WoW keyloggers

Windows xp / PENTIUM 4
June 23, 2009 at 10:42:59
Specs: Windows XP, 768mb
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 7:36:28 PM, on 6/23/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS.0\System32\smss.exe
C:\WINDOWS.0\system32\winlogon.exe
C:\WINDOWS.0\system32\services.exe
C:\WINDOWS.0\system32\savedump.exe
C:\WINDOWS.0\system32\lsass.exe
C:\WINDOWS.0\system32\Ati2evxx.exe
C:\WINDOWS.0\system32\svchost.exe
C:\WINDOWS.0\System32\svchost.exe
C:\WINDOWS.0\system32\Ati2evxx.exe
C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
C:\WINDOWS.0\system32\spoolsv.exe
C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Documents and Settings\All Users\Application Data\KeenfinderSrch\keenfinder137.exe
C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe
C:\WINDOWS.0\system32\PnkBstrA.exe
C:\WINDOWS.0\system32\PnkBstrB.exe
C:\WINDOWS.0\system32\svchost.exe
C:\WINDOWS.0\Explorer.EXE
C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe
C:\WINDOWS.0\system32\wscntfy.exe
C:\Program Files\D-Link\AirPlus G\AirGCFG.exe
C:\Program Files\KeenfinderSrch\keenfinder.exe
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
C:\WINDOWS.0\system32\plkhost.exe
C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe
C:\Program Files\Logitech\QuickCam\Quickcam.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\WINDOWS.0\system32\RunDll32.exe
C:\Program Files\DNA\btdna.exe
C:\Program Files\DAEMON Tools Lite\daemon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Curse\CurseClient.exe
C:\Program Files\Adparatus\Adparatus.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\Program Files\Common Files\Logishrd\LQCVFX\COCIManager.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\D-Link\AirPlus G\AirGCFG .exe
C:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2 .exe
C:\Program Files\Lavasoft\Ad-Aware\AAWTray .exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier .exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R3 - URLSearchHook: ToggleEN Toolbar - {038cb5c7-48ea-4af9-94e0-a1646542e62b} - C:\Program Files\ToggleEN\tbTog0.dll
O2 - BHO: ToggleEN Toolbar - {038cb5c7-48ea-4af9-94e0-a1646542e62b} - C:\Program Files\ToggleEN\tbTog0.dll
O2 - BHO: Adobe PDF Interpreter - {0CB66BA8-5E1F-4963-93D1-E1D6B78FE9B2} - C:\Program Files\Adobe\AcroRd32.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Adparatus - {8B2C7C9D-716D-4e9e-9358-B9C80A81B7ED} - C:\Program Files\Adparatus\Adparatus.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.15642\swg.dll
O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_219B3E1547538286.dll
O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll
O3 - Toolbar: ToggleEN Toolbar - {038cb5c7-48ea-4af9-94e0-a1646542e62b} - C:\Program Files\ToggleEN\tbTog0.dll
O3 - Toolbar: &Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll
O4 - HKLM\..\Run: [D-Link AirPlus G] C:\Program Files\D-Link\AirPlus G\AirGCFG.exe
O4 - HKLM\..\Run: [ANIWZCS2Service] C:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe
O4 - HKLM\..\Run: [RelevantKnowledge] C:\program files\relevantknowledge\rlvknlg.exe -boot
O4 - HKLM\..\Run: [LogonStudio] "C:\Program Files\WinCustomize\LogonStudio\logonstudio.exe" /RANDOM
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Key Drv] plkhost.exe
O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe"
O4 - HKLM\..\Run: [LogitechQuickCamRibbon] "C:\Program Files\Logitech\QuickCam\Quickcam.exe" /hide
O4 - HKLM\..\Run: [BootSkin Startup Jobs] "C:\PROGRA~1\Stardock\WINCUS~1\BootSkin\BootSkin.exe" /StartupJobs
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [flvy] C:\WINDOWS.0\system32\flvy.exe \u
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [ATICustomerCare] "C:\Program Files\ATI\ATICustomerCare\ATICustomerCare.exe"
O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay
O4 - HKLM\..\Run: [CmUsbSound] RunDll32 cmcnfgu.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [Ad-Watch] C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe
O4 - HKLM\..\RunServices: [Key Drv] plkhost.exe
O4 - HKCU\..\Run: [BitTorrent DNA] "C:\Program Files\DNA\btdna.exe"
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe" -autorun
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [CurseClient] C:\Program Files\Curse\CurseClient.exe -silent
O4 - HKCU\..\Run: [DriverUpdaterPro] C:\Program Files\XPC Tools\Driver Updater Pro\DriverUpdaterPro.exe -t
O4 - HKCU\..\Run: [Adparatus] "C:\Program Files\Adparatus\Adparatus.exe"
O8 - Extra context menu item: Download with Xilisoft Download YouTube Video - C:\Program Files\Xilisoft\Download YouTube Video\upod_link.HTM
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {F7EDBBEA-1AD2-4EBF-AA07-D453CC29EE65} (Flash Casino Helper Control) - https://plugins.valueactive.eu/flashax/iefax.cab
O21 - SSODL: atehevVnjhNu - {FC1870C2-56B2-DA68-609A-0324C7A23B33} - C:\WINDOWS.0\system32\hsvs.dll (file missing)
O23 - Service: ANIWZCSd Service (ANIWZCSdService) - Alpha Networks Inc. - C:\Program Files\ANI\ANIWZCS2 Service\ANIWZCSdS.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS.0\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS.0\system32\ati2sgag.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: KeenfinderSrch Service - Unknown owner - C:\Documents and Settings\All Users\Application Data\KeenfinderSrch\keenfinder137.exe
O23 - Service: Lavasoft Ad-Aware Service - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
O23 - Service: LVCOMSer - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe
O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
O23 - Service: LVSrvLauncher - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\SrvLnch\SrvLnch.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS.0\system32\PnkBstrA.exe
O23 - Service: PnkBstrB - Unknown owner - C:\WINDOWS.0\system32\PnkBstrB.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE Technologies - C:\Program Files\WinPcap\rpcapd.exe
O24 - Desktop Component 0: (no name) - http://img156.imageshack.us/img156/...

--
End of file - 8759 bytes
------------------------------------------------------------------------------------------------------------------------------------

Malwarebytes' Anti-Malware 1.38
Database version: 2297
Windows 5.1.2600 Service Pack 2

6/23/2009 7:14:49 PM
mbam-log-2009-06-23 (19-14-49).txt

Scan type: Full Scan (C:\|)
Objects scanned: 186666
Time elapsed: 56 minute(s), 0 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 2
Registry Keys Infected: 4
Registry Values Infected: 2
Registry Data Items Infected: 2
Folders Infected: 1
Files Infected: 69

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
C:\WINDOWS.0\system32\e8main0.dll (Spyware.OnlineGames) -> Delete on reboot.
C:\WINDOWS.0\system32\baseruh32.dll (Trojan.Downloader) -> Delete on reboot.

Registry Keys Infected:
HKEY_CLASSES_ROOT\CLSID\{bb4c402f-882a-4526-8c08-51278ea437c1} (Spyware.OnlineGames) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\AppID\{b0e43034-50f5-1f84-8098-824b44f2dbc3} (Adware.AdMedia) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\toolbar.tb (Adware.AdMedia) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\toolbar.tb.1 (Adware.AdMedia) -> Quarantined and deleted successfully.

Registry Values Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks\{bb4c402f-882a-4526-8c08-51278ea437c1} (Spyware.OnlineGames) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\cbvcs (Spyware.OnlineGames) -> Quarantined and deleted successfully.

Registry Data Items Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL\CheckedValue (Hijack.System.Hidden) -> Bad: (0) Good: (1) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Userinit (Hijack.Userinit) -> Bad: (C:\WINDOWS.0\system32\userinit.exe,C:\Documents and Settings\Administrator\prf.exe \s) Good: (Userinit.exe) -> Quarantined and deleted successfully.

Folders Infected:
c:\documents and settings\All Users\Start Menu\Programs\RelevantKnowledge (Spyware.Marketscore) -> Quarantined and deleted successfully.

Files Infected:
C:\WINDOWS.0\system32\e8main0.dll (Spyware.OnlineGames) -> Delete on reboot.
c:\gyn.cmd (Spyware.OnlineGames) -> Quarantined and deleted successfully.
c:\hkn6k.bat (Spyware.OnlineGames) -> Quarantined and deleted successfully.
c:\luk1ylq.com (Trojan.OnlineGames) -> Quarantined and deleted successfully.
c:\dbrxubcw.com (Spyware.OnlineGames) -> Quarantined and deleted successfully.
c:\system volume information\_restore{ca7ba9c8-7387-48ab-8f27-3ee540ae5e60}\RP10\A0028962.dll (Spyware.OnlineGames) -> Quarantined and deleted successfully.
c:\system volume information\_restore{ca7ba9c8-7387-48ab-8f27-3ee540ae5e60}\RP10\A0028966.dll (Spyware.OnlineGames) -> Quarantined and deleted successfully.
c:\system volume information\_restore{ca7ba9c8-7387-48ab-8f27-3ee540ae5e60}\RP10\A0029969.dll (Spyware.OnlineGames) -> Quarantined and deleted successfully.
c:\system volume information\_restore{ca7ba9c8-7387-48ab-8f27-3ee540ae5e60}\RP15\A0035695.dll (Spyware.OnlineGames) -> Quarantined and deleted successfully.
c:\system volume information\_restore{ca7ba9c8-7387-48ab-8f27-3ee540ae5e60}\RP17\A0039841.bat (Spyware.OnlineGames) -> Quarantined and deleted successfully.
c:\system volume information\_restore{ca7ba9c8-7387-48ab-8f27-3ee540ae5e60}\RP17\A0039842.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
c:\system volume information\_restore{ca7ba9c8-7387-48ab-8f27-3ee540ae5e60}\RP17\A0039881.bat (Spyware.OnlineGames) -> Quarantined and deleted successfully.
c:\system volume information\_restore{ca7ba9c8-7387-48ab-8f27-3ee540ae5e60}\RP17\A0039883.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
c:\system volume information\_restore{ca7ba9c8-7387-48ab-8f27-3ee540ae5e60}\RP17\A0040884.bat (Spyware.OnlineGames) -> Quarantined and deleted successfully.
c:\system volume information\_restore{ca7ba9c8-7387-48ab-8f27-3ee540ae5e60}\RP17\A0040885.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
c:\system volume information\_restore{ca7ba9c8-7387-48ab-8f27-3ee540ae5e60}\RP17\A0041880.dll (Spyware.OnlineGames) -> Quarantined and deleted successfully.
c:\system volume information\_restore{ca7ba9c8-7387-48ab-8f27-3ee540ae5e60}\RP17\A0041881.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
c:\system volume information\_restore{ca7ba9c8-7387-48ab-8f27-3ee540ae5e60}\RP17\A0041886.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
c:\system volume information\_restore{ca7ba9c8-7387-48ab-8f27-3ee540ae5e60}\RP17\A0042886.dll (Spyware.OnlineGames) -> Quarantined and deleted successfully.
c:\system volume information\_restore{ca7ba9c8-7387-48ab-8f27-3ee540ae5e60}\RP18\A0049018.dll (Spyware.OnlineGames) -> Quarantined and deleted successfully.
c:\system volume information\_restore{ca7ba9c8-7387-48ab-8f27-3ee540ae5e60}\RP34\A0092995.dll (Spyware.OnlineGames) -> Quarantined and deleted successfully.
c:\system volume information\_restore{ca7ba9c8-7387-48ab-8f27-3ee540ae5e60}\RP36\A0101006.exe (Worm.Autorun) -> Quarantined and deleted successfully.
c:\system volume information\_restore{ca7ba9c8-7387-48ab-8f27-3ee540ae5e60}\RP36\A0101026.exe (Worm.Autorun) -> Quarantined and deleted successfully.
c:\system volume information\_restore{ca7ba9c8-7387-48ab-8f27-3ee540ae5e60}\RP36\A0101028.exe (Worm.Autorun) -> Quarantined and deleted successfully.
c:\system volume information\_restore{ca7ba9c8-7387-48ab-8f27-3ee540ae5e60}\RP36\A0103027.exe (Worm.Autorun) -> Quarantined and deleted successfully.
c:\system volume information\_restore{ca7ba9c8-7387-48ab-8f27-3ee540ae5e60}\RP42\A0112818.dll (Spyware.OnlineGames) -> Quarantined and deleted successfully.
c:\system volume information\_restore{ca7ba9c8-7387-48ab-8f27-3ee540ae5e60}\RP42\A0113812.dll (Spyware.OnlineGames) -> Quarantined and deleted successfully.
c:\system volume information\_restore{ca7ba9c8-7387-48ab-8f27-3ee540ae5e60}\RP43\A0114812.dll (Spyware.OnlineGames) -> Quarantined and deleted successfully.
c:\system volume information\_restore{ca7ba9c8-7387-48ab-8f27-3ee540ae5e60}\RP43\A0115812.dll (Spyware.OnlineGames) -> Quarantined and deleted successfully.
c:\system volume information\_restore{ca7ba9c8-7387-48ab-8f27-3ee540ae5e60}\RP44\A0116846.dll (Spyware.OnlineGames) -> Quarantined and deleted successfully.
c:\system volume information\_restore{ca7ba9c8-7387-48ab-8f27-3ee540ae5e60}\RP44\A0116870.dll (Spyware.OnlineGames) -> Quarantined and deleted successfully.
c:\system volume information\_restore{ca7ba9c8-7387-48ab-8f27-3ee540ae5e60}\RP9\A0027963.dll (Spyware.OnlineGames) -> Quarantined and deleted successfully.
c:\system volume information\_restore{ca7ba9c8-7387-48ab-8f27-3ee540ae5e60}\RP9\A0027968.dll (Spyware.OnlineGames) -> Quarantined and deleted successfully.
c:\WINDOWS.0\system32\olhrwef.exe1017974978 (Spyware.OnlineGames) -> Quarantined and deleted successfully.
c:\WINDOWS.0\system32\olhrwef.exe670328450 (Spyware.OnlineGames) -> Quarantined and deleted successfully.
c:\WINDOWS.0\system32\olhrwef.exe453076359 (Worm.Autorun) -> Quarantined and deleted successfully.
c:\WINDOWS.0\system32\olhrwef.exe480061008 (Spyware.OnlineGames) -> Quarantined and deleted successfully.
c:\WINDOWS.0\system32\olhrwef.exe2042099130 (Spyware.OnlineGames) -> Quarantined and deleted successfully.
c:\WINDOWS.0\system32\olhrwef.exe2550398634 (Worm.Autorun) -> Quarantined and deleted successfully.
c:\documents and settings\all users\start menu\Programs\relevantknowledge\About RelevantKnowledge.lnk (Spyware.Marketscore) -> Quarantined and deleted successfully.
c:\documents and settings\all users\start menu\Programs\relevantknowledge\Privacy Policy and User License Agreement.lnk (Spyware.Marketscore) -> Quarantined and deleted successfully.
c:\documents and settings\all users\start menu\Programs\relevantknowledge\Support.lnk (Spyware.Marketscore) -> Quarantined and deleted successfully.
c:\documents and settings\all users\start menu\Programs\relevantknowledge\Uninstall Instructions.lnk (Spyware.Marketscore) -> Quarantined and deleted successfully.
c:\8.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\p.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\fsaht.cmd (Trojan.Agent) -> Quarantined and deleted successfully.
c:\gpcdt.cmd (Trojan.Agent) -> Quarantined and deleted successfully.
c:\icxpa.cmd (Trojan.Agent) -> Quarantined and deleted successfully.
c:\cv22.cmd (Trojan.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS.0\system32\amvo.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\WINDOWS.0\system32\afmain0.dll (Trojan.Agent) -> Quarantined and deleted successfully.
c:\WINDOWS.0\system32\afmain1.dll (Trojan.Agent) -> Quarantined and deleted successfully.
c:\ste8.bat (Trojan.Agent) -> Quarantined and deleted successfully.
c:\WINDOWS.0\system32\basenep32.dll (Trojan.Downloader) -> Quarantined and deleted successfully.
c:\WINDOWS.0\system32\baseruh32.dll (Trojan.Downloader) -> Delete on reboot.
C:\WINDOWS.0\system32\urretnd.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\WINDOWS.0\AhnRpta.exe (Trojan.Backdoor) -> Quarantined and deleted successfully.
C:\boyedt.com (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\d1vmq.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\cb.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\f9cvum.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\i.com (Trojan.Agent) -> Quarantined and deleted successfully.
C:\q0dhfjf.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\u.com (Trojan.Agent) -> Quarantined and deleted successfully.
C:\w2.com (Trojan.Agent) -> Quarantined and deleted successfully.
C:\xdw.com (Trojan.Agent) -> Quarantined and deleted successfully.
C:\ysep1.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\sm.exe (Worm.Autorun) -> Quarantined and deleted successfully.
C:\9dlvtiil.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.


See More: WoW keyloggers

Report •


#1
Report •
Related Solutions


Ask Question