Jump to content


Log file - Any issues? RemoteAmin not virus issue?


  • You cannot reply to this topic
1 reply to this topic

#1 OFFLINE   jsstevo

    Newbie

  • Members
  • Pip
  • 1 posts

Posted 25 November 2006 - 12:01 PM

Is there anything wrong with my PC refering to the Log below? Getting the RemoteAdmin - this is not a virus issue.

Cheers,

Jonathan

------------------------------------------------------------------------------
KASPERSKY ONLINE SCANNER REPORT
Saturday, November 25, 2006 11:53:17 AM
Operating System: Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600)
Kaspersky Online Scanner version: 5.0.83.0
Kaspersky Anti-Virus database last update: 24/11/2006
Kaspersky Anti-Virus database records: 245377
-------------------------------------------------------------------------------

Scan Settings:
Scan using the following antivirus database: extended
Scan Archives: true
Scan Mail Bases: true

Scan Target - My Computer:
C:\
D:\
E:\
F:\
G:\
H:\
I:\
J:\
K:\

Scan Statistics:
Total number of scanned objects: 89725
Number of viruses found: 1
Number of infected objects: 11 / 0
Number of suspicious objects: 0
Duration of the scan process: 02:15:19

Infected Object Name / Virus Name / Last Action
C:\Documents and Settings\All Users\Application Data\Network Associates\BOPDATA\_Date-20061119_Time-225531953_EnterceptExceptions.dat Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Network Associates\BOPDATA\_Date-20061119_Time-225531953_EnterceptRules.dat Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Network Associates\Common Framework\Db\Agent_MEDIONPC.log Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Network Associates\Common Framework\Db\PrdMgr_MEDIONPC.log Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Network Associates\VirusScan\AccessProtectionLog.txt Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Network Associates\VirusScan\BufferOverflowProtectionLog.txt Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Network Associates\VirusScan\EmailOnDeliveryLog.txt Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Network Associates\VirusScan\OnAccessScanLog.txt Object is locked skipped
C:\Documents and Settings\Jonathan Stevenson\Application Data\Adobe\Acrobat\7.0\medionpc.err Object is locked skipped
C:\Documents and Settings\Jonathan Stevenson\Application Data\Adobe\Acrobat\7.0\Updater\udlog.txt Object is locked skipped
C:\Documents and Settings\Jonathan Stevenson\Application Data\Microsoft\Outlook\Outlook.NK2 Object is locked skipped
C:\Documents and Settings\Jonathan Stevenson\Application Data\Microsoft\Outlook\Outlook.srs Object is locked skipped
C:\Documents and Settings\Jonathan Stevenson\Application Data\Microsoft\Templates\Normal.dot Object is locked skipped
C:\Documents and Settings\Jonathan Stevenson\Application Data\Microsoft\Word\~WRA3513.as$ Object is locked skipped
C:\Documents and Settings\Jonathan Stevenson\Application Data\Microsoft\Word\~WRL2708.tmp Object is locked skipped
C:\Documents and Settings\Jonathan Stevenson\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\Jonathan Stevenson\Local Settings\Application Data\Microsoft\Feeds Cache\index.dat Object is locked skipped
C:\Documents and Settings\Jonathan Stevenson\Local Settings\Application Data\Microsoft\Messenger\jsstevo@hotmail.com\SharingMetadata\Logs\Dfsr.log Object is locked skipped
C:\Documents and Settings\Jonathan Stevenson\Local Settings\Application Data\Microsoft\Messenger\jsstevo@hotmail.com\SharingMetadata\pending.dat Object is locked skipped
C:\Documents and Settings\Jonathan Stevenson\Local Settings\Application Data\Microsoft\Messenger\jsstevo@hotmail.com\SharingMetadata\Working\database_4EE0_E852_E0E8_4237\dfsr.db Object is locked skipped
C:\Documents and Settings\Jonathan Stevenson\Local Settings\Application Data\Microsoft\Messenger\jsstevo@hotmail.com\SharingMetadata\Working\database_4EE0_E852_E0E8_4237\fsr.log Object is locked skipped
C:\Documents and Settings\Jonathan Stevenson\Local Settings\Application Data\Microsoft\Messenger\jsstevo@hotmail.com\SharingMetadata\Working\database_4EE0_E852_E0E8_4237\tmp.edb Object is locked skipped
C:\Documents and Settings\Jonathan Stevenson\Local Settings\Application Data\Microsoft\Outlook\JSS Medion.pst Object is locked skipped
C:\Documents and Settings\Jonathan Stevenson\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\Jonathan Stevenson\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\Jonathan Stevenson\Local Settings\Application Data\Microsoft\Windows Live Contacts\jsstevo@hotmail.com\real\members.stg Object is locked skipped
C:\Documents and Settings\Jonathan Stevenson\Local Settings\Application Data\Microsoft\Windows Live Contacts\jsstevo@hotmail.com\shadow\members.stg Object is locked skipped
C:\Documents and Settings\Jonathan Stevenson\Local Settings\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\Jonathan Stevenson\Local Settings\History\History.IE5\MSHist012006112420061125\index.dat Object is locked skipped
C:\Documents and Settings\Jonathan Stevenson\Local Settings\Temp\Acr310.tmp Object is locked skipped
C:\Documents and Settings\Jonathan Stevenson\Local Settings\Temp\Adobelm_Cleanup.0001.dir.0008\~efe2.tmp Object is locked skipped
C:\Documents and Settings\Jonathan Stevenson\Local Settings\Temp\Adobelm_Cleanup.0001.dir.0011\~efe2.tmp Object is locked skipped
C:\Documents and Settings\Jonathan Stevenson\Local Settings\Temp\Perflib_Perfdata_b04.dat Object is locked skipped
C:\Documents and Settings\Jonathan Stevenson\Local Settings\Temp\~DF252A.tmp Object is locked skipped
C:\Documents and Settings\Jonathan Stevenson\Local Settings\Temp\~DF3807.tmp Object is locked skipped
C:\Documents and Settings\Jonathan Stevenson\Local Settings\Temp\~DF5C89.tmp Object is locked skipped
C:\Documents and Settings\Jonathan Stevenson\Local Settings\Temp\~DFBF12.tmp Object is locked skipped
C:\Documents and Settings\Jonathan Stevenson\Local Settings\Temp\~DFC0E8.tmp Object is locked skipped
C:\Documents and Settings\Jonathan Stevenson\Local Settings\Temp\~DFF530.tmp Object is locked skipped
C:\Documents and Settings\Jonathan Stevenson\Local Settings\Temp\~DFF58B.tmp Object is locked skipped
C:\Documents and Settings\Jonathan Stevenson\Local Settings\Temp\~WRF0007.tmp Object is locked skipped
C:\Documents and Settings\Jonathan Stevenson\Local Settings\Temp\~WRS3521.tmp Object is locked skipped
C:\Documents and Settings\Jonathan Stevenson\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\Jonathan Stevenson\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\Jonathan Stevenson\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\LocalService\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped
C:\Program Files\LogMeIn\LMIinit.dll Infected: not-a-virus:RemoteAdmin.Win32.RemotelyAnywhere.a skipped
C:\Program Files\LogMeIn\ramaint.exe Infected: not-a-virus:RemoteAdmin.Win32.RemotelyAnywhere.a skipped
C:\Program Files\LogMeIn\update\2-30-547.bak\LogMeIn.exe Infected: not-a-virus:RemoteAdmin.Win32.RemotelyAnywhere.a skipped
C:\Program Files\LogMeIn\update\2-30-547.bak\ramaint.exe Infected: not-a-virus:RemoteAdmin.Win32.RemotelyAnywhere.a skipped
C:\Program Files\LogMeIn\update\2-30-555.bak\ramaint.exe Infected: not-a-virus:RemoteAdmin.Win32.RemotelyAnywhere.a skipped
C:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped
C:\System Volume Information\_restore{759BDE9C-F1A2-4FD8-8940-23D55B10EBBC}\RP124\A0131592.dll Infected: not-a-virus:RemoteAdmin.Win32.RemotelyAnywhere.a skipped
C:\System Volume Information\_restore{759BDE9C-F1A2-4FD8-8940-23D55B10EBBC}\RP138\A0141080.dll Infected: not-a-virus:RemoteAdmin.Win32.RemotelyAnywhere.a skipped
C:\System Volume Information\_restore{759BDE9C-F1A2-4FD8-8940-23D55B10EBBC}\RP138\A0141081.dll Infected: not-a-virus:RemoteAdmin.Win32.RemotelyAnywhere.a skipped
C:\System Volume Information\_restore{759BDE9C-F1A2-4FD8-8940-23D55B10EBBC}\RP138\A0141082.dll Infected: not-a-virus:RemoteAdmin.Win32.RemotelyAnywhere.a skipped
C:\System Volume Information\_restore{759BDE9C-F1A2-4FD8-8940-23D55B10EBBC}\RP138\A0141083.dll Infected: not-a-virus:RemoteAdmin.Win32.RemotelyAnywhere.a skipped
C:\System Volume Information\_restore{759BDE9C-F1A2-4FD8-8940-23D55B10EBBC}\RP140\A0142058.dll Infected: not-a-virus:RemoteAdmin.Win32.RemotelyAnywhere.a skipped
C:\System Volume Information\_restore{759BDE9C-F1A2-4FD8-8940-23D55B10EBBC}\RP151\change.log Object is locked skipped
C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped
C:\WINDOWS\SchedLgU.Txt Object is locked skipped
C:\WINDOWS\SoftwareDistribution\EventCache\{67CF7DAA-58EB-461E-9A54-F099E8FC742A}.bin Object is locked skipped
C:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked skipped
C:\WINDOWS\Sti_Trace.log Object is locked skipped
C:\WINDOWS\system32\CatRoot2\edb.log Object is locked skipped
C:\WINDOWS\system32\CatRoot2\tmp.edb Object is locked skipped
C:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\default Object is locked skipped
C:\WINDOWS\system32\config\default.LOG Object is locked skipped
C:\WINDOWS\system32\config\Internet.evt Object is locked skipped
C:\WINDOWS\system32\config\SAM Object is locked skipped
C:\WINDOWS\system32\config\SAM.LOG Object is locked skipped
C:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\SECURITY Object is locked skipped
C:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped
C:\WINDOWS\system32\config\software Object is locked skipped
C:\WINDOWS\system32\config\software.LOG Object is locked skipped
C:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\system Object is locked skipped
C:\WINDOWS\system32\config\system.LOG Object is locked skipped
C:\WINDOWS\system32\h323log.txt Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP Object is locked skipped
C:\WINDOWS\wiadebug.log Object is locked skipped
C:\WINDOWS\wiaservc.log Object is locked skipped
C:\WINDOWS\WindowsUpdate.log Object is locked skipped
D:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped

Scan process completed.

#2 OFFLINE   rridgely

    I hate computers

  • Moderators
  • 8,858 posts
  • Gender:Male

Posted 26 November 2006 - 04:59 PM

You use this software?
http://www.remotelyanywhere.com/

I guess as long as you know its something you installed and is valid then everything is fine.