there were some things that were missing on this second pass in hijack this. also about buster froze the first time, but i ran it a second time and it finished. however there were some otf the things that were deleted that weren't in the second scan log. here they are:
Logfile of HijackThis v1.99.1
Scan saved at 1:58:11 PM, on 8/10/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
hijack this:
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
C:\Program Files\ewido\security suite\ewidoctrl.exe
C:\WINDOWS\System32\GEARSec.exe
C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton SystemWorks\Norton Ghost\Agent\PQV2iSvc.exe
C:\Program Files\Norton SystemWorks\Norton AntiVirus\IWP\NPFMntor.exe
C:\PROGRA~1\NORTON~1\NORTON~1\NPROTECT.EXE
C:\PROGRA~1\NORTON~1\NORTON~1\SPEEDD~1\NOPDB.EXE
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\Tablet.exe
C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Java\jre1.5.0\bin\jusched.exe
C:\Program Files\hpq\HP Wireless Assistant\HP Wireless Assistant.exe
C:\Program Files\HPQ\Quick Launch Buttons\EabServr.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\Norton SystemWorks\Norton Ghost\Agent\GhostTray.exe
C:\Program Files\Roxio\Easy Media Creator 7\Drag to Disc\DrgToDsc.exe
C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\HPQ\SHARED\HPQWMI.exe
C:\WINDOWS\System32\alg.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\PROGRA~1\Nero\data\Xtras\mssysmgr.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\WINDOWS\system32\Wtablet\TabUserW.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Documents and Settings\Patrick McDaniel\Desktop\hijackthis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext =
http://www.hp.com/O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: AcroIEToolbarHelper Class - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton SystemWorks\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton SystemWorks\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [Cpqset] C:\Program Files\HPQ\Default Settings\cpqset.exe
O4 - HKLM\..\Run: [WatchDog] C:\Program Files\InterVideo\DVD Check\DVDCheck.exe
O4 - HKLM\..\Run: [iTunesHelper] C:\Program Files\iTunes\iTunesHelper.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0\bin\jusched.exe
O4 - HKLM\..\Run: [hpWirelessAssistant] C:\Program Files\hpq\HP Wireless Assistant\HP Wireless Assistant.exe
O4 - HKLM\..\Run: [eabconfg.cpl] C:\Program Files\HPQ\Quick Launch Buttons\EabServr.exe /Start
O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [Norton Ghost 9.0] C:\Program Files\Norton SystemWorks\Norton Ghost\Agent\GhostTray.exe
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [RoxioDragToDisc] "C:\Program Files\Roxio\Easy Media Creator 7\Drag to Disc\DrgToDsc.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [Acrobat Assistant 7.0] "C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe"
O4 - HKLM\..\Run: [Corel Painter Essentials 21a] C:\Program Files\Corel\Corel Painter Essentials 2\registration.exe /title="Corel Painter Essentials 2" /date=081405 serial=pe02cbx-0000003-nmd lang=EN
O4 - HKLM\..\Run: [THGuard] "C:\Program Files\TrojanHunter 4.2\THGuard.exe"
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Norton SystemWorks] "C:\Program Files\Norton SystemWorks\cfgwiz.exe" /GUID {05858CFD-5CC4-4ceb-AAAF-CF00BF39736A} /MODE CfgWiz
O4 - HKCU\..\Run: [PhotoShow Deluxe Media Manager] C:\PROGRA~1\Nero\data\Xtras\mssysmgr.exe
O4 - HKCU\..\Run: [AIM] C:\Program Files\AIM\aim.exe -cnetwait.odl
O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Startup: LimeWire On Startup.lnk = C:\Program Files\LimeWire\LimeWire.exe
O4 - Global Startup: Adobe Acrobat Speed Launcher.lnk = ?
O4 - Global Startup: BTTray.lnk = ?
O4 - Global Startup: DVD Check.lnk = C:\Program Files\InterVideo\DVD Check\DVDCheck.exe
O4 - Global Startup: TabUserW.exe.lnk = C:\WINDOWS\system32\Wtablet\TabUserW.exe
O8 - Extra context menu item: Convert link target to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convert link target to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convert selected links to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Convert selected links to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Convert selection to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convert selection to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convert to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convert to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Send To &Bluetooth - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) -
http://go.microsoft....k/?linkid=39204O16 - DPF: {200B3EE9-7242-4EFD-B1E4-D97EE825BA53} (VerifyGMN Class) -
http://h20270.www2.h...staller_gmn.cabO16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) -
http://www.bitdefend...can8/oscan8.cabO16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) -
http://www.pandasoft...free/asinst.cabO18 - Protocol: widimg - {EE7C2AFF-5742-44FF-BD0E-E521B0D3C3BA} - C:\WINDOWS\system32\btxppanel.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Bluetooth Service (btwdins) - WIDCOMM, Inc. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido\security suite\ewidoguard.exe
O23 - Service: GEARSecurity - GEAR Software - C:\WINDOWS\System32\GEARSec.exe
O23 - Service: HP WMI Interface (hpqwmi) - Hewlett-Packard Development Company, L.P. - C:\Program Files\HPQ\SHARED\HPQWMI.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton Ghost - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton Ghost\Agent\PQV2iSvc.exe
O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\IWP\NPFMntor.exe
O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\PROGRA~1\NORTON~1\NORTON~1\NPROTECT.EXE
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Speed Disk service - Symantec Corporation - C:\PROGRA~1\NORTON~1\NORTON~1\SPEEDD~1\NOPDB.EXE
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: TabletService - Wacom Technology, Corp. - C:\WINDOWS\system32\Tablet.exe
ewido:
+ Created on: 1:16:04 PM, 8/10/2005
+ Report-Checksum: 6B38DAEF
+ Scan result:
HKLM\SOFTWARE\Classes\CLSID\{03BFEDA6-8678-C773-5452-E7082FCA1BD7} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{09312E20-8C50-C241-742B-35F21EDA9875} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{0ADD4D53-B7DD-20F8-2AC9-AB9CB538A46F} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{12094FCA-1EE9-6EE5-5B4B-4B1EDA5F575C} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{1323178D-09E3-B628-CC3A-95630B64B7DA} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{1E920882-80EF-BD61-DBBD-0847C13D1197} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{1EA0CE66-D6D5-2CEB-D734-97906011F9A8} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{1F5650BA-2C95-0E8C-5C3F-D482646BF979} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{25742C0F-DC0D-F5DC-55DE-C66285AA22AB} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{286ECE71-3F17-089B-F6BD-0E16D255AE8A} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{2A9B7B46-3BB6-BB3C-9E0A-6C988B9DE22E} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{2BFAB072-A3F3-0A97-6990-3673392B7DFC} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{32FB9A97-C47A-795A-3B47-9A97C1448DFC} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{38D4E2FB-BB30-60CB-0D77-12064B5A0EE4} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{3D1F3C37-49CA-66D3-9877-04375ADE521D} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{3E8AEA49-2882-96D1-D4B0-D1EA3E4EEFD2} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{452C15DF-936D-C8CB-B825-97DD4A210ABD} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{46C8C875-7053-566F-B7DF-A8735884B10E} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{47B70B6F-A6B0-230A-43C3-9F9B5C710209} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{491288EB-D314-5571-9C18-B1EAC89ADE09} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{4C1CBC17-3C15-343F-1E7C-D8F447935C05} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{4FCD2C21-6232-FD0F-36AA-4EFFC9284B2A} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{50B9D537-5DB0-52B1-FF6F-ED6C70DA477E} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{52343DBF-CF46-B3EA-81BB-8A3DCB6B9A64} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{5E60DAD4-D59A-D1EA-A0B3-BD226EE43523} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{676575DD-4D46-911D-8037-9B10D6EE8BB5} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{67D02480-710B-80D7-0624-27BB57B32CDE} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{735DDAC7-F8F1-47DD-D87A-6AF0100B6A48} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{78CA5367-0660-D7DE-5424-C4AD26542538} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{8007F30A-ADD5-7E61-D29C-8F166BC8A3DD} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{818D123D-B7CF-1169-DD32-2310AD262479} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{826D0369-102B-4A44-F27B-D9DCC50A8EE6} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{88261A8F-96F3-66D7-0279-B1C677B30B41} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{8A0FEDBB-3762-AEB7-E85E-6BCC16F76759} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{8CD1D4D3-8260-44A7-67DD-A71E995AB77F} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{8D1DF6CE-07E4-C211-83F6-537E054EDC98} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{966FA744-197F-E95E-EB31-73BE39619DE2} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{9CC4194D-70AD-AC3B-8852-00B56740427F} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{9D7705A4-9543-9869-8249-F62AC961BDA5} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{A1BC7CDD-070B-7E5C-FEAD-F4789795AD1A} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{A7737E2C-9C15-D4BE-4A5B-C15B7E8C41E9} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{A97B64CA-35C4-DD86-2890-054EE94CE844} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{AB8789CE-01B6-4B58-C2C0-77D8144D5741} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{AF197E67-53B8-6C01-4733-3E7C25BA3A3B} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{AF6BCC5C-38B1-5871-226C-AC6482380057} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{B1169ABC-E367-2937-9F96-3B9CB54E0F31} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{B30EFD56-F6AF-2F6B-C3AB-6571E5627F1F} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{B4F697AE-7E58-DC0D-D012-24F83EAB9F25} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{B595A235-53A2-27D5-EFF6-D0208801D071} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{BA8C901D-7125-D60E-C709-3E7F4A433A01} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{BC0DC8BD-646D-FA46-8739-116B4F8B8228} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{BD757058-7180-2CE5-E5B6-8C70AEF236CC} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{BE5DCDBC-54D3-95EA-B258-2D53BD817431} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{C436BE04-B80F-3F1B-B592-67B6C8C95688} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{C75B8795-6012-883F-06EE-5F1501763CFE} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{CAEA3DE4-DAC7-8DF9-1A53-651E63E86CDF} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{CAF35453-A9AB-61D6-E032-1F6CE85168F3} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{D02510A9-69A7-24D5-85DA-D3EC8E911C73} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{D0EFC5AD-B041-13C1-482F-CF46EFEFF6C3} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{D3E61C7F-BD83-EA01-13F4-464C2595C096} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{D4451521-F203-568E-2657-C5AD1F0B1F77} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{DE064CF5-809E-A243-CC14-F5427E5967A1} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{E8C74323-6EAC-41DF-4232-E6575DCCE375} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{EA8D7DFA-04BF-99E7-595C-535DC7F0EFBA} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{EE5F21BB-197A-041B-53A6-055C6B35DD91} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{EF4CB83E-BEF0-2DE3-F01E-55D0127FF3EA} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{FB277F1B-89B6-A114-DD01-EC507A933F39} -> Spyware.CoolWebSearch : Cleaned with backup
HKU\S-1-5-21-1708537768-492894223-839522115-1004\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F52B4B29-EAA0-A4B2-3FF3-0A8EE5DB6566} -> Spyware.CoolWebSearch : Cleaned with backup
HKU\S-1-5-21-1708537768-492894223-839522115-1004\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F547C47F-8034-3D35-963A-C6B0626566D7} -> Spyware.CoolWebSearch : Cleaned with backup
C:\Documents and Settings\Patrick McDaniel\Desktop\hijackthis\backups\backup-20050810-104937-486.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\RECYCLER\NPROTECT\00034644.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\RECYCLER\NPROTECT\00034664.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\RECYCLER\NPROTECT\00035702.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\RECYCLER\NPROTECT\00035703.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\RECYCLER\NPROTECT\00035704.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\RECYCLER\NPROTECT\00035801.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\addae.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addar.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addar32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addav.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addbh.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addbh32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addcb32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addcl.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addcv32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\adddb32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\adddr32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\adddy32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addec32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addef32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addex.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addfa32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addfc32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addgg.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addgh32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addgo.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addgt.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addgw.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addgy.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addhi.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addhl.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addho32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addht.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addhy32.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\addhy32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addiq32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addix.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addjg32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addjv.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addkm.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addkn32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addlj.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addlj32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addlk32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addll32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addlp32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addlt.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addlu32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addlx.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addly32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addmc.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addmd.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addml.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addmo32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addmr32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addnc.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addnc32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addoj.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addoj32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addon32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addop32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addpe32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addpj.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addpx.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addpz.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addrm32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addrs.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addsh.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addsr.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addte32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addtt32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addtw.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addua.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addug.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addus32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addvf.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addvf32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addvn32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addwe32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addwi32.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\addwi32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addwj32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addwt.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addww32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addxy32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addxz32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addye.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addyl.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addyl32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addyr32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addyv32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addzk32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addzp32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addzv.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apiaa.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apiaq32.exe -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\apiaw.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apibb.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apibl32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apibp32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apice32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apicm.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apicp32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apicq.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apicu.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apide.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apidh.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apieh32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apiel.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apiem32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apieo.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apies.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apign32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apigs.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apigs32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apigu.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apihq32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apiig32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apiii32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apiiq32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apijf32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apijm.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apijy.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apikh32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apikp32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apikz32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apimx.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apinh.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apinl32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apinq.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apinz32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apioo.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apioz32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apipe.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apipt.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apiqb.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apiqe32.exe -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\apiqi32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apiqp.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apiqq32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apiqt.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apird.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apirj.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apirl.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apirt32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apiru32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apisk.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apisz.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apitf.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apiti.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apito.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apitx32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apity.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apiuf.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apiuj32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apive.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apivn.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apiwg.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apiwl.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apiws32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apiwv32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apixm.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apiyp32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apiyw32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apiyz.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apizd.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apizi32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apizt32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apizz.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appag32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appaj32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appak.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appaq.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appbm.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appcd32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appce32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appch.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appck32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appcq32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appcr32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appcu.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appcv32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appdj.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appdn32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appdt32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apper.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appfe32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appfr32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appfy32.exe -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\appga.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apphb.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apphc.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apphq.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appip32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appir.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appix32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appjd.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appjo32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appjt32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appkh.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appki32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\applg.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\applh.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\applx.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appmp.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appmw.exe -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\appnk32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appnt.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appof32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appog.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appok.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appov.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apppm.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apppt32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appqe.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appqn32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appqw.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apprp.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apprw.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appsa32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appsb.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appsh32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apptx32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appua.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appue32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appuk.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\appuk.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appum.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appuo.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appuv.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appuw32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appvb32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appvf.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appvz.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appwk.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appww.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appxj32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appxv32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appyl.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appyz32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appze32.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\appzk32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appzz32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apzou.dll.tcf:arlsq -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\apzou.dll.tcf:bhvgw -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\apzou.dll.tcf:dwyix -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\apzou.dll.tcf:eszza -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\apzou.dll.tcf:moxjy -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\apzou.dll.tcf:shtlw -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\apzou.dll.tcf:vaavp -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\apzou.dll.tcf -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\atlag.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atlba.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atlbl32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atlbs.exe -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\atlca32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atlcz.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atldh32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atldq.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atldt32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atldu.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atldx32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atlee.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atlev.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atlfe.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atlft32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atlfu.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atlhe32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atlhm.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atlhm32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atlip.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atliq32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atljg.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atljg32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atljj32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atljo.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atlkb32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atllh32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atlll.exe -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\atllp.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atlmb32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atlmk.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atlnp32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atlnu32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atlny.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\atlnz32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atlog.exe -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\atlov.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atlpa32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atlpw32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atlpz32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atlqe.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atlrq.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atlsb.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atlta.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atlua32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atluc32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atluj.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atlum32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atluo.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atlva.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atlvc32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atlvj.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atlvr.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atlwe.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atlwm.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atlws32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atlxx32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atlxz32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atlya.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atlyq32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atlyy.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atlzh.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atlzk32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atlzu32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\bcbvx.log:ekerv -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\bcbvx.log:guake -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\bcbvx.log:idejy -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\bcbvx.log:ldevs -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\bcbvx.log:mqjzd -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\bcbvx.log:nhjwo -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\bcbvx.log:onkfy -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\bcbvx.log:tpmpu -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\bipif.log:agzdp -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\bipif.log:ctgpg -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\bipif.log:deqgg -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\bipif.log:hhaer -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\bipif.log:htqsn -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\bipif.log:kulhd -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\bipif.log:lxjxf -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\bipif.log:ofhny -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\bipif.log:ogqcx -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\bipif.log:qzspn -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\Blue Lace 16.bmp:byppu -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\Blue Lace 16.bmp:ddljv -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\Blue Lace 16.bmp:dihcy -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\Blue Lace 16.bmp:eoxkq -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\Blue Lace 16.bmp:pemfm -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\Blue Lace 16.bmp:qkwbk -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\Blue Lace 16.bmp:vpqkw -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\Blue Lace 16.bmp:xcidt -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\Blue Lace 16.bmp:ydinz -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\bootstat.dat:gbdgm -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\bootstat.dat:gjxnm -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\bootstat.dat:mjyrs -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\bootstat.dat:sunhd -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\bootstat.dat:xdzle -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\bootstat.dat:xqitu -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\cfndh.log:hgrhy -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\cfndh.log:obvvr -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\ciqhv.log:apyqe -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\ciqhv.log:gsgtv -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\ciqhv.log:mvqcr -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\ciqhv.log:nwosa -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\ciqhv.log:rgkyv -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\ciqhv.log:tehtu -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\ciqhv.log:txhnm -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\clock.avi:idtvp -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\clock.avi:ikdlo -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\clock.avi:jelfv -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\clock.avi:nvjhc -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\clock.avi:pjuok -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\clock.avi:ssddl -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\clock.avi:szfif -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\clock.avi:xqsjp -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\cmodm.log:aapof -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\cmodm.log:rjgxm -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\cmodm.log:vlqpo -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\cmodm.log:zzcvl -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\cmsetacl.log:cszkn -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\cmsetacl.log:enbhu -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\cmsetacl.log:iecwa -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\cmsetacl.log:lssvy -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\cmsetacl.log:nkcie -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\cmsetacl.log:rqvyg -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\Coffee Bean.bmp:ajuqc -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\Coffee Bean.bmp:dmmsh -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\Coffee Bean.bmp:maazr -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\Coffee Bean.bmp:npbjp -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\Coffee Bean.bmp:wjkfh -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\Coffee Bean.bmp:wwszr -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\COM+.log:hwdiy -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\COM+.log:xtlyz -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\COM+.log:yshxw -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\COM+.log:zdygn -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\comsetup.log:kiuzu -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\comsetup.log:tilyx -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\comsetup.log:vdfat -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\control.ini:isvcl -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\control.ini:jujmr -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\control.ini:licjb -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\control.ini:vcomu -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\control.ini:zxahf -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\crae.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\crbd32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\crbp.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\crbp32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\crby32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\crbz.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\crcw.exe -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\crdg.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\crdk.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\crec32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\crfh32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\crfz32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\crgd.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\crge.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\crgl32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\crgm.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\crgn.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\crgv.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\crgy.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\crgz.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\crhd32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\crhr32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\crib.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\crin.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\crio.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\crio32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\cris.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\crit32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\crjk32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\crjp32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\crjx32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\crkb32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\crkc32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\crko32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\crkv.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\crla32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\crlb32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\crlo.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\crlp32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\crly32.exe -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\crmi.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\crmm.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\crmp.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\crnb32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\crnc32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\crnk32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\crny32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\croe32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\cros32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\crpb32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\crpc.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\crpj.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\crqk.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\crqo32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\crqx.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\crrd32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\crrl.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\crrs.exe -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\crsb32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\crsd.exe -