Tom's Guide | Tom's Hardware | Tom's Games
![]() |
![]() |
![]() |
Hi there,
I ran the Kasper online scan for my computer and I found a lot of viruses. Please help me to remove them.Here is the log I got after scanning:
---------------------
KASPERSKY ON-LINE SCANNER REPORT
Monday, April 17, 2006 3:15:04 PM
Operating System: Microsoft Windows XP Professional, Service Pack 1 (Build 2600)
Kaspersky On-line Scanner version: 5.0.78.0
Kaspersky Anti-Virus database last update: 17/04/2006
Kaspersky Anti-Virus database records: 188573
---------------------Scan Settings:
Scan using the following antivirus database: extended
Scan Archives: true
Scan Mail Bases: trueScan Target - My Computer:
A:\
C:\
D:\
F:\Scan Statistics:
Total number of scanned objects: 83720
Number of viruses found: 28
Number of infected objects: 91
Number of suspicious objects: 0
Duration of the scan process: 02:50:11Infected Object Name / Virus Name / Last Action
C:\Program Files\Media Access\MediaAccC.dll Infected: not-a-virus:AdWare.Win32.WinAD.af skipped
C:\Program Files\Media Access\MediaAccess.exe Infected: not-a-virus:AdWare.Win32.WinAD.af skipped
C:\Program Files\Media Access\MediaAccK.exe Infected: not-a-virus:AdWare.Win32.WinAD.af skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\3D73FD9E-EF3E-449E-BD1B-7EDA15\9AB3C8A4-CBA4-4DA3-AD13-BAF26F Infected: not-a-virus:AdWare.Win32.BrowserAid skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\3D73FD9E-EF3E-449E-BD1B-7EDA15\2B1E5375-4272-4CCA-8AD0-A46536 Infected: not-a-virus:AdWare.Win32.Bymoh.b skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\3D73FD9E-EF3E-449E-BD1B-7EDA15\CB21B32C-1C2D-48EE-A119-B60773 Infected: not-a-virus:AdWare.Win32.BadBar.a skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\3D73FD9E-EF3E-449E-BD1B-7EDA15\C2834A14-1A62-48CC-9520-9925FF Infected: not-a-virus:AdWare.Win32.BrowserAid skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\28E75DC2-7CD9-431E-BBA8-5EA5E6\A6417D46-9DA4-4BD3-8857-8D9379 Infected: not-a-virus:AdWare.Win32.180Solutions skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\28E75DC2-7CD9-431E-BBA8-5EA5E6\493C91EA-C8E9-4943-AAA3-78115F Infected: not-a-virus:AdWare.Win32.180Solutions skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\28E75DC2-7CD9-431E-BBA8-5EA5E6\731E13F9-A1BD-4DAB-BC7B-402464 Infected: not-a-virus:AdWare.Win32.180Solutions skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\28E75DC2-7CD9-431E-BBA8-5EA5E6\4B9E8C0D-ED33-4839-B2A4-E581AD Infected: not-a-virus:AdWare.Win32.180Solutions skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\EB2A7526-03BD-49FB-93E2-674C04\805E09EA-3E1A-4F89-96AD-7D1640 Infected: not-a-virus:AdWare.Win32.VirtualBouncer.g skipped
C:\WINXP\system32\mset_bbi8010.exe/data0002 Infected: not-a-virus:AdWare.Win32.BargainBuddy.a skipped
C:\WINXP\system32\mset_bbi8010.exe/data0003 Infected: not-a-virus:AdWare.Win32.BargainBuddy.a skipped
C:\WINXP\system32\mset_bbi8010.exe NSIS: infected - 2 skipped
C:\WINXP\system32\ctbv2.dll Infected: not-a-virus:AdWare.Win32.Sahat.g skipped
C:\WINXP\system32\downloader_mind_silent.exe Infected: not-a-virus:AdWare.Win32.BrowsePal.b skipped
C:\WINXP\system32\SHAgent.dll Infected: not-a-virus:AdWare.Win32.Sahat.g skipped
C:\WINXP\system32\httppost.exe Infected: not-a-virus:AdWare.Win32.SpecialOffers.d skipped
C:\WINXP\system32\SHAgent1007.dll Infected: not-a-virus:AdWare.Win32.Sahat.b skipped
C:\WINXP\system32\msdirectx.sys Infected: Rootkit.Win32.Agent.l skipped
C:\WINXP\system32\sahagent1007.exe/data0002 Infected: not-a-virus:AdWare.Win32.Sahat.b skipped
C:\WINXP\system32\sahagent1007.exe NSIS: infected - 1 skipped
C:\WINXP\system32\SbCIe026.dll Infected: not-a-virus:AdWare.Win32.SideStep.c skipped
C:\WINXP\system32\SideStep026.exe Infected: not-a-virus:AdWare.Win32.SideStep.c skipped
C:\WINXP\system32\BO2202031216.dll Infected: not-a-virus:AdWare.Win32.VirtualBouncer.d skipped
C:\WINXP\system32\BO2801040113.exe/WISE0001.BIN Infected: not-a-virus:AdWare.Win32.VirtualBouncer.j skipped
C:\WINXP\system32\BO2801040113.exe WiseSFX: infected - 1 skipped
C:\WINXP\system32\BO2801040113.exe WiseSFX Dropper: infected - 1 skipped
C:\WINXP\system32\NLNupgradeV4_5P13.exe Infected: not-a-virus:AdWare.Win32.IGetNet.a skipped
C:\WINXP\system32\bdeinsta25.dll Infected: not-a-virus:AdWare.Win32.Altnet.a skipped
C:\WINXP\system32\bdeinsta3.dll Infected: not-a-virus:AdWare.Win32.Altnet.a skipped
C:\WINXP\system32\bdeinstallman3.exe Infected: not-a-virus:AdWare.Win32.Altnet.i skipped
C:\WINXP\system32\bdeinstallprogress3.dll Infected: not-a-virus:AdWare.Win32.BrilliantDigital.e skipped
C:\WINXP\system32\msconfig32.exe Infected: Backdoor.Win32.SdBot.yx skipped
C:\WINXP\system\WinStart.exe Infected: not-a-virus:AdWare.Win32.IGetNet.a skipped
C:\WINXP\EliteSideBar\EliteSideBar 08.dll Infected: not-a-virus:AdWare.Win32.EliteBar.z skipped
C:\Documents and Settings\Arr7al\msdirectx.sys Infected: Rootkit.Win32.Agent.l skipped
C:\Documents and Settings\Administrator\msdirectx.sys Infected: Rootkit.Win32.Agent.l skipped
C:\Documents and Settings\Maxim\msdirectx.sys Infected: Rootkit.Win32.Agent.l skipped
C:\System Volume Information\_restore{47F9967C-F78E-4D48-90D5-EBC0E289C0F2}\RP404\A0074711.sys Infected: Rootkit.Win32.Agent.l skipped
C:\System Volume Information\_restore{47F9967C-F78E-4D48-90D5-EBC0E289C0F2}\RP405\A0076711.sys Infected: Rootkit.Win32.Agent.l skipped
C:\System Volume Information\_restore{47F9967C-F78E-4D48-90D5-EBC0E289C0F2}\RP408\A0076949.sys Infected: Rootkit.Win32.Agent.l skipped
C:\System Volume Information\_restore{47F9967C-F78E-4D48-90D5-EBC0E289C0F2}\RP413\A0077730.sys Infected: Rootkit.Win32.Agent.l skipped
C:\System Volume Information\_restore{47F9967C-F78E-4D48-90D5-EBC0E289C0F2}\RP413\A0077739.sys Infected: Rootkit.Win32.Agent.l skipped
C:\System Volume Information\_restore{47F9967C-F78E-4D48-90D5-EBC0E289C0F2}\RP413\A0078739.sys Infected: Rootkit.Win32.Agent.l skipped
C:\System Volume Information\_restore{47F9967C-F78E-4D48-90D5-EBC0E289C0F2}\RP414\A0078755.sys Infected: Rootkit.Win32.Agent.l skipped
C:\System Volume Information\_restore{47F9967C-F78E-4D48-90D5-EBC0E289C0F2}\RP414\A0079764.sys Infected: Rootkit.Win32.Agent.l skipped
C:\System Volume Information\_restore{47F9967C-F78E-4D48-90D5-EBC0E289C0F2}\RP415\A0079770.sys Infected: Rootkit.Win32.Agent.l skipped
C:\System Volume Information\_restore{47F9967C-F78E-4D48-90D5-EBC0E289C0F2}\RP415\A0080770.sys Infected: Rootkit.Win32.Agent.l skipped
C:\System Volume Information\_restore{47F9967C-F78E-4D48-90D5-EBC0E289C0F2}\RP415\A0080777.sys Infected: Rootkit.Win32.Agent.l skipped
C:\System Volume Information\_restore{47F9967C-F78E-4D48-90D5-EBC0E289C0F2}\RP415\A0080784.sys Infected: Rootkit.Win32.Agent.l skipped
C:\System Volume Information\_restore{47F9967C-F78E-4D48-90D5-EBC0E289C0F2}\RP415\A0080791.sys Infected: Rootkit.Win32.Agent.l skipped
C:\System Volume Information\_restore{47F9967C-F78E-4D48-90D5-EBC0E289C0F2}\RP416\A0080799.sys Infected: Rootkit.Win32.Agent.l skipped
C:\System Volume Information\_restore{47F9967C-F78E-4D48-90D5-EBC0E289C0F2}\RP416\A0080807.sys Infected: Rootkit.Win32.Agent.l skipped
C:\System Volume Information\_restore{47F9967C-F78E-4D48-90D5-EBC0E289C0F2}\RP416\A0080814.sys Infected: Rootkit.Win32.Agent.l skipped
C:\System Volume Information\_restore{47F9967C-F78E-4D48-90D5-EBC0E289C0F2}\RP416\A0080816.exe Infected: not-a-virus:AdWare.Win32.WinAD.af skipped
C:\System Volume Information\_restore{47F9967C-F78E-4D48-90D5-EBC0E289C0F2}\RP416\A0081813.sys Infected: Rootkit.Win32.Agent.l skipped
C:\System Volume Information\_restore{47F9967C-F78E-4D48-90D5-EBC0E289C0F2}\RP421\A0082813.sys Infected: Rootkit.Win32.Agent.l skipped
C:\System Volume Information\_restore{47F9967C-F78E-4D48-90D5-EBC0E289C0F2}\RP422\A0082821.sys Infected: Rootkit.Win32.Agent.l skipped
C:\System Volume Information\_restore{47F9967C-F78E-4D48-90D5-EBC0E289C0F2}\RP423\A0083821.sys Infected: Rootkit.Win32.Agent.l skipped
C:\System Volume Information\_restore{47F9967C-F78E-4D48-90D5-EBC0E289C0F2}\RP423\A0083827.sys Infected: Rootkit.Win32.Agent.l skipped
C:\System Volume Information\_restore{47F9967C-F78E-4D48-90D5-EBC0E289C0F2}\RP426\A0084827.sys Infected: Rootkit.Win32.Agent.l skipped
C:\System Volume Information\_restore{47F9967C-F78E-4D48-90D5-EBC0E289C0F2}\RP426\A0084863.sys Infected: Rootkit.Win32.Agent.l skipped
C:\System Volume Information\_restore{47F9967C-F78E-4D48-90D5-EBC0E289C0F2}\RP426\A0084870.sys Infected: Rootkit.Win32.Agent.l skipped
C:\System Volume Information\_restore{47F9967C-F78E-4D48-90D5-EBC0E289C0F2}\RP428\A0085102.sys Infected: Rootkit.Win32.Agent.l skipped
C:\System Volume Information\_restore{47F9967C-F78E-4D48-90D5-EBC0E289C0F2}\RP428\A0085108.sys Infected: Rootkit.Win32.Agent.l skipped
C:\System Volume Information\_restore{47F9967C-F78E-4D48-90D5-EBC0E289C0F2}\RP432\A0086108.sys Infected: Rootkit.Win32.Agent.l skipped
C:\System Volume Information\_restore{47F9967C-F78E-4D48-90D5-EBC0E289C0F2}\RP433\A0086117.sys Infected: Rootkit.Win32.Agent.l skipped
C:\System Volume Information\_restore{47F9967C-F78E-4D48-90D5-EBC0E289C0F2}\RP433\A0086128.sys Infected: Rootkit.Win32.Agent.l skipped
C:\System Volume Information\_restore{47F9967C-F78E-4D48-90D5-EBC0E289C0F2}\RP433\A0086134.sys Infected: Rootkit.Win32.Agent.l skipped
C:\System Volume Information\_restore{47F9967C-F78E-4D48-90D5-EBC0E289C0F2}\RP436\A0086525.sys Infected: Rootkit.Win32.Agent.l skipped
C:\System Volume Information\_restore{47F9967C-F78E-4D48-90D5-EBC0E289C0F2}\RP446\A0086582.sys Infected: Rootkit.Win32.Agent.l skipped
C:\System Volume Information\_restore{47F9967C-F78E-4D48-90D5-EBC0E289C0F2}\RP449\A0087589.sys Infected: Rootkit.Win32.Agent.l skipped
C:\System Volume Information\_restore{47F9967C-F78E-4D48-90D5-EBC0E289C0F2}\RP449\A0088582.sys Infected: Rootkit.Win32.Agent.l skipped
C:\System Volume Information\_restore{47F9967C-F78E-4D48-90D5-EBC0E289C0F2}\RP450\A0088660.dll/{71407726-6565-4584-BC3F-7C6973427E12}.dll Infected: not-a-virus:AdWare.Win32.BrilliantDigital.3039 skipped
C:\System Volume Information\_restore{47F9967C-F78E-4D48-90D5-EBC0E289C0F2}\RP450\A0088660.dll ZIP: infected - 1 skipped
C:\System Volume Information\_restore{47F9967C-F78E-4D48-90D5-EBC0E289C0F2}\RP450\A0088662.exe/{DC43551E-95E0-4B2C-A14D-D5AA0D34CB62}.exe Infected: not-a-virus:AdWare.Win32.BrilliantDigital.1100 skipped
C:\System Volume Information\_restore{47F9967C-F78E-4D48-90D5-EBC0E289C0F2}\RP450\A0088662.exe ZIP: infected - 1 skipped
C:\System Volume Information\_restore{47F9967C-F78E-4D48-90D5-EBC0E289C0F2}\RP450\A0088665.dll/{182D1C33-A9F6-4423-91D9-47654DB4FB97}.dll Infected: not-a-virus:AdWare.Win32.Altnet.a skipped
C:\System Volume Information\_restore{47F9967C-F78E-4D48-90D5-EBC0E289C0F2}\RP450\A0088665.dll ZIP: infected - 1 skipped
C:\System Volume Information\_restore{47F9967C-F78E-4D48-90D5-EBC0E289C0F2}\RP450\A0088666.dll/{62FC1A1D-82F8-47A1-8F56-53321410CD7F}.dll Infected: not-a-virus:AdWare.Win32.Altnet.k skipped
C:\System Volume Information\_restore{47F9967C-F78E-4D48-90D5-EBC0E289C0F2}\RP450\A0088666.dll ZIP: infected - 1 skipped
C:\System Volume Information\_restore{47F9967C-F78E-4D48-90D5-EBC0E289C0F2}\RP450\A0088667.exe/{F14BDE5F-27E4-43B7-96A1-017B4ECB4177}.exe/PgSDK.DLL Infected: not-a-virus:AdWare.Win32.DelphinMediaViewer.d skipped
C:\System Volume Information\_restore{47F9967C-F78E-4D48-90D5-EBC0E289C0F2}\RP450\A0088667.exe/{F14BDE5F-27E4-43B7-96A1-017B4ECB4177}.exe Infected: not-a-virus:AdWare.Win32.DelphinMediaViewer.d skipped
C:\System Volume Information\_restore{47F9967C-F78E-4D48-90D5-EBC0E289C0F2}\RP450\A0088667.exe ZIP: infected - 2 skipped
C:\System Volume Information\_restore{47F9967C-F78E-4D48-90D5-EBC0E289C0F2}\RP457\A0089584.sys Infected: Rootkit.Win32.Agent.l skipped
C:\System Volume Information\_restore{47F9967C-F78E-4D48-90D5-EBC0E289C0F2}\RP457\A0090583.sys Infected: Rootkit.Win32.Agent.l skipped
D:\WINDOWS\SYSTEM\Celebs-Nude-uninstall.exe Infected: not-a-virus:Porn-Dialer.Win32.Generic skipped
D:\WINDOWS\winstartup.exe Infected: not-a-virus:AdWare.Win32.GoHip skipped
D:\Program Files\Internet Explorer\PLUGINS\nponflow.dll Infected: not-a-virus:AdWare.Win32.OnFlow skippedScan process completed.

Your anti-virus doesn't remove them? If it happens to be that you feel you shouldn't have to pay for A-V software, try this:
http://www.download.com/Ad-Aware-SE-Personal-Edition/3000-8022_4-10045910.html?part=dl-ad-aware&subj=dl&tag=top5It is absolutely free and should remove the majority of what you have found.

Many of the items listed are in your system restore files. No antivirus can repair/delete system restore files, as they are protected. You need to turn system restore off and restart the computer.

If you have no av program, download a trial version of Kaspersky, get all the updates for it after the installation. Then restart the computer and enter the safe mode, select administrator when prompted and run Kaspersky's scan while in the safe mode. After the scan and repair/delete options are done, restart the computer and run one more Kaspsersky scan while in the normal mode.

![]() |
![]() |
![]() |

This post is quite old and has been locked from receiving new replies. Please create a new posting instead.
| Ads by Google |