---------------------------------------------------------
AVG Anti-Spyware - Scan Report
---------------------------------------------------------
+ Created at: 23:31:09 21/05/2007
+ Scan result:
HKU\S-1-5-21-1708537768-1563985344-1343024091-1003\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{56F1D444-11BF-4879-A12B-79CF0177F038} -> Adware.180Solutions : Cleaned with backup (quarantined).
HKU\S-1-5-21-1708537768-1563985344-1343024091-1003\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{56F1D444-11BF-4879-A12B-79CF0177F038} -> Adware.180Solutions : Cleaned with backup (quarantined).
C:\Program Files\Common Files\Companion Wizard\WapCHK.dll -> Adware.Companion : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{459F9B87-CFD4-4A3B-AA85-E220E051E149}\RP281\A0035823.dll -> Adware.Companion : Cleaned with backup (quarantined).
C:\Documents and Settings\Ken\Local Settings\Temp\setup.exe -> Adware.DriveCleaner : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{459F9B87-CFD4-4A3B-AA85-E220E051E149}\RP281\A0035732.exe -> Adware.DriveCleaner : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{459F9B87-CFD4-4A3B-AA85-E220E051E149}\RP284\A0040949.exe -> Adware.DriveCleaner : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{459F9B87-CFD4-4A3B-AA85-E220E051E149}\RP284\A0040950.dll -> Adware.ErrorSafe : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{459F9B87-CFD4-4A3B-AA85-E220E051E149}\RP299\A0042219.dll -> Adware.ErrorSafe : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{459F9B87-CFD4-4A3B-AA85-E220E051E149}\RP284\A0040940.exe -> Adware.Fakealert : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{459F9B87-CFD4-4A3B-AA85-E220E051E149}\RP299\A0042218.exe -> Adware.Fakealert : Cleaned with backup (quarantined).
HKU\S-1-5-21-1708537768-1563985344-1343024091-1003\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{84938242-5C5B-4A55-B6B9-A1507543B418} -> Adware.Generic : Cleaned with backup (quarantined).
HKU\S-1-5-21-1708537768-1563985344-1343024091-1003\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A6ACAE64-F798-4930-AD86-BD3FB32038DB} -> Adware.Generic : Cleaned with backup (quarantined).
HKU\S-1-5-21-1708537768-1563985344-1343024091-1003\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{84938242-5C5B-4A55-B6B9-A1507543B418} -> Adware.Generic : Cleaned with backup (quarantined).
HKU\S-1-5-21-1708537768-1563985344-1343024091-1003\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A6ACAE64-F798-4930-AD86-BD3FB32038DB} -> Adware.Generic : Cleaned with backup (quarantined).
C:\Documents and Settings\Ken\My Documents\My Downloads\PestCaptureSetup.exe -> Adware.SpySheriff : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{459F9B87-CFD4-4A3B-AA85-E220E051E149}\RP281\A0035708.exe -> Adware.SystemDoctor : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{459F9B87-CFD4-4A3B-AA85-E220E051E149}\RP341\A0046238.exe -> Adware.Systemdoctor : Cleaned with backup (quarantined).
HKU\S-1-5-21-1708537768-1563985344-1343024091-1003\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{2178F3FB-2560-458F-BDEE-631E2FE0DFE4} -> Adware.WinAntiVirus : Cleaned with backup (quarantined).
HKU\S-1-5-21-1708537768-1563985344-1343024091-1003\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2178F3FB-2560-458F-BDEE-631E2FE0DFE4} -> Adware.WinAntiVirus : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{459F9B87-CFD4-4A3B-AA85-E220E051E149}\RP341\A0046242.exe -> Adware.WinFixer : Cleaned with backup (quarantined).
C:\Documents and Settings\Ken\My Documents\My Downloads\installdrivecleanerstart_tbn.exe -> Downloader.Small : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{459F9B87-CFD4-4A3B-AA85-E220E051E149}\RP281\A0035721.dll -> Downloader.Zlob.aud : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{459F9B87-CFD4-4A3B-AA85-E220E051E149}\RP281\A0035722.exe -> Downloader.Zlob.aud : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{459F9B87-CFD4-4A3B-AA85-E220E051E149}\RP281\A0036901.exe -> Downloader.Zlob.bng : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{459F9B87-CFD4-4A3B-AA85-E220E051E149}\RP280\A0035289.dll -> Downloader.Zlob.bpn : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{459F9B87-CFD4-4A3B-AA85-E220E051E149}\RP280\A0035290.exe -> Downloader.Zlob.bpn : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{459F9B87-CFD4-4A3B-AA85-E220E051E149}\RP280\A0035291.exe -> Downloader.Zlob.bpn : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{459F9B87-CFD4-4A3B-AA85-E220E051E149}\RP281\A0035720.exe -> Downloader.Zlob.bpn : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{459F9B87-CFD4-4A3B-AA85-E220E051E149}\RP281\A0035737.dll -> Downloader.Zlob.bpn : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{459F9B87-CFD4-4A3B-AA85-E220E051E149}\RP281\A0035738.exe -> Downloader.Zlob.bpn : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{459F9B87-CFD4-4A3B-AA85-E220E051E149}\RP281\A0035811.dll -> Downloader.Zlob.bpn : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{459F9B87-CFD4-4A3B-AA85-E220E051E149}\RP281\A0035812.exe -> Downloader.Zlob.bpn : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{459F9B87-CFD4-4A3B-AA85-E220E051E149}\RP281\A0035813.exe -> Downloader.Zlob.bpn : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{459F9B87-CFD4-4A3B-AA85-E220E051E149}\RP281\A0036811.dll -> Downloader.Zlob.bpn : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{459F9B87-CFD4-4A3B-AA85-E220E051E149}\RP281\A0036812.exe -> Downloader.Zlob.bpn : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{459F9B87-CFD4-4A3B-AA85-E220E051E149}\RP281\A0036813.exe -> Downloader.Zlob.bpn : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{459F9B87-CFD4-4A3B-AA85-E220E051E149}\RP281\A0036888.dll -> Downloader.Zlob.bpn : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{459F9B87-CFD4-4A3B-AA85-E220E051E149}\RP281\A0036889.exe -> Downloader.Zlob.bpn : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{459F9B87-CFD4-4A3B-AA85-E220E051E149}\RP281\A0036890.exe -> Downloader.Zlob.bpn : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{459F9B87-CFD4-4A3B-AA85-E220E051E149}\RP281\A0036899.dll -> Downloader.Zlob.bpn : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{459F9B87-CFD4-4A3B-AA85-E220E051E149}\RP281\A0036900.exe -> Downloader.Zlob.bpn : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{459F9B87-CFD4-4A3B-AA85-E220E051E149}\RP281\A0036902.exe -> Downloader.Zlob.bpn : Cleaned with backup (quarantined).
C:\Documents and Settings\Ken\My Documents\My Downloads\SystemDoctor2006FreeInstall.exe -> Not-A-Virus.Downloader.Win32.WinFixer.q : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{459F9B87-CFD4-4A3B-AA85-E220E051E149}\RP280\A0035281.exe -> Not-A-Virus.Downloader.Win32.WinFixer.x : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{459F9B87-CFD4-4A3B-AA85-E220E051E149}\RP341\A0046245.exe -> Not-A-Virus.Downloader.Win32.WinFixer.x : Cleaned with backup (quarantined).
C:\Documents and Settings\Ken\Cookies\
[email protected][1].txt -> TrackingCookie.2o7 : Cleaned.
E:\norton grage 05\Cookies\
[email protected][1].txt -> TrackingCookie.2o7 : Cleaned.
E:\norton grage 05\Cookies\
[email protected][3].txt -> TrackingCookie.2o7 : Cleaned.
E:\norton grage 05\Cookies\
[email protected][4].txt -> TrackingCookie.2o7 : Cleaned.
E:\norton grage 05\Cookies\__@2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
E:\norton grage 05\Cookies\__@2o7[2].txt -> TrackingCookie.2o7 : Cleaned.
E:\norton grage 05\Cookies\__@2o7[3].txt -> TrackingCookie.2o7 : Cleaned.
E:\norton grage 05\Cookies\
[email protected][2].txt -> TrackingCookie.Addynamix : Cleaned.
E:\norton grage 05\Cookies\
[email protected][1].txt -> TrackingCookie.Adobe : Cleaned.
E:\norton grage 05\Cookies\
[email protected][1].txt -> TrackingCookie.Adserver : Cleaned.
E:\norton grage 05\Cookies\
[email protected][2].txt -> TrackingCookie.Adserver : Cleaned.
E:\norton grage 05\Cookies\
[email protected][4].txt -> TrackingCookie.Adserver : Cleaned.
C:\Documents and Settings\Ken\Cookies\ken@adtech[2].txt -> TrackingCookie.Adtech : Cleaned.
E:\norton grage 05\Cookies\__@adtech[1].txt -> TrackingCookie.Adtech : Cleaned.
E:\norton grage 05\Cookies\__@adtech[2].txt -> TrackingCookie.Adtech : Cleaned.
C:\Documents and Settings\Ken\Cookies\ken@advertising[2].txt -> TrackingCookie.Advertising : Cleaned.
E:\norton grage 05\Cookies\__@advertising[1].txt -> TrackingCookie.Advertising : Cleaned.
E:\norton grage 05\Cookies\__@advertising[2].txt -> TrackingCookie.Advertising : Cleaned.
E:\norton grage 05\Cookies\__@advertising[3].txt -> TrackingCookie.Advertising : Cleaned.
E:\norton grage 05\Cookies\__@advertising[4].txt -> TrackingCookie.Advertising : Cleaned.
E:\norton grage 05\Cookies\__@advertising[5].txt -> TrackingCookie.Advertising : Cleaned.
E:\norton grage 05\Cookies\__@advertising[6].txt -> TrackingCookie.Advertising : Cleaned.
E:\norton grage 05\Cookies\__@advertising[7].txt -> TrackingCookie.Advertising : Cleaned.
E:\norton grage 05\Cookies\
[email protected][1].txt -> TrackingCookie.Advertising : Cleaned.
E:\norton grage 05\Cookies\
[email protected][2].txt -> TrackingCookie.Advertising : Cleaned.
E:\norton grage 05\Cookies\
[email protected][3].txt -> TrackingCookie.Advertising : Cleaned.
E:\norton grage 05\Cookies\
[email protected][4].txt -> TrackingCookie.Advertising : Cleaned.
E:\norton grage 05\Cookies\
[email protected][5].txt -> TrackingCookie.Advertising : Cleaned.
E:\norton grage 05\Cookies\
[email protected][6].txt -> TrackingCookie.Advertising : Cleaned.
E:\norton grage 05\Cookies\
[email protected][7].txt -> TrackingCookie.Advertising : Cleaned.
E:\norton grage 05\Cookies\
[email protected][8].txt -> TrackingCookie.Advertising : Cleaned.
E:\norton grage 05\Cookies\
[email protected][9].txt -> TrackingCookie.Advertising : Cleaned.
E:\norton grage 05\Cookies\__@adviva[1].txt -> TrackingCookie.Adviva : Cleaned.
E:\norton grage 05\Cookies\__@adviva[2].txt -> TrackingCookie.Adviva : Cleaned.
E:\norton grage 05\Cookies\__@adviva[3].txt -> TrackingCookie.Adviva : Cleaned.
E:\norton grage 05\Cookies\__@adviva[4].txt -> TrackingCookie.Adviva : Cleaned.
E:\norton grage 05\Cookies\__@adviva[5].txt -> TrackingCookie.Adviva : Cleaned.
E:\norton grage 05\Cookies\__@adviva[6].txt -> TrackingCookie.Adviva : Cleaned.
C:\Documents and Settings\Ken\Cookies\ken@atdmt[2].txt -> TrackingCookie.Atdmt : Cleaned.
E:\norton grage 05\Cookies\__@atdmt[1].txt -> TrackingCookie.Atdmt : Cleaned.
E:\norton grage 05\Cookies\__@atdmt[2].txt -> TrackingCookie.Atdmt : Cleaned.
E:\norton grage 05\Cookies\__@atdmt[4].txt -> TrackingCookie.Atdmt : Cleaned.
E:\norton grage 05\Cookies\__@atdmt[5].txt -> TrackingCookie.Atdmt : Cleaned.
E:\norton grage 05\Cookies\__@bfast[1].txt -> TrackingCookie.Bfast : Cleaned.
E:\norton grage 05\Cookies\__@bfast[3].txt -> TrackingCookie.Bfast : Cleaned.
E:\norton grage 05\Cookies\__@bfast[4].txt -> TrackingCookie.Bfast : Cleaned.
E:\norton grage 05\Cookies\__@bluestreak[1].txt -> TrackingCookie.Bluestreak : Cleaned.
E:\norton grage 05\Cookies\__@bluestreak[2].txt -> TrackingCookie.Bluestreak : Cleaned.
E:\norton grage 05\Cookies\__@bluestreak[3].txt -> TrackingCookie.Bluestreak : Cleaned.
E:\norton grage 05\Cookies\__@bluestreak[4].txt -> TrackingCookie.Bluestreak : Cleaned.
E:\norton grage 05\Cookies\__@bluestreak[5].txt -> TrackingCookie.Bluestreak : Cleaned.
E:\norton grage 05\Cookies\
[email protected][2].txt -> TrackingCookie.Bridgetrack : Cleaned.
E:\norton grage 05\Cookies\__@burstnet[1].txt -> TrackingCookie.Burstnet : Cleaned.
E:\norton grage 05\Cookies\__@burstnet[2].txt -> TrackingCookie.Burstnet : Cleaned.
E:\norton grage 05\Cookies\__@casalemedia[2].txt -> TrackingCookie.Casalemedia : Cleaned.
E:\norton grage 05\Cookies\__@casalemedia[3].txt -> TrackingCookie.Casalemedia : Cleaned.
E:\norton grage 05\Cookies\__@click2net[2].txt -> TrackingCookie.Click2net : Cleaned.
C:\Documents and Settings\Ken\Cookies\ken@clickbank[1].txt -> TrackingCookie.Clickbank : Cleaned.
E:\norton grage 05\Cookies\
[email protected][1].txt -> TrackingCookie.Co : Cleaned.
E:\norton grage 05\Cookies\
[email protected][2].txt -> TrackingCookie.Co : Cleaned.
C:\Documents and Settings\Ken\Cookies\ken@com[1].txt -> TrackingCookie.Com : Cleaned.
C:\Documents and Settings\Ken\Cookies\
[email protected][2].txt -> TrackingCookie.Com : Cleaned.
E:\norton grage 05\Cookies\__@com[1].txt -> TrackingCookie.Com : Cleaned.
E:\norton grage 05\Cookies\__@com[3].txt -> TrackingCookie.Com : Cleaned.
E:\norton grage 05\Cookies\__@commission-junction[1].txt -> TrackingCookie.Commission-junction : Cleaned.
C:\Documents and Settings\Ken\Cookies\
[email protected][1].txt -> TrackingCookie.Coremetrics : Cleaned.
E:\norton grage 05\Cookies\
[email protected][1].txt -> TrackingCookie.Coremetrics : Cleaned.
E:\norton grage 05\Cookies\
[email protected][2].txt -> TrackingCookie.Counted : Cleaned.
E:\norton grage 05\Cookies\
[email protected][3].txt -> TrackingCookie.Counted : Cleaned.
E:\norton grage 05\Cookies\__@dealtime[1].txt -> TrackingCookie.Dealtime : Cleaned.
E:\norton grage 05\Cookies\
[email protected][1].txt -> TrackingCookie.Dealtime : Cleaned.
C:\Documents and Settings\Ken\Cookies\ken@doubleclick[1].txt -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEadufsu -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEbabift -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEbgmaaa -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEbpsnnp -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEckhgyl -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEcpsivv -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEdzeaib -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEeabmqm -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEebvwib -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEefojsm -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEespzyz -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEexexqo -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEfrshzz -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEgeeoyx -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEgmqxfh -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEhlsxex -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEhrbdys -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEhrlrak -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEhvyuqy -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEhxlavq -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEigfuvq -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEihfrtg -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEipaqze -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEiqyybk -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEirpzxo -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEivbbec -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEjaeodf -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEjhqczd -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEjsehse -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEjyztkp -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEjzsscb -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEknvigl -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEkyzktk -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KElabuwx -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEleesnr -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KElijazh -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KElngftx -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEloboip -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEmarrwi -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEmhoprd -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEmhpuha -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEmnhtpw -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEnakdoh -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEnbanch -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEnjmgew -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEnwlfll -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEnygurs -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEoeiqcb -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEorhqmp -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEotgerw -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEpfgycb -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEpgmaun -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEppcywc -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEprylvk -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEptouov -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEqbffmx -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEqlljuo -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEqtmhtc -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEquxdns -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KErgezyo -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KErhlzzi -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KErhqfyl -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KErprbvz -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KErsyozs -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KErxkfii -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEseaelv -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEsojjlu -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEswcojf -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEszdkow -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEttnfdx -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEufwklu -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEuiktjx -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEulsqfd -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEutszsg -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEvgtyje -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEvluloe -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEvqhxsv -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEvvnkqw -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEwkkinj -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEwryoyk -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEwuiocp -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KExcbfep -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KExegorb -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KExlzoeo -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KExwfwuq -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEyaxxmn -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEybouvy -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEydzhwb -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEyfhlrs -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEyiryjh -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEyxegko -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEzegcsf -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEzeoijg -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEzgvogy -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEzjvdzv -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEzlbtnm -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEzqaqnv -> TrackingCookie.Doubleclick : Cleaned.
C:\WA7P\Quar\KEzssbju -> TrackingCookie.Doubleclick : Cleaned.
E:\norton grage 05\Cookies\__@doubleclick[1].txt -> TrackingCookie.Doubleclick : Cleaned.
E:\norton grage 05\Cookies\__@doubleclick[2].txt -> TrackingCookie.Doubleclick : Cleaned.
E:\norton grage 05\Cookies\__@doubleclick[3].txt -> TrackingCookie.Doubleclick : Cleaned.
E:\norton grage 05\Cookies\
[email protected][1].txt -> TrackingCookie.Enhance : Cleaned.
E:\norton grage 05\Cookies\
[email protected][1].txt -> TrackingCookie.Enliven : Cleaned.
E:\norton grage 05\Cookies\
[email protected][1].txt -> TrackingCookie.Esomniture : Cleaned.
E:\norton grage 05\Cookies\
[email protected][2].txt -> TrackingCookie.Falkag : Cleaned.
E:\norton grage 05\Cookies\
[email protected][1].txt -> TrackingCookie.Falkag : Cleaned.
E:\norton grage 05\Cookies\
[email protected][2].txt -> TrackingCookie.Falkag : Cleaned.
C:\WA7P\Quar\KEjecpmd -> TrackingCookie.Fastclick : Cleaned.
E:\norton grage 05\Cookies\__@fastclick[1].txt -> TrackingCookie.Fastclick : Cleaned.
E:\norton grage 05\Cookies\__@fastclick[2].txt -> TrackingCookie.Fastclick : Cleaned.
E:\norton grage 05\Cookies\__@fastclick[3].txt -> TrackingCookie.Fastclick : Cleaned.
E:\norton grage 05\Cookies\__@fastclick[4].txt -> TrackingCookie.Fastclick : Cleaned.
E:\norton grage 05\Cookies\__@findwhat[1].txt -> TrackingCookie.Findwhat : Cleaned.
E:\norton grage 05\Cookies\__@focalink[1].txt -> TrackingCookie.Focalink : Cleaned.
E:\norton grage 05\Cookies\__@fortunecity[2].txt -> TrackingCookie.Fortunecity : Cleaned.
E:\norton grage 05\Cookies\__@gator[1].txt -> TrackingCookie.Gator : Cleaned.
E:\norton grage 05\Cookies\__@gator[2].txt -> TrackingCookie.Gator : Cleaned.
E:\norton grage 05\Cookies\__@gator[4].txt -> TrackingCookie.Gator : Cleaned.
E:\norton grage 05\Cookies\
[email protected][1].txt -> TrackingCookie.Gator : Cleaned.
E:\norton grage 05\Cookies\
[email protected][3].txt -> TrackingCookie.Gator : Cleaned.
E:\norton grage 05\Cookies\
[email protected][2].txt -> TrackingCookie.Goclick : Cleaned.
E:\norton grage 05\Cookies\
[email protected][1].txt -> TrackingCookie.Hitbox : Cleaned.
E:\norton grage 05\Cookies\
[email protected][2].txt -> TrackingCookie.Hitbox : Cleaned.
E:\norton grage 05\Cookies\
[email protected][1].txt -> TrackingCookie.Hitbox : Cleaned.
E:\norton grage 05\Cookies\
[email protected][2].txt -> TrackingCookie.Hitbox : Cleaned.
E:\norton grage 05\Cookies\
[email protected][2].txt -> TrackingCookie.Hitbox : Cleaned.
E:\norton grage 05\Cookies\
[email protected][1].txt -> TrackingCookie.Hitbox : Cleaned.
E:\norton grage 05\Cookies\
[email protected][2].txt -> TrackingCookie.Hitbox : Cleaned.
E:\norton grage 05\Cookies\
[email protected][2].txt -> TrackingCookie.Hitbox : Cleaned.
E:\norton grage 05\Cookies\
[email protected][1].txt -> TrackingCookie.Hitbox : Cleaned.
E:\norton grage 05\Cookies\
[email protected][2].txt -> TrackingCookie.Hitbox : Cleaned.
E:\norton grage 05\Cookies\
[email protected][2].txt -> TrackingCookie.Hitbox : Cleaned.
E:\norton grage 05\Cookies\
[email protected][2].txt -> TrackingCookie.Hitbox : Cleaned.
E:\norton grage 05\Cookies\
[email protected][1].txt -> TrackingCookie.Hitbox : Cleaned.
E:\norton grage 05\Cookies\
[email protected][3].txt -> TrackingCookie.Hitbox : Cleaned.
E:\norton grage 05\Cookies\
[email protected][4].txt -> TrackingCookie.Hitbox : Cleaned.
E:\norton grage 05\Cookies\__@hitbox[1].txt -> TrackingCookie.Hitbox : Cleaned.
E:\norton grage 05\Cookies\__@hitbox[2].txt -> TrackingCookie.Hitbox : Cleaned.
E:\norton grage 05\Cookies\__@hitbox[3].txt -> TrackingCookie.Hitbox : Cleaned.
E:\norton grage 05\Cookies\__@hitbox[4].txt -> TrackingCookie.Hitbox : Cleaned.
E:\norton grage 05\Cookies\__@hitbox[5].txt -> TrackingCookie.Hitbox : Cleaned.
E:\norton grage 05\Cookies\__@hitbox[6].txt -> TrackingCookie.Hitbox : Cleaned.
E:\norton grage 05\Cookies\__@hitbox[8].txt -> TrackingCookie.Hitbox : Cleaned.
E:\norton grage 05\Cookies\__@hitbox[9].txt -> TrackingCookie.Hitbox : Cleaned.
E:\norton grage 05\Cookies\
[email protected][1].txt -> TrackingCookie.Hitbox : Cleaned.
E:\norton grage 05\Cookies\
[email protected][2].txt -> TrackingCookie.Hitbox : Cleaned.
E:\norton grage 05\Cookies\
[email protected][2].txt -> TrackingCookie.Hitslink : Cleaned.
E:\norton grage 05\Cookies\
[email protected][3].txt -> TrackingCookie.Hitslink : Cleaned.
E:\norton grage 05\Cookies\__@hotlog[2].txt -> TrackingCookie.Hotlog : Cleaned.
E:\norton grage 05\Cookies\__@intelli-direct[1].txt -> TrackingCookie.Intelli-direct : Cleaned.
E:\norton grage 05\Cookies\__@intelli-direct[2].txt -> TrackingCookie.Intelli-direct : Cleaned.
E:\norton grage 05\Cookies\__@linksynergy[2].txt -> TrackingCookie.Linksynergy : Cleaned.
E:\norton grage 05\Cookies\
[email protected][1].txt -> TrackingCookie.Liveperson : Cleaned.
E:\norton grage 05\Cookies\
[email protected][2].txt -> TrackingCookie.Liveperson : Cleaned.
E:\norton grage 05\Cookies\__@lop[1].txt -> TrackingCookie.Lop : Cleaned.
C:\Documents and Settings\Ken\Cookies\ken@mediaplex[1].txt -> TrackingCookie.Mediaplex : Cleaned.
E:\norton grage 05\Cookies\__@mediaplex[1].txt -> TrackingCookie.Mediaplex : Cleaned.
E:\norton grage 05\Cookies\__@mediaplex[2].txt -> TrackingCookie.Mediaplex : Cleaned.
E:\norton grage 05\Cookies\__@mediaplex[3].txt -> TrackingCookie.Mediaplex : Cleaned.
E:\norton grage 05\Cookies\__@mediaplex[4].txt -> TrackingCookie.Mediaplex : Cleaned.
E:\norton grage 05\Cookies\__@mediaplex[6].txt -> TrackingCookie.Mediaplex : Cleaned.
E:\norton grage 05\Cookies\__@mediaplex[7].txt -> TrackingCookie.Mediaplex : Cleaned.
E:\norton grage 05\Cookies\__@mediaplex[8].txt -> TrackingCookie.Mediaplex : Cleaned.
E:\norton grage 05\Cookies\__@mediaplex[9].txt -> TrackingCookie.Mediaplex : Cleaned.
E:\norton grage 05\Cookies\
[email protected][1].txt -> TrackingCookie.Msn : Cleaned.
E:\norton grage 05\Cookies\
[email protected][2].txt -> TrackingCookie.Msn : Cleaned.
E:\norton grage 05\Cookies\
[email protected][3].txt -> TrackingCookie.Msn : Cleaned.
E:\norton grage 05\Cookies\__@myaffiliateprogram[1].txt -> TrackingCookie.Myaffiliateprogram : Cleaned.
E:\norton grage 05\Cookies\
[email protected][1].txt -> TrackingCookie.Myaffiliateprogram : Cleaned.
E:\norton grage 05\Cookies\
[email protected][2].txt -> TrackingCookie.Netflame : Cleaned.
C:\Documents and Settings\Ken\Cookies\ken@overture[2].txt -> TrackingCookie.Overture : Cleaned.
C:\Documents and Settings\Ken\Cookies\
[email protected][1].txt -> TrackingCookie.Overture : Cleaned.
E:\norton grage 05\Cookies\__@overture[2].txt -> TrackingCookie.Overture : Cleaned.
E:\norton grage 05\Cookies\__@overture[4].txt -> TrackingCookie.Overture : Cleaned.
E:\norton grage 05\Cookies\__@overture[5].txt -> TrackingCookie.Overture : Cleaned.
E:\norton grage 05\Cookies\
[email protected][1].txt -> TrackingCookie.Overture : Cleaned.
E:\norton grage 05\Cookies\
[email protected][1].txt -> TrackingCookie.Paypal : Cleaned.
E:\norton grage 05\Cookies\
[email protected][2].txt -> TrackingCookie.Paypal : Cleaned.
E:\norton grage 05\Cookies\
[email protected][4].txt -> TrackingCookie.Paypal : Cleaned.
E:\norton grage 05\Cookies\
[email protected][5].txt -> TrackingCookie.Paypal : Cleaned.
E:\norton grage 05\Cookies\
[email protected][2].txt -> TrackingCookie.Pointroll : Cleaned.
E:\norton grage 05\Cookies\
[email protected][2].txt -> TrackingCookie.Popuptraffic : Cleaned.
E:\norton grage 05\Cookies\__@qksrv[1].txt -> TrackingCookie.Qksrv : Cleaned.
E:\norton grage 05\Cookies\__@qksrv[2].txt -> TrackingCookie.Qksrv : Cleaned.
E:\norton grage 05\Cookies\__@qksrv[4].txt -> TrackingCookie.Qksrv : Cleaned.
E:\norton grage 05\Cookies\
[email protected][1].txt -> TrackingCookie.Quarterserver : Cleaned.
C:\Documents and Settings\Ken\Cookies\ken@questionmarket[2].txt -> TrackingCookie.Questionmarket : Cleaned.
E:\norton grage 05\Cookies\__@questionmarket[1].txt -> TrackingCookie.Questionmarket : Cleaned.
E:\norton grage 05\Cookies\__@questionmarket[2].txt -> TrackingCookie.Questionmarket : Cleaned.
E:\norton grage 05\Cookies\__@questionmarket[3].txt -> TrackingCookie.Questionmarket : Cleaned.
E:\norton grage 05\Cookies\__@questionmarket[4].txt -> TrackingCookie.Questionmarket : Cleaned.
C:\Documents and Settings\Ken\Cookies\ken@real[1].txt -> TrackingCookie.Real : Cleaned.
E:\norton grage 05\Cookies\
[email protected][1].txt -> TrackingCookie.Real : Cleaned.
E:\norton grage 05\Cookies\
[email protected][2].txt -> TrackingCookie.Real : Cleaned.
E:\norton grage 05\Cookies\__@real[1].txt -> TrackingCookie.Real : Cleaned.
E:\norton grage 05\Cookies\__@real[2].txt -> TrackingCookie.Real : Cleaned.
E:\norton grage 05\Cookies\__@real[3].txt -> TrackingCookie.Real : Cleaned.
E:\norton grage 05\Cookies\
[email protected][1].txt -> TrackingCookie.Real : Cleaned.
E:\norton grage 05\Cookies\
[email protected][2].txt -> TrackingCookie.Real : Cleaned.
E:\norton grage 05\Cookies\
[email protected][3].txt -> TrackingCookie.Real : Cleaned.
E:\norton grage 05\Cookies\
[email protected][4].txt -> TrackingCookie.Real : Cleaned.
E:\norton grage 05\Cookies\
[email protected][5].txt -> TrackingCookie.Real : Cleaned.
E:\norton grage 05\Cookies\
[email protected][1].txt -> TrackingCookie.Real : Cleaned.
E:\norton grage 05\Cookies\
[email protected][2].txt -> TrackingCookie.Real : Cleaned.
E:\norton grage 05\Cookies\
[email protected][3].txt -> TrackingCookie.Real : Cleaned.
E:\norton grage 05\Cookies\__@realmedia[1].txt -> TrackingCookie.Realmedia : Cleaned.
E:\norton grage 05\Cookies\__@realmedia[2].txt -> TrackingCookie.Realmedia : Cleaned.
E:\norton grage 05\Cookies\__@realmedia[4].txt -> TrackingCookie.Realmedia : Cleaned.
E:\norton grage 05\Cookies\
[email protected][1].txt -> TrackingCookie.Ru4 : Cleaned.
E:\norton grage 05\Cookies\
[email protected][2].txt -> TrackingCookie.Ru4 : Cleaned.
E:\norton grage 05\Cookies\
[email protected][4].txt -> TrackingCookie.Ru4 : Cleaned.
C:\Documents and Settings\Ken\Cookies\
[email protected][1].txt -> TrackingCookie.Serving-sys : Cleaned.
C:\Documents and Settings\Ken\Cookies\ken@serving-sys[1].txt -> TrackingCookie.Serving-sys : Cleaned.
E:\norton grage 05\Cookies\
[email protected][1].txt -> TrackingCookie.Serving-sys : Cleaned.
E:\norton grage 05\Cookies\
[email protected][2].txt -> TrackingCookie.Serving-sys : Cleaned.
E:\norton grage 05\Cookies\__@serving-sys[1].txt -> TrackingCookie.Serving-sys : Cleaned.
E:\norton grage 05\Cookies\__@serving-sys[2].txt -> TrackingCookie.Serving-sys : Cleaned.
E:\norton grage 05\Cookies\__@serving-sys[3].txt -> TrackingCookie.Serving-sys : Cleaned.
E:\norton grage 05\Cookies\__@spinbox[1].txt -> TrackingCookie.Spinbox : Cleaned.
E:\norton grage 05\Cookies\__@statcounter[1].txt -> TrackingCookie.Statcounter : Cleaned.
E:\norton grage 05\Cookies\__@statcounter[2].txt -> TrackingCookie.Statcounter : Cleaned.
E:\norton grage 05\Cookies\__@targetnet[1].txt -> TrackingCookie.Targetnet : Cleaned.
C:\Documents and Settings\Ken\Cookies\
[email protected][1].txt -> TrackingCookie.Tracking101 : Cleaned.
E:\norton grage 05\Cookies\
[email protected][2].txt -> TrackingCookie.Tracking101 : Cleaned.
E:\norton grage 05\Cookies\
[email protected][2].txt -> TrackingCookie.Tradedoubler : Cleaned.
E:\norton grage 05\Cookies\__@tradedoubler[1].txt -> TrackingCookie.Tradedoubler : Cleaned.
E:\norton grage 05\Cookies\__@tradedoubler[2].txt -> TrackingCookie.Tradedoubler : Cleaned.
E:\norton grage 05\Cookies\__@trafficmp[1].txt -> TrackingCookie.Trafficmp : Cleaned.
E:\norton grage 05\Cookies\__@tribalfusion[1].txt -> TrackingCookie.Tribalfusion : Cleaned.
E:\norton grage 05\Cookies\
[email protected][1].txt -> TrackingCookie.Valuead : Cleaned.
E:\norton grage 05\Cookies\__@valueclick[1].txt -> TrackingCookie.Valueclick : Cleaned.
E:\norton grage 05\Cookies\__@valueclick[2].txt -> TrackingCookie.Valueclick : Cleaned.
E:\norton grage 05\Cookies\__@valueclick[3].txt -> TrackingCookie.Valueclick : Cleaned.
E:\norton grage 05\Cookies\__@valueclick[4].txt -> TrackingCookie.Valueclick : Cleaned.
E:\norton grage 05\Cookies\__@valueclick[5].txt -> TrackingCookie.Valueclick : Cleaned.
E:\norton grage 05\Cookies\__@valueclick[7].txt -> TrackingCookie.Valueclick : Cleaned.
E:\norton grage 05\Cookies\__@webstat[2].txt -> TrackingCookie.Web-stat : Cleaned.
E:\norton grage 05\Cookies\
[email protected][1].txt -> TrackingCookie.Web-stat : Cleaned.
E:\norton grage 05\Cookies\__@weborama[1].txt -> TrackingCookie.Weborama : Cleaned.
C:\Documents and Settings\Ken\Cookies\
[email protected][1].txt -> TrackingCookie.Webtrends : Cleaned.
C:\WA7P\Quar\KEbmqhrw -> TrackingCookie.Webtrendslive : Cleaned.
C:\WA7P\Quar\KEbuphhx -> TrackingCookie.Webtrendslive : Cleaned.
C:\WA7P\Quar\KEdfcask -> TrackingCookie.Webtrendslive : Cleaned.
C:\WA7P\Quar\KEethngi -> TrackingCookie.Webtrendslive : Cleaned.
C:\WA7P\Quar\KEfwqzor -> TrackingCookie.Webtrendslive : Cleaned.
C:\WA7P\Quar\KEgpvcvt -> TrackingCookie.Webtrendslive : Cleaned.
C:\WA7P\Quar\KEhbjdzq -> TrackingCookie.Webtrendslive : Cleaned.
C:\WA7P\Quar\KEhybeez -> TrackingCookie.Webtrendslive : Cleaned.
C:\WA7P\Quar\KEitovim -> TrackingCookie.Webtrendslive : Cleaned.
C:\WA7P\Quar\KEjlcpbg -> TrackingCookie.Webtrendslive : Cleaned.
C:\WA7P\Quar\KEjtdafb -> TrackingCookie.Webtrendslive : Cleaned.
C:\WA7P\Quar\KEjtjmpv -> TrackingCookie.Webtrendslive : Cleaned.
C:\WA7P\Quar\KEmbnpnu -> TrackingCookie.Webtrendslive : Cleaned.
C:\WA7P\Quar\KEmprehk -> TrackingCookie.Webtrendslive : Cleaned.
C:\WA7P\Quar\KEnexjla -> TrackingCookie.Webtrendslive : Cleaned.
C:\WA7P\Quar\KEoozknz -> TrackingCookie.Webtrendslive : Cleaned.
C:\WA7P\Quar\KEqeaokf -> TrackingCookie.Webtrendslive : Cleaned.
C:\WA7P\Quar\KErpngsi -> TrackingCookie.Webtrendslive : Cleaned.
C:\WA7P\Quar\KEszjegj -> TrackingCookie.Webtrendslive : Cleaned.
C:\WA7P\Quar\KEtdbgnx -> TrackingCookie.Webtrendslive : Cleaned.
C:\WA7P\Quar\KEvththb -> TrackingCookie.Webtrendslive : Cleaned.
C:\WA7P\Quar\KEwhfzfb -> TrackingCookie.Webtrendslive : Cleaned.
C:\WA7P\Quar\KEwkhswk -> TrackingCookie.Webtrendslive : Cleaned.
C:\WA7P\Quar\KExbieid -> TrackingCookie.Webtrendslive : Cleaned.
C:\WA7P\Quar\KEynzkgj -> TrackingCookie.Webtrendslive : Cleaned.
E:\norton grage 05\Cookies\
[email protected][1].txt -> TrackingCookie.Webtrendslive : Cleaned.
E:\norton grage 05\Cookies\
[email protected][2].txt -> TrackingCookie.Webtrendslive : Cleaned.
E:\norton grage 05\Cookies\__@x10[2].txt -> TrackingCookie.X10 : Cleaned.
E:\norton grage 05\Cookies\__@x10[3].txt -> TrackingCookie.X10 : Cleaned.
E:\norton grage 05\Cookies\__@zedo[1].txt -> TrackingCookie.Zedo : Cleaned.
E:\norton grage 05\Cookies\__@zedo[2].txt -> TrackingCookie.Zedo : Cleaned.
E:\norton grage 05\Cookies\__@zedo[3].txt -> TrackingCookie.Zedo : Cleaned.
E:\norton grage 05\Cookies\__@zedo[4].txt -> TrackingCookie.Zedo : Cleaned.
C:\System Volume Information\_restore{459F9B87-CFD4-4A3B-AA85-E220E051E149}\RP299\A0042217.exe -> Trojan.Fakealert.fb : Cleaned with backup (quarantined).
::Report end
and now hijack this log
Logfile of HijackThis v1.99.1
Scan saved at 21:17:45, on 22/05/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16414)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\PROGRA~1\Grisoft\AVG7\avgcc.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\Program Files\Prevx1\PXConsole.exe
C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe
C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Picasa2\PicasaMediaDetector.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Microsoft IntelliPoint\point32.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
C:\Program Files\Messenger\msmsgs.exe
C:\WINDOWS\system32\CTsvcCDA.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\DrvMon.exe
C:\Program Files\Prevx1\PXAgent.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Microsoft Office\OFFICE11\OUTLOOK.EXE
C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE
C:\hijackthis\HijackThis.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft....k/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft....k/?LinkId=54896O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Malicious Scripts Scanner - {55EA1964-F5E4-4D6A-B9B2-125B37655FCB} - C:\Documents and Settings\All Users\Application Data\Prevx\pxbho.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: Wanadoo - {8B68564D-53FD-4293-B80C-993A9F3988EE} - C:\PROGRA~1\Wanadoo\WSBar\WSBar.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [PrevxOne] "C:\Program Files\Prevx1\PXConsole.exe"
O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe"
O4 - HKLM\..\Run: [SpeedTouch USB Diagnostics] "C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe" /icon
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [MMTray] "C:\Program Files\Musicmatch\Musicmatch Jukebox\mm_tray.exe"
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\point32.exe"
O4 - HKLM\..\Run: [DC6] C:\DOCUME~1\Ken\LOCALS~1\Temp\startupfc719ce7-4331-4add-908a-1f2c62da4bc8.exe /s1 /setup
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [DrvMon.exe] C:\WINDOWS\system32\DrvMon.exe
O4 - HKCU\..\Run: [Iomega Automatic Backup Pro] "C:\Program Files\Iomega\Automatic Backup Pro\LiveSystem.exe" -s
O4 - Startup: 360Share Pro On Startup.lnk = C:\Program Files\360Share Pro\Gui\360Share Pro.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = ?
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O4 - Global Startup: Windows Desktop Search.lnk = C:\Program Files\MSN Toolbar Suite\DS\02.05.0001.1119\en-gb\bin\WindowsSearch.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O14 - IERESET.INF: START_PAGE_URL=http://www.wanadoo.co.uk
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) -
http://fpdownload2.m...ash/swflash.cabO18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.EXE
O23 - Service: GoogleDesktopManager - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Prevx Agent (PREVXAgent) - Unknown owner - C:\Program Files\Prevx1\PXAgent.exe" -f (file missing)