| Precedente :: Successivo | 
	
	
		| Autore | Messaggio | 
	
		| lele76 Semidio
 
  
 
 Registrato: 13/05/07 18:49
 Messaggi: 310
 
 
 | 
			
				|  Inviato: 29 Ott 2008 14:56    Oggetto: virus su windows vista |   |  
				| 
 |  
				| Buona sera ho un portatile con installato windows vista dai sintomi, uguali a quelli del computer fisso, mi sembra di capire che c'è la presenza di un virus srosa.sys... connesso a questo c'è la scomparsa dell'opzione visualizza file nascosti e per altro non riceve più segnali wireless   rendendo inutilizzabile la connessione ad internet.. |  | 
	
		| Top |  | 
	
		|  | 
	
		| lele76 Semidio
 
  
 
 Registrato: 13/05/07 18:49
 Messaggi: 310
 
 
 | 
			
				|  Inviato: 29 Ott 2008 17:09    Oggetto: |   |  
				| 
 |  
				| Avevo istallato AVG ma un tecnico mi ha consigliato mentre si occupava di un altro mio problema di toglierlo e istallare Avira..ho provato a farlo ma quando provo a istallare avira mi da sempre un errore dicendo che prima devo chiudere tutte le applicazioni...il fatto è che non ne ho aperta neanche una...risultato sono senza antivirus.. aiuto Riverside!!! qui mi sa che è piu grave |  | 
	
		| Top |  | 
	
		|  | 
	
		| Sante62 Dio maturo
 
  
  
 Registrato: 27/06/07 17:55
 Messaggi: 3477
 Residenza: Floridia
 
 | 
			
				|  Inviato: 30 Ott 2008 13:51    Oggetto: |   |  
				| 
 |  
				| Ciao lele76   
 Il virus Bagle non fa installare nessun tipo di protezione;
 non toccare il ripristino di sistema e non tentare di avviare in modalità provvisoria;
 
 Procedi come segue, se qualche programma dei seguenti non si avvia, prova a cambiarne il nome dell'eseguibile, lasciando inviariata, per adesso, l'estensione:
 Guarda questa discussione scarica e fai la scansione con Elibagla;
 
 
  Pulisci i files temporanei con ATF-Cleaner e/o CCleaner
 Segui le istruzioni di questo topic per usare MBAM.
 Segui le istruzioni di questo topic per eseguire combofix.
 Segui le istruzioni di questo topic per postare il log di HiJackThis.
 Riferisci con un nuovo messaggio in questa discussione dell'esito: se ci sono stati problemi particolari, ecc. ecc. E riporta:
  Carica il log di MBAM su WikiSend e posta il Forum Link che ti viene assegnato.
 Carica il log di Combofix su WikiSend e posta il Forum Link che ti viene assegnato.
 Carica il log di HiJackThis su WikiSend e posta il Forum Link che ti viene assegnato.
 |  | 
	
		| Top |  | 
	
		|  | 
	
		| lele76 Semidio
 
  
 
 Registrato: 13/05/07 18:49
 Messaggi: 310
 
 
 | 
			
				|  Inviato: 30 Ott 2008 20:13    Oggetto: |   |  
				| 
 |  
				| ciao sante.. legendo eistruzioni dei topic per usare MBAM c'è scritto che non va usato con vista ...lo faccio uguale?
 |  | 
	
		| Top |  | 
	
		|  | 
	
		| lele76 Semidio
 
  
 
 Registrato: 13/05/07 18:49
 Messaggi: 310
 
 
 | 
			
				|  Inviato: 30 Ott 2008 20:20    Oggetto: |   |  
				| 
 |  
				| intanto questo è il log di Elibagla http://wikisend.com/download/854646/InfoSat.txt
 appena fatti gli altri te li mando comunque combofix non me lo fa partire mi dice che non è una applicazione di win32 valida..ho provato a cambiare nome ma niente
 |  | 
	
		| Top |  | 
	
		|  | 
	
		| Sante62 Dio maturo
 
  
  
 Registrato: 27/06/07 17:55
 Messaggi: 3477
 Residenza: Floridia
 
 | 
			
				|  Inviato: 30 Ott 2008 20:53    Oggetto: |   |  
				| 
 |  
				|  	  | lele76 ha scritto: |  	  | ciao sante.. legendo eistruzioni dei topic per usare MBAM c'è scritto che non va usato con vista ...lo faccio uguale?
 | 
 E' Kaspersky Removal tool che non va usato con Vista quindi procedi...
 
 Per Combofix, oltre al nome, prova anche a cambiarne l'estensione cioè da .exe in .bat
 |  | 
	
		| Top |  | 
	
		|  | 
	
		| lele76 Semidio
 
  
 
 Registrato: 13/05/07 18:49
 Messaggi: 310
 
 
 | 
			
				|  Inviato: 30 Ott 2008 22:34    Oggetto: |   |  
				| 
 |  
				| allora ho provato a cambiare anche l'estensione ma niente mi da sempre lo stesso errore questo è il log di mbam http://wikisend.com/download/507980/mbam-log-2008-10-30 (19-58-09).txt
 |  | 
	
		| Top |  | 
	
		|  | 
	
		| Sante62 Dio maturo
 
  
  
 Registrato: 27/06/07 17:55
 Messaggi: 3477
 Residenza: Floridia
 
 | 
			
				|  Inviato: 30 Ott 2008 22:51    Oggetto: |   |  
				| 
 |  
				| Benissimo, MBAM ha fatto il suo dovere a quanto pare...ma Combofix è stato messo fuori uso; 
 Adesso fai la scansione con Systemscan e posta il log generato come
 indicato quì così vediamo cosa è rimasto..
 |  | 
	
		| Top |  | 
	
		|  | 
	
		| lele76 Semidio
 
  
 
 Registrato: 13/05/07 18:49
 Messaggi: 310
 
 
 | 
			
				|  Inviato: 31 Ott 2008 00:34    Oggetto: |   |  
				| 
 |  
				| fatto..spero http://freefilehosting.net/download/41df0
 |  | 
	
		| Top |  | 
	
		|  | 
	
		| Sante62 Dio maturo
 
  
  
 Registrato: 27/06/07 17:55
 Messaggi: 3477
 Residenza: Floridia
 
 | 
			
				|  Inviato: 31 Ott 2008 10:36    Oggetto: |   |  
				| 
 |  
				| Apri il registro di sistema e trova questa chiave: 
  	  | Citazione: |  	  | HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run | 
 clicca su quella in grassetto, e nella finestra di destra dovresti individuare queste tre sottochiavi:
 drvsyskit
 german.exe
 mule_st_key
 Clicca su ognuna col destro e scegli elimina...
 Se l'operazione va a buon fine, riavvia il PC e dovresti controllare se effettivamente sono state cancellate;
 
 se hai programmi di crack scaricati, vanno tolti immediatamente...perchè è la causa principale di questa infezione.
 |  | 
	
		| Top |  | 
	
		|  | 
	
		| lele76 Semidio
 
  
 
 Registrato: 13/05/07 18:49
 Messaggi: 310
 
 
 | 
			
				|  Inviato: 31 Ott 2008 15:13    Oggetto: |   |  
				| 
 |  
				| ho fatto cio che hai detto ... C'è un modo adesso per far tornare l'oprzione visualizza file nascosti e far ripartire il wireless?
 |  | 
	
		| Top |  | 
	
		|  | 
	
		| Sante62 Dio maturo
 
  
  
 Registrato: 27/06/07 17:55
 Messaggi: 3477
 Residenza: Floridia
 
 | 
			
				|  Inviato: 31 Ott 2008 17:23    Oggetto: |   |  
				| 
 |  
				| Per ripristinare l'opzione file nascosti scarica questo script; si tratta di valori di chiavi di registro; 
 scaricalo sul desktop; dalla pagina web del file vai su File->Salva con Nome;
 è un file di testo con l'estensione .reg, appunto valori di registro
 cliccaci sopra col mouse e alla domanda se vuoi unire rispondi si.
 Riavvia il PC;
 
 Da quello che ho visto funziona, però questo è l'unico modo che si ha a disposizione e c'è la possibilità che non vada a buon fine, quindi se dovesse succedere, prepara un ripristino col CD di installazione, oppure se hai abbastanza spazio su Hard Disk, prima di fare l'operazione, è necessario un backup del registro di sistema.
 |  | 
	
		| Top |  | 
	
		|  | 
	
		| lele76 Semidio
 
  
 
 Registrato: 13/05/07 18:49
 Messaggi: 310
 
 
 | 
			
				|  Inviato: 31 Ott 2008 19:19    Oggetto: |   |  
				| 
 |  
				| ok per fortuna il file ha funzionato e si sono ripristinate le opzioni..grazie mille sante |  | 
	
		| Top |  | 
	
		|  | 
	
		| Sante62 Dio maturo
 
  
  
 Registrato: 27/06/07 17:55
 Messaggi: 3477
 Residenza: Floridia
 
 | 
			
				|  Inviato: 31 Ott 2008 20:21    Oggetto: |   |  
				| 
 |  
				| Bene, ora prova a installare Avira Antivir e vedi come va e fai la scansione del PC; 
 Disinstalla eventuali altre protezioni che possiedi e reinstallali;
 
 Combofix disinstallalo cosi:
 Start-Esegui e digita Combofix /u (rispetta gli spazi)
 
 Disattiva il ripristino di sistema e poi riattivalo (devi consultare la guida per farlo)
 
 Dopo, fai una scansione online con Panda Active Scan, procedi con la scansione estesa del PC, mi pare sia compatibile con Vista...e posta il risultato; fai anche un log di Hijackthis...
 |  | 
	
		| Top |  | 
	
		|  | 
	
		| lele76 Semidio
 
  
 
 Registrato: 13/05/07 18:49
 Messaggi: 310
 
 
 | 
			
				|  Inviato: 01 Nov 2008 16:11    Oggetto: |   |  
				| 
 |  
				| ciao sante ho un problema allora apparte che avira credo abbia  rilevato un macello di virus questo è il log 
 
 Avira AntiVir Personal
 Report file date: sabato 1 novembre 2008  14:36
 
 Scanning for 1001710 virus strains and unwanted programs.
 
 Licensed to:      Avira AntiVir PersonalEdition Classic
 Serial number:    0000149996-ADJIE-0001
 Platform:         Windows Vista
 Windows version:  (Service Pack 1)  [6.0.6001]
 Boot mode:        Normally booted
 Username:         SYSTEM
 Computer name:    PC-EMANUELE
 
 Version information:
 BUILD.DAT     : 8.2.0.334      16933 Bytes  16/10/2008 14:55:00
 AVSCAN.EXE    : 8.1.4.7       315649 Bytes  26/06/2008 09:57:53
 AVSCAN.DLL    : 8.1.4.0        40705 Bytes  26/05/2008 08:56:40
 LUKE.DLL      : 8.1.4.5       164097 Bytes  12/06/2008 13:44:19
 LUKERES.DLL   : 8.1.4.0        12033 Bytes  26/05/2008 08:58:52
 ANTIVIR0.VDF  : 7.1.0.0     15603712 Bytes  27/10/2008 17:24:58
 ANTIVIR1.VDF  : 7.1.0.21      130560 Bytes  31/10/2008 17:25:03
 ANTIVIR2.VDF  : 7.1.0.22        2048 Bytes  31/10/2008 17:25:03
 ANTIVIR3.VDF  : 7.1.0.26       14848 Bytes  31/10/2008 17:25:04
 Engineversion : 8.2.0.10
 AEVDF.DLL     : 8.1.0.6       102772 Bytes  31/10/2008 17:26:32
 AESCRIPT.DLL  : 8.1.1.9       319867 Bytes  31/10/2008 17:26:29
 AESCN.DLL     : 8.1.1.3       123252 Bytes  31/10/2008 17:26:23
 AERDL.DLL     : 8.1.1.2       438644 Bytes  31/10/2008 17:26:21
 AEPACK.DLL    : 8.1.2.4       369014 Bytes  31/10/2008 17:26:13
 AEOFFICE.DLL  : 8.1.0.29      196988 Bytes  31/10/2008 17:25:59
 AEHEUR.DLL    : 8.1.0.63     1479032 Bytes  31/10/2008 17:25:54
 AEHELP.DLL    : 8.1.1.2       115062 Bytes  31/10/2008 17:25:25
 AEGEN.DLL     : 8.1.0.42      319861 Bytes  31/10/2008 17:25:22
 AEEMU.DLL     : 8.1.0.9       393588 Bytes  31/10/2008 17:25:16
 AECORE.DLL    : 8.1.2.9       172407 Bytes  31/10/2008 17:25:11
 AEBB.DLL      : 8.1.0.3        53618 Bytes  31/10/2008 17:25:06
 AVWINLL.DLL   : 1.0.0.12       15105 Bytes  09/07/2008 09:40:05
 AVPREF.DLL    : 8.0.2.0        38657 Bytes  16/05/2008 10:28:01
 AVREP.DLL     : 8.0.0.2        98344 Bytes  31/10/2008 17:25:05
 AVREG.DLL     : 8.0.0.1        33537 Bytes  09/05/2008 12:26:40
 AVARKT.DLL    : 1.0.0.23      307457 Bytes  12/02/2008 09:29:23
 AVEVTLOG.DLL  : 8.0.0.16      119041 Bytes  12/06/2008 13:27:49
 SQLITE3.DLL   : 3.3.17.1      339968 Bytes  22/01/2008 18:28:02
 SMTPLIB.DLL   : 1.2.0.23       28929 Bytes  12/06/2008 13:49:40
 NETNT.DLL     : 8.0.0.1         7937 Bytes  25/01/2008 13:05:10
 RCIMAGE.DLL   : 8.0.0.51     2371841 Bytes  12/06/2008 14:48:07
 RCTEXT.DLL    : 8.0.52.0       86273 Bytes  27/06/2008 14:34:37
 
 Configuration settings for the scan:
 Jobname..........................: Complete system scan
 Configuration file...............: c:\program files\avira\antivir personaledition classic\sysscan.avp
 Logging..........................: low
 Primary action...................: interactive
 Secondary action.................: ignore
 Scan master boot sector..........: on
 Scan boot sector.................: on
 Boot sectors.....................: C:, D:,
 Process scan.....................: on
 Scan registry....................: on
 Search for rootkits..............: off
 Scan all files...................: Intelligent file selection
 Scan archives....................: on
 Recursion depth..................: 20
 Smart extensions.................: on
 Macro heuristic..................: on
 File heuristic...................: medium
 
 Start of the scan: sabato 1 novembre 2008  14:36
 
 The scan of running processes will be started
 Scan process 'avscan.exe' - '1' Module(s) have been scanned
 Scan process 'avcenter.exe' - '1' Module(s) have been scanned
 Scan process 'taskeng.exe' - '1' Module(s) have been scanned
 Scan process 'svchost.exe' - '1' Module(s) have been scanned
 Scan process 'svchost.exe' - '1' Module(s) have been scanned
 Scan process 'conime.exe' - '1' Module(s) have been scanned
 Scan process 'iexplore.exe' - '1' Module(s) have been scanned
 Scan process 'wmpnetwk.exe' - '1' Module(s) have been scanned
 Scan process 'acp2HID.exe' - '1' Module(s) have been scanned
 Scan process 'eRAgent.exe' - '1' Module(s) have been scanned
 Scan process 'Acer.Empowering.Framework.Supervisor.ex' - '1' Module(s) have been scanned
 Scan process 'ePower_DMC.exe' - '1' Module(s) have been scanned
 Scan process 'eNMTray.exe' - '1' Module(s) have been scanned
 Scan process 'ehmsas.exe' - '1' Module(s) have been scanned
 Scan process 'AcerVCM.exe' - '1' Module(s) have been scanned
 Scan process 'ISUSPM.exe' - '1' Module(s) have been scanned
 Scan process 'ehtray.exe' - '1' Module(s) have been scanned
 Scan process 'sidebar.exe' - '1' Module(s) have been scanned
 Scan process 'avgnt.exe' - '1' Module(s) have been scanned
 Scan process 'svchost.exe' - '1' Module(s) have been scanned
 Scan process 'wmdc.exe' - '1' Module(s) have been scanned
 Scan process 'rundll32.exe' - '1' Module(s) have been scanned
 Scan process 'GrooveMonitor.exe' - '1' Module(s) have been scanned
 Scan process 'IAAnotif.exe' - '1' Module(s) have been scanned
 Scan process 'RtkBtMnt.exe' - '1' Module(s) have been scanned
 Scan process 'PMVService.exe' - '1' Module(s) have been scanned
 Scan process 'QtZgAcer.EXE' - '1' Module(s) have been scanned
 Scan process 'RtHDVCpl.exe' - '1' Module(s) have been scanned
 Scan process 'eAudio.exe' - '1' Module(s) have been scanned
 Scan process 'unsecapp.exe' - '1' Module(s) have been scanned
 Scan process 'SynTPEnh.exe' - '1' Module(s) have been scanned
 Scan process 'SynTPStart.exe' - '1' Module(s) have been scanned
 Scan process 'explorer.exe' - '1' Module(s) have been scanned
 Scan process 'dwm.exe' - '1' Module(s) have been scanned
 Scan process 'taskeng.exe' - '1' Module(s) have been scanned
 Scan process 'unsecapp.exe' - '1' Module(s) have been scanned
 Scan process 'WmiPrvSE.exe' - '1' Module(s) have been scanned
 Scan process 'WmiPrvSE.exe' - '1' Module(s) have been scanned
 Scan process 'ePowerSvc.exe' - '1' Module(s) have been scanned
 Scan process 'capuserv.exe' - '1' Module(s) have been scanned
 Scan process 'eRecoveryService.exe' - '1' Module(s) have been scanned
 Scan process 'XAudio.exe' - '1' Module(s) have been scanned
 Scan process 'SearchIndexer.exe' - '1' Module(s) have been scanned
 Scan process 'svchost.exe' - '1' Module(s) have been scanned
 Scan process 'svchost.exe' - '1' Module(s) have been scanned
 Scan process 'svchost.exe' - '1' Module(s) have been scanned
 Scan process 'RS_Service.exe' - '1' Module(s) have been scanned
 Scan process 'RichVideo.exe' - '1' Module(s) have been scanned
 Scan process 'svchost.exe' - '1' Module(s) have been scanned
 Scan process 'MobilityService.exe' - '1' Module(s) have been scanned
 Scan process 'LSSrvc.exe' - '1' Module(s) have been scanned
 Scan process 'IAANTmon.exe' - '1' Module(s) have been scanned
 Scan process 'eNet Service.exe' - '1' Module(s) have been scanned
 Scan process 'taskeng.exe' - '1' Module(s) have been scanned
 Scan process 'eLockServ.exe' - '1' Module(s) have been scanned
 Scan process 'eDSService.exe' - '1' Module(s) have been scanned
 Scan process 'svchost.exe' - '1' Module(s) have been scanned
 Scan process 'avguard.exe' - '1' Module(s) have been scanned
 Scan process 'ALaunchSvc.exe' - '1' Module(s) have been scanned
 Scan process 'svchost.exe' - '1' Module(s) have been scanned
 Scan process 'sched.exe' - '1' Module(s) have been scanned
 Scan process 'spoolsv.exe' - '1' Module(s) have been scanned
 Scan process 'svchost.exe' - '1' Module(s) have been scanned
 Scan process 'svchost.exe' - '1' Module(s) have been scanned
 Scan process 'SLsvc.exe' - '1' Module(s) have been scanned
 Scan process 'audiodg.exe' - '0' Module(s) have been scanned
 Scan process 'svchost.exe' - '1' Module(s) have been scanned
 Scan process 'svchost.exe' - '1' Module(s) have been scanned
 Scan process 'svchost.exe' - '1' Module(s) have been scanned
 Scan process 'svchost.exe' - '1' Module(s) have been scanned
 Scan process 'svchost.exe' - '1' Module(s) have been scanned
 Scan process 'svchost.exe' - '1' Module(s) have been scanned
 Scan process 'lsm.exe' - '1' Module(s) have been scanned
 Scan process 'lsass.exe' - '1' Module(s) have been scanned
 Scan process 'winlogon.exe' - '1' Module(s) have been scanned
 Scan process 'services.exe' - '1' Module(s) have been scanned
 Scan process 'csrss.exe' - '1' Module(s) have been scanned
 Scan process 'wininit.exe' - '1' Module(s) have been scanned
 Scan process 'csrss.exe' - '1' Module(s) have been scanned
 Scan process 'smss.exe' - '1' Module(s) have been scanned
 79 processes with 79 modules were scanned
 
 Starting master boot sector scan:
 Master boot sector HD0
 [INFO]      No virus was found!
 
 Start scanning boot sectors:
 Boot sector 'C:\'
 [INFO]      No virus was found!
 Boot sector 'D:\'
 [INFO]      No virus was found!
 
 Starting to scan the registry.
 C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe
 [DETECTION] Is the TR/Dldr.Bagle.abg Trojan
 [NOTE]      The file was moved to '495f5baf.qua'!
 
 The registry was scanned ( '52' files ).
 
 
 Starting the file scan:
 
 Begin scan in 'C:\' <ACER>
 C:\hiberfil.sys
 [WARNING]   The file could not be opened!
 C:\pagefile.sys
 [WARNING]   The file could not be opened!
 C:\Avenger\m\shared\1-4-all_Account_lite_1.3.5.zip
 [0] Archive type: ZIP
 --> 1-4-all_Account_lite_1.3.5.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49405c32.qua'!
 C:\Avenger\m\shared\3DTop_1.5.0.zip
 [0] Archive type: ZIP
 --> 3DTop_1.5.0.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49605c49.qua'!
 C:\Avenger\m\shared\Absolute_Accessories_99.zip
 [0] Archive type: ZIP
 --> Absolute_Accessories_99.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '497f5c68.qua'!
 C:\Avenger\m\shared\ActiveInsert_1.1.zip
 [0] Archive type: ZIP
 --> ActiveInsert_1.1.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49805c69.qua'!
 C:\Avenger\m\shared\agBitMask_1.0.zip
 [0] Archive type: ZIP
 --> agBitMask_1.0.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '494e5c6d.qua'!
 C:\Avenger\m\shared\Alchemy_Spam_Filter_for_Outlook_Express_1.1_Patch.zip
 [0] Archive type: ZIP
 --> Alchemy_Spam_Filter_for_Outlook_Express_1.1_Patch.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '496f5c73.qua'!
 C:\Avenger\m\shared\AlgoLab_Raster_to_Vector_Conversion_SDK_2.55.zip
 [0] Archive type: ZIP
 --> AlgoLab_Raster_to_Vector_Conversion_SDK_2.55.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49735c73.qua'!
 C:\Avenger\m\shared\Altdo_Video_to_3GP_Converter_1.4_(Cracked).zip
 [0] Archive type: ZIP
 --> Altdo_Video_to_3GP_Converter_1.4_(Cracked).exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49805c73.qua'!
 C:\Avenger\m\shared\Andrew's_Vector_Plugins_Volume_11_'SymbolHeadline'_11.1_Key+Serial.zip
 [0] Archive type: ZIP
 --> Andrew's_Vector_Plugins_Volume_11_'SymbolHeadline'_11.1_Key+Serial.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49705c76.qua'!
 C:\Avenger\m\shared\Antivirus_NOD32_v2.70.12_RC1.zip
 [0] Archive type: ZIP
 --> Antivirus_NOD32_v2.70.12_RC1.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49805c76.qua'!
 C:\Avenger\m\shared\AspMap_2.0.zip
 [0] Archive type: ZIP
 --> AspMap_2.0.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '497c5c7b.qua'!
 C:\Avenger\m\shared\AudioGrail_6.6.6.zip
 [0] Archive type: ZIP
 --> AudioGrail_6.6.6.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49705c7e.qua'!
 C:\Avenger\m\shared\Automatic_Screen_Recorder_And_Monitor_3.5_Build_20070325_(Crack).zip
 [0] Archive type: ZIP
 --> Automatic_Screen_Recorder_And_Monitor_3.5_Build_20070325_(Crack).exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49805c7e.qua'!
 C:\Avenger\m\shared\Batch_File_Rename_1.23.zip
 [0] Archive type: ZIP
 --> Batch_File_Rename_1.23.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49805c6a.qua'!
 C:\Avenger\m\shared\Beerwin`s_ShutdownerXP_1.0.zip
 [0] Archive type: ZIP
 --> Beerwin`s_ShutdownerXP_1.0.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49715c6f.qua'!
 C:\Avenger\m\shared\BEIKS_Linguist_Dictionary_Bundle_for_Palm_OS_5.9.zip
 [0] Archive type: ZIP
 --> BEIKS_Linguist_Dictionary_Bundle_for_Palm_OS_5.9.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49555c4f.qua'!
 C:\Avenger\m\shared\Blues_2003_3.0.0.16.zip
 [0] Archive type: ZIP
 --> Blues_2003_3.0.0.16.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49815c76.qua'!
 C:\Avenger\m\shared\Broadcaster_1.0.4.zip
 [0] Archive type: ZIP
 --> Broadcaster_1.0.4.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '497b5c7d.qua'!
 C:\Avenger\m\shared\Browser_Hijack_Recover(BHR)_2.3_[Serial].zip
 [0] Archive type: ZIP
 --> Browser_Hijack_Recover(BHR)_2.3_[Serial].exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '4af223c6.qua'!
 C:\Avenger\m\shared\Canadian_Postal_Code_Database_(Premium_Edition)_June_2007.zip
 [0] Archive type: ZIP
 --> Canadian_Postal_Code_Database_(Premium_Edition)_June_2007.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '497a5c6c.qua'!
 C:\Avenger\m\shared\Castle_Project_Timer_1.3.1.zip
 [0] Archive type: ZIP
 --> Castle_Project_Timer_1.3.1.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '497f5c6d.qua'!
 C:\Avenger\m\shared\CDBFinfo_1.11.03.zip
 [0] Archive type: ZIP
 --> CDBFinfo_1.11.03.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '494e5c50.qua'!
 C:\Avenger\m\shared\Chat4Support_Operator_2.0.0_build_0413_(KeyGen).zip
 [0] Archive type: ZIP
 --> Chat4Support_Operator_2.0.0_build_0413_(KeyGen).exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '496d5c74.qua'!
 C:\Avenger\m\shared\CHEAPSKATE_1.5.zip
 [0] Archive type: ZIP
 --> CHEAPSKATE_1.5.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49515c55.qua'!
 C:\Avenger\m\shared\Chicago_Dusk_to_Dark_Screensaver_2.0_Key.zip
 [0] Archive type: ZIP
 --> Chicago_Dusk_to_Dark_Screensaver_2.0_Key.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49755c75.qua'!
 C:\Avenger\m\shared\Chilkat_XML_C++_Library.zip
 [0] Archive type: ZIP
 --> Chilkat_XML_C++_Library.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '4afc23ce.qua'!
 C:\Avenger\m\shared\Click'n_View_LE_4.2.0.7.zip
 [0] Archive type: ZIP
 --> Click'n_View_LE_4.2.0.7.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49755c7a.qua'!
 C:\Avenger\m\shared\CL_Command_Browser_1.1_[With_Crack].zip
 [0] Archive type: ZIP
 --> CL_Command_Browser_1.1_[With_Crack].exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '496b5c5a.qua'!
 C:\Avenger\m\shared\Color_Sudoku_3.1.zip
 [0] Archive type: ZIP
 --> Color_Sudoku_3.1.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49785c7d.qua'!
 C:\Avenger\m\shared\Countries_Highlighter_1.0.zip
 [0] Archive type: ZIP
 --> Countries_Highlighter_1.0.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49815c7e.qua'!
 C:\Avenger\m\shared\Crypturn_1.0.0.24.zip
 [0] Archive type: ZIP
 --> Crypturn_1.0.0.24.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49855c81.qua'!
 C:\Avenger\m\shared\CX_Nav_Bar_2.1_[Key+Serial].zip
 [0] Archive type: ZIP
 --> CX_Nav_Bar_2.1_[Key+Serial].exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '496b5c67.qua'!
 C:\Avenger\m\shared\Daily_Medicine_2.0.zip
 [0] Archive type: ZIP
 --> Daily_Medicine_2.0.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49755c71.qua'!
 C:\Avenger\m\shared\Date_Time_Counter_Personal_Edition_1.01_build_20051116.zip
 [0] Archive type: ZIP
 --> Date_Time_Counter_Personal_Edition_1.01_build_20051116.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49805c71.qua'!
 C:\Avenger\m\shared\Deskcalc_Pro_4.2.9_(Crack).zip
 [0] Archive type: ZIP
 --> Deskcalc_Pro_4.2.9_(Crack).exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '497f5c75.qua'!
 C:\Avenger\m\shared\Digit_Twister_1.8_[KeyGen].zip
 [0] Archive type: ZIP
 --> Digit_Twister_1.8_[KeyGen].exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49735c7a.qua'!
 C:\Avenger\m\shared\dupeGuru_2.4.8.zip
 [0] Archive type: ZIP
 --> dupeGuru_2.4.8.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '497c5c86.qua'!
 C:\Avenger\m\shared\Easy_Math_2.0_KeyGen.zip
 [0] Archive type: ZIP
 --> Easy_Math_2.0_KeyGen.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '497f5c72.qua'!
 C:\Avenger\m\shared\eduCam!_1.9.zip
 [0] Archive type: ZIP
 --> eduCam!_1.9.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '4a0823cf.qua'!
 C:\Avenger\m\shared\EggRoll_1.zip
 [0] Archive type: ZIP
 --> EggRoll_1.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49735c79.qua'!
 C:\Avenger\m\shared\eMail_Verifier_3.1.1.zip
 [0] Archive type: ZIP
 --> eMail_Verifier_3.1.1.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '496d5c5f.qua'!
 C:\Avenger\m\shared\Evidence_Washer_4.30.zip
 [0] Archive type: ZIP
 --> Evidence_Washer_4.30.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49755c89.qua'!
 C:\Avenger\m\shared\Excel_to_PDF_Export_&_Convert_Software_1.1.zip
 [0] Archive type: ZIP
 --> Excel_to_PDF_Export_&_Convert_Software_1.1.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '496f5c8b.qua'!
 C:\Avenger\m\shared\eXSkin_2.0.0.7.4299.zip
 [0] Archive type: ZIP
 --> eXSkin_2.0.0.7.4299.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '495f5c6b.qua'!
 C:\Avenger\m\shared\Faogen_1.zip
 [0] Archive type: ZIP
 --> Faogen_1.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '497b5c75.qua'!
 C:\Avenger\m\shared\Far_Cry_Sandbox_Editor_manual.zip
 [0] Archive type: ZIP
 --> Far_Cry_Sandbox_Editor_manual.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '497e5c75.qua'!
 C:\Avenger\m\shared\Feurio!_1.68_(Serial).zip
 [0] Archive type: ZIP
 --> Feurio!_1.68_(Serial).exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49815c79.qua'!
 C:\Avenger\m\shared\Firestarter_demo.zip
 [0] Archive type: ZIP
 --> Firestarter_demo.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '497e5c7e.qua'!
 C:\Avenger\m\shared\Foto_ID_1.0.zip
 [0] Archive type: ZIP
 --> Foto_ID_1.0.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49805c84.qua'!
 C:\Avenger\m\shared\Freedom_Force_-_Helltoy_model.zip
 [0] Archive type: ZIP
 --> Freedom_Force_-_Helltoy_model.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49715c87.qua'!
 C:\Avenger\m\shared\Free_Monitor_for_Google_2.3.zip
 [0] Archive type: ZIP
 --> Free_Monitor_for_Google_2.3.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49715c88.qua'!
 C:\Avenger\m\shared\Froogie_Froogle_Submit_1.5.zip
 [0] Archive type: ZIP
 --> Froogie_Froogle_Submit_1.5.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '497b5c88.qua'!
 C:\Avenger\m\shared\Gala2_1.0.zip
 [0] Archive type: ZIP
 --> Gala2_1.0.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49785c77.qua'!
 C:\Avenger\m\shared\GAlert_2.5.8.0_[Serial].zip
 [0] Archive type: ZIP
 --> GAlert_2.5.8.0_[Serial].exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49785c58.qua'!
 C:\Avenger\m\shared\HexAssistant_2.0.zip
 [0] Archive type: ZIP
 --> HexAssistant_2.0.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49845c7c.qua'!
 C:\Avenger\m\shared\Hi-Spot_Filter_1.1.zip
 [0] Archive type: ZIP
 --> Hi-Spot_Filter_1.1.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49395c81.qua'!
 C:\Avenger\m\shared\HyperCam_2.14.01_[KeyGen].zip
 [0] Archive type: ZIP
 --> HyperCam_2.14.01_[KeyGen].exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '497c5c91.qua'!
 C:\Avenger\m\shared\Idokorro_Mobile_Admin_3.2.2.zip
 [0] Archive type: ZIP
 --> Idokorro_Mobile_Admin_3.2.2.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '497b5c7c.qua'!
 C:\Avenger\m\shared\ID_Unlocker_1.2_[Cracked].zip
 [0] Archive type: ZIP
 --> ID_Unlocker_1.2_[Cracked].exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '496b5c5d.qua'!
 C:\Avenger\m\shared\ImTOO_AVI_MPEG_Converter_3.1.30.0511b_Key+Serial.zip
 [0] Archive type: ZIP
 --> ImTOO_AVI_MPEG_Converter_3.1.30.0511b_Key+Serial.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49605c86.qua'!
 C:\Avenger\m\shared\ImTOO_Video_to_Audio_Converter_3.1.30.0518b.zip
 [0] Archive type: ZIP
 --> ImTOO_Video_to_Audio_Converter_3.1.30.0518b.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '4ae9233f.qua'!
 C:\Avenger\m\shared\Integrare_1.0.3.40.zip
 [0] Archive type: ZIP
 --> Integrare_1.0.3.40.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49805c88.qua'!
 C:\Avenger\m\shared\Jesterware_DVD_to_Apple_TV_3.0_[Cracked].zip
 [0] Archive type: ZIP
 --> Jesterware_DVD_to_Apple_TV_3.0_[Cracked].exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '497f5c7f.qua'!
 C:\Avenger\m\shared\JobQuest_2.2_Crack.zip
 [0] Archive type: ZIP
 --> JobQuest_2.2_Crack.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '496e5c89.qua'!
 C:\Avenger\m\shared\LingvoSoft_Learning_PhraseBook_2007_German_-_Italian_2.2.76.zip
 [0] Archive type: ZIP
 --> LingvoSoft_Learning_PhraseBook_2007_German_-_Italian_2.2.76.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '497a5c84.qua'!
 C:\Avenger\m\shared\LinkLock_-_PayPal_button_encrypter_1.0.zip
 [0] Archive type: ZIP
 --> LinkLock_-_PayPal_button_encrypter_1.0.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '4af3233d.qua'!
 C:\Avenger\m\shared\List_All_Images_0.5.zip
 [0] Archive type: ZIP
 --> List_All_Images_0.5.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '497f5c84.qua'!
 C:\Avenger\m\shared\Lord_of_the_Rings_Battle_for_Middle-earth_II_v1.01_French_patch.zip
 [0] Archive type: ZIP
 --> Lord_of_the_Rings_Battle_for_Middle-earth_II_v1.01_French_patch.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '497e5c8b.qua'!
 C:\Avenger\m\shared\Magic_MP3_CD_Burner_7.0.2.1_Cracked.zip
 [0] Archive type: ZIP
 --> Magic_MP3_CD_Burner_7.0.2.1_Cracked.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49735c7d.qua'!
 C:\Avenger\m\shared\Mailware_Home_Office_2.0_build_110.zip
 [0] Archive type: ZIP
 --> Mailware_Home_Office_2.0_build_110.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49755c7d.qua'!
 C:\Avenger\m\shared\Mandarin_890_1.04.zip
 [0] Archive type: ZIP
 --> Mandarin_890_1.04.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '497a5c7e.qua'!
 C:\Avenger\m\shared\MB7-223_Practice_Exam_Testing_Engine_Software_1.0.zip
 [0] Archive type: ZIP
 --> MB7-223_Practice_Exam_Testing_Engine_Software_1.0.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49435c5f.qua'!
 C:\Avenger\m\shared\Mindbuilt_Attendance_and_Project_Tracker_1.1.8_(KeyGen).zip
 [0] Archive type: ZIP
 --> Mindbuilt_Attendance_and_Project_Tracker_1.1.8_(KeyGen).exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '497a5c86.qua'!
 C:\Avenger\m\shared\Minitris_Classic_2.51.zip
 [0] Archive type: ZIP
 --> Minitris_Classic_2.51.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '497a5c87.qua'!
 C:\Avenger\m\shared\Mobile_ImageDraw_1.1.zip
 [0] Archive type: ZIP
 --> Mobile_ImageDraw_1.1.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '496e5c8d.qua'!
 C:\Avenger\m\shared\Network+_practice_tests_2.7.1.zip
 [0] Archive type: ZIP
 --> Network+_practice_tests_2.7.1.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49805c83.qua'!
 C:\Avenger\m\shared\NetworkActiv_PIAFCTM_(Free_Edition)_1.5.2.zip
 [0] Archive type: ZIP
 --> NetworkActiv_PIAFCTM_(Free_Edition)_1.5.2.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '4a09233d.qua'!
 C:\Avenger\m\shared\News_Updater_1.10.6.zip
 [0] Archive type: ZIP
 --> News_Updater_1.10.6.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49835c84.qua'!
 C:\Avenger\m\shared\No-Keys_5.0_(Patch).zip
 [0] Archive type: ZIP
 --> No-Keys_5.0_(Patch).exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49395c8e.qua'!
 C:\Avenger\m\shared\Nod32.win98_W2k_XP.(PL).zip
 [0] Archive type: ZIP
 --> Nod32.win98_W2k_XP.(PL).exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49705c8f.qua'!
 C:\Avenger\m\shared\OBJ_Import_for_AutoCAD_1.0.zip
 [0] Archive type: ZIP
 --> OBJ_Import_for_AutoCAD_1.0.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49565c62.qua'!
 C:\Avenger\m\shared\PagePainter_1.0_Patch.zip
 [0] Archive type: ZIP
 --> PagePainter_1.0_Patch.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49735c81.qua'!
 C:\Avenger\m\shared\Paltalk_Messenger_8.5.zip
 [0] Archive type: ZIP
 --> Paltalk_Messenger_8.5.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49785c82.qua'!
 C:\Avenger\m\shared\Panda.10.01.02.zip
 [0] Archive type: ZIP
 --> Panda.10.01.02.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '497a5c82.qua'!
 C:\Avenger\m\shared\PCLab_2.0_[Cracked].zip
 [0] Archive type: ZIP
 --> PCLab_2.0_[Cracked].exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49585c65.qua'!
 C:\Avenger\m\shared\Personal_Budget_Manager_2.3_[KeyGen].zip
 [0] Archive type: ZIP
 --> Personal_Budget_Manager_2.3_[KeyGen].exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '497e5c87.qua'!
 C:\Avenger\m\shared\Petal_Palace_1.0.8.zip
 [0] Archive type: ZIP
 --> Petal_Palace_1.0.8.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49805c87.qua'!
 C:\Avenger\m\shared\Photo_Crop_Editor_1.08_Crack.zip
 [0] Archive type: ZIP
 --> Photo_Crop_Editor_1.08_Crack.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '497b5c8a.qua'!
 C:\Avenger\m\shared\Picture_Studio_.EXE_Professional_1.1.0.227.zip
 [0] Archive type: ZIP
 --> Picture_Studio_.EXE_Professional_1.1.0.227.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '496f5c8c.qua'!
 C:\Avenger\m\shared\PigMoney_1.1.zip
 [0] Archive type: ZIP
 --> PigMoney_1.1.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49735c8c.qua'!
 C:\Avenger\m\shared\Plato_DVD_to_iPod_Ripper_6.66_Patch.zip
 [0] Archive type: ZIP
 --> Plato_DVD_to_iPod_Ripper_6.66_Patch.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '496d5c90.qua'!
 C:\Avenger\m\shared\Popims_Animator_Video_1.0.zip
 [0] Archive type: ZIP
 --> Popims_Animator_Video_1.0.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '497c5c93.qua'!
 C:\Avenger\m\shared\Power2Show_Pro_5.2.20.zip
 [0] Archive type: ZIP
 --> Power2Show_Pro_5.2.20.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49835c93.qua'!
 C:\Avenger\m\shared\PrivApp_1.0_Patch.zip
 [0] Archive type: ZIP
 --> PrivApp_1.0_Patch.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49755c96.qua'!
 C:\Avenger\m\shared\ProjectForum_5.5.0_(KeyGen).zip
 [0] Archive type: ZIP
 --> ProjectForum_5.5.0_(KeyGen).exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '497b5c97.qua'!
 C:\Avenger\m\shared\ProPixel_2D_1.51.zip
 [0] Archive type: ZIP
 --> ProPixel_2D_1.51.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '4af2df30.qua'!
 C:\Avenger\m\shared\ProtectStar_Mobile_Firewall_1.zip
 [0] Archive type: ZIP
 --> ProtectStar_Mobile_Firewall_1.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '497b5c98.qua'!
 C:\Avenger\m\shared\qFileSync_2.0.65.zip
 [0] Archive type: ZIP
 --> qFileSync_2.0.65.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49755c6c.qua'!
 C:\Avenger\m\shared\Raised_Panel_Doors_5.80.zip
 [0] Archive type: ZIP
 --> Raised_Panel_Doors_5.80.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49755c87.qua'!
 C:\Avenger\m\shared\Reactors_1.zip
 [0] Archive type: ZIP
 --> Reactors_1.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '496d5c8c.qua'!
 C:\Avenger\m\shared\ReClock_1.7_beta_3.zip
 [0] Archive type: ZIP
 --> ReClock_1.7_beta_3.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '494f5c8c.qua'!
 C:\Avenger\m\shared\Red_Cells_1.0.2.zip
 [0] Archive type: ZIP
 --> Red_Cells_1.0.2.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49705c8c.qua'!
 C:\Avenger\m\shared\RegexImporter_1.1_(Crack).zip
 [0] Archive type: ZIP
 --> RegexImporter_1.1_(Crack).exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49735c8d.qua'!
 C:\Avenger\m\shared\Ruslana_Gridlock_1.0.zip
 [0] Archive type: ZIP
 --> Ruslana_Gridlock_1.0.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '497f5c9d.qua'!
 C:\Avenger\m\shared\Scenes_of_Egypt_Screen_Saver_1.0_With_Crack.zip
 [0] Archive type: ZIP
 --> Scenes_of_Egypt_Screen_Saver_1.0_With_Crack.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49715c8b.qua'!
 C:\Avenger\m\shared\Scrapbook_Flair_2.0.zip
 [0] Archive type: ZIP
 --> Scrapbook_Flair_2.0.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '497e5c8c.qua'!
 C:\Avenger\m\shared\Serious_Sam_The_Second_Encounter_1.05_to_1.07_patch_(Europe).zip
 [0] Archive type: ZIP
 --> Serious_Sam_The_Second_Encounter_1.05_to_1.07_patch_(Europe).exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '497e5c8e.qua'!
 C:\Avenger\m\shared\Simpaplex_1.11.zip
 [0] Archive type: ZIP
 --> Simpaplex_1.11.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49795c92.qua'!
 C:\Avenger\m\shared\Sinhala_MP3_Player_0.1B.zip
 [0] Archive type: ZIP
 --> Sinhala_MP3_Player_0.1B.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '497a5c93.qua'!
 C:\Avenger\m\shared\SMTP_Spotter_1_[With_Crack].zip
 [0] Archive type: ZIP
 --> SMTP_Spotter_1_[With_Crack].exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49605c77.qua'!
 C:\Avenger\m\shared\Spam_Site_Smasher_1.0.zip
 [0] Archive type: ZIP
 --> Spam_Site_Smasher_1.0.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '496d5c9b.qua'!
 C:\Avenger\m\shared\Sqirlz_Lite_1.2.zip
 [0] Archive type: ZIP
 --> Sqirlz_Lite_1.2.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49755c9c.qua'!
 C:\Avenger\m\shared\SQLite_Maestro_7.7_[Patch].zip
 [0] Archive type: ZIP
 --> SQLite_Maestro_7.7_[Patch].exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49585c7c.qua'!
 C:\Avenger\m\shared\Sri_Brahma_Samhita_1.zip
 [0] Archive type: ZIP
 --> Sri_Brahma_Samhita_1.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49755c9e.qua'!
 C:\Avenger\m\shared\Super_iPod_Video_Converter_3.5.1.zip
 [0] Archive type: ZIP
 --> Super_iPod_Video_Converter_3.5.1.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '497c5ca1.qua'!
 C:\Avenger\m\shared\Super_Mp3_Editor_5.2.1.1.zip
 [0] Archive type: ZIP
 --> Super_Mp3_Editor_5.2.1.1.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '4af5231a.qua'!
 C:\Avenger\m\shared\TEXTEDIT_99.124.zip
 [0] Archive type: ZIP
 --> TEXTEDIT_99.124.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49645c72.qua'!
 C:\Avenger\m\shared\The_Elder_Scrolls_III_Morrowind_-_Stank_Manor_mod.zip
 [0] Archive type: ZIP
 --> The_Elder_Scrolls_III_Morrowind_-_Stank_Manor_mod.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49715c95.qua'!
 C:\Avenger\m\shared\The_Sims_-_Asuka_Langley_skin.zip
 [0] Archive type: ZIP
 --> The_Sims_-_Asuka_Langley_skin.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '4af8df3e.qua'!
 C:\Avenger\m\shared\Three-D_Object_Viewer_2002.04.04.zip
 [0] Archive type: ZIP
 --> Three-D_Object_Viewer_2002.04.04.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '497e5c96.qua'!
 C:\Avenger\m\shared\WIDI_Recognition_System_Professional_3.3_Build_583_[Serial].zip
 [0] Archive type: ZIP
 --> WIDI_Recognition_System_Professional_3.3_Build_583_[Serial].exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49505c77.qua'!
 C:\Avenger\m\shared\Windows_2000_RDP_Protocol_Security_Vulnerability_Patch_MS02-051.zip
 [0] Archive type: ZIP
 --> Windows_2000_RDP_Protocol_Security_Vulnerability_Patch_MS02-051.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '497a5c97.qua'!
 C:\Avenger\m\shared\WinISO_5.3.zip
 [0] Archive type: ZIP
 --> WinISO_5.3.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '497a5c98.qua'!
 C:\Avenger\m\shared\WiSSH_Standard_Edition_2.79_Build_00_Serial.zip
 [0] Archive type: ZIP
 --> WiSSH_Standard_Edition_2.79_Build_00_Serial.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '495f5c98.qua'!
 C:\Avenger\m\shared\WorldClock_Screen_Saver_4.zip
 [0] Archive type: ZIP
 --> WorldClock_Screen_Saver_4.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '497e5c9e.qua'!
 C:\Avenger\m\shared\Xilisoft_DVD_to_Zune_Converter_4.0.74.0419.zip
 [0] Archive type: ZIP
 --> Xilisoft_DVD_to_Zune_Converter_4.0.74.0419.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49785c99.qua'!
 C:\Avenger\m\shared\Yammy_(Yahoo_Messenger_Archive_Decoder)_0.9_RC1.zip
 [0] Archive type: ZIP
 --> Yammy_(Yahoo_Messenger_Archive_Decoder)_0.9_RC1.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '49795c91.qua'!
 C:\Avenger\m\shared\Zaazu_smileys_1.0.zip
 [0] Archive type: ZIP
 --> Zaazu_smileys_1.0.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '496d5c91.qua'!
 C:\Avenger\m\shared\[app.ita.&.multilinguage]AVG.AntiVirus.Pro.7.5.425.812.keygen.freddy.zip
 [0] Archive type: ZIP
 --> [app.ita.&.multilinguage]AVG.AntiVirus.Pro.7.5.425.812.keygen.freddy.exe
 [DETECTION] Is the TR/Dldr.Bagle.acc Trojan
 [NOTE]      The file was moved to '497c5c92.qua'!
 C:\Users\Emanuele\Desktop\EmuleIncoming\Download prodecter kay System Mechanic Professional 8.0.1.5 Faster with BitTorrent downloader.zip
 [0] Archive type: ZIP
 --> Bittorrent_Downloader_0409_DW_CL_C2P_-1221377068.exe
 [DETECTION] Contains recognition pattern of the DR/Dldr.Agent.afyh.1 dropper
 [NOTE]      The file was moved to '49835ec7.qua'!
 Begin scan in 'D:\' <DATA>
 
 
 End of the scan: sabato 1 novembre 2008  15:02
 Used time: 25:40 Minute(s)
 
 The scan has been done completely.
 
 17375 Scanning directories
 322270 Files were scanned
 131 viruses and/or unwanted programs were found
 0 Files were classified as suspicious:
 0 files were deleted
 0 files were repaired
 131 files were moved to quarantine
 0 files were renamed
 2 Files cannot be scanned
 322137 Files not concerned
 2043 Archives were scanned
 2 Warnings
 131 Notes
 
 te lo devo porstare cosi perchè non mi da la possibilità di  caricarlo su wikisend nel senso che dopo averlo selezionato e vado per caricarlo clicco sul pulsante apposito ama non succede niente come se non fosse un pulsante...non so se hai capito che cosa intendo..la stesa cosa capita con panda ho tentato, tramite il linc che mi hai dato, di fare la scansione ma non mi da la possibilità
 |  | 
	
		| Top |  | 
	
		|  | 
	
		| Sante62 Dio maturo
 
  
  
 Registrato: 27/06/07 17:55
 Messaggi: 3477
 Residenza: Floridia
 
 | 
			
				|  Inviato: 02 Nov 2008 11:21    Oggetto: |   |  
				| 
 |  
				| Sono stati messi tutti in quarantena, a quanto pare.... 
 Se hai Emule disinstallalo pure subito....e poi reinstallalo facendo attenzione a ciò che scarichi...
 
 Se non l'hai ancora fatto, disinstalla Combofix come suggerito, scaricalo nuovamente e fai la scansione...
 
 Se non ho visto male ci sono dei crack scaricati, e sono questi che danno queste sorprese...
 |  | 
	
		| Top |  | 
	
		|  | 
	
		| lele76 Semidio
 
  
 
 Registrato: 13/05/07 18:49
 Messaggi: 310
 
 
 | 
			
				|  Inviato: 02 Nov 2008 19:46    Oggetto: |   |  
				| 
 |  
				| sante le crac a cui ti riferivi sono per esempi queste? --> Altdo_Video_to_3GP_Converter_1.4_(Cracked).exe
 come faccio a toglierle?
 |  | 
	
		| Top |  | 
	
		|  | 
	
		| Riverside Ban a tempo indeterminato
 
  
 
 Registrato: 29/02/08 22:32
 Messaggi: 4396
 Residenza: Riverside House
 
 | 
			
				|  Inviato: 02 Nov 2008 19:57    Oggetto: |   |  
				| 
 |  
				|  	  | Citazione: |  	  | End of the scan: sabato 1 novembre 2008 15:02 Used time: 25:40 Minute(s)
 
 The scan has been done completely.
 
 17375 Scanning directories
 322270 Files were scanned
 131 viruses and/or unwanted programs were found
 0 Files were classified as suspicious:
 0 files were deleted
 0 files were repaired
 131 files were moved to quarantine
 0 files were renamed
 2 Files cannot be scanned
 322137 Files not concerned
 2043 Archives were scanned
 2 Warnings
 131 Notes
 | 
 Una straordinaria collezione da Bagle  ... non c'è che dire
   Devi disinstallare tutti i programmi per i quali hai usato Keygen e crack, altrimenti nel giro di mezza giornata di ritrovi al punto di partenza.
 |  | 
	
		| Top |  | 
	
		|  | 
	
		| lele76 Semidio
 
  
 
 Registrato: 13/05/07 18:49
 Messaggi: 310
 
 
 | 
			
				|  Inviato: 02 Nov 2008 20:08    Oggetto: |   |  
				| 
 |  
				| ciao Riverside... il computer è praticamente nuovo l'unica crack usata da me è quella per office...che disinstallero subito...come faccio a sapere e programmi cracchati perchè cosi li tolgo |  | 
	
		| Top |  | 
	
		|  | 
	
		| Riverside Ban a tempo indeterminato
 
  
 
 Registrato: 29/02/08 22:32
 Messaggi: 4396
 Residenza: Riverside House
 
 | 
			
				|  Inviato: 02 Nov 2008 20:11    Oggetto: |   |  
				| 
 |  
				| Lele e come faccio a saperlo io? sei tu che devi sapere quali sono   Office è craccato? disinstalla tutto il pacchetto.
 Stesso discorso se hai usato crac per licenziare e/o convalidare altri programmi.
 |  | 
	
		| Top |  | 
	
		|  | 
	
		|  |