--------------------------------------------------------- ewido security suite - Scan report --------------------------------------------------------- + Created on: 4:47:48 PM, 9/24/2005 + Report-Checksum: A69689AF + Scan result: HKLM\SOFTWARE\Classes\AppID\Wallpaper.DLL -> Spyware.HotBar : Cleaned with backup HKLM\SOFTWARE\Classes\AppID\WeatherOnTray.EXE -> Spyware.HotBar : Cleaned with backup HKLM\SOFTWARE\Classes\AppID\{0507FDDE-F3B7-49F5-9E8F-C557E991F39B} -> Spyware.HotBar : Cleaned with backup HKLM\SOFTWARE\Classes\CLSID\{013A482E-1893-4f49-8D41-AC89156A6955} -> Spyware.HotBar : Cleaned with backup HKLM\SOFTWARE\Classes\CLSID\{204F937E-519E-4597-96FA-8F1F59F3CB6D} -> Spyware.HotBar : Cleaned with backup HKLM\SOFTWARE\Classes\CLSID\{31D0C6FF-5897-4A57-8005-A50FCE4CE159} -> Spyware.HotBar : Cleaned with backup HKLM\SOFTWARE\Classes\CLSID\{354382db-df55-4da9-85a3-41696a0f510f} -> Spyware.HotBar : Cleaned with backup HKLM\SOFTWARE\Classes\CLSID\{459729AC-727D-4D97-B18A-72EE224EFEC0} -> Spyware.StopSign : Cleaned with backup HKLM\SOFTWARE\Classes\CLSID\{6FB2639A-4BA3-4531-8DB8-FAB03E0A8FFD} -> Spyware.HotBar : Cleaned with backup HKLM\SOFTWARE\Classes\CLSID\{BB83FD23-AC96-472D-8AA2-7D8560A61D1A} -> Spyware.eAcceleration : Cleaned with backup HKLM\SOFTWARE\Classes\CLSID\{C398F337-51D5-40C3-AA3B-684E833D8888} -> Spyware.eAcceleration : Cleaned with backup HKLM\SOFTWARE\Classes\CLSID\{EA232A0A-46F8-4D44-A30B-50321518A828} -> Spyware.HotBar : Cleaned with backup HKLM\SOFTWARE\Classes\Contact.Contacts -> Spyware.HotBar : Cleaned with backup HKLM\SOFTWARE\Classes\Contact.Contacts\CLSID -> Spyware.HotBar : Cleaned with backup HKLM\SOFTWARE\Classes\Contact.Contacts\CurVer -> Spyware.HotBar : Cleaned with backup HKLM\SOFTWARE\Classes\HbCoreServices.LfgAx -> Spyware.HotBar : Cleaned with backup HKLM\SOFTWARE\Classes\HbCoreServices.LfgAx\CLSID -> Spyware.HotBar : Cleaned with backup HKLM\SOFTWARE\Classes\HbCoreServices.LfgAx\CurVer -> Spyware.HotBar : Cleaned with backup HKLM\SOFTWARE\Classes\HbToolbar.HbHtmlMenuUI -> Spyware.HotBar : Cleaned with backup HKLM\SOFTWARE\Classes\HbToolbar.HbHtmlMenuUI\CLSID -> Spyware.HotBar : Cleaned with backup HKLM\SOFTWARE\Classes\HbToolbar.HbHtmlMenuUI\CurVer -> Spyware.HotBar : Cleaned with backup HKLM\SOFTWARE\Classes\Hotbar.HbTravelCompareBar -> Spyware.HotBar : Cleaned with backup HKLM\SOFTWARE\Classes\Hotbar.HbTravelCompareBar\CLSID -> Spyware.HotBar : Cleaned with backup HKLM\SOFTWARE\Classes\Hotbar.HbTravelCompareBar\CurVer -> Spyware.HotBar : Cleaned with backup HKLM\SOFTWARE\Classes\Interface\{A1772E14-9291-454E-AEDE-02161FBC3E59} -> Spyware.HotBar : Cleaned with backup HKLM\SOFTWARE\Classes\Interface\{EA232A0A-46F8-4D44-A30B-50321518A828} -> Spyware.HotBar : Cleaned with backup HKLM\SOFTWARE\Classes\MSEaid.Gd\GLSID -> Spyware.eAcceleration : Cleaned with backup HKLM\SOFTWARE\Classes\Tetra.Tetra -> Spyware.eAcceleration : Cleaned with backup HKLM\SOFTWARE\Classes\Tetra.Tetra\CLSID -> Spyware.eAcceleration : Cleaned with backup HKLM\SOFTWARE\Classes\Tetra.Tetra\CurVer -> Spyware.eAcceleration : Cleaned with backup HKLM\SOFTWARE\Classes\TypeLib\{522985F4-BA43-45A0-9B20-AB5F82C0FF7E} -> Spyware.HotBar : Cleaned with backup HKLM\SOFTWARE\Classes\TypeLib\{5FC3BB0F-D421-4587-AA1F-0E27358E0905} -> Spyware.eAcceleration : Cleaned with backup HKLM\SOFTWARE\Classes\TypeLib\{963DD0FF-4836-4DE4-9590-D7EFE8F62F8D} -> Spyware.eAcceleration : Cleaned with backup HKLM\SOFTWARE\Classes\TypeLib\{AB357854-7A72-4FBE-9382-CC74B45A3ADD} -> Spyware.HotBar : Cleaned with backup HKLM\SOFTWARE\Classes\Wallpaper.WallpaperManager -> Spyware.HotBar : Cleaned with backup HKLM\SOFTWARE\Classes\Wallpaper.WallpaperManager\CLSID -> Spyware.HotBar : Cleaned with backup HKLM\SOFTWARE\Classes\Wallpaper.WallpaperManager\CurVer -> Spyware.HotBar : Cleaned with backup HKLM\SOFTWARE\PowerScan -> Spyware.PowerScan : Cleaned with backup HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Explorer Bars\{8CBA1B49-8144-4721-A7B1-64C578C9EED7} -> Spyware.SideFind : Cleaned with backup HKU\.DEFAULT\Software\PowerScan -> Spyware.PowerScan : Cleaned with backup HKU\.DEFAULT\Software\sais -> Spyware.180Solutions : Cleaned with backup HKU\S-1-5-21-2973469740-1906189821-2232259120-1003\Software\Microsoft\Internet Explorer\Explorer Bars\{8CBA1B49-8144-4721-A7B1-64C578C9EED7} -> Spyware.SideFind : Cleaned with backup HKU\S-1-5-18\Software\Microsoft\Internet Explorer\Explorer Bars\{8CBA1B49-8144-4721-A7B1-64C578C9EED7} -> Spyware.SideFind : Cleaned with backup HKU\S-1-5-18\Software\PowerScan -> Spyware.PowerScan : Cleaned with backup HKU\S-1-5-18\Software\sais -> Spyware.180Solutions : Cleaned with backup C:\Documents and Settings\LocalService\Cookies\system@atdmt[2].txt -> Spyware.Cookie.Atdmt : Cleaned with backup C:\Documents and Settings\LocalService\Cookies\system@overture[1].txt -> Spyware.Cookie.Overture : Cleaned with backup C:\Documents and Settings\LocalService\Cookies\system@ysbweb[1].txt -> Spyware.Cookie.Ysbweb : Cleaned with backup C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\4BU18FMH\ibar[1].js -> TrojanDownloader.IstBar.ad : Cleaned with backup C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\4BU18FMH\powerscan[1].exe -> Spyware.PowerScan : Cleaned with backup C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\4BU18FMH\SAcc.prod.v1110.07sep2005.exe[1] -> Spyware.SurfAccuracy : Cleaned with backup C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\4BU18FMH\sfbho13[1].dll -> Spyware.SideFind : Cleaned with backup C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\4BU18FMH\ysb[1].dll -> Spyware.YourSiteBar : Cleaned with backup C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\E9YN6DQ3\stubinstaller5041[1].ex_ -> TrojanDownloader.Small.asf : Cleaned with backup C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\I1ERGH0D\sidefind13[1].dll -> Spyware.SideFind : Cleaned with backup C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\I1ERGH0D\ysb_regular[1].cab/ysbactivex.dll -> TrojanDownloader.IstBar : Cleaned with backup C:\Documents and Settings\Owner\Cookies\owner@ad.yieldmanager[2].txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup C:\Documents and Settings\Owner\Cookies\owner@ads.pointroll[2].txt -> Spyware.Cookie.Pointroll : Cleaned with backup C:\Documents and Settings\Owner\Cookies\owner@adtech[2].txt -> Spyware.Cookie.Adtech : Cleaned with backup C:\Documents and Settings\Owner\Cookies\owner@atdmt[2].txt -> Spyware.Cookie.Atdmt : Cleaned with backup C:\Documents and Settings\Owner\Cookies\owner@centrport[1].txt -> Spyware.Cookie.Centrport : Cleaned with backup C:\Documents and Settings\Owner\Cookies\owner@cityclub.gamingpromo[2].txt -> Spyware.Cookie.Gamingpromo : Cleaned with backup C:\Documents and Settings\Owner\Cookies\owner@com[2].txt -> Spyware.Cookie.Com : Cleaned with backup C:\Documents and Settings\Owner\Cookies\owner@doubleclick[1].txt -> Spyware.Cookie.Doubleclick : Cleaned with backup C:\Documents and Settings\Owner\Cookies\owner@gamingpromo[1].txt -> Spyware.Cookie.Gamingpromo : Cleaned with backup C:\Documents and Settings\Owner\Cookies\owner@mediaplex[2].txt -> Spyware.Cookie.Mediaplex : Cleaned with backup C:\Documents and Settings\Owner\Cookies\owner@overture[1].txt -> Spyware.Cookie.Overture : Cleaned with backup C:\Documents and Settings\Owner\Cookies\owner@perf.overture[1].txt -> Spyware.Cookie.Overture : Cleaned with backup C:\Documents and Settings\Owner\Cookies\owner@questionmarket[1].txt -> Spyware.Cookie.Questionmarket : Cleaned with backup C:\Documents and Settings\Owner\Cookies\owner@server.iad.liveperson[1].txt -> Spyware.Cookie.Liveperson : Cleaned with backup C:\Documents and Settings\Owner\Cookies\owner@serving-sys[1].txt -> Spyware.Cookie.Serving-sys : Cleaned with backup C:\Documents and Settings\Owner\Cookies\owner@statcounter[2].txt -> Spyware.Cookie.Statcounter : Cleaned with backup C:\Documents and Settings\Owner\Cookies\owner@statse.webtrendslive[2].txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup C:\Documents and Settings\Owner\Cookies\owner@tribalfusion[1].txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup C:\Documents and Settings\Owner\Cookies\owner@www.burstbeacon[2].txt -> Spyware.Cookie.Burstbeacon : Cleaned with backup C:\Documents and Settings\Owner\Cookies\owner@www.burstnet[1].txt -> Spyware.Cookie.Burstnet : Cleaned with backup C:\Documents and Settings\Owner\Local Settings\Temp\Del88.tmp -> Spyware.180Solutions : Cleaned with backup C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\03KB4DCL\ibar[1].js -> TrojanDownloader.IstBar.ad : Cleaned with backup C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\03KB4DCL\ysb_regular[1].cab/ysbactivex.dll -> TrojanDownloader.IstBar : Cleaned with backup C:\Program Files\Acceleration Software\Anti-Virus\engine_setup.exe -> Spyware.eAcceleration : Cleaned with backup C:\Program Files\Acceleration Software\Anti-Virus\vclnr_setup_update.exe -> Spyware.eAcceleration : Cleaned with backup C:\Program Files\Common Files\eAcceleration\eAnthComponents\cnr_setup.exe -> Spyware.eAcceleration : Cleaned with backup C:\Program Files\Common Files\eAcceleration\eAnthComponents\ssupload_setup.exe -> Spyware.eAcceleration : Cleaned with backup C:\Program Files\Common Files\eAcceleration\eAnthComponents\syssnap_install.exe -> Spyware.eAcceleration : Cleaned with backup C:\Program Files\Common Files\eAcceleration\eAnthComponents\vclnr_setup.exe -> Spyware.eAcceleration : Cleaned with backup C:\Program Files\Common Files\eAcceleration\Installer\eaccel_updater.exe -> Spyware.eAcceleration : Cleaned with backup C:\Program Files\Common Files\Verizon Online\SFP\vzbb.dll -> Spyware.MegaSearch : Cleaned with backup C:\Program Files\SideFind\sfbho.dll -> Spyware.SideFind : Cleaned with backup C:\RECYCLER\S-1-5-21-2973469740-1906189821-2232259120-1003\Dc4\powerscan.exe -> Spyware.PowerScan : Cleaned with backup C:\RECYCLER\S-1-5-21-2973469740-1906189821-2232259120-1003\Dc5\SAcc.exe -> Spyware.SurfAccuracy : Cleaned with backup C:\WINDOWS\system32\remon.sys -> Trojan.Rootkit.Agent.ab : Cleaned with backup C:\WINDOWS\system32\spoolv.sys -> Trojan.Rootkit.Agent.ab : Cleaned with backup C:\WINDOWS\Temp\180sainstallersilsais1.exe/clientax.dll -> Spyware.180Solutions : Cleaned with backup C:\WINDOWS\Temp\180sainstallersilsais1.exe/clientax.dll -> Spyware.180Solutions : Cleaned with backup C:\WINDOWS\Temp\Del17.tmp -> TrojanDownloader.Small.asf : Cleaned with backup C:\WINDOWS\Temp\res18.tmp -> Spyware.180Solutions : Cleaned with backup ::Report End