• بادئ الموضوع بادئ الموضوع n.m.n
  • تاريخ البدء تاريخ البدء
  • المشاهدات 3,206

n.m.n

زيزوومي جديد
إنضم
13 ديسمبر 2008
المشاركات
42
مستوى التفاعل
0
النقاط
40
غير متصل
السلام عليكم

أرجوا منكم مساعدتي في هذه المشكلة ،،

حينما أفتح المتصفح ، يظهر لي شريط أصفر ، لا يذهب ، قمت بعمل إستعادة لخصائص المتصفح ولم تنفع ،، مالحل ؟؟

صورة للمشكلة

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


تقرير الهايجاك
--------------------
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 04:41:28 م, on 13/12/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16705)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Intel\Wireless\Bin\ZcfgSvc.exe
C:\Documents and Settings\tazebama.dl_
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\stsystra.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\WINDOWS\system32\igfxsrvc.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Xfire\xfire.exe
C:\Program Files\HP\Digital Imaging\bin\hpqimzone.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\MSN Messenger\usnsvc.exe
C:\PROGRA~1\Intel\Wireless\Bin\1XConfig.exe
C:\WINDOWS\system32\RVHOST.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\admin\Desktop\Virus Removal Tool\is-KUU10\is-KUU10.exe
C:\Program Files\filehippo.com\UpdateChecker.exe
C:\Program Files\WinRAR\WinRAR.exe
C:\DOCUME~1\admin\LOCALS~1\Temp\Rar$EX00.406\Zyzoom_HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigURL =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = proxy.kacst.edu.sa:8001
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
F2 - REG:system.ini: Shell=Explorer.exe RVHOST.exe
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [SigmatelSysTrayApp] stsystra.exe
O4 - HKLM\..\Run: [IntelZeroConfig] C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe
O4 - HKLM\..\Run: [IntelWireless] C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [filehippo.com] "C:\Program Files\filehippo.com\UpdateChecker.exe" /background
O4 - HKUS\S-1-5-18\..\Run: [Yahoo Messengger] C:\WINDOWS\system32\RVHOST.exe (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [RunNarrator] Narrator.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [Yahoo Messengger] C:\WINDOWS\system32\RVHOST.exe (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [RunNarrator] Narrator.exe (User 'Default user')
O4 - Startup: is-KUU10.lnk = C:\Documents and Settings\admin\Desktop\Virus Removal Tool\is-KUU10\startup.exe
O4 - Startup: Xfire.lnk = C:\Program Files\Xfire\xfire.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: HP Photosmart Premier Fast Start.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash ) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O23 - Service: EvtEng - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: HP Port Resolver - Hewlett-Packard Company - C:\WINDOWS\system32\spool\drivers\w32x86\3\HPBPRO.EXE
O23 - Service: HP Status Server - Hewlett-Packard Company - C:\WINDOWS\system32\spool\drivers\w32x86\3\HPBOID.EXE
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: RegSrvc - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: WLANKEEPER - Intel® Corporation - C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
--
End of file - 7547 bytes
 

الهايجاك : Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 07:29:42 م, on 15/12/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16705)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Intel\Wireless\Bin\ZcfgSvc.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\stsystra.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\WINDOWS\system32\igfxsrvc.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\filehippo.com\UpdateChecker.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\PROGRA~1\Intel\Wireless\Bin\1XConfig.exe
C:\Program Files\Xfire\xfire.exe
C:\Program Files\HP\Digital Imaging\bin\hpqimzone.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINDOWS\system32\svchost.exe
C:\Documents and Settings\tazebama.dl_
C:\WINDOWS\system32\msiexec.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\WinRAR\WinRAR.exe
C:\DOCUME~1\admin\LOCALS~1\Temp\Rar$EX00.359\Zyzoom_HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigURL =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = proxy.kacst.edu.sa:8001
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [SigmatelSysTrayApp] stsystra.exe
O4 - HKLM\..\Run: [IntelZeroConfig] C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe
O4 - HKLM\..\Run: [IntelWireless] C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [filehippo.com] "C:\Program Files\filehippo.com\UpdateChecker.exe" /background
O4 - HKUS\S-1-5-18\..\RunOnce: [RunNarrator] Narrator.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [RunNarrator] Narrator.exe (User 'Default user')
O4 - Startup: is-KUU10.lnk = C:\Documents and Settings\admin\Desktop\Virus Removal Tool\is-KUU10\startup.exe
O4 - Startup: Xfire.lnk = C:\Program Files\Xfire\xfire.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: HP Photosmart Premier Fast Start.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash ) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O23 - Service: EvtEng - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: HP Port Resolver - Hewlett-Packard Company - C:\WINDOWS\system32\spool\drivers\w32x86\3\HPBPRO.EXE
O23 - Service: HP Status Server - Hewlett-Packard Company - C:\WINDOWS\system32\spool\drivers\w32x86\3\HPBOID.EXE
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: RegSrvc - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: WLANKEEPER - Intel® Corporation - C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
--
End of file - 7099 bytes
 

طيب وين تقرير اداة الكاسبر ؟
 
التقرير باقي فيه اصابة
اعد الفحص باداة الكاسبر
 
المشكله تقرير الكاسبر ماقدرت اجيبه لان اذا خلص الفحص على طول يعيد التشغيل !!
 
اعد الفحص بالكاسبر بالوضع الامن


طريقة تشغيل الجهاز في الوضع الأمن



عند تشغيل الجهاز تبدأ بالضغط على F8


بشكل متكرر حتى تظهر هذه الشاشة

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي
 
التعديل الأخير بواسطة المشرف:
اخوي اسوي الفحص ثانيه بعدين اسوي الطريقه ولا بأي وقت ؟.. اعيد التشغيل واسويها
 
اخي تعيد التشغيل الى الوضع الامن
وانت بالوضع الامن تفحص بالكاسبر وتحفظ التقرير

ثم تعيد التشغيل بالوضع العادي وترفع تقريرك
 
المشكله طويل بس انا بأرسلها لك دفع
وشكرا
 
كيب انا الحين حفضت التقرير بس المشكله انا طويير بأرسلها لك دفع

الدفعه الأولى : Detected
--------
Status
------ ------
disinfected: virus Worm.Win32.Mabezat.b File: C:\dell\drivers\R105653\Setup.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\dell\drivers\R105653\Win2000\hkcmd.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\dell\drivers\R105653\Win2000\ialmudlg.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\dell\drivers\R105653\Win2000\igfxcfg.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\dell\drivers\R105653\Win2000\igfxext.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\dell\drivers\R105653\Win2000\igfxpers.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\dell\drivers\R105653\Win2000\igfxsrvc.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\dell\drivers\R105653\Win2000\igfxtray.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\dell\drivers\R105653\Win2000\igfxzoom.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\dell\drivers\R105921\setup.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\dell\drivers\R106629\HDAQFE\win2k_xp\us\kb835221.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\dell\drivers\R106629\setup.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\dell\drivers\R106629\WDM\stsystra.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\dell\drivers\R106629\WDM\suhlp.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\dell\drivers\R106776\setup.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\dell\drivers\R107434\Apps\DellInfo.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\dell\drivers\R107434\Apps\Instmsiw.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\dell\drivers\R107434\Apps\iProData\iconvrtr.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\dell\drivers\R107434\Apps\iProInst.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\dell\drivers\R107434\Drivers\SetupWLD.EXE
disinfected: virus Worm.Win32.Mabezat.b File: C:\dell\drivers\R107434\Setup.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Documents and Settings\admin\Desktop\FHSetup.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Documents and Settings\admin\Desktop\sa-mp-0.2.2-R3_1.exe
will be disinfected when the computer is restarted: virus Worm.Win32.Mabezat.b File: c:\documents and settings\admin\desktop\virus removal tool\is-kuu10\is-kuu10.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Documents and Settings\admin\Desktop\Virus Removal Tool\unins000.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Documents and Settings\admin\Local Settings\Temporary Internet Files\.IE5\4JD5J3ME\rmmabez[1].exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Documents and Settings\admin\Local Settings\Temporary Internet Files\.IE5\8Q4OB5D9\mbam-setup[1].exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Documents and Settings\admin\Local Settings\Temporary Internet Files\.IE5\V0NK4R3U\rmmabez[1].exe
disinfected: virus Worm.Win32.Mabezat.b File: c:\documents and settings\admin\my documents\combofix.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Documents and Settings\admin\My Documents\install_flash_player.exe
deleted: virus Worm.Win32.Mabezat.b File: C:\Documents and Settings\hook.dl_
will be deleted when the computer is restarted: virus Worm.Win32.Mabezat.b File: C:\Documents and Settings\tazebama.dl_
will be deleted when the computer is restarted: virus Worm.Win32.Mabezat.b File: C:\Documents and Settings\tazebama.dll
disinfected: virus Worm.Win32.Mabezat.b File: C:\MSOCache\All Users\{90120000-0011-0000-0000-0000000FF1CE}-C\ose.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\MSOCache\All Users\{90120000-0011-0000-0000-0000000FF1CE}-C\setup.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\MSOCache\All Users\{90120000-0051-0000-0000-0000000FF1CE}-C\ose.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\MSOCache\All Users\{90120000-0051-0000-0000-0000000FF1CE}-C\setup.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\MSOCache\All Users\{90120000-006E-0401-0000-0000000FF1CE}-C\DW20.EXE
disinfected: virus Worm.Win32.Mabezat.b File: C:\MSOCache\All Users\{90120000-006E-0401-0000-0000000FF1CE}-C\dwtrig20.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\CCleaner\uninst.exe
deleted: Trojan program Trojan.Win32.Obfuscated.gen File: C:\Program Files\Circle Developement\Uninstall.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\Common Files\Hewlett-Packard\Scanjet\bin\hpsjrreg.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriver.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriver2.exe
disinfected: virus Worm.Win32.Mabezat.b File: c:\program files\common files\installshield\driver\11\intel 32\idrivert.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\Common Files\InstallShield\engine\6\Intel 32\IKernel.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\Common Files\Microsoft Shared\DW\DW20.EXE
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\Common Files\Microsoft Shared\DW\DWTRIG20.EXE
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\Common Files\Microsoft Shared\EQUATION\EQNEDT32.EXE
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSE7.EXE
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\Common Files\Microsoft Shared\OFFICE12\OFFDIAG.EXE
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\ODEPLOY.EXE
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\SETUP.EXE
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\Common Files\Microsoft Shared\OFFICE12\OFFLB.EXE
disinfected: virus Worm.Win32.Mabezat.b File: c:\program files\common files\microsoft shared\source engine\ose.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\Common Files\Microsoft Shared\Speech\sapisvr.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLLoginProxy.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\Common Files\Real\GToolbar\GoogleToolbarInstaller.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\Common Files\Real\TWC\theweatherchannel_stubreal.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\Common Files\Real\Update_OB\r1puninst.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\Common Files\Real\Update_OB\RealOneMessageCenter.exe
disinfected: virus Worm.Win32.Mabezat.b File: c:\program files\common files\real\update_ob\rnxproc.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\Common Files\Real\Update_OB\upgrdhlp.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\CONEXANT\CNXT_MODEM_HDAUDIO_VEN_14F1&DEV_2BFA&SUBSYS_14F100C3\HXFSetup.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\DIFX\DPInst.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\filehippo.com\Uninstall.exe
disinfected: virus Worm.Win32.Mabezat.b File: c:\program files\gretech\gomplayer\gom.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\GRETECH\GomPlayer\Uninstall.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\bin\hpofxm08.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\bin\hpospd08.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\bin\hposvc08.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\bin\hpqacdse.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\bin\hpqatalb.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\bin\hpqCopy.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\bin\hpqcsaha.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\bin\hpqdstcp.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\bin\hpqEmlsz.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\bin\hpqnrs08.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\bin\hpqscnvw.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\bin\hpqSShow.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\bin\hpqtax08.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\bin\hpqtbx01.exe
will be disinfected when the computer is restarted: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\bin\hpqusgh.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\bin\hpqusgl.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\bin\hpqusgm.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\bin\hpqvwr08.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\bin\hpqwrg.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\bin\hpsjrreg.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\bin\HPXMLPDF.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\bin\hpzwiz01.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\bin\ppcue.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\devicemanagement\hpzmsi01.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\devicemanagement\hpzscr01.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\DocProc\DocProc.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\DocProc\dpe_ocr.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\DocProc\regipe.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\documentviewer\hpzmsi01.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\documentviewer\hpzscr01.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\esupport\hpzmsi01.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\esupport\hpzscr01.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\extcapuninstall\hpzmsi01.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\extcapuninstall\hpzscr01.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\Help\cuetour\fscommand\psp.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\Help\cuetour\START.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\Help\player\FlashPla.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\Help\player\fscommand\C6100_insert_memcard.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\Help\player\fscommand\C6100_load_adf.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\Help\player\fscommand\C6100_load_letter.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\Help\player\fscommand\C6100_load_original.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\Help\player\fscommand\C6100_load_small.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\Help\player\fscommand\C6100_paperjam.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\Help\player\fscommand\C6100_photo_fix.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\Help\player\fscommand\C6100_print_4x6.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\Help\player\fscommand\C6100_print_enlargement.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\Help\player\fscommand\C6100_printcart.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\Help\player\fscommand\C6100_reprint_4x6.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\Help\player\fscommand\C6100_transfer_camera.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\Help\player\fscommand\C6100_transfer_memcard.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\Help\player\fscommand\C6100_transfer_scan.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\Help\player\fscommand\cue_add_to_catalog.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\Help\player\fscommand\cue_backup.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\Help\player\fscommand\cue_edit_basic.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\Help\player\fscommand\cue_edit_recover.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\Help\player\fscommand\cue_instant_share.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\Help\player\fscommand\cue_org_album.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\Help\player\fscommand\cue_panorama.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\Help\player\fscommand\cue_print_4x6.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\Help\player\fscommand\cue_print_mult.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\Help\player\fscommand\cue_save_cd.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\Help\player\fscommand\cue_transfer_camera.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\Help\player\fscommand\cue_transfer_cd.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\Help\player\fscommand\cue_transfer_scan.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\Help\player\fscommand\cue_trim_video.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\Help\player\fscommand\cue_win_projects.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\ocr\hpzmsi01.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\ocr\hpzscr01.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\Product Assistant\bin\hprblog.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\Product Assistant\scache\hprbhelp\hprbhelp.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\uninstall\hpzmsi01.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\uninstall\hpzscr01.exe
disinfected: virus Worm.Win32.Mabezat.b File: c:\program files\hp\digital imaging\unload\hpqpsmon.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\Unload\HpqUnApl.exe
disinfected: virus Worm.Win32.Mabezat.b File: c:\program files\hp\digital imaging\unload\hpqunset.exe
disinfected: virus Worm.Win32.Mabezat.b File: c:\program files\hp\digital imaging\unload\hpqxfer.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\{BDBE2F3E-42DB-4d4a-8CB1-19BA765DBC6C}\hpzcdl01.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\{BDBE2F3E-42DB-4d4a-8CB1-19BA765DBC6C}\hpzsetup.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\{BDBE2F3E-42DB-4d4a-8CB1-19BA765DBC6C}\setup\hpzcdl01.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\{BDBE2F3E-42DB-4d4a-8CB1-19BA765DBC6C}\setup\hpzdui01.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\{BDBE2F3E-42DB-4d4a-8CB1-19BA765DBC6C}\setup\hpzmsi01.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\{BDBE2F3E-42DB-4d4a-8CB1-19BA765DBC6C}\setup\hpzpsl01.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\{BDBE2F3E-42DB-4d4a-8CB1-19BA765DBC6C}\setup\hpzrcn01.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\{BDBE2F3E-42DB-4d4a-8CB1-19BA765DBC6C}\setup\hpzscr01.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\{BDBE2F3E-42DB-4d4a-8CB1-19BA765DBC6C}\setup\hpzshl01.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Digital Imaging\{BDBE2F3E-42DB-4d4a-8CB1-19BA765DBC6C}\setup\hpzwrp01.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\HP Software Update\SelfUpdate.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Temp\{BDBE2F3E-42DB-4d4a-8CB1-19BA765DBC6C}\setup\hpzmsi01.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Temp\{BDBE2F3E-42DB-4d4a-8CB1-19BA765DBC6C}\setup\hpzrcv01.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\HP\Temp\{BDBE2F3E-42DB-4d4a-8CB1-19BA765DBC6C}\setup\hpzscr01.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\InstallShield Installation Information\{A462213D-EED4-42C2-9A60-7BDD4D4B0B17}\setup.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\InstallShield Installation Information\{B7875FD9-6ADB-4D4B-A756-3A2306A3D5E1}\setup.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\InstallShield Installation Information\{D417C96A-FCC7-4590-A1BB-FAF73F5BC98E}\setup.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\Intel\Wireless\Bin\DrWiFi.exe
will be disinfected when the computer is restarted: virus Worm.Win32.Mabezat.b File: C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\Intel\Wireless\Bin\ItAdmin.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\Intel\Wireless\Bin\iWrap.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\Intel\Wireless\Bin\PfWizard.exe
will be disinfected when the computer is restarted: virus Worm.Win32.Mabezat.b File: C:\Program Files\Intel\Wireless\Bin\ZcfgSvc.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\Intel\Wireless\Drivers\SetupWLD.EXE
will be disinfected when the computer is restarted: virus Worm.Win32.Mabezat.b File: c:\program files\internet explorer\iexplore.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\Internet Explorer\iexplore.exe.tmp
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\Messenger Plus! Live\Log Viewer.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\Messenger Plus! Live\MPTools.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\Messenger Plus! Live\Uninstall.exe
will be disinfected when the computer is restarted: virus Worm.Win32.Mabezat.b File: C:\Program Files\Messenger\msmsgs.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\Microsoft Office\Office12\CLVIEW.EXE
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\Microsoft Office\Office12\CNFNOT32.EXE
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\Microsoft Office\Office12\DSSM.EXE
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\Microsoft Office\Office12\EDITOR.EXE
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\Microsoft Office\Office12\excelcnv.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\Microsoft Office\Office12\GRAPH.EXE
disinfected: virus Worm.Win32.Mabezat.b File: c:\program files\microsoft office\office12\msaccess.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\Microsoft Office\Office12\MSOHTMED.EXE
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\Microsoft Office\Office12\MSQRY32.EXE
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\Microsoft Office\Office12\MSTORDB.EXE
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\Microsoft Office\Office12\PPTVIEW.EXE
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\Microsoft Office\Office12\REGFORM.EXE
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\Microsoft Office\Office12\SCANOST.EXE
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\Microsoft Office\Office12\SCANPST.EXE
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\Microsoft Office\Office12\SELFCERT.EXE
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\Microsoft Office\Office12\SETLANG.EXE
disinfected: virus Worm.Win32.Mabezat.b File: c:\program files\movie maker\moviemk.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\MSN Messenger\Device Manager\dpinst.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\MSN Messenger\Device Manager\msgrdvmn.exe
will be disinfected when the computer is restarted: virus Worm.Win32.Mabezat.b File: C:\Program Files\MSN Messenger\MsnMsgr.Exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\MSN Messenger\msvs.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\MSN\MSNCoreFiles\Install\MSN9Components\Digcore.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\MSN\MSNCoreFiles\Install\MSN9Components\Msncli.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\MSN\MSNCoreFiles\Install\msnsusii.exe
disinfected: virus Worm.Win32.Mabezat.b File: c:\program files\netmeeting\conf.exe
disinfected: virus Worm.Win32.Mabezat.b File: c:\program files\outlook express\msimn.exe
disinfected: virus Worm.Win32.Mabezat.b File: c:\program files\outlook express\wab.exe
disinfected: virus Worm.Win32.Mabezat.b File: c:\program files\outlook express\wabmig.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\Real\RealPlayer\Pach.exe
disinfected: virus Worm.Win32.Mabezat.b File: c:\program files\real\realplayer\realplay.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\Real\RealPlayer\RecordingManager.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\Real\RealPlayer\Setup\setup.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\Rockstar Games\GTA San Andreas\rcon.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\SigmaTel\C-Major Audio\wdm\stsystra.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\SigmaTel\C-Major Audio\wdm\suhlp.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\Webteh\BSplayerPro\bplay.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\Webteh\BSplayerPro\bsplay.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\Webteh\BSplayerPro\uninstall.EXE
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\Windows Media Player\dlimport.exe
disinfected: virus Worm.Win32.Mabezat.b File: c:\program files\windows media player\wmplayer.exe
disinfected: virus Worm.Win32.Mabezat.b File: c:\program files\windows nt\accessories\wordpad.exe
disinfected: virus Worm.Win32.Mabezat.b File: c:\program files\windows nt\dialer.exe
disinfected: virus Worm.Win32.Mabezat.b File: c:\program files\windows nt\pinball\pinball.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\WinRAR\Rar.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\WinRAR\RarExtLoader.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\WinRAR\Uninstall.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\WinRAR\UnRAR.exe
disinfected: virus Worm.Win32.Mabezat.b File: c:\program files\winrar\winrar.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\Xfire\dmspvenc.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\Xfire\downloads\CoD4MW-1.6-1.7-PatchSetup.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\Xfire\downloads\CoD4MW-1.6-PatchSetup.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\Xfire\uninst.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\Program Files\Xfire\xfencoder.exe
will be disinfected when the computer is restarted: virus Worm.Win32.Mabezat.b File: C:\PROGRA~1\Intel\Wireless\Bin\1XConfig.exe
disinfected: virus Worm.Win32.Mabezat.b File: c:\progra~1\micros~2\office12\excel.exe
disinfected: virus Worm.Win32.Mabezat.b File: c:\progra~1\micros~2\office12\infopath.exe
disinfected: virus Worm.Win32.Mabezat.b File: c:\progra~1\micros~2\office12\mspub.exe
disinfected: virus Worm.Win32.Mabezat.b File: c:\progra~1\micros~2\office12\ois.exe
disinfected: virus Worm.Win32.Mabezat.b File: c:\progra~1\micros~2\office12\outlook.exe
deleted: virus Worm.Win32.Mabezat.b File: C:\Qoobox\Quarantine\C\autorun.inf.vir
deleted: Trojan program Trojan-Downloader.Win32.AutoIt.hd File: C:\Qoobox\Quarantine\C\WINDOWS\system32\RVHOST.exe.vir
deleted: virus Worm.Win32.Mabezat.b File: C:\Qoobox\Quarantine\C\zPharaoh.exe.vir
deleted: virus Worm.Win32.Mabezat.b File: C:\Qoobox\Quarantine\D\autorun.inf.vir
deleted: virus Worm.Win32.Mabezat.b File: C:\Qoobox\Quarantine\D\RECYCLER\RECYCLER .exe.vir
deleted: virus Worm.Win32.Mabezat.b File: C:\Qoobox\Quarantine\D\RECYCLER\WinrRarSerialInstall.exe.vir
deleted: virus Worm.Win32.Mabezat.b File: C:\Qoobox\Quarantine\D\zPharaoh.exe.vir
disinfected: virus Worm.Win32.Mabezat.b File: C:\RECYCLER\S-1-5-21-1004336348-2025429265-839522115-1003\Dc1.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$hf_mig$\KB898461\spuninst.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$hf_mig$\KB898461\update\update.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$hf_mig$\KB911164\spuninst.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$hf_mig$\KB911164\update\update.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$hf_mig$\KB946648\spuninst.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$hf_mig$\KB946648\update\update.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$hf_mig$\KB950762\spuninst.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$hf_mig$\KB950762\update\update.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$hf_mig$\KB950974\spuninst.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$hf_mig$\KB950974\update\update.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$hf_mig$\KB951066\spuninst.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$hf_mig$\KB951066\update\update.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$hf_mig$\KB951072-v2\SP3QFE\tzchange.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$hf_mig$\KB951072-v2\spuninst.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$hf_mig$\KB951072-v2\update\update.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$hf_mig$\KB951376-v2\spuninst.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$hf_mig$\KB951376-v2\update\update.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$hf_mig$\KB951698\spuninst.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$hf_mig$\KB951698\update\update.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$hf_mig$\KB951748\spuninst.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$hf_mig$\KB951748\update\update.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$hf_mig$\KB951978\SP3QFE\cscript.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$hf_mig$\KB951978\SP3QFE\wscript.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$hf_mig$\KB951978\spuninst.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$hf_mig$\KB951978\update\update.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$hf_mig$\KB952287\spuninst.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$hf_mig$\KB952287\update\update.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$hf_mig$\KB952954\spuninst.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$hf_mig$\KB952954\update\update.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$hf_mig$\KB953838-IE7\SP2QFE\iexplore.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$hf_mig$\KB953838-IE7\spuninst.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$hf_mig$\KB953838-IE7\update\update.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$hf_mig$\KB953839\spuninst.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$hf_mig$\KB953839\update\update.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\admin.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\agentsvr.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\ahui.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\asr_pfu.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\author.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\blastcln.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\cfgwiz.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\cipher.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\clipbrd.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\cmd.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\conf.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\cscript.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\ctfmon.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\davcdata.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\ddeshare.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\dialer.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\diskpart.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\dmadmin.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\dplaysvr.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\dpvsetup.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\dwwin.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\dxdiag.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\eudcedit.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\explorer.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\fpadmcgi.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\fpcount.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\fsquirt.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\fxsclnt.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\fxscover.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\helpctr.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\helpsvc.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\icwconn1.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\icwconn2.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\ie4uinit.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\iexplore.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\iexpress.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\imapi.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\inetin51.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\ipv6.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\irftp.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\logagent.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\logonui.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\magnify.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\migload.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\migrate.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\mmc.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\mobsync.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\moviemk.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\mplay32.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\msconfig.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\mshta.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\msimn.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\msmsgs.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\mspaint.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\mstsc.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\narrator.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\net.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\netdde.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\netsetup.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\netstat.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\notepad.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\ntbackup.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\ntvdm.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\odbcad32.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\odbcconf.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\oemig50.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\osk.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\packager.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\pinball.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\pintlphr.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\powercfg.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\proquota.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\rdpclip.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\regedit.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\rstrui.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\rtcshare.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\scardsvr.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\scrnsave.scr
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\sdbinst.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\services.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\sessmgr.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\sethc.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\setup.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\setup50.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\setup_wm.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\shrpubw.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\shtml.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\smbinst.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\smlogsvc.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\sndrec32.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\spider.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\spoolsv.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\spuninst\spuninst.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\ss3dfo.scr
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\ssflwbox.scr
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\sspipes.scr
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\sstext3d.scr
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\svchost.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\sysocmgr.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\taskmgr.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\tcptest.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\telnet.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\tlntsess.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\tlntsvr.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\tracerpt.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\unregmp2.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\userinit.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\wab.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\wabmig.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\wbemtest.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\wextract.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\winhlp32.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\winlogon.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\wmplayer.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\wordpad.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\wscript.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstall$\wuauclt1.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstallIDNMitigationAPIs$\spuninst\spuninst.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtServicePackUninstallNLSDownlevelMapping$\spuninst\spuninst.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtUninstallKB835221WXP$\spuninst\spuninst.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtUninstallKB898461$\spuninst\spuninst.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtUninstallKB946648$\spuninst\spuninst.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtUninstallKB950974$\spuninst\spuninst.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtUninstallKB951066$\spuninst\spuninst.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtUninstallKB951072-v2$\spuninst\spuninst.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtUninstallKB951072-v2$\tzchange.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtUninstallKB951698$\spuninst\spuninst.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtUninstallKB951748$\spuninst\spuninst.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtUninstallKB951978$\cscript.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtUninstallKB951978$\spuninst\spuninst.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtUninstallKB951978$\wscript.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtUninstallKB952287$\spuninst\spuninst.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtUninstallKB952954$\spuninst\spuninst.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\$NtUninstallKB953839$\spuninst\spuninst.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ie7\ie4uinit.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ie7\iexplore.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ie7\mshta.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ie7\spuninst\spuninst.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ie7updates\KB953838-IE7\iexplore.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ie7updates\KB953838-IE7\spuninst\spuninst.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\Installer\iProData\iconvrtr.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\Installer\iProInst.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\Installer\{8CE4E6E9-9D55-43FB-9DDB-688C976BFC05}\NewShortcut15_1.DE9B046B_865A_4DEC_B555_7F4B3C92BD42.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\Installer\{8CE4E6E9-9D55-43FB-9DDB-688C976BFC05}\NewShortcut25.DE9B046B_865A_4DEC_B555_7F4B3C92BD42.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\Installer\{8CE4E6E9-9D55-43FB-9DDB-688C976BFC05}\NewShortcut27.DE9B046B_865A_4DEC_B555_7F4B3C92BD42.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\Installer\{BB85ED9C-AFC9-43BD-B8DC-258C3C7DF72E}\ARPPRODUCTICON.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\Installer\{C04E32E0-0416-434D-AFB9-6969D703A9EF}\icon.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\Installer\{DBC20735-34E6-4E97-A9E5-2066B66B243D}\NewShortcut1.A6CC6977_F7B4_4C0B_9510_BCD847D4BDB2.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\IsUninst.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\Microsoft.NET\Framework\NETFXSBS10.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_wp.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\csc.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\ilasm.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\ngen.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\vbc.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_wp.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\csc.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ilasm.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\regtlibv12.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\vbc.exe
disinfected: virus Worm.Win32.Mabezat.b File: c:\windows\pchealth\helpctr\binaries\helpctr.exe
disinfected: virus Worm.Win32.Mabezat.b File: c:\windows\pchealth\helpctr\binaries\msconfig.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\admin.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\agentsvr.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\ahui.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\aspnet_wp.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\asr_pfu.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\author.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\blastcln.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\cfgwiz.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\cipher.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\clipbrd.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\cmd.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\conf.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\csc.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\cscript.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\ctfmon.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\davcdata.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\ddeshare.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\dialer.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\digcore.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\diskpart.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\dmadmin.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\dplaysvr.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\dpvsetup.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\dwwin.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\dxdiag.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\eudcedit.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\explorer.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\faxpatch.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\fpadmcgi.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\fpcount.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\fsquirt.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\fxsclnt.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\fxscover.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\helpctr.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\helpsvc.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\icwconn1.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\icwconn2.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\ie4uinit.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\iexplore.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\iexpress.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\ilasm.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\imapi.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\inetin51.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\ipv6.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\irftp.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\lhmstsc.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\logonui.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\magnify.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\migload.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\migwiza.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\mmc.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\mobsync.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\moviemk.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\mplay32.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\msconfig.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\mshta.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\msimn.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\msmsgs.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\msncli.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\msnsusii.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\mspaint.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\napstat.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\narrator.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\net.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\netdde.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\netfxupdate.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\netsetup.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\netstat.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\ngen.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\notepad.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\ServicePackFiles\i386\ntbackup.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\system32\calc.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\system32\charmap.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\system32\cmd.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\system32\dllcache\PrintFilterPipelineSvc.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\system32\fsquirt.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\system32\magnify.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\system32\mobsync.exe
disinfected: virus Worm.Win32.Mabezat.b File: c:\windows\system32\mspaint.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\system32\mstsc.exe
disinfected: virus Worm.Win32.Mabezat.b File: c:\windows\system32\narrator.exe
disinfected: virus Worm.Win32.Mabezat.b File: c:\windows\system32\notepad.exe
disinfected: virus Worm.Win32.Mabezat.b File: c:\windows\system32\ntbackup.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\system32\odbcad32.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\system32\osk.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\system32\Restore\rstrui.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\system32\sndrec32.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\system32\sndvol32.exe
disinfected: virus Worm.Win32.Mabezat.b File: C:\WINDOWS\system32\spool\prtprocs\w32x86\PrintFilterPipelineSvc.exe
deleted: virus Worm.Win32.Mabezat.b File: c:\zpharaoh.exe
deleted: virus Worm.Win32.Mabezat.b File: D:\2d1b802734dca91a47404ee66923\2d1b802734dca91a47404ee66923 .exe
deleted: virus Worm.Win32.Mabezat.b File: D:\2d1b802734dca91a47404ee66923\amd64\amd64 .exe
deleted: virus Worm.Win32.Mabezat.b File: D:\2d1b802734dca91a47404ee66923\amd64\AmericanOnLine.exe
deleted: virus Worm.Win32.Mabezat.b File: D:\2d1b802734dca91a47404ee66923\i386\i386 .exe
deleted: virus Worm.Win32.Mabezat.b File: D:\2d1b802734dca91a47404ee66923\i386\msjavx86.exe
deleted: virus Worm.Win32.Mabezat.b File: D:\2d1b802734dca91a47404ee66923\update\FloppyDiskPartion.exe
deleted: virus Worm.Win32.Mabezat.b File: D:\2d1b802734dca91a47404ee66923\update\update .exe
deleted: virus Worm.Win32.Mabezat.b File: D:\2d1b802734dca91a47404ee66923\WinrRarSerialInstall.exe
deleted: virus Worm.Win32.Mabezat.b File: D:\966ed5fb44de48cfd3e3528663d16d\966ed5fb44de48cfd3e3528663d16d .exe
disinfected: virus Worm.Win32.Mabezat.b File: D:\966ed5fb44de48cfd3e3528663d16d\DeleteTemp.exe
disinfected: virus Worm.Win32.Mabezat.b File: D:\966ed5fb44de48cfd3e3528663d16d\DW20.EXE
deleted: virus Worm.Win32.Mabezat.b File: D:\966ed5fb44de48cfd3e3528663d16d\HP_LaserJetAllInOneConfig.exe
disinfected: virus Worm.Win32.Mabezat.b File: D:\966ed5fb44de48cfd3e3528663d16d\RebootStub.exe
disinfected: virus Worm.Win32.Mabezat.b File: D:\966ed5fb44de48cfd3e3528663d16d\runmsi.exe
disinfected: virus Worm.Win32.Mabezat.b File: D:\966ed5fb44de48cfd3e3528663d16d\setup.exe
deleted: virus Worm.Win32.Mabezat.b File: D:\966ed5fb44de48cfd3e3528663d16d\wcu\dotNetFrameworkLangpack\Adjust Time.exe
deleted: virus Worm.Win32.Mabezat.b File: D:\966ed5fb44de48cfd3e3528663d16d\wcu\dotNetFrameworkLangpack\dotNetFrameworkLangpack .exe
disinfected: virus Worm.Win32.Mabezat.b File: D:\966ed5fb44de48cfd3e3528663d16d\wcu\dotNetFrameworkLangpack\langpack.exe
deleted: virus Worm.Win32.Mabezat.b File: D:\966ed5fb44de48cfd3e3528663d16d\wcu\Microsoft Windows Network.exe
deleted: virus Worm.Win32.Mabezat.b File: D:\966ed5fb44de48cfd3e3528663d16d\wcu\WCFlangpack\Recycle Bin.exe
disinfected: virus Worm.Win32.Mabezat.b File: D:\966ed5fb44de48cfd3e3528663d16d\wcu\WCFlangpack\wcf_langpack.exe
deleted: virus Worm.Win32.Mabezat.b File: D:\966ed5fb44de48cfd3e3528663d16d\wcu\WCFlangpack\WCFlangpack .exe
deleted: virus Worm.Win32.Mabezat.b File: D:\966ed5fb44de48cfd3e3528663d16d\wcu\wcu .exe
deleted: virus Worm.Win32.Mabezat.b File: D:\966ed5fb44de48cfd3e3528663d16d\wcu\WFLangpack\WFLangpack .exe
deleted: virus Worm.Win32.Mabezat.b File: D:\966ed5fb44de48cfd3e3528663d16d\wcu\WFLangpack\WindowsXp StartMenu Settings.exe
deleted: virus Worm.Win32.Mabezat.b File: D:\966ed5fb44de48cfd3e3528663d16d\wcu\WPFLangpack\MakeUrOwnFamilyTree.exe
deleted: virus Worm.Win32.Mabezat.b File: D:\966ed5fb44de48cfd3e3528663d16d\wcu\WPFLangpack\WPFLangpack .exe
deleted: virus Worm.Win32.Mabezat.b File: D:\966ed5fb44de48cfd3e3528663d16d\wcu\XPS\Langpack\Langpack .exe
deleted: virus Worm.Win32.Mabezat.b File: D:\966ed5fb44de48cfd3e3528663d16d\wcu\XPS\Langpack\LockWindowsPartition.exe
disinfected: virus Worm.Win32.Mabezat.b File: D:\966ed5fb44de48cfd3e3528663d16d\wcu\XPS\Langpack\XPSEPSCLANGPACK-x86-ar-SA-langpack.exe
deleted: virus Worm.Win32.Mabezat.b File: D:\966ed5fb44de48cfd3e3528663d16d\wcu\XPS\Win98compatibleXP.exe
deleted: virus Worm.Win32.Mabezat.b File: D:\966ed5fb44de48cfd3e3528663d16d\wcu\XPS\XPS .exe
deleted: virus Worm.Win32.Mabezat.b File: D:\AUTORUN.FCB
deleted: virus Worm.Win32.Mabezat.b File: D:\autorun.inf
deleted: virus Worm.Win32.Mabezat.b File: D:\b7e07d21765d9dd565fc7c004a781e6f\b7e07d21765d9dd565fc7c004a781e6f .exe
deleted: virus Worm.Win32.Mabezat.b File: D:\b7e07d21765d9dd565fc7c004a781e6f\wcu\dotNetFramework\dotNetFramework .exe
deleted: virus Worm.Win32.Mabezat.b File: D:\b7e07d21765d9dd565fc7c004a781e6f\wcu\dotNetFramework\Make Windows Original.exe
deleted: virus Worm.Win32.Mabezat.b File: D:\b7e07d21765d9dd565fc7c004a781e6f\wcu\MSXML\MSXML .exe
deleted: virus Worm.Win32.Mabezat.b File: D:\b7e07d21765d9dd565fc7c004a781e6f\wcu\MSXML\Office2003 CD-Key.doc.exe
deleted: virus Worm.Win32.Mabezat.b File: D:\b7e07d21765d9dd565fc7c004a781e6f\wcu\NokiaN73Tools.exe
deleted: virus Worm.Win32.Mabezat.b File: D:\b7e07d21765d9dd565fc7c004a781e6f\wcu\RGBRAST\Office2007 Serial.txt.exe
deleted: virus Worm.Win32.Mabezat.b File: D:\b7e07d21765d9dd565fc7c004a781e6f\wcu\RGBRAST\RGBRAST .exe
deleted: virus Worm.Win32.Mabezat.b File: D:\b7e07d21765d9dd565fc7c004a781e6f\wcu\RGBRAST\x86\JetAudio dump.exe
deleted: virus Worm.Win32.Mabezat.b File: D:\b7e07d21765d9dd565fc7c004a781e6f\wcu\RGBRAST\x86\x86 .exe
deleted: virus Worm.Win32.Mabezat.b File: D:\b7e07d21765d9dd565fc7c004a781e6f\wcu\WCF\KasperSky6.0 Key.doc.exe
deleted: virus Worm.Win32.Mabezat.b File: D:\b7e07d21765d9dd565fc7c004a781e6f\wcu\WCF\WCF .exe
deleted: virus Worm.Win32.Mabezat.b File: D:\b7e07d21765d9dd565fc7c004a781e6f\wcu\wcu .exe
deleted: virus Worm.Win32.Mabezat.b File: D:\b7e07d21765d9dd565fc7c004a781e6f\wcu\WF\InstallMSN11Ar.exe
deleted: virus Worm.Win32.Mabezat.b File: D:\b7e07d21765d9dd565fc7c004a781e6f\wcu\WF\WF .exe
deleted: virus Worm.Win32.Mabezat.b File: D:\b7e07d21765d9dd565fc7c004a781e6f\wcu\WIC\InstallMSN11En.exe
deleted: virus Worm.Win32.Mabezat.b File: D:\b7e07d21765d9dd565fc7c004a781e6f\wcu\WIC\WIC .exe
deleted: virus Worm.Win32.Mabezat.b File: D:\b7e07d21765d9dd565fc7c004a781e6f\wcu\WPF\Lock Folder.exe
deleted: virus Worm.Win32.Mabezat.b File: D:\b7e07d21765d9dd565fc7c004a781e6f\wcu\WPF\WPF .exe
deleted: virus Worm.Win32.Mabezat.b File: D:\b7e07d21765d9dd565fc7c004a781e6f\wcu\XPS\Crack_GoogleEarthPro.exe
deleted: virus Worm.Win32.Mabezat.b File: D:\b7e07d21765d9dd565fc7c004a781e6f\wcu\XPS\XPS .exe
deleted: virus Worm.Win32.Mabezat.b File: D:\b7e07d21765d9dd565fc7c004a781e6f\WinrRarSerialInstall.exe
deleted: virus Worm.Win32.Mabezat.b File: D:\bin\bin .exe
deleted: virus Worm.Win32.Mabezat.b File: D:\bin\WinrRarSerialInstall.exe
deleted: virus Worm.Win32.Mabezat.b File: D:\MSI16716.tmp\MSI16716.tmp .exe
deleted: virus Worm.Win32.Mabezat.b File: D:\MSI16716.tmp\RCX68.tmp
deleted: virus Worm.Win32.Mabezat.b File: D:\MSI16716.tmp\WinrRarSerialInstall.exe
deleted: virus Worm.Win32.Mabezat.b File: D:\MSI1920a.tmp\MSI1920a.tmp .exe
deleted: virus Worm.Win32.Mabezat.b File: D:\MSI1920a.tmp\WinrRarSerialInstall.exe
deleted: virus Worm.Win32.Mabezat.b File: D:\MSId5a0.tmp\MSId5a0.tmp .exe
deleted: virus Worm.Win32.Mabezat.b File: D:\MSId5a0.tmp\WinrRarSerialInstall.exe
deleted: virus Worm.Win32.Mabezat.b File: D:\RECYCLER\RECYCLER .exe
deleted: virus Worm.Win32.Mabezat.b File: D:\RECYCLER\S-1-5-21-1004336348-2025429265-839522115-1003\NokiaN73Tools.exe
deleted: virus Worm.Win32.Mabezat.b File: D:\RECYCLER\S-1-5-21-1004336348-2025429265-839522115-1003\S-1-5-21-1004336348-2025429265-839522115-1003 .exe
deleted: virus Worm.Win32.Mabezat.b File: D:\RECYCLER\WinrRarSerialInstall.exe
disinfected: virus Worm.Win32.Mabezat.b File: D:\setupSNK.exe
deleted: virus Worm.Win32.Mabezat.b File: D:\SMRTNTKY\DEVICE\DEVICE .exe
deleted: virus Worm.Win32.Mabezat.b File: D:\SMRTNTKY\DEVICE\NokiaN73Tools.exe
deleted: virus Worm.Win32.Mabezat.b File: D:\SMRTNTKY\SMRTNTKY .exe
deleted: virus Worm.Win32.Mabezat.b File: D:\SMRTNTKY\WinrRarSerialInstall.exe
deleted: virus Worm.Win32.Mabezat.b File: d:\zpharaoh.exe

Events
------
Time Name Status Reason
---- ---- ------ ------
17/12/1429 07:15:24 م Running module: tazebama.dl_\tazebama.dl_ ok scanned
17/12/1429 07:15:24 م File: C:\Documents and Settings\tazebama.dl_ detected virus 'Worm.Win32.Mabezat.b'
17/12/1429 07:15:24 م File: C:\Documents and Settings\tazebama.dl_ skipped processing stopped
17/12/1429 08:45:34 م Running module: iexplore.exe\iexplore.exe ok scanned
17/12/1429 08:45:34 م File: C:\Program Files\Internet Explorer\iexplore.exe detected virus 'Worm.Win32.Mabezat.b'
17/12/1429 08:45:34 م File: C:\Program Files\Internet Explorer\iexplore.exe backed up
17/12/1429 08:45:34 م File: C:\Program Files\Internet Explorer\iexplore.exe detected virus 'Worm.Win32.Mabezat.b'
17/12/1429 08:45:34 م File: C:\Program Files\Internet Explorer\iexplore.exe disinfected virus 'Worm.Win32.Mabezat.b'
17/12/1429 08:45:34 م File: C:\Program Files\Internet Explorer\iexplore.exe will be disinfected on system restart
17/12/1429 08:45:34 م Running module: iexplore.exe\ntdll.dll ok scanned
17/12/1429 08:45:34 م File: C:\WINDOWS\system32\ntdll.dll ok scanned
17/12/1429 08:45:34 م Running module: iexplore.exe\kernel32.dll ok scanned
17/12/1429 08:45:35 م File: C:\WINDOWS\system32\kernel32.dll ok scanned
17/12/1429 08:45:35 م Running module: iexplore.exe\ADVAPI32.dll ok scanned
17/12/1429 08:45:35 م File: C:\WINDOWS\system32\ADVAPI32.dll ok scanned
17/12/1429 08:45:35 م Running module: iexplore.exe\RPCRT4.dll ok scanned
17/12/1429 08:45:35 م File: C:\WINDOWS\system32\RPCRT4.dll ok scanned
17/12/1429 08:45:35 م Running module: iexplore.exe\Secur32.dll ok scanned
17/12/1429 08:45:35 م File: C:\WINDOWS\system32\Secur32.dll ok scanned
17/12/1429 08:45:35 م Running module: iexplore.exe\GDI32.dll ok scanned
17/12/1429 08:45:35 م File: C:\WINDOWS\system32\GDI32.dll ok scanned
17/12/1429 08:45:35 م Running module: iexplore.exe\USER32.dll ok scanned
17/12/1429 08:45:35 م File: C:\WINDOWS\system32\USER32.dll ok scanned
17/12/1429 08:45:35 م Running module: iexplore.exe\msvcrt.dll ok scanned
17/12/1429 08:45:35 م File: C:\WINDOWS\system32\msvcrt.dll ok scanned
17/12/1429 08:45:35 م Running module: iexplore.exe\SHLWAPI.dll ok scanned
17/12/1429 08:45:35 م File: C:\WINDOWS\system32\SHLWAPI.dll ok scanned
17/12/1429 08:45:35 م Running module: iexplore.exe\SHELL32.dll ok scanned
17/12/1429 08:45:36 م File: C:\WINDOWS\system32\SHELL32.dll ok scanned
17/12/1429 08:45:36 م Running module: iexplore.exe\ole32.dll ok scanned
17/12/1429 08:45:36 م File: C:\WINDOWS\system32\ole32.dll ok scanned
17/12/1429 08:45:36 م Running module: iexplore.exe\urlmon.dll ok scanned
17/12/1429 08:45:36 م File: C:\WINDOWS\system32\urlmon.dll ok scanned
17/12/1429 08:45:36 م Running module: iexplore.exe\OLEAUT32.dll ok scanned
17/12/1429 08:45:36 م File: C:\WINDOWS\system32\OLEAUT32.dll ok scanned
17/12/1429 08:45:36 م Running module: iexplore.exe\iertutil.dll ok scanned
17/12/1429 08:45:36 م File: C:\WINDOWS\system32\iertutil.dll ok scanned
17/12/1429 08:45:37 م Running module: iexplore.exe\VERSION.dll ok scanned
17/12/1429 08:45:37 م File: C:\WINDOWS\system32\VERSION.dll ok scanned
17/12/1429 08:45:37 م Running module: iexplore.exe\IMM32.DLL ok scanned
17/12/1429 08:45:37 م File: C:\WINDOWS\system32\IMM32.DLL ok scanned
17/12/1429 08:45:37 م Running module: iexplore.exe\LPK.DLL ok scanned
17/12/1429 08:45:37 م File: C:\WINDOWS\system32\LPK.DLL ok scanned
17/12/1429 08:45:37 م Running module: iexplore.exe\USP10.dll ok scanned
17/12/1429 08:45:37 م File: C:\WINDOWS\system32\USP10.dll ok scanned
17/12/1429 08:45:37 م Running module: iexplore.exe\comctl32.dll ok scanned
17/12/1429 08:45:37 م File: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll ok scanned
17/12/1429 08:45:37 م Running module: iexplore.exe\comctl32.dll ok scanned
17/12/1429 08:45:37 م File: C:\WINDOWS\system32\comctl32.dll ok scanned
17/12/1429 08:45:37 م Running module: iexplore.exe\tazebama.dll ok scanned
17/12/1429 08:45:37 م File: C:\Documents and Settings\tazebama.dll detected virus 'Worm.Win32.Mabezat.b'
17/12/1429 08:45:37 م Running module: iexplore.exe\ATL.DLL skipped processing stopped
17/12/1429 10:54:18 م Running module: smss.exe\smss.exe ok scanned
17/12/1429 10:54:18 م File: C:\WINDOWS\System32\smss.exe ok scanned
17/12/1429 10:54:18 م Running module: smss.exe\ntdll.dll ok scanned
17/12/1429 10:54:19 م File: C:\WINDOWS\system32\ntdll.dll ok scanned
17/12/1429 10:54:19 م Running module: csrss.exe\csrss.exe ok scanned
17/12/1429 10:54:19 م File: C:\WINDOWS\system32\csrss.exe ok scanned
17/12/1429 10:54:19 م Running module: csrss.exe\ntdll.dll ok scanned
17/12/1429 10:54:19 م File: C:\WINDOWS\system32\ntdll.dll ok scanned
17/12/1429 10:54:19 م Running module: csrss.exe\CSRSRV.dll ok scanned
17/12/1429 10:54:19 م File: C:\WINDOWS\system32\CSRSRV.dll ok scanned
17/12/1429 10:54:19 م Running module: csrss.exe\basesrv.dll ok scanned
17/12/1429 10:54:19 م File: C:\WINDOWS\system32\basesrv.dll ok scanned
17/12/1429 10:54:19 م Running module: csrss.exe\winsrv.dll ok scanned
17/12/1429 10:54:19 م File: C:\WINDOWS\system32\winsrv.dll ok scanned
17/12/1429 10:54:19 م Running module: csrss.exe\GDI32.dll ok scanned
17/12/1429 10:54:19 م File: C:\WINDOWS\system32\GDI32.dll ok scanned
17/12/1429 10:54:19 م Running module: csrss.exe\KERNEL32.dll ok scanned
17/12/1429 10:54:20 م File: C:\WINDOWS\system32\KERNEL32.dll ok scanned
17/12/1429 10:54:20 م Running module: csrss.exe\USER32.dll ok scanned
17/12/1429 10:54:20 م File: C:\WINDOWS\system32\USER32.dll ok scanned
17/12/1429 10:54:20 م Running module: csrss.exe\LPK.DLL ok scanned
17/12/1429 10:54:20 م File: C:\WINDOWS\system32\LPK.DLL ok scanned
17/12/1429 10:54:20 م Running module: csrss.exe\USP10.dll ok scanned
17/12/1429 10:54:20 م File: C:\WINDOWS\system32\USP10.dll ok scanned
17/12/1429 10:54:20 م Running module: csrss.exe\ADVAPI32.dll ok scanned
17/12/1429 10:54:20 م File: C:\WINDOWS\system32\ADVAPI32.dll ok scanned
17/12/1429 10:54:20 م Running module: csrss.exe\RPCRT4.dll ok scanned
17/12/1429 10:54:20 م File: C:\WINDOWS\system32\RPCRT4.dll ok scanned
17/12/1429 10:54:20 م Running module: csrss.exe\Secur32.dll ok scanned
17/12/1429 10:54:21 م File: C:\WINDOWS\system32\Secur32.dll ok scanned
17/12/1429 10:54:21 م Running module: csrss.exe\sxs.dll ok scanned
17/12/1429 10:54:21 م File: C:\WINDOWS\system32\sxs.dll ok scanned
17/12/1429 10:54:21 م Running module: winlogon.exe\winlogon.exe ok scanned
17/12/1429 10:54:22 م File: C:\WINDOWS\system32\winlogon.exe ok scanned
17/12/1429 10:54:22 م Running module: winlogon.exe\ntdll.dll ok scanned
17/12/1429 10:54:22 م File: C:\WINDOWS\system32\ntdll.dll ok scanned
17/12/1429 10:54:22 م Running module: winlogon.exe\kernel32.dll ok scanned
17/12/1429 10:54:22 م File: C:\WINDOWS\system32\kernel32.dll ok scanned
17/12/1429 10:54:22 م Running module: winlogon.exe\ADVAPI32.dll ok scanned
17/12/1429 10:54:22 م File: C:\WINDOWS\system32\ADVAPI32.dll ok scanned
17/12/1429 10:54:22 م Running module: winlogon.exe\RPCRT4.dll ok scanned
17/12/1429 10:54:22 م File: C:\WINDOWS\system32\RPCRT4.dll ok scanned
17/12/1429 10:54:22 م Running module: winlogon.exe\Secur32.dll ok scanned
17/12/1429 10:54:22 م File: C:\WINDOWS\system32\Secur32.dll ok scanned
17/12/1429 10:54:22 م Running module: winlogon.exe\AUTHZ.dll ok scanned
17/12/1429 10:54:22 م File: C:\WINDOWS\system32\AUTHZ.dll ok scanned
17/12/1429 10:54:22 م Running module: winlogon.exe\msvcrt.dll ok scanned
17/12/1429 10:54:22 م File: C:\WINDOWS\system32\msvcrt.dll ok scanned
17/12/1429 10:54:22 م Running module: winlogon.exe\CRYPT32.dll ok scanned
17/12/1429 10:54:22 م File: C:\WINDOWS\system32\CRYPT32.dll ok scanned
17/12/1429 10:54:22 م Running module: winlogon.exe\MSASN1.dll ok scanned
17/12/1429 10:54:22 م File: C:\WINDOWS\system32\MSASN1.dll ok scanned
17/12/1429 10:54:22 م Running module: winlogon.exe\USER32.dll ok scanned
17/12/1429 10:54:22 م File: C:\WINDOWS\system32\USER32.dll ok scanned
17/12/1429 10:54:22 م Running module: winlogon.exe\GDI32.dll ok scanned
17/12/1429 10:54:22 م File: C:\WINDOWS\system32\GDI32.dll ok scanned
17/12/1429 10:54:22 م Running module: winlogon.exe\NDdeApi.dll ok scanned
17/12/1429 10:54:22 م File: C:\WINDOWS\system32\NDdeApi.dll ok scanned
17/12/1429 10:54:22 م Running module: winlogon.exe\PROFMAP.dll ok scanned
17/12/1429 10:54:22 م File: C:\WINDOWS\system32\PROFMAP.dll ok scanned
17/12/1429 10:54:22 م Running module: winlogon.exe\NETAPI32.dll ok scanned
17/12/1429 10:54:22 م File: C:\WINDOWS\system32\NETAPI32.dll ok scanned
17/12/1429 10:54:22 م Running module: winlogon.exe\USERENV.dll ok scanned
17/12/1429 10:54:23 م File: C:\WINDOWS\system32\USERENV.dll ok scanned
17/12/1429 10:54:23 م Running module: winlogon.exe\PSAPI.DLL ok scanned
17/12/1429 10:54:23 م File: C:\WINDOWS\system32\PSAPI.DLL ok scanned
17/12/1429 10:54:23 م Running module: winlogon.exe\REGAPI.dll ok scanned
17/12/1429 10:54:23 م File: C:\WINDOWS\system32\REGAPI.dll ok scanned
17/12/1429 10:54:23 م Running module: winlogon.exe\SETUPAPI.dll ok scanned
17/12/1429 10:54:24 م File: C:\WINDOWS\system32\SETUPAPI.dll ok scanned
17/12/1429 10:54:24 م Running module: winlogon.exe\VERSION.dll ok scanned
17/12/1429 10:54:24 م File: C:\WINDOWS\system32\VERSION.dll ok scanned
17/12/1429 10:54:24 م Running module: winlogon.exe\WINSTA.dll ok scanned
17/12/1429 10:54:24 م File: C:\WINDOWS\system32\WINSTA.dll ok scanned
17/12/1429 10:54:24 م Running module: winlogon.exe\WINTRUST.dll ok scanned
17/12/1429 10:54:24 م File: C:\WINDOWS\system32\WINTRUST.dll ok scanned
17/12/1429 10:54:24 م Running module: winlogon.exe\IMAGEHLP.dll ok scanned
17/12/1429 10:54:24 م File: C:\WINDOWS\system32\IMAGEHLP.dll ok scanned
17/12/1429 10:54:24 م Running module: winlogon.exe\WS2_32.dll ok scanned
17/12/1429 10:54:24 م File: C:\WINDOWS\system32\WS2_32.dll ok scanned
17/12/1429 10:54:24 م Running module: winlogon.exe\WS2HELP.dll ok scanned
17/12/1429 10:54:24 م File: C:\WINDOWS\system32\WS2HELP.dll ok scanned
17/12/1429 10:54:24 م Running module: winlogon.exe\IMM32.DLL ok scanned
17/12/1429 10:54:24 م File: C:\WINDOWS\system32\IMM32.DLL ok scanned
17/12/1429 10:54:24 م Running module: winlogon.exe\LPK.DLL ok scanned
17/12/1429 10:54:24 م File: C:\WINDOWS\system32\LPK.DLL ok scanned
17/12/1429 10:54:24 م Running module: winlogon.exe\USP10.dll ok scanned
17/12/1429 10:54:24 م File: C:\WINDOWS\system32\USP10.dll ok scanned
17/12/1429 10:54:24 م Running module: winlogon.exe\MSGINA.dll ok scanned
17/12/1429 10:54:24 م File: C:\WINDOWS\system32\MSGINA.dll ok scanned
17/12/1429 10:54:24 م Running module: winlogon.exe\COMCTL32.dll ok scanned
17/12/1429 10:54:25 م File: C:\WINDOWS\system32\COMCTL32.dll ok scanned
17/12/1429 10:54:25 م Running module: winlogon.exe\ODBC32.dll ok scanned
17/12/1429 10:54:25 م File: C:\WINDOWS\system32\ODBC32.dll ok scanned
17/12/1429 10:54:25 م Running module: winlogon.exe\comdlg32.dll ok scanned
17/12/1429 10:54:25 م File: C:\WINDOWS\system32\comdlg32.dll ok scanned
17/12/1429 10:54:25 م Running module: winlogon.exe\SHELL32.dll ok scanned
17/12/1429 10:54:28 م File: C:\WINDOWS\system32\SHELL32.dll ok scanned
17/12/1429 10:54:28 م Running module: winlogon.exe\SHLWAPI.dll ok scanned
17/12/1429 10:54:28 م File: C:\WINDOWS\system32\SHLWAPI.dll ok scanned
17/12/1429 10:54:28 م Running module: winlogon.exe\comctl32.dll ok scanned
17/12/1429 10:54:28 م File: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll ok scanned
17/12/1429 10:54:28 م Running module: winlogon.exe\odbcint.dll ok scanned
17/12/1429 10:54:28 م File: C:\WINDOWS\system32\odbcint.dll ok scanned
17/12/1429 10:54:28 م Running module: winlogon.exe\SHSVCS.dll ok scanned
17/12/1429 10:54:28 م File: C:\WINDOWS\system32\SHSVCS.dll ok scanned
17/12/1429 10:54:28 م Running module: winlogon.exe\sfc.dll ok scanned
17/12/1429 10:54:28 م File: C:\WINDOWS\system32\sfc.dll ok scanned
17/12/1429 10:54:28 م Running module: winlogon.exe\sfc_os.dll ok scanned
17/12/1429 10:54:28 م File: C:\WINDOWS\system32\sfc_os.dll ok scanned
17/12/1429 10:54:28 م Running module: winlogon.exe\ole32.dll ok scanned
17/12/1429 10:54:29 م File: C:\WINDOWS\system32\ole32.dll ok scanned
17/12/1429 10:54:29 م Running module: winlogon.exe\Apphelp.dll ok scanned
17/12/1429 10:54:29 م File: C:\WINDOWS\system32\Apphelp.dll ok scanned
17/12/1429 10:54:29 م Running module: winlogon.exe\msctfime.ime ok scanned
17/12/1429 10:54:29 م File: C:\WINDOWS\system32\msctfime.ime ok scanned
17/12/1429 10:54:29 م Running module: winlogon.exe\WINMM.dll ok scanned
17/12/1429 10:54:29 م File: C:\WINDOWS\system32\WINMM.dll ok scanned
17/12/1429 10:54:29 م Running module: winlogon.exe\cscdll.dll ok scanned
17/12/1429 10:54:29 م File: C:\WINDOWS\system32\cscdll.dll ok scanned
17/12/1429 10:54:29 م Running module: winlogon.exe\dimsntfy.dll ok scanned
17/12/1429 10:54:29 م File: C:\WINDOWS\System32\dimsntfy.dll ok scanned
17/12/1429 10:54:29 م Running module: winlogon.exe\rsaenh.dll ok scanned
17/12/1429 10:54:29 م File: C:\WINDOWS\system32\rsaenh.dll ok scanned
17/12/1429 10:54:29 م Running module: winlogon.exe\WlNotify.dll ok scanned
17/12/1429 10:54:29 م File: C:\WINDOWS\system32\WlNotify.dll ok scanned
17/12/1429 10:54:29 م Running module: winlogon.exe\MPR.dll ok scanned
17/12/1429 10:54:29 م File: C:\WINDOWS\system32\MPR.dll ok scanned
17/12/1429 10:54:29 م Running module: winlogon.exe\WinSCard.dll ok scanned
17/12/1429 10:54:29 م File: C:\WINDOWS\system32\WinSCard.dll ok scanned
17/12/1429 10:54:29 م Running module: winlogon.exe\WTSAPI32.dll ok scanned
17/12/1429 10:54:29 م File: C:\WINDOWS\system32\WTSAPI32.dll ok scanned
17/12/1429 10:54:29 م Running module: winlogon.exe\WINSPOOL.DRV ok scanned
17/12/1429 10:54:29 م File: C:\WINDOWS\system32\WINSPOOL.DRV ok scanned
17/12/1429 10:54:29 م Running module: winlogon.exe\UxTheme.dll ok scanned
17/12/1429 10:54:29 م File: C:\WINDOWS\system32\UxTheme.dll ok scanned
17/12/1429 10:54:29 م Running module: winlogon.exe\SAMLIB.dll ok scanned
17/12/1429 10:54:29 م File: C:\WINDOWS\system32\SAMLIB.dll ok scanned
17/12/1429 10:54:29 م Running module: winlogon.exe\LgNotify.dll ok scanned
17/12/1429 10:54:29 م File: C:\Program Files\Intel\Wireless\Bin\LgNotify.dll ok scanned
17/12/1429 10:54:29 م Running module: winlogon.exe\cscui.dll ok scanned
17/12/1429 10:54:29 م File: C:\WINDOWS\system32\cscui.dll ok scanned
17/12/1429 10:54:29 م Running module: winlogon.exe\NTMARTA.DLL ok scanned
17/12/1429 10:54:29 م File: C:\WINDOWS\system32\NTMARTA.DLL ok scanned
17/12/1429 10:54:29 م Running module: winlogon.exe\WLDAP32.dll ok scanned
17/12/1429 10:54:29 م File: C:\WINDOWS\system32\WLDAP32.dll ok scanned
17/12/1429 10:54:29 م Running module: winlogon.exe\COMRes.dll ok scanned
17/12/1429 10:54:29 م File: C:\WINDOWS\system32\COMRes.dll ok scanned
17/12/1429 10:54:29 م Running module: winlogon.exe\OLEAUT32.dll ok scanned
17/12/1429 10:54:30 م File: C:\WINDOWS\system32\OLEAUT32.dll ok scanned
17/12/1429 10:54:30 م Running module: winlogon.exe\CLBCATQ.DLL ok scanned
17/12/1429 10:54:30 م File: C:\WINDOWS\system32\CLBCATQ.DLL ok scanned
17/12/1429 10:54:30 م Running module: winlogon.exe\xpsp2res.dll ok scanned
17/12/1429 10:54:30 م File: C:\WINDOWS\system32\xpsp2res.dll ok scanned
17/12/1429 10:54:30 م Running module: services.exe\services.exe ok scanned
17/12/1429 10:54:30 م File: C:\WINDOWS\system32\services.exe ok scanned
17/12/1429 10:54:30 م Running module: services.exe\ntdll.dll ok scanned
17/12/1429 10:54:30 م File: C:\WINDOWS\system32\ntdll.dll ok scanned
17/12/1429 10:54:30 م Running module: services.exe\kernel32.dll ok scanned
17/12/1429 10:54:31 م File: C:\WINDOWS\system32\kernel32.dll ok scanned
17/12/1429 10:54:31 م Running module: services.exe\ADVAPI32.dll ok scanned
17/12/1429 10:54:31 م File: C:\WINDOWS\system32\ADVAPI32.dll ok scanned
17/12/1429 10:54:31 م Running module: services.exe\RPCRT4.dll ok scanned
17/12/1429 10:54:31 م File: C:\WINDOWS\system32\RPCRT4.dll ok scanned
17/12/1429 10:54:31 م Running module: services.exe\Secur32.dll ok scanned
17/12/1429 10:54:31 م File: C:\WINDOWS\system32\Secur32.dll ok scanned
17/12/1429 10:54:31 م Running module: services.exe\msvcrt.dll ok scanned
17/12/1429 10:54:31 م File: C:\WINDOWS\system32\msvcrt.dll ok scanned
17/12/1429 10:54:31 م Running module: services.exe\NCObjAPI.DLL ok scanned
17/12/1429 10:54:31 م File: C:\WINDOWS\system32\NCObjAPI.DLL ok scanned
17/12/1429 10:54:31 م Running module: services.exe\MSVCP60.dll ok scanned
17/12/1429 10:54:31 م File: C:\WINDOWS\system32\MSVCP60.dll ok scanned
17/12/1429 10:54:31 م Running module: services.exe\SCESRV.dll ok scanned
17/12/1429 10:54:31 م File: C:\WINDOWS\system32\SCESRV.dll ok scanned
17/12/1429 10:54:31 م Running module: services.exe\AUTHZ.dll ok scanned
17/12/1429 10:54:31 م File: C:\WINDOWS\system32\AUTHZ.dll ok scanned
17/12/1429 10:54:31 م Running module: services.exe\USER32.dll ok scanned
17/12/1429 10:54:31 م File: C:\WINDOWS\system32\USER32.dll ok scanned
17/12/1429 10:54:31 م Running module: services.exe\GDI32.dll ok scanned
17/12/1429 10:54:31 م File: C:\WINDOWS\system32\GDI32.dll ok scanned
17/12/1429 10:54:31 م Running module: services.exe\USERENV.dll ok scanned
17/12/1429 10:54:31 م File: C:\WINDOWS\system32\USERENV.dll ok scanned
17/12/1429 10:54:31 م Running module: services.exe\umpnpmgr.dll ok scanned
17/12/1429 10:54:31 م File: C:\WINDOWS\system32\umpnpmgr.dll ok scanned
17/12/1429 10:54:31 م Running module: services.exe\WINSTA.dll ok scanned
17/12/1429 10:54:31 م File: C:\WINDOWS\system32\WINSTA.dll ok scanned
17/12/1429 10:54:31 م Running module: services.exe\NETAPI32.dll ok scanned
17/12/1429 10:54:31 م File: C:\WINDOWS\system32\NETAPI32.dll ok scanned
17/12/1429 10:54:31 م Running module: services.exe\ShimEng.dll ok scanned
17/12/1429 10:54:31 م File: C:\WINDOWS\system32\ShimEng.dll ok scanned
17/12/1429 10:54:31 م Running module: services.exe\AcAdProc.dll ok scanned
17/12/1429 10:54:31 م File: C:\WINDOWS\AppPatch\AcAdProc.dll ok scanned
17/12/1429 10:54:31 م Running module: services.exe\IMM32.DLL ok scanned
17/12/1429 10:54:31 م File: C:\WINDOWS\system32\IMM32.DLL ok scanned
17/12/1429 10:54:31 م Running module: services.exe\LPK.DLL ok scanned
17/12/1429 10:54:31 م File: C:\WINDOWS\system32\LPK.DLL ok scanned
17/12/1429 10:54:31 م Running module: services.exe\USP10.dll ok scanned
17/12/1429 10:54:31 م File: C:\WINDOWS\system32\USP10.dll ok scanned
17/12/1429 10:54:31 م Running module: services.exe\Apphelp.dll ok scanned
17/12/1429 10:54:31 م File: C:\WINDOWS\system32\Apphelp.dll ok scanned
17/12/1429 10:54:31 م Running module: services.exe\VERSION.dll ok scanned
17/12/1429 10:54:31 م File: C:\WINDOWS\system32\VERSION.dll ok scanned
17/12/1429 10:54:31 م Running module: services.exe\eventlog.dll ok scanned
17/12/1429 10:54:31 م File: C:\WINDOWS\system32\eventlog.dll ok scanned
17/12/1429 10:54:31 م Running module: services.exe\PSAPI.DLL ok scanned
17/12/1429 10:54:31 م File: C:\WINDOWS\system32\PSAPI.DLL ok scanned
17/12/1429 10:54:31 م Running module: services.exe\WS2_32.dll ok scanned
17/12/1429 10:54:31 م File: C:\WINDOWS\system32\WS2_32.dll ok scanned
17/12/1429 10:54:31 م Running module: services.exe\WS2HELP.dll ok scanned
17/12/1429 10:54:31 م File: C:\WINDOWS\system32\WS2HELP.dll ok scanned
17/12/1429 10:54:31 م Running module: services.exe\wtsapi32.dll ok scanned
17/12/1429 10:54:31 م File: C:\WINDOWS\system32\wtsapi32.dll ok scanned
17/12/1429 10:54:31 م Running module: lsass.exe\lsass.exe ok scanned
17/12/1429 10:54:31 م File: C:\WINDOWS\system32\lsass.exe ok scanned
17/12/1429 10:54:31 م Running module: lsass.exe\ntdll.dll ok scanned
17/12/1429 10:54:31 م File: C:\WINDOWS\system32\ntdll.dll ok scanned
17/12/1429 10:54:31 م Running module: lsass.exe\kernel32.dll ok scanned
17/12/1429 10:54:31 م File: C:\WINDOWS\system32\kernel32.dll ok scanned
17/12/1429 10:54:31 م Running module: lsass.exe\ADVAPI32.dll ok scanned
17/12/1429 10:54:31 م File: C:\WINDOWS\system32\ADVAPI32.dll ok scanned
17/12/1429 10:54:31 م Running module: lsass.exe\RPCRT4.dll ok scanned
17/12/1429 10:54:31 م File: C:\WINDOWS\system32\RPCRT4.dll ok scanned
17/12/1429 10:54:31 م Running module: lsass.exe\Secur32.dll ok scanned
17/12/1429 10:54:31 م File: C:\WINDOWS\system32\Secur32.dll ok scanned
17/12/1429 10:54:31 م Running module: lsass.exe\LSASRV.dll ok scanned
17/12/1429 10:54:31 م File: C:\WINDOWS\system32\LSASRV.dll ok scanned
17/12/1429 10:54:31 م Running module: lsass.exe\MPR.dll ok scanned
17/12/1429 10:54:31 م File: C:\WINDOWS\system32\MPR.dll ok scanned
17/12/1429 10:54:31 م Running module: lsass.exe\USER32.dll ok scanned
17/12/1429 10:54:31 م File: C:\WINDOWS\system32\USER32.dll ok scanned
17/12/1429 10:54:31 م Running module: lsass.exe\GDI32.dll ok scanned
17/12/1429 10:54:31 م File: C:\WINDOWS\system32\GDI32.dll ok scanned
17/12/1429 10:54:31 م Running module: lsass.exe\MSASN1.dll ok scanned
17/12/1429 10:54:31 م File: C:\WINDOWS\system32\MSASN1.dll ok scanned
17/12/1429 10:54:31 م Running module: lsass.exe\msvcrt.dll ok scanned
17/12/1429 10:54:31 م File: C:\WINDOWS\system32\msvcrt.dll ok scanned
17/12/1429 10:54:31 م Running module: lsass.exe\NETAPI32.dll ok scanned
17/12/1429 10:54:31 م File: C:\WINDOWS\system32\NETAPI32.dll ok scanned
17/12/1429 10:54:31 م Running module: lsass.exe\NTDSAPI.dll ok scanned
17/12/1429 10:54:32 م File: C:\WINDOWS\system32\NTDSAPI.dll ok scanned
17/12/1429 10:54:32 م Running module: lsass.exe\DNSAPI.dll ok scanned
17/12/1429 10:54:32 م File: C:\WINDOWS\system32\DNSAPI.dll ok scanned
17/12/1429 10:54:32 م Running module: lsass.exe\WS2_32.dll ok scanned
17/12/1429 10:54:32 م File: C:\WINDOWS\system32\WS2_32.dll ok scanned
17/12/1429 10:54:32 م Running module: lsass.exe\WS2HELP.dll ok scanned
17/12/1429 10:54:32 م File: C:\WINDOWS\system32\WS2HELP.dll ok scanned
17/12/1429 10:54:32 م Running module: lsass.exe\WLDAP32.dll ok scanned
17/12/1429 10:54:32 م File: C:\WINDOWS\system32\WLDAP32.dll ok scanned
17/12/1429 10:54:32 م Running module: lsass.exe\SAMLIB.dll ok scanned
17/12/1429 10:54:32 م File: C:\WINDOWS\system32\SAMLIB.dll ok scanned
17/12/1429 10:54:32 م Running module: lsass.exe\SAMSRV.dll ok scanned
17/12/1429 10:54:32 م File: C:\WINDOWS\system32\SAMSRV.dll ok scanned
17/12/1429 10:54:32 م Running module: lsass.exe\cryptdll.dll ok scanned
17/12/1429 10:54:32 م File: C:\WINDOWS\system32\cryptdll.dll ok scanned
17/12/1429 10:54:32 م Running module: lsass.exe\ShimEng.dll ok scanned
17/12/1429 10:54:32 م File: C:\WINDOWS\system32\ShimEng.dll ok scanned
17/12/1429 10:54:32 م Running module: lsass.exe\AcGenral.DLL ok scanned
17/12/1429 10:54:32 م File: C:\WINDOWS\AppPatch\AcGenral.DLL ok scanned
17/12/1429 10:54:32 م Running module: lsass.exe\WINMM.dll ok scanned
17/12/1429 10:54:32 م File: C:\WINDOWS\system32\WINMM.dll ok scanned
17/12/1429 10:54:32 م Running module: lsass.exe\ole32.dll ok scanned
17/12/1429 10:54:32 م File: C:\WINDOWS\system32\ole32.dll ok scanned
17/12/1429 10:54:32 م Running module: lsass.exe\OLEAUT32.dll ok scanned
17/12/1429 10:54:32 م File: C:\WINDOWS\system32\OLEAUT32.dll ok scanned
17/12/1429 10:54:32 م Running module: lsass.exe\MSACM32.dll ok scanned
17/12/1429 10:54:32 م File: C:\WINDOWS\system32\MSACM32.dll ok scanned
17/12/1429 10:54:32 م Running module: lsass.exe\VERSION.dll ok scanned
17/12/1429 10:54:32 م File: C:\WINDOWS\system32\VERSION.dll ok scanned
17/12/1429 10:54:32 م Running module: lsass.exe\SHELL32.dll ok scanned
17/12/1429 10:54:32 م File: C:\WINDOWS\system32\SHELL32.dll ok scanned
17/12/1429 10:54:32 م Running module: lsass.exe\SHLWAPI.dll ok scanned
17/12/1429 10:54:32 م File: C:\WINDOWS\system32\SHLWAPI.dll ok scanned
17/12/1429 10:54:32 م Running module: lsass.exe\USERENV.dll ok scanned
17/12/1429 10:54:32 م File: C:\WINDOWS\system32\USERENV.dll ok scanned
17/12/1429 10:54:32 م Running module: lsass.exe\UxTheme.dll ok scanned
17/12/1429 10:54:32 م File: C:\WINDOWS\system32\UxTheme.dll ok scanned
17/12/1429 10:54:32 م Running module: lsass.exe\IMM32.DLL ok scanned
17/12/1429 10:54:32 م File: C:\WINDOWS\system32\IMM32.DLL ok scanned
17/12/1429 10:54:32 م Running module: lsass.exe\LPK.DLL ok scanned
17/12/1429 10:54:32 م File: C:\WINDOWS\system32\LPK.DLL ok scanned
17/12/1429 10:54:32 م Running module: lsass.exe\USP10.dll ok scanned
17/12/1429 10:54:32 م File: C:\WINDOWS\system32\USP10.dll ok scanned
17/12/1429 10:54:32 م Running module: lsass.exe\comctl32.dll ok scanned
17/12/1429 10:54:32 م File: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll ok scanned
17/12/1429 10:54:32 م Running module: lsass.exe\comctl32.dll ok scanned
17/12/1429 10:54:32 م File: C:\WINDOWS\system32\comctl32.dll ok scanned
17/12/1429 10:54:32 م Running module: lsass.exe\msprivs.dll ok scanned
17/12/1429 10:54:32 م File: C:\WINDOWS\system32\msprivs.dll ok scanned
17/12/1429 10:54:32 م Running module: lsass.exe\kerberos.dll ok scanned
17/12/1429 10:54:32 م File: C:\WINDOWS\system32\kerberos.dll ok scanned
17/12/1429 10:54:32 م Running module: lsass.exe\msv1_0.dll ok scanned
17/12/1429 10:54:32 م File: C:\WINDOWS\system32\msv1_0.dll ok scanned
17/12/1429 10:54:32 م Running module: lsass.exe\iphlpapi.dll ok scanned
17/12/1429 10:54:32 م File: C:\WINDOWS\system32\iphlpapi.dll ok scanned
17/12/1429 10:54:32 م Running module: lsass.exe\netlogon.dll ok scanned
17/12/1429 10:54:32 م File: C:\WINDOWS\system32\netlogon.dll ok scanned
17/12/1429 10:54:32 م Running module: lsass.exe\w32time.dll ok scanned
17/12/1429 10:54:32 م File: C:\WINDOWS\system32\w32time.dll ok scanned
17/12/1429 10:54:32 م Running module: lsass.exe\MSVCP60.dll ok scanned
17/12/1429 10:54:32 م File: C:\WINDOWS\system32\MSVCP60.dll ok scanned
17/12/1429 10:54:32 م Running module: lsass.exe\schannel.dll ok scanned
17/12/1429 10:54:33 م File: C:\WINDOWS\system32\schannel.dll ok scanned
17/12/1429 10:54:33 م Running module: lsass.exe\CRYPT32.dll ok scanned
17/12/1429 10:54:33 م File: C:\WINDOWS\system32\CRYPT32.dll ok scanned
17/12/1429 10:54:33 م Running module: lsass.exe\wdigest.dll ok scanned
17/12/1429 10:54:33 م File: C:\WINDOWS\system32\wdigest.dll ok scanned
17/12/1429 10:54:33 م Running module: lsass.exe\rsaenh.dll ok scanned
17/12/1429 10:54:33 م File: C:\WINDOWS\system32\rsaenh.dll ok scanned
17/12/1429 10:54:33 م Running module: lsass.exe\scecli.dll ok scanned
17/12/1429 10:54:33 م File: C:\WINDOWS\system32\scecli.dll ok scanned
17/12/1429 10:54:33 م Running module: lsass.exe\SETUPAPI.dll ok scanned
17/12/1429 10:54:33 م File: C:\WINDOWS\system32\SETUPAPI.dll ok scanned
17/12/1429 10:54:33 م Running module: svchost.exe\svchost.exe ok scanned
17/12/1429 10:54:33 م File: C:\WINDOWS\system32\svchost.exe ok scanned
17/12/1429 10:54:33 م Running module: svchost.exe\ntdll.dll ok scanned
17/12/1429 10:54:33 م File: C:\WINDOWS\system32\ntdll.dll ok scanned
17/12/1429 10:54:33 م Running module: svchost.exe\kernel32.dll ok scanned
17/12/1429 10:54:33 م File: C:\WINDOWS\system32\kernel32.dll ok scanned
17/12/1429 10:54:33 م Running module: svchost.exe\ADVAPI32.dll ok scanned
17/12/1429 10:54:33 م File: C:\WINDOWS\system32\ADVAPI32.dll ok scanned
17/12/1429 10:54:33 م Running module: svchost.exe\RPCRT4.dll ok scanned
17/12/1429 10:54:33 م File: C:\WINDOWS\system32\RPCRT4.dll ok scanned
17/12/1429 10:54:33 م Running module: svchost.exe\Secur32.dll ok scanned
17/12/1429 10:54:33 م File: C:\WINDOWS\system32\Secur32.dll ok scanned
17/12/1429 10:54:33 م Running module: svchost.exe\ShimEng.dll ok scanned
17/12/1429 10:54:33 م File: C:\WINDOWS\system32\ShimEng.dll ok scanned
17/12/1429 10:54:33 م Running module: svchost.exe\AcGenral.DLL ok scanned
17/12/1429 10:54:33 م File: C:\WINDOWS\AppPatch\AcGenral.DLL ok scanned
17/12/1429 10:54:33 م Running module: svchost.exe\USER32.dll ok scanned
17/12/1429 10:54:33 م File: C:\WINDOWS\system32\USER32.dll ok scanned
17/12/1429 10:54:33 م Running module: svchost.exe\GDI32.dll ok scanned
17/12/1429 10:54:33 م File: C:\WINDOWS\system32\GDI32.dll ok scanned
17/12/1429 10:54:33 م Running module: svchost.exe\WINMM.dll ok scanned
17/12/1429 10:54:33 م File: C:\WINDOWS\system32\WINMM.dll ok scanned
17/12/1429 10:54:33 م Running module: svchost.exe\ole32.dll ok scanned
17/12/1429 10:54:33 م File: C:\WINDOWS\system32\ole32.dll ok scanned
17/12/1429 10:54:33 م Running module: svchost.exe\msvcrt.dll ok scanned
17/12/1429 10:54:33 م File: C:\WINDOWS\system32\msvcrt.dll ok scanned
17/12/1429 10:54:33 م Running module: svchost.exe\OLEAUT32.dll ok scanned
17/12/1429 10:54:33 م File: C:\WINDOWS\system32\OLEAUT32.dll ok scanned
17/12/1429 10:54:33 م Running module: svchost.exe\MSACM32.dll ok scanned
17/12/1429 10:54:33 م File: C:\WINDOWS\system32\MSACM32.dll ok scanned
17/12/1429 10:54:33 م Running module: svchost.exe\VERSION.dll ok scanned
17/12/1429 10:54:33 م File: C:\WINDOWS\system32\VERSION.dll ok scanned
17/12/1429 10:54:33 م Running module: svchost.exe\SHELL32.dll ok scanned
17/12/1429 10:54:33 م File: C:\WINDOWS\system32\SHELL32.dll ok scanned
17/12/1429 10:54:33 م Running module: svchost.exe\SHLWAPI.dll ok scanned
17/12/1429 10:54:33 م File: C:\WINDOWS\system32\SHLWAPI.dll ok scanned
17/12/1429 10:54:33 م Running module: svchost.exe\USERENV.dll ok scanned
17/12/1429 10:54:33 م File: C:\WINDOWS\system32\USERENV.dll ok scanned
17/12/1429 10:54:33 م Running module: svchost.exe\UxTheme.dll ok scanned
17/12/1429 10:54:33 م File: C:\WINDOWS\system32\UxTheme.dll ok scanned
17/12/1429 10:54:33 م Running module: svchost.exe\IMM32.DLL ok scanned
17/12/1429 10:54:33 م File: C:\WINDOWS\system32\IMM32.DLL ok scanned
17/12/1429 10:54:33 م Running module: svchost.exe\LPK.DLL ok scanned
17/12/1429 10:54:33 م File: C:\WINDOWS\system32\LPK.DLL ok scanned
17/12/1429 10:54:33 م Running module: svchost.exe\USP10.dll ok scanned
17/12/1429 10:54:33 م File: C:\WINDOWS\system32\USP10.dll ok scanned
17/12/1429 10:54:33 م Running module: svchost.exe\comctl32.dll ok scanned
17/12/1429 10:54:33 م File: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll ok scanned
17/12/1429 10:54:33 م Running module: svchost.exe\comctl32.dll ok scanned
17/12/1429 10:54:33 م File: C:\WINDOWS\system32\comctl32.dll ok scanned
17/12/1429 10:54:33 م Running module: svchost.exe\NTMARTA.DLL ok scanned
17/12/1429 10:54:33 م File: C:\WINDOWS\system32\NTMARTA.DLL ok scanned
17/12/1429 10:54:33 م Running module: svchost.exe\SAMLIB.dll ok scanned
17/12/1429 10:54:33 م File: C:\WINDOWS\system32\SAMLIB.dll ok scanned
17/12/1429 10:54:33 م Running module: svchost.exe\WLDAP32.dll ok scanned
17/12/1429 10:54:33 م File: C:\WINDOWS\system32\WLDAP32.dll ok scanned
17/12/1429 10:54:33 م Running module: svchost.exe\rpcss.dll ok scanned
17/12/1429 10:54:33 م File: c:\windows\system32\rpcss.dll ok scanned
17/12/1429 10:54:33 م Running module: svchost.exe\WS2_32.dll ok scanned
17/12/1429 10:54:33 م File: c:\windows\system32\WS2_32.dll ok scanned
17/12/1429 10:54:33 م Running module: svchost.exe\WS2HELP.dll ok scanned
17/12/1429 10:54:33 م File: c:\windows\system32\WS2HELP.dll ok scanned
17/12/1429 10:54:33 م Running module: svchost.exe\xpsp2res.dll ok scanned
17/12/1429 10:54:33 م File: C:\WINDOWS\system32\xpsp2res.dll ok scanned
17/12/1429 10:54:33 م Running module: svchost.exe\CLBCATQ.DLL ok scanned
17/12/1429 10:54:33 م File: C:\WINDOWS\system32\CLBCATQ.DLL ok scanned
17/12/1429 10:54:33 م Running module: svchost.exe\COMRes.dll ok scanned
17/12/1429 10:54:33 م File: C:\WINDOWS\system32\COMRes.dll ok scanned
17/12/1429 10:54:33 م Running module: svchost.exe\svchost.exe ok scanned
17/12/1429 10:54:33 م File: C:\WINDOWS\system32\svchost.exe ok scanned
17/12/1429 10:54:33 م Running module: svchost.exe\ntdll.dll ok scanned
17/12/1429 10:54:33 م File: C:\WINDOWS\system32\ntdll.dll ok scanned
17/12/1429 10:54:33 م Running module: svchost.exe\kernel32.dll ok scanned
17/12/1429 10:54:33 م File: C:\WINDOWS\system32\kernel32.dll ok scanned
17/12/1429 10:54:33 م Running module: svchost.exe\ADVAPI32.dll ok scanned
17/12/1429 10:54:33 م File: C:\WINDOWS\system32\ADVAPI32.dll ok scanned
17/12/1429 10:54:33 م Running module: svchost.exe\RPCRT4.dll ok scanned
17/12/1429 10:54:33 م File: C:\WINDOWS\system32\RPCRT4.dll ok scanned
17/12/1429 10:54:33 م Running module: svchost.exe\Secur32.dll ok scanned
17/12/1429 10:54:33 م File: C:\WINDOWS\system32\Secur32.dll ok scanned
17/12/1429 10:54:33 م Running module: svchost.exe\ShimEng.dll ok scanned
17/12/1429 10:54:33 م File: C:\WINDOWS\system32\ShimEng.dll ok scanned
17/12/1429 10:54:33 م Running module: svchost.exe\AcGenral.DLL ok scanned
17/12/1429 10:54:33 م File: C:\WINDOWS\AppPatch\AcGenral.DLL ok scanned
17/12/1429 10:54:33 م Running module: svchost.exe\USER32.dll ok scanned
17/12/1429 10:54:33 م File: C:\WINDOWS\system32\USER32.dll ok scanned
17/12/1429 10:54:33 م Running module: svchost.exe\GDI32.dll ok scanned
17/12/1429 10:54:33 م File: C:\WINDOWS\system32\GDI32.dll ok scanned
17/12/1429 10:54:33 م Running module: svchost.exe\WINMM.dll ok scanned
17/12/1429 10:54:34 م File: C:\WINDOWS\system32\WINMM.dll ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\ole32.dll ok scanned
17/12/1429 10:54:34 م File: C:\WINDOWS\system32\ole32.dll ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\msvcrt.dll ok scanned
17/12/1429 10:54:34 م File: C:\WINDOWS\system32\msvcrt.dll ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\OLEAUT32.dll ok scanned
17/12/1429 10:54:34 م File: C:\WINDOWS\system32\OLEAUT32.dll ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\MSACM32.dll ok scanned
17/12/1429 10:54:34 م File: C:\WINDOWS\system32\MSACM32.dll ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\VERSION.dll ok scanned
17/12/1429 10:54:34 م File: C:\WINDOWS\system32\VERSION.dll ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\SHELL32.dll ok scanned
17/12/1429 10:54:34 م File: C:\WINDOWS\system32\SHELL32.dll ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\SHLWAPI.dll ok scanned
17/12/1429 10:54:34 م File: C:\WINDOWS\system32\SHLWAPI.dll ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\USERENV.dll ok scanned
17/12/1429 10:54:34 م File: C:\WINDOWS\system32\USERENV.dll ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\UxTheme.dll ok scanned
17/12/1429 10:54:34 م File: C:\WINDOWS\system32\UxTheme.dll ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\IMM32.DLL ok scanned
17/12/1429 10:54:34 م File: C:\WINDOWS\system32\IMM32.DLL ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\LPK.DLL ok scanned
17/12/1429 10:54:34 م File: C:\WINDOWS\system32\LPK.DLL ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\USP10.dll ok scanned
17/12/1429 10:54:34 م File: C:\WINDOWS\system32\USP10.dll ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\comctl32.dll ok scanned
17/12/1429 10:54:34 م File: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\comctl32.dll ok scanned
17/12/1429 10:54:34 م File: C:\WINDOWS\system32\comctl32.dll ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\rpcss.dll ok scanned
17/12/1429 10:54:34 م File: c:\windows\system32\rpcss.dll ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\WS2_32.dll ok scanned
17/12/1429 10:54:34 م File: c:\windows\system32\WS2_32.dll ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\WS2HELP.dll ok scanned
17/12/1429 10:54:34 م File: c:\windows\system32\WS2HELP.dll ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\xpsp2res.dll ok scanned
17/12/1429 10:54:34 م File: C:\WINDOWS\system32\xpsp2res.dll ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\rsaenh.dll ok scanned
17/12/1429 10:54:34 م File: C:\WINDOWS\system32\rsaenh.dll ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\mswsock.dll ok scanned
17/12/1429 10:54:34 م File: C:\WINDOWS\system32\mswsock.dll ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\hnetcfg.dll ok scanned
17/12/1429 10:54:34 م File: C:\WINDOWS\system32\hnetcfg.dll ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\wshtcpip.dll ok scanned
17/12/1429 10:54:34 م File: C:\WINDOWS\System32\wshtcpip.dll ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\DNSAPI.dll ok scanned
17/12/1429 10:54:34 م File: C:\WINDOWS\system32\DNSAPI.dll ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\iphlpapi.dll ok scanned
17/12/1429 10:54:34 م File: C:\WINDOWS\system32\iphlpapi.dll ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\winrnr.dll ok scanned
17/12/1429 10:54:34 م File: C:\WINDOWS\System32\winrnr.dll ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\WLDAP32.dll ok scanned
17/12/1429 10:54:34 م File: C:\WINDOWS\system32\WLDAP32.dll ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\wshbth.dll ok scanned
17/12/1429 10:54:34 م File: C:\WINDOWS\system32\wshbth.dll ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\SETUPAPI.dll ok scanned
17/12/1429 10:54:34 م File: C:\WINDOWS\system32\SETUPAPI.dll ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\rasadhlp.dll ok scanned
17/12/1429 10:54:34 م File: C:\WINDOWS\system32\rasadhlp.dll ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\CLBCATQ.DLL ok scanned
17/12/1429 10:54:34 م File: C:\WINDOWS\system32\CLBCATQ.DLL ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\COMRes.dll ok scanned
17/12/1429 10:54:34 م File: C:\WINDOWS\system32\COMRes.dll ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\svchost.exe ok scanned
17/12/1429 10:54:34 م File: C:\WINDOWS\system32\svchost.exe ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\ntdll.dll ok scanned
17/12/1429 10:54:34 م File: C:\WINDOWS\system32\ntdll.dll ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\kernel32.dll ok scanned
17/12/1429 10:54:34 م File: C:\WINDOWS\system32\kernel32.dll ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\ADVAPI32.dll ok scanned
17/12/1429 10:54:34 م File: C:\WINDOWS\system32\ADVAPI32.dll ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\RPCRT4.dll ok scanned
17/12/1429 10:54:34 م File: C:\WINDOWS\system32\RPCRT4.dll ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\Secur32.dll ok scanned
17/12/1429 10:54:34 م File: C:\WINDOWS\system32\Secur32.dll ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\ShimEng.dll ok scanned
17/12/1429 10:54:34 م File: C:\WINDOWS\system32\ShimEng.dll ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\AcGenral.DLL ok scanned
17/12/1429 10:54:34 م File: C:\WINDOWS\AppPatch\AcGenral.DLL ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\USER32.dll ok scanned
17/12/1429 10:54:34 م File: C:\WINDOWS\system32\USER32.dll ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\GDI32.dll ok scanned
17/12/1429 10:54:34 م File: C:\WINDOWS\system32\GDI32.dll ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\WINMM.dll ok scanned
17/12/1429 10:54:34 م File: C:\WINDOWS\system32\WINMM.dll ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\ole32.dll ok scanned
17/12/1429 10:54:34 م File: C:\WINDOWS\system32\ole32.dll ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\msvcrt.dll ok scanned
17/12/1429 10:54:34 م File: C:\WINDOWS\system32\msvcrt.dll ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\OLEAUT32.dll ok scanned
17/12/1429 10:54:34 م File: C:\WINDOWS\system32\OLEAUT32.dll ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\MSACM32.dll ok scanned
17/12/1429 10:54:34 م File: C:\WINDOWS\system32\MSACM32.dll ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\VERSION.dll ok scanned
17/12/1429 10:54:34 م File: C:\WINDOWS\system32\VERSION.dll ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\SHELL32.dll ok scanned
17/12/1429 10:54:34 م File: C:\WINDOWS\system32\SHELL32.dll ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\SHLWAPI.dll ok scanned
17/12/1429 10:54:34 م File: C:\WINDOWS\system32\SHLWAPI.dll ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\USERENV.dll ok scanned
17/12/1429 10:54:34 م File: C:\WINDOWS\system32\USERENV.dll ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\UxTheme.dll ok scanned
17/12/1429 10:54:34 م File: C:\WINDOWS\system32\UxTheme.dll ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\IMM32.DLL ok scanned
17/12/1429 10:54:34 م File: C:\WINDOWS\system32\IMM32.DLL ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\LPK.DLL ok scanned
17/12/1429 10:54:34 م File: C:\WINDOWS\system32\LPK.DLL ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\USP10.dll ok scanned
17/12/1429 10:54:34 م File: C:\WINDOWS\system32\USP10.dll ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\comctl32.dll ok scanned
17/12/1429 10:54:34 م File: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\comctl32.dll ok scanned
17/12/1429 10:54:34 م File: C:\WINDOWS\system32\comctl32.dll ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\NTMARTA.DLL ok scanned
17/12/1429 10:54:34 م File: C:\WINDOWS\system32\NTMARTA.DLL ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\SAMLIB.dll ok scanned
17/12/1429 10:54:34 م File: C:\WINDOWS\system32\SAMLIB.dll ok scanned
17/12/1429 10:54:34 م Running module: svchost.exe\WLDAP32.dll ok scanned
17/12/1429 10:54:35 م File: C:\WINDOWS\system32\WLDAP32.dll ok scanned
17/12/1429 10:54:35 م Running module: svchost.exe\xpsp2res.dll ok scanned
17/12/1429 10:54:35 م File: C:\WINDOWS\system32\xpsp2res.dll ok scanned
17/12/1429 10:54:35 م Running module: svchost.exe\cryptsvc.dll ok scanned
17/12/1429 10:54:35 م File: c:\windows\system32\cryptsvc.dll ok scanned
17/12/1429 10:54:35 م Running module: svchost.exe\certcli.dll ok scanned
17/12/1429 10:54:35 م File: c:\windows\system32\certcli.dll ok scanned
17/12/1429 10:54:35 م Running module: svchost.exe\ATL.DLL ok scanned
17/12/1429 10:54:35 م File: c:\windows\system32\ATL.DLL ok scanned
17/12/1429 10:54:35 م Running module: svchost.exe\CRYPT32.dll ok scanned
17/12/1429 10:54:35 م File: C:\WINDOWS\system32\CRYPT32.dll ok scanned
17/12/1429 10:54:35 م Running module: svchost.exe\MSASN1.dll ok scanned
17/12/1429 10:54:35 م File: C:\WINDOWS\system32\MSASN1.dll ok scanned
17/12/1429 10:54:35 م Running module: svchost.exe\CRYPTUI.dll ok scanned
17/12/1429 10:54:35 م File: C:\WINDOWS\system32\CRYPTUI.dll ok scanned
17/12/1429 10:54:35 م Running module: svchost.exe\NETAPI32.dll ok scanned
17/12/1429 10:54:35 م File: C:\WINDOWS\system32\NETAPI32.dll ok scanned
17/12/1429 10:54:35 م Running module: svchost.exe\WININET.dll ok scanned
17/12/1429 10:54:35 م File: C:\WINDOWS\system32\WININET.dll packed file PE_Patch
17/12/1429 10:54:35 م File: C:\WINDOWS\system32\WININET.dll//PE_Patch ok scanned
17/12/1429 10:54:35 م File: C:\WINDOWS\system32\WININET.dll ok scanned
17/12/1429 10:54:35 م Running module: svchost.exe\Normaliz.dll ok scanned
17/12/1429 10:54:35 م File: C:\WINDOWS\system32\Normaliz.dll ok scanned
17/12/1429 10:54:35 م Running module: svchost.exe\iertutil.dll ok scanned
17/12/1429 10:54:35 م File: C:\WINDOWS\system32\iertutil.dll ok scanned
17/12/1429 10:54:35 م Running module: svchost.exe\WINTRUST.dll ok scanned
17/12/1429 10:54:35 م File: C:\WINDOWS\system32\WINTRUST.dll ok scanned
17/12/1429 10:54:35 م Running module: svchost.exe\IMAGEHLP.dll ok scanned
17/12/1429 10:54:35 م File: C:\WINDOWS\system32\IMAGEHLP.dll ok scanned
17/12/1429 10:54:35 م Running module: svchost.exe\ESENT.dll ok scanned
17/12/1429 10:54:35 م File: c:\windows\system32\ESENT.dll ok scanned
17/12/1429 10:54:35 م Running module: svchost.exe\wmisvc.dll ok scanned
17/12/1429 10:54:35 م File: c:\windows\system32\wbem\wmisvc.dll ok scanned
17/12/1429 10:54:35 م Running module: svchost.exe\VSSAPI.DLL ok scanned
17/12/1429 10:54:36 م File: C:\WINDOWS\system32\VSSAPI.DLL ok scanned
17/12/1429 10:54:36 م Running module: svchost.exe\srsvc.dll ok scanned
17/12/1429 10:54:36 م File: c:\windows\system32\srsvc.dll ok scanned
17/12/1429 10:54:36 م Running module: svchost.exe\POWRPROF.dll ok scanned
17/12/1429 10:54:36 م File: c:\windows\system32\POWRPROF.dll ok scanned
17/12/1429 10:54:36 م Running module: svchost.exe\pchsvc.dll ok scanned
17/12/1429 10:54:36 م File: c:\windows\pchealth\helpctr\binaries\pchsvc.dll ok scanned
17/12/1429 10:54:36 م Running module: svchost.exe\WINSTA.dll ok scanned
17/12/1429 10:54:36 م File: C:\WINDOWS\system32\WINSTA.dll ok scanned
17/12/1429 10:54:36 م Running module: svchost.exe\CLBCATQ.DLL ok scanned
17/12/1429 10:54:36 م File: C:\WINDOWS\system32\CLBCATQ.DLL ok scanned
17/12/1429 10:54:36 م Running module: svchost.exe\COMRes.dll ok scanned
17/12/1429 10:54:36 م File: C:\WINDOWS\system32\COMRes.dll ok scanned
17/12/1429 10:54:36 م Running module: svchost.exe\dmserver.dll ok scanned
17/12/1429 10:54:36 م File: c:\windows\system32\dmserver.dll ok scanned
17/12/1429 10:54:36 م Running module: svchost.exe\SETUPAPI.dll ok scanned
17/12/1429 10:54:36 م File: c:\windows\system32\SETUPAPI.dll ok scanned
17/12/1429 10:54:36 م Running module: svchost.exe\wbemcore.dll ok scanned
17/12/1429 10:54:36 م File: C:\WINDOWS\system32\wbem\wbemcore.dll ok scanned
17/12/1429 10:54:36 م Running module: svchost.exe\MSVCP60.dll ok scanned
17/12/1429 10:54:36 م File: C:\WINDOWS\system32\MSVCP60.dll ok scanned
17/12/1429 10:54:36 م Running module: svchost.exe\esscli.dll ok scanned
17/12/1429 10:54:36 م File: C:\WINDOWS\system32\wbem\esscli.dll ok scanned
17/12/1429 10:54:36 م Running module: svchost.exe\wbemcomn.dll ok scanned
17/12/1429 10:54:36 م File: C:\WINDOWS\system32\wbem\wbemcomn.dll ok scanned
17/12/1429 10:54:36 م Running module: svchost.exe\FastProx.dll ok scanned
17/12/1429 10:54:36 م File: C:\WINDOWS\system32\wbem\FastProx.dll ok scanned
17/12/1429 10:54:36 م Running module: svchost.exe\NTDSAPI.dll ok scanned
17/12/1429 10:54:36 م File: C:\WINDOWS\system32\NTDSAPI.dll ok scanned
17/12/1429 10:54:36 م Running module: svchost.exe\DNSAPI.dll ok scanned
17/12/1429 10:54:36 م File: C:\WINDOWS\system32\DNSAPI.dll ok scanned
17/12/1429 10:54:36 م Running module: svchost.exe\WS2_32.dll ok scanned
17/12/1429 10:54:36 م File: C:\WINDOWS\system32\WS2_32.dll ok scanned
17/12/1429 10:54:36 م Running module: svchost.exe\WS2HELP.dll ok scanned
17/12/1429 10:54:36 م File: C:\WINDOWS\system32\WS2HELP.dll ok scanned
17/12/1429 10:54:36 م Running module: svchost.exe\wmiutils.dll ok scanned
17/12/1429 10:54:36 م File: C:\WINDOWS\system32\wbem\wmiutils.dll ok scanned
17/12/1429 10:54:36 م Running module: svchost.exe\repdrvfs.dll ok scanned
17/12/1429 10:54:36 م File: C:\WINDOWS\system32\wbem\repdrvfs.dll ok scanned
17/12/1429 10:54:36 م Running module: svchost.exe\wmiprvsd.dll ok scanned
17/12/1429 10:54:36 م File: C:\WINDOWS\system32\wbem\wmiprvsd.dll ok scanned
17/12/1429 10:54:36 م Running module: svchost.exe\NCObjAPI.DLL ok scanned
17/12/1429 10:54:36 م File: C:\WINDOWS\system32\NCObjAPI.DLL ok scanned
17/12/1429 10:54:36 م Running module: svchost.exe\wbemess.dll ok scanned
17/12/1429 10:54:36 م File: C:\WINDOWS\system32\wbem\wbemess.dll ok scanned
17/12/1429 10:54:36 م Running module: svchost.exe\rsaenh.dll ok scanned
17/12/1429 10:54:36 م File: C:\WINDOWS\system32\rsaenh.dll ok scanned
17/12/1429 10:54:36 م Running module: svchost.exe\ncprov.dll ok scanned
17/12/1429 10:54:36 م File: C:\WINDOWS\system32\wbem\ncprov.dll ok scanned
17/12/1429 10:54:36 م Running module: svchost.exe\wbemcons.dll ok scanned
17/12/1429 10:54:36 م File: C:\WINDOWS\system32\wbem\wbemcons.dll ok scanned
17/12/1429 10:54:36 م Running module: svchost.exe\WTSAPI32.dll ok scanned
17/12/1429 10:54:36 م File: C:\WINDOWS\system32\WTSAPI32.dll ok scanned
17/12/1429 10:54:36 م Running module: ZcfgSvc.exe\ZcfgSvc.exe ok scanned
17/12/1429 10:54:37 م File: C:\Program Files\Intel\Wireless\Bin\ZcfgSvc.exe detected virus 'Worm.Win32.Mabezat.b'
17/12/1429 10:54:37 م File: C:\Program Files\Intel\Wireless\Bin\ZcfgSvc.exe backed up
17/12/1429 10:54:37 م File: C:\Program Files\Intel\Wireless\Bin\ZcfgSvc.exe detected virus 'Worm.Win32.Mabezat.b'
17/12/1429 10:54:37 م File: C:\Program Files\Intel\Wireless\Bin\ZcfgSvc.exe disinfected virus 'Worm.Win32.Mabezat.b'
17/12/1429 10:54:37 م File: C:\Program Files\Intel\Wireless\Bin\ZcfgSvc.exe will be disinfected on system restart
17/12/1429 10:54:37 م Running module: ZcfgSvc.exe\ntdll.dll ok scanned
17/12/1429 10:54:37 م File: C:\WINDOWS\system32\ntdll.dll ok scanned
17/12/1429 10:54:37 م Running module: ZcfgSvc.exe\kernel32.dll ok scanned
17/12/1429 10:54:37 م File: C:\WINDOWS\system32\kernel32.dll ok scanned
17/12/1429 10:54:37 م Running module: ZcfgSvc.exe\PfMgrApi.dll ok scanned
17/12/1429 10:54:37 م File: C:\Program Files\Intel\Wireless\Bin\PfMgrApi.dll ok scanned
17/12/1429 10:54:37 م Running module: ZcfgSvc.exe\TraceAPI.DLL ok scanned
17/12/1429 10:54:37 م File: C:\Program Files\Intel\Wireless\Bin\TraceAPI.DLL ok scanned
17/12/1429 10:54:37 م Running module: ZcfgSvc.exe\PsRegApi.dll ok scanned
17/12/1429 10:54:37 م File: C:\Program Files\Intel\Wireless\Bin\PsRegApi.dll ok scanned
17/12/1429 10:54:37 م Running module: ZcfgSvc.exe\SETUPAPI.dll ok scanned
17/12/1429 10:54:38 م File: C:\WINDOWS\system32\SETUPAPI.dll ok scanned
17/12/1429 10:54:38 م Running module: ZcfgSvc.exe\ADVAPI32.dll ok scanned
17/12/1429 10:54:38 م File: C:\WINDOWS\system32\ADVAPI32.dll ok scanned
17/12/1429 10:54:38 م Running module: ZcfgSvc.exe\RPCRT4.dll ok scanned
17/12/1429 10:54:38 م File: C:\WINDOWS\system32\RPCRT4.dll ok scanned
17/12/1429 10:54:38 م Running module: ZcfgSvc.exe\Secur32.dll ok scanned
17/12/1429 10:54:38 م File: C:\WINDOWS\system32\Secur32.dll ok scanned
17/12/1429 10:54:38 م Running module: ZcfgSvc.exe\GDI32.dll ok scanned
17/12/1429 10:54:38 م File: C:\WINDOWS\system32\GDI32.dll ok scanned
17/12/1429 10:54:38 م Running module: ZcfgSvc.exe\USER32.dll ok scanned
17/12/1429 10:54:38 م File: C:\WINDOWS\system32\USER32.dll ok scanned
17/12/1429 10:54:38 م Running module: ZcfgSvc.exe\msvcrt.dll ok scanned
17/12/1429 10:54:38 م File: C:\WINDOWS\system32\msvcrt.dll ok scanned
17/12/1429 10:54:38 م Running module: ZcfgSvc.exe\WINSPOOL.DRV ok scanned
17/12/1429 10:54:38 م File: C:\WINDOWS\system32\WINSPOOL.DRV ok scanned
17/12/1429 10:54:38 م Running module: ZcfgSvc.exe\COMCTL32.dll ok scanned
17/12/1429 10:54:38 م File: C:\WINDOWS\system32\COMCTL32.dll ok scanned
17/12/1429 10:54:38 م Running module: ZcfgSvc.exe\ole32.dll ok scanned
17/12/1429 10:54:38 م File: C:\WINDOWS\system32\ole32.dll ok scanned
17/12/1429 10:54:38 م Running module: ZcfgSvc.exe\OLEAUT32.dll ok scanned
17/12/1429 10:54:38 م File: C:\WINDOWS\system32\OLEAUT32.dll ok scanned
17/12/1429 10:54:38 م Running module: ZcfgSvc.exe\ATL.DLL ok scanned
17/12/1429 10:54:38 م File: C:\WINDOWS\system32\ATL.DLL ok scanned
17/12/1429 10:54:38 م Running module: ZcfgSvc.exe\SHLWAPI.dll ok scanned
17/12/1429 10:54:38 م File: C:\WINDOWS\system32\SHLWAPI.dll ok scanned
17/12/1429 10:54:38 م Running module: ZcfgSvc.exe\SHELL32.dll ok scanned
17/12/1429 10:54:38 م File: C:\WINDOWS\system32\SHELL32.dll ok scanned
17/12/1429 10:54:38 م Running module: ZcfgSvc.exe\MurocApi.dll ok scanned
17/12/1429 10:54:38 م File: C:\Program Files\Intel\Wireless\Bin\MurocApi.dll ok scanned
17/12/1429 10:54:38 م Running module: ZcfgSvc.exe\S24MUDLL.dll ok scanned
17/12/1429 10:54:38 م File: C:\Program Files\Intel\Wireless\Bin\S24MUDLL.dll ok scanned
17/12/1429 10:54:38 م Running module: ZcfgSvc.exe\VERSION.dll ok scanned
17/12/1429 10:54:38 م File: C:\WINDOWS\system32\VERSION.dll ok scanned
17/12/1429 10:54:38 م Running module: ZcfgSvc.exe\C1XStngs.dll ok scanned
17/12/1429 10:54:38 م File: C:\Program Files\Intel\Wireless\Bin\C1XStngs.dll ok scanned
17/12/1429 10:54:38 م Running module: ZcfgSvc.exe\CRYPT32.dll ok scanned
17/12/1429 10:54:38 م File: C:\WINDOWS\system32\CRYPT32.dll ok scanned
17/12/1429 10:54:38 م Running module: ZcfgSvc.exe\MSASN1.dll ok scanned
17/12/1429 10:54:38 م File: C:\WINDOWS\system32\MSASN1.dll ok scanned
17/12/1429 10:54:38 م Running module: ZcfgSvc.exe\LIBEAY32.dll ok scanned
17/12/1429 10:54:38 م File: C:\Program Files\Intel\Wireless\Bin\LIBEAY32.dll ok scanned
17/12/1429 10:54:38 م Running module: ZcfgSvc.exe\WSOCK32.dll ok scanned
17/12/1429 10:54:38 م File: C:\WINDOWS\system32\WSOCK32.dll ok scanned
17/12/1429 10:54:38 م Running module: ZcfgSvc.exe\WS2_32.dll ok scanned
17/12/1429 10:54:38 م File: C:\WINDOWS\system32\WS2_32.dll ok scanned
17/12/1429 10:54:38 م Running module: ZcfgSvc.exe\WS2HELP.dll ok scanned
17/12/1429 10:54:38 م File: C:\WINDOWS\system32\WS2HELP.dll ok scanned
17/12/1429 10:54:38 م Running module: ZcfgSvc.exe\comdlg32.dll ok scanned
17/12/1429 10:54:38 م File: C:\WINDOWS\system32\comdlg32.dll ok scanned
17/12/1429 10:54:38 م Running module: ZcfgSvc.exe\oledlg.dll ok scanned
17/12/1429 10:54:38 م File: C:\WINDOWS\system32\oledlg.dll ok scanned
17/12/1429 10:54:38 م Running module: ZcfgSvc.exe\OLEPRO32.DLL ok scanned
17/12/1429 10:54:38 م File: C:\WINDOWS\system32\OLEPRO32.DLL ok scanned
17/12/1429 10:54:38 م Running module: ZcfgSvc.exe\IMM32.DLL ok scanned
17/12/1429 10:54:38 م File: C:\WINDOWS\system32\IMM32.DLL ok scanned
17/12/1429 10:54:38 م Running module: ZcfgSvc.exe\LPK.DLL ok scanned
17/12/1429 10:54:38 م File: C:\WINDOWS\system32\LPK.DLL ok scanned
17/12/1429 10:54:38 م Running module: ZcfgSvc.exe\USP10.dll ok scanned
17/12/1429 10:54:38 م File: C:\WINDOWS\system32\USP10.dll ok scanned
17/12/1429 10:54:38 م Running module: ZcfgSvc.exe\comctl32.dll ok scanned
17/12/1429 10:54:38 م File: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll ok scanned
17/12/1429 10:54:38 م Running module: ZcfgSvc.exe\LSAWRAPI.dll ok scanned
17/12/1429 10:54:39 م File: C:\Program Files\Intel\Wireless\Bin\LSAWRAPI.dll ok scanned
17/12/1429 10:54:39 م Running module: ZcfgSvc.exe\tazebama.dll ok scanned
17/12/1429 10:54:39 م File: C:\Documents and Settings\tazebama.dll detected virus 'Worm.Win32.Mabezat.b'
17/12/1429 10:54:39 م File: C:\Documents and Settings\tazebama.dll backed up
17/12/1429 10:54:39 م File: C:\Documents and Settings\tazebama.dll will be deleted on system restart
17/12/1429 10:54:41 م Running module: ZcfgSvc.exe\Apphelp.dll ok scanned
17/12/1429 10:54:41 م File: C:\WINDOWS\system32\Apphelp.dll ok scanned
17/12/1429 10:54:41 م Running module: ZcfgSvc.exe\msctfime.ime ok scanned
17/12/1429 10:54:41 م File: C:\WINDOWS\system32\msctfime.ime ok scanned
17/12/1429 10:54:41 م Running module: ZcfgSvc.exe\USERENV.dll ok scanned
17/12/1429 10:54:41 م File: C:\WINDOWS\system32\USERENV.dll ok scanned
17/12/1429 10:54:41 م Running module: ZcfgSvc.exe\netapi32.dll ok scanned
17/12/1429 10:54:41 م File: C:\WINDOWS\system32\netapi32.dll ok scanned
17/12/1429 10:54:41 م Running module: ZcfgSvc.exe\WTSAPI32.dll ok scanned
17/12/1429 10:54:41 م File: C:\WINDOWS\system32\WTSAPI32.dll ok scanned
17/12/1429 10:54:41 م Running module: ZcfgSvc.exe\WINSTA.dll ok scanned
17/12/1429 10:54:41 م File: C:\WINDOWS\system32\WINSTA.dll ok scanned
17/12/1429 10:54:41 م Running module: ZcfgSvc.exe\CLBCATQ.DLL ok scanned
17/12/1429 10:54:41 م File: C:\WINDOWS\system32\CLBCATQ.DLL ok scanned
17/12/1429 10:54:41 م Running module: ZcfgSvc.exe\COMRes.dll ok scanned
17/12/1429 10:54:41 م File: C:\WINDOWS\system32\COMRes.dll ok scanned
17/12/1429 10:54:41 م Running module: ZcfgSvc.exe\rsaenh.dll ok scanned
17/12/1429 10:54:41 م File: C:\WINDOWS\system32\rsaenh.dll ok scanned
17/12/1429 10:54:41 م Running module: explorer.exe\Explorer.EXE ok scanned
17/12/1429 10:54:42 م File: C:\WINDOWS\Explorer.EXE ok scanned
17/12/1429 10:54:42 م Running module: explorer.exe\ntdll.dll ok scanned
17/12/1429 10:54:42 م File: C:\WINDOWS\system32\ntdll.dll ok scanned
17/12/1429 10:54:42 م Running module: explorer.exe\kernel32.dll ok scanned
17/12/1429 10:54:42 م File: C:\WINDOWS\system32\kernel32.dll ok scanned
17/12/1429 10:54:42 م Running module: explorer.exe\ADVAPI32.dll ok scanned
17/12/1429 10:54:42 م File: C:\WINDOWS\system32\ADVAPI32.dll ok scanned
17/12/1429 10:54:42 م Running module: explorer.exe\RPCRT4.dll ok scanned
17/12/1429 10:54:42 م File: C:\WINDOWS\system32\RPCRT4.dll ok scanned
17/12/1429 10:54:42 م Running module: explorer.exe\Secur32.dll ok scanned
17/12/1429 10:54:42 م File: C:\WINDOWS\system32\Secur32.dll ok scanned
17/12/1429 10:54:42 م Running module: explorer.exe\BROWSEUI.dll ok scanned
17/12/1429 10:54:42 م File: C:\WINDOWS\system32\BROWSEUI.dll ok scanned
17/12/1429 10:54:42 م Running module: explorer.exe\GDI32.dll ok scanned
17/12/1429 10:54:42 م File: C:\WINDOWS\system32\GDI32.dll ok scanned
17/12/1429 10:54:42 م Running module: explorer.exe\USER32.dll ok scanned
17/12/1429 10:54:42 م File: C:\WINDOWS\system32\USER32.dll ok scanned
17/12/1429 10:54:42 م Running module: explorer.exe\msvcrt.dll ok scanned
17/12/1429 10:54:42 م File: C:\WINDOWS\system32\msvcrt.dll ok scanned
17/12/1429 10:54:42 م Running module: explorer.exe\ole32.dll ok scanned
17/12/1429 10:54:42 م File: C:\WINDOWS\system32\ole32.dll ok scanned
17/12/1429 10:54:42 م Running module: explorer.exe\SHLWAPI.dll ok scanned
17/12/1429 10:54:42 م File: C:\WINDOWS\system32\SHLWAPI.dll ok scanned
17/12/1429 10:54:42 م Running module: explorer.exe\OLEAUT32.dll ok scanned
17/12/1429 10:54:42 م File: C:\WINDOWS\system32\OLEAUT32.dll ok scanned
17/12/1429 10:54:42 م Running module: explorer.exe\SHDOCVW.dll ok scanned
17/12/1429 10:54:43 م File: C:\WINDOWS\system32\SHDOCVW.dll ok scanned
17/12/1429 10:54:43 م Running module: explorer.exe\CRYPT32.dll ok scanned
17/12/1429 10:54:43 م File: C:\WINDOWS\system32\CRYPT32.dll ok scanned
17/12/1429 10:54:43 م Running module: explorer.exe\MSASN1.dll ok scanned
17/12/1429 10:54:43 م File: C:\WINDOWS\system32\MSASN1.dll ok scanned
17/12/1429 10:54:43 م Running module: explorer.exe\CRYPTUI.dll ok scanned
17/12/1429 10:54:43 م File: C:\WINDOWS\system32\CRYPTUI.dll ok scanned
17/12/1429 10:54:43 م Running module: explorer.exe\NETAPI32.dll ok scanned
17/12/1429 10:54:43 م File: C:\WINDOWS\system32\NETAPI32.dll ok scanned
17/12/1429 10:54:43 م Running module: explorer.exe\VERSION.dll ok scanned
17/12/1429 10:54:43 م File: C:\WINDOWS\system32\VERSION.dll ok scanned
17/12/1429 10:54:43 م Running module: explorer.exe\WININET.dll ok scanned
17/12/1429 10:54:43 م File: C:\WINDOWS\system32\WININET.dll packed file PE_Patch
17/12/1429 10:54:43 م File: C:\WINDOWS\system32\WININET.dll//PE_Patch ok scanned
17/12/1429 10:54:43 م File: C:\WINDOWS\system32\WININET.dll ok scanned
17/12/1429 10:54:43 م Running module: explorer.exe\Normaliz.dll ok scanned
17/12/1429 10:54:43 م File: C:\WINDOWS\system32\Normaliz.dll ok scanned
17/12/1429 10:54:43 م Running module: explorer.exe\iertutil.dll ok scanned
17/12/1429 10:54:43 م File: C:\WINDOWS\system32\iertutil.dll ok scanned
17/12/1429 10:54:43 م Running module: explorer.exe\WINTRUST.dll ok scanned
17/12/1429 10:54:43 م File: C:\WINDOWS\system32\WINTRUST.dll ok scanned
17/12/1429 10:54:43 م Running module: explorer.exe\IMAGEHLP.dll ok scanned
17/12/1429 10:54:43 م File: C:\WINDOWS\system32\IMAGEHLP.dll ok scanned
17/12/1429 10:54:43 م Running module: explorer.exe\WLDAP32.dll ok scanned
17/12/1429 10:54:43 م File: C:\WINDOWS\system32\WLDAP32.dll ok scanned
17/12/1429 10:54:43 م Running module: explorer.exe\SHELL32.dll ok scanned
17/12/1429 10:54:43 م File: C:\WINDOWS\system32\SHELL32.dll ok scanned
17/12/1429 10:54:43 م Running module: explorer.exe\UxTheme.dll ok scanned
17/12/1429 10:54:43 م File: C:\WINDOWS\system32\UxTheme.dll ok scanned
17/12/1429 10:54:43 م Running module: explorer.exe\ShimEng.dll ok scanned
17/12/1429 10:54:43 م File: C:\WINDOWS\system32\ShimEng.dll ok scanned
17/12/1429 10:54:43 م Running module: explorer.exe\AcGenral.DLL ok scanned
17/12/1429 10:54:43 م File: C:\WINDOWS\AppPatch\AcGenral.DLL ok scanned
17/12/1429 10:54:43 م Running module: explorer.exe\WINMM.dll ok scanned
17/12/1429 10:54:43 م File: C:\WINDOWS\system32\WINMM.dll ok scanned
17/12/1429 10:54:43 م Running module: explorer.exe\MSACM32.dll ok scanned
17/12/1429 10:54:43 م File: C:\WINDOWS\system32\MSACM32.dll ok scanned
17/12/1429 10:54:43 م Running module: explorer.exe\USERENV.dll ok scanned
17/12/1429 10:54:43 م File: C:\WINDOWS\system32\USERENV.dll ok scanned
17/12/1429 10:54:43 م Running module: explorer.exe\IMM32.DLL ok scanned
17/12/1429 10:54:43 م File: C:\WINDOWS\system32\IMM32.DLL ok scanned
17/12/1429 10:54:43 م Running module: explorer.exe\LPK.DLL ok scanned
17/12/1429 10:54:43 م File: C:\WINDOWS\system32\LPK.DLL ok scanned
17/12/1429 10:54:43 م Running module: explorer.exe\USP10.dll ok scanned
17/12/1429 10:54:43 م File: C:\WINDOWS\system32\USP10.dll ok scanned
17/12/1429 10:54:43 م Running module: explorer.exe\comctl32.dll ok scanned
17/12/1429 10:54:43 م File: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll ok scanned
17/12/1429 10:54:43 م Running module: explorer.exe\comctl32.dll ok scanned
17/12/1429 10:54:43 م File: C:\WINDOWS\system32\comctl32.dll ok scanned
17/12/1429 10:54:43 م Running module: explorer.exe\msctfime.ime ok scanned
17/12/1429 10:54:43 م File: C:\WINDOWS\system32\msctfime.ime ok scanned
17/12/1429 10:54:43 م Running module: explorer.exe\appHelp.dll ok scanned
17/12/1429 10:54:43 م File: C:\WINDOWS\system32\appHelp.dll ok scanned
17/12/1429 10:54:43 م Running module: explorer.exe\CLBCATQ.DLL ok scanned
17/12/1429 10:54:43 م File: C:\WINDOWS\system32\CLBCATQ.DLL ok scanned
17/12/1429 10:54:43 م Running module: explorer.exe\COMRes.dll ok scanned
17/12/1429 10:54:43 م File: C:\WINDOWS\system32\COMRes.dll ok scanned
17/12/1429 10:54:43 م Running module: explorer.exe\cscui.dll ok scanned
17/12/1429 10:54:43 م File: C:\WINDOWS\System32\cscui.dll ok scanned
17/12/1429 10:54:43 م Running module: explorer.exe\CSCDLL.dll ok scanned
17/12/1429 10:54:43 م File: C:\WINDOWS\System32\CSCDLL.dll ok scanned
17/12/1429 10:54:43 م Running module: explorer.exe\themeui.dll ok scanned
17/12/1429 10:54:43 م File: C:\WINDOWS\system32\themeui.dll ok scanned
17/12/1429 10:54:43 م Running module: explorer.exe\MSIMG32.dll ok scanned
17/12/1429 10:54:43 م File: C:\WINDOWS\system32\MSIMG32.dll ok scanned
17/12/1429 10:54:43 م Running module: explorer.exe\xpsp2res.dll ok scanned
17/12/1429 10:54:43 م File: C:\WINDOWS\system32\xpsp2res.dll ok scanned
17/12/1429 10:54:43 م Running module: explorer.exe\msutb.dll ok scanned
17/12/1429 10:54:43 م File: C:\WINDOWS\system32\msutb.dll ok scanned
17/12/1429 10:54:43 م Running module: explorer.exe\MSCTF.dll ok scanned
17/12/1429 10:54:43 م File: C:\WINDOWS\system32\MSCTF.dll ok scanned
17/12/1429 10:54:43 م Running module: explorer.exe\LINKINFO.dll ok scanned
17/12/1429 10:54:43 م File: C:\WINDOWS\system32\LINKINFO.dll ok scanned
17/12/1429 10:54:43 م Running module: explorer.exe\ntshrui.dll ok scanned
17/12/1429 10:54:43 م File: C:\WINDOWS\system32\ntshrui.dll ok scanned
17/12/1429 10:54:43 م Running module: explorer.exe\ATL.DLL ok scanned
17/12/1429 10:54:43 م File: C:\WINDOWS\system32\ATL.DLL ok scanned
17/12/1429 10:54:43 م Running module: explorer.exe\SETUPAPI.dll ok scanned
17/12/1429 10:54:43 م File: C:\WINDOWS\system32\SETUPAPI.dll ok scanned
17/12/1429 10:54:43 م Running module: explorer.exe\ieframe.dll ok scanned
17/12/1429 10:54:44 م File: C:\WINDOWS\system32\ieframe.dll ok scanned
17/12/1429 10:54:44 م Running module: explorer.exe\PSAPI.DLL ok scanned
17/12/1429 10:54:44 م File: C:\WINDOWS\system32\PSAPI.DLL ok scanned
17/12/1429 10:54:44 م Running module: explorer.exe\WINSTA.dll ok scanned
17/12/1429 10:54:44 م File: C:\WINDOWS\system32\WINSTA.dll ok scanned
17/12/1429 10:54:44 م Running module: explorer.exe\NETSHELL.dll ok scanned
17/12/1429 10:54:45 م File: C:\WINDOWS\system32\NETSHELL.dll ok scanned
17/12/1429 10:54:45 م Running module: explorer.exe\credui.dll ok scanned
17/12/1429 10:54:45 م File: C:\WINDOWS\system32\credui.dll ok scanned
17/12/1429 10:54:45 م Running module: explorer.exe\dot3api.dll ok scanned
17/12/1429 10:54:45 م File: C:\WINDOWS\system32\dot3api.dll ok scanned
17/12/1429 10:54:45 م Running module: explorer.exe\rtutils.dll ok scanned
17/12/1429 10:54:45 م File: C:\WINDOWS\system32\rtutils.dll ok scanned
17/12/1429 10:54:45 م Running module: explorer.exe\dot3dlg.dll ok scanned
17/12/1429 10:54:45 م File: C:\WINDOWS\system32\dot3dlg.dll ok scanned
17/12/1429 10:54:45 م Running module: explorer.exe\OneX.DLL ok scanned
17/12/1429 10:54:45 م File: C:\WINDOWS\system32\OneX.DLL ok scanned
17/12/1429 10:54:45 م Running module: explorer.exe\WTSAPI32.dll ok scanned
17/12/1429 10:54:45 م File: C:\WINDOWS\system32\WTSAPI32.dll ok scanned
17/12/1429 10:54:45 م Running module: explorer.exe\eappcfg.dll ok scanned
17/12/1429 10:54:45 م File: C:\WINDOWS\system32\eappcfg.dll ok scanned
17/12/1429 10:54:45 م Running module: explorer.exe\MSVCP60.dll ok scanned
17/12/1429 10:54:45 م File: C:\WINDOWS\system32\MSVCP60.dll ok scanned
17/12/1429 10:54:45 م Running module: explorer.exe\eappprxy.dll ok scanned
17/12/1429 10:54:45 م File: C:\WINDOWS\system32\eappprxy.dll ok scanned
17/12/1429 10:54:45 م Running module: explorer.exe\iphlpapi.dll ok scanned
17/12/1429 10:54:45 م File: C:\WINDOWS\system32\iphlpapi.dll ok scanned
17/12/1429 10:54:45 م Running module: explorer.exe\WS2_32.dll ok scanned
17/12/1429 10:54:45 م File: C:\WINDOWS\system32\WS2_32.dll ok scanned
17/12/1429 10:54:45 م Running module: explorer.exe\WS2HELP.dll ok scanned
17/12/1429 10:54:45 م File: C:\WINDOWS\system32\WS2HELP.dll ok scanned
17/12/1429 10:54:45 م Running module: explorer.exe\msi.dll ok scanned
17/12/1429 10:54:46 م File: C:\WINDOWS\system32\msi.dll ok scanned
17/12/1429 10:54:46 م Running module: explorer.exe\browselc.dll ok scanned
17/12/1429 10:54:46 م File: C:\WINDOWS\system32\browselc.dll archive EmbeddedHTML
17/12/1429 10:54:46 م File: C:\WINDOWS\system32\browselc.dll//data0001.html ok scanned
17/12/1429 10:54:46 م File: C:\WINDOWS\system32\browselc.dll//data0002.html ok scanned
17/12/1429 10:54:46 م File: C:\WINDOWS\system32\browselc.dll//data0003.html ok scanned
17/12/1429 10:54:46 م File: C:\WINDOWS\system32\browselc.dll ok scanned
17/12/1429 10:54:46 م Running module: explorer.exe\urlmon.dll ok scanned
17/12/1429 10:54:46 م File: C:\WINDOWS\system32\urlmon.dll ok scanned
17/12/1429 10:54:46 م Running module: explorer.exe\MLANG.dll ok scanned
17/12/1429 10:54:46 م File: C:\WINDOWS\system32\MLANG.dll ok scanned
17/12/1429 10:54:46 م Running module: explorer.exe\rsaenh.dll ok scanned
17/12/1429 10:54:46 م File: C:\WINDOWS\system32\rsaenh.dll ok scanned
17/12/1429 10:54:46 م Running module: explorer.exe\MPR.dll ok scanned
17/12/1429 10:54:46 م File: C:\WINDOWS\system32\MPR.dll ok scanned
17/12/1429 10:54:46 م Running module: explorer.exe\drprov.dll ok scanned
17/12/1429 10:54:46 م File: C:\WINDOWS\System32\drprov.dll ok scanned
17/12/1429 10:54:46 م Running module: explorer.exe\ntlanman.dll ok scanned
17/12/1429 10:54:46 م File: C:\WINDOWS\System32\ntlanman.dll ok scanned
17/12/1429 10:54:46 م Running module: explorer.exe\NETUI0.dll ok scanned
17/12/1429 10:54:46 م File: C:\WINDOWS\System32\NETUI0.dll ok scanned
17/12/1429 10:54:46 م Running module: explorer.exe\NETUI1.dll ok scanned
17/12/1429 10:54:46 م File: C:\WINDOWS\System32\NETUI1.dll ok scanned
17/12/1429 10:54:46 م Running module: explorer.exe\NETRAP.dll ok scanned
17/12/1429 10:54:46 م File: C:\WINDOWS\System32\NETRAP.dll ok scanned
17/12/1429 10:54:46 م Running module: explorer.exe\SAMLIB.dll ok scanned
17/12/1429 10:54:46 م File: C:\WINDOWS\System32\SAMLIB.dll ok scanned
17/12/1429 10:54:46 م Running module: explorer.exe\davclnt.dll ok scanned
17/12/1429 10:54:46 م File: C:\WINDOWS\System32\davclnt.dll ok scanned
17/12/1429 10:54:46 م Running module: tazebama.dl_\tazebama.dl_ ok scanned
17/12/1429 10:54:46 م File: C:\Documents and Settings\tazebama.dl_ detected virus 'Worm.Win32.Mabezat.b'
17/12/1429 10:54:46 م File: C:\Documents and Settings\tazebama.dl_ backed up
17/12/1429 10:54:46 م File: C:\Documents and Settings\tazebama.dl_ will be deleted on system restart
17/12/1429 10:54:46 م Running module: tazebama.dl_\ntdll.dll ok scanned
17/12/1429 10:54:46 م File: C:\WINDOWS\system32\ntdll.dll ok scanned
17/12/1429 10:54:46 م Running module: tazebama.dl_\kernel32.dll ok scanned
17/12/1429 10:54:47 م File: C:\WINDOWS\system32\kernel32.dll ok scanned
17/12/1429 10:54:47 م Running module: tazebama.dl_\MSVCRT.dll ok scanned
17/12/1429 10:54:47 م File: C:\WINDOWS\system32\MSVCRT.dll ok scanned
17/12/1429 10:54:47 م Running module: tazebama.dl_\USER32.dll ok scanned
17/12/1429 10:54:47 م File: C:\WINDOWS\system32\USER32.dll ok scanned
17/12/1429 10:54:47 م Running module: tazebama.dl_\GDI32.dll ok scanned
17/12/1429 10:54:47 م File: C:\WINDOWS\system32\GDI32.dll ok scanned
17/12/1429 10:54:47 م Running module: tazebama.dl_\IMM32.DLL ok scanned
17/12/1429 10:54:47 م File: C:\WINDOWS\system32\IMM32.DLL ok scanned
17/12/1429 10:54:47 م Running module: tazebama.dl_\ADVAPI32.dll ok scanned
17/12/1429 10:54:47 م File: C:\WINDOWS\system32\ADVAPI32.dll ok scanned
17/12/1429 10:54:47 م Running module: tazebama.dl_\RPCRT4.dll ok scanned
17/12/1429 10:54:47 م File: C:\WINDOWS\system32\RPCRT4.dll ok scanned
17/12/1429 10:54:47 م Running module: tazebama.dl_\Secur32.dll ok scanned
17/12/1429 10:54:47 م File: C:\WINDOWS\system32\Secur32.dll ok scanned
17/12/1429 10:54:47 م Running module: tazebama.dl_\LPK.DLL ok scanned
17/12/1429 10:54:47 م File: C:\WINDOWS\system32\LPK.DLL ok scanned
17/12/1429 10:54:47 م Running module: tazebama.dl_\USP10.dll ok scanned
17/12/1429 10:54:47 م File: C:\WINDOWS\system32\USP10.dll ok scanned
17/12/1429 10:54:47 م Running module: tazebama.dl_\Netapi32.dll ok scanned
17/12/1429 10:54:47 م File: C:\WINDOWS\system32\Netapi32.dll ok scanned
17/12/1429 10:54:47 م Running module: tazebama.dl_\mpr.dll ok scanned
17/12/1429 10:54:47 م File: C:\WINDOWS\system32\mpr.dll ok scanned
17/12/1429 10:54:47 م Running module: tazebama.dl_\shell32.dll ok scanned
17/12/1429 10:54:47 م File: C:\WINDOWS\system32\shell32.dll ok scanned
17/12/1429 10:54:47 م Running module: tazebama.dl_\SHLWAPI.dll ok scanned
17/12/1429 10:54:47 م File: C:\WINDOWS\system32\SHLWAPI.dll ok scanned
17/12/1429 10:54:47 م Running module: tazebama.dl_\comctl32.dll ok scanned
17/12/1429 10:54:47 م File: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll ok scanned
17/12/1429 10:54:47 م Running module: tazebama.dl_\comctl32.dll ok scanned
17/12/1429 10:54:47 م File: C:\WINDOWS\system32\comctl32.dll ok scanned
17/12/1429 10:54:47 م Running module: tazebama.dl_\wininet.dll ok scanned
17/12/1429 10:54:47 م File: C:\WINDOWS\system32\wininet.dll packed file PE_Patch
17/12/1429 10:54:47 م File: C:\WINDOWS\system32\wininet.dll//PE_Patch ok scanned
17/12/1429 10:54:47 م File: C:\WINDOWS\system32\wininet.dll ok scanned
17/12/1429 10:54:47 م Running module: tazebama.dl_\Normaliz.dll ok scanned
17/12/1429 10:54:47 م File: C:\WINDOWS\system32\Normaliz.dll ok scanned
17/12/1429 10:54:47 م Running module: tazebama.dl_\iertutil.dll ok scanned
17/12/1429 10:54:47 م File: C:\WINDOWS\system32\iertutil.dll ok scanned
17/12/1429 10:54:47 م Running module: tazebama.dl_\ole32.dll ok scanned
17/12/1429 10:54:47 م File: C:\WINDOWS\system32\ole32.dll ok scanned
17/12/1429 10:54:47 م Running module: tazebama.dl_\MAPI32.DLL ok scanned
17/12/1429 10:54:47 م File: C:\WINDOWS\system32\MAPI32.DLL ok scanned
17/12/1429 10:54:47 م Running module: tazebama.dl_\CLBCATQ.DLL ok scanned
17/12/1429 10:54:47 م File: C:\WINDOWS\system32\CLBCATQ.DLL ok scanned
17/12/1429 10:54:47 م Running module: tazebama.dl_\COMRes.dll ok scanned
17/12/1429 10:54:47 م File: C:\WINDOWS\system32\COMRes.dll ok scanned
17/12/1429 10:54:47 م Running module: tazebama.dl_\OLEAUT32.dll ok scanned
17/12/1429 10:54:47 م File: C:\WINDOWS\system32\OLEAUT32.dll ok scanned
17/12/1429 10:54:47 م Running module: tazebama.dl_\VERSION.dll ok scanned
17/12/1429 10:54:47 م File: C:\WINDOWS\system32\VERSION.dll ok scanned
17/12/1429 10:54:47 م Running module: tazebama.dl_\MSMAPI32.DLL ok scanned
17/12/1429 10:54:47 م File: C:\Program Files\Common Files\SYSTEM\MSMAPI\1025\MSMAPI32.DLL ok scanned
17/12/1429 10:54:47 م Running module: tazebama.dl_\MSVCR80.dll ok scanned
17/12/1429 10:54:47 م File: C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.163_x-ww_681e29fb\MSVCR80.dll ok scanned
17/12/1429 10:54:47 م Running module: tazebama.dl_\olmapi32.dll ok scanned
17/12/1429 10:54:47 م File: C:\Program Files\Microsoft Office\Office12\olmapi32.dll ok scanned
17/12/1429 10:54:47 م Running module: tazebama.dl_\mso.dll ok scanned
17/12/1429 10:54:48 م File: C:\Program Files\Common Files\Microsoft Shared\office12\mso.dll ok scanned
17/12/1429 10:54:48 م Running module: tazebama.dl_\msi.dll ok scanned
17/12/1429 10:54:48 م File: C:\WINDOWS\system32\msi.dll ok scanned
17/12/1429 10:54:48 م Running module: tazebama.dl_\msctfime.ime ok scanned
17/12/1429 10:54:48 م File: C:\WINDOWS\system32\msctfime.ime ok scanned
17/12/1429 10:54:48 م Running module: tazebama.dl_\riched20.dll ok scanned
17/12/1429 10:54:48 م File: C:\Program Files\Common Files\Microsoft Shared\office12\riched20.dll ok scanned
17/12/1429 10:54:48 م Running module: tazebama.dl_\drprov.dll ok scanned
 
ولا عندي طريقه انم تعطيني اميلك وارسلها على الإميل ولا على الماسنجر ؟؟

عشان الملف طويل مره وشكرا
 
ولا اقوول بأرسلك رساله خاصه يمكن مايعلق الجهااز اذا ارسلت

بأحااول وشكرا
 
والله مشكله، يالييت تعطينا كيف اقدر انقلك التقرير لاني جربت الرساله الخاصه نفس الشي علق

وشكرا ..
 
ما نوع المتصفح للي عندك
 
مادري وش نووعه مافهمتك ؟...
 
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


اخوي هذا التقري

والله ماقدرت اعيد الفحص ثانيه لاني اختاج استخدم النت باليل انشاء الله اعيده
 
حذف عندك كمية كبيرة من الاصابة
بس لازم تعيد الفحص مرة ثانية عشان نتاكد من حذف الاصابة بشكل كامل
 
اخوي سويت التقرير بس ماسويتها بالوضع الامن

يعني هو فحص الجهاز انا يوم بقى على الفحص قليل

على طول حفضته

التقرير :
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي
 
اعد الفحص مرة ثالثة :q:
باقي عندك اصابة

وخلي الفحص يكمل للنهاية
 
يالله كل شوي جايتني مشكلة

الحين المشكله مايدخل البرنامج !! اضغط سهم يمييين اوبين بعد مااايشتغل ليه ؟!!.!!
 
عودة
أعلى