How to remove 124782.exe and inst.exe permanently?

  • Thread starter Thread starter rully
  • Start date Start date
R

rully

Dear All,

I need your help how to remove 124782.exe and inst.exe. I already scan
with all types of antivirus software, pest patrol, adaware and so on
includes trying to remove manually, however, it still coming back
again and very annoying.

Could someone help for me please to trow these virus away???

Thank you very much,

rully
 
Dear Chris,

Thank you for your reply. Herewith I attach my log files:

Logfile of HijackThis v1.98.2
Scan saved at 12:05:49 AM, on 10/23/2004
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\Atievxx.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Norton AntiVirus\AdvTools\NPROTECT.EXE
C:\WINDOWS\System32\nutsrv4.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\Java\j2re1.4.2_05\bin\jusched.exe
C:\PROGRA~1\PESTPA~1\PPControl.exe
C:\PROGRA~1\PESTPA~1\PPMemCheck.exe
C:\PROGRA~1\PESTPA~1\CookiePatrol.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files\MSN Apps\Updater\01.02.3000.1001\en-au\msnappau.exe
C:\Program Files\Hello\Hello.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\WINDOWS\System32\netui0.exe
C:\WINDOWS\System32\wuauclt.exe
C:\WINDOWS\System32\w?nspool.exe
C:\Program Files\D-Link\D-Link AirPlus G+ Wireless Adapter
Utility\DWLGTI.EXE
C:\Documents and Settings\rully\Application Data\aatn.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
\RULLY\Supporting Programs\Programs\HighJackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar =
res://C:\WINDOWS\Downloaded Program
Files\CONFLICT.1\CopernicMeta.dll/SearchBar_htm
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
http://www.heretofind.com/show.php?id=15&q=%s
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.ecu.edu.au/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://www.heretofind.com/show.php?id=15&q=%s
R3 - URLSearchHook: (no name) - {DE09D68E-0488-4DF0-BD46-5BF35F2D1F2A}
- C:\WINDOWS\DOWNLO~1\CONFLICT.1\COPERN~1.DLL
O1 - Hosts: 127.0.0.3 n-glx.s-redirect.com
O1 - Hosts: 127.0.0.3 x.full-tgp.net
O1 - Hosts: 127.0.0.3 counter.sexmaniack.com
O1 - Hosts: 127.0.0.3 autoescrowpay.com
O1 - Hosts: 127.0.0.3 www.autoescrowpay.com
O1 - Hosts: 127.0.0.3 www.awmdabest.com
O1 - Hosts: 127.0.0.3 www.sexfiles.nu
O1 - Hosts: 127.0.0.3 awmdabest.com
O1 - Hosts: 127.0.0.3 sexfiles.nu
O1 - Hosts: 127.0.0.3 allforadult.com
O1 - Hosts: 127.0.0.3 www.allforadult.com
O1 - Hosts: 127.0.0.3 www.iframe.biz
O1 - Hosts: 127.0.0.3 iframe.biz
O1 - Hosts: 127.0.0.3 www.newiframe.biz
O1 - Hosts: 127.0.0.3 newiframe.biz
O1 - Hosts: 127.0.0.3 www.vesbiz.biz
O1 - Hosts: 127.0.0.3 vesbiz.biz
O1 - Hosts: 127.0.0.3 www.pizdato.biz
O1 - Hosts: 127.0.0.3 pizdato.biz
O1 - Hosts: 127.0.0.3 www.aaasexypics.com
O1 - Hosts: 127.0.0.3 aaasexypics.com
O1 - Hosts: 127.0.0.3 www.virgin-tgp.net
O1 - Hosts: 127.0.0.3 virgin-tgp.net
O1 - Hosts: 69.20.16.183 auto.search.msn.com
O1 - Hosts: 69.20.16.183 search.netscape.com
O1 - Hosts: 69.20.16.183 ieautosearch
O2 - BHO: (no name) - {39AF447D-ED11-52E1-825A-62557BF6781B} -
C:\WINDOWS\System32\nfsghar.dll
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program
Files\MSN Apps\ST\01.02.3000.1002\en-xu\stmain.dll
O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} -
C:\Program Files\MSN Apps\MSN Toolbar\01.02.3000.1001\en-au\msntb.dll
O3 - Toolbar: Norton AntiVirus -
{42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton
AntiVirus\NavShExt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} -
c:\program files\google\googletoolbar1.dll
O3 - Toolbar: WebFerret - {A58686ED-FC46-44C3-95C6-4A812AB776F1} -
C:\Program Files\FerretSoft\WebFerret\FerretBand.dll
O3 - Toolbar: ninemsn - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} -
C:\Program Files\MSN Apps\MSN Toolbar\01.02.3000.1001\en-au\msntb.dll
O3 - Toolbar: Copernic Agent - {F2E259E8-0FC8-438C-A6E0-342DD80FA53E}
- C:\PROGRA~1\COPERN~1\COPERN~1.DLL
O3 - Toolbar: Copernic Meta - {F79AD27F-8140-4E33-8B1D-C4FC6B663CCA} -
C:\WINDOWS\Downloaded Program Files\CONFLICT.1\CopernicMeta.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} -
C:\WINDOWS\System32\msdxm.ocx
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec
Shared\ccApp.exe"
O4 - HKLM\..\Run: [ccRegVfy] "C:\Program Files\Common Files\Symantec
Shared\ccRegVfy.exe"
O4 - HKLM\..\Run: [Advanced Tools Check]
C:\PROGRA~1\NORTON~1\AdvTools\ADVCHK.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program
Files\Java\j2re1.4.2_05\bin\jusched.exe
O4 - HKLM\..\Run: [PestPatrol Control Center]
C:\PROGRA~1\PESTPA~1\PPControl.exe
O4 - HKLM\..\Run: [PPMemCheck] C:\PROGRA~1\PESTPA~1\PPMemCheck.exe
O4 - HKLM\..\Run: [CookiePatrol] C:\PROGRA~1\PESTPA~1\CookiePatrol.exe
O4 - HKLM\..\Run: [NuTCSetupEnviron]
C:\PROGRA~1\RATIONAL\RATION~1\NUTCROOT\bin\ncoeenv.exe
O4 - HKLM\..\Run: [dsxap] C:\WINDOWS\dsxap.exe
O4 - HKLM\..\Run: [onof] C:\WINDOWS\onof.exe
O4 - HKLM\..\Run: [Zone Labs Client] "C:\Program Files\Zone
Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [msnappau] "C:\Program Files\MSN
Apps\Updater\01.02.3000.1001\en-au\msnappau.exe"
O4 - HKLM\..\Run: [PicasaNet] "C:\Program Files\Hello\Hello.exe" -b
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN
Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [Sreo] C:\Documents and Settings\rully\Application
Data\dtuh.exe
O4 - HKCU\..\Run: [netui0] C:\WINDOWS\System32\netui0.exe
O4 - HKCU\..\Run: [Wlnvuny] C:\WINDOWS\System32\w?nspool.exe
O4 - HKCU\..\Run: [Btib] C:\Documents and Settings\rully\Application
Data\aatn.exe
O4 - Global Startup: D-Link AirPlus G+ Wireless Adapter Utility.lnk =
C:\Program Files\D-Link\D-Link AirPlus G+ Wireless Adapter
Utility\DWLGTI.EXE
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft
Office\Office10\OSA.EXE
O8 - Extra context menu item: &Google Search - res://C:\Program
Files\Google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: Backward Links - res://C:\Program
Files\Google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page -
res://C:\Program Files\Google\GoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: E&xport to Microsoft Excel -
res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Search Using Copernic Agent - C:\Program
Files\Copernic Agent\Web\SearchExt.htm
O8 - Extra context menu item: Search Using Copernic Meta -
res://C:\WINDOWS\Downloaded Program
Files\CONFLICT.1\CopernicMeta.dll/HTML/SearchExt
O8 - Extra context menu item: Similar Pages - res://C:\Program
Files\Google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Translate into English -
res://C:\Program Files\Google\GoogleToolbar1.dll/cmtrans.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501}
- C:\WINDOWS\System32\msjava.dll
O9 - Extra 'Tools' menuitem: Sun Java Console -
{08B0E5C0-4FCB-11CF-AAA5-00401C608501} -
C:\WINDOWS\System32\msjava.dll
O9 - Extra button: (no name) - {193B17B0-7C9F-4D5B-AEAB-8D3605EFC084}
- C:\PROGRA~1\COPERN~1\COPERN~1.EXE
O9 - Extra 'Tools' menuitem: Launch Copernic Agent -
{193B17B0-7C9F-4D5B-AEAB-8D3605EFC084} -
C:\PROGRA~1\COPERN~1\COPERN~1.EXE
O9 - Extra button: (no name) - {237AA178-C3BC-4f67-A8BB-D8BC14BA0B89}
- (no file)
O9 - Extra button: Copernic Agent -
{688DC797-DC11-46A7-9F1B-445F4F58CE6E} -
C:\PROGRA~1\COPERN~1\COPERN~1.EXE
O9 - Extra button: Corel Network monitor worker -
{7E1F32BC-D2E4-4383-9111-19902D99EB0D} - (no file)
O9 - Extra 'Tools' menuitem: Corel Network monitor worker -
{7E1F32BC-D2E4-4383-9111-19902D99EB0D} - (no file)
O9 - Extra button: Share in Hello -
{B13B4423-2647-4cfc-A4B3-C7D56CB83487} - C:\Program
Files\Hello\PicasaCapture.dll
O9 - Extra 'Tools' menuitem: Share in H&ello -
{B13B4423-2647-4cfc-A4B3-C7D56CB83487} - C:\Program
Files\Hello\PicasaCapture.dll
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} -
C:\WINDOWS\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links -
{c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra button: (no name) - {237AA178-C3BC-4f67-A8BB-D8BC14BA0B89}
- (no file) (HKCU)
O9 - Extra button: Corel Network monitor worker -
{7E1F32BC-D2E4-4383-9111-19902D99EB0D} - (no file) (HKCU)
O9 - Extra 'Tools' menuitem: Corel Network monitor worker -
{7E1F32BC-D2E4-4383-9111-19902D99EB0D} - (no file) (HKCU)
O15 - Trusted Zone: *.blazefind.com
O15 - Trusted Zone: *.clickspring.net
O15 - Trusted Zone: *.flingstone.com
O15 - Trusted Zone: *.mt-download.com
O15 - Trusted Zone: *.my-internet.info
O15 - Trusted Zone: *.searchbarcash.com
O15 - Trusted Zone: *.searchmiracle.com
O15 - Trusted Zone: *.skoobidoo.com
O15 - Trusted Zone: *.slotch.com
O15 - Trusted Zone: *.windupdates.com
O15 - Trusted Zone: *.xxxtoolbar.com
O16 - DPF: Copernic Meta -
file://C:\DOCUME~1\rully\LOCALS~1\Temp\CopernicMeta0000.cab
O16 - DPF: {15AD4789-CDB4-47E1-A9DA-992EE8E6BAD6} -
http://public.windupdates.com/get_f...f92e68cfba8c:eb8a1fb09d00c5943edceabcca450006
O16 - DPF: {197AB1D7-A7DD-4C86-A938-1FCC0DB21B85} (DMProxyCtl Class) -
http://dm.cometsystems.com/dm/dm2_inst.cab
O16 - DPF: {1D0D9077-3798-49BB-9058-393499174D5D} -
file://c:\counter.cab
O16 - DPF: {2359626E-7524-4F87-B04E-22CD38A0C88C} (ICSScannerLight
Class) - http://download.zonelabs.com/bin/free/cm/ICSCM.cab
O16 - DPF: {386A771C-E96A-421F-8BA7-32F1B706892F} (Installer Class) -
http://www.xxxtoolbar.com/ist/softwares/v4.0/0006_regular.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class)
- http://v5.windowsupdate.microsoft.c...ls/en/x86/client/wuweb_site.cab?1083673922029
O16 - DPF: {6BEA1C48-1850-486C-8F58-C7354BA3165E} (Install Class) -
http://updates.lifescapeinc.com/installers/pinstall/pinstall.cab
O16 - DPF: {706F3805-27D7-478D-80E5-E25D2BB030B3}
(VacPro.internazionale_ver3) -
http://www.advnt01.com/dialer/internazionale_ver3.CAB
O16 - DPF: {9EB320CE-BE1D-4304-A081-4B4665414BEF}
(MediaTicketsInstaller Control) -
http://www.mt-download.com/MediaTicketsInstaller.cab
O16 - DPF: {B6B14E82-E23B-48DE-BFFF-876EC90D9B96} -
file://C:\DOCUME~1\rully\LOCALS~1\Temp\CopernicMetaInstall0000.cab
O18 - Protocol: copernicmeta - {9B46B30C-CB70-4551-9806-3238CC816A55}
- C:\WINDOWS\DOWNLO~1\CONFLICT.1\COPERN~1.DLL

Please let me know for further actions.

Thank you very much for your help.

Best Regards,

rully
 
1) Download the following three items...

Trend Sysclean Package
http://www.trendmicro.com/download/dcs.asp

Latest Trend signature files.
http://www.trendmicro.com/download/pattern.asp

Adaware SE (personal free version)
http://www.lavasoftusa.com/

Create a directory.
On drive "C:\"
(e.g., "c:\New Folder")
or the desktop
(e.g., "C:\Documents and Settings\lipman\Desktop\New Folder")

Download sysclean.com and place it in that directory.
Dowload the signature files (pattern files) by obtaining the ZIP file.
For example; lpt202.zip

Extract the contents of the ZIP file and place the contents in the same directory as
sysclean.com.

2) Update Adware with the latest definitions.
3) If you are using WinME or WinXP, disable System Restore
http://vil.nai.com/vil/SystemHelpDocs/DisableSysRestore.htm
4) Reboot your PC into Safe Mode
5) Using both the Trend Sysclean utility and Adaware, perform a Full Scan of your
platform and clean/delete any infectors/parasites found.
(a few cycles may be needed)
6) Restart your PC and perform a "final" Full Scan of your platform using both the
Trend Sysclean utility and Adaware
7) If you are using WinME or WinXP,Re-enable System Restore and re-apply any
System Restore preferences, (e.g. HD space to use suggested 400 ~ 600MB),
8) Reboot your PC.
9) If you are using WinME or WinXP, create a new Restore point

You can also try some of the below online scanners.

Trend:
http://housecall.antivirus.com
http://housecall.trendmicro.com

F-Secure:
http://support.f-secure.com/enu/home/ols.shtml

McAfee:
http://www.mcafee.com/myapps/mfs/default.asp

Panda:
http://www.pandasoftware.com/activescan/

Kaspersky:
http://www.kaspersky.com/de/scanforvirus

Symantec:
http://security.symantec.com/

BitDefender
http://www.bitdefender.com/scan/license.php

Freedom Online scanner
http://www.freedom.net/viruscenter/index.html


* * * Please report your results ! * * *

Dave




| Dear All,
|
| I need your help how to remove 124782.exe and inst.exe. I already scan
| with all types of antivirus software, pest patrol, adaware and so on
| includes trying to remove manually, however, it still coming back
| again and very annoying.
|
| Could someone help for me please to trow these virus away???
|
| Thank you very much,
|
| rully
 
Dear David,

Sorry I reply you in late because I have something urgent in overseas.
According to my results, I do have a problem with this...the file
"crash.txt" is keeping coming back and re-created over the time...even
I delete it manually, it still coming back (I already follow your
guide) as follow:

first come into SAFE MODE in ADMINISTRATION and do in RULLY both are
log in place...and did full scan using as you recommended, includes
disable system restore...and re - full scan in the normal mode....all
I follow your guides but "crash.txt" file still keep coming
back...Anyway, here is my report from "Sysclean":

NOTE: I provide for you from Syscan at Safe Mode and Normal Mode.
Additionally I provide you a highjackthis (new)...

FROM SAFE MODE:

/--------------------------------------------------------------\
| Trend Micro Sysclean Package |
| Copyright 2002, Trend Micro, Inc. |
| http://www.trendmicro.com |
\--------------------------------------------------------------/


2004-10-29, 03:50:19, Auto-clean mode specified.
2004-10-29, 03:50:19, Running scanner "C:\New Folder\TSC.BIN"...
2004-10-29, 03:51:18, Scanner "C:\New Folder\TSC.BIN" has finished
running.
2004-10-29, 03:51:18, TSC Log:

2004-10-29, 03:51:53, An error occurred while scanning file
"C:\Documents and Settings\Administrator\NTUSER.DAT": Access is
denied.
2004-10-29, 03:51:53, An error occurred while scanning file
"C:\Documents and Settings\Administrator\ntuser.dat.LOG": Access is
denied.
2004-10-29, 03:51:53, An error occurred while scanning file
"C:\Documents and Settings\Administrator\Local Settings\Application
Data\Microsoft\Windows\UsrClass.dat": Access is denied.
2004-10-29, 03:51:53, An error occurred while scanning file
"C:\Documents and Settings\Administrator\Local Settings\Application
Data\Microsoft\Windows\UsrClass.dat.LOG": Access is denied.
2004-10-29, 03:51:54, Could not set file for reading on
"C:\Documents and Settings\All Users\Application Data\Microsoft\Dr
Watson\user.dmp": Access is denied.
2004-10-29, 04:01:33, Could not set file for reading on "C:\Program
Files\Rational\Rose\o-rs2glw.rar": Access is denied.
2004-10-29, 04:04:11, An error was detected on "C:\System Volume
Information\*.*": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\124782.EXE-07F785CF.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\AATN.EXE-054C7E9E.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\ACRORD32.EXE-20C463C1.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\ADVCHK.EXE-06353890.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\AGENTSVR.EXE-002E45AB.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\AGJB.DAT-2A07E0CF.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\AMNI.DAT-0E9D607F.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\AUPDATE.EXE-2253CB60.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\BPKH.DAT-2B2E308A.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\CALC.EXE-02CD573A.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\CASCADE DTP V4.EXE-26A38ECE.pf": Access is
denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\CASCADE.EXE-12B95E49.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\CCAPP.EXE-1207B2A5.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\CCPWDSVC.EXE-25BE6B86.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\CCREGVFY.EXE-08FB5B2E.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\CKJK.DAT-0DCC1C21.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\CMD.EXE-087B4001.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\COLLECTION8.EXE-346C19F8.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\COOKIEPATROL.EXE-005737A7.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\COUNTER.EXE-2E0D7CDC.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\CURRENTLOGON.EXE-32253424.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\DEFRAG.EXE-273F131E.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\DFRGNTFS.EXE-269967DF.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\DRWTSN32.EXE-2B4B52AC.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\DTUH.EXE-12D68FDC.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\DUMPREP.EXE-1B46F901.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\DW.EXE-227292CF.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\DWLGTI.EXE-06EF6A9C.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\DWWIN.EXE-30875ADC.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\EXPLORER.EXE-082F38A9.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\FFCO.DAT-3A2E7774.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\FNIP.DAT-3210D997.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\GEMJ.DAT-0D10F6E0.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\GLB1A2B.EXE-23344532.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\GLJ286.TMP-2796DC9F.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\HC.EXE-0059B3C0.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\HELLO.EXE-332132CA.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\HELPCTR.EXE-3862B6F5.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\HELPHOST.EXE-247D2792.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\HELPSVC.EXE-2878DDA2.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\HIJACKTHIS.EXE-2791E853.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\IEOL.DAT-2EDD51B6.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\IEXPLORE.EXE-27122324.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\ILID.DAT-2131B627.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\INST.EXE-0BF1DF5C.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\IS-910QA.TMP-3B26141B.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\IUN506.EXE-075EE1EF.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\JAVAW.EXE-2C3C0CA8.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\JAVAWS.EXE-2989E31A.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\JCREATOR.EXE-314E051D.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\JDCC.DAT-2CB7617A.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\JDNN.DAT-2DF6BDE8.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\JLOK.DAT-31A19C56.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\JNKH.DAT-2B993840.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\JUSCHED.EXE-30BDEFBB.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\KJMD.DAT-3A06285E.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\Layout.ini": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\LHGL.DAT-07BAD76C.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\LKPG.DAT-2B661723.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\LOGON.SCR-151EFAEA.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\LPSETUP.EXE-3422810D.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\LUALL.EXE-30AC8E48.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\LUCOMS~1.EXE-02DB5950.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\MHFI.DAT-287DB1C8.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\MIRC.EXE-0661EC22.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\MOZILLAFIREBIRD.EXE-0B05F6AE.pf": Access is
denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\MPLF.DAT-365935C5.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\MSIEXEC.EXE-2F8A8CAE.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\MSIMN.EXE-38BA891D.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\MSINFO32.EXE-29BA7538.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\MSNAPPAU.EXE-2A07E6B6.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\MSNMSGR.EXE-366A1A81.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\NAVW32.EXE-24F56911.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\NCOEENV.EXE-22FAC640.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\NDETECT.EXE-16E64095.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\NDFD.DAT-10AFD931.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\NETUI0.EXE-37E2C2FF.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\NMAIN.EXE-2BA406E0.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\NOTEPAD.EXE-189578DA.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\NTOSBOOT-B00DFAAD.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\NUTINS.EXE-0356A485.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\OANG.DAT-2AB2C1A3.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\ODME.DAT-1137BD5B.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\OPAI.DAT-17750F9A.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\OSA.EXE-2CD63980.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\OUTLOOK.EXE-1E64345B.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\OUTLOOK.EXE-27D5965C.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\PC.EXE-25869C76.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\PESTPATROL.EXE-2B87BB0B.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\PPCONTROL.EXE-01540BCE.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\PPMEMCHECK.EXE-0BAEAEEA.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\PPUPDATER.EXE-2653D3AE.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\REGEDIT.EXE-1B606482.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\ROSE.EXE-296BA7DB.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\RUNDLL32.EXE-268BFF96.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\RUNDLL32.EXE-35BB92D4.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\RUNDLL32.EXE-42C4EDF2.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\RUNDLL32.EXE-447473FF.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\RUNDLL32.EXE-451FC2C0.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\RVSIM.EXE-06B9F1BF.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\SHMGRATE.EXE-1BA69E68.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\SYSCLEAN.COM-286763B1.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\SYSCLEAN.EXE-008B7714.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\SYSCLEAN.EXE-15AB2EE7.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\TASKMGR.EXE-20256C55.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\TSC.BIN-1E31C80A.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\UNINS000.EXE-0262A94E.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\UNINSTALL.EXE-25AEA4AB.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\UNWISE.EXE-23E770C8.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\USERINIT.EXE-30B18140.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\WINHLP32.EXE-2C18E975.pf": Access is denied.
2004-10-29, 04:08:32, Could not set file for reading on
"C:\WINDOWS\Prefetch\WINMINE.EXE-0A3838A4.pf": Access is denied.
2004-10-29, 04:08:32, Could not set file for reading on
"C:\WINDOWS\Prefetch\WINRAR.EXE-39C6DAD9.pf": Access is denied.
2004-10-29, 04:08:32, Could not set file for reading on
"C:\WINDOWS\Prefetch\WINWORD.EXE-29F5CB89.pf": Access is denied.
2004-10-29, 04:08:32, Could not set file for reading on
"C:\WINDOWS\Prefetch\WINZIP32.EXE-335422C1.pf": Access is denied.
2004-10-29, 04:08:32, Could not set file for reading on
"C:\WINDOWS\Prefetch\WMIADAP.EXE-2DF425B2.pf": Access is denied.
2004-10-29, 04:08:32, Could not set file for reading on
"C:\WINDOWS\Prefetch\WMIPRVSE.EXE-28F301A9.pf": Access is denied.
2004-10-29, 04:08:32, Could not set file for reading on
"C:\WINDOWS\Prefetch\WSCRIPT.EXE-32960AB9.pf": Access is denied.
2004-10-29, 04:08:32, Could not set file for reading on
"C:\WINDOWS\Prefetch\WUAUCLT.EXE-399A8E72.pf": Access is denied.
2004-10-29, 04:08:32, Could not set file for reading on
"C:\WINDOWS\Prefetch\YAHOOPOPS-WIN-0.6.EXE-2066D177.pf": Access is
denied.
2004-10-29, 04:08:32, Could not set file for reading on
"C:\WINDOWS\Prefetch\YAHOOPOPS.EXE-054F3B1C.pf": Access is denied.
2004-10-29, 04:08:32, Could not set file for reading on
"C:\WINDOWS\Prefetch\ZLCLIENT.EXE-1C550EB2.pf": Access is denied.
2004-10-29, 04:08:32, Could not set file for reading on
"C:\WINDOWS\Prefetch\_IU14D2N.TMP-32602293.pf": Access is denied.
2004-10-29, 04:08:32, Could not set file for reading on
"C:\WINDOWS\Prefetch\_MSRSTRT.EXE-04947D55.pf": Access is denied.
2004-10-29, 04:11:36, An error occurred while scanning file
"C:\WINDOWS\system32\config\default": Access is denied.
2004-10-29, 04:11:37, An error occurred while scanning file
"C:\WINDOWS\system32\config\default.LOG": Access is denied.
2004-10-29, 04:11:37, An error occurred while scanning file
"C:\WINDOWS\system32\config\SAM": Access is denied.
2004-10-29, 04:11:37, An error occurred while scanning file
"C:\WINDOWS\system32\config\SAM.LOG": Access is denied.
2004-10-29, 04:11:37, An error occurred while scanning file
"C:\WINDOWS\system32\config\SECURITY": Access is denied.
2004-10-29, 04:11:37, An error occurred while scanning file
"C:\WINDOWS\system32\config\SECURITY.LOG": Access is denied.
2004-10-29, 04:11:37, An error occurred while scanning file
"C:\WINDOWS\system32\config\software": Access is denied.
2004-10-29, 04:11:37, An error occurred while scanning file
"C:\WINDOWS\system32\config\software.LOG": Access is denied.
2004-10-29, 04:11:37, An error occurred while scanning file
"C:\WINDOWS\system32\config\system": Access is denied.
2004-10-29, 04:11:37, An error occurred while scanning file
"C:\WINDOWS\system32\config\system.LOG": Access is denied.
2004-10-29, 04:13:45, Running scanner "C:\New Folder\VSCANTM.BIN"...
2004-10-29, 04:45:03, Files Detected:
Copyright (c) 1990 - 2004 Trend Micro Inc.
Report Date : 10/29/2004 04:13:46
VSAPI Engine Version : 7.000-1004
VSCANTM Version : 1.1-1001
Virus Pattern Version : 220 (74238 Patterns) (2004/10/27) (222000)
Command Line: C:\New Folder\VSCANTM.BIN /NBPM /S /CLEANALL /LAPPEND
/LD /LC /LCF /NM /NB /C /ACTIVEACTION=5 C:\*.* /P=C:\New Folder

C:\124782.exe [TROJ_PORNDIAL.BP]
C:\Documents and Settings\rully\Local Settings\Temp\aacb.dat
[TROJ_MULTIDROP.Z]
C:\Documents and Settings\rully\Local Settings\Temp\addf.dat
[TROJ_MULTIDROP.Z]
C:\Documents and Settings\rully\Local Settings\Temp\apef.dat
[TROJ_MULTIDROP.Z]
C:\Documents and Settings\rully\Local Settings\Temp\bakd.dat
[TROJ_MULTIDROP.Z]
C:\Documents and Settings\rully\Local Settings\Temp\beje.dat
[TROJ_MULTIDROP.Z]
C:\Documents and Settings\rully\Local Settings\Temp\bikp.dat
[TROJ_MULTIDROP.Z]
C:\Documents and Settings\rully\Local Settings\Temp\dkai.dat
[TROJ_MULTIDROP.Z]
C:\Documents and Settings\rully\Local Settings\Temp\eelk.dat
[TROJ_MULTIDROP.Z]
C:\Documents and Settings\rully\Local Settings\Temp\ejch.dat
[TROJ_MULTIDROP.Z]
C:\Documents and Settings\rully\Local Settings\Temp\enod.dat
[TROJ_MULTIDROP.Z]
C:\Documents and Settings\rully\Local Settings\Temp\fglb.dat
[TROJ_MULTIDROP.Z]
C:\Documents and Settings\rully\Local Settings\Temp\gijh.dat
[TROJ_MULTIDROP.Z]
C:\Documents and Settings\rully\Local Settings\Temp\gllc.dat
[TROJ_MULTIDROP.Z]
C:\Documents and Settings\rully\Local Settings\Temp\glln.dat
[TROJ_MULTIDROP.Z]
C:\Documents and Settings\rully\Local Settings\Temp\gmon.dat
[TROJ_MULTIDROP.Z]
C:\Documents and Settings\rully\Local Settings\Temp\hclf.dat
[TROJ_MULTIDROP.Z]
C:\Documents and Settings\rully\Local Settings\Temp\hmll.dat
[TROJ_MULTIDROP.Z]
C:\Documents and Settings\rully\Local Settings\Temp\jmhb.dat
[TROJ_MULTIDROP.Z]
C:\Documents and Settings\rully\Local Settings\Temp\kilg.dat
[TROJ_MULTIDROP.Z]
C:\Documents and Settings\rully\Local Settings\Temp\kjmd.dat
[TROJ_MULTIDROP.Z]
C:\Documents and Settings\rully\Local Settings\Temp\kjnm.dat
[TROJ_MULTIDROP.Z]
C:\Documents and Settings\rully\Local Settings\Temp\knfb.dat
[TROJ_MULTIDROP.Z]
C:\Documents and Settings\rully\Local Settings\Temp\knjc.dat
[TROJ_MULTIDROP.Z]
C:\Documents and Settings\rully\Local Settings\Temp\lapl.dat
[TROJ_MULTIDROP.Z]
C:\Documents and Settings\rully\Local Settings\Temp\lgne.dat
[TROJ_MULTIDROP.Z]
C:\Documents and Settings\rully\Local Settings\Temp\mnen.dat
[TROJ_MULTIDROP.Z]
C:\Documents and Settings\rully\Local Settings\Temp\nfme.dat
[TROJ_MULTIDROP.Z]
C:\Documents and Settings\rully\Local Settings\Temp\ngfd.dat
[TROJ_MULTIDROP.Z]
C:\Documents and Settings\rully\Local Settings\Temp\olcm.dat
[TROJ_MULTIDROP.Z]
C:\Documents and Settings\rully\Local Settings\Temp\pmah.dat
[TROJ_MULTIDROP.Z]
C:\hooks.dll [TROJ_SMALL.IA]
C:\inst.exe [TROJ_SMALL.IB]
C:\WINDOWS\Downloaded Program Files\internazionale_ver3.ocx
[TROJ_ADPOWER.B]
C:\WINDOWS\system32\netui0.exe [TROJ_SMALL.AN]
C:\WINDOWS\toolbar.exe [TROJ_SMALL.AB]
30110 files have been read.
30110 files have been checked.
22413 files have been scanned.
120070 files have been scanned. (including files in archived)
38 files containing viruses.
Found 38 viruses totally.
Maybe 0 viruses totally.
Stop At : 10/29/2004 04:45:02
---------*---------*---------*---------*---------*---------*---------*---------*
2004-10-29, 04:45:03, Files Clean:
Copyright (c) 1990 - 2004 Trend Micro Inc.
Report Date : 10/29/2004 04:13:46
VSAPI Engine Version : 7.000-1004
VSCANTM Version : 1.1-1001
Virus Pattern Version : 220 (74238 Patterns) (2004/10/27) (222000)
Command Line: C:\New Folder\VSCANTM.BIN /NBPM /S /CLEANALL /LAPPEND
/LD /LC /LCF /NM /NB /C /ACTIVEACTION=5 C:\*.* /P=C:\New Folder

Success Clean [TROJ_PORNDIAL.BP]( 1) from C:\124782.exe
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\aacb.dat
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\addf.dat
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\apef.dat
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\bakd.dat
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\beje.dat
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\bikp.dat
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\dkai.dat
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\eelk.dat
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\ejch.dat
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\enod.dat
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\fglb.dat
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\gijh.dat
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\gllc.dat
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\glln.dat
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\gmon.dat
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\hclf.dat
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\hmll.dat
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\jmhb.dat
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\kilg.dat
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\kjmd.dat
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\kjnm.dat
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\knfb.dat
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\knjc.dat
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\lapl.dat
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\lgne.dat
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\mnen.dat
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\nfme.dat
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\ngfd.dat
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\olcm.dat
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\pmah.dat
Success Clean [ TROJ_SMALL.IA]( 1) from C:\hooks.dll
Success Clean [ TROJ_SMALL.IB]( 1) from C:\inst.exe
Success Clean [JAVA_BYTEVER.A-1]( 1) from C:\Program
Files\PestPatrol\Quarantine\20041015140936294.zip,(Gummy.class)
Success Clean [ TROJ_ADPOWER.B]( 1) from C:\WINDOWS\Downloaded
Program Files\internazionale_ver3.ocx
Success Clean [ TROJ_SMALL.AN]( 1) from
C:\WINDOWS\system32\netui0.exe
30110 files have been read.
30110 files have been checked.
22413 files have been scanned.
120070 files have been scanned. (including files in archived)
38 files containing viruses.
Found 38 viruses totally.
Maybe 0 viruses totally.
Stop At : 10/29/2004 04:45:02 31 minutes 13 seconds (1873.42 seconds)
has elapsed.

---------*---------*---------*---------*---------*---------*---------*---------*
2004-10-29, 04:45:03, Clean Fail:
Copyright (c) 1990 - 2004 Trend Micro Inc.
Report Date : 10/29/2004 04:13:46
VSAPI Engine Version : 7.000-1004
VSCANTM Version : 1.1-1001
Virus Pattern Version : 220 (74238 Patterns) (2004/10/27) (222000)
Command Line: C:\New Folder\VSCANTM.BIN /NBPM /S /CLEANALL /LAPPEND
/LD /LC /LCF /NM /NB /C /ACTIVEACTION=5 C:\*.* /P=C:\New Folder

30110 files have been read.
30110 files have been checked.
22413 files have been scanned.
120070 files have been scanned. (including files in archived)
38 files containing viruses.
Found 38 viruses totally.
Maybe 0 viruses totally.
Stop At : 10/29/2004 04:45:02 31 minutes 13 seconds (1873.42 seconds)
has elapsed.

---------*---------*---------*---------*---------*---------*---------*---------*
2004-10-29, 04:45:03, Scanner "C:\New Folder\VSCANTM.BIN" has
finished running.


/--------------------------------------------------------------\
| Trend Micro Sysclean Package |
| Copyright 2002, Trend Micro, Inc. |
| http://www.trendmicro.com |
\--------------------------------------------------------------/


2004-10-29, 06:01:36, Auto-clean mode specified.
2004-10-29, 06:01:36, Running scanner "C:\New Folder\TSC.BIN"...
2004-10-29, 06:02:11, Scanner "C:\New Folder\TSC.BIN" has finished
running.
2004-10-29, 06:02:11, TSC Log:

2004-10-29, 06:03:13, An error occurred while scanning file
"C:\Documents and Settings\rully\NTUSER.DAT": Access is denied.
2004-10-29, 06:03:13, An error occurred while scanning file
"C:\Documents and Settings\rully\ntuser.dat.LOG": Access is denied.
2004-10-29, 06:05:43, An error occurred while scanning file
"C:\Documents and Settings\rully\Local Settings\Application
Data\Microsoft\Windows\UsrClass.dat": Access is denied.
2004-10-29, 06:05:43, An error occurred while scanning file
"C:\Documents and Settings\rully\Local Settings\Application
Data\Microsoft\Windows\UsrClass.dat.LOG": Access is denied.
2004-10-29, 06:19:44, An error was detected on "C:\System Volume
Information\*.*": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\124782.EXE-07F785CF.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\AATN.EXE-054C7E9E.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\ACRORD32.EXE-20C463C1.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\ADVCHK.EXE-06353890.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\AGENTSVR.EXE-002E45AB.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\AGJB.DAT-2A07E0CF.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\AMNI.DAT-0E9D607F.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\AUPDATE.EXE-2253CB60.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\BPKH.DAT-2B2E308A.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\CALC.EXE-02CD573A.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\CASCADE DTP V4.EXE-26A38ECE.pf": Access is
denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\CASCADE.EXE-12B95E49.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\CCAPP.EXE-1207B2A5.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\CCPWDSVC.EXE-25BE6B86.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\CCREGVFY.EXE-08FB5B2E.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\CKJK.DAT-0DCC1C21.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\CMD.EXE-087B4001.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\COLLECTION8.EXE-346C19F8.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\COOKIEPATROL.EXE-005737A7.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\COUNTER.EXE-2E0D7CDC.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\CURRENTLOGON.EXE-32253424.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\DEFRAG.EXE-273F131E.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\DFRGNTFS.EXE-269967DF.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\DRWTSN32.EXE-2B4B52AC.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\DTUH.EXE-12D68FDC.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\DUMPREP.EXE-1B46F901.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\DW.EXE-227292CF.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\DWLGTI.EXE-06EF6A9C.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\DWWIN.EXE-30875ADC.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\EXPLORER.EXE-082F38A9.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\FFCO.DAT-3A2E7774.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\FNIP.DAT-3210D997.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\GEMJ.DAT-0D10F6E0.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\GLB1A2B.EXE-23344532.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\GLJ286.TMP-2796DC9F.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\HC.EXE-0059B3C0.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\HELLO.EXE-332132CA.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\HELPCTR.EXE-3862B6F5.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\HELPHOST.EXE-247D2792.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\HELPSVC.EXE-2878DDA2.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\HIJACKTHIS.EXE-2791E853.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\IEOL.DAT-2EDD51B6.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\IEXPLORE.EXE-27122324.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\ILID.DAT-2131B627.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\INST.EXE-0BF1DF5C.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\IS-910QA.TMP-3B26141B.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\IUN506.EXE-075EE1EF.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\JAVAW.EXE-2C3C0CA8.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\JAVAWS.EXE-2989E31A.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\JCREATOR.EXE-314E051D.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\JDCC.DAT-2CB7617A.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\JDNN.DAT-2DF6BDE8.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\JLOK.DAT-31A19C56.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\JNKH.DAT-2B993840.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\JUSCHED.EXE-30BDEFBB.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\KJMD.DAT-3A06285E.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\Layout.ini": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\LHGL.DAT-07BAD76C.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\LKPG.DAT-2B661723.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\LOGON.SCR-151EFAEA.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\LPSETUP.EXE-3422810D.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\LUALL.EXE-30AC8E48.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\LUCOMS~1.EXE-02DB5950.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\MHFI.DAT-287DB1C8.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\MIRC.EXE-0661EC22.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\MOZILLAFIREBIRD.EXE-0B05F6AE.pf": Access is
denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\MPLF.DAT-365935C5.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\MSIEXEC.EXE-2F8A8CAE.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\MSIMN.EXE-38BA891D.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\MSINFO32.EXE-29BA7538.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\MSNAPPAU.EXE-2A07E6B6.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\MSNMSGR.EXE-366A1A81.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\NAVW32.EXE-24F56911.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\NCOEENV.EXE-22FAC640.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\NDETECT.EXE-16E64095.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\NDFD.DAT-10AFD931.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\NETUI0.EXE-37E2C2FF.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\NMAIN.EXE-2BA406E0.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\NOTEPAD.EXE-189578DA.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\NTOSBOOT-B00DFAAD.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\NUTINS.EXE-0356A485.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\OANG.DAT-2AB2C1A3.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\ODME.DAT-1137BD5B.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\OPAI.DAT-17750F9A.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\OSA.EXE-2CD63980.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\OUTLOOK.EXE-1E64345B.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\OUTLOOK.EXE-27D5965C.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\PC.EXE-25869C76.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\PESTPATROL.EXE-2B87BB0B.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\PPCONTROL.EXE-01540BCE.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\PPMEMCHECK.EXE-0BAEAEEA.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\PPUPDATER.EXE-2653D3AE.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\REGEDIT.EXE-1B606482.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\ROSE.EXE-296BA7DB.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\RUNDLL32.EXE-268BFF96.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\RUNDLL32.EXE-35BB92D4.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\RUNDLL32.EXE-42C4EDF2.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\RUNDLL32.EXE-447473FF.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\RUNDLL32.EXE-451FC2C0.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\RVSIM.EXE-06B9F1BF.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\SHMGRATE.EXE-1BA69E68.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\SYSCLEAN.COM-286763B1.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\SYSCLEAN.EXE-008B7714.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\SYSCLEAN.EXE-15AB2EE7.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\TASKMGR.EXE-20256C55.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\TSC.BIN-1E31C80A.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\UNINS000.EXE-0262A94E.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\UNINSTALL.EXE-25AEA4AB.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\UNWISE.EXE-23E770C8.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\USERINIT.EXE-30B18140.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\WINHLP32.EXE-2C18E975.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\WINMINE.EXE-0A3838A4.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\WINRAR.EXE-39C6DAD9.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\WINWORD.EXE-29F5CB89.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\WINZIP32.EXE-335422C1.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\WMIADAP.EXE-2DF425B2.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\WMIPRVSE.EXE-28F301A9.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\WSCRIPT.EXE-32960AB9.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\WUAUCLT.EXE-399A8E72.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\YAHOOPOPS-WIN-0.6.EXE-2066D177.pf": Access is
denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\YAHOOPOPS.EXE-054F3B1C.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\ZLCLIENT.EXE-1C550EB2.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\_IU14D2N.TMP-32602293.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\_MSRSTRT.EXE-04947D55.pf": Access is denied.
2004-10-29, 06:35:12, An error occurred while scanning file
"C:\WINDOWS\system32\config\default": Access is denied.
2004-10-29, 06:35:12, An error occurred while scanning file
"C:\WINDOWS\system32\config\default.LOG": Access is denied.
2004-10-29, 06:35:12, An error occurred while scanning file
"C:\WINDOWS\system32\config\SAM": Access is denied.
2004-10-29, 06:35:12, An error occurred while scanning file
"C:\WINDOWS\system32\config\SAM.LOG": Access is denied.
2004-10-29, 06:35:12, An error occurred while scanning file
"C:\WINDOWS\system32\config\SECURITY": Access is denied.
2004-10-29, 06:35:12, An error occurred while scanning file
"C:\WINDOWS\system32\config\SECURITY.LOG": Access is denied.
2004-10-29, 06:35:12, An error occurred while scanning file
"C:\WINDOWS\system32\config\software": Access is denied.
2004-10-29, 06:35:12, An error occurred while scanning file
"C:\WINDOWS\system32\config\software.LOG": Access is denied.
2004-10-29, 06:35:13, An error occurred while scanning file
"C:\WINDOWS\system32\config\system": Access is denied.
2004-10-29, 06:35:13, An error occurred while scanning file
"C:\WINDOWS\system32\config\system.LOG": Access is denied.
2004-10-29, 06:37:04, Running scanner "C:\New Folder\VSCANTM.BIN"...
2004-10-29, 07:08:11, Files Detected:
Copyright (c) 1990 - 2004 Trend Micro Inc.
Report Date : 10/29/2004 06:37:05
VSAPI Engine Version : 7.000-1004
VSCANTM Version : 1.1-1001
Virus Pattern Version : 220 (74238 Patterns) (2004/10/27) (222000)
Command Line: C:\New Folder\VSCANTM.BIN /NBPM /S /CLEANALL /LAPPEND
/LD /LC /LCF /NM /NB /C /ACTIVEACTION=5 C:\*.* /P=C:\New Folder

C:\WINDOWS\toolbar.exe [TROJ_SMALL.AB]
29856 files have been read.
29856 files have been checked.
22287 files have been scanned.
119935 files have been scanned. (including files in archived)
2 files containing viruses.
Found 2 viruses totally.
Maybe 0 viruses totally.
Stop At : 10/29/2004 07:08:10
---------*---------*---------*---------*---------*---------*---------*---------*
2004-10-29, 07:08:11, Files Clean:
Copyright (c) 1990 - 2004 Trend Micro Inc.
Report Date : 10/29/2004 06:37:05
VSAPI Engine Version : 7.000-1004
VSCANTM Version : 1.1-1001
Virus Pattern Version : 220 (74238 Patterns) (2004/10/27) (222000)
Command Line: C:\New Folder\VSCANTM.BIN /NBPM /S /CLEANALL /LAPPEND
/LD /LC /LCF /NM /NB /C /ACTIVEACTION=5 C:\*.* /P=C:\New Folder

29856 files have been read.
29856 files have been checked.
22287 files have been scanned.
119935 files have been scanned. (including files in archived)
2 files containing viruses.
Found 2 viruses totally.
Maybe 0 viruses totally.
Stop At : 10/29/2004 07:08:10 31 minutes 2 seconds (1862.90 seconds)
has elapsed.

---------*---------*---------*---------*---------*---------*---------*---------*
2004-10-29, 07:08:11, Clean Fail:
Copyright (c) 1990 - 2004 Trend Micro Inc.
Report Date : 10/29/2004 06:37:05
VSAPI Engine Version : 7.000-1004
VSCANTM Version : 1.1-1001
Virus Pattern Version : 220 (74238 Patterns) (2004/10/27) (222000)
Command Line: C:\New Folder\VSCANTM.BIN /NBPM /S /CLEANALL /LAPPEND
/LD /LC /LCF /NM /NB /C /ACTIVEACTION=5 C:\*.* /P=C:\New Folder

29856 files have been read.
29856 files have been checked.
22287 files have been scanned.
119935 files have been scanned. (including files in archived)
2 files containing viruses.
Found 2 viruses totally.
Maybe 0 viruses totally.
Stop At : 10/29/2004 07:08:10 31 minutes 2 seconds (1862.90 seconds)
has elapsed.

---------*---------*---------*---------*---------*---------*---------*---------*
2004-10-29, 07:08:11, Scanner "C:\New Folder\VSCANTM.BIN" has
finished running.


/--------------------------------------------------------------\
| Trend Micro Sysclean Package |
| Copyright 2002, Trend Micro, Inc. |
| http://www.trendmicro.com |
\--------------------------------------------------------------/


2004-10-29, 09:31:06, Auto-clean mode specified.
2004-10-29, 09:31:06, Running scanner "C:\New Folder\TSC.BIN"...
2004-10-29, 09:32:27, Scanner "C:\New Folder\TSC.BIN" has finished
running.
2004-10-29, 09:32:27, TSC Log:

Damage Cleanup Engine (DCE) 3.6(Build 1120)
Windows XP(Build 2600: Service Pack 1)

Start time : Fri Oct 29 2004 03:50:19

Load Damage Cleanup Template (DCT) "C:\New Folder\tsc.ptn" (version
442) [success]

Complete time : Fri Oct 29 2004 03:51:18
Execute pattern count(1348), Virus found count(0), Virus clean
count(0), Clean failed count(0)

Damage Cleanup Engine (DCE) 3.6(Build 1120)
Windows XP(Build 2600: Service Pack 1)

Start time : Fri Oct 29 2004 06:01:36

Load Damage Cleanup Template (DCT) "C:\New Folder\tsc.ptn" (version
442) [success]

Complete time : Fri Oct 29 2004 06:02:10
Execute pattern count(1348), Virus found count(0), Virus clean
count(0), Clean failed count(0)

Damage Cleanup Engine (DCE) 3.6(Build 1120)
Windows XP(Build 2600: Service Pack 1)

Start time : Fri Oct 29 2004 09:31:07

Load Damage Cleanup Template (DCT) "C:\New Folder\tsc.ptn" (version
442) [success]

Complete time : Fri Oct 29 2004 09:32:27
Execute pattern count(1348), Virus found count(0), Virus clean
count(0), Clean failed count(0)

2004-10-29, 09:34:56, An error occurred while scanning file
"C:\Documents and Settings\LocalService\NTUSER.DAT": Access is denied.
2004-10-29, 09:34:56, An error occurred while scanning file
"C:\Documents and Settings\LocalService\ntuser.dat.LOG": Access is
denied.
2004-10-29, 09:34:56, An error occurred while scanning file
"C:\Documents and Settings\LocalService\Local Settings\Application
Data\Microsoft\Windows\UsrClass.dat": Access is denied.
2004-10-29, 09:34:56, An error occurred while scanning file
"C:\Documents and Settings\LocalService\Local Settings\Application
Data\Microsoft\Windows\UsrClass.dat.LOG": Access is denied.
2004-10-29, 09:34:56, An error occurred while scanning file
"C:\Documents and Settings\NetworkService\NTUSER.DAT": Access is
denied.
2004-10-29, 09:34:56, An error occurred while scanning file
"C:\Documents and Settings\NetworkService\ntuser.dat.LOG": Access is
denied.
2004-10-29, 09:34:56, An error occurred while scanning file
"C:\Documents and Settings\NetworkService\Local Settings\Application
Data\Microsoft\Windows\UsrClass.dat": Access is denied.
2004-10-29, 09:34:56, An error occurred while scanning file
"C:\Documents and Settings\NetworkService\Local Settings\Application
Data\Microsoft\Windows\UsrClass.dat.LOG": Access is denied.
2004-10-29, 09:34:56, An error occurred while scanning file
"C:\Documents and Settings\rully\NTUSER.DAT": Access is denied.
2004-10-29, 09:34:56, An error occurred while scanning file
"C:\Documents and Settings\rully\ntuser.dat.LOG": Access is denied.
2004-10-29, 09:35:36, An error occurred while scanning file
"C:\Documents and Settings\rully\Application
Data\Phoenix\Profiles\default\pc86zssq.slt\parent.lock": Access is
denied.
2004-10-29, 09:39:54, An error occurred while scanning file
"C:\Documents and Settings\rully\Local Settings\Application
Data\Microsoft\Windows\UsrClass.dat": Access is denied.
2004-10-29, 09:39:54, An error occurred while scanning file
"C:\Documents and Settings\rully\Local Settings\Application
Data\Microsoft\Windows\UsrClass.dat.LOG": Access is denied.
2004-10-29, 09:59:24, An error was detected on "C:\System Volume
Information\*.*": Access is denied.
2004-10-29, 10:09:33, Could not set file for reading on
"C:\WINDOWS\Prefetch\124782.EXE-07F785CF.pf": Access is denied.
2004-10-29, 10:09:33, Could not set file for reading on
"C:\WINDOWS\Prefetch\AATN.EXE-054C7E9E.pf": Access is denied.
2004-10-29, 10:09:33, Could not set file for reading on
"C:\WINDOWS\Prefetch\ACRORD32.EXE-20C463C1.pf": Access is denied.
2004-10-29, 10:09:33, Could not set file for reading on
"C:\WINDOWS\Prefetch\ADVCHK.EXE-06353890.pf": Access is denied.
2004-10-29, 10:09:33, Could not set file for reading on
"C:\WINDOWS\Prefetch\AGENTSVR.EXE-002E45AB.pf": Access is denied.
2004-10-29, 10:09:33, Could not set file for reading on
"C:\WINDOWS\Prefetch\AGJB.DAT-2A07E0CF.pf": Access is denied.
2004-10-29, 10:09:33, Could not set file for reading on
"C:\WINDOWS\Prefetch\AMNI.DAT-0E9D607F.pf": Access is denied.
2004-10-29, 10:09:33, Could not set file for reading on
"C:\WINDOWS\Prefetch\AUPDATE.EXE-2253CB60.pf": Access is denied.
2004-10-29, 10:09:33, Could not set file for reading on
"C:\WINDOWS\Prefetch\BPKH.DAT-2B2E308A.pf": Access is denied.
2004-10-29, 10:09:33, Could not set file for reading on
"C:\WINDOWS\Prefetch\CALC.EXE-02CD573A.pf": Access is denied.
2004-10-29, 10:09:33, Could not set file for reading on
"C:\WINDOWS\Prefetch\CASCADE DTP V4.EXE-26A38ECE.pf": Access is
denied.
2004-10-29, 10:09:33, Could not set file for reading on
"C:\WINDOWS\Prefetch\CASCADE.EXE-12B95E49.pf": Access is denied.
2004-10-29, 10:09:33, Could not set file for reading on
"C:\WINDOWS\Prefetch\CCAPP.EXE-1207B2A5.pf": Access is denied.
2004-10-29, 10:09:33, Could not set file for reading on
"C:\WINDOWS\Prefetch\CCPWDSVC.EXE-25BE6B86.pf": Access is denied.
2004-10-29, 10:09:33, Could not set file for reading on
"C:\WINDOWS\Prefetch\CCREGVFY.EXE-08FB5B2E.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\CKJK.DAT-0DCC1C21.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\CMD.EXE-087B4001.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\COLLECTION8.EXE-346C19F8.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\COOKIEPATROL.EXE-005737A7.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\COUNTER.EXE-2E0D7CDC.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\CURRENTLOGON.EXE-32253424.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\DEFRAG.EXE-273F131E.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\DFRGNTFS.EXE-269967DF.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\DRWTSN32.EXE-2B4B52AC.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\DTUH.EXE-12D68FDC.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\DUMPREP.EXE-1B46F901.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\DW.EXE-227292CF.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\DWLGTI.EXE-06EF6A9C.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\DWWIN.EXE-30875ADC.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\EXPLORER.EXE-082F38A9.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\FFCO.DAT-3A2E7774.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\FNIP.DAT-3210D997.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\GEMJ.DAT-0D10F6E0.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\GLB1A2B.EXE-23344532.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\GLJ286.TMP-2796DC9F.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\HC.EXE-0059B3C0.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\HELLO.EXE-332132CA.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\HELPCTR.EXE-3862B6F5.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\HELPHOST.EXE-247D2792.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\HELPSVC.EXE-2878DDA2.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\HIJACKTHIS.EXE-2791E853.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\IEOL.DAT-2EDD51B6.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\IEXPLORE.EXE-27122324.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\ILID.DAT-2131B627.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\INST.EXE-0BF1DF5C.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\IS-910QA.TMP-3B26141B.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\IUN506.EXE-075EE1EF.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\JAVAW.EXE-2C3C0CA8.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\JAVAWS.EXE-2989E31A.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\JCREATOR.EXE-314E051D.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\JDCC.DAT-2CB7617A.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\JDNN.DAT-2DF6BDE8.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\JLOK.DAT-31A19C56.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\JNKH.DAT-2B993840.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\JUSCHED.EXE-30BDEFBB.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\KJMD.DAT-3A06285E.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\Layout.ini": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\LHGL.DAT-07BAD76C.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\LKPG.DAT-2B661723.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\LOGON.SCR-151EFAEA.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\LPSETUP.EXE-3422810D.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\LUALL.EXE-30AC8E48.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\LUCOMS~1.EXE-02DB5950.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\MHFI.DAT-287DB1C8.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\MIRC.EXE-0661EC22.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\MOZILLAFIREBIRD.EXE-0B05F6AE.pf": Access is
denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\MPLF.DAT-365935C5.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\MSIEXEC.EXE-2F8A8CAE.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\MSIMN.EXE-38BA891D.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\MSINFO32.EXE-29BA7538.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\MSNAPPAU.EXE-2A07E6B6.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\MSNMSGR.EXE-366A1A81.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\NAVW32.EXE-24F56911.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\NCOEENV.EXE-22FAC640.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\NDETECT.EXE-16E64095.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\NDFD.DAT-10AFD931.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\NETUI0.EXE-37E2C2FF.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\NMAIN.EXE-2BA406E0.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\NOTEPAD.EXE-189578DA.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\NTOSBOOT-B00DFAAD.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\NUTINS.EXE-0356A485.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\OANG.DAT-2AB2C1A3.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\ODME.DAT-1137BD5B.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\OPAI.DAT-17750F9A.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\OSA.EXE-2CD63980.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\OUTLOOK.EXE-1E64345B.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\OUTLOOK.EXE-27D5965C.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\PC.EXE-25869C76.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\PESTPATROL.EXE-2B87BB0B.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\PPCONTROL.EXE-01540BCE.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\PPMEMCHECK.EXE-0BAEAEEA.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\PPUPDATER.EXE-2653D3AE.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\REGEDIT.EXE-1B606482.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\ROSE.EXE-296BA7DB.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\RUNDLL32.EXE-268BFF96.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\RUNDLL32.EXE-35BB92D4.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\RUNDLL32.EXE-42C4EDF2.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\RUNDLL32.EXE-447473FF.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\RUNDLL32.EXE-451FC2C0.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\RVSIM.EXE-06B9F1BF.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\SHMGRATE.EXE-1BA69E68.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\SYSCLEAN.COM-0FE2DDF0.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\SYSCLEAN.COM-286763B1.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\SYSCLEAN.EXE-008B7714.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\SYSCLEAN.EXE-15AB2EE7.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\SYSCLEAN.EXE-38C1732D.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\TASKMGR.EXE-20256C55.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\TSC.BIN-08796EDA.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\TSC.BIN-1E31C80A.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\UNINS000.EXE-0262A94E.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\UNINSTALL.EXE-25AEA4AB.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\UNWISE.EXE-23E770C8.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\USERINIT.EXE-30B18140.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\WINHLP32.EXE-2C18E975.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\WINMINE.EXE-0A3838A4.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\WINRAR.EXE-39C6DAD9.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\WINWORD.EXE-29F5CB89.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\WINZIP32.EXE-335422C1.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\WMIADAP.EXE-2DF425B2.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\WMIPRVSE.EXE-28F301A9.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\WSCRIPT.EXE-32960AB9.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\WUAUCLT.EXE-399A8E72.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\YAHOOPOPS-WIN-0.6.EXE-2066D177.pf": Access is
denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\YAHOOPOPS.EXE-054F3B1C.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\ZLCLIENT.EXE-1C550EB2.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\_IU14D2N.TMP-32602293.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\_MSRSTRT.EXE-04947D55.pf": Access is denied.

FROM NORMAL MODE:



/--------------------------------------------------------------\
| Trend Micro Sysclean Package |
| Copyright 2002, Trend Micro, Inc. |
| http://www.trendmicro.com |
\--------------------------------------------------------------/


2004-10-29, 03:50:19, Auto-clean mode specified.
2004-10-29, 03:50:19, Running scanner "C:\New Folder\TSC.BIN"...
2004-10-29, 03:51:18, Scanner "C:\New Folder\TSC.BIN" has finished
running.
2004-10-29, 03:51:18, TSC Log:

2004-10-29, 03:51:53, An error occurred while scanning file
"C:\Documents and Settings\Administrator\NTUSER.DAT": Access is
denied.
2004-10-29, 03:51:53, An error occurred while scanning file
"C:\Documents and Settings\Administrator\ntuser.dat.LOG": Access is
denied.
2004-10-29, 03:51:53, An error occurred while scanning file
"C:\Documents and Settings\Administrator\Local Settings\Application
Data\Microsoft\Windows\UsrClass.dat": Access is denied.
2004-10-29, 03:51:53, An error occurred while scanning file
"C:\Documents and Settings\Administrator\Local Settings\Application
Data\Microsoft\Windows\UsrClass.dat.LOG": Access is denied.
2004-10-29, 03:51:54, Could not set file for reading on
"C:\Documents and Settings\All Users\Application Data\Microsoft\Dr
Watson\user.dmp": Access is denied.
2004-10-29, 04:01:33, Could not set file for reading on "C:\Program
Files\Rational\Rose\o-rs2glw.rar": Access is denied.
2004-10-29, 04:04:11, An error was detected on "C:\System Volume
Information\*.*": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\124782.EXE-07F785CF.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\AATN.EXE-054C7E9E.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\ACRORD32.EXE-20C463C1.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\ADVCHK.EXE-06353890.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\AGENTSVR.EXE-002E45AB.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\AGJB.DAT-2A07E0CF.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\AMNI.DAT-0E9D607F.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\AUPDATE.EXE-2253CB60.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\BPKH.DAT-2B2E308A.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\CALC.EXE-02CD573A.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\CASCADE DTP V4.EXE-26A38ECE.pf": Access is
denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\CASCADE.EXE-12B95E49.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\CCAPP.EXE-1207B2A5.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\CCPWDSVC.EXE-25BE6B86.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\CCREGVFY.EXE-08FB5B2E.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\CKJK.DAT-0DCC1C21.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\CMD.EXE-087B4001.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\COLLECTION8.EXE-346C19F8.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\COOKIEPATROL.EXE-005737A7.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\COUNTER.EXE-2E0D7CDC.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\CURRENTLOGON.EXE-32253424.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\DEFRAG.EXE-273F131E.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\DFRGNTFS.EXE-269967DF.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\DRWTSN32.EXE-2B4B52AC.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\DTUH.EXE-12D68FDC.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\DUMPREP.EXE-1B46F901.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\DW.EXE-227292CF.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\DWLGTI.EXE-06EF6A9C.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\DWWIN.EXE-30875ADC.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\EXPLORER.EXE-082F38A9.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\FFCO.DAT-3A2E7774.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\FNIP.DAT-3210D997.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\GEMJ.DAT-0D10F6E0.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\GLB1A2B.EXE-23344532.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\GLJ286.TMP-2796DC9F.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\HC.EXE-0059B3C0.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\HELLO.EXE-332132CA.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\HELPCTR.EXE-3862B6F5.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\HELPHOST.EXE-247D2792.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\HELPSVC.EXE-2878DDA2.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\HIJACKTHIS.EXE-2791E853.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\IEOL.DAT-2EDD51B6.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\IEXPLORE.EXE-27122324.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\ILID.DAT-2131B627.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\INST.EXE-0BF1DF5C.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\IS-910QA.TMP-3B26141B.pf": Access is denied.
2004-10-29, 04:08:30, Could not set file for reading on
"C:\WINDOWS\Prefetch\IUN506.EXE-075EE1EF.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\JAVAW.EXE-2C3C0CA8.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\JAVAWS.EXE-2989E31A.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\JCREATOR.EXE-314E051D.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\JDCC.DAT-2CB7617A.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\JDNN.DAT-2DF6BDE8.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\JLOK.DAT-31A19C56.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\JNKH.DAT-2B993840.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\JUSCHED.EXE-30BDEFBB.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\KJMD.DAT-3A06285E.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\Layout.ini": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\LHGL.DAT-07BAD76C.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\LKPG.DAT-2B661723.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\LOGON.SCR-151EFAEA.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\LPSETUP.EXE-3422810D.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\LUALL.EXE-30AC8E48.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\LUCOMS~1.EXE-02DB5950.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\MHFI.DAT-287DB1C8.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\MIRC.EXE-0661EC22.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\MOZILLAFIREBIRD.EXE-0B05F6AE.pf": Access is
denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\MPLF.DAT-365935C5.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\MSIEXEC.EXE-2F8A8CAE.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\MSIMN.EXE-38BA891D.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\MSINFO32.EXE-29BA7538.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\MSNAPPAU.EXE-2A07E6B6.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\MSNMSGR.EXE-366A1A81.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\NAVW32.EXE-24F56911.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\NCOEENV.EXE-22FAC640.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\NDETECT.EXE-16E64095.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\NDFD.DAT-10AFD931.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\NETUI0.EXE-37E2C2FF.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\NMAIN.EXE-2BA406E0.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\NOTEPAD.EXE-189578DA.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\NTOSBOOT-B00DFAAD.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\NUTINS.EXE-0356A485.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\OANG.DAT-2AB2C1A3.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\ODME.DAT-1137BD5B.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\OPAI.DAT-17750F9A.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\OSA.EXE-2CD63980.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\OUTLOOK.EXE-1E64345B.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\OUTLOOK.EXE-27D5965C.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\PC.EXE-25869C76.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\PESTPATROL.EXE-2B87BB0B.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\PPCONTROL.EXE-01540BCE.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\PPMEMCHECK.EXE-0BAEAEEA.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\PPUPDATER.EXE-2653D3AE.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\REGEDIT.EXE-1B606482.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\ROSE.EXE-296BA7DB.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\RUNDLL32.EXE-268BFF96.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\RUNDLL32.EXE-35BB92D4.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\RUNDLL32.EXE-42C4EDF2.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\RUNDLL32.EXE-447473FF.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\RUNDLL32.EXE-451FC2C0.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\RVSIM.EXE-06B9F1BF.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\SHMGRATE.EXE-1BA69E68.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\SYSCLEAN.COM-286763B1.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\SYSCLEAN.EXE-008B7714.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\SYSCLEAN.EXE-15AB2EE7.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\TASKMGR.EXE-20256C55.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\TSC.BIN-1E31C80A.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\UNINS000.EXE-0262A94E.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\UNINSTALL.EXE-25AEA4AB.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\UNWISE.EXE-23E770C8.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\USERINIT.EXE-30B18140.pf": Access is denied.
2004-10-29, 04:08:31, Could not set file for reading on
"C:\WINDOWS\Prefetch\WINHLP32.EXE-2C18E975.pf": Access is denied.
2004-10-29, 04:08:32, Could not set file for reading on
"C:\WINDOWS\Prefetch\WINMINE.EXE-0A3838A4.pf": Access is denied.
2004-10-29, 04:08:32, Could not set file for reading on
"C:\WINDOWS\Prefetch\WINRAR.EXE-39C6DAD9.pf": Access is denied.
2004-10-29, 04:08:32, Could not set file for reading on
"C:\WINDOWS\Prefetch\WINWORD.EXE-29F5CB89.pf": Access is denied.
2004-10-29, 04:08:32, Could not set file for reading on
"C:\WINDOWS\Prefetch\WINZIP32.EXE-335422C1.pf": Access is denied.
2004-10-29, 04:08:32, Could not set file for reading on
"C:\WINDOWS\Prefetch\WMIADAP.EXE-2DF425B2.pf": Access is denied.
2004-10-29, 04:08:32, Could not set file for reading on
"C:\WINDOWS\Prefetch\WMIPRVSE.EXE-28F301A9.pf": Access is denied.
2004-10-29, 04:08:32, Could not set file for reading on
"C:\WINDOWS\Prefetch\WSCRIPT.EXE-32960AB9.pf": Access is denied.
2004-10-29, 04:08:32, Could not set file for reading on
"C:\WINDOWS\Prefetch\WUAUCLT.EXE-399A8E72.pf": Access is denied.
2004-10-29, 04:08:32, Could not set file for reading on
"C:\WINDOWS\Prefetch\YAHOOPOPS-WIN-0.6.EXE-2066D177.pf": Access is
denied.
2004-10-29, 04:08:32, Could not set file for reading on
"C:\WINDOWS\Prefetch\YAHOOPOPS.EXE-054F3B1C.pf": Access is denied.
2004-10-29, 04:08:32, Could not set file for reading on
"C:\WINDOWS\Prefetch\ZLCLIENT.EXE-1C550EB2.pf": Access is denied.
2004-10-29, 04:08:32, Could not set file for reading on
"C:\WINDOWS\Prefetch\_IU14D2N.TMP-32602293.pf": Access is denied.
2004-10-29, 04:08:32, Could not set file for reading on
"C:\WINDOWS\Prefetch\_MSRSTRT.EXE-04947D55.pf": Access is denied.
2004-10-29, 04:11:36, An error occurred while scanning file
"C:\WINDOWS\system32\config\default": Access is denied.
2004-10-29, 04:11:37, An error occurred while scanning file
"C:\WINDOWS\system32\config\default.LOG": Access is denied.
2004-10-29, 04:11:37, An error occurred while scanning file
"C:\WINDOWS\system32\config\SAM": Access is denied.
2004-10-29, 04:11:37, An error occurred while scanning file
"C:\WINDOWS\system32\config\SAM.LOG": Access is denied.
2004-10-29, 04:11:37, An error occurred while scanning file
"C:\WINDOWS\system32\config\SECURITY": Access is denied.
2004-10-29, 04:11:37, An error occurred while scanning file
"C:\WINDOWS\system32\config\SECURITY.LOG": Access is denied.
2004-10-29, 04:11:37, An error occurred while scanning file
"C:\WINDOWS\system32\config\software": Access is denied.
2004-10-29, 04:11:37, An error occurred while scanning file
"C:\WINDOWS\system32\config\software.LOG": Access is denied.
2004-10-29, 04:11:37, An error occurred while scanning file
"C:\WINDOWS\system32\config\system": Access is denied.
2004-10-29, 04:11:37, An error occurred while scanning file
"C:\WINDOWS\system32\config\system.LOG": Access is denied.
2004-10-29, 04:13:45, Running scanner "C:\New Folder\VSCANTM.BIN"...
2004-10-29, 04:45:03, Files Detected:
Copyright (c) 1990 - 2004 Trend Micro Inc.
Report Date : 10/29/2004 04:13:46
VSAPI Engine Version : 7.000-1004
VSCANTM Version : 1.1-1001
Virus Pattern Version : 220 (74238 Patterns) (2004/10/27) (222000)
Command Line: C:\New Folder\VSCANTM.BIN /NBPM /S /CLEANALL /LAPPEND
/LD /LC /LCF /NM /NB /C /ACTIVEACTION=5 C:\*.* /P=C:\New Folder

C:\124782.exe [TROJ_PORNDIAL.BP]
C:\Documents and Settings\rully\Local Settings\Temp\aacb.dat
[TROJ_MULTIDROP.Z]
C:\Documents and Settings\rully\Local Settings\Temp\addf.dat
[TROJ_MULTIDROP.Z]
C:\Documents and Settings\rully\Local Settings\Temp\apef.dat
[TROJ_MULTIDROP.Z]
C:\Documents and Settings\rully\Local Settings\Temp\bakd.dat
[TROJ_MULTIDROP.Z]
C:\Documents and Settings\rully\Local Settings\Temp\beje.dat
[TROJ_MULTIDROP.Z]
C:\Documents and Settings\rully\Local Settings\Temp\bikp.dat
[TROJ_MULTIDROP.Z]
C:\Documents and Settings\rully\Local Settings\Temp\dkai.dat
[TROJ_MULTIDROP.Z]
C:\Documents and Settings\rully\Local Settings\Temp\eelk.dat
[TROJ_MULTIDROP.Z]
C:\Documents and Settings\rully\Local Settings\Temp\ejch.dat
[TROJ_MULTIDROP.Z]
C:\Documents and Settings\rully\Local Settings\Temp\enod.dat
[TROJ_MULTIDROP.Z]
C:\Documents and Settings\rully\Local Settings\Temp\fglb.dat
[TROJ_MULTIDROP.Z]
C:\Documents and Settings\rully\Local Settings\Temp\gijh.dat
[TROJ_MULTIDROP.Z]
C:\Documents and Settings\rully\Local Settings\Temp\gllc.dat
[TROJ_MULTIDROP.Z]
C:\Documents and Settings\rully\Local Settings\Temp\glln.dat
[TROJ_MULTIDROP.Z]
C:\Documents and Settings\rully\Local Settings\Temp\gmon.dat
[TROJ_MULTIDROP.Z]
C:\Documents and Settings\rully\Local Settings\Temp\hclf.dat
[TROJ_MULTIDROP.Z]
C:\Documents and Settings\rully\Local Settings\Temp\hmll.dat
[TROJ_MULTIDROP.Z]
C:\Documents and Settings\rully\Local Settings\Temp\jmhb.dat
[TROJ_MULTIDROP.Z]
C:\Documents and Settings\rully\Local Settings\Temp\kilg.dat
[TROJ_MULTIDROP.Z]
C:\Documents and Settings\rully\Local Settings\Temp\kjmd.dat
[TROJ_MULTIDROP.Z]
C:\Documents and Settings\rully\Local Settings\Temp\kjnm.dat
[TROJ_MULTIDROP.Z]
C:\Documents and Settings\rully\Local Settings\Temp\knfb.dat
[TROJ_MULTIDROP.Z]
C:\Documents and Settings\rully\Local Settings\Temp\knjc.dat
[TROJ_MULTIDROP.Z]
C:\Documents and Settings\rully\Local Settings\Temp\lapl.dat
[TROJ_MULTIDROP.Z]
C:\Documents and Settings\rully\Local Settings\Temp\lgne.dat
[TROJ_MULTIDROP.Z]
C:\Documents and Settings\rully\Local Settings\Temp\mnen.dat
[TROJ_MULTIDROP.Z]
C:\Documents and Settings\rully\Local Settings\Temp\nfme.dat
[TROJ_MULTIDROP.Z]
C:\Documents and Settings\rully\Local Settings\Temp\ngfd.dat
[TROJ_MULTIDROP.Z]
C:\Documents and Settings\rully\Local Settings\Temp\olcm.dat
[TROJ_MULTIDROP.Z]
C:\Documents and Settings\rully\Local Settings\Temp\pmah.dat
[TROJ_MULTIDROP.Z]
C:\hooks.dll [TROJ_SMALL.IA]
C:\inst.exe [TROJ_SMALL.IB]
C:\WINDOWS\Downloaded Program Files\internazionale_ver3.ocx
[TROJ_ADPOWER.B]
C:\WINDOWS\system32\netui0.exe [TROJ_SMALL.AN]
C:\WINDOWS\toolbar.exe [TROJ_SMALL.AB]
30110 files have been read.
30110 files have been checked.
22413 files have been scanned.
120070 files have been scanned. (including files in archived)
38 files containing viruses.
Found 38 viruses totally.
Maybe 0 viruses totally.
Stop At : 10/29/2004 04:45:02
---------*---------*---------*---------*---------*---------*---------*---------*
2004-10-29, 04:45:03, Files Clean:
Copyright (c) 1990 - 2004 Trend Micro Inc.
Report Date : 10/29/2004 04:13:46
VSAPI Engine Version : 7.000-1004
VSCANTM Version : 1.1-1001
Virus Pattern Version : 220 (74238 Patterns) (2004/10/27) (222000)
Command Line: C:\New Folder\VSCANTM.BIN /NBPM /S /CLEANALL /LAPPEND
/LD /LC /LCF /NM /NB /C /ACTIVEACTION=5 C:\*.* /P=C:\New Folder

Success Clean [TROJ_PORNDIAL.BP]( 1) from C:\124782.exe
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\aacb.dat
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\addf.dat
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\apef.dat
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\bakd.dat
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\beje.dat
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\bikp.dat
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\dkai.dat
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\eelk.dat
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\ejch.dat
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\enod.dat
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\fglb.dat
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\gijh.dat
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\gllc.dat
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\glln.dat
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\gmon.dat
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\hclf.dat
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\hmll.dat
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\jmhb.dat
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\kilg.dat
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\kjmd.dat
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\kjnm.dat
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\knfb.dat
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\knjc.dat
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\lapl.dat
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\lgne.dat
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\mnen.dat
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\nfme.dat
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\ngfd.dat
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\olcm.dat
Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
Settings\rully\Local Settings\Temp\pmah.dat
Success Clean [ TROJ_SMALL.IA]( 1) from C:\hooks.dll
Success Clean [ TROJ_SMALL.IB]( 1) from C:\inst.exe
Success Clean [JAVA_BYTEVER.A-1]( 1) from C:\Program
Files\PestPatrol\Quarantine\20041015140936294.zip,(Gummy.class)
Success Clean [ TROJ_ADPOWER.B]( 1) from C:\WINDOWS\Downloaded
Program Files\internazionale_ver3.ocx
Success Clean [ TROJ_SMALL.AN]( 1) from
C:\WINDOWS\system32\netui0.exe
30110 files have been read.
30110 files have been checked.
22413 files have been scanned.
120070 files have been scanned. (including files in archived)
38 files containing viruses.
Found 38 viruses totally.
Maybe 0 viruses totally.
Stop At : 10/29/2004 04:45:02 31 minutes 13 seconds (1873.42 seconds)
has elapsed.

---------*---------*---------*---------*---------*---------*---------*---------*
2004-10-29, 04:45:03, Clean Fail:
Copyright (c) 1990 - 2004 Trend Micro Inc.
Report Date : 10/29/2004 04:13:46
VSAPI Engine Version : 7.000-1004
VSCANTM Version : 1.1-1001
Virus Pattern Version : 220 (74238 Patterns) (2004/10/27) (222000)
Command Line: C:\New Folder\VSCANTM.BIN /NBPM /S /CLEANALL /LAPPEND
/LD /LC /LCF /NM /NB /C /ACTIVEACTION=5 C:\*.* /P=C:\New Folder

30110 files have been read.
30110 files have been checked.
22413 files have been scanned.
120070 files have been scanned. (including files in archived)
38 files containing viruses.
Found 38 viruses totally.
Maybe 0 viruses totally.
Stop At : 10/29/2004 04:45:02 31 minutes 13 seconds (1873.42 seconds)
has elapsed.

---------*---------*---------*---------*---------*---------*---------*---------*
2004-10-29, 04:45:03, Scanner "C:\New Folder\VSCANTM.BIN" has
finished running.


/--------------------------------------------------------------\
| Trend Micro Sysclean Package |
| Copyright 2002, Trend Micro, Inc. |
| http://www.trendmicro.com |
\--------------------------------------------------------------/


2004-10-29, 06:01:36, Auto-clean mode specified.
2004-10-29, 06:01:36, Running scanner "C:\New Folder\TSC.BIN"...
2004-10-29, 06:02:11, Scanner "C:\New Folder\TSC.BIN" has finished
running.
2004-10-29, 06:02:11, TSC Log:

2004-10-29, 06:03:13, An error occurred while scanning file
"C:\Documents and Settings\rully\NTUSER.DAT": Access is denied.
2004-10-29, 06:03:13, An error occurred while scanning file
"C:\Documents and Settings\rully\ntuser.dat.LOG": Access is denied.
2004-10-29, 06:05:43, An error occurred while scanning file
"C:\Documents and Settings\rully\Local Settings\Application
Data\Microsoft\Windows\UsrClass.dat": Access is denied.
2004-10-29, 06:05:43, An error occurred while scanning file
"C:\Documents and Settings\rully\Local Settings\Application
Data\Microsoft\Windows\UsrClass.dat.LOG": Access is denied.
2004-10-29, 06:19:44, An error was detected on "C:\System Volume
Information\*.*": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\124782.EXE-07F785CF.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\AATN.EXE-054C7E9E.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\ACRORD32.EXE-20C463C1.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\ADVCHK.EXE-06353890.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\AGENTSVR.EXE-002E45AB.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\AGJB.DAT-2A07E0CF.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\AMNI.DAT-0E9D607F.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\AUPDATE.EXE-2253CB60.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\BPKH.DAT-2B2E308A.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\CALC.EXE-02CD573A.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\CASCADE DTP V4.EXE-26A38ECE.pf": Access is
denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\CASCADE.EXE-12B95E49.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\CCAPP.EXE-1207B2A5.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\CCPWDSVC.EXE-25BE6B86.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\CCREGVFY.EXE-08FB5B2E.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\CKJK.DAT-0DCC1C21.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\CMD.EXE-087B4001.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\COLLECTION8.EXE-346C19F8.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\COOKIEPATROL.EXE-005737A7.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\COUNTER.EXE-2E0D7CDC.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\CURRENTLOGON.EXE-32253424.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\DEFRAG.EXE-273F131E.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\DFRGNTFS.EXE-269967DF.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\DRWTSN32.EXE-2B4B52AC.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\DTUH.EXE-12D68FDC.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\DUMPREP.EXE-1B46F901.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\DW.EXE-227292CF.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\DWLGTI.EXE-06EF6A9C.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\DWWIN.EXE-30875ADC.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\EXPLORER.EXE-082F38A9.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\FFCO.DAT-3A2E7774.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\FNIP.DAT-3210D997.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\GEMJ.DAT-0D10F6E0.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\GLB1A2B.EXE-23344532.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\GLJ286.TMP-2796DC9F.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\HC.EXE-0059B3C0.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\HELLO.EXE-332132CA.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\HELPCTR.EXE-3862B6F5.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\HELPHOST.EXE-247D2792.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\HELPSVC.EXE-2878DDA2.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\HIJACKTHIS.EXE-2791E853.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\IEOL.DAT-2EDD51B6.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\IEXPLORE.EXE-27122324.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\ILID.DAT-2131B627.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\INST.EXE-0BF1DF5C.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\IS-910QA.TMP-3B26141B.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\IUN506.EXE-075EE1EF.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\JAVAW.EXE-2C3C0CA8.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\JAVAWS.EXE-2989E31A.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\JCREATOR.EXE-314E051D.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\JDCC.DAT-2CB7617A.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\JDNN.DAT-2DF6BDE8.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\JLOK.DAT-31A19C56.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\JNKH.DAT-2B993840.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\JUSCHED.EXE-30BDEFBB.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\KJMD.DAT-3A06285E.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\Layout.ini": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\LHGL.DAT-07BAD76C.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\LKPG.DAT-2B661723.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\LOGON.SCR-151EFAEA.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\LPSETUP.EXE-3422810D.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\LUALL.EXE-30AC8E48.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\LUCOMS~1.EXE-02DB5950.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\MHFI.DAT-287DB1C8.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\MIRC.EXE-0661EC22.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\MOZILLAFIREBIRD.EXE-0B05F6AE.pf": Access is
denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\MPLF.DAT-365935C5.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\MSIEXEC.EXE-2F8A8CAE.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\MSIMN.EXE-38BA891D.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\MSINFO32.EXE-29BA7538.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\MSNAPPAU.EXE-2A07E6B6.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\MSNMSGR.EXE-366A1A81.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\NAVW32.EXE-24F56911.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\NCOEENV.EXE-22FAC640.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\NDETECT.EXE-16E64095.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\NDFD.DAT-10AFD931.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\NETUI0.EXE-37E2C2FF.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\NMAIN.EXE-2BA406E0.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\NOTEPAD.EXE-189578DA.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\NTOSBOOT-B00DFAAD.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\NUTINS.EXE-0356A485.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\OANG.DAT-2AB2C1A3.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\ODME.DAT-1137BD5B.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\OPAI.DAT-17750F9A.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\OSA.EXE-2CD63980.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\OUTLOOK.EXE-1E64345B.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\OUTLOOK.EXE-27D5965C.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\PC.EXE-25869C76.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\PESTPATROL.EXE-2B87BB0B.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\PPCONTROL.EXE-01540BCE.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\PPMEMCHECK.EXE-0BAEAEEA.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\PPUPDATER.EXE-2653D3AE.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\REGEDIT.EXE-1B606482.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\ROSE.EXE-296BA7DB.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\RUNDLL32.EXE-268BFF96.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\RUNDLL32.EXE-35BB92D4.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\RUNDLL32.EXE-42C4EDF2.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\RUNDLL32.EXE-447473FF.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\RUNDLL32.EXE-451FC2C0.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\RVSIM.EXE-06B9F1BF.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\SHMGRATE.EXE-1BA69E68.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\SYSCLEAN.COM-286763B1.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\SYSCLEAN.EXE-008B7714.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\SYSCLEAN.EXE-15AB2EE7.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\TASKMGR.EXE-20256C55.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\TSC.BIN-1E31C80A.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\UNINS000.EXE-0262A94E.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\UNINSTALL.EXE-25AEA4AB.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\UNWISE.EXE-23E770C8.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\USERINIT.EXE-30B18140.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\WINHLP32.EXE-2C18E975.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\WINMINE.EXE-0A3838A4.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\WINRAR.EXE-39C6DAD9.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\WINWORD.EXE-29F5CB89.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\WINZIP32.EXE-335422C1.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\WMIADAP.EXE-2DF425B2.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\WMIPRVSE.EXE-28F301A9.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\WSCRIPT.EXE-32960AB9.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\WUAUCLT.EXE-399A8E72.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\YAHOOPOPS-WIN-0.6.EXE-2066D177.pf": Access is
denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\YAHOOPOPS.EXE-054F3B1C.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\ZLCLIENT.EXE-1C550EB2.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\_IU14D2N.TMP-32602293.pf": Access is denied.
2004-10-29, 06:29:58, Could not set file for reading on
"C:\WINDOWS\Prefetch\_MSRSTRT.EXE-04947D55.pf": Access is denied.
2004-10-29, 06:35:12, An error occurred while scanning file
"C:\WINDOWS\system32\config\default": Access is denied.
2004-10-29, 06:35:12, An error occurred while scanning file
"C:\WINDOWS\system32\config\default.LOG": Access is denied.
2004-10-29, 06:35:12, An error occurred while scanning file
"C:\WINDOWS\system32\config\SAM": Access is denied.
2004-10-29, 06:35:12, An error occurred while scanning file
"C:\WINDOWS\system32\config\SAM.LOG": Access is denied.
2004-10-29, 06:35:12, An error occurred while scanning file
"C:\WINDOWS\system32\config\SECURITY": Access is denied.
2004-10-29, 06:35:12, An error occurred while scanning file
"C:\WINDOWS\system32\config\SECURITY.LOG": Access is denied.
2004-10-29, 06:35:12, An error occurred while scanning file
"C:\WINDOWS\system32\config\software": Access is denied.
2004-10-29, 06:35:12, An error occurred while scanning file
"C:\WINDOWS\system32\config\software.LOG": Access is denied.
2004-10-29, 06:35:13, An error occurred while scanning file
"C:\WINDOWS\system32\config\system": Access is denied.
2004-10-29, 06:35:13, An error occurred while scanning file
"C:\WINDOWS\system32\config\system.LOG": Access is denied.
2004-10-29, 06:37:04, Running scanner "C:\New Folder\VSCANTM.BIN"...
2004-10-29, 07:08:11, Files Detected:
Copyright (c) 1990 - 2004 Trend Micro Inc.
Report Date : 10/29/2004 06:37:05
VSAPI Engine Version : 7.000-1004
VSCANTM Version : 1.1-1001
Virus Pattern Version : 220 (74238 Patterns) (2004/10/27) (222000)
Command Line: C:\New Folder\VSCANTM.BIN /NBPM /S /CLEANALL /LAPPEND
/LD /LC /LCF /NM /NB /C /ACTIVEACTION=5 C:\*.* /P=C:\New Folder

C:\WINDOWS\toolbar.exe [TROJ_SMALL.AB]
29856 files have been read.
29856 files have been checked.
22287 files have been scanned.
119935 files have been scanned. (including files in archived)
2 files containing viruses.
Found 2 viruses totally.
Maybe 0 viruses totally.
Stop At : 10/29/2004 07:08:10
---------*---------*---------*---------*---------*---------*---------*---------*
2004-10-29, 07:08:11, Files Clean:
Copyright (c) 1990 - 2004 Trend Micro Inc.
Report Date : 10/29/2004 06:37:05
VSAPI Engine Version : 7.000-1004
VSCANTM Version : 1.1-1001
Virus Pattern Version : 220 (74238 Patterns) (2004/10/27) (222000)
Command Line: C:\New Folder\VSCANTM.BIN /NBPM /S /CLEANALL /LAPPEND
/LD /LC /LCF /NM /NB /C /ACTIVEACTION=5 C:\*.* /P=C:\New Folder

29856 files have been read.
29856 files have been checked.
22287 files have been scanned.
119935 files have been scanned. (including files in archived)
2 files containing viruses.
Found 2 viruses totally.
Maybe 0 viruses totally.
Stop At : 10/29/2004 07:08:10 31 minutes 2 seconds (1862.90 seconds)
has elapsed.

---------*---------*---------*---------*---------*---------*---------*---------*
2004-10-29, 07:08:11, Clean Fail:
Copyright (c) 1990 - 2004 Trend Micro Inc.
Report Date : 10/29/2004 06:37:05
VSAPI Engine Version : 7.000-1004
VSCANTM Version : 1.1-1001
Virus Pattern Version : 220 (74238 Patterns) (2004/10/27) (222000)
Command Line: C:\New Folder\VSCANTM.BIN /NBPM /S /CLEANALL /LAPPEND
/LD /LC /LCF /NM /NB /C /ACTIVEACTION=5 C:\*.* /P=C:\New Folder

29856 files have been read.
29856 files have been checked.
22287 files have been scanned.
119935 files have been scanned. (including files in archived)
2 files containing viruses.
Found 2 viruses totally.
Maybe 0 viruses totally.
Stop At : 10/29/2004 07:08:10 31 minutes 2 seconds (1862.90 seconds)
has elapsed.

---------*---------*---------*---------*---------*---------*---------*---------*
2004-10-29, 07:08:11, Scanner "C:\New Folder\VSCANTM.BIN" has
finished running.


/--------------------------------------------------------------\
| Trend Micro Sysclean Package |
| Copyright 2002, Trend Micro, Inc. |
| http://www.trendmicro.com |
\--------------------------------------------------------------/


2004-10-29, 09:31:06, Auto-clean mode specified.
2004-10-29, 09:31:06, Running scanner "C:\New Folder\TSC.BIN"...
2004-10-29, 09:32:27, Scanner "C:\New Folder\TSC.BIN" has finished
running.
2004-10-29, 09:32:27, TSC Log:

Damage Cleanup Engine (DCE) 3.6(Build 1120)
Windows XP(Build 2600: Service Pack 1)

Start time : Fri Oct 29 2004 03:50:19

Load Damage Cleanup Template (DCT) "C:\New Folder\tsc.ptn" (version
442) [success]

Complete time : Fri Oct 29 2004 03:51:18
Execute pattern count(1348), Virus found count(0), Virus clean
count(0), Clean failed count(0)

Damage Cleanup Engine (DCE) 3.6(Build 1120)
Windows XP(Build 2600: Service Pack 1)

Start time : Fri Oct 29 2004 06:01:36

Load Damage Cleanup Template (DCT) "C:\New Folder\tsc.ptn" (version
442) [success]

Complete time : Fri Oct 29 2004 06:02:10
Execute pattern count(1348), Virus found count(0), Virus clean
count(0), Clean failed count(0)

Damage Cleanup Engine (DCE) 3.6(Build 1120)
Windows XP(Build 2600: Service Pack 1)

Start time : Fri Oct 29 2004 09:31:07

Load Damage Cleanup Template (DCT) "C:\New Folder\tsc.ptn" (version
442) [success]

Complete time : Fri Oct 29 2004 09:32:27
Execute pattern count(1348), Virus found count(0), Virus clean
count(0), Clean failed count(0)

2004-10-29, 09:34:56, An error occurred while scanning file
"C:\Documents and Settings\LocalService\NTUSER.DAT": Access is denied.
2004-10-29, 09:34:56, An error occurred while scanning file
"C:\Documents and Settings\LocalService\ntuser.dat.LOG": Access is
denied.
2004-10-29, 09:34:56, An error occurred while scanning file
"C:\Documents and Settings\LocalService\Local Settings\Application
Data\Microsoft\Windows\UsrClass.dat": Access is denied.
2004-10-29, 09:34:56, An error occurred while scanning file
"C:\Documents and Settings\LocalService\Local Settings\Application
Data\Microsoft\Windows\UsrClass.dat.LOG": Access is denied.
2004-10-29, 09:34:56, An error occurred while scanning file
"C:\Documents and Settings\NetworkService\NTUSER.DAT": Access is
denied.
2004-10-29, 09:34:56, An error occurred while scanning file
"C:\Documents and Settings\NetworkService\ntuser.dat.LOG": Access is
denied.
2004-10-29, 09:34:56, An error occurred while scanning file
"C:\Documents and Settings\NetworkService\Local Settings\Application
Data\Microsoft\Windows\UsrClass.dat": Access is denied.
2004-10-29, 09:34:56, An error occurred while scanning file
"C:\Documents and Settings\NetworkService\Local Settings\Application
Data\Microsoft\Windows\UsrClass.dat.LOG": Access is denied.
2004-10-29, 09:34:56, An error occurred while scanning file
"C:\Documents and Settings\rully\NTUSER.DAT": Access is denied.
2004-10-29, 09:34:56, An error occurred while scanning file
"C:\Documents and Settings\rully\ntuser.dat.LOG": Access is denied.
2004-10-29, 09:35:36, An error occurred while scanning file
"C:\Documents and Settings\rully\Application
Data\Phoenix\Profiles\default\pc86zssq.slt\parent.lock": Access is
denied.
2004-10-29, 09:39:54, An error occurred while scanning file
"C:\Documents and Settings\rully\Local Settings\Application
Data\Microsoft\Windows\UsrClass.dat": Access is denied.
2004-10-29, 09:39:54, An error occurred while scanning file
"C:\Documents and Settings\rully\Local Settings\Application
Data\Microsoft\Windows\UsrClass.dat.LOG": Access is denied.
2004-10-29, 09:59:24, An error was detected on "C:\System Volume
Information\*.*": Access is denied.
2004-10-29, 10:09:33, Could not set file for reading on
"C:\WINDOWS\Prefetch\124782.EXE-07F785CF.pf": Access is denied.
2004-10-29, 10:09:33, Could not set file for reading on
"C:\WINDOWS\Prefetch\AATN.EXE-054C7E9E.pf": Access is denied.
2004-10-29, 10:09:33, Could not set file for reading on
"C:\WINDOWS\Prefetch\ACRORD32.EXE-20C463C1.pf": Access is denied.
2004-10-29, 10:09:33, Could not set file for reading on
"C:\WINDOWS\Prefetch\ADVCHK.EXE-06353890.pf": Access is denied.
2004-10-29, 10:09:33, Could not set file for reading on
"C:\WINDOWS\Prefetch\AGENTSVR.EXE-002E45AB.pf": Access is denied.
2004-10-29, 10:09:33, Could not set file for reading on
"C:\WINDOWS\Prefetch\AGJB.DAT-2A07E0CF.pf": Access is denied.
2004-10-29, 10:09:33, Could not set file for reading on
"C:\WINDOWS\Prefetch\AMNI.DAT-0E9D607F.pf": Access is denied.
2004-10-29, 10:09:33, Could not set file for reading on
"C:\WINDOWS\Prefetch\AUPDATE.EXE-2253CB60.pf": Access is denied.
2004-10-29, 10:09:33, Could not set file for reading on
"C:\WINDOWS\Prefetch\BPKH.DAT-2B2E308A.pf": Access is denied.
2004-10-29, 10:09:33, Could not set file for reading on
"C:\WINDOWS\Prefetch\CALC.EXE-02CD573A.pf": Access is denied.
2004-10-29, 10:09:33, Could not set file for reading on
"C:\WINDOWS\Prefetch\CASCADE DTP V4.EXE-26A38ECE.pf": Access is
denied.
2004-10-29, 10:09:33, Could not set file for reading on
"C:\WINDOWS\Prefetch\CASCADE.EXE-12B95E49.pf": Access is denied.
2004-10-29, 10:09:33, Could not set file for reading on
"C:\WINDOWS\Prefetch\CCAPP.EXE-1207B2A5.pf": Access is denied.
2004-10-29, 10:09:33, Could not set file for reading on
"C:\WINDOWS\Prefetch\CCPWDSVC.EXE-25BE6B86.pf": Access is denied.
2004-10-29, 10:09:33, Could not set file for reading on
"C:\WINDOWS\Prefetch\CCREGVFY.EXE-08FB5B2E.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\CKJK.DAT-0DCC1C21.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\CMD.EXE-087B4001.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\COLLECTION8.EXE-346C19F8.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\COOKIEPATROL.EXE-005737A7.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\COUNTER.EXE-2E0D7CDC.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\CURRENTLOGON.EXE-32253424.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\DEFRAG.EXE-273F131E.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\DFRGNTFS.EXE-269967DF.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\DRWTSN32.EXE-2B4B52AC.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\DTUH.EXE-12D68FDC.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\DUMPREP.EXE-1B46F901.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\DW.EXE-227292CF.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\DWLGTI.EXE-06EF6A9C.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\DWWIN.EXE-30875ADC.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\EXPLORER.EXE-082F38A9.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\FFCO.DAT-3A2E7774.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\FNIP.DAT-3210D997.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\GEMJ.DAT-0D10F6E0.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\GLB1A2B.EXE-23344532.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\GLJ286.TMP-2796DC9F.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\HC.EXE-0059B3C0.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\HELLO.EXE-332132CA.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\HELPCTR.EXE-3862B6F5.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\HELPHOST.EXE-247D2792.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\HELPSVC.EXE-2878DDA2.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\HIJACKTHIS.EXE-2791E853.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\IEOL.DAT-2EDD51B6.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\IEXPLORE.EXE-27122324.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\ILID.DAT-2131B627.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\INST.EXE-0BF1DF5C.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\IS-910QA.TMP-3B26141B.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\IUN506.EXE-075EE1EF.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\JAVAW.EXE-2C3C0CA8.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\JAVAWS.EXE-2989E31A.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\JCREATOR.EXE-314E051D.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\JDCC.DAT-2CB7617A.pf": Access is denied.
2004-10-29, 10:09:34, Could not set file for reading on
"C:\WINDOWS\Prefetch\JDNN.DAT-2DF6BDE8.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\JLOK.DAT-31A19C56.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\JNKH.DAT-2B993840.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\JUSCHED.EXE-30BDEFBB.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\KJMD.DAT-3A06285E.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\Layout.ini": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\LHGL.DAT-07BAD76C.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\LKPG.DAT-2B661723.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\LOGON.SCR-151EFAEA.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\LPSETUP.EXE-3422810D.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\LUALL.EXE-30AC8E48.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\LUCOMS~1.EXE-02DB5950.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\MHFI.DAT-287DB1C8.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\MIRC.EXE-0661EC22.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\MOZILLAFIREBIRD.EXE-0B05F6AE.pf": Access is
denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\MPLF.DAT-365935C5.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\MSIEXEC.EXE-2F8A8CAE.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\MSIMN.EXE-38BA891D.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\MSINFO32.EXE-29BA7538.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\MSNAPPAU.EXE-2A07E6B6.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\MSNMSGR.EXE-366A1A81.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\NAVW32.EXE-24F56911.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\NCOEENV.EXE-22FAC640.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\NDETECT.EXE-16E64095.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\NDFD.DAT-10AFD931.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\NETUI0.EXE-37E2C2FF.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\NMAIN.EXE-2BA406E0.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\NOTEPAD.EXE-189578DA.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\NTOSBOOT-B00DFAAD.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\NUTINS.EXE-0356A485.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\OANG.DAT-2AB2C1A3.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\ODME.DAT-1137BD5B.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\OPAI.DAT-17750F9A.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\OSA.EXE-2CD63980.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\OUTLOOK.EXE-1E64345B.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\OUTLOOK.EXE-27D5965C.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\PC.EXE-25869C76.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\PESTPATROL.EXE-2B87BB0B.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\PPCONTROL.EXE-01540BCE.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\PPMEMCHECK.EXE-0BAEAEEA.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\PPUPDATER.EXE-2653D3AE.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\REGEDIT.EXE-1B606482.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\ROSE.EXE-296BA7DB.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\RUNDLL32.EXE-268BFF96.pf": Access is denied.
2004-10-29, 10:09:35, Could not set file for reading on
"C:\WINDOWS\Prefetch\RUNDLL32.EXE-35BB92D4.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\RUNDLL32.EXE-42C4EDF2.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\RUNDLL32.EXE-447473FF.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\RUNDLL32.EXE-451FC2C0.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\RVSIM.EXE-06B9F1BF.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\SHMGRATE.EXE-1BA69E68.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\SYSCLEAN.COM-0FE2DDF0.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\SYSCLEAN.COM-286763B1.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\SYSCLEAN.EXE-008B7714.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\SYSCLEAN.EXE-15AB2EE7.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\SYSCLEAN.EXE-38C1732D.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\TASKMGR.EXE-20256C55.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\TSC.BIN-08796EDA.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\TSC.BIN-1E31C80A.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\UNINS000.EXE-0262A94E.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\UNINSTALL.EXE-25AEA4AB.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\UNWISE.EXE-23E770C8.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\USERINIT.EXE-30B18140.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\WINHLP32.EXE-2C18E975.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\WINMINE.EXE-0A3838A4.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\WINRAR.EXE-39C6DAD9.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\WINWORD.EXE-29F5CB89.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\WINZIP32.EXE-335422C1.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\WMIADAP.EXE-2DF425B2.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\WMIPRVSE.EXE-28F301A9.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\WSCRIPT.EXE-32960AB9.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\WUAUCLT.EXE-399A8E72.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\YAHOOPOPS-WIN-0.6.EXE-2066D177.pf": Access is
denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\YAHOOPOPS.EXE-054F3B1C.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\ZLCLIENT.EXE-1C550EB2.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\_IU14D2N.TMP-32602293.pf": Access is denied.
2004-10-29, 10:09:36, Could not set file for reading on
"C:\WINDOWS\Prefetch\_MSRSTRT.EXE-04947D55.pf": Access is denied.
2004-10-29, 10:25:40, An error occurred while scanning file
"C:\WINDOWS\system32\config\default": Access is denied.
2004-10-29, 10:25:40, An error occurred while scanning file
"C:\WINDOWS\system32\config\default.LOG": Access is denied.
2004-10-29, 10:25:40, An error occurred while scanning file
"C:\WINDOWS\system32\config\SAM": Access is denied.
2004-10-29, 10:25:40, An error occurred while scanning file
"C:\WINDOWS\system32\config\SAM.LOG": Access is denied.
2004-10-29, 10:25:40, An error occurred while scanning file
"C:\WINDOWS\system32\config\SECURITY": Access is denied.
2004-10-29, 10:25:40, An error occurred while scanning file
"C:\WINDOWS\system32\config\SECURITY.LOG": Access is denied.
2004-10-29, 10:25:40, An error occurred while scanning file
"C:\WINDOWS\system32\config\software": Access is denied.
2004-10-29, 10:25:40, An error occurred while scanning file
"C:\WINDOWS\system32\config\software.LOG": Access is denied.
2004-10-29, 10:25:40, An error occurred while scanning file
"C:\WINDOWS\system32\config\system": Access is denied.
2004-10-29, 10:25:40, An error occurred while scanning file
"C:\WINDOWS\system32\config\system.LOG": Access is denied.
2004-10-29, 10:29:49, An error occurred while scanning file
"C:\WINDOWS\Temp\ZLT07f46.TMP": Access is denied.
2004-10-29, 10:30:09, Running scanner "C:\New Folder\VSCANTM.BIN"...
2004-10-29, 10:59:40, Files Detected:
Copyright (c) 1990 - 2004 Trend Micro Inc.
Report Date : 10/29/2004 10:30:10
VSAPI Engine Version : 7.000-1004
VSCANTM Version : 1.1-1001
Virus Pattern Version : 220 (74238 Patterns) (2004/10/27) (222000)
Command Line: C:\New Folder\VSCANTM.BIN /NBPM /S /CLEANALL /LAPPEND
/LD /LC /LCF /NM /NB /C /ACTIVEACTION=5 C:\*.* /P=C:\New Folder

C:\WINDOWS\toolbar.exe [TROJ_SMALL.AB]
28414 files have been read.
28414 files have been checked.
21910 files have been scanned.
119564 files have been scanned. (including files in archived)
2 files containing viruses.
Found 2 viruses totally.
Maybe 0 viruses totally.
Stop At : 10/29/2004 10:59:39
---------*---------*---------*---------*---------*---------*---------*---------*
2004-10-29, 10:59:40, Files Clean:
Copyright (c) 1990 - 2004 Trend Micro Inc.
Report Date : 10/29/2004 10:30:10
VSAPI Engine Version : 7.000-1004
VSCANTM Version : 1.1-1001
Virus Pattern Version : 220 (74238 Patterns) (2004/10/27) (222000)
Command Line: C:\New Folder\VSCANTM.BIN /NBPM /S /CLEANALL /LAPPEND
/LD /LC /LCF /NM /NB /C /ACTIVEACTION=5 C:\*.* /P=C:\New Folder

28414 files have been read.
28414 files have been checked.
21910 files have been scanned.
119564 files have been scanned. (including files in archived)
2 files containing viruses.
Found 2 viruses totally.
Maybe 0 viruses totally.
Stop At : 10/29/2004 10:59:39 29 minutes 28 seconds (1767.90 seconds)
has elapsed.

---------*---------*---------*---------*---------*---------*---------*---------*
2004-10-29, 10:59:40, Clean Fail:
Copyright (c) 1990 - 2004 Trend Micro Inc.
Report Date : 10/29/2004 10:30:10
VSAPI Engine Version : 7.000-1004
VSCANTM Version : 1.1-1001
Virus Pattern Version : 220 (74238 Patterns) (2004/10/27) (222000)
Command Line: C:\New Folder\VSCANTM.BIN /NBPM /S /CLEANALL /LAPPEND
/LD /LC /LCF /NM /NB /C /ACTIVEACTION=5 C:\*.* /P=C:\New Folder

28414 files have been read.
28414 files have been checked.
21910 files have been scanned.
119564 files have been scanned. (including files in archived)
2 files containing viruses.
Found 2 viruses totally.
Maybe 0 viruses totally.
Stop At : 10/29/2004 10:59:39 29 minutes 28 seconds (1767.90 seconds)
has elapsed.

---------*---------*---------*---------*---------*---------*---------*---------*
2004-10-29, 10:59:40, Scanner "C:\New Folder\VSCANTM.BIN" has
finished running.


Additionally, after I perform all tasks...I did Highjackthis for you:

FROM NORMAL MODE ONLY:

Logfile of HijackThis v1.98.2
Scan saved at 11:02:36 AM, on 10/29/2004
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\Java\j2re1.4.2_05\bin\jusched.exe
C:\PROGRA~1\PESTPA~1\PPControl.exe
C:\PROGRA~1\PESTPA~1\PPMemCheck.exe
C:\PROGRA~1\PESTPA~1\CookiePatrol.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files\MSN Apps\Updater\01.02.3000.1001\en-au\msnappau.exe
C:\Program Files\Hello\Hello.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Documents and Settings\rully\Application Data\aatn.exe
C:\Program Files\D-Link\D-Link AirPlus G+ Wireless Adapter
Utility\DWLGTI.EXE
C:\WINDOWS\System32\Atievxx.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton AntiVirus\AdvTools\NPROTECT.EXE
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\WINDOWS\System32\nutsrv4.exe
C:\WINDOWS\System32\wuauclt.exe
C:\Documents and Settings\rully\My
Documents\MozillaFirebird\MozillaFirebird.exe
C:\WINDOWS\System32\nutins.exe
C:\windows\NOTEPAD.EXE
\RULLY\Supporting Programs\Programs\HighJackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar =
res://C:\WINDOWS\Downloaded Program
Files\CONFLICT.1\CopernicMeta.dll/SearchBar_htm
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
http://www.heretofind.com/show.php?id=15&q=%s
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.ecu.edu.au/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://www.heretofind.com/show.php?id=15&q=%s
R3 - URLSearchHook: (no name) - {DE09D68E-0488-4DF0-BD46-5BF35F2D1F2A}
- C:\WINDOWS\DOWNLO~1\CONFLICT.1\COPERN~1.DLL
O1 - Hosts: 127.0.0.3 n-glx.s-redirect.com
O1 - Hosts: 127.0.0.3 x.full-tgp.net
O1 - Hosts: 127.0.0.3 counter.sexmaniack.com
O1 - Hosts: 127.0.0.3 autoescrowpay.com
O1 - Hosts: 127.0.0.3 www.autoescrowpay.com
O1 - Hosts: 127.0.0.3 www.awmdabest.com
O1 - Hosts: 127.0.0.3 www.sexfiles.nu
O1 - Hosts: 127.0.0.3 awmdabest.com
O1 - Hosts: 127.0.0.3 sexfiles.nu
O1 - Hosts: 127.0.0.3 allforadult.com
O1 - Hosts: 127.0.0.3 www.allforadult.com
O1 - Hosts: 127.0.0.3 www.iframe.biz
O1 - Hosts: 127.0.0.3 iframe.biz
O1 - Hosts: 127.0.0.3 www.newiframe.biz
O1 - Hosts: 127.0.0.3 newiframe.biz
O1 - Hosts: 127.0.0.3 www.vesbiz.biz
O1 - Hosts: 127.0.0.3 vesbiz.biz
O1 - Hosts: 127.0.0.3 www.pizdato.biz
O1 - Hosts: 127.0.0.3 pizdato.biz
O1 - Hosts: 127.0.0.3 www.aaasexypics.com
O1 - Hosts: 127.0.0.3 aaasexypics.com
O1 - Hosts: 127.0.0.3 www.virgin-tgp.net
O1 - Hosts: 127.0.0.3 virgin-tgp.net
O1 - Hosts: 69.20.16.183 auto.search.msn.com
O1 - Hosts: 69.20.16.183 search.netscape.com
O1 - Hosts: 69.20.16.183 ieautosearch
O2 - BHO: (no name) - {39AF447D-ED11-52E1-825A-62557BF6781B} -
C:\WINDOWS\System32\nfsghar.dll
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program
Files\MSN Apps\ST\01.02.3000.1002\en-xu\stmain.dll
O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} -
C:\Program Files\MSN Apps\MSN Toolbar\01.02.3000.1001\en-au\msntb.dll
O3 - Toolbar: Norton AntiVirus -
{42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton
AntiVirus\NavShExt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} -
c:\program files\google\googletoolbar1.dll
O3 - Toolbar: WebFerret - {A58686ED-FC46-44C3-95C6-4A812AB776F1} -
C:\Program Files\FerretSoft\WebFerret\FerretBand.dll
O3 - Toolbar: ninemsn - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} -
C:\Program Files\MSN Apps\MSN Toolbar\01.02.3000.1001\en-au\msntb.dll
O3 - Toolbar: Copernic Agent - {F2E259E8-0FC8-438C-A6E0-342DD80FA53E}
- C:\PROGRA~1\COPERN~1\COPERN~1.DLL
O3 - Toolbar: Copernic Meta - {F79AD27F-8140-4E33-8B1D-C4FC6B663CCA} -
C:\WINDOWS\Downloaded Program Files\CONFLICT.1\CopernicMeta.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} -
C:\WINDOWS\System32\msdxm.ocx
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec
Shared\ccApp.exe"
O4 - HKLM\..\Run: [Advanced Tools Check]
C:\PROGRA~1\NORTON~1\AdvTools\ADVCHK.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program
Files\Java\j2re1.4.2_05\bin\jusched.exe
O4 - HKLM\..\Run: [PestPatrol Control Center]
C:\PROGRA~1\PESTPA~1\PPControl.exe
O4 - HKLM\..\Run: [PPMemCheck] C:\PROGRA~1\PESTPA~1\PPMemCheck.exe
O4 - HKLM\..\Run: [CookiePatrol] C:\PROGRA~1\PESTPA~1\CookiePatrol.exe
O4 - HKLM\..\Run: [NuTCSetupEnviron]
C:\PROGRA~1\RATIONAL\RATION~1\NUTCROOT\bin\ncoeenv.exe
O4 - HKLM\..\Run: [dsxap] C:\WINDOWS\dsxap.exe
O4 - HKLM\..\Run: [onof] C:\WINDOWS\onof.exe
O4 - HKLM\..\Run: [Zone Labs Client] "C:\Program Files\Zone
Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [msnappau] "C:\Program Files\MSN
Apps\Updater\01.02.3000.1001\en-au\msnappau.exe"
O4 - HKLM\..\Run: [PicasaNet] "C:\Program Files\Hello\Hello.exe" -b
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN
Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [Sreo] C:\Documents and Settings\rully\Application
Data\dtuh.exe
O4 - HKCU\..\Run: [netui0] C:\WINDOWS\System32\netui0.exe
O4 - HKCU\..\Run: [Wlnvuny] C:\WINDOWS\System32\w?nspool.exe
O4 - HKCU\..\Run: [Btib] C:\Documents and Settings\rully\Application
Data\aatn.exe
O4 - HKCU\..\Run: [nutins] C:\WINDOWS\System32\nutins.exe
O4 - Global Startup: D-Link AirPlus G+ Wireless Adapter Utility.lnk =
C:\Program Files\D-Link\D-Link AirPlus G+ Wireless Adapter
Utility\DWLGTI.EXE
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft
Office\Office10\OSA.EXE
O8 - Extra context menu item: &Google Search - res://C:\Program
Files\Google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: Backward Links - res://C:\Program
Files\Google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page -
res://C:\Program Files\Google\GoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: E&xport to Microsoft Excel -
res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Search Using Copernic Agent - C:\Program
Files\Copernic Agent\Web\SearchExt.htm
O8 - Extra context menu item: Search Using Copernic Meta -
res://C:\WINDOWS\Downloaded Program
Files\CONFLICT.1\CopernicMeta.dll/HTML/SearchExt
O8 - Extra context menu item: Similar Pages - res://C:\Program
Files\Google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Translate into English -
res://C:\Program Files\Google\GoogleToolbar1.dll/cmtrans.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501}
- C:\WINDOWS\System32\msjava.dll
O9 - Extra 'Tools' menuitem: Sun Java Console -
{08B0E5C0-4FCB-11CF-AAA5-00401C608501} -
C:\WINDOWS\System32\msjava.dll
O9 - Extra button: (no name) - {193B17B0-7C9F-4D5B-AEAB-8D3605EFC084}
- C:\PROGRA~1\COPERN~1\COPERN~1.EXE
O9 - Extra 'Tools' menuitem: Launch Copernic Agent -
{193B17B0-7C9F-4D5B-AEAB-8D3605EFC084} -
C:\PROGRA~1\COPERN~1\COPERN~1.EXE
O9 - Extra button: (no name) - {237AA178-C3BC-4f67-A8BB-D8BC14BA0B89}
- (no file)
O9 - Extra button: Copernic Agent -
{688DC797-DC11-46A7-9F1B-445F4F58CE6E} -
C:\PROGRA~1\COPERN~1\COPERN~1.EXE
O9 - Extra button: Corel Network monitor worker -
{7E1F32BC-D2E4-4383-9111-19902D99EB0D} - (no file)
O9 - Extra 'Tools' menuitem: Corel Network monitor worker -
{7E1F32BC-D2E4-4383-9111-19902D99EB0D} - (no file)
O9 - Extra button: Share in Hello -
{B13B4423-2647-4cfc-A4B3-C7D56CB83487} - C:\Program
Files\Hello\PicasaCapture.dll
O9 - Extra 'Tools' menuitem: Share in H&ello -
{B13B4423-2647-4cfc-A4B3-C7D56CB83487} - C:\Program
Files\Hello\PicasaCapture.dll
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} -
C:\WINDOWS\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links -
{c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra button: (no name) - {237AA178-C3BC-4f67-A8BB-D8BC14BA0B89}
- (no file) (HKCU)
O9 - Extra button: Corel Network monitor worker -
{7E1F32BC-D2E4-4383-9111-19902D99EB0D} - (no file) (HKCU)
O9 - Extra 'Tools' menuitem: Corel Network monitor worker -
{7E1F32BC-D2E4-4383-9111-19902D99EB0D} - (no file) (HKCU)
O15 - Trusted Zone: *.blazefind.com
O15 - Trusted Zone: *.clickspring.net
O15 - Trusted Zone: *.flingstone.com
O15 - Trusted Zone: *.mt-download.com
O15 - Trusted Zone: *.my-internet.info
O15 - Trusted Zone: *.searchbarcash.com
O15 - Trusted Zone: *.searchmiracle.com
O15 - Trusted Zone: *.skoobidoo.com
O15 - Trusted Zone: *.slotch.com
O15 - Trusted Zone: *.windupdates.com
O15 - Trusted Zone: *.xxxtoolbar.com
O16 - DPF: Copernic Meta -
file://C:\DOCUME~1\rully\LOCALS~1\Temp\CopernicMeta0000.cab
O16 - DPF: {15AD4789-CDB4-47E1-A9DA-992EE8E6BAD6} -
http://public.windupdates.com/get_f...f92e68cfba8c:eb8a1fb09d00c5943edceabcca450006
O16 - DPF: {1D0D9077-3798-49BB-9058-393499174D5D} -
file://c:\counter.cab
O16 - DPF: {2359626E-7524-4F87-B04E-22CD38A0C88C} (ICSScannerLight
Class) - http://download.zonelabs.com/bin/free/cm/ICSCM.cab
O16 - DPF: {386A771C-E96A-421F-8BA7-32F1B706892F} -
http://www.xxxtoolbar.com/ist/softwares/v4.0/0006_regular.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class)
- http://v5.windowsupdate.microsoft.c...ls/en/x86/client/wuweb_site.cab?1083673922029
O16 - DPF: {6BEA1C48-1850-486C-8F58-C7354BA3165E} (Install Class) -
http://updates.lifescapeinc.com/installers/pinstall/pinstall.cab
O16 - DPF: {706F3805-27D7-478D-80E5-E25D2BB030B3}
(VacPro.internazionale_ver3) -
http://www.advnt01.com/dialer/internazionale_ver3.CAB
O16 - DPF: {9EB320CE-BE1D-4304-A081-4B4665414BEF}
(MediaTicketsInstaller Control) -
http://www.mt-download.com/MediaTicketsInstaller.cab
O16 - DPF: {B6B14E82-E23B-48DE-BFFF-876EC90D9B96} -
file://C:\DOCUME~1\rully\LOCALS~1\Temp\CopernicMetaInstall0000.cab
O18 - Protocol: copernicmeta - {9B46B30C-CB70-4551-9806-3238CC816A55}
- C:\WINDOWS\DOWNLO~1\CONFLICT.1\COPERN~1.DLL

I do the highjackthis after all full scanned....

Please help me for this problem...

Thank you very much for your kind attention and fully help.

Best Regards,

Rully
 
Well there is no doubt that a few Trojans were found and deleted.

TROJ_ADPOWER.B, TROJ_SMALL.AN, TROJ_SMALL.AB, TROJ_MULTIDROP.Z, JAVA_BYTEVER.A-1,
TROJ_PORNDIAL.BP

However, you provided a Hijack log that was not requested and with all those logs, its a
case of overload and I'm NOT sure all Trojans were indeed cleaned/removed.

Please download Adaware SE personal edition v1.05 and update it and clean your PC. I think
you also have parasites.

Dave



| Dear David,
|
| Sorry I reply you in late because I have something urgent in overseas.
| According to my results, I do have a problem with this...the file
| "crash.txt" is keeping coming back and re-created over the time...even
| I delete it manually, it still coming back (I already follow your
| guide) as follow:
|
| first come into SAFE MODE in ADMINISTRATION and do in RULLY both are
| log in place...and did full scan using as you recommended, includes
| disable system restore...and re - full scan in the normal mode....all
| I follow your guides but "crash.txt" file still keep coming
| back...Anyway, here is my report from "Sysclean":
|
| NOTE: I provide for you from Syscan at Safe Mode and Normal Mode.
| Additionally I provide you a highjackthis (new)...
|
| FROM SAFE MODE:
|
| C:\124782.exe [TROJ_PORNDIAL.BP]
| C:\Documents and Settings\rully\Local Settings\Temp\aacb.dat
| [TROJ_MULTIDROP.Z]
| C:\Documents and Settings\rully\Local Settings\Temp\addf.dat
| [TROJ_MULTIDROP.Z]
| C:\Documents and Settings\rully\Local Settings\Temp\apef.dat
| [TROJ_MULTIDROP.Z]
| C:\Documents and Settings\rully\Local Settings\Temp\bakd.dat
| [TROJ_MULTIDROP.Z]
| C:\Documents and Settings\rully\Local Settings\Temp\beje.dat
| [TROJ_MULTIDROP.Z]
| C:\Documents and Settings\rully\Local Settings\Temp\bikp.dat
| [TROJ_MULTIDROP.Z]
| C:\Documents and Settings\rully\Local Settings\Temp\dkai.dat
| [TROJ_MULTIDROP.Z]
| C:\Documents and Settings\rully\Local Settings\Temp\eelk.dat
| [TROJ_MULTIDROP.Z]
| C:\Documents and Settings\rully\Local Settings\Temp\ejch.dat
| [TROJ_MULTIDROP.Z]
| C:\Documents and Settings\rully\Local Settings\Temp\enod.dat
| [TROJ_MULTIDROP.Z]
| C:\Documents and Settings\rully\Local Settings\Temp\fglb.dat
| [TROJ_MULTIDROP.Z]
| C:\Documents and Settings\rully\Local Settings\Temp\gijh.dat
| [TROJ_MULTIDROP.Z]
| C:\Documents and Settings\rully\Local Settings\Temp\gllc.dat
| [TROJ_MULTIDROP.Z]
| C:\Documents and Settings\rully\Local Settings\Temp\glln.dat
| [TROJ_MULTIDROP.Z]
| C:\Documents and Settings\rully\Local Settings\Temp\gmon.dat
| [TROJ_MULTIDROP.Z]
| C:\Documents and Settings\rully\Local Settings\Temp\hclf.dat
| [TROJ_MULTIDROP.Z]
| C:\Documents and Settings\rully\Local Settings\Temp\hmll.dat
| [TROJ_MULTIDROP.Z]
| C:\Documents and Settings\rully\Local Settings\Temp\jmhb.dat
| [TROJ_MULTIDROP.Z]
| C:\Documents and Settings\rully\Local Settings\Temp\kilg.dat
| [TROJ_MULTIDROP.Z]
| C:\Documents and Settings\rully\Local Settings\Temp\kjmd.dat
| [TROJ_MULTIDROP.Z]
| C:\Documents and Settings\rully\Local Settings\Temp\kjnm.dat
| [TROJ_MULTIDROP.Z]
| C:\Documents and Settings\rully\Local Settings\Temp\knfb.dat
| [TROJ_MULTIDROP.Z]
| C:\Documents and Settings\rully\Local Settings\Temp\knjc.dat
| [TROJ_MULTIDROP.Z]
| C:\Documents and Settings\rully\Local Settings\Temp\lapl.dat
| [TROJ_MULTIDROP.Z]
| C:\Documents and Settings\rully\Local Settings\Temp\lgne.dat
| [TROJ_MULTIDROP.Z]
| C:\Documents and Settings\rully\Local Settings\Temp\mnen.dat
| [TROJ_MULTIDROP.Z]
| C:\Documents and Settings\rully\Local Settings\Temp\nfme.dat
| [TROJ_MULTIDROP.Z]
| C:\Documents and Settings\rully\Local Settings\Temp\ngfd.dat
| [TROJ_MULTIDROP.Z]
| C:\Documents and Settings\rully\Local Settings\Temp\olcm.dat
| [TROJ_MULTIDROP.Z]
| C:\Documents and Settings\rully\Local Settings\Temp\pmah.dat
| [TROJ_MULTIDROP.Z]
| C:\hooks.dll [TROJ_SMALL.IA]
| C:\inst.exe [TROJ_SMALL.IB]
| C:\WINDOWS\Downloaded Program Files\internazionale_ver3.ocx
| [TROJ_ADPOWER.B]
| C:\WINDOWS\system32\netui0.exe [TROJ_SMALL.AN]
| C:\WINDOWS\toolbar.exe [TROJ_SMALL.AB]
| Success Clean [TROJ_PORNDIAL.BP]( 1) from C:\124782.exe
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\aacb.dat
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\addf.dat
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\apef.dat
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\bakd.dat
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\beje.dat
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\bikp.dat
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\dkai.dat
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\eelk.dat
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\ejch.dat
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\enod.dat
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\fglb.dat
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\gijh.dat
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\gllc.dat
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\glln.dat
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\gmon.dat
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\hclf.dat
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\hmll.dat
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\jmhb.dat
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\kilg.dat
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\kjmd.dat
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\kjnm.dat
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\knfb.dat
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\knjc.dat
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\lapl.dat
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\lgne.dat
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\mnen.dat
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\nfme.dat
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\ngfd.dat
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\olcm.dat
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\pmah.dat
| Success Clean [ TROJ_SMALL.IA]( 1) from C:\hooks.dll
| Success Clean [ TROJ_SMALL.IB]( 1) from C:\inst.exe
| Success Clean [JAVA_BYTEVER.A-1]( 1) from C:\Program
| Files\PestPatrol\Quarantine\20041015140936294.zip,(Gummy.class)
| Success Clean [ TROJ_ADPOWER.B]( 1) from C:\WINDOWS\Downloaded
| Program Files\internazionale_ver3.ocx
| Success Clean [ TROJ_SMALL.AN]( 1) from
C:\WINDOWS\toolbar.exe [TROJ_SMALL.AB]
| C:\124782.exe [TROJ_PORNDIAL.BP]
| C:\Documents and Settings\rully\Local Settings\Temp\aacb.dat
| [TROJ_MULTIDROP.Z]
| C:\Documents and Settings\rully\Local Settings\Temp\addf.dat
| [TROJ_MULTIDROP.Z]
| C:\Documents and Settings\rully\Local Settings\Temp\apef.dat
| [TROJ_MULTIDROP.Z]
| C:\Documents and Settings\rully\Local Settings\Temp\bakd.dat
| [TROJ_MULTIDROP.Z]
| C:\Documents and Settings\rully\Local Settings\Temp\beje.dat
| [TROJ_MULTIDROP.Z]
| C:\Documents and Settings\rully\Local Settings\Temp\bikp.dat
| [TROJ_MULTIDROP.Z]
| C:\Documents and Settings\rully\Local Settings\Temp\dkai.dat
| [TROJ_MULTIDROP.Z]
| C:\Documents and Settings\rully\Local Settings\Temp\eelk.dat
| [TROJ_MULTIDROP.Z]
| C:\Documents and Settings\rully\Local Settings\Temp\ejch.dat
| [TROJ_MULTIDROP.Z]
| C:\Documents and Settings\rully\Local Settings\Temp\enod.dat
| [TROJ_MULTIDROP.Z]
| C:\Documents and Settings\rully\Local Settings\Temp\fglb.dat
| [TROJ_MULTIDROP.Z]
| C:\Documents and Settings\rully\Local Settings\Temp\gijh.dat
| [TROJ_MULTIDROP.Z]
| C:\Documents and Settings\rully\Local Settings\Temp\gllc.dat
| [TROJ_MULTIDROP.Z]
| C:\Documents and Settings\rully\Local Settings\Temp\glln.dat
| [TROJ_MULTIDROP.Z]
| C:\Documents and Settings\rully\Local Settings\Temp\gmon.dat
| [TROJ_MULTIDROP.Z]
| C:\Documents and Settings\rully\Local Settings\Temp\hclf.dat
| [TROJ_MULTIDROP.Z]
| C:\Documents and Settings\rully\Local Settings\Temp\hmll.dat
| [TROJ_MULTIDROP.Z]
| C:\Documents and Settings\rully\Local Settings\Temp\jmhb.dat
| [TROJ_MULTIDROP.Z]
| C:\Documents and Settings\rully\Local Settings\Temp\kilg.dat
| [TROJ_MULTIDROP.Z]
| C:\Documents and Settings\rully\Local Settings\Temp\kjmd.dat
| [TROJ_MULTIDROP.Z]
| C:\Documents and Settings\rully\Local Settings\Temp\kjnm.dat
| [TROJ_MULTIDROP.Z]
| C:\Documents and Settings\rully\Local Settings\Temp\knfb.dat
| [TROJ_MULTIDROP.Z]
| C:\Documents and Settings\rully\Local Settings\Temp\knjc.dat
| [TROJ_MULTIDROP.Z]
| C:\Documents and Settings\rully\Local Settings\Temp\lapl.dat
| [TROJ_MULTIDROP.Z]
| C:\Documents and Settings\rully\Local Settings\Temp\lgne.dat
| [TROJ_MULTIDROP.Z]
| C:\Documents and Settings\rully\Local Settings\Temp\mnen.dat
| [TROJ_MULTIDROP.Z]
| C:\Documents and Settings\rully\Local Settings\Temp\nfme.dat
| [TROJ_MULTIDROP.Z]
| C:\Documents and Settings\rully\Local Settings\Temp\ngfd.dat
| [TROJ_MULTIDROP.Z]
| C:\Documents and Settings\rully\Local Settings\Temp\olcm.dat
| [TROJ_MULTIDROP.Z]
| C:\Documents and Settings\rully\Local Settings\Temp\pmah.dat
| [TROJ_MULTIDROP.Z]
| C:\hooks.dll [TROJ_SMALL.IA]
| C:\inst.exe [TROJ_SMALL.IB]
| C:\WINDOWS\Downloaded Program Files\internazionale_ver3.ocx
| [TROJ_ADPOWER.B]
| C:\WINDOWS\system32\netui0.exe [TROJ_SMALL.AN]
| C:\WINDOWS\toolbar.exe [TROJ_SMALL.AB]

| Success Clean [TROJ_PORNDIAL.BP]( 1) from C:\124782.exe
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\aacb.dat
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\addf.dat
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\apef.dat
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\bakd.dat
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\beje.dat
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\bikp.dat
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\dkai.dat
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\eelk.dat
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\ejch.dat
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\enod.dat
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\fglb.dat
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\gijh.dat
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\gllc.dat
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\glln.dat
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\gmon.dat
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\hclf.dat
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\hmll.dat
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\jmhb.dat
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\kilg.dat
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\kjmd.dat
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\kjnm.dat
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\knfb.dat
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\knjc.dat
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\lapl.dat
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\lgne.dat
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\mnen.dat
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\nfme.dat
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\ngfd.dat
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\olcm.dat
| Success Clean [TROJ_MULTIDROP.Z]( 1) from C:\Documents and
| Settings\rully\Local Settings\Temp\pmah.dat
| Success Clean [ TROJ_SMALL.IA]( 1) from C:\hooks.dll
| Success Clean [ TROJ_SMALL.IB]( 1) from C:\inst.exe
| Success Clean [JAVA_BYTEVER.A-1]( 1) from C:\Program
| Files\PestPatrol\Quarantine\20041015140936294.zip,(Gummy.class)
| Success Clean [ TROJ_ADPOWER.B]( 1) from C:\WINDOWS\Downloaded
| Program Files\internazionale_ver3.ocx
| Success Clean [ TROJ_SMALL.AN]( 1) from
| C:\WINDOWS\toolbar.exe [TROJ_SMALL.AB]
 
Logfile of HijackThis v1.98.2
Scan saved at 11:02:36 AM, on 10/29/2004
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\Java\j2re1.4.2_05\bin\jusched.exe
C:\PROGRA~1\PESTPA~1\PPControl.exe
C:\PROGRA~1\PESTPA~1\PPMemCheck.exe
C:\PROGRA~1\PESTPA~1\CookiePatrol.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files\MSN Apps\Updater\01.02.3000.1001\en-au\msnappau.exe

What is this I see ???? delete it!
C:\Program Files\Hello\Hello.exe
Keep
C:\Program Files\MSN Messenger\MsnMsgr.Exe

I am not sure about this one, it is not a MS program:
C:\Documents and Settings\rully\Application Data\aatn.exe
C:\Program Files\D-Link\D-Link AirPlus G+ Wireless Adapter
Utility\DWLGTI.EXE
C:\WINDOWS\System32\Atievxx.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton AntiVirus\AdvTools\NPROTECT.EXE
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\WINDOWS\System32\nutsrv4.exe
C:\WINDOWS\System32\wuauclt.exe
C:\Documents and Settings\rully\My
Documents\MozillaFirebird\MozillaFirebird.exe
C:\WINDOWS\System32\nutins.exe
C:\windows\NOTEPAD.EXE
\RULLY\Supporting Programs\Programs\HighJackThis\HijackThis.exe

Fix these:
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar =
res://C:\WINDOWS\Downloaded Program
Files\CONFLICT.1\CopernicMeta.dll/SearchBar_htm
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
http://www.heretofind.com/show.php?id=15&q=%s
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.ecu.edu.au/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://www.heretofind.com/show.php?id=15&q=%s
R3 - URLSearchHook: (no name) - {DE09D68E-0488-4DF0-BD46-5BF35F2D1F2A}
- C:\WINDOWS\DOWNLO~1\CONFLICT.1\COPERN~1.DLL

Clean out your hosts file
O1 - Hosts: 127.0.0.3 n-glx.s-redirect.com
O1 - Hosts: 127.0.0.3 x.full-tgp.net
O1 - Hosts: 127.0.0.3 counter.sexmaniack.com
O1 - Hosts: 127.0.0.3 autoescrowpay.com
O1 - Hosts: 127.0.0.3 www.autoescrowpay.com
O1 - Hosts: 127.0.0.3 www.awmdabest.com
O1 - Hosts: 127.0.0.3 www.sexfiles.nu
O1 - Hosts: 127.0.0.3 awmdabest.com
O1 - Hosts: 127.0.0.3 sexfiles.nu
O1 - Hosts: 127.0.0.3 allforadult.com
O1 - Hosts: 127.0.0.3 www.allforadult.com
O1 - Hosts: 127.0.0.3 www.iframe.biz
O1 - Hosts: 127.0.0.3 iframe.biz
O1 - Hosts: 127.0.0.3 www.newiframe.biz
O1 - Hosts: 127.0.0.3 newiframe.biz
O1 - Hosts: 127.0.0.3 www.vesbiz.biz
O1 - Hosts: 127.0.0.3 vesbiz.biz
O1 - Hosts: 127.0.0.3 www.pizdato.biz
O1 - Hosts: 127.0.0.3 pizdato.biz
O1 - Hosts: 127.0.0.3 www.aaasexypics.com
O1 - Hosts: 127.0.0.3 aaasexypics.com
O1 - Hosts: 127.0.0.3 www.virgin-tgp.net
O1 - Hosts: 127.0.0.3 virgin-tgp.net
O1 - Hosts: 69.20.16.183 auto.search.msn.com
O1 - Hosts: 69.20.16.183 search.netscape.com
O1 - Hosts: 69.20.16.183 ieautosearch
These are your Browser Helpers and toolbars-keep the ones you recognize
O2 - BHO: (no name) - {39AF447D-ED11-52E1-825A-62557BF6781B} -
C:\WINDOWS\System32\nfsghar.dll
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program
Files\MSN Apps\ST\01.02.3000.1002\en-xu\stmain.dll
O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} -
C:\Program Files\MSN Apps\MSN Toolbar\01.02.3000.1001\en-au\msntb.dll
O3 - Toolbar: Norton AntiVirus -
{42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton
AntiVirus\NavShExt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} -
c:\program files\google\googletoolbar1.dll
O3 - Toolbar: WebFerret - {A58686ED-FC46-44C3-95C6-4A812AB776F1} -
C:\Program Files\FerretSoft\WebFerret\FerretBand.dll
O3 - Toolbar: ninemsn - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} -
C:\Program Files\MSN Apps\MSN Toolbar\01.02.3000.1001\en-au\msntb.dll
O3 - Toolbar: Copernic Agent - {F2E259E8-0FC8-438C-A6E0-342DD80FA53E}
- C:\PROGRA~1\COPERN~1\COPERN~1.DLL
O3 - Toolbar: Copernic Meta - {F79AD27F-8140-4E33-8B1D-C4FC6B663CCA} -
C:\WINDOWS\Downloaded Program Files\CONFLICT.1\CopernicMeta.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} -
C:\WINDOWS\System32\msdxm.ocx These are start programs
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec
Shared\ccApp.exe"
O4 - HKLM\..\Run: [Advanced Tools Check]
C:\PROGRA~1\NORTON~1\AdvTools\ADVCHK.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program
Files\Java\j2re1.4.2_05\bin\jusched.exe
O4 - HKLM\..\Run: [PestPatrol Control Center]
C:\PROGRA~1\PESTPA~1\PPControl.exe
O4 - HKLM\..\Run: [PPMemCheck] C:\PROGRA~1\PESTPA~1\PPMemCheck.exe
O4 - HKLM\..\Run: [CookiePatrol] C:\PROGRA~1\PESTPA~1\CookiePatrol.exe

I am not sure about these:
O4 - HKLM\..\Run: [NuTCSetupEnviron]
C:\PROGRA~1\RATIONAL\RATION~1\NUTCROOT\bin\ncoeenv.exe
O4 - HKLM\..\Run: [dsxap] C:\WINDOWS\dsxap.exe
O4 - HKLM\..\Run: [onof] C:\WINDOWS\onof.exe

O4 - HKLM\..\Run: [Zone Labs Client] "C:\Program Files\Zone
Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [msnappau] "C:\Program Files\MSN
Apps\Updater\01.02.3000.1001\en-au\msnappau.exe"

There is hello again!
O4 - HKLM\..\Run: [PicasaNet] "C:\Program Files\Hello\Hello.exe" -b
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN
Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [Sreo] C:\Documents and Settings\rully\Application
Data\dtuh.exe
O4 - HKCU\..\Run: [netui0] C:\WINDOWS\System32\netui0.exe
O4 - HKCU\..\Run: [Wlnvuny] C:\WINDOWS\System32\w?nspool.exe
O4 - HKCU\..\Run: [Btib] C:\Documents and Settings\rully\Application
Data\aatn.exe
O4 - HKCU\..\Run: [nutins] C:\WINDOWS\System32\nutins.exe
O4 - Global Startup: D-Link AirPlus G+ Wireless Adapter Utility.lnk =
C:\Program Files\D-Link\D-Link AirPlus G+ Wireless Adapter
Utility\DWLGTI.EXE
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft
Office\Office10\OSA.EXE
O8 - Extra context menu item: &Google Search - res://C:\Program
Files\Google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: Backward Links - res://C:\Program
Files\Google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page -
res://C:\Program Files\Google\GoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: E&xport to Microsoft Excel -
res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Search Using Copernic Agent - C:\Program
Files\Copernic Agent\Web\SearchExt.htm
O8 - Extra context menu item: Search Using Copernic Meta -
res://C:\WINDOWS\Downloaded Program
Files\CONFLICT.1\CopernicMeta.dll/HTML/SearchExt
O8 - Extra context menu item: Similar Pages - res://C:\Program
Files\Google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Translate into English -
res://C:\Program Files\Google\GoogleToolbar1.dll/cmtrans.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501}
- C:\WINDOWS\System32\msjava.dll
O9 - Extra 'Tools' menuitem: Sun Java Console -
{08B0E5C0-4FCB-11CF-AAA5-00401C608501} -
C:\WINDOWS\System32\msjava.dll
delete
O9 - Extra button: (no name) - {193B17B0-7C9F-4D5B-AEAB-8D3605EFC084}
- C:\PROGRA~1\COPERN~1\COPERN~1.EXE
O9 - Extra 'Tools' menuitem: Launch Copernic Agent -
{193B17B0-7C9F-4D5B-AEAB-8D3605EFC084} -
C:\PROGRA~1\COPERN~1\COPERN~1.EXE
O9 - Extra button: (no name) - {237AA178-C3BC-4f67-A8BB-D8BC14BA0B89}
- (no file)
O9 - Extra button: Copernic Agent -
{688DC797-DC11-46A7-9F1B-445F4F58CE6E} -
C:\PROGRA~1\COPERN~1\COPERN~1.EXE
keep
O9 - Extra button: Corel Network monitor worker -
{7E1F32BC-D2E4-4383-9111-19902D99EB0D} - (no file)
O9 - Extra 'Tools' menuitem: Corel Network monitor worker -
{7E1F32BC-D2E4-4383-9111-19902D99EB0D} - (no file)

Hello Hello!!! Delete delete
O9 - Extra button: Share in Hello -
{B13B4423-2647-4cfc-A4B3-C7D56CB83487} - C:\Program
Files\Hello\PicasaCapture.dll
O9 - Extra 'Tools' menuitem: Share in H&ello -
{B13B4423-2647-4cfc-A4B3-C7D56CB83487} - C:\Program
Files\Hello\PicasaCapture.dll
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} -
C:\WINDOWS\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links -
{c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra button: (no name) - {237AA178-C3BC-4f67-A8BB-D8BC14BA0B89}
- (no file) (HKCU) Keep these
O9 - Extra button: Corel Network monitor worker -
{7E1F32BC-D2E4-4383-9111-19902D99EB0D} - (no file) (HKCU)
O9 - Extra 'Tools' menuitem: Corel Network monitor worker -
{7E1F32BC-D2E4-4383-9111-19902D99EB0D} - (no file) (HKCU)

Get rid of these
O15 - Trusted Zone: *.blazefind.com
O15 - Trusted Zone: *.clickspring.net
O15 - Trusted Zone: *.flingstone.com
O15 - Trusted Zone: *.mt-download.com
O15 - Trusted Zone: *.my-internet.info
O15 - Trusted Zone: *.searchbarcash.com
O15 - Trusted Zone: *.searchmiracle.com
O15 - Trusted Zone: *.skoobidoo.com
O15 - Trusted Zone: *.slotch.com
O15 - Trusted Zone: *.windupdates.com
O15 - Trusted Zone: *.xxxtoolbar.com
O16 - DPF: Copernic Meta -
file://C:\DOCUME~1\rully\LOCALS~1\Temp\CopernicMeta0000.cab
O16 - DPF: {15AD4789-CDB4-47E1-A9DA-992EE8E6BAD6} -
http://public.windupdates.com/get_f...f92e68cfba8c:eb8a1fb09d00c5943edceabcca450006
O16 - DPF: {1D0D9077-3798-49BB-9058-393499174D5D} -
file://c:\counter.cab
keep
O16 - DPF: {2359626E-7524-4F87-B04E-22CD38A0C88C} (ICSScannerLight
Class) - http://download.zonelabs.com/bin/free/cm/ICSCM.cab

get rid of this
O16 - DPF: {386A771C-E96A-421F-8BA7-32F1B706892F} -
http://www.xxxtoolbar.com/ist/softwares/v4.0/0006_regular.cab

keep this
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class)
- http://v5.windowsupdate.microsoft.c...ls/en/x86/client/wuweb_site.cab?1083673922029

delete these
O16 - DPF: {6BEA1C48-1850-486C-8F58-C7354BA3165E} (Install Class) -
http://updates.lifescapeinc.com/installers/pinstall/pinstall.cab
O16 - DPF: {706F3805-27D7-478D-80E5-E25D2BB030B3}
(VacPro.internazionale_ver3) -
http://www.advnt01.com/dialer/internazionale_ver3.CAB
O16 - DPF: {9EB320CE-BE1D-4304-A081-4B4665414BEF}
(MediaTicketsInstaller Control) -
http://www.mt-download.com/MediaTicketsInstaller.cab
O16 - DPF: {B6B14E82-E23B-48DE-BFFF-876EC90D9B96} -
file://C:\DOCUME~1\rully\LOCALS~1\Temp\CopernicMetaInstall0000.cab
O18 - Protocol: copernicmeta - {9B46B30C-CB70-4551-9806-3238CC816A55}
- C:\WINDOWS\DOWNLO~1\CONFLICT.1\COPERN~1.DLL


--
To help you stay safe see: http://www.geocities.com/maxpro4u/madmax.html
Virus cleaning +fixes see: http://www.geocities.com/maxpro4u/TechPros
Change nomail.afraid.org to neo.rr.com so you can reply by e-mail
(nomail.afraid.org has been set up specifically for
use in Usenet. Feel free to use it yourself.)
 
Back
Top