jojajo
زيزوومي نشيط
غير متصل
من فضلك قم بتحديث الصفحة لمشاهدة المحتوى المخفي
دة تقرير AVIRA عاوز رايكم بالعلم انا كان عندى Kaspersky internet security 2009 ومشفش الحاجات دية
Avira AntiVir Premium
Report file date: 2009-01-22 20:13
Scanning for 1257460 virus strains and unwanted programs.
Licensed to: Mina Salib
Serial number: 1103466077-PEPWE-0001
Platform: Windows XP
Windows version: (Service Pack 3) [5.1.2600]
Boot mode: Normally booted
Username: SYSTEM
Computer name: OPENSUSE
Version information:
BUILD.DAT : 8.2.0.374 20012 Bytes 21/11/2008 10:11:00
AVSCAN.EXE : 8.1.4.10 315649 Bytes 18/11/2008 07:21:26
AVSCAN.DLL : 8.1.4.0 40705 Bytes 26/05/2008 06:56:40
LUKE.DLL : 8.1.4.5 164097 Bytes 12/06/2008 11:44:19
LUKERES.DLL : 8.1.4.0 12033 Bytes 26/05/2008 06:58:52
ANTIVIR0.VDF : 7.1.0.0 15603712 Bytes 27/10/2008 10:30:36
ANTIVIR1.VDF : 7.1.1.113 2817536 Bytes 14/01/2009 18:06:34
ANTIVIR2.VDF : 7.1.1.148 440832 Bytes 20/01/2009 18:06:47
ANTIVIR3.VDF : 7.1.1.168 315904 Bytes 22/01/2009 18:06:55
Engineversion : 8.2.0.60
AEVDF.DLL : 8.1.0.6 102772 Bytes 14/10/2008 09:05:56
AESCRIPT.DLL : 8.1.1.32 340347 Bytes 22/01/2009 18:07:30
AESCN.DLL : 8.1.1.5 123251 Bytes 07/11/2008 14:06:41
AERDL.DLL : 8.1.1.3 438645 Bytes 04/11/2008 12:58:38
AEPACK.DLL : 8.1.3.5 393588 Bytes 22/01/2009 18:07:26
AEOFFICE.DLL : 8.1.0.33 196987 Bytes 22/01/2009 18:07:21
AEHEUR.DLL : 8.1.0.86 1552759 Bytes 22/01/2009 18:07:18
AEHELP.DLL : 8.1.2.0 119159 Bytes 22/01/2009 18:07:04
AEGEN.DLL : 8.1.1.10 323957 Bytes 22/01/2009 18:07:02
AEEMU.DLL : 8.1.0.9 393588 Bytes 14/10/2008 09:05:56
AECORE.DLL : 8.1.5.2 172405 Bytes 22/01/2009 18:06:57
AEBB.DLL : 8.1.0.3 53618 Bytes 14/10/2008 09:05:56
AVWINLL.DLL : 1.0.0.12 15105 Bytes 09/07/2008 07:40:05
AVPREF.DLL : 8.0.2.0 38657 Bytes 16/05/2008 08:28:01
AVREP.DLL : 8.0.0.2 98344 Bytes 31/07/2008 11:02:15
AVREG.DLL : 8.0.0.1 33537 Bytes 09/05/2008 10:26:40
AVARKT.DLL : 1.0.0.23 307457 Bytes 12/02/2008 07:29:23
AVEVTLOG.DLL : 8.0.0.16 119041 Bytes 12/06/2008 11:27:49
SQLITE3.DLL : 3.3.17.1 339968 Bytes 22/01/2008 16:28:02
SMTPLIB.DLL : 1.2.0.23 28929 Bytes 12/06/2008 11:49:40
NETNT.DLL : 8.0.0.1 7937 Bytes 25/01/2008 11:05:10
RCIMAGE.DLL : 8.0.0.51 2564353 Bytes 12/06/2008 12:29:30
RCTEXT.DLL : 8.0.51.0 86273 Bytes 27/06/2008 10:00:56
Configuration settings for the scan:
Jobname..........................: Complete system scan
Configuration file...............: c:\program files\avira\antivir personaledition premium\sysscan.avp
Logging..........................: low
Primary action...................: repair
Secondary action.................: delete
Scan master boot sector..........: on
Scan boot sector.................: on
Boot sectors.....................: C:, D:, E:, F:, G:,
Process scan.....................: on
Scan registry....................: on
Search for rootkits..............: on
Scan all files...................: All files
Scan archives....................: on
Recursion depth..................: 99
Smart extensions.................: on
Deviating archive types..........: +BSD Mailbox, +Netscape/Mozilla Mailbox, +Eudora Mailbox, +Squid cache, +Pegasus Mailbox, +MS Outlook Mailbox,
Macro heuristic..................: on
File heuristic...................: high
Start of the scan: 2009-01-22 20:13
Starting search for hidden ******s.
'29472' ******s were checked, '0' hidden ******s were found.
The scan of running processes will be started
Scan process 'avscan.exe' - '1' Module(s) have been scanned
Scan process 'avcenter.exe' - '1' Module(s) have been scanned
Scan process 'avgnt.exe' - '1' Module(s) have been scanned
Scan process 'avmailc.exe' - '1' Module(s) have been scanned
Scan process 'wmplayer.exe' - '1' Module(s) have been scanned
Scan process 'avguard.exe' - '1' Module(s) have been scanned
Scan process 'avwebgrd.exe' - '1' Module(s) have been scanned
Scan process 'avesvc.exe' - '1' Module(s) have been scanned
Scan process 'sched.exe' - '1' Module(s) have been scanned
Scan process 'firefox.exe' - '1' Module(s) have been scanned
Scan process 'usnsvc.exe' - '1' Module(s) have been scanned
Scan process 'msnmsgr.exe' - '1' Module(s) have been scanned
Scan process 'YahooMessenger.exe' - '1' Module(s) have been scanned
Scan process 'ctfmon.exe' - '1' Module(s) have been scanned
Scan process 'USBGuard.exe' - '1' Module(s) have been scanned
Scan process 'wmiprvse.exe' - '1' Module(s) have been scanned
Scan process 'explorer.exe' - '1' Module(s) have been scanned
Scan process 'alg.exe' - '1' Module(s) have been scanned
Scan process 'TUProgSt.exe' - '1' Module(s) have been scanned
Scan process 'nvsvc32.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'lsass.exe' - '1' Module(s) have been scanned
Scan process 'services.exe' - '1' Module(s) have been scanned
Scan process 'winlogon.exe' - '1' Module(s) have been scanned
Scan process 'csrss.exe' - '1' Module(s) have been scanned
Scan process 'smss.exe' - '1' Module(s) have been scanned
30 processes with 30 modules were scanned
Starting master boot sector scan:
Master boot sector HD0
[INFO] No virus was found!
Start scanning boot sectors:
Boot sector 'C:\'
[INFO] No virus was found!
Boot sector 'D:\'
[INFO] No virus was found!
Boot sector 'E:\'
[INFO] No virus was found!
Boot sector 'F:\'
[INFO] No virus was found!
Boot sector 'G:\'
[INFO] No virus was found!
Starting to scan the registry.
The registry was scanned ( '49' files ).
Starting the file scan:
Begin scan in 'C:\'
C:\pagefile.sys
[WARNING] The file could not be opened!
C:\Documents and Settings\Mena\Application Data\IDM\DwnlData\Mena\Game_Accelerator_7.6_985\Game_Accelerator_7.6.rar
[0] Archive type: RAR
--> Game Accelerator 7.6\Game Accelerator 7.6\Activator.exe
[DETECTION] Is the TR/Gendal.89580 Trojan
[NOTE] A backup was created as '49e5b7e8.qua' ( QUARANTINE )
[NOTE] The file was deleted!
C:\Documents and Settings\Mena\Application Data\IDM\SmitfraudFix\Agent.OMZ.Fix.exe
[DETECTION] Contains HEUR/Crypted.E suspicious code
[NOTE] A backup was created as '49ddb7f5.qua' ( QUARANTINE )
[NOTE] The file was deleted!
C:\Documents and Settings\Mena\DoctorWeb\Quarantine\Zyzoom_Autorun_Viruses_Killer_V2.exe
[DETECTION] Contains recognition pattern of the WORM/Generic.10208 worm
[NOTE] A backup was created as '49f2b813.qua' ( QUARANTINE )
[NOTE] The file was deleted!
C:\System Volume Information\_restore{BEBECC85-83C8-4973-B5B4-C02788EC8727}\RP2\A0000149.exe
[DETECTION] Contains recognition pattern of the WORM/Generic.10208 worm
[NOTE] A backup was created as '49a8b916.qua' ( QUARANTINE )
[NOTE] The file was deleted!
C:\WINDOWS\system32\Agent.OMZ.Fix.exe
[DETECTION] Contains HEUR/Crypted.E suspicious code
[NOTE] A backup was created as '49ddba25.qua' ( QUARANTINE )
[NOTE] The file was deleted!
Begin scan in 'D:\' <programs>
D:\AVG Anti-Spyware Plus 7.5.1.43-3339\Patch\patch.exe
[DETECTION] Contains recognition pattern of the ADSPY/LordPatch.A adware or spyware
[NOTE] A backup was created as '49ecbac9.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\BitDefender Total Security 2009\BitDefender_2009_Keygen-_By_BioWarez.rar
[0] Archive type: RAR
--> BitDefender 2009 Keygen-REA\BitDefender 2009 Keygen.exe
[DETECTION] Is the TR/Qhosts.HF Trojan
[NOTE] A backup was created as '49ecbad6.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\BitDefender Total Security 2009\BitDefender_2009_Keygen-_By_BioWarez\BitDefender 2009 Keygen-REA\BitDefender 2009 Keygen.exe
[DETECTION] Is the TR/Qhosts.HF Trojan
[NOTE] A backup was created as '49ecbad7.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\Delete Temp\خاص بنسخة ويندوز إكس بي\BrOnZ_Delete_XP.exe
[0] Archive type: RAR SFX (self extracting)
--> DeleteXP.exe
[DETECTION] Contains recognition pattern of the DR/DeleteXP.C dropper
--> DeleteXP.exe
[1] Archive type: ZIP SFX (self extracting)
--> Delete XP.exe
[DETECTION] Contains recognition pattern of the DR/DeleteXP.C dropper
--> Delete XP.exe
[2] Archive type: RAR SFX (self extracting)
--> delxp.exe
[DETECTION] Contains recognition pattern of the WORM/Dropper.GNT worm
[DETECTION] Contains recognition pattern of the DR/Bronz.GNR dropper
[NOTE] A backup was created as '49c7bae6.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\Delete Temp\خاص بنسخة ويندوز إكس بي\Delete XP.exe
[DETECTION] Contains recognition pattern of the DR/DeleteXP.C dropper
D:\Delete Temp\خاص بنسخة ويندوز إكس بي\Delete XP.exe
[0] Archive type: RAR SFX (self extracting)
--> delxp.exe
[DETECTION] Contains recognition pattern of the WORM/Dropper.GNT worm
[NOTE] A backup was created as '49e4bad9.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\Delete Temp\خاص بنسخة ويندوز إكس بي\DeleteXP.exe
[0] Archive type: ZIP SFX (self extracting)
--> Delete XP.exe
[DETECTION] Contains recognition pattern of the DR/DeleteXP.C dropper
--> Delete XP.exe
[1] Archive type: RAR SFX (self extracting)
--> delxp.exe
[DETECTION] Contains recognition pattern of the WORM/Dropper.GNT worm
[DETECTION] Contains recognition pattern of the DR/DeleteXP.C dropper
[NOTE] A backup was created as '4867c52a.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\Delete Temp\خاص بنسخة ويندوز إكس بي\Delete XP\delxp.exe
[DETECTION] Contains recognition pattern of the WORM/Dropper.GNT worm
[NOTE] A backup was created as '49e4bada.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\east-tec_eraser_2009_v9.1.1.100_www.*************_by_kazamatuia\East-Tec_Eraser_2009_v9.1.1.100_www.*************_By_KazamAtuia\Keygen.exe
[DETECTION] Is the TR/Dropper.Gen Trojan
[NOTE] A backup was created as '49f1bc58.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\Internet download Manager\Internet Download Manager 5.14 Build 5\Internet Download Manager 5.14 Build 5\idman514.exe
[DETECTION] Contains recognition pattern of the WORM/Agent.2717992 worm
[NOTE] A backup was created as '49e5bc5e.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\PhotoShop\PhotoShop 9 CS2\Photoshop_CS2_tryout\Adobe« Photoshop« CS2 KeyGen\Adobe« Photoshop« CS2 KeyGen By Mohamed Yousri.rar
[0] Archive type: RAR
--> Adobe_ Photoshop_ CS2 KeyGen\keygen.exe
[DETECTION] Contains recognition pattern of the WORM/Autorun.cxl worm
[NOTE] A backup was created as '49e7c2af.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\PhotoShop\PhotoShop 9 CS2\Photoshop_CS2_tryout\Adobe« Photoshop« CS2 KeyGen\keygen.exe
[DETECTION] Contains recognition pattern of the WORM/Autorun.cxl worm
[NOTE] A backup was created as '49f1c2b0.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\PhotoShop\PhotoShop 9 CS2\Photoshop_CS2_tryout\Adobe« Photoshop« CS2 KeyGen\Adobe« Photoshop« CS2 KeyGen By Mohamed Yousri\Adobe® Photoshop® CS2 KeyGen\keygen.exe
[DETECTION] Contains recognition pattern of the WORM/Autorun.cxl worm
[NOTE] A backup was created as '49f1c2b1.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\System Volume Information\_restore{BEBECC85-83C8-4973-B5B4-C02788EC8727}\RP2\A0000152.exe
[DETECTION] Contains recognition pattern of the ADSPY/LordPatch.A adware or spyware
[NOTE] A backup was created as '49a8c38c.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\System Volume Information\_restore{BEBECC85-83C8-4973-B5B4-C02788EC8727}\RP2\A0000153.exe
[DETECTION] Is the TR/Qhosts.HF Trojan
[NOTE] A backup was created as '49a8c38d.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\System Volume Information\_restore{BEBECC85-83C8-4973-B5B4-C02788EC8727}\RP2\A0000154.exe
[0] Archive type: RAR SFX (self extracting)
--> DeleteXP.exe
[DETECTION] Contains recognition pattern of the DR/DeleteXP.C dropper
--> DeleteXP.exe
[1] Archive type: ZIP SFX (self extracting)
--> Delete XP.exe
[DETECTION] Contains recognition pattern of the DR/DeleteXP.C dropper
--> Delete XP.exe
[2] Archive type: RAR SFX (self extracting)
--> delxp.exe
[DETECTION] Contains recognition pattern of the WORM/Dropper.GNT worm
[DETECTION] Contains recognition pattern of the DR/Bronz.GNR dropper
[NOTE] A backup was created as '482c441e.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\System Volume Information\_restore{BEBECC85-83C8-4973-B5B4-C02788EC8727}\RP2\A0000155.exe
[DETECTION] Contains recognition pattern of the DR/DeleteXP.C dropper
D:\System Volume Information\_restore{BEBECC85-83C8-4973-B5B4-C02788EC8727}\RP2\A0000155.exe
[0] Archive type: RAR SFX (self extracting)
--> delxp.exe
[DETECTION] Contains recognition pattern of the WORM/Dropper.GNT worm
[NOTE] A backup was created as '49a8c38e.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\System Volume Information\_restore{BEBECC85-83C8-4973-B5B4-C02788EC8727}\RP2\A0000156.exe
[0] Archive type: ZIP SFX (self extracting)
--> Delete XP.exe
[DETECTION] Contains recognition pattern of the DR/DeleteXP.C dropper
--> Delete XP.exe
[1] Archive type: RAR SFX (self extracting)
--> delxp.exe
[DETECTION] Contains recognition pattern of the WORM/Dropper.GNT worm
[DETECTION] Contains recognition pattern of the DR/DeleteXP.C dropper
[NOTE] A backup was created as '482c441f.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\System Volume Information\_restore{BEBECC85-83C8-4973-B5B4-C02788EC8727}\RP2\A0000157.exe
[DETECTION] Contains recognition pattern of the WORM/Dropper.GNT worm
[NOTE] A backup was created as '49a8c3b0.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\System Volume Information\_restore{BEBECC85-83C8-4973-B5B4-C02788EC8727}\RP2\A0000158.exe
[DETECTION] Is the TR/Dropper.Gen Trojan
[NOTE] A backup was created as '49a8c38f.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\System Volume Information\_restore{BEBECC85-83C8-4973-B5B4-C02788EC8727}\RP2\A0000159.exe
[DETECTION] Contains recognition pattern of the WORM/Agent.2717992 worm
[NOTE] A backup was created as '482c4400.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\System Volume Information\_restore{BEBECC85-83C8-4973-B5B4-C02788EC8727}\RP2\A0000165.exe
[DETECTION] Contains recognition pattern of the WORM/Autorun.cxl worm
[NOTE] A backup was created as '49a8c390.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\System Volume Information\_restore{BEBECC85-83C8-4973-B5B4-C02788EC8727}\RP2\A0000166.exe
[DETECTION] Contains recognition pattern of the WORM/Autorun.cxl worm
[NOTE] A backup was created as '482c4401.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\Virus Removal\SCVVHSOT-Fix.rar
[0] Archive type: RAR
--> SCVVHSOT_Fix.exe
[DETECTION] Contains HEUR/Malware suspicious code
[NOTE] A backup was created as '49cec3ac.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\Virus Removal\zyzoom_2975_virus_killer.exe
[0] Archive type: RAR SFX (self extracting)
--> run.exe
[DETECTION] Is the TR/Crypt.CFI.Gen Trojan
[NOTE] A backup was created as '49f2c3e6.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\Virus Removal\2009\Amvo-Variants.rar
[0] Archive type: RAR
--> Amvo-Variants.exe
[DETECTION] Contains HEUR/Malware suspicious code
[NOTE] A backup was created as '49eec3db.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\Virus Removal\2009\PRT.zip
[0] Archive type: ZIP
--> PRT.exe
[DETECTION] Contains HEUR/Malware suspicious code
[NOTE] A backup was created as '49ccc3c3.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\Virus Removal\2009\SmitfraudFix.exe
[0] Archive type: RAR SFX (self extracting)
--> SmitfraudFix\Agent.OMZ.Fix.exe
[DETECTION] Contains HEUR/Crypted.E suspicious code
[NOTE] A backup was created as '49e1c3df.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\Virus Removal\2009\Zyzoom_K7.rar
[0] Archive type: RAR
--> Zyzoom_Autorun_Viruses_Killer_V2\Zyzoom_Autorun_Viruses_Killer_V2.exe
[DETECTION] Contains recognition pattern of the WORM/Generic.10208 worm
[NOTE] A backup was created as '49f2c3f4.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\Virus Removal\2009\Amvo-Variants\Amvo-Variants.exe
[DETECTION] Contains HEUR/Malware suspicious code
[NOTE] The detection was classified as suspicious.
[NOTE] A backup was created as '49eec3ea.qua' ( QUARANTINE )
D:\Virus Removal\2009\New\Zyzoom_&_Noor_Mcafee_VirusScanEnterprise_03.03.2008_.exe
[0] Archive type: RAR SFX (self extracting)
--> Run.exe
[DETECTION] Is the TR/Crypt.CFI.Gen Trojan
[NOTE] A backup was created as '49f2c3fd.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\Virus Removal\2009\PRT\PRT.exe
[DETECTION] Contains HEUR/Malware suspicious code
[NOTE] A backup was created as '49ccc3da.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\Virus Removal\2009\SmitfraudFix\Agent.OMZ.Fix.exe
[DETECTION] Contains HEUR/Crypted.E suspicious code
[NOTE] A backup was created as '49ddc3ef.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\Virus Removal\2009\Zyzoom_K7\Zyzoom_Autorun_Viruses_Killer_V2\Zyzoom_Autorun_Viruses_Killer_V2.exe
[DETECTION] Contains recognition pattern of the WORM/Generic.10208 worm
[NOTE] A backup was created as '49f2c403.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\Virus Removal\Autorun remover\Autorun remover\3.exe
[DETECTION] Contains HEUR/Malware suspicious code
[NOTE] The detection was classified as suspicious.
[NOTE] A backup was created as '49ddc3b9.qua' ( QUARANTINE )
D:\Virus Removal\Autorun remover\Autorun remover\4.exe
[DETECTION] Contains HEUR/Malware suspicious code
[NOTE] The detection was classified as suspicious.
[NOTE] A backup was created as '49ddc3ba.qua' ( QUARANTINE )
D:\Virus Removal\Autorun remover\Autorun remover\5.exe
[DETECTION] Contains HEUR/Malware suspicious code
[NOTE] The detection was classified as suspicious.
[NOTE] A backup was created as '4859442b.qua' ( QUARANTINE )
D:\Virus Removal\SCVVHSOT-Fix\SCVVHSOT_Fix.exe
[DETECTION] Contains HEUR/Malware suspicious code
[NOTE] The detection was classified as suspicious.
[NOTE] A backup was created as '49cec3dd.qua' ( QUARANTINE )
D:\Virus Removal\Small.CHA_Removal\Small.CHA_Removal.exe
[DETECTION] Contains HEUR/Malware suspicious code
[NOTE] The detection was classified as suspicious.
[NOTE] A backup was created as '49d9c407.qua' ( QUARANTINE )
D:\Virus Removal\zyzoom_all_brontok_killer\Run_me_1.exe
[DETECTION] Is the TR/Agent.132206 Trojan
[NOTE] A backup was created as '49e6c414.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\ZoneAlarm® Internet Security Suite 2009\zaSuiteSetup_80_020_000_en.exe
[0] Archive type: ZIP SFX (self extracting)
--> WINDOWS6.0-KB929547-V2-X64.MSU
[1] Archive type: CAB (Microsoft)
--> Windows6.0-KB929547-v2-x64.cab
[WARNING] No further files can be extracted from this archive. The archive will be closed
Begin scan in 'E:\' <MP3>
E:\Mina\Mena\Nokia\2008\windows-1256__CameraFX2.03_Full_new.sis
[DETECTION] Contains the SYMBOS/Skull.bp Symbian OS virus
[NOTE] A backup was created as '49e6c4a9.qua' ( QUARANTINE )
[NOTE] The file was deleted!
E:\Mina\Mobile\Programes\windows-1256__CameraFX2.03_Full_new.sis
[DETECTION] Contains the SYMBOS/Skull.bp Symbian OS virus
[NOTE] A backup was created as '49e6c4ac.qua' ( QUARANTINE )
[NOTE] The file was deleted!
Begin scan in 'F:\' <Games>
F:\24 Games\BULLDOZE.EXE
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '49c4c4ac.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\24 Games\cheesy.exe
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '49ddc4bf.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\24 Games\CONNECT.EXE
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '49c6c4a6.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\24 Games\ENGULF.EXE
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '49bfc4a6.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\24 Games\match.exe
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '49ecc4b9.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\24 Games\POKERGRD.EXE
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '49c3c4a8.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\24 Games\POKERMAT.EXE
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '4841ca61.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\24 Games\PUSHPULL.EXE
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '49cbc4ae.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\24 Games\SECHSECK.EXE
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '49bbc49f.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\24 Games\SIEGE.EXE
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '49bdc4a3.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\24 Games\STACKBLZ.EXE
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '49b9c4ae.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\24 Games\UNINST.EXE
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '49c1c4a9.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\24 Games\VORACITY.EXE
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '49cac4aa.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\24 Games\WARI.EXE
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '49cac49c.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\24 Games\WINDING.EXE
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '49c6c4a4.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\NFS-Underground-2\Keys\rld-nu2k.exe
[DETECTION] Is the TR/Packed.22775 Trojan
[NOTE] A backup was created as '49dcc790.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\System Volume Information\_restore{BEBECC85-83C8-4973-B5B4-C02788EC8727}\RP2\A0000174.EXE
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '49a8c7bd.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\System Volume Information\_restore{BEBECC85-83C8-4973-B5B4-C02788EC8727}\RP2\A0000175.exe
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '482c402e.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\System Volume Information\_restore{BEBECC85-83C8-4973-B5B4-C02788EC8727}\RP2\A0000176.EXE
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '49a8c7be.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\System Volume Information\_restore{BEBECC85-83C8-4973-B5B4-C02788EC8727}\RP2\A0000177.EXE
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '482c402f.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\System Volume Information\_restore{BEBECC85-83C8-4973-B5B4-C02788EC8727}\RP2\A0000178.exe
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '49a8c7a0.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\System Volume Information\_restore{BEBECC85-83C8-4973-B5B4-C02788EC8727}\RP2\A0000179.EXE
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '49a8c7bf.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\System Volume Information\_restore{BEBECC85-83C8-4973-B5B4-C02788EC8727}\RP2\A0000180.EXE
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '482c4050.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\System Volume Information\_restore{BEBECC85-83C8-4973-B5B4-C02788EC8727}\RP2\A0000181.EXE
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '49a8c7c1.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\System Volume Information\_restore{BEBECC85-83C8-4973-B5B4-C02788EC8727}\RP2\A0000182.EXE
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '482c4052.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\System Volume Information\_restore{BEBECC85-83C8-4973-B5B4-C02788EC8727}\RP2\A0000183.EXE
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '49a8c7c0.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\System Volume Information\_restore{BEBECC85-83C8-4973-B5B4-C02788EC8727}\RP2\A0000184.EXE
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '482c4051.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\System Volume Information\_restore{BEBECC85-83C8-4973-B5B4-C02788EC8727}\RP2\A0000185.EXE
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '49a8c7c2.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\System Volume Information\_restore{BEBECC85-83C8-4973-B5B4-C02788EC8727}\RP2\A0000186.EXE
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '482c4053.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\System Volume Information\_restore{BEBECC85-83C8-4973-B5B4-C02788EC8727}\RP2\A0000187.EXE
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '49a8c7c3.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\System Volume Information\_restore{BEBECC85-83C8-4973-B5B4-C02788EC8727}\RP2\A0000188.EXE
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '482c4054.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\System Volume Information\_restore{BEBECC85-83C8-4973-B5B4-C02788EC8727}\RP2\A0000272.exe
[DETECTION] Is the TR/Packed.22775 Trojan
[NOTE] A backup was created as '49a8c7c5.qua' ( QUARANTINE )
[NOTE] The file was deleted!
Begin scan in 'G:\'
End of the scan: 2009-01-22 21:33
Used time: 1:19:47 Hour(s)
The scan has been done completely.
9844 Scanning directories
803202 Files were scanned
76 viruses and/or unwanted programs were found
14 Files were classified as suspicious:
72 files were deleted
0 files were repaired
78 files were moved to quarantine
0 files were renamed
1 Files cannot be scanned
803111 Files not concerned
7953 Archives were scanned
2 Warnings
78 Notes
29472 ******s were scanned with rootkit scan
0 Hidden ******s were found
عاوز اعرف ازاى الكاسبر مشفش الحاجات دية وشكرا
Avira AntiVir Premium
Report file date: 2009-01-22 20:13
Scanning for 1257460 virus strains and unwanted programs.
Licensed to: Mina Salib
Serial number: 1103466077-PEPWE-0001
Platform: Windows XP
Windows version: (Service Pack 3) [5.1.2600]
Boot mode: Normally booted
Username: SYSTEM
Computer name: OPENSUSE
Version information:
BUILD.DAT : 8.2.0.374 20012 Bytes 21/11/2008 10:11:00
AVSCAN.EXE : 8.1.4.10 315649 Bytes 18/11/2008 07:21:26
AVSCAN.DLL : 8.1.4.0 40705 Bytes 26/05/2008 06:56:40
LUKE.DLL : 8.1.4.5 164097 Bytes 12/06/2008 11:44:19
LUKERES.DLL : 8.1.4.0 12033 Bytes 26/05/2008 06:58:52
ANTIVIR0.VDF : 7.1.0.0 15603712 Bytes 27/10/2008 10:30:36
ANTIVIR1.VDF : 7.1.1.113 2817536 Bytes 14/01/2009 18:06:34
ANTIVIR2.VDF : 7.1.1.148 440832 Bytes 20/01/2009 18:06:47
ANTIVIR3.VDF : 7.1.1.168 315904 Bytes 22/01/2009 18:06:55
Engineversion : 8.2.0.60
AEVDF.DLL : 8.1.0.6 102772 Bytes 14/10/2008 09:05:56
AESCRIPT.DLL : 8.1.1.32 340347 Bytes 22/01/2009 18:07:30
AESCN.DLL : 8.1.1.5 123251 Bytes 07/11/2008 14:06:41
AERDL.DLL : 8.1.1.3 438645 Bytes 04/11/2008 12:58:38
AEPACK.DLL : 8.1.3.5 393588 Bytes 22/01/2009 18:07:26
AEOFFICE.DLL : 8.1.0.33 196987 Bytes 22/01/2009 18:07:21
AEHEUR.DLL : 8.1.0.86 1552759 Bytes 22/01/2009 18:07:18
AEHELP.DLL : 8.1.2.0 119159 Bytes 22/01/2009 18:07:04
AEGEN.DLL : 8.1.1.10 323957 Bytes 22/01/2009 18:07:02
AEEMU.DLL : 8.1.0.9 393588 Bytes 14/10/2008 09:05:56
AECORE.DLL : 8.1.5.2 172405 Bytes 22/01/2009 18:06:57
AEBB.DLL : 8.1.0.3 53618 Bytes 14/10/2008 09:05:56
AVWINLL.DLL : 1.0.0.12 15105 Bytes 09/07/2008 07:40:05
AVPREF.DLL : 8.0.2.0 38657 Bytes 16/05/2008 08:28:01
AVREP.DLL : 8.0.0.2 98344 Bytes 31/07/2008 11:02:15
AVREG.DLL : 8.0.0.1 33537 Bytes 09/05/2008 10:26:40
AVARKT.DLL : 1.0.0.23 307457 Bytes 12/02/2008 07:29:23
AVEVTLOG.DLL : 8.0.0.16 119041 Bytes 12/06/2008 11:27:49
SQLITE3.DLL : 3.3.17.1 339968 Bytes 22/01/2008 16:28:02
SMTPLIB.DLL : 1.2.0.23 28929 Bytes 12/06/2008 11:49:40
NETNT.DLL : 8.0.0.1 7937 Bytes 25/01/2008 11:05:10
RCIMAGE.DLL : 8.0.0.51 2564353 Bytes 12/06/2008 12:29:30
RCTEXT.DLL : 8.0.51.0 86273 Bytes 27/06/2008 10:00:56
Configuration settings for the scan:
Jobname..........................: Complete system scan
Configuration file...............: c:\program files\avira\antivir personaledition premium\sysscan.avp
Logging..........................: low
Primary action...................: repair
Secondary action.................: delete
Scan master boot sector..........: on
Scan boot sector.................: on
Boot sectors.....................: C:, D:, E:, F:, G:,
Process scan.....................: on
Scan registry....................: on
Search for rootkits..............: on
Scan all files...................: All files
Scan archives....................: on
Recursion depth..................: 99
Smart extensions.................: on
Deviating archive types..........: +BSD Mailbox, +Netscape/Mozilla Mailbox, +Eudora Mailbox, +Squid cache, +Pegasus Mailbox, +MS Outlook Mailbox,
Macro heuristic..................: on
File heuristic...................: high
Start of the scan: 2009-01-22 20:13
Starting search for hidden ******s.
'29472' ******s were checked, '0' hidden ******s were found.
The scan of running processes will be started
Scan process 'avscan.exe' - '1' Module(s) have been scanned
Scan process 'avcenter.exe' - '1' Module(s) have been scanned
Scan process 'avgnt.exe' - '1' Module(s) have been scanned
Scan process 'avmailc.exe' - '1' Module(s) have been scanned
Scan process 'wmplayer.exe' - '1' Module(s) have been scanned
Scan process 'avguard.exe' - '1' Module(s) have been scanned
Scan process 'avwebgrd.exe' - '1' Module(s) have been scanned
Scan process 'avesvc.exe' - '1' Module(s) have been scanned
Scan process 'sched.exe' - '1' Module(s) have been scanned
Scan process 'firefox.exe' - '1' Module(s) have been scanned
Scan process 'usnsvc.exe' - '1' Module(s) have been scanned
Scan process 'msnmsgr.exe' - '1' Module(s) have been scanned
Scan process 'YahooMessenger.exe' - '1' Module(s) have been scanned
Scan process 'ctfmon.exe' - '1' Module(s) have been scanned
Scan process 'USBGuard.exe' - '1' Module(s) have been scanned
Scan process 'wmiprvse.exe' - '1' Module(s) have been scanned
Scan process 'explorer.exe' - '1' Module(s) have been scanned
Scan process 'alg.exe' - '1' Module(s) have been scanned
Scan process 'TUProgSt.exe' - '1' Module(s) have been scanned
Scan process 'nvsvc32.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'lsass.exe' - '1' Module(s) have been scanned
Scan process 'services.exe' - '1' Module(s) have been scanned
Scan process 'winlogon.exe' - '1' Module(s) have been scanned
Scan process 'csrss.exe' - '1' Module(s) have been scanned
Scan process 'smss.exe' - '1' Module(s) have been scanned
30 processes with 30 modules were scanned
Starting master boot sector scan:
Master boot sector HD0
[INFO] No virus was found!
Start scanning boot sectors:
Boot sector 'C:\'
[INFO] No virus was found!
Boot sector 'D:\'
[INFO] No virus was found!
Boot sector 'E:\'
[INFO] No virus was found!
Boot sector 'F:\'
[INFO] No virus was found!
Boot sector 'G:\'
[INFO] No virus was found!
Starting to scan the registry.
The registry was scanned ( '49' files ).
Starting the file scan:
Begin scan in 'C:\'
C:\pagefile.sys
[WARNING] The file could not be opened!
C:\Documents and Settings\Mena\Application Data\IDM\DwnlData\Mena\Game_Accelerator_7.6_985\Game_Accelerator_7.6.rar
[0] Archive type: RAR
--> Game Accelerator 7.6\Game Accelerator 7.6\Activator.exe
[DETECTION] Is the TR/Gendal.89580 Trojan
[NOTE] A backup was created as '49e5b7e8.qua' ( QUARANTINE )
[NOTE] The file was deleted!
C:\Documents and Settings\Mena\Application Data\IDM\SmitfraudFix\Agent.OMZ.Fix.exe
[DETECTION] Contains HEUR/Crypted.E suspicious code
[NOTE] A backup was created as '49ddb7f5.qua' ( QUARANTINE )
[NOTE] The file was deleted!
C:\Documents and Settings\Mena\DoctorWeb\Quarantine\Zyzoom_Autorun_Viruses_Killer_V2.exe
[DETECTION] Contains recognition pattern of the WORM/Generic.10208 worm
[NOTE] A backup was created as '49f2b813.qua' ( QUARANTINE )
[NOTE] The file was deleted!
C:\System Volume Information\_restore{BEBECC85-83C8-4973-B5B4-C02788EC8727}\RP2\A0000149.exe
[DETECTION] Contains recognition pattern of the WORM/Generic.10208 worm
[NOTE] A backup was created as '49a8b916.qua' ( QUARANTINE )
[NOTE] The file was deleted!
C:\WINDOWS\system32\Agent.OMZ.Fix.exe
[DETECTION] Contains HEUR/Crypted.E suspicious code
[NOTE] A backup was created as '49ddba25.qua' ( QUARANTINE )
[NOTE] The file was deleted!
Begin scan in 'D:\' <programs>
D:\AVG Anti-Spyware Plus 7.5.1.43-3339\Patch\patch.exe
[DETECTION] Contains recognition pattern of the ADSPY/LordPatch.A adware or spyware
[NOTE] A backup was created as '49ecbac9.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\BitDefender Total Security 2009\BitDefender_2009_Keygen-_By_BioWarez.rar
[0] Archive type: RAR
--> BitDefender 2009 Keygen-REA\BitDefender 2009 Keygen.exe
[DETECTION] Is the TR/Qhosts.HF Trojan
[NOTE] A backup was created as '49ecbad6.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\BitDefender Total Security 2009\BitDefender_2009_Keygen-_By_BioWarez\BitDefender 2009 Keygen-REA\BitDefender 2009 Keygen.exe
[DETECTION] Is the TR/Qhosts.HF Trojan
[NOTE] A backup was created as '49ecbad7.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\Delete Temp\خاص بنسخة ويندوز إكس بي\BrOnZ_Delete_XP.exe
[0] Archive type: RAR SFX (self extracting)
--> DeleteXP.exe
[DETECTION] Contains recognition pattern of the DR/DeleteXP.C dropper
--> DeleteXP.exe
[1] Archive type: ZIP SFX (self extracting)
--> Delete XP.exe
[DETECTION] Contains recognition pattern of the DR/DeleteXP.C dropper
--> Delete XP.exe
[2] Archive type: RAR SFX (self extracting)
--> delxp.exe
[DETECTION] Contains recognition pattern of the WORM/Dropper.GNT worm
[DETECTION] Contains recognition pattern of the DR/Bronz.GNR dropper
[NOTE] A backup was created as '49c7bae6.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\Delete Temp\خاص بنسخة ويندوز إكس بي\Delete XP.exe
[DETECTION] Contains recognition pattern of the DR/DeleteXP.C dropper
D:\Delete Temp\خاص بنسخة ويندوز إكس بي\Delete XP.exe
[0] Archive type: RAR SFX (self extracting)
--> delxp.exe
[DETECTION] Contains recognition pattern of the WORM/Dropper.GNT worm
[NOTE] A backup was created as '49e4bad9.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\Delete Temp\خاص بنسخة ويندوز إكس بي\DeleteXP.exe
[0] Archive type: ZIP SFX (self extracting)
--> Delete XP.exe
[DETECTION] Contains recognition pattern of the DR/DeleteXP.C dropper
--> Delete XP.exe
[1] Archive type: RAR SFX (self extracting)
--> delxp.exe
[DETECTION] Contains recognition pattern of the WORM/Dropper.GNT worm
[DETECTION] Contains recognition pattern of the DR/DeleteXP.C dropper
[NOTE] A backup was created as '4867c52a.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\Delete Temp\خاص بنسخة ويندوز إكس بي\Delete XP\delxp.exe
[DETECTION] Contains recognition pattern of the WORM/Dropper.GNT worm
[NOTE] A backup was created as '49e4bada.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\east-tec_eraser_2009_v9.1.1.100_www.*************_by_kazamatuia\East-Tec_Eraser_2009_v9.1.1.100_www.*************_By_KazamAtuia\Keygen.exe
[DETECTION] Is the TR/Dropper.Gen Trojan
[NOTE] A backup was created as '49f1bc58.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\Internet download Manager\Internet Download Manager 5.14 Build 5\Internet Download Manager 5.14 Build 5\idman514.exe
[DETECTION] Contains recognition pattern of the WORM/Agent.2717992 worm
[NOTE] A backup was created as '49e5bc5e.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\PhotoShop\PhotoShop 9 CS2\Photoshop_CS2_tryout\Adobe« Photoshop« CS2 KeyGen\Adobe« Photoshop« CS2 KeyGen By Mohamed Yousri.rar
[0] Archive type: RAR
--> Adobe_ Photoshop_ CS2 KeyGen\keygen.exe
[DETECTION] Contains recognition pattern of the WORM/Autorun.cxl worm
[NOTE] A backup was created as '49e7c2af.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\PhotoShop\PhotoShop 9 CS2\Photoshop_CS2_tryout\Adobe« Photoshop« CS2 KeyGen\keygen.exe
[DETECTION] Contains recognition pattern of the WORM/Autorun.cxl worm
[NOTE] A backup was created as '49f1c2b0.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\PhotoShop\PhotoShop 9 CS2\Photoshop_CS2_tryout\Adobe« Photoshop« CS2 KeyGen\Adobe« Photoshop« CS2 KeyGen By Mohamed Yousri\Adobe® Photoshop® CS2 KeyGen\keygen.exe
[DETECTION] Contains recognition pattern of the WORM/Autorun.cxl worm
[NOTE] A backup was created as '49f1c2b1.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\System Volume Information\_restore{BEBECC85-83C8-4973-B5B4-C02788EC8727}\RP2\A0000152.exe
[DETECTION] Contains recognition pattern of the ADSPY/LordPatch.A adware or spyware
[NOTE] A backup was created as '49a8c38c.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\System Volume Information\_restore{BEBECC85-83C8-4973-B5B4-C02788EC8727}\RP2\A0000153.exe
[DETECTION] Is the TR/Qhosts.HF Trojan
[NOTE] A backup was created as '49a8c38d.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\System Volume Information\_restore{BEBECC85-83C8-4973-B5B4-C02788EC8727}\RP2\A0000154.exe
[0] Archive type: RAR SFX (self extracting)
--> DeleteXP.exe
[DETECTION] Contains recognition pattern of the DR/DeleteXP.C dropper
--> DeleteXP.exe
[1] Archive type: ZIP SFX (self extracting)
--> Delete XP.exe
[DETECTION] Contains recognition pattern of the DR/DeleteXP.C dropper
--> Delete XP.exe
[2] Archive type: RAR SFX (self extracting)
--> delxp.exe
[DETECTION] Contains recognition pattern of the WORM/Dropper.GNT worm
[DETECTION] Contains recognition pattern of the DR/Bronz.GNR dropper
[NOTE] A backup was created as '482c441e.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\System Volume Information\_restore{BEBECC85-83C8-4973-B5B4-C02788EC8727}\RP2\A0000155.exe
[DETECTION] Contains recognition pattern of the DR/DeleteXP.C dropper
D:\System Volume Information\_restore{BEBECC85-83C8-4973-B5B4-C02788EC8727}\RP2\A0000155.exe
[0] Archive type: RAR SFX (self extracting)
--> delxp.exe
[DETECTION] Contains recognition pattern of the WORM/Dropper.GNT worm
[NOTE] A backup was created as '49a8c38e.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\System Volume Information\_restore{BEBECC85-83C8-4973-B5B4-C02788EC8727}\RP2\A0000156.exe
[0] Archive type: ZIP SFX (self extracting)
--> Delete XP.exe
[DETECTION] Contains recognition pattern of the DR/DeleteXP.C dropper
--> Delete XP.exe
[1] Archive type: RAR SFX (self extracting)
--> delxp.exe
[DETECTION] Contains recognition pattern of the WORM/Dropper.GNT worm
[DETECTION] Contains recognition pattern of the DR/DeleteXP.C dropper
[NOTE] A backup was created as '482c441f.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\System Volume Information\_restore{BEBECC85-83C8-4973-B5B4-C02788EC8727}\RP2\A0000157.exe
[DETECTION] Contains recognition pattern of the WORM/Dropper.GNT worm
[NOTE] A backup was created as '49a8c3b0.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\System Volume Information\_restore{BEBECC85-83C8-4973-B5B4-C02788EC8727}\RP2\A0000158.exe
[DETECTION] Is the TR/Dropper.Gen Trojan
[NOTE] A backup was created as '49a8c38f.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\System Volume Information\_restore{BEBECC85-83C8-4973-B5B4-C02788EC8727}\RP2\A0000159.exe
[DETECTION] Contains recognition pattern of the WORM/Agent.2717992 worm
[NOTE] A backup was created as '482c4400.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\System Volume Information\_restore{BEBECC85-83C8-4973-B5B4-C02788EC8727}\RP2\A0000165.exe
[DETECTION] Contains recognition pattern of the WORM/Autorun.cxl worm
[NOTE] A backup was created as '49a8c390.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\System Volume Information\_restore{BEBECC85-83C8-4973-B5B4-C02788EC8727}\RP2\A0000166.exe
[DETECTION] Contains recognition pattern of the WORM/Autorun.cxl worm
[NOTE] A backup was created as '482c4401.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\Virus Removal\SCVVHSOT-Fix.rar
[0] Archive type: RAR
--> SCVVHSOT_Fix.exe
[DETECTION] Contains HEUR/Malware suspicious code
[NOTE] A backup was created as '49cec3ac.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\Virus Removal\zyzoom_2975_virus_killer.exe
[0] Archive type: RAR SFX (self extracting)
--> run.exe
[DETECTION] Is the TR/Crypt.CFI.Gen Trojan
[NOTE] A backup was created as '49f2c3e6.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\Virus Removal\2009\Amvo-Variants.rar
[0] Archive type: RAR
--> Amvo-Variants.exe
[DETECTION] Contains HEUR/Malware suspicious code
[NOTE] A backup was created as '49eec3db.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\Virus Removal\2009\PRT.zip
[0] Archive type: ZIP
--> PRT.exe
[DETECTION] Contains HEUR/Malware suspicious code
[NOTE] A backup was created as '49ccc3c3.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\Virus Removal\2009\SmitfraudFix.exe
[0] Archive type: RAR SFX (self extracting)
--> SmitfraudFix\Agent.OMZ.Fix.exe
[DETECTION] Contains HEUR/Crypted.E suspicious code
[NOTE] A backup was created as '49e1c3df.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\Virus Removal\2009\Zyzoom_K7.rar
[0] Archive type: RAR
--> Zyzoom_Autorun_Viruses_Killer_V2\Zyzoom_Autorun_Viruses_Killer_V2.exe
[DETECTION] Contains recognition pattern of the WORM/Generic.10208 worm
[NOTE] A backup was created as '49f2c3f4.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\Virus Removal\2009\Amvo-Variants\Amvo-Variants.exe
[DETECTION] Contains HEUR/Malware suspicious code
[NOTE] The detection was classified as suspicious.
[NOTE] A backup was created as '49eec3ea.qua' ( QUARANTINE )
D:\Virus Removal\2009\New\Zyzoom_&_Noor_Mcafee_VirusScanEnterprise_03.03.2008_.exe
[0] Archive type: RAR SFX (self extracting)
--> Run.exe
[DETECTION] Is the TR/Crypt.CFI.Gen Trojan
[NOTE] A backup was created as '49f2c3fd.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\Virus Removal\2009\PRT\PRT.exe
[DETECTION] Contains HEUR/Malware suspicious code
[NOTE] A backup was created as '49ccc3da.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\Virus Removal\2009\SmitfraudFix\Agent.OMZ.Fix.exe
[DETECTION] Contains HEUR/Crypted.E suspicious code
[NOTE] A backup was created as '49ddc3ef.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\Virus Removal\2009\Zyzoom_K7\Zyzoom_Autorun_Viruses_Killer_V2\Zyzoom_Autorun_Viruses_Killer_V2.exe
[DETECTION] Contains recognition pattern of the WORM/Generic.10208 worm
[NOTE] A backup was created as '49f2c403.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\Virus Removal\Autorun remover\Autorun remover\3.exe
[DETECTION] Contains HEUR/Malware suspicious code
[NOTE] The detection was classified as suspicious.
[NOTE] A backup was created as '49ddc3b9.qua' ( QUARANTINE )
D:\Virus Removal\Autorun remover\Autorun remover\4.exe
[DETECTION] Contains HEUR/Malware suspicious code
[NOTE] The detection was classified as suspicious.
[NOTE] A backup was created as '49ddc3ba.qua' ( QUARANTINE )
D:\Virus Removal\Autorun remover\Autorun remover\5.exe
[DETECTION] Contains HEUR/Malware suspicious code
[NOTE] The detection was classified as suspicious.
[NOTE] A backup was created as '4859442b.qua' ( QUARANTINE )
D:\Virus Removal\SCVVHSOT-Fix\SCVVHSOT_Fix.exe
[DETECTION] Contains HEUR/Malware suspicious code
[NOTE] The detection was classified as suspicious.
[NOTE] A backup was created as '49cec3dd.qua' ( QUARANTINE )
D:\Virus Removal\Small.CHA_Removal\Small.CHA_Removal.exe
[DETECTION] Contains HEUR/Malware suspicious code
[NOTE] The detection was classified as suspicious.
[NOTE] A backup was created as '49d9c407.qua' ( QUARANTINE )
D:\Virus Removal\zyzoom_all_brontok_killer\Run_me_1.exe
[DETECTION] Is the TR/Agent.132206 Trojan
[NOTE] A backup was created as '49e6c414.qua' ( QUARANTINE )
[NOTE] The file was deleted!
D:\ZoneAlarm® Internet Security Suite 2009\zaSuiteSetup_80_020_000_en.exe
[0] Archive type: ZIP SFX (self extracting)
--> WINDOWS6.0-KB929547-V2-X64.MSU
[1] Archive type: CAB (Microsoft)
--> Windows6.0-KB929547-v2-x64.cab
[WARNING] No further files can be extracted from this archive. The archive will be closed
Begin scan in 'E:\' <MP3>
E:\Mina\Mena\Nokia\2008\windows-1256__CameraFX2.03_Full_new.sis
[DETECTION] Contains the SYMBOS/Skull.bp Symbian OS virus
[NOTE] A backup was created as '49e6c4a9.qua' ( QUARANTINE )
[NOTE] The file was deleted!
E:\Mina\Mobile\Programes\windows-1256__CameraFX2.03_Full_new.sis
[DETECTION] Contains the SYMBOS/Skull.bp Symbian OS virus
[NOTE] A backup was created as '49e6c4ac.qua' ( QUARANTINE )
[NOTE] The file was deleted!
Begin scan in 'F:\' <Games>
F:\24 Games\BULLDOZE.EXE
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '49c4c4ac.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\24 Games\cheesy.exe
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '49ddc4bf.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\24 Games\CONNECT.EXE
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '49c6c4a6.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\24 Games\ENGULF.EXE
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '49bfc4a6.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\24 Games\match.exe
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '49ecc4b9.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\24 Games\POKERGRD.EXE
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '49c3c4a8.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\24 Games\POKERMAT.EXE
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '4841ca61.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\24 Games\PUSHPULL.EXE
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '49cbc4ae.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\24 Games\SECHSECK.EXE
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '49bbc49f.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\24 Games\SIEGE.EXE
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '49bdc4a3.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\24 Games\STACKBLZ.EXE
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '49b9c4ae.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\24 Games\UNINST.EXE
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '49c1c4a9.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\24 Games\VORACITY.EXE
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '49cac4aa.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\24 Games\WARI.EXE
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '49cac49c.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\24 Games\WINDING.EXE
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '49c6c4a4.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\NFS-Underground-2\Keys\rld-nu2k.exe
[DETECTION] Is the TR/Packed.22775 Trojan
[NOTE] A backup was created as '49dcc790.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\System Volume Information\_restore{BEBECC85-83C8-4973-B5B4-C02788EC8727}\RP2\A0000174.EXE
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '49a8c7bd.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\System Volume Information\_restore{BEBECC85-83C8-4973-B5B4-C02788EC8727}\RP2\A0000175.exe
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '482c402e.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\System Volume Information\_restore{BEBECC85-83C8-4973-B5B4-C02788EC8727}\RP2\A0000176.EXE
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '49a8c7be.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\System Volume Information\_restore{BEBECC85-83C8-4973-B5B4-C02788EC8727}\RP2\A0000177.EXE
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '482c402f.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\System Volume Information\_restore{BEBECC85-83C8-4973-B5B4-C02788EC8727}\RP2\A0000178.exe
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '49a8c7a0.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\System Volume Information\_restore{BEBECC85-83C8-4973-B5B4-C02788EC8727}\RP2\A0000179.EXE
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '49a8c7bf.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\System Volume Information\_restore{BEBECC85-83C8-4973-B5B4-C02788EC8727}\RP2\A0000180.EXE
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '482c4050.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\System Volume Information\_restore{BEBECC85-83C8-4973-B5B4-C02788EC8727}\RP2\A0000181.EXE
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '49a8c7c1.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\System Volume Information\_restore{BEBECC85-83C8-4973-B5B4-C02788EC8727}\RP2\A0000182.EXE
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '482c4052.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\System Volume Information\_restore{BEBECC85-83C8-4973-B5B4-C02788EC8727}\RP2\A0000183.EXE
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '49a8c7c0.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\System Volume Information\_restore{BEBECC85-83C8-4973-B5B4-C02788EC8727}\RP2\A0000184.EXE
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '482c4051.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\System Volume Information\_restore{BEBECC85-83C8-4973-B5B4-C02788EC8727}\RP2\A0000185.EXE
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '49a8c7c2.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\System Volume Information\_restore{BEBECC85-83C8-4973-B5B4-C02788EC8727}\RP2\A0000186.EXE
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '482c4053.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\System Volume Information\_restore{BEBECC85-83C8-4973-B5B4-C02788EC8727}\RP2\A0000187.EXE
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '49a8c7c3.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\System Volume Information\_restore{BEBECC85-83C8-4973-B5B4-C02788EC8727}\RP2\A0000188.EXE
[DETECTION] Is the TR/FlashKiller.C Trojan
[NOTE] A backup was created as '482c4054.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\System Volume Information\_restore{BEBECC85-83C8-4973-B5B4-C02788EC8727}\RP2\A0000272.exe
[DETECTION] Is the TR/Packed.22775 Trojan
[NOTE] A backup was created as '49a8c7c5.qua' ( QUARANTINE )
[NOTE] The file was deleted!
Begin scan in 'G:\'
End of the scan: 2009-01-22 21:33
Used time: 1:19:47 Hour(s)
The scan has been done completely.
9844 Scanning directories
803202 Files were scanned
76 viruses and/or unwanted programs were found
14 Files were classified as suspicious:
72 files were deleted
0 files were repaired
78 files were moved to quarantine
0 files were renamed
1 Files cannot be scanned
803111 Files not concerned
7953 Archives were scanned
2 Warnings
78 Notes
29472 ******s were scanned with rootkit scan
0 Hidden ******s were found
عاوز اعرف ازاى الكاسبر مشفش الحاجات دية وشكرا
