Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

viruses found---HELP! (term paper due)


  • Please log in to reply

#1
Eli3000

Eli3000

    New Member

  • Member
  • Pip
  • 4 posts
AVG alerted me to the fact that I have 2 particular viruses on my PC..
Trojan-spy.html.smitfraud.com
and worm/vb.cc

here is my log after doing several scans and clean ups with programs such as ad-aware, cleanup, CWShredder, and spybot S&D


Logfile of HijackThis v1.99.1
Scan saved at 4:22:21 PM, on 8/5/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)


Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\SuperAdBlocker.com\Super Ad Blocker\SABSVC.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\WINDOWS\System32\cisvc.exe
C:\WINDOWS\system32\crypserv.exe
C:\Program Files\ewido\security suite\ewidoctrl.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\WINDOWS\system32\wdfmgr.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\alg.exe
C:\PROGRA~1\TEXTBR~1.0\Bin\INSTAN~1.EXE
C:\WINDOWS\htpatch.exe
C:\Program Files\DIGStream\digstream.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Support.com\bin\tgcmd.exe
C:\Program Files\Winamp\winampa.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\Program Files\TrojanHunter 4.2\THGuard.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\ewido\security suite\ewidoguard.exe
C:\PROGRA~1\TEXTBR~1.0\Bin\INSTAN~1.EXE
C:\WINDOWS\htpatch.exe
C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
C:\Program Files\DIGStream\digstream.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Support.com\bin\tgcmd.exe
C:\Program Files\Winamp\winampa.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Innovative Solutions\Advanced Uninstaller PRO 2005 version 7\monitor.exe
C:\Program Files\SuperAdBlocker.com\Super Ad Blocker\SAdBlock.exe
C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe
C:\Program Files\IMsecure\IMsecure.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe
C:\PROGRA~1\WINZIP\winzip32.exe
C:\unzipped\hijackthis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://topclass.brya...Class.dll?Login
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\about.htm
O2 - BHO: SuperAdBlockerBHO Class - {00000000-6C30-11D8-9363-000AE6309654} - C:\Program Files\SuperAdBlocker.com\Super Ad Blocker\SABBHO.dll
O2 - BHO: HelperObject Class - {00C6482D-C502-44C8-8409-FCE54AD9C208} - C:\Program Files\TechSmith\SnagIt 7\SnagItBHO.dll
O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\PROGRA~1\Yahoo!\COMPAN~1\Installs\cpn0\ycomp5_6_2_0.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - (no file)
O2 - BHO: UberButton Class - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O2 - BHO: YahooTaggedBM Class - {65D886A2-7CA7-479B-BB95-14D1EFB7946A} - C:\Program Files\Yahoo!\Common\YIeTagBm.dll
O2 - BHO: IeHelper Class - {A491D208-B353-490F-B81A-A8A3DC97042D} - C:\WINDOWS\system32\smiehlp.dll
O3 - Toolbar: SnagIt - {8FF5E183-ABDE-46EB-B09E-D2AAB95CABE3} - C:\Program Files\TechSmith\SnagIt 7\SnagItIEAddin.dll
O3 - Toolbar: Super Ad Blocker Toolbar - {B4B3001E-0F56-4E51-8250-BDE11547EC55} - C:\Program Files\SuperAdBlocker.com\Super Ad Blocker\sabtb.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRA~1\Yahoo!\COMPAN~1\Installs\cpn0\ycomp5_6_2_0.dll
O4 - HKLM\..\Run: [InstantAccess] C:\PROGRA~1\TEXTBR~1.0\Bin\INSTAN~1.EXE /h
O4 - HKLM\..\Run: [RegisterDropHandler] C:\PROGRA~1\TEXTBR~1.0\Bin\REGIST~1.EXE
O4 - HKLM\..\Run: [HTpatch] C:\WINDOWS\htpatch.exe
O4 - HKLM\..\Run: [SiSUSBRG] C:\WINDOWS\SiSUSBrg.exe
O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [SiSPower] Rundll32.exe SiSPower.dll,ModeAgent
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
O4 - HKLM\..\Run: [DIGStream] C:\Program Files\DIGStream\digstream.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [tgcmd] "C:\Program Files\Support.com\bin\tgcmd.exe" /server /startmonitor /deaf
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [Zone Labs Client] C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [AVG7_EMC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O4 - HKLM\..\Run: [THGuard] "C:\Program Files\TrojanHunter 4.2\THGuard.exe"
O4 - HKLM\..\RunServices: [RegisterDropHandler] C:\PROGRA~1\TEXTBR~1.0\Bin\REGIST~1.EXE
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Yahoo! Pager] C:\Program Files\Yahoo!\Messenger\ypager.exe -quiet
O4 - HKCU\..\Run: [Advanced Uninstaller PRO Installation Monitor] "C:\Program Files\Innovative Solutions\Advanced Uninstaller PRO 2005 version 7\monitor.exe"
O4 - HKCU\..\Run: [SuperAdBlocker] C:\Program Files\SuperAdBlocker.com\Super Ad Blocker\SAdBlock.exe
O4 - Startup: IMsecure.lnk = C:\Program Files\IMsecure\IMsecure.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: &Download with &DAP - C:\PROGRA~1\DAP\dapextie.htm
O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm
O8 - Extra context menu item: Download &all with DAP - C:\PROGRA~1\DAP\dapextie2.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycmap.htm
O8 - Extra context menu item: Yahoo! &SMS - file:///C:\Program Files\Yahoo!\Common/ycsms.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: ICQ Pro - {6224f700-cba3-4071-b251-47cb894244cd} - C:\PROGRA~1\ICQ\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ - {6224f700-cba3-4071-b251-47cb894244cd} - C:\PROGRA~1\ICQ\ICQ.exe
O9 - Extra button: Magic Nettrace - {92848C13-5482-49CB-B31C-CA8D74EFF508} - C:\Program Files\Magic NetTrace\MTIE.exe
O9 - Extra 'Tools' menuitem: &Magic Nettrace - {92848C13-5482-49CB-B31C-CA8D74EFF508} - C:\Program Files\Magic NetTrace\MTIE.exe
O9 - Extra button: Y!mLite - {9B04D939-D9D1-45e0-9FBF-5A31AAF7A68A} - C:\Program Files\Y!mLite\ymlite.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {01FE8D0A-51AD-459B-B62B-85E135128B32} (DD_v4.DDv4) - http://www.drivershq.../prod/DD_v4.CAB
O16 - DPF: {0E5F0222-96B9-11D3-8997-00104BD12D94} (PCPitstop Utility) - http://www.pcpitstop...p/PCPitStop.CAB
O16 - DPF: {2359626E-7524-4F87-B04E-22CD38A0C88C} (ICSScannerLight Class) - http://download.zone...ee/cm/ICSCM.cab
O16 - DPF: {528C14CD-CF9E-489C-A365-5999F17B69B9} (LightSurfUploadCtl Class) - http://pictures.spri...loadControl.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupd...b?1102531558611
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://www.pandasoft...free/asinst.cab
O16 - DPF: {FE0BD779-44EE-4A4B-AA2E-743C63F2E5E6} (IWinAmpActiveX Class) - http://pdl.stream.ao.../ampx_en_dl.cab
O18 - Protocol: g7ps - {9EACF0FB-4FC7-436E-989B-3197142AD979} - C:\Program Files\Common Files\G7PS\Shared Files\G7PSDLL\G7PS.dll
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: Crypkey License - Kenonic Controls Ltd. - C:\WINDOWS\SYSTEM32\crypserv.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido\security suite\ewidoguard.exe
O23 - Service: Super Ad Blocker Service (SABSVC) - SuperAdBlocker.com - C:\Program Files\SuperAdBlocker.com\Super Ad Blocker\SABSVC.EXE
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe

any help would be appreciated.
  • 0

Advertisements


#2
Eli3000

Eli3000

    New Member

  • Topic Starter
  • Member
  • Pip
  • 4 posts
here is other logs also from Ad-aware and ewido.


Ad-Aware SE Build 1.06r1
Logfile Created on:Friday, August 05, 2005 12:34:53 AM
Created with Ad-Aware SE Personal, free for private use.
Using definitions file:SE1R60 04.08.2005
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

References detected during the scan:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
MRU List(TAC index:0):10 total references
Tracking Cookie(TAC index:3):3 total references
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

Ad-Aware SE Settings
===========================
Set : Search for negligible risk entries
Set : Safe mode (always request confirmation)
Set : Scan active processes
Set : Scan registry
Set : Deep-scan registry
Set : Scan my IE Favorites for banned URLs
Set : Scan my Hosts file

Extended Ad-Aware SE Settings
===========================
Set : Unload recognized processes & modules during scan
Set : Obtain command line of scanned processes
Set : Scan registry for all users instead of current user only
Set : Always try to unload modules before deletion
Set : During removal, unload Explorer and IE if necessary
Set : Let Windows remove files in use at next reboot
Set : Delete quarantined objects after restoring
Set : Write-protect system files after repair (Hosts file, etc.)
Set : Include basic Ad-Aware settings in log file
Set : Include additional Ad-Aware settings in log file
Set : Include reference summary in log file
Set : Include alternate data stream details in log file
Set : Play sound at scan completion if scan locates critical objects


8-5-2005 12:34:53 AM - Scan started. (Custom mode)

Listing running processes
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

#:1 [smss.exe]
ModuleName : \SystemRoot\System32\smss.exe
Command Line : n/a
ProcessID : 520
ThreadCreationTime : 8-5-2005 2:34:41 AM
BasePriority : Normal


#:2 [csrss.exe]
ModuleName : \??\C:\WINDOWS\system32\csrss.exe
Command Line : C:\WINDOWS\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,3072,512 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ProfileControl=Off MaxRequestTh
ProcessID : 576
ThreadCreationTime : 8-5-2005 2:34:45 AM
BasePriority : Normal


#:3 [winlogon.exe]
ModuleName : \??\C:\WINDOWS\system32\winlogon.exe
Command Line : winlogon.exe
ProcessID : 600
ThreadCreationTime : 8-5-2005 2:34:45 AM
BasePriority : High


#:4 [services.exe]
ModuleName : C:\WINDOWS\system32\services.exe
Command Line : C:\WINDOWS\system32\services.exe
ProcessID : 644
ThreadCreationTime : 8-5-2005 2:34:46 AM
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Services and Controller app
InternalName : services.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : services.exe

#:5 [lsass.exe]
ModuleName : C:\WINDOWS\system32\lsass.exe
Command Line : C:\WINDOWS\system32\lsass.exe
ProcessID : 656
ThreadCreationTime : 8-5-2005 2:34:46 AM
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : LSA Shell (Export Version)
InternalName : lsass.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : lsass.exe

#:6 [svchost.exe]
ModuleName : C:\WINDOWS\system32\svchost.exe
Command Line : C:\WINDOWS\system32\svchost -k DcomLaunch
ProcessID : 808
ThreadCreationTime : 8-5-2005 2:34:48 AM
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : svchost.exe

#:7 [svchost.exe]
ModuleName : C:\WINDOWS\system32\svchost.exe
Command Line : C:\WINDOWS\system32\svchost -k rpcss
ProcessID : 852
ThreadCreationTime : 8-5-2005 2:34:48 AM
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : svchost.exe

#:8 [svchost.exe]
ModuleName : C:\WINDOWS\System32\svchost.exe
Command Line : C:\WINDOWS\System32\svchost.exe -k netsvcs
ProcessID : 988
ThreadCreationTime : 8-5-2005 2:34:49 AM
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : svchost.exe

#:9 [svchost.exe]
ModuleName : C:\WINDOWS\System32\svchost.exe
Command Line : C:\WINDOWS\System32\svchost.exe -k NetworkService
ProcessID : 1068
ThreadCreationTime : 8-5-2005 2:34:50 AM
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : svchost.exe

#:10 [svchost.exe]
ModuleName : C:\WINDOWS\System32\svchost.exe
Command Line : C:\WINDOWS\System32\svchost.exe -k LocalService
ProcessID : 1144
ThreadCreationTime : 8-5-2005 2:34:50 AM
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : svchost.exe

#:11 [ccsetmgr.exe]
ModuleName : C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
Command Line : "C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe"
ProcessID : 1284
ThreadCreationTime : 8-5-2005 2:34:52 AM
BasePriority : Normal
FileVersion : 103.0.4.3
ProductVersion : 103.0.4.3
ProductName : Client and Host Security Platform
CompanyName : Symantec Corporation
FileDescription : Symantec Settings Manager Service
InternalName : ccSetMgr
LegalCopyright : Copyright © 2000-2004 Symantec Corporation. All rights reserved.
OriginalFilename : ccSetMgr.exe

#:12 [spoolsv.exe]
ModuleName : C:\WINDOWS\system32\spoolsv.exe
Command Line : C:\WINDOWS\system32\spoolsv.exe
ProcessID : 1360
ThreadCreationTime : 8-5-2005 2:34:53 AM
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Spooler SubSystem App
InternalName : spoolsv.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : spoolsv.exe

#:13 [avgamsvr.exe]
ModuleName : C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
Command Line : C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
ProcessID : 1548
ThreadCreationTime : 8-5-2005 2:34:53 AM
BasePriority : Normal
FileVersion : 7,1,0,321
ProductVersion : 7.1.0.321
ProductName : AVG Anti-Virus System
CompanyName : GRISOFT, s.r.o.
FileDescription : AVG Alert Manager
InternalName : avgamsvr
LegalCopyright : Copyright © 2005, GRISOFT, s.r.o.
OriginalFilename : avgamsvr.EXE

#:14 [avgupsvc.exe]
ModuleName : C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
Command Line : C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
ProcessID : 1564
ThreadCreationTime : 8-5-2005 2:34:54 AM
BasePriority : Normal
FileVersion : 7,1,0,321
ProductVersion : 7.1.0.321
ProductName : AVG 7.0 Anti-Virus System
CompanyName : GRISOFT, s.r.o.
FileDescription : AVG Update Service
InternalName : avgupsvc
LegalCopyright : Copyright © 2005, GRISOFT, s.r.o.
OriginalFilename : avgupdsvc.EXE

#:15 [cisvc.exe]
ModuleName : C:\WINDOWS\System32\cisvc.exe
Command Line : C:\WINDOWS\System32\cisvc.exe
ProcessID : 1600
ThreadCreationTime : 8-5-2005 2:34:54 AM
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Content Index service
InternalName : cisvc.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : cisvc.exe

#:16 [crypserv.exe]
ModuleName : C:\WINDOWS\system32\crypserv.exe
Command Line : crypserv.exe
ProcessID : 1620
ThreadCreationTime : 8-5-2005 2:34:55 AM
BasePriority : High
FileVersion : 5.4.0
ProductVersion : 5.4
ProductName : CrypKey Software Licensing System
CompanyName : Kenonic Controls Ltd.
FileDescription : CrypKey NT Service
InternalName : crypserv
LegalCopyright : Copyright © 2000
LegalTrademarks : CrypKey
OriginalFilename : crypserv.exe
Comments : Operates in all directories, not just configured ones. Directory configuration only used for fille clean up and uninstall. 0/3 fixed problem with other partitions. 0/6 fixed problem with short paths

#:17 [mdm.exe]
ModuleName : C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
Command Line : "C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe"
ProcessID : 1680
ThreadCreationTime : 8-5-2005 2:34:58 AM
BasePriority : Normal
FileVersion : 7.00.9064.9150
ProductVersion : 7.00.9064.9150
ProductName : Microsoft Development Environment
CompanyName : Microsoft Corporation
FileDescription : Machine Debug Manager
InternalName : mdm.exe
LegalCopyright : Copyright © Microsoft Corp. 1997-2000
OriginalFilename : mdm.exe

#:18 [wdfmgr.exe]
ModuleName : C:\WINDOWS\system32\wdfmgr.exe
Command Line : C:\WINDOWS\system32\wdfmgr.exe
ProcessID : 1744
ThreadCreationTime : 8-5-2005 2:34:59 AM
BasePriority : Normal
FileVersion : 5.2.3790.1230 built by: DNSRV(bld4act)
ProductVersion : 5.2.3790.1230
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Windows User Mode Driver Manager
InternalName : WdfMgr
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : WdfMgr.exe

#:19 [vsmon.exe]
ModuleName : C:\WINDOWS\system32\ZoneLabs\vsmon.exe
Command Line : n/a
ProcessID : 1916
ThreadCreationTime : 8-5-2005 2:35:01 AM
BasePriority : Normal
FileVersion : 6.0.631.003
ProductVersion : 6.0.631.003
ProductName : TrueVector Service
CompanyName : Zone Labs, LLC
FileDescription : TrueVector Service
InternalName : vsmon
LegalCopyright : Copyright © 1998-2005, Zone Labs, LLC
OriginalFilename : vsmon.exe

#:20 [alg.exe]
ModuleName : C:\WINDOWS\System32\alg.exe
Command Line : C:\WINDOWS\System32\alg.exe
ProcessID : 1100
ThreadCreationTime : 8-5-2005 2:35:19 AM
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Application Layer Gateway Service
InternalName : ALG.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : ALG.exe

#:21 [explorer.exe]
ModuleName : C:\WINDOWS\Explorer.EXE
Command Line : C:\WINDOWS\Explorer.EXE
ProcessID : 5628
ThreadCreationTime : 8-5-2005 5:27:21 AM
BasePriority : Normal
FileVersion : 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 6.00.2900.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Windows Explorer
InternalName : explorer
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : EXPLORER.EXE

#:22 [instan~1.exe]
ModuleName : C:\PROGRA~1\TEXTBR~1.0\Bin\INSTAN~1.EXE
Command Line : "C:\PROGRA~1\TEXTBR~1.0\Bin\INSTAN~1.EXE" /h
ProcessID : 5696
ThreadCreationTime : 8-5-2005 5:27:24 AM
BasePriority : Normal


#:23 [htpatch.exe]
ModuleName : C:\WINDOWS\htpatch.exe
Command Line : "C:\WINDOWS\htpatch.exe"
ProcessID : 5740
ThreadCreationTime : 8-5-2005 5:27:26 AM
BasePriority : Normal


#:24 [jusched.exe]
ModuleName : C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
Command Line : "C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe"
ProcessID : 5848
ThreadCreationTime : 8-5-2005 5:27:28 AM
BasePriority : Normal


#:25 [digstream.exe]
ModuleName : C:\Program Files\DIGStream\digstream.exe
Command Line : "C:\Program Files\DIGStream\digstream.exe"
ProcessID : 5856
ThreadCreationTime : 8-5-2005 5:27:28 AM
BasePriority : Normal
FileVersion : 2.3.0.0003
ProductVersion : 2.3.0.0003
ProductName : DIGStream
CompanyName : Walt Disney Internet Group
FileDescription : DIGStream Cache Manager
InternalName : DIGStream.exe
LegalCopyright : Copyright © 2002-2005 Walt Disney Internet Group.
OriginalFilename : digstream.exe
Comments : none

#:26 [qttask.exe]
ModuleName : C:\Program Files\QuickTime\qttask.exe
Command Line : "C:\Program Files\QuickTime\qttask.exe" -atboottime
ProcessID : 5900
ThreadCreationTime : 8-5-2005 5:27:29 AM
BasePriority : Normal
FileVersion : 6.5.1
ProductVersion : QuickTime 6.5.1
ProductName : QuickTime
CompanyName : Apple Computer, Inc.
InternalName : QuickTime Task
LegalCopyright : © Apple Computer, Inc. 2001-2004
OriginalFilename : QTTask.exe

#:27 [realsched.exe]
ModuleName : C:\Program Files\Common Files\Real\Update_OB\realsched.exe
Command Line : "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
ProcessID : 5916
ThreadCreationTime : 8-5-2005 5:27:29 AM
BasePriority : Normal
FileVersion : 0.1.0.3018
ProductVersion : 0.1.0.3018
ProductName : RealPlayer (32-bit)
CompanyName : RealNetworks, Inc.
FileDescription : RealNetworks Scheduler
InternalName : schedapp
LegalCopyright : Copyright © RealNetworks, Inc. 1995-2004
LegalTrademarks : RealAudio™ is a trademark of RealNetworks, Inc.
OriginalFilename : realsched.exe

#:28 [tgcmd.exe]
ModuleName : C:\Program Files\Support.com\bin\tgcmd.exe
Command Line : "C:\Program Files\Support.com\bin\tgcmd.exe" /server /startmonitor /deaf
ProcessID : 5928
ThreadCreationTime : 8-5-2005 5:27:30 AM
BasePriority : Normal
FileVersion : 5,5,624,0
ProductVersion : 5,5,624,0
ProductName : Support.com Scheduler and Command Dispatcher
CompanyName : Support.com, Inc.
FileDescription : Support.com Scheduler and Command Dispatcher
InternalName : TGCMD
LegalCopyright : Copyright 1997-2069 Support.com
OriginalFilename : TGCMD.EXE

#:29 [winampa.exe]
ModuleName : C:\Program Files\Winamp\winampa.exe
Command Line : "C:\Program Files\Winamp\winampa.exe"
ProcessID : 5964
ThreadCreationTime : 8-5-2005 5:27:30 AM
BasePriority : Normal


#:30 [zlclient.exe]
ModuleName : C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
Command Line : n/a
ProcessID : 5984
ThreadCreationTime : 8-5-2005 5:27:30 AM
BasePriority : Normal
FileVersion : 6.0.631.003
ProductVersion : 6.0.631.003
ProductName : Zone Labs Client
CompanyName : Zone Labs, LLC
FileDescription : Zone Labs Client
InternalName : zlclient
LegalCopyright : Copyright © 1998-2005, Zone Labs, LLC
OriginalFilename : zlclient.exe

#:31 [avgcc.exe]
ModuleName : C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
Command Line : "C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe" /STARTUP
ProcessID : 6004
ThreadCreationTime : 8-5-2005 5:27:31 AM
BasePriority : Normal
FileVersion : 7,1,0,338
ProductVersion : 7.1.0.338
ProductName : AVG Anti-Virus System
CompanyName : GRISOFT, s.r.o.
FileDescription : AVG Control Center
InternalName : AvgCC
LegalCopyright : Copyright © 2005, GRISOFT, s.r.o.
OriginalFilename : AvgCC.EXE

#:32 [avgemc.exe]
ModuleName : C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
Command Line : "C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe"
ProcessID : 6012
ThreadCreationTime : 8-5-2005 5:27:31 AM
BasePriority : Normal
FileVersion : 7,1,0,338
ProductVersion : 7.1.0.338
ProductName : AVG Anti-Virus System
CompanyName : GRISOFT, s.r.o.
FileDescription : AVG E-Mail Scanner
InternalName : avgemc
LegalCopyright : Copyright © 2005, GRISOFT, s.r.o.
OriginalFilename : avgemc.exe

#:33 [ctfmon.exe]
ModuleName : C:\WINDOWS\system32\ctfmon.exe
Command Line : "C:\WINDOWS\system32\ctfmon.exe"
ProcessID : 6040
ThreadCreationTime : 8-5-2005 5:27:32 AM
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : CTF Loader
InternalName : CTFMON
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : CTFMON.EXE

#:34 [monitor.exe]
ModuleName : C:\Program Files\Innovative Solutions\Advanced Uninstaller PRO 2005 version 7\monitor.exe
Command Line : "C:\Program Files\Innovative Solutions\Advanced Uninstaller PRO 2005 version 7\monitor.exe"
ProcessID : 6056
ThreadCreationTime : 8-5-2005 5:27:34 AM
BasePriority : Normal
FileVersion : 7.1.0.902
CompanyName : Innovative Solutions http://www.innovative-sol.com/
FileDescription : Installation Monitor
InternalName : Advanced Uninstaller PRO
LegalCopyright : Innovative Solutions
LegalTrademarks : Innovative Solutions

#:35 [sadblock.exe]
ModuleName : C:\Program Files\SuperAdBlocker.com\Super Ad Blocker\SAdBlock.exe
Command Line : "C:\Program Files\SuperAdBlocker.com\Super Ad Blocker\SAdBlock.exe"
ProcessID : 6084
ThreadCreationTime : 8-5-2005 5:27:35 AM
BasePriority : Normal
FileVersion : 2, 0, 0, 1130
ProductVersion : 2, 0, 0, 1130
ProductName : Super Ad Blocker
CompanyName : SuperAdBlocker.com
FileDescription : Super Ad Blocker
InternalName : Super Ad Blocker
LegalCopyright : Copyright © 2004-2005 by SuperAdBlocker.com
OriginalFilename : SAdBlock.exe

#:36 [sabsvc.exe]
ModuleName : C:\Program Files\SuperAdBlocker.com\Super Ad Blocker\SABSVC.EXE
Command Line : "C:\Program Files\SuperAdBlocker.com\Super Ad Blocker\SABSVC.EXE"
ProcessID : 2320
ThreadCreationTime : 8-5-2005 5:27:38 AM
BasePriority : Normal
FileVersion : 1, 0, 0, 1026
ProductVersion : 1, 0, 0, 1026
ProductName : Super Ad Blocker Service
CompanyName : SuperAdBlocker.com
FileDescription : Super Ad Blocker Service
InternalName : Super Ad Blocker Service
LegalCopyright : Copyright © 2004
OriginalFilename : SABSVC.EXE

#:37 [imsecure.exe]
ModuleName : C:\Program Files\IMsecure\IMsecure.exe
Command Line : "C:\Program Files\IMsecure\IMsecure.exe"
ProcessID : 2868
ThreadCreationTime : 8-5-2005 5:27:43 AM
BasePriority : Normal
FileVersion : 1, 5, 0, 39
ProductVersion : 1, 5, 0, 39
ProductName : IMsecure Pro
CompanyName : Zone Labs, Inc.
FileDescription : Zone Labs IMsecure Pro
InternalName : IMsecure Pro
LegalCopyright : Copyright © 1998-2004, Zone Labs, Inc.
OriginalFilename : IMsecurePro.exe

#:38 [ymsgr_tray.exe]
ModuleName : C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe
Command Line : "C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe" -ymsgr
ProcessID : 1960
ThreadCreationTime : 8-5-2005 5:27:47 AM
BasePriority : Normal


#:39 [ad-aware.exe]
ModuleName : C:\Program Files\Lavasoft\Ad-Aware SE Personal\Ad-Aware.exe
Command Line : "C:\Program Files\Lavasoft\Ad-Aware SE Personal\Ad-Aware.exe"
ProcessID : 2144
ThreadCreationTime : 8-5-2005 5:29:03 AM
BasePriority : Normal
FileVersion : 6.2.0.236
ProductVersion : SE 106
ProductName : Lavasoft Ad-Aware SE
CompanyName : Lavasoft Sweden
FileDescription : Ad-Aware SE Core application
InternalName : Ad-Aware.exe
LegalCopyright : Copyright © Lavasoft AB Sweden
OriginalFilename : Ad-Aware.exe
Comments : All Rights Reserved

Memory scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 0


Started registry scan
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

Registry Scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 0


Started deep registry scan
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

Deep registry scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 0

MRU List Object Recognized!
Location: : S-1-5-21-1614895754-842925246-1060284298-1003\software\ahead\nero - burning rom\recent file list
Description : list of recently used files in nero burning rom


MRU List Object Recognized!
Location: : software\microsoft\direct3d\mostrecentapplication
Description : most recent application to use microsoft direct3d


MRU List Object Recognized!
Location: : software\microsoft\direct3d\mostrecentapplication
Description : most recent application to use microsoft direct X


MRU List Object Recognized!
Location: : software\microsoft\directdraw\mostrecentapplication
Description : most recent application to use microsoft directdraw


MRU List Object Recognized!
Location: : S-1-5-21-1614895754-842925246-1060284298-1003\software\microsoft\internet explorer
Description : last download directory used in microsoft internet explorer


MRU List Object Recognized!
Location: : S-1-5-21-1614895754-842925246-1060284298-1003\software\microsoft\search assistant\acmru
Description : list of recent search terms used with the search assistant


MRU List Object Recognized!
Location: : S-1-5-21-1614895754-842925246-1060284298-1003\software\microsoft\windows\currentversion\explorer\comdlg32\lastvisitedmru
Description : list of recent programs opened


MRU List Object Recognized!
Location: : S-1-5-21-1614895754-842925246-1060284298-1003\software\microsoft\windows\currentversion\explorer\comdlg32\opensavemru
Description : list of recently saved files, stored according to file extension


MRU List Object Recognized!
Location: : S-1-5-21-1614895754-842925246-1060284298-1003\software\microsoft\windows\currentversion\explorer\recentdocs
Description : list of recent documents opened


MRU List Object Recognized!
Location: : S-1-5-21-1614895754-842925246-1060284298-1003\software\microsoft\windows media\wmsdk\general
Description : windows media sdk



Started Tracking Cookie scan
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»


Tracking Cookie Object Recognized!
Type : IECache Entry
Data : elisha@atdmt[2].txt
TAC Rating : 3
Category : Data Miner
Comment : Hits:2
Value : Cookie:elisha@atdmt.com/
Expires : 8-3-2010 7:00:00 PM
LastSync : Hits:2
UseCount : 0
Hits : 2

Tracking Cookie Object Recognized!
Type : IECache Entry
Data : elisha@tribalfusion[1].txt
TAC Rating : 3
Category : Data Miner
Comment : Hits:1
Value : Cookie:elisha@tribalfusion.com/
Expires : 12-31-2037 7:00:00 PM
LastSync : Hits:1
UseCount : 0
Hits : 1

Tracking Cookie Object Recognized!
Type : IECache Entry
Data : elisha@clickbank[1].txt
TAC Rating : 3
Category : Data Miner
Comment : Hits:3
Value : Cookie:elisha@clickbank.net/
Expires : 1-31-2006 11:32:24 PM
LastSync : Hits:3
UseCount : 0
Hits : 3

Tracking cookie scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 3
Objects found so far: 13



Deep scanning and examining files (C:)
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

Disk Scan Result for C:\
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 13


Deep scanning and examining files (D:)
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

Disk Scan Result for D:\
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 13


Scanning Hosts file......
Hosts file location:"C:\WINDOWS\system32\drivers\etc\hosts".
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

Hosts file scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
1 entries scanned.
New critical objects:0
Objects found so far: 13




Performing conditional scans...
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

Conditional scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 13

12:53:17 AM Scan Complete

Summary Of This Scan
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Total scanning time:00:18:24.888
Objects scanned:168687
Objects identified:3
Objects ignored:0
New critical objects:3


---------------------------------------------------------
ewido security suite - Scan report
---------------------------------------------------------

+ Created on: 8:51:09 AM, 8/5/2005
+ Report-Checksum: 30998053

+ Scan result:

HKU\S-1-5-21-1614895754-842925246-1060284298-1003\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{00A6FAF1-072E-44CF-8957-5838F569A31D} -> Spyware.MyWebSearch : Cleaned with backup
HKU\S-1-5-21-1614895754-842925246-1060284298-1003\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{07B18EA1-A523-4961-B6BB-170DE4475CCA} -> Spyware.MyWebSearch : Cleaned with backup
HKU\S-1-5-21-1614895754-842925246-1060284298-1003\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{36A59337-6EEF-40AE-94B1-ED443A0C4740} -> Spyware.BetterInternet : Cleaned with backup
HKU\S-1-5-21-1614895754-842925246-1060284298-1003\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{43F02779-6D88-4958-8AD3-83C12D86ADC7} -> Spyware.AdvancedSearchbar : Cleaned with backup
HKU\S-1-5-21-1614895754-842925246-1060284298-1003\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{5F1ABCDB-A875-46C1-8345-B72A4567E486} -> Spyware.ISTBar : Cleaned with backup
HKU\S-1-5-21-1614895754-842925246-1060284298-1003\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{669695BC-A811-4A9D-8CDF-BA8C795F261C} -> Spyware.PowerStrip : Cleaned with backup
HKU\S-1-5-21-1614895754-842925246-1060284298-1003\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{999A06FF-10EF-4A29-8640-69E99882C26B} -> Spyware.Begin2Search : Cleaned with backup
HKU\S-1-5-21-1614895754-842925246-1060284298-1003\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{9C691A33-7DDA-4C2F-BE4C-C176083F35CF} -> Spyware.WinFavorites : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Adobe Illustrator CS2.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\After Effects 6.5 Studio Techniques.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\AI RoboForm 6.4.1.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Altova XMLSpy 2005.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Assault on Precinct 13 (2005).zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Battlefield 2.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Be Cool DVDSCR.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Bluetooth Application Developers Guide.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Citizen Kane.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Clock Tray Skins 1.77.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Commandos 3 Destination Berlin.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Computer Gaming World Magazine July-Augu.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Computer Shopper July 2005.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Cyber Cafe Pro 4.3.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Digital Character Animation 2 Vol 1 Esse.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Digital Character Animation 2 Vol 2 - Ad.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\DivX Pro 5.2.1 Full.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Domain Punch Professional v1.0.060205.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Download Accelerator Plus 7.4.02..zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Fantasy Forest 3D Screensaver.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Far Cry DVD - Full & Working.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Final Draft 7.1.1.19.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Freddy VS Jason.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Free Internet TV v4.5.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\FruityLoops 5.0.2c.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\FruityLoops 5.02c.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\GXTranscoder 2.20.2737.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Harry Potter and the Half-Blood Prince.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Harry Potter and the prisoner of azkaban.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Harry Potter and the Sorceror's Stone (M.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Hiring Independent Contractors The Emplo.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\ImageLine FL Studio 5.0.2c Studio Prod.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Inside The Business of Graphic Design 60.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\JGSoft PowerGREP 3.1.0.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Kaspersky Anti-Virus 2006.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Knights of the old Republic II.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Konfabulator 2.1.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Kylie Minogue - Fever (Album).zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Kylie Minogue - Fever.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\LOTR - Return of the King (Mobile phone).zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Mean Girls.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Medal of Honor Pacific Assault - Fast H.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Media Show XP v3.5.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Meet The Fockers.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Mexican Motor Mafia.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Microsoft Windows 2003 Server 10 in 1.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Microsoft Windows 98 SE.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Microsoft Windows vista Codename Longh.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Microsoft World of Flight.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Moto Racer.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\nVidia nTune 2005 2.05.09.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Office 2003 pro.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Paint Shop Pro 9.01 PREMIUM.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Photo Collage 1.26.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Planetry Conquest PC.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Playboy The Mansion.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Prince Of Persia Sands Of Time.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Prison Tycoon.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Quake 4 (Quake IV) Real.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\RAM Saver Pro Version 4.5.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Registry Mechanic 5.0.0.132.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Restorator 2005 Build 1457.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Robots(mobile phone).zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Sparx Systems Enterpris Architect.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Spyware Doctor 3.2.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Style XP 3.11 Men.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Tally 7.2.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Taxi (2004).zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Taxi - Soundtrack.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\The Devil's Rejects.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\The Frighteners (Mobile phone).zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\The Logo Creator Mega Pack 4.1.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\The simpsons Season 16 episode 2 (xvid - HTTP).zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Thirteen (Mobile phone).zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\ToonBoom Studio 3.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Troy.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Turbo FTP 4.5.420.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\TUX Magazine August 2005.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Video Convert Master 3.0.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\VideoInspector 1.6.0.85.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Virtual DJ Studio 3.4.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Warez P2P 2.85 .zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Windows Patrol 9.1.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Winnow Cleaner 3.4.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\Without a Paddle (2004).zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\World of Warcraft + Online patch.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\X-Setup Pro 6.6.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Complete\XMPlay 3.2.0.7.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Cookies\elisha@ad.yieldmanager[2].txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Cookies\elisha@adopt.specificclick[1].txt -> Spyware.Cookie.Specificclick : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Cookies\elisha@e-2dj6wfk4cpcpibp.stats.esomniture[1].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Cookies\elisha@e-2dj6wfkieocjwao.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Cookies\elisha@e-2dj6wfkiomazggq.stats.esomniture[1].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Cookies\elisha@e-2dj6wfkyqmdzwko.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Cookies\elisha@e-2dj6wfkysoazwhq.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Cookies\elisha@e-2dj6wfl4sjcjoaq.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Cookies\elisha@e-2dj6wfloomc5slp.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Cookies\elisha@e-2dj6wfmyeiczcco.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Cookies\elisha@e-2dj6wjkoajdzidp.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Cookies\elisha@e-2dj6wjkoalazglp.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Cookies\elisha@e-2dj6wjkokncjmhp.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Cookies\elisha@e-2dj6wjkyoidjsaq.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Cookies\elisha@e-2dj6wjl4qiazsco.stats.esomniture[1].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Cookies\elisha@e-2dj6wjlikmajigo.stats.esomniture[1].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Cookies\elisha@e-2dj6wjlowhczibo.stats.esomniture[1].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Cookies\elisha@e-2dj6wjlowkdpcdq.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Cookies\elisha@e-2dj6wjmiancpmdo.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Cookies\elisha@e-2dj6wjnyaiazaaq.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Cookies\elisha@e-2dj6wjnycodpscp.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Cookies\elisha@e-2dj6wjnyelczmhp.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Cookies\elisha@e-2dj6wjnyqkdjsgo.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Cookies\elisha@paypopup[2].txt -> Spyware.Cookie.Paypopup : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Cookies\elisha@popunder.paypopup[1].txt -> Spyware.Cookie.Paypopup : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Cookies\elisha@yieldmanager[1].txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Shared\Advanced Registry Doctor Pro 5.3.6.15.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Shared\Internet Explorer 7.0.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Shared\Software\Symantec Norton 2005 Key Generators (antivirus - systemworks - internet security ) crack.zip/Symantec Norton 2005 Key Generators ( antivirus - systemworks - internet security )/Internet Security 2005 Key Generator/KEY GENERATOR CVS.EXE -> TrojanDropper.Delf.fd : Cleaned with backup
C:\Documents and Settings\Elisha.ELISHA-1H6T6DSI\Shared\WinASO Registry Optimizer v2 0 5 WinALL Incl Keygen-ViRiLiTY.rar/WinASO Registry Optimizer v2 0 5 WinALL Incl Keygen-ViRiLiTY.exe -> TrojanDownloader.Small.amq : Cleaned with backup
:mozilla.9:C:\Documents and Settings\Guest\Application Data\Mozilla\Profiles\default\mkkgwwra.slt\cookies.txt -> Spyware.Cookie.Valueclick : Cleaned with backup
:mozilla.12:C:\Documents and Settings\Guest\Application Data\Mozilla\Profiles\default\mkkgwwra.slt\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.13:C:\Documents and Settings\Guest\Application Data\Mozilla\Profiles\default\mkkgwwra.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.14:C:\Documents and Settings\Guest\Application Data\Mozilla\Profiles\default\mkkgwwra.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.15:C:\Documents and Settings\Guest\Application Data\Mozilla\Profiles\default\mkkgwwra.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.16:C:\Documents and Settings\Guest\Application Data\Mozilla\Profiles\default\mkkgwwra.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.17:C:\Documents and Settings\Guest\Application Data\Mozilla\Profiles\default\mkkgwwra.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.18:C:\Documents and Settings\Guest\Application Data\Mozilla\Profiles\default\mkkgwwra.slt\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.19:C:\Documents and Settings\Guest\Application Data\Mozilla\Profiles\default\mkkgwwra.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.20:C:\Documents and Settings\Guest\Application Data\Mozilla\Profiles\default\mkkgwwra.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.21:C:\Documents and Settings\Guest\Application Data\Mozilla\Profiles\default\mkkgwwra.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.22:C:\Documents and Settings\Guest\Application Data\Mozilla\Profiles\default\mkkgwwra.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.23:C:\Documents and Settings\Guest\Application Data\Mozilla\Profiles\default\mkkgwwra.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.24:C:\Documents and Settings\Guest\Application Data\Mozilla\Profiles\default\mkkgwwra.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.25:C:\Documents and Settings\Guest\Application Data\Mozilla\Profiles\default\mkkgwwra.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.26:C:\Documents and Settings\Guest\Application Data\Mozilla\Profiles\default\mkkgwwra.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.27:C:\Documents and Settings\Guest\Application Data\Mozilla\Profiles\default\mkkgwwra.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.28:C:\Documents and Settings\Guest\Application Data\Mozilla\Profiles\default\mkkgwwra.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.29:C:\Documents and Settings\Guest\Application Data\Mozilla\Profiles\default\mkkgwwra.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.30:C:\Documents and Settings\Guest\Application Data\Mozilla\Profiles\default\mkkgwwra.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.31:C:\Documents and Settings\Guest\Application Data\Mozilla\Profiles\default\mkkgwwra.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.32:C:\Documents and Settings\Guest\Application Data\Mozilla\Profiles\default\mkkgwwra.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.33:C:\Documents and Settings\Guest\Application Data\Mozilla\Profiles\default\mkkgwwra.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.34:C:\Documents and Settings\Guest\Application Data\Mozilla\Profiles\default\mkkgwwra.slt\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.35:C:\Documents and Settings\Guest\Application Data\Mozilla\Profiles\default\mkkgwwra.slt\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.38:C:\Documents and Settings\Guest\Application Data\Mozilla\Profiles\default\mkkgwwra.slt\cookies.txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
:mozilla.41:C:\Documents and Settings\Guest\Application Data\Mozilla\Profiles\default\mkkgwwra.slt\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.42:C:\Documents and Settings\Guest\Application Data\Mozilla\Profiles\default\mkkgwwra.slt\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.44:C:\Documents and Settings\Guest\Application Data\Mozilla\Profiles\default\mkkgwwra.slt\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.45:C:\Documents and Settings\Guest\Application Data\Mozilla\Profiles\default\mkkgwwra.slt\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.46:C:\Documents and Settings\Guest\Application Data\Mozilla\Profiles\default\mkkgwwra.slt\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.47:C:\Documents and Settings\Guest\Application Data\Mozilla\Profiles\default\mkkgwwra.slt\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.48:C:\Documents and Settings\Guest\Application Data\Mozilla\Profiles\default\mkkgwwra.slt\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.49:C:\Documents and Settings\Guest\Application Data\Mozilla\Profiles\default\mkkgwwra.slt\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.50:C:\Documents and Settings\Guest\Application Data\Mozilla\Profiles\default\mkkgwwra.slt\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.51:C:\Documents and Settings\Guest\Application Data\Mozilla\Profiles\default\mkkgwwra.slt\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.52:C:\Documents and Settings\Guest\Application Data\Mozilla\Profiles\default\mkkgwwra.slt\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.53:C:\Documents and Settings\Guest\Application Data\Mozilla\Profiles\default\mkkgwwra.slt\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.54:C:\Documents and Settings\Guest\Application Data\Mozilla\Profiles\default\mkkgwwra.slt\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.55:C:\Documents and Settings\Guest\Application Data\Mozilla\Profiles\default\mkkgwwra.slt\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.56:C:\Documents and Settings\Guest\Application Data\Mozilla\Profiles\default\mkkgwwra.slt\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.57:C:\Documents and Settings\Guest\Application Dat
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP