Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

Been having serious pop up problems [CLOSED]


  • This topic is locked This topic is locked

#1
Deathstrike

Deathstrike

    Member

  • Member
  • PipPip
  • 22 posts
I've gone through:
Preparation
Step One: Scan for Spyware/Adware
Step Two: Viruses/Trojans
Step Three: Windows Updates (On this step I noticed I had already installed SP2)
Step Four: Reboot-Test
and finally on Step Five:Posting a Hijack This Log

ewido security suite - Scan report
---------------------------------------------------------

+ Created on: 11:13:00 PM, 8/3/2005
+ Report-Checksum: E7C3A1BF

+ Scan result:

HKLM\SOFTWARE\AutoLoader -> Spyware.AproposMedia : Cleaned with backup
HKLM\SOFTWARE\AutoLoader\pwvl1WLSJJLL -> Spyware.AproposMedia : Cleaned with backup
HKLM\SOFTWARE\AutoLoader\pwvz1WLSJJLL -> Spyware.AproposMedia : Cleaned with backup
HKLM\SOFTWARE\Avenue Media -> Spyware.InternetOptimizer : Cleaned with backup
HKLM\SOFTWARE\Avenue Media\Internet Optimizer -> Spyware.InternetOptimizer : Cleaned with backup
HKLM\SOFTWARE\Avenue Media\Internet Optimizer\WSE -> Spyware.InternetOptimizer : Cleaned with backup
HKLM\SOFTWARE\Avenue Media\Internet Optimizer\WSE\cf1 -> Spyware.InternetOptimizer : Cleaned with backup
HKLM\SOFTWARE\Avenue Media\Internet Optimizer\WSE\cf2 -> Spyware.InternetOptimizer : Cleaned with backup
HKLM\SOFTWARE\Avenue Media\Internet Optimizer\WSE\cf3 -> Spyware.InternetOptimizer : Cleaned with backup
HKLM\SOFTWARE\Avenue Media\Internet Optimizer\WSE\cf4 -> Spyware.InternetOptimizer : Cleaned with backup
HKLM\SOFTWARE\Avenue Media\Internet Optimizer\WSE\cf5 -> Spyware.InternetOptimizer : Cleaned with backup
HKLM\SOFTWARE\Bargains -> Spyware.BargainBuddy : Cleaned with backup
HKLM\SOFTWARE\Classes\ADP.UrlCatcher -> Spyware.BargainBuddy : Cleaned with backup
HKLM\SOFTWARE\Classes\ADP.UrlCatcher\CLSID -> Spyware.BargainBuddy : Cleaned with backup
HKLM\SOFTWARE\Classes\AppID\AtlBrowser.EXE -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\AppID\eZulaBootExe.EXE -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\AppID\eZulaMain.EXE -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\AppID\{0818D423-6247-11D1-ABEE-00D049C10000} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\AppID\{8A044397-5DA2-11D4-B185-0050DAB79376} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\AppID\{C0335198-6755-11D4-8A73-0050DA2EE1BE} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\AtlBrCon.AtlBrCon -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\AtlBrCon.AtlBrCon\CurVer -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{07F0A543-47BA-11D4-8A6D-0050DA2EE1BE} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{07F0A545-47BA-11D4-8A6D-0050DA2EE1BE} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{12EE7A5E-0674-42f9-A76A-000000004D00} -> Spyware.BrowserAid : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{12EE7A5E-0674-42f9-A76B-000000004D00} -> Spyware.BrowserAid : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{19DFB2CB-9B27-11D4-B192-0050DAB79376} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{2079884B-6EF3-11D4-8A74-0050DA2EE1BE} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{21FFB6C0-0DA1-11D5-A9D5-00500413153C} -> Spyware.Gator : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{2306ABE4-4D42-11D4-8A6D-0050DA2EE1BE} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{25630B47-53C6-4E66-A945-9D7B6B2171FF} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{2B96D5CC-C5B5-49A5-A69D-CC0A30F9028C} -> Spyware.MiniBug : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{2BABD334-5C3F-11D4-B184-0050DAB79376} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{2CDE1A7D-A478-4291-BF31-E1B4C16F92EB} -> Spyware.ISTBar : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{30192F8D-0958-44E6-B54D-331FD39AC959} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{3643ABC2-21BF-46B9-B230-F247DB0C6FD6} -> Spyware.E2Give : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{370F6354-41C4-4FA6-A2DF-1BA57EE0FBB9} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{3D7247E8-5DB8-11D4-8A72-0050DA2EE1BE} -> Spyware.TopText : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{50B4D2B3-723F-41B3-AEC4-0BD66F0F45FF} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{55910916-8B4E-4C1E-9253-CCE296EA71EB} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{58359010-BF36-11d3-99A2-0050DA2EE1BE} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{6DF5E318-6994-4A41-85BD-45CCADA616F8} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{788C6F6F-C2EA-4A63-9C38-CE7D8F43BCE4} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{78BCF937-45B0-40A7-9391-DCC03420DB35} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{82315A18-6CFB-44a7-BDFD-90E36537C252} -> Spyware.NewDotNet : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{86227D9C-0EFE-4f8a-AA55-30386A3F5686} -> Spyware.YourSiteBar : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{8CBA1B49-8144-4721-A7B1-64C578C9EED7} -> Spyware.SideFind : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{8F4E5661-F99E-4B3E-8D85-0EA71C0748E4} -> Spyware.MoneyTree : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{9CFA26C0-81DA-4C9D-A501-F144A4A000FA} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{A166C1B0-5CDB-447A-894A-4B9FD7149D51} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{B1DD8A69-1B96-11D4-B175-0050DAB79376} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{C03351A4-6755-11D4-8A73-0050DA2EE1BE} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{C4FEE4A7-4B8B-11D4-8A6D-0050DA2EE1BE} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{CEA206E8-8057-4A04-ACE9-FF0D69A92297} -> Spyware.SafeSurfing : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{D290D6E7-BF9D-42F0-9C1B-3BC8AE769B57} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{E004800A-73C6-4587-B855-98D0CE0C16B1} -> Spyware.BrowserAid : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{E7A05400-4CFA-4DF3-A643-E40F86E8E3D7} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{F4E04583-354E-4076-BE7D-ED6A80FD66DA} -> Spyware.BargainBuddy : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{F75521B8-76F1-4A4D-84B1-9E642E9C51D0} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\DyFuCA_BH.BHObj -> Spyware.MoneyTree : Cleaned with backup
HKLM\SOFTWARE\Classes\DyFuCA_BH.BHObj\CLSID -> Spyware.MoneyTree : Cleaned with backup
HKLM\SOFTWARE\Classes\DyFuCA_BH.BHObj\CurVer -> Spyware.MoneyTree : Cleaned with backup
HKLM\SOFTWARE\Classes\DyFuCA_BH.SinkObj -> Spyware.MoneyTree : Cleaned with backup
HKLM\SOFTWARE\Classes\DyFuCA_BH.SinkObj\CLSID -> Spyware.MoneyTree : Cleaned with backup
HKLM\SOFTWARE\Classes\DyFuCA_BH.SinkObj\CurVer -> Spyware.MoneyTree : Cleaned with backup
HKLM\SOFTWARE\Classes\EZulaAgent.eZulaCtrlHost -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\EZulaAgent.eZulaCtrlHost\CLSID -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\EZulaAgent.eZulaCtrlHost\CurVer -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\eZulaAgent.IEObject -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\eZulaAgent.IEObject\CLSID -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\eZulaAgent.IEObject\CurVer -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\EZulaAgent.PlugProt -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\EZulaAgent.PlugProt\CLSID -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\EZulaAgent.PlugProt\CurVer -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\eZulaAgent.ToolBarBand -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\eZulaAgent.ToolBarBand\CLSID -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\EZulaBootExe.InstallCtrl -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\EZulaBootExe.InstallCtrl\CLSID -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\EZulaBootExe.InstallCtrl\CurVer -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\EZulaFSearchEng.eZulaCode -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\EZulaFSearchEng.eZulaCode\CLSID -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\EZulaFSearchEng.eZulaCode\CurVer -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\EZulaFSearchEng.eZulaHash -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\EZulaFSearchEng.eZulaHash\CLSID -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\EZulaFSearchEng.eZulaHash\CurVer -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\EZulaFSearchEng.eZulaSearch -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\EZulaFSearchEng.eZulaSearch\CLSID -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\EZulaFSearchEng.eZulaSearch\CurVer -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\EZulaFSearchEng.PopupDisplay -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\EZulaFSearchEng.PopupDisplay\CLSID -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\EZulaFSearchEng.PopupDisplay\CurVer -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\EZulaFSearchEng.ResultHelper -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\EZulaFSearchEng.ResultHelper\CLSID -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\EZulaFSearchEng.ResultHelper\CurVer -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\EZulaFSearchEng.SearchHelper -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\EZulaFSearchEng.SearchHelper\CLSID -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\EZulaFSearchEng.SearchHelper\CurVer -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\EZulaMain.eZulaPopSearchPipe -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\EZulaMain.eZulaPopSearchPipe\CLSID -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\EZulaMain.eZulaPopSearchPipe\CurVer -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\EZulaMain.eZulaSearchPipe -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\EZulaMain.eZulaSearchPipe\CLSID -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\EZulaMain.eZulaSearchPipe\CurVer -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\EZulaMain.TrayIConM -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\EZulaMain.TrayIConM\CLSID -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\EZulaMain.TrayIConM\CurVer -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\IeBHOs.Control -> Spyware.E2G : Cleaned with backup
HKLM\SOFTWARE\Classes\IeBHOs.Control\CLSID -> Spyware.E2G : Cleaned with backup
HKLM\SOFTWARE\Classes\IeBHOs.Control\CurVer -> Spyware.E2G : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{07F0A542-47BA-11D4-8A6D-0050DA2EE1BE} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{07F0A544-47BA-11D4-8A6D-0050DA2EE1BE} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{0985C112-2562-46F2-8DA6-92648BA4630F} -> Spyware.ISTBar : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{1823BC4B-A253-4767-9CFC-9ACA62A6B136} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{19DFB2CA-9B27-11D4-B192-0050DAB79376} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{1DE9EE01-DF51-49DB-9BDD-5990B35C1C2A} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{241667A3-EC83-4885-84DD-C2DAAFC1C5EA} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{25630B50-53C6-4E66-A945-9D7B6B2171FF} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{27BC6871-4D5A-11D4-8A6D-0050DA2EE1BE} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{339D8AFF-0B42-4260-AD82-78CE605A9543} -> Spyware.SideFind : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{370F6327-41C4-4FA6-A2DF-1BA57EE0FBB9} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{370F6353-41C4-4FA6-A2DF-1BA57EE0FBB9} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{3D7247F1-5DB8-11D4-8A72-0050DA2EE1BE} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{4FD8645F-9B3E-46C1-9727-9837842A84AB} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{58359012-BF36-11D3-99A2-0050DA2EE1BE} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{788C6F6E-C2EA-4A63-9C38-CE7D8F43BCE4} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{78BCF936-45B0-40A7-9391-DCC03420DB35} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{7EDC96E1-5DD3-11D4-B185-0050DAB79376} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{8A0443A2-5DA2-11D4-B185-0050DAB79376} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{8EBB1743-9A2F-11D4-8A7E-0050DA2EE1BE} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{8EEE58D5-130E-4CBD-9C83-35A0564E5678} -> Spyware.BargainBuddy : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{955CBF48-4313-4B1F-872B-254B7822CCF2} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{95B92D92-8B7D-4A19-A3F1-43113B4DBCAF} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{9CFA26C2-81DA-4C9D-A501-F144A4A000FA} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{A1558B18-F76C-40FE-B358-9E47449F3CFE} -> Spyware.AproposMedia : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{A2872B10-39F2-42DF-9335-7DD38CF75255} -> Spyware.AproposMedia : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{A36A5936-CFD9-4B41-86BD-319A1931887F} -> Spyware.SideFind : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{AA4939C3-DECA-4A48-A454-97CD587C0EF5} -> Spyware.ISTBar : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{C03351A3-6755-11D4-8A73-0050DA2EE1BE} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{C4FEE4A6-4B8B-11D4-8A6D-0050DA2EE1BE} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{C6906A23-4717-4E1F-B6FD-F06EBED15678} -> Spyware.BargainBuddy : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{EEE4A2E5-9F56-432F-A6ED-F6F625B551E0} -> Dialer.Generic : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{EF0372DC-F552-11D3-8528-0050DAB79376} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{EF0372DE-F552-11D3-8528-0050DAB79376} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{EFA52460-8822-4191-BA38-FACDD2007910} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\ToolBand.StartBHO -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\ToolBand.StartBHO\CLSID -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\ToolBand.StartBHO\CurVer -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\ToolBand.ToolBandObj -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\ToolBand.ToolBandObj\CLSID -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\ToolBand.ToolBandObj\CurVer -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\TypeLib\{07F0A536-47BA-11D4-8A6D-0050DA2EE1BE} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\TypeLib\{083FA8F4-84F4-11D4-8A77-0050DA2EE1BE} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\TypeLib\{0BE10B0D-B4DB-4693-9B1F-9AEAD54D17DC} -> Spyware.SafeSurfing : Cleaned with backup
HKLM\SOFTWARE\Classes\TypeLib\{12EE7A5E-0674-42F9-A76C-000000004D00} -> Spyware.BrowserAid : Cleaned with backup
HKLM\SOFTWARE\Classes\TypeLib\{370F6327-41C4-4FA6-A2DF-1BA57EE0FBB9} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\TypeLib\{4EB7BBE8-2E15-424B-9DDB-2CDB9516B2C3} -> Spyware.NaviSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\TypeLib\{5297E905-1DFB-4A9C-9871-A4F95FD58945} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\TypeLib\{58359011-BF36-11D3-99A2-0050DA2EE1BE} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\TypeLib\{58634367-D62B-4C2C-86BE-5AAC45CDB671} -> Spyware.SideFind : Cleaned with backup
HKLM\SOFTWARE\Classes\TypeLib\{67907B3C-A6EF-4A01-99AD-3FCD5F526429} -> Spyware.ISTBar : Cleaned with backup
HKLM\SOFTWARE\Classes\TypeLib\{8A044396-5DA2-11D4-B185-0050DAB79376} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\TypeLib\{9CFA26C0-81DA-4C9D-A501-F144A4A000FA} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\TypeLib\{9CFA26C1-81DA-4C9D-A501-F144A4A000FA} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\TypeLib\{BAF13496-8F72-47A1-9CEE-09238EFC75F0} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\TypeLib\{C0335197-6755-11D4-8A73-0050DA2EE1BE} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Classes\TypeLib\{D0288A41-9855-4A9B-8316-BABE243648DA} -> Spyware.SideFind : Cleaned with backup
HKLM\SOFTWARE\Classes\YSBactivex.Installer -> Spyware.YourSiteBar : Cleaned with backup
HKLM\SOFTWARE\Classes\YSBactivex.Installer\CLSID -> Spyware.YourSiteBar : Cleaned with backup
HKLM\SOFTWARE\Classes\_ATL_GENERATED.SearchToolbarBHO -> Spyware.BrowserAid : Cleaned with backup
HKLM\SOFTWARE\Classes\_ATL_GENERATED.SearchToolbarBHO\CLSID -> Spyware.BrowserAid : Cleaned with backup
HKLM\SOFTWARE\Classes\_ATL_GENERATED.SearchToolbarBHO\CurVer -> Spyware.BrowserAid : Cleaned with backup
HKLM\SOFTWARE\Classes\_ATL_GENERATED.SearchToolbarName -> Spyware.BrowserAid : Cleaned with backup
HKLM\SOFTWARE\Classes\_ATL_GENERATED.SearchToolbarName\CLSID -> Spyware.BrowserAid : Cleaned with backup
HKLM\SOFTWARE\Classes\_ATL_GENERATED.SearchToolbarName\CurVer -> Spyware.BrowserAid : Cleaned with backup
HKLM\SOFTWARE\ClickSpring -> Spyware.PurityScan : Cleaned with backup
HKLM\SOFTWARE\dealhelper -> Spyware.DealHelper : Cleaned with backup
HKLM\SOFTWARE\dealhelper\KeyWord -> Spyware.DealHelper : Cleaned with backup
HKLM\SOFTWARE\eXactUtil -> Spyware.BargainBuddy : Cleaned with backup
HKLM\SOFTWARE\Gator.com -> Spyware.Gator : Cleaned with backup
HKLM\SOFTWARE\Gator.com\AppInfo -> Spyware.Gator : Cleaned with backup
HKLM\SOFTWARE\Gator.com\CMEII -> Spyware.Gator : Cleaned with backup
HKLM\SOFTWARE\Gator.com\Gator -> Spyware.Gator : Cleaned with backup
HKLM\SOFTWARE\Gator.com\Gator\dyn -> Spyware.Gator : Cleaned with backup
HKLM\SOFTWARE\Gator.com\Gator\dyn\GCH -> Spyware.Gator : Cleaned with backup
HKLM\SOFTWARE\Gator.com\Gator\dyn\GCH\_gs -> Spyware.Gator : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{12EE7A5E-0674-42f9-A76B-000000004D00} -> Spyware.BrowserAid : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{50B4D2B3-723F-41B3-AEC4-0BD66F0F45FF} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{A166C1B0-5CDB-447A-894A-4B9FD7149D51} -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Microsoft\SideFind -> Spyware.SideFind : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\AMeOpt -> Spyware.InternetOptimizer : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunWindowsUpdate -> Spyware.BrowserAid : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunWindowsUpdate\Active -> Spyware.BrowserAid : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\BargainBuddy -> Spyware.BargainBuddy : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Dealhelper -> Spyware.DealHelper : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\DyFuCA -> Spyware.MoneyTree : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\eZula -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Internet Optimizer -> Spyware.InternetOptimizer : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Kapabout -> Spyware.InternetOptimizer : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\saap -> Spyware.180Solutions : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Surf SideKick -> Spyware.SurfSide : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Web Offer -> Spyware.eZula : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WinDH -> Spyware.DealHelper : Cleaned with backup
HKLM\SOFTWARE\Policies\Avenue Media -> Spyware.InternetOptimizer : Cleaned with backup
HKLM\SOFTWARE\PowerScan -> Spyware.PowerScan : Cleaned with backup
HKLM\SOFTWARE\saap -> Spyware.180Solutions : Cleaned with backup
HKLM\SYSTEM\CurrentControlSet\Control\Print\Monitors\ZepMon -> Spyware.BetterInternet : Cleaned with backup
HKU\S-1-5-21-2587936551-2409960447-1819486551-1006\Software\Cydoor -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-2587936551-2409960447-1819486551-1006\Software\Cydoor\Adwr_434 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-2587936551-2409960447-1819486551-1006\Software\Cydoor\Adwr_434\Loct_2 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-2587936551-2409960447-1819486551-1006\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{30192F8D-0958-44E6-B54D-331FD39AC959} -> Spyware.CoolWebSearch : Cleaned with backup
HKU\S-1-5-21-2587936551-2409960447-1819486551-1006\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3643ABC2-21BF-46B9-B230-F247DB0C6FD6} -> Spyware.E2Give : Cleaned with backup
HKU\S-1-5-21-2587936551-2409960447-1819486551-1006\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{82315A18-6CFB-44A7-BDFD-90E36537C252} -> Spyware.NewDotNet : Cleaned with backup
HKU\S-1-5-21-2587936551-2409960447-1819486551-1006\Software\saap -> Spyware.180Solutions : Cleaned with backup
HKU\S-1-5-21-2587936551-2409960447-1819486551-1006\Software\SerG -> Spyware.EZ-Finder : Cleaned with backup
HKU\S-1-5-21-2587936551-2409960447-1819486551-1006\Software\SerG\SearchBar -> Spyware.EZ-Finder : Cleaned with backup
HKU\S-1-5-21-2587936551-2409960447-1819486551-1006\Software\SerG\SearchBar\History -> Spyware.EZ-Finder : Cleaned with backup
HKU\S-1-5-21-2587936551-2409960447-1819486551-1006\Software\SerG\SearchBar\History\Work -> Spyware.EZ-Finder : Cleaned with backup
HKU\S-1-5-21-2587936551-2409960447-1819486551-1006\Software\{12EE7A5E-0674-42f9-A76B-000000004D00} -> Spyware.BrowserAid : Cleaned with backup
[1188] C:\WINDOWS\system32\DrPMon.dll -> Adware.BetterInternet : Error during cleaning
[1516] C:\WINDOWS\etb\nt_hide62.dll -> Spyware.EliteBar : Error during cleaning
[216] C:\WINDOWS\etb\nt_hide62.dll -> Spyware.EliteBar : Error during cleaning
[224] C:\WINDOWS\etb\nt_hide62.dll -> Spyware.EliteBar : Error during cleaning
[232] C:\WINDOWS\etb\nt_hide62.dll -> Spyware.EliteBar : Error during cleaning
[248] C:\WINDOWS\etb\nt_hide62.dll -> Spyware.EliteBar : Error during cleaning
[324] C:\WINDOWS\etb\nt_hide62.dll -> Spyware.EliteBar : Error during cleaning
[1248] C:\WINDOWS\etb\nt_hide62.dll -> Spyware.EliteBar : Error during cleaning
[488] C:\WINDOWS\etb\nt_hide62.dll -> Spyware.EliteBar : Error during cleaning
[1288] C:\WINDOWS\etb\nt_hide62.dll -> Spyware.EliteBar : Error during cleaning
[980] C:\WINDOWS\etb\nt_hide62.dll -> Spyware.EliteBar : Error during cleaning
[1436] C:\WINDOWS\etb\nt_hide62.dll -> Spyware.EliteBar : Error during cleaning
[1432] C:\WINDOWS\etb\nt_hide62.dll -> Spyware.EliteBar : Error during cleaning
[2092] C:\WINDOWS\etb\nt_hide62.dll -> Spyware.EliteBar : Error during cleaning
[2100] C:\WINDOWS\etb\nt_hide62.dll -> Spyware.EliteBar : Error during cleaning
[2112] C:\WINDOWS\etb\nt_hide62.dll -> Spyware.EliteBar : Error during cleaning
[2292] C:\WINDOWS\etb\nt_hide62.dll -> Spyware.EliteBar : Error during cleaning
[2304] C:\WINDOWS\etb\nt_hide62.dll -> Spyware.EliteBar : Error during cleaning
[2488] C:\WINDOWS\etb\nt_hide62.dll -> Spyware.EliteBar : Error during cleaning
[2084] C:\WINDOWS\etb\nt_hide62.dll -> Spyware.EliteBar : Error during cleaning
:mozilla.7:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.9:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.13:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.14:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.15:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.16:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.17:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.18:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.33:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
:mozilla.34:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
:mozilla.39:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.40:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.41:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.42:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.43:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.44:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.46:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
:mozilla.53:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.54:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.55:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.65:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.66:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.67:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.68:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.69:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.70:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.71:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.72:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.73:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.74:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.75:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.76:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.77:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.78:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.79:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.80:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.81:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.82:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.83:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
:mozilla.84:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
:mozilla.85:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
:mozilla.86:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
:mozilla.87:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
:mozilla.88:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
:mozilla.89:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
:mozilla.90:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
:mozilla.91:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
:mozilla.92:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
:mozilla.93:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
:mozilla.95:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.96:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.97:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.98:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.99:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.100:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.101:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.102:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Valueclick : Cleaned with backup
:mozilla.103:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.104:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.107:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.120:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.126:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Clickzs : Cleaned with backup
:mozilla.127:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Clickzs : Cleaned with backup
:mozilla.129:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Spylog : Cleaned with backup
:mozilla.132:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Clickzs : Cleaned with backup
:mozilla.133:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Clickzs : Cleaned with backup
:mozilla.134:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Clickzs : Cleaned with backup
:mozilla.135:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Clickzs : Cleaned with backup
:mozilla.141:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Adtech : Cleaned with backup
:mozilla.142:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Adtech : Cleaned with backup
:mozilla.163:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Ivwbox : Cleaned with backup
:mozilla.169:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup
:mozilla.170:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup
:mozilla.172:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Paycounter : Cleaned with backup
:mozilla.184:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Hitslink : Cleaned with backup
:mozilla.185:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Hitslink : Cleaned with backup
:mozilla.186:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Hitslink : Cleaned with backup
:mozilla.187:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Hitslink : Cleaned with backup
:mozilla.189:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.191:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.210:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.211:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.212:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.213:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.214:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.219:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.221:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.222:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.224:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Burstnet : Cleaned with backup
:mozilla.235:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Specificclick : Cleaned with backup
:mozilla.236:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Targetnet : Cleaned with backup
:mozilla.238:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Valueclick : Cleaned with backup
:mozilla.239:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Valueclick : Cleaned with backup
:mozilla.240:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Onestat : Cleaned with backup
:mozilla.241:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Onestat : Cleaned with backup
:mozilla.247:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
:mozilla.264:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Weborama : Cleaned with backup
:mozilla.265:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Smartadserver : Cleaned with backup
:mozilla.278:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.279:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.280:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.293:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Bfast : Cleaned with backup
:mozilla.296:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Bluestreak : Cleaned with backup
:mozilla.307:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Coremetrics : Cleaned with backup
:mozilla.322:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Ne : Cleaned with backup
:mozilla.324:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Ne : Cleaned with backup
C:\Documents and Settings\Deathstrike\Cookies\deathstrike@abetterinternet[1].txt -> Spyware.Cookie.Abetterinternet : Cleaned with backup
C:\Documents and Settings\Deathstrike\Cookies\[email protected][2].txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
C:\Documents and Settings\Deathstrike\Cookies\deathstrike@advertising[1].txt -> Spyware.Cookie.Advertising : Cleaned with backup
C:\Documents and Settings\Deathstrike\Cookies\deathstrike@bluestreak[1].txt -> Spyware.Cookie.Bluestreak : Cleaned with backup
C:\Documents and Settings\Deathstrike\Cookies\deathstrike@doubleclick[1].txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
C:\Documents and Settings\Deathstrike\Cookies\deathstrike@fastclick[2].txt -> Spyware.Cookie.Fastclick : Cleaned with backup
C:\Documents and Settings\Deathstrike\Cookies\[email protected][2].txt -> Spyware.Cookie.Advertising : Cleaned with backup
C:\Documents and Settings\Deathstrike\Cookies\deathstrike@trafficmp[2].txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
C:\Documents and Settings\Deathstrike\Cookies\deathstrike@valueclick[1].txt -> Spyware.Cookie.Valueclick : Cleaned with backup
C:\Documents and Settings\Deathstrike\Cookies\[email protected][1].txt -> Spyware.Cookie.Adserver : Cleaned with backup
C:\Documents and Settings\Deathstrike\Local Settings\Temp\Cookies\deathstrike@abetterinternet[2].txt -> Spyware.Cookie.Abetterinternet : Cleaned with backup
C:\Documents and Settings\Deathstrike\Local Settings\Temp\Cookies\[email protected][1].txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
C:\Documents and Settings\Deathstrike\Local Settings\Temp\Cookies\deathstrike@advertising[1].txt -> Spyware.Cookie.Advertising : Cleaned with backup
C:\Documents and Settings\Deathstrike\Local Settings\Temp\Cookies\deathstrike@atdmt[1].txt -> Spyware.Cookie.Atdmt : Cleaned with backup
C:\Documents and Settings\Deathstrike\Local Settings\Temp\Cookies\deathstrike@doubleclick[1].txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
C:\Documents and Settings\Deathstrike\Local Settings\Temp\Cookies\deathstrike@fastclick[1].txt -> Spyware.Cookie.Fastclick : Cleaned with backup
C:\Documents and Settings\Deathstrike\Local Settings\Temp\Cookies\[email protected][1].txt -> Spyware.Cookie.Advertising : Cleaned with backup
C:\Documents and Settings\Deathstrike\Local Settings\Temp\Cookies\deathstrike@valueclick[2].txt -> Spyware.Cookie.Valueclick : Cleaned with backup
:mozilla.11:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\93snzggv.default\cookies.txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
:mozilla.12:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\93snzggv.default\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.20:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\93snzggv.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.23:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\93snzggv.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.25:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\93snzggv.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.26:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\93snzggv.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.27:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\93snzggv.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.28:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\93snzggv.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.29:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\93snzggv.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.34:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\93snzggv.default\cookies.txt -> Spyware.Cookie.Targetnet : Cleaned with backup
:mozilla.35:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\93snzggv.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.36:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\93snzggv.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
C:\Program Files\180SearchAssistant512\__delete_on_reboot__saap.exe -> Spyware.180Solutions : Cleaned with backup
C:\Program Files\BullsEye Network\bin\adv.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\Program Files\BullsEye Network\bin\adx.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\Program Files\Djckh\__delete_on_reboot__Gcmybvo.exe -> Trojan.Small.cy : Cleaned with backup
C:\Program Files\E2G\IeBHOs.dll -> Spyware.E2Give : Cleaned with backup
C:\Program Files\eZula\CHCON.dll -> Adware.eZula : Cleaned with backup
C:\Program Files\eZula\seng.dll -> Adware.eZula : Cleaned with backup
C:\Program Files\eZula\ttupt.exe -> TrojanDownloader.OneClickSearch.k : Cleaned with backup
C:\Program Files\Montorgueil\NewHentai\NewHentai.exe -> Dialer.Generic : Cleaned with backup
C:\Program Files\QuickSearch\Uninstall_QuickSearchBar.exe -> Spyware.Quick : Cleaned with backup
C:\Program Files\sami\emia.exe -> TrojanDownloader.PurityScan.y : Cleaned with backup
C:\Program Files\SideFind\sfbho.dll -> Spyware.SideFind : Cleaned with backup
C:\Program Files\SurfSideKick 3\Ssk.exe -> Spyware.SurfSide : Cleaned with backup
C:\Program Files\SurfSideKick 3\SskBho.dll -> Spyware.SurfSide : Cleaned with backup
C:\Program Files\SurfSideKick 3\SskCore.dll -> Spyware.SurfSide : Cleaned with backup
C:\Program Files\themexp\Themexp.org File\TBEZA127Q.exe -> Spyware.Quick : Cleaned with backup
C:\Program Files\Web Offer\apev.exe -> Adware.eZula : Cleaned with backup
C:\Program Files\Web Offer\CHPON.dll -> Adware.eZula : Cleaned with backup
C:\Program Files\Web Offer\eapbh.dll -> Adware.eZula : Cleaned with backup
C:\Program Files\Web Offer\wo.exe -> Adware.eZula : Cleaned with backup
C:\WINDOWS\AuroraHandler.dll -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\dinst.exe -> TrojanDownloader.Intexp.d : Cleaned with backup
C:\WINDOWS\Downloaded Program Files\ActiveX.ocx -> Spyware.Look2Me : Cleaned with backup
C:\WINDOWS\dsr.dll -> Spyware.Hijacker.Generic : Cleaned with backup
C:\WINDOWS\dsr.exe -> Trojan.Imiserv.c : Cleaned with backup
C:\WINDOWS\etb\xud_62.dll -> Spyware.EliteBar : Cleaned with backup
C:\WINDOWS\etb\__delete_on_reboot__nt_hide62.dll -> Spyware.EliteBar : Cleaned with backup
C:\WINDOWS\etma3eq3.exe -> Adware.SAHA : Cleaned with backup
C:\WINDOWS\Nail.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\qtlssq.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\ru.exe -> Spyware.PurityScan : Cleaned with backup
C:\WINDOWS\system\UpdInst.exe -> Spyware.Look2Me : Cleaned with backup
C:\WINDOWS\system32\bbchk.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\WINDOWS\system32\bnmccxl.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\dun.exe -> Spyware.DealHelper : Cleaned with backup
C:\WINDOWS\system32\emia.exe -> Spyware.PurityScan : Cleaned with backup
C:\WINDOWS\system32\exdl.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\WINDOWS\system32\exdl1.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\WINDOWS\system32\exul.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\WINDOWS\system32\exul1.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\WINDOWS\system32\ezPopStub.exe -> Adware.eZula : Cleaned with backup
C:\WINDOWS\system32\guard.tmp -> Spyware.Look2Me : Cleaned with backup
C:\WINDOWS\system32\HookPopup.dll -> Spyware.DealHelper : Cleaned with backup
C:\WINDOWS\system32\javexulm.vxd -> Spyware.BargainBuddy : Cleaned with backup
C:\WINDOWS\system32\kbymgr.dll -> Spyware.Look2Me : Cleaned with backup
C:\WINDOWS\system32\kldinguj.dll -> Spyware.Look2Me : Cleaned with backup
C:\WINDOWS\system32\kod106.dll -> Spyware.Look2Me : Cleaned with backup
C:\WINDOWS\system32\Kytmjs.exe -> Spyware.DealHelper : Cleaned with backup
C:\WINDOWS\system32\mqexdlm.srg -> Spyware.BargainBuddy : Cleaned with backup
C:\WINDOWS\system32\msbe.dll -> Spyware.BargainBuddy : Cleaned with backup
C:\WINDOWS\system32\nnwmsdrm.dll -> Spyware.Look2Me : Cleaned with backup
C:\WINDOWS\system32\nsf3FC4.dll -> Spyware.HotSearchBar : Cleaned with backup
C:\WINDOWS\system32\nsf3FD7.dll -> Spyware.HotSearchBar : Cleaned with backup
C:\WINDOWS\system32\nsj3FD0.dll -> Spyware.HotSearchBar : Cleaned with backup
C:\WINDOWS\system32\nsr3FCD.dll -> Spyware.HotSearchBar : Cleaned with backup
C:\WINDOWS\system32\nsz3FCA.dll -> Spyware.HotSearchBar : Cleaned with backup
C:\WINDOWS\system32\pa99vhdi.exe -> Adware.SAHA : Cleaned with backup
C:\WINDOWS\system32\thin-94-1-x-x.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\ttavozz.exe -> Adware.BetterInternet : Cleaned with backup
  • 0

Advertisements


#2
Deathstrike

Deathstrike

    Member

  • Topic Starter
  • Member
  • PipPip
  • 22 posts
backup
C:\WINDOWS\system32\__delete_on_reboot__AUNPS2.DLL -> Spyware.Hijacker.Generic : Cleaned with backup
C:\WINDOWS\system32\__delete_on_reboot__DrPMon.dll -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\__delete_on_reboot__E6F1873B.DLL -> TrojanDownloader.Braidupdate.d : Cleaned with backup
C:\WINDOWS\system32\__delete_on_reboot__euot227q.exe -> Adware.SAHA : Cleaned with backup
C:\WINDOWS\system32\__delete_on_reboot__stlb2.dll -> TrojanDownloader.Braidupdate.d : Cleaned with backup
C:\WINDOWS\system32\__delete_on_reboot__wintask.exe -> TrojanDownloader.Small.abd : Cleaned with backup
C:\WINDOWS\visfxun.exe -> TrojanDownloader.VB.kd : Cleaned with backup
C:\WINDOWS\wsem303.dll -> TrojanDownloader.Dyfuca.dt : Cleaned with backup
C:\WINDOWS\wt\wtupdates\webd\4.1.1\files\wtvh.dll -> Spyware.WildTangent : Cleaned with backup
C:\WINDOWS\wt\wtvh.dll -> Spyware.WildTangent : Cleaned with backup
C:\WINDOWS\xcjyt.exe -> Spyware.180Solutions : Cleaned with backup
C:\WINDOWS\__delete_on_reboot__nlcmenc.EXE -> TrojanDownloader.VB.hj : Cleaned with backup
D:\Kenshin\StyleXP.v2.16.Female+Male.Incl.Keygen-ECLiPSE.rar/eclsxp21.exe -> TrojanDropper.Delf.fd : Error during cleaning


::Report End

Logfile of HijackThis v1.99.1
Scan saved at 11:10:47 AM, on 8/4/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\ewido\security suite\ewidoctrl.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Sony\Photo Server 20\appsrv\PicAppSrv.exe
C:\WINDOWS\nlcmsvc.exe
C:\Program Files\Common Files\Sony Shared\VAIO Media Platform\SV_Httpd.exe
C:\Program Files\Common Files\Sony Shared\VAIO Media Platform\UPnPFramework.exe
C:\WINDOWS\Explorer.exe
C:\WINDOWS\LTSMMSG.exe
C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
C:\Program Files\QuickTime\qttask.exe
C:\WINDOWS\System32\rmctrl.exe
C:\WINDOWS\System32\ezSP_Px.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\WINDOWS\system32\Wijbij.exe
C:\Program Files\Winamp\winampa.exe
C:\WINDOWS\fhujdll.exe
C:\WINDOWS\fhujenc.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\TGTSoft\StyleXP\StyleXP.exe
C:\Program Files\Sony\VAIO Action Setup\VAServ.exe
C:\HJT\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer,SearchURL = http://searchmiracle.com/sp.php
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://websearch.drs...esearch.cgi?id=
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://websearch.drs...esearch.cgi?id=
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.gamefaqs.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://websearch.drs...esearch.cgi?id=
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://websearch.drs...esearch.cgi?id=
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://searchmiracle.com/sp.php
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://websearch.drs...esearch.cgi?id=
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = http://websearch.drs...esearch.cgi?id=
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = websearch.drsnsrch.com/q.cgi?q=
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = sas.r4.attbi.com:8000
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.r4.attbi.com
R3 - URLSearchHook: (no name) - {02EE5B04-F144-47BB-83FB-A60BD91B74A9} - C:\Program Files\SurfSideKick 3\SskBho.dll
F2 - REG:system.ini: Shell=Explorer.exe C:\WINDOWS\Nail.exe
O2 - BHO: bho2gr Class - {31FF080D-12A3-439A-A2EF-4BA95A3148E8} - D:\Program Files\GetRight\xx2gr.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [SiSUSBRG] C:\WINDOWS\SiSUSBrg.exe
O4 - HKLM\..\Run: [LTSMMSG] LTSMMSG.exe
O4 - HKLM\..\Run: [CleanupProgram] C:\Sonysys\cleanup.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
O4 - HKLM\..\Run: [Messenger Plus] "C:\Program Files\Messenger Plus\messplus.exe" -silent
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [RemoteControl] C:\WINDOWS\System32\rmctrl.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [ezShieldProtector for Px] C:\WINDOWS\System32\ezSP_Px.exe
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [IMEKRMIG6.1] C:\WINDOWS\ime\imkr6_1\IMEKRMIG.EXE
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [DeadAIM] rundll32.exe "C:\Program Files\AIM\\DeadAIM.ocm",ExportedCheckODLs
O4 - HKLM\..\Run: [secure] C:\WINDOWS\system32\Wijbij.exe
O4 - HKLM\..\Run: [euot227q] C:\WINDOWS\system32\euot227q.exe
O4 - HKLM\..\Run: [lanbrup] C:\WINDOWS\system32\lanbrup.exe
O4 - HKLM\..\Run: [Dinst] C:\WINDOWS\dinst.exe
O4 - HKLM\..\Run: [saap] c:\program files\180searchassistant512\saap.exe
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [exp.exe] C:\WINDOWS\system32\exp.exe
O4 - HKLM\..\Run: [VBundleOuterDL] C:\Program Files\VBouncer\BundleOuter.EXE
O4 - HKLM\..\Run: [AUNPS2] RUNDLL32 AUNPS2.DLL,_Run@16
O4 - HKLM\..\Run: [ttupt] C:\WINDOWS\ttupt.exe
O4 - HKLM\..\Run: [{12EE7A5E-0674-42f9-A76B-000000004D00}] rundll32.exe stlb2.dll,DllRunMain
O4 - HKLM\..\Run: [A70F6A1D-0195-42a2-934C-D8AC0F7C08EB] rundll32.exe E6F1873B.DLL,D9EBC318C
O4 - HKLM\..\Run: [System service62] C:\WINDOWS\etb\pokapoka62.exe
O4 - HKLM\..\Run: [THGuard] "C:\Program Files\TrojanHunter 4.2\THGuard.exe"
O4 - HKLM\..\Run: [DUDEZ CONFIG] "C:\Program Files\Dudez\dudez_config.exe" /autorun
O4 - HKLM\..\Run: [SurfSideKick 3] C:\Program Files\SurfSideKick 3\Ssk.exe
O4 - HKLM\..\Run: [mpspdll] C:\WINDOWS\mpspdll.exe
O4 - HKLM\..\Run: [mpspenc] C:\WINDOWS\mpspenc.exe
O4 - HKLM\..\Run: [uvfluao] c:\windows\system32\qmqmjw.exe r
O4 - HKLM\..\Run: [fhujdll] C:\WINDOWS\fhujdll.EXE
O4 - HKLM\..\Run: [fhujenc] C:\WINDOWS\fhujenc.EXE
O4 - HKCU\..\Run: [AIM] C:\Program Files\AIM\aim.exe -cnetwait.odl
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [STYLEXP] C:\Program Files\TGTSoft\StyleXP\StyleXP.exe -Hide
O4 - HKCU\..\Run: [SurfSideKick 3] C:\Program Files\SurfSideKick 3\Ssk.exe
O4 - Startup: restart_vs.lnk = G:\Viewsonic.exe
O4 - Startup: SMPMEnvSetup.lnk = C:\Downloads\SMPMEnvSetup.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: GetRight - Tray Icon.lnk = D:\Program Files\GetRight\getright.exe
O4 - Global Startup: VAIO Action Setup (Server).lnk = ?
O8 - Extra context menu item: + Offline &Explorer: Download the link - file://D:\Program Files\Offline Explorer Pro\Add_UrlO.htm
O8 - Extra context menu item: + Offline E&xplorer: Download the current page - file://D:\Program Files\Offline Explorer Pro\Add_AllO.htm
O8 - Extra context menu item: Download All by FlashGet - C:\Program Files\FlashGet\jc_all.htm
O8 - Extra context menu item: Download using FlashGet - C:\Program Files\FlashGet\jc_link.htm
O8 - Extra context menu item: Download with GetRight - D:\Program Files\GetRight\GRdownload.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Open with GetRight Browser - D:\Program Files\GetRight\GRbrowse.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe
O9 - Extra 'Tools' menuitem: &FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Broken Internet access because of LSP provider 'xfire_lsp_9028.dll' missing
O12 - Plugin for .avi: C:\Program Files\Opera7\PLUGINS\NPFgc2.dll
O12 - Plugin for .bmp: C:\Program Files\Opera7\PLUGINS\NPFgc1.dll
O12 - Plugin for .exe: C:\Program Files\Opera7\PLUGINS\NPFgc1.dll
O12 - Plugin for .lnk: C:\Program Files\Opera7\PLUGINS\NPFgc1.dll
O12 - Plugin for .mp3: C:\Program Files\Opera7\PLUGINS\NPFgc3.dll
O12 - Plugin for .rar: C:\Program Files\Opera7\PLUGINS\NPFgc1.dll
O12 - Plugin for .zip: C:\Program Files\Opera7\PLUGINS\NPFgc1.dll
O16 - DPF: {01118400-3E00-11D2-8470-0060089874ED} (SdcNetCheckCtl Class) - http://activex.micro...jects/ocget.dll
O16 - DPF: {4208FB4D-4E53-4F5A-BF7A-3E047DDB5281} (ActiveX Control) - http://www.icannnews.../ST/ActiveX.ocx
O16 - DPF: {42F2C9BA-614F-47C0-B3E3-ECFD34EED658} - http://www.ysbweb.co...ysb_regular.cab
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai...all/xscan53.cab
O16 - DPF: {FA3662C3-B8E8-11D6-A667-0010B556D978} (IWinAmpActiveX Class) - http://cdn.digitalci...illama/ampx.cab
O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido\security suite\ewidoguard.exe
O23 - Service: HDD Temperature (HDDTService) - Unknown owner - C:\Program Files\Palick Soft\HDD Temperature Pro\HDDTsvc.exe (file missing)
O23 - Service: Macromedia Licensing Service - Macromedia - C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe
O23 - Service: NVIDIA Display Driver Service (Omega 1.5303) (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\PROGRA~1\COMMON~1\SONYSH~1\AVLib\Sptisrv.exe
O23 - Service: StyleXPService - Unknown owner - C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
O23 - Service: System Startup Service (SvcProc) - Unknown owner - C:\WINDOWS\svcproc.exe
O23 - Service: VAIO Media Music Server (Application) (VAIOMediaPlatform-MusicServer-AppServer) - Unknown owner - C:\Program Files\Sony\VAIO Media Music Server\SSSvr.exe" /Service=VAIOMediaPlatform-MusicServer-AppServer /DisplayName="VAIO Media Music Server (Application) (file missing)
O23 - Service: VAIO Media Music Server (HTTP) (VAIOMediaPlatform-MusicServer-HTTP) - Unknown owner - C:\Program Files\Common Files\Sony Shared\VAIO Media Platform\sv_httpd.exe" /Service=VAIOMediaPlatform-MusicServer-HTTP /RegRoot="Software\Sony Corporation\VAIO Media Platform\2.0" /RegExt="Applications\MusicServer\HTTP (file missing)
O23 - Service: VAIO Media Music Server (UPnP) (VAIOMediaPlatform-MusicServer-UPnP) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Media Platform\UPnPFramework.exe
O23 - Service: VAIO Media Photo Server (Application) (VAIOMediaPlatform-PhotoServer-AppServer) - Unknown owner - C:\Program Files\Sony\Photo Server 20\appsrv\PicAppSrv.exe
O23 - Service: VAIO Media Photo Server (HTTP) (VAIOMediaPlatform-PhotoServer-HTTP) - Unknown owner - C:\Program Files\Common Files\Sony Shared\VAIO Media Platform\SV_Httpd.exe" /Service=VAIOMediaPlatform-PhotoServer-HTTP /RegRoot="Software\Sony Corporation\VAIO Media Platform\2.0" /RegExt="\Applications\PhotoServer\HTTP (file missing)
O23 - Service: VAIO Media Photo Server (UPnP) (VAIOMediaPlatform-PhotoServer-UPnP) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Media Platform\UPnPFramework.exe
O23 - Service: Windows VisFx Components - Unknown owner - C:\WINDOWS\nlcmsvc.exe

On a side note, i've seen even more malware return in the Program Files than before I did Preperation-Step 5.

Thank You for your time
  • 0

#3
Rawe

Rawe

    Visiting Staff

  • Member
  • PipPipPipPipPipPipPip
  • 4,746 posts
Hello and welcome, sorry about the late reply. ;)

We'll get started as soon as you post a fresh, newly scanned HiJackThis log, since there is an file/process which changes names after reboot and we will need to deal with it too.

So can you post a fresh log, after that Do NOT reboot unless I ask you to!

- Rawe :tazz:
  • 0

#4
Deathstrike

Deathstrike

    Member

  • Topic Starter
  • Member
  • PipPip
  • 22 posts
Logfile of HijackThis v1.99.1
Scan saved at 10:30:38 PM, on 8/11/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\ewido\security suite\ewidoctrl.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Sony\Photo Server 20\appsrv\PicAppSrv.exe
C:\Program Files\Common Files\Sony Shared\VAIO Media Platform\SV_Httpd.exe
C:\Program Files\Common Files\Sony Shared\VAIO Media Platform\UPnPFramework.exe
C:\WINDOWS\Explorer.exe
C:\WINDOWS\LTSMMSG.exe
C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
C:\Program Files\QuickTime\qttask.exe
C:\WINDOWS\System32\rmctrl.exe
C:\WINDOWS\System32\ezSP_Px.exe
C:\Program Files\D-Tools\daemon.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\WINDOWS\system32\Wijbij.exe
C:\Program Files\Winamp\winampa.exe
C:\WINDOWS\fhujdll.EXE
C:\WINDOWS\fhujenc.EXE
C:\Program Files\Messenger\msmsgs.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\TGTSoft\StyleXP\StyleXP.exe
H:\program files\valve\steam\steam.exe
C:\Program Files\PeerGuardian2\pg2.exe
C:\Program Files\CMAPP\Client\cmappclient.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\AIM PowerPlus\AIMP.exe
C:\Program Files\Sony\VAIO Action Setup\VAServ.exe
C:\HJT\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://websearch.drs...esearch.cgi?id=
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://websearch.drs...esearch.cgi?id=
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://ww.gamefaqs.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://websearch.drs...esearch.cgi?id=
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://websearch.drs...esearch.cgi?id=
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://websearch.drs...esearch.cgi?id=
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = http://websearch.drs...esearch.cgi?id=
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = websearch.drsnsrch.com/q.cgi?q=
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = :0
R3 - URLSearchHook: (no name) - _{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
R3 - URLSearchHook: (no name) - {02EE5B04-F144-47BB-83FB-A60BD91B74A9} - C:\Program Files\SurfSideKick 3\SskBho.dll
F2 - REG:system.ini: Shell=Explorer.exe C:\WINDOWS\Nail.exe
O2 - BHO: bho2gr Class - {31FF080D-12A3-439A-A2EF-4BA95A3148E8} - D:\Program Files\GetRight\xx2gr.dll
O2 - BHO: CControl Object - {3643ABC2-21BF-46B9-B230-F247DB0C6FD6} - C:\Program Files\E2G\IeBHOs.dll
O2 - BHO: LANBridge Class - {71D1708F-973D-4600-AF01-AD86688403AE} - C:\WINDOWS\system32\sneryehbb.dll
O2 - BHO: IeCatch2 Class - {A5366673-E8CA-11D3-9CD9-0090271D075B} - C:\PROGRA~1\FlashGet\jccatch.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [SiSUSBRG] C:\WINDOWS\SiSUSBrg.exe
O4 - HKLM\..\Run: [LTSMMSG] LTSMMSG.exe
O4 - HKLM\..\Run: [CleanupProgram] C:\Sonysys\cleanup.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
O4 - HKLM\..\Run: [Messenger Plus] "C:\Program Files\Messenger Plus\messplus.exe" -silent
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [RemoteControl] C:\WINDOWS\System32\rmctrl.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [ezShieldProtector for Px] C:\WINDOWS\System32\ezSP_Px.exe
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [IMEKRMIG6.1] C:\WINDOWS\ime\imkr6_1\IMEKRMIG.EXE
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [DeadAIM] rundll32.exe "C:\Program Files\AIM\\DeadAIM.ocm",ExportedCheckODLs
O4 - HKLM\..\Run: [secure] C:\WINDOWS\system32\Wijbij.exe
O4 - HKLM\..\Run: [euot227q] C:\WINDOWS\system32\euot227q.exe
O4 - HKLM\..\Run: [lanbrup] C:\WINDOWS\system32\lanbrup.exe
O4 - HKLM\..\Run: [Dinst] C:\WINDOWS\dinst.exe
O4 - HKLM\..\Run: [saap] c:\program files\180searchassistant512\saap.exe
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [exp.exe] C:\WINDOWS\system32\exp.exe
O4 - HKLM\..\Run: [VBundleOuterDL] C:\Program Files\VBouncer\BundleOuter.EXE
O4 - HKLM\..\Run: [AUNPS2] RUNDLL32 AUNPS2.DLL,_Run@16
O4 - HKLM\..\Run: [ttupt] C:\WINDOWS\ttupt.exe
O4 - HKLM\..\Run: [{12EE7A5E-0674-42f9-A76B-000000004D00}] rundll32.exe stlb2.dll,DllRunMain
O4 - HKLM\..\Run: [A70F6A1D-0195-42a2-934C-D8AC0F7C08EB] rundll32.exe E6F1873B.DLL,D9EBC318C
O4 - HKLM\..\Run: [System service62] C:\WINDOWS\etb\pokapoka62.exe
O4 - HKLM\..\Run: [THGuard] "C:\Program Files\TrojanHunter 4.2\THGuard.exe"
O4 - HKLM\..\Run: [DUDEZ CONFIG] "C:\Program Files\Dudez\dudez_config.exe" /autorun
O4 - HKLM\..\Run: [SurfSideKick 3] C:\Program Files\SurfSideKick 3\Ssk.exe
O4 - HKLM\..\Run: [mpspdll] C:\WINDOWS\mpspdll.exe
O4 - HKLM\..\Run: [mpspenc] C:\WINDOWS\mpspenc.exe
O4 - HKLM\..\Run: [uvfluao] c:\windows\system32\qmqmjw.exe r
O4 - HKLM\..\Run: [fhujdll] C:\WINDOWS\fhujdll.EXE
O4 - HKLM\..\Run: [fhujenc] C:\WINDOWS\fhujenc.EXE
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Weather] C:\Program Files\AWS\WeatherBug\Weather.EXE 1
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [STYLEXP] C:\Program Files\TGTSoft\StyleXP\StyleXP.exe -Hide
O4 - HKCU\..\Run: [Steam] "h:\program files\valve\steam\steam.exe" -silent
O4 - HKCU\..\Run: [AIM] C:\Program Files\AIM\aim.exe -cnetwait.odl
O4 - HKCU\..\Run: [PeerGuardian] C:\Program Files\PeerGuardian2\pg2.exe
O4 - HKCU\..\Run: [ProtoWall] C:\Program Files\Dudez\ProtoWall\ProtoWall.exe
O4 - HKCU\..\Run: [CMAPP] "C:\Program Files\CMAPP\Client\cmappclient.exe"
O4 - HKCU\..\Run: [PowerPlus] "C:\Program Files\AIM PowerPlus\AIMP.exe"
O4 - HKCU\..\Run: [SurfSideKick 3] C:\Program Files\SurfSideKick 3\Ssk.exe
O4 - HKCU\..\Run: [Xtjamed] C:\WINDOWS\system32\??anregw.exe
O4 - HKCU\..\Run: [eZmmod] C:\PROGRA~1\ezula\mmod.exe
O4 - HKCU\..\Run: [eZWO] C:\PROGRA~1\Web Offer\wo.exe
O4 - HKCU\..\Run: [Iinl] C:\Program Files\sami\emia.exe
O4 - HKCU\..\Run: [mstpct] C:\WINDOWS\system32\mstpct.exe
O4 - Startup: HDD Temperature Pro.lnk = C:\Program Files\Palick Soft\HDD Temperature Pro\HDDTemperaturePro.exe
O4 - Startup: MemTurbo.lnk = C:\Program Files\Silicon Prairie Software\MemTurbo\memturbo.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: GetRight - Tray Icon.lnk = D:\Program Files\GetRight\getright.exe
O4 - Global Startup: VAIO Action Setup (Server).lnk = ?
O8 - Extra context menu item: &AIM Search - res://C:\Program Files\AIM Toolbar\AIMBar.dll/aimsearch.htm
O8 - Extra context menu item: Download All by FlashGet - C:\Program Files\FlashGet\jc_all.htm
O8 - Extra context menu item: Download using FlashGet - C:\Program Files\FlashGet\jc_link.htm
O8 - Extra context menu item: Download with GetRight - D:\Program Files\GetRight\GRdownload.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Open with GetRight Browser - D:\Program Files\GetRight\GRbrowse.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe
O9 - Extra 'Tools' menuitem: &FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: WeatherBug - {AF6CABAB-61F9-4f12-A198-B7D41EF1CB52} - C:\Program Files\AWS\WeatherBug\Weather.exe (file missing) (HKCU)
O10 - Broken Internet access because of LSP provider 'xfire_lsp_9028.dll' missing
O12 - Plugin for .avi: C:\Program Files\Opera7\PLUGINS\NPFgc2.dll
O12 - Plugin for .bmp: C:\Program Files\Opera7\PLUGINS\NPFgc1.dll
O12 - Plugin for .exe: C:\Program Files\Opera7\PLUGINS\NPFgc1.dll
O12 - Plugin for .lnk: C:\Program Files\Opera7\PLUGINS\NPFgc1.dll
O12 - Plugin for .mp3: C:\Program Files\Opera7\PLUGINS\NPFgc3.dll
O12 - Plugin for .rar: C:\Program Files\Opera7\PLUGINS\NPFgc1.dll
O12 - Plugin for .zip: C:\Program Files\Opera7\PLUGINS\NPFgc1.dll
O16 - DPF: {01118400-3E00-11D2-8470-0060089874ED} (SdcNetCheckCtl Class) - http://activex.micro...jects/ocget.dll
O16 - DPF: {4208FB4D-4E53-4F5A-BF7A-3E047DDB5281} (ActiveX Control) - http://www.icannnews.../ST/ActiveX.ocx
O16 - DPF: {42F2C9BA-614F-47C0-B3E3-ECFD34EED658} - http://www.ysbweb.co...ysb_regular.cab
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai...all/xscan53.cab
O16 - DPF: {FA3662C3-B8E8-11D6-A667-0010B556D978} (IWinAmpActiveX Class) - http://cdn.digitalci...illama/ampx.cab
O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido\security suite\ewidoguard.exe
O23 - Service: HDD Temperature (HDDTService) - Unknown owner - C:\Program Files\Palick Soft\HDD Temperature Pro\HDDTsvc.exe (file missing)
O23 - Service: Macromedia Licensing Service - Macromedia - C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe
O23 - Service: NVIDIA Display Driver Service (Omega 1.5303) (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\PROGRA~1\COMMON~1\SONYSH~1\AVLib\Sptisrv.exe
O23 - Service: StyleXPService - Unknown owner - C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
O23 - Service: System Startup Service (SvcProc) - Unknown owner - C:\WINDOWS\svcproc.exe
O23 - Service: VAIO Media Music Server (Application) (VAIOMediaPlatform-MusicServer-AppServer) - Unknown owner - C:\Program Files\Sony\VAIO Media Music Server\SSSvr.exe" /Service=VAIOMediaPlatform-MusicServer-AppServer /DisplayName="VAIO Media Music Server (Application) (file missing)
O23 - Service: VAIO Media Music Server (HTTP) (VAIOMediaPlatform-MusicServer-HTTP) - Unknown owner - C:\Program Files\Common Files\Sony Shared\VAIO Media Platform\sv_httpd.exe" /Service=VAIOMediaPlatform-MusicServer-HTTP /RegRoot="Software\Sony Corporation\VAIO Media Platform\2.0" /RegExt="Applications\MusicServer\HTTP (file missing)
O23 - Service: VAIO Media Music Server (UPnP) (VAIOMediaPlatform-MusicServer-UPnP) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Media Platform\UPnPFramework.exe
O23 - Service: VAIO Media Photo Server (Application) (VAIOMediaPlatform-PhotoServer-AppServer) - Unknown owner - C:\Program Files\Sony\Photo Server 20\appsrv\PicAppSrv.exe
O23 - Service: VAIO Media Photo Server (HTTP) (VAIOMediaPlatform-PhotoServer-HTTP) - Unknown owner - C:\Program Files\Common Files\Sony Shared\VAIO Media Platform\SV_Httpd.exe" /Service=VAIOMediaPlatform-PhotoServer-HTTP /RegRoot="Software\Sony Corporation\VAIO Media Platform\2.0" /RegExt="\Applications\PhotoServer\HTTP (file missing)
O23 - Service: VAIO Media Photo Server (UPnP) (VAIOMediaPlatform-PhotoServer-UPnP) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Media Platform\UPnPFramework.exe
O23 - Service: Windows VisFx Components - Unknown owner - C:\WINDOWS\nlcmsvc.exe (file missing)

Thanks for responding, I know you people are really busy :tazz:
  • 0

#5
Rawe

Rawe

    Visiting Staff

  • Member
  • PipPipPipPipPipPipPip
  • 4,746 posts
Ok, lets eliminate the problem ;)

But I do have to ask you, have you rebooted after you posted the log? I hope not. Ok, here's the steps;

Please print these instructions out, or write them down, as you can't read them during the fix.

First;

Please download Ewido Security Suite it is a free version of the program.
  • Install Ewido Security Suite
  • When installing, under "Additional Options" uncheck..
    • Install background guard
    • Install scan via context menu
  • Launch Ewido, there should be an icon on your desktop, double-click it.
  • The program will now open to the main screen.
  • When you run Ewido for the first time, you will get a warning "Database could not be found!" Click OK. We will fix this in a moment.
  • You will need to update Ewido to the latest definition files.
    • On the left hand side of the main screen click update.
    • Then click on Start Update.
  • The update will start and a progress bar will show the updates being installed.
    (the status bar at the bottom will display "Update successful")
  • Exit Ewido. DO NOT run a scan yet.
If you are having problems with the updater, you can use this link to manually update Ewido.
ewido manual updates

Since you already have Ewido installed, can you check that it's the latest version (3.5) as well as it would have the latest updates.

Download CleanUp
Install the program, dont run it yet, we will later.

Please download this file: the Nailfix Utility
Save it to your desktop.
DO NOT run it yet.

Download dsrfix.zip
Save it to your desktop.
  • Unzip dsrfix.zip and extract it to your desktop.
  • This will create a new folder on your desktop named dsrfix.
  • Do Not open that folder yet.
Please download APT and unzip the contents to a new folder on your desktop.
  • Open the folder you just created and click on apt.exe and search in the window for qmqmjw.exe.
  • Open your C:\Windows\system32 folder and search for c:\windows\system32\qmqmjw.exe.
    Don't delete it yet, just leave the system32 folder open so you can see the bad file.
  • In APT again, Select qmqmjw.exe and Click Kill3
  • Then immediately delete c:\windows\system32\qmqmjw.exe from your system32 folder.
Close APT.


Next, please reboot your computer in Safe Mode by doing the following:
1) Restart your computer
2) After hearing your computer beep once during startup, but before the Windows icon appears, press F8.
3) Instead of Windows loading as normal, a menu should appear
4) Select the first option, to run Windows in Safe Mode.


Once in Safe Mode, please double-click on nailfix.exe.
Click "Next" in the setup, then make sure "Run Nailfix" is checked and click "Finish".
Your desktop and icons will disappear and reappear, and a window should open and close very quickly --- this is normal.

Now open Ewido and do a scan of your system.
  • Click on scanner
  • Click on Complete System Scan and the scan will begin.
  • Clean anything it finds.
  • Once the scan has completed, there will be a button located on the bottom of the screen named Save report
  • Click Save report.
  • Save the report .txt file to your desktop or a location where you can find it easily.
Close Ewido.

Now scan with HJT and place a checkmark next to each of the following items:
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://websearch.drs...esearch.cgi?id=
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://websearch.drs...esearch.cgi?id=
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://ww.gamefaqs.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://websearch.drs...esearch.cgi?id=
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://websearch.drs...esearch.cgi?id=
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://websearch.drs...esearch.cgi?id=
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = http://websearch.drs...esearch.cgi?id=
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = websearch.drsnsrch.com/q.cgi?q=
R3 - URLSearchHook: (no name) - _{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
R3 - URLSearchHook: (no name) - {02EE5B04-F144-47BB-83FB-A60BD91B74A9} - C:\Program Files\SurfSideKick 3\SskBho.dll
F2 - REG:system.ini: Shell=Explorer.exe C:\WINDOWS\Nail.exe
O2 - BHO: bho2gr Class - {31FF080D-12A3-439A-A2EF-4BA95A3148E8} - D:\Program Files\GetRight\xx2gr.dll
O2 - BHO: CControl Object - {3643ABC2-21BF-46B9-B230-F247DB0C6FD6} - C:\Program Files\E2G\IeBHOs.dll
O2 - BHO: LANBridge Class - {71D1708F-973D-4600-AF01-AD86688403AE} - C:\WINDOWS\system32\sneryehbb.dll
O2 - BHO: IeCatch2 Class - {A5366673-E8CA-11D3-9CD9-0090271D075B} - C:\PROGRA~1\FlashGet\jccatch.dll
O4 - HKLM\..\Run: [secure] C:\WINDOWS\system32\Wijbij.exe
O4 - HKLM\..\Run: [euot227q] C:\WINDOWS\system32\euot227q.exe
O4 - HKLM\..\Run: [lanbrup] C:\WINDOWS\system32\lanbrup.exe
O4 - HKLM\..\Run: [Dinst] C:\WINDOWS\dinst.exe
O4 - HKLM\..\Run: [saap] c:\program files\180searchassistant512\saap.exe
O4 - HKLM\..\Run: [exp.exe] C:\WINDOWS\system32\exp.exe
O4 - HKLM\..\Run: [VBundleOuterDL] C:\Program Files\VBouncer\BundleOuter.EXE
O4 - HKLM\..\Run: [AUNPS2] RUNDLL32 AUNPS2.DLL,_Run@16
O4 - HKLM\..\Run: [ttupt] C:\WINDOWS\ttupt.exe
O4 - HKLM\..\Run: [{12EE7A5E-0674-42f9-A76B-000000004D00}] rundll32.exe stlb2.dll,DllRunMain
O4 - HKLM\..\Run: [A70F6A1D-0195-42a2-934C-D8AC0F7C08EB] rundll32.exe E6F1873B.DLL,D9EBC318C
O4 - HKLM\..\Run: [System service62] C:\WINDOWS\etb\pokapoka62.exe
O4 - HKLM\..\Run: [SurfSideKick 3] C:\Program Files\SurfSideKick 3\Ssk.exe
O4 - HKLM\..\Run: [mpspdll] C:\WINDOWS\mpspdll.exe
O4 - HKLM\..\Run: [mpspenc] C:\WINDOWS\mpspenc.exe
O4 - HKLM\..\Run: [uvfluao] c:\windows\system32\qmqmjw.exe r
O4 - HKLM\..\Run: [fhujdll] C:\WINDOWS\fhujdll.EXE
O4 - HKLM\..\Run: [fhujenc] C:\WINDOWS\fhujenc.EXE
O4 - HKCU\..\Run: [PeerGuardian] C:\Program Files\PeerGuardian2\pg2.exe
O4 - HKCU\..\Run: [SurfSideKick 3] C:\Program Files\SurfSideKick 3\Ssk.exe
O4 - HKCU\..\Run: [Xtjamed] C:\WINDOWS\system32\??anregw.exe
O4 - HKCU\..\Run: [eZmmod] C:\PROGRA~1\ezula\mmod.exe
O4 - HKCU\..\Run: [eZWO] C:\PROGRA~1\Web Offer\wo.exe
O4 - HKCU\..\Run: [Iinl] C:\Program Files\sami\emia.exe
O4 - HKCU\..\Run: [mstpct] C:\WINDOWS\system32\mstpct.exe
O8 - Extra context menu item: Download All by FlashGet - C:\Program Files\FlashGet\jc_all.htm
O8 - Extra context menu item: Download using FlashGet - C:\Program Files\FlashGet\jc_link.htm
O23 - Service: System Startup Service (SvcProc) - Unknown owner - C:\WINDOWS\svcproc.exe
O23 - Service: Windows VisFx Components - Unknown owner - C:\WINDOWS\nlcmsvc.exe (file missing)


Close all open windows except for HJT, then click the Fix Checked button. Close HJT.

Now open the folder dsrfix on your desktop.
  • Double-Click on dsrfix.bat
  • A window will pop up briefly then close, this is normal.
Enable show hidden files and folders:

Go to My Computer >Tools >Folder Options >View tab and make sure that Show hidden files and folders is enabled. Also make sure that the System Files and Folders are showing / visible. Uncheck the Hide protected operating system files - option.

Click "Start" -> Control Panel -> Add/Remove programs and uninstall the following programs if present;

E2G
180searchassistant512 (Might be named as 180searchassistant)
VBouncer (Might be named as VirtualBouncer)
PeerGuardian2 (Might be named as PeerGuardian without the number 2)
SurfSideKick 3 (Might be named SurfSideKick without number 3)
ezula
WebOffer
sami
FlashGet


Now using Windows Explorer find and locate the following folders and delete if present;

C:\Program Files\E2G\
c:\program files\180searchassistant512\
C:\Program Files\VBouncer\
C:\WINDOWS\etb\
C:\Program Files\SurfSideKick 3\
C:\Program Files\PeerGuardian2\
C:\PROGRA~1\ezula\
C:\PROGRA~1\Web Offer\
C:\Program Files\sami\
C:\Program Files\FlashGet\


Once deleted the folders, locate these files and delete them;

C:\WINDOWS\svcproc.exe
C:\WINDOWS\nlcmsvc.exe
mstpct.exe <= Locate using Windows Search function
C:\WINDOWS\system32\??anregw.exe => Note the ? -> Only delete the file with ?
C:\WINDOWS\fhujdll.EXE
C:\WINDOWS\fhujenc.EXE
C:\WINDOWS\mpspdll.exe
C:\WINDOWS\mpspenc.exe
c:\windows\system32\qmqmjw.exe
C:\WINDOWS\ttupt.exe
C:\WINDOWS\system32\exp.exe
C:\WINDOWS\system32\sneryehbb.dll
C:\WINDOWS\system32\Wijbij.exe
C:\WINDOWS\system32\euot227q.exe
C:\WINDOWS\system32\lanbrup.exe


Now run the CleanUp program:

*IMPORTANT NOTE*
CleanUp deletes EVERYTHING out of your temp/temporary folders, it does not make backups.
If you have any documents or programs that are saved in any Temporary Folders, please make a backup of these before running CleanUp

Running CleanUp
  • Start CleanUp by double-clicking the icon on your desktop (or from the Start > All Programs menu).
  • When CleanUp starts go to the Options button (right side of CleanUp screen)
  • Move the arrow down to "Custom CleanUp!"
  • Now place a checkmark next to the following (Make sure nothing else is checked!):
    • Delete Cookies
      This is optional, if you leave the box checked it will remove all of your cookies, at this point removing cookies is a good idea
    • Empty Recycle Bins
    • Delete Prefetch files
    • Cleanup! All Users
  • Click OK
  • Then click on the CleanUp button. This will take a short while, let it do its thing.
  • When asked to reboot system select No
  • Close CleanUp
Finally, restart your computer back into Normal Mode and please post a new HJT log, as well as the ewido report log from the Ewido scan by using Add Reply

- Rawe :tazz:
  • 0

#6
Deathstrike

Deathstrike

    Member

  • Topic Starter
  • Member
  • PipPip
  • 22 posts
Here are my logs.
I want to note that for some reason, I can't start up a lot of the games installed on my computer nor some programs. (mirc, wolfenstein enemy terriotry, america's army, steam (counter-strike), Unreal Tournament 2004) Some of them state that ____ is not a valid Win32 application while some just don't appear when I click on it even though the comp says that it is running.

Logfile of HijackThis v1.99.1
Scan saved at 10:40:03 PM, on 8/12/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Sony\Photo Server 20\appsrv\PicAppSrv.exe
C:\Program Files\Common Files\Sony Shared\VAIO Media Platform\SV_Httpd.exe
C:\Program Files\Common Files\Sony Shared\VAIO Media Platform\UPnPFramework.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\LTSMMSG.exe
C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
C:\Program Files\QuickTime\qttask.exe
C:\WINDOWS\System32\rmctrl.exe
C:\WINDOWS\System32\ezSP_Px.exe
C:\Program Files\D-Tools\daemon.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Winamp\winampa.exe
C:\Program Files\TrojanHunter 4.2\THGuard.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\TGTSoft\StyleXP\StyleXP.exe
C:\Program Files\CMAPP\Client\cmappclient.exe
C:\Program Files\Sony\VAIO Action Setup\VAServ.exe
C:\WINDOWS\system32\wuauclt.exe
C:\HJT\HijackThis.exe

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = :0
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [SiSUSBRG] C:\WINDOWS\SiSUSBrg.exe
O4 - HKLM\..\Run: [LTSMMSG] LTSMMSG.exe
O4 - HKLM\..\Run: [CleanupProgram] C:\Sonysys\cleanup.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
O4 - HKLM\..\Run: [Messenger Plus] "C:\Program Files\Messenger Plus\messplus.exe" -silent
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [RemoteControl] C:\WINDOWS\System32\rmctrl.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [ezShieldProtector for Px] C:\WINDOWS\System32\ezSP_Px.exe
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [IMEKRMIG6.1] C:\WINDOWS\ime\imkr6_1\IMEKRMIG.EXE
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [DeadAIM] rundll32.exe "C:\Program Files\AIM\\DeadAIM.ocm",ExportedCheckODLs
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [THGuard] "C:\Program Files\TrojanHunter 4.2\THGuard.exe"
O4 - HKLM\..\Run: [DUDEZ CONFIG] "C:\Program Files\Dudez\dudez_config.exe" /autorun
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [STYLEXP] C:\Program Files\TGTSoft\StyleXP\StyleXP.exe -Hide
O4 - HKCU\..\Run: [Steam] "h:\program files\valve\steam\steam.exe" -silent
O4 - HKCU\..\Run: [AIM] C:\Program Files\AIM\aim.exe -cnetwait.odl
O4 - HKCU\..\Run: [ProtoWall] C:\Program Files\Dudez\ProtoWall\ProtoWall.exe
O4 - HKCU\..\Run: [CMAPP] "C:\Program Files\CMAPP\Client\cmappclient.exe"
O4 - HKCU\..\Run: [PowerPlus] "C:\Program Files\AIM PowerPlus\AIMP.exe"
O4 - Startup: HDD Temperature Pro.lnk = C:\Program Files\Palick Soft\HDD Temperature Pro\HDDTemperaturePro.exe
O4 - Startup: MemTurbo.lnk = C:\Program Files\Silicon Prairie Software\MemTurbo\memturbo.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: GetRight - Tray Icon.lnk = D:\Program Files\GetRight\getright.exe
O4 - Global Startup: VAIO Action Setup (Server).lnk = ?
O8 - Extra context menu item: &AIM Search - res://C:\Program Files\AIM Toolbar\AIMBar.dll/aimsearch.htm
O8 - Extra context menu item: Download with GetRight - D:\Program Files\GetRight\GRdownload.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Open with GetRight Browser - D:\Program Files\GetRight\GRbrowse.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Broken Internet access because of LSP provider 'xfire_lsp_9028.dll' missing
O12 - Plugin for .avi: C:\Program Files\Opera7\PLUGINS\NPFgc2.dll
O12 - Plugin for .bmp: C:\Program Files\Opera7\PLUGINS\NPFgc1.dll
O12 - Plugin for .exe: C:\Program Files\Opera7\PLUGINS\NPFgc1.dll
O12 - Plugin for .lnk: C:\Program Files\Opera7\PLUGINS\NPFgc1.dll
O12 - Plugin for .mp3: C:\Program Files\Opera7\PLUGINS\NPFgc3.dll
O12 - Plugin for .rar: C:\Program Files\Opera7\PLUGINS\NPFgc1.dll
O12 - Plugin for .zip: C:\Program Files\Opera7\PLUGINS\NPFgc1.dll
O16 - DPF: {01118400-3E00-11D2-8470-0060089874ED} (SdcNetCheckCtl Class) - http://activex.micro...jects/ocget.dll
O16 - DPF: {4208FB4D-4E53-4F5A-BF7A-3E047DDB5281} (ActiveX Control) - http://www.icannnews.../ST/ActiveX.ocx
O16 - DPF: {42F2C9BA-614F-47C0-B3E3-ECFD34EED658} - http://www.ysbweb.co...ysb_regular.cab
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai...all/xscan53.cab
O16 - DPF: {FA3662C3-B8E8-11D6-A667-0010B556D978} (IWinAmpActiveX Class) - http://cdn.digitalci...illama/ampx.cab
O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: HDD Temperature (HDDTService) - Unknown owner - C:\Program Files\Palick Soft\HDD Temperature Pro\HDDTsvc.exe (file missing)
O23 - Service: Macromedia Licensing Service - Macromedia - C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe
O23 - Service: NVIDIA Display Driver Service (Omega 1.5303) (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\PROGRA~1\COMMON~1\SONYSH~1\AVLib\Sptisrv.exe
O23 - Service: StyleXPService - Unknown owner - C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
O23 - Service: System Startup Service (SvcProc) - Unknown owner - C:\WINDOWS\svcproc.exe (file missing)
O23 - Service: VAIO Media Music Server (Application) (VAIOMediaPlatform-MusicServer-AppServer) - Unknown owner - C:\Program Files\Sony\VAIO Media Music Server\SSSvr.exe" /Service=VAIOMediaPlatform-MusicServer-AppServer /DisplayName="VAIO Media Music Server (Application) (file missing)
O23 - Service: VAIO Media Music Server (HTTP) (VAIOMediaPlatform-MusicServer-HTTP) - Unknown owner - C:\Program Files\Common Files\Sony Shared\VAIO Media Platform\sv_httpd.exe" /Service=VAIOMediaPlatform-MusicServer-HTTP /RegRoot="Software\Sony Corporation\VAIO Media Platform\2.0" /RegExt="Applications\MusicServer\HTTP (file missing)
O23 - Service: VAIO Media Music Server (UPnP) (VAIOMediaPlatform-MusicServer-UPnP) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Media Platform\UPnPFramework.exe
O23 - Service: VAIO Media Photo Server (Application) (VAIOMediaPlatform-PhotoServer-AppServer) - Unknown owner - C:\Program Files\Sony\Photo Server 20\appsrv\PicAppSrv.exe
O23 - Service: VAIO Media Photo Server (HTTP) (VAIOMediaPlatform-PhotoServer-HTTP) - Unknown owner - C:\Program Files\Common Files\Sony Shared\VAIO Media Platform\SV_Httpd.exe" /Service=VAIOMediaPlatform-PhotoServer-HTTP /RegRoot="Software\Sony Corporation\VAIO Media Platform\2.0" /RegExt="\Applications\PhotoServer\HTTP (file missing)
O23 - Service: VAIO Media Photo Server (UPnP) (VAIOMediaPlatform-PhotoServer-UPnP) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Media Platform\UPnPFramework.exe

---------------------------------------------------------
ewido security suite - Scan report
---------------------------------------------------------

+ Created on: 4:06:54 PM, 8/12/2005
+ Report-Checksum: 2D4DF27E

+ Scan result:

:mozilla.23:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.24:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.25:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.26:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
:mozilla.32:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
:mozilla.44:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.47:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
:mozilla.49:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.70:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Linksynergy : Cleaned with backup
:mozilla.71:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Linksynergy : Cleaned with backup
:mozilla.72:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Linksynergy : Cleaned with backup
:mozilla.79:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.80:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.83:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.84:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.85:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.86:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.87:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.88:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.89:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.90:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.91:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.92:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.93:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.94:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.95:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.96:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.97:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.98:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.99:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.100:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.101:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.102:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.103:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.104:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.105:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.106:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.107:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.108:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.109:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.110:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.111:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.112:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.113:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.114:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.115:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.116:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.117:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.118:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.119:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.120:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.121:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.122:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.123:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.124:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.125:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.126:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.127:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.128:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.129:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.130:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.131:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.132:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.133:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.134:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.135:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Googleadservices : Cleaned with backup
:mozilla.151:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.170:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
:mozilla.171:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
:mozilla.182:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.183:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.184:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.185:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.186:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.187:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.188:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.189:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.190:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.191:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.206:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.207:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.208:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.209:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.210:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.211:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.212:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.213:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.214:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.215:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.216:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.217:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.218:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.219:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.220:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.221:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.222:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.223:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.224:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.225:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.226:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.227:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.228:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.229:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.230:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.231:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.232:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.233:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.234:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.235:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.236:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.237:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.238:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.239:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.240:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.241:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.242:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.243:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.244:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.245:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.246:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.247:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.248:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.249:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.250:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.251:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.252:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.253:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.254:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.272:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup
:mozilla.276:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.277:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.278:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.279:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.280:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.281:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.282:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.283:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.284:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.285:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.293:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.294:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.295:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.296:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.297:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.298:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.299:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Adbrite : Cleaned with backup
:mozilla.300:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Burstnet : Cleaned with backup
:mozilla.301:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Burstnet : Cleaned with backup
:mozilla.302:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Burstnet : Cleaned with backup
:mozilla.303:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.308:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.310:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.311:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.312:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.313:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.314:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.315:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.316:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.317:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.318:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.319:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.320:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.322:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.323:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.324:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.325:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.326:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.327:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.328:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.329:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.330:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.331:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.332:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.333:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.334:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.335:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.336:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Targetnet : Cleaned with backup
:mozilla.337:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Targetnet : Cleaned with backup
:mozilla.338:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Targetnet : Cleaned with backup
:mozilla.342:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.343:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.344:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.345:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.346:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.347:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.354:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.355:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.356:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.357:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.358:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.359:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.360:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.361:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.372:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.373:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.374:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.375:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.376:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.377:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.378:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Qksrv : Cleaned with backup
:mozilla.379:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Qksrv : Cleaned with backup
:mozilla.380:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.381:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.382:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.383:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.384:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.385:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.407:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.408:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.409:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.410:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.411:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.412:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.413:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.414:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.415:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.416:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.430:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Bluestreak : Cleaned with backup
:mozilla.473:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.477:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Spylog : Cleaned with backup
:mozilla.481:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.506:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.507:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.508:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.509:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.510:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.511:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.512:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.513:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.514:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.515:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.516:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.517:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.518:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.519:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.520:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.521:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.522:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.523:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.524:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.525:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.526:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.527:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.528:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.529:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.530:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.531:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.532:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.533:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.534:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.535:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.536:C:\Documents
  • 0

#7
Deathstrike

Deathstrike

    Member

  • Topic Starter
  • Member
  • PipPip
  • 22 posts
:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.527:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.528:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.529:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.530:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.531:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.532:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.533:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.534:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.535:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.536:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.537:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.538:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.539:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.540:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.541:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.542:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.543:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.544:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.545:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.546:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.547:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.548:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.549:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.550:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.551:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.552:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.553:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.554:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.555:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.573:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Onestat : Cleaned with backup
:mozilla.574:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Onestat : Cleaned with backup
:mozilla.575:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Onestat : Cleaned with backup
:mozilla.576:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Onestat : Cleaned with backup
:mozilla.578:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Valueclick : Cleaned with backup
:mozilla.579:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Valueclick : Cleaned with backup
:mozilla.591:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Popularix : Cleaned with backup
:mozilla.637:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup
:mozilla.638:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup
:mozilla.639:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Overture : Cleaned with backup
:mozilla.640:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Overture : Cleaned with backup
:mozilla.641:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Overture : Cleaned with backup
:mozilla.646:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup
:mozilla.647:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup
:mozilla.660:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.680:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Adtech : Cleaned with backup
:mozilla.681:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Adtech : Cleaned with backup
:mozilla.685:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.686:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.687:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.688:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.689:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.703:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Paycounter : Cleaned with backup
:mozilla.720:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Bridgetrack : Cleaned with backup
:mozilla.721:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Bridgetrack : Cleaned with backup
:mozilla.722:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Bridgetrack : Cleaned with backup
:mozilla.764:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Trafic : Cleaned with backup
:mozilla.768:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
:mozilla.769:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
:mozilla.770:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
:mozilla.771:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
:mozilla.772:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
:mozilla.773:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
:mozilla.774:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
:mozilla.775:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
:mozilla.776:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
:mozilla.777:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
:mozilla.778:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
:mozilla.779:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
:mozilla.780:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
:mozilla.781:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
:mozilla.782:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
:mozilla.783:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
:mozilla.784:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
:mozilla.785:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
:mozilla.786:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
:mozilla.787:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
:mozilla.788:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
:mozilla.789:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
:mozilla.790:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
:mozilla.791:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
:mozilla.792:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
:mozilla.793:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
:mozilla.794:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
:mozilla.795:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
:mozilla.796:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
:mozilla.797:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
:mozilla.798:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
:mozilla.799:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
:mozilla.800:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
:mozilla.801:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
:mozilla.802:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
:mozilla.803:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
:mozilla.804:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
:mozilla.805:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
:mozilla.806:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
:mozilla.807:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
:mozilla.832:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Ivwbox : Cleaned with backup
:mozilla.843:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Xxxtoolbar : Cleaned with backup
:mozilla.890:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sitestat : Cleaned with backup
:mozilla.891:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Sitestat : Cleaned with backup
:mozilla.897:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.898:C:\Documents and Settings\Calvin\Application Data\Mozilla\Firefox\Profiles\default.eak\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\Documents and Settings\Calvin\Cookies\calvin@2o7[1].txt -> Spyware.Cookie.2o7 : Cleaned with backup
C:\Documents and Settings\Calvin\Cookies\calvin@abetterinternet[1].txt -> Spyware.Cookie.Abetterinternet : Cleaned with backup
C:\Documents and Settings\Calvin\Cookies\[email protected][1].txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
C:\Documents and Settings\Calvin\Cookies\[email protected][2].txt -> Spyware.Cookie.Specificclick : Cleaned with backup
C:\Documents and Settings\Calvin\Cookies\[email protected][2].txt -> Spyware.Cookie.Addynamix : Cleaned with backup
C:\Documents and Settings\Calvin\Cookies\[email protected][2].txt -> Spyware.Cookie.Pointroll : Cleaned with backup
C:\Documents and Settings\Calvin\Cookies\[email protected][2].txt -> Spyware.Cookie.Falkag : Cleaned with backup
C:\Documents and Settings\Calvin\Cookies\calvin@bluestreak[2].txt -> Spyware.Cookie.Bluestreak : Cleaned with backup
C:\Documents and Settings\Calvin\Cookies\calvin@casalemedia[1].txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
C:\Documents and Settings\Calvin\Cookies\[email protected][2].txt -> Spyware.Cookie.Ru4 : Cleaned with backup
C:\Documents and Settings\Calvin\Cookies\calvin@fastclick[2].txt -> Spyware.Cookie.Fastclick : Cleaned with backup
C:\Documents and Settings\Calvin\Cookies\calvin@paypopup[2].txt -> Spyware.Cookie.Paypopup : Cleaned with backup
C:\Documents and Settings\Calvin\Cookies\[email protected][1].txt -> Spyware.Cookie.Overture : Cleaned with backup
C:\Documents and Settings\Calvin\Cookies\[email protected][1].txt -> Spyware.Cookie.Paypopup : Cleaned with backup
C:\Documents and Settings\Calvin\Cookies\calvin@pro-market[2].txt -> Spyware.Cookie.Pro-market : Cleaned with backup
C:\Documents and Settings\Calvin\Cookies\calvin@qksrv[2].txt -> Spyware.Cookie.Qksrv : Cleaned with backup
C:\Documents and Settings\Calvin\Cookies\calvin@questionmarket[1].txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
C:\Documents and Settings\Calvin\Cookies\calvin@revenue[1].txt -> Spyware.Cookie.Revenue : Cleaned with backup
C:\Documents and Settings\Calvin\Cookies\[email protected][2].txt -> Spyware.Cookie.Liveperson : Cleaned with backup
C:\Documents and Settings\Calvin\Cookies\[email protected][1].txt -> Spyware.Cookie.Onestat : Cleaned with backup
C:\Documents and Settings\Calvin\Cookies\calvin@statcounter[2].txt -> Spyware.Cookie.Statcounter : Cleaned with backup
C:\Documents and Settings\Calvin\Cookies\calvin@trafficmp[2].txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
C:\Documents and Settings\Calvin\Cookies\calvin@tribalfusion[2].txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
C:\Documents and Settings\Calvin\Cookies\[email protected][1].txt -> Spyware.Cookie.Shopathomeselect : Cleaned with backup
C:\Documents and Settings\Calvin\Cookies\[email protected][2].txt -> Spyware.Cookie.Sidefind : Cleaned with backup
C:\Documents and Settings\Calvin\Cookies\[email protected][1].txt -> Spyware.Cookie.Adserver : Cleaned with backup
C:\Documents and Settings\Calvin\Local Settings\Temp\Cookies\calvin@2o7[1].txt -> Spyware.Cookie.2o7 : Cleaned with backup
C:\Documents and Settings\Calvin\Local Settings\Temp\Cookies\calvin@abetterinternet[2].txt -> Spyware.Cookie.Abetterinternet : Cleaned with backup
C:\Documents and Settings\Calvin\Local Settings\Temp\Cookies\[email protected][1].txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
C:\Documents and Settings\Calvin\Local Settings\Temp\Cookies\[email protected][2].txt -> Spyware.Cookie.Addynamix : Cleaned with backup
C:\Documents and Settings\Calvin\Local Settings\Temp\Cookies\[email protected][2].txt -> Spyware.Cookie.Pointroll : Cleaned with backup
C:\Documents and Settings\Calvin\Local Settings\Temp\Cookies\[email protected][1].txt -> Spyware.Cookie.Falkag : Cleaned with backup
C:\Documents and Settings\Calvin\Local Settings\Temp\Cookies\[email protected][2].txt -> Spyware.Cookie.Falkag : Cleaned with backup
C:\Documents and Settings\Calvin\Local Settings\Temp\Cookies\[email protected][2].txt -> Spyware.Cookie.Goldenpalace : Cleaned with backup
C:\Documents and Settings\Calvin\Local Settings\Temp\Cookies\calvin@bluestreak[2].txt -> Spyware.Cookie.Bluestreak : Cleaned with backup
C:\Documents and Settings\Calvin\Local Settings\Temp\Cookies\calvin@casalemedia[1].txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
C:\Documents and Settings\Calvin\Local Settings\Temp\Cookies\calvin@centrport[2].txt -> Spyware.Cookie.Centrport : Cleaned with backup
C:\Documents and Settings\Calvin\Local Settings\Temp\Cookies\[email protected][1].txt -> Spyware.Cookie.Ru4 : Cleaned with backup
C:\Documents and Settings\Calvin\Local Settings\Temp\Cookies\calvin@fastclick[1].txt -> Spyware.Cookie.Fastclick : Cleaned with backup
C:\Documents and Settings\Calvin\Local Settings\Temp\Cookies\calvin@overture[1].txt -> Spyware.Cookie.Overture : Cleaned with backup
C:\Documents and Settings\Calvin\Local Settings\Temp\Cookies\calvin@qksrv[1].txt -> Spyware.Cookie.Qksrv : Cleaned with backup
C:\Documents and Settings\Calvin\Local Settings\Temp\Cookies\calvin@questionmarket[1].txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
C:\Documents and Settings\Calvin\Local Settings\Temp\Cookies\calvin@revenue[2].txt -> Spyware.Cookie.Revenue : Cleaned with backup
C:\Documents and Settings\Calvin\Local Settings\Temp\Cookies\calvin@statcounter[1].txt -> Spyware.Cookie.Statcounter : Cleaned with backup
C:\Documents and Settings\Calvin\Local Settings\Temp\Cookies\calvin@trafficmp[2].txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
C:\Documents and Settings\Calvin\Local Settings\Temp\Cookies\[email protected][1].txt -> Spyware.Cookie.Clickzs : Cleaned with backup
C:\Documents and Settings\Calvin\Local Settings\Temp\Cookies\calvin@yieldmanager[1].txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
C:\Documents and Settings\Calvin\Local Settings\Temp\Cookies\[email protected][2].txt -> Spyware.Cookie.Adserver : Cleaned with backup
C:\Documents and Settings\Calvin\Local Settings\Temp\Rem98A.exe -> TrojanDownloader.Swizzor.aq : Cleaned with backup
C:\Documents and Settings\Calvin\Local Settings\Temporary Internet Files\Content.IE5\0H2RO9U7\AppWrap[1].exe -> TrojanDropper.Agent.pb : Cleaned with backup
C:\Documents and Settings\Calvin\Local Settings\Temporary Internet Files\Content.IE5\0H2RO9U7\AppWrap[2].exe -> TrojanDropper.Agent.pb : Cleaned with backup
C:\Documents and Settings\Calvin\Local Settings\Temporary Internet Files\Content.IE5\0H2RO9U7\AppWrap[3].exe -> TrojanDropper.Agent.pb : Cleaned with backup
C:\Documents and Settings\Calvin\Local Settings\Temporary Internet Files\Content.IE5\0H2RO9U7\AuroraHandler[1].dll -> Adware.BetterInternet : Cleaned with backup
C:\Documents and Settings\Calvin\Local Settings\Temporary Internet Files\Content.IE5\8FAH6L21\!update-2295[1].0000 -> TrojanDownloader.PurityScan.aa : Cleaned with backup
C:\Documents and Settings\Calvin\Local Settings\Temporary Internet Files\Content.IE5\8FAH6L21\AppWrap[1].exe -> TrojanDropper.Agent.pb : Cleaned with backup
C:\Documents and Settings\Calvin\Local Settings\Temporary Internet Files\Content.IE5\8FAH6L21\AppWrap[2].exe -> TrojanDropper.Agent.pb : Cleaned with backup
C:\Documents and Settings\Calvin\Local Settings\Temporary Internet Files\Content.IE5\8FAH6L21\AppWrap[4].exe -> TrojanDropper.Agent.pb : Cleaned with backup
C:\Documents and Settings\Calvin\Local Settings\Temporary Internet Files\Content.IE5\8FAH6L21\AuroraHandler[1].dll -> Adware.BetterInternet : Cleaned with backup
C:\Documents and Settings\Calvin\Local Settings\Temporary Internet Files\Content.IE5\8FAH6L21\DrPMon[1].dll -> Adware.BetterInternet : Cleaned with backup
C:\Documents and Settings\Calvin\Local Settings\Temporary Internet Files\Content.IE5\AV6BKZEB\AppWrap[1].exe -> TrojanDropper.Agent.pb : Cleaned with backup
C:\Documents and Settings\Calvin\Local Settings\Temporary Internet Files\Content.IE5\AV6BKZEB\AppWrap[3].exe -> TrojanDropper.Agent.pb : Cleaned with backup
C:\Documents and Settings\Calvin\Local Settings\Temporary Internet Files\Content.IE5\AV6BKZEB\DrPMon[1].dll -> Adware.BetterInternet : Cleaned with backup
C:\Documents and Settings\Calvin\Local Settings\Temporary Internet Files\Content.IE5\SVLF2U6D\ActiveX[1].ocx -> Spyware.Look2Me : Cleaned with backup
C:\Documents and Settings\Calvin\Local Settings\Temporary Internet Files\Content.IE5\SVLF2U6D\AppWrap[1].exe -> TrojanDropper.Agent.pb : Cleaned with backup
C:\Documents and Settings\Calvin\Local Settings\Temporary Internet Files\Content.IE5\SVLF2U6D\AppWrap[2].exe -> TrojanDropper.Agent.pb : Cleaned with backup
C:\Documents and Settings\Calvin\Local Settings\Temporary Internet Files\Content.IE5\SVLF2U6D\AppWrap[3].exe -> TrojanDropper.Agent.pb : Cleaned with backup
C:\Documents and Settings\Calvin\Local Settings\Temporary Internet Files\Content.IE5\SVLF2U6D\AppWrap[4].exe -> TrojanDropper.Agent.pb : Cleaned with backup
:mozilla.14:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Burstnet : Cleaned with backup
:mozilla.15:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Burstnet : Cleaned with backup
:mozilla.16:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.24:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.25:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.26:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.27:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.28:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.29:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.30:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
:mozilla.34:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.35:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.41:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.42:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.43:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.44:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.45:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.46:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.48:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.57:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Overture : Cleaned with backup
:mozilla.58:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup
:mozilla.59:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup
:mozilla.60:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup
:mozilla.61:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup
:mozilla.62:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup
:mozilla.74:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.82:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.83:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.84:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.85:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.86:C:\Documents and Settings\Deathstrike\Application Data\Mozilla\Firefox\Profiles\default.40x\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
C:\Documents and Settings\Deathstrike\Cookies\deathstrike@2o7[2].txt -> Spyware.Cookie.2o7 : Cleaned with backup
C:\Documents and Settings\Deathstrike\Cookies\deathstrike@abetterinternet[1].txt -> Spyware.Cookie.Abetterinternet : Cleaned with backup
C:\Documents and Settings\Deathstrike\Cookies\[email protected][2].txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
C:\Documents and Settings\Deathstrike\Cookies\[email protected][2].txt -> Spyware.Cookie.Specificclick : Cleaned with backup
C:\Documents and Settings\Deathstrike\Cookies\[email protected][2].txt -> Spyware.Cookie.Addynamix : Cleaned with backup
C:\Documents and Settings\Deathstrike\Cookies\[email protected][2].txt -> Spyware.Cookie.Falkag : Cleaned with backup
C:\Documents and Settings\Deathstrike\Cookies\deathstrike@bluestreak[2].txt -> Spyware.Cookie.Bluestreak : Cleaned with backup
C:\Documents and Settings\Deathstrike\Cookies\deathstrike@casalemedia[2].txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
C:\Documents and Settings\Deathstrike\Cookies\[email protected][1].txt -> Spyware.Cookie.Ru4 : Cleaned with backup
C:\Documents and Settings\Deathstrike\Cookies\deathstrike@fastclick[1].txt -> Spyware.Cookie.Fastclick : Cleaned with backup
C:\Documents and Settings\Deathstrike\Cookies\[email protected][1].txt -> Spyware.Cookie.Overture : Cleaned with backup
C:\Documents and Settings\Deathstrike\Cookies\[email protected][2].txt -> Spyware.Cookie.Valuead : Cleaned with backup
C:\Documents and Settings\Deathstrike\Cookies\deathstrike@qksrv[2].txt -> Spyware.Cookie.Qksrv : Cleaned with backup
C:\Documents and Settings\Deathstrike\Cookies\deathstrike@questionmarket[1].txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
C:\Documents and Settings\Deathstrike\Cookies\deathstrike@revenue[1].txt -> Spyware.Cookie.Revenue : Cleaned with backup
C:\Documents and Settings\Deathstrike\Cookies\[email protected][1].txt -> Spyware.Cookie.Adjuggler : Cleaned with backup
C:\Documents and Settings\Deathstrike\Cookies\[email protected][1].txt -> Spyware.Cookie.Liveperson : Cleaned with backup
C:\Documents and Settings\Deathstrike\Cookies\deathstrike@serving-sys[2].txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
C:\Documents and Settings\Deathstrike\Cookies\deathstrike@trafficmp[2].txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
C:\Documents and Settings\Deathstrike\Cookies\deathstrike@tribalfusion[2].txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
C:\Documents and Settings\Deathstrike\Cookies\deathstrike@yieldmanager[1].txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
C:\Documents and Settings\Deathstrike\Cookies\[email protected][2].txt -> Spyware.Cookie.Adserver : Cleaned with backup
C:\Documents and Settings\Deathstrike\Local Settings\Temporary Internet Files\Content.IE5\CDAZWP2F\sp2[1].js -> TrojanDownloader.Cobase.d : Cleaned with backup
C:\Program Files\SurfSideKick 3\SskBho.dll -> Spyware.SurfSide : Cleaned with backup
C:\Program Files\SurfSideKick 3\SskCore.dll -> Spyware.SurfSide : Cleaned with backup
C:\WINDOWS\etb\__delete_on_reboot__nt_hide62.dll -> Spyware.EliteBar : Cleaned with backup
C:\WINDOWS\system32\AdCache -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_0_445800.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_0_445900.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_0_446000.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_503300.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_503300.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_503800.gif -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_504000.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_504000.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_504100.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_504100.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_505700.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_505700.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_512000.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_512000.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_514400.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_514400.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_515400.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_515400.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_517400.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_517400.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_518300.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_518300.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_520100.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_520100.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_520200.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_520200.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_520500.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_520500.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_522000.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_522000.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_523000.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_523000.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_523600.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_523600.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_524000.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_524000.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_526700.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_526700.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_529100.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_529100.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_529300.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_529300.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_530600.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_530600.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_531800.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_531800.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_532400.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_532400.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_534700.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_534700.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_535000.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_535000.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_537300.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_537300.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_541900.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_541900.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_554300.gif -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_558800.gif -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_559500.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_559500.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_560200.gif -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_560400.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_560400.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_560800.gif -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_561000.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_561200.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_561200.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_561500.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_561500.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_562700.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_562700.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_566200.gif -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_567900.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_567900.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_568300.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_568300.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_569200.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_569200.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_569900.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_569900.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_570100.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_570100.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_571100.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_571100.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_572700.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_572700.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_572900.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_572900.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_573100.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_573100.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_574200.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_574200.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_574700.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_574700.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_576900.gif -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_577000.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_577000.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_577800.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_577800.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_577900.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_577900.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_578100.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_578100.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_578500.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_578500.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_578700.gif -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_578700.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_578700.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_579700.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_579700.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_579800.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_579800.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_581500.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_581500.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_584700.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_584700.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_585200.gif -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_586000.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_586000.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_586100.gif -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_587500.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_587500.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_587600.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_587600.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_588400.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_588400.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_588800.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_588800.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_588900.gif -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_589300.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_589300.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_589500.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_589500.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_589700.gif -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_590100.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_590100.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_590200.gif -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_590200.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_590200.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_590300.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_590300.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_590500.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_590500.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_591000.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_591000.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_591600.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_591600.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_592300.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_592300.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_593100.gif -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_593800.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_593800.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_593900.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_593900.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_594700.gif -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_595700.gif -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_598200.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_598200.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_598700.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_598700.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_598800.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_598800.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_598900.gif -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_599300.gif -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_599800.gif -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_599900.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_599900.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_600100.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_600100.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_600200.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_600200.jpg -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_600500.gif -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_600600.gif -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_600900.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_600900.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_601300.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_601300.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_601800.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_601800.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_602100.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_602100.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_602200.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_602200.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_602400.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_602400.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_0_1_602700.h
  • 0

#8
Deathstrike

Deathstrike

    Member

  • Topic Starter
  • Member
  • PipPip
  • 22 posts
tm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_2_4_613700.jpg -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_2_4_623700.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_2_4_623700.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_2_4_623800.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_2_4_623800.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_2_4_625200.gif -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_2_4_625200.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_2_4_628200.gif -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_2_4_628200.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_2_4_631100.gif -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_2_4_631100.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_2_4_643200.gif -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_2_4_643200.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_2_4_644100.gif -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_2_4_644100.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_2_4_665100.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_2_4_667100.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_2_4_667100.swf -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_2_4_667600.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_2_4_674500.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_2_4_674500.jpg -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_2_4_685500.gif -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_2_4_685500.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_2_4_685600.gif -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_2_4_685600.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_2_4_701100.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_2_4_701100.jpg -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_2_4_701300.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_2_4_701300.jpg -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_2_4_701500.gif -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_2_4_701500.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_2_4_712600.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\AdCache\B_434_2_4_814200.htm -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\jvbltmge.dll -> Spyware.SafeSurfing : Cleaned with backup
C:\WINDOWS\system32\wulirhe.dll -> Spyware.PurityScan : Cleaned with backup
C:\WINDOWS\system32\__delete_on_reboot__aunps2.dll.tcf -> Spyware.Hijacker.Generic : Cleaned with backup
C:\WINDOWS\system32\__delete_on_reboot__drpmon.dll -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\__delete_on_reboot__e6f1873b.dll -> TrojanDownloader.Braidupdate.d : Cleaned with backup
C:\WINDOWS\system32\__delete_on_reboot__stlb2.dll -> TrojanDownloader.Braidupdate.d : Cleaned with backup
D:\Kenshin\StyleXP.v2.16.Female+Male.Incl.Keygen-ECLiPSE.rar/eclsxp21.exe -> TrojanDropper.Delf.fd : Error during cleaning


::Report End

Thanks for the help ^^
  • 0

#9
Rawe

Rawe

    Visiting Staff

  • Member
  • PipPipPipPipPipPipPip
  • 4,746 posts
See if you can delete this file;

D:\Kenshin\StyleXP.v2.16.Female+Male.Incl.Keygen-ECLiPSE.rar/eclsxp21.exe

Then do the following steps;

Run CleanUp! but don't reboot yet!

Please download WebRoot SpySweeper from HERE (It's a 2 week trial):
  • Click the Free Trial link on the right - next to "SpySweeper for Home Computers" to download the program.
  • Double-click the file to install it as follows:
  • Click "Next", read the agreement, Click "Next"
  • Choose "Custom" click "Next".
  • Leave the default installation directoy as it is, then click "Next".
  • UNcheck "Run SpySweeper at Windows Startup" and "Add Sweep for Spyware to Windows Explorer Context Menu". Click "Next".
  • On the following screen you can leave the e-mail address field blank, if you wish. Click "Next".
  • Finally, click "Install"
  • Once the program is installed, it will open.
  • It will prompt you to update to the latest definitions, click Yes.
Disable SpySweeper Shields
  • Click Shields on the left.
  • Click Internet Explorer and uncheck all items.
  • Click Windows System and uncheck all items.
  • Click Startup Programs and uncheck all items.
  • Once the definitions are installed and shields disabled, exit SpySweeper.
Next;

Disable System Restore;

1. Click Start > Programs > Accessories > Windows Explorer
2. Right-click My Computer, and then click Properties.
3. Click the System Restore tab.
4. Check the "Turn off System Restore"
5. Click Apply. An message shows up.
6. Click "Yes" to do this.
7. Confirm with "Ok".


Next, please reboot your computer in Safe Mode by doing the following:
1) Restart your computer
2) After hearing your computer beep once during startup, but before the Windows icon appears, press F8.
3) Instead of Windows loading as normal, a menu should appear
4) Select the first option, to run Windows in Safe Mode.


Once in Safe Mode -> Launch SpySweeper:
  • Click Sweep Now on the left side.
  • Click the Start button.
  • When it's done scanning, click the Next button.
  • Make sure everything has a check next to it, then click the Next button.
  • It will remove all of the items found.
  • Click Session Log in the upper right corner, copy everything in that window.
  • Click the Summary tab and click Finish.
  • Paste the contents of the session log you copied into your next reply.
Reboot into normal mode.

Post me a fresh HijackThis log along with the SpySweeper session log.

- Rawe :tazz:
  • 0

#10
Deathstrike

Deathstrike

    Member

  • Topic Starter
  • Member
  • PipPip
  • 22 posts
Sorry I couldn't respond sooner

Logfile of HijackThis v1.99.1
Scan saved at 12:24:02 AM, on 8/16/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
C:\Program Files\Sony\Photo Server 20\appsrv\PicAppSrv.exe
C:\Program Files\Common Files\Sony Shared\VAIO Media Platform\SV_Httpd.exe
C:\Program Files\Common Files\Sony Shared\VAIO Media Platform\UPnPFramework.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\LTSMMSG.exe
C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
C:\Program Files\QuickTime\qttask.exe
C:\WINDOWS\System32\rmctrl.exe
C:\WINDOWS\System32\ezSP_Px.exe
C:\Program Files\D-Tools\daemon.exe
C:\Program Files\Winamp\winampa.exe
C:\Program Files\TrojanHunter 4.2\THGuard.exe
C:\Program Files\Messenger\msmsgs.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\TGTSoft\StyleXP\StyleXP.exe
C:\Program Files\AIM PowerPlus\AIMP.exe
C:\Program Files\Sony\VAIO Action Setup\VAServ.exe
C:\WINDOWS\system32\wuauclt.exe
C:\HJT\HijackThis.exe

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = :0
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [SiSUSBRG] C:\WINDOWS\SiSUSBrg.exe
O4 - HKLM\..\Run: [LTSMMSG] LTSMMSG.exe
O4 - HKLM\..\Run: [CleanupProgram] C:\Sonysys\cleanup.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
O4 - HKLM\..\Run: [Messenger Plus] "C:\Program Files\Messenger Plus\messplus.exe" -silent
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [RemoteControl] C:\WINDOWS\System32\rmctrl.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [ezShieldProtector for Px] C:\WINDOWS\System32\ezSP_Px.exe
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [IMEKRMIG6.1] C:\WINDOWS\ime\imkr6_1\IMEKRMIG.EXE
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [DeadAIM] rundll32.exe "C:\Program Files\AIM\\DeadAIM.ocm",ExportedCheckODLs
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [THGuard] "C:\Program Files\TrojanHunter 4.2\THGuard.exe"
O4 - HKLM\..\Run: [DUDEZ CONFIG] "C:\Program Files\Dudez\dudez_config.exe" /autorun
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [STYLEXP] C:\Program Files\TGTSoft\StyleXP\StyleXP.exe -Hide
O4 - HKCU\..\Run: [AIM] "C:\Program Files\AIM+\AIM+.exe" -cnetwait.odl
O4 - HKCU\..\Run: [ProtoWall] C:\Program Files\Dudez\ProtoWall\ProtoWall.exe
O4 - HKCU\..\Run: [PowerPlus] "C:\Program Files\AIM PowerPlus\AIMP.exe"
O4 - Startup: HDD Temperature Pro.lnk = C:\Program Files\Palick Soft\HDD Temperature Pro\HDDTemperaturePro.exe
O4 - Startup: MemTurbo.lnk = C:\Program Files\Silicon Prairie Software\MemTurbo\memturbo.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: GetRight - Tray Icon.lnk = D:\Program Files\GetRight\getright.exe
O4 - Global Startup: VAIO Action Setup (Server).lnk = ?
O8 - Extra context menu item: &AIM Search - res://C:\Program Files\AIM Toolbar\AIMBar.dll/aimsearch.htm
O8 - Extra context menu item: Download with GetRight - D:\Program Files\GetRight\GRdownload.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Open with GetRight Browser - D:\Program Files\GetRight\GRbrowse.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\PROGRA~1\AIM\aim.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Broken Internet access because of LSP provider 'xfire_lsp_9028.dll' missing
O12 - Plugin for .avi: C:\Program Files\Opera7\PLUGINS\NPFgc2.dll
O12 - Plugin for .bmp: C:\Program Files\Opera7\PLUGINS\NPFgc1.dll
O12 - Plugin for .exe: C:\Program Files\Opera7\PLUGINS\NPFgc1.dll
O12 - Plugin for .lnk: C:\Program Files\Opera7\PLUGINS\NPFgc1.dll
O12 - Plugin for .mp3: C:\Program Files\Opera7\PLUGINS\NPFgc3.dll
O12 - Plugin for .rar: C:\Program Files\Opera7\PLUGINS\NPFgc1.dll
O12 - Plugin for .zip: C:\Program Files\Opera7\PLUGINS\NPFgc1.dll
O16 - DPF: {01118400-3E00-11D2-8470-0060089874ED} (SdcNetCheckCtl Class) - http://activex.micro...jects/ocget.dll
O16 - DPF: {4208FB4D-4E53-4F5A-BF7A-3E047DDB5281} - http://www.icannnews.../ST/ActiveX.ocx
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai...all/xscan53.cab
O16 - DPF: {FA3662C3-B8E8-11D6-A667-0010B556D978} (IWinAmpActiveX Class) - http://cdn.digitalci...illama/ampx.cab
O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: HDD Temperature (HDDTService) - Unknown owner - C:\Program Files\Palick Soft\HDD Temperature Pro\HDDTsvc.exe (file missing)
O23 - Service: Macromedia Licensing Service - Macromedia - C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe
O23 - Service: NVIDIA Display Driver Service (Omega 1.5303) (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\PROGRA~1\COMMON~1\SONYSH~1\AVLib\Sptisrv.exe
O23 - Service: StyleXPService - Unknown owner - C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
O23 - Service: Webroot Spy Sweeper Engine (svcWRSSSDK) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
O23 - Service: VAIO Media Music Server (Application) (VAIOMediaPlatform-MusicServer-AppServer) - Unknown owner - C:\Program Files\Sony\VAIO Media Music Server\SSSvr.exe" /Service=VAIOMediaPlatform-MusicServer-AppServer /DisplayName="VAIO Media Music Server (Application) (file missing)
O23 - Service: VAIO Media Music Server (HTTP) (VAIOMediaPlatform-MusicServer-HTTP) - Unknown owner - C:\Program Files\Common Files\Sony Shared\VAIO Media Platform\sv_httpd.exe" /Service=VAIOMediaPlatform-MusicServer-HTTP /RegRoot="Software\Sony Corporation\VAIO Media Platform\2.0" /RegExt="Applications\MusicServer\HTTP (file missing)
O23 - Service: VAIO Media Music Server (UPnP) (VAIOMediaPlatform-MusicServer-UPnP) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Media Platform\UPnPFramework.exe
O23 - Service: VAIO Media Photo Server (Application) (VAIOMediaPlatform-PhotoServer-AppServer) - Unknown owner - C:\Program Files\Sony\Photo Server 20\appsrv\PicAppSrv.exe
O23 - Service: VAIO Media Photo Server (HTTP) (VAIOMediaPlatform-PhotoServer-HTTP) - Unknown owner - C:\Program Files\Common Files\Sony Shared\VAIO Media Platform\SV_Httpd.exe" /Service=VAIOMediaPlatform-PhotoServer-HTTP /RegRoot="Software\Sony Corporation\VAIO Media Platform\2.0" /RegExt="\Applications\PhotoServer\HTTP (file missing)
O23 - Service: VAIO Media Photo Server (UPnP) (VAIOMediaPlatform-PhotoServer-UPnP) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Media Platform\UPnPFramework.exe

********
11:47 PM: |··· Start of Session, Monday, August 15, 2005 ···|
11:47 PM: Spy Sweeper started
11:47 PM: Sweep initiated using definitions version 517
11:47 PM: Starting Memory Sweep
11:48 PM: Memory Sweep Complete, Elapsed Time: 00:01:01
11:49 PM: Starting Registry Sweep
11:49 PM: Found Adware: begin2search
11:49 PM: HKCR\btnetw.amo.1\ (3 subtraces) (ID = 104095)
11:49 PM: Found Adware: hotsearchbar toolbar
11:49 PM: HKCR\btnetw.amo\ (5 subtraces) (ID = 104096)
11:49 PM: HKCR\btnetw.amo\ (5 subtraces) (ID = 104096)
11:49 PM: HKCR\btnetw.iiittt.1\ (3 subtraces) (ID = 104097)
11:49 PM: HKCR\btnetw.iiittt\ (5 subtraces) (ID = 104098)
11:49 PM: HKCR\btnetw.iiittt\ (5 subtraces) (ID = 104098)
11:49 PM: HKCR\btnetw.momo.1\ (3 subtraces) (ID = 104099)
11:49 PM: HKCR\btnetw.momo\ (5 subtraces) (ID = 104100)
11:49 PM: HKCR\btnetw.momo\ (5 subtraces) (ID = 104100)
11:49 PM: HKCR\btnetw.ohb.1\ (3 subtraces) (ID = 104101)
11:49 PM: HKCR\btnetw.ohb\ (5 subtraces) (ID = 104102)
11:49 PM: HKCR\btnetw.ohb\ (5 subtraces) (ID = 104102)
11:49 PM: HKCR\clsid\{9ade0443-2ab2-4b23-a3f8-ac520773de12}\ (11 subtraces) (ID = 104109)
11:49 PM: HKCR\clsid\{9ade0443-2ab2-4b23-a3f8-ac520773de12}\ (11 subtraces) (ID = 104109)
11:49 PM: HKCR\clsid\{bc54b24c-5a97-4c19-9181-8b8a05b2e931}\ (11 subtraces) (ID = 104118)
11:49 PM: HKCR\clsid\{bc54b24c-5a97-4c19-9181-8b8a05b2e931}\ (11 subtraces) (ID = 104118)
11:49 PM: HKCR\clsid\{bd9584ef-c28c-4f6d-8d49-0cee3c0e442f}\ (22 subtraces) (ID = 104119)
11:49 PM: HKCR\clsid\{bd9584ef-c28c-4f6d-8d49-0cee3c0e442f}\ (22 subtraces) (ID = 104119)
11:49 PM: HKCR\clsid\{c7888681-1a83-4c14-b9a5-95f91240b44f}\ (11 subtraces) (ID = 104120)
11:49 PM: HKCR\clsid\{c7888681-1a83-4c14-b9a5-95f91240b44f}\ (11 subtraces) (ID = 104120)
11:49 PM: HKCR\interface\{6b882c34-a832-4f5b-bef1-7e198be3f094}\ (8 subtraces) (ID = 104124)
11:49 PM: HKCR\interface\{9b6b4031-1d6d-4c65-acba-021916853822}\ (8 subtraces) (ID = 104126)
11:49 PM: HKCR\interface\{9ff60a27-0c0c-4a6a-a15f-b21b644d67bb}\ (8 subtraces) (ID = 104127)
11:49 PM: HKCR\interface\{15d53b86-e055-43b1-bbee-a91a0f37bd2a}\ (8 subtraces) (ID = 104128)
11:49 PM: HKCR\interface\{f3c41c1d-22f1-4692-8a7a-88de70a2e9e2}\ (8 subtraces) (ID = 104139)
11:49 PM: HKCR\interface\{fa6fa7a5-2c49-4567-ba74-6dd1c36099ee}\ (8 subtraces) (ID = 104141)
11:49 PM: HKLM\software\classes\btnetw.amo.1\ (3 subtraces) (ID = 104145)
11:49 PM: HKLM\software\classes\btnetw.amo\ (5 subtraces) (ID = 104146)
11:49 PM: HKLM\software\classes\btnetw.amo\ (5 subtraces) (ID = 104146)
11:49 PM: HKLM\software\classes\btnetw.iiittt.1\ (3 subtraces) (ID = 104147)
11:49 PM: HKLM\software\classes\btnetw.iiittt\ (5 subtraces) (ID = 104148)
11:49 PM: HKLM\software\classes\btnetw.iiittt\ (5 subtraces) (ID = 104148)
11:49 PM: HKLM\software\classes\btnetw.momo.1\ (3 subtraces) (ID = 104149)
11:49 PM: HKLM\software\classes\btnetw.momo\ (5 subtraces) (ID = 104150)
11:49 PM: HKLM\software\classes\btnetw.momo\ (5 subtraces) (ID = 104150)
11:49 PM: HKLM\software\classes\btnetw.ohb.1\ (3 subtraces) (ID = 104151)
11:49 PM: HKLM\software\classes\btnetw.ohb\ (5 subtraces) (ID = 104152)
11:49 PM: HKLM\software\classes\btnetw.ohb\ (5 subtraces) (ID = 104152)
11:49 PM: HKLM\software\classes\clsid\{9ade0443-2ab2-4b23-a3f8-ac520773de12}\ (11 subtraces) (ID = 104159)
11:49 PM: HKLM\software\classes\clsid\{9ade0443-2ab2-4b23-a3f8-ac520773de12}\ (11 subtraces) (ID = 104159)
11:49 PM: HKLM\software\classes\clsid\{bc54b24c-5a97-4c19-9181-8b8a05b2e931}\ (11 subtraces) (ID = 104168)
11:49 PM: HKLM\software\classes\clsid\{bc54b24c-5a97-4c19-9181-8b8a05b2e931}\ (11 subtraces) (ID = 104168)
11:49 PM: HKLM\software\classes\clsid\{bd9584ef-c28c-4f6d-8d49-0cee3c0e442f}\ (22 subtraces) (ID = 104169)
11:49 PM: HKLM\software\classes\clsid\{bd9584ef-c28c-4f6d-8d49-0cee3c0e442f}\ (22 subtraces) (ID = 104169)
11:49 PM: HKLM\software\classes\clsid\{c7888681-1a83-4c14-b9a5-95f91240b44f}\ (11 subtraces) (ID = 104170)
11:49 PM: HKLM\software\classes\clsid\{c7888681-1a83-4c14-b9a5-95f91240b44f}\ (11 subtraces) (ID = 104170)
11:49 PM: HKLM\software\classes\interface\{6b882c34-a832-4f5b-bef1-7e198be3f094}\ (8 subtraces) (ID = 104174)
11:49 PM: HKLM\software\classes\interface\{9b6b4031-1d6d-4c65-acba-021916853822}\ (8 subtraces) (ID = 104176)
11:49 PM: HKLM\software\classes\interface\{9ff60a27-0c0c-4a6a-a15f-b21b644d67bb}\ (8 subtraces) (ID = 104177)
11:49 PM: HKLM\software\classes\interface\{15d53b86-e055-43b1-bbee-a91a0f37bd2a}\ (8 subtraces) (ID = 104178)
11:49 PM: HKLM\software\classes\interface\{f3c41c1d-22f1-4692-8a7a-88de70a2e9e2}\ (8 subtraces) (ID = 104189)
11:49 PM: HKLM\software\classes\interface\{fa6fa7a5-2c49-4567-ba74-6dd1c36099ee}\ (8 subtraces) (ID = 104191)
11:49 PM: HKLM\software\classes\typelib\{bf56be6a-0aea-45f3-8b10-7312876584a8}\ (9 subtraces) (ID = 104195)
11:49 PM: HKLM\software\classes\typelib\{bf56be6a-0aea-45f3-8b10-7312876584a8}\ (9 subtraces) (ID = 104195)
11:49 PM: HKCR\typelib\{bf56be6a-0aea-45f3-8b10-7312876584a8}\ (9 subtraces) (ID = 104238)
11:49 PM: HKCR\typelib\{bf56be6a-0aea-45f3-8b10-7312876584a8}\ (9 subtraces) (ID = 104238)
11:49 PM: Found Adware: browseraid
11:49 PM: HKU\S-1-5-21-2587936551-2409960447-1819486551-1007\software\a70f6a1d-0195-42a2-934c-d8ac0f7c08eb\ (1 subtraces) (ID = 105078)
11:49 PM: HKU\WRSS_Profile_S-1-5-21-2587936551-2409960447-1819486551-1006\software\a70f6a1d-0195-42a2-934c-d8ac0f7c08eb\ (1 subtraces) (ID = 105078)
11:49 PM: HKCR\_atl_generated.searchtoolbarbho.1\ (3 subtraces) (ID = 105199)
11:49 PM: HKCR\_atl_generated.searchtoolbarname.1\ (3 subtraces) (ID = 105201)
11:49 PM: Found Adware: cas
11:49 PM: HKCR\clsid\{8293d547-38dd-4325-b35a-f1817edfa5fc}\ (11 subtraces) (ID = 105365)
11:49 PM: HKCR\typelib\{d4c89c18-b4f3-46a9-8800-e9e7a55afbd9}\ (9 subtraces) (ID = 105366)
11:49 PM: HKLM\software\classes\clsid\{8293d547-38dd-4325-b35a-f1817edfa5fc}\ (11 subtraces) (ID = 105368)
11:49 PM: HKLM\software\classes\typelib\{d4c89c18-b4f3-46a9-8800-e9e7a55afbd9}\ (9 subtraces) (ID = 105369)
11:49 PM: Found Adware: clearsearch
11:49 PM: HKU\S-1-5-21-2587936551-2409960447-1819486551-1007\software\microsoft\internet explorer\new windows\allow\ || 69.28.210.175 (ID = 105744)
11:49 PM: HKU\WRSS_Profile_S-1-5-21-2587936551-2409960447-1819486551-1006\software\microsoft\internet explorer\new windows\allow\ || 69.28.210.175 (ID = 105744)
11:49 PM: Found Adware: cws_ns3
11:49 PM: HKU\WRSS_Profile_S-1-5-21-2587936551-2409960447-1819486551-1006\software\microsoft\internet explorer\toolbar\shellbrowser\ || {0e1230f8-ea50-42a9-983c-d22abc2eed3b} (ID = 121295)
11:49 PM: HKU\WRSS_Profile_S-1-5-21-2587936551-2409960447-1819486551-1006\software\microsoft\internet explorer\toolbar\webbrowser\ || {0e1230f8-ea50-42a9-983c-d22abc2eed3b} (ID = 121296)
11:49 PM: HKLM\software\microsoft\windows\currentversion\shareddlls\ || c:\windows\downloaded program files\webdlg32.dll (ID = 123378)
11:49 PM: Found Adware: e2g
11:49 PM: HKCR\appid\iebhos.dll\ (1 subtraces) (ID = 125406)
11:49 PM: HKCR\appid\{3b99f202-145a-4e5a-ac7b-88a36910bf5e}\ (1 subtraces) (ID = 125407)
11:49 PM: HKCR\iebhos.control.1\ (3 subtraces) (ID = 125444)
11:49 PM: HKLM\software\classes\appid\iebhos.dll\ (1 subtraces) (ID = 125446)
11:49 PM: HKLM\software\classes\appid\{3b99f202-145a-4e5a-ac7b-88a36910bf5e}\ (1 subtraces) (ID = 125447)
11:49 PM: HKLM\software\classes\iebhos.control.1\ (3 subtraces) (ID = 125482)
11:49 PM: HKLM\software\classes\typelib\{3b99f202-145a-4e5a-ac7b-88a36910bf5e}\ (9 subtraces) (ID = 125484)
11:49 PM: HKLM\software\e2g\ (12 subtraces) (ID = 125485)
11:49 PM: HKLM\software\e2g\ || source (ID = 125486)
11:49 PM: HKLM\software\microsoft\windows\currentversion\uninstall\e2g plugin\ (5 subtraces) (ID = 125522)
11:49 PM: HKU\S-1-5-21-2587936551-2409960447-1819486551-1007\software\ptech\ (7 subtraces) (ID = 125528)
11:49 PM: HKCR\typelib\{3b99f202-145a-4e5a-ac7b-88a36910bf5e}\ (9 subtraces) (ID = 125529)
11:49 PM: Found Adware: elitebar
11:49 PM: HKLM\software\microsoft\windows\currentversion\internet settings\user agent\post platform\ || iebar (ID = 125752)
11:49 PM: Found Adware: elitebar searchmiracle hijacker
11:49 PM: HKU\WRSS_Profile_S-1-5-21-2587936551-2409960447-1819486551-1006\software\microsoft\internet explorer\ || searchurl (ID = 125775)
11:49 PM: HKU\WRSS_Profile_S-1-5-21-2587936551-2409960447-1819486551-1006\software\microsoft\internet explorer\search\ || searchassistant (ID = 125779)
11:49 PM: Found Adware: ez-finder toolbar
11:49 PM: HKCR\clsid\{0e1230f8-ea50-42a9-983c-d22abc2eed3b}\ (11 subtraces) (ID = 125903)
11:49 PM: Found Adware: start4search toolbar
11:49 PM: HKCR\clsid\{0e1230f8-ea50-42a9-983c-d22abc2eed3b}\ (11 subtraces) (ID = 125903)
11:49 PM: Found Adware: iwantsearch
11:49 PM: HKCR\clsid\{0e1230f8-ea50-42a9-983c-d22abc2eed3b}\ (11 subtraces) (ID = 125903)
11:49 PM: HKLM\software\classes\clsid\{0e1230f8-ea50-42a9-983c-d22abc2eed3b}\ (11 subtraces) (ID = 125905)
11:49 PM: HKLM\software\classes\clsid\{0e1230f8-ea50-42a9-983c-d22abc2eed3b}\ (11 subtraces) (ID = 125905)
11:49 PM: HKLM\software\classes\clsid\{0e1230f8-ea50-42a9-983c-d22abc2eed3b}\ (11 subtraces) (ID = 125905)
11:49 PM: Found Adware: ezula ilookup
11:49 PM: HKCR\ezulaagent.ezulactrlhost.1\ (3 subtraces) (ID = 126152)
11:49 PM: HKCR\ezulaagent.ieobject.1\ (3 subtraces) (ID = 126154)
11:49 PM: HKCR\ezulaagent.plugprot.1\ (3 subtraces) (ID = 126156)
11:49 PM: HKCR\ezulaagent.toolbarband.1\ (3 subtraces) (ID = 126158)
11:49 PM: HKCR\ezulabootexe.installctrl.1\ (3 subtraces) (ID = 126162)
11:49 PM: HKCR\ezulafsearcheng.ezulacode.1\ (3 subtraces) (ID = 126164)
11:49 PM: HKCR\ezulafsearcheng.ezulahash.1\ (3 subtraces) (ID = 126166)
11:49 PM: HKCR\ezulafsearcheng.ezulasearch.1\ (3 subtraces) (ID = 126168)
11:49 PM: HKCR\ezulafsearcheng.popupdisplay.1\ (3 subtraces) (ID = 126170)
11:49 PM: HKCR\ezulafsearcheng.resulthelper.1\ (3 subtraces) (ID = 126172)
11:49 PM: HKCR\ezulafsearcheng.searchhelper.1\ (3 subtraces) (ID = 126174)
11:49 PM: HKCR\ezulamain.ezulapopsearchpipe.1\ (3 subtraces) (ID = 126176)
11:49 PM: HKCR\ezulamain.ezulasearchpipe.1\ (3 subtraces) (ID = 126178)
11:49 PM: HKCR\ezulamain.trayiconm.1\ (3 subtraces) (ID = 126180)
11:49 PM: HKLM\software\classes\atlbrcon.atlbrcon.1\ (3 subtraces) (ID = 126213)
11:49 PM: Found Adware: drsnsrch.com hijack
11:49 PM: HKU\S-1-5-21-2587936551-2409960447-1819486551-1007\software\microsoft\search assistant\ || defaultsearchurl (ID = 128205)
11:49 PM: HKU\WRSS_Profile_S-1-5-21-2587936551-2409960447-1819486551-1006\software\microsoft\search assistant\ || defaultsearchurl (ID = 128205)
11:49 PM: HKU\WRSS_Profile_S-1-5-21-2587936551-2409960447-1819486551-1006\software\microsoft\internet explorer\main\ || search bar (ID = 128206)
11:49 PM: HKU\WRSS_Profile_S-1-5-21-2587936551-2409960447-1819486551-1006\software\microsoft\internet explorer\main\ || search page (ID = 128207)
11:49 PM: HKU\WRSS_Profile_S-1-5-21-2587936551-2409960447-1819486551-1006\software\microsoft\internet explorer\searchurl\ (2 subtraces) (ID = 128212)
11:49 PM: Found Adware: internetoptimizer
11:49 PM: HKLM\software\microsoft\windows\currentversion\uninstall\rotue\ (ID = 128925)
11:49 PM: HKCR\toolband.startbho.1\ (3 subtraces) (ID = 129198)
11:49 PM: Found Adware: mysearchnow hijacker
11:49 PM: HKU\WRSS_Profile_S-1-5-21-2587936551-2409960447-1819486551-1005.bak\software\microsoft\internet explorer\main\ || search page (ID = 134060)
11:49 PM: HKU\WRSS_Profile_S-1-5-21-2587936551-2409960447-1819486551-1005.bak\software\microsoft\internet explorer\main\ || search bar (ID = 134062)
11:49 PM: Found Adware: moneytree
11:49 PM: HKCR\dyfuca_bh.bhobj.1\ (3 subtraces) (ID = 135175)
11:49 PM: HKCR\dyfuca_bh.sinkobj.1\ (3 subtraces) (ID = 135177)
11:49 PM: Found Adware: 180search assistant/zango
11:49 PM: HKU\WRSS_Profile_S-1-5-21-2587936551-2409960447-1819486551-501\software\saap\ (16 subtraces) (ID = 135784)
11:49 PM: Found Adware: parisvoyeur dialer
11:49 PM: HKU\S-1-5-21-2587936551-2409960447-1819486551-1007\software\montorgueil\ (18 subtraces) (ID = 136568)
11:49 PM: Found Adware: redzip toolbar
11:49 PM: HKU\S-1-5-21-2587936551-2409960447-1819486551-1007\software\microsoft\windows\currentversion\explorer\ || insid (ID = 139328)
11:49 PM: Found Adware: searchtoolbar
11:49 PM: HKU\WRSS_Profile_S-1-5-21-2587936551-2409960447-1819486551-501\software\{12ee7a5e-0674-42f9-a76b-000000004d00}\ (3 subtraces) (ID = 141347)
11:49 PM: Found Adware: shopathomeselect
11:49 PM: HKLM\software\winsock2\layered provider sample\ (ID = 141736)
11:49 PM: Found Adware: bho_sidefind
11:49 PM: HKU\S-1-5-21-2587936551-2409960447-1819486551-1007\software\microsoft\internet explorer\extensions\cmdmapping\ || {10e42047-deb9-4535-a118-b3f6ec39b807} (ID = 141778)
11:49 PM: Found Adware: stumbleupon
11:49 PM: HKCR\toolband.toolbandobj.1\ (3 subtraces) (ID = 143002)
11:49 PM: Found Adware: zeropopup
11:49 PM: HKCR\toolband.toolbandobj.1\ (3 subtraces) (ID = 143002)
11:49 PM: Found Adware: surfsidekick
11:49 PM: HKCR\clsid\{02ee5b04-f144-47bb-83fb-a60bd91b74a9}\ (3 subtraces) (ID = 143389)
11:49 PM: HKLM\software\classes\clsid\{02ee5b04-f144-47bb-83fb-a60bd91b74a9}\ (3 subtraces) (ID = 143392)
11:49 PM: HKU\WRSS_Profile_S-1-5-21-2587936551-2409960447-1819486551-1006\software\microsoft\internet explorer\urlsearchhooks\ || {02ee5b04-f144-47bb-83fb-a60bd91b74a9} (ID = 143397)
11:49 PM: HKLM\software\microsoft\internet explorer\urlsearchhooks\ || {02ee5b04-f144-47bb-83fb-a60bd91b74a9} (ID = 143400)
11:49 PM: HKU\WRSS_Profile_S-1-5-21-2587936551-2409960447-1819486551-1006\software\microsoft\windows\currentversion\run\ || surfsidekick 3 (ID = 143403)
11:49 PM: HKU\S-1-5-21-2587936551-2409960447-1819486551-1007\software\surfsidekick3\ (3 subtraces) (ID = 143412)
11:49 PM: HKU\WRSS_Profile_S-1-5-21-2587936551-2409960447-1819486551-1006\software\surfsidekick3\ (3 subtraces) (ID = 143412)
11:49 PM: HKLM\software\surfsidekick3\ (2 subtraces) (ID = 143413)
11:49 PM: Found Adware: visfx
11:49 PM: HKLM\software\microsoft\windows\currentversion\uninstall\visfx\ (2 subtraces) (ID = 145734)
11:49 PM: HKLM\system\currentcontrolset\services\windows visfx components\ (12 subtraces) (ID = 145735)
11:49 PM: Found Adware: abetterinternet
11:49 PM: HKLM\software\microsoft\windows\currentversion\uninstall\abi-1\ (6 subtraces) (ID = 146117)
11:49 PM: HKLM\system\currentcontrolset\services\svcproc\ (12 subtraces) (ID = 146140)
11:49 PM: Found Adware: winactive
11:49 PM: HKU\WRSS_Profile_S-1-5-21-2587936551-2409960447-1819486551-1005.bak\software\winactive\ (4 subtraces) (ID = 147148)
11:49 PM: Found Adware: yoursitebar
11:49 PM: HKLM\software\microsoft\code store database\distribution units\{42f2c9ba-614f-47c0-b3e3-ecfd34eed658}\ (10 subtraces) (ID = 147850)
11:49 PM: HKU\S-1-5-21-2587936551-2409960447-1819486551-1007\software\microsoft\internet explorer\toolbar\webbrowser\ || {86227d9c-0efe-4f8a-aa55-30386a3f5686} (ID = 147853)
11:49 PM: HKLM\software\microsoft\windows\currentversion\moduleusage\c:/windows/downloaded program files/ysbactivex.dll\ (2 subtraces) (ID = 147854)
11:49 PM: HKLM\software\microsoft\windows\currentversion\shareddlls\ || c:\windows\downloaded program files\ysbactivex.dll (ID = 147857)
11:49 PM: Found Adware: icannnews
11:49 PM: HKCR\activexctrl\ (3 subtraces) (ID = 169450)
11:49 PM: HKCR\clsid\{3bfadce2-1141-4b81-8878-49af625f0fdc}\ (3 subtraces) (ID = 169451)
11:49 PM: HKCR\clsid\{4208fb4d-4e53-4f5a-bf7a-3e047ddb5281}\ (21 subtraces) (ID = 169452)
11:49 PM: HKCR\interface\{980ad470-04ea-4d1d-bd26-e178b7bda6d8}\ (8 subtraces) (ID = 169454)
11:49 PM: HKCR\interface\{fd39937a-c583-4aac-9332-8a3e44988a67}\ (8 subtraces) (ID = 169455)
11:49 PM: HKCR\typelib\{ee5ac3d6-6f43-4047-af0a-d66fc2cf8f42}\ (9 subtraces) (ID = 169456)
11:49 PM: HKLM\software\classes\activexctrl\ (3 subtraces) (ID = 169457)
11:49 PM: HKLM\software\classes\clsid\{3bfadce2-1141-4b81-8878-49af625f0fdc}\ (3 subtraces) (ID = 169458)
11:49 PM: HKLM\software\classes\clsid\{4208fb4d-4e53-4f5a-bf7a-3e047ddb5281}\ (21 subtraces) (ID = 169459)
11:49 PM: HKLM\software\classes\interface\{980ad470-04ea-4d1d-bd26-e178b7bda6d8}\ (8 subtraces) (ID = 169461)
11:49 PM: HKLM\software\classes\interface\{fd39937a-c583-4aac-9332-8a3e44988a67}\ (8 subtraces) (ID = 169462)
11:49 PM: HKLM\software\classes\typelib\{ee5ac3d6-6f43-4047-af0a-d66fc2cf8f42}\ (9 subtraces) (ID = 169463)
11:49 PM: Found Adware: shopnavupdater
11:49 PM: HKCR\clsid\{00027925-0017-4faf-9539-90e4ac0b9ec5}\ (11 subtraces) (ID = 359486)
11:49 PM: HKCR\clsid\{5e0910c6-9e45-481c-a2ec-0ec29c96ebeb}\ (11 subtraces) (ID = 359487)
11:49 PM: HKCR\clsid\{8f7d96aa-489a-4194-ab34-21ef42507932}\ (13 subtraces) (ID = 359488)
11:49 PM: HKCR\clsid\{79406f24-8e95-4af8-9fef-2ea2b504e707}\ (13 subtraces) (ID = 359489)
11:49 PM: HKCR\clsid\{b424e2aa-4466-41ca-8194-5a83995a9b15}\ (11 subtraces) (ID = 359490)
11:49 PM: HKCR\snb.band\ (5 subtraces) (ID = 359491)
11:49 PM: HKCR\sntb.bottomframe\ (5 subtraces) (ID = 359492)
11:49 PM: HKCR\sntb.leftframe\ (5 subtraces) (ID = 359493)
11:49 PM: HKCR\sntb.popupbrowser\ (5 subtraces) (ID = 359494)
11:49 PM: HKCR\sntb.popupwindow\ (5 subtraces) (ID = 359495)
11:49 PM: HKLM\software\classes\clsid\{00027925-0017-4faf-9539-90e4ac0b9ec5}\ (11 subtraces) (ID = 359496)
11:49 PM: HKLM\software\classes\clsid\{5e0910c6-9e45-481c-a2ec-0ec29c96ebeb}\ (11 subtraces) (ID = 359497)
11:49 PM: HKLM\software\classes\clsid\{8f7d96aa-489a-4194-ab34-21ef42507932}\ (13 subtraces) (ID = 359498)
11:49 PM: HKLM\software\classes\clsid\{79406f24-8e95-4af8-9fef-2ea2b504e707}\ (13 subtraces) (ID = 359499)
11:49 PM: HKLM\software\classes\clsid\{b424e2aa-4466-41ca-8194-5a83995a9b15}\ (11 subtraces) (ID = 359500)
11:49 PM: HKLM\software\classes\snb.band\ (5 subtraces) (ID = 359501)
11:49 PM: HKLM\software\classes\sntb.bottomframe\ (5 subtraces) (ID = 359502)
11:49 PM: HKLM\software\classes\sntb.leftframe\ (5 subtraces) (ID = 359503)
11:49 PM: HKLM\software\classes\sntb.popupbrowser.1\ (3 subtraces) (ID = 359504)
11:49 PM: HKLM\software\classes\sntb.popupbrowser\ (5 subtraces) (ID = 359505)
11:49 PM: HKLM\software\classes\sntb.popupwindow.1\ (3 subtraces) (ID = 359506)
11:49 PM: HKLM\software\classes\sntb.popupwindow\ (5 subtraces) (ID = 359507)
11:49 PM: HKLM\software\classes\typelib\{46bd3f46-6e46-43d2-a69d-fd8c05044475}\ (9 subtraces) (ID = 359508)
11:49 PM: HKCR\typelib\{46bd3f46-6e46-43d2-a69d-fd8c05044475}\ (9 subtraces) (ID = 359513)
11:49 PM: HKCR\aurorahandlerdll.aurorahandlerdllobj\ (5 subtraces) (ID = 359578)
11:49 PM: HKCR\aurorahandlerdll.aurorahandlerdllobj.1\ (3 subtraces) (ID = 359584)
11:49 PM: HKCR\clsid\{4aa870ac-8427-42a4-b92e-ecd956197489}\ (11 subtraces) (ID = 359588)
11:49 PM: HKLM\software\classes\aurorahandlerdll.aurorahandlerdllobj\ (5 subtraces) (ID = 359725)
11:49 PM: HKLM\software\classes\aurorahandlerdll.aurorahandlerdllobj.1\ (3 subtraces) (ID = 359731)
11:49 PM: HKLM\software\classes\clsid\{4aa870ac-8427-42a4-b92e-ecd956197489}\ (11 subtraces) (ID = 359735)
11:49 PM: HKLM\software\classes\typelib\{6d992911-b563-47fc-ab29-437f42d1c729}\ (9 subtraces) (ID = 359756)
11:49 PM: HKCR\aurorahandlerdll.aurorahandlerdllobj\ (5 subtraces) (ID = 360169)
11:49 PM: HKCR\clsid\{4aa870ac-8427-42a4-b92e-ecd956197489}\ (11 subtraces) (ID = 360170)
11:49 PM: HKU\S-1-5-21-2587936551-2409960447-1819486551-1007\software\aurorahandler\ (22 subtraces) (ID = 360172)
11:49 PM: HKU\WRSS_Profile_S-1-5-21-2587936551-2409960447-1819486551-1006\software\aurorahandler\ (22 subtraces) (ID = 360172)
11:49 PM: HKU\WRSS_Profile_S-1-5-21-2587936551-2409960447-1819486551-501\software\aurorahandler\ (20 subtraces) (ID = 360172)
11:49 PM: HKU\S-1-5-21-2587936551-2409960447-1819486551-1007\software\aurora\ (28 subtraces) (ID = 360174)
11:49 PM: HKU\WRSS_Profile_S-1-5-21-2587936551-2409960447-1819486551-1006\software\aurora\ (27 subtraces) (ID = 360174)
11:49 PM: HKU\WRSS_Profile_S-1-5-21-2587936551-2409960447-1819486551-501\software\aurora\ (26 subtraces) (ID = 360174)
11:49 PM: HKU\S-1-5-21-2587936551-2409960447-1819486551-1007\software\cmapp\ (12 subtraces) (ID = 381792)
11:49 PM: HKU\S-1-5-21-2587936551-2409960447-1819486551-1007\software\microsoft\windows\currentversion\run\ || cmapp (ID = 381808)
11:49 PM: HKCR\ezulaagent.ezulactrlhost.1\ (3 subtraces) (ID = 385965)
11:49 PM: HKCR\ezulaagent.ezulactrlhost.1\clsid\ (1 subtraces) (ID = 385967)
11:49 PM: HKCR\ezulaagent.ieobject.1\ (3 subtraces) (ID = 385975)
11:49 PM: HKCR\ezulaagent.ieobject.1\clsid\ (1 subtraces) (ID = 385977)
11:49 PM: HKCR\ezulaagent.plugprot.1\ (3 subtraces) (ID = 385985)
11:49 PM: HKCR\ezulaagent.plugprot.1\clsid\ (1 subtraces) (ID = 385987)
11:49 PM: HKCR\ezulamain.ezulasearchpipe.1\ (3 subtraces) (ID = 386065)
11:49 PM: HKCR\ezulamain.ezulasearchpipe.1\clsid\ (1 subtraces) (ID = 386067)
11:49 PM: HKLM\software\classes\ezulaagent.ezulactrlhost.1\ (3 subtraces) (ID = 386905)
11:49 PM: HKLM\software\classes\ezulaagent.ezulactrlhost.1\clsid\ (1 subtraces) (ID = 386907)
11:49 PM: HKLM\software\classes\ezulafsearcheng.ezulahash.1\ (3 subtraces) (ID = 386955)
11:49 PM: HKLM\software\classes\ezulafsearcheng.ezulahash.1\clsid\ (1 subtraces) (ID = 386957)
11:49 PM: HKLM\software\classes\ezulafsearcheng.ezulasearch.1\ (3 subtraces) (ID = 386965)
11:49 PM: HKLM\software\classes\ezulafsearcheng.ezulasearch.1\clsid\ (1 subtraces) (ID = 386967)
11:49 PM: HKLM\software\classes\ezulafsearcheng.resulthelper.1\ (3 subtraces) (ID = 386985)
11:49 PM: HKLM\software\classes\ezulafsearcheng.searchhelper.1\ (3 subtraces) (ID = 386995)
11:49 PM: HKLM\software\classes\ezulamain.trayiconm.1\ (3 subtraces) (ID = 387015)
11:49 PM: HKCR\ezulafsearcheng.ezulahash.1\ (3 subtraces) (ID = 466528)
11:49 PM: HKCR\ezulafsearcheng.ezulahash.1\clsid\ (1 subtraces) (ID = 466530)
11:49 PM: HKCR\ezulafsearcheng.ezulasearch.1\ (3 subtraces) (ID = 466538)
11:49 PM: HKCR\ezulafsearcheng.ezulasearch.1\clsid\ (1 subtraces) (ID = 466540)
11:49 PM: HKCR\ezulafsearcheng.ezulacode.1\ (3 subtraces) (ID = 466560)
11:49 PM: HKCR\ezulafsearcheng.ezulacode.1\clsid\ (1 subtraces) (ID = 466562)
11:49 PM: HKCR\ezulafsearcheng.popupdisplay.1\ (3 subtraces) (ID = 466570)
11:49 PM: HKCR\ezulafsearcheng.popupdisplay.1\clsid\ (1 subtraces) (ID = 466572)
11:49 PM: HKCR\ezulamain.ezulapopsearchpipe.1\ (3 subtraces) (ID = 466586)
11:49 PM: HKCR\ezulamain.ezulapopsearchpipe.1\clsid\ (1 subtraces) (ID = 466588)
11:49 PM: HKCR\ezulabootexe.installctrl.1\ (3 subtraces) (ID = 466596)
11:49 PM: HKCR\ezulabootexe.installctrl.1\clsid\ (1 subtraces) (ID = 466598)
11:49 PM: HKCR\ezulaagent.toolbarband.1\ (3 subtraces) (ID = 466626)
11:49 PM: HKCR\ezulaagent.toolbarband.1\clsid\ (1 subtraces) (ID = 466628)
11:49 PM: HKLM\software\classes\ezulafsearcheng.ezulacode.1\ (3 subtraces) (ID = 466706)
11:49 PM: HKLM\software\classes\ezulafsearcheng.ezulacode.1\clsid\ (1 subtraces) (ID = 466708)
11:49 PM: HKLM\software\classes\ezulafsearcheng.popupdisplay.1\ (3 subtraces) (ID = 466716)
11:49 PM: HKLM\software\classes\ezulafsearcheng.popupdisplay.1\clsid\ (1 subtraces) (ID = 466718)
11:49 PM: HKLM\software\classes\ezulamain.ezulapopsearchpipe.1\ (3 subtraces) (ID = 466732)
11:49 PM: HKLM\software\classes\ezulamain.ezulapopsearchpipe.1\clsid\ (1 subtraces) (ID = 466734)
11:49 PM: HKLM\software\classes\ezulabootexe.installctrl.1\ (3 subtraces) (ID = 466742)
11:49 PM: HKLM\software\classes\ezulabootexe.installctrl.1\clsid\ (1 subtraces) (ID = 466744)
11:49 PM: HKLM\software\classes\ezulamain.ezulasearchpipe.1\ (3 subtraces) (ID = 466752)
11:49 PM: HKLM\software\classes\ezulamain.ezulasearchpipe.1\clsid\ (1 subtraces) (ID = 466754)
11:49 PM: HKLM\software\classes\ezulaagent.ieobject.1\ (3 subtraces) (ID = 466762)
11:49 PM: HKLM\software\classes\ezulaagent.ieobject.1\clsid\ (1 subtraces) (ID = 466764)
11:49 PM: HKLM\software\classes\ezulaagent.toolbarband.1\ (3 subtraces) (ID = 466772)
11:49 PM: HKLM\software\classes\ezulaagent.toolbarband.1\clsid\ (1 subtraces) (ID = 466774)
11:49 PM: HKLM\software\classes\ezulaagent.plugprot.1\ (3 subtraces) (ID = 466780)
11:49 PM: HKLM\software\classes\ezulaagent.plugprot.1\clsid\ (1 subtraces) (ID = 466782)
11:49 PM: HKCR\interface\{544b6a3f-4024-4403-9661-69b8410be505}\ (8 subtraces) (ID = 479497)
11:49 PM: HKCR\typelib\{6d992911-b563-47fc-ab29-437f42d1c729}\ (9 subtraces) (ID = 480791)
11:49 PM: HKU\S-1-5-21-2587936551-2409960447-1819486551-1007\software\aurorahandler\ (22 subtraces) (ID = 480802)
11:49 PM: HKU\WRSS_Profile_S-1-5-21-2587936551-2409960447-1819486551-1006\software\aurorahandler\ (22 subtraces) (ID = 480802)
11:49 PM: HKU\WRSS_Profile_S-1-5-21-2587936551-2409960447-1819486551-501\software\aurorahandler\ (20 subtraces) (ID = 480802)
11:49 PM: HKCR\main.mimefilter\ (5 subtraces) (ID = 498504)
11:49 PM: HKLM\software\classes\main.mimefilter\ (5 subtraces) (ID = 498516)
11:49 PM: HKCR\main.mimefilter\ (5 subtraces) (ID = 499294)
11:49 PM: HKLM\software\classes\main.mimefilter\ (5 subtraces) (ID = 499295)
11:49 PM: Found Adware: drsnsrch hijacker
11:49 PM: HKCR\dsrch.band\ (5 subtraces) (ID = 509134)
11:49 PM: HKCR\dsrch.bottomframe\ (5 subtraces) (ID = 509135)
11:49 PM: HKCR\dsrch.leftframe\ (5 subtraces) (ID = 509136)
11:49 PM: HKCR\dsrch.popupbrowser\ (5 subtraces) (ID = 509137)
11:49 PM: HKCR\dsrch.popupwindow\ (5 subtraces) (ID = 509138)
11:49 PM: HKCR\clsid\{8b51fc2f-c687-40a3-b54a-bb9ebf8d407f}\ (11 subtraces) (ID = 509139)
11:49 PM: HKCR\clsid\{ce27d4df-714b-4427-95eb-923fe53adf8e}\ (13 subtraces) (ID = 509140)
11:49 PM: HKCR\clsid\{e2d2fe40-5674-4b77-802b-ec86b6c2c41d}\ (13 subtraces) (ID = 509141)
11:49 PM: HKCR\clsid\{e311d3a5-4a3b-4e49-9e0a-b40fae1f0b28}\ (11 subtraces) (ID = 509142)
11:49 PM: Found Adware: ieplugin
11:49 PM: HKCR\typelib\{8f73ac0f-5769-4282-8762-b396a3bff377}\ (9 subtraces) (ID = 509153)
11:49 PM: HKU\S-1-5-21-2587936551-2409960447-1819486551-1007\software\dsrch\ (11 subtraces) (ID = 509156)
11:49 PM: HKU\WRSS_Profile_S-1-5-21-2587936551-2409960447-1819486551-1006\software\dsrch\ (11 subtraces) (ID = 509156)
11:49 PM: HKU\WRSS_Profile_S-1-5-21-2587936551-2409960447-1819486551-501\software\dsrch\ (2 subtraces) (ID = 509156)
11:49 PM: HKLM\software\classes\dsrch.band\ (5 subtraces) (ID = 509171)
11:49 PM: HKLM\software\classes\dsrch.bottomframe\ (5 subtraces) (ID = 509172)
11:49 PM: HKLM\software\classes\dsrch.leftframe\ (5 subtraces) (ID = 509179)
11:49 PM: HKLM\software\classes\dsrch.popupbrowser\ (5 subtraces) (ID = 509185)
11:49 PM: HKLM\software\classes\dsrch.popupwindow\ (5 subtraces) (ID = 509191)
11:49 PM: HKLM\software\classes\clsid\{8b51fc2f-c687-40a3-b54a-bb9ebf8d407f}\ (11 subtraces) (ID = 509198)
11:49 PM: HKLM\software\classes\clsid\{ce27d4df-714b-4427-95eb-923fe53adf8e}\ (13 subtraces) (ID = 509210)
11:49 PM: HKLM\software\classes\clsid\{e2d2fe40-5674-4b77-802b-ec86b6c2c41d}\ (13 subtraces) (ID = 509224)
11:49 PM: HKLM\software\classes\clsid\{e311d3a5-4a3b-4e49-9e0a-b40fae1f0b28}\ (11 subtraces) (ID = 509238)
11:49 PM: HKCR\dsrch.band\clsid\ (1 subtraces) (ID = 509361)
11:49 PM: HKCR\dsrch.band\curver\ (1 subtraces) (ID = 509362)
11:49 PM: HKCR\dsrch.bottomframe\clsid\ (1 subtraces) (ID = 509363)
11:49 PM: HKCR\dsrch.bottomframe\curver\ (1 subtraces) (ID = 509364)
11:49 PM: HKCR\dsrch.leftframe\clsid\ (1 subtraces) (ID = 509365)
11:49 PM: HKCR\dsrch.leftframe\curver\ (1 subtraces) (ID = 509366)
11:49 PM: HKCR\dsrch.popupbrowser\clsid\ (1 subtraces) (ID = 509367)
11:49 PM: HKCR\dsrch.popupbrowser\curver\ (1 subtraces) (ID = 509368)
11:49 PM: HKCR\dsrch.popupwindow\clsid\ (1 subtraces) (ID = 509369)
11:49 PM: HKCR\dsrch.popupwindow\curver\ (1 subtraces) (ID = 509370)
11:49 PM: HKCR\dsrch.band.1\ (3 subtraces) (ID = 512692)
11:49 PM: HKCR\dsrch.bottomframe.1\ (3 subtraces) (ID = 512699)
11:49 PM: HKCR\dsrch.leftframe.1\ (3 subtraces) (ID = 512706)
11:49 PM: HKCR\dsrch.popupbrowser.1\ (3 subtraces) (ID = 512713)
11:49 PM: HKCR\dsrch.popupwindow.1\ (3 subtraces) (ID = 512720)
11:49 PM: HKCR\clsid\{00f1d395-4744-40f0-a611-980f61ae2c59}\ (11 subtraces) (ID = 512747)
11:49 PM: HKU\S-1-5-21-2587936551-2409960447-1819486551-1007\software\aurorahandler\ || aut9i1m4eofsfinalad (ID = 512963)
11:49 PM: HKU\WRSS_Profile_S-1-5-21-2587936551-2409960447-1819486551-1006\software\aurorahandler\ || aut9i1m4eofsfinalad (ID = 512963)
11:49 PM: HKU\WRSS_Profile_S-1-5-21-2587936551-2409960447-1819486551-501\software\aurorahandler\ || aut9i1m4eofsfinalad (ID = 512963)
11:49 PM: HKLM\software\classes\dsrch.band.1\ (3 subtraces) (ID = 513072)
11:49 PM: HKLM\software\classes\dsrch.bottomframe.1\ (3 subtraces) (ID = 513076)
11:49 PM: HKLM\software\classes\dsrch.leftframe.1\ (3 subtraces) (ID = 513080)
11:49 PM: HKLM\software\classes\dsrch.popupbrowser.1\ (3 subtraces) (ID = 513084)
11:49 PM: HKLM\software\classes\dsrch.popupwindow.1\ (3 subtraces) (ID = 513088)
11:49 PM: HKLM\software\classes\clsid\{00f1d395-4744-40f0-a611-980f61ae2c59}\ (11 subtraces) (ID = 513114)
11:49 PM: Found Adware: rich editor
11:49 PM: HKCR\typelib\{34a35bbb-8c19-4482-864c-290bd8dd6a5d}\ (9 subtraces) (ID = 544913)
11:49 PM: HKLM\software\microsoft\windows\currentversion\app paths\lanbrd\ (2 subtraces) (ID = 550562)
11:49 PM: HKLM\software\microsoft\windows\currentversion\app paths\lanbrup\ (2 subtraces) (ID = 550565)
11:49 PM: HKLM\software\classes\typelib\{34a35bbb-8c19-4482-864c-290bd8dd6a5d}\ (9 subtraces) (ID = 550573)
11:49 PM: HKLM\system\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list\lanbrup.exe\ (1 subtraces) (ID = 552678)
11:49 PM: HKLM\software\classes\typelib\{34a35bbb-8c19-4482-864c-290bd8dd6a5d}\1.0\ (8 subtraces) (ID = 609169)
11:49 PM: HKLM\software\lanbridge\ (34 subtraces) (ID = 609177)
11:49 PM: HKLM\software\classes\typelib\{8f73ac0f-5769-4282-8762-b396a3bff377}\ (9 subtraces) (ID = 646384)
11:49 PM: Registry Sweep Complete, Elapsed Time:00:00:21
11:49 PM: Starting Cookie Sweep
11:49 PM: Cookie Sweep Complete, Elapsed Time: 00:00:00
11:49 PM: Starting File Sweep
11:50 PM: c:\program files\cmapp (7 subtraces) (ID = -2147477896)
11:50 PM: Found Trojan Horse: sysnet
11:50 PM: c:\program files\asys (2 subtraces) (ID = -2147477847)
11:50 PM: Found Trojan Horse: 2nd-thought
11:50 PM: c:\windows\system32\newmsrdk (ID = -2147481534)
11:50 PM: Found Adware: dealhelper
11:50 PM: c:\windows\system32\dealhelper (ID = -2147481148)
11:50 PM: c:\windows\system32\sahimages (10 subtraces) (ID = -2147480329)
11:50 PM: c:\documents and settings\calvin\start menu\programs\toptext ilookup (6 subtraces) (ID = -2147481003)
11:50 PM: Found Adware: apropos
11:50 PM: c:\documents and settings\accoount #1\local settings\temp\autoupdate0 (2 subtraces) (ID = -2147481415)
11:50 PM: c:\documents and settings\accoount #1\local settings\temp\~apropos0 (3 subtraces) (ID = -2147481414)
11:50 PM: c:\program files\ezula (1 subtraces) (ID = -2147480999)
11:50 PM: Found Adware: gain-supported software
11:50 PM: c:\program files\common files\gmt (ID = -2147480945)
11:50 PM: c:\documents and settings\accoount #1\local settings\temp\~compoundinst0 (ID = -2147481413)
11:50 PM: sskknwrd.dll (ID = 77733)
11:51 PM: Found Trojan Horse: trojan-downloader-pacisoft
11:51 PM: xboxab.ico (ID = 113921)
11:51 PM: sony psp1.ico (ID = 125992)
11:51 PM: virushunter4.ico (ID = 113920)
11:51 PM: ringtone2.ico (ID = 125993)
11:51 PM: stlb2.xml (ID = 51947)
11:52 PM: Warning: Failed to read file "c:\documents and settings\deathstrike\desktop\my documents\new folder\new folder (2)\dos\readme.txt". Data error (cyclic redundancy check)
11:53 PM: ysbactivex.dll (ID = 112243)
11:53 PM: wirelanb.dll (ID = 125490)
11:53 PM: setup.inf (ID = 50158)
11:54 PM: ttext.dll (ID = 75991)
11:56 PM: wijbijk.xml (ID = 57646)
11:56 PM: wijbiju2.xml (ID = 57651)
11:57 PM: wijbiju1.xml (ID = 57650)
11:57 PM: wijbiju.xml (ID = 57649)
12:00 AM: sskknwrd.dll (ID = 77733)
12:01 AM: auto_update_install.exe (ID = 50058)
12:05 AM: activate desktop.lnk (ID = 89214)
12:07 AM: wijbijk1.xml (ID = 57647)
12:07 AM: wijbijk2.xml (ID = 57648)
12:09 AM: sskcwrd.dll (ID = 77712)
12:09 AM: Found Adware: sexfiles dialers
12:09 AM: dating.lnk (ID = 75396)
12:09 AM: toptext button show - hide.lnk (ID = 60649)
12:09 AM: sskcwrd.dll (ID = 77712)
12:09 AM: Found Adware: exact cashback/bargain buddy
12:09 AM: ub.dat (ID = 50877)
12:09 AM: wijbijdk.xml (ID = 57645)
12:09 AM: webdlg32.inf (ID = 60327)
12:09 AM: auto_update[1] (ID = 50056)
12:09 AM: sf.txt (ID = 110126)
12:09 AM: rf.txt (ID = 110125)
12:09 AM: my keywords.lnk (ID = 60599)
12:09 AM: my preferences.lnk (ID = 60601)
12:10 AM: File Sweep Complete, Elapsed Time: 00:20:34
12:10 AM: Full Sweep has completed. Elapsed time 00:22:13
12:10 AM: Traces Found: 2190
12:11 AM: Removal process initiated
12:11 AM: Quarantining All Traces: begin2search
12:11 AM: Quarantining All Traces: hotsearchbar toolbar
12:11 AM: Quarantining All Traces: browseraid
12:11 AM: Quarantining All Traces: cas
12:11 AM: Quarantining All Traces: clearsearch
12:11 AM: Quarantining All Traces: cws_ns3
12:11 AM: Quarantining All Traces: e2g
12:11 AM: Quarantining All Traces: elitebar
12:11 AM: Quarantining All Traces: elitebar searchmiracle hijacker
12:11 AM: Quarantining All Traces: ez-finder toolbar
12:11 AM: Quarantining All Traces: start4search toolbar
12:11 AM: Quarantining All Traces: iwantsearch
12:11 AM: Quarantining All Traces: ezula ilookup
12:11 AM: Quarantining All Traces: drsnsrch.com hijack
12:11 AM: Quarantining All Traces: internetoptimizer
12:11 AM: Quarantining All Traces: mysearchnow hijacker
12:11 AM: Quarantining All Traces: moneytree
12:11 AM: Quarantining All Traces: 180search assistant/zango
12:11 AM: Quarantining All Traces: parisvoyeur dialer
12:11 AM: Quarantining All Traces: redzip toolbar
12:11 AM: Quarantining All Traces: searchtoolbar
12:11 AM: Quarantining All Traces: shopathomeselect
12:11 AM: Quarantining All Traces: bho_sidefind
12:11 AM: Quarantining All Traces: stumbleupon
12:11 AM: Quarantining All Traces: zeropopup
12:11 AM: Quarantining All Traces: surfsidekick
12:11 AM: Quarantining All Traces: visfx
12:11 AM: Quarantining All Traces: abetterinternet
12:11 AM: Quarantining All Traces: winactive
12:11 AM: Quarantining All Traces: yoursitebar
12:11 AM: Quarantining All Traces: icannnews
12:11 AM: Quarantining All Traces: shopnavupdater
12:11 AM: Quarantining All Traces: drsnsrch hijacker
12:11 AM: Quarantining All Traces: ieplugin
12:11 AM: Quarantining All Traces: rich editor
12:11 AM: Quarantining All Traces: sysnet
12:11 AM: Quarantining All Traces: 2nd-thought
12:11 AM: Quarantining All Traces: dealhelper
12:11 AM: Quarantining All Traces: apropos
12:11 AM: Quarantining All Traces: gain-supported software
12:11 AM: Quarantining All Traces: trojan-downloader-pacisoft
12:11 AM: Quarantining All Traces: sexfiles dialers
12:11 AM: Quarantining All Traces: exact cashback/bargain buddy
12:12 AM: Warning: Quarantine could not read registry value for HKU\S-1-5-21-2587936551-2409960447-1819486551-1007\software\aurorahandler\aut9i1m4eofsfinalad\. Failed to export registry value "S-1-5-21-2587936551-2409960447-1819486551-1007\software\aurorahandler\aut9i1m4eofsfinalad". Key/Value does not exist
12:12 AM: Warning: Quarantine could not read registry value for HKU\WRSS_Profile_S-1-5-21-2587936551-2409960447-1819486551-1006\software\aurorahandler\aut9i1m4eofsfinalad\. Failed to export registry value "WRSS_Profile_S-1-5-21-2587936551-2409960447-1819486551-1006\software\aurorahandler\aut9i1m4eofsfinalad". Key/Value does not exist
12:12 AM: Warning: Quarantine could not read registry value for HKU\WRSS_Profile_S-1-5-21-2587936551-2409960447-1819486551-501\software\aurorahandler\aut9i1m4eofsfinalad\. Failed to export registry value "WRSS_Profile_S-1-5-21-2587936551-2409960447-1819486551-501\software\aurorahandler\aut9i1m4eofsfinalad". Key/Value does not exist
12:12 AM: Removal process completed. Elapsed time 00:00:54
********
11:38 PM: |··· Start of Session, Monday, August 15, 2005 ···|
11:38 PM: Spy Sweeper started
11:46 PM: Program Version 4.0.4 (Build 430) Using Spyware Definitions 517
11:47 PM: Program Version 4.0.4 (Build 430) Using Spyware Definitions 517
  • 0

Advertisements


#11
Rawe

Rawe

    Visiting Staff

  • Member
  • PipPipPipPipPipPipPip
  • 4,746 posts
Eww, enable system restore if you didn't already;

1. Click Start.
2. Right-click My Computer, and then click Properties.
3. Click the System Restore tab.
4. Uncheck the "Turn off System Restore" check box.
5. Click Apply, and then click "OK".


Next, run this online scan and post the results;
Panda Activescan

- Rawe :tazz:
  • 0

#12
Deathstrike

Deathstrike

    Member

  • Topic Starter
  • Member
  • PipPip
  • 22 posts
Incident Status Location

Adware:adware/pacimedia No disinfected C:\Documents and Settings\Calvin\Favorites\1111\1111.url
Adware:adware/cws No disinfected C:\Documents and Settings\Calvin\Favorites\Fun & Games\Betting.lnk
Adware:Adware/SearchAid No disinfected C:\Documents and Settings\Deathstrike\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\counters.jar-2688bba9-74ea83ca.zip[web.exe]
Spyware:Spyware/ISTbar No disinfected C:\Documents and Settings\Deathstrike\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\javainstaller.jar-3cc46f89-3cfd080f.zip[InstallerApplet.class]
Virus:W32/Parite.B Disinfected C:\Program Files\adobe\Photoshop CS\Samples\Droplets\Photoshop Droplets\Aged Photo.exe
Virus:W32/Parite.B Disinfected C:\Program Files\adobe\Photoshop CS\Samples\Droplets\Photoshop Droplets\Conditional Mode Change.exe
Virus:W32/Parite.B Disinfected C:\Program Files\adobe\Photoshop CS\Samples\Droplets\Photoshop Droplets\Constrain to 64 pixels.exe
Virus:W32/Parite.B Disinfected C:\Program Files\adobe\Photoshop CS\Samples\Droplets\Photoshop Droplets\Drop Shadow Frame.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Ahead\CoverDesigner\CoverDes.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Ahead\ImageDrive\ImageDrive.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Ahead\Nero\NeroCmd.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Ahead\Nero Wave Editor\DXEnum.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Ahead\Nero Wave Editor\WaveEdit.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Ahead\WMPBurn\WMPBurn.exe
Virus:W32/Parite.B Disinfected C:\Program Files\AIM\aim95.exe
Virus:W32/Parite.B Disinfected C:\Program Files\AIM\aimauto.exe
Virus:W32/Parite.B Disinfected C:\Program Files\AIM\LogManager.exe
Virus:W32/Parite.B Disinfected C:\Program Files\AIM\Patcher.exe
Virus:W32/Parite.B Disinfected C:\Program Files\AIM\SendFile.exe
Virus:W32/Parite.B Disinfected C:\Program Files\AIM\ShareFile.exe
Virus:W32/Parite.B Disinfected C:\Program Files\AIM\Sysfiles\AIMWDUninstall.exe
Virus:W32/Parite.B Disinfected C:\Program Files\AIM\Sysfiles\AOLToolbar.exe
Virus:W32/Parite.B Disinfected C:\Program Files\AIM\Sysfiles\viewpoint.exe
Virus:W32/Parite.B Disinfected C:\Program Files\AIM\Sysfiles\WxBug.EXE
Virus:W32/Parite.B Disinfected C:\Program Files\AIM\uninstll.EXE
Virus:W32/Parite.B Disinfected C:\Program Files\AIM\unwise32.exe
Virus:W32/Parite.B Disinfected C:\Program Files\AIM PowerPlus\Uninstall.exe
Virus:W32/Parite.B Disinfected C:\Program Files\AIM+\AIM+ History Viewer.exe
Virus:W32/Parite.B Disinfected C:\Program Files\AIM+\AIM+.exe
Virus:W32/Parite.B Disinfected C:\Program Files\AIM+\uninst.exe
Virus:W32/Parite.B Disinfected C:\Program Files\America's Army\ArcadeInstallARMYGAME14d.EXE
Virus:W32/Parite.B Disinfected C:\Program Files\America's Army\xfire_beta_installer_6768.exe
Virus:W32/Parite.B Disinfected C:\Program Files\AOD\AolAod.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Apprentice\Appr.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Apprentice\Sets\appr2txt.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Azureus\Uninstall.exe
Virus:W32/Parite.B Disinfected C:\Program Files\BitTorrent\btdownloadgui.exe
Virus:W32/Parite.B Disinfected C:\Program Files\BitTorrent\btmaketorrentgui.exe
Virus:W32/Parite.B Disinfected C:\Program Files\BitTorrent\uninstall.exe
Virus:W32/Parite.B Disinfected C:\Program Files\BitTorrent\w9xpopen.exe
Virus:W32/Parite.B Disinfected C:\Program Files\CDisplay\CDisplay.exe
Virus:W32/Parite.B Disinfected C:\Program Files\CDisplay\unins000.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Cheetah Burner\wmfdist.exe
Virus:W32/Parite.B Disinfected C:\Program Files\CleanUp!\uninstall.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Combined Community Codec Pack\MPC\mplayerc.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Combined Community Codec Pack\Settings.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Combined Community Codec Pack\Uninstall.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Combined Community Codec Pack\Zoomplayer\zplayer.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Common Files\Adobe\ESD\AdobeDownloadManager.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Common Files\Adobe\ESD\DLMCleanup.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Common Files\Adobe\ESD\uninst.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Common Files\Adobe\Workflow\AdobeWorkgroupHelper.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Common Files\InstallShield\Driver\10\Intel 32\IDriver.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Common Files\InstallShield\Driver\10\Intel 32\IDriver2.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Common Files\InstallShield\Driver\7\Intel 32\IDriver.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Common Files\InstallShield\Driver\8\Intel 32\IDriver.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Common Files\InstallShield\Driver\8\Intel 32\IDriver2.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Common Files\InstallShield\Driver\9\Intel 32\IDriver.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Common Files\InstallShield\Driver\9\Intel 32\IDriver2.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Common Files\InstallShield\engine\6\Intel 32\IKernel.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Common Files\Java\Update\Base Images\j2re1.4.2-b28\patch-j2re1.4.2_03-b02\patchjre.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Common Files\Java\Update\Base Images\j2re1.4.2-b28\patch-j2re1.4.2_04-b05\patchjre.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Common Files\Java\Update\Base Images\jre1.5.0.b64\patch-jre1.5.0_02.b09\launcher.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Common Files\Java\Update\Base Images\jre1.5.0.b64\patch-jre1.5.0_02.b09\zipper.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Common Files\Java\Update\Base Images\jre1.5.0.b64\patch-jre1.5.0_04.b05\launcher.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Common Files\Java\Update\Base Images\jre1.5.0.b64\patch-jre1.5.0_04.b05\zipper.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Common Files\Microsoft Shared\Artgalry\ARTGALRY.EXE
Virus:W32/Parite.B Disinfected C:\Program Files\Common Files\Microsoft Shared\DW\DW20.EXE
Virus:W32/Parite.B Disinfected C:\Program Files\Common Files\Microsoft Shared\DW\DWTRIG20.EXE
Virus:W32/Parite.B Disinfected C:\Program Files\Common Files\Microsoft Shared\MODI\11.0\MSPVIEW.EXE
Virus:W32/Parite.B Disinfected C:\Program Files\Common Files\Microsoft Shared\MSInfo\OINFOP11.EXE
Virus:W32/Parite.B Disinfected C:\Program Files\Common Files\Microsoft Shared\OFFICE11\MSOXMLED.EXE
Virus:W32/Parite.B Disinfected C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
Virus:W32/Parite.B Disinfected C:\Program Files\Common Files\Microsoft Shared\Web Components\11\DFUICOM.EXE
Virus:W32/Parite.B Disinfected C:\Program Files\Common Files\Nullsoft\ActiveX\2.0\AOLMediaPlaybackControl.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Common Files\Sony Shared\OpenMG\omginit.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Common Files\Sony Shared\OpenMG\OmgStartup.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Common Files\Sony Shared\OpenMG\regsvr32.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Common Files\Sony Shared\OpenMG\updater\udapp.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Common Files\Sony Shared\PC_Info\PC_INFO.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Common Files\Sony Shared\Smart Capture Library\SSCamera.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Common Files\Sony Shared\VAIO Media Platform\UPnPFramework.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Common Files\Sony Shared\VAIO Media Platform\VMConsole.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Common Files\System\MSMAPI\1033\CNFNOT32.EXE
Virus:W32/Parite.B Disinfected C:\Program Files\Common Files\System\MSMAPI\1033\SCANOST.EXE
Virus:W32/Parite.B Disinfected C:\Program Files\CyberLink\Common\UpdateIPR.exe
Virus:W32/Parite.B Disinfected C:\Program Files\CyberLink\PowerDVD\cldma.exe
Virus:W32/Parite.B Disinfected C:\Program Files\CyberLink\PowerDVD\cltest.exe
Virus:W32/Parite.B Disinfected C:\Program Files\CyberLink\PowerDVD\ddtester.exe
Virus:W32/Parite.B Disinfected C:\Program Files\CyberLink\PowerDVD\dvdrgn.exe
Virus:W32/Parite.B Disinfected C:\Program Files\D-Tools\daemon.exe
Virus:W32/Parite.B Disinfected C:\Program Files\DivX\DivX Player\DivX Player.exe
Virus:W32/Parite.B Disinfected C:\Program Files\DivX\DivX Pro Codec\config.exe
Virus:W32/Parite.B Disinfected C:\Program Files\DivX\DivXPlayerUninstall.exe
Virus:W32/Parite.B Disinfected C:\Program Files\DivX\DivXProCodecUninstall.exe
Virus:W32/Parite.B Disinfected C:\Program Files\DivX\Dr.DivX\Dr.DivX EKG.exe
Virus:W32/Parite.B Disinfected C:\Program Files\DivX\Dr.DivX\Dr.DivX Registration.exe
Virus:W32/Parite.B Disinfected C:\Program Files\DivX\Dr.DivX\Dr.DivX.exe
Virus:W32/Parite.B Disinfected C:\Program Files\DivX\DrDivXBundleUninstall.exe
Virus:W32/Parite.B Disinfected C:\Program Files\DivX\DrDivXUninstall.exe
Virus:W32/Parite.B Disinfected C:\Program Files\DVD Decrypter\uninstall.exe
Virus:W32/Parite.B Disinfected C:\Program Files\DVDInfoPro\DvdInfo.exe
Virus:W32/Parite.B Disinfected C:\Program Files\ewido\security suite\SecuritySuite.exe
Virus:W32/Parite.B Disinfected C:\Program Files\ffdshow\uninstall.exe
Virus:W32/Parite.B Disinfected C:\Program Files\GSpot\GSpot.exe
Virus:W32/Parite.B Disinfected C:\Program Files\GSpot\Uninstall.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Guild Wars\Gw.exe
Virus:W32/Parite.B Disinfected C:\Program Files\HydraIRC\HydraIRC.exe
Virus:W32/Parite.B Disinfected C:\Program Files\HydraIRC\tools\ThemeCreator.exe
Virus:W32/Parite.B Disinfected C:\Program Files\HydraIRC\uninstall.exe
Virus:W32/Parite.B Disinfected C:\Program Files\InterActual\InterActual Player\inuninst.exe
Virus:W32/Parite.B Disinfected C:\Program Files\InterActual\InterActual Player\iPlayer.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Internet Explorer\IE Uninstall\w2kexcp.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Internet Explorer\ie6setup.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Internet Explorer\W2K\expinst.exe
Virus:W32/Parite.B Disinfected C:\Program Files\IrfanView\iv_uninstall.exe
Virus:W32/Parite.B Disinfected C:\Program Files\IrfanView\Plugins\Slideshow.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Jasc Software Inc\Animation Shop 3\Anim.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Jasc Software Inc\Animation Shop 3\instmsia.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Jasc Software Inc\Animation Shop 3\instmsiw.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\j2re1.4.2_01\bin\java.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\j2re1.4.2_01\bin\jpicpl32.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\j2re1.4.2_01\bin\jucheck.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\j2re1.4.2_01\bin\jusched.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\j2re1.4.2_01\bin\keytool.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\j2re1.4.2_01\bin\kinit.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\j2re1.4.2_01\bin\klist.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\j2re1.4.2_01\bin\orbd.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\j2re1.4.2_01\bin\policytool.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\j2re1.4.2_01\bin\servertool.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\j2re1.4.2_01\bin\tnameserv.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\j2re1.4.2_03\bin\java.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\j2re1.4.2_03\bin\javaw.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\j2re1.4.2_03\bin\jpicpl32.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\j2re1.4.2_03\bin\jucheck.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\j2re1.4.2_03\bin\rmiregistry.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\j2re1.4.2_03\bin\servertool.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\j2re1.4.2_03\bin\tnameserv.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\j2re1.4.2_03\javaws\javaws.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\j2re1.4.2_04\bin\jpicpl32.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\j2re1.4.2_04\bin\jucheck.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\j2re1.4.2_04\bin\ktab.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\j2re1.4.2_04\bin\orbd.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\j2re1.4.2_04\bin\policytool.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\j2re1.4.2_04\bin\rmid.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\j2re1.4.2_04\bin\rmiregistry.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\j2re1.4.2_04\bin\servertool.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\j2re1.4.2_04\bin\tnameserv.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\j2re1.4.2_04\javaws\javaws.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\j2re1.4.2_05\bin\policytool.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\j2re1.4.2_05\bin\rmid.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\j2re1.4.2_05\bin\rmiregistry.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\j2re1.4.2_05\bin\servertool.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\j2re1.4.2_05\bin\tnameserv.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\j2re1.4.2_05\javaws\helper.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\j2re1.4.2_05\javaws\javaws.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\j2re1.4.2_05\javaws\splash.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\j2re1.4.2_05\javaws\uninst-javaws.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\j2re1.4.2_06\bin\javaw.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\j2re1.4.2_06\bin\jpicpl32.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\j2re1.4.2_06\bin\jusched.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\j2re1.4.2_06\bin\keytool.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\j2re1.4.2_06\bin\kinit.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\j2re1.4.2_06\bin\klist.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\j2re1.4.2_06\bin\ktab.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\j2re1.4.2_06\bin\orbd.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\j2re1.4.2_06\bin\rmid.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\j2re1.4.2_06\bin\rmiregistry.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\j2re1.4.2_06\bin\servertool.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\j2re1.4.2_06\bin\tnameserv.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\j2re1.4.2_06\javaws\javaws.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\jre1.5.0_02\bin\java.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\jre1.5.0_02\bin\javacpl.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\jre1.5.0_02\bin\javaw.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\jre1.5.0_02\bin\javaws.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\jre1.5.0_02\bin\jucheck.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\jre1.5.0_02\bin\kinit.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\jre1.5.0_02\bin\klist.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\jre1.5.0_02\bin\ktab.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\jre1.5.0_02\bin\pack200.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\jre1.5.0_02\bin\policytool.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\jre1.5.0_02\bin\rmid.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\jre1.5.0_02\bin\servertool.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\jre1.5.0_02\bin\tnameserv.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\jre1.5.0_04\bin\java.exe
  • 0

#13
Deathstrike

Deathstrike

    Member

  • Topic Starter
  • Member
  • PipPip
  • 22 posts
Virus:W32/Parite.B Disinfected C:\Program Files\Java\jre1.5.0_04\bin\javacpl.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\jre1.5.0_04\bin\javaws.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\jre1.5.0_04\bin\jucheck.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\jre1.5.0_04\bin\keytool.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\jre1.5.0_04\bin\kinit.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\jre1.5.0_04\bin\klist.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\jre1.5.0_04\bin\policytool.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\jre1.5.0_04\bin\rmid.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\jre1.5.0_04\bin\rmiregistry.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\jre1.5.0_04\bin\servertool.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Java\jre1.5.0_04\bin\tnameserv.exe
Virus:W32/Parite.B Disinfected C:\Program Files\JavaSoft\JRE\1.3.1_01\bin\java.exe
Virus:W32/Parite.B Disinfected C:\Program Files\JavaSoft\JRE\1.3.1_01\bin\javaw.exe
Virus:W32/Parite.B Disinfected C:\Program Files\JavaSoft\JRE\1.3.1_01\bin\keytool.exe
Virus:W32/Parite.B Disinfected C:\Program Files\JavaSoft\JRE\1.3.1_01\bin\policytool.exe
Virus:W32/Parite.B Disinfected C:\Program Files\JavaSoft\JRE\1.3.1_01\bin\rmid.exe
Virus:W32/Parite.B Disinfected C:\Program Files\JavaSoft\JRE\1.3.1_01\bin\rmiregistry.exe
Virus:W32/Parite.B Disinfected C:\Program Files\JavaSoft\JRE\1.3.1_01\bin\tnameserv.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Lavasoft\Ad-Aware SE Personal\unregaaw.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Lavasoft\Ad-Aware SE Personal\UNWISE.EXE
Virus:W32/Parite.B Disinfected C:\Program Files\Logon Loader\uninstall.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Matroska Pack\Uninstall.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Messenger\msmsgs.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Messenger\msmsgsin.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Microsoft Office\OFFICE11\1033\MSOHELP.EXE
Virus:W32/Parite.B Disinfected C:\Program Files\Microsoft Office\OFFICE11\1033\UNPACK.EXE
Virus:W32/Parite.B Disinfected C:\Program Files\Microsoft Office\OFFICE11\DSSM.EXE
Virus:W32/Parite.B Disinfected C:\Program Files\Microsoft Office\OFFICE11\EXCEL.EXE
Virus:W32/Parite.B Disinfected C:\Program Files\Microsoft Office\OFFICE11\FINDER.EXE
Virus:W32/Parite.B Disinfected C:\Program Files\Microsoft Office\OFFICE11\GRAPH.EXE
Virus:W32/Parite.B Disinfected C:\Program Files\Microsoft Office\OFFICE11\INFOPATH.EXE
Virus:W32/Parite.B Disinfected C:\Program Files\Microsoft Office\OFFICE11\MSACCESS.EXE
Possible Virus. No disinfected C:\Program Files\Microsoft Office\OFFICE11\MSOHTMED.EXE
Virus:W32/Parite.B Disinfected C:\Program Files\Microsoft Office\OFFICE11\MSPUB.EXE
Virus:W32/Parite.B Disinfected C:\Program Files\Microsoft Office\OFFICE11\MSTORDB.EXE
Virus:W32/Parite.B Disinfected C:\Program Files\Microsoft Office\OFFICE11\OIS.EXE
Virus:W32/Parite.B Disinfected C:\Program Files\Microsoft Office\OFFICE11\OUTLOOK.EXE
Virus:W32/Parite.B Disinfected C:\Program Files\Microsoft Office\OFFICE11\POWERPNT.EXE
Virus:W32/Parite.B Disinfected C:\Program Files\Microsoft Office\OFFICE11\PPTVIEW.EXE
Virus:W32/Parite.B Disinfected C:\Program Files\Microsoft Office\OFFICE11\PROFLWIZ.EXE
Virus:W32/Parite.B Disinfected C:\Program Files\Microsoft Office\OFFICE11\WAVTOASF.EXE
Virus:W32/Parite.B Disinfected C:\Program Files\Mozilla Firefox\firefox.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Mozilla Firefox\uninstall\UninstallFirefox.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Mozilla Firefox\xpicleanup.exe
Virus:W32/Parite.B Disinfected C:\Program Files\MSN\MSNCoreFiles\copymar.exe
Virus:W32/Parite.B Disinfected C:\Program Files\MSN\MSNCoreFiles\dw.exe
Virus:W32/Parite.B Disinfected C:\Program Files\MSN\MSNCoreFiles\msn6.exe
Virus:W32/Parite.B Disinfected C:\Program Files\MSN\MSNCoreFiles\Setup\msnunin.exe
Virus:W32/Parite.B Disinfected C:\Program Files\MSN\MSNCoreFiles\update.exe
Virus:W32/Parite.B Disinfected C:\Program Files\MsnMusic\4021130\MsnMusic.exe
Virus:W32/Parite.B Disinfected C:\Program Files\MultiRes\MultiRes.exe
Virus:W32/Parite.B Disinfected C:\Program Files\MultiRes\uninstal.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Opera 8 Beta\Opera.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Opera 8 Beta\program\netscape.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Opera 8 Beta\uninst\OpUninst.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Opera7\opera.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Opera7\Plugins\FlashGet\UNWISE.EXE
Virus:W32/Parite.B Disinfected C:\Program Files\Opera7\Program\Netscape.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Opera7\Program\Plugins\GetFlash.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Opera7\UnInst\Backup\j2re-1_4_2_01-windows-i586.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Opera7\UnInst\OpUninst.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Opera7\UnInst\UNWISE.EXE
Virus:W32/Parite.B Disinfected C:\Program Files\Opera76\opera.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Opera76\UnInst\Backup\j2re-1_4_2_04-windows-i586-p.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Opera76\UnInst\Backup\opera.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Opera76\UnInst\Backup\UNWISE.EXE
Virus:W32/Parite.B Disinfected C:\Program Files\Opera76\UnInst\OpUninst.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Opera76\UnInst\UNWISE.EXE
Virus:W32/Parite.B Disinfected C:\Program Files\Project9k\Sound Player Lilith 0.991b\DDEClient.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Project9k\Sound Player Lilith 0.991b\DDEClientC.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Project9k\Sound Player Lilith 0.991b\Lilith.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Project9k\Sound Player Lilith 0.991b\OnlineUpdate.exe
Virus:W32/Parite.B Disinfected C:\Program Files\QuadWeb\quadweb.exe
Virus:W32/Parite.B Disinfected C:\Program Files\QuadWeb\unins000.exe
Virus:W32/Parite.B Disinfected C:\Program Files\QUICKENW\host.exe
Virus:W32/Parite.B Disinfected C:\Program Files\QUICKENW\inet\common\localweb\showme\quicktour.exe
Virus:W32/Parite.B Disinfected C:\Program Files\QUICKENW\Olbackup.exe
Virus:W32/Parite.B Disinfected C:\Program Files\QUICKENW\PrintEnv.exe
Virus:W32/Parite.B Disinfected C:\Program Files\QUICKENW\qagent.exe
Virus:W32/Parite.B Disinfected C:\Program Files\QUICKENW\QW.EXE
Virus:W32/Parite.B Disinfected C:\Program Files\QUICKENW\QWDLLS.EXE
Virus:W32/Parite.B Disinfected C:\Program Files\QUICKENW\TechHelp.exe
Virus:W32/Parite.B Disinfected C:\Program Files\QUICKENW\tla.exe
Virus:W32/Parite.B Disinfected C:\Program Files\QuickSFV\QuickSFV.EXE
Virus:W32/Parite.B Disinfected C:\Program Files\QuickTime\PictureViewer.exe
Virus:W32/Parite.B Disinfected C:\Program Files\QuickTime\QTInfo.exe
Virus:W32/Parite.B Disinfected C:\Program Files\QuickTime\qttask.exe
Virus:W32/Parite.B Disinfected C:\Program Files\QuickTime\QuickTimePlayer.exe
Virus:W32/Parite.B Disinfected C:\Program Files\QuickTime\QuickTimeUpdater.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Robster Productions\Halflife Logo Creator\HLC.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Robster Productions\Halflife Logo Creator\qlumpy.exe
Virus:W32/Parite.B Disinfected C:\Program Files\SmartWhois\feedback.exe
Virus:W32/Parite.B Disinfected C:\Program Files\SmartWhois\sw.exe
Virus:W32/Parite.B Disinfected C:\Program Files\SmartWhois\swlauncher.exe
Virus:W32/Parite.B Disinfected C:\Program Files\SmartWhois\swmsiehlp.exe
Virus:W32/Parite.B Disinfected C:\Program Files\SmartWhois\unwise.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Sony\DVgate\DVassmbl.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Sony\DVgate\DVmotion2.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Sony\DVgate\DVsigchg.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Sony\Image Uploader\Uploader.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Sony\ImageStation Demo\Imagestation.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Sony\MovieShaker\MovShake.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Sony\MovieShaker\MSDBUtl.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Sony\MovieShaker\MVRenderer.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Sony\MovieShaker\MVSigChg.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Sony\Network Smart Capture\NetworkSmartCapture.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Sony\Photo Server 20\appsrv\PicAppSrv.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Sony\PictureGear Studio\Binder\Binder.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Sony\PictureGear Studio\Entrance\Entrance.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Sony\PictureGear Studio\PhotoAlbum\PhotoAlbum.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Sony\PictureGear Studio\PhotoCollection\PhotoCollection.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Sony\PictureGear Studio\PrintStudio\PrintStudio.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Sony\PictureGear Studio\SlideShow\PhotoPack.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Sony\PictureGear Studio\SlideShow\PhotoSlide.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Sony\VAIO Action Setup\bin\SeHibernation.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Sony\VAIO Action Setup\bin\SeHotKey.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Sony\VAIO Action Setup\bin\SeMlChk.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Sony\VAIO Action Setup\bin\SeSuspend.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Sony\VAIO Action Setup\VAServ.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Sony\VAIO Action Setup\VASetup.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Sony\VAIO Media 2.0\Vc.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Sony\VAIO Media 2.0\VmpClient.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Sony\VAIO Media Installer 2.0\VM20Inst.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Sony\VAIO Media Music Server\SSSvr.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Spybot - Search & Destroy\blindman.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Spybot - Search & Destroy\unins000.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Spybot - Search & Destroy\Update.exe
Virus:W32/Parite.B Disinfected C:\Program Files\support.com\client\bin\ResetTMID.exe
Virus:W32/Parite.B Disinfected C:\Program Files\support.com\client\bin\sdckill.exe
Virus:W32/Parite.B Disinfected C:\Program Files\support.com\client\bin\tgagentm.exe
Virus:W32/Parite.B Disinfected C:\Program Files\support.com\client\bin\tgcmd.exe
Virus:W32/Parite.B Disinfected C:\Program Files\support.com\client\bin\tgfix.exe
Virus:W32/Parite.B Disinfected C:\Program Files\support.com\client\bin\tgshell.exe
Virus:W32/Parite.B Disinfected C:\Program Files\support.com\client\bin\tgsrvc.exe
Virus:W32/Parite.B Disinfected C:\Program Files\teamspeak2_RC2\client_sdk\tsControl.exe
Virus:W32/Parite.B Disinfected C:\Program Files\teamspeak2_RC2\server_windows.exe
Virus:W32/Parite.B Disinfected C:\Program Files\teamspeak2_RC2\TeamSpeak.exe
Virus:W32/Parite.B Disinfected C:\Program Files\teamspeak2_RC2\unins000.exe
Virus:W32/Parite.B Disinfected C:\Program Files\teamspeak2_RC2\unins001.exe
Virus:W32/Parite.B Disinfected C:\Program Files\TGTSoft\StyleXP\CurrentLogon.EXE
Virus:W32/Parite.B Disinfected C:\Program Files\TGTSoft\StyleXP\StyleXP-uninstall.exe
Virus:W32/Parite.B Disinfected C:\Program Files\TGTSoft\StyleXP\StyleXP.exe
Virus:W32/Parite.B Disinfected C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
Spyware:Spyware/New.net No disinfected C:\Program Files\themexp\Themexp.org File\NNEZTA388.exe
Virus:W32/Parite.B Disinfected C:\Program Files\themexp\Themexp.org File\WUSV-SYNCmInst.exe
Virus:W32/Parite.B Disinfected C:\Program Files\TrojanHunter 4.2\InstallLicense.exe
Virus:W32/Parite.B Disinfected C:\Program Files\TrojanHunter 4.2\InstTimeUpdater.exe
Virus:W32/Parite.B Disinfected C:\Program Files\TrojanHunter 4.2\SubmitFiles\SubmitFiles.exe
Virus:W32/Parite.B Disinfected C:\Program Files\TrojanHunter 4.2\THGuard.exe
Virus:W32/Parite.B Disinfected C:\Program Files\TrojanHunter 4.2\Tools\Autostart Explorer\AutostartExplorer.exe
Virus:W32/Parite.B Disinfected C:\Program Files\TrojanHunter 4.2\Tools\LiveUpdate\LiveUpdate.exe
Virus:W32/Parite.B Disinfected C:\Program Files\TrojanHunter 4.2\Tools\Process Viewer\ProcessViewer.exe
Virus:W32/Parite.B Disinfected C:\Program Files\TrojanHunter 4.2\Tools\Window List\WindowList.exe
Virus:W32/Parite.B Disinfected C:\Program Files\TrojanHunter 4.2\TrojanHunter.exe
Virus:W32/Parite.B Disinfected C:\Program Files\TrojanHunter 4.2\unins000.exe
Virus:W32/Parite.B Disinfected C:\Program Files\UltraWeb\ultraweb.exe
Virus:W32/Parite.B Disinfected C:\Program Files\UltraWeb\unins000.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Ventrilo\Ventrilo.exe
Virus:W32/Parite.B Disinfected C:\Program Files\VideoLAN\VLC\uninstall.exe
Virus:W32/Parite.B Disinfected C:\Program Files\VideoLAN\VLC\vlc.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Webteh\BSPlayer\bplay.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Webteh\BSPlayer\bsplay.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Webteh\BSPlayer\uninstall.EXE
Virus:W32/Parite.B Disinfected C:\Program Files\Webteh\BSplayerPro\bplay.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Webteh\BSplayerPro\bsplay.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Webteh\BSplayerPro\uninstall.EXE
Virus:W32/Parite.B Disinfected C:\Program Files\Western Digital\Data Lifeguard Tools\50comupd.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Western Digital\Data Lifeguard Tools\CDEject.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Western Digital\Data Lifeguard Tools\DataLifeguard.exe
Virus:W32/Parite.B Disinfected C:\Program Files\WhereIsIt_Lite\unins000.exe
Virus:W32/Parite.B Disinfected C:\Program Files\WhereIsIt_Lite\WhereIsIt_Lite.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Winamp\GlamorousPad.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Winamp\patch.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Winamp\sexyfont.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Winamp\UninstWA.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Winamp\winamp.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Windows Media Player\dlimport.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Windows Media Player\Installer\mpsetupxp.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Windows Media Player\wmlaunch.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Windows Media Player\wmpenc.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Windows NT\hypertrm.exe
Virus:W32/Parite.B Disinfected C:\Program Files\WinRAR\Rar.exe
Virus:W32/Parite.B Disinfected C:\Program Files\WinRAR\Uninstall.exe
Virus:W32/Parite.B Disinfected C:\Program Files\WinRAR\WinRAR.exe
Virus:W32/Parite.B Disinfected C:\Program Files\XviD\AviC.exe
Virus:W32/Parite.B Disinfected C:\Program Files\XviD\MiniCalc.exe
Virus:W32/Parite.B Disinfected C:\Program Files\XviD\OGMCalc.exe
Virus:W32/Parite.B Disinfected C:\Program Files\XviD\StatsReader.exe
Virus:W32/Parite.B Disinfected C:\Program Files\XviD\UninstXviD.exe
  • 0

#14
Deathstrike

Deathstrike

    Member

  • Topic Starter
  • Member
  • PipPip
  • 22 posts
Virus:W32/Parite.B Disinfected C:\Program Files\Yahoo!\Common\unyt.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Zoom Player\DefaultSettings.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Zoom Player\uninstall.exe
Virus:W32/Parite.B Disinfected C:\Program Files\Zoom Player\zplayer.exe
Virus:W32/Parite.B Disinfected C:\Program Files\O“r‚̀́ƒvƒƒWƒFƒNƒg\Skin“V‘\SkinParadise.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$hf_mig$\KB834707\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$hf_mig$\KB834707\update\update.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$hf_mig$\KB840315\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$hf_mig$\KB840987\SP1QFE\ntvdm.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$hf_mig$\KB840987\SP1QFE\winlogon.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$hf_mig$\KB840987\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$hf_mig$\KB840987\update\update.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$hf_mig$\KB841873\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$hf_mig$\KB841873\update\update.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$hf_mig$\KB867282\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$hf_mig$\KB867282\update\update.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$hf_mig$\KB873333\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$hf_mig$\KB873333\update\update.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtServicePackUninstall$\alg.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtServicePackUninstall$\cisvc.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtServicePackUninstall$\clipsrv.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtServicePackUninstall$\cmd.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtServicePackUninstall$\conime.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtServicePackUninstall$\ctfmon.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtServicePackUninstall$\defrag.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtServicePackUninstall$\dfrgntfs.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtServicePackUninstall$\dllhost.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtServicePackUninstall$\dmadmin.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtServicePackUninstall$\dmremote.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtServicePackUninstall$\dumprep.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtServicePackUninstall$\dwwin.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtServicePackUninstall$\imapi.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtServicePackUninstall$\logon.scr
Possible Virus. No disinfected C:\WINDOWS\$NtServicePackUninstall$\mnmsrvc.exe
Possible Virus. No disinfected C:\WINDOWS\$NtServicePackUninstall$\mshta.exe
Possible Virus. No disinfected C:\WINDOWS\$NtServicePackUninstall$\msiexec.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtServicePackUninstall$\scrnsave.scr
Possible Virus. No disinfected C:\WINDOWS\$NtServicePackUninstall$\smlogsvc.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtServicePackUninstall$\ss3dfo.scr
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtServicePackUninstall$\ssflwbox.scr
Possible Virus. No disinfected C:\WINDOWS\$NtServicePackUninstall$\winlogon.exe
Possible Virus. No disinfected C:\WINDOWS\$NtServicePackUninstall$\wmiadap.exe
Possible Virus. No disinfected C:\WINDOWS\$NtServicePackUninstall$\wmiapsrv.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtServicePackUninstall$\wmiprvse.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallKB824141$\spuninst\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallKB824146$\spuninst\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallKB825119$\spuninst\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallKB828028$\spuninst\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallKB828035$\spuninst\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallKB828741$\spuninst\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallKB833407$\spuninst\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallKB834707$\spuninst\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallKB834707-IE6SP1-20040929.091901$\spuninst\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallKB835732$\spuninst\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallKB837001$\spuninst\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallKB839645$\spuninst\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallKB840315$\spuninst\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallKB840315$\xpsp1hfm.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallKB840374$\spuninst\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallKB840987$\ntvdm.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallKB840987$\spuninst\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallKB840987$\xpsp1hfm.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallKB841873$\spuninst\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallKB842773$\spuninst\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallKB873333$\spuninst\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallKB873339$\spuninst\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallKB883939$\spuninst\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallKB885250$\spuninst\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallKB885835$\spuninst\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallKB885836$\spuninst\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallKB887472$\msmsgs.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallKB887472$\spuninst\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallKB887742$\spuninst\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallKB888113$\spuninst\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallKB888302$\spuninst\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallKB890046$\spuninst\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallKB890047$\spuninst\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallKB890175$\spuninst\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallKB890859$\spuninst\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallKB890923$\spuninst\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallKB891781$\spuninst\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallKB893066$\spuninst\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallKB896422$\spuninst\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallKB896428$\spuninst\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallKB898458$\orun32.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallKB898461$\spuninst\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallKB903235$\spuninst\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallQ309056$\hscupdqfe.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallQ313450$\spuninst\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallQ319580$\spuninst\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallQ323172$\spuninst\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallQ324096$\spuninst\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallQ324380$\spuninst\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallQ326830$\spuninst\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallQ328940$\spuninst\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallQ329115$\spuninst\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallQ329170$\spuninst\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallQ329390$\spuninst\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallQ329441$\spuninst\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallQ329834$\spuninst\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallQ810577$\spuninst\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallQ811493$\spuninst\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallQ815021$\spuninst\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallQ817606$\spuninst\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$NtUninstallQ828026$\spuninst\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$xpsp1hfm$\KB821557\update\update.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$xpsp1hfm$\KB823182\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$xpsp1hfm$\KB823182\update\update.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$xpsp1hfm$\KB824105\update\update.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$xpsp1hfm$\KB824141\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$xpsp1hfm$\KB824141\update\update.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$xpsp1hfm$\KB824146\update\update.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$xpsp1hfm$\KB828028\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$xpsp1hfm$\KB828028\update\update.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$xpsp1hfm$\KB828035\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$xpsp1hfm$\KB828741\migregdb.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$xpsp1hfm$\KB828741\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$xpsp1hfm$\KB828741\update\update.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$xpsp1hfm$\KB835732\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$xpsp1hfm$\KB835732\update\update.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$xpsp1hfm$\KB837001\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$xpsp1hfm$\KB837001\update\update.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$xpsp1hfm$\KB839645\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$xpsp1hfm$\KB839645\update\update.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$xpsp1hfm$\KB840374\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$xpsp1hfm$\KB840374\update\update.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$xpsp1hfm$\Q329048\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$xpsp1hfm$\Q329048\update\update.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$xpsp1hfm$\Q329170\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$xpsp1hfm$\Q329170\update\update.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$xpsp1hfm$\Q329390\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$xpsp1hfm$\Q329390\update\update.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$xpsp1hfm$\Q329441\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$xpsp1hfm$\Q329441\update\update.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$xpsp1hfm$\Q329834\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$xpsp1hfm$\Q329834\update\update.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$xpsp1hfm$\Q810577\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$xpsp1hfm$\Q810577\update\update.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$xpsp1hfm$\Q811493\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$xpsp1hfm$\Q811493\update\update.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$xpsp1hfm$\Q811630\update\update.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$xpsp1hfm$\Q815021\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$xpsp1hfm$\Q815021\update\update.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\$xpsp1hfm$\Q817606\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\BBBackup\BB40\ATTUn.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\delttsul.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Downloaded Installations\AmericasArmy\AAsetup.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Downloaded Program Files\CONFLICT.1\UWFX5LP_0001_0715NetInstaller.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Downloaded Program Files\CONFLICT.1\UWFX5LP_0001_0721NetInstaller.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Downloaded Program Files\CONFLICT.2\UWFX5LP_0001_0715NetInstaller.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Downloaded Program Files\CONFLICT.3\UWFX5LP_0001_0715NetInstaller.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Downloaded Program Files\UWFX5LP_0001_0715NetInstaller.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Downloaded Program Files\UWFX5LP_0001_0721NetInstaller.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Drivers\Chipset\AGP\Setup\setupDLL\instdrv.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Drivers\Chipset\AGP\Setup\setupDLL\regmod.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Drivers\Chipset\AGP\Setup\setupDLL\WAITWND.EXE
Virus:W32/Parite.B Disinfected C:\WINDOWS\Drivers\Chipset\SiSSetup.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Drivers\Chipset\USB\Win2K_XP\WinXPUSB\SiSUSBrg.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Drivers\Chipset\USB\Win9x\SiSFiles\Mp_s3.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Drivers\Modem\LTSMMsg.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Drivers\Video\AGP\Win2K_XP\PEF3D\install.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Drivers\Video\AGP\Win2K_XP\PEF3D\uninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Drivers\Video\AGP\Win2K_XP\WinXPUSB\SiSUSBrg.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Drivers\Video\Progress.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Drivers\Video\RestartDlg.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Drivers\Video\setupDLL\IsUninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Drivers\Video\setupDLL\WAITWND.EXE
Virus:W32/Parite.B Disinfected C:\WINDOWS\Drivers\Video2\dmcpl.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Drivers\Video2\nvsvc32.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Drivers\Video2\nwiz.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\eiunin2.exe
Spyware:Spyware/BargainBuddy No disinfected C:\WINDOWS\etb\xml\images\casino.bmp
Spyware:Spyware/BargainBuddy No disinfected C:\WINDOWS\etb\xml\images\dating.bmp
Spyware:Spyware/BargainBuddy No disinfected C:\WINDOWS\etb\xml\images\drugs.bmp
Spyware:Spyware/BargainBuddy No disinfected C:\WINDOWS\etb\xml\images\fav.bmp
Spyware:Spyware/BargainBuddy No disinfected C:\WINDOWS\etb\xml\images\virus.bmp
Virus:W32/Parite.B Disinfected C:\WINDOWS\Help\SBSI\Training\orun32.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\i386\EXPAND.EXE
Virus:W32/Parite.B Disinfected C:\WINDOWS\ieuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Inst9753.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Installer\{174D5678-D941-433C-BD23-58A5C7B0D36D}\Anim3TryAndBuy.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Installer\{64E41792-E142-4337-BEF9-A324C6FDB779}\NewShortcut1.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Intuit\Shared\ARDIAL32.EXE
Virus:W32/Parite.B Disinfected C:\WINDOWS\Intuit\Shared\ardns32.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Intuit\Shared\ICINS32.EXE
Virus:W32/Parite.B Disinfected C:\WINDOWS\Intuit\Shared\ICTOOL32.EXE
Virus:W32/Parite.B Disinfected C:\WINDOWS\IsUninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\iun506.exe
  • 0

#15
Deathstrike

Deathstrike

    Member

  • Topic Starter
  • Member
  • PipPip
  • 22 posts
Virus:W32/Parite.B Disinfected C:\WINDOWS\LastGood\system32\accwiz.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\LastGood\system32\cisvc.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\LastGood\system32\cleanmgr.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\LastGood\system32\clipsrv.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\LastGood\system32\cmd.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\LastGood\system32\conime.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\LastGood\system32\dfrgntfs.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\LastGood\system32\dmadmin.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\LastGood\system32\doskey.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\LastGood\system32\dwwin.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\LastGood\system32\expand.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\LastGood\system32\imapi.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\LastGood\system32\ipconfig.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\LastGood\system32\locator.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\LastGood\system32\mnmsrvc.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\LastGood\system32\msdtc.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\LastGood\system32\mshta.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\LastGood\system32\msiexec.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\LastGood\system32\mspaint.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\LastGood\system32\mstsc.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\LastGood\system32\netdde.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\LastGood\system32\ntsd.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\LastGood\system32\regsvr32.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\LastGood\system32\runonce.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\LastGood\system32\scrnsave.scr
Virus:W32/Parite.B Disinfected C:\WINDOWS\LastGood\system32\sethc.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\LastGood\system32\smlogsvc.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\LastGood\system32\ss3dfo.scr
Virus:W32/Parite.B Disinfected C:\WINDOWS\LastGood\system32\ssbezier.scr
Virus:W32/Parite.B Disinfected C:\WINDOWS\LastGood\system32\ssflwbox.scr
Virus:W32/Parite.B Disinfected C:\WINDOWS\LastGood\system32\sysocmgr.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\LastGood\system32\tourstart.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\LastGood\system32\ups.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\LastGood\system32\usmt\migwiz.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\LastGood\system32\vssvc.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\LastGood\system32\wbem\wmiadap.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\LastGood\system32\wbem\wmiapsrv.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\LastGood\system32\wiaacmgr.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\LastGood\system32\wscntfy.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ltremove.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\LTSMMSG.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Microsoft.NET\Framework\Install.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Microsoft.NET\Framework\v1.0.3705\aspnet_regiis.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Microsoft.NET\Framework\v1.0.3705\aspnet_state.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Microsoft.NET\Framework\v1.0.3705\csc.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Microsoft.NET\Framework\v1.0.3705\cvtres.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Microsoft.NET\Framework\v1.0.3705\gacutil.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\mkuiadscl.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\msjavx86.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\oeuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\PATCH.EXE
Virus:W32/Parite.B Disinfected C:\WINDOWS\Q306583.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Q307274.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Q308387.EXE
Virus:W32/Parite.B Disinfected C:\WINDOWS\Q308402.EXE
Virus:W32/Parite.B Disinfected C:\WINDOWS\Q309521.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Q310601.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Q311785.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Q311889.EXE
Virus:W32/Parite.B Disinfected C:\WINDOWS\Q311967.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Q312131.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Q312368.EXE
Virus:W32/Parite.B Disinfected C:\WINDOWS\Q315000.EXE
Virus:W32/Parite.B Disinfected C:\WINDOWS\Q315403.EXE
Virus:W32/Parite.B Disinfected C:\WINDOWS\Q316134.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Q316397.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Q318138.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Q318202.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Q318203.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Q318623.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Q320174.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\q321232.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Q330994.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\RegisteredPackages\{44BBA855-CC51-11CF-AAFA-00AA00B6015C}\dxdllreg.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\RegisteredPackages\{981FB688-E76B-4246-987B-92083185B90A}\uwdf.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\RegisteredPackages\{981FB688-E76B-4246-987B-92083185B90A}\wdfmgr.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\RegisteredPackages\{DD90D410-1823-43EB-9A16-A2331BF08799}\wmlaunch.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\RegisteredPackages\{DD90D410-1823-43EB-9A16-A2331BF08799}\wmpenc.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Resources\Themes\16250.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Resources\Themes\48153.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Resources\Themes\Aeris Gainsborough.LogOnUI.Exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Resources\Themes\air.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Resources\Themes\akumainfire.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Resources\Themes\akumalightning.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Resources\Themes\akumared.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Resources\Themes\Belldandy 1024x768.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Resources\Themes\Clean Water.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Resources\Themes\Hello Maid.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Resources\Themes\Kasumi XP.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Resources\Themes\logonui1152.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Resources\Themes\Maid Sweep.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Resources\Themes\Mononoke White Princes.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Resources\Themes\Morgan XP.Exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Resources\Themes\naru.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\Resources\Themes\Tifa Lockheart.LogOnUI.Exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\runtsckl.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\accwiz.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\admin.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\alg.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\author.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\cfgwiz.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\cleanmgr.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\cliconfg.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\clipsrv.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\cmd.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\conime.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\ctfmon.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\defrag.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\dllhost.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\dmadmin.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\dumprep.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\dwwin.exe
Possible Virus. No disinfected C:\WINDOWS\ServicePackFiles\i386\faxpatch.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\fp98swin.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\fpadmcgi.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\fpcount.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\fpremadm.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\fxsclnt.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\fxscover.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\fxssvc.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\imapi.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\ipconfig.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\irftp.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\locator.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\logon.scr
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\lsass.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\migregdb.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\mnmsrvc.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\msdtc.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\mshta.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\msiexec.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\msiregmv.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\msmsgs.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\mspaint.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\mstsc.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\muisetup.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\netdde.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\ntvdm.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\rstrui.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\runonce.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\scardsvr.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\scrnsave.scr
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\services.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\sessmgr.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\sethc.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\shtml.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\smi2smir.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\smlogsvc.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\snmp.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\snmptrap.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\spdwnwxp.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\spider.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\spupdwxp.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\ss3dfo.scr
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\ssbezier.scr
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\stub_fpsrvwin.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\svchost.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\sysocmgr.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\taskmgr.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\tourstrt.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\vssvc.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\wiaacmgr.exe
Possible Virus. No disinfected C:\WINDOWS\ServicePackFiles\i386\winlogon.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\wmiadap.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\wmiapsrv.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\wmiprvse.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\ServicePackFiles\i386\wscntfy.exe
Possible Virus. No disinfected C:\WINDOWS\setdebug.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\SoftwareDistribution\Download\032431ba1a09b3a25a616c427234e208\rtmqfe\xpsp1hfm.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\SoftwareDistribution\Download\032431ba1a09b3a25a616c427234e208\update\update.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\SoftwareDistribution\Download\0fd33c77398fa2b50df56456525ef5c3\sp2gdr\spoolsv.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\SoftwareDistribution\Download\0fd33c77398fa2b50df56456525ef5c3\sp2qfe\spoolsv.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\SoftwareDistribution\Download\0fd33c77398fa2b50df56456525ef5c3\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\SoftwareDistribution\Download\0fd33c77398fa2b50df56456525ef5c3\update\arpidfix.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\SoftwareDistribution\Download\0fd33c77398fa2b50df56456525ef5c3\update\update.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\SoftwareDistribution\Download\59bbe22714ec8cd1c1224aa609978d17\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\SoftwareDistribution\Download\59bbe22714ec8cd1c1224aa609978d17\update\arpidfix.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\SoftwareDistribution\Download\59bbe22714ec8cd1c1224aa609978d17\update\update.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\SoftwareDistribution\Download\660425732726e9b33577f4657b36117d\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\SoftwareDistribution\Download\660425732726e9b33577f4657b36117d\update\update.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\SoftwareDistribution\Download\7fc28d97b1595fa7b9dce8dd43cee6b0\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\SoftwareDistribution\Download\7fc28d97b1595fa7b9dce8dd43cee6b0\update\update.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\SoftwareDistribution\Download\91e37ce47e8587128bd714d9a2d1d8d2\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\SoftwareDistribution\Download\91e37ce47e8587128bd714d9a2d1d8d2\update\arpidfix.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\SoftwareDistribution\Download\91e37ce47e8587128bd714d9a2d1d8d2\update\update.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\SoftwareDistribution\Download\c18f704c05de93348e71fb7005eeea05\update\update.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\SoftwareDistribution\Download\c97484bc3f0a909669b5abb5a1bd9a86\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\SoftwareDistribution\Download\c97484bc3f0a909669b5abb5a1bd9a86\update\arpidfix.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\SoftwareDistribution\Download\c97484bc3f0a909669b5abb5a1bd9a86\update\update.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\SoftwareDistribution\Download\eb20c93e69037dbbb7338264155bb725\rtmqfe\xpsp1hfm.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\SoftwareDistribution\Download\eb20c93e69037dbbb7338264155bb725\spuninst.exe
Virus:W32/Parite.B Disinfected C:\WINDOWS\SoftwareDistribution\Download\eb20c93e69037dbbb7338264155bb725\update\update.exe
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP