Hello friends,
I accidentaly found this infected file which was run by me by mistake. The report of the scan by bitdefender is as under
//-----------------------------------------------------------------
//
// Product BitDefender Internet Security v10
// Product 10.2
//
// Created on: 22/08/2007 16:05:28
//
//-----------------------------------------------------------------
Virus Statistics
Scan path : C:\WINDOWS
C:\Program Files
Folders : 4737
Files : 47677
Memory processes scanned : 0
Archives : 2
Runtime packers : 4956
Identified viruses : 3
Infected files : 3
Memory processes infected : 0
Suspect files : 0
Warnings : 0
Disinfected files : 0
Deleted files : 1
Moved files : 0
I/O errors : 0
Scan time : 00:14:11
Scan speed (files/sec) : 56
Virus definitions : 814150
Scan plugins : 16
Archive plugins : 40
Unpack plugins : 6
Mail plugins : 6
System plugins : 5
Virus scan options
Detection
[X] Scan boot sectors
[ ] Memory Processes
[ ] Scan archives
[X] Scan runtime packers
[X] Scan email
File mask
[X] Programs
[ ] All files
[ ] User defined extensions:
[ ] Exclude extensions:;
Action
Infected objects
[ ] Ignore
[X] Disinfect
[ ] Delete
[ ] Move to quarantine
[ ] Prompt user
Second action
[ ] Ignore
[ ] Delete
[X] Move to quarantine
[ ] Prompt user
Virus scan options
[X] Enable warnings
[ ] Enable heuristics
[ ] Show all files in log
[X] Report file: C:\Documents and Settings\All Users\Application Data\Bitdefender\Desktop\Profiles\Logs\quick_scan\1187778928.log
Spyware scan options
[X] Scan for riskware
[ ] Skip dial and applications from scan
[ ] Registry keys
[ ] Cookies
Summary:
C:\WINDOWS\system32\fmoqawww.dll Infected: Trojan.Spy.VBStat.B
C:\WINDOWS\system32\fmoqawww.dll Deleted
C:\WINDOWS\system32\geeba.dll Detected: Adware.Virtumonde.GFR
C:\WINDOWS\system32\geeba.dll Disinfection failed
C:\WINDOWS\system32\geeba.dll Move failed
C:\WINDOWS\system32\yaywxww.dll Infected: MemScan:Trojan.Virtumod.AMA
C:\WINDOWS\system32\yaywxww.dll Disinfection failed
C:\WINDOWS\system32\yaywxww.dll Move failed
I run it several times but i am not able to remove it. Please check it and inform me how i could get rid of the same.
Thanks
Jyot