Logfile of HijackThis v1.99.1
Scan saved at 6:22:55 PM, on 6/3/2005
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\WINDOWS\System32\00THotkey.exe
C:\Program Files\Analog Devices\SoundMAX\PmProxy.exe
C:\Program Files\Apoint2K\Apoint.exe
C:\Program Files\ltmoh\Ltmoh.exe
C:\WINDOWS\System32\TPWRTRAY.EXE
C:\Program Files\TOSHIBA\TouchED\TouchED.Exe
C:\Program Files\TOSHIBA\TOSHIBA Controls\TFncKy.exe
C:\Program Files\Toshiba\ConfigFree\NDSTray.exe
C:\WINDOWS\System32\TFNF5.exe
C:\WINDOWS\System32\EZSP_PX.EXE
C:\toshiba\ivp\ism\pinger.exe
C:\toshiba\sysstability\tsyssmon.exe
C:\Program Files\Real\RealPlayer\RealPlay.exe
C:\Program Files\Microsoft AntiSpyware\gcasServ.exe
C:\Program Files\Symantec\LiveUpdate\ALUNOTIFY.EXE
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\WildTangent\Apps\CDA\GameDrvr.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\AIM\aim.exe
C:\Program Files\Apoint2K\Apntex.exe
C:\WINDOWS\system32\RAMASST.exe
C:\WINDOWS\System32\DVDRAMSV.exe
C:\Program Files\ewido\security suite\ewidoctrl.exe
C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe
C:\Program Files\ewido\security suite\ewidoguard.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\WINDOWS\wanmpsvc.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\System32\wuauclt.exe
C:\Documents and Settings\Christine Chun\Desktop\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = websearch.drsnsrch.com/q.cgi?q=
R3 - URLSearchHook: (no name) - {02EE5B04-F144-47BB-83FB-A60BD91B74A9} - C:\Program Files\SurfSideKick 3\SskBho.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: CSMHelperObj Class - {0F660F64-F4C9-477F-8529-44181B717472} - C:\Program Files\AT&T\WnClient\Programs\CSMBHO.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O2 - BHO: CWebDirObj Object - {C003C49F-53E4-4A72-B7D6-0B2B9997392F} - C:\WINDOWS\webdir.dll (file missing)
O2 - BHO: NTIECatcher Class - {C56CB6B0-0D96-11D6-8C65-B2868B609932} - C:\Program Files\Xi\NetTransport 2\NTIEHelper.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: AIM Search - {40D41A8B-D79B-43d7-99A7-9EE0F344C385} - C:\Program Files\AIM Toolbar\AIMBar.dll
O3 - Toolbar: (no name) - {2CDE1A7D-A478-4291-BF31-E1B4C16F92EB} - (no file)
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [ccRegVfy] "C:\Program Files\Common Files\Symantec Shared\ccRegVfy.exe"
O4 - HKLM\..\Run: [00THotkey] C:\WINDOWS\System32\00THotkey.exe
O4 - HKLM\..\Run: [000StTHK] 000StTHK.exe
O4 - HKLM\..\Run: [PmProxy] C:\Program Files\Analog Devices\SoundMAX\PmProxy.exe
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint2K\Apoint.exe
O4 - HKLM\..\Run: [LtMoh] C:\Program Files\ltmoh\Ltmoh.exe
O4 - HKLM\..\Run: [Tpwrtray] TPWRTRAY.EXE
O4 - HKLM\..\Run: [TouchED] C:\Program Files\TOSHIBA\TouchED\TouchED.Exe
O4 - HKLM\..\Run: [TFncKy] TFncKy.exe /Type 28
O4 - HKLM\..\Run: [NDSTray.exe] "C:\Program Files\Toshiba\ConfigFree\NDSTray.exe"
O4 - HKLM\..\Run: [TFNF5] TFNF5.exe
O4 - HKLM\..\Run: [ezShieldProtector for Px] C:\WINDOWS\System32\EZSP_PX.EXE
O4 - HKLM\..\Run: [Pinger] c:\toshiba\ivp\ism\pinger.exe /run
O4 - HKLM\..\Run: [TSysSMon] c:\toshiba\sysstability\tsyssmon.exe /detect
O4 - HKLM\..\Run: [RealTray] C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe
O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft AntiSpyware\gcasServ.exe"
O4 - HKLM\..\Run: [ALUAlert] C:\Program Files\Symantec\LiveUpdate\ALUNOTIFY.EXE
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [WildTangent CDA] "C:\Program Files\WildTangent\Apps\CDA\GameDrvr.exe" /startup "C:\Program Files\WildTangent\Apps\CDA\cdaEngine0500.dll"
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [AIM] C:\Program Files\AIM\aim.exe -cnetwait.odl
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O4 - Global Startup: RAMASST.lnk = C:\WINDOWS\system32\RAMASST.exe
O8 - Extra context menu item: &AIM Search - res://C:\Program Files\AIM Toolbar\AIMBar.dll/aimsearch.htm
O8 - Extra context menu item: Download all by Net Transport - C:\Program Files\Xi\NetTransport 2\NTAddList.html
O8 - Extra context menu item: Download by Net Transport - C:\Program Files\Xi\NetTransport 2\NTAddLink.html
O9 - Extra button: AnyWho - {0264505A-6793-44E0-AC75-9DCE3B13185C} - C:\Program Files\AT&T\WnClient\Programs\AnyWho.exe
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: WeatherBug - {AF6CABAB-61F9-4f12-A198-B7D41EF1CB52} - C:\Program Files\AWS\WeatherBug\Weather.exe (file missing) (HKCU)
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O14 - IERESET.INF: START_PAGE_URL=http://www.toshiba.com
O15 - Trusted Zone:
http://www.neededware.comO16 - DPF: {072039AB-2117-4ED5-A85F-9B9EB903E021} (NowStarter Control) -
http://www.clubbox.c.../NowStarter.cabO16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) -
http://go.microsoft....467&clcid=0x409O16 - DPF: {C296DB5F-4B01-47E1-AB57-C590BE769111} (MOPlayerWnd Class) -
http://www.melon.com/cab/Melon.cabO23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation Service (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: DVD-RAM_Service - Matsushita Electric Industrial Co., Ltd. - C:\WINDOWS\System32\DVDRAMSV.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido\security suite\ewidoguard.exe
O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Norton AntiVirus Auto Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - C:\WINDOWS\wanmpsvc.exe
ewido log:---------------------------------------------------------
ewido security suite - Scan report
---------------------------------------------------------
+ Created on: 6:13:51 PM, 6/3/2005
+ Report-Checksum: 5BDF4520
+ Date of database: 6/3/2005
+ Version of scan engine: v3.0
+ Duration: 26 min
+ Scanned Files: 39737
+ Speed: 25.00 Files/Second
+ Infected files: 109
+ Removed files: 109
+ Files put in quarantine: 109
+ Files that could not be opened: 0
+ Files that could not be cleaned: 0
+ Binder: Yes
+ Crypter: Yes
+ Archives: Yes
+ Scanned items:
C:\
+ Scan result:
C:\Documents and Settings\Christine Chun\Cookies\christine
[email protected][1].txt -> Spyware.Tracking-Cookie -> Cleaned with backup
C:\Documents and Settings\Christine Chun\Cookies\christine
[email protected][1].txt -> Spyware.Tracking-Cookie -> Cleaned with backup
C:\Documents and Settings\Christine Chun\Cookies\christine chun@advertising[1].txt -> Spyware.Tracking-Cookie -> Cleaned with backup
C:\Documents and Settings\Christine Chun\Cookies\christine chun@atdmt[2].txt -> Spyware.Tracking-Cookie -> Cleaned with backup
C:\Documents and Settings\Christine Chun\Cookies\christine chun@bfast[2].txt -> Spyware.Tracking-Cookie -> Cleaned with backup
C:\Documents and Settings\Christine Chun\Cookies\christine chun@burstnet[2].txt -> Spyware.Tracking-Cookie -> Cleaned with backup
C:\Documents and Settings\Christine Chun\Cookies\christine
[email protected][1].txt -> Spyware.Tracking-Cookie -> Cleaned with backup
C:\Documents and Settings\Christine Chun\Cookies\christine chun@doubleclick[2].txt -> Spyware.Tracking-Cookie -> Cleaned with backup
C:\Documents and Settings\Christine Chun\Cookies\christine chun@linksynergy[1].txt -> Spyware.Tracking-Cookie -> Cleaned with backup
C:\Documents and Settings\Christine Chun\Cookies\christine chun@mediaplex[1].txt -> Spyware.Tracking-Cookie -> Cleaned with backup
C:\Documents and Settings\Christine Chun\Cookies\christine chun@p[1].txt -> Spyware.Tracking-Cookie -> Cleaned with backup
C:\Documents and Settings\Christine Chun\Cookies\christine
[email protected][1].txt -> Spyware.Tracking-Cookie -> Cleaned with backup
C:\Documents and Settings\Christine Chun\Cookies\christine
[email protected][1].txt -> Spyware.Tracking-Cookie -> Cleaned with backup
C:\Documents and Settings\Christine Chun\Cookies\christine chun@targetnet[2].txt -> Spyware.Tracking-Cookie -> Cleaned with backup
C:\Documents and Settings\Christine Chun\Cookies\christine
[email protected][1].txt -> Spyware.Tracking-Cookie -> Cleaned with backup
C:\Documents and Settings\Christine Chun\Cookies\christine chun@zedo[1].txt -> Spyware.Tracking-Cookie -> Cleaned with backup
C:\Documents and Settings\Christine Chun\installer_MARKETING35.exe -> TrojanDownloader.Adload.a -> Cleaned with backup
C:\Documents and Settings\Christine Chun\Local Settings\Temp\0mfxdu.exe -> TrojanDownloader.IstBar -> Cleaned with backup
C:\Documents and Settings\Christine Chun\Local Settings\Temp\1PsZLB.exe -> TrojanDownloader.IstBar -> Cleaned with backup
C:\Documents and Settings\Christine Chun\Local Settings\Temp\33MAJd.exe -> TrojanDownloader.IstBar -> Cleaned with backup
C:\Documents and Settings\Christine Chun\Local Settings\Temp\69ZGVh.exe -> TrojanDownloader.IstBar -> Cleaned with backup
C:\Documents and Settings\Christine Chun\Local Settings\Temp\6UAcPL.exe -> TrojanDownloader.IstBar -> Cleaned with backup
C:\Documents and Settings\Christine Chun\Local Settings\Temp\73BEAp.exe -> TrojanDownloader.IstBar -> Cleaned with backup
C:\Documents and Settings\Christine Chun\Local Settings\Temp\8BbXEt.exe -> TrojanDownloader.IstBar -> Cleaned with backup
C:\Documents and Settings\Christine Chun\Local Settings\Temp\9Ki2wL.exe -> TrojanDownloader.IstBar -> Cleaned with backup
C:\Documents and Settings\Christine Chun\Local Settings\Temp\AuBxdj.exe -> TrojanDownloader.IstBar -> Cleaned with backup
C:\Documents and Settings\Christine Chun\Local Settings\Temp\BAIIAt.exe -> TrojanDownloader.IstBar -> Cleaned with backup
C:\Documents and Settings\Christine Chun\Local Settings\Temp\BNd7X1.exe -> TrojanDownloader.IstBar -> Cleaned with backup
C:\Documents and Settings\Christine Chun\Local Settings\Temp\CUryhC.exe -> TrojanDownloader.IstBar -> Cleaned with backup
C:\Documents and Settings\Christine Chun\Local Settings\Temp\eBGIM1.exe -> TrojanDownloader.IstBar -> Cleaned with backup
C:\Documents and Settings\Christine Chun\Local Settings\Temp\f5r4Bnh.exe -> TrojanDownloader.IstBar -> Cleaned with backup
C:\Documents and Settings\Christine Chun\Local Settings\Temp\fyFYvi.exe -> TrojanDownloader.IstBar -> Cleaned with backup
C:\Documents and Settings\Christine Chun\Local Settings\Temp\GIJP9U.exe -> TrojanDownloader.IstBar -> Cleaned with backup
C:\Documents and Settings\Christine Chun\Local Settings\Temp\GY1jTF.exe -> TrojanDownloader.IstBar -> Cleaned with backup
C:\Documents and Settings\Christine Chun\Local Settings\Temp\haB5cD.exe -> TrojanDownloader.IstBar -> Cleaned with backup
C:\Documents and Settings\Christine Chun\Local Settings\Temp\Hb3bFN.exe -> TrojanDownloader.IstBar -> Cleaned with backup
C:\Documents and Settings\Christine Chun\Local Settings\Temp\HFXFav.exe -> TrojanDownloader.IstBar -> Cleaned with backup
C:\Documents and Settings\Christine Chun\Local Settings\Temp\KdJb7s.exe -> TrojanDownloader.IstBar -> Cleaned with backup
C:\Documents and Settings\Christine Chun\Local Settings\Temp\l0sCQE.exe -> TrojanDownloader.IstBar -> Cleaned with backup
C:\Documents and Settings\Christine Chun\Local Settings\Temp\L7ctLY.exe -> TrojanDownloader.IstBar -> Cleaned with backup
C:\Documents and Settings\Christine Chun\Local Settings\Temp\n7yPcd.exe -> TrojanDownloader.IstBar -> Cleaned with backup
C:\Documents and Settings\Christine Chun\Local Settings\Temp\oTvAMc.exe -> TrojanDownloader.IstBar -> Cleaned with backup
C:\Documents and Settings\Christine Chun\Local Settings\Temp\OYU\aurareco.exe -> Spyware.BetterInternet -> Cleaned with backup
C:\Documents and Settings\Christine Chun\Local Settings\Temp\sT2gd3.exe -> TrojanDownloader.IstBar -> Cleaned with backup
C:\Documents and Settings\Christine Chun\Local Settings\Temp\SW4C6G.exe -> TrojanDownloader.IstBar -> Cleaned with backup
C:\Documents and Settings\Christine Chun\Local Settings\Temp\tYASa6.exe -> TrojanDownloader.IstBar -> Cleaned with backup
C:\Documents and Settings\Christine Chun\Local Settings\Temp\UNxNGP.exe -> TrojanDownloader.IstBar -> Cleaned with backup
C:\Documents and Settings\Christine Chun\Local Settings\Temp\UvYTCX.exe -> TrojanDownloader.IstBar -> Cleaned with backup
C:\Documents and Settings\Christine Chun\Local Settings\Temp\Z6nbPA.exe -> TrojanDownloader.IstBar -> Cleaned with backup
C:\Documents and Settings\Christine Chun\Local Settings\Temporary Internet Files\Content.IE5\KBN3AWTH\Poller[1].exe -> Trojan.Agent.cp -> Cleaned with backup
C:\Program Files\AWS\WeatherBug\MiniBugTransporter.dll -> Spyware.Wheaterbug.a -> Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\06102901-5AF6-4D2B-923E-016DBE\47443ABE-B987-427F-8373-01A635 -> Trojan.Stervis.c -> Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\0C205563-B0B6-498D-AF48-806519\8CBEFC3B-A503-4A65-AF95-48C5B8 -> TrojanDownloader.IstBar -> Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\0CE4E0C5-716E-44C1-B8D3-D1FD63\D427B6D5-F510-4C0E-A5BF-0B3D51 -> TrojanDownloader.IstBar -> Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\0FF988DC-E3C8-4317-9410-6871B8\E38BC489-1B32-4E45-8B41-8899E7 -> TrojanDownloader.IstBar -> Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\11497D53-EDD2-4628-A1B2-9C0A9B\E1746BFC-D8B1-49A5-9D03-B4073C -> TrojanDownloader.IstBar -> Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\15ED87E3-9240-4460-82BB-30FAFD\3373F763-C5FE-4E6B-8D3C-E8646B -> Spyware.TopMoxie -> Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\15ED87E3-9240-4460-82BB-30FAFD\8D13FC36-C4FE-4E5E-9BCA-C08761 -> Spyware.TopMoxie -> Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\15ED87E3-9240-4460-82BB-30FAFD\B0421023-8DFE-425F-904E-7647BD -> Spyware.WebRebates.d -> Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\15ED87E3-9240-4460-82BB-30FAFD\B8F79D59-41EF-44BE-9ED1-4CD9DB -> Spyware.WebRebates.d -> Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\15ED87E3-9240-4460-82BB-30FAFD\CB408151-4FAD-4977-A655-1CA814 -> Spyware.WebRebates.c -> Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\1B94030C-86EF-40EF-B110-537412\25B00E30-0FAF-4928-934E-C84A80 -> TrojanDownloader.IstBar -> Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\2E8C3791-BE78-4928-97D8-C8804F\84250698-2398-4A19-BA55-CB47B9 -> TrojanDownloader.IstBar -> Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\447E6BFF-3E77-4C96-B5B1-15E9BE\DE8CA496-77CF-40C5-903F-AD12E9 -> TrojanDownloader.IstBar -> Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\45F2901D-88F8-4B22-91AC-39E551\D67614B5-9DD4-4DD6-B090-EF4EB7 -> TrojanDownloader.IstBar -> Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\53904621-B935-46E8-B72D-F44883\454774C7-F95B-4E6A-A535-1C2DAB -> TrojanDownloader.IstBar -> Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\6642EC6B-76A9-4C41-BFDA-5FAB21\073AB016-EE5E-4C04-A459-CB35EB -> TrojanDownloader.IstBar -> Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\7170F065-A2D4-475D-A835-30B2BA\E31357BB-730E-4B98-AE60-780D53 -> TrojanDownloader.IstBar -> Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\72E88D7E-F76F-4C10-BC89-86F99D\2406C1E0-F145-4B31-A509-3D17C4 -> Spyware.ExactSearchBar -> Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\785C31D0-2A69-43F3-B399-98EB9B\C107F549-575F-4671-9109-17E9E8 -> TrojanDownloader.IstBar -> Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\7B786781-CF07-4ECB-9062-4F5257\75CEF383-4D5E-474E-9BC1-B98EC8 -> TrojanDownloader.IstBar -> Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\7DF242EB-4D8D-44AD-86CB-9D472C\C50F3B27-ACBE-46D0-9622-335F85 -> Spyware.PeopleOnPage -> Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\821304B4-20CE-4D7C-8D05-DE4CFE\89C29A7D-32DA-4F57-8DA6-D9EDEC -> TrojanDownloader.IstBar -> Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\93448CB3-4232-4263-97F5-2FDF52\20B5D8B1-418D-461C-961E-96F47F -> TrojanDownloader.Dyfuca.dt -> Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\9966F268-EF9B-4886-A2B5-E4982D\035CC1E7-9561-4C8F-922C-A86822 -> TrojanDownloader.IstBar -> Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\BA5EB1A7-BA80-4F6F-89F6-ECCC0B\73E5EC4D-A4CD-4C8A-B8A5-5A7305 -> Spyware.Apropos.e -> Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\BA5EB1A7-BA80-4F6F-89F6-ECCC0B\C7963036-DD23-45A1-AE99-702DE0 -> Spyware.Apropos -> Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\C0A5A9EB-5E20-41F3-B59F-DFE14C\74AB663A-DAFC-439E-8427-ABD314 -> TrojanDownloader.IstBar -> Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\C8557F13-C2D4-4A88-87F7-2ED042\9D911368-8803-450F-AF69-4E7366 -> TrojanDownloader.IstBar -> Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\CE478D61-0A55-4B80-A19F-6160AF\7D5D7C23-D3D1-4FF3-BE2E-1EF193 -> Trojan.Agent.db -> Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\D3B40B5A-C1DE-4839-A5ED-4299D3\C7C1A2EC-A75A-4484-B736-15F353 -> Trojan.Agent.db -> Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\D5FA0660-B2B8-4108-9F03-897C52\09B6796D-24E7-4F0E-9F06-DAFCD8 -> TrojanDownloader.IstBar -> Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\D817732A-7669-4672-95F6-D769DB\4F35CA91-C987-4D12-85EF-CF18A9 -> Spyware.180solutions -> Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\D85B1568-8F8A-47E7-8E1A-C1A96E\D8B6E54E-0407-424E-A1E9-65DD67 -> Spyware.CashBack.b -> Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\D9C3F45A-CAC5-4C08-AD63-F58E57\C283BBD0-B29A-4466-87FE-8A8AFC -> TrojanDownloader.IstBar -> Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\DD0F48B4-138F-4013-8F64-3EE7B1\B4F51927-141B-493F-A013-88870B -> Spyware.SideFind -> Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\E2C8528F-0720-47BE-88D9-4D5D26\6CC7BB24-CF22-4BEF-A07D-492710 -> TrojanDownloader.IstBar -> Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\E8342EAD-A145-4A89-9576-EFE397\C9A278D9-8DF9-45F5-9E23-A61708 -> TrojanDownloader.IstBar -> Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\F00430E7-9407-4660-A6BE-DF5267\2AC5E2AF-471F-416B-9FEA-F25AE4 -> TrojanDownloader.IstBar -> Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\F04EE7FA-FA4D-4A6A-B5DA-8FAB4F\22F45B73-64B6-4C3C-883D-353D5E -> TrojanDownloader.IstBar -> Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\F726B852-F3F0-44BA-8DE3-261DD6\08D2E797-EEF7-491F-8A61-74AE2D -> TrojanDownloader.IstBar -> Cleaned with backup
C:\Program Files\Uvya\Xkmj.exe -> Trojan.Small.cy -> Cleaned with backup
C:\WINDOWS\msohrg.exe -> TrojanDownloader.IstBar.er -> Cleaned with backup
C:\WINDOWS\ounostio.exe -> Trojan.Krepper.ag -> Cleaned with backup
C:\WINDOWS\pludll.exe -> Spyware.Webdir.a -> Cleaned with backup
C:\WINDOWS\system32\bbchk.exe -> Spyware.Bargainbuddy -> Cleaned with backup
C:\WINDOWS\system32\epx30104.exe -> TrojanDownloader.Lastad.h -> Cleaned with backup
C:\WINDOWS\system32\exclean.exe -> Spyware.BargainBuddy -> Cleaned with backup
C:\WINDOWS\system32\ibm.exe -> Trojan.Lmir.zp -> Cleaned with backup
C:\WINDOWS\system32\jjlzsn.exe -> Trojan.Agent.cp -> Cleaned with backup
C:\WINDOWS\system32\jnbbcav.exe -> TrojanDownloader.Lastad.h -> Cleaned with backup
C:\WINDOWS\system32\jnbbcavndw30103lib.dll -> TrojanDownloader.Lastad.h -> Cleaned with backup
C:\WINDOWS\system32\msxct.exe -> Spyware.BargainBuddy -> Cleaned with backup
C:\WINDOWS\system32\swbxn.exe -> TrojanDownloader.Lastad.h -> Cleaned with backup
C:\WINDOWS\system32\swbxnndw30104lib.dll -> TrojanDownloader.Lastad.h -> Cleaned with backup
C:\WINDOWS\vlrhnyctj.exe -> Spyware.BetterInternet -> Cleaned with backup
C:\WINDOWS\webdir.dll -> Spyware.Webdir.a -> Cleaned with backup
C:\WINDOWS\wt\wtupdates\webd\4.1.1\files\wtvh.dll -> Spyware.WildTangent.b -> Cleaned with backup
C:\WINDOWS\wt\wtvh.dll -> Spyware.WildTangent.b -> Cleaned with backup
::Report End