Logfile of HijackThis v1.99.1
Scan saved at 8:55:15 PM, on 5/15/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\explorer.exe
C:\Documents and Settings\Paul\Desktop\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://smbusiness.dellnet.com/R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = file://C:\WINDOWS\system32\Searchx.htm
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://smbusiness.dellnet.com/R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
http://www.websearch...spx?tb_id=50221R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = res://C:\PROGRA~1\Toolbar\toolbar.dll/sa
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - Default URLSearchHook is missing
F2 - REG:system.ini: Shell=Explorer.exe C:\WINDOWS\Nail.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [DadApp] C:\Program Files\Dell\AccessDirect\dadapp.exe
O4 - HKLM\..\Run: [AdaptecDirectCD] "C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe"
O4 - HKLM\..\Run: [Dell|Alert] C:\Program Files\Dell\Support\Alert\bin\DAMon.exe
O4 - HKLM\..\Run: [LVCOMS] C:\Program Files\Common Files\Logitech\QCDriver2\LVCOMS.EXE
O4 - HKLM\..\Run: [LogitechGalleryRepair] C:\Program Files\Logitech\ImageStudio\ISStart.exe
O4 - HKLM\..\Run: [LogitechImageStudioTray] C:\Program Files\Logitech\ImageStudio\LogiTray.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [ccRegVfy] "C:\Program Files\Common Files\Symantec Shared\ccRegVfy.exe"
O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet
O4 - HKLM\..\Run: [FineReader7NewsReaderPro] "C:\Program Files\ABBYY FineReader 7.0 Professional Edition\AbbyyNewsReader.exe"
O4 - HKLM\..\Run: [mmtask] C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mmtask.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_06\bin\jusched.exe
O4 - HKLM\..\Run: [iTunesHelper] C:\Program Files\iTunes\iTunesHelper.exe
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [6125487b135d] C:\WINDOWS\system32\ATMPVCNO.exe
O4 - HKLM\..\Run: [QD FastAndSafe] C:\Program Files\Norton SystemWorks\Norton CleanSweep\QDCSFS.exe /startup
O4 - HKLM\..\Run: [DIGStream] C:\Program Files\DIGStream\digstream.exe
O4 - HKCU\..\Run: [AIM] C:\Program Files\AIM95\aim.exe -cnetwait.odl
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - HKCU\..\Run: [NSAgent] C:\Documents and Settings\Paul\Local Settings\Temporary Internet Files\Content.IE5\RER2TVWZ\SaveKobeGameSetup03[1].exe
O4 - HKCU\..\Run: [ares] "C:\Program Files\Ares Lite Edition\Ares.exe" -h
O4 - HKCU\..\Run: [hw22RSHEQ] rcbodctr.exe
O4 - Global Startup: CleanSweep Smart Sweep-Internet Sweep.lnk = C:\Program Files\Norton SystemWorks\Norton CleanSweep\csinsmnt.exe
O4 - Global Startup: Digital Line Detect.lnk = ?
O4 - Global Startup: hp psc 2000 Series.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpobnz08.exe
O4 - Global Startup: hpoddt01.exe.lnk = ?
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html
O8 - Extra context menu item: Translate into English - res://c:\program files\google\GoogleToolbar2.dll/cmtrans.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
O9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - C:\WINDOWS\System32\shdocvw.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM95\aim.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O15 - Trusted Zone:
http://www.jayloden.comO15 - Trusted Zone:
http://ny.contentmatch.net (HKLM)
O16 - DPF: {0122955E-1FB0-11D2-A238-006097FAEE8B} (CscClnt Class) -
http://205.159.125.1...everContent.cabO16 - DPF: {2F5B39C5-C6F5-447A-A946-48B382C53985} -
http://www.pacimedia...ll/pcs_0029.exeO16 - DPF: {DE910060-8EFB-44B9-B492-75180696643F} -
http://www.hotsearch...lbar30/hsrb.cabO16 - DPF: {FA3662C3-B8E8-11D6-A667-0010B556D978} (IWinAmpActiveX Class) -
http://cdn.digitalci...illama/ampx.cabO18 - Protocol: bw+0 - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw+0s - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0 - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0s - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00 - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00s - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10 - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10s - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20 - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20s - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30 - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30s - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40 - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40s - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50 - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50s - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60 - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60s - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70 - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70s - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80 - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80s - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90 - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90s - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0 - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0s - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0 - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0s - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0 - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0s - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0 - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0s - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0 - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0s - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0 - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0s - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: bwg0 - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwg0s - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0 - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0s - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0 - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0s - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0 - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0s - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0 - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0s - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0 - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0s - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0 - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0s - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0 - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0s - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0 - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0s - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0 - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0s - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0 - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0s - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0 - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0s - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0 - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0s - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0 - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0s - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0 - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0s - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0 - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0s - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0 - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0s - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0 - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0s - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0 - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0s - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0 - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0s - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: offline-8876480 - {67452A86-B982-4F68-A905-49B4E7B616CA} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation Service (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido\security suite\ewidoguard.exe
O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Norton AntiVirus Auto Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton Utilities\NPROTECT.EXE
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Speed Disk service - Symantec Corporation - C:\PROGRA~1\NORTON~1\SPEEDD~1\nopdb.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
O23 - Service: WinTools for IE service (WinToolsSvc) - Unknown owner - C:\Program Files\Common Files\WinTools\WToolsS.exe (file missing)
O23 - Service: yinqrtrphhvtwl - Unknown owner - C:\WINDOWS\system32\hhvtwl\yinqrtrp.exe (file missing)
---------------------------------------------------------
ewido security suite - Scan report
---------------------------------------------------------
+ Created on: 8:53:31 PM, 5/15/2005
+ Report-Checksum: 276007C6
+ Date of database: 5/15/2005
+ Version of scan engine: v3.0
+ Duration: 174 min
+ Scanned Files: 80565
+ Speed: 7.69 Files/Second
+ Infected files: 209
+ Removed files: 197
+ Files put in quarantine: 0
+ Files that could not be opened: 0
+ Files that could not be cleaned: 12
+ Binder: Yes
+ Crypter: Yes
+ Archives: Yes
+ Scanned items:
C:\
+ Scan result:
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000070.vxd/C:/WINDOWS/system32/nvms.dll -> Spyware.Bargainbuddy -> Error during cleaning
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000070.vxd/C:/Program Files/NaviSearch/bin/nls.exe -> Spyware.ExactSearchBar -> Error during cleaning
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000087.VXD/C:/WINDOWS/system32/exdl.exe -> Spyware.BargainBuddy.q -> Error during cleaning
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000087.VXD/C:/WINDOWS/system32/mqexdlm.srg -> Spyware.BargainBuddy.q -> Error during cleaning
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000087.VXD/C:/WINDOWS/system32/exul.exe -> Spyware.BargainBuddy -> Error during cleaning
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000087.VXD/C:/WINDOWS/system32/javexulm.vxd -> Spyware.BargainBuddy -> Error during cleaning
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000087.VXD/C:/WINDOWS/system32/bbchk.exe -> Spyware.Bargainbuddy -> Error during cleaning
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000087.VXD/C:/WINDOWS/system32/msexreg.exe -> Spyware.Bargainbuddy -> Error during cleaning
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000087.VXD/C:/WINDOWS/system32/instsrv.exe -> Spyware.BargainBuddy -> Error during cleaning
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000087.VXD/C:/WINDOWS/system32/exclean.exe -> Spyware.BargainBuddy -> Error during cleaning
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000088.exe -> Spyware.ExactSearchBar -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000097.exe -> Spyware.Winad -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000098.dll -> Spyware.WinAD.ag -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000101.exe -> TrojanDownloader.Wintool.f -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000103.dll -> Spyware.Wintol.y -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000104.exe -> Trojan.Stervis.c -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000105.exe -> Trojan.Nail -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000106.dll -> Trojan.Agent.db -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000107.dll -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000110.exe -> TrojanDropper.Agent.hl -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000111.exe -> TrojanDownloader.Small.abd -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000112.exe -> TrojanDownloader.Small.abd -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000113.exe -> Trojan.Agent.cp -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000114.dll -> Spyware.SideFind -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000116.exe -> Spyware.PowerScan.d -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000117.exe -> Spyware.Pacer.a -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000118.exe -> Spyware.180solutions -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000120.exe -> Spyware.WildTangent.DownloadWare -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000121.dll -> TrojanDownloader.Dyfuca.dt -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000122.exe -> TrojanDownloader.Dyfuca.dx -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000125.exe -> TrojanDownloader.Dyfuca.dp -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000126.exe -> TrojanDownloader.Dyfuca.dp -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000129.exe -> TrojanDownloader.VB.eu -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000130.dll -> Spyware.CoolBar.a -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000133.dll -> Spyware.EliteBar.af -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000134.dll -> Spyware.EliteBar.z -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000135.exe -> Spyware.DelphinMedia.Viewer.f -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000136.exe -> TrojanDownloader.Delmed.b -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000137.exe -> Spyware.DelphinMedia.Viewer.f -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000138.dll -> Spyware.DelphinMedia.f -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000139.ocx -> Spyware.DelphinMediaViewer.c -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000140.exe -> TrojanDownloader.Agent.hw -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000141.exe -> Trojan.Popmon.a -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000142.dll -> TrojanDownloader.Dyfuca -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000143.dll -> Spyware.DealHelper.ab -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000144.exe -> Spyware.DealHelper.x -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000145.exe -> Spyware.BookedSpace.e -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000146.dll -> Spyware.BookedSpace -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000150.dll -> Spyware.Beginto.c -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000151.dll -> Spyware.Beginto.c -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000156.exe -> Spyware.BargainBuddy -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000157.exe -> TrojanDownloader.Adload.a -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000158.exe -> TrojanDownloader.Agent.lg -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000159.exe -> Spyware.BargainBuddy.n -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000164.dll -> Spyware.Apropos.f -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000167.exe -> Spyware.Apropos.i -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000168.exe -> TrojanDownloader.Apropo.r -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000169.dll -> TrojanDownloader.Apropo.w -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000170.exe -> TrojanDownloader.Apropo.ab -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000171.exe -> Spyware.Apropos -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000172.exe -> TrojanDownloader.Apropo.g -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000173.exe -> TrojanDownloader.Apropo.aa -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000174.dll -> Spyware.PeopleOnPage -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000176.dll -> Spyware.VirtualBouncer.g -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000177.dll -> Spyware.VirtualBouncer.g -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000178.dll -> Spyware.VirtualBouncer.g -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000179.dll -> Spyware.VirtualBouncer.g -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000182.exe -> Trojan.VB.ux -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000186.exe -> Spyware.DealHelper.ac -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000205.exe -> Spyware.WinAD.am -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000238.exe -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000392.exe -> Spyware.WebSearch.af -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000395.exe -> Spyware.Wintol.y -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000413.exe -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000472.exe -> Trojan.Agent.cp -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000473.exe -> Spyware.Wintol.y -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000478.exe -> Trojan.Agent.cp -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000492.exe -> Trojan.Agent.cp -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000549.EXE -> Spyware.Websearch -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000551.exe -> Spyware.IBIS -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000552.exe -> Spyware.WebSearch.af -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000553.exe -> Spyware.WebSearch.ad -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP1\A0000580.EXE -> Spyware.Hijacker.Generic -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP10\A0002934.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP10\A0002935.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP10\A0002936.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP10\A0002937.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP10\A0002938.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP10\A0002939.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP10\A0002940.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP10\A0002941.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP10\A0002942.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP10\A0002943.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP10\A0002944.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP10\A0002945.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP10\A0002946.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP10\A0002947.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP10\A0002948.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP10\A0002949.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP10\A0002951.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP10\A0002952.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP10\A0002953.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP10\A0002954.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP10\A0002955.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP10\A0002956.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP10\A0002957.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP10\A0002968.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP10\A0002969.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP10\A0002970.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP10\A0002986.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP10\A0002987.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP13\A0003861.exe -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP13\A0003878.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP13\A0003879.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP13\A0003880.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP13\A0003881.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP13\A0003883.exe -> Trojan.Agent.cp -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP13\A0004860.exe -> Trojan.Nail -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP14\A0004862.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP14\A0004863.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP14\A0004864.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP14\A0004868.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP14\A0005870.exe -> Trojan.Agent.cp -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP14\A0005871.dll -> Trojan.Agent.db -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP14\A0005876.exe -> Trojan.Nail -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP14\A0005877.exe -> Trojan.Stervis.c -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP14\A0005878.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP14\A0005879.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP14\A0005880.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP14\A0005881.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP14\A0005882.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP14\A0005883.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP14\A0005884.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP14\A0005885.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP14\A0005886.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP14\A0005887.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP14\A0005888.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP14\A0005889.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP14\A0005890.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP14\A0005891.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP14\A0005892.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP14\A0005893.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP14\A0005894.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP14\A0005895.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP14\A0005896.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP14\A0005897.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP14\A0005898.exe -> Trojan.Agent.cp -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP14\A0005899.exe -> Trojan.Agent.cp -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP14\A0005900.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP14\A0005901.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP14\A0005902.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP14\A0005903.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP14\A0005904.EXE -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP2\A0000585.exe -> Trojan.Agent.cp -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP2\A0000586.exe -> Spyware.Wintol.y -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP2\A0000587.exe -> Trojan.Agent.cp -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP2\A0000588.exe -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP2\A0000616.DLL -> Spyware.EliteBar.z -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP2\A0000617.EXE -> Spyware.Hijacker.Generic -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP2\A0000618.exe -> Spyware.EliteBar.z -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP2\A0000632.exe -> Spyware.WebSearch.af -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP2\A0000635.exe -> Spyware.Wintol.y -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP2\A0000642.exe -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP2\A0000676.EXE -> Spyware.Hijacker.Generic -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP2\A0000677.exe -> Spyware.EliteBar.z -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP2\A0001630.exe -> Spyware.WebSearch.af -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP2\A0001631.exe -> Spyware.Wintol.y -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP2\A0001663.exe -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP2\A0001667.dll -> Spyware.Toolbar -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP2\A0001668.exe -> Spyware.WebSearch.af -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP2\A0001669.exe -> Spyware.WebSearch.ad -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP2\A0001670.dll -> Spyware.WebSearch.ae -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP2\A0001673.exe -> Spyware.Wintol.y -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP2\A0001674.exe -> Spyware.Wintol.y -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP2\A0001692.exe -> Spyware.Wintol.y -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP2\A0001707.exe -> Spyware.Wintol.y -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP2\A0001708.EXE -> Spyware.Websearch -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP2\A0001709.vxd -> Spyware.MediaPass -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP2\A0001710.exe -> Spyware.WebSearch.af -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP2\A0001711.exe -> Spyware.WebSearch.af -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP2\A0001712.exe -> Spyware.IBIS -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP2\A0001715.exe -> Spyware.WebSearch.af -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP2\A0001718.exe -> TrojanDownloader.Wintool.f -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP2\A0001720.dll -> Spyware.Wintol.y -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP2\A0001721.exe -> Spyware.IBIS -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP2\A0001723.EXE -> Spyware.Websearch -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP2\A0001724.exe -> Trojan.Nail -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP2\A0001725.dll -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP2\A0001726.exe -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP3\A0001771.exe -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP3\A0001801.exe -> Trojan.Elzio -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP6\A0002866.exe -> Spyware.BetterInternet -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP9\A0002930.exe -> Trojan.Elzio -> Cleaned without backup
C:\System Volume Information\_restore{E87A81FB-FDCF-4B92-A20C-951710F82D7C}\RP9\A0002931.exe -> TrojanDownloader.Small.aly -> Cleaned without backup
C:\temp1.exe/gamma.exe -> TrojanDownloader.IstBar.is -> Error during cleaning
C:\temp1.exe/lc.exe -> Spyware.Winad -> Error during cleaning
C:\WINDOWS\gamma.exe -> TrojanDownloader.IstBar.is -> Cleaned without backup
C:\WINDOWS\lc.exe -> Spyware.Winad -> Cleaned without backup
C:\WINDOWS\SYSTEM32\betterinternet1.exe -> Spyware.BetterInternet -> Cleaned without backup
C:\WINDOWS\SYSTEM32\elitemwv32.exe -> Spyware.Hijacker.Generic -> Cleaned without backup
C:\WINDOWS\SYSTEM32\eliteoei32.exe -> Spyware.Hijacker.Generic -> Cleaned without backup
C:\WINDOWS\SYSTEM32\elitexix32.exe -> Spyware.Hijacker.Generic -> Cleaned without backup
C:\WINDOWS\SYSTEM32\elitexlk32.exe -> Spyware.Hijacker.Generic -> Cleaned without backup
C:\WINDOWS\SYSTEM32\eliteydu32.exe -> Spyware.Hijacker.Generic -> Cleaned without backup
C:\WINDOWS\SYSTEM32\ide21201.vxd -> Spyware.MediaPass -> Cleaned without backup
C:\WINDOWS\SYSTEM32\jtyqagq.exe -> Spyware.BetterInternet -> Cleaned without backup
C:\WINDOWS\SYSTEM32\ratoj\bpjo.exe -> TrojanDownloader.Agent.mw -> Cleaned without backup
C:\WINDOWS\SYSTEM32\temperror32.dat -> Spyware.Hijacker.Generic -> Cleaned without backup
C:\WINDOWS\SYSTEM32\wilod\beswdoj.exe -> TrojanDownloader.Agent.lg -> Cleaned without backup
::Report End