I used to run bit defender and sugate firewall bt they have allowed this problem through
I uninstalled those and loaded pctools anti spyware/antivirus and firewall
The following logas are what I have for you to analyze:
rerun of avg antispyware free edition:
-------------------------------------------------------
AVG Anti-Spyware - Scan Report
---------------------------------------------------------
+ Created at: 7:38:49 PM 9/22/2007
+ Scan result:
C:\WINDOWS\system32\systems.txt -> Not-A-Virus.Hoax.Win32.Renos.jh : Cleaned.
C:\Documents and Settings\Greg Mahle\Cookies\[email protected][1].txt -> TrackingCookie.Netflame : Cleaned.
::Report end
superantispyware report:
SUPERAntiSpyware Scan Log
Generated 09/21/2007 at 03:21 PM
Application Version : 3.6.1000
Core Rules Database Version : 3310
Trace Rules Database Version: 1314
Scan type : Complete Scan
Total Scan Time : 01:51:13
Memory items scanned : 519
Memory threats detected : 0
Registry items scanned : 6259
Registry threats detected : 0
File items scanned : 60194
File threats detected : 2
Adware.Tracking Cookie
C:\Documents and Settings\Greg Mahle\Cookies\[email protected][1].txt
Trojan.Downloader-Gen/NoMultiTask
C:\WINDOWS\SYSTEM32\VTR.DLL
pctools antivirus scan: panda ran but didn't generate a report
Total history since problem arouse:
PC Tools Spyware Doctor
Date Status
9/20/2007 6:25:27 PM:500 Service Started
Spyware Doctor Service Application started
9/20/2007 6:25:57 PM:46 Immunizer Results
ActiveX section has been immunized, Processed 3633 items.
9/20/2007 6:27:01 PM:46 OnGuards status
All OnGuards were Enabled
9/20/2007 6:28:33 PM:921 Scan Started
Scan Type - Intelli-Scan
9/20/2007 6:28:47 PM:0 Infection was detected on this computer
Threat Name - Adware.Advertising
Type - Cookie
Risk Level - Low
Infection - fastclick.net/ fastclick.net
9/20/2007 6:28:47 PM:46 Infection was detected on this computer
Threat Name - Adware.Advertising
Type - Cookie
Risk Level - Low
Infection - z1.adserver.com/ z1.adserver.com
9/20/2007 6:31:54 PM:343 Infection was detected on this computer
Threat Name - Adware.Agent.BN
Type - File
Risk Level - High
Infection - C:\DOCUMENTS AND SETTINGS\ALL USERS\START MENU\PROGRAMS\STARTUP\autorun.exe
9/20/2007 6:32:11 PM:203 Infection was detected on this computer
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_USERS\S-1-5-21-1342817645-4171025116-2957372171-1006\Software\Microsoft\Windows\CurrentVersion\Run, WinAVX
9/20/2007 6:32:11 PM:906 Infection was detected on this computer
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_CLASSES_ROOT\Interface\{ABCDECEF-4B15-11D1-ABED-709549C10000}, (Default)
9/20/2007 6:32:11 PM:906 Infection was detected on this computer
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_CLASSES_ROOT\Interface\{ABCDECEF-4B15-11D1-ABED-709549C10000}\ProxyStubClsid, (Default)
9/20/2007 6:32:11 PM:968 Infection was detected on this computer
Threat Name - Adware.Agent.BN
Type - Registry Key
Risk Level - High
Infection - HKEY_CLASSES_ROOT\Interface\{ABCDECEF-4B15-11D1-ABED-709549C10000}\ProxyStubClsid
9/20/2007 6:32:11 PM:968 Infection was detected on this computer
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_CLASSES_ROOT\Interface\{ABCDECEF-4B15-11D1-ABED-709549C10000}\ProxyStubClsid32, (Default)
9/20/2007 6:32:11 PM:968 Infection was detected on this computer
Threat Name - Adware.Agent.BN
Type - Registry Key
Risk Level - High
Infection - HKEY_CLASSES_ROOT\Interface\{ABCDECEF-4B15-11D1-ABED-709549C10000}\ProxyStubClsid32
9/20/2007 6:32:11 PM:984 Infection was detected on this computer
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_CLASSES_ROOT\Interface\{ABCDECEF-4B15-11D1-ABED-709549C10000}\TypeLib, (Default)
9/20/2007 6:32:11 PM:984 Infection was detected on this computer
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_CLASSES_ROOT\Interface\{ABCDECEF-4B15-11D1-ABED-709549C10000}\TypeLib, Version
9/20/2007 6:32:11 PM:984 Infection was detected on this computer
Threat Name - Adware.Agent.BN
Type - Registry Key
Risk Level - High
Infection - HKEY_CLASSES_ROOT\Interface\{ABCDECEF-4B15-11D1-ABED-709549C10000}\TypeLib
9/20/2007 6:32:11 PM:984 Infection was detected on this computer
Threat Name - Adware.Agent.BN
Type - Registry Key
Risk Level - High
Infection - HKEY_CLASSES_ROOT\Interface\{ABCDECEF-4B15-11D1-ABED-709549C10000}
9/20/2007 6:32:12 PM:140 Infection was detected on this computer
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_CLASSES_ROOT\TypeLib\{ABCDECE2-4B15-11D1-ABED-709549C10000}\1.0, (Default)
9/20/2007 6:32:12 PM:156 Infection was detected on this computer
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_CLASSES_ROOT\TypeLib\{ABCDECE2-4B15-11D1-ABED-709549C10000}\1.0\win32, (Default)
9/20/2007 6:32:12 PM:156 Infection was detected on this computer
Threat Name - Adware.Agent.BN
Type - Registry Key
Risk Level - High
Infection - HKEY_CLASSES_ROOT\TypeLib\{ABCDECE2-4B15-11D1-ABED-709549C10000}\1.0\win32
9/20/2007 6:32:12 PM:156 Infection was detected on this computer
Threat Name - Adware.Agent.BN
Type - Registry Key
Risk Level - High
Infection - HKEY_CLASSES_ROOT\TypeLib\{ABCDECE2-4B15-11D1-ABED-709549C10000}\1.0
9/20/2007 6:32:12 PM:156 Infection was detected on this computer
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_CLASSES_ROOT\TypeLib\{ABCDECE2-4B15-11D1-ABED-709549C10000}\1.0\FLAGS, (Default)
9/20/2007 6:32:12 PM:171 Infection was detected on this computer
Threat Name - Adware.Agent.BN
Type - Registry Key
Risk Level - High
Infection - HKEY_CLASSES_ROOT\TypeLib\{ABCDECE2-4B15-11D1-ABED-709549C10000}\1.0\FLAGS
9/20/2007 6:32:12 PM:171 Infection was detected on this computer
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_CLASSES_ROOT\TypeLib\{ABCDECE2-4B15-11D1-ABED-709549C10000}\1.0\HELPDIR, (Default)
9/20/2007 6:32:12 PM:171 Infection was detected on this computer
Threat Name - Adware.Agent.BN
Type - Registry Key
Risk Level - High
Infection - HKEY_CLASSES_ROOT\TypeLib\{ABCDECE2-4B15-11D1-ABED-709549C10000}\1.0\HELPDIR
9/20/2007 6:32:12 PM:171 Infection was detected on this computer
Threat Name - Adware.Agent.BN
Type - Registry Key
Risk Level - High
Infection - HKEY_CLASSES_ROOT\TypeLib\{ABCDECE2-4B15-11D1-ABED-709549C10000}\1.0
9/20/2007 6:32:12 PM:171 Infection was detected on this computer
Threat Name - Adware.Agent.BN
Type - Registry Key
Risk Level - High
Infection - HKEY_CLASSES_ROOT\TypeLib\{ABCDECE2-4B15-11D1-ABED-709549C10000}
9/20/2007 6:32:18 PM:953 Infection was detected on this computer
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{ABCDECF0-4B15-11D1-ABED-709549C10000}, (Default)
9/20/2007 6:32:18 PM:984 Infection was detected on this computer
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{ABCDECF0-4B15-11D1-ABED-709549C10000}\InprocServer32, (Default)
9/20/2007 6:32:18 PM:984 Infection was detected on this computer
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{ABCDECF0-4B15-11D1-ABED-709549C10000}\InprocServer32, ThreadingModel
9/20/2007 6:32:18 PM:984 Infection was detected on this computer
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{ABCDECF0-4B15-11D1-ABED-709549C10000}\InprocServer32, Enable Browser Extensions
9/20/2007 6:32:19 PM:0 Infection was detected on this computer
Threat Name - Adware.Agent.BN
Type - Registry Key
Risk Level - High
Infection - HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{ABCDECF0-4B15-11D1-ABED-709549C10000}\InprocServer32
9/20/2007 6:32:19 PM:0 Infection was detected on this computer
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{ABCDECF0-4B15-11D1-ABED-709549C10000}\ProgID, (Default)
9/20/2007 6:32:19 PM:0 Infection was detected on this computer
Threat Name - Adware.Agent.BN
Type - Registry Key
Risk Level - High
Infection - HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{ABCDECF0-4B15-11D1-ABED-709549C10000}\ProgID
9/20/2007 6:32:19 PM:0 Infection was detected on this computer
Threat Name - Adware.Agent.BN
Type - Registry Key
Risk Level - High
Infection - HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{ABCDECF0-4B15-11D1-ABED-709549C10000}\Programmable
9/20/2007 6:32:19 PM:0 Infection was detected on this computer
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{ABCDECF0-4B15-11D1-ABED-709549C10000}\VersionIndependentProgID, (Default)
9/20/2007 6:32:19 PM:0 Infection was detected on this computer
Threat Name - Adware.Agent.BN
Type - Registry Key
Risk Level - High
Infection - HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{ABCDECF0-4B15-11D1-ABED-709549C10000}\VersionIndependentProgID
9/20/2007 6:32:19 PM:0 Infection was detected on this computer
Threat Name - Adware.Agent.BN
Type - Registry Key
Risk Level - High
Infection - HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{ABCDECF0-4B15-11D1-ABED-709549C10000}
9/20/2007 6:32:19 PM:859 Infection was detected on this computer
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_USERS\S-1-5-21-1342817645-4171025116-2957372171-1006\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{ABCDECF0-4B15-11D1-ABED-709549C10000}\iexplore, Type
9/20/2007 6:32:19 PM:859 Infection was detected on this computer
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_USERS\S-1-5-21-1342817645-4171025116-2957372171-1006\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{ABCDECF0-4B15-11D1-ABED-709549C10000}\iexplore, Flags
9/20/2007 6:32:19 PM:875 Infection was detected on this computer
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_USERS\S-1-5-21-1342817645-4171025116-2957372171-1006\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{ABCDECF0-4B15-11D1-ABED-709549C10000}\iexplore, Count
9/20/2007 6:32:19 PM:875 Infection was detected on this computer
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_USERS\S-1-5-21-1342817645-4171025116-2957372171-1006\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{ABCDECF0-4B15-11D1-ABED-709549C10000}\iexplore, Time
9/20/2007 6:32:19 PM:875 Infection was detected on this computer
Threat Name - Adware.Agent.BN
Type - Registry Key
Risk Level - High
Infection - HKEY_USERS\S-1-5-21-1342817645-4171025116-2957372171-1006\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{ABCDECF0-4B15-11D1-ABED-709549C10000}\iexplore
9/20/2007 6:32:19 PM:875 Infection was detected on this computer
Threat Name - Adware.Agent.BN
Type - Registry Key
Risk Level - High
Infection - HKEY_USERS\S-1-5-21-1342817645-4171025116-2957372171-1006\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{ABCDECF0-4B15-11D1-ABED-709549C10000}
9/20/2007 6:32:21 PM:656 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, avp.ch
9/20/2007 6:32:21 PM:656 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, avp.com
9/20/2007 6:32:21 PM:656 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, avp.ru
9/20/2007 6:32:21 PM:656 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, ca.com
9/20/2007 6:32:21 PM:671 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, customer.symantec.com
9/20/2007 6:32:21 PM:671 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, dispatch.mcafee.com
9/20/2007 6:32:22 PM:140 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, download.mcafee.com
9/20/2007 6:32:22 PM:140 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, download.microsoft.com
9/20/2007 6:32:22 PM:140 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, downloads-us1.kaspersky-labs.com
9/20/2007 6:32:22 PM:140 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, downloads-us2.kaspersky-labs.com
9/20/2007 6:32:22 PM:140 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, downloads-us3.kaspersky-labs.com
9/20/2007 6:32:22 PM:140 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, downloads.microsoft.com
9/20/2007 6:32:22 PM:140 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, downloads1.kaspersky-labs.com
9/20/2007 6:32:22 PM:140 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, downloads2.kaspersky-labs.com
9/20/2007 6:32:22 PM:140 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, downloads3.kaspersky-labs.com
9/20/2007 6:32:22 PM:140 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, downloads4.kaspersky-labs.com
9/20/2007 6:32:22 PM:140 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, f-secure.com
9/20/2007 6:32:22 PM:156 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, ftp.avp.ch
9/20/2007 6:32:22 PM:156 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, ftp.downloads1.kaspersky-labs.com
9/20/2007 6:32:22 PM:156 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, ftp.downloads2.kaspersky-labs.com
9/20/2007 6:32:22 PM:156 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, ftp.downloads3.kaspersky-labs.com
9/20/2007 6:32:22 PM:156 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, ftp.f-secure.com
9/20/2007 6:32:22 PM:156 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, ftp.kasperskylab.ru
9/20/2007 6:32:22 PM:156 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, ftp.sophos.com
9/20/2007 6:32:22 PM:156 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, go.microsoft.com
9/20/2007 6:32:22 PM:156 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, ids.kaspersky-labs.com
9/20/2007 6:32:22 PM:156 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, kaspersky-labs.com
9/20/2007 6:32:22 PM:156 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, kaspersky.com
9/20/2007 6:32:22 PM:156 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, liveupdate.symantec.com
9/20/2007 6:32:22 PM:156 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, liveupdate.symantecliveupdate.com
9/20/2007 6:32:22 PM:156 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, mast.mcafee.com
9/20/2007 6:32:22 PM:156 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, mcafee.com
9/20/2007 6:32:22 PM:171 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, microsoft.com
9/20/2007 6:32:22 PM:171 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, msdn.microsoft.com
9/20/2007 6:32:22 PM:171 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, my-etrust.com
9/20/2007 6:32:22 PM:171 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, nai.com
9/20/2007 6:32:22 PM:171 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, phx.corporate-ir.net
9/20/2007 6:32:22 PM:171 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, rads.mcafee.com
9/20/2007 6:32:22 PM:171 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, secure.nai.com
9/20/2007 6:32:22 PM:171 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, securityresponse.symantec.com
9/20/2007 6:32:22 PM:171 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, service1.symantec.com
9/20/2007 6:32:22 PM:171 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, sophos.com
9/20/2007 6:32:22 PM:171 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, support.microsoft.com
9/20/2007 6:32:22 PM:171 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, symantec.com
9/20/2007 6:32:22 PM:171 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, trendmicro.com
9/20/2007 6:32:22 PM:171 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, update.symantec.com
9/20/2007 6:32:22 PM:171 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, updates.symantec.com
9/20/2007 6:32:22 PM:171 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, updates1.kaspersky-labs.com
9/20/2007 6:32:22 PM:171 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, updates2.kaspersky-labs.com
9/20/2007 6:32:22 PM:171 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, updates3.kaspersky-labs.com
9/20/2007 6:32:22 PM:187 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, updates4.kaspersky-labs.com
9/20/2007 6:32:22 PM:187 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, updates5.kaspersky-labs.com
9/20/2007 6:32:22 PM:187 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, us.mcafee.com
9/20/2007 6:32:22 PM:187 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, vil.nai.com
9/20/2007 6:32:22 PM:187 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, viruslist.com
9/20/2007 6:32:22 PM:187 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, viruslist.ru
9/20/2007 6:32:22 PM:281 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, virustotal.com
9/20/2007 6:32:22 PM:281 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, windowsupdate.microsoft.com
9/20/2007 6:32:22 PM:296 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, www.avp.ch
9/20/2007 6:32:22 PM:296 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, www.avp.com
9/20/2007 6:32:22 PM:296 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, www.avp.ru
9/20/2007 6:32:22 PM:296 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, www.ca.com
9/20/2007 6:32:22 PM:296 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, www.f-secure.com
9/20/2007 6:32:22 PM:296 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, www.grisoft.com
9/20/2007 6:32:22 PM:296 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, www.kaspersky-labs.com
9/20/2007 6:32:22 PM:312 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, www.kaspersky.com
9/20/2007 6:32:22 PM:312 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, www.kaspersky.ru
9/20/2007 6:32:22 PM:312 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, www.mcafee.com
9/20/2007 6:32:22 PM:312 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, www.microsoft.com
9/20/2007 6:32:22 PM:312 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, www.my-etrust.com
9/20/2007 6:32:22 PM:312 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, www.nai.com
9/20/2007 6:32:22 PM:312 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, www.networkassociates.com
9/20/2007 6:32:22 PM:312 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, www.pandasoftware.com
9/20/2007 6:32:22 PM:312 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, www.sophos.com
9/20/2007 6:32:22 PM:312 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, www.symantec.com
9/20/2007 6:32:22 PM:312 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, www.trendmicro.com
9/20/2007 6:32:22 PM:328 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, www.viruslist.com
9/20/2007 6:32:22 PM:328 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, www.viruslist.ru
9/20/2007 6:32:22 PM:328 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, www.virustotal.com
9/20/2007 6:32:22 PM:328 Infection was detected on this computer
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, www3.ca.com
9/20/2007 6:33:29 PM:31 Infection was detected on this computer
Threat Name - Adware.Agent.BN
Type - Startup
Risk Level - High
Infection - HKEY_USERS\S-1-5-21-1342817645-4171025116-2957372171-1006\Software\Microsoft\Windows\CurrentVersion\Run, WinAVX = C:\WINDOWS\system32\WinAvXX.exe
9/20/2007 6:33:29 PM:484 Infection was detected on this computer
Threat Name - Adware.Agent.BN
Type - Startup
Risk Level - High
Infection - HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run, WinAVX = C:\WINDOWS\system32\WinAvXX.exe
9/20/2007 6:35:43 PM:15 Scan Finished
Scan Type - Intelli-Scan
Items Processed - 165528
Threats Detected - 3
Infections Detected - 122
Infections Ignored - 0
9/20/2007 6:37:14 PM:484 OnGuard Detection Cleaned
Threat Name - Adware.Advertising
Type - Cookie
Risk Level - Low
Infection - fastclick.net/ fastclick.net
9/20/2007 6:37:14 PM:484 OnGuard Detection Cleaned
Threat Name - Adware.Advertising
Type - Cookie
Risk Level - Low
Infection - z1.adserver.com/ z1.adserver.com
9/20/2007 6:48:01 PM:359 OnGuard Detection Cleaned
Threat Name - Adware.Advertising
Type - Cookie
Risk Level - Low
Infection - overture.com/ overture.com
9/20/2007 6:58:07 PM:437 Infection quarantined
Threat Name - Adware.Advertising
Type - Cookie
Risk Level - Low
Infection - z1.adserver.com/ z1.adserver.com
9/20/2007 6:58:07 PM:437 Infection quarantined
Threat Name - Adware.Advertising
Type - Cookie
Risk Level - Low
Infection - fastclick.net/ fastclick.net
9/20/2007 6:58:07 PM:546 Infection cleaned
Threat Name - Adware.Advertising
Type - Cookie
Risk Level - Low
Infection - z1.adserver.com/ z1.adserver.com
9/20/2007 6:58:07 PM:562 Infection cleaned
Threat Name - Adware.Advertising
Type - Cookie
Risk Level - Low
Infection - fastclick.net/ fastclick.net
9/20/2007 6:58:07 PM:796 Infection quarantined
Threat Name - Adware.Agent.BN
Type - Startup
Risk Level - High
Infection - HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run, WinAVX = C:\WINDOWS\system32\WinAvXX.exe
9/20/2007 6:58:07 PM:796 Infection quarantined
Threat Name - Adware.Agent.BN
Type - Startup
Risk Level - High
Infection - HKEY_USERS\S-1-5-21-1342817645-4171025116-2957372171-1006\Software\Microsoft\Windows\CurrentVersion\Run, WinAVX = C:\WINDOWS\system32\WinAvXX.exe
9/20/2007 6:58:08 PM:234 Infection quarantined
Threat Name - Adware.Agent.BN
Type - Registry Key
Risk Level - High
Infection - HKEY_USERS\S-1-5-21-1342817645-4171025116-2957372171-1006\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{ABCDECF0-4B15-11D1-ABED-709549C10000}
9/20/2007 6:58:08 PM:234 Infection quarantined
Threat Name - Adware.Agent.BN
Type - Registry Key
Risk Level - High
Infection - HKEY_USERS\S-1-5-21-1342817645-4171025116-2957372171-1006\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{ABCDECF0-4B15-11D1-ABED-709549C10000}\iexplore
9/20/2007 6:58:08 PM:265 Infection quarantined
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_USERS\S-1-5-21-1342817645-4171025116-2957372171-1006\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{ABCDECF0-4B15-11D1-ABED-709549C10000}\iexplore, Time
9/20/2007 6:58:08 PM:265 Infection quarantined
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_USERS\S-1-5-21-1342817645-4171025116-2957372171-1006\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{ABCDECF0-4B15-11D1-ABED-709549C10000}\iexplore, Count
9/20/2007 6:58:08 PM:281 Infection quarantined
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_USERS\S-1-5-21-1342817645-4171025116-2957372171-1006\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{ABCDECF0-4B15-11D1-ABED-709549C10000}\iexplore, Flags
9/20/2007 6:58:08 PM:281 Infection quarantined
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_USERS\S-1-5-21-1342817645-4171025116-2957372171-1006\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{ABCDECF0-4B15-11D1-ABED-709549C10000}\iexplore, Type
9/20/2007 6:58:08 PM:343 Infection quarantined
Threat Name - Adware.Agent.BN
Type - Registry Key
Risk Level - High
Infection - HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{ABCDECF0-4B15-11D1-ABED-709549C10000}
9/20/2007 6:58:08 PM:359 Infection quarantined
Threat Name - Adware.Agent.BN
Type - Registry Key
Risk Level - High
Infection - HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{ABCDECF0-4B15-11D1-ABED-709549C10000}\VersionIndependentProgID
9/20/2007 6:58:08 PM:359 Infection quarantined
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{ABCDECF0-4B15-11D1-ABED-709549C10000}\VersionIndependentProgID, (Default)
9/20/2007 6:58:08 PM:375 Infection quarantined
Threat Name - Adware.Agent.BN
Type - Registry Key
Risk Level - High
Infection - HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{ABCDECF0-4B15-11D1-ABED-709549C10000}\Programmable
9/20/2007 6:58:08 PM:375 Infection quarantined
Threat Name - Adware.Agent.BN
Type - Registry Key
Risk Level - High
Infection - HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{ABCDECF0-4B15-11D1-ABED-709549C10000}\ProgID
9/20/2007 6:58:08 PM:375 Infection quarantined
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{ABCDECF0-4B15-11D1-ABED-709549C10000}\ProgID, (Default)
9/20/2007 6:58:08 PM:390 Infection quarantined
Threat Name - Adware.Agent.BN
Type - Registry Key
Risk Level - High
Infection - HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{ABCDECF0-4B15-11D1-ABED-709549C10000}\InprocServer32
9/20/2007 6:58:08 PM:390 Infection quarantined
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{ABCDECF0-4B15-11D1-ABED-709549C10000}\InprocServer32, Enable Browser Extensions
9/20/2007 6:58:08 PM:671 Infection quarantined
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{ABCDECF0-4B15-11D1-ABED-709549C10000}\InprocServer32, ThreadingModel
9/20/2007 6:58:08 PM:671 Infection quarantined
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{ABCDECF0-4B15-11D1-ABED-709549C10000}\InprocServer32, (Default)
9/20/2007 6:58:08 PM:687 Infection quarantined
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{ABCDECF0-4B15-11D1-ABED-709549C10000}, (Default)
9/20/2007 6:58:08 PM:703 Infection quarantined
Threat Name - Adware.Agent.BN
Type - Registry Key
Risk Level - High
Infection - HKEY_CLASSES_ROOT\TypeLib\{ABCDECE2-4B15-11D1-ABED-709549C10000}
9/20/2007 6:58:08 PM:718 Infection quarantined
Threat Name - Adware.Agent.BN
Type - Registry Key
Risk Level - High
Infection - HKEY_CLASSES_ROOT\TypeLib\{ABCDECE2-4B15-11D1-ABED-709549C10000}\1.0
9/20/2007 6:58:08 PM:718 Infection quarantined
Threat Name - Adware.Agent.BN
Type - Registry Key
Risk Level - High
Infection - HKEY_CLASSES_ROOT\TypeLib\{ABCDECE2-4B15-11D1-ABED-709549C10000}\1.0\HELPDIR
9/20/2007 6:58:08 PM:734 Infection quarantined
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_CLASSES_ROOT\TypeLib\{ABCDECE2-4B15-11D1-ABED-709549C10000}\1.0\HELPDIR, (Default)
9/20/2007 6:58:08 PM:734 Infection quarantined
Threat Name - Adware.Agent.BN
Type - Registry Key
Risk Level - High
Infection - HKEY_CLASSES_ROOT\TypeLib\{ABCDECE2-4B15-11D1-ABED-709549C10000}\1.0\FLAGS
9/20/2007 6:58:08 PM:734 Infection quarantined
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_CLASSES_ROOT\TypeLib\{ABCDECE2-4B15-11D1-ABED-709549C10000}\1.0\FLAGS, (Default)
9/20/2007 6:58:08 PM:750 Infection quarantined
Threat Name - Adware.Agent.BN
Type - Registry Key
Risk Level - High
Infection - HKEY_CLASSES_ROOT\TypeLib\{ABCDECE2-4B15-11D1-ABED-709549C10000}\1.0
9/20/2007 6:58:08 PM:750 Infection quarantined
Threat Name - Adware.Agent.BN
Type - Registry Key
Risk Level - High
Infection - HKEY_CLASSES_ROOT\TypeLib\{ABCDECE2-4B15-11D1-ABED-709549C10000}\1.0\win32
9/20/2007 6:58:08 PM:765 Infection quarantined
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_CLASSES_ROOT\TypeLib\{ABCDECE2-4B15-11D1-ABED-709549C10000}\1.0\win32, (Default)
9/20/2007 6:58:08 PM:765 Infection quarantined
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_CLASSES_ROOT\TypeLib\{ABCDECE2-4B15-11D1-ABED-709549C10000}\1.0, (Default)
9/20/2007 6:58:08 PM:781 Infection quarantined
Threat Name - Adware.Agent.BN
Type - Registry Key
Risk Level - High
Infection - HKEY_CLASSES_ROOT\Interface\{ABCDECEF-4B15-11D1-ABED-709549C10000}
9/20/2007 6:58:08 PM:796 Infection quarantined
Threat Name - Adware.Agent.BN
Type - Registry Key
Risk Level - High
Infection - HKEY_CLASSES_ROOT\Interface\{ABCDECEF-4B15-11D1-ABED-709549C10000}\TypeLib
9/20/2007 6:58:08 PM:796 Infection quarantined
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_CLASSES_ROOT\Interface\{ABCDECEF-4B15-11D1-ABED-709549C10000}\TypeLib, Version
9/20/2007 6:58:08 PM:812 Infection quarantined
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_CLASSES_ROOT\Interface\{ABCDECEF-4B15-11D1-ABED-709549C10000}\TypeLib, (Default)
9/20/2007 6:58:08 PM:812 Infection quarantined
Threat Name - Adware.Agent.BN
Type - Registry Key
Risk Level - High
Infection - HKEY_CLASSES_ROOT\Interface\{ABCDECEF-4B15-11D1-ABED-709549C10000}\ProxyStubClsid32
9/20/2007 6:58:08 PM:828 Infection quarantined
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_CLASSES_ROOT\Interface\{ABCDECEF-4B15-11D1-ABED-709549C10000}\ProxyStubClsid32, (Default)
9/20/2007 6:58:08 PM:843 Infection quarantined
Threat Name - Adware.Agent.BN
Type - Registry Key
Risk Level - High
Infection - HKEY_CLASSES_ROOT\Interface\{ABCDECEF-4B15-11D1-ABED-709549C10000}\ProxyStubClsid
9/20/2007 6:58:08 PM:859 Infection quarantined
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_CLASSES_ROOT\Interface\{ABCDECEF-4B15-11D1-ABED-709549C10000}\ProxyStubClsid, (Default)
9/20/2007 6:58:08 PM:859 Infection quarantined
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_CLASSES_ROOT\Interface\{ABCDECEF-4B15-11D1-ABED-709549C10000}, (Default)
9/20/2007 6:58:08 PM:875 Infection quarantined
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_USERS\S-1-5-21-1342817645-4171025116-2957372171-1006\Software\Microsoft\Windows\CurrentVersion\Run, WinAVX
9/20/2007 6:58:08 PM:921 Infection quarantined
Threat Name - Adware.Agent.BN
Type - File
Risk Level - High
Infection - C:\DOCUMENTS AND SETTINGS\ALL USERS\START MENU\PROGRAMS\STARTUP\autorun.exe
9/20/2007 6:58:09 PM:406 Infection cleaned
Threat Name - Adware.Agent.BN
Type - Startup
Risk Level - High
Infection - HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run, WinAVX = C:\WINDOWS\system32\WinAvXX.exe
9/20/2007 6:58:09 PM:515 Infection cleaned
Threat Name - Adware.Agent.BN
Type - Startup
Risk Level - High
Infection - HKEY_USERS\S-1-5-21-1342817645-4171025116-2957372171-1006\Software\Microsoft\Windows\CurrentVersion\Run, WinAVX = C:\WINDOWS\system32\WinAvXX.exe
9/20/2007 6:58:09 PM:515 Infection cleaned
Threat Name - Adware.Agent.BN
Type - Registry Key
Risk Level - High
Infection - HKEY_USERS\S-1-5-21-1342817645-4171025116-2957372171-1006\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{ABCDECF0-4B15-11D1-ABED-709549C10000}
9/20/2007 6:58:09 PM:515 Infection cleaned
Threat Name - Adware.Agent.BN
Type - Registry Key
Risk Level - High
Infection - HKEY_USERS\S-1-5-21-1342817645-4171025116-2957372171-1006\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{ABCDECF0-4B15-11D1-ABED-709549C10000}\iexplore
9/20/2007 6:58:09 PM:515 Infection cleaned
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_USERS\S-1-5-21-1342817645-4171025116-2957372171-1006\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{ABCDECF0-4B15-11D1-ABED-709549C10000}\iexplore, Time
9/20/2007 6:58:09 PM:515 Infection cleaned
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_USERS\S-1-5-21-1342817645-4171025116-2957372171-1006\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{ABCDECF0-4B15-11D1-ABED-709549C10000}\iexplore, Count
9/20/2007 6:58:09 PM:515 Infection cleaned
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_USERS\S-1-5-21-1342817645-4171025116-2957372171-1006\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{ABCDECF0-4B15-11D1-ABED-709549C10000}\iexplore, Flags
9/20/2007 6:58:09 PM:515 Infection cleaned
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_USERS\S-1-5-21-1342817645-4171025116-2957372171-1006\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{ABCDECF0-4B15-11D1-ABED-709549C10000}\iexplore, Type
9/20/2007 6:58:09 PM:765 Infection cleaned
Threat Name - Adware.Agent.BN
Type - Registry Key
Risk Level - High
Infection - HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{ABCDECF0-4B15-11D1-ABED-709549C10000}
9/20/2007 6:58:09 PM:765 Infection cleaned
Threat Name - Adware.Agent.BN
Type - Registry Key
Risk Level - High
Infection - HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{ABCDECF0-4B15-11D1-ABED-709549C10000}\VersionIndependentProgID
9/20/2007 6:58:09 PM:765 Infection cleaned
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{ABCDECF0-4B15-11D1-ABED-709549C10000}\VersionIndependentProgID, (Default)
9/20/2007 6:58:09 PM:765 Infection cleaned
Threat Name - Adware.Agent.BN
Type - Registry Key
Risk Level - High
Infection - HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{ABCDECF0-4B15-11D1-ABED-709549C10000}\Programmable
9/20/2007 6:58:09 PM:765 Infection cleaned
Threat Name - Adware.Agent.BN
Type - Registry Key
Risk Level - High
Infection - HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{ABCDECF0-4B15-11D1-ABED-709549C10000}\ProgID
9/20/2007 6:58:09 PM:765 Infection cleaned
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{ABCDECF0-4B15-11D1-ABED-709549C10000}\ProgID, (Default)
9/20/2007 6:58:09 PM:765 Infection cleaned
Threat Name - Adware.Agent.BN
Type - Registry Key
Risk Level - High
Infection - HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{ABCDECF0-4B15-11D1-ABED-709549C10000}\InprocServer32
9/20/2007 6:58:09 PM:765 Infection cleaned
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{ABCDECF0-4B15-11D1-ABED-709549C10000}\InprocServer32, Enable Browser Extensions
9/20/2007 6:58:09 PM:765 Infection cleaned
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{ABCDECF0-4B15-11D1-ABED-709549C10000}\InprocServer32, ThreadingModel
9/20/2007 6:58:09 PM:765 Infection cleaned
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{ABCDECF0-4B15-11D1-ABED-709549C10000}\InprocServer32, (Default)
9/20/2007 6:58:09 PM:765 Infection cleaned
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{ABCDECF0-4B15-11D1-ABED-709549C10000}, (Default)
9/20/2007 6:58:10 PM:62 Infection cleaned
Threat Name - Adware.Agent.BN
Type - Registry Key
Risk Level - High
Infection - HKEY_CLASSES_ROOT\TypeLib\{ABCDECE2-4B15-11D1-ABED-709549C10000}
9/20/2007 6:58:10 PM:62 Infection cleaned
Threat Name - Adware.Agent.BN
Type - Registry Key
Risk Level - High
Infection - HKEY_CLASSES_ROOT\TypeLib\{ABCDECE2-4B15-11D1-ABED-709549C10000}\1.0
9/20/2007 6:58:10 PM:62 Infection cleaned
Threat Name - Adware.Agent.BN
Type - Registry Key
Risk Level - High
Infection - HKEY_CLASSES_ROOT\TypeLib\{ABCDECE2-4B15-11D1-ABED-709549C10000}\1.0\HELPDIR
9/20/2007 6:58:10 PM:62 Infection cleaned
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_CLASSES_ROOT\TypeLib\{ABCDECE2-4B15-11D1-ABED-709549C10000}\1.0\HELPDIR, (Default)
9/20/2007 6:58:10 PM:62 Infection cleaned
Threat Name - Adware.Agent.BN
Type - Registry Key
Risk Level - High
Infection - HKEY_CLASSES_ROOT\TypeLib\{ABCDECE2-4B15-11D1-ABED-709549C10000}\1.0\FLAGS
9/20/2007 6:58:10 PM:62 Infection cleaned
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_CLASSES_ROOT\TypeLib\{ABCDECE2-4B15-11D1-ABED-709549C10000}\1.0\FLAGS, (Default)
9/20/2007 6:58:10 PM:62 Infection cleaned
Threat Name - Adware.Agent.BN
Type - Registry Key
Risk Level - High
Infection - HKEY_CLASSES_ROOT\TypeLib\{ABCDECE2-4B15-11D1-ABED-709549C10000}\1.0
9/20/2007 6:58:10 PM:218 Infection cleaned
Threat Name - Adware.Agent.BN
Type - Registry Key
Risk Level - High
Infection - HKEY_CLASSES_ROOT\TypeLib\{ABCDECE2-4B15-11D1-ABED-709549C10000}\1.0\win32
9/20/2007 6:58:10 PM:218 Infection cleaned
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_CLASSES_ROOT\TypeLib\{ABCDECE2-4B15-11D1-ABED-709549C10000}\1.0\win32, (Default)
9/20/2007 6:58:10 PM:218 Infection cleaned
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_CLASSES_ROOT\TypeLib\{ABCDECE2-4B15-11D1-ABED-709549C10000}\1.0, (Default)
9/20/2007 6:58:10 PM:609 Infection cleaned
Threat Name - Adware.Agent.BN
Type - Registry Key
Risk Level - High
Infection - HKEY_CLASSES_ROOT\Interface\{ABCDECEF-4B15-11D1-ABED-709549C10000}
9/20/2007 6:58:10 PM:609 Infection cleaned
Threat Name - Adware.Agent.BN
Type - Registry Key
Risk Level - High
Infection - HKEY_CLASSES_ROOT\Interface\{ABCDECEF-4B15-11D1-ABED-709549C10000}\TypeLib
9/20/2007 6:58:10 PM:609 Infection cleaned
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_CLASSES_ROOT\Interface\{ABCDECEF-4B15-11D1-ABED-709549C10000}\TypeLib, Version
9/20/2007 6:58:10 PM:609 Infection cleaned
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_CLASSES_ROOT\Interface\{ABCDECEF-4B15-11D1-ABED-709549C10000}\TypeLib, (Default)
9/20/2007 6:58:10 PM:609 Infection cleaned
Threat Name - Adware.Agent.BN
Type - Registry Key
Risk Level - High
Infection - HKEY_CLASSES_ROOT\Interface\{ABCDECEF-4B15-11D1-ABED-709549C10000}\ProxyStubClsid32
9/20/2007 6:58:10 PM:609 Infection cleaned
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_CLASSES_ROOT\Interface\{ABCDECEF-4B15-11D1-ABED-709549C10000}\ProxyStubClsid32, (Default)
9/20/2007 6:58:10 PM:609 Infection cleaned
Threat Name - Adware.Agent.BN
Type - Registry Key
Risk Level - High
Infection - HKEY_CLASSES_ROOT\Interface\{ABCDECEF-4B15-11D1-ABED-709549C10000}\ProxyStubClsid
9/20/2007 6:58:10 PM:609 Infection cleaned
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_CLASSES_ROOT\Interface\{ABCDECEF-4B15-11D1-ABED-709549C10000}\ProxyStubClsid, (Default)
9/20/2007 6:58:10 PM:609 Infection cleaned
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_CLASSES_ROOT\Interface\{ABCDECEF-4B15-11D1-ABED-709549C10000}, (Default)
9/20/2007 6:58:10 PM:640 Infection cleaned
Threat Name - Adware.Agent.BN
Type - Registry Value
Risk Level - High
Infection - HKEY_USERS\S-1-5-21-1342817645-4171025116-2957372171-1006\Software\Microsoft\Windows\CurrentVersion\Run, WinAVX
9/20/2007 6:58:10 PM:640 Infection cleaned
Threat Name - Adware.Agent.BN
Type - File
Risk Level - High
Infection - C:\DOCUMENTS AND SETTINGS\ALL USERS\START MENU\PROGRAMS\STARTUP\autorun.exe
9/20/2007 6:58:10 PM:968 Infection quarantined
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, www3.ca.com
9/20/2007 6:58:10 PM:968 Infection quarantined
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, www.virustotal.com
9/20/2007 6:58:10 PM:968 Infection quarantined
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, www.viruslist.ru
9/20/2007 6:58:10 PM:968 Infection quarantined
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, www.viruslist.com
9/20/2007 6:58:10 PM:984 Infection quarantined
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, www.trendmicro.com
9/20/2007 6:58:10 PM:984 Infection quarantined
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, www.symantec.com
9/20/2007 6:58:10 PM:984 Infection quarantined
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, www.sophos.com
9/20/2007 6:58:10 PM:984 Infection quarantined
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, www.pandasoftware.com
9/20/2007 6:58:10 PM:984 Infection quarantined
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, www.networkassociates.com
9/20/2007 6:58:10 PM:984 Infection quarantined
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, www.nai.com
9/20/2007 6:58:10 PM:984 Infection quarantined
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, www.my-etrust.com
9/20/2007 6:58:10 PM:984 Infection quarantined
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, www.microsoft.com
9/20/2007 6:58:10 PM:984 Infection quarantined
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, www.mcafee.com
9/20/2007 6:58:10 PM:984 Infection quarantined
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, www.kaspersky.ru
9/20/2007 6:58:10 PM:984 Infection quarantined
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, www.kaspersky.com
9/20/2007 6:58:10 PM:984 Infection quarantined
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, www.kaspersky-labs.com
9/20/2007 6:58:10 PM:984 Infection quarantined
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, www.grisoft.com
9/20/2007 6:58:10 PM:984 Infection quarantined
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, www.f-secure.com
9/20/2007 6:58:10 PM:984 Infection quarantined
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, www.ca.com
9/20/2007 6:58:10 PM:984 Infection quarantined
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, www.avp.ru
9/20/2007 6:58:10 PM:984 Infection quarantined
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, www.avp.com
9/20/2007 6:58:10 PM:984 Infection quarantined
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, www.avp.ch
9/20/2007 6:58:10 PM:984 Infection quarantined
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, windowsupdate.microsoft.com
9/20/2007 6:58:10 PM:984 Infection quarantined
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, virustotal.com
9/20/2007 6:58:10 PM:984 Infection quarantined
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, viruslist.ru
9/20/2007 6:58:10 PM:984 Infection quarantined
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, viruslist.com
9/20/2007 6:58:10 PM:984 Infection quarantined
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, vil.nai.com
9/20/2007 6:58:10 PM:984 Infection quarantined
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, us.mcafee.com
9/20/2007 6:58:10 PM:984 Infection quarantined
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, updates5.kaspersky-labs.com
9/20/2007 6:58:10 PM:984 Infection quarantined
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, updates4.kaspersky-labs.com
9/20/2007 6:58:10 PM:984 Infection quarantined
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, updates3.kaspersky-labs.com
9/20/2007 6:58:10 PM:984 Infection quarantined
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, updates2.kaspersky-labs.com
9/20/2007 6:58:10 PM:984 Infection quarantined
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, updates1.kaspersky-labs.com
9/20/2007 6:58:10 PM:984 Infection quarantined
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, updates.symantec.com
9/20/2007 6:58:10 PM:984 Infection quarantined
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, update.symantec.com
9/20/2007 6:58:10 PM:984 Infection quarantined
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, trendmicro.com
9/20/2007 6:58:11 PM:109 Infection quarantined
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, symantec.com
9/20/2007 6:58:11 PM:109 Infection quarantined
Threat Name - Spyware.Possible_Website_Hijack
Type - Bad Host Entry
Risk Level - High
Infection - 192.168.200.3, support.microsoft.com
9/20/2007 6:58:11 PM:109 Infection quarantined
Threat Name - Spyware.Possible_Website_Hijack
Type -