Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

Bloodhound.W32.EP [CLOSED]


  • This topic is locked This topic is locked

#31
Rawe

Rawe

    Visiting Staff

  • Member
  • PipPipPipPipPipPipPip
  • 4,746 posts

I did use the microsoft difrag thing yesterday. but i will download and try the other one. and for the report thing all i did was select all, copy and paste but ill try that again.

Actually I need you to scroll down the log to the point it got cut off (it got cut off because this forum software has a limit for how much can be written to the post) and then paste starting from there.

This is the part it got cut off, start from here :whistling:

15:25: | End of Session, 06-08-22 |
15:24: Removal process completed. Elapsed time 00:01:32
15:24: Warning: Failed to del
  • 0

Advertisements


#32
D.J. Juego

D.J. Juego

    Member

  • Topic Starter
  • Member
  • PipPip
  • 45 posts
15:24: Warning: Failed to delete profile shadow file ".log". Reason: The system cannot find the file specified
15:24: Warning: Failed to delete profile shadow file "C:\WINDOWS\Temp\SSTBC.tmp". Reason: The system cannot find the file specified
15:24: Warning: Failed to delete profile shadow file ".log". Reason: The system cannot find the file specified
15:24: Quarantining All Traces: mirar webband
15:24: Quarantining All Traces: surfsidekick
15:24: Quarantining All Traces: internetoptimizer
15:24: Quarantining All Traces: bookedspace
15:23: Removal process initiated
15:21: Sweep Status: 4 Items Found
15:21: Traces Found: 7
15:21: Memory Sweep Complete, Elapsed Time: 00:00:24
15:21: Sweep Canceled
15:20: Starting Memory Sweep
15:20: HKU\WRSS_Profile_S-1-5-21-2903779921-2727959649-1724784859-1007\software\microsoft\windows\currentversion\run\ || surfsidekick 3 (ID = 1055335)
15:20: Found Adware: surfsidekick
15:20: HKU\WRSS_Profile_S-1-5-21-2903779921-2727959649-1724784859-501\software\microsoft\windows\currentversion\run\ || internet optimizer (ID = 1193580)
15:20: Found Adware: internetoptimizer
15:20: HKCR\clsid\{c68ae9c0-0909-4ddc-b661-c1afb9f59898}\inprocserver32\ (ID = 1353164)
15:20: HKCR\clsid\{9a9c9b69-f908-4aab-8d0c-10ea8997f37e}\inprocserver32\ (ID = 1353158)
15:20: HKCR\clsid\{9a9c9b68-f908-4aab-8d0c-10ea8997f37e}\inprocserver32\ (ID = 1353157)
15:20: HKCR\clsid\{8a0dcbda-6e20-489c-9041-c1e8a0352e75}\inprocserver32\ (ID = 1353156)
15:20: Found Adware: mirar webband
15:20: HKCR\clsid\{0019c3e2-dd48-4a6d-abcd-8d32436323d9}\inprocserver32\ (ID = 1353135)
15:20: Found Adware: bookedspace
15:20: Sweep initiated using definitions version 691
15:20: Spy Sweeper 5.0.5.1286 started
15:20: | Start of Session, 06-08-22 |
********
16:28: Removal process completed. Elapsed time 00:05:59
16:28: Preparing to restart your computer. Please wait...
16:28: Warning: Failed to delete profile shadow file "C:\WINDOWS\Temp\SST613.tmp". Reason: The system cannot find the file specified
16:28: Warning: Failed to delete profile shadow file ".log". Reason: The system cannot find the file specified
16:28: Warning: Failed to delete profile shadow file "C:\WINDOWS\Temp\SST613.tmp". Reason: The system cannot find the file specified
16:28: Warning: Failed to delete profile shadow file ".log". Reason: The system cannot find the file specified
16:28: Warning: Failed to delete profile shadow file "C:\WINDOWS\Temp\SST613.tmp". Reason: The system cannot find the file specified
16:28: Warning: Failed to delete profile shadow file ".log". Reason: The system cannot find the file specified
16:28: Warning: Failed to delete profile shadow file "C:\WINDOWS\Temp\SST613.tmp". Reason: The system cannot find the file specified
16:28: Warning: Failed to delete profile shadow file ".log". Reason: The system cannot find the file specified
16:28: Warning: Failed to delete profile shadow file "C:\WINDOWS\Temp\SST615.tmp". Reason: The system cannot find the file specified
16:28: Warning: Failed to delete profile shadow file ".log". Reason: The system cannot find the file specified
16:28: Warning: Failed to delete profile shadow file "C:\WINDOWS\Temp\SST615.tmp". Reason: The system cannot find the file specified
16:28: Warning: Failed to delete profile shadow file ".log". Reason: The system cannot find the file specified
16:28: Warning: Failed to delete profile shadow file "C:\WINDOWS\Temp\SST615.tmp". Reason: The system cannot find the file specified
16:28: Warning: Failed to delete profile shadow file ".log". Reason: The system cannot find the file specified
16:28: Warning: Failed to delete profile shadow file "C:\WINDOWS\Temp\SST615.tmp". Reason: The system cannot find the file specified
16:28: Warning: Failed to delete profile shadow file ".log". Reason: The system cannot find the file specified
16:28: Warning: Failed to delete profile shadow file "C:\WINDOWS\Temp\SST615.tmp". Reason: The system cannot find the file specified
16:28: Warning: Failed to delete profile shadow file ".log". Reason: The system cannot find the file specified
16:28: Warning: Failed to delete profile shadow file "C:\WINDOWS\Temp\SST615.tmp". Reason: The system cannot find the file specified
16:28: Warning: Failed to delete profile shadow file ".log". Reason: The system cannot find the file specified
16:27: Warning: Failed to delete profile shadow file "C:\WINDOWS\Temp\SST615.tmp". Reason: The system cannot find the file specified
16:27: Warning: Failed to delete profile shadow file ".log". Reason: The system cannot find the file specified
16:27: Warning: Failed to delete profile shadow file "C:\WINDOWS\Temp\SST615.tmp". Reason: The system cannot find the file specified
16:27: Warning: Failed to delete profile shadow file ".log". Reason: The system cannot find the file specified
16:27: Warning: Failed to delete profile shadow file "C:\WINDOWS\Temp\SST615.tmp". Reason: The system cannot find the file specified
16:27: Warning: Failed to delete profile shadow file ".log". Reason: The system cannot find the file specified
16:27: Warning: Failed to delete profile shadow file "C:\WINDOWS\Temp\SST615.tmp". Reason: The system cannot find the file specified
16:27: Warning: Failed to delete profile shadow file ".log". Reason: The system cannot find the file specified
16:27: Warning: Failed to delete profile shadow file "C:\WINDOWS\Temp\SST615.tmp". Reason: The system cannot find the file specified
16:27: Warning: Failed to delete profile shadow file ".log". Reason: The system cannot find the file specified
16:27: Warning: Failed to delete profile shadow file "C:\WINDOWS\Temp\SST615.tmp". Reason: The system cannot find the file specified
16:27: Warning: Failed to delete profile shadow file ".log". Reason: The system cannot find the file specified
16:27: Warning: Failed to delete profile shadow file "C:\WINDOWS\Temp\SST615.tmp". Reason: The system cannot find the file specified
16:27: Warning: Failed to delete profile shadow file ".log". Reason: The system cannot find the file specified
16:27: Warning: Failed to delete profile shadow file "C:\WINDOWS\Temp\SST615.tmp". Reason: The system cannot find the file specified
16:27: Warning: Failed to delete profile shadow file ".log". Reason: The system cannot find the file specified
16:27: Warning: Failed to delete profile shadow file "C:\WINDOWS\Temp\SST615.tmp". Reason: The system cannot find the file specified
16:27: Warning: Failed to delete profile shadow file ".log". Reason: The system cannot find the file specified
16:27: Warning: Failed to delete profile shadow file "C:\WINDOWS\Temp\SST615.tmp". Reason: The system cannot find the file specified
16:27: Warning: Failed to delete profile shadow file ".log". Reason: The system cannot find the file specified
16:27: Warning: Failed to delete profile shadow file "C:\WINDOWS\Temp\SST615.tmp". Reason: The system cannot find the file specified
16:27: Warning: Failed to delete profile shadow file ".log". Reason: The system cannot find the file specified
16:27: Warning: Failed to delete profile shadow file "C:\WINDOWS\Temp\SST615.tmp". Reason: The system cannot find the file specified
16:27: Warning: Failed to delete profile shadow file ".log". Reason: The system cannot find the file specified
16:27: Warning: Failed to delete profile shadow file "C:\WINDOWS\Temp\SST615.tmp". Reason: The system cannot find the file specified
16:27: Warning: Failed to delete profile shadow file ".log". Reason: The system cannot find the file specified
16:27: Warning: Failed to delete profile shadow file "C:\WINDOWS\Temp\SST616.tmp". Reason: The system cannot find the file specified
16:27: Warning: Failed to delete profile shadow file ".log". Reason: The system cannot find the file specified
16:27: Warning: Failed to delete profile shadow file "C:\WINDOWS\Temp\SST616.tmp". Reason: The system cannot find the file specified
16:27: Warning: Failed to delete profile shadow file ".log". Reason: The system cannot find the file specified
16:27: Warning: Failed to delete profile shadow file "C:\WINDOWS\Temp\SST616.tmp". Reason: The system cannot find the file specified
16:27: Warning: Failed to delete profile shadow file ".log". Reason: The system cannot find the file specified
16:27: Warning: Failed to delete profile shadow file "C:\WINDOWS\Temp\SST616.tmp". Reason: The system cannot find the file specified
16:27: Warning: Failed to delete profile shadow file ".log". Reason: The system cannot find the file specified
16:27: Warning: Failed to delete profile shadow file "C:\WINDOWS\Temp\SST616.tmp". Reason: The system cannot find the file specified
16:27: Warning: Failed to delete profile shadow file ".log". Reason: The system cannot find the file specified
16:27: Warning: Failed to delete profile shadow file "C:\WINDOWS\Temp\SST616.tmp". Reason: The system cannot find the file specified
16:27: Warning: Failed to delete profile shadow file ".log". Reason: The system cannot find the file specified
16:27: Warning: Failed to delete profile shadow file "C:\WINDOWS\Temp\SST616.tmp". Reason: The system cannot find the file specified
16:27: Warning: Failed to delete profile shadow file ".log". Reason: The system cannot find the file specified
16:27: Warning: Failed to delete profile shadow file "C:\WINDOWS\Temp\SST616.tmp". Reason: The system cannot find the file specified
16:27: Warning: Failed to delete profile shadow file ".log". Reason: The system cannot find the file specified
16:27: Warning: Failed to delete profile shadow file "C:\WINDOWS\Temp\SST616.tmp". Reason: The system cannot find the file specified
16:27: Warning: Failed to delete profile shadow file ".log". Reason: The system cannot find the file specified
16:27: Warning: Failed to delete profile shadow file "C:\WINDOWS\Temp\SST616.tmp". Reason: The system cannot find the file specified
16:27: Warning: Failed to delete profile shadow file ".log". Reason: The system cannot find the file specified
16:27: Warning: Failed to delete profile shadow file "C:\WINDOWS\Temp\SST616.tmp". Reason: The system cannot find the file specified
16:27: Warning: Failed to delete profile shadow file ".log". Reason: The system cannot find the file specified
16:26: Warning: Failed to delete profile shadow file "C:\WINDOWS\Temp\SST616.tmp". Reason: The system cannot find the file specified
16:26: Warning: Failed to delete profile shadow file ".log". Reason: The system cannot find the file specified
16:26: Warning: Failed to delete profile shadow file "C:\WINDOWS\Temp\SST616.tmp". Reason: The system cannot find the file specified
16:26: Warning: Failed to delete profile shadow file ".log". Reason: The system cannot find the file specified
16:26: Warning: Failed to delete profile shadow file "C:\WINDOWS\Temp\SST616.tmp". Reason: The system cannot find the file specified
16:26: Warning: Failed to delete profile shadow file ".log". Reason: The system cannot find the file specified
16:26: Warning: Failed to delete profile shadow file "C:\WINDOWS\Temp\SST616.tmp". Reason: The system cannot find the file specified
16:26: Warning: Failed to delete profile shadow file ".log". Reason: The system cannot find the file specified
16:26: Warning: Failed to delete profile shadow file "C:\WINDOWS\Temp\SST616.tmp". Reason: The system cannot find the file specified
16:26: Warning: Failed to delete profile shadow file ".log". Reason: The system cannot find the file specified
16:26: Warning: Failed to delete profile shadow file "C:\WINDOWS\Temp\SST616.tmp". Reason: The system cannot find the file specified
16:26: Warning: Failed to delete profile shadow file ".log". Reason: The system cannot find the file specified
16:26: Warning: Failed to delete profile shadow file "C:\WINDOWS\Temp\SST616.tmp". Reason: The system cannot find the file specified
16:26: Warning: Failed to delete profile shadow file ".log". Reason: The system cannot find the file specified
16:26: Quarantining All Traces: winantispyware 2005
16:26: Quarantining All Traces: sexfiles dialers
16:26: Quarantining All Traces: ezula ilookup
16:26: Quarantining All Traces: zenosearchassistant
16:26: Quarantining All Traces: exact yubilee
16:26: Quarantining All Traces: wfgtech
16:26: Quarantining All Traces: exact cashback/bargain buddy
16:26: Quarantining All Traces: forethought
16:26: Quarantining All Traces: command
16:26: Quarantining All Traces: targetsaver
16:25: Quarantining All Traces: ist surf accuracy
16:25: Quarantining All Traces: ist powerscan
16:25: Quarantining All Traces: findthewebsiteyouneed hijack
16:25: Quarantining All Traces: ist software
16:25: Quarantining All Traces: ist sidefind
16:25: Quarantining All Traces: screensavers
16:25: Quarantining All Traces: moneytree
16:25: Quarantining All Traces: mirar webband
16:25: Quarantining All Traces: powerstrip
16:25: Quarantining All Traces: 7search
16:25: Quarantining All Traces: shopathomeselect
16:25: Quarantining All Traces: marketscore
16:25: Quarantining All Traces: quicklink search toolbar
16:25: Quarantining All Traces: zquest
16:25: Quarantining All Traces: dollarrevenue
16:25: Quarantining All Traces: safesearch
16:25: Quarantining All Traces: surfsidekick
16:25: Quarantining All Traces: maxifiles
16:25: Quarantining All Traces: hotbar
16:25: Quarantining All Traces: starware toolbar
16:25: Quarantining All Traces: p2pnetwork
16:25: Quarantining All Traces: enbrowser
16:25: Quarantining All Traces: elitemediagroup-mediamotor
16:25: Quarantining All Traces: internetoptimizer
16:25: Quarantining All Traces: bookedspace
16:25: c:\windows\system32\oerbtyo.dll is in use. It will be removed on reboot.
16:25: c:\documents and settings\all users\start menu\programs\startup\aeebj.exe is in use. It will be removed on reboot.
16:25: c:\windows\system32\ygjed.exe is in use. It will be removed on reboot.
16:25: c:\windows\system32\iwsadq.exe is in use. It will be removed on reboot.
16:25: clkoptimizer is in use. It will be removed on reboot.
16:25: Quarantining All Traces: clkoptimizer
16:23: Quarantining All Traces: rbot
16:23: Quarantining All Traces: look2me
16:23: Quarantining All Traces: 180search assistant/zango
16:23: Quarantining All Traces: ist istbar
16:22: Removal process initiated
16:22: Traces Found: 517
16:22: Full Sweep has completed. Elapsed time 00:56:59
16:22: File Sweep Complete, Elapsed Time: 00:55:17
16:21: Warning: Failed to access drive E:
16:21: Warning: Failed to access drive D:
16:21: C:\Documents and Settings\Ben\Desktop\backups\backup-20060822-095757-109.inf (ID = 208224)
16:21: c:\documents and settings\bill\local settings\temp\sahupdate\selectrebatesapi_.ini (ID = 298178)
16:21: c:\documents and settings\bill\local settings\temp\sahupdate\selectrebatesuninstall_.ini (ID = 298180)
16:21: Found Adware: shopathomeselect
16:21: Warning: Failed to open file "c:\program files\ewido anti-spyware 4.0\ewido.err". The operation completed successfully
16:21: Warning: Failed to open file "c:\program files\ewido anti-spyware 4.0\ewido.dmp". The operation completed successfully
16:20: C:\Documents and Settings\Guest\Favorites\Living\Dating.lnk (ID = 75396)
16:20: C:\WINDOWS\SYSTEM32\msnav32.ax (ID = 220229)
16:20: C:\Documents and Settings\Ben\Favorites\Living\Dating.lnk (ID = 75396)
16:20: c:\documents and settings\pam\favorites\living\dating.lnk (ID = 75396)
16:20: Found Adware: sexfiles dialers
16:20: c:\documents and settings\pam\start menu\programs\startup\zeno.lnk (ID = 146127)
16:18: c:\windows\system32\oerbtyo.dll (ID = 268933)
16:18: C:\WINDOWS\SYSTEM32\ntheo.dat (ID = 268995)
16:18: c:\documents and settings\all users\start menu\programs\startup\aeebj.exe (ID = 268995)
16:18: c:\windows\system32\ygjed.exe (ID = 268934)
16:18: HKU\WRSS_Profile_S-1-5-21-2903779921-2727959649-1724784859-1007\Software\Microsoft\Windows\CurrentVersion\Run || ekdte (ID = 0)
16:18: HKU\WRSS_Profile_S-1-5-21-2903779921-2727959649-1724784859-1008\Software\Microsoft\Windows\CurrentVersion\Run || ekdte (ID = 0)
16:18: HKU\S-1-5-21-2903779921-2727959649-1724784859-1009\Software\Microsoft\Windows\CurrentVersion\Run || ekdte (ID = 0)
16:18: HKLM\Software\Microsoft\Windows\CurrentVersion\Run || hnwrdo (ID = 0)
16:18: c:\windows\system32\iwsadq.exe (ID = 268995)
16:18: c:\windows\system32\jbpinve.exe (ID = 268932)
16:17: c:\documents and settings\pam\shared\_\16 blocks tc.exe (ID = 269648)
16:17: c:\documents and settings\pam\shared\_\the nightmare before christmas.exe (ID = 269648)
16:17: c:\documents and settings\pam\shared\_\mr. deeds dvdrip.exe (ID = 269648)
16:17: c:\documents and settings\pam\shared\_\firewall dvdrip.exe (ID = 269648)
16:17: c:\documents and settings\pam\shared\_\aeon flux (2005) dvdrip.exe (ID = 269648)
16:17: c:\documents and settings\pam\shared\_\vista build 5384.4 32bit dvd iso.exe (ID = 269648)
16:17: c:\documents and settings\pam\shared\_\secure token v2.6.0.3152.exe (ID = 269648)
16:17: c:\documents and settings\pam\shared\_\text express deluxe v1.3.exe (ID = 269648)
16:17: c:\documents and settings\pam\shared\_\security task manager v1.6f.exe (ID = 269648)
16:17: c:\documents and settings\pam\shared\_\plusreader v1.0.exe (ID = 269648)
16:17: c:\documents and settings\pam\shared\_\climail v1.5.0.exe (ID = 269648)
16:17: c:\documents and settings\pam\shared\_\aspmaker v5.0.exe (ID = 269648)
16:17: c:\documents and settings\pam\shared\_\nokia pc suite 6.8.22.exe (ID = 269648)
16:17: c:\documents and settings\pam\shared\_\k-lite codec pack update.exe (ID = 269648)
16:17: c:\documents and settings\pam\shared\_\plextools professional xl v3.09 incl crack.exe (ID = 269648)
16:17: c:\documents and settings\pam\shared\_\microsoft soccer scoreboard [cool new ware].exe (ID = 269648)
16:17: c:\documents and settings\pam\shared\_\zonealarm® security suite beta pro.exe (ID = 269648)
16:17: c:\documents and settings\pam\shared\_\zonealarm 6.5.690.000 beta free.exe (ID = 269648)
16:17: c:\documents and settings\bill\local settings\temp\be1f.tmp (ID = 268587)
16:16: c:\documents and settings\bill\local settings\temp\cmdinst.exe (ID = 231664)
16:16: c:\documents and settings\pam\shared\_\batch and print pro v2.02.exe (ID = 269648)
16:16: c:\documents and settings\pam\shared\_\monitorit v8.0.04.exe (ID = 269648)
16:16: c:\documents and settings\pam\shared\_\mp3 wav studio v5.78.60322.exe (ID = 269648)
16:16: c:\documents and settings\bill\local settings\temporary internet files\content.ie5\ozkz2luh\installer[1].exe (ID = 231664)
16:16: c:\documents and settings\bill\local settings\temporary internet files\content.ie5\qj25e76t\cfg32[1].exe (ID = 294103)
16:16: c:\documents and settings\pam\shared\_\winrar 3.60 beta 4 + patch.exe (ID = 269648)
16:16: c:\documents and settings\pam\shared\_\easy cd-da extractor 9.1.1.2.exe (ID = 269648)
16:16: c:\documents and settings\pam\shared\_\microsoft validation patch 1.5.5.3.exe (ID = 269648)
16:16: c:\documents and settings\pam\shared\_\google earth pro 2006.exe (ID = 269648)
16:16: c:\documents and settings\pam\shared\_\rapidleecher v 4.5 beta.exe (ID = 269648)
16:16: c:\documents and settings\pam\shared\_\winrar gold plus extras.exe (ID = 269648)
16:15: c:\documents and settings\pam\shared\_\xlsconverterx activex v1.3.exe (ID = 269648)
16:15: c:\documents and settings\pam\shared\_\xilisoft rm converter v2.1.59.0118b.exe (ID = 269648)
16:15: c:\documents and settings\pam\shared\_\xilisoft mp3 wav converter v2.1.44.0111.exe (ID = 269648)
16:15: c:\documents and settings\pam\shared\_\workgroupshare v2.1.2 build 248.exe (ID = 269648)
16:15: c:\documents and settings\pam\shared\_\winter town 3d screensaver v1.0.exe (ID = 269648)
16:15: c:\documents and settings\pam\shared\_\winboost v4.90.exe (ID = 269648)
16:15: c:\documents and settings\pam\shared\_\webserver 3.5.17.exe (ID = 269648)
16:15: c:\documents and settings\pam\shared\_\unhackme v3.0.3.exe (ID = 269648)
16:15: c:\documents and settings\pam\shared\_\ultraiso 7.65.1269.exe (ID = 269648)
16:15: c:\documents and settings\pam\shared\_\spystopper pro v4.40.exe (ID = 269648)
16:15: c:\documents and settings\pam\shared\_\spystopper pro v4.4.exe (ID = 269648)
16:15: c:\documents and settings\pam\shared\_\spy emergency 2005.exe (ID = 269648)
16:15: c:\documents and settings\pam\shared\_\solsuite 2006 6.0.exe (ID = 269648)
16:15: c:\documents and settings\pam\shared\_\softcab protoport personal firewall v1.exe (ID = 269648)
16:15: c:\documents and settings\pam\shared\_\smart pix manager v8.0.exe (ID = 269648)
16:15: c:\documents and settings\pam\shared\_\sky bubbles deluxe v1.0.exe (ID = 269648)
16:15: c:\documents and settings\pam\shared\_\sds helpdesk v6.1.5.exe (ID = 269648)
16:15: c:\documents and settings\pam\shared\_\sbmav disk cleaner v2.35.exe (ID = 269648)
16:15: c:\documents and settings\pam\shared\_\saveflash 3.0.61.exe (ID = 269648)
16:15: c:\documents and settings\pam\shared\_\registry help pro 1.19.exe (ID = 269648)
16:15: c:\documents and settings\pam\shared\_\red eye remover.exe (ID = 269648)
16:15: c:\documents and settings\pam\shared\_\quicktftp desktop pro v3.1.exe (ID = 269648)
16:15: c:\documents and settings\pam\shared\_\qimage v2006.209.exe (ID = 269648)
16:15: c:\documents and settings\pam\shared\_\powerclip 2005.exe (ID = 269648)
16:15: c:\documents and settings\pam\shared\_\papervalet 2.1.exe (ID = 269648)
16:15: c:\documents and settings\pam\shared\_\active webcam v7.0.exe (ID = 269648)
16:15: c:\documents and settings\pam\shared\_\winrar crystal special edition.exe (ID = 269648)
16:15: c:\documents and settings\pam\shared\_\bearshare pro 5.2.1.2.exe (ID = 269648)
16:15: c:\documents and settings\pam\shared\_\winrescue xp v1.08.33.exe (ID = 269648)
16:15: c:\documents and settings\pam\shared\_\business translator v6.00.5510.exe (ID = 269648)
16:15: c:\documents and settings\pam\shared\_\ad-aware se pro 1.0.6 r1.exe (ID = 269648)
16:15: c:\documents and settings\pam\shared\_\entervision broadcaster v4.0.36.exe (ID = 269648)
16:15: c:\documents and settings\bill\local settings\temporary internet files\content.ie5\qj25e76t\installerwnus[2].exe (ID = 271215)
16:14: c:\documents and settings\pam\local settings\temporary internet files\content.ie5\q50761i9\ag[1].exe (ID = 254879)
16:14: c:\documents and settings\pam\shared\_\foldersizes v3.4.0.0.exe (ID = 269648)
16:14: c:\documents and settings\pam\shared\_\no1 dvd ripper v1.3.50.exe (ID = 269648)
16:14: c:\documents and settings\pam\shared\_\f-secure internet security 2006.exe (ID = 269648)
16:14: c:\documents and settings\pam\shared\_\microsoft antispyware 1.7.exe (ID = 269648)
16:14: c:\documents and settings\pam\shared\_\trojan remover v6.4.7.exe (ID = 269648)
16:14: c:\documents and settings\pam\shared\_\proxy switcher professional.exe (ID = 269648)
16:14: c:\documents and settings\pam\shared\_\ccleaner 1.27.260.exe (ID = 269648)
16:14: c:\documents and settings\pam\shared\_\ftprush unicode 1.0.0.581.exe (ID = 269648)
16:14: C:\Documents and Settings\Guest\Local Settings\Temporary Internet Files\Content.IE5\6JYLAZOX\package_MARKETING27[1].exe (ID = 50843)
16:14: c:\documents and settings\pam\shared\_\reget deluxe v4.2 build 263 rc.exe (ID = 269648)
16:14: c:\documents and settings\pam\shared\_\ultra video joiner v3.3.4.exe (ID = 269648)
16:14: c:\documents and settings\pam\shared\_\web page maker v2.1.1.exe (ID = 269648)
16:14: c:\documents and settings\pam\shared\_\amazing photo editor v5.3.1.exe (ID = 269648)
16:14: c:\documents and settings\pam\shared\_\atomic alarm clock v3.2.exe (ID = 269648)
16:14: c:\documents and settings\pam\shared\_\mp3 remix player 3.205.exe (ID = 269648)
16:13: c:\documents and settings\bill\local settings\temp\f652703.exe (ID = 268995)
16:13: c:\documents and settings\pam\shared\_\messiah studio 2.2a.exe (ID = 269648)
16:13: c:\documents and settings\pam\shared\_\photorescue pro v3.9.exe (ID = 269648)
16:13: c:\documents and settings\pam\shared\_\music collector pro v6.103.exe (ID = 269648)
16:13: c:\documents and settings\pam\shared\_\color7 music editor v4.2.exe (ID = 269648)
16:13: c:\documents and settings\pam\shared\_\effective file search v3.95.exe (ID = 269648)
16:13: c:\documents and settings\pam\shared\_\aoa dvd ripper v3.92.exe (ID = 269648)
16:13: c:\documents and settings\pam\shared\_\usbtrace v1.3.exe (ID = 269648)
16:13: c:\documents and settings\pam\shared\_\batch video converter v2.0.0.exe (ID = 269648)
16:13: c:\documents and settings\pam\shared\_\no1 dvd ripper 2.1.1.exe (ID = 269648)
16:13: c:\documents and settings\pam\shared\_\magic utilities 2006 4.20.exe (ID = 269648)
16:13: c:\documents and settings\pam\shared\_\imtoo dvd to pocket pc ripper v4.0.38.0112.exe (ID = 269648)
16:13: c:\documents and settings\pam\shared\_\imtoo mov converter v2.1.57.1228b.exe (ID = 269648)
16:13: c:\documents and settings\pam\shared\_\dna baser v2.0.exe (ID = 269648)
16:13: c:\documents and settings\pam\shared\_\skip manager v1.73.exe (ID = 269648)
16:13: c:\documents and settings\pam\shared\_\etecad file manager v2.6.exe (ID = 269648)
16:13: c:\documents and settings\pam\shared\_\hardcopy pro v2.7.exe (ID = 269648)
16:13: c:\documents and settings\pam\shared\_\vb.net to c.sharp converter v1.52.exe (ID = 269648)
16:13: c:\documents and settings\pam\shared\_\selteco menu maker v4.14.exe (ID = 269648)
16:13: c:\documents and settings\pam\shared\_\mooma dvd creator v2.0.exe (ID = 269648)
16:13: c:\documents and settings\pam\shared\_\spyblocker pro v2.1.exe (ID = 269648)
16:13: c:\documents and settings\pam\shared\_\smart memo v2.20.exe (ID = 269648)
16:13: c:\documents and settings\pam\shared\_\realtools v2.6.0.exe (ID = 269648)
16:13: c:\documents and settings\pam\shared\_\pdf-convert pdf encrypt tool v2.0.exe (ID = 269648)
16:13: c:\documents and settings\pam\shared\_\novobot v3.0.0.295.exe (ID = 269648)
16:13: c:\documents and settings\bill\local settings\temp\f93563343.exe (ID = 268995)
16:13: c:\documents and settings\pam\shared\_\crash dvdrip.exe (ID = 269648)
16:13: c:\documents and settings\pam\shared\_\easy cd-da extractor professional 9.1.1 build 1.exe (ID = 269648)
16:13: c:\documents and settings\pam\shared\_\earthview 3.4.9.exe (ID = 269648)
16:13: c:\documents and settings\pam\shared\_\1st javascript editor pro v3.48.exe (ID = 269648)
16:13: c:\documents and settings\pam\shared\_\proshow gold v2.6.1775.exe (ID = 269648)
16:13: c:\documents and settings\pam\shared\_\station ripper v2.33c.exe (ID = 269648)
16:12: c:\documents and settings\pam\shared\_\wisecam v1.0.exe (ID = 269648)
16:12: c:\documents and settings\pam\shared\_\token2 plus v4.6.0.1410.exe (ID = 269648)
16:12: c:\documents and settings\pam\shared\_\microangelo toolset v6.0.exe (ID = 269648)
16:12: c:\documents and settings\pam\shared\_\all my movies 3.5 build 1192.exe (ID = 269648)
16:12: c:\documents and settings\pam\shared\_\plato video creator 3.16.exe (ID = 269648)
16:12: c:\documents and settings\pam\shared\_\toolbar studio 1.8.1.14.exe (ID = 269648)
16:12: c:\documents and settings\pam\shared\_\avid xpress pro hd v5.2.2.exe (ID = 269648)
16:12: c:\documents and settings\pam\shared\_\vuescan professional edition 8.3.27.exe (ID = 269648)
16:12: c:\documents and settings\pam\shared\_\no1 video converter 4.1.2.exe (ID = 269648)
16:12: c:\documents and settings\pam\shared\_\myslideshow gold 2.6.3.712.exe (ID = 269648)
16:12: c:\documents and settings\pam\shared\_\spyware doctor 3.exe (ID = 269648)
16:12: c:\documents and settings\pam\shared\_\netconceal anonymizer 3.0.035.02.exe (ID = 269648)
16:12: c:\documents and settings\bill\local settings\temp\temporary internet files\content.ie5\opqn8tif\rcverlib[2].exe (ID = 209705)
16:12: c:\documents and settings\pam\shared\_\mailwasher pro v. 5.2.exe (ID = 269648)
16:12: c:\documents and settings\pam\shared\_\orchid medical spa v5.23.exe (ID = 269648)
16:12: c:\documents and settings\pam\shared\_\winmpg dvd ripper v1.5.exe (ID = 269648)
16:12: c:\documents and settings\pam\shared\_\advanced url catalog v1.21.exe (ID = 269648)
16:12: c:\documents and settings\pam\shared\_\multimedia builder mp3 v4.9.62.exe (ID = 269648)
16:12: c:\documents and settings\pam\shared\_\filemaker pro 8.0.exe (ID = 269648)
16:12: c:\documents and settings\pam\shared\_\proshow producer 2.6.1749.exe (ID = 269648)
16:12: c:\documents and settings\pam\shared\_\553soft icon changer 1.80.exe (ID = 269648)
16:12: c:\documents and settings\pam\shared\_\dbs file deleter 1.7.exe (ID = 269648)
16:12: c:\documents and settings\pam\shared\_\dbs midi2wav 2.0.1.677.exe (ID = 269648)
16:12: c:\documents and settings\pam\shared\_\dbs winaudio recorder 2.0.42.exe (ID = 269648)
16:12: C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\GNU96RM3\sfexd001[1].htm (ID = 158779)
16:12: C:\WINDOWS\SYSTEM32\ossproxy.exe (ID = 69219)
16:12: Found Adware: marketscore
16:11: c:\documents and settings\pam\shared\_\selteco menu maker 4.1.4.exe (ID = 269648)
16:11: c:\documents and settings\pam\shared\_\koolmoves flash editor v5.2.4 w libraries.exe (ID = 269648)
16:11: c:\documents and settings\pam\shared\_\avg anti-virus professional edition 7.1.394 build 75.exe (ID = 269648)
16:11: c:\documents and settings\pam\shared\_\stop motion pro v4.01.exe (ID = 269648)
16:11: c:\documents and settings\pam\shared\_\massmail express 1.2.6.9.exe (ID = 269648)
16:11: c:\documents and settings\pam\shared\_\oleansoft hidden camera 2.19.exe (ID = 269648)
16:11: c:\documents and settings\bill\local settings\temp\adwsetup_upd.exe (ID = 246178)
16:11: Found Adware: ezula ilookup
16:11: c:\documents and settings\pam\shared\_\spystopper pro 4.60.exe (ID = 269648)
16:11: c:\documents and settings\pam\shared\_\nexus imager v1.00.exe (ID = 269648)
16:11: c:\documents and settings\pam\shared\_\dual dvd copy gold v4.07.exe (ID = 269648)
16:11: c:\documents and settings\pam\shared\_\alive dvd ripper v1.2.0.9.exe (ID = 269648)
16:11: c:\documents and settings\bill\local settings\temp\f770390.exe (ID = 268995)
16:11: c:\documents and settings\pam\shared\_\newyeah cd ripper v2.10.exe (ID = 269648)
16:11: c:\documents and settings\pam\shared\_\uhs reader v6.00.exe (ID = 269648)
16:11: c:\documents and settings\pam\shared\_\cucusoft psp movie converter v2.07.exe (ID = 269648)
16:11: c:\documents and settings\pam\shared\_\javascript menu builder platinum 2006 v1.0.exe (ID = 269648)
16:11: c:\documents and settings\pam\shared\_\vcom fix-it utilities professional v6.0.2.3.exe (ID = 269648)
16:11: c:\documents and settings\bill\local settings\temporary internet files\content.ie5\udgfkzox\ez[1].exe (ID = 301840)
16:11: Found Adware: zenosearchassistant
16:11: c:\documents and settings\pam\shared\_\womble mpeg video wizard dvd v03.2006.exe (ID = 269648)
16:11: c:\documents and settings\pam\shared\_\easy karaoke player 3.0.60.exe (ID = 269648)
16:11: c:\documents and settings\pam\shared\_\ipscanner 1.90.exe (ID = 269648)
16:11: c:\documents and settings\pam\shared\_\truly random 1.40.exe (ID = 269648)
16:11: c:\documents and settings\pam\shared\_\xls to image converter v2.0.exe (ID = 269648)
16:11: c:\documents and settings\pam\shared\_\yanicsoft winxp manager v4.96.1.exe (ID = 269648)
16:11: c:\documents and settings\pam\shared\_\br photoarchiver v4.2.11.exe (ID = 269648)
16:11: c:\documents and settings\bill\local settings\temp\be27e.tmp (ID = 268587)
16:11: Found Adware: exact yubilee
16:10: C:\WINDOWS\pf78.exe (ID = 244430)
16:10: c:\documents and settings\pam\local settings\temporary internet files\content.ie5\q50761i9\ltndmain[1].dll (ID = 242384)
16:10: Found Adware: wfgtech
16:10: c:\documents and settings\bill\local settings\temp\tsinstall_4_0_4_0_b4.exe (ID = 193496)
16:10: c:\documents and settings\bill\local settings\temp\e6b30.tmp (ID = 238243)
16:10: Found Adware: quicklink search toolbar
16:10: c:\documents and settings\pam\shared\_\digital camera poster creator v2.5.exe (ID = 269648)
16:10: c:\documents and settings\pam\shared\_\kyodai mahjongg 2006 1.2.exe (ID = 269648)
16:10: c:\documents and settings\pam\shared\_\easy dvd extractor v2.2.0.exe (ID = 269648)
16:10: c:\documents and settings\pam\shared\_\sony acid pro 6.0 build 214.exe (ID = 269648)
16:10: c:\documents and settings\pam\shared\_\mahjong joe v1.1.0.0.exe (ID = 269648)
16:10: c:\documents and settings\pam\shared\_\corel photo album 6.exe (ID = 269648)
16:09: c:\documents and settings\bill\local settings\temporary internet files\content.ie5\qj25e76t\defender20[1].exe (ID = 295803)
16:09: c:\documents and settings\bill\local settings\temp\s42o..exe (ID = 246713)
16:09: c:\documents and settings\pam\shared\_\ip tunnelmanager 1.3.exe (ID = 269648)
16:09: c:\documents and settings\pam\shared\_\golden records ver. 1.01.exe (ID = 269648)
16:09: c:\documents and settings\pam\shared\_\xsoftware dvdx platinum v2.1.0.exe (ID = 269648)
16:09: c:\documents and settings\pam\shared\_\divx 6.1 create bundle.exe (ID = 269648)
16:09: c:\documents and settings\pam\shared\_\kaspersky anti-hacker v1.9 build 40.exe (ID = 269648)
16:09: c:\documents and settings\pam\shared\_\magic utilities 2006 4.30.exe (ID = 269648)
16:09: c:\documents and settings\bill\my documents\download\sinstaller.exe (ID = 298012)
16:09: c:\documents and settings\pam\shared\_\xzxzxzxzxzxz.exe (ID = 269648)
16:09: c:\documents and settings\bill\local settings\temp\temporary internet files\content.ie5\opqn8tif\rdfx4[1].exe (ID = 290920)
16:09: Found Adware: zquest
16:08: c:\documents and settings\pam\shared\_\firegraphic 8.5.810.exe (ID = 269648)
16:07: c:\documents and settings\pam\shared\_\amaze v5.01.exe (ID = 269648)
16:07: c:\documents and settings\pam\shared\_\error killer v2.6.exe (ID = 269648)
16:07: c:\documents and settings\pam\shared\_\complete anonymous web surfing v3.4 re.exe (ID = 269648)
16:07: c:\documents and settings\bill\local settings\temporary internet files\content.ie5\qj25e76t\mptft[1].cab (ID = 296157)
16:07: c:\documents and settings\bill\local settings\temp\f3b110.tmp (ID = 296157)
16:07: c:\documents and settings\pam\shared\_\keystroke converter v4.7.exe (ID = 269648)
16:07: c:\documents and settings\pam\shared\_\notebook 2000 5.5.exe (ID = 269648)
16:06: c:\documents and settings\bill\local settings\temporary internet files\content.ie5\udgfkzox\newname20[1].exe (ID = 295805)
16:05: c:\documents and settings\pam\shared\_\mootools polygon cruncher v7.0.exe (ID = 269648)
16:05: c:\documents and settings\pam\shared\_\messengerlog 5 pro v5.20.exe (ID = 269648)
16:05: c:\documents and settings\pam\shared\_\jspmaker v1.0.1.exe (ID = 269648)
16:05: c:\documents and settings\pam\shared\_\ashampoo magic defrag v1.10.exe (ID = 269648)
16:04: c:\documents and settings\pam\shared\_\futuremark 3dmark 2006 build 1.0.2.exe (ID = 269648)
16:04: c:\documents and settings\pam\shared\_\goldview32 v2.1.186.exe (ID = 269648)
16:03: C:\WINDOWS\SYSTEM32\DRIVERS\dfdr.sys (ID = 188536)
16:01: c:\documents and settings\bill\local settings\temp\tp7543.exe (ID = 209705)
16:01: Found Adware: clkoptimizer
16:01: c:\documents and settings\bill\local settings\temp\i1f.tmp (ID = 253411)
16:01: c:\documents and settings\pam\shared\_\alo power audio converter 1.2.exe (ID = 269648)
15:58: c:\documents and settings\pam\local settings\temp\bb.exe (ID = 50567)
15:58: Found Adware: exact cashback/bargain buddy
15:58: c:\documents and settings\pam\local settings\temp\fwwy1vq.exe (ID = 64568)
15:57: c:\documents and settings\bill\local settings\temporary internet files\content.ie5\ozkz2luh\stub_venthh[1].exe (ID = 294169)
15:57: c:\documents and settings\pam\shared\_\extra drive creator professional v6.5.exe (ID = 269648)
15:57: c:\documents and settings\pam\shared\_\dual dvd copy gold v4.08.exe (ID = 269648)
15:57: c:\documents and settings\pam\shared\_\vip organizer v2.0.3.327.exe (ID = 269648)
15:57: c:\documents and settings\pam\shared\_\wolfram research mathematica 5.1.exe (ID = 269648)
15:57: c:\documents and settings\pam\shared\_\winxp manager 4.89.2.exe (ID = 269648)
15:56: c:\documents and settings\pam\shared\_\webroot window washer 6.0.1.40.exe (ID = 269648)
15:54: c:\documents and settings\pam\local settings\temporary internet files\content.ie5\q50761i9\winats[1].cab (ID = 208237)
15:54: c:\documents and settings\pam\shared\_\mahjong suite 2006 v3.2.exe (ID = 269648)
15:54: c:\documents and settings\pam\shared\_\hyena v6.7.exe (ID = 269648)
15:54: Found Trojan Horse: rbot
15:53: c:\documents and settings\bill\local settings\temporary internet files\content.ie5\qj25e76t\keyboard20[1].exe (ID = 295804)
15:51: c:\documents and settings\bill\local settings\temp\i3f.tmp (ID = 253411)
15:50: c:\documents and settings\bill\local settings\temporary internet files\content.ie5\bjwxat6f\ftsdl[1].exe (ID = 296401)
15:50: Found Adware: forethought
15:50: c:\documents and settings\bill\local settings\temp\i33.tmp (ID = 253411)
15:50: c:\documents and settings\bill\local settings\temporary internet files\content.ie5\udgfkzox\mte3ndi6odoxng[1].exe (ID = 185985)
15:50: Found Adware: command
15:49: c:\documents and settings\bill\local settings\temporary internet files\content.ie5\qj25e76t\drsmartload45a[1].exe (ID = 295806)
15:48: c:\documents and settings\bill\local settings\temp\i1de.tmp (ID = 253411)
15:46: c:\documents and settings\bill\local settings\temporary internet files\content.ie5\bjwxat6f\drsmartload46a[2].exe (ID = 295807)
15:46: Found Adware: dollarrevenue
15:43: C:\Program Files\180Solutions\sais_gdf.dat (ID = 70571)
15:36: C:\Documents and Settings\Ben\Desktop\backups\backup-20060822-095758-655.inf (ID = 74044)
15:36: c:\documents and settings\pam\local settings\temporary internet files\content.ie5\qijkl95o\sfexd001[1].htm (ID = 158779)
15:32: c:\documents and settings\bill\local settings\temporary internet files\content.ie5\bjwxat6f\appwrap[1].exe (ID = 65721)
15:32: c:\documents and settings\bill\local settings\temp\uninstall.exe (ID = 72675)
15:32: c:\documents and settings\bill\local settings\temporary internet files\content.ie5\qj25e76t\tsupdate2[2].ini (ID = 193498)
15:31: c:\documents and settings\pam\start menu\programs\power scan\power scan.lnk (ID = 72676)
15:31: c:\documents and settings\bill\local settings\temporary internet files\content.ie5\udgfkzox\appwrap[1].exe (ID = 65722)
15:31: Found Adware: look2me
15:31: c:\documents and settings\bill\local settings\temporary internet files\content.ie5\ozkz2luh\stub_113_4_0_4_0[1].exe (ID = 193995)
15:31: Found Adware: targetsaver
15:30: c:\documents and settings\bill\local settings\temp\mndcntas.tmp (ID = 246193)
15:30: Found Adware: safesearch
15:28: C:\Program Files\180Solutions (5 subtraces) (ID = 2147486728)
15:28: c:\documents and settings\pam\start menu\programs\power scan (1 subtraces) (ID = 2147486834)
15:28: c:\documents and settings\pam\application data\starware (51 subtraces) (ID = 2147487071)
15:28: C:\Program Files\SurfAccuracy (12 subtraces) (ID = 2147489030)
15:28: Found Adware: ist surf accuracy
15:28: C:\Program Files\Common Files\WinSoftware (1 subtraces) (ID = 2147490614)
15:28: C:\WINDOWS\zAbstract (7 subtraces) (ID = 2147518024)
15:27: Starting File Sweep
15:27: Warning: Failed to access drive A:
15:27: Registry Sweep Complete, Elapsed Time:00:01:13
15:27: HKU\S-1-5-18\software\microsoft\internet explorer\extensions\cmdmapping\ || {77fbf9b8-1d37-4ff2-9ced-192d8e3aba6f} (ID = 1021025)
15:27: HKU\S-1-5-18\software\microsoft\internet explorer\toolbar\webbrowser\ || {d49e9d35-254c-4c6a-9d17-95018d228ff5} (ID = 142862)
15:27: HKU\S-1-5-18\software\microsoft\internet explorer\toolbar\webbrowser\ || {2d51d869-c36b-42bd-ae68-0a81bc771fa5} (ID = 142860)
15:27: HKU\S-1-5-18\software\microsoft\internet explorer\extensions\cmdmapping\ || {10e42047-deb9-4535-a118-b3f6ec39b807} (ID = 141778)
15:27: HKU\S-1-5-18\software\microsoft\internet explorer\explorer bars\{8cba1b49-8144-4721-a7b1-64c578c9eed7}\ (ID = 141777)
15:27: HKU\WRSS_Profile_S-1-5-21-2903779921-2727959649-1724784859-1007\software\system\sysuid\ (ID = 731748)
15:27: HKU\WRSS_Profile_S-1-5-21-2903779921-2727959649-1724784859-1007\software\microsoft\ole\ || p2pnetwork (ID = 359374)
15:27: HKU\WRSS_Profile_S-1-5-21-2903779921-2727959649-1724784859-1007\system\currentcontrolset\control\lsa\ || p2pnetwork (ID = 359373)
15:27: HKU\WRSS_Profile_S-1-5-21-2903779921-2727959649-1724784859-1007\software\zanu\ (ID = 147923)
15:27: HKU\WRSS_Profile_S-1-5-21-2903779921-2727959649-1724784859-1007\software\surfsidekick3\ (ID = 143412)
15:27: HKU\WRSS_Profile_S-1-5-21-2903779921-2727959649-1724784859-1007\software\microsoft\internet explorer\urlsearchhooks\ || {02ee5b04-f144-47bb-83fb-a60bd91b74a9} (ID = 143397)
15:27: HKU\WRSS_Profile_S-1-5-21-2903779921-2727959649-1724784859-1007\software\starware\ (ID = 142866)
15:27: HKU\WRSS_Profile_S-1-5-21-2903779921-2727959649-1724784859-1007\software\microsoft\internet explorer\toolbar\webbrowser\ || {d49e9d35-254c-4c6a-9d17-95018d228ff5} (ID = 142862)
15:27: HKU\WRSS_Profile_S-1-5-21-2903779921-2727959649-1724784859-1007\software\microsoft\internet explorer\toolbar\webbrowser\ || {2d51d869-c36b-42bd-ae68-0a81bc771fa5} (ID = 142860)
15:27: HKU\WRSS_Profile_S-1-5-21-2903779921-2727959649-1724784859-1007\software\microsoft\internet explorer\extensions\cmdmapping\ || {10e42047-deb9-4535-a118-b3f6ec39b807} (ID = 141778)
15:27: HKU\WRSS_Profile_S-1-5-21-2903779921-2727959649-1724784859-1007\software\microsoft\internet explorer\explorer bars\{8cba1b49-8144-4721-a7b1-64c578c9eed7}\ (ID = 141777)
15:27: HKU\WRSS_Profile_S-1-5-21-2903779921-2727959649-1724784859-1007\software\powerscan\ (ID = 136823)
15:27: Found Adware: ist powerscan
15:27: HKU\WRSS_Profile_S-1-5-21-2903779921-2727959649-1724784859-1007\software\salm\ (ID = 135792)
15:27: HKU\WRSS_Profile_S-1-5-21-2903779921-2727959649-1724784859-1007\software\sais\ (ID = 135790)
15:27: HKU\WRSS_Profile_S-1-5-21-2903779921-2727959649-1724784859-1007\software\180ax\ (ID = 135615)
15:27: HKU\WRSS_Profile_S-1-5-21-2903779921-2727959649-1724784859-1007\software\ist\ (ID = 129108)
15:27: HKU\WRSS_Profile_S-1-5-21-2903779921-2727959649-1724784859-1007\software\avenue media\ (ID = 128887)
15:26: HKU\WRSS_Profile_S-1-5-21-2903779921-2727959649-1724784859-1008\software\microsoft\internet explorer\extensions\cmdmapping\ || {77fbf9b8-1d37-4ff2-9ced-192d8e3aba6f} (ID = 1021025)
15:26: HKU\WRSS_Profile_S-1-5-21-2903779921-2727959649-1724784859-1008\software\director\ || baseurl (ID = 980277)
15:26: HKU\WRSS_Profile_S-1-5-21-2903779921-2727959649-1724784859-1008\software\microsoft\internet explorer\main\ || default_search_url (ID = 790269)
15:26: HKU\WRSS_Profile_S-1-5-21-2903779921-2727959649-1724784859-1008\software\microsoft\internet explorer\main\ || search bar (ID = 790268)
15:26: HKU\WRSS_Profile_S-1-5-21-2903779921-2727959649-1724784859-1008\software\system\sysuid\ (ID = 731748)
15:26: HKU\WRSS_Profile_S-1-5-21-2903779921-2727959649-1724784859-1008\software\microsoft\internet explorer\search\searchassistant explorer\main\ || default_search_url (ID = 555437)
15:26: HKU\WRSS_Profile_S-1-5-21-2903779921-2727959649-1724784859-1008\software\microsoft\ole\ || p2pnetwork (ID = 359374)
15:26: HKU\WRSS_Profile_S-1-5-21-2903779921-2727959649-1724784859-1008\system\currentcontrolset\control\lsa\ || p2pnetwork (ID = 359373)
15:26: HKU\WRSS_Profile_S-1-5-21-2903779921-2727959649-1724784859-1008\software\surfsidekick3\ (ID = 143412)
15:26: HKU\WRSS_Profile_S-1-5-21-2903779921-2727959649-1724784859-1008\software\microsoft\internet explorer\urlsearchhooks\ || {02ee5b04-f144-47bb-83fb-a60bd91b74a9} (ID = 143397)
15:26: Found Adware: surfsidekick
15:26: HKU\WRSS_Profile_S-1-5-21-2903779921-2727959649-1724784859-1008\software\microsoft\internet explorer\extensions\cmdmapping\ || {10e42047-deb9-4535-a118-b3f6ec39b807} (ID = 141778)
15:26: HKU\WRSS_Profile_S-1-5-21-2903779921-2727959649-1724784859-1008\software\microsoft\internet explorer\explorer bars\{8cba1b49-8144-4721-a7b1-64c578c9eed7}\ (ID = 141777)
15:26: HKU\WRSS_Profile_S-1-5-21-2903779921-2727959649-1724784859-1008\software\180ax\ (ID = 135615)
15:26: HKU\WRSS_Profile_S-1-5-21-2903779921-2727959649-1724784859-1008\software\xbtb07618\ (ID = 134858)
15:26: Found Adware: maxifiles
15:26: HKU\WRSS_Profile_S-1-5-21-2903779921-2727959649-1724784859-1008\software\ist\ (ID = 129108)
15:26: HKU\WRSS_Profile_S-1-5-21-2903779921-2727959649-1724784859-1008\software\hotbar\ (ID = 127565)
15:26: Found Adware: hotbar
15:26: HKU\WRSS_Profile_S-1-5-21-2903779921-2727959649-1724784859-1008\software\microsoft\internet explorer\main\ || start page (ID = 125239)
15:26: HKU\WRSS_Profile_S-1-5-21-2903779921-2727959649-1724784859-1008\software\microsoft\internet explorer\main\ || search page (ID = 125238)
15:26: HKU\WRSS_Profile_S-1-5-21-2903779921-2727959649-1724784859-1008\software\microsoft\internet explorer\main\ || search bar (ID = 125237)
15:26: HKU\WRSS_Profile_S-1-5-21-2903779921-2727959649-1724784859-1008\software\microsoft\internet explorer\main\ || default_search_url (ID = 125236)
15:26: HKU\S-1-5-21-2903779921-2727959649-1724784859-1009\software\system\sysuid\ (ID = 731748)
15:26: HKU\S-1-5-21-2903779921-2727959649-1724784859-1009\software\microsoft\internet explorer\search\searchassistant explorer\main\ || default_search_url (ID = 555437)
15:26: Found Adware: findthewebsiteyouneed hijack
15:26: HKU\S-1-5-21-2903779921-2727959649-1724784859-1009\software\zanu\ (ID = 147923)
15:26: Found Adware: 180search assistant/zango
15:26: HKU\S-1-5-21-2903779921-2727959649-1724784859-1009\software\microsoft\internet explorer\toolbar\webbrowser\ || {d49e9d35-254c-4c6a-9d17-95018d228ff5} (ID = 142862)
15:26: Found Adware: starware toolbar
15:26: HKU\S-1-5-21-2903779921-2727959649-1724784859-1009\software\microsoft\internet explorer\extensions\cmdmapping\ || {10e42047-deb9-4535-a118-b3f6ec39b807} (ID = 141778)
15:26: HKU\S-1-5-21-2903779921-2727959649-1724784859-1009\software\microsoft\internet explorer\explorer bars\{8cba1b49-8144-4721-a7b1-64c578c9eed7}\ (ID = 141777)
15:26: HKU\WRSS_Profile_S-1-5-21-2903779921-2727959649-1724784859-501\software\microsoft\ole\ || p2pnetwork (ID = 359374)
15:26: HKU\WRSS_Profile_S-1-5-21-2903779921-2727959649-1724784859-501\system\currentcontrolset\control\lsa\ || p2pnetwork (ID = 359373)
15:26: Found Trojan Horse: p2pnetwork
15:26: HKU\WRSS_Profile_S-1-5-21-2903779921-2727959649-1724784859-501\software\ist\ (ID = 129108)
15:26: Found Adware: ist software
15:26: HKU\WRSS_Profile_S-1-5-21-2903779921-2727959649-1724784859-501\software\avenue media\ (ID = 128887)
15:26: HKLM\software\classes\typelib\{3277cd27-4001-4ef8-9d96-c6ca745ac2f9}\ (ID = 1347971)
15:26: HKLM\software\classes\typelib\{27a1ca0d-78ce-4e23-8a89-2c95c15954b3}\ (ID = 1347961)
15:26: HKLM\software\classes\clsid\{7564b020-44e8-4c9b-a887-c6ec41ac67da}\ (ID = 1347946)
15:26: HKLM\software\classes\cfg32s.search.1\ (ID = 1347940)
15:26: HKLM\software\classes\cfg32s.search\ (ID = 1347934)
15:26: HKLM\software\classes\appid\{27a1ca0d-78ce-4e23-8a89-2c95c15954b3}\ (ID = 1347932)
15:26: HKLM\software\classes\appid\cfg32s.dll\ (ID = 1347930)
15:26: HKCR\typelib\{27a1ca0d-78ce-4e23-8a89-2c95c15954b3}\ (ID = 1347910)
15:26: HKCR\clsid\{7564b020-44e8-4c9b-a887-c6ec41ac67da}\ (ID = 1347895)
15:26: HKCR\cfg32s.search.1\ (ID = 1347889)
15:26: HKCR\cfg32s.search\ (ID = 1347883)
15:26: HKCR\appid\{27a1ca0d-78ce-4e23-8a89-2c95c15954b3}\ (ID = 1347881)
15:26: HKCR\appid\cfg32s.dll\ (ID = 1347879)
15:26: HKLM\software\classes\typelib\{90a52f08-64ac-4dc6-9d7d-451667029898}\ (ID = 1347529)
15:26: HKLM\software\classes\clsid\{c68ae9c0-0909-4ddc-b661-c1afb9f59898}\ (ID = 1347516)
15:26: HKLM\software\classes\appid\{90a52f08-64ac-4dc6-9d7d-451667029898}\ (ID = 1347514)
15:26: HKLM\software\classes\appid\scaggy.dll\ (ID = 1347512)
15:26: HKLM\software\classes\scaggy.insert.1\ (ID = 1347508)
15:26: HKLM\software\classes\scaggy.insert\ (ID = 1347502)
15:26: HKLM\software\zabstract\ (ID = 1347479)
15:26: HKCR\typelib\{90a52f08-64ac-4dc6-9d7d-451667029898}\ (ID = 1347459)
15:26: HKCR\clsid\{c68ae9c0-0909-4ddc-b661-c1afb9f59898}\ (ID = 1347446)
15:26: HKCR\appid\{90a52f08-64ac-4dc6-9d7d-451667029898}\ (ID = 1347444)
15:26: HKCR\appid\scaggy.dll\ (ID = 1347442)
15:26: HKCR\scaggy.insert.1\ (ID = 1347438)
15:26: HKCR\scaggy.insert\ (ID = 1347432)
15:26: HKLM\software\microsoft\windows\currentversion\moduleusage\c:/windows/system32/winats.dll\ (ID = 1066860)
15:26: HKLM\software\microsoft\windows\currentversion\shareddlls\ || c:\windows\system32\winats.dll (ID = 1055333)
15:26: HKLM\software\classes\typelib\{34568171-e2ca-4fcd-a99f-43771f766b8a}\ (ID = 1055323)
15:26: HKLM\software\classes\mirar_dummy_ats.mirar_dummy_ats1.1\clsid\ (ID = 1055293)
15:26: HKLM\software\classes\mirar_dummy_ats.mirar_dummy_ats1.1\ (ID = 1055291)
15:26: HKLM\software\classes\mirar_dummy_ats.mirar_dummy_ats1\ (ID = 1055285)
15:26: HKCR\typelib\{34568171-e2ca-4fcd-a99f-43771f766b8a}\ (ID = 1055268)
15:26: HKCR\mirar_dummy_ats.mirar_dummy_ats1.1\clsid\ (ID = 1055250)
15:26: HKCR\mirar_dummy_ats.mirar_dummy_ats1.1\ (ID = 1055248)
15:26: HKCR\mirar_dummy_ats.mirar_dummy_ats1\ (ID = 1055242)
15:26: HKLM\software\classes\typelib\{c2ae9e5b-3ebd-49fd-9ab4-36c1a1e4af39}\ (ID = 970986)
15:26: HKLM\software\classes\clsid\{6e53e70c-9089-494a-9f51-abc499636dae}\ (ID = 970909)
15:26: HKLM\software\classes\uwfxpcheck.uwfxpcheck\ (ID = 970714)
15:26: HKLM\software\classes\uwfxpcheck.uwfxpcheck.1\ (ID = 970710)
15:26: HKCR\typelib\{c2ae9e5b-3ebd-49fd-9ab4-36c1a1e4af39}\ (ID = 970551)
15:26: HKCR\clsid\{6e53e70c-9089-494a-9f51-abc499636dae}\ (ID = 970474)
15:26: HKCR\uwfxpcheck.uwfxpcheck\ (ID = 970286)
15:26: HKCR\uwfxpcheck.uwfxpcheck.1\ (ID = 970282)
15:26: Found Adware: winantispyware 2005
15:26: HKLM\software\system\sysold\ (ID = 926808)
15:26: Found Adware: enbrowser
15:26: HKCR\clsid\{0019c3e2-dd48-4a6d-abcd-8d32436323d9}\ (ID = 746549)
15:26: HKCR\clsid\{dc341f1b-ec77-47be-8f58-96e83861cc5a}\ (ID = 713029)
15:26: HKCR\typelib\{d0288a41-9855-4a9b-8316-babe243648da}\ (ID = 141785)
15:26: HKCR\typelib\{58634367-d62b-4c2c-86be-5aac45cdb671}\ (ID = 141784)
15:26: HKLM\software\classes\typelib\{d0288a41-9855-4a9b-8316-babe243648da}\ (ID = 141776)
15:26: HKLM\software\classes\typelib\{58634367-d62b-4c2c-86be-5aac45cdb671}\ (ID = 141775)
15:26: HKLM\software\classes\interface\{a36a5936-cfd9-4b41-86bd-319a1931887f}\ (ID = 141773)
15:26: HKLM\software\classes\interface\{339d8aff-0b42-4260-ad82-78ce605a9543}\ (ID = 141772)
15:26: HKLM\software\classes\clsid\{a3fdd654-a057-4971-9844-4ed8e67dbbb8}\ (ID = 141771)
15:26: HKLM\software\classes\clsid\{8cba1b49-8144-4721-a7b1-64c578c9eed7}\ (ID = 141770)
15:26: HKCR\interface\{a36a5936-cfd9-4b41-86bd-319a1931887f}\ (ID = 141766)
15:26: HKCR\interface\{339d8aff-0b42-4260-ad82-78ce605a9543}\ (ID = 141765)
15:26: HKCR\clsid\{a3fdd654-a057-4
  • 0

#33
D.J. Juego

D.J. Juego

    Member

  • Topic Starter
  • Member
  • PipPip
  • 45 posts
15:26: HKCR\clsid\{a3fdd654-a057-4971-9844-4ed8e67dbbb8}\ (ID = 141764)
15:26: HKCR\clsid\{8cba1b49-8144-4721-a7b1-64c578c9eed7}\ (ID = 141763)
15:26: Found Adware: ist sidefind
15:26: HKCR\typelib\{0ab5b0d8-2b74-4c1c-8fa4-e52550b8b45b}\ (ID = 140575)
15:26: HKLM\software\screensavers.com\ (ID = 140569)
15:26: HKLM\software\classes\typelib\{0ab5b0d8-2b74-4c1c-8fa4-e52550b8b45b}\ (ID = 140565)
15:26: HKLM\software\classes\interface\{b64c73d7-459e-4816-91f9-1348f8e36984}\ (ID = 140559)
15:26: HKLM\software\classes\interface\{883ea659-ed80-46f9-9ed2-83327f67789f}\ (ID = 140558)
15:26: HKLM\software\classes\interface\{760aca60-79c3-4875-9d19-b14a5b3fea77}\ (ID = 140557)
15:26: HKLM\software\classes\clsid\{88d758a3-d33b-45fd-91e3-67749b4057fa}\ (ID = 140556)
15:26: HKLM\software\classes\clsid\{722d2939-a14a-41a9-9eac-ab8f4e295819}\ (ID = 140555)
15:26: HKCR\interface\{b64c73d7-459e-4816-91f9-1348f8e36984}\ (ID = 140554)
15:26: HKCR\interface\{883ea659-ed80-46f9-9ed2-83327f67789f}\ (ID = 140553)
15:26: HKCR\interface\{760aca60-79c3-4875-9d19-b14a5b3fea77}\ (ID = 140552)
15:26: HKCR\clsid\{88d758a3-d33b-45fd-91e3-67749b4057fa}\ (ID = 140551)
15:26: HKCR\clsid\{722d2939-a14a-41a9-9eac-ab8f4e295819}\ (ID = 140550)
15:26: Found Adware: screensavers
15:26: HKCR\typelib\{78a163d2-2358-464d-807b-0e2a078c7727}\ (ID = 140221)
15:26: HKLM\software\microsoft\windows\currentversion\shareddlls\ || c:\windows\downloaded program files\mm21.ocx (ID = 140201)
15:26: HKLM\software\microsoft\windows\currentversion\moduleusage\c:/windows/downloaded program files/mm21.ocx\ (ID = 140172)
15:26: HKLM\software\classes\interface\{ad29366c-63aa-4ff3-944f-91ad7193bca2}\ (ID = 140113)
15:26: HKLM\software\classes\interface\{674a6bd5-317a-49cf-9647-1e085e660ce0}\ (ID = 140104)
15:26: HKCR\interface\{e832ffde-8ed2-47b7-be50-729a238040a0}\ (ID = 140065)
15:26: HKCR\interface\{ad29366c-63aa-4ff3-944f-91ad7193bca2}\ (ID = 140061)
15:26: HKCR\interface\{674a6bd5-317a-49cf-9647-1e085e660ce0}\ (ID = 140054)
15:26: HKCR\interface\{64a5bd22-8d8a-4193-9cf8-7db5212abb17}\ (ID = 140051)
15:26: HKCR\interface\{9f61cfdf-5c79-4d35-b4da-766b28367223}\ (ID = 140046)
15:26: HKCR\interface\{3e4bcf50-865b-4ef4-a0bc-bf57229ea525}\ (ID = 140042)
15:26: Found Adware: elitemediagroup-mediamotor
15:26: HKLM\software\classes\clsid\{669695bc-a811-4a9d-8cdf-ba8c795f261c}\ (ID = 136863)
15:26: HKCR\typelib\{0be10b0d-b4db-4693-9b1f-9aead54d17dc}\ (ID = 135216)
15:26: HKCR\interface\{eee4a2e5-9f56-432f-a6ed-f6f625b551e0}\ (ID = 135185)
15:26: HKCR\clsid\{cea206e8-8057-4a04-ace9-ff0d69a92297}\ (ID = 135171)
15:26: Found Adware: moneytree
15:26: HKCR\typelib\{f8310e7d-4c4d-46a4-a068-b5bb99411cc7}\ (ID = 135122)
15:26: HKCR\typelib\{566dede9-9ed8-45da-9be6-9b2eeab17f49}\ (ID = 135121)
15:26: HKLM\software\microsoft\windows\currentversion\uninstall\{8a0dcbda-6e20-489c-9041-c1e8a0352e75}\ (ID = 135119)
15:26: HKLM\software\classes\typelib\{f8310e7d-4c4d-46a4-a068-b5bb99411cc7}\ (ID = 135093)
15:26: HKLM\software\classes\typelib\{566dede9-9ed8-45da-9be6-9b2eeab17f49}\ (ID = 135092)
15:26: HKLM\software\classes\nn_bar_dummy.nn_bardummy\curver\ (ID = 135091)
15:26: HKLM\software\classes\nn_bar_dummy.nn_bardummy\clsid\ (ID = 135090)
15:26: HKLM\software\classes\nn_bar_dummy.nn_bardummy\ (ID = 135089)
15:26: HKLM\software\classes\nn_bar_dummy.nn_bardummy.1\ (ID = 135088)
15:26: HKLM\software\classes\interface\{224302b0-94e9-45c2-9e5b-ba989ee556e1}\ (ID = 135085)
15:26: HKLM\software\classes\interface\{1037b06c-84b7-4240-8d80-485810a0497d}\ (ID = 135084)
15:26: HKLM\software\classes\interface\{54b287f9-fd90-4457-b65e-cb91560c021d}\ (ID = 135083)
15:26: HKLM\software\classes\interface\{6e4c7afc-9915-4036-b7f9-8b3f1710788f}\ (ID = 135082)
15:26: HKLM\software\classes\clsid\{9a9c9b69-f908-4aab-8d0c-10ea8997f37e}\ (ID = 135079)
15:26: HKLM\software\classes\clsid\{9a9c9b68-f908-4aab-8d0c-10ea8997f37e}\ (ID = 135078)
15:26: HKLM\software\classes\clsid\{8a0dcbda-6e20-489c-9041-c1e8a0352e75}\ (ID = 135077)
15:26: HKCR\nn_bar_dummy.nn_bardummy\ (ID = 135076)
15:26: HKCR\nn_bar_dummy.nn_bardummy.1\ (ID = 135075)
15:26: HKCR\interface\{224302b0-94e9-45c2-9e5b-ba989ee556e1}\ (ID = 135072)
15:26: HKCR\interface\{1037b06c-84b7-4240-8d80-485810a0497d}\ (ID = 135071)
15:26: HKCR\interface\{54b287f9-fd90-4457-b65e-cb91560c021d}\ (ID = 135070)
15:26: HKCR\interface\{6e4c7afc-9915-4036-b7f9-8b3f1710788f}\ (ID = 135069)
15:26: HKCR\clsid\{9a9c9b69-f908-4aab-8d0c-10ea8997f37e}\ (ID = 135066)
15:26: HKCR\clsid\{9a9c9b68-f908-4aab-8d0c-10ea8997f37e}\ (ID = 135065)
15:26: HKCR\clsid\{8a0dcbda-6e20-489c-9041-c1e8a0352e75}\ (ID = 135064)
15:26: Found Adware: mirar webband
15:26: HKCR\typelib\{e9a5b71c-093b-4f34-af07-34fca89ba0df}\ (ID = 129193)
15:26: HKLM\software\classes\typelib\{e9a5b71c-093b-4f34-af07-34fca89ba0df}\ (ID = 129107)
15:26: HKLM\software\classes\interface\{0e704ba4-c517-4be7-a1cd-c3ffda1e1ffe}\ (ID = 129085)
15:26: HKLM\software\classes\clsid\{dc341f1b-ec77-47be-8f58-96e83861cc5a}\ (ID = 129083)
15:26: HKCR\interface\{0e704ba4-c517-4be7-a1cd-c3ffda1e1ffe}\ (ID = 129062)
15:26: Found Adware: ist istbar
15:26: HKLM\software\classes\interface\{aa4939c3-deca-4a48-a454-97cd587c0ef5}\ (ID = 128896)
15:26: HKCR\interface\{aa4939c3-deca-4a48-a454-97cd587c0ef5}\ (ID = 128885)
15:26: Found Adware: internetoptimizer
15:26: HKCR\typelib\{0dc5cd7c-f653-4417-aa43-d457be3a9622}\ (ID = 104884)
15:26: HKLM\software\classes\typelib\{0dc5cd7c-f653-4417-aa43-d457be3a9622}\ (ID = 104871)
15:26: HKLM\software\classes\interface\{05080e6b-a88a-4cfd-8c3d-9b2557670b6e}\ (ID = 104870)
15:26: HKLM\software\classes\clsid\{0019c3e2-dd48-4a6d-abcd-8d32436323d9}\ (ID = 104868)
15:26: HKLM\software\classes\appid\{0dc5cd7c-f653-4417-aa43-d457be3a9622}\ (ID = 104865)
15:26: HKCR\interface\{05080e6b-a88a-4cfd-8c3d-9b2557670b6e}\ (ID = 104862)
15:26: HKCR\appid\{0dc5cd7c-f653-4417-aa43-d457be3a9622}\ (ID = 104855)
15:26: Found Adware: bookedspace
15:26: HKCR\typelib\{3277cd27-4001-4ef8-9d96-c6ca745ac2f9}\ (ID = 102349)
15:26: HKCR\interface\{38493f7f-2922-4c6c-9a9a-8da2c940d0ee}\ (ID = 102318)
15:26: HKCR\clsid\{669695bc-a811-4a9d-8cdf-ba8c795f261c}\ (ID = 102313)
15:26: Found Adware: powerstrip
15:26: HKCR\clsid\{669695bc-a811-4a9d-8cdf-ba8c795f261c}\ (ID = 102313)
15:26: Found Adware: 7search
15:25: Starting Registry Sweep
15:25: Sweep initiated using definitions version 691
15:25: Spy Sweeper 5.0.5.1286 started
15:25: | Start of Session, 06-08-22 |
********
18:19: | End of Session, 06-08-22 |
18:01: None
18:01: Traces Found: 0
18:01: Full Sweep has completed. Elapsed time 01:06:55
18:01: File Sweep Complete, Elapsed Time: 00:51:49
18:01: Warning: Failed to access drive E:
18:01: Warning: Failed to access drive D:
18:01: Warning: Failed to open file "c:\program files\ewido anti-spyware 4.0\ewido.err". The operation completed successfully
18:01: Warning: Failed to open file "c:\program files\ewido anti-spyware 4.0\ewido.dmp". The operation completed successfully
17:09: Starting File Sweep
17:09: Warning: Failed to access drive A:
17:09: Memory Sweep Complete, Elapsed Time: 00:14:12
16:54: Starting Memory Sweep
16:54: Sweep initiated using definitions version 691
16:54: Spy Sweeper 5.0.5.1286 started
16:54: | Start of Session, 06-08-22 |
********
20:49: | End of Session, 06-08-22 |
20:48: Removal process completed. Elapsed time 00:07:57
20:47: Quarantining All Traces: winantispyware 2005
20:47: Quarantining All Traces: dealtime cookie
20:47: Quarantining All Traces: xxxtoolbar cookie
20:47: Quarantining All Traces: franklinsurveys cookie
20:47: Quarantining All Traces: surveys cookie
20:47: Quarantining All Traces: sidefind cookie
20:47: Quarantining All Traces: shop@home cookie
20:47: Quarantining All Traces: tradedoubler cookie
20:47: Quarantining All Traces: tracking cookie
20:47: Quarantining All Traces: sexsearch cookie
20:47: Quarantining All Traces: webtrendslive cookie
20:47: Quarantining All Traces: reliablestats cookie
20:47: Quarantining All Traces: statstracking cookie
20:47: Quarantining All Traces: specificclick.com cookie
20:47: Quarantining All Traces: searchadnetwork cookie
20:47: Quarantining All Traces: rightmedia cookie
20:47: Quarantining All Traces: reunion cookie
20:47: Quarantining All Traces: qsrch cookie
20:47: Quarantining All Traces: qksrv cookie
20:47: Quarantining All Traces: pro-market cookie
20:47: Quarantining All Traces: pricegrabber cookie
20:47: Quarantining All Traces: directtrack cookie
20:47: Quarantining All Traces: metareward.com cookie
20:47: Quarantining All Traces: netster cookie
20:47: Quarantining All Traces: kmpads cookie
20:47: Quarantining All Traces: sb01 cookie
20:47: Quarantining All Traces: ic-live cookie
20:47: Quarantining All Traces: go2net.com cookie
20:47: Quarantining All Traces: euniverseads cookie
20:47: Quarantining All Traces: coremetrics cookie
20:47: Quarantining All Traces: sextracker cookie
20:47: Quarantining All Traces: coolsavings cookie
20:47: Quarantining All Traces: clickbank cookie
20:47: Quarantining All Traces: clickagents cookie
20:47: Quarantining All Traces: centrport net cookie
20:47: Quarantining All Traces: enhance cookie
20:47: Quarantining All Traces: bizrate cookie
20:47: Quarantining All Traces: azjmp cookie
20:47: Quarantining All Traces: aptimus cookie
20:47: Quarantining All Traces: pointroll cookie
20:47: Quarantining All Traces: ads.adsag cookie
20:47: Quarantining All Traces: ad-logics cookie
20:47: Quarantining All Traces: primaryads cookie
20:47: Quarantining All Traces: adserver cookie
20:47: Quarantining All Traces: xiti cookie
20:47: Quarantining All Traces: stlyrics cookie
20:47: Quarantining All Traces: tribalfusion cookie
20:47: Quarantining All Traces: trafficmp cookie
20:47: Quarantining All Traces: serving-sys cookie
20:47: Quarantining All Traces: server.iad.liveperson cookie
20:47: Quarantining All Traces: revenue.net cookie
20:47: Quarantining All Traces: questionmarket cookie
20:47: Quarantining All Traces: mediaplex cookie
20:47: Quarantining All Traces: maxserving cookie
20:47: Quarantining All Traces: linksynergy cookie
20:47: Quarantining All Traces: ru4 cookie
20:47: Quarantining All Traces: overture cookie
20:47: Quarantining All Traces: ccbill cookie
20:47: Quarantining All Traces: casalemedia cookie
20:47: Quarantining All Traces: bravenet cookie
20:47: Quarantining All Traces: bluestreak cookie
20:47: Quarantining All Traces: belnk cookie
20:47: Quarantining All Traces: goldenpalace cookie
20:47: Quarantining All Traces: falkag cookie
20:47: Quarantining All Traces: alt cookie
20:47: Quarantining All Traces: adultfriendfinder cookie
20:47: Quarantining All Traces: addynamix cookie
20:47: Quarantining All Traces: hotbar cookie
20:47: Quarantining All Traces: adecn cookie
20:47: Quarantining All Traces: zenotecnico cookie
20:47: Quarantining All Traces: zedo cookie
20:47: Quarantining All Traces: seeq cookie
20:47: Quarantining All Traces: stopzilla cookie
20:47: Quarantining All Traces: www.maxifiles cookie
20:47: Quarantining All Traces: videodome cookie
20:47: Quarantining All Traces: tripod cookie
20:47: Quarantining All Traces: tacoda cookie
20:47: Quarantining All Traces: statcounter cookie
20:47: Quarantining All Traces: rn11 cookie
20:47: Quarantining All Traces: realmedia cookie
20:47: Quarantining All Traces: partypoker cookie
20:47: Quarantining All Traces: nextag cookie
20:47: Quarantining All Traces: mywebsearch cookie
20:47: Quarantining All Traces: monstermarketplace cookie
20:47: Quarantining All Traces: clickandtrack cookie
20:47: Quarantining All Traces: gamespy cookie
20:47: Quarantining All Traces: fastclick cookie
20:47: Quarantining All Traces: exitexchange cookie
20:47: Quarantining All Traces: cassava cookie
20:47: Quarantining All Traces: banner cookie
20:47: Quarantining All Traces: atlas dmt cookie
20:47: Quarantining All Traces: ask cookie
20:47: Quarantining All Traces: apmebf cookie
20:47: Quarantining All Traces: advertising cookie
20:47: Quarantining All Traces: adrevolver cookie
20:47: Quarantining All Traces: hbmediapro cookie
20:47: Quarantining All Traces: adknowledge cookie
20:47: Quarantining All Traces: yieldmanager cookie
20:47: Quarantining All Traces: about cookie
20:47: Quarantining All Traces: websponsors cookie
20:47: Quarantining All Traces: 888 cookie
20:47: Quarantining All Traces: 80503492 cookie
20:47: Quarantining All Traces: 2o7.net cookie
20:47: Quarantining All Traces: infospace cookie
20:47: Quarantining All Traces: screensavers.com cookie
20:47: Quarantining All Traces: atwola cookie
20:47: Quarantining All Traces: effective-i toolbar
20:47: Quarantining All Traces: webhancer
20:47: Quarantining All Traces: targetsaver
20:47: Quarantining All Traces: zenosearchassistant
20:47: Quarantining All Traces: mirar webband
20:47: Quarantining All Traces: command
20:47: Quarantining All Traces: forethought
20:47: Quarantining All Traces: internetoptimizer
20:47: Quarantining All Traces: trojan-downloader-ac2
20:47: Quarantining All Traces: p2pnetwork
20:47: Quarantining All Traces: enbrowser
20:47: Quarantining All Traces: winad
20:47: Quarantining All Traces: elitemediagroup-mediamotor
20:46: Quarantining All Traces: maxifiles
20:46: Quarantining All Traces: zquest
20:46: Quarantining All Traces: surfsidekick
20:46: Quarantining All Traces: bookedspace
20:46: Quarantining All Traces: visfx
20:46: Quarantining All Traces: 180search assistant/zango
20:46: Quarantining All Traces: look2me
20:40: Quarantining All Traces: rbot
20:40: Quarantining All Traces: clkoptimizer
20:40: Quarantining All Traces: ist istbar
20:40: Removal process initiated
20:31: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:31: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:31: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:31: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:31: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:31: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:31: Warning: Cannot open file "C:\Program Files\Webroot\Spy Sweeper\Quarantine\rb317[312].ssq". The process cannot access the file because it is being used by another process
20:31: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:31: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:31: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:31: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:31: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:31: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:31: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:31: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:31: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:31: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:31: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:31: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:31: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:31: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:31: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:31: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:31: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Warning: Cannot create file "C:\Program Files\Webroot\Spy Sweeper\Quarantine\rb317[287].ssq". The process cannot access the file because it is being used by another process
20:30: Warning: Cannot create file "C:\Program Files\Webroot\Spy Sweeper\Quarantine\rb317[287].ssq". The process cannot access the file because it is being used by another process
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Warning: Cannot open file "C:\Program Files\Webroot\Spy Sweeper\Quarantine\rb317[261].ssq". The process cannot access the file because it is being used by another process
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:30: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Warning: Cannot open file "C:\Program Files\Webroot\Spy Sweeper\Quarantine\rb317[235].ssq". The process cannot access the file because it is being used by another process
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Warning: Cannot create file "C:\Program Files\Webroot\Spy Sweeper\Quarantine\rb317[223].ssq". The process cannot access the file because it is being used by another process
20:26: Warning: Cannot create file "C:\Program Files\Webroot\Spy Sweeper\Quarantine\rb317[223].ssq". The process cannot access the file because it is being used by another process
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Warning: Cannot create file "C:\Program Files\Webroot\Spy Sweeper\Quarantine\rb317[210].ssq". The process cannot access the file because it is being used by another process
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Warning: Cannot create file "C:\Program Files\Webroot\Spy Sweeper\Quarantine\rb317[196].ssq". The process cannot access the file because it is being used by another process
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Warning: Cannot create file "C:\Program Files\Webroot\Spy Sweeper\Quarantine\rb317[183].ssq". The process cannot access the file because it is being used by another process
20:26: Warning: Cannot create file "C:\Program Files\Webroot\Spy Sweeper\Quarantine\rb317[183].ssq". The process cannot access the file because it is being used by another process
20:26: Warning: Cannot create file "C:\Program Files\Webroot\Spy Sweeper\Quarantine\rb317[183].ssq". The process cannot access the file because it is being used by another process
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: rbot, version 1.0.0.0
20:26: Spy Installation Shield: found: Trojan Horse: p2pnetwork, version 1.0.0.0
20:26: Spy Installation Shield: found: Adware: clkoptimizer, version 1.0.0.0
20:23: Spy Installation Shield: found: Adware: command, version 1.0.0.0
20:23: Spy Installation Shield: found: Adware: maxifiles, version 1.0.0.0
20:23: Spy Installation Shield: found: Adware: command, version 1.0.0.0
20:23: Spy Installation Shield: found: Adware: command, version 1.0.0.0
20:23: Spy Installation Shield: found: Adware: zquest, version 1.0.0.0
20:23: Spy Installation Shield: found: Adware: zquest, version 1.0.0.0
20:07: Spy Installation Shield: found: Adware: winad, version 1.0.0.0
20:07: Spy Installation Shield: found: Adware: maxifiles, version 1.0.0.0
19:09: Spy Installation Shield: found: Adware: maxifiles, version 1.0.0.0
18:51: Traces Found: 1250
18:51: Full Sweep has completed. Elapsed time 00:32:14
18:51: File Sweep Complete, Elapsed Time: 00:31:35
18:50: Warning: Failed to access drive E:
18:50: Warning: Failed to access drive D:
18:50: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265145.inf (ID = 208224)
18:49: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP327\A0212919.ini (ID = 188794)
18:49: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP348\A0248965.lnk (ID = 59838)
18:49: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP348\A0248964.lnk (ID = 59855)
18:49: Found Adware: effective-i toolbar
18:49: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP310\A0189241.ini (ID = 188794)
18:49: Found Adware: webhancer
18:49: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0257319.vbs (ID = 185675)
18:47: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265152.dll (ID = 269825)
18:47: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265153.exe (ID = 269829)
18:47: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265154.exe (ID = 279637)
18:47: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265155.exe (ID = 269829)
18:47: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265141.exe (ID = 268932)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP290\A0149363.exe (ID = 185254)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP296\A0155944.exe (ID = 185254)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP316\A0198543.exe (ID = 185254)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0264959.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0264960.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0264961.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0264962.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0264963.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0264964.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259578.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259414.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259371.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259348.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259302.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259433.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259284.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259332.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259183.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259011.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258936.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259335.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259547.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259098.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259077.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP340\A0234946.exe (ID = 185254)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259178.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259194.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259158.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259232.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258983.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259405.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259157.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259280.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259444.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259484.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258968.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259329.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259305.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258993.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259090.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259141.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259160.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259271.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259412.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259261.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259097.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259125.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259562.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259487.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259461.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259035.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259477.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259308.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259264.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259457.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258974.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259468.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259057.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP338\A0231701.exe (ID = 185254)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP305\A0173076.exe (ID = 185254)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP300\A0162077.exe (ID = 185254)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259328.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259228.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259156.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259408.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259363.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259300.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259142.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258950.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259093.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259559.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259388.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259499.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259258.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259064.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259059.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP305\A0174074.exe (ID = 185254)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP312\A0189556.exe (ID = 185254)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259546.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259538.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259543.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259259.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259278.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259294.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259143.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259577.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258934.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259356.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258935.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259051.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259483.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259476.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259488.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP326\A0212870.exe (ID = 185254)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259310.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259108.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258999.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259478.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259024.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259293.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259391.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259469.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259123.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259270.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259445.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259367.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0264965.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0264966.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0264967.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0264968.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0264969.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0264970.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259003.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259069.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259355.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259205.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259017.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259531.exe (ID = 269648)
18:46: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259050.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259236.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP327\A0215899.exe (ID = 185254)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258942.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259418.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259106.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259265.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0264971.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0264972.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0264973.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0264974.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0264975.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0264976.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259435.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259364.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259192.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259336.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258933.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259466.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259274.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259101.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259110.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259111.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259579.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259354.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259394.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259257.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259503.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0257294.dll (ID = 166754)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP299\A0160077.exe (ID = 185254)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258979.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259396.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259411.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259070.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259242.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259526.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259500.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP298\A0159979.exe (ID = 185254)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259014.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258957.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259139.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259187.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259400.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259472.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259486.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259124.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259177.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259117.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259243.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259490.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259398.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259023.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259324.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259344.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259297.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259165.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP305\A0171157.exe (ID = 185254)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP301\A0163076.exe (ID = 185254)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258972.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258922.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259567.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259219.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP304\A0171127.exe (ID = 185254)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP295\A0153657.exe (ID = 185254)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258924.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258923.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258926.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259218.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259148.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259152.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259410.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259189.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP340\A0233878.exe (ID = 185254)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP337\A0230664.exe (ID = 185254)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258960.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258989.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259446.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259292.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259202.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258994.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259221.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259091.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259289.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258952.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258958.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259048.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259056.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP314\A0195592.exe (ID = 185254)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259144.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259327.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259010.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259473.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C
  • 0

#34
D.J. Juego

D.J. Juego

    Member

  • Topic Starter
  • Member
  • PipPip
  • 45 posts
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259471.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259199.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259248.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259241.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259316.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259658.dll (ID = 159067)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259520.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259509.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259392.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259440.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259149.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259155.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259147.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP340\A0234969.exe (ID = 185254)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259005.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258975.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259167.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0264977.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0264978.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0264979.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP323\A0205705.exe (ID = 185254)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259553.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP327\A0213874.exe (ID = 185254)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP311\A0189394.exe (ID = 185254)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP311\A0189467.exe (ID = 185254)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP311\A0189276.exe (ID = 185254)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP311\A0189327.exe (ID = 185254)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259463.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259096.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259458.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258984.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259296.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259470.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259555.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259195.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259404.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259162.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259311.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259075.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259462.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259539.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259491.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258980.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259041.exe (ID = 269648)
18:45: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259406.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259239.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259255.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259087.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259307.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259019.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258985.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259217.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259349.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259340.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259132.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259456.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259383.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258930.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259534.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259519.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259040.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259290.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259482.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP303\A0170075.exe (ID = 185254)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP316\A0200653.exe (ID = 185254)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP339\A0231816.exe (ID = 185254)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP337\A0228667.exe (ID = 185254)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259114.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259343.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259419.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259422.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259429.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258946.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259185.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259267.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259544.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259374.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259420.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259399.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259109.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259052.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259464.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259421.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259212.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259151.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259495.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259016.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259303.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259288.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259256.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259078.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259068.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259020.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259465.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259325.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259043.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258925.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259222.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259140.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259060.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259063.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258943.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258949.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258996.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259282.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259561.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259554.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259413.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259301.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259306.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259415.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259403.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259039.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259036.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP309\A0184208.exe (ID = 185254)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP309\A0180209.exe (ID = 185254)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259045.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259197.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259038.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259053.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259582.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259074.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259518.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259269.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259298.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259209.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259012.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259062.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259334.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259424.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259535.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259129.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259319.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259431.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259521.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259211.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP335\A0227479.exe (ID = 185254)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259583.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259351.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259397.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259560.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259073.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259000.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258971.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259174.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259031.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259200.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259552.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259025.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259229.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259436.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259378.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0254513.exe (ID = 185254)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP322\A0202652.exe (ID = 185254)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259172.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259314.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258966.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259584.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259506.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259304.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259323.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259382.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259428.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259511.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259545.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP324\A0206806.exe (ID = 185254)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259168.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259186.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259291.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP341\A0235041.exe (ID = 185254)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259206.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259263.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259437.exe (ID = 269648)
18:44: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP316\A0197516.exe (ID = 185254)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259581.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259245.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259029.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0264980.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0264981.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0264982.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0264983.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0264984.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0264985.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0264986.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0264987.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0264988.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0264989.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0264990.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0264991.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0264992.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0264993.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0264994.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0264995.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0264996.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0264997.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0264998.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0264999.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265000.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265001.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265002.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265003.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265004.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265005.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265006.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265007.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265008.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265009.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265010.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP335\A0226480.exe (ID = 185254)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259379.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265011.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259095.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259390.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259213.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259542.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259556.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259238.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259281.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259369.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259426.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259086.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259191.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259008.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259076.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259508.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259514.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259193.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259504.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259570.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259434.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259522.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259227.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259330.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259550.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259313.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259571.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259572.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259573.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259516.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP348\A0250328.exe (ID = 185254)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259450.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259443.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259353.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265012.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265013.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265014.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265015.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265016.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265017.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259226.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259225.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259198.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259066.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259417.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259358.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259299.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259366.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259474.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259338.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259026.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259022.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259015.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259102.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259533.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259455.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259088.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259085.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258963.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259002.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259089.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258928.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259569.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259448.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258997.exe (ID = 269648)
18:43: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259395.exe (ID = 269648)
18:42: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259233.exe (ID = 269648)
18:42: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP348\A0244917.exe (ID = 193501)
18:42: Found Adware: targetsaver
18:42: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259268.exe (ID = 269648)
18:42: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265018.exe (ID = 269648)
18:42: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265019.exe (ID = 269648)
18:42: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP316\A0199654.exe (ID = 185254)
18:42: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP316\A0199604.exe (ID = 185254)
18:42: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP335\A0228480.exe (ID = 185254)
18:41: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265020.exe (ID = 269648)
18:41: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265021.exe (ID = 269648)
18:41: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265022.exe (ID = 269648)
18:41: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265023.exe (ID = 269648)
18:41: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265024.exe (ID = 269648)
18:41: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265025.exe (ID = 269648)
18:41: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258973.exe (ID = 269648)
18:41: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259030.exe (ID = 269648)
18:41: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259033.exe (ID = 269648)
18:41: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259099.exe (ID = 269648)
18:41: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259480.exe (ID = 269648)
18:41: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259385.exe (ID = 269648)
18:41: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP305\A0172078.exe (ID = 185254)
18:41: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP300\A0161105.exe (ID = 185254)
18:41: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265026.exe (ID = 269648)
18:41: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265027.exe (ID = 269648)
18:41: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265028.exe (ID = 269648)
18:41: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265029.exe (ID = 269648)
18:41: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265030.exe (ID = 269648)
18:41: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265031.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP297\A0156978.exe (ID = 185254)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP298\A0157979.exe (ID = 185254)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259558.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259266.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP348\A0249335.exe (ID = 185254)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP293\A0153514.exe (ID = 185254)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259150.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259262.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259272.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259452.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP308\A0179121.exe (ID = 185254)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259224.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259127.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259122.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259260.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259128.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259249.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP292\A0153466.exe (ID = 185254)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259107.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258948.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265032.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265033.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265034.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265035.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265036.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265037.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259275.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259112.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259409.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259171.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259430.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259103.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259046.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258956.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258967.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259563.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259375.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259184.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259230.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259079.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259001.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259044.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258962.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259352.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259333.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259551.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259373.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259159.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259372.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259279.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259575.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259568.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258927.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259365.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258961.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259208.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259207.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258938.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259034.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP309\A0186208.exe (ID = 185254)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259529.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP335\A0224479.exe (ID = 185254)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259326.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258953.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259386.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259196.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258932.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259049.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP292\A0152424.exe (ID = 185254)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259638.exe (ID = 168558)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259028.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259527.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259380.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259537.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258976.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259384.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259585.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265038.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265039.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265040.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265041.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265042.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265043.exe (ID = 269648)
18:40: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP307\A0176075.exe (ID = 185254)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259580.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259169.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258947.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258951.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259528.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259589.exe (ID = 271215)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259416.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP312\A0190468.exe (ID = 185254)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP312\A0191467.exe (ID = 185254)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259317.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259054.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259295.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259080.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265044.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265045.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265046.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265047.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265048.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265049.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259135.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259345.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259058.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259337.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259181.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259360.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259453.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258992.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259072.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259121.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259179.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP295\A0155719.exe (ID = 185254)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259376.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259180.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259115.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259425.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259247.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259427.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259423.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259273.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258986.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259454.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259507.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258964.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259018.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258940.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP348\A0249298.exe (ID = 185254)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259481.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265050.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265051.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265052.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265053.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265054.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265055.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259006.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259501.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259492.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259370.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259254.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259113.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259460.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259223.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259037.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259067.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259565.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258945.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259175.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259176.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258959.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259119.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265056.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265057.exe (ID = 269648)
1
  • 0

#35
Rawe

Rawe

    Visiting Staff

  • Member
  • PipPipPipPipPipPipPip
  • 4,746 posts
Wow it's long.. :whistling:

Think I got the general idea... SpySweeper seems to have done a nice job.

Clean out temporary files:
  • Click Start -> Run and type in: cleanmgr
  • Click "Ok".
  • Let it scan your system.
  • Make sure Temporary Files, Temporary Internet Files, and Recycle Bin are the only ones checked.
  • Click "OK" to remove them.
  • Click "Yes" to confirm the deletion.
----

Post an fresh HijackThis log... And hows the system running now? Also, you don't need to run that defragment tool if you already ran Microsoft's one. :blink:
  • 0

#36
D.J. Juego

D.J. Juego

    Member

  • Topic Starter
  • Member
  • PipPip
  • 45 posts
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265058.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265059.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265060.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265061.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259146.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258977.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258978.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259163.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259357.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258970.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259498.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259136.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258991.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259309.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265062.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265063.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265064.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265065.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265066.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265067.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259525.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259576.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259252.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259283.exe (ID = 269648)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP335\A0223455.exe (ID = 185254)
18:39: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259061.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259530.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259540.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258944.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259441.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265068.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265069.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265070.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265071.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265072.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265073.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP292\A0152467.exe (ID = 185254)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259510.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259331.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259130.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP310\A0188208.exe (ID = 185254)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259131.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258955.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258998.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259065.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265074.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265075.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265076.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265077.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265078.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259120.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259116.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259253.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259467.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259235.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259361.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259182.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP312\A0193468.exe (ID = 185254)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259210.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258988.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259154.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259566.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259285.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259407.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259496.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259250.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259204.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259214.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259081.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258990.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259134.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259201.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259381.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259359.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259246.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259517.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259350.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP310\A0189221.exe (ID = 185254)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259393.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259505.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259512.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259513.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259515.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259532.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP314\A0196488.exe (ID = 185254)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265079.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265080.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265081.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265082.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265083.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265084.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259315.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259234.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258939.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259004.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259346.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258995.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259402.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259251.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259027.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258969.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259489.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP291\A0152363.exe (ID = 185254)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP349\A0250360.exe (ID = 185254)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258981.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258941.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259138.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259215.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259475.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259042.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259401.exe (ID = 269648)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP324\A0206753.exe (ID = 185254)
18:38: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259244.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259479.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259485.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259083.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259557.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265085.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265086.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265087.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265088.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265089.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265090.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259237.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259548.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259240.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259092.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259082.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259286.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259494.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259164.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259564.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259322.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259287.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258937.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265091.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265092.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265093.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259277.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP302\A0168075.exe (ID = 185254)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265094.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP299\A0161076.exe (ID = 185254)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP348\A0248946.exe (ID = 185254)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259047.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259161.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259377.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259389.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259170.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259145.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258929.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP291\A0150410.exe (ID = 185254)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259347.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259118.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259442.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259524.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265095.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259502.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259625.exe (ID = 70431)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265096.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265097.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265098.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259339.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259459.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265099.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259341.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265100.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259312.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265101.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265102.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265103.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265104.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259615.dll (ID = 64134)
18:37: Found Adware: internetoptimizer
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259320.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265105.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265106.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP323\A0204652.exe (ID = 185254)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259100.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259536.exe (ID = 269648)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP295\A0155657.exe (ID = 185254)
18:37: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258987.exe (ID = 269648)
18:36: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259497.exe (ID = 269648)
18:36: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265143.exe (ID = 244430)
18:36: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259601.exe (ID = 99)
18:36: Found Adware: visfx
18:36: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259013.exe (ID = 269648)
18:36: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP337\A0231662.exe (ID = 185254)
18:36: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259654.exe (ID = 65721)
18:36: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259032.exe (ID = 269648)
18:36: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259220.exe (ID = 269648)
18:36: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259321.exe (ID = 269648)
18:36: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP309\A0181208.exe (ID = 185254)
18:36: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP317\A0201654.exe (ID = 185254)
18:36: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP295\A0155776.exe (ID = 185254)
18:36: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258965.exe (ID = 269648)
18:36: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259318.exe (ID = 269648)
18:36: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259523.exe (ID = 269648)
18:36: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP305\A0175076.exe (ID = 185254)
18:36: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259173.exe (ID = 269648)
18:36: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259009.exe (ID = 269648)
18:36: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259133.exe (ID = 269648)
18:36: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP335\A0223480.exe (ID = 185254)
18:36: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265107.exe (ID = 269648)
18:36: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265108.exe (ID = 269648)
18:36: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265109.exe (ID = 269648)
18:36: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265110.exe (ID = 269648)
18:36: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265111.exe (ID = 269648)
18:36: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265112.exe (ID = 269648)
18:36: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP302\A0167076.exe (ID = 185254)
18:36: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP348\A0244911.exe (ID = 185254)
18:36: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259670.exe (ID = 194450)
18:35: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP346\A0243581.exe (ID = 185254)
18:35: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP340\A0233946.exe (ID = 185254)
18:35: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP344\A0241425.exe (ID = 185254)
18:35: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP349\A0252385.exe (ID = 185254)
18:35: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP310\A0187208.exe (ID = 185254)
18:35: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP309\A0183208.exe (ID = 185254)
18:35: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265113.exe (ID = 269648)
18:35: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265114.exe (ID = 269648)
18:35: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265115.exe (ID = 269648)
18:35: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265116.exe (ID = 269648)
18:35: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265117.exe (ID = 269648)
18:35: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265118.exe (ID = 269648)
18:35: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP348\A0245912.exe (ID = 185254)
18:35: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265119.exe (ID = 269648)
18:35: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP346\A0242480.exe (ID = 185254)
18:35: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP344\A0240325.exe (ID = 185254)
18:35: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP330\A0221199.exe (ID = 185254)
18:35: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP327\A0216874.exe (ID = 185254)
18:35: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259602.exe (ID = 245110)
18:35: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP338\A0231734.exe (ID = 185254)
18:35: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP348\A0243820.exe (ID = 185254)
18:34: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP344\A0241328.exe (ID = 185254)
18:34: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP344\A0238330.exe (ID = 185254)
18:34: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265120.exe (ID = 269648)
18:34: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259137.exe (ID = 269648)
18:34: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259188.exe (ID = 269648)
18:34: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP313\A0194541.exe (ID = 185254)
18:34: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259387.exe (ID = 269648)
18:34: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259439.exe (ID = 269648)
18:34: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258931.exe (ID = 269648)
18:34: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259438.exe (ID = 269648)
18:34: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259432.exe (ID = 269648)
18:34: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP327\A0214871.exe (ID = 185254)
18:34: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP344\A0238270.exe (ID = 185254)
18:34: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265121.exe (ID = 269648)
18:34: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265122.exe (ID = 269648)
18:34: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP343\A0238203.exe (ID = 185254)
18:34: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265123.exe (ID = 269648)
18:34: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265124.exe (ID = 269648)
18:34: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265125.exe (ID = 269648)
18:34: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259614.dll (ID = 276222)
18:34: Found Trojan Horse: trojan-downloader-ac2
18:33: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP344\A0238231.exe (ID = 185254)
18:33: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259021.exe (ID = 269648)
18:33: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP309\A0182208.exe (ID = 185254)
18:33: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP347\A0243694.exe (ID = 185254)
18:33: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP316\A0197543.exe (ID = 185254)
18:33: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP303\A0171096.exe (ID = 185254)
18:33: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP302\A0169076.exe (ID = 185254)
18:33: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259574.exe (ID = 269648)
18:33: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259607.exe (ID = 269649)
18:32: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP344\A0239325.exe (ID = 185254)
18:32: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259593.dll (ID = 290652)
18:32: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259094.exe (ID = 269648)
18:32: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259595.exe (ID = 215896)
18:32: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265126.exe (ID = 269648)
18:32: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265127.exe (ID = 269648)
18:32: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265128.exe (ID = 269648)
18:32: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265129.exe (ID = 269648)
18:32: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265130.exe (ID = 269648)
18:32: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265131.exe (ID = 269648)
18:32: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP291\A0151363.exe (ID = 185254)
18:32: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP316\A0199543.exe (ID = 185254)
18:32: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP323\A0202837.exe (ID = 185254)
18:31: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259007.exe (ID = 269648)
18:31: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259493.exe (ID = 269648)
18:31: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259368.exe (ID = 269648)
18:31: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258921.exe (ID = 269648)
18:31: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP346\A0242527.exe (ID = 185254)
18:31: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259618.dll (ID = 294098)
18:31: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259055.exe (ID = 269648)
18:31: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP339\A0231840.exe (ID = 185254)
18:31: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265149.sys (ID = 188536)
18:31: Found Adware: winantispyware 2005
18:31: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP332\A0222316.exe (ID = 185254)
18:31: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259084.exe (ID = 269648)
18:30: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP345\A0242454.exe (ID = 185254)
18:30: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258918.exe (ID = 107359)
18:30: Found Trojan Horse: p2pnetwork
18:30: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259449.exe (ID = 269648)
18:30: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265132.exe (ID = 269648)
18:29: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259627.exe (ID = 70620)
18:29: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259451.exe (ID = 269648)
18:29: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP343\A0238121.exe (ID = 185254)
18:29: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259362.exe (ID = 269648)
18:29: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265133.exe (ID = 269648)
18:29: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265134.exe (ID = 269648)
18:29: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265135.exe (ID = 269648)
18:29: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265136.exe (ID = 269648)
18:29: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265137.exe (ID = 269648)
18:29: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265138.exe (ID = 269648)
18:29: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259153.exe (ID = 269648)
18:29: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259276.exe (ID = 269648)
18:29: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259604.exe (ID = 245111)
18:29: Found Adware: enbrowser
18:29: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259646.exe (ID = 294)
18:28: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259644.exe (ID = 65722)
18:28: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259105.exe (ID = 269648)
18:28: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP331\A0222242.exe (ID = 185254)
18:28: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265139.exe (ID = 269648)
18:28: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265140.exe (ID = 269648)
18:28: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259190.exe (ID = 269648)
18:28: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0257309.exe (ID = 185254)
18:28: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259231.exe (ID = 269648)
18:28: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259104.exe (ID = 269648)
18:28: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0256158.exe (ID = 185254)
18:28: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259549.exe (ID = 269648)
18:28: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259673.exe (ID = 296017)
18:28: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259541.exe (ID = 269648)
18:27: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259587.exe (ID = 296401)
18:27: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259657.dll (ID = 70014)
18:27: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP333\A0223241.exe (ID = 185254)
18:26: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259609.exe (ID = 296402)
18:26: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP313\A0195487.exe (ID = 185254)
18:26: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259655.exe (ID = 158984)
18:26: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP297\A0155980.exe (ID = 185254)
18:26: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259599.exe (ID = 186060)
18:25: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP347\A0243641.exe (ID = 185254)
18:25: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259616.exe (ID = 294100)
18:24: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP295\A0155861.exe (ID = 185254)
18:24: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP312\A0192467.exe (ID = 185254)
18:24: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259126.exe (ID = 269648)
18:24: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259626.dll (ID = 70439)
18:24: Found Adware: 180search assistant/zango
18:24: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259617.dll (ID = 293973)
18:24: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259619.dll (ID = 293975)
18:23: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259639.dll (ID = 159)
18:23: Found Adware: look2me
18:23: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0257159.dll (ID = 90382)
18:23: Found Adware: winad
18:23: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP343\A0237154.exe (ID = 185254)
18:23: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP342\A0237065.exe (ID = 185254)
18:23: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP342\A0237121.exe (ID = 185254)
18:23: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP342\A0236067.exe (ID = 185254)
18:23: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258954.exe (ID = 269648)
18:23: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259071.exe (ID = 269648)
18:23: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259203.exe (ID = 269648)
18:23: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP331\A0221243.exe (ID = 185254)
18:23: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259342.exe (ID = 269648)
18:22: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259447.exe (ID = 269648)
18:22: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP309\A0185208.exe (ID = 185254)
18:22: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259216.exe (ID = 269648)
18:22: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259166.exe (ID = 269648)
18:22: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP294\A0153594.exe (ID = 185254)
18:22: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0265142.inf (ID = 74044)
18:22: Found Adware: elitemediagroup-mediamotor
18:22: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259645.exe (ID = 294)
18:22: Found Adware: zenosearchassistant
18:22: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP290\A0150365.exe (ID = 185254)
18:22: Found Adware: maxifiles
18:22: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259656.dll (ID = 208226)
18:22: Found Adware: mirar webband
18:21: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258982.exe (ID = 269648)
18:21: Found Trojan Horse: rbot
18:21: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259610.exe (ID = 296016)
18:21: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0258915.dll (ID = 268933)
18:21: Found Adware: clkoptimizer
18:21: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0257293.vbs (ID = 231442)
18:21: Found Adware: command
18:21: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259620.dll (ID = 293976)
18:20: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259612.exe (ID = 296018)
18:20: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP351\A0262776.exe (ID = 290920)
18:20: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259613.exe (ID = 296018)
18:20: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259611.exe (ID = 296016)
18:20: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259672.exe (ID = 296017)
18:20: Found Adware: forethought
18:20: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0257284.exe (ID = 290920)
18:20: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259606.exe (ID = 64496)
18:20: Found Adware: ist istbar
18:20: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0257285.exe (ID = 273586)
18:20: Found Adware: zquest
18:20: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259594.exe (ID = 215896)
18:20: Found Adware: surfsidekick
18:20: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259621.exe (ID = 294100)
18:20: C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP350\A0259622.exe (ID = 294169)
18:20: Found Adware: bookedspace
18:19: Starting File Sweep
18:19: Warning: Failed to access drive A:
18:19: Cookie Sweep Complete, Elapsed Time: 00:00:08
18:19: c:\documents and settings\localservice\cookies\system@realmedia[1].txt (ID = 3235)
18:19: c:\documents and settings\localservice\cookies\system@dealtime[1].txt (ID = 2505)
18:19: Found Spy Cookie: dealtime cookie
18:19: c:\documents and settings\pam\cookies\pam@zenotecnico[2].txt (ID = 3858)
18:19: c:\documents and settings\pam\cookies\pam@zedo[1].txt (ID = 3762)
18:19: c:\documents and settings\pam\cookies\[email protected][1].txt (ID = 2142)
18:19: c:\documents and settings\pam\cookies\pam@xxxtoolbar[2].txt (ID = 3739)
18:19: Found Spy Cookie: xxxtoolbar cookie
18:19: c:\documents and settings\pam\cookies\[email protected][1].txt (ID = 2689)
18:19: Found Spy Cookie: franklinsurveys cookie
18:19: c:\documents and settings\pam\cookies\[email protected][2].txt (ID = 3474)
18:19: Found Spy Cookie: surveys cookie
18:19: c:\documents and settings\pam\cookies\[email protected][1].txt (ID = 3466)
18:19: c:\documents and settings\pam\cookies\[email protected][2].txt (ID = 3374)
18:19: Found Spy Cookie: sidefind cookie
18:19: c:\documents and settings\pam\cookies\[email protected][1].txt (ID = 3368)
18:19: Found Spy Cookie: shop@home cookie
18:19: c:\documents and settings\pam\cookies\[email protected][1].txt (ID = 3312)
18:19: c:\documents and settings\pam\cookies\[email protected][1].txt (ID = 3298)
18:19: c:\documents and settings\pam\cookies\[email protected][1].txt (ID = 2991)
18:19: c:\documents and settings\pam\cookies\[email protected][1].txt (ID = 3707)
18:19: c:\documents and settings\pam\cookies\[email protected][1].txt (ID = 2020)
18:19: c:\documents and settings\pam\cookies\pam@tribalfusion[2].txt (ID = 3589)
18:19: c:\documents and settings\pam\cookies\pam@trafficmp[1].txt (ID = 3581)
18:19: c:\documents and settings\pam\cookies\pam@tradedoubler[2].txt (ID = 3575)
18:19: Found Spy Cookie: tradedoubler cookie
18:19: c:\documents and settings\pam\cookies\pam@tracking[1].txt (ID = 3571)
18:19: Found Spy Cookie: tracking cookie
18:19: c:\documents and settings\pam\cookies\[email protected][1].txt (ID = 3358)
18:19: Found Spy Cookie: sexsearch cookie
18:19: c:\documents and settings\pam\cookies\pam@tacoda[1].txt (ID = 6444)
18:19: c:\documents and settings\pam\cookies\[email protected][1].txt (ID = 3667)
18:19: Found Spy Cookie: webtrendslive cookie
18:19: c:\documents and settings\pam\cookies\[email protected][2].txt (ID = 3254)
18:19: Found Spy Cookie: reliablestats cookie
18:19: c:\documents and settings\pam\cookies\pam@stats-tracking[1].txt (ID = 3453)
18:19: Found Spy Cookie: statstracking cookie
18:19: c:\documents and settings\pam\cookies\pam@statcounter[1].txt (ID = 3447)
18:19: c:\documents and settings\pam\cookies\pam@specificclick[1].txt (ID = 3399)
18:19: Found Spy Cookie: specificclick.com cookie
18:19: c:\documents and settings\pam\cookies\[email protected][2].txt (ID = 2528)
18:19: c:\documents and settings\pam\cookies\pam@sextracker[1].txt (ID = 3361)
18:19: c:\documents and settings\pam\cookies\pam@serving-sys[2].txt (ID = 3343)
18:19: c:\documents and settings\pam\cookies\[email protected][2].txt (ID = 3341)
18:19: c:\documents and settings\pam\cookies\pam@searchadnetwork[2].txt (ID = 3311)
18:19: Found Spy Cookie: searchadnetwork cookie
18:19: c:\documents and settings\pam\cookies\pam@rn11[2].txt (ID = 3261)
18:19: c:\documents and settings\pam\cookies\pam@rightmedia[1].txt (ID = 3259)
18:19: Found Spy Cookie: rightmedia cookie
18:19: c:\documents and settings\pam\cookies\pam@revenue[1].txt (ID = 3257)
18:19: c:\documents and settings\pam\cookies\pam@reunion[1].txt (ID = 3255)
18:19: Found Spy Cookie: reunion cookie
18:19: c:\documents and settings\pam\cookies\pam@realmedia[2].txt (ID = 3235)
18:19: c:\documents and settings\pam\cookies\pam@questionmarket[1].txt (ID = 3217)
18:19: c:\documents and settings\pam\cookies\pam@qsrch[1].txt (ID = 3215)
18:19: Found Spy Cookie: qsrch cookie
18:19: c:\documents and settings\pam\cookies\pam@qksrv[1].txt (ID = 3213)
18:19: Found Spy Cookie: qksrv cookie
18:19: c:\documents and settings\pam\cookies\pam@pro-market[2].txt (ID = 3197)
18:19: Found Spy Cookie: pro-market cookie
18:19: c:\documents and settings\pam\cookies\pam@pricegrabber[1].txt (ID = 3185)
18:19: Found Spy Cookie: pricegrabber cookie
18:19: c:\documents and settings\pam\cookies\[email protected][1].txt (ID = 3106)
18:19: c:\documents and settings\pam\cookies\pam@partypoker[1].txt (ID = 3111)
18:19: c:\documents and settings\pam\cookies\pam@overture[2].txt (ID = 3105)
18:19: c:\documents and settings\pam\cookies\[email protected][2].txt (ID = 2528)
18:19: Found Spy Cookie: directtrack cookie
18:19: c:\documents and settings\pam\cookies\pam@nextag[1].txt (ID = 5014)
18:19: c:\documents and settings\pam\cookies\[email protected][1].txt (ID = 2235)
18:19: c:\documents and settings\pam\cookies\pam@mywebsearch[2].txt (ID = 3051)
18:19: c:\documents and settings\pam\cookies\pam@metareward[1].txt (ID = 2990)
18:19: Found Spy Cookie: metareward.com cookie
18:19: c:\documents and settings\pam\cookies\pam@mediaplex[1].txt (ID = 6442)
18:19: c:\documents and settings\pam\cookies\[email protected][1].txt (ID = 3072)
18:19: Found Spy Cookie: netster cookie
18:19: c:\documents and settings\pam\cookies\pam@kmpads[2].txt (ID = 2909)
18:19: Found Spy Cookie: kmpads cookie
18:19: c:\documents and settings\pam\cookies\[email protected][2].txt (ID = 3288)
18:19: Found Spy Cookie: sb01 cookie
18:19: c:\documents and settings\pam\cookies\pam@ic-live[1].txt (ID = 2821)
18:19: Found Spy Cookie: ic-live cookie
18:19: c:\documents and settings\pam\cookies\[email protected][2].txt (ID = 3298)
18:19: c:\documents and settings\pam\cookies\pam@go2net[1].txt (ID = 2730)
18:19: Found Spy Cookie: go2net.com cookie
18:19: c:\documents and settings\pam\cookies\pam@fastclick[1].txt (ID = 2651)
18:19: c:\documents and settings\pam\cookies\pam@exitexchange[1].txt (ID = 2633)
18:19: c:\documents and settings\pam\cookies\pam@euniverseads[1].txt (ID = 2629)
18:19: Found Spy Cookie: euniverseads cookie
18:19: c:\documents and settings\pam\cookies\[email protected][2].txt (ID = 3269)
18:19: c:\documents and settings\pam\cookies\[email protected][1].txt (ID = 2293)
18:19: c:\documents and settings\pam\cookies\[email protected][1].txt (ID = 2472)
18:19: Found Spy Cookie: coremetrics cookie
18:19: c:\documents and settings\pam\cookies\[email protected][1].txt (ID = 3362)
18:19: Found Spy Cookie: sextracker cookie
18:19: c:\documents and settings\pam\cookies\pam@coolsavings[2].txt (ID = 2465)
18:19: Found Spy Cookie: coolsavings cookie
18:19: c:\documents and settings\pam\cookies\pam@clickbank[1].txt (ID = 2398)
18:19: Found Spy Cookie: clickbank cookie
18:19: c:\documents and settings\pam\cookies\pam@clickagents[1].txt (ID = 2394)
18:19: Found Spy Cookie: clickagents cookie
18:19: c:\documents and settings\pam\cookies\pam@centrport[2].txt (ID = 2374)
18:19: Found Spy Cookie: centrport net cookie
18:19: c:\documents and settings\pam\cookies\pam@cassava[1].txt (ID = 2362)
18:19: c:\documents and settings\pam\cookies\pam@casalemedia[1].txt (ID = 2354)
18:19: c:\documents and settings\pam\cookies\[email protected][2].txt (ID = 3763)
18:19: c:\documents and settings\pam\cookies\[email protected][1].txt (ID = 2614)
18:19: Found Spy Cookie: enhance cookie
18:19: c:\documents and settings\pam\cookies\pam@bluestreak[1].txt (ID = 2314)
18:19: c:\documents and settings\pam\cookies\pam@bizrate[2].txt (ID = 2308)
18:19: Found Spy Cookie: bizrate cookie
18:19: c:\documents and settings\pam\cookies\pam@belnk[2].txt (ID = 2292)
18:19: c:\documents and settings\pam\cookies\pam@banner[1].txt (ID = 2276)
18:19: c:\documents and settings\pam\cookies\pam@azjmp[2].txt (ID = 2270)
18:19: Found Spy Cookie: azjmp cookie
18:19: c:\documents and settings\pam\cookies\pam@atwola[2].txt (ID = 2255)
18:19: c:\documents and settings\pam\cookies\[email protected][2].txt (ID = 2293)
18:19: c:\documents and settings\pam\cookies\pam@atdmt[1].txt (ID = 2253)
18:19: c:\documents and settings\pam\cookies\pam@ask[1].txt (ID = 2245)
18:19: c:\documents and settings\pam\cookies\[email protected][2].txt (ID = 2650)
18:19: c:\documents and settings\pam\cookies\pam@aptimus[2].txt (ID = 2233)
18:19: Found Spy Cookie: aptimus cookie
18:19: c:\documents and settings\pam\cookies\pam@apmebf[1].txt (ID = 2229)
18:19: c:\documents and settings\pam\cookies\pam@advertising[1].txt (ID = 2175)
18:19: c:\documents and settings\pam\cookies\[email protected][2].txt (ID = 3148)
18:19: Found Spy Cookie: pointroll cookie
18:19: c:\documents and settings\pam\cookies\[email protected][1].txt (ID = 2108)
18:19: Found Spy Cookie: ads.adsag cookie
18:19: c:\documents and settings\pam\cookies\pam@adrevolver[3].txt (ID = 2088)
18:19: c:\documents and settings\pam\cookies\pam@adrevolver[1].txt (ID = 2088)
18:19: c:\documents and settings\pam\cookies\[email protected][2].txt (ID = 4207)
18:19: c:\documents and settings\pam\cookies\[email protected][1].txt (ID = 2768)
18:19: c:\documents and settings\pam\cookies\pam@adknowledge[2].txt (ID = 2072)
18:19: c:\documents and settings\pam\cookies\[email protected][2].txt (ID = 3751)
18:19: c:\documents and settings\pam\cookies\pam@ad-logics[1].txt (ID = 2049)
18:19: Found Spy Cookie: ad-logics cookie
18:19: c:\documents and settings\pam\cookies\pam@about[1].txt (ID = 2037)
1
  • 0

#37
D.J. Juego

D.J. Juego

    Member

  • Topic Starter
  • Member
  • PipPip
  • 45 posts
18:19: c:\documents and settings\pam\cookies\[email protected][1].txt (ID = 3665)
18:19: c:\documents and settings\pam\cookies\pam@888[2].txt (ID = 2019)
18:19: c:\documents and settings\pam\cookies\pam@888[1].txt (ID = 2019)
18:19: c:\documents and settings\pam\cookies\pam@80503492[2].txt (ID = 2013)
18:19: c:\documents and settings\pam\cookies\pam@2o7[1].txt (ID = 1957)
18:19: c:\documents and settings\pam\cookies\[email protected][2].txt (ID = 1958)
18:19: c:\documents and settings\pam\cookies\[email protected][2].txt (ID = 3190)
18:19: Found Spy Cookie: primaryads cookie
18:19: c:\documents and settings\bill\cookies\bill@zedo[2].txt (ID = 3762)
18:19: c:\documents and settings\bill\cookies\[email protected][1].txt (ID = 2142)
18:19: Found Spy Cookie: adserver cookie
18:19: c:\documents and settings\bill\cookies\bill@yieldmanager[2].txt (ID = 3749)
18:19: c:\documents and settings\bill\cookies\bill@xiti[1].txt (ID = 3717)
18:19: Found Spy Cookie: xiti cookie
18:19: c:\documents and settings\bill\cookies\[email protected][2].txt (ID = 3466)
18:19: c:\documents and settings\bill\cookies\[email protected][2].txt (ID = 3462)
18:19: Found Spy Cookie: stlyrics cookie
18:19: c:\documents and settings\bill\cookies\[email protected][1].txt (ID = 2735)
18:19: c:\documents and settings\bill\cookies\bill@tribalfusion[2].txt (ID = 3589)
18:19: Found Spy Cookie: tribalfusion cookie
18:19: c:\documents and settings\bill\cookies\bill@trafficmp[1].txt (ID = 3581)
18:19: Found Spy Cookie: trafficmp cookie
18:19: c:\documents and settings\bill\cookies\bill@statcounter[2].txt (ID = 3447)
18:19: c:\documents and settings\bill\cookies\bill@serving-sys[2].txt (ID = 3343)
18:19: Found Spy Cookie: serving-sys cookie
18:19: c:\documents and settings\bill\cookies\[email protected][1].txt (ID = 3341)
18:19: Found Spy Cookie: server.iad.liveperson cookie
18:19: c:\documents and settings\bill\cookies\bill@revenue[1].txt (ID = 3257)
18:19: Found Spy Cookie: revenue.net cookie
18:19: c:\documents and settings\bill\cookies\bill@realmedia[2].txt (ID = 3235)
18:19: c:\documents and settings\bill\cookies\bill@questionmarket[1].txt (ID = 3217)
18:19: Found Spy Cookie: questionmarket cookie
18:19: c:\documents and settings\bill\cookies\[email protected][1].txt (ID = 3106)
18:19: c:\documents and settings\bill\cookies\bill@partypoker[2].txt (ID = 3111)
18:19: c:\documents and settings\bill\cookies\[email protected][1].txt (ID = 1958)
18:19: c:\documents and settings\bill\cookies\bill@overture[1].txt (ID = 3105)
18:19: c:\documents and settings\bill\cookies\bill@nextag[1].txt (ID = 5014)
18:19: c:\documents and settings\bill\cookies\bill@mediaplex[1].txt (ID = 6442)
18:19: Found Spy Cookie: mediaplex cookie
18:19: c:\documents and settings\bill\cookies\[email protected][1].txt (ID = 2652)
18:19: c:\documents and settings\bill\cookies\bill@maxserving[2].txt (ID = 2966)
18:19: Found Spy Cookie: maxserving cookie
18:19: c:\documents and settings\bill\cookies\bill@linksynergy[1].txt (ID = 2926)
18:19: Found Spy Cookie: linksynergy cookie
18:19: c:\documents and settings\bill\cookies\bill@goldenpalace[1].txt (ID = 2734)
18:19: c:\documents and settings\bill\cookies\bill@fastclick[2].txt (ID = 2651)
18:19: c:\documents and settings\bill\cookies\bill@exitexchange[1].txt (ID = 2633)
18:19: c:\documents and settings\bill\cookies\[email protected][1].txt (ID = 3269)
18:19: Found Spy Cookie: ru4 cookie
18:19: c:\documents and settings\bill\cookies\[email protected][2].txt (ID = 2293)
18:19: c:\documents and settings\bill\cookies\[email protected][1].txt (ID = 3106)
18:19: Found Spy Cookie: overture cookie
18:19: c:\documents and settings\bill\cookies\bill@ccbill[1].txt (ID = 2369)
18:19: Found Spy Cookie: ccbill cookie
18:19: c:\documents and settings\bill\cookies\bill@cassava[1].txt (ID = 2362)
18:19: c:\documents and settings\bill\cookies\bill@casalemedia[1].txt (ID = 2354)
18:19: Found Spy Cookie: casalemedia cookie
18:19: c:\documents and settings\bill\cookies\[email protected][2].txt (ID = 3763)
18:19: c:\documents and settings\bill\cookies\bill@bravenet[1].txt (ID = 2322)
18:19: Found Spy Cookie: bravenet cookie
18:19: c:\documents and settings\bill\cookies\bill@bluestreak[2].txt (ID = 2314)
18:19: Found Spy Cookie: bluestreak cookie
18:19: c:\documents and settings\bill\cookies\bill@belnk[1].txt (ID = 2292)
18:19: Found Spy Cookie: belnk cookie
18:19: c:\documents and settings\bill\cookies\[email protected][2].txt (ID = 2735)
18:19: Found Spy Cookie: goldenpalace cookie
18:19: c:\documents and settings\bill\cookies\bill@atwola[1].txt (ID = 2255)
18:19: c:\documents and settings\bill\cookies\bill@atdmt[2].txt (ID = 2253)
18:19: c:\documents and settings\bill\cookies\[email protected][1].txt (ID = 2650)
18:19: c:\documents and settings\bill\cookies\[email protected][2].txt (ID = 2650)
18:19: Found Spy Cookie: falkag cookie
18:19: c:\documents and settings\bill\cookies\bill@alt[2].txt (ID = 2217)
18:19: Found Spy Cookie: alt cookie
18:19: c:\documents and settings\bill\cookies\bill@advertising[2].txt (ID = 2175)
18:19: c:\documents and settings\bill\cookies\bill@adultfriendfinder[2].txt (ID = 2165)
18:19: Found Spy Cookie: adultfriendfinder cookie
18:19: c:\documents and settings\bill\cookies\[email protected][1].txt (ID = 2062)
18:19: Found Spy Cookie: addynamix cookie
18:19: c:\documents and settings\bill\cookies\[email protected][1].txt (ID = 5015)
18:19: c:\documents and settings\bill\cookies\[email protected][2].txt (ID = 4207)
18:19: Found Spy Cookie: hotbar cookie
18:19: c:\documents and settings\bill\cookies\[email protected][1].txt (ID = 2768)
18:19: c:\documents and settings\bill\cookies\bill@adknowledge[2].txt (ID = 2072)
18:19: c:\documents and settings\bill\cookies\bill@adecn[2].txt (ID = 2063)
18:19: Found Spy Cookie: adecn cookie
18:19: c:\documents and settings\bill\cookies\[email protected][1].txt (ID = 3751)
18:19: c:\documents and settings\bill\cookies\bill@888[1].txt (ID = 2019)
18:19: c:\documents and settings\bill\cookies\bill@80503492[1].txt (ID = 2013)
18:19: c:\documents and settings\bill\cookies\bill@2o7[2].txt (ID = 1957)
18:19: c:\documents and settings\ben\cookies\ben@zenotecnico[1].txt (ID = 3858)
18:19: Found Spy Cookie: zenotecnico cookie
18:19: c:\documents and settings\ben\cookies\ben@zedo[2].txt (ID = 3762)
18:19: Found Spy Cookie: zedo cookie
18:19: c:\documents and settings\ben\cookies\ben@yieldmanager[2].txt (ID = 3749)
18:19: c:\documents and settings\ben\cookies\[email protected][1].txt (ID = 3332)
18:19: Found Spy Cookie: seeq cookie
18:19: c:\documents and settings\ben\cookies\[email protected][2].txt (ID = 3466)
18:19: Found Spy Cookie: stopzilla cookie
18:19: c:\documents and settings\ben\cookies\[email protected][1].txt (ID = 3707)
18:19: Found Spy Cookie: www.maxifiles cookie
18:19: c:\documents and settings\ben\cookies\[email protected][1].txt (ID = 2020)
18:19: c:\documents and settings\ben\cookies\ben@videodome[2].txt (ID = 3638)
18:19: Found Spy Cookie: videodome cookie
18:19: c:\documents and settings\ben\cookies\ben@tripod[1].txt (ID = 3591)
18:19: Found Spy Cookie: tripod cookie
18:19: c:\documents and settings\ben\cookies\[email protected][2].txt (ID = 2038)
18:19: c:\documents and settings\ben\cookies\ben@tacoda[1].txt (ID = 6444)
18:19: Found Spy Cookie: tacoda cookie
18:19: c:\documents and settings\ben\cookies\ben@statcounter[1].txt (ID = 3447)
18:19: Found Spy Cookie: statcounter cookie
18:19: c:\documents and settings\ben\cookies\ben@rn11[2].txt (ID = 3261)
18:19: Found Spy Cookie: rn11 cookie
18:19: c:\documents and settings\ben\cookies\ben@realmedia[1].txt (ID = 3235)
18:19: Found Spy Cookie: realmedia cookie
18:19: c:\documents and settings\ben\cookies\ben@partypoker[2].txt (ID = 3111)
18:19: Found Spy Cookie: partypoker cookie
18:19: c:\documents and settings\ben\cookies\[email protected][1].txt (ID = 1958)
18:19: c:\documents and settings\ben\cookies\[email protected][1].txt (ID = 2038)
18:19: c:\documents and settings\ben\cookies\ben@nextag[1].txt (ID = 5014)
18:19: Found Spy Cookie: nextag cookie
18:19: c:\documents and settings\ben\cookies\ben@mywebsearch[1].txt (ID = 3051)
18:19: Found Spy Cookie: mywebsearch cookie
18:19: c:\documents and settings\ben\cookies\ben@monstermarketplace[1].txt (ID = 3006)
18:19: Found Spy Cookie: monstermarketplace cookie
18:19: c:\documents and settings\ben\cookies\[email protected][2].txt (ID = 2397)
18:19: Found Spy Cookie: clickandtrack cookie
18:19: c:\documents and settings\ben\cookies\ben@gamespy[1].txt (ID = 2719)
18:19: Found Spy Cookie: gamespy cookie
18:19: c:\documents and settings\ben\cookies\ben@fastclick[2].txt (ID = 2651)
18:19: Found Spy Cookie: fastclick cookie
18:19: c:\documents and settings\ben\cookies\ben@exitexchange[2].txt (ID = 2633)
18:19: c:\documents and settings\ben\cookies\[email protected][1].txt (ID = 2634)
18:19: c:\documents and settings\ben\cookies\[email protected][1].txt (ID = 2634)
18:19: Found Spy Cookie: exitexchange cookie
18:19: c:\documents and settings\ben\cookies\ben@cassava[1].txt (ID = 2362)
18:19: Found Spy Cookie: cassava cookie
18:19: c:\documents and settings\ben\cookies\ben@banner[1].txt (ID = 2276)
18:19: Found Spy Cookie: banner cookie
18:19: c:\documents and settings\ben\cookies\ben@atwola[2].txt (ID = 2255)
18:19: c:\documents and settings\ben\cookies\ben@atdmt[2].txt (ID = 2253)
18:19: Found Spy Cookie: atlas dmt cookie
18:19: c:\documents and settings\ben\cookies\ben@ask[2].txt (ID = 2245)
18:19: Found Spy Cookie: ask cookie
18:19: c:\documents and settings\ben\cookies\ben@apmebf[1].txt (ID = 2229)
18:19: Found Spy Cookie: apmebf cookie
18:19: c:\documents and settings\ben\cookies\ben@advertising[2].txt (ID = 2175)
18:19: Found Spy Cookie: advertising cookie
18:19: c:\documents and settings\ben\cookies\ben@adrevolver[2].txt (ID = 2088)
18:19: c:\documents and settings\ben\cookies\ben@adrevolver[1].txt (ID = 2088)
18:19: Found Spy Cookie: adrevolver cookie
18:19: c:\documents and settings\ben\cookies\[email protected][2].txt (ID = 2768)
18:19: Found Spy Cookie: hbmediapro cookie
18:19: c:\documents and settings\ben\cookies\ben@adknowledge[1].txt (ID = 2072)
18:19: Found Spy Cookie: adknowledge cookie
18:19: c:\documents and settings\ben\cookies\[email protected][1].txt (ID = 3751)
18:19: Found Spy Cookie: yieldmanager cookie
18:19: c:\documents and settings\ben\cookies\ben@about[2].txt (ID = 2037)
18:19: Found Spy Cookie: about cookie
18:19: c:\documents and settings\ben\cookies\[email protected][1].txt (ID = 3665)
18:19: Found Spy Cookie: websponsors cookie
18:19: c:\documents and settings\ben\cookies\ben@888[2].txt (ID = 2019)
18:19: c:\documents and settings\ben\cookies\ben@888[1].txt (ID = 2019)
18:19: Found Spy Cookie: 888 cookie
18:19: c:\documents and settings\ben\cookies\ben@80503492[1].txt (ID = 2013)
18:19: Found Spy Cookie: 80503492 cookie
18:19: c:\documents and settings\ben\cookies\ben@2o7[1].txt (ID = 1957)
18:19: Found Spy Cookie: 2o7.net cookie
18:19: c:\documents and settings\guest\cookies\[email protected][1].txt (ID = 3298)
18:19: c:\documents and settings\guest\cookies\guest@infospace[2].txt (ID = 2865)
18:19: Found Spy Cookie: infospace cookie
18:19: c:\documents and settings\guest\cookies\[email protected][2].txt (ID = 3298)
18:19: Found Spy Cookie: screensavers.com cookie
18:19: c:\documents and settings\guest\cookies\guest@atwola[2].txt (ID = 2255)
18:19: Found Spy Cookie: atwola cookie
18:19: Starting Cookie Sweep
18:19: Sweep initiated using definitions version 691
18:19: Spy Sweeper 5.0.5.1286 started
18:19: | Start of Session, 06-08-22 |
********
21:26: Removal process completed. Elapsed time 00:00:14
21:26: Quarantining All Traces: zenosearchassistant
21:26: Quarantining All Traces: p2pnetwork
21:26: Removal process initiated
21:26: Traces Found: 2
21:26: Full Sweep has completed. Elapsed time 00:36:59
21:26: File Sweep Complete, Elapsed Time: 00:36:52
21:25: Warning: Stream read error
21:24: C:\avenger\backup.zip (ID = 220230)
21:24: Found Adware: zenosearchassistant
21:24: c:\documents and settings\bill\my documents\downloads\new folder\magix music maker demo 3.01.zip (ID = 107357)
21:23: Found Trojan Horse: p2pnetwork
21:23: Warning: Stream read error
21:22: Warning: Stream read error
21:22: Warning: Failed to access drive E:
21:22: Warning: Failed to access drive D:
20:49: Starting File Sweep
20:49: Warning: Failed to access drive A:
20:49: Sweep initiated using definitions version 691
20:49: Spy Sweeper 5.0.5.1286 started
20:49: | Start of Session, 06-08-22 |
********
  • 0

#38
Rawe

Rawe

    Visiting Staff

  • Member
  • PipPipPipPipPipPipPip
  • 4,746 posts
In case you missed my reply couple logs back.. :blink:

Wow it's long.. :whistling:

Think I got the general idea... SpySweeper seems to have done a nice job.

Clean out temporary files:

  • Click Start -> Run and type in: cleanmgr
  • Click "Ok".
  • Let it scan your system.
  • Make sure Temporary Files, Temporary Internet Files, and Recycle Bin are the only ones checked.
  • Click "OK" to remove them.
  • Click "Yes" to confirm the deletion.
----

Post an fresh HijackThis log... And hows the system running now? Also, you don't need to run that defragment tool if you already ran Microsoft's one. :help:


  • 0

#39
D.J. Juego

D.J. Juego

    Member

  • Topic Starter
  • Member
  • PipPip
  • 45 posts
Logfile of HijackThis v1.99.1
Scan saved at 12:29, on 06-08-23
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\LEXPPS.EXE
C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe
C:\Program Files\Common Files\Symantec Shared\ccProxy.exe
C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
C:\WINDOWS\system32\hkcmd.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe
C:\Program Files\Intel\Modem Event Monitor\IntelMEM.exe
C:\Program Files\Dell\Media Experience\PCMService.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\MUSICMATCH\Musicmatch Jukebox\mm_server.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Common Files\AOL\1111442460\ee\AOLSoftware.exe
C:\Program Files\Lexmark X74-X75\lxbbbmgr.exe
C:\Program Files\Browser Mouse\mouse32a.exe
C:\Program Files\Lexmark X74-X75\lxbbbmon.exe
C:\Program Files\MUSICMATCH\Musicmatch Jukebox\mmtask.exe
C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe
C:\Program Files\Muiltmedia keyboard utility\1.1\KbdAp32A.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\AOL Computer Check-Up\ACCAgnt.exe
C:\Program Files\AWS\WeatherBug\Weather.exe
C:\Program Files\Dell Support\DSAgnt.exe
C:\Program Files\MUSICMATCH\Musicmatch Jukebox\MMDiag.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe
c:\program files\common files\aol\1111442460\ee\aolsoftware.exe
C:\Program Files\Webroot\Spy Sweeper\SpySweeperUI.exe
C:\Program Files\Webroot\Spy Sweeper\SSU.EXE
C:\Program Files\LimeWire\LimeWire.exe
C:\Documents and Settings\Ben\Desktop\HijackThis.exe

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://mailredirect.netscape.com/
F2 - REG:system.ini: Shell=Explorer.exe, C:\WINDOWS\system32\ygjed.exe
F2 - REG:system.ini: UserInit=C:\WINDOWS\SYSTEM32\Userinit.exe,jbpinve.exe
O3 - Toolbar: Viewpoint Toolbar - {F8AD5AA5-D966-4667-9DAF-2561D68B2012} - C:\Program Files\Viewpoint\Viewpoint Toolbar\ViewBar.dll (file missing)
O3 - Toolbar: AOL Toolbar - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:\Program Files\AOL\AOL Toolbar 2.0\aoltb.dll
O3 - Toolbar: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll
O3 - Toolbar: Web assistant - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe"
O4 - HKLM\..\Run: [DVDLauncher] "C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe"
O4 - HKLM\..\Run: [IntelMeM] "C:\Program Files\Intel\Modem Event Monitor\IntelMEM.exe"
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\Media Experience\PCMService.exe"
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [mm_server] "C:\Program Files\MUSICMATCH\Musicmatch Jukebox\mm_server.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [HostManager] "C:\Program Files\Common Files\AOL\1111442460\ee\AOLSoftware.exe"
O4 - HKLM\..\Run: [Lexmark X74-X75] "C:\Program Files\Lexmark X74-X75\lxbbbmgr.exe"
O4 - HKLM\..\Run: [FLMK08KB] "C:\Program Files\Muiltmedia keyboard utility\1.1\MMKEYBD.EXE"
O4 - HKLM\..\Run: [FLMOFFICE4DMOUSE] "C:\Program Files\Browser Mouse\mouse32a.exe"
O4 - HKLM\..\Run: [AOLDialer] "C:\Program Files\Common Files\AOL\ACS\AOLDial.exe"
O4 - HKLM\..\Run: [Pure Networks Port Magic] "C:\PROGRA~1\PURENE~1\PORTMA~1\PortAOL.exe" -Run
O4 - HKLM\..\Run: [mmtask] "C:\Program Files\MUSICMATCH\Musicmatch Jukebox\mmtask.exe"
O4 - HKLM\..\Run: [AOL Spyware Protection] "C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe"
O4 - HKLM\..\Run: [IPHSend] "C:\Program Files\Common Files\AOL\IPHSend\IPHSend.exe"
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [URLLSTCK.exe] "C:\Program Files\Norton Internet Security\UrlLstCk.exe"
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [AOLCC] "C:\Program Files\AOL Computer Check-Up\ACCAgnt.exe" /startup
O4 - HKCU\..\Run: [Weather] "C:\Program Files\AWS\WeatherBug\Weather.exe" 1
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\Dell Support\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\Program Files\Yahoo!\Messenger\ypager.exe" -quiet
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: AOL Toolbar - {3369AF0D-62E9-4bda-8103-B4C75499B578} - C:\Program Files\AOL\AOL Toolbar 2.0\aoltb.dll
O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\WINDOWS\System32\shdocvw.dll
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\WINDOWS\System32\shdocvw.dll
O9 - Extra button: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll
O9 - Extra 'Tools' menuitem: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: MUSICMATCH MX Web Player - {d81ca86b-ef63-42af-bee3-4502d9a03c2d} - http://wwws.musicmat...enWebRadio.html (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O15 - Trusted Zone: http://ny.contentmatch.net (HKLM)
O16 - DPF: {01113300-3E00-11D2-8470-0060089874ED} (Support.com Configuration Class) - https://activatemyfi...oad/tgctlcm.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) -
O16 - DPF: {E5D419D6-A846-4514-9FAD-97E826C84822} - http://fdl.msn.com/z...s/heartbeat.cab
O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online - C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
O23 - Service: AOL TopSpeed Monitor (AOL TopSpeedMonitor) - America Online, Inc - C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccProxy.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: ewido anti-spyware 4.0 guard - Unknown owner - C:\Program Files\ewido anti-spyware 4.0\guard.exe (file missing)
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
O23 - Service: Norton AntiVirus Auto Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: sdktemp - Unknown owner - C:\WINDOWS\sdktemp.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
O23 - Service: Webroot Spy Sweeper Engine (WebrootSpySweeperService) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
  • 0

#40
Rawe

Rawe

    Visiting Staff

  • Member
  • PipPipPipPipPipPipPip
  • 4,746 posts
WHEW; almost done with this :blink:

Go ahead and uninstall SpySweeper.

-----

Please print these instructions out, or write them down, as you can't read them during the fix.

Please download rdrivRem.zip and unzip it to your desktop in it's own folder.

Next, please reboot your computer in Safe Mode by doing the following:
1) Restart your computer
2) After hearing your computer beep once during startup, but before the Windows icon appears, press F8.
3) Instead of Windows loading as normal, a menu should appear
4) Select the first option, to run Windows in Safe Mode.


Once in Safe Mode, please go into the rdrivrem folder and double-click rdrivRem.bat to run the program - follow the instructions on the screen. After it's complete, rdriv.txt will be created in the rdrivRem folder.

Reboot back into normal Windows.

Please download Qoofix © RubbeR DuckY:
  • Unzip all files to a convenient location such as C:\Qoofix.
  • Go to the folder you unzipped all files and double-click Qoofix.exe.
  • Click Begin Removal and wait for the scan to finish.
  • If an infection has been found, select yes to restart your computer.
  • Post back with a fresh HijackThis log and the contents of the Qoofix logfile aswell as the contents of the rdriv.txt log. :whistling:

    Note: If you have problems with the Qoofix logfile, open it manually from its own folder -> C:\Qoofix.

  • 0

Advertisements


#41
D.J. Juego

D.J. Juego

    Member

  • Topic Starter
  • Member
  • PipPip
  • 45 posts
Qoofix v1.03 by http://www.malwarebytes.org
Scan started on [06-08-23] at [14:27:58]
-------------------------------------------------------------
No malicious modules found!
-------------------------------------------------------------
No Qoologic infected files found!
-------------------------------------------------------------
Scan COMPLETED SUCCESSFULLY on [06-08-23] at [14:29:52]

Note: Some registry keys may have been removed.


RDrivRem Log 14:07:12.51 06-08-23


~~~~~~~~~~~~~ Pre-run File Check ~~~~~~~~~~~~~

rdriv.sys present!
sdktemp.exe present!


~~~~~~~~~~~~~ Post run File Check ~~~~~~~~~~~~~

Logfile of HijackThis v1.99.1
Scan saved at 14:48, on 06-08-23
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\LEXPPS.EXE
C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe
C:\Program Files\Common Files\Symantec Shared\ccProxy.exe
C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\hkcmd.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe
C:\Program Files\Intel\Modem Event Monitor\IntelMEM.exe
C:\Program Files\Dell\Media Experience\PCMService.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\MUSICMATCH\Musicmatch Jukebox\mm_server.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Common Files\AOL\1111442460\ee\AOLSoftware.exe
C:\Program Files\Lexmark X74-X75\lxbbbmgr.exe
C:\Program Files\Browser Mouse\mouse32a.exe
C:\Program Files\Lexmark X74-X75\lxbbbmon.exe
C:\Program Files\Muiltmedia keyboard utility\1.1\KbdAp32A.exe
C:\Program Files\MUSICMATCH\Musicmatch Jukebox\mmtask.exe
C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\AOL Computer Check-Up\ACCAgnt.exe
C:\Program Files\AWS\WeatherBug\Weather.exe
C:\Program Files\Dell Support\DSAgnt.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\MUSICMATCH\Musicmatch Jukebox\MMDiag.exe
C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe
c:\program files\common files\aol\1111442460\ee\aolsoftware.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\LimeWire\LimeWire.exe
C:\Documents and Settings\Ben\Desktop\HijackThis.exe

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://mailredirect.netscape.com/
O3 - Toolbar: Viewpoint Toolbar - {F8AD5AA5-D966-4667-9DAF-2561D68B2012} - C:\Program Files\Viewpoint\Viewpoint Toolbar\ViewBar.dll (file missing)
O3 - Toolbar: AOL Toolbar - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:\Program Files\AOL\AOL Toolbar 2.0\aoltb.dll
O3 - Toolbar: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll
O3 - Toolbar: Web assistant - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe"
O4 - HKLM\..\Run: [DVDLauncher] "C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe"
O4 - HKLM\..\Run: [IntelMeM] "C:\Program Files\Intel\Modem Event Monitor\IntelMEM.exe"
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\Media Experience\PCMService.exe"
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [mm_server] "C:\Program Files\MUSICMATCH\Musicmatch Jukebox\mm_server.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [HostManager] "C:\Program Files\Common Files\AOL\1111442460\ee\AOLSoftware.exe"
O4 - HKLM\..\Run: [Lexmark X74-X75] "C:\Program Files\Lexmark X74-X75\lxbbbmgr.exe"
O4 - HKLM\..\Run: [FLMK08KB] "C:\Program Files\Muiltmedia keyboard utility\1.1\MMKEYBD.EXE"
O4 - HKLM\..\Run: [FLMOFFICE4DMOUSE] "C:\Program Files\Browser Mouse\mouse32a.exe"
O4 - HKLM\..\Run: [AOLDialer] "C:\Program Files\Common Files\AOL\ACS\AOLDial.exe"
O4 - HKLM\..\Run: [Pure Networks Port Magic] "C:\PROGRA~1\PURENE~1\PORTMA~1\PortAOL.exe" -Run
O4 - HKLM\..\Run: [mmtask] "C:\Program Files\MUSICMATCH\Musicmatch Jukebox\mmtask.exe"
O4 - HKLM\..\Run: [AOL Spyware Protection] "C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe"
O4 - HKLM\..\Run: [IPHSend] "C:\Program Files\Common Files\AOL\IPHSend\IPHSend.exe"
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [URLLSTCK.exe] "C:\Program Files\Norton Internet Security\UrlLstCk.exe"
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [AOLCC] "C:\Program Files\AOL Computer Check-Up\ACCAgnt.exe" /startup
O4 - HKCU\..\Run: [Weather] C:\Program Files\AWS\WeatherBug\Weather.exe 1
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\Dell Support\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\Program Files\Yahoo!\Messenger\ypager.exe" -quiet
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: AOL Toolbar - {3369AF0D-62E9-4bda-8103-B4C75499B578} - C:\Program Files\AOL\AOL Toolbar 2.0\aoltb.dll
O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\WINDOWS\System32\shdocvw.dll
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\WINDOWS\System32\shdocvw.dll
O9 - Extra button: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll
O9 - Extra 'Tools' menuitem: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: MUSICMATCH MX Web Player - {d81ca86b-ef63-42af-bee3-4502d9a03c2d} - http://wwws.musicmat...enWebRadio.html (file missing)
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O15 - Trusted Zone: http://ny.contentmatch.net (HKLM)
O16 - DPF: {01113300-3E00-11D2-8470-0060089874ED} (Support.com Configuration Class) - https://activatemyfi...oad/tgctlcm.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft....k/?linkid=39204
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) -
O16 - DPF: {E5D419D6-A846-4514-9FAD-97E826C84822} - http://fdl.msn.com/z...s/heartbeat.cab
O20 - Winlogon Notify: WRNotifier - WRLogonNTF.dll (file missing)
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online - C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
O23 - Service: AOL TopSpeed Monitor (AOL TopSpeedMonitor) - America Online, Inc - C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccProxy.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: ewido anti-spyware 4.0 guard - Unknown owner - C:\Program Files\ewido anti-spyware 4.0\guard.exe (file missing)
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
O23 - Service: Norton AntiVirus Auto Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
  • 0

#42
Rawe

Rawe

    Visiting Staff

  • Member
  • PipPipPipPipPipPipPip
  • 4,746 posts
Alrighty then :whistling:

Go ahead and delete QooFix along with RdrivRem.

Please run a scan with HijackThis and check the following objects for removal:

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
O3 - Toolbar: Viewpoint Toolbar - {F8AD5AA5-D966-4667-9DAF-2561D68B2012} - C:\Program Files\Viewpoint\Viewpoint Toolbar\ViewBar.dll (file missing)
O20 - Winlogon Notify: WRNotifier - WRLogonNTF.dll (file missing)
O23 - Service: ewido anti-spyware 4.0 guard - Unknown owner - C:\Program Files\ewido anti-spyware 4.0\guard.exe (file missing)


Now close ALL other open windows except for HijackThis and hit FIX CHECKED. Exit HijackThis.

----

Updating Java and Clearing Cache
  • Go to Start > Control Panel double-click on the Software icon > Add/Remove Programs.
  • Search in the list for all previous installed versions of Java. (J2SE Runtime Environment.... )
    It should have next icon next to it: Posted Image
    Select it and click Remove.
  • After the reboot, go back into the Control Panel and double-click the Java Icon.
  • Under Temporary Internet Files, click the Delete Files button.
  • There are three options in the window to clear the cache - Leave ALL 3 CheckedDownloaded Applets
    Downloaded Applications
    Other Files
  • Click OK on Delete Temporary Files Window
    Note: This deletes ALL the Downloaded Applications and Applets from the CACHE.
  • Click OK to leave the Java Control Panel.
----

Hows the system running now? :blink:
  • 0

#43
D.J. Juego

D.J. Juego

    Member

  • Topic Starter
  • Member
  • PipPip
  • 45 posts
both the javas?
  • 0

#44
Rawe

Rawe

    Visiting Staff

  • Member
  • PipPipPipPipPipPipPip
  • 4,746 posts

both the javas?

If you have more than one entry for J2SE Runtime Environment (earlier versions) on the Add/Remove Programs list, you should uninstall them and then install the latest one manually from the link :whistling:
  • 0

#45
D.J. Juego

D.J. Juego

    Member

  • Topic Starter
  • Member
  • PipPip
  • 45 posts
k thanks my brothers name is running smothly. now can u help me with my computer name. it is still slow and everything and to get on to it i need to use safe mode. do u want me to go on and get a hijack this log and post it or something else?
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP