ريح المطر

زيزوومي نشيط
إنضم
31 يناير 2008
المشاركات
153
مستوى التفاعل
0
النقاط
200
غير متصل
مسااء الخير

وربي واااقعه في مشكله وابغى منكم الفزعه

جهااازي الاقراااص Cو Dماتفتح لي لما افتحها تجيني رسالة ارسال تقرير بالخطا

وما افتح اي مجلد في المستندات تطلع رسالة خطأ في النظاام وماعرفت ليش

سويت تقرير هايجاك لجهاازي وهذا هو



Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:08:10 حلومه, on 30/03/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Premium\sched.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Nokia\Nokia PC Suite 6\PCSync2.exe
C:\Program Files\Nokia\Nokia PC Suite 6\PCSuite.exe
C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe
C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe
C:\Program Files\Common Files\Nokia\MPAPI\MPAPI3s.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE
C:\Program Files\MSN Messenger\usnsvc.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\DOCUME~1\ctc\LOCALS~1\Temp\Temporary Internet Files\Content.IE5\05C5YTOP\Zyzoom_HijackThis[1].exe
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Nokia.PCSync] "C:\Program Files\Nokia\Nokia PC Suite 6\PCSync2.exe" /NoDialog
O4 - HKCU\..\Run: [PC Suite Tray] "C:\Program Files\Nokia\Nokia PC Suite 6\PCSuite.exe" -onlytray
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O7 - HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableRegedit=1
O8 - Extra context menu item: &تصدير إلى Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra button: بحث - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O17 - HKLM\System\CCS\Services\Tcpip\..\{E3E6D848-1B14-495C-86A2-A3D102D19A30}: NameServer = 84.235.7.58 84.235.6.58
O23 - Service: Avira AntiVir Premium MailGuard (AntiVirMailService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Premium\avmailc.exe
O23 - Service: Avira AntiVir Premium Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Premium\sched.exe
O23 - Service: Avira AntiVir Premium Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Premium\avguard.exe
O23 - Service: Avira AntiVir Premium WebGuard (antivirwebservice) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Premium\AVWEBGRD.EXE
O23 - Service: Avira AntiVir Premium MailGuard helper service (AVEService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Premium\avesvc.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
--
End of file - 4434 bytes



يااارب تسعد الي يرد عليه
 

جاري التحليل
 
توقيع : فارس الملاك

(1)
عطل جميع برامج الحماية ,,
وحمل هذه الاداة واحفظها على سطح المكتب
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

عند تشغيلها بتظهر لك رسالة ,, اضغط على >> Yes
بعدها بتظهر لك رساله ثانيه ,, اضغط على >> Yes
انتظر حتى الاداة تنتهي من فحص جهازك ,,, وبشكل تلقائي يعاد تشغيل جهازك ,,
وبعد اعادة التشغيل ,, سوف تبدأ الاداة بالفحص مرره ثانيه
انتظر حتى يظهر لك تقرير ,, انسخه والصقه بردك القادم
(2)
واعمل تقرير للهايجاك
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

اذا انتهى التحميل ==> شغل البرنامج ==> واضغط على Do a system scan and save log
لحظات ويظهر لك تقرير ,, انسخه والصقه بردك القادم
 
التعديل الأخير بواسطة المشرف:
توقيع : فارس الملاك
عفوا اخوي نسيت ما اكتب ان حتى مقاطع الفيديو والموسيقى ماتفتح لي
وكمان يعلق الجهاااز
 
مو مشكله اختي

طبقي المشاركة السابقة

وان شاء الله خير
 
توقيع : فارس الملاك
اخي هذا تقرير الاداه




ComboFix 09-03-29.04 - ctc 03/30/2009 23:44:57.1 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.2.1256.1.1025.18.446.142 [GMT 3:00]
Running from: c:\documents and settings\ctc\سطح المكتب\ComboFix.exe
AV: Avira AntiVir PersonalEdition *On-access scanning disabled* (Outdated)
* Created a new restore point
WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\autorun.inf
c:\documents and settings\ctc\Application Data\tazebama
c:\windows\IE4 Error Log.txt
C:\zPharaoh.exe
D:\Autorun.inf
d:\recycler\NokiaN73Tools.exe
d:\recycler\RECYCLER .exe
D:\zPharaoh.exe
E:\Autorun.inf
e:\recycler\WinrRarSerialInstall.exe
E:\zPharaoh.exe
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\Legacy_ASC3360PR
-------\Service_asc3360pr

((((((((((((((((((((((((( Files Created from 2009-02-28 to 2009-03-30 )))))))))))))))))))))))))))))))
.
No new files created in this timespan
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-03-29 21:17 734,063 ----a-w c:\windows\soundman.exe
2009-03-06 05:20 --------- d-----w c:\program files\Common Files\Windows Live
2009-03-01 00:05 --------- d-----w c:\program files\MSN Messenger
2009-03-01 00:05 --------- d-----w c:\program files\Messenger Plus! Live
2009-02-25 22:59 --------- d-----w c:\documents and settings\ctc\Application Data\CyberScrub
2009-02-25 22:57 --------- d-----w c:\documents and settings\ctc\Application Data\cleaner
2008-12-06 19:09 47,104 ------w c:\windows\AKDeInstall.exe
2008-12-06 17:58 315,392 ----a-w c:\windows\HideWin.exe
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"msnmsgr"="c:\program files\MSN Messenger\msnmsgr.exe" [01/19/2007 12:55 PM 5752176]
"ctfmon.exe"="c:\windows\system32\ctfmon.exe" [08/04/2004 12:56 AM 15360]
"Nokia.PCSync"="c:\program files\Nokia\Nokia PC Suite 6\PCSync2.exe" [03/26/2008 06:41 PM 1306624]
"PC Suite Tray"="c:\program files\Nokia\Nokia PC Suite 6\PCSuite.exe" [04/16/2008 12:53 PM 1309184]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"TkBellExe"="c:\program files\Common Files\Real\Update_OB\realsched.exe" [12/06/2008 10:18 PM 255528]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [08/04/2004 12:56 AM 15360]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system]
"DisableTaskMgr"= 1 (0x1)
"DisableRegistryTools"= 1 (0x1)
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"VIDC.X264"= x264vfw.dll
"VIDC.3iv2"= 3ivxVfWCodec.dll
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\avgnt]
--a------ 02/12/2008 10:06 AM 344321 c:\program files\Avira\AntiVir PersonalEdition Premium\avgnt.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CTFMON.EXE]
--a------ 08/04/2004 12:56 AM 15360 c:\windows\system32\ctfmon.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MsnMsgr]
--------- 01/19/2007 12:55 PM 5752176 c:\program files\MSN Messenger\msnmsgr.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
--a------ 03/14/2007 03:43 AM 157336 c:\program files\Java\jre1.6.0_01\bin\jusched.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe]
--a------ 12/06/2008 10:18 PM 255528 c:\program files\Common Files\Real\Update_OB\realsched.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SoundMan]
--a------ 03/30/2009 12:17 AM 734063 c:\windows\soundman.exe
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusDisableNotify"=dword:00000001
"UpdatesDisableNotify"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\MSN Messenger\\msnmsgr.exe"=
"c:\\Program Files\\MSN Messenger\\livecall.exe"=
"c:\\Program Files\\Avira\\AntiVir PersonalEdition Premium\\avgnt.exe"=
"c:\\Program Files\\PC Connectivity Solution\\NclInstaller.exe"=
"c:\\Program Files\\Avira\\AntiVir PersonalEdition Premium\\avwsc.exe"=
"c:\\PROGRA~1\\COMMON~1\\MICROS~1\\DW\\dwtrig20.exe"=
"c:\\PROGRA~1\\COMMON~1\\MICROS~1\\DW\\DW20.EXE"=
"c:\\Program Files\\Real\\RealPlayer\\realplay.exe"= c:\\Program Files\\Real\\RealPlayer\\RealPlay.exe
"c:\\Program Files\\Microsoft Office\\OFFICE11\\OSA.EXE"=
"c:\\Program Files\\Common Files\\Real\\Update_OB\\realsched.exe"=
"c:\\Program Files\\MSN Messenger\\usnsvc.exe"=
"c:\\Program Files\\Nokia\\Nokia PC Suite 6\\pcsync2.exe"= c:\\Program Files\\Nokia\\Nokia PC Suite 6\\PCSync2.exe
"c:\\Program Files\\PC Connectivity Solution\\dpinst.exe"=
"c:\\Documents and Settings\\All Users\\Application Data\\Installations\\{57A48477-92F0-4C1F-ADF9-4806C4EC3CF2}\\Nokia_PC_Suite_683_rel_14_1_eng_web.exe"=
"c:\\Program Files\\PC Connectivity Solution\\ServiceLayer.exe"=
"c:\\Program Files\\Common Files\\Nokia\\MPAPI\\MPAPI3s.exe"=
"c:\\Program Files\\Nokia\\Nokia PC Suite 6\\PCSuite.exe"=
"c:\\Program Files\\Microsoft Office\\OFFICE11\\WINWORD.EXE"=
"c:\\WINDOWS\\system32\\wuauclt.exe"=
R1 BIOS;BIOS;c:\windows\system32\drivers\BIOS.sys [2008-12-06 13696]
S2 AntiVirMailService;Avira AntiVir Premium MailGuard;c:\program files\Avira\AntiVir PersonalEdition Premium\avmailc.exe [2008-12-06 233729]
S2 antivirwebservice;Avira AntiVir Premium WebGuard;c:\program files\Avira\AntiVir PersonalEdition Premium\avwebgrd.exe [2008-12-06 327937]
S2 AVEService;Avira AntiVir Premium MailGuard helper service;c:\program files\Avira\AntiVir PersonalEdition Premium\avesvc.exe [2008-12-06 110849]
S3 autorun;autorun;C:\huadio.tmp [2008-12-06 5311]
--- Other Services/Drivers In Memory ---
*NewlyCreated* - ASC3360PR
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{bbad41a3-c3c1-11dd-94aa-00012e0e45d3}]
\Shell\AutopLAy\CoMmAnd - G:\syuain.pif
\Shell\AutoRun\command - G:\syuain.pif
\Shell\ExPloRe\COMMand - G:\syuain.pif
\Shell\OPeN\command - G:\syuain.pif
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{e64b1932-d2d5-11dd-94da-00012e0e45d3}]
\sheLL\auToplAY\comMAnD - G:\slmwes.pif
\sheLL\AutoRun\command - G:\slmwes.pif
\sheLL\eXplore\CommanD - G:\slmwes.pif
\sheLL\opeN\CommanD - G:\slmwes.pif
.
- - - - ORPHANS REMOVED - - - -
MSConfigStartUp-PCSuiteTrayApplication - c:\program files\Nokia\Nokia PC Suite 6\LaunchApplication.exe
MSConfigStartUp-Yahoo! Pager - c:\program files\Yahoo!\Messenger\YahooMessenger.exe

.
------- Supplementary Scan -------
.
uStart Page = hxxp://www.google.com/
uInternet Connection Wizard,ShellNext = iexplore
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
IE: &تصدير إلى Microsoft Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
LSP: avsda.dll
TCP: {E3E6D848-1B14-495C-86A2-A3D102D19A30} = 84.235.7.58 84.235.6.58
.
**************************************************************************
catchme 0.3.1375 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

Rootkit scan 2009-03-30 23:50:04
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\autorun]
"ImagePath"="\??\c:\huadio.tmp"
.
--------------------- DLLs Loaded Under Running Processes ---------------------
- - - - - - - > 'lsass.exe'(728)
c:\windows\system32\avsda.dll
.
------------------------ Other Running Processes ------------------------
.
c:\program files\Avira\AntiVir PersonalEdition Premium\sched.exe
c:\program files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
c:\program files\PC Connectivity Solution\ServiceLayer.exe
c:\program files\PC Connectivity Solution\Transports\NclUSBSrv.exe
c:\program files\PC Connectivity Solution\Transports\NclRSSrv.exe
c:\program files\Common Files\Nokia\MPAPI\MPAPI3s.exe
c:\windows\system32\WudfHost.exe
.
**************************************************************************
.
Completion time: 03/30/2009 23:54:51 - machine was rebooted
ComboFix-quarantined-files.txt 2009-03-30 20:54:49
Pre-Run: 11,314,270,208 bytes free
Post-Run: 11,745,247,232 bytes free
162
 
حملي الاداة التالية

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


شغلهيا فتظهر لك واجهة الاداة
اختاري خيار التنظيف فتظهر شاشة الدوس للفحص
اتركهيا حتى تنتهي ويظهر التقرير
انسخيها والصقيها بمشاركتك القادمة
 
توقيع : فارس الملاك
هذا تقرير الهايجاك اخوي



Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 12:10:38 حلومه, on 31/03/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Premium\sched.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Nokia\Nokia PC Suite 6\PCSync2.exe
C:\Program Files\Nokia\Nokia PC Suite 6\PCSuite.exe
C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe
C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe
C:\Program Files\Common Files\Nokia\MPAPI\MPAPI3s.exe
C:\WINDOWS\explorer.exe
C:\WINDOWS\system32\notepad.exe
C:\Program Files\internet explorer\iexplore.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\MSN Messenger\usnsvc.exe
C:\Documents and Settings\ctc\Local Settings\Temporary Internet Files\Content.IE5\SOKDV74X\Zyzoom_HijackThis[1].exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Nokia.PCSync] "C:\Program Files\Nokia\Nokia PC Suite 6\PCSync2.exe" /NoDialog
O4 - HKCU\..\Run: [PC Suite Tray] "C:\Program Files\Nokia\Nokia PC Suite 6\PCSuite.exe" -onlytray
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O7 - HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableRegedit=1
O8 - Extra context menu item: &تصدير إلى Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra button: بحث - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O17 - HKLM\System\CCS\Services\Tcpip\..\{E3E6D848-1B14-495C-86A2-A3D102D19A30}: NameServer = 84.235.7.58 84.235.6.58
O23 - Service: Avira AntiVir Premium MailGuard (AntiVirMailService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Premium\avmailc.exe
O23 - Service: Avira AntiVir Premium Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Premium\sched.exe
O23 - Service: Avira AntiVir Premium Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Premium\avguard.exe
O23 - Service: Avira AntiVir Premium WebGuard (antivirwebservice) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Premium\AVWEBGRD.EXE
O23 - Service: Avira AntiVir Premium MailGuard helper service (AVEService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Premium\avesvc.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
--
End of file - 4582 bytes
 
حملي الاداة التالية


يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

شغلهيا فتظهر لك واجهة الاداة
اختاري خيار التنظيف فتظهر شاشة الدوس للفحص
اتركهيا حتى تنتهي ويظهر التقرير

انسخيها والصقيها بمشاركتك القادمة

:ok::ok::ok:
 
توقيع : فارس الملاك
بعد اذنكم تعديل العنوان لينم عن فحواه
بارك الله فيكم

 
توقيع : السّاجد لله
اخوي انا وضعتها على سطح المكتب بس ما اشتغلت
طلعت رساله ان بعض الملفات لم تكتمل
ياليت توضح لي
 
اخوي هذا تقرير اداة التنظيف



Engine Version : 5300.2777
Engine Load Time : 76375 milliseconds
AV DAT Version : 5492.0000 488805 detections Built 15 محرم, 1430
Extra DAT : 0 detections

Process : C:\Program Files\Common Files\Real\Update_OB\realsched.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
Process : C:\Program Files\MSN Messenger\msnmsgr.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
Process : C:\Program Files\Nokia\Nokia PC Suite 6\PCSync2.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
Process : C:\Program Files\Nokia\Nokia PC Suite 6\PCSuite.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
Process : C:\Program Files\Common Files\Nokia\MPAPI\MPAPI3s.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (No Action Taken (Clean failed) )
Process : C:\Program Files\MSN Messenger\usnsvc.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
Process : C:\DOCUME~1\ctc\LOCALS~1\Temp\winbrsj.exe\winbrsj.exe : contains "Trojan" called "Generic PWS.f" (Deleted )
Process : C:\DOCUME~1\ctc\LOCALS~1\Temp\grfr.exe : contains "Trojan" called "Spam-Mailbot" (Deleted )
Memory : Deleted
Please wait ... building list of critical files to scan
File : C:\Documents and Settings\All Users\Application Data\Installations\{9C05FA75-0337-4523-AA57-9D3511018887}\Nokia PC.Suite 6.86.9.3 Ar.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Documents and Settings\ctc\Application Data\Real\RealPlayer\Update\RealPlayer11.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Documents and Settings\ctc\سطح المكتب\ComboFix.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Documents and Settings\ctc\سطح المكتب\Zyzoom.org.McAfee.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Avira\AntiVir PersonalEdition Premium\avmailc.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Avira\AntiVir PersonalEdition Premium\AVWEBGRD.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Avira\AntiVir PersonalEdition Premium\licmgr.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Avira\AntiVir PersonalEdition Premium\SETUP.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Common Files\InstallShield\engine\6\Intel 32\iKernel.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Common Files\Microsoft Shared\MODI\11.0\MSPSCAN.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Common Files\Microsoft Shared\OFFICE11\MSOXMLED.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Common Files\Microsoft Shared\Snapshot Viewer\SNAPVIEW.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\VS7JIT.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Common Files\Microsoft Shared\Web Components\11\DFUICOM.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Common Files\Real\GToolbar\GoogleToolbarInstaller.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Common Files\Real\Update_OB\r1puninst.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Common Files\Real\Update_OB\RealOneMessageCenter.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Common Files\Real\Update_OB\realsched.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Common Files\Real\Update_OB\upgrdhlp.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Ectaco\Language Teacher 98\EADEMO\ea.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\InstallShield Installation Information\{ACCA20B0-C4D1-4BF5-BF21-0A0EB5EF9730}\SETUP.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Java\jre1.6.0_01\bin\javaw.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\K-Lite Codec Pack\filters\divxsm.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\K-Lite Codec Pack\Media Player Classic\mplayerc.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Messenger Plus! Live\Log Viewer.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Messenger Plus! Live\MPTools.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Messenger Plus! Live\Uninstall.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Microsoft Office\OFFICE11\GRAPH.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Microsoft Office\OFFICE11\MSE7.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Microsoft Office\OFFICE11\msohtmed.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Microsoft Office\OFFICE11\MSTORE.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Microsoft Office\OFFICE11\UNBIND.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\mpegable\Player\mpegablePlayer.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\MSN Messenger\livecall.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\MSN Messenger\msvs.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Nokia\Nokia PC Suite 6\ApplicationInstaller.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Nokia\Nokia PC Suite 6\ConnectionManager.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Nokia\Nokia PC Suite 6\ContactsEditor.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Nokia\Nokia PC Suite 6\ContentCopier.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Nokia\Nokia PC Suite 6\MultimediaPlayer.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Nokia\Nokia PC Suite 6\MusicManager.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Nokia\Nokia PC Suite 6\PCSyncLV.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Nokia\Nokia PC Suite 6\TextMessageEditor.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Real\RealPlayer\RecordingManager.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Real\RealPlayer\Setup\setup.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Windows Media Player\wmlaunch.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Windows Media Player\WMPNetwk.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Windows Media Player\wmsetsdk.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\PROGRA~1\COMMON~1\MICROS~1\DTNASKH\DTNASKH.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\PROGRA~1\COMMON~1\MICROS~1\DTRUQAH\DTRUQAH.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\PROGRA~1\COMMON~1\MICROS~1\DW\DW20.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\PROGRA~1\COMMON~1\MICROS~1\DW\DWTRIG20.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\PROGRA~1\COMMON~1\MICROS~1\EQUATION\EQNEDT32.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\PROGRA~1\COMMON~1\MICROS~1\MODI\11.0\MSPOCRDC.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\PROGRA~1\COMMON~1\MICROS~1\MSINFO\OINFOP11.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\PROGRA~1\DIFX\270581355A767BF1\dpinst.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\PROGRA~1\MICROS~2\OFFICE11\DSSM.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\PROGRA~1\MICROS~2\OFFICE11\MSQRY32.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\PROGRA~1\MICROS~2\OFFICE11\MSTORDB.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\PROGRA~1\MICROS~2\OFFICE11\SETLANG.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\PROGRA~1\MSNMES~1\DEVICE~1\msgrdvmn.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
Critical : Repaired
Scanning the computer's cookie directories
Cookies : Clean
c:\pagefile.sys : Scan Failed
File : c:\Documents and Settings\All Users\Application Data\Installations\{57A48477-92F0-4C1F-ADF9-4806C4EC3CF2}\Nokia_PC_Suite_683_rel_14_1_eng_web.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Documents and Settings\All Users\Application Data\Installations\{57A48477-92F0-4C1F-ADF9-4806C4EC3CF2}\Nokia_PC_Suite_683_rel_14_1_eng_web.exe : Repaired
File : c:\Documents and Settings\All Users\Application Data\Installations\{9C05FA75-0337-4523-AA57-9D3511018887}\Installer\CommonCustomActions\UninstPCSFEMsi.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Documents and Settings\All Users\Application Data\Installations\{9C05FA75-0337-4523-AA57-9D3511018887}\Installer\CommonCustomActions\UninstPCSFEMsi.exe : Repaired
c:\Documents and Settings\ctc\NTUSER.DAT : Scan Failed
c:\Documents and Settings\ctc\ntuser.dat.LOG : Scan Failed
File : c:\Documents and Settings\ctc\Application Data\cleaner\1.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Documents and Settings\ctc\Application Data\cleaner\1.exe : Repaired
File : c:\Documents and Settings\ctc\Application Data\cleaner\2.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Documents and Settings\ctc\Application Data\cleaner\2.exe : Repaired
File : c:\Documents and Settings\ctc\Application Data\cleaner\Run.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Documents and Settings\ctc\Application Data\cleaner\Run.exe : Repaired
c:\Documents and Settings\ctc\Local Settings\Application Data\Microsoft\Messenger\raneem1422@windowslive.com\SharingMetadata\pending.dat : Scan Failed
c:\Documents and Settings\ctc\Local Settings\Application Data\Microsoft\Messenger\raneem1422@windowslive.com\SharingMetadata\Working\database_9E6C_9556_6C95_29D3\dfsr.db : Scan Failed
c:\Documents and Settings\ctc\Local Settings\Application Data\Microsoft\Messenger\raneem1422@windowslive.com\SharingMetadata\Working\database_9E6C_9556_6C95_29D3\fsr.log : Scan Failed
c:\Documents and Settings\ctc\Local Settings\Application Data\Microsoft\Messenger\raneem1422@windowslive.com\SharingMetadata\Working\database_9E6C_9556_6C95_29D3\tmp.edb : Scan Failed
c:\Documents and Settings\ctc\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat : Scan Failed
c:\Documents and Settings\ctc\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG : Scan Failed
c:\Documents and Settings\ctc\Local Settings\temp\Perflib_Perfdata_10dc.dat : Scan Failed
c:\Documents and Settings\ctc\Local Settings\temp\~DF6B9C.tmp : Scan Failed
c:\Documents and Settings\ctc\Local Settings\temp\~DF6BAA.tmp : Scan Failed
c:\Documents and Settings\ctc\Local Settings\temp\~DFA056.tmp : Scan Failed
c:\Documents and Settings\ctc\Local Settings\temp\~DFA0EA.tmp : Scan Failed
File : c:\Documents and Settings\ctc\Local Settings\Temporary Internet Files\Content.IE5\MTYJGP8J\Zyzoom_HijackThis[1].exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : c:\Documents and Settings\ctc\Local Settings\Temporary Internet Files\Content.IE5\SOKDV74X\Zyzoom_HijackThis[1].exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : c:\Documents and Settings\ctc\My Documents\My Pictures\المستندات القديمة\CyberLink\PowerDVD\Office2007 Serial.txt.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : c:\Documents and Settings\ctc\My Documents\My Pictures\المستندات القديمة\CyberLink\PowerDVD\Office2007 Serial.txt.exe : contains "Virus" called "W32/Mabezat" (Deleted )
c:\Documents and Settings\ctc\My Documents\My Pictures\المستندات القديمة\CyberLink\PowerDVD\Office2007 Serial.txt.exe : Repaired
File : c:\Documents and Settings\ctc\My Documents\My Pictures\المستندات القديمة\CyberLink\PowerDVD\PowerDVD .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : c:\Documents and Settings\ctc\My Documents\My Pictures\المستندات القديمة\CyberLink\PowerDVD\PowerDVD .exe : contains "Virus" called "W32/Mabezat" (Deleted )
c:\Documents and Settings\ctc\My Documents\My Pictures\المستندات القديمة\CyberLink\PowerDVD\PowerDVD .exe : Repaired
File : c:\Documents and Settings\ctc\My Documents\My Pictures\المستندات القديمة\اختصاراتـــــي\JetAudio dump.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : c:\Documents and Settings\ctc\My Documents\My Pictures\المستندات القديمة\اختصاراتـــــي\JetAudio dump.exe : contains "Virus" called "W32/Mabezat" (Deleted )
c:\Documents and Settings\ctc\My Documents\My Pictures\المستندات القديمة\اختصاراتـــــي\JetAudio dump.exe : Repaired
File : c:\Documents and Settings\ctc\My Documents\My Pictures\المستندات القديمة\اختصاراتـــــي\اختصاراتـــــي .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : c:\Documents and Settings\ctc\My Documents\My Pictures\المستندات القديمة\اختصاراتـــــي\اختصاراتـــــي .exe : contains "Virus" called "W32/Mabezat" (Deleted )
c:\Documents and Settings\ctc\My Documents\My Pictures\المستندات القديمة\اختصاراتـــــي\اختصاراتـــــي .exe : Repaired
File : c:\Documents and Settings\ctc\سطح المكتب\ComboFix.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : c:\Documents and Settings\ctc\سطح المكتب\Zyzoom.org.McAfee.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Documents and Settings\LocalService\NTUSER.DAT : Scan Failed
c:\Documents and Settings\LocalService\ntuser.dat.LOG : Scan Failed
c:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat : Scan Failed
c:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG : Scan Failed
c:\Documents and Settings\NetworkService\NTUSER.DAT : Scan Failed
c:\Documents and Settings\NetworkService\ntuser.dat.LOG : Scan Failed
c:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat : Scan Failed
c:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG : Scan Failed
File : c:\Program Files\Avira\AntiVir PersonalEdition Premium\avadmin.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Avira\AntiVir PersonalEdition Premium\avadmin.exe : Repaired
File : c:\Program Files\Avira\AntiVir PersonalEdition Premium\avconfig.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Avira\AntiVir PersonalEdition Premium\avconfig.exe : Repaired
File : c:\Program Files\Avira\AntiVir PersonalEdition Premium\avmcdlg.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Avira\AntiVir PersonalEdition Premium\avmcdlg.exe : Repaired
File : c:\Program Files\Avira\AntiVir PersonalEdition Premium\avnotify.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Avira\AntiVir PersonalEdition Premium\avnotify.exe : Repaired
File : c:\Program Files\Avira\AntiVir PersonalEdition Premium\avscan.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Avira\AntiVir PersonalEdition Premium\avscan.exe : Repaired
File : c:\Program Files\Avira\AntiVir PersonalEdition Premium\avwsc.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Avira\AntiVir PersonalEdition Premium\avwsc.exe : Repaired
File : c:\Program Files\Avira\AntiVir PersonalEdition Premium\preupd.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Avira\AntiVir PersonalEdition Premium\preupd.exe : Repaired
File : c:\Program Files\Avira\AntiVir PersonalEdition Premium\rscdwld.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Avira\AntiVir PersonalEdition Premium\rscdwld.exe : Repaired
File : c:\Program Files\Avira\AntiVir PersonalEdition Premium\update.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Avira\AntiVir PersonalEdition Premium\update.exe : Repaired
File : c:\Program Files\Avira\AntiVir PersonalEdition Premium\wsctool.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Avira\AntiVir PersonalEdition Premium\wsctool.exe : Repaired
File : c:\Program Files\AvRack\rtlrack.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\AvRack\rtlrack.exe : Repaired
File : c:\Program Files\Common Files\Java\Update\Base Images\jre1.6.0.b105\patch-jre1.6.0_01.b06\patchjre.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Common Files\Java\Update\Base Images\jre1.6.0.b105\patch-jre1.6.0_01.b06\patchjre.exe : Repaired
File : c:\Program Files\Common Files\Microsoft Shared\Database Replication\WZCNFLCT.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Common Files\Microsoft Shared\Database Replication\WZCNFLCT.EXE : Repaired
File : c:\Program Files\Common Files\Real\Update_OB\realsched.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Common Files\Real\Update_OB\realsched.exe : Repaired
File : c:\Program Files\Creative\Product Registration\English\InetReg.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Creative\Product Registration\English\InetReg.exe : Repaired
File : c:\Program Files\DIFX\D6ACC4BE676423A2B130B78A4B627FC457D98997\dpinst.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\DIFX\D6ACC4BE676423A2B130B78A4B627FC457D98997\dpinst.exe : Repaired
File : c:\Program Files\InstallShield Installation Information\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}\setup.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\InstallShield Installation Information\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}\setup.exe : Repaired
File : c:\Program Files\InstallShield Installation Information\{FB08F381-6533-4108-B7DD-039E11FBC27E}\setup.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\InstallShield Installation Information\{FB08F381-6533-4108-B7DD-039E11FBC27E}\setup.exe : Repaired
File : c:\Program Files\Java\jre1.6.0_01\bin\java.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Java\jre1.6.0_01\bin\java.exe : Repaired
File : c:\Program Files\Java\jre1.6.0_01\bin\jucheck.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Java\jre1.6.0_01\bin\jucheck.exe : Repaired
File : c:\Program Files\Java\jre1.6.0_01\bin\unpack200.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Java\jre1.6.0_01\bin\unpack200.exe : Repaired
File : c:\Program Files\K-Lite Codec Pack\filters\divxconfig.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\K-Lite Codec Pack\filters\divxconfig.exe : Repaired
File : c:\Program Files\K-Lite Codec Pack\tools\graphedit.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\K-Lite Codec Pack\tools\graphedit.exe : Repaired
File : c:\Program Files\K-Lite Codec Pack\tools\lamedropxpd.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\K-Lite Codec Pack\tools\lamedropxpd.exe : Repaired
File : c:\Program Files\K-Lite Codec Pack\tools\sherlock.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\K-Lite Codec Pack\tools\sherlock.exe : Repaired
File : c:\Program Files\K-Lite Codec Pack\tools\gspot\gspot.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\K-Lite Codec Pack\tools\gspot\gspot.exe : Repaired
File : c:\Program Files\Microsoft Office\OFFICE11\CONVTEXT.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Microsoft Office\OFFICE11\CONVTEXT.EXE : Repaired
File : c:\Program Files\Microsoft Office\OFFICE11\OSA.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Microsoft Office\OFFICE11\OSA.EXE : Repaired
File : c:\Program Files\Microsoft Office\OFFICE11\PROFLWIZ.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Microsoft Office\OFFICE11\PROFLWIZ.EXE : Repaired
File : c:\Program Files\Microsoft Office\OFFICE11\SELFCERT.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Microsoft Office\OFFICE11\SELFCERT.EXE : Repaired
File : c:\Program Files\Microsoft Office\OFFICE11\1025\MSOHELP.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Microsoft Office\OFFICE11\1025\MSOHELP.EXE : Repaired
File : c:\Program Files\Microsoft Office\OFFICE11\1025\UNPACK.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Microsoft Office\OFFICE11\1025\UNPACK.EXE : Repaired
File : c:\Program Files\Microsoft Office\OFFICE11\1033\MSOHELP.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Microsoft Office\OFFICE11\1033\MSOHELP.EXE : Repaired
File : c:\Program Files\MSN Messenger\Device Manager\dpinst.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\MSN Messenger\Device Manager\dpinst.exe : Repaired
File : c:\Program Files\Nokia\Nokia PC Suite 6\GetConnected.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Nokia\Nokia PC Suite 6\GetConnected.exe : Repaired
File : c:\Program Files\Nokia\Nokia PC Suite 6\ImageStore.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Nokia\Nokia PC Suite 6\ImageStore.exe : Repaired
File : c:\Program Files\Nokia\Nokia PC Suite 6\OneTouchAccess.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Nokia\Nokia PC Suite 6\OneTouchAccess.exe : Repaired
File : c:\Program Files\Nokia\Nokia PC Suite 6\PCSuite.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Nokia\Nokia PC Suite 6\PCSuite.exe : Repaired
File : c:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe : Repaired
File : c:\Program Files\Nokia\Nokia PC Suite 6\SoftwareUpdater.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Nokia\Nokia PC Suite 6\SoftwareUpdater.exe : Repaired
File : c:\Program Files\Nokia\Nokia PC Suite 6\Inf\DPInst.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Nokia\Nokia PC Suite 6\Inf\DPInst.exe : Repaired
File : c:\Program Files\PC Connectivity Solution\DPInst.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\PC Connectivity Solution\DPInst.exe : Repaired
File : c:\Program Files\PC Connectivity Solution\NclInstaller.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\PC Connectivity Solution\NclInstaller.exe : Repaired
File : c:\Program Files\PC Connectivity Solution\Transports\NclBCBTSrv.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\PC Connectivity Solution\Transports\NclBCBTSrv.exe : Repaired
File : c:\Program Files\PC Connectivity Solution\Transports\NclIrSrv.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\PC Connectivity Solution\Transports\NclIrSrv.exe : Repaired
File : c:\Program Files\PC Connectivity Solution\Transports\NclIVTBTSrv.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\PC Connectivity Solution\Transports\NclIVTBTSrv.exe : Repaired
File : c:\Program Files\PC Connectivity Solution\Transports\NclMSBTSrv.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\PC Connectivity Solution\Transports\NclMSBTSrv.exe : Repaired
File : c:\Program Files\PC Connectivity Solution\Transports\NclToBTSrv.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\PC Connectivity Solution\Transports\NclToBTSrv.exe : Repaired
File : c:\Program Files\Quranzu1\المصحف الرقمي.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Quranzu1\المصحف الرقمي.exe : Repaired
File : c:\Program Files\Realtek\InstallShield\Alcmtr.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Realtek\InstallShield\Alcmtr.exe : Repaired
File : c:\Program Files\Realtek\InstallShield\ChCfg.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Realtek\InstallShield\ChCfg.exe : Repaired
File : c:\Program Files\Realtek\InstallShield\KB888111xpsp2.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Realtek\InstallShield\KB888111xpsp2.exe : Repaired
File : c:\Program Files\Realtek\InstallShield\RtlUpd.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Realtek\InstallShield\RtlUpd.exe : Repaired
File : c:\Program Files\Realtek\InstallShield\SkyTel.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Realtek\InstallShield\SkyTel.exe : Repaired
File : c:\Program Files\Realtek\InstallShield\SoundMan.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Realtek\InstallShield\SoundMan.exe : Repaired
File : c:\Program Files\Realtek AC97\alcrmv.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Realtek AC97\alcrmv.exe : Repaired
File : c:\Program Files\Realtek AC97\ChCfg.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Realtek AC97\ChCfg.exe : Repaired
File : c:\Program Files\Realtek AC97\SoundMan.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Realtek AC97\SoundMan.exe : Repaired
File : c:\Program Files\Windows Media Player\wmdbexport.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Windows Media Player\wmdbexport.exe : Repaired
File : c:\Program Files\Windows Media Player\wmpnscfg.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Windows Media Player\wmpnscfg.exe : Repaired
File : c:\Program Files\Yahoo!\Messenger\UNWISE.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Yahoo!\Messenger\UNWISE.EXE : Repaired
c:\WINDOWS\system32\CatRoot2\edb.log : Scan Failed
c:\WINDOWS\system32\CatRoot2\tmp.edb : Scan Failed
c:\WINDOWS\system32\config\default : Scan Failed
c:\WINDOWS\system32\config\default.LOG : Scan Failed
c:\WINDOWS\system32\config\SAM : Scan Failed
c:\WINDOWS\system32\config\SAM.LOG : Scan Failed
c:\WINDOWS\system32\config\SECURITY : Scan Failed
c:\WINDOWS\system32\config\SECURITY.LOG : Scan Failed
c:\WINDOWS\system32\config\software : Scan Failed
c:\WINDOWS\system32\config\software.LOG : Scan Failed
c:\WINDOWS\system32\config\system : Scan Failed
c:\WINDOWS\system32\config\system.LOG : Scan Failed
Scanning the registry
Registry : Clean

Summary :-
FilesFound : 22691
FilesScanned : 15538
FilesNotScanned : 7153

ObjectsFound : 52699
ObjectsInfected : 200
ObjectsCleaned : 193
ObjectsDeleted : 6

FilesInfected : 70
FilesCleaned : 70
FilesMoved : 0
FilesDeleted : 0

Started at : 05:21:10 حلومه 05 ربيع الثاني, 1430
Ended at : 06:19:31 حلومه 05 ربيع الثاني, 1430
Duration : 58 minutes 21 seconds
2871 MB scanned in 3501 seconds = 839 KB/s
Engine Version : 5300.2777
Engine Load Time : 94797 milliseconds
AV DAT Version : 5492.0000 488805 detections Built 15 محرم, 1430
Extra DAT : 0 detections

File : d:\09237b2bc09c2759411d\update\NokiaN73Tools.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\09237b2bc09c2759411d\update\NokiaN73Tools.exe : Deleted
File : d:\09237b2bc09c2759411d\update\update .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\09237b2bc09c2759411d\update\update .exe : Deleted
File : d:\0df0e11586b8f5e54dd4102125d8\0df0e11586b8f5e54dd4102125d8 .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\0df0e11586b8f5e54dd4102125d8\0df0e11586b8f5e54dd4102125d8 .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\0df0e11586b8f5e54dd4102125d8\0df0e11586b8f5e54dd4102125d8 .exe : Repaired
File : d:\0df0e11586b8f5e54dd4102125d8\WinrRarSerialInstall.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\0df0e11586b8f5e54dd4102125d8\WinrRarSerialInstall.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\0df0e11586b8f5e54dd4102125d8\WinrRarSerialInstall.exe : Repaired
File : d:\0df0e11586b8f5e54dd4102125d8\update\NokiaN73Tools.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\0df0e11586b8f5e54dd4102125d8\update\NokiaN73Tools.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\0df0e11586b8f5e54dd4102125d8\update\NokiaN73Tools.exe : Repaired
File : d:\0df0e11586b8f5e54dd4102125d8\update\update .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\0df0e11586b8f5e54dd4102125d8\update\update .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\0df0e11586b8f5e54dd4102125d8\update\update .exe : Repaired
File : d:\13878b9141ed353f66893aae\13878b9141ed353f66893aae .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\13878b9141ed353f66893aae\13878b9141ed353f66893aae .exe : Deleted
File : d:\13878b9141ed353f66893aae\WinrRarSerialInstall.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\13878b9141ed353f66893aae\WinrRarSerialInstall.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\13878b9141ed353f66893aae\WinrRarSerialInstall.exe : Repaired
File : d:\13878b9141ed353f66893aae\update\update .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\13878b9141ed353f66893aae\update\update .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\13878b9141ed353f66893aae\update\update .exe : Repaired
File : d:\13878b9141ed353f66893aae\update\WinrRarSerialInstall.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\13878b9141ed353f66893aae\update\WinrRarSerialInstall.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\13878b9141ed353f66893aae\update\WinrRarSerialInstall.exe : Repaired
File : d:\233d8c349c5a301dcab5d462\233d8c349c5a301dcab5d462 .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\233d8c349c5a301dcab5d462\233d8c349c5a301dcab5d462 .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\233d8c349c5a301dcab5d462\233d8c349c5a301dcab5d462 .exe : Repaired
File : d:\233d8c349c5a301dcab5d462\WinrRarSerialInstall.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\233d8c349c5a301dcab5d462\WinrRarSerialInstall.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\233d8c349c5a301dcab5d462\WinrRarSerialInstall.exe : Repaired
File : d:\233d8c349c5a301dcab5d462\update\NokiaN73Tools.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\233d8c349c5a301dcab5d462\update\NokiaN73Tools.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\233d8c349c5a301dcab5d462\update\NokiaN73Tools.exe : Repaired
File : d:\233d8c349c5a301dcab5d462\update\update .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\233d8c349c5a301dcab5d462\update\update .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\233d8c349c5a301dcab5d462\update\update .exe : Repaired
File : d:\4b174914d8b573cad5365895\4b174914d8b573cad5365895 .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\4b174914d8b573cad5365895\4b174914d8b573cad5365895 .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\4b174914d8b573cad5365895\4b174914d8b573cad5365895 .exe : Repaired
File : d:\4b174914d8b573cad5365895\WinrRarSerialInstall.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\4b174914d8b573cad5365895\WinrRarSerialInstall.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\4b174914d8b573cad5365895\WinrRarSerialInstall.exe : Repaired
File : d:\4b174914d8b573cad5365895\update\update .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\4b174914d8b573cad5365895\update\update .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\4b174914d8b573cad5365895\update\update .exe : Repaired
File : d:\4b174914d8b573cad5365895\update\WinrRarSerialInstall.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\4b174914d8b573cad5365895\update\WinrRarSerialInstall.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\4b174914d8b573cad5365895\update\WinrRarSerialInstall.exe : Repaired
File : d:\553101fa1ede0a66970ef3dfb91b\553101fa1ede0a66970ef3dfb91b .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\553101fa1ede0a66970ef3dfb91b\553101fa1ede0a66970ef3dfb91b .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\553101fa1ede0a66970ef3dfb91b\553101fa1ede0a66970ef3dfb91b .exe : Repaired
File : d:\553101fa1ede0a66970ef3dfb91b\WinrRarSerialInstall.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\553101fa1ede0a66970ef3dfb91b\WinrRarSerialInstall.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\553101fa1ede0a66970ef3dfb91b\WinrRarSerialInstall.exe : Repaired
File : d:\553101fa1ede0a66970ef3dfb91b\update\NokiaN73Tools.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\553101fa1ede0a66970ef3dfb91b\update\NokiaN73Tools.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\553101fa1ede0a66970ef3dfb91b\update\NokiaN73Tools.exe : Repaired
File : d:\553101fa1ede0a66970ef3dfb91b\update\update .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\553101fa1ede0a66970ef3dfb91b\update\update .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\553101fa1ede0a66970ef3dfb91b\update\update .exe : Repaired
File : d:\58d72be859a0228a2b\58d72be859a0228a2b .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\58d72be859a0228a2b\58d72be859a0228a2b .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\58d72be859a0228a2b\58d72be859a0228a2b .exe : Repaired
File : d:\58d72be859a0228a2b\WinrRarSerialInstall.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\58d72be859a0228a2b\WinrRarSerialInstall.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\58d72be859a0228a2b\WinrRarSerialInstall.exe : Repaired
File : d:\58d72be859a0228a2b\update\NokiaN73Tools.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\58d72be859a0228a2b\update\NokiaN73Tools.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\58d72be859a0228a2b\update\NokiaN73Tools.exe : Repaired
File : d:\58d72be859a0228a2b\update\update .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\58d72be859a0228a2b\update\update .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\58d72be859a0228a2b\update\update .exe : Repaired
File : d:\5bebc0f9f48160e50d0a30ac\5bebc0f9f48160e50d0a30ac .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\5bebc0f9f48160e50d0a30ac\5bebc0f9f48160e50d0a30ac .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\5bebc0f9f48160e50d0a30ac\5bebc0f9f48160e50d0a30ac .exe : Repaired
File : d:\5bebc0f9f48160e50d0a30ac\WinrRarSerialInstall.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\5bebc0f9f48160e50d0a30ac\WinrRarSerialInstall.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\5bebc0f9f48160e50d0a30ac\WinrRarSerialInstall.exe : Repaired
File : d:\5bebc0f9f48160e50d0a30ac\update\NokiaN73Tools.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\5bebc0f9f48160e50d0a30ac\update\NokiaN73Tools.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\5bebc0f9f48160e50d0a30ac\update\NokiaN73Tools.exe : Repaired
File : d:\5bebc0f9f48160e50d0a30ac\update\update .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\5bebc0f9f48160e50d0a30ac\update\update .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\5bebc0f9f48160e50d0a30ac\update\update .exe : Repaired
File : d:\7432b34a51a2946485f0280012\7432b34a51a2946485f0280012 .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\7432b34a51a2946485f0280012\7432b34a51a2946485f0280012 .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\7432b34a51a2946485f0280012\7432b34a51a2946485f0280012 .exe : Repaired
File : d:\7432b34a51a2946485f0280012\WinrRarSerialInstall.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\7432b34a51a2946485f0280012\WinrRarSerialInstall.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\7432b34a51a2946485f0280012\WinrRarSerialInstall.exe : Repaired
File : d:\7432b34a51a2946485f0280012\update\NokiaN73Tools.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\7432b34a51a2946485f0280012\update\NokiaN73Tools.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\7432b34a51a2946485f0280012\update\NokiaN73Tools.exe : Repaired
File : d:\7432b34a51a2946485f0280012\update\update .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\7432b34a51a2946485f0280012\update\update .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\7432b34a51a2946485f0280012\update\update .exe : Repaired
File : d:\77aa579838892c8f4c29212009c98ca0\77aa579838892c8f4c29212009c98ca0 .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\77aa579838892c8f4c29212009c98ca0\77aa579838892c8f4c29212009c98ca0 .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\77aa579838892c8f4c29212009c98ca0\77aa579838892c8f4c29212009c98ca0 .exe : Repaired
File : d:\77aa579838892c8f4c29212009c98ca0\WinrRarSerialInstall.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\77aa579838892c8f4c29212009c98ca0\WinrRarSerialInstall.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\77aa579838892c8f4c29212009c98ca0\WinrRarSerialInstall.exe : Repaired
File : d:\77aa579838892c8f4c29212009c98ca0\update\NokiaN73Tools.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\77aa579838892c8f4c29212009c98ca0\update\NokiaN73Tools.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\77aa579838892c8f4c29212009c98ca0\update\NokiaN73Tools.exe : Repaired
File : d:\77aa579838892c8f4c29212009c98ca0\update\update .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\77aa579838892c8f4c29212009c98ca0\update\update .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\77aa579838892c8f4c29212009c98ca0\update\update .exe : Repaired
File : d:\91c0ea4abbfbc902af9f\91c0ea4abbfbc902af9f .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\91c0ea4abbfbc902af9f\91c0ea4abbfbc902af9f .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\91c0ea4abbfbc902af9f\91c0ea4abbfbc902af9f .exe : Repaired
File : d:\91c0ea4abbfbc902af9f\Make Windows Original.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\91c0ea4abbfbc902af9f\Make Windows Original.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\91c0ea4abbfbc902af9f\Make Windows Original.exe : Repaired
File : d:\91c0ea4abbfbc902af9f\update\Office2003 CD-Key.doc.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\91c0ea4abbfbc902af9f\update\Office2003 CD-Key.doc.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\91c0ea4abbfbc902af9f\update\Office2003 CD-Key.doc.exe : Repaired
File : d:\91c0ea4abbfbc902af9f\update\update .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\91c0ea4abbfbc902af9f\update\update .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\91c0ea4abbfbc902af9f\update\update .exe : Repaired
File : d:\9cb539cf4f918ba1f6d03919ca\9cb539cf4f918ba1f6d03919ca .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\9cb539cf4f918ba1f6d03919ca\9cb539cf4f918ba1f6d03919ca .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\9cb539cf4f918ba1f6d03919ca\9cb539cf4f918ba1f6d03919ca .exe : Repaired
File : d:\9cb539cf4f918ba1f6d03919ca\WinrRarSerialInstall.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\9cb539cf4f918ba1f6d03919ca\WinrRarSerialInstall.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\9cb539cf4f918ba1f6d03919ca\WinrRarSerialInstall.exe : Repaired
File : d:\9cb539cf4f918ba1f6d03919ca\update\NokiaN73Tools.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\9cb539cf4f918ba1f6d03919ca\update\NokiaN73Tools.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\9cb539cf4f918ba1f6d03919ca\update\NokiaN73Tools.exe : Repaired
File : d:\9cb539cf4f918ba1f6d03919ca\update\update .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\9cb539cf4f918ba1f6d03919ca\update\update .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\9cb539cf4f918ba1f6d03919ca\update\update .exe : Repaired
File : d:\a29b1b90051ddd7b8d9f4f\a29b1b90051ddd7b8d9f4f .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\a29b1b90051ddd7b8d9f4f\a29b1b90051ddd7b8d9f4f .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\a29b1b90051ddd7b8d9f4f\a29b1b90051ddd7b8d9f4f .exe : Repaired
File : d:\a29b1b90051ddd7b8d9f4f\WinrRarSerialInstall.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\a29b1b90051ddd7b8d9f4f\WinrRarSerialInstall.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\a29b1b90051ddd7b8d9f4f\WinrRarSerialInstall.exe : Repaired
File : d:\a29b1b90051ddd7b8d9f4f\update\NokiaN73Tools.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\a29b1b90051ddd7b8d9f4f\update\NokiaN73Tools.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\a29b1b90051ddd7b8d9f4f\update\NokiaN73Tools.exe : Repaired
File : d:\a29b1b90051ddd7b8d9f4f\update\update .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\a29b1b90051ddd7b8d9f4f\update\update .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\a29b1b90051ddd7b8d9f4f\update\update .exe : Repaired
File : d:\ae073cc4b59f48509ae7d10df64383\ae073cc4b59f48509ae7d10df64383 .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\ae073cc4b59f48509ae7d10df64383\ae073cc4b59f48509ae7d10df64383 .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\ae073cc4b59f48509ae7d10df64383\ae073cc4b59f48509ae7d10df64383 .exe : Repaired
File : d:\ae073cc4b59f48509ae7d10df64383\WinrRarSerialInstall.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\ae073cc4b59f48509ae7d10df64383\WinrRarSerialInstall.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\ae073cc4b59f48509ae7d10df64383\WinrRarSerialInstall.exe : Repaired
File : d:\ae073cc4b59f48509ae7d10df64383\update\NokiaN73Tools.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\ae073cc4b59f48509ae7d10df64383\update\NokiaN73Tools.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\ae073cc4b59f48509ae7d10df64383\update\NokiaN73Tools.exe : Repaired
File : d:\ae073cc4b59f48509ae7d10df64383\update\update .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\ae073cc4b59f48509ae7d10df64383\update\update .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\ae073cc4b59f48509ae7d10df64383\update\update .exe : Repaired
File : d:\b69348ffbe9a1c230296e69a835827\b69348ffbe9a1c230296e69a835827 .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\b69348ffbe9a1c230296e69a835827\b69348ffbe9a1c230296e69a835827 .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\b69348ffbe9a1c230296e69a835827\b69348ffbe9a1c230296e69a835827 .exe : Repaired
File : d:\b69348ffbe9a1c230296e69a835827\WinrRarSerialInstall.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\b69348ffbe9a1c230296e69a835827\WinrRarSerialInstall.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\b69348ffbe9a1c230296e69a835827\WinrRarSerialInstall.exe : Repaired
File : d:\b69348ffbe9a1c230296e69a835827\update\NokiaN73Tools.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\b69348ffbe9a1c230296e69a835827\update\NokiaN73Tools.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\b69348ffbe9a1c230296e69a835827\update\NokiaN73Tools.exe : Repaired
File : d:\b69348ffbe9a1c230296e69a835827\update\update .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\b69348ffbe9a1c230296e69a835827\update\update .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\b69348ffbe9a1c230296e69a835827\update\update .exe : Repaired
File : d:\c018a778c0b8ea4f0d\c018a778c0b8ea4f0d .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\c018a778c0b8ea4f0d\c018a778c0b8ea4f0d .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\c018a778c0b8ea4f0d\c018a778c0b8ea4f0d .exe : Repaired
File : d:\c018a778c0b8ea4f0d\WinrRarSerialInstall.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\c018a778c0b8ea4f0d\WinrRarSerialInstall.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\c018a778c0b8ea4f0d\WinrRarSerialInstall.exe : Repaired
File : d:\c018a778c0b8ea4f0d\update\NokiaN73Tools.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\c018a778c0b8ea4f0d\update\NokiaN73Tools.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\c018a778c0b8ea4f0d\update\NokiaN73Tools.exe : Repaired
File : d:\c018a778c0b8ea4f0d\update\update .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\c018a778c0b8ea4f0d\update\update .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\c018a778c0b8ea4f0d\update\update .exe : Repaired
File : d:\d8dd91c5f59745e7b7\d8dd91c5f59745e7b7 .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\d8dd91c5f59745e7b7\d8dd91c5f59745e7b7 .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\d8dd91c5f59745e7b7\d8dd91c5f59745e7b7 .exe : Repaired
File : d:\d8dd91c5f59745e7b7\WinrRarSerialInstall.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\d8dd91c5f59745e7b7\WinrRarSerialInstall.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\d8dd91c5f59745e7b7\WinrRarSerialInstall.exe : Repaired
File : d:\d8dd91c5f59745e7b7\update\NokiaN73Tools.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\d8dd91c5f59745e7b7\update\NokiaN73Tools.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\d8dd91c5f59745e7b7\update\NokiaN73Tools.exe : Repaired
File : d:\d8dd91c5f59745e7b7\update\update .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\d8dd91c5f59745e7b7\update\update .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\d8dd91c5f59745e7b7\update\update .exe : Repaired
File : d:\f21295bdb1b374460da70e\f21295bdb1b374460da70e .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\f21295bdb1b374460da70e\f21295bdb1b374460da70e .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\f21295bdb1b374460da70e\f21295bdb1b374460da70e .exe : Repaired
File : d:\f21295bdb1b374460da70e\WinrRarSerialInstall.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\f21295bdb1b374460da70e\WinrRarSerialInstall.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\f21295bdb1b374460da70e\WinrRarSerialInstall.exe : Repaired
File : d:\f21295bdb1b374460da70e\update\NokiaN73Tools.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\f21295bdb1b374460da70e\update\NokiaN73Tools.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\f21295bdb1b374460da70e\update\NokiaN73Tools.exe : Repaired
File : d:\f21295bdb1b374460da70e\update\update .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\f21295bdb1b374460da70e\update\update .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\f21295bdb1b374460da70e\update\update .exe : Repaired
File : d:\f24cac1e282787f72b0160\f24cac1e282787f72b0160 .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\f24cac1e282787f72b0160\f24cac1e282787f72b0160 .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\f24cac1e282787f72b0160\f24cac1e282787f72b0160 .exe : Repaired
File : d:\f24cac1e282787f72b0160\WinrRarSerialInstall.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\f24cac1e282787f72b0160\WinrRarSerialInstall.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\f24cac1e282787f72b0160\WinrRarSerialInstall.exe : Repaired
File : d:\f24cac1e282787f72b0160\update\NokiaN73Tools.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\f24cac1e282787f72b0160\update\NokiaN73Tools.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\f24cac1e282787f72b0160\update\NokiaN73Tools.exe : Repaired
File : d:\f24cac1e282787f72b0160\update\update .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\f24cac1e282787f72b0160\update\update .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\f24cac1e282787f72b0160\update\update .exe : Repaired
File : d:\f7464499acdfb7cf0ce257107781b5c5\f7464499acdfb7cf0ce257107781b5c5 .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\f7464499acdfb7cf0ce257107781b5c5\f7464499acdfb7cf0ce257107781b5c5 .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\f7464499acdfb7cf0ce257107781b5c5\f7464499acdfb7cf0ce257107781b5c5 .exe : Repaired
File : d:\f7464499acdfb7cf0ce257107781b5c5\WinrRarSerialInstall.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\f7464499acdfb7cf0ce257107781b5c5\WinrRarSerialInstall.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\f7464499acdfb7cf0ce257107781b5c5\WinrRarSerialInstall.exe : Repaired
File : d:\f7464499acdfb7cf0ce257107781b5c5\update\NokiaN73Tools.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\f7464499acdfb7cf0ce257107781b5c5\update\NokiaN73Tools.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\f7464499acdfb7cf0ce257107781b5c5\update\NokiaN73Tools.exe : Repaired
File : d:\f7464499acdfb7cf0ce257107781b5c5\update\update .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\f7464499acdfb7cf0ce257107781b5c5\update\update .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\f7464499acdfb7cf0ce257107781b5c5\update\update .exe : Repaired
File : d:\fa26ebd625ca47b7dd65d6\fa26ebd625ca47b7dd65d6 .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\fa26ebd625ca47b7dd65d6\fa26ebd625ca47b7dd65d6 .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\fa26ebd625ca47b7dd65d6\fa26ebd625ca47b7dd65d6 .exe : Repaired
File : d:\fa26ebd625ca47b7dd65d6\WinrRarSerialInstall.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\fa26ebd625ca47b7dd65d6\WinrRarSerialInstall.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\fa26ebd625ca47b7dd65d6\WinrRarSerialInstall.exe : Repaired
File : d:\fa26ebd625ca47b7dd65d6\update\NokiaN73Tools.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\fa26ebd625ca47b7dd65d6\update\NokiaN73Tools.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\fa26ebd625ca47b7dd65d6\update\NokiaN73Tools.exe : Repaired
File : d:\fa26ebd625ca47b7dd65d6\update\update .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\fa26ebd625ca47b7dd65d6\update\update .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\fa26ebd625ca47b7dd65d6\update\update .exe : Repaired
File : d:\fe1de42b8597bde2562d9754d4875e\fe1de42b8597bde2562d9754d4875e .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\fe1de42b8597bde2562d9754d4875e\fe1de42b8597bde2562d9754d4875e .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\fe1de42b8597bde2562d9754d4875e\fe1de42b8597bde2562d9754d4875e .exe : Repaired
File : d:\fe1de42b8597bde2562d9754d4875e\WinrRarSerialInstall.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\fe1de42b8597bde2562d9754d4875e\WinrRarSerialInstall.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\fe1de42b8597bde2562d9754d4875e\WinrRarSerialInstall.exe : Repaired
File : d:\fe1de42b8597bde2562d9754d4875e\update\NokiaN73Tools.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\fe1de42b8597bde2562d9754d4875e\update\NokiaN73Tools.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\fe1de42b8597bde2562d9754d4875e\update\NokiaN73Tools.exe : Repaired
File : d:\fe1de42b8597bde2562d9754d4875e\update\update .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\fe1de42b8597bde2562d9754d4875e\update\update .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\fe1de42b8597bde2562d9754d4875e\update\update .exe : Repaired
File : d:\MSOCache\MSOCache .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\MSOCache\MSOCache .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\MSOCache\MSOCache .exe : Repaired
File : d:\MSOCache\WinrRarSerialInstall.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\MSOCache\WinrRarSerialInstall.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\MSOCache\WinrRarSerialInstall.exe : Repaired
File : d:\MSOCache\All Users\All Users .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\MSOCache\All Users\All Users .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\MSOCache\All Users\All Users .exe : Repaired
File : d:\MSOCache\All Users\NokiaN73Tools.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\MSOCache\All Users\NokiaN73Tools.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\MSOCache\All Users\NokiaN73Tools.exe : Repaired
File : d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\90000401-6000-11D3-8CFE-0150048383C9 .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\90000401-6000-11D3-8CFE-0150048383C9 .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\90000401-6000-11D3-8CFE-0150048383C9 .exe : Repaired
File : d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\Make Windows Original.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\Make Windows Original.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\Make Windows Original.exe : Repaired
File : d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\FILES .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\FILES .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\FILES .exe : Repaired
File : d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\Office2003 CD-Key.doc.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\Office2003 CD-Key.doc.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\Office2003 CD-Key.doc.exe : Repaired
File : d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\Office2007 Serial.txt.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\Office2007 Serial.txt.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\Office2007 Serial.txt.exe : Repaired
File : d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\PFILES .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\PFILES .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\PFILES .exe : Repaired
File : d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\COMMON\COMMON .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\COMMON\COMMON .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\COMMON\COMMON .exe : Repaired
File : d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\COMMON\InstallMSN11Ar.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\COMMON\InstallMSN11Ar.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\COMMON\InstallMSN11Ar.exe : Repaired
File : d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\COMMON\MSSHARED\Lock Folder.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\COMMON\MSSHARED\Lock Folder.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\COMMON\MSSHARED\Lock Folder.exe : Repaired
File : d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\COMMON\MSSHARED\MSSHARED .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\COMMON\MSSHARED\MSSHARED .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\COMMON\MSSHARED\MSSHARED .exe : Repaired
File : d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\COMMON\MSSHARED\DW\Crack_GoogleEarthPro.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\COMMON\MSSHARED\DW\Crack_GoogleEarthPro.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\COMMON\MSSHARED\DW\Crack_GoogleEarthPro.exe : Repaired
File : d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\COMMON\MSSHARED\DW\DW .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\COMMON\MSSHARED\DW\DW .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\COMMON\MSSHARED\DW\DW .exe : Repaired
File : d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\COMMON\MSSHARED\DW\DW20.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\COMMON\MSSHARED\DW\DW20.EXE : Repaired
File : d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\COMMON\MSSHARED\DW\DWTRIG20.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\COMMON\MSSHARED\DW\DWTRIG20.EXE : Repaired
File : d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\COMMON\MSSHARED\DW\1025\1025 .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\COMMON\MSSHARED\DW\1025\1025 .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\COMMON\MSSHARED\DW\1025\1025 .exe : Repaired
File : d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\COMMON\MSSHARED\DW\1025\AmericanOnLine.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\COMMON\MSSHARED\DW\1025\AmericanOnLine.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\COMMON\MSSHARED\DW\1025\AmericanOnLine.exe : Repaired
File : d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\COMMON\MSSHARED\DW\1033\1033 .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\COMMON\MSSHARED\DW\1033\1033 .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\COMMON\MSSHARED\DW\1033\1033 .exe : Repaired
File : d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\COMMON\MSSHARED\DW\1033\msjavx86.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\COMMON\MSSHARED\DW\1033\msjavx86.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\COMMON\MSSHARED\DW\1033\msjavx86.exe : Repaired
File : d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\MSOFFICE\InstallMSN11En.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\MSOFFICE\InstallMSN11En.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\MSOFFICE\InstallMSN11En.exe : Repaired
File : d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\MSOFFICE\MSOFFICE .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\MSOFFICE\MSOFFICE .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\MSOFFICE\MSOFFICE .exe : Repaired
File : d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\MSOFFICE\OFFICE11\FloppyDiskPartion.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\MSOFFICE\OFFICE11\FloppyDiskPartion.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\MSOFFICE\OFFICE11\FloppyDiskPartion.exe : Repaired
File : d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\MSOFFICE\OFFICE11\OFFCLN.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\MSOFFICE\OFFICE11\OFFCLN.EXE : Repaired
File : d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\MSOFFICE\OFFICE11\OFFICE11 .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\MSOFFICE\OFFICE11\OFFICE11 .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\MSOFFICE\OFFICE11\OFFICE11 .exe : Repaired
File : d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\MSOFFICE\OFFICE11\1025\1025 .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\MSOFFICE\OFFICE11\1025\1025 .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\MSOFFICE\OFFICE11\1025\1025 .exe : Repaired
File : d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\MSOFFICE\OFFICE11\1025\HP_LaserJetAllInOneConfig.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\MSOFFICE\OFFICE11\1025\HP_LaserJetAllInOneConfig.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\PFILES\MSOFFICE\OFFICE11\1025\HP_LaserJetAllInOneConfig.exe : Repaired
File : d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\SETUP\KasperSky6.0 Key.doc.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\SETUP\KasperSky6.0 Key.doc.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\SETUP\KasperSky6.0 Key.doc.exe : Repaired
File : d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\SETUP\OSE.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\SETUP\OSE.EXE : Repaired
File : d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\SETUP\SETUP .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\SETUP\SETUP .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\SETUP\SETUP .exe : Repaired
File : d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\WINDOWS\JetAudio dump.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\WINDOWS\JetAudio dump.exe : Deleted
File : d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\WINDOWS\WINDOWS .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\WINDOWS\WINDOWS .exe : Deleted
File : d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\WINDOWS\INF\INF .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\WINDOWS\INF\INF .exe : Deleted
File : d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\WINDOWS\INF\Microsoft Windows Network.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\MSOCache\All Users\90000401-6000-11D3-8CFE-0150048383C9\FILES\WINDOWS\INF\Microsoft Windows Network.exe : Deleted
File : d:\MSOCache\All Users\microsoft.watson.alrtintl.data\microsoft.watson.alrtintl.data .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\MSOCache\All Users\microsoft.watson.alrtintl.data\microsoft.watson.alrtintl.data .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\MSOCache\All Users\microsoft.watson.alrtintl.data\microsoft.watson.alrtintl.data .exe : Repaired
File : d:\MSOCache\All Users\microsoft.watson.alrtintl.data\WinrRarSerialInstall.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\MSOCache\All Users\microsoft.watson.alrtintl.data\WinrRarSerialInstall.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\MSOCache\All Users\microsoft.watson.alrtintl.data\WinrRarSerialInstall.exe : Repaired
File : d:\MSOCache\All Users\microsoft.watson.watsonrc.data\microsoft.watson.watsonrc.data .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\MSOCache\All Users\microsoft.watson.watsonrc.data\microsoft.watson.watsonrc.data .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\MSOCache\All Users\microsoft.watson.watsonrc.data\microsoft.watson.watsonrc.data .exe : Repaired
File : d:\MSOCache\All Users\microsoft.watson.watsonrc.data\WinrRarSerialInstall.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\MSOCache\All Users\microsoft.watson.watsonrc.data\WinrRarSerialInstall.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\MSOCache\All Users\microsoft.watson.watsonrc.data\WinrRarSerialInstall.exe : Repaired
File : d:\RECYCLER\S-1-5-21-1123561945-879983540-1801674531-1003\Make Windows Original.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\RECYCLER\S-1-5-21-1123561945-879983540-1801674531-1003\Make Windows Original.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\RECYCLER\S-1-5-21-1123561945-879983540-1801674531-1003\Make Windows Original.exe : Repaired
File : d:\RECYCLER\S-1-5-21-1123561945-879983540-1801674531-1003\S-1-5-21-1123561945-879983540-1801674531-1003 .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\RECYCLER\S-1-5-21-1123561945-879983540-1801674531-1003\S-1-5-21-1123561945-879983540-1801674531-1003 .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\RECYCLER\S-1-5-21-1123561945-879983540-1801674531-1003\S-1-5-21-1123561945-879983540-1801674531-1003 .exe : Repaired
File : d:\RECYCLER\S-1-5-21-796845957-1123561945-725345543-1003\Adjust Time.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\RECYCLER\S-1-5-21-796845957-1123561945-725345543-1003\Adjust Time.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\RECYCLER\S-1-5-21-796845957-1123561945-725345543-1003\Adjust Time.exe : Repaired
File : d:\RECYCLER\S-1-5-21-796845957-1123561945-725345543-1003\S-1-5-21-796845957-1123561945-725345543-1003 .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\RECYCLER\S-1-5-21-796845957-1123561945-725345543-1003\S-1-5-21-796845957-1123561945-725345543-1003 .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\RECYCLER\S-1-5-21-796845957-1123561945-725345543-1003\S-1-5-21-796845957-1123561945-725345543-1003 .exe : Repaired
File : d:\System Volume Information\System Volume Information .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\System Volume Information\System Volume Information .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\System Volume Information\System Volume Information .exe : Repaired
File : d:\System Volume Information\WinrRarSerialInstall.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\System Volume Information\WinrRarSerialInstall.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\System Volume Information\WinrRarSerialInstall.exe : Repaired
File : d:\System Volume Information\catalog.wci\catalog.wci .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\System Volume Information\catalog.wci\catalog.wci .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\System Volume Information\catalog.wci\catalog.wci .exe : Repaired
File : d:\System Volume Information\catalog.wci\WinrRarSerialInstall.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\System Volume Information\catalog.wci\WinrRarSerialInstall.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\System Volume Information\catalog.wci\WinrRarSerialInstall.exe : Repaired
File : d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\WinrRarSerialInstall.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\WinrRarSerialInstall.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\WinrRarSerialInstall.exe : Repaired
File : d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP1\A0000002.inf : contains "Trojan" called "Generic!atr" (Deleted )
d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP1\A0000002.inf : Deleted
File : d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP1\Make Windows Original.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP1\Make Windows Original.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP1\Make Windows Original.exe : Repaired
File : d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP1\RP1 .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP1\RP1 .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP1\RP1 .exe : Repaired
File : d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP2\A0000005.inf : contains "Trojan" called "Generic!atr" (Deleted )
d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP2\A0000005.inf : Deleted
File : d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP2\A0000013.inf : contains "Trojan" called "Generic!atr" (Deleted )
d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP2\A0000013.inf : Deleted
File : d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP2\KasperSky6.0 Key.doc.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP2\KasperSky6.0 Key.doc.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP2\KasperSky6.0 Key.doc.exe : Repaired
File : d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP2\RP2 .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP2\RP2 .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP2\RP2 .exe : Repaired
File : d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP3\A0000017.inf : contains "Trojan" called "Generic!atr" (Deleted )
d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP3\A0000017.inf : Deleted
File : d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP3\A0000029.inf : contains "Trojan" called "Generic!atr" (Deleted )
d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP3\A0000029.inf : Deleted
File : d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP3\A0000039.inf : contains "Trojan" called "Generic!atr" (Deleted )
d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP3\A0000039.inf : Deleted
File : d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP3\A0000047.inf : contains "Trojan" called "Generic!atr" (Deleted )
d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP3\A0000047.inf : Deleted
File : d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP3\A0000058.inf : contains "Trojan" called "Generic!atr" (Deleted )
d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP3\A0000058.inf : Deleted
File : d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP3\NokiaN73Tools.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP3\NokiaN73Tools.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP3\NokiaN73Tools.exe : Repaired
File : d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP3\RP3 .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP3\RP3 .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP3\RP3 .exe : Repaired
File : d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP4\A0000062.inf : contains "Trojan" called "Generic!atr" (Deleted )
d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP4\A0000062.inf : Deleted
File : d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP4\A0000136.inf : contains "Trojan" called "Generic!atr" (Deleted )
d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP4\A0000136.inf : Deleted
File : d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP4\A0001111.inf : contains "Trojan" called "Generic!atr" (Deleted )
d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP4\A0001111.inf : Deleted
File : d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP4\A0001119.inf : contains "Trojan" called "Generic!atr" (Deleted )
d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP4\A0001119.inf : Deleted
File : d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP4\A0001126.inf : contains "Trojan" called "Generic!atr" (Deleted )
d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP4\A0001126.inf : Deleted
File : d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP4\A0001140.inf : contains "Trojan" called "Generic!atr" (Deleted )
d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP4\A0001140.inf : Deleted
File : d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP4\A0001152.inf : contains "Trojan" called "Generic!atr" (Deleted )
d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP4\A0001152.inf : Deleted
File : d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP4\A0001163.inf : contains "Trojan" called "Generic!atr" (Deleted )
d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP4\A0001163.inf : Deleted
File : d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP4\A0001171.inf : contains "Trojan" called "Generic!atr" (Deleted )
d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP4\A0001171.inf : Deleted
File : d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP4\A0001177.inf : contains "Trojan" called "Generic!atr" (Deleted )
d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP4\A0001177.inf : Deleted
File : d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP4\A0003177.inf : contains "Trojan" called "Generic!atr" (Deleted )
d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP4\A0003177.inf : Deleted
File : d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP4\RP4 .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP4\RP4 .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP4\RP4 .exe : Repaired
File : d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP4\WinrRarSerialInstall.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP4\WinrRarSerialInstall.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP4\WinrRarSerialInstall.exe : Repaired
File : d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\NokiaN73Tools.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\NokiaN73Tools.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\NokiaN73Tools.exe : Repaired
File : d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP21\A0009543.inf : contains "Trojan" called "Generic!atr" (Deleted )
d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP21\A0009543.inf : Deleted
File : d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP21\A0009571.inf : contains "Trojan" called "Generic!atr" (Deleted )
d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP21\A0009571.inf : Deleted
File : d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP21\A0009692.inf : contains "Trojan" called "Generic!atr" (Deleted )
d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP21\A0009692.inf : Deleted
File : d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP21\A0010015.inf : contains "Trojan" called "Generic!atr" (Deleted )
d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP21\A0010015.inf : Deleted
File : d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP21\Make Windows Original.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP21\Make Windows Original.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP21\Make Windows Original.exe : Repaired
File : d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP21\RP21 .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP21\RP21 .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP21\RP21 .exe : Repaired
File : d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP22\A0010436.inf : contains "Trojan" called "Generic!atr" (Deleted )
d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP22\A0010436.inf : Deleted
File : d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP22\A0010497.inf : contains "Trojan" called "Generic!atr" (Deleted )
d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP22\A0010497.inf : Deleted
File : d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP22\A0010618.inf : contains "Trojan" called "Generic!atr" (Deleted )
d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP22\A0010618.inf : Deleted
File : d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP22\A0010676.inf : contains "Trojan" called "Generic!atr" (Deleted )
d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP22\A0010676.inf : Deleted
File : d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP22\A0010952.inf : contains "Trojan" called "Generic!atr" (Deleted )
d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP22\A0010952.inf : Deleted
File : d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP22\A0011009.inf : contains "Trojan" called "Generic!atr" (Deleted )
d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP22\A0011009.inf : Deleted
File : d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP22\A0011051.inf : contains "Trojan" called "Generic!atr" (Deleted )
d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP22\A0011051.inf : Deleted
File : d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP22\A0011115.inf : contains "Trojan" called "Generic!atr" (Deleted )
d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP22\A0011115.inf : Deleted
File : d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP22\A0012115.inf : contains "Trojan" called "Generic!atr" (Deleted )
d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP22\A0012115.inf : Deleted
File : d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP22\A0012606.inf : contains "Trojan" called "Generic!atr" (Deleted )
d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP22\A0012606.inf : Deleted
File : d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP22\A0012821.inf : contains "Trojan" called "Generic!atr" (Deleted )
d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP22\A0012821.inf : Deleted
File : d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP22\A0012979.inf : contains "Trojan" called "Generic!atr" (Deleted )
d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP22\A0012979.inf : Deleted
File : d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP22\Office2003 CD-Key.doc.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP22\Office2003 CD-Key.doc.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP22\Office2003 CD-Key.doc.exe : Repaired
File : d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP22\RP22 .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP22\RP22 .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP22\RP22 .exe : Repaired
File : d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP23\A0013135.inf : contains "Trojan" called "Generic!atr" (Deleted )
d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP23\A0013135.inf : Deleted
File : d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP23\A0013155.inf : contains "Trojan" called "Generic!atr" (Deleted )
d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP23\A0013155.inf : Deleted
File : d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP23\A0015153.inf : contains "Trojan" called "Generic!atr" (Deleted )
d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP23\A0015153.inf : Deleted
File : d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP23\A0015160.inf : contains "Trojan" called "Generic!atr" (Deleted )
d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP23\A0015160.inf : Deleted
File : d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP23\A0015218.inf : contains "Trojan" called "Generic!atr" (Deleted )
d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP23\A0015218.inf : Deleted
File : d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP23\A0015331.inf : contains "Trojan" called "Generic!atr" (Deleted )
d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP23\A0015331.inf : Deleted
File : d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP23\A0015475.inf : contains "Trojan" called "Generic!atr" (Deleted )
d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP23\A0015475.inf : Deleted
File : d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP23\A0015482.inf : contains "Trojan" called "Generic!atr" (Deleted )
d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP23\A0015482.inf : Deleted
File : d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP23\A0015489.inf : contains "Trojan" called "Generic!atr" (Deleted )
d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP23\A0015489.inf : Deleted
File : d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP23\Office2007 Serial.txt.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP23\Office2007 Serial.txt.exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP23\Office2007 Serial.txt.exe : Repaired
File : d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP23\RP23 .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP23\RP23 .exe : contains "Virus" called "W32/Mabezat" (Deleted )
d:\System Volume Information\_restore{2EF0DA28-BE0E-4676-9180-DF0DCB3B1BCE}\RP23\RP23 .exe : Repaired

Summary :-
FilesFound : 319
FilesScanned : 260
FilesNotScanned : 59

ObjectsFound : 321
ObjectsInfected : 333
ObjectsCleaned : 143
ObjectsDeleted : 190

FilesInfected : 194
FilesCleaned : 143
FilesMoved : 0
FilesDeleted : 51

Started at : 06:21:08 حلومه 05 ربيع الثاني, 1430
Ended at : 06:31:30 حلومه 05 ربيع الثاني, 1430
Duration : 10 minutes 22 seconds
71 MB scanned in 622 seconds = 117 KB/s
Engine Version : 5300.2777
Engine Load Time : 70500 milliseconds
AV DAT Version : 5492.0000 488805 detections Built 15 محرم, 1430
Extra DAT : 0 detections

File : e:\RECYCLER\S-1-5-21-796845957-1123561945-725345543-1003\NokiaN73Tools.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : e:\RECYCLER\S-1-5-21-796845957-1123561945-725345543-1003\NokiaN73Tools.exe : contains "Virus" called "W32/Mabezat" (Deleted )
e:\RECYCLER\S-1-5-21-796845957-1123561945-725345543-1003\NokiaN73Tools.exe : Repaired
File : e:\RECYCLER\S-1-5-21-796845957-1123561945-725345543-1003\S-1-5-21-796845957-1123561945-725345543-1003 .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : e:\RECYCLER\S-1-5-21-796845957-1123561945-725345543-1003\S-1-5-21-796845957-1123561945-725345543-1003 .exe : contains "Virus" called "W32/Mabezat" (Deleted )
e:\RECYCLER\S-1-5-21-796845957-1123561945-725345543-1003\S-1-5-21-796845957-1123561945-725345543-1003 .exe : Repaired
File : e:\System Volume Information\System Volume Information .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : e:\System Volume Information\System Volume Information .exe : contains "Virus" called "W32/Mabezat" (Deleted )
e:\System Volume Information\System Volume Information .exe : Repaired
File : e:\System Volume Information\WinrRarSerialInstall.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : e:\System Volume Information\WinrRarSerialInstall.exe : contains "Virus" called "W32/Mabezat" (Deleted )
e:\System Volume Information\WinrRarSerialInstall.exe : Repaired
File : e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\WinrRarSerialInstall.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\WinrRarSerialInstall.exe : contains "Virus" called "W32/Mabezat" (Deleted )
e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\WinrRarSerialInstall.exe : Repaired
File : e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP1\A0000001.inf : contains "Trojan" called "Generic!atr" (Deleted )
e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP1\A0000001.inf : Deleted
File : e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP1\Make Windows Original.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP1\Make Windows Original.exe : contains "Virus" called "W32/Mabezat" (Deleted )
e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP1\Make Windows Original.exe : Repaired
File : e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP1\RP1 .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP1\RP1 .exe : contains "Virus" called "W32/Mabezat" (Deleted )
e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP1\RP1 .exe : Repaired
File : e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP2\A0000004.inf : contains "Trojan" called "Generic!atr" (Deleted )
e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP2\A0000004.inf : Deleted
File : e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP2\A0000012.inf : contains "Trojan" called "Generic!atr" (Deleted )
e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP2\A0000012.inf : Deleted
File : e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP2\Office2007 Serial.txt.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP2\Office2007 Serial.txt.exe : contains "Virus" called "W32/Mabezat" (Deleted )
e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP2\Office2007 Serial.txt.exe : Repaired
File : e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP2\RP2 .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP2\RP2 .exe : contains "Virus" called "W32/Mabezat" (Deleted )
e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP2\RP2 .exe : Repaired
File : e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP3\A0000016.inf : contains "Trojan" called "Generic!atr" (Deleted )
e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP3\A0000016.inf : Deleted
File : e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP3\A0000028.inf : contains "Trojan" called "Generic!atr" (Deleted )
e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP3\A0000028.inf : Deleted
File : e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP3\A0000038.inf : contains "Trojan" called "Generic!atr" (Deleted )
e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP3\A0000038.inf : Deleted
File : e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP3\A0000046.inf : contains "Trojan" called "Generic!atr" (Deleted )
e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP3\A0000046.inf : Deleted
File : e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP3\A0000057.inf : contains "Trojan" called "Generic!atr" (Deleted )
e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP3\A0000057.inf : Deleted
File : e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP3\RP3 .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP3\RP3 .exe : contains "Virus" called "W32/Mabezat" (Deleted )
e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP3\RP3 .exe : Repaired
File : e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP3\WinrRarSerialInstall.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP3\WinrRarSerialInstall.exe : contains "Virus" called "W32/Mabezat" (Deleted )
e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP3\WinrRarSerialInstall.exe : Repaired
File : e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP4\A0000061.inf : contains "Trojan" called "Generic!atr" (Deleted )
e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP4\A0000061.inf : Deleted
File : e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP4\A0000135.inf : contains "Trojan" called "Generic!atr" (Deleted )
e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP4\A0000135.inf : Deleted
File : e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP4\A0001110.inf : contains "Trojan" called "Generic!atr" (Deleted )
e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP4\A0001110.inf : Deleted
File : e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP4\A0001118.inf : contains "Trojan" called "Generic!atr" (Deleted )
e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP4\A0001118.inf : Deleted
File : e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP4\A0001125.inf : contains "Trojan" called "Generic!atr" (Deleted )
e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP4\A0001125.inf : Deleted
File : e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP4\A0001139.inf : contains "Trojan" called "Generic!atr" (Deleted )
e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP4\A0001139.inf : Deleted
File : e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP4\A0001151.inf : contains "Trojan" called "Generic!atr" (Deleted )
e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP4\A0001151.inf : Deleted
File : e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP4\A0001162.inf : contains "Trojan" called "Generic!atr" (Deleted )
e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP4\A0001162.inf : Deleted
File : e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP4\A0001170.inf : contains "Trojan" called "Generic!atr" (Deleted )
e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP4\A0001170.inf : Deleted
File : e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP4\A0001176.inf : contains "Trojan" called "Generic!atr" (Deleted )
e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP4\A0001176.inf : Deleted
File : e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP4\A0002176.inf : contains "Trojan" called "Generic!atr" (Deleted )
e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP4\A0002176.inf : Deleted
File : e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP4\A0003176.inf : contains "Trojan" called "Generic!atr" (Deleted )
e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP4\A0003176.inf : Deleted
File : e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP4\RP4 .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP4\RP4 .exe : contains "Virus" called "W32/Mabezat" (Deleted )
e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP4\RP4 .exe : Repaired
File : e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP4\WinrRarSerialInstall.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP4\WinrRarSerialInstall.exe : contains "Virus" called "W32/Mabezat" (Deleted )
e:\System Volume Information\_restore{2ABDD95B-28A5-4864-B4AB-24B694BAE244}\RP4\WinrRarSerialInstall.exe : Repaired
File : e:\المستندات القديمة\CyberLink\PowerDVD\Office2007 Serial.txt.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : e:\المستندات القديمة\CyberLink\PowerDVD\Office2007 Serial.txt.exe : contains "Virus" called "W32/Mabezat" (Deleted )
e:\المستندات القديمة\CyberLink\PowerDVD\Office2007 Serial.txt.exe : Repaired
File : e:\المستندات القديمة\CyberLink\PowerDVD\PowerDVD .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : e:\المستندات القديمة\CyberLink\PowerDVD\PowerDVD .exe : contains "Virus" called "W32/Mabezat" (Deleted )
e:\المستندات القديمة\CyberLink\PowerDVD\PowerDVD .exe : Repaired
File : e:\المستندات القديمة\اختصاراتـــــي\JetAudio dump.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : e:\المستندات القديمة\اختصاراتـــــي\JetAudio dump.exe : contains "Virus" called "W32/Mabezat" (Deleted )
e:\المستندات القديمة\اختصاراتـــــي\JetAudio dump.exe : Repaired
File : e:\المستندات القديمة\اختصاراتـــــي\اختصاراتـــــي .exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : e:\المستندات القديمة\اختصاراتـــــي\اختصاراتـــــي .exe : contains "Virus" called "W32/Mabezat" (Deleted )
e:\المستندات القديمة\اختصاراتـــــي\اختصاراتـــــي .exe : Repaired

Summary :-
FilesFound : 198
FilesScanned : 153
FilesNotScanned : 45

ObjectsFound : 207
ObjectsInfected : 54
ObjectsCleaned : 17
ObjectsDeleted : 37

FilesInfected : 37
FilesCleaned : 17
FilesMoved : 0
FilesDeleted : 20

Started at : 06:32:41 حلومه 05 ربيع الثاني, 1430
Ended at : 06:34:04 حلومه 05 ربيع الثاني, 1430
Duration : 1 minutes 22 seconds
16 MB scanned in 82 seconds = 212 KB/s
Engine Version : 5300.2777
Engine Load Time : 64485 milliseconds
AV DAT Version : 5492.0000 488805 detections Built 15 محرم, 1430
Extra DAT : 0 detections

Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (Cleaned )
Process : C:\WINDOWS\explorer.exe : contains "Trojan" called "W32/Sality!mem" (No Action Taken (Clean failed) )
Process : C:\DOCUME~1\ctc\LOCALS~1\Temp\ugtxa.exe\ugtxa.exe : contains "Trojan" called "Generic PWS.f" (Deleted )
Process : C:\DOCUME~1\ctc\LOCALS~1\Temp\winjdogv.exe : contains "Trojan" called "Spam-Mailbot" (Deleted )
Memory : Deleted
Please wait ... building list of critical files to scan
File : C:\Documents and Settings\All Users\Application Data\Installations\{9C05FA75-0337-4523-AA57-9D3511018887}\Nokia PC.Suite 6.86.9.3 Ar.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Documents and Settings\ctc\Application Data\Real\RealPlayer\Update\RealPlayer11.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Documents and Settings\ctc\سطح المكتب\ComboFix.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Documents and Settings\ctc\سطح المكتب\Zyzoom.org.McAfee.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Avira\AntiVir PersonalEdition Premium\avmailc.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Avira\AntiVir PersonalEdition Premium\AVWEBGRD.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Avira\AntiVir PersonalEdition Premium\licmgr.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Avira\AntiVir PersonalEdition Premium\SETUP.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Common Files\InstallShield\engine\6\Intel 32\iKernel.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Common Files\Microsoft Shared\MODI\11.0\MSPSCAN.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Common Files\Microsoft Shared\OFFICE11\MSOXMLED.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Common Files\Microsoft Shared\Snapshot Viewer\SNAPVIEW.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\VS7JIT.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Common Files\Microsoft Shared\Web Components\11\DFUICOM.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Common Files\Nokia\MPAPI\MPAPI3s.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Common Files\Real\GToolbar\GoogleToolbarInstaller.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Common Files\Real\Update_OB\r1puninst.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Common Files\Real\Update_OB\RealOneMessageCenter.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Common Files\Real\Update_OB\realsched.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Common Files\Real\Update_OB\upgrdhlp.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Ectaco\Language Teacher 98\EADEMO\ea.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\InstallShield Installation Information\{ACCA20B0-C4D1-4BF5-BF21-0A0EB5EF9730}\SETUP.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Java\jre1.6.0_01\bin\javaw.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\K-Lite Codec Pack\filters\divxsm.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\K-Lite Codec Pack\Media Player Classic\mplayerc.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Messenger Plus! Live\Log Viewer.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Messenger Plus! Live\MPTools.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Messenger Plus! Live\Uninstall.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Microsoft Office\OFFICE11\GRAPH.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Microsoft Office\OFFICE11\MSE7.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Microsoft Office\OFFICE11\msohtmed.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Microsoft Office\OFFICE11\MSTORE.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Microsoft Office\OFFICE11\UNBIND.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\mpegable\Player\mpegablePlayer.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\MSN Messenger\livecall.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\MSN Messenger\msvs.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Nokia\Nokia PC Suite 6\ApplicationInstaller.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Nokia\Nokia PC Suite 6\ConnectionManager.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Nokia\Nokia PC Suite 6\ContactsEditor.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Nokia\Nokia PC Suite 6\ContentCopier.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Nokia\Nokia PC Suite 6\MultimediaPlayer.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Nokia\Nokia PC Suite 6\MusicManager.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Nokia\Nokia PC Suite 6\PCSuite.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Nokia\Nokia PC Suite 6\PCSync2.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Nokia\Nokia PC Suite 6\PCSyncLV.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Nokia\Nokia PC Suite 6\TextMessageEditor.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Real\RealPlayer\RecordingManager.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Real\RealPlayer\Setup\setup.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Windows Media Player\wmlaunch.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Windows Media Player\WMPNetwk.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\Program Files\Windows Media Player\wmsetsdk.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\PROGRA~1\COMMON~1\MICROS~1\DTNASKH\DTNASKH.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\PROGRA~1\COMMON~1\MICROS~1\DTRUQAH\DTRUQAH.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\PROGRA~1\COMMON~1\MICROS~1\DW\DW20.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\PROGRA~1\COMMON~1\MICROS~1\EQUATION\EQNEDT32.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\PROGRA~1\COMMON~1\MICROS~1\MODI\11.0\MSPOCRDC.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\PROGRA~1\COMMON~1\MICROS~1\MSINFO\OINFOP11.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\PROGRA~1\DIFX\270581355A767BF1\dpinst.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\PROGRA~1\MICROS~2\OFFICE11\DSSM.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\PROGRA~1\MICROS~2\OFFICE11\MSQRY32.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\PROGRA~1\MICROS~2\OFFICE11\MSTORDB.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\PROGRA~1\MICROS~2\OFFICE11\SETLANG.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\PROGRA~1\MSNMES~1\DEVICE~1\msgrdvmn.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : C:\PROGRA~1\Nokia\NOKIAP~1\PCSync2.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
Critical : Repaired
Scanning the computer's cookie directories
Cookies : Clean
c:\pagefile.sys : Scan Failed
File : c:\Documents and Settings\All Users\Application Data\Installations\{57A48477-92F0-4C1F-ADF9-4806C4EC3CF2}\Nokia_PC_Suite_683_rel_14_1_eng_web.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Documents and Settings\All Users\Application Data\Installations\{57A48477-92F0-4C1F-ADF9-4806C4EC3CF2}\Nokia_PC_Suite_683_rel_14_1_eng_web.exe : Repaired
File : c:\Documents and Settings\All Users\Application Data\Installations\{9C05FA75-0337-4523-AA57-9D3511018887}\Installer\CommonCustomActions\UninstPCSFEMsi.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Documents and Settings\All Users\Application Data\Installations\{9C05FA75-0337-4523-AA57-9D3511018887}\Installer\CommonCustomActions\UninstPCSFEMsi.exe : Repaired
c:\Documents and Settings\ctc\NTUSER.DAT : Scan Failed
c:\Documents and Settings\ctc\ntuser.dat.LOG : Scan Failed
File : c:\Documents and Settings\ctc\Application Data\cleaner\1.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Documents and Settings\ctc\Application Data\cleaner\1.exe : Repaired
File : c:\Documents and Settings\ctc\Application Data\cleaner\2.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Documents and Settings\ctc\Application Data\cleaner\2.exe : Repaired
File : c:\Documents and Settings\ctc\Application Data\cleaner\Run.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Documents and Settings\ctc\Application Data\cleaner\Run.exe : Repaired
c:\Documents and Settings\ctc\Local Settings\Application Data\Microsoft\Messenger\raneem1422@windowslive.com\SharingMetadata\pending.dat : Scan Failed
c:\Documents and Settings\ctc\Local Settings\Application Data\Microsoft\Messenger\raneem1422@windowslive.com\SharingMetadata\Working\database_9E6C_9556_6C95_29D3\dfsr.db : Scan Failed
c:\Documents and Settings\ctc\Local Settings\Application Data\Microsoft\Messenger\raneem1422@windowslive.com\SharingMetadata\Working\database_9E6C_9556_6C95_29D3\fsr.log : Scan Failed
c:\Documents and Settings\ctc\Local Settings\Application Data\Microsoft\Messenger\raneem1422@windowslive.com\SharingMetadata\Working\database_9E6C_9556_6C95_29D3\tmp.edb : Scan Failed
c:\Documents and Settings\ctc\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat : Scan Failed
c:\Documents and Settings\ctc\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG : Scan Failed
c:\Documents and Settings\ctc\Local Settings\temp\Perflib_Perfdata_1174.dat : Scan Failed
File : c:\Documents and Settings\ctc\Local Settings\temp\winejks.exe : contains "Trojan" called "Spam-Mailbot" (Deleted )
c:\Documents and Settings\ctc\Local Settings\temp\winejks.exe : Deleted
File : c:\Documents and Settings\ctc\Local Settings\temp\winvowfyk.exe\winvowfyk.exe : contains "Trojan" called "Generic PWS.f" (Deleted )
c:\Documents and Settings\ctc\Local Settings\temp\winvowfyk.exe : Deleted
c:\Documents and Settings\ctc\Local Settings\temp\~DF88BC.tmp : Scan Failed
c:\Documents and Settings\ctc\Local Settings\temp\~DF88CC.tmp : Scan Failed
File : c:\Documents and Settings\ctc\Local Settings\Temporary Internet Files\Content.IE5\MTYJGP8J\Zyzoom_HijackThis[1].exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : c:\Documents and Settings\ctc\Local Settings\Temporary Internet Files\Content.IE5\SOKDV74X\Zyzoom_HijackThis[1].exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : c:\Documents and Settings\ctc\سطح المكتب\ComboFix.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
File : c:\Documents and Settings\ctc\سطح المكتب\Zyzoom.org.McAfee.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Documents and Settings\LocalService\NTUSER.DAT : Scan Failed
c:\Documents and Settings\LocalService\ntuser.dat.LOG : Scan Failed
c:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat : Scan Failed
c:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG : Scan Failed
c:\Documents and Settings\NetworkService\NTUSER.DAT : Scan Failed
c:\Documents and Settings\NetworkService\ntuser.dat.LOG : Scan Failed
c:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat : Scan Failed
c:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG : Scan Failed
File : c:\Program Files\Avira\AntiVir PersonalEdition Premium\avadmin.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Avira\AntiVir PersonalEdition Premium\avadmin.exe : Repaired
File : c:\Program Files\Avira\AntiVir PersonalEdition Premium\avconfig.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Avira\AntiVir PersonalEdition Premium\avconfig.exe : Repaired
File : c:\Program Files\Avira\AntiVir PersonalEdition Premium\avmcdlg.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Avira\AntiVir PersonalEdition Premium\avmcdlg.exe : Repaired
File : c:\Program Files\Avira\AntiVir PersonalEdition Premium\avnotify.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Avira\AntiVir PersonalEdition Premium\avnotify.exe : Repaired
File : c:\Program Files\Avira\AntiVir PersonalEdition Premium\avscan.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Avira\AntiVir PersonalEdition Premium\avscan.exe : Repaired
File : c:\Program Files\Avira\AntiVir PersonalEdition Premium\avwsc.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Avira\AntiVir PersonalEdition Premium\avwsc.exe : Repaired
File : c:\Program Files\Avira\AntiVir PersonalEdition Premium\preupd.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Avira\AntiVir PersonalEdition Premium\preupd.exe : Repaired
File : c:\Program Files\Avira\AntiVir PersonalEdition Premium\rscdwld.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Avira\AntiVir PersonalEdition Premium\rscdwld.exe : Repaired
File : c:\Program Files\Avira\AntiVir PersonalEdition Premium\update.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Avira\AntiVir PersonalEdition Premium\update.exe : Repaired
File : c:\Program Files\Avira\AntiVir PersonalEdition Premium\wsctool.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Avira\AntiVir PersonalEdition Premium\wsctool.exe : Repaired
File : c:\Program Files\AvRack\rtlrack.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\AvRack\rtlrack.exe : Repaired
File : c:\Program Files\Common Files\Java\Update\Base Images\jre1.6.0.b105\patch-jre1.6.0_01.b06\patchjre.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Common Files\Java\Update\Base Images\jre1.6.0.b105\patch-jre1.6.0_01.b06\patchjre.exe : Repaired
File : c:\Program Files\Common Files\Microsoft Shared\Database Replication\WZCNFLCT.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Common Files\Microsoft Shared\Database Replication\WZCNFLCT.EXE : Repaired
File : c:\Program Files\Common Files\Real\Update_OB\realsched.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Common Files\Real\Update_OB\realsched.exe : Repaired
File : c:\Program Files\Creative\Product Registration\English\InetReg.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Creative\Product Registration\English\InetReg.exe : Repaired
File : c:\Program Files\DIFX\D6ACC4BE676423A2B130B78A4B627FC457D98997\dpinst.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\DIFX\D6ACC4BE676423A2B130B78A4B627FC457D98997\dpinst.exe : Repaired
File : c:\Program Files\InstallShield Installation Information\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}\setup.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\InstallShield Installation Information\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}\setup.exe : Repaired
File : c:\Program Files\InstallShield Installation Information\{FB08F381-6533-4108-B7DD-039E11FBC27E}\setup.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\InstallShield Installation Information\{FB08F381-6533-4108-B7DD-039E11FBC27E}\setup.exe : Repaired
File : c:\Program Files\Java\jre1.6.0_01\bin\java.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Java\jre1.6.0_01\bin\java.exe : Repaired
File : c:\Program Files\Java\jre1.6.0_01\bin\jucheck.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Java\jre1.6.0_01\bin\jucheck.exe : Repaired
File : c:\Program Files\Java\jre1.6.0_01\bin\unpack200.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Java\jre1.6.0_01\bin\unpack200.exe : Repaired
File : c:\Program Files\K-Lite Codec Pack\filters\divxconfig.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\K-Lite Codec Pack\filters\divxconfig.exe : Repaired
File : c:\Program Files\K-Lite Codec Pack\tools\graphedit.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\K-Lite Codec Pack\tools\graphedit.exe : Repaired
File : c:\Program Files\K-Lite Codec Pack\tools\lamedropxpd.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\K-Lite Codec Pack\tools\lamedropxpd.exe : Repaired
File : c:\Program Files\K-Lite Codec Pack\tools\sherlock.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\K-Lite Codec Pack\tools\sherlock.exe : Repaired
File : c:\Program Files\K-Lite Codec Pack\tools\gspot\gspot.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\K-Lite Codec Pack\tools\gspot\gspot.exe : Repaired
File : c:\Program Files\Microsoft Office\OFFICE11\CONVTEXT.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Microsoft Office\OFFICE11\CONVTEXT.EXE : Repaired
File : c:\Program Files\Microsoft Office\OFFICE11\OSA.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Microsoft Office\OFFICE11\OSA.EXE : Repaired
File : c:\Program Files\Microsoft Office\OFFICE11\PROFLWIZ.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Microsoft Office\OFFICE11\PROFLWIZ.EXE : Repaired
File : c:\Program Files\Microsoft Office\OFFICE11\SELFCERT.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Microsoft Office\OFFICE11\SELFCERT.EXE : Repaired
File : c:\Program Files\Microsoft Office\OFFICE11\1025\MSOHELP.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Microsoft Office\OFFICE11\1025\MSOHELP.EXE : Repaired
File : c:\Program Files\Microsoft Office\OFFICE11\1025\UNPACK.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Microsoft Office\OFFICE11\1025\UNPACK.EXE : Repaired
File : c:\Program Files\Microsoft Office\OFFICE11\1033\MSOHELP.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Microsoft Office\OFFICE11\1033\MSOHELP.EXE : Repaired
File : c:\Program Files\MSN Messenger\Device Manager\dpinst.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\MSN Messenger\Device Manager\dpinst.exe : Repaired
File : c:\Program Files\Nokia\Nokia PC Suite 6\GetConnected.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Nokia\Nokia PC Suite 6\GetConnected.exe : Repaired
File : c:\Program Files\Nokia\Nokia PC Suite 6\ImageStore.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Nokia\Nokia PC Suite 6\ImageStore.exe : Repaired
File : c:\Program Files\Nokia\Nokia PC Suite 6\OneTouchAccess.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Nokia\Nokia PC Suite 6\OneTouchAccess.exe : Repaired
File : c:\Program Files\Nokia\Nokia PC Suite 6\PCSuite.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Nokia\Nokia PC Suite 6\PCSuite.exe : Repaired
File : c:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe : Repaired
File : c:\Program Files\Nokia\Nokia PC Suite 6\SoftwareUpdater.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Nokia\Nokia PC Suite 6\SoftwareUpdater.exe : Repaired
File : c:\Program Files\Nokia\Nokia PC Suite 6\Inf\DPInst.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Nokia\Nokia PC Suite 6\Inf\DPInst.exe : Repaired
File : c:\Program Files\PC Connectivity Solution\DPInst.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\PC Connectivity Solution\DPInst.exe : Repaired
File : c:\Program Files\PC Connectivity Solution\NclInstaller.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\PC Connectivity Solution\NclInstaller.exe : Repaired
File : c:\Program Files\PC Connectivity Solution\Transports\NclBCBTSrv.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\PC Connectivity Solution\Transports\NclBCBTSrv.exe : Repaired
File : c:\Program Files\PC Connectivity Solution\Transports\NclIrSrv.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\PC Connectivity Solution\Transports\NclIrSrv.exe : Repaired
File : c:\Program Files\PC Connectivity Solution\Transports\NclIVTBTSrv.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\PC Connectivity Solution\Transports\NclIVTBTSrv.exe : Repaired
File : c:\Program Files\PC Connectivity Solution\Transports\NclMSBTSrv.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\PC Connectivity Solution\Transports\NclMSBTSrv.exe : Repaired
File : c:\Program Files\PC Connectivity Solution\Transports\NclToBTSrv.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\PC Connectivity Solution\Transports\NclToBTSrv.exe : Repaired
File : c:\Program Files\Quranzu1\المصحف الرقمي.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Quranzu1\المصحف الرقمي.exe : Repaired
File : c:\Program Files\Realtek\InstallShield\Alcmtr.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Realtek\InstallShield\Alcmtr.exe : Repaired
File : c:\Program Files\Realtek\InstallShield\ChCfg.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Realtek\InstallShield\ChCfg.exe : Repaired
File : c:\Program Files\Realtek\InstallShield\KB888111xpsp2.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Realtek\InstallShield\KB888111xpsp2.exe : Repaired
File : c:\Program Files\Realtek\InstallShield\RtlUpd.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Realtek\InstallShield\RtlUpd.exe : Repaired
File : c:\Program Files\Realtek\InstallShield\SkyTel.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Realtek\InstallShield\SkyTel.exe : Repaired
File : c:\Program Files\Realtek\InstallShield\SoundMan.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Realtek\InstallShield\SoundMan.exe : Repaired
File : c:\Program Files\Realtek AC97\alcrmv.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Realtek AC97\alcrmv.exe : Repaired
File : c:\Program Files\Realtek AC97\ChCfg.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Realtek AC97\ChCfg.exe : Repaired
File : c:\Program Files\Realtek AC97\SoundMan.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Realtek AC97\SoundMan.exe : Repaired
File : c:\Program Files\Windows Media Player\wmdbexport.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Windows Media Player\wmdbexport.exe : Repaired
File : c:\Program Files\Windows Media Player\wmpnscfg.exe : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Windows Media Player\wmpnscfg.exe : Repaired
File : c:\Program Files\Yahoo!\Messenger\UNWISE.EXE : contains "Virus" called "W32/Sality.ag" (Cleaned )
c:\Program Files\Yahoo!\Messenger\UNWISE.EXE : Repaired
c:\WINDOWS\system32\CatRoot2\edb.log : Scan Failed
c:\WINDOWS\system32\CatRoot2\tmp.edb : Scan Failed
c:\WINDOWS\system32\config\default : Scan Failed
c:\WINDOWS\system32\config\default.LOG : Scan Failed
c:\WINDOWS\system32\config\SAM : Scan Failed
c:\WINDOWS\system32\config\SAM.LOG : Scan Failed
c:\WINDOWS\system32\config\SECURITY : Scan Failed
c:\WINDOWS\system32\config\SECURITY.LOG : Scan Failed
c:\WINDOWS\system32\config\software : Scan Failed
c:\WINDOWS\system32\config\software.LOG : Scan Failed
c:\WINDOWS\system32\config\system : Scan Failed
c:\WINDOWS\system32\config\system.LOG : Scan Failed
Scanning the registry
Registry : Clean

Summary :-
FilesFound : 22721
FilesScanned : 15561
FilesNotScanned : 7160

ObjectsFound : 53295
ObjectsInfected : 191
ObjectsCleaned : 186
ObjectsDeleted : 4

FilesInfected : 68
FilesCleaned : 66
FilesMoved : 0
FilesDeleted : 2

Started at : 06:35:13 حلومه 05 ربيع الثاني, 1430
Ended at : 07:35:30 حلومه 05 ربيع الثاني, 1430
Duration : 1 hours 0 minutes 16 seconds
2861 MB scanned in 3616 seconds = 810 KB/s
Engine Version : 5300.2777
Engine Load Time : 64110 milliseconds
AV DAT Version : 5492.0000 488805 detections Built 15 محرم, 1430
Extra DAT : 0 detections


Summary :-
FilesFound : 129
FilesScanned : 70
FilesNotScanned : 59

ObjectsFound : 131
ObjectsInfected : 0
ObjectsCleaned : 0
ObjectsDeleted : 0

FilesInfected : 0
FilesCleaned : 0
FilesMoved : 0
FilesDeleted : 0

Started at : 07:36:37 حلومه 05 ربيع الثاني, 1430
Ended at : 07:37:01 حلومه 05 ربيع الثاني, 1430
Duration : 23 seconds
6 MB scanned in 23 seconds = 285 KB/s
Engine Version : 5300.2777
Engine Load Time : 67141 milliseconds
AV DAT Version : 5492.0000 488805 detections Built 15 محرم, 1430
Extra DAT : 0 detections


Summary :-
FilesFound : 161
FilesScanned : 116
FilesNotScanned : 45

ObjectsFound : 170
ObjectsInfected : 0
ObjectsCleaned : 0
ObjectsDeleted : 0

FilesInfected : 0
FilesCleaned : 0
FilesMoved : 0
FilesDeleted : 0

Started at : 07:38:11 حلومه 05 ربيع الثاني, 1430
Ended at : 07:38:29 حلومه 05 ربيع الثاني, 1430
Duration : 17 seconds
7 MB scanned in 17 seconds = 459 KB/s
 
يا اخوااان مافي احد يقدر يساعدني ؟؟
 
هل ما زالت المشكلة قائمة
وانك لا تستطيع فتح الاقراص ؟؟
 
توقيع : السّاجد لله
ايوه اخوووي

ماتفتح معي الاقراص وكمان المجلدات الموجوده في المستندات
تظهر لي رساله بان الصوره غير مطابقه لصورة الاقراص المرنه
 
عطل استعادة النظام عن طريق
كلك يمين على ايقونة جهاز الكومبيوتر >>> خصائص >>> استعادة النظام
ثم ضع علامة صح في المربع امام الخيار ايقاف تشغيل استعادة النظام على كافة محركات الاقراص ثم تطبيق ووافق على رسالة التأكيد ثم موافق

(ولاعادة الاستعادة لاحقا اعد العملية وارفع علامة الصح ثم اوكي)


ثم حمل اداة الكاسبر من الرابط التالي

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


او من هنا

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


بعد التحميل ،، دبل كلك وسيتم استخراج ملف الاداة الى مجلد بسطح المكتب لحظات وتبدأ الاداة بالعمل

تابع الشرح لفحص الجهاز وتنظيفه وارفاق التقرير

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


ثم قم بضغط التقرير
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

ورفعه هنا
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي
 
التعديل الأخير بواسطة المشرف:
توقيع : السّاجد لله
خلاص اخوي الله يعطيك العافيه انحلت المشكله

لاعدمتكم ياااارب
 
عودة
أعلى