Hi there,
I ran the clean up - i noticed it kept saying "in use - will be deleted" for a lot of the temp files.
I went to add/remove programs (but it said, there was an error "the program may already be removed - do I want to delete it from the Add/remove programs list?"
I clicked ok.
Heres the new logLogfile of HijackThis v1.99.1
Scan saved at 10:43:33 AM, on 9/08/2005
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\windows\System32\smss.exe
C:\windows\system32\csrss.exe
C:\windows\system32\winlogon.exe
C:\windows\system32\services.exe
C:\windows\system32\lsass.exe
C:\windows\system32\svchost.exe
C:\windows\System32\svchost.exe
C:\windows\System32\svchost.exe
C:\windows\System32\svchost.exe
C:\windows\system32\spoolsv.exe
C:\Program Files\ewido\security suite\ewidoctrl.exe
C:\windows\System32\nvsvc32.exe
C:\windows\System32\svchost.exe
C:\Program Files\Trend Micro\PC-cillin 2002\Tmntsrv.exe
C:\windows\Explorer.EXE
C:\Program Files\Trend Micro\PC-cillin 2002\PCCPFW.exe
C:\Program Files\Browser Mouse\Browser Mouse\1.0\lwbwheel.exe
C:\PROGRA~1\MediaKey\MediaKey.EXE
C:\windows\essspk.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~1.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~2.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~3.tmp.exe
C:\Program Files\ahead\InCD\InCD.exe
C:\windows\soundman.exe
C:\Program Files\Trend Micro\PC-cillin 2002\pccguide.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~4.tmp.exe
C:\Program Files\Trend Micro\PC-cillin 2002\PCCClient.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~7.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~5.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~6.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~8.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~9.tmp.exe
C:\Program Files\Hijackthis\HijackThis.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~A.tmp.exe
C:\windows\System32\bcmwltry.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~C.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~D.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~B.tmp.exe
C:\Program Files\Microsoft IntelliType Pro\type32.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~E.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~F.tmp.exe
C:\Program Files\Microsoft IntelliPoint\point32.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~10.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~11.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~12.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~13.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~14.tmp.exe
C:\Program Files\Java\j2re1.4.2_05\bin\jusched.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~18.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~15.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~16.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~17.tmp.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~19.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~1A.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~1B.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~1C.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~1E.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~1F.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~1D.tmp.exe
C:\windows\System32\fgsccxw.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~20.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~22.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~21.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~24.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~25.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~26.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~23.tmp.exe
C:\windows\System32\ctfmon.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~27.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~2E.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~2D.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~2B.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~36.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~32.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~28.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~34.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~33.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~30.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~37.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~31.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~29.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~2C.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~2A.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~2F.tmp.exe
C:\windows\System32\rundll32.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~38.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~39.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~48.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~43.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~45.tmp.exe
C:\Program Files\Adobe\Acrobat 5.0\Distillr\AcroTray.exe
C:\windows\System32\wuauclt.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~42.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~3D.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~46.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~3E.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~44.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~40.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~53.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~41.tmp.exe
C:\WINDOWS\DvzCommon\DvzMsgr.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~54.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~4F.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~47.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~3C.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~3F.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~51.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~55.tmp.exe
C:\Program Files\Palm\HOTSYNC.EXE
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~67.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~63.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~64.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~66.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~60.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~65.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~61.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~62.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~6A.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~6C.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~6F.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~6E.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~69.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~6D.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~6B.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~77.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~78.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~79.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~83.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~7A.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~84.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~82.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~86.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~80.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~7D.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~7F.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~7E.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~85.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~81.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~7B.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~7C.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~98.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~95.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~93.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~97.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~94.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~99.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~9B.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~9D.tmp.exe
C:\WINDOWS\System32\wbem\wmiprvse.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~A0.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~A6.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~A1.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~A2.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~A4.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~A9.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~AC.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~AA.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~A3.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~A7.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~A5.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~B0.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~AB.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~AF.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~AD.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~AE.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~C1.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~C5.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~C7.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~C2.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~CB.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~C3.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~C4.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~C8.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~CD.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~C6.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~CE.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~CA.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~D2.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~CF.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~D0.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~C9.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~CC.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~D3.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~E4.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~DE.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~DD.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~D1.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~E7.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~E5.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~E9.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~E8.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~EB.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~E6.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~EA.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~F0.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~EE.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~F4.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~EC.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~ED.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~F6.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~F1.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~F2.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~F3.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~EF.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~FF.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~101.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~FD.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~102.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~FE.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~100.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~116.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~114.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~115.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~11E.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~118.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~11B.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~11A.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~11C.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~119.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~117.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~11D.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~120.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~11F.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~12F.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~121.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~122.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~123.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~135.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~136.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~138.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~139.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~13A.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~13B.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~137.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~13D.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~144.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~143.tmp.exe
C:\windows\System32\wuauclt.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~140.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~142.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~145.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~13F.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~149.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~14C.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~14A.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~152.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~155.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~163.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~154.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~15A.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~158.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~161.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~165.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~16B.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~167.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~164.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~159.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~166.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~168.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~16A.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~16C.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~170.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~16D.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~16E.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~172.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~171.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~16F.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~179.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~17A.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~180.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~183.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~184.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~181.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~17B.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~17E.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~185.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~186.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~17F.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~182.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~187.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~17D.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~17C.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~188.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~191.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~18C.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~19B.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~19D.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~1A2.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~1AA.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~1A6.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~19E.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~1A3.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~19F.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~1A1.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~1A4.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~1A9.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~1A7.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~1AB.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~1AC.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~1A5.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~1A8.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~1B8.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~1B9.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~1C6.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~1C0.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~1BA.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~1BD.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~1CA.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~1C4.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~1C3.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~1C5.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~1C7.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~1C1.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~1CB.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~1C9.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~1E1.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~1DD.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~1E2.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~1DF.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~1E6.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~1DE.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~1E4.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~1EA.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~1E9.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~1E0.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~1E7.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~1E3.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~1E5.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~1E8.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~208.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~209.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~205.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~207.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~20A.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~20D.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~20E.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~20B.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~20C.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~206.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~21F.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~212.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~211.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~223.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~224.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~227.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~226.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~22B.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~22C.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~22A.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~231.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~232.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~229.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~234.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~22F.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~235.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~22E.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~230.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~242.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~236.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~244.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~245.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~246.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~249.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~248.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~24D.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~24E.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~24F.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~247.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~24A.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~24B.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~24C.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~252.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~254.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~255.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~253.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~256.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~258.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~25C.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~25A.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~259.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~25B.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~25D.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~25E.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~25F.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~260.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~262.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~261.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~264.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~265.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~266.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~272.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~274.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~277.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~278.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~279.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~27A.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~27B.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~27E.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~280.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~281.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~283.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~282.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~284.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~285.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~286.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~287.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~289.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~28B.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~28C.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~28D.tmp.exe
C:\DOCUME~1\SOVERE~1\LOCALS~1\Temp\~28F.tmp.exe
O1 - Hosts: 255.255.255.255 ar.atwola.com atdmt.com avp.ch avp.com avp.ru awaps.net ca.com dispatch.mcafee.com download.mcafee.com download.microsoft.com downloads.microsoft.com engine.awaps.net f-secure.com ftp.f-secure.com ftp.sophos.com go.microsoft.com liveupdate.symantec.com mast.mcafee.com mcafee.com msdn.microsoft.com my-etrust.com nai.com networkassociates.com office.microsoft.com phx.corporate-ir.net secure.nai.com securityresponse.symantec.com service1.symantec.com sophos.com spd.atdmt.com support.microsoft.com symantec.com update.symantec.com updates.symantec.com us.mcafee.com vil.nai.com viruslist.ru windowsupdate.microsoft.com www.avp.ch www.avp.com www.avp.ru www.awaps.net www.ca.com www.f-secure.com www.kaspersky.ru www.mcafee.com www.my-etrust.com www.nai.com www.networkassociates.com www.sophos.com www.symantec.com www.trendmicro.com www.viruslist.com www.viruslist.ru www3.ca.com
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Acrobat\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O4 - HKLM\..\Run: [LWBMOUSE] C:\Program Files\Browser Mouse\Browser Mouse\1.0\lwbwheel.exe
O4 - HKLM\..\Run: [MediaKey] C:\PROGRA~1\MediaKey\MediaKey.EXE
O4 - HKLM\..\Run: [EssSpkPhone] essspk.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [InCD] C:\Program Files\ahead\InCD\InCD.exe
O4 - HKLM\..\Run: [SoundMan] soundman.exe
O4 - HKLM\..\Run: [pccguide.exe] "C:\Program Files\Trend Micro\PC-cillin 2002\pccguide.exe"
O4 - HKLM\..\Run: [PCCClient.exe] "C:\Program Files\Trend Micro\PC-cillin 2002\PCCClient.exe"
O4 - HKLM\..\Run: [bcmwltry] bcmwltry.exe
O4 - HKLM\..\Run: [removecpl] RemoveCpl.exe
O4 - HKLM\..\Run: [type32] "C:\Program Files\Microsoft IntelliType Pro\type32.exe"
O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\point32.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_05\bin\jusched.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [WinFixer 2005] C:\Program Files\WinFixer 2005\wfx5.exe
O4 - HKLM\..\Run: [THGuard] "C:\Program Files\TrojanHunter 4.2\THGuard.exe"
O4 - HKLM\..\Run: [hqqxoash] C:\windows\System32\cibzs.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\windows\System32\ctfmon.exe
O4 - HKCU\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NVMCTRAY.DLL,NvTaskbarInit
O4 - HKCU\..\Run: [NVIEW] rundll32.exe nview.dll,nViewLoadHook
O4 - Startup: HotSync Manager.lnk = C:\Program Files\Palm\HOTSYNC.EXE
O4 - Global Startup: Acrobat Assistant.lnk = C:\Program Files\Adobe\Acrobat 5.0\Distillr\AcroTray.exe
O4 - Global Startup: DataViz Messenger.lnk = C:\WINDOWS\DvzCommon\DvzMsgr.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_05\bin\npjpi142_05.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_05\bin\npjpi142_05.dll
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O12 - Plugin for .wav: C:\Program Files\Internet Explorer\PLUGINS\npqtplugin.dll
O16 - DPF: {04E214E5-63AF-4236-83C6-A7ADCBF9BD02} (HouseCall Control) -
http://housecall60.t...all/xscan60.cabO16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) -
http://a840.g.akamai...all/xscan53.cabO16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) -
http://download.mcaf...539/mcfscan.cabO20 - Winlogon Notify: tcpG4T - C:\windows\SYSTEM32\tcpG4T.dll
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\windows\System32\nvsvc32.exe
O23 - Service: PC-cillin PersonalFirewall (PCCPFW) - Trend Micro Inc. - C:\Program Files\Trend Micro\PC-cillin 2002\PCCPFW.exe
O23 - Service: Trend NT Realtime Service (Tmntsrv) - Trend Micro Inc. - C:\Program Files\Trend Micro\PC-cillin 2002\Tmntsrv.exe