Scan Control Dumped @ 19:21:54 17-04-05 RegVal Trace: Worm.Korgo please submit: HKEY_LOCAL_MACHINE File: Software\Microsoft\Windows\CurrentVersion\Run [Cryptographic Service=C:\WINDOWS\System32\zyuuq.exe] Suspicious Filename: Dual extensions File: c:\my documents\downloads\spam fighter\spamfighter.pro.exe Positive identification: Adware.EZula.g2 File: c:\program files\yahoo!\ypsr\quarantine\ppq14d.tmp Positive identification: Adware.EZula.g File: c:\program files\yahoo!\ypsr\quarantine\ppq154.tmp Positive identification: Adware.EZula.g1 File: c:\program files\yahoo!\ypsr\quarantine\ppq159.tmp Positive identification: Trojan.Win32.Nail File: c:\windows\nail.exe Positive identification (DLL): Adware.PopCap (dll) File: c:\windows\downloaded program files\popcaploader.dll Positive identification: Adware.Sahat.o3 File: c:\windows\system32\bln02nqv.exe Positive identification: Adware.Sahat.o3 File: c:\windows\system32\hochkaod3.exe Positive identification: Adware.Sahat.o3 File: c:\windows\system32\q17i9a4j.exe Suspicious Filename: Dual extensions File: e:\windows\pcdoc.bat.pif Suspicious Filename: Dual extensions File: e:\windows\p2p.exe.exe Positive identification: Adware.WildTangent.a File: e:\windows\wt\updater\wcmdmgrl.exe Positive identification: Adware.WildTangent.a File: e:\recycled\nprotect\00047228.exe