Hijack this results:
Logfile of HijackThis v1.99.1
Scan saved at 2:16:48 AM, on 7/10/2005
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\HPONE-~1\OneTouch.EXE
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Real\RealPlayer\RealPlay.exe
C:\windows\system\hpsysdrv.exe
C:\Program Files\Hewlett-Packard\HP Display Settings\hpdisply.exe
C:\WINDOWS\essspk.exe
C:\Program Files\Common Files\Microsoft Shared\Works Shared\wkcalrem.exe
C:\Program Files\ewido\security suite\ewidoctrl.exe
C:\WINDOWS\System32\HPConfig.exe
C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton SystemWorks\Norton AntiVirus\IWP\NPFMntor.exe
C:\PROGRA~1\NORTON~1\NORTON~1\NPROTECT.EXE
C:\WINDOWS\system32\RadioSvr.exe
C:\PROGRA~1\NORTON~1\NORTON~1\SPEEDD~1\NOPDB.EXE
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS\System32\wuauclt.exe
C:\WINDOWS\System32\wuauclt.exe
C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\2cf41f1db14bc8f414e16e1555b77108\update\update.exe
C:\Program Files\hjt\HijackThis.exe
C:\Program Files\Internet Explorer\iexplore.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.updatesea...earch.php?qq=%1
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.updatesea...earch.php?qq=%1
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = http://www.updatesea...earch.php?qq=%1
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = http://www.qfind.net/search.php?qq=%s
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://www.updatesea...earch.php?qq=%1
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = http://www.updatesearches.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = http://www.qfind.net/
R3 - Default URLSearchHook is missing
O1 - Hosts: 64.91.255.87 www.dcsresearch.com
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: (no name) - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - (no file)
O4 - HKLM\..\Run: [CP4HPOT] C:\PROGRA~1\HPONE-~1\OneTouch.EXE
O4 - HKLM\..\Run: [MMTray] C:\Program Files\MusicMatch\MusicMatch Jukebox\mm_tray.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [WorksFUD] c:\Program Files\Microsoft Works\wkfud.exe
O4 - HKLM\..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [SSC_UserPrompt] C:\Program Files\Common Files\Symantec Shared\Security Center\UsrPrmpt.exe
O4 - HKLM\..\Run: [RealTray] C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER
O4 - HKLM\..\Run: [MoneyStartUp10.0] "c:\Program Files\Microsoft Money\System\Activation.exe"
O4 - HKLM\..\Run: [Microsoft Works Update Detection] c:\Program Files\Microsoft Works\WkDetect.exe
O4 - HKLM\..\Run: [Microsoft Works Portfolio] c:\Program Files\Microsoft Works\WksSb.exe /AllUsers
O4 - HKLM\..\Run: [KAZAA] C:\Program Files\Kazaa\kazaa.exe /SYSTRAY
O4 - HKLM\..\Run: [hpsysdrv] c:\windows\system\hpsysdrv.exe
O4 - HKLM\..\Run: [HP Presentation Ready] C:\Program Files\Hewlett-Packard\HP Presentation Ready\PresRdy.exe -r
O4 - HKLM\..\Run: [HP Display Settings] C:\Program Files\Hewlett-Packard\HP Display Settings\hpdisply.exe /s
O4 - HKLM\..\Run: [EssSpkPhone] essspk.exe
O4 - HKCU\..\Run: [AIM] C:\Program Files\AIM95\aim.exe -cnetwait.odl
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Norton SystemWorks] "C:\Program Files\Norton SystemWorks\cfgwiz.exe" /GUID {05858CFD-5CC4-4ceb-AAAF-CF00BF39736A} /MODE CfgWiz
O4 - HKCU\..\Run: [MoneyAgent] "c:\Program Files\Microsoft Money\System\Money Express.exe"
O4 - HKCU\..\Run: [Intel system tool] C:\WINDOWS\System32\winnook.exe
O4 - Global Startup: Microsoft Works Calendar Reminders.lnk = ?
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - C:\WINDOWS\System32\shdocvw.dll
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM95\aim.exe
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: MoneySide - {E023F504-0C5A-4750-A1E7-A9046DEA8A21} - c:\Program Files\Microsoft Money\System\mnyviewer.dll
O9 - Extra button: Microsoft AntiSpyware helper - {6EA2FCE2-68F6-472B-B2BA-BC7113A2AC50} - (no file) (HKCU)
O9 - Extra 'Tools' menuitem: Microsoft AntiSpyware helper - {6EA2FCE2-68F6-472B-B2BA-BC7113A2AC50} - (no file) (HKCU)
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O14 - IERESET.INF: START_PAGE_URL=http://www.hp.com/notebooks/pavilion/e-center
O16 - DPF: Yahoo! MahJong Solitaire - http://download.game...s/y/mjst4_x.cab
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.syma...bin/AvSniff.cab
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.syma...n/bin/cabsa.cab
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai...all/xscan53.cab
O16 - DPF: {7CF052DE-C74F-421B-B04A-3B3037EF5887} (CCMPGui Class) - http://64.124.45.181.../proxy/CCMP.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://zone.msn.com/...ro.cab34246.cab
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - http://download.game...aploader_v6.cab
O16 - DPF: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - http://us.dl1.yimg.c...ebio5_1_2_0.cab
O16 - DPF: {F57D27AE-CE57-4BC8-B232-EA57747BE5B7} -
O20 - AppInit_DLLs: c:\windows\system32\hk.dll
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido\security suite\ewidoguard.exe
O23 - Service: HP Configuration Service (HPConfig) - Hewlett-Packard - C:\WINDOWS\System32\HPConfig.exe
O23 - Service: HP RF Device Service (HpRfDev) - Hewlett-Packard - C:\WINDOWS\system32\HpRfDev.exe
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\IWP\NPFMntor.exe
O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\PROGRA~1\NORTON~1\NORTON~1\NPROTECT.EXE
O23 - Service: RadioSvr - Hewlett-Packard - C:\WINDOWS\system32\RadioSvr.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Speed Disk service - Symantec Corporation - C:\PROGRA~1\NORTON~1\NORTON~1\SPEEDD~1\NOPDB.EXE
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
EWIDO scan results:
---------------------------------------------------------
ewido security suite - Scan report
---------------------------------------------------------
+ Created on: 8:50:28 PM, 7/9/2005
+ Report-Checksum: CECD416D
+ Scan result:
HKLM\SOFTWARE\Classes\CLSID\{6257B617-2809-056A-FCEC-83AB849FBF72} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{9C07AC43-1C2D-BD1B-FEDF-58BEDA6A49E1} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{DE064CF5-809E-A243-CC14-F5427E5967A1} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objecta\{FFFFFFFF-FFFF-FFFF-FFFF-FFFFFFFFFFFF} -> Spyware.EasySearch : Cleaned with backup
C:\WINDOWS\CHGPATH.REG:lzkdto -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\CHGPATH.REG:urdcna -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\control.ini:rdxhtb -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\CTRYLOC.REG:wbnnqj -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\desktop.ini:qbizca -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\Downloaded Program Files\popcaploader.dll -> Not-A-Virus.PornWare.PopCap.b : Cleaned with backup
C:\WINDOWS\htefj.txt:cqrsnp -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\htefj.txt:gsutpe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\loewy.txt:xkjmje -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\msdfmap.ini:bzmvzo -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\msdfmap.ini:wmmvqf -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\MSDraw.ini:fgezoc -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\MSDraw.ini:ojrbwo -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\MSDraw.ini:titirg -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\MSDraw.ini:uftncj -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\MSDraw.ini:xdvzpk -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\msoffice.ini:acarqo -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\msoffice.ini:eepqfy -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\msoffice.ini:pnfblp -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\mwlru.txt:tdlxsy -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\mwlru.txt:wehvzj -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\ODBCINST.INI:ntheaf -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\ODBCINST.INI:wphpnj -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\ODBCINST.INI:ygdnf -> TrojanDownloader.Agent.lz : Cleaned with backup
C:\WINDOWS\OEWABLog.txt:lbyzbv -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\orun32.ini:fwvjct -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\orun32.ini:rtunau -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\PerWin.ini:adsbna -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\SchedLgU.Txt:asmotw -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\SchedLgU.Txt:zxzyuu -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\setuplog.txt:gsbtir -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\setuplog.txt:gzuvap -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\system32\msole32.exe -> Spyware.Hijacker.Generic : Cleaned with backup
C:\WINDOWS\system32\ntax32.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\system32\ole32vbs.exe -> Trojan.Favadd.aa : Cleaned with backup
C:\WINDOWS\system32\oleadm.dll -> TrojanDownloader.Agent.ns : Cleaned with backup
C:\WINDOWS\vb.ini:ferrul -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\vb.ini:rzamlj -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:amtlca -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:antfdg -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:aswalj -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\_default.pif:bgmsxj -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default.pif:brgaby -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default.pif:btnpnf -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\_default.pif:bzrwsb -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:cfdync -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default.pif:cfsjna -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default.pif:cowtyk -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default.pif:cvizyp -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:czuapk -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:dpjiph -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:dplzmt -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default.pif:dryoju -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\_default.pif:dvpfhc -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:efphrc -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default.pif:efxitc -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default.pif:eizswh -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:eluwvl -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:emvquj -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default.pif:erkxsn -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:esbuao -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default.pif:esmicc -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:euecxa -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:evhauz -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default.pif:ewfghf -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default.pif:faqtcr -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:fatehc -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default.pif:fowuaq -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:gquirv -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\_default.pif:gzorut -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\_default.pif:hgfkqd -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:hrswla -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default.pif:hwjbdo -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default.pif:iaermd -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:icdomd -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\_default.pif:ikmsqt -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:ikxhkb -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\_default.pif:imayap -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default.pif:imjaae -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default.pif:intpdz -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default.pif:ixnltu -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\_default.pif:iyyjyy -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default.pif:iyzygb -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:izhhtz -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\_default.pif:jmclyv -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\_default.pif:juqtef -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default.pif:jwhjsq -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\_default.pif:kcnhtd -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:kcxzfs -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default.pif:kpzduw -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default.pif:kqfzcl -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:kvbydx -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:kxdkks -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\_default.pif:loprzq -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:majzfs -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default.pif:mgjbej -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:mhxluv -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:mlvdss -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\_default.pif:mqrrxc -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default.pif:msjlxk -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:msudas -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default.pif:mtmovx -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default.pif:mxwlpn -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:mzyozh -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default.pif:nndogg -> Trojan.Agent.bi : Cleaned with backup
::Report End
Thanks in advance!!!