so far i have saved reports from hijack this, AVG, combofix, DRweb, and mwav for your review....any help with what else to try or do would be greatly appreciated...I am hoping to not have to wipe it out and start over....the mwav report WILL BE IN SEPERATE POSTS, AS IT IS A LARGE FILE
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 8:06:42 AM, on 2/8/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16574)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\Program Files\Common Files\Authentium\AntiVirus\dvpapi.exe
C:\PROGRA~1\Iomega\System32\ActivityDisk.exe
C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
C:\WINDOWS\System32\tcpsvcs.exe
C:\WINDOWS\System32\snmp.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\Program Files\Viewpoint\Common\ViewpointService.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\hkcmd.exe
C:\Program Files\Apoint2K\Apoint.exe
C:\Program Files\Apoint2K\Apntex.exe
C:\Program Files\TOSHIBA\Power Management\CePMTray.exe
C:\Program Files\TOSHIBA\E-KEY\CeEKey.exe
C:\WINDOWS\System32\ezSP_Px.exe
C:\Program Files\TOSHIBA\TouchPad\TPTray.exe
C:\toshiba\ivp\ism\pinger.exe
C:\toshiba\sysstability\tsyssmon.exe
C:\Program Files\Iomega\DriveIcons\ImgIcon.exe
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
C:\Program Files\Verizon\McciTrayApp.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\ohtnyn.exe
C:\Program Files\Iomega\AutoDisk\AD2KClient.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Nikon\PictureProject\NkbMonitor.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.aimpages....ke/profile.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft....k/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft....k/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft....k/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft....k/?LinkId=69157
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {2E19EC38-382E-45AA-8EAA-AF3876B93878} - C:\WINDOWS\system32\ciod.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: My Web Search - {07B18EA9-A523-4961-B6BB-170DE4475CCA} - C:\Program Files\MyWebSearch\bar\2.bin\MWSBAR.DLL (file missing)
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint2K\Apoint.exe
O4 - HKLM\..\Run: [CeEPOWER] C:\Program Files\TOSHIBA\Power Management\CePMTray.exe
O4 - HKLM\..\Run: [CeEKEY] C:\Program Files\TOSHIBA\E-KEY\CeEKey.exe
O4 - HKLM\..\Run: [ezShieldProtector for Px] C:\WINDOWS\System32\ezSP_Px.exe
O4 - HKLM\..\Run: [TPNF] C:\Program Files\TOSHIBA\TouchPad\TPTray.exe
O4 - HKLM\..\Run: [Pinger] C:\toshiba\ivp\ism\pinger.exe
O4 - HKLM\..\Run: [TSysSMon] c:\toshiba\sysstability\tsyssmon.exe /detect
O4 - HKLM\..\Run: [Iomega Startup Options] C:\Program Files\Iomega\Common\ImgStart.exe
O4 - HKLM\..\Run: [Iomega Drive Icons] C:\Program Files\Iomega\DriveIcons\ImgIcon.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Verizon_McciTrayApp] C:\Program Files\Verizon\McciTrayApp.exe
O4 - HKLM\..\Run: [VerizonServicepoint.exe] "C:\Program Files\Verizon\VSP\VerizonServicepoint.exe" /AUTORUN
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [TrojanScanner] C:\Program Files\Trojan Remover\Trjscan.exe
O4 - HKLM\..\Run: [drmsrv32] C:\ohtnyn.exe
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [Iomega Active Disk] C:\Program Files\Iomega\AutoDisk\AD2KClient.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-18\..\Run: [MySpaceIM] C:\Program Files\MySpace\IM\MySpaceIM.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [MySpaceIM] C:\Program Files\MySpace\IM\MySpaceIM.exe (User 'Default user')
O4 - Global Startup: NkbMonitor.exe.lnk = C:\Program Files\Nikon\PictureProject\NkbMonitor.exe
O8 - Extra context menu item: &AOL Toolbar search - res://C:\Program Files\AOL Toolbar\toolbar.dll/SEARCH.HTML
O8 - Extra context menu item: &eBay Search - res://C:\Program Files\eBay\eBay Toolbar2\eBayTb.dll/RCSearch.html
O8 - Extra context menu item: &Search - http://edits.mywebse...?p=ZUxdm486YYUS
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyGaming\PartyPoker\RunApp.exe (file missing)
O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyGaming\PartyPoker\RunApp.exe (file missing)
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
O16 - DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} (Office Genuine Advantage Validation Tool) - http://go.microsoft....k/?linkid=58813
O16 - DPF: {1169E0CD-9E76-11D7-B1D8-FB63945DE96D} (VintaSoftTwain Class) - http://www.efitnesst...com/VSTwain.dll
O16 - DPF: {1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB} - http://ak.exe.imgfar...p1.0.0.15-3.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.micros...b?1153779408093
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.micros...b?1157108437390
O16 - DPF: {98BFD494-F6AD-4794-9038-832C0654CC43} (AOL YGP UPF Ctrl) - http://pak04.picture...-US.9.2.4.0.cab
O16 - DPF: {B06CE1BC-5D9D-4676-BD28-1752DBF394E0} (Hangman Control) - http://www.worldwinn...man/hangman.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{3866FD2E-6002-45C7-BDED-7FA5D76E31E2}: NameServer = 202.139.2.60
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: DvpApi (dvpapi) - Authentium, Inc. - C:\Program Files\Common Files\Authentium\AntiVirus\dvpapi.exe
O23 - Service: Iomega Activity Disk2 - Iomega Corporation - C:\PROGRA~1\Iomega\System32\ActivityDisk.exe
O23 - Service: IomegaAccess - Iomega Corporation - (no file)
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~2\LUCOMS~1.EXE
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
O23 - Service: Radialpoint Unicorn Update Service (RPSUpdaterR) - Radialpoint Inc. - C:\Program Files\Verizon\PC Security Checkup\rpsupdaterR.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: Viewpoint Manager Service - Viewpoint Corporation - C:\Program Files\Viewpoint\Common\ViewpointService.exe
--
End of file - 10407 bytes
COMBOFIX:
C.bat;C:\ComboFix[1];Probably BATCH.Virus;Incurable.Deleted.;
psexec.cfexe;C:\ComboFix[1];Program.PsExec.171;Incurable.Deleted.;
1202386548.dll.vir;C:\RECYCLER\S-1-5-21-2267283539-1635408369-3223663487-1005\Dc18\Quarantine\C\Program Files\Helper;Adware.Nopage;Deleted.;
1202386553.dll.vir.vir;C:\RECYCLER\S-1-5-21-2267283539-1635408369-3223663487-1005\Dc18\Quarantine\C\Program Files\Helper;Adware.Nopage;Deleted.;
msimg32.dll.vir;C:\RECYCLER\S-1-5-21-2267283539-1635408369-3223663487-1005\Dc18\Quarantine\C\Program Files\Internet Explorer;Adware.Funweb;Incurable.Deleted.;
F3BROVLY.DLL.vir;C:\RECYCLER\S-1-5-21-2267283539-1635408369-3223663487-1005\Dc18\Quarantine\C\Program Files\MyWebSearch\bar\2.bin;Adware.Websearch;Incurable.Deleted.;
F3DTACTL.DLL.vir;C:\RECYCLER\S-1-5-21-2267283539-1635408369-3223663487-1005\Dc18\Quarantine\C\Program Files\MyWebSearch\bar\2.bin;Adware.Funweb;Incurable.Deleted.;
F3HISTSW.DLL.vir;C:\RECYCLER\S-1-5-21-2267283539-1635408369-3223663487-1005\Dc18\Quarantine\C\Program Files\MyWebSearch\bar\2.bin;Adware.Msearch;Incurable.Deleted.;
F3HTTPCT.DLL.vir;C:\RECYCLER\S-1-5-21-2267283539-1635408369-3223663487-1005\Dc18\Quarantine\C\Program Files\MyWebSearch\bar\2.bin;Trojan.Isbar.438;Deleted.;
F3IMSTUB.DLL.vir;C:\RECYCLER\S-1-5-21-2267283539-1635408369-3223663487-1005\Dc18\Quarantine\C\Program Files\MyWebSearch\bar\2.bin;Adware.Funweb;Incurable.Deleted.;
F3POPSWT.DLL.vir;C:\RECYCLER\S-1-5-21-2267283539-1635408369-3223663487-1005\Dc18\Quarantine\C\Program Files\MyWebSearch\bar\2.bin;Adware.Funweb;Incurable.Deleted.;
F3PSSAVR.SCR.vir;C:\RECYCLER\S-1-5-21-2267283539-1635408369-3223663487-1005\Dc18\Quarantine\C\Program Files\MyWebSearch\bar\2.bin;Adware.Msearch;Incurable.Deleted.;
F3REPROX.DLL.vir;C:\RECYCLER\S-1-5-21-2267283539-1635408369-3223663487-1005\Dc18\Quarantine\C\Program Files\MyWebSearch\bar\2.bin;Adware.Funweb;Incurable.Deleted.;
F3RESTUB.DLL.vir;C:\RECYCLER\S-1-5-21-2267283539-1635408369-3223663487-1005\Dc18\Quarantine\C\Program Files\MyWebSearch\bar\2.bin;Adware.Msearch;Incurable.Deleted.;
F3SCHMON.EXE.vir;C:\RECYCLER\S-1-5-21-2267283539-1635408369-3223663487-1005\Dc18\Quarantine\C\Program Files\MyWebSearch\bar\2.bin;Adware.Msearch;Incurable.Deleted.;
F3SCRCTR.DLL.vir;C:\RECYCLER\S-1-5-21-2267283539-1635408369-3223663487-1005\Dc18\Quarantine\C\Program Files\MyWebSearch\bar\2.bin;Trojan.DownLoader.7028;Deleted.;
F3SHLLVW.DLL.vir;C:\RECYCLER\S-1-5-21-2267283539-1635408369-3223663487-1005\Dc18\Quarantine\C\Program Files\MyWebSearch\bar\2.bin;Adware.Funweb;Incurable.Deleted.;
F3WPHOOK.DLL.vir;C:\RECYCLER\S-1-5-21-2267283539-1635408369-3223663487-1005\Dc18\Quarantine\C\Program Files\MyWebSearch\bar\2.bin;Adware.Msearch;Incurable.Deleted.;
M3HTML.DLL.vir;C:\RECYCLER\S-1-5-21-2267283539-1635408369-3223663487-1005\Dc18\Quarantine\C\Program Files\MyWebSearch\bar\2.bin;Adware.Websearch;Incurable.Deleted.;
M3IDLE.DLL.vir;C:\RECYCLER\S-1-5-21-2267283539-1635408369-3223663487-1005\Dc18\Quarantine\C\Program Files\MyWebSearch\bar\2.bin;Adware.MWS;Incurable.Deleted.;
M3MSG.DLL.vir;C:\RECYCLER\S-1-5-21-2267283539-1635408369-3223663487-1005\Dc18\Quarantine\C\Program Files\MyWebSearch\bar\2.bin;Adware.Websearch;Incurable.Deleted.;
M3OUTLCN.DLL.vir;C:\RECYCLER\S-1-5-21-2267283539-1635408369-3223663487-1005\Dc18\Quarantine\C\Program Files\MyWebSearch\bar\2.bin;Adware.Msearch;Incurable.Deleted.;
M3PLUGIN.DLL.vir;C:\RECYCLER\S-1-5-21-2267283539-1635408369-3223663487-1005\Dc18\Quarantine\C\Program Files\MyWebSearch\bar\2.bin;Adware.Msearch;Incurable.Deleted.;
M3SKIN.DLL.vir;C:\RECYCLER\S-1-5-21-2267283539-1635408369-3223663487-1005\Dc18\Quarantine\C\Program Files\MyWebSearch\bar\2.bin;Adware.Websearch;Incurable.Deleted.;
M3SLSRCH.EXE.vir;C:\RECYCLER\S-1-5-21-2267283539-1635408369-3223663487-1005\Dc18\Quarantine\C\Program Files\MyWebSearch\bar\2.bin;Adware.Websearch;Incurable.Deleted.;
M3SRCHMN.EXE.vir;C:\RECYCLER\S-1-5-21-2267283539-1635408369-3223663487-1005\Dc18\Quarantine\C\Program Files\MyWebSearch\bar\2.bin;Adware.Websearch;Incurable.Deleted.;
MWSBAR.DLL.vir;C:\RECYCLER\S-1-5-21-2267283539-1635408369-3223663487-1005\Dc18\Quarantine\C\Program Files\MyWebSearch\bar\2.bin;Adware.Websearch;Incurable.Deleted.;
MWSOEMON.EXE.vir;C:\RECYCLER\S-1-5-21-2267283539-1635408369-3223663487-1005\Dc18\Quarantine\C\Program Files\MyWebSearch\bar\2.bin;Adware.Websearch;Incurable.Deleted.;
MWSOEPLG.DLL.vir;C:\RECYCLER\S-1-5-21-2267283539-1635408369-3223663487-1005\Dc18\Quarantine\C\Program Files\MyWebSearch\bar\2.bin;Adware.Websearch;Incurable.Deleted.;
MWSOESTB.DLL.vir;C:\RECYCLER\S-1-5-21-2267283539-1635408369-3223663487-1005\Dc18\Quarantine\C\Program Files\MyWebSearch\bar\2.bin;Adware.MWS;Incurable.Deleted.;
NPMYWEBS.DLL.vir;C:\RECYCLER\S-1-5-21-2267283539-1635408369-3223663487-1005\Dc18\Quarantine\C\Program Files\MyWebSearch\bar\2.bin;Adware.Websearch;Incurable.Deleted.;
MWSSRCAS.DLL.vir;C:\RECYCLER\S-1-5-21-2267283539-1635408369-3223663487-1005\Dc18\Quarantine\C\Program Files\MyWebSearch\SrchAstt\2.bin;Adware.Websearch;Incurable.Deleted.;
f3PSSavr.scr.vir;C:\RECYCLER\S-1-5-21-2267283539-1635408369-3223663487-1005\Dc18\Quarantine\C\WINDOWS\system32;Adware.Msearch;Incurable.Deleted.;
A0072784.dll;C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP553;Adware.Nopage;;
A0072798.dll;C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP553;Trojan.Fakealert.386;Deleted.;
A0072799.dll;C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP553;Adware.Cinmus;Incurable.Deleted.;
A0072800.dll;C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP553;Trojan.Fakealert.386;Deleted.;
A0073863.dll;C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554;Trojan.Fakealert.386;Deleted.;
A0073864.dll;C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554;Adware.Cinmus;Incurable.Deleted.;
A0073865.dll;C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554;Trojan.Fakealert.386;Deleted.;
A0073868.dll;C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554;Adware.Nopage;;
A0073869.DLL;C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554;Adware.Websearch;Incurable.Deleted.;
A0073871.DLL;C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554;Adware.Funweb;Incurable.Deleted.;
A0073872.DLL;C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554;Adware.Msearch;Incurable.Deleted.;
A0073873.DLL;C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554;Trojan.Isbar.438;Deleted.;
A0073874.DLL;C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554;Adware.Funweb;Incurable.Deleted.;
A0073875.DLL;C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554;Adware.Funweb;Incurable.Deleted.;
A0073876.SCR;C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554;Adware.Msearch;Incurable.Deleted.;
A0073877.DLL;C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554;Adware.Funweb;Incurable.Deleted.;
A0073878.DLL;C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554;Adware.Msearch;Incurable.Deleted.;
A0073879.EXE;C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554;Adware.Msearch;Incurable.Deleted.;
A0073880.DLL;C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554;Trojan.DownLoader.7028;Deleted.;
A0073881.DLL;C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554;Adware.Funweb;Incurable.Deleted.;
A0073882.DLL;C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554;Adware.Msearch;Incurable.Deleted.;
A0073884.DLL;C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554;Adware.Websearch;Incurable.Deleted.;
A0073885.DLL;C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554;Adware.MWS;Incurable.Deleted.;
A0073887.DLL;C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554;Adware.Websearch;Incurable.Deleted.;
A0073889.DLL;C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554;Adware.Msearch;Incurable.Deleted.;
A0073890.DLL;C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554;Adware.Msearch;Incurable.Deleted.;
A0073891.DLL;C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554;Adware.Websearch;Incurable.Deleted.;
A0073893.EXE;C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554;Adware.Websearch;Incurable.Deleted.;
A0073894.EXE;C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554;Adware.Websearch;Incurable.Deleted.;
A0073895.DLL;C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554;Adware.Websearch;Incurable.Deleted.;
A0073896.EXE;C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554;Adware.Websearch;Incurable.Deleted.;
A0073897.DLL;C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554;Adware.Websearch;Incurable.Deleted.;
A0073898.DLL;C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554;Adware.MWS;Incurable.Deleted.;
A0073899.DLL;C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554;Adware.Websearch;Incurable.Deleted.;
A0073907.DLL;C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554;Adware.Websearch;Incurable.Deleted.;
A0073911.dll;C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554;Adware.Funweb;Incurable.Deleted.;
A0073912.scr;C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554;Adware.Msearch;Incurable.Deleted.;
A0073993.bat;C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554;Probably BATCH.Virus;Incurable.Deleted.;
A0073994.DLL;C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554;Adware.Websearch;Incurable.Deleted.;
A0074064.exe;C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554;Trojan.LowZones.706;Deleted.;
A0074115.exe;C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554;Dialer.Maxd;Deleted.;
A0074117.dll;C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554;Trojan.Fakealert.386;Deleted.;
A0074118.dll;C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554;Trojan.Fakealert.386;Deleted.;
A0074119.dll;C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554;Adware.Cinmus;Incurable.Deleted.;
ESCAN REPORT:
File C:\WINDOWS\system32\n2ewma1xxsv234.exe infected by "Packed.Win32.Tibs.ib" Virus. Action Taken: File Renamed.
File C:\WINDOWS\taskmon.exe infected by "Trojan-Downloader.Win32.Tibs.uo" Virus. Action Taken: File Deleted.
File C:\WINDOWS\system32\runtime.exe infected by "Trojan-Spy.Win32.BZub.bxp" Virus. Action Taken: File Deleted.
File C:\WINDOWS\SYSTEM32\BURITO4271-108.SYS infected by "Email-Worm.Win32.Zhelatin.sd" Virus. Action Taken: File Deleted.
File C:\WINDOWS\SYSTEM32\BURITOAA3-4D6.SYS infected by "Email-Worm.Win32.Zhelatin.sd" Virus. Action Taken: File Deleted.
File C:\WINDOWS\ifmtirop.exe infected by "not-virus:Hoax.Win32.Renos.asa" Virus. Action Taken: File Renamed.
File C:\WINDOWS\mrofinu27.exe.tmp infected by "Trojan-Downloader.Win32.Agent.iug" Virus. Action Taken: File Deleted.
File C:\WINDOWS\taskmon.exe~ infected by "Trojan-Downloader.Win32.Tibs.uo" Virus. Action Taken: File Deleted.
File C:\WINDOWS\xpupdate.exe.vir infected by "Packed.Win32.Tibs.ib" Virus. Action Taken: File Renamed.
File C:\WINDOWS\system32\apiuser32.dll infected by "Trojan-PSW.Win32.Delf.aox" Virus. Action Taken: File Deleted.
File C:\WINDOWS\system32\BluetoothAuthorizationAgent.exe~ infected by "Trojan-Downloader.Win32.Agent.itg" Virus. Action Taken: File Deleted.
File C:\WINDOWS\system32\dllgh8jkd1q1.exe~ infected by "Packed.Win32.Tibs.ib" Virus. Action Taken: File Renamed.
File C:\WINDOWS\system32\dllgh8jkd1q2.exe~ infected by "Packed.Win32.Tibs.ib" Virus. Action Taken: File Renamed.
File C:\WINDOWS\system32\dllgh8jkd1q5.exe~ infected by "Packed.Win32.Tibs.ib" Virus. Action Taken: File Renamed.
File C:\WINDOWS\system32\m1ax1d12132116143v.exe tagged as not-a-virus:Porn-Dialer.Win32.GBDialer.j. No Action Taken.
File C:\WINDOWS\system32\rxjddnvj.exe.vir infected by "not-virus:Hoax.Win32.Renos.asa" Virus. Action Taken: File Renamed.
File C:\WINDOWS\system32\taskmon.sys infected by "Trojan-Proxy.Win32.Agent.xo" Virus. Action Taken: File Deleted.
File C:\WINDOWS\system32\vedxg4am1et2.exe~ infected by "Packed.Win32.Tibs.ib" Virus. Action Taken: File Renamed.
File C:\WINDOWS\system32\vedxga1me4t1.exe~ infected by "Packed.Win32.Tibs.ib" Virus. Action Taken: File Renamed.
File C:\WINDOWS\system32\wind32.exe infected by "Packed.Win32.Tibs.ib" Virus. Action Taken: File Renamed.
File C:\Documents and Settings\Katheryn Rollinson\Local Settings\Temp\ma11x1dd121111v.game tagged as not-a-virus:Porn-Dialer.Win32.GBDialer.j. No Action Taken.
File C:\Documents and Settings\Katheryn Rollinson\tmp.exe infected by "Trojan-Spy.Win32.BZub.bxp" Virus. Action Taken: File Deleted.
File C:\Program Files\Norton AntiVirus\Quarantine\11872734.dll tagged as not-a-virus:FraudTool.Win32.BraveSentry.b. No Action Taken.
File C:\Program Files\Norton AntiVirus\Quarantine\556A416D.txt infected by "Trojan-Downloader.Win32.Small.iaw" Virus. Action Taken: File Deleted.
File C:\Program Files\Norton AntiVirus\Quarantine\5E81506F.dll tagged as not-a-virus:FraudTool.Win32.BraveSentry.f. No Action Taken.
File C:\Program Files\Norton AntiVirus\Quarantine\5E857A6C.dll tagged as not-a-virus:FraudTool.Win32.BraveSentry.b. No Action Taken.
File C:\Program Files\Norton AntiVirus\Quarantine\5E882468.dll tagged as not-a-virus:FraudTool.Win32.AntiVirPro.c. No Action Taken.
File C:\Program Files\Norton AntiVirus\Quarantine\74636F36.g3a infected by "Trojan-Downloader.Win32.VB.cga" Virus. Action Taken: File Deleted.
File C:\Program Files\Norton AntiVirus\Quarantine\74661933.ga2 infected by "Trojan-Downloader.Win32.Small.iaw" Virus. Action Taken: File Deleted.
File C:\Program Files\Norton AntiVirus\Quarantine\74661933.txt infected by "Trojan-Downloader.Win32.VB.cga" Virus. Action Taken: File Deleted.
File C:\Program Files\Norton AntiVirus\Quarantine\746A432F.txt infected by "Trojan-Downloader.Win32.Small.iaw" Virus. Action Taken: File Deleted.
File C:\Program Files\Norton AntiVirus\Quarantine\74A860EB.gam infected by "Trojan-Proxy.Win32.Saturn.ag" Virus. Action Taken: File Deleted.
File C:\Program Files\Norton AntiVirus\Quarantine\74A860EB.txt infected by "Trojan-Proxy.Win32.Saturn.ag" Virus. Action Taken: File Deleted.
File C:\Program Files\Norton AntiVirus\Quarantine\74C230CE.g3a infected by "Trojan-Downloader.Win32.VB.cga" Virus. Action Taken: File Deleted.
File C:\Program Files\Norton AntiVirus\Quarantine\74C230CE.ga2 infected by "Trojan-Downloader.Win32.Small.iaw" Virus. Action Taken: File Deleted.
File C:\Program Files\Norton AntiVirus\Quarantine\74C55ACB.txt infected by "Trojan-Downloader.Win32.VB.cga" Virus. Action Taken: File Deleted.
File C:\Program Files\Norton AntiVirus\Quarantine\74C804C7.exe infected by "Trojan.Win32.Agent.dqx" Virus. Action Taken: File Deleted.
File C:\Program Files\Norton AntiVirus\Quarantine\74CF58C0.exe infected by "Email-Worm.Win32.Zhelatin.uq" Virus. Action Taken: File Deleted.
File C:\Program Files\Norton AntiVirus\Quarantine\74FD248E.exe infected by "Trojan.Win32.Qhost.aes" Virus. Action Taken: File Deleted.
File C:\Program Files\Norton AntiVirus\Quarantine\750A4C7F.dll infected by "Trojan.Win32.Qhost.abh" Virus. Action Taken: File Deleted.
File C:\Program Files\Norton AntiVirus\Quarantine\75241C62.exe infected by "Trojan.Win32.Agent.evx" Virus. Action Taken: File Deleted.
File C:\Program Files\Norton AntiVirus\Quarantine\75411642.exe infected by "Trojan-Clicker.Win32.Small.pe" Virus. Action Taken: File Deleted.
File C:\Program Files\Norton AntiVirus\Quarantine\75411642.sys infected by "Trojan-Proxy.Win32.Agent.xo" Virus. Action Taken: File Deleted.
File C:\Program Files\Norton AntiVirus\Quarantine\7544403E.exe infected by "Trojan-Dropper.Win32.Agent.ol" Virus. Action Taken: File Deleted.
File C:\Program Files\Norton AntiVirus\Quarantine\758607F7.exe tagged as not-a-virus:FraudTool.Win32.EasySpywareCleaner.a. No Action Taken.
File C:\Program Files\Norton AntiVirus\Quarantine\76153F59.exe infected by "Trojan-Downloader.Win32.Agent.hyy" Virus. Action Taken: File Deleted.
File C:\Program Files\Norton AntiVirus\Quarantine\76153F59.txt infected by "Trojan-Downloader.Win32.Agent.hyy" Virus. Action Taken: File Deleted.
File C:\Program Files\Norton AntiVirus\Quarantine\76196955.exe infected by "Trojan-Downloader.Win32.Agent.hyy" Virus. Action Taken: File Deleted.
File C:\Program Files\Norton AntiVirus\Quarantine\76196955.txt infected by "Trojan-Downloader.Win32.Agent.hyy" Virus. Action Taken: File Deleted.
File C:\Program Files\Norton AntiVirus\Quarantine(2)\03463638.htm infected by "Trojan-PSW.Win32.Magania.os" Virus. Action Taken: File Deleted.
File C:\Program Files\Spy-Rid\krnl.dll tagged as not-a-virus:FraudTool.Win32.AntiVirPro.c. No Action Taken.
File C:\QooBox\Quarantine\C\Program Files\BraveSentry\BraveSentry.exe.vir tagged as not-a-virus:FraudTool.Win32.BraveSentry.b. No Action Taken.
File C:\QooBox\Quarantine\C\Program Files\BraveSentry\BraveSentry0.dll.vir tagged as not-a-virus:FraudTool.Win32.BraveSentry.f. No Action Taken.
File C:\QooBox\Quarantine\C\Program Files\BraveSentry\BraveSentry2.dll.vir tagged as not-a-virus:FraudTool.Win32.BraveSentry.b. No Action Taken.
File C:\QooBox\Quarantine\C\Program Files\BraveSentry\BraveSentry3.dll.vir tagged as not-a-virus:FraudTool.Win32.BraveSentry.b. No Action Taken.
File C:\QooBox\Quarantine\C\Program Files\Helper\1202386548.dll.vir tagged as not-a-virus:AdWare.Win32.E404.a. No Action Taken.
File C:\QooBox\Quarantine\C\Program Files\Helper\1202386553.dll.vir.vir tagged as not-a-virus:AdWare.Win32.E404.a. No Action Taken.
File C:\QooBox\Quarantine\C\Program Files\Internet Explorer\msimg32.dll.vir tagged as not-a-virus:AdTool.Win32.MyWebSearch.au. No Action Taken.
File C:\QooBox\Quarantine\C\Program Files\MyWebSearch\bar\2.bin\F3BROVLY.DLL.vir tagged as not-a-virus:AdTool.Win32.MyWebSearch.at. No Action Taken.
File C:\QooBox\Quarantine\C\Program Files\MyWebSearch\bar\2.bin\F3DTACTL.DLL.vir tagged as not-a-virus:AdTool.Win32.MyWebSearch.bc. No Action Taken.
File C:\QooBox\Quarantine\C\Program Files\MyWebSearch\bar\2.bin\F3HISTSW.DLL.vir tagged as not-a-virus:AdTool.Win32.MyWebSearch. No Action Taken.
File C:\QooBox\Quarantine\C\Program Files\MyWebSearch\bar\2.bin\F3HTTPCT.DLL.vir tagged as not-a-virus:AdTool.Win32.MyWebSearch.af. No Action Taken.
File C:\QooBox\Quarantine\C\Program Files\MyWebSearch\bar\2.bin\F3IMSTUB.DLL.vir tagged as not-a-virus:AdTool.Win32.MyWebSearch.au. No Action Taken.
File C:\QooBox\Quarantine\C\Program Files\MyWebSearch\bar\2.bin\F3POPSWT.DLL.vir tagged as not-a-virus:AdTool.Win32.MyWebSearch.au. No Action Taken.
File C:\QooBox\Quarantine\C\Program Files\MyWebSearch\bar\2.bin\F3PSSAVR.SCR.vir tagged as not-a-virus:AdTool.Win32.MyWebSearch. No Action Taken.
File C:\QooBox\Quarantine\C\Program Files\MyWebSearch\bar\2.bin\F3REPROX.DLL.vir tagged as not-a-virus:AdTool.Win32.MyWebSearch.au. No Action Taken.
File C:\QooBox\Quarantine\C\Program Files\MyWebSearch\bar\2.bin\F3RESTUB.DLL.vir tagged as not-a-virus:AdTool.Win32.MyWebSearch. No Action Taken.
File C:\QooBox\Quarantine\C\Program Files\MyWebSearch\bar\2.bin\F3SCHMON.EXE.vir tagged as not-a-virus:AdTool.Win32.MyWebSearch.a. No Action Taken.
File C:\QooBox\Quarantine\C\Program Files\MyWebSearch\bar\2.bin\F3SCRCTR.DLL.vir tagged as not-a-virus:AdTool.Win32.MyWebSearch.an. No Action Taken.
File C:\QooBox\Quarantine\C\Program Files\MyWebSearch\bar\2.bin\F3SHLLVW.DLL.vir tagged as not-a-virus:AdTool.Win32.MyWebSearch.aq. No Action Taken.
File C:\QooBox\Quarantine\C\Program Files\MyWebSearch\bar\2.bin\F3WPHOOK.DLL.vir tagged as not-a-virus:AdTool.Win32.MyWebSearch.bh. No Action Taken.
File C:\QooBox\Quarantine\C\Program Files\MyWebSearch\bar\2.bin\M3HTML.DLL.vir tagged as not-a-virus:AdTool.Win32.MyWebSearch.bc. No Action Taken.
File C:\QooBox\Quarantine\C\Program Files\MyWebSearch\bar\2.bin\M3IDLE.DLL.vir tagged as not-a-virus:AdTool.Win32.MyWebSearch.ax. No Action Taken.
File C:\QooBox\Quarantine\C\Program Files\MyWebSearch\bar\2.bin\M3MSG.DLL.vir tagged as not-a-virus:AdTool.Win32.MyWebSearch.bc. No Action Taken.
File C:\QooBox\Quarantine\C\Program Files\MyWebSearch\bar\2.bin\M3OUTLCN.DLL.vir tagged as not-a-virus:AdTool.Win32.MyWebSearch. No Action Taken.
File C:\QooBox\Quarantine\C\Program Files\MyWebSearch\bar\2.bin\M3PLUGIN.DLL.vir tagged as not-a-virus:AdTool.Win32.MyWebSearch.as. No Action Taken.
File C:\QooBox\Quarantine\C\Program Files\MyWebSearch\bar\2.bin\M3SKIN.DLL.vir tagged as not-a-virus:AdTool.Win32.MyWebSearch.ad. No Action Taken.
File C:\QooBox\Quarantine\C\Program Files\MyWebSearch\bar\2.bin\M3SLSRCH.EXE.vir tagged as not-a-virus:AdTool.Win32.MyWebSearch.au. No Action Taken.
File C:\QooBox\Quarantine\C\Program Files\MyWebSearch\bar\2.bin\M3SRCHMN.EXE.vir tagged as not-a-virus:AdTool.Win32.MyWebSearch.au. No Action Taken.
File C:\QooBox\Quarantine\C\Program Files\MyWebSearch\bar\2.bin\MWSBAR.DLL.vir tagged as not-a-virus:AdTool.Win32.MyWebSearch.bc. No Action Taken.
File C:\QooBox\Quarantine\C\Program Files\MyWebSearch\bar\2.bin\MWSOEMON.EXE.vir tagged as not-a-virus:AdTool.Win32.MyWebSearch. No Action Taken.
File C:\QooBox\Quarantine\C\Program Files\MyWebSearch\bar\2.bin\MWSOEPLG.DLL.vir tagged as not-a-virus:AdTool.Win32.MyWebSearch.au. No Action Taken.
File C:\QooBox\Quarantine\C\Program Files\MyWebSearch\bar\2.bin\MWSOESTB.DLL.vir tagged as not-a-virus:AdTool.Win32.MyWebSearch. No Action Taken.
File C:\QooBox\Quarantine\C\Program Files\MyWebSearch\bar\2.bin\NPMYWEBS.DLL.vir tagged as not-a-virus:AdTool.Win32.MyWebSearch.i. No Action Taken.
File C:\QooBox\Quarantine\C\Program Files\MyWebSearch\SrchAstt\2.bin\MWSSRCAS.DLL.vir tagged as not-a-virus:AdTool.Win32.MyWebSearch.as. No Action Taken.
File C:\QooBox\Quarantine\C\WINDOWS\desktop.html.vir infected by "not-virus:Hoax.Win32.Renos.cy" Virus. Action Taken: File Renamed.
File C:\QooBox\Quarantine\C\WINDOWS\mrofinu27.exe.vir infected by "Trojan-Downloader.Win32.Agent.iug" Virus. Action Taken: File Deleted.
File C:\QooBox\Quarantine\C\WINDOWS\system32\dllgh8jkd1q1.exe.vir infected by "Packed.Win32.Tibs.ib" Virus. Action Taken: File Renamed.
File C:\QooBox\Quarantine\C\WINDOWS\system32\dllgh8jkd1q2.exe.vir infected by "Packed.Win32.Tibs.ib" Virus. Action Taken: File Renamed.
File C:\QooBox\Quarantine\C\WINDOWS\system32\dllgh8jkd1q5.exe.vir infected by "Packed.Win32.Tibs.ib" Virus. Action Taken: File Renamed.
File C:\QooBox\Quarantine\C\WINDOWS\system32\dllgh8jkd1q6.exe.vir infected by "Packed.Win32.Tibs.ib" Virus. Action Taken: File Renamed.
File C:\QooBox\Quarantine\C\WINDOWS\system32\dllgh8jkd1q7.exe.vir infected by "Packed.Win32.Tibs.ib" Virus. Action Taken: File Renamed.
File C:\QooBox\Quarantine\C\WINDOWS\system32\f3PSSavr.scr.vir tagged as not-a-virus:AdTool.Win32.MyWebSearch. No Action Taken.
File C:\QooBox\Quarantine\C\WINDOWS\system32\m1ax1d1213216143v.exe.vir infected by "Trojan-Downloader.Win32.Obfuscated.n" Virus. Action Taken: File Deleted.
File C:\QooBox\Quarantine\C\WINDOWS\system32\newmaxxsv234.exe.vir infected by "Packed.Win32.Tibs.ib" Virus. Action Taken: File Renamed.
File C:\QooBox\Quarantine\C\WINDOWS\system32\shift.exe.exe.vir infected by "Email-Worm.Win32.Zhelatin.uq" Virus. Action Taken: File Deleted.
File C:\QooBox\Quarantine\C\WINDOWS\system32\vedxg3am1et3.exe.vir infected by "Trojan-Proxy.Win32.Saturn.ag" Virus. Action Taken: File Deleted.
File C:\QooBox\Quarantine\C\WINDOWS\system32\vedxg6ame4.exe.vir infected by "Trojan-Downloader.Win32.Small.cxx" Virus. Action Taken: File Deleted.
File C:\QooBox\Quarantine\C\WINDOWS\system32\vedxga3me2.exe.vir infected by "Trojan-Downloader.Win32.VB.cga" Virus. Action Taken: File Deleted.
File C:\QooBox\Quarantine\C\WINDOWS\system32\vedxga4m1et4.exe.vir infected by "Trojan-Downloader.Win32.Tibs.uo" Virus. Action Taken: File Deleted.
File C:\QooBox\Quarantine\C\WINDOWS\system32\vedxga4me1.exe.vir infected by "Trojan-Downloader.Win32.Small.cxx" Virus. Action Taken: File Deleted.
File C:\QooBox\Quarantine\C\WINDOWS\xpupdate.exe.vir infected by "Packed.Win32.Tibs.ib" Virus. Action Taken: File Renamed.
File C:\QooBox\Quarantine\catchme2008-02-07_104722.28.zip infected by "Email-Worm.Win32.Zhelatin.sd" Virus. Action Taken: File Deleted.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP553\A0071786.exe infected by "Trojan-Downloader.Win32.Agent.itg" Virus. Action Taken: File Deleted.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP553\A0072782.exe infected by "not-virus:Hoax.Win32.Renos.asa" Virus. Action Taken: File Renamed.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP553\A0072783.exe infected by "Packed.Win32.Tibs.ib" Virus. Action Taken: File Renamed.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP553\A0072784.dll tagged as not-a-virus:AdWare.Win32.E404.a. No Action Taken.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP553\A0072798.dll tagged as not-a-virus:FraudTool.Win32.BraveSentry.f. No Action Taken.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP553\A0072799.dll tagged as not-a-virus:FraudTool.Win32.BraveSentry.b. No Action Taken.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP553\A0072800.dll tagged as not-a-virus:FraudTool.Win32.BraveSentry.b. No Action Taken.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP553\A0072801.dll tagged as not-a-virus:FraudTool.Win32.AntiVirPro.c. No Action Taken.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP553\A0072804.exe infected by "Trojan-Downloader.Win32.Small.cxx" Virus. Action Taken: File Deleted.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP553\A0072805.exe infected by "Trojan-Downloader.Win32.Small.cxx" Virus. Action Taken: File Deleted.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP553\A0072812.exe infected by "Trojan-Proxy.Win32.Saturn.ag" Virus. Action Taken: File Deleted.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP553\A0072813.exe infected by "Packed.Win32.Tibs.ib" Virus. Action Taken: File Renamed.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP553\A0072821.exe infected by "Packed.Win32.Tibs.ib" Virus. Action Taken: File Renamed.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP553\A0072867.sys infected by "Trojan-Proxy.Win32.Agent.xo" Virus. Action Taken: File Deleted.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP553\A0072869.exe infected by "Trojan-Downloader.Win32.Small.cxx" Virus. Action Taken: File Deleted.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP553\A0072870.exe infected by "Packed.Win32.Tibs.ib" Virus. Action Taken: File Renamed.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP553\A0072871.exe infected by "Trojan-Downloader.Win32.VB.cga" Virus. Action Taken: File Deleted.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP553\A0072872.exe infected by "Trojan-Downloader.Win32.Small.iaw" Virus. Action Taken: File Deleted.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP553\A0072873.exe infected by "Packed.Win32.Tibs.ib" Virus. Action Taken: File Renamed.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP553\A0072874.exe infected by "Trojan-Downloader.Win32.Small.cxx" Virus. Action Taken: File Deleted.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP553\A0072875.exe infected by "Trojan-Spy.Win32.BZub.bxp" Virus. Action Taken: File Deleted.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP553\A0072876.exe infected by "Trojan-Downloader.Win32.Tibs.uo" Virus. Action Taken: File Deleted.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP553\A0072881.exe infected by "Email-Worm.Win32.Zhelatin.uq" Virus. Action Taken: File Deleted.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP553\A0072883.exe infected by "Trojan-Downloader.Win32.Agent.iug" Virus. Action Taken: File Deleted.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP553\A0073812.exe infected by "Trojan-Proxy.Win32.Saturn.ag" Virus. Action Taken: File Deleted.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP553\A0073819.sys infected by "Trojan-Proxy.Win32.Agent.xo" Virus. Action Taken: File Deleted.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP553\A0073824.exe infected by "Trojan-Downloader.Win32.Small.cxx" Virus. Action Taken: File Deleted.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP553\A0073826.exe infected by "Trojan-Downloader.Win32.VB.cga" Virus. Action Taken: File Deleted.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP553\A0073828.exe infected by "Trojan-Downloader.Win32.Small.cxx" Virus. Action Taken: File Deleted.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP553\A0073829.exe infected by "Trojan-Downloader.Win32.Tibs.uo" Virus. Action Taken: File Deleted.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP553\A0073837.exe infected by "Email-Worm.Win32.Zhelatin.uq" Virus. Action Taken: File Deleted.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP553\A0073838.exe infected by "Trojan-Spy.Win32.BZub.bxp" Virus. Action Taken: File Deleted.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP553\A0073839.exe infected by "Trojan-Downloader.Win32.Agent.iug" Virus. Action Taken: File Deleted.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP553\A0073840.exe infected by "Trojan-Spy.Win32.BZub.bxp" Virus. Action Taken: File Deleted.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0073861.exe tagged as not-a-virus:FraudTool.Win32.BraveSentry.b. No Action Taken.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0073863.dll tagged as not-a-virus:FraudTool.Win32.BraveSentry.f. No Action Taken.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0073864.dll tagged as not-a-virus:FraudTool.Win32.BraveSentry.b. No Action Taken.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0073865.dll tagged as not-a-virus:FraudTool.Win32.BraveSentry.b. No Action Taken.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0073868.dll tagged as not-a-virus:AdWare.Win32.E404.a. No Action Taken.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0073869.DLL tagged as not-a-virus:AdTool.Win32.MyWebSearch.at. No Action Taken.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0073871.DLL tagged as not-a-virus:AdTool.Win32.MyWebSearch.bc. No Action Taken.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0073872.DLL tagged as not-a-virus:AdTool.Win32.MyWebSearch. No Action Taken.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0073873.DLL tagged as not-a-virus:AdTool.Win32.MyWebSearch.af. No Action Taken.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0073874.DLL tagged as not-a-virus:AdTool.Win32.MyWebSearch.au. No Action Taken.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0073875.DLL tagged as not-a-virus:AdTool.Win32.MyWebSearch.au. No Action Taken.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0073876.SCR tagged as not-a-virus:AdTool.Win32.MyWebSearch. No Action Taken.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0073877.DLL tagged as not-a-virus:AdTool.Win32.MyWebSearch.au. No Action Taken.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0073878.DLL tagged as not-a-virus:AdTool.Win32.MyWebSearch. No Action Taken.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0073879.EXE tagged as not-a-virus:AdTool.Win32.MyWebSearch.a. No Action Taken.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0073880.DLL tagged as not-a-virus:AdTool.Win32.MyWebSearch.an. No Action Taken.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0073881.DLL tagged as not-a-virus:AdTool.Win32.MyWebSearch.aq. No Action Taken.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0073882.DLL tagged as not-a-virus:AdTool.Win32.MyWebSearch.bh. No Action Taken.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0073884.DLL tagged as not-a-virus:AdTool.Win32.MyWebSearch.bc. No Action Taken.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0073885.DLL tagged as not-a-virus:AdTool.Win32.MyWebSearch.ax. No Action Taken.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0073887.DLL tagged as not-a-virus:AdTool.Win32.MyWebSearch.bc. No Action Taken.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0073889.DLL tagged as not-a-virus:AdTool.Win32.MyWebSearch. No Action Taken.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0073890.DLL tagged as not-a-virus:AdTool.Win32.MyWebSearch.as. No Action Taken.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0073891.DLL tagged as not-a-virus:AdTool.Win32.MyWebSearch.ad. No Action Taken.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0073893.EXE tagged as not-a-virus:AdTool.Win32.MyWebSearch.au. No Action Taken.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0073894.EXE tagged as not-a-virus:AdTool.Win32.MyWebSearch.au. No Action Taken.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0073895.DLL tagged as not-a-virus:AdTool.Win32.MyWebSearch.bc. No Action Taken.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0073896.EXE tagged as not-a-virus:AdTool.Win32.MyWebSearch. No Action Taken.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0073897.DLL tagged as not-a-virus:AdTool.Win32.MyWebSearch.au. No Action Taken.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0073898.DLL tagged as not-a-virus:AdTool.Win32.MyWebSearch. No Action Taken.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0073899.DLL tagged as not-a-virus:AdTool.Win32.MyWebSearch.i. No Action Taken.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0073907.DLL tagged as not-a-virus:AdTool.Win32.MyWebSearch.as. No Action Taken.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0073911.dll tagged as not-a-virus:AdTool.Win32.MyWebSearch.au. No Action Taken.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0073912.scr tagged as not-a-virus:AdTool.Win32.MyWebSearch. No Action Taken.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0073915.exe infected by "Packed.Win32.Tibs.ib" Virus. Action Taken: File Renamed.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0073958.exe infected by "Trojan-Downloader.Win32.Obfuscated.n" Virus. Action Taken: File Deleted.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0073959.exe infected by "Packed.Win32.Tibs.ib" Virus. Action Taken: File Renamed.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0073968.exe infected by "Email-Worm.Win32.Zhelatin.uq" Virus. Action Taken: File Deleted.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0073969.exe infected by "Trojan-Proxy.Win32.Saturn.ag" Virus. Action Taken: File Deleted.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0073971.exe infected by "Trojan-Downloader.Win32.Small.cxx" Virus. Action Taken: File Deleted.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0073973.exe infected by "Trojan-Downloader.Win32.VB.cga" Virus. Action Taken: File Deleted.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0073974.exe infected by "Trojan-Downloader.Win32.Tibs.uo" Virus. Action Taken: File Deleted.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0073975.exe infected by "Trojan-Downloader.Win32.Small.cxx" Virus. Action Taken: File Deleted.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0073976.exe infected by "Trojan-Downloader.Win32.Agent.iug" Virus. Action Taken: File Deleted.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0073977.exe infected by "Packed.Win32.Tibs.ib" Virus. Action Taken: File Renamed.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0073978.exe infected by "Packed.Win32.Tibs.ib" Virus. Action Taken: File Renamed.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0073979.exe infected by "Packed.Win32.Tibs.ib" Virus. Action Taken: File Renamed.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0073980.exe infected by "Packed.Win32.Tibs.ib" Virus. Action Taken: File Renamed.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0073981.exe infected by "Packed.Win32.Tibs.ib" Virus. Action Taken: File Renamed.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0073994.DLL tagged as not-a-virus:AdTool.Win32.MyWebSearch.l. No Action Taken.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0074007.sys infected by "Trojan-Proxy.Win32.Agent.xo" Virus. Action Taken: File Deleted.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0074044.exe infected by "Packed.Win32.Tibs.ib" Virus. Action Taken: File Renamed.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0074045.exe infected by "Trojan-Downloader.Win32.Tibs.uo" Virus. Action Taken: File Deleted.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0074046.exe infected by "Trojan-Spy.Win32.BZub.bxp" Virus. Action Taken: File Deleted.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0074047.sys infected by "Email-Worm.Win32.Zhelatin.sd" Virus. Action Taken: File Deleted.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0074048.sys infected by "Email-Worm.Win32.Zhelatin.sd" Virus. Action Taken: File Deleted.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0074049.exe infected by "not-virus:Hoax.Win32.Renos.asa" Virus. Action Taken: File Renamed.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0074050.dll infected by "Trojan-PSW.Win32.Delf.aox" Virus. Action Taken: File Deleted.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0074051.sys infected by "Trojan-Proxy.Win32.Agent.xo" Virus. Action Taken: File Deleted.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0074052.exe infected by "Packed.Win32.Tibs.ib" Virus. Action Taken: File Renamed.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3EC48D37B729}\RP554\A0074053.exe infected by "Trojan-Spy.Win32.BZub.bxp" Virus. Action Taken: File Deleted.
File C:\System Volume Information\_restore{C1CCD08C-8F31-41E2-AD90-3