Tom's Guide | Tom's Hardware | Tom's Games
![]() |
![]() |
![]() |
Just today, I've been sufferring from pop ups maybe every 10-15 minutes from sites like 888.com, count.exitexchange.com, and winantivirus.com. They'll popup in near-maximized sized windows at random times whether I'm using IE or Explorer.
What I've tried so far... (all updated):
NAV 2006
Spybot
Adaware
Hijackthis
X-Cleaner
Spyware Doctor
CWshredder
McAfee Stinger
Trojan Hunter
Trendmicro Housecall
Kaspersky Online ScannerI don't know what else to do. This is one of the first instances of adware I've had on a 2 year old computer. I will post a HJT log or whatever anyone needs to help me with this.
No time for love, Dr. Jones!

Please post a Hijack This log so that the files associated with the virus/spyware/hijacker can be identified. You can download Hijack This at this link http://www.tomcoyote.org/hjt/ then place it into a folder of it's on, such as C:\HJT, so that back up copies can be made and not clutter your desktop or other folders and the backup copies of deleted items can be easily located if needed.
Once saved double click HijackThis.exe, and press "Scan". When the scan is finished, the "Scan" button will change into a "Save Log" button.
Press that, save the log, Ctrl-A to Select All, and copy its contents into the text editor at this forum.Do not fix anything yet unless you know what you are doing. This is a powerful tool that can crash the computer if used improperly.

I've run this through the analyzer several times and found no problems. Maybe you can. I did a Pandascan that cited Troj/ConHook.H (C\Windows\System32\geebb.dll) - but that file isn't there, and pandascan didn't give me an option to delete it. I checked, even with hidden file view on, it's not there...
anyway, heres the log.
Logfile of HijackThis v1.99.1
Scan saved at 10:52:53 PM, on 05/27/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\WINDOWS\System32\CTsvcCDA.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\WINDOWS\System32\DSentry.exe
C:\Program Files\Hewlett-Packard\Toolbox2.0\Apache Tomcat 4.0\webapps\Toolbox\StatusClient\StatusClient.exe
C:\Program Files\Microsoft IntelliType Pro\type32.exe
C:\Program Files\Microsoft IntelliPoint\point32.exe
C:\WINDOWS\system32\hkcmd.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\AOL Instant Messenger\aim.exe
C:\Documents and Settings\All Users\Start Menu\Programs\Startup\hpqtra08.exe
C:\Program Files\Hewlett-Packard\Toolbox2.0\Javasoft\JRE\1.3.1\bin\javaw.exe
C:\Program Files\Common Files\Symantec Shared\Security Console\NSCSRVCE.exe
C:\WINDOWS\System32\HPZipm12.exe
C:\Program Files\Stickit\STICKIT.exe
C:\Program Files\Windows Media Player\wmplayer.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Matt\Start Menu\Programs\AntiVirus and Optimizers\hijackthis\HijackThis.exeR0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.cnn.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.mast.mcvsd.org/
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll
O3 - Toolbar: Norton AntiVirus - {C4069E3A-68F1-403E-B40E-20066696354B} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [DVDSentry] C:\WINDOWS\System32\DSentry.exe
O4 - HKLM\..\Run: [StatusClient] C:\Program Files\Hewlett-Packard\Toolbox2.0\Apache Tomcat 4.0\webapps\Toolbox\StatusClient\StatusClient.exe /auto
O4 - HKLM\..\Run: [TomcatStartup] C:\Program Files\Hewlett-Packard\Toolbox2.0\hpbpsttp.exe
O4 - HKLM\..\Run: [type32] "C:\Program Files\Microsoft IntelliType Pro\type32.exe"
O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\point32.exe"
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [THGuard] C:\Program Files\TrojanHunter 4.5\THGuard.exe
O4 - HKLM\..\Run: [PCPitstop Optimize Registration Reminder] C:\Program Files\PCPitstop\Optimize\Reminder.exe
O4 - HKLM\..\Run: [TrojanScanner] C:\Program Files\Trojan Remover\Trjscan.exe
O4 - HKCU\..\Run: [WeatherWatcher] C:\Program Files\Weather Watcher\ww.exe
O4 - HKCU\..\Run: [AIM] C:\Program Files\AOL Instant Messenger\aim.exe -cnetwait.odl
O4 - Global Startup: hpqtra08.exe
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar3.dll/cmsearch.html
O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar3.dll/cmwordtrans.html
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar3.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar3.dll/cmcache.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar3.dll/cmsimilar.html
O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar3.dll/cmtrans.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - C:\PROGRA~1\SPYWAR~2\tools\iesdpb.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AOL Instant Messenger\aim.exe
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.exe (file missing)
O9 - Extra 'Tools' menuitem: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.exe (file missing)
O16 - DPF: {01A88BB1-1174-41EC-ACCB-963509EAE56B} (SysProWmi Class) - http://support.dell.com/systemprofiler/SysPro.CAB
O16 - DPF: {04E214E5-63AF-4236-83C6-A7ADCBF9BD02} (HouseCall Control) - http://housecall-beta.trendmicro.com/housecall/xscan60.cab
O16 - DPF: {0A5FD7C5-A45C-49FC-ADB5-9952547D5715} (Creative Software AutoUpdate) - http://www.creative.com/su/ocx/15009/CTSUEng.cab
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/english/kavwebscan_unicode.cab
O16 - DPF: {11260943-421B-11D0-8EAC-0000C07D88CF} (iPIX ActiveX Control) - http://www.ipix.com/viewers/ipixx.cab
O16 - DPF: {156BF4B7-AE3A-4365-BD88-95A75AF8F09D} (HPSDDX Class) - http://www.hp.com/cpso-support-new/SDD/hpsddObjSigned.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=36467&clcid=0x409
O16 - DPF: {31E68DE2-5548-4B23-88F0-C51E6A0F695E} (Microsoft PID Sniffer) - https://support.microsoft.com/OAS/ActiveX/odc.cab
O16 - DPF: {4C39376E-FA9D-4349-BACC-D305C1750EF3} (EPUImageControl Class) - http://tools.ebayimg.com/eps/wl/activex/EPUWALControl_v1-0-3-24.cab
O16 - DPF: {4E888414-DB8F-11D1-9CD9-00C04F98436A} (Microsoft.WinRep) - https://webresponse.one.microsoft.com/oas/ActiveX/winrep.cab
O16 - DPF: {5F8469B4-B055-49DD-83F7-62B522420ECC} (Facebook Photo Uploader Control) - http://upload.facebook.com/controls/FacebookPhotoUploader.cab
O16 - DPF: {6A344D34-5231-452A-8A57-D064AC9B7862} (Symantec Download Manager) - https://webdl.symantec.com/activex/symdlmgr.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1124504791799
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2004061001/housecall.trendmicro.com/housecall/xscan53.cab
O16 - DPF: {90C9629E-CD32-11D3-BBFB-00105A1F0D68} (InstallShield International Setup Player) - http://www.lowrance.com/Software/PCSoftware/Install/LCX-104C/isetup.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
O16 - DPF: {A7E092C3-692A-11D0-A7E5-08002B322F3B} (WebResponseAttachments Control) - https://webresponse.one.microsoft.com/oas/ActiveX/FileXfer.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} (DwnldGroupMgr Class) - http://download.mcafee.com/molbin/shared/mcgdmgr/en-us/1,0,0,20/mcgdmgr.cab
O16 - DPF: {C5E28B9D-0A68-4B50-94E9-E8F6B4697514} (NsvPlayX Control) - http://www.cartoon-fridge.com/nsvplayx_vp3_mp3.cab
O16 - DPF: {E856B973-45FD-4559-8F82-EAB539144667} (Dell PC Checkup Installer Control) - http://pccheckup.dellfix.com/rel/35/install/gtdownde.cab
O16 - DPF: {F04A8AE2-A59D-11D2-8792-00C04F8EF29D} (Hotmail Attachments Control) - http://by9fd.bay9.hotmail.msn.com/activex/HMAtchmt.ocx
O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://www.creative.com/su/ocx/15010/CTPID.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~2\msgrapp.dll" (file missing)
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL
O23 - Service: Autodesk Licensing Service - Autodesk, Inc. - C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTsvcCDA.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.exe
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - C:\Program Files\Intel\NCS\Sync\NetSvc.exe
O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
O23 - Service: Norton Protection Center Service (NSCService) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Console\NSCSRVCE.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe
O23 - Service: Rio MSC Manager (RioMSC) - Digital Networks North America, Inc. - C:\WINDOWS\system32\RioMSC.exe
O23 - Service: Symantec AVScan (SAVScan) - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: SPBBCSvc - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exeNo time for love, Dr. Jones!

Please download http://www.atribune.org/public-beta/VundoFix.exe to your desktop.
Double-click VundoFix.exe to run it. Click the Scan for Vundo button.
Once it's done scanning, click the Remove Vundo button.
You will receive a prompt asking if you want to remove the files, click yes.
Once you click yes, your desktop will go blank as it starts removing Vundo.
When completed, it will prompt that it will shutdown your computer, click ok.
Turn your computer back on. Please post the contents of C:\vundofix.txt.Go to start>run>type "services.msc" without the quotes>ok. Maximize the screen. Scroll down to messenger, to the left beneath the "startup type" heading should read "disabled". If it is not disabled double click "Messenger">click stop>cleck the blue drop down arrow to the far right of "startup type">apply>ok.
Run Hijack This,click the "open the misc. tool section" button> check both boxes to the right of "generate startuplist log" >then click generate startup list log. Please post that log.
Once you have done the above run this free online scan from Kaspersky http://kaspersky.com/kos/english/kavwebscan.html
Click Accept
When the updates are finished downloading, click Next, Scan Settings
Under Scan using the following antivirus database:, select extended
Make sure the Scan Archives and Scan Mail Bases options are selected as well. Click OK
Click My Computer and wait for the scan to finish
Click Save Report As. Under Save as type:, select Text file. Save this log to your Desktop and post a copy of it here.

I tried VundoFix, but everytime I run it, it freezes. I've even left it for a few hours. Still nothing, frozen. Messenger's disabled. I know my startups are all clean. It's just these damned popups. I'll keep trying Vundofix. Thanks. Any more ideas?
No time for love, Dr. Jones!

Try going offline, turn off Norton antivirus, trojan hunter and trojan scanner. Then run vundofix. Some of the antivirus and spyware tools will interfere with these removal tools.
Be sure to turn them back on before going online.

I turned off some background programs and ran it. It found a couple dozen files in the System32 folder and they were removed. No popups as of now. I think it worked, thanks jabuck!
No time for love, Dr. Jones!

This where your problem most likely came from and something called Falcon(whatever) OR some outfit like them.
http://securityindex.net/They place malware on your computer then use it to force you to buy their own product to remove it while also force-feeding you pop-up ads from affiliate programs they are signed up with.
It runs as a normal executable, not like a virus and even changes your home page settingg and IE preferrences.
Look here.........
http://www.bravesentry.com/?advid=177
pop-ups from this url, AdultFriend Finder, and webtopsecurity.com (which can't be blocked).Windows Malware removal program is totally useless as are most of the other so-called anti-virs programs. From what I can tell after a corporate records search, McAfee is owned by Norton/Samantec? ALL VIRUSWARE is a over-hyped multi-billion dollar rip-off of world-wide software consumers.
The best solution..........
Save your important files to a USB DRIVE!
THAT MEANS DOCUMENTS, IMAGES ECT. THIS IS YOUR IRREPLACABLE data. Any program can be easily be re-installed. When windows is attacked, pull the plug on the USB, re-install windows and your programs..then you're running clean again, at least for awhile.
Get on the backs of your lawmakers to put these people behind bars. In fact, a federal against the use of pop-up advertising on American-registered Domains should be our number 1 agenda.
If you aren't in America, you shouldn't be issued a .gov,.org.,.com,.net domain without your country desination.
Finally.....we absolutely have to develop an open source OS based on a linux-like platform that is free to the individual user and provided on every computer sold.
... built in as part of the bios perhaps.Anyone could then upgrade with any Commercial OS of their own choosing, but everyone would get a basic drawing program, text editor, spreadsheet,and calculator built in on an eprom that coun't easily be rendered useless.
James L. Rayfield
Operations Manager
USA Servers, Inc.

James, thanks for the great information
Hopefully my advice will help you...Please post back with your results....thanks

---------------------
KASPERSKY ON-LINE SCANNER REPORT
Wednesday, July 05, 2006 3:30:49 PM
Operating System: Microsoft Windows XP Home Edition, Service Pack 1 (Build 2600)
Kaspersky On-line Scanner version: 5.0.78.0
Kaspersky Anti-Virus database last update: 5/07/2006
Kaspersky Anti-Virus database records: 204975
---------------------Scan Settings:
Scan using the following antivirus database: extended
Scan Archives: true
Scan Mail Bases: trueScan Target - My Computer:
A:\
C:\
D:\Scan Statistics:
Total number of scanned objects: 123408
Number of viruses found: 24
Number of infected objects: 167
Number of suspicious objects: 2
Duration of the scan process: 01:25:55Infected Object Name / Virus Name / Last Action
C:\ann.exe Infected: Trojan-Downloader.Win32.Small.cpg skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\5col.org.womens-studies.announce.dbx/[From "whatever" <gjsmhbpv@girlgbnu.com>][Date Sun, 19 Oct 2003 14:07:29 GMT]/JLo.scr Infected: Backdoor.Win32.Litmus.203 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\5col.org.womens-studies.announce.dbx/[From "chida hiroyuki" <kgzcalv-loux@gmu.com>][Date Mon, 20 Oct 2003 22:05:55 +0900 (JST)]/UNNAMED/q786822.exe Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\5col.org.womens-studies.announce.dbx/[From "chida hiroyuki" <kgzcalv-loux@gmu.com>][Date Mon, 20 Oct 2003 22:05:55 +0900 (JST)]/UNNAMED Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\5col.org.womens-studies.announce.dbx Mail MS Outlook 5: infected - 3 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\allt.sex.fetish.dbx/[From svzfiv@optonline.net][Date Tue, 19 Aug 2003 20:19:23 GMT]/C:/staple/Copy Infected: P2P-Worm.Win32.SpyBot.gl skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\allt.sex.fetish.dbx/[From qvpsue@optonline.net][Date Tue, 19 Aug 2003 20:29:21 GMT]/C:/staple/Copy Infected: P2P-Worm.Win32.SpyBot.gl skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\allt.sex.fetish.dbx Mail MS Outlook 5: infected - 2 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.alt.sex.spanking.dbx/[From "whatever" <gjsmhbpv@girlgbnu.com>][Date Sun, 19 Oct 2003 14:16:01 GMT]/UNNAMED/Lil'kim.scr Infected: Backdoor.Win32.Litmus.203 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.alt.sex.spanking.dbx/[From "whatever" <gjsmhbpv@girlgbnu.com>][Date Sun, 19 Oct 2003 14:16:01 GMT]/UNNAMED Infected: Backdoor.Win32.Litmus.203 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.alt.sex.spanking.dbx Mail MS Outlook 5: infected - 2 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.asian-movies.dbx/[From "ŠÛˆä@OŽq" <wbkcusrsjjeqqx_imavfvfg@xpkl.net>][Date Sat, 22 Nov 2003 16:40:57 GMT]/Q489165.exe Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.asian-movies.dbx Mail MS Outlook 5: infected - 1 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.asian.american.chat.dbx/[From "ŠÛˆä@OŽq" <wbkcusrsjjeqqx_imavfvfg@xpkl.net>][Date Sat, 22 Nov 2003 16:40:57 GMT]/Q489165.exe Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.asian.american.chat.dbx/[From "joe" <joe@news-upload.com>][Date Mon, 24 Nov 2003 07:51:04 GMT]/UNNAMED/Parish_Hilton.scr Infected: Backdoor.Win32.Litmus.203 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.asian.american.chat.dbx/[From "joe" <joe@news-upload.com>][Date Mon, 24 Nov 2003 07:51:04 GMT]/UNNAMED Infected: Backdoor.Win32.Litmus.203 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.asian.american.chat.dbx Mail MS Outlook 5: infected - 3 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.bainaries.pictures.erotica.fetish.dbx/[From vijjsu@aol.com][Date 19 Jan 2002 02:09:19 GMT]/C:/alwaysfree/lolitas/napstersex.zip/napsterporn.exe Infected: not-a-virus:Porn-Dialer.Win32.Generic skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.bainaries.pictures.erotica.fetish.dbx/[From vijjsu@aol.com][Date 19 Jan 2002 02:09:19 GMT]/C:/alwaysfree/lolitas/napstersex.zip Infected: not-a-virus:Porn-Dialer.Win32.Generic skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.bainaries.pictures.erotica.fetish.dbx/[From djesso@aol.com][Date 19 Jan 2002 02:09:47 GMT]/C:/alwaysfree/lolitas/lolita_extreme.exe Infected: not-a-virus:Porn-Dialer.Win32.Generic skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.bainaries.pictures.erotica.fetish.dbx/[From qjnhxw@fdwe.orgy][Date Tue, 15 Jan 2002 01:06:23 GMT]/C:/ShowDowN/Logs/15yearoldsister.scr Infected: Backdoor.Win32.Litmus.203 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.bainaries.pictures.erotica.fetish.dbx/[From jkrqny@fdwe.orgy][Date Tue, 15 Jan 2002 02:02:50 GMT]/C:/ShowDowN/Logs/15yearoldsister.scr Infected: Backdoor.Win32.Litmus.203 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.bainaries.pictures.erotica.fetish.dbx/[From bkrlms@fdwe.orgy][Date Tue, 15 Jan 2002 03:44:44 GMT]/C:/ShowDowN/Logs/15yearoldsister.scr Infected: Backdoor.Win32.Litmus.203 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.bainaries.pictures.erotica.fetish.dbx/[From wjqzfq@earthlink.net][Date 15 Jan 2002 17:28:15 GMT]/underaged.exe Infected: not-a-virus:Porn-Dialer.Win32.Generic skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.bainaries.pictures.erotica.fetish.dbx/[From bljvuw@earthlink.net][Date 16 Jan 2002 21:11:13 GMT]/young_lolita.exe Infected: not-a-virus:Porn-Dialer.Win32.Generic skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.bainaries.pictures.erotica.fetish.dbx/[From yzlvws@yahoo.com][Date 17 Jan 2002 19:15:39 GMT]/lolipops.exe Infected: not-a-virus:Porn-Dialer.Win32.Generic skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.bainaries.pictures.erotica.fetish.dbx Mail MS Outlook 5: infected - 9 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.erotica.multimedia.asian.dbx/[From qttfcn@rr.com][Date Mon, 24 Nov 2003 07:05:24 GMT]/C:/Documents Infected: Backdoor.Win32.Litmus.203 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.erotica.multimedia.asian.dbx/[From oncefb@rr.com][Date Mon, 24 Nov 2003 07:39:05 GMT]/C:/Documents Infected: Backdoor.Win32.Litmus.203 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.erotica.multimedia.asian.dbx/[From vgmxos@rr.com][Date Mon, 24 Nov 2003 09:10:24 GMT]/C:/Documents Infected: Backdoor.Win32.Litmus.203 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.erotica.multimedia.asian.dbx Mail MS Outlook 5: infected - 3 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.erotica.sex.in.the.morning.dbx/[From adihnuw@tacpa.or.us][Date Mon, 18 Mar 2002 11:05:30 GMT]/wet_bj.zip/wet_bj.exe/dialer.exe Infected: not-a-virus:Porn-Dialer.Win32.Generic skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.erotica.sex.in.the.morning.dbx/[From adihnuw@tacpa.or.us][Date Mon, 18 Mar 2002 11:05:30 GMT]/wet_bj.zip/wet_bj.exe Infected: not-a-virus:Porn-Dialer.Win32.Generic skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.erotica.sex.in.the.morning.dbx/[From adihnuw@tacpa.or.us][Date Mon, 18 Mar 2002 11:05:30 GMT]/wet_bj.zip Infected: not-a-virus:Porn-Dialer.Win32.Generic skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.erotica.sex.in.the.morning.dbx/[From mifnugi@aronmo.to][Date Mon, 18 Mar 2002 11:04:58 GMT]/strap-on-sally.avi.exe/dialer.exe Infected: not-a-virus:Porn-Dialer.Win32.Generic skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.erotica.sex.in.the.morning.dbx/[From mifnugi@aronmo.to][Date Mon, 18 Mar 2002 11:04:58 GMT]/strap-on-sally.avi.exe Infected: not-a-virus:Porn-Dialer.Win32.Generic skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.erotica.sex.in.the.morning.dbx/[From siwsaj@wippehek.hi.us][Date Mon, 18 Mar 2002 11:37:34 GMT]/strap-on-sally.avi.exe/dialer.exe Infected: not-a-virus:Porn-Dialer.Win32.Generic skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.erotica.sex.in.the.morning.dbx/[From siwsaj@wippehek.hi.us][Date Mon, 18 Mar 2002 11:37:34 GMT]/strap-on-sally.avi.exe Infected: not-a-virus:Porn-Dialer.Win32.Generic skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.erotica.sex.in.the.morning.dbx/[From jagnoxy@ribpe.net.au][Date Mon, 18 Mar 2002 14:08:06 GMT]/nudist_jpg_viewer.zip/nudist_jpg_viewer.exe/dialer.exe Infected: not-a-virus:Porn-Dialer.Win32.Generic skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.erotica.sex.in.the.morning.dbx/[From jagnoxy@ribpe.net.au][Date Mon, 18 Mar 2002 14:08:06 GMT]/nudist_jpg_viewer.zip/nudist_jpg_viewer.exe Infected: not-a-virus:Porn-Dialer.Win32.Generic skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.erotica.sex.in.the.morning.dbx/[From jagnoxy@ribpe.net.au][Date Mon, 18 Mar 2002 14:08:06 GMT]/nudist_jpg_viewer.zip Infected: not-a-virus:Porn-Dialer.Win32.Generic skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.erotica.sex.in.the.morning.dbx/[From cuxcy@myjhif.org.co][Date Mon, 18 Mar 2002 12:36:37 GMT]/jennifer_lopez_downblouse.zip/jennifer_lopez_downblouse.exe/dialer.exe Infected: not-a-virus:Porn-Dialer.Win32.Generic skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.erotica.sex.in.the.morning.dbx/[From cuxcy@myjhif.org.co][Date Mon, 18 Mar 2002 12:36:37 GMT]/jennifer_lopez_downblouse.zip/jennifer_lopez_downblouse.exe Infected: not-a-virus:Porn-Dialer.Win32.Generic skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.erotica.sex.in.the.morning.dbx/[From cuxcy@myjhif.org.co][Date Mon, 18 Mar 2002 12:36:37 GMT]/jennifer_lopez_downblouse.zip Infected: not-a-virus:Porn-Dialer.Win32.Generic skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.erotica.sex.in.the.morning.dbx/[From bampa@idupnab.ok.us][Date Mon, 18 Mar 2002 14:46:10 GMT]/facialblast.mpeg.exe/dialer.exe Infected: not-a-virus:Porn-Dialer.Win32.Generic skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.erotica.sex.in.the.morning.dbx/[From bampa@idupnab.ok.us][Date Mon, 18 Mar 2002 14:46:10 GMT]/facialblast.mpeg.exe Infected: not-a-virus:Porn-Dialer.Win32.Generic skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.erotica.sex.in.the.morning.dbx/[From jagnoxy@ribpe.net.au][Date Mon, 18 Mar 2002 14:08:06 GMT]/nudist_jpg_viewer.zip/nudist_jpg_viewer.exe/dialer.exe Infected: not-a-virus:Porn-Dialer.Win32.Generic skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.erotica.sex.in.the.morning.dbx/[From jagnoxy@ribpe.net.au][Date Mon, 18 Mar 2002 14:08:06 GMT]/nudist_jpg_viewer.zip/nudist_jpg_viewer.exe Infected: not-a-virus:Porn-Dialer.Win32.Generic skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.erotica.sex.in.the.morning.dbx/[From jagnoxy@ribpe.net.au][Date Mon, 18 Mar 2002 14:08:06 GMT]/nudist_jpg_viewer.zip Infected: not-a-virus:Porn-Dialer.Win32.Generic skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.erotica.sex.in.the.morning.dbx/[From guzjefo@ysopky.edu.au][Date Mon, 18 Mar 2002 14:38:30 GMT]/wet_bj.zip/wet_bj.exe/dialer.exe Infected: not-a-virus:Porn-Dialer.Win32.Generic skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.erotica.sex.in.the.morning.dbx/[From guzjefo@ysopky.edu.au][Date Mon, 18 Mar 2002 14:38:30 GMT]/wet_bj.zip/wet_bj.exe Infected: not-a-virus:Porn-Dialer.Win32.Generic skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.erotica.sex.in.the.morning.dbx/[From guzjefo@ysopky.edu.au][Date Mon, 18 Mar 2002 14:38:30 GMT]/wet_bj.zip Infected: not-a-virus:Porn-Dialer.Win32.Generic skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.erotica.sex.in.the.morning.dbx Mail MS Outlook 5: infected - 21 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.lingeriealt.sex.dbx/[From "R KRUSE" <ikmtibe_twnoj@qdxa.com>][Date Sat, 22 Nov 2003 16:41:32 -0600]/Installation.exe Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.lingeriealt.sex.dbx Mail MS Outlook 5: infected - 1 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.multimedia.erotica.strap-on-sex.dbx/[From pnpibi@shaw.ca][Date Fri, 06 Jun 2003 17:32:26 GMT]/C:/My Infected: Virus.Win32.Xorala skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.multimedia.erotica.strap-on-sex.dbx/[From vmtvys@insightbb.com][Date Fri, 06 Jun 2003 18:15:07 GMT]/C:/My Infected: Virus.Win32.Xorala skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.multimedia.erotica.strap-on-sex.dbx/[From hbswbf@optonline.net][Date Fri, 06 Jun 2003 20:42:58 GMT]/C:/My Infected: Virus.Win32.Xorala skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.multimedia.erotica.strap-on-sex.dbx/[From gwnqyb@blueyonder.co.uk][Date Fri, 06 Jun 2003 12:36:02 GMT]/C:/My Infected: Virus.Win32.Xorala skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.multimedia.erotica.strap-on-sex.dbx/[From wgvmtm@insightbb.com][Date Fri, 06 Jun 2003 21:51:22 GMT]/C:/My Infected: Virus.Win32.Xorala skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.multimedia.erotica.strap-on-sex.dbx/[From kcorwk@optonline.net][Date Fri, 06 Jun 2003 23:34:01 GMT]/C:/My Infected: Backdoor.Win32.Litmus.203 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.multimedia.erotica.strap-on-sex.dbx/[From ojsbdj@ginaz.org][Date Sat, 07 Jun 2003 06:56:23 GMT]/C:/Documents Infected: Backdoor.Win32.Litmus.203 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.multimedia.erotica.strap-on-sex.dbx/[From htqsfs@ginaz.org][Date Sat, 07 Jun 2003 07:39:05 GMT]/C:/Documents Infected: Backdoor.Win32.Litmus.203 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.multimedia.erotica.strap-on-sex.dbx/[From jkwodw@ginaz.org][Date Sat, 07 Jun 2003 08:49:49 GMT]/C:/Documents Infected: Backdoor.Win32.Litmus.203 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.multimedia.erotica.strap-on-sex.dbx/[From fdblzy@insightbb.com][Date Sat, 07 Jun 2003 12:05:54 GMT]/C:/My Infected: Backdoor.Win32.Litmus.203 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.multimedia.erotica.strap-on-sex.dbx Mail MS Outlook 5: infected - 10 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.pictures.erotic.groupsex.dbx/[From fvmfxz@shaw.ca][Date Sun, 01 Jun 2003 00:31:29 GMT]/C:/unzipped/Litmus/warpigs1/Copy Infected: Backdoor.Win32.Litmus.203 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.pictures.erotic.groupsex.dbx/[From byhuqy@optonline.net][Date Sun, 01 Jun 2003 02:08:03 GMT]/C:/unzipped/Litmus/warpigs1/Copy Infected: Backdoor.Win32.Litmus.203 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.pictures.erotic.groupsex.dbx/[From cipvfp@cg.shawcable.net][Date Sun, 01 Jun 2003 17:02:11 GMT]/C:/Documents Infected: Backdoor.Win32.Litmus.203 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.pictures.erotic.groupsex.dbx/[From nvbgqy@dr.shawcable.net][Date Sun, 01 Jun 2003 18:01:53 GMT]/C:/Documents Infected: Backdoor.Win32.Litmus.203 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.pictures.erotic.groupsex.dbx/[From rnftks@optonline.net][Date Fri, 06 Jun 2003 11:21:01 GMT]/C:/My Infected: Virus.Win32.Xorala skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.pictures.erotic.groupsex.dbx/[From uxviho@shaw.ca][Date Fri, 06 Jun 2003 17:35:04 GMT]/C:/My Infected: Virus.Win32.Xorala skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.pictures.erotic.groupsex.dbx/[From zcdwck@insightbb.com][Date Fri, 06 Jun 2003 18:17:34 GMT]/C:/My Infected: Virus.Win32.Xorala skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.pictures.erotic.groupsex.dbx/[From welbye@optonline.net][Date Fri, 06 Jun 2003 20:47:20 GMT]/C:/My Infected: Virus.Win32.Xorala skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.pictures.erotic.groupsex.dbx/[From ogbptp@insightbb.com][Date Fri, 06 Jun 2003 21:54:31 GMT]/C:/My Infected: Virus.Win32.Xorala skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.pictures.erotic.groupsex.dbx/[From viywsz@optonline.net][Date Fri, 06 Jun 2003 23:37:57 GMT]/C:/My Infected: Backdoor.Win32.Litmus.203 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.pictures.erotic.groupsex.dbx/[From uwfkhk@attbi.com][Date Sat, 07 Jun 2003 00:40:53 GMT]/C:/My Infected: Backdoor.Win32.Litmus.203 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.pictures.erotic.groupsex.dbx/[From xnvkds@ginaz.org][Date Sat, 07 Jun 2003 06:15:58 GMT]/C:/Documents Infected: Backdoor.Win32.Litmus.203 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.pictures.erotic.groupsex.dbx/[From hpflyh@ginaz.org][Date Sat, 07 Jun 2003 06:58:50 GMT]/C:/Documents Infected: Backdoor.Win32.Litmus.203 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.pictures.erotic.groupsex.dbx Mail MS Outlook 5: infected - 13 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.pictures.erotica.groupsex.dbx/[From cswzen@ginaz.org][Date Sat, 07 Jun 2003 09:03:52 GMT]/C:/Documents Infected: Backdoor.Win32.Litmus.203 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.pictures.erotica.groupsex.dbx/[From wnxufe@ginaz.org][Date Sat, 07 Jun 2003 06:29:11 GMT]/C:/Documents Infected: Backdoor.Win32.Litmus.203 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.pictures.erotica.groupsex.dbx/[From wpcjzm@ginaz.org][Date Sat, 07 Jun 2003 07:11:37 GMT]/C:/Documents Infected: Backdoor.Win32.Litmus.203 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.pictures.erotica.groupsex.dbx/[From snwpoy@ginaz.org][Date Sat, 07 Jun 2003 07:54:19 GMT]/C:/Documents Infected: Backdoor.Win32.Litmus.203 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.pictures.erotica.groupsex.dbx/[From kvjvft@insightbb.com][Date Fri, 06 Jun 2003 22:09:15 GMT]/C:/My Infected: Virus.Win32.Xorala skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.pictures.erotica.groupsex.dbx/[From wqibqx@insightbb.com][Date Fri, 06 Jun 2003 18:29:10 GMT]/C:/My Infected: Virus.Win32.Xorala skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.pictures.erotica.groupsex.dbx/[From wqxkbe@optonline.net][Date Fri, 06 Jun 2003 21:11:03 GMT]/C:/My Infected: Virus.Win32.Xorala skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.pictures.erotica.groupsex.dbx Mail MS Outlook 5: infected - 7 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.pictures.erotica.stockingsex.dbx/[From pexfifab@qeshebud.ct.us][Date Mon, 8 Apr 2002 19:30:10 +0000 (UTC)]/mjgkqq.mpg.exe/dialer.exe Infected: not-a-virus:Porn-Dialer.Win32.Generic skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.pictures.erotica.stockingsex.dbx/[From pexfifab@qeshebud.ct.us][Date Mon, 8 Apr 2002 19:30:10 +0000 (UTC)]/mjgkqq.mpg.exe Infected: not-a-virus:Porn-Dialer.Win32.Generic skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.pictures.erotica.stockingsex.dbx/[From ykabpah@fighalo.com][Date Tue, 09 Apr 2002 08:45:00 GMT]/wtgdt.mpg.exe Infected: not-a-virus:Porn-Dialer.Win32.Generic skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.pictures.erotica.stockingsex.dbx/[From ukafmi@relvu.ca.us][Date Mon, 08 Apr 2002 14:32:59 GMT]/fay.mpg.exe Infected: not-a-virus:Porn-Dialer.Win32.Generic skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.pictures.erotica.stockingsex.dbx/[From zewlovi@fighilo.dc.us][Date Mon, 8 Apr 2002 14:49:39 +0000 (UTC)]/tuie.mpg.exe Infected: not-a-virus:Porn-Dialer.Win32.Generic skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.pictures.erotica.stockingsex.dbx Mail MS Outlook 5: infected - 5 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.pictures.sex.fetish.dbx/[From siwxy@elalja.co.nz][Date Sun, 18 Mar 2002 00:55:26 GMT]/teens_mpeg.zip/teens_mpeg.exe/dialer.exe Infected: not-a-virus:Porn-Dialer.Win32.Generic skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.pictures.sex.fetish.dbx/[From siwxy@elalja.co.nz][Date Sun, 18 Mar 2002 00:55:26 GMT]/teens_mpeg.zip/teens_mpeg.exe Infected: not-a-virus:Porn-Dialer.Win32.Generic skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.pictures.sex.fetish.dbx/[From siwxy@elalja.co.nz][Date Sun, 18 Mar 2002 00:55:26 GMT]/teens_mpeg.zip Infected: not-a-virus:Porn-Dialer.Win32.Generic skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.pictures.sex.fetish.dbx/[From vexnipug@ofyttu.ky.us][Date Sun, 17 Mar 2002 22:39:27 GMT]/fistupass.exe/dialer.exe Infected: not-a-virus:Porn-Dialer.Win32.Generic skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.pictures.sex.fetish.dbx/[From vexnipug@ofyttu.ky.us][Date Sun, 17 Mar 2002 22:39:27 GMT]/fistupass.exe Infected: not-a-virus:Porn-Dialer.Win32.Generic skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.pictures.sex.fetish.dbx/[From veclyq@pekfaw.at][Date Sun, 17 Mar 2002 22:20:32 GMT]/deepthroat-asian.exe/dialer.exe Infected: not-a-virus:Porn-Dialer.Win32.Generic skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.pictures.sex.fetish.dbx/[From veclyq@pekfaw.at][Date Sun, 17 Mar 2002 22:20:32 GMT]/deepthroat-asian.exe Infected: not-a-virus:Porn-Dialer.Win32.Generic skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.binaries.pictures.sex.fetish.dbx Mail MS Outlook 5: infected - 7 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.comics.dbx/[From "tsuboi" <ghhofdnkewtrli@qxp.net>][Date 26 Oct 2003 03:16:13 GMT]/q951715.exe Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.comics.dbx/[From "whatever" <gjsmhbpv@girlgbnu.com>][Date Sun, 19 Oct 2003 15:24:37 GMT]/UNNAMED/Lil'kim.scr Infected: Backdoor.Win32.Litmus.203 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.comics.dbx/[From "whatever" <gjsmhbpv@girlgbnu.com>][Date Sun, 19 Oct 2003 15:24:37 GMT]/UNNAMED Infected: Backdoor.Win32.Litmus.203 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.comics.dbx Mail MS Outlook 5: infected - 3 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.homosexual.lesbian.dbx/[From rsydjd@tampabay.rr.com][Date Mon, 14 Jul 2003 00:59:54 GMT]/C:/Documents Infected: P2P-Worm.Win32.SpyBot.gl skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.homosexual.lesbian.dbx Mail MS Outlook 5: infected - 1 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.magick.sex.dbx/[From George@youngVirgins.com][Date Fri, 18 Jan 2002 18:12:00 GMT]/C:/Documents Infected: Backdoor.Win32.SubSeven.22 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.magick.sex.dbx Mail MS Outlook 5: infected - 1 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.music.sex-pistols.dbx/[From "Karina" <odarem@codetel.net.do>][Date Tue, 26 Mar 2002 15:11:16 GMT]/Adult Infected: Backdoor.Win32.SubSeven.21.Muie.a skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.music.sex-pistols.dbx Mail MS Outlook 5: infected - 1 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.politics.sex.dbx/[From manderson@qsc.de][Date 9 Aug 2003 09:08:40 +0200]/Copy Infected: P2P-Worm.Win32.SpyBot.gl skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.politics.sex.dbx/[From bqtqkj@ucsd.edu][Date Sat, 16 Aug 2003 06:57:10 +0000 (UTC)]/C:/pamela/Copy Infected: P2P-Worm.Win32.SpyBot.gl skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.politics.sex.dbx/[From jhardy@newtel.com][Date Wed, 06 Aug 2003 16:43:48 GMT]/C:/lopez/Copy Infected: P2P-Worm.Win32.SpyBot.gl skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.politics.sex.dbx/[From gcameron@cg.shawcable.net][Date Fri, 08 Aug 2003 02:23:59 GMT]/C:/Bondage/Copy Infected: P2P-Worm.Win32.SpyBot.gl skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.politics.sex.dbx Mail MS Outlook 5: infected - 4 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.sex.alt.sex.erotica.dbx/[From lfbxew@attbi.com][Date Mon, 26 May 2003 12:57:26 GMT]/C:/unzipped/Litmus/#f0rus/Copy Infected: Backdoor.Win32.Litmus.203 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.sex.alt.sex.erotica.dbx/[From qxuerg@insightBB.com][Date Mon, 26 May 2003 14:48:39 GMT]/C:/unzipped/Litmus/#f0rus/Copy Infected: Backdoor.Win32.Litmus.203 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.sex.alt.sex.erotica.dbx Mail MS Outlook 5: infected - 2 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.sex.clinton.chelsa.dbx/[From bwbwxx@prodigy.com][Date Wed, 23 Jan 2002 05:08:04 GMT]/lolipopbrunette.exe Infected: not-a-virus:Porn-Dialer.Win32.Generic skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.sex.clinton.chelsa.dbx Mail MS Outlook 5: infected - 1 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.sex.clinton.dbx/[From "Marie Purol" <phtvxkwfg@rhtq.net>][Date Wed, 15 Oct 2003 20:32:52 -0500]/update98.exe Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.sex.clinton.dbx/[From "whatever" <gjsmhbpv@girlgbnu.com>][Date Sun, 19 Oct 2003 19:54:53 GMT]/UNNAMED/Lil'kim.scr Infected: Backdoor.Win32.Litmus.203 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.sex.clinton.dbx/[From "whatever" <gjsmhbpv@girlgbnu.com>][Date Sun, 19 Oct 2003 19:54:53 GMT]/UNNAMED Infected: Backdoor.Win32.Litmus.203 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.sex.clinton.dbx/[From "Marie Purol" <phtvxkwfg@rhtq.net>][Date Wed, 15 Oct 2003 20:32:52 -0500]/UNNAMED/update98.exe Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.sex.clinton.dbx/[From "Marie Purol" <phtvxkwfg@rhtq.net>][Date Wed, 15 Oct 2003 20:32:52 -0500]/UNNAMED Infected: Email-Worm.Win32.Swen skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.sex.clinton.dbx Mail MS Outlook 5: infected - 5 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.sex.clinton.hillary.dbx/[From "whatever" <gjsmhbpv@girlgbnu.com>][Date Sun, 19 Oct 2003 19:54:53 GMT]/Lil'kim.scr Infected: Backdoor.Win32.Litmus.203 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.sex.clinton.hillary.dbx Mail MS Outlook 5: infected - 1 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.sex.incest.dbx/[From ioroyt@ucsd.edu][Date Sat, 16 Aug 2003 07:06:41 +0000 (UTC)]/C:/pamela/Copy Infected: P2P-Worm.Win32.SpyBot.gl skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.sex.incest.dbx/[From teyyrs@ucsd.edu][Date Sat, 16 Aug 2003 08:01:11 +0000 (UTC)]/C:/sheepshagging/Copy Infected: P2P-Worm.Win32.SpyBot.gl skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.sex.incest.dbx/[From moldzq@ucsd.edu][Date Sat, 16 Aug 2003 08:39:00 +0000 (UTC)]/C:/nude/Copy Infected: P2P-Worm.Win32.SpyBot.gl skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\alt.sex.incest.dbx Mail MS Outlook 5: infected - 3 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\Deleted Items.dbx/[From Suntrust Billing Department <billing@suntrust.com>][Date Tue, 30 Nov 2004 21:48:43 -0600]/UNNAMED/html Infected: Trojan-Spy.HTML.Sunfraud.ax skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\Deleted Items.dbx/[From Suntrust Billing Department <billing@suntrust.com>][Date Tue, 30 Nov 2004 21:48:43 -0600]/UNNAMED Infected: Trojan-Spy.HTML.Sunfraud.ax skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\Deleted Items.dbx/[From CITIZENS BANK <supprefnum654177@citizensbank.com>][Date Wed, 01 Dec 2004 07:47:06 -0100]/UNNAMED/html Infected: Trojan-Spy.HTML.Citifraud.ai skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\Deleted Items.dbx/[From CITIZENS BANK <supprefnum654177@citizensbank.com>][Date Wed, 01 Dec 2004 07:47:06 -0100]/UNNAMED Infected: Trojan-Spy.HTML.Citifraud.ai skipped
C:\Documents and Settings\george tiamzon\Local Settings\Application Data\Identities\{7C2CADAC-7DAD-4C9C-B2B3-6AEF13480E5B}\Microsoft\Outlook Express\Deleted Items.dbx Mail MS Outlook 5: infected - 4 skipped
C:\Documents and Settings\george tiamzon\Local Settings\Temporary Internet Files\Content.IE5\4LEJWDQJ\loader2[1].ocx Infected: Trojan-Downloader.Win32.Agent.ex skipped
C:\Documents and Settings\sharina mae tiamzon\Application Data\tizupd.bin/data0003 Infected: not-a-virus:AdWare.Win32.PurityScan.w skipped
C:\Documents and Settings\sharina mae tiamzon\Application Data\tizupd.bin NSIS: infected - 1 skipped
C:\Documents and Settings\sharina mae tiamzon\Local Settings\Application Data\Identities\{7790F945-6108-4F6E-AFB2-9959719BACA6}\Microsoft\Outlook Express\Hotmail - Deleted Items.dbx/[From gltusmc <gltusmc@aol.com>][Date Fri, 25 Oct 2002 20:09:48 -0500]/UNNAMED/html Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\sharina mae tiamzon\Local Settings\Application Data\Identities\{7790F945-6108-4F6E-AFB2-9959719BACA6}\Microsoft\Outlook Express\Hotmail - Deleted Items.dbx/[From gltusmc <gltusmc@aol.com>][Date Fri, 25 Oct 2002 20:09:48 -0500]/UNNAMED/src.scr Infected: Email-Worm.Win32.Klez.h skipped
C:\Documents and Settings\sharina mae tiamzon\Local Settings\Application Data\Identities\{7790F945-6108-4F6E-AFB2-9959719BACA6}\Microsoft\Outlook Express\Hotmail - Deleted Items.dbx/[From gltusmc <gltusmc@aol.com>][Date Fri, 25 Oct 2002 20:09:48 -0500]/UNNAMED Infected: Email-Worm.Win32.Klez.h skipped
C:\Documents and Settings\sharina mae tiamzon\Local Settings\Application Data\Identities\{7790F945-6108-4F6E-AFB2-9959719BACA6}\Microsoft\Outlook Express\Hotmail - Deleted Items.dbx/[From gltusmc <gltusmc@aol.com>][Date Fri, 25 Oct 2002 20:09:48 -0500]/UNNAMED Suspicious: Exploit.HTML.Iframe.FileDownload skipped
C:\Documents and Settings\sharina mae tiamzon\Local Settings\Application Data\Identities\{7790F945-6108-4F6E-AFB2-9959719BACA6}\Microsoft\Outlook Express\Hotmail - Deleted Items.dbx Mail MS Outlook 5: infected - 2, suspicious - 2 skipped
C:\Program Files\rdso\eetu.exe Infected: Trojan-Downloader.Win32.PurityScan.ax skipped
C:\System Volume Information\_restore{8513C62E-889D-4878-A5C3-816F635D0F0E}\RP129\A0013214.exe Infected: not-a-virus:AdWare.Win32.180Solutions.ao skipped
C:\System Volume Information\_restore{8513C62E-889D-4878-A5C3-816F635D0F0E}\RP129\A0013226.exe/clientax.dll Infected: not-a-virus:AdWare.Win32.180Solutions.ao skipped
C:\System Volume Information\_restore{8513C62E-889D-4878-A5C3-816F635D0F0E}\RP129\A0013226.exe CAB: infected - 1 skipped
C:\System Volume Information\_restore{8513C62E-889D-4878-A5C3-816F635D0F0E}\RP130\A0013263.exe/clientax.dll Infected: not-a-virus:AdWare.Win32.180Solutions.ao skipped
C:\System Volume Information\_restore{8513C62E-889D-4878-A5C3-816F635D0F0E}\RP130\A0013263.exe CAB: infected - 1 skipped
C:\System Volume Information\_restore{8513C62E-889D-4878-A5C3-816F635D0F0E}\RP130\A0013268.exe Infected: not-a-virus:AdWare.Win32.180Solutions.ao skipped
C:\System Volume Information\_restore{8513C62E-889D-4878-A5C3-816F635D0F0E}\RP68\A0008547.exe Infected: Trojan-Downloader.Win32.Small.cpg skipped
C:\System Volume Information\_restore{8513C62E-889D-4878-A5C3-816F635D0F0E}\RP69\A0008842.dll Infected: not-a-virus:AdWare.Win32.SaveNow.cb skipped
C:\System Volume Information\_restore{8513C62E-889D-4878-A5C3-816F635D0F0E}\RP69\A0008843.exe Infected: not-a-virus:AdWare.Win32.SaveNow.by skipped
C:\WINDOWS\SYSTEM\Update_Hosts.DLL Infected: not-a-virus:AdWare.Win32.IGetNet.g skipped
C:\WINDOWS\SYSTEM32\dbm11N.dll Infected: Trojan-Downloader.Win32.ConHook.aa skipped
C:\WINDOWS\SYSTEM32\mljjg.exe Infected: Trojan-Dropper.Win32.Agent.amr skipped
C:\WINDOWS\SYSTEM32\vturomn.dll Infected: Trojan-Downloader.Win32.Agent.anm skipped
C:\WINDOWS\Temp\~560037.tmp Infected: Trojan-Downloader.Win32.Wintool.a skipped
C:\WINDOWS\Temp\~763481.tmp Infected: not-a-virus:AdWare.Win32.Wintol.p skipped
C:\WINDOWS\Temp\~813790.tmp Infected: Trojan-Downloader.Win32.Wintool.a skipped
C:\WINDOWS\Temp\~819598.tmp Infected: Trojan-Downloader.Win32.Wintool.a skipped
C:\WINDOWS\Temp\~900461.tmp Infected: Trojan-Downloader.Win32.Wintool.a skipped
C:\WINDOWS\Temp\~919624.tmp Infected: not-a-virus:AdWare.Win32.Wintol.p skipped
C:\WINDOWS\Temp\~931374.tmp Infected: Trojan-Downloader.Win32.Wintool.a skipped
C:\WINDOWS\Temp\~954102.tmp Infected: not-a-virus:AdWare.Win32.Wintol.p skippedScan process completed.

![]() |
![]() |
![]() |

This post is quite old and has been locked from receiving new replies. Please create a new posting instead.
| Ads by Google |