STONES

Version information:
BUILD.DAT       : 14.0.2.286     55547 Bytes   12/9/2013 11:37:00
AVSCAN.EXE      : 14.0.2.254   1032760 Bytes  12/30/2013 01:59:17
AVSCANRC.DLL    : 14.0.2.180     52280 Bytes  12/30/2013 01:59:18
LUKE.DLL        : 14.0.2.234     65592 Bytes  12/30/2013 02:00:19
AVSCPLR.DLL     : 14.0.2.254    124472 Bytes  12/30/2013 01:59:18
AVREG.DLL       : 14.0.2.212    250424 Bytes  12/30/2013 01:59:16
avlode.dll      : 14.0.2.254    540216 Bytes  12/30/2013 01:59:09
avlode.rdf      : 13.0.1.62      56973 Bytes  12/30/2013 02:01:43
VBASE000.VDF    : 7.11.70.0   66736640 Bytes    4/4/2013 01:56:21
VBASE001.VDF    : 7.11.74.226  2201600 Bytes   4/30/2013 01:57:30
VBASE002.VDF    : 7.11.80.60   2751488 Bytes   5/28/2013 01:57:33
VBASE003.VDF    : 7.11.85.214  2162688 Bytes   6/21/2013 01:57:36
VBASE004.VDF    : 7.11.91.176  3903488 Bytes   7/23/2013 01:57:40
VBASE005.VDF    : 7.11.98.186  6822912 Bytes   8/29/2013 01:57:47
VBASE006.VDF    : 7.11.103.230  2293248 Bytes   9/24/2013 01:57:52
VBASE007.VDF    : 7.11.116.38  5485568 Bytes  11/28/2013 01:57:58
VBASE008.VDF    : 7.11.120.140  1154560 Bytes  12/19/2013 01:58:00
VBASE009.VDF    : 7.11.120.141     2048 Bytes  12/19/2013 01:58:01
VBASE010.VDF    : 7.11.120.142     2048 Bytes  12/19/2013 01:58:01
VBASE011.VDF    : 7.11.120.143     2048 Bytes  12/19/2013 01:58:02
VBASE012.VDF    : 7.11.120.144     2048 Bytes  12/19/2013 01:58:02
VBASE013.VDF    : 7.11.120.145     2048 Bytes  12/19/2013 01:58:02
VBASE014.VDF    : 7.11.121.19   126976 Bytes  12/21/2013 01:58:03
VBASE015.VDF    : 7.11.121.147   122880 Bytes  12/24/2013 01:58:03
VBASE016.VDF    : 7.11.121.233   115712 Bytes  12/25/2013 01:58:04
VBASE017.VDF    : 7.11.122.57   325120 Bytes  12/27/2013 01:58:05
VBASE018.VDF    : 7.11.122.123   199680 Bytes  12/28/2013 01:58:05
VBASE019.VDF    : 7.11.122.124     2048 Bytes  12/28/2013 01:58:06
VBASE020.VDF    : 7.11.122.125     2048 Bytes  12/28/2013 01:58:06
VBASE021.VDF    : 7.11.122.126     2048 Bytes  12/28/2013 01:58:06
VBASE022.VDF    : 7.11.122.127     2048 Bytes  12/28/2013 01:58:07
VBASE023.VDF    : 7.11.122.128     2048 Bytes  12/28/2013 01:58:07
VBASE024.VDF    : 7.11.122.129     2048 Bytes  12/28/2013 01:58:07
VBASE025.VDF    : 7.11.122.130     2048 Bytes  12/28/2013 01:58:08
VBASE026.VDF    : 7.11.122.131     2048 Bytes  12/28/2013 01:58:08
VBASE027.VDF    : 7.11.122.132     2048 Bytes  12/28/2013 01:58:09
VBASE028.VDF    : 7.11.122.133     2048 Bytes  12/28/2013 01:58:09
VBASE029.VDF    : 7.11.122.134     2048 Bytes  12/28/2013 01:58:09
VBASE030.VDF    : 7.11.122.135     2048 Bytes  12/28/2013 01:58:10
VBASE031.VDF    : 7.11.122.176   219648 Bytes  12/30/2013 01:58:10
Engine version  : 8.2.12.166
AEVDF.DLL       : 8.1.3.4       102774 Bytes  12/30/2013 01:58:22
AESCRIPT.DLL    : 8.1.4.176     520574 Bytes  12/30/2013 01:58:22
AESCN.DLL       : 8.1.10.6      131447 Bytes  12/30/2013 01:58:21
AESBX.DLL       : 8.2.16.26    1245560 Bytes  12/30/2013 01:58:23
AERDL.DLL       : 8.2.0.138     704888 Bytes  12/30/2013 01:58:20
AEPACK.DLL      : 8.3.3.8       762232 Bytes  12/30/2013 01:58:19
AEOFFICE.DLL    : 8.1.2.76      205181 Bytes  12/30/2013 01:58:18
AEHEUR.DLL      : 8.1.4.830    6386042 Bytes  12/30/2013 01:58:18
AEHELP.DLL      : 8.1.27.10     266618 Bytes  12/30/2013 01:58:15
AEGEN.DLL       : 8.1.7.20      446839 Bytes  12/30/2013 01:58:14
AEEXP.DLL       : 8.4.1.138     418168 Bytes  12/30/2013 01:58:23
AEEMU.DLL       : 8.1.3.2       393587 Bytes  12/30/2013 01:58:14
AECORE.DLL      : 8.1.33.0      225657 Bytes  12/30/2013 01:58:13
AEBB.DLL        : 8.1.1.4        53619 Bytes  12/30/2013 01:58:13
AVWINLL.DLL     : 14.0.2.180     23608 Bytes  12/30/2013 01:53:53
AVPREF.DLL      : 14.0.2.180     48696 Bytes  12/30/2013 01:59:15
AVREP.DLL       : 14.0.2.180    175672 Bytes  12/30/2013 01:59:16
AVARKT.DLL      : 14.0.2.254    256056 Bytes  12/30/2013 01:58:48
AVEVTLOG.DLL    : 14.0.2.180    165944 Bytes  12/30/2013 01:58:52
SQLITE3.DLL     : 3.7.0.1       394808 Bytes  12/30/2013 02:00:42
AVSMTP.DLL      : 14.0.2.180     60472 Bytes  12/30/2013 01:59:20
NETNT.DLL       : 14.0.2.180     13368 Bytes  12/30/2013 02:00:22
RCIMAGE.DLL     : 14.0.2.180   4788792 Bytes  12/30/2013 01:53:55
RCTEXT.DLL      : 14.0.2.236     72760 Bytes  12/30/2013 01:53:56

Configuration settings for the scan:
Jobname.............................: Complete system scan
Configuration file..................: C:\Program Files\Avira\AntiVir Desktop\sysscan.avp
Reporting...........................: default
Primary action......................: Interactive
Secondary action....................: Ignore
Scan master boot sector.............: on
Scan boot sector....................: on
Boot sectors........................: C:, E:,
Process scan........................: on
Extended process scan...............: on
Scan registry.......................: on
Search for rootkits.................: on
Integrity checking of system files..: off
Scan all files......................: All files
Scan archives.......................: on
Limit recursion depth...............: 20
Smart extensions....................: on
Macrovirus heuristic................: on
File heuristic......................: extended

Start of the scan: Sunday, December 29, 2013  21:42

Start scanning boot sectors:
Boot sector 'HDD1(C:)'
    [INFO]      No virus was found!
Boot sector 'HDD0(E:)'
    [INFO]      No virus was found!

Starting search for hidden objects.

The scan of running processes will be started:
Scan process 'rsmsink.exe' - '28' Module(s) have been scanned
Scan process 'wuauclt.exe' - '41' Module(s) have been scanned
Scan process 'wmiprvse.exe' - '45' Module(s) have been scanned
Scan process 'msdtc.exe' - '39' Module(s) have been scanned
Scan process 'dllhost.exe' - '59' Module(s) have been scanned
Scan process 'dllhost.exe' - '44' Module(s) have been scanned
Scan process 'vssvc.exe' - '47' Module(s) have been scanned
Scan process 'avscan.exe' - '89' Module(s) have been scanned
Scan process 'avcenter.exe' - '74' Module(s) have been scanned
Scan process 'TBNotifier.exe' - '56' Module(s) have been scanned
Scan process 'apnmcp.exe' - '37' Module(s) have been scanned
Scan process 'avgnt.exe' - '70' Module(s) have been scanned
Scan process 'AVWEBGRD.EXE' - '49' Module(s) have been scanned
Scan process 'sched.exe' - '40' Module(s) have been scanned
Scan process 'avshadow.exe' - '25' Module(s) have been scanned
Scan process 'avguard.exe' - '84' Module(s) have been scanned
Scan process 'jucheck.exe' - '49' Module(s) have been scanned
Scan process 'wuauclt.exe' - '35' Module(s) have been scanned
Scan process 'wscntfy.exe' - '15' Module(s) have been scanned
Scan process 'svchost.exe' - '33' Module(s) have been scanned
Scan process 'alg.exe' - '32' Module(s) have been scanned
Scan process 'iPodService.exe' - '29' Module(s) have been scanned
Scan process 'svchost.exe' - '87' Module(s) have been scanned
Scan process 'svchost.exe' - '38' Module(s) have been scanned
Scan process 'MDM.EXE' - '20' Module(s) have been scanned
Scan process 'jqs.exe' - '32' Module(s) have been scanned
Scan process 'mDNSResponder.exe' - '27' Module(s) have been scanned
Scan process 'AppleMobileDeviceService.exe' - '53' Module(s) have been scanned
Scan process 'SSScheduler.exe' - '16' Module(s) have been scanned
Scan process 'msmsgs.exe' - '40' Module(s) have been scanned
Scan process 'ctfmon.exe' - '23' Module(s) have been scanned
Scan process 'iTunesHelper.exe' - '59' Module(s) have been scanned
Scan process 'QTTask.exe' - '16' Module(s) have been scanned
Scan process 'jusched.exe' - '52' Module(s) have been scanned
Scan process 'AdobeARM.exe' - '39' Module(s) have been scanned
Scan process 'hkcmd.exe' - '26' Module(s) have been scanned
Scan process 'igfxtray.exe' - '26' Module(s) have been scanned
Scan process 'svchost.exe' - '33' Module(s) have been scanned
Scan process 'spoolsv.exe' - '58' Module(s) have been scanned
Scan process 'Explorer.EXE' - '109' Module(s) have been scanned
Scan process 'svchost.exe' - '41' Module(s) have been scanned
Scan process 'svchost.exe' - '32' Module(s) have been scanned
Scan process 'svchost.exe' - '160' Module(s) have been scanned
Scan process 'svchost.exe' - '39' Module(s) have been scanned
Scan process 'svchost.exe' - '50' Module(s) have been scanned
Scan process 'lsass.exe' - '57' Module(s) have been scanned
Scan process 'services.exe' - '26' Module(s) have been scanned
Scan process 'winlogon.exe' - '71' Module(s) have been scanned
Scan process 'csrss.exe' - '12' Module(s) have been scanned
Scan process 'smss.exe' - '2' Module(s) have been scanned

Starting to scan executable files (registry):
The registry was scanned ( '3573' files ).


Starting the file scan:

Begin scan in 'C:\'
C:\Documents and Settings\Mike\Local Settings\Application Data\gwxojvsv.exe
  [DETECTION] Is the TR/Crypt.Xpack.38782 Trojan
Begin scan in 'E:\' <BACKUP>

Beginning disinfection:
C:\Documents and Settings\Mike\Local Settings\Application Data\gwxojvsv.exe
  [DETECTION] Is the TR/Crypt.Xpack.38782 Trojan
  [NOTE]      The file was moved to the quarantine directory under the name '5ffed6e3.qua'!


End of the scan: Monday, December 30, 2013  08:16
Used time:  2:08:09 Hour(s)

The scan has been done completely.

  10685 Scanned directories
 541162 Files were scanned
      1 Viruses and/or unwanted programs were found
      0 Files were classified as suspicious
      0 Files were deleted
      0 Viruses and unwanted programs were repaired
      1 Files were moved to quarantine
      0 Files were renamed
      0 Files cannot be scanned
 541161 Files not concerned
   3154 Archives were scanned
      0 Warnings
      1 Notes
 378754 Objects were scanned with rootkit scan
      0 Hidden objects were found
 



#15 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 72,906 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:05:30 AM

Posted 30 December 2013 - 11:40 AM

No, not if it's all good now.
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users