Logfile of The Avenger Version 2.0, (c) by Swandog46
http://swandog46.geekstogo.com
Platform: Windows XP
*******************
Script file opened successfully.
Script file read successfully.
Backups directory opened successfully at C:\Avenger
*******************
Beginning to process script file:
Rootkit scan active.
Hidden driver "TDSSserv.sys" found!
ImagePath: \systemroot\system32\drivers\TDSSletu.sys
Start Type: 1 (System)
Rootkit scan completed.
File "C:\sqmdata03.sqm" deleted successfully.
File "C:\sqmnoopt03.sqm" deleted successfully.
File "C:\sqmdata02.sqm" deleted successfully.
File "C:\sqmnoopt02.sqm" deleted successfully.
File "C:\sqmdata01.sqm" deleted successfully.
File "C:\sqmnoopt01.sqm" deleted successfully.
File "C:\sqmdata00.sqm" deleted successfully.
File "C:\sqmnoopt00.sqm" deleted successfully.
File "C:\Documents and Settings\john\Application Data\Google\runhh6110411.exe" deleted successfully.
File "C:\Documents and Settings\john\nah_bbfo.exe" deleted successfully.
File "H:\Autorun.inf" deleted successfully.
Completed script processing.
*******************
Finished! Terminate.
http://swandog46.geekstogo.com
Platform: Windows XP
*******************
Script file opened successfully.
Script file read successfully.
Backups directory opened successfully at C:\Avenger
*******************
Beginning to process script file:
Rootkit scan active.
Hidden driver "TDSSserv.sys" found!
ImagePath: \systemroot\system32\drivers\TDSSletu.sys
Start Type: 1 (System)
Rootkit scan completed.
File "C:\sqmdata03.sqm" deleted successfully.
File "C:\sqmnoopt03.sqm" deleted successfully.
File "C:\sqmdata02.sqm" deleted successfully.
File "C:\sqmnoopt02.sqm" deleted successfully.
File "C:\sqmdata01.sqm" deleted successfully.
File "C:\sqmnoopt01.sqm" deleted successfully.
File "C:\sqmdata00.sqm" deleted successfully.
File "C:\sqmnoopt00.sqm" deleted successfully.
File "C:\Documents and Settings\john\Application Data\Google\runhh6110411.exe" deleted successfully.
File "C:\Documents and Settings\john\nah_bbfo.exe" deleted successfully.
File "H:\Autorun.inf" deleted successfully.
Completed script processing.
*******************
Finished! Terminate.