SUPERAntiSpyware Scan Log
http://www.superantispyware.comGenerated 01/28/2008 at 01:15 AM
Application Version : 3.9.1008
Core Rules Database Version : 3389
Trace Rules Database Version: 1383
Scan type : Complete Scan
Total Scan Time : 00:36:49
Memory items scanned : 458
Memory threats detected : 0
Registry items scanned : 5239
Registry threats detected : 0
File items scanned : 32362
File threats detected : 448
Adware.Tracking Cookie
C:\Documents and Settings\admin\Cookies\admin@casalemedia[2].txt
C:\Documents and Settings\admin\Cookies\admin@tacoda[2].txt
C:\Documents and Settings\admin\Cookies\admin@revsci[2].txt
C:\Documents and Settings\admin\Cookies\
[email protected][2].txt
C:\Documents and Settings\admin\Cookies\
[email protected][1].txt
C:\Documents and Settings\admin\Cookies\
[email protected][1].txt
C:\Documents and Settings\admin\Cookies\
[email protected][1].txt
C:\Documents and Settings\admin\Cookies\
[email protected][1].txt
C:\Documents and Settings\admin\Cookies\
[email protected][1].txt
C:\Documents and Settings\admin\Cookies\
[email protected][2].txt
C:\Documents and Settings\admin\Cookies\admin@advertising[1].txt
C:\Documents and Settings\admin\Cookies\admin@atwola[1].txt
C:\Documents and Settings\admin\Cookies\admin@ad[1].txt
C:\Documents and Settings\admin\Cookies\
[email protected][2].txt
C:\Documents and Settings\admin\Cookies\
[email protected][1].txt
C:\Documents and Settings\admin\Cookies\admin@atdmt[2].txt
C:\Documents and Settings\admin\Cookies\
[email protected][1].txt
C:\Documents and Settings\admin\Cookies\admin@adserver[1].txt
C:\Documents and Settings\admin\Cookies\admin@adbrite[2].txt
C:\Documents and Settings\admin\Cookies\admin@media6degrees[2].txt
C:\Documents and Settings\admin\Cookies\
[email protected][2].txt
C:\Documents and Settings\admin\Cookies\admin@doubleclick[1].txt
C:\Documents and Settings\admin\Cookies\admin@1070765727[1].txt
C:\Documents and Settings\admin\Cookies\admin@partypoker[2].txt
C:\Documents and Settings\admin\Cookies\
[email protected][1].txt
C:\Documents and Settings\admin\Cookies\
[email protected][1].txt
C:\Documents and Settings\admin\Cookies\admin@statcounter[2].txt
C:\Documents and Settings\admin\Cookies\
[email protected][2].txt
C:\Documents and Settings\admin\Cookies\admin@smileycentral[1].txt
C:\Documents and Settings\admin\Cookies\
[email protected][2].txt
C:\Documents and Settings\admin\Cookies\
[email protected][2].txt
C:\Documents and Settings\admin\Cookies\admin@888[1].txt
C:\Documents and Settings\admin\Cookies\
[email protected][1].txt
C:\Documents and Settings\admin\Cookies\admin@1057242773[1].txt
C:\Documents and Settings\admin\Cookies\admin@overture[1].txt
C:\Documents and Settings\admin\Cookies\admin@adrevolver[2].txt
C:\Documents and Settings\admin\Cookies\admin@new-pcp[1].txt
C:\Documents and Settings\admin\Cookies\
[email protected][1].txt
C:\Documents and Settings\admin\Cookies\
[email protected][2].txt
C:\Documents and Settings\admin\Cookies\admin@cgi-bin[2].txt
C:\Documents and Settings\admin\Cookies\
[email protected][2].txt
C:\Documents and Settings\admin\Cookies\
[email protected][1].txt
C:\Documents and Settings\admin\Cookies\admin@fastclick[1].txt
C:\Documents and Settings\admin\Cookies\admin@entrepreneur[2].txt
C:\Documents and Settings\admin\Cookies\admin@adrevolver[3].txt
C:\Documents and Settings\admin\Cookies\
[email protected][1].txt
C:\Documents and Settings\admin\Cookies\admin@1070878818[1].txt
C:\Documents and Settings\admin\Cookies\admin@2o7[2].txt
C:\Documents and Settings\admin\Cookies\admin@revenue[2].txt
C:\Documents and Settings\admin\Cookies\
[email protected][1].txt
C:\Documents and Settings\admin\Cookies\admin@mediaplex[1].txt
C:\Documents and Settings\admin\Cookies\admin@mediatraffic[1].txt
C:\Documents and Settings\admin\Cookies\admin@tribalfusion[2].txt
C:\Documents and Settings\admin\Cookies\
[email protected][2].txt
C:\Documents and Settings\admin\Cookies\admin@pacificpoker[1].txt
C:\Documents and Settings\admin\Cookies\
[email protected][1].txt
C:\Documents and Settings\admin\Cookies\admin@1070425503[1].txt
C:\Documents and Settings\admin\Cookies\admin@cassava[1].txt
C:\Documents and Settings\admin\Cookies\admin@clickbank[1].txt
C:\Documents and Settings\admin\Cookies\
[email protected][2].txt
C:\Documents and Settings\admin\Cookies\
[email protected][2].txt
C:\Documents and Settings\admin\Cookies\admin@trafficmp[1].txt
C:\Documents and Settings\admin\Cookies\
[email protected][1].txt
C:\Documents and Settings\admin\Cookies\admin@zedo[1].txt
C:\Documents and Settings\admin\Cookies\
[email protected][1].txt
C:\Documents and Settings\admin\Cookies\admin@apmebf[2].txt
C:\Documents and Settings\admin\Cookies\
[email protected][2].txt
C:\Documents and Settings\admin\Cookies\
[email protected][1].txt
C:\Documents and Settings\admin\Cookies\
[email protected][2].txt
C:\Documents and Settings\admin\Cookies\
[email protected][1].txt
C:\Documents and Settings\admin\Cookies\admin@azjmp[2].txt
C:\Documents and Settings\admin\Cookies\
[email protected][2].txt
C:\Documents and Settings\admin\Cookies\admin@hitbox[1].txt
C:\Documents and Settings\admin\Local Settings\Temp\Cookies\admin@2o7[1].txt
C:\Documents and Settings\admin\Local Settings\Temp\Cookies\
[email protected][1].txt
C:\Documents and Settings\admin\Local Settings\Temp\Cookies\
[email protected][1].txt
C:\Documents and Settings\admin\Local Settings\Temp\Cookies\admin@advertising[2].txt
C:\Documents and Settings\admin\Local Settings\Temp\Cookies\admin@atdmt[2].txt
C:\Documents and Settings\admin\Local Settings\Temp\Cookies\admin@azjmp[2].txt
C:\Documents and Settings\admin\Local Settings\Temp\Cookies\admin@casalemedia[2].txt
C:\Documents and Settings\admin\Local Settings\Temp\Cookies\admin@doubleclick[1].txt
C:\Documents and Settings\admin\Local Settings\Temp\Cookies\
[email protected][1].txt
C:\Documents and Settings\admin\Local Settings\Temp\Cookies\admin@statcounter[1].txt
C:\Documents and Settings\admin\Local Settings\Temp\Cookies\admin@tacoda[2].txt
C:\Documents and Settings\LocalService\Cookies\system@247realmedia[1].txt
C:\Documents and Settings\LocalService\Cookies\system@2o7[1].txt
C:\Documents and Settings\LocalService\Cookies\
[email protected][2].txt
C:\Documents and Settings\LocalService\Cookies\system@adrevolver[2].txt
C:\Documents and Settings\LocalService\Cookies\
[email protected][1].txt
C:\Documents and Settings\LocalService\Cookies\
[email protected][1].txt
C:\Documents and Settings\LocalService\Cookies\system@atdmt[2].txt
C:\Documents and Settings\LocalService\Cookies\
[email protected][2].txt
C:\Documents and Settings\LocalService\Cookies\
[email protected][1].txt
C:\Documents and Settings\LocalService\Cookies\system@burstnet[1].txt
C:\Documents and Settings\LocalService\Cookies\system@doubleclick[1].txt
C:\Documents and Settings\LocalService\Cookies\system@enhance[1].txt
C:\Documents and Settings\LocalService\Cookies\
[email protected][1].txt
C:\Documents and Settings\LocalService\Cookies\system@entrepreneur[2].txt
C:\Documents and Settings\LocalService\Cookies\system@findwhat[1].txt
C:\Documents and Settings\LocalService\Cookies\
[email protected][1].txt
C:\Documents and Settings\LocalService\Cookies\
[email protected][1].txt
C:\Documents and Settings\LocalService\Cookies\
[email protected][1].txt
C:\Documents and Settings\LocalService\Cookies\
[email protected][1].txt
C:\Documents and Settings\LocalService\Cookies\
[email protected][1].txt
C:\Documents and Settings\LocalService\Cookies\system@zedo[1].txt
Adware.k8l
C:\PROGRAM FILES\INTERNET EXPLORER\PROMYMYHD.HTML
Malware.LocusSoftware Inc/BestSellerAntivirus
C:\QOOBOX\QUARANTINE\C\DOCUMENTS AND SETTINGS\ADMIN\LOCAL SETTINGS\TEMP\WINVSNET .EXE.VIR
Trojan.Vundo/Variant-Installer/A
C:\QOOBOX\QUARANTINE\C\DOCUMENTS AND SETTINGS\ADMIN\LOCAL SETTINGS\TEMP\WINVSNET.EXE.VIR
C:\QOOBOX\QUARANTINE\C\PROGRAM FILES\BGINFO\BGINFO.EXE.VIR
C:\QOOBOX\QUARANTINE\C\PROGRAM FILES\CA\ETRUST ANTIVIRUS\REALMON.EXE.VIR
C:\QOOBOX\QUARANTINE\C\PROGRAM FILES\JAVA\JRE1.6.0_03\BIN\JUSCHED.EXE.VIR
C:\QOOBOX\QUARANTINE\C\PROGRAM FILES\MSN MESSENGER\MSNMSGR.EXE.VIR
C:\QOOBOX\QUARANTINE\C\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPENH.EXE.VIR
C:\QOOBOX\QUARANTINE\C\PROGRAM FILES\THINKPAD\UTILITIES\EZEJMNAP.EXE.VIR
C:\QOOBOX\QUARANTINE\C\SXPINST\SXPSTUB.EXE.VIR
C:\QOOBOX\QUARANTINE\C\WINDOWS\MROFINU572.EXE.TMP.VIR
C:\QOOBOX\QUARANTINE\C\WINDOWS\SYSTEM32\DPMW32.EXE.VIR
C:\QOOBOX\QUARANTINE\C\WINDOWS\SYSTEM32\HKCMD.EXE.VIR
C:\QOOBOX\QUARANTINE\C\WINDOWS\SYSTEM32\ICO.EXE.VIR
C:\QOOBOX\QUARANTINE\C\WINDOWS\SYSTEM32\IGFXTRAY.EXE.VIR
C:\QOOBOX\QUARANTINE\C\WINDOWS\SYSTEM32\NWTRAY.EXE.VIR
C:\QOOBOX\QUARANTINE\C\WINDOWS\SYSTEM32\TP4EX.EXE.VIR
C:\QOOBOX\QUARANTINE\C\WINDOWS\SYSTEM32\TPSHOCKS.EXE.VIR
C:\QOOBOX\QUARANTINE\C\WINDOWS\TEMP\RECOVERFROMREBOOT.EXE.VIR
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010807.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010808.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010809.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010811.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010812.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010813.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010814.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010816.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010818.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010819.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010820.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010879.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010887.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010889.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010892.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010895.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010897.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010898.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010899.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010901.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010905.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010906.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010913.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010921.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010925.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010930.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010933.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010937.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010938.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010939.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010941.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010943.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010945.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010947.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010948.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010958.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010966.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010970.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010972.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010976.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010977.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010979.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010980.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010983.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010985.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010986.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0011002.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0011010.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0011011.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0011013.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0011015.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0011022.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0011023.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0011024.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0011028.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0011030.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0011033.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0012001.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0012005.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0012006.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0012007.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0012009.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0012010.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0012011.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0012012.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0012014.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0012016.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0012017.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP25\A0012022.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP25\A0012023.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP25\A0012024.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP25\A0012026.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP25\A0012028.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP25\A0012029.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP25\A0012030.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP25\A0012031.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP25\A0012032.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP25\A0012033.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP25\A0012034.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP25\A0012037.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP25\A0012065.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP25\A0012066.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP25\A0012067.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP25\A0012068.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP25\A0012090.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP25\A0012091.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP25\A0012092.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP25\A0012094.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP25\A0012095.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP25\A0012096.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP25\A0012097.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP25\A0012099.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP25\A0012101.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP25\A0012102.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP25\A0012103.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012106.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012110.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012114.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012115.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012116.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012118.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012119.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012120.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012121.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012123.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012125.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012126.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012188.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012194.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012195.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012196.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012200.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012201.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012204.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012206.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012209.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012210.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012211.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012355.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012365.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012366.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012367.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012369.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012370.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012371.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012373.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012375.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012376.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012377.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012383.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012384.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012385.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012386.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP27\A0012450.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP28\A0012451.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP28\A0012452.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP28\A0012469.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP28\A0012471.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP28\A0012473.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP28\A0012477.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP28\A0012485.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP28\A0012490.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP28\A0012491.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP28\A0012492.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP28\A0012500.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP28\A0012504.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP28\A0012505.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP28\A0012508.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP29\A0012524.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP29\A0012546.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP29\A0012547.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP29\A0012549.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP29\A0012550.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP29\A0012551.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP29\A0012554.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP29\A0012555.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP29\A0012556.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP29\A0012557.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP29\A0012558.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP29\A0012559.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP29\A0012560.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP29\A0012561.EXE
Adware.ClickSpring
C:\QOOBOX\QUARANTINE\C\PROGRAM FILES\ASEMBL~1\JAVAW .EXE.VIR
C:\QooBox\Quarantine\C\WINDOWS\DOBE~1\WAUBOO~1.VIR
C:\QOOBOX\QUARANTINE\C\WINDOWS\SYSTEM32\XWRDJHLG.DLL.VIR
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010912.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010994.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0011039.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP25\A0012042.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012218.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012381.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP28\A0012479.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP28\A0012494.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP28\A0012510.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP29\A0012511.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP29\A0012519.DLL
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP29\A0012568.EXE
Trojan.Vundo/Variant-Installer
C:\QOOBOX\QUARANTINE\C\PROGRAM FILES\ASEMBL~1\JAVAW.EXE.VIR
C:\QOOBOX\QUARANTINE\C\PROGRAM FILES\DOT1XCFG\DOT1XCFG.EXE.VIR
C:\QOOBOX\QUARANTINE\C\PROGRAM FILES\THINKPAD\PKGMGR\HOTKEY\TPHKMGR.EXE.VIR
C:\QOOBOX\QUARANTINE\C\PROGRAM FILES\THINKPAD\UTILITIES\BMMLREF.EXE.VIR
C:\QOOBOX\QUARANTINE\C\WINDOWS\SYSTEM32\IIIIH.EXE.VIR
C:\QOOBOX\QUARANTINE\C\WINDOWS\SYSTEM32\RCX39.TMP.VIR
C:\QOOBOX\QUARANTINE\C\WINDOWS\SYSTEM32\RCX56.TMP.VIR
C:\QOOBOX\QUARANTINE\C\WINDOWS\SYSTEM32\RCX68.TMP.VIR
C:\QOOBOX\QUARANTINE\C\WINDOWS\SYSTEM32\RCXC.TMP.VIR
C:\QOOBOX\QUARANTINE\C\WINDOWS\SYSTEM32\RCXD.TMP.VIR
C:\QOOBOX\QUARANTINE\C\WINDOWS\UTLITE33.EXE.VIR
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010805.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010806.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010810.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010815.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010817.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010823.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010884.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010885.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010893.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010900.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010904.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010908.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010923.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010924.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010935.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010942.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010944.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010950.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010960.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010962.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010974.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010982.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010984.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010988.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0011004.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0011005.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0011014.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0011025.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0011029.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0012003.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0012004.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0012008.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0012013.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0012015.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0012019.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP25\A0012021.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP25\A0012025.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP25\A0012027.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP25\A0012035.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP25\A0012036.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP25\A0012088.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP25\A0012089.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP25\A0012093.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP25\A0012098.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP25\A0012100.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP25\A0012104.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012112.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012113.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012117.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012122.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012124.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012128.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012190.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012192.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012199.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012205.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012208.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012225.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012361.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012362.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012368.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012372.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012374.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012378.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP28\A0012453.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP28\A0012478.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP28\A0012493.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP28\A0012509.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP29\A0012523.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP29\A0012548.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP29\A0012552.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP29\A0012553.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP29\A0012562.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP29\A0012563.EXE
Adware.ClickSpring/Yazzle
C:\QOOBOX\QUARANTINE\C\PROGRAM FILES\COMMON FILES\YAZZLE1281OINADMIN.EXE.VIR
C:\QOOBOX\QUARANTINE\C\PROGRAM FILES\COMMON FILES\YAZZLE1281OINUNINSTALLER.EXE.VIR
Trojan.Downloader-WinPop/SD
C:\QOOBOX\QUARANTINE\C\PROGRAM FILES\DOT1XCFG\DOT1XCFG .EXE.VIR
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010911.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0011038.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP25\A0012043.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012219.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012382.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP29\A0012531.EXE
Trojan.ZQuest
C:\QOOBOX\QUARANTINE\C\PROGRAM FILES\INTERNET EXPLORER\LADUXAN.DLL.VIR
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP29\A0012520.DLL
Unclassified.Unknown Origin
C:\QOOBOX\QUARANTINE\C\PROGRAM FILES\NETMEETING\HOREF4444.DLL.VIR
C:\QOOBOX\QUARANTINE\C\PROGRAM FILES\NETMEETING\HOREF83122.DLL.VIR
C:\QOOBOX\QUARANTINE\C\WINDOWS\Q2L0ESBVZIBUB3JVBNRV\COMMAND.EXE.VIR
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP29\A0012521.DLL
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP29\A0012522.DLL
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP29\A0012528.EXE
Trojan.NetMon/DNSChange
C:\QOOBOX\QUARANTINE\C\PROGRAM FILES\NETWORK MONITOR\NETMON.EXE.VIR
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP29\A0012564.EXE
Trojan.Downloader-Gen/MROFIN
C:\QOOBOX\QUARANTINE\C\WINDOWS\17PHOLMES572.EXE.VIR
C:\QOOBOX\QUARANTINE\C\WINDOWS\MROFINU1000106.EXE.VIR
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP23\A0010782.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP23\A0010796.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010907.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010987.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0011034.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0012018.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP25\A0012045.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP25\A0012063.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP25\A0012064.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP25\A0012072.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012127.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012224.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012387.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP29\A0012517.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP31\A0012664.EXE
Malware.LocusSoftware Inc-Installer
C:\QOOBOX\QUARANTINE\C\WINDOWS\DOWNLOADED PROGRAM FILES\UGA6P_0001_N122M2210NETINSTALLER.EXE.VIR
Adware.Adservs
C:\QOOBOX\QUARANTINE\C\WINDOWS\Q2L0ESBVZIBUB3JVBNRV\ASAPPSRV.DLL.VIR
C:\QOOBOX\QUARANTINE\C\WINDOWS\SYSTEM32\VX2\SOFTIDNDLL3.EXE.VIR
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP29\A0012571.DLL
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP31\A0012663.EXE
Trojan.Unknown Origin
C:\QOOBOX\QUARANTINE\C\WINDOWS\Q2L0ESBVZIBUB3JVBNRV\KZ5XYM1ST21OVALSVBLS.VBS.VIR
C:\QOOBOX\QUARANTINE\C\WINDOWS\SYSTEM32\SA3\RENAMD83122.EXE.VIR
C:\QOOBOX\QUARANTINE\C\WINDOWS\TTC-4444.EXE.VIR
C:\QOOBOX\QUARANTINE\C\WINDOWS\UNINSTALL_NMON.VBS.VIR
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP29\A0012516.VBS
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP29\A0012572.VBS
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP29\A0012574.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP31\A0012662.EXE
Adware.Vundo Variant
C:\QOOBOX\QUARANTINE\C\WINDOWS\SYSTEM32\EFCDEEE.DLL.VIR
C:\QOOBOX\QUARANTINE\C\WINDOWS\SYSTEM32\NNNKJHF.DLL.VIR
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP29\A0012525.DLL
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP29\A0012526.DLL
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP29\A0012579.DLL
Trojan.ZQuest-Installer
C:\QOOBOX\QUARANTINE\C\WINDOWS\TK58.EXE.VIR
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP29\A0012573.EXE
Rogue.StorageProtector/Trace
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010831.EXE
Rogue.LocusSoftware/Component
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010856.DLL
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010862.DLL
Rogue.NoWayVirus-PTask
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP24\A0010861.EXE
Adware.Vundo-Variant
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP26\A0012346.DLL
C:\SYSTEM VOLUME INFORMATION\_RESTORE{9DD8723F-08A7-4EED-B572-20406E757287}\RP29\A0012578.DLL
________________________________________________________________________________
_________________________________________________________________________________
_______
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 1:30:36 AM, on 1/28/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\ibmpmsvc.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\WINDOWS\system32\spoolsv.exe
c:\Program Files\CA\eTrust Antivirus\InoRpc.exe
c:\Program Files\CA\eTrust Antivirus\InoRT.exe
c:\Program Files\CA\eTrust Antivirus\InoTask.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\Program Files\CA\Unicenter Software Delivery\BIN\SDSERV.EXE
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\timeserv.exe
C:\WINDOWS\System32\TPHDEXLG.EXE
C:\Program Files\CA\Unicenter Software Delivery\BIN\TRIGGAG.EXE
C:\WINDOWS\system32\cmd.exe
C:\Program Files\CA\Unicenter Software Delivery\BIN\sdjexec.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\WINDOWS\system32\notepad.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://insideto.toronto.caO2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - c:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O4 - HKLM\..\Run: [Realtime Monitor] c:\PROGRA~1\CA\ETRUST~1\realmon.exe -s
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [SDJobCheck] triggusr.exe
O4 - HKLM\..\Run: [NWTRAY] NWTRAY.EXE
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - HKUS\S-1-5-19\..\RunOnce: [UserPref] REGEDIT.exe /s c:\windows\system32\userpref.reg (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [UserPref] REGEDIT.exe /s c:\windows\system32\userpref.reg (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O14 - IERESET.INF: START_PAGE_URL=http://insideto.toronto.ca
O16 - DPF: {5C6698D9-7BE4-4122-8EC5-291D84DBD4A0} (Facebook Photo Uploader 4 Control) -
http://upload.facebo...toUploader3.cabO17 - HKLM\System\CCS\Services\Tcpip\..\{9CE1281D-8A39-49F8-8009-F4575839E73D}: Domain = toronto.ca
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O23 - Service: ACU Configuration Service (ACS) - Unknown owner - C:\WINDOWS\system32\acs.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Client Update Service for Novell (cusrvc) - Novell, Inc. - C:\WINDOWS\system32\cusrvc.exe
O23 - Service: EvtEng - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: IBM PM Service (IBMPMSVC) - Unknown owner - C:\WINDOWS\system32\ibmpmsvc.exe
O23 - Service: eTrust Antivirus RPC Server (InoRPC) - Computer Associates International, Inc. - c:\Program Files\CA\eTrust Antivirus\InoRpc.exe
O23 - Service: eTrust Antivirus Realtime Server (InoRT) - Computer Associates International, Inc. - c:\Program Files\CA\eTrust Antivirus\InoRT.exe
O23 - Service: eTrust Antivirus Job Server (InoTask) - Computer Associates International, Inc. - c:\Program Files\CA\eTrust Antivirus\InoTask.exe
O23 - Service: RegSrvc - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: Unicenter Software Delivery (SDService) - Computer Associates International, Inc. - C:\Program Files\CA\Unicenter Software Delivery\BIN\SDSERV.EXE
O23 - Service: IBM HDD APS Logging Service (TPHDEXLGSVC) - IBM Corporation - C:\WINDOWS\System32\TPHDEXLG.EXE
--
End of file - 4986 bytes