Hi Kc,
I post last ActiveScan and HijiackThis logs here. Thanks, Patricia
This is the ActiveScan log:
Incident Status Location
Adware:adware/topmoxie No disinfected Windows Registry
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\01251FB9-C40C-4CEE-843B-72F29E\04746556-D77C-4471-8231-98218E
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\02DE6E8E-4BFC-4335-AE43-964B29\BE612A12-BDA4-4781-977B-E174AB
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\05B8D744-B31D-4BBE-A70D-C4CA20\079F38C0-B996-4BE2-A557-172B26
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\0B5AD211-1B62-4643-AD42-FEA6B8\B3F8DB5A-313D-480D-A698-A3552A
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\0D4B4AD1-FB24-48A2-A516-24CF2D\1CC93B01-A5AA-4A7F-8534-0FA39D
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\101C238F-ADA3-4BD3-AFD9-EA6534\7510F703-D10F-4D18-8C43-6CA76E
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\1759D99D-4DC1-44E2-813B-43866D\E6FA8025-9E19-4A8B-9444-B0BD0F
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\1A07BDDB-3062-4ED6-BED0-235EDB\40077D09-7606-41A7-A3CD-E8A9DB
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\1B775F8B-AB8E-4E2B-83F8-56A291\8275C57C-1516-4D46-A3B4-443282
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\1DCD3838-D884-4E39-B741-C21079\2DF52B2B-382E-4B29-A800-FF4090
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\274980F0-1B4B-4DC4-A7D7-7428AA\43CE4F86-1BBC-451A-83FA-EC138C
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\2B3033B1-CE3C-4D10-A5A4-56C9C9\950F8A9A-9287-4968-B7BE-4F123D
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\2EEC6065-66B0-4C6E-81E2-74E3E6\5738F4EC-3FC6-4863-99FE-F46211
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\387B4966-CDA1-475F-8118-E7F03C\F2BE669D-21FB-4631-83E5-246FEE
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\3A82127C-A595-417D-856D-E11782\4801D189-49F9-4A03-BD99-FC005B
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\3E1728A1-D5D2-4C18-9AA6-35962F\9E9639FB-307F-4573-9F9E-62FFA6
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\40315AC2-25B6-475E-87E7-663E08\BD13655F-02A5-4F61-9519-0A0122
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\48D77D4F-1445-4CCF-AF04-DD597D\CF33E230-5745-4C16-A78E-37BA41
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\490C7F11-25D1-46B1-A0C3-9483F2\11031A14-3EC6-4F19-BDFC-E2DF87
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\4AD5E053-B990-4274-B058-1CC327\EF6E3F56-4F58-439C-8B95-82906C
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\4C4B479C-660B-4244-9DBA-114485\846EE5AD-663F-4BE2-8938-74FE7D
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\4DC6F385-AD8C-430E-AE5F-043F23\802F29D0-3D39-43C2-BB52-3637F0
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\50BF615A-59B6-44B4-9647-283C92\E168351D-0337-4C92-836E-7740BF
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\53719D1F-5C19-42BB-B663-235572\2EDF8E4A-0711-464C-ACF0-94FAC4
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\5A31166F-C362-44CB-B1A9-43EF06\DE0B1D65-C968-4C55-AE4F-8B92FC
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\5A8F6F51-991B-4CFD-AC15-2FD71A\DFDCA6DC-DD3A-4145-A78F-AB1EF8
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\5E9BD353-0626-4AAE-8DEB-8E1AE5\DF0F0FF1-1790-4914-AC53-21D489
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\62D0AEB5-37B5-4B94-8D2E-B7F30F\F14B8F42-FAB9-4774-9555-A0624F
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\6FD4DB7D-EA92-4681-9270-5C7E8D\79C1B10E-57FF-482E-BFDD-2E00DB
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\753159DF-9885-4282-BD7A-7DA8AE\94B64EE5-C43F-42A6-815C-CA716B
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\75524EE8-F73F-4305-9981-0112BB\ABF6E3CD-9C64-4E9D-94C2-452857
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\774B282D-DB46-467A-A592-19FA8F\A2309EFC-C11D-4BC0-B8D3-07C6B0
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\779A72A4-A24E-40BC-8D3F-E78859\32F3EFB6-A841-4F42-8222-FD763E
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\78ADF565-1803-4DF4-A07E-245480\D1C54916-08C3-4BA1-8E3C-2445DA
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\7C31802D-BA81-45BB-80A3-AA9933\6994271C-79C0-4C21-9492-61C44E
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\7D4F8176-5284-401A-B567-537C30\4B6D1ACF-48BE-40AC-B15D-A67AED
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\84B2F9BC-51A5-4E53-9869-0A2687\B5137818-6C6A-45F9-945C-7CE6A2
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\84C3F113-1CB5-4C27-941D-14D795\F5656C26-A792-4774-B13D-2618CD
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\85CF0AB7-A775-44C0-9D67-A7DF75\F5B1605C-6A17-4189-B921-311556
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\861AE8E8-6B61-4475-9BC2-54214E\31A72AB1-56FE-4163-ACFE-A146AA
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\88BE2C05-5A6A-4AFC-9906-B36E52\8353D150-E6F1-4DAA-966B-B8E1E2
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\898343A2-CD56-474D-BDB5-274385\4693ED5A-26FB-4020-94D6-DF5066
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\8BCB540C-4D2D-4635-A4B8-80A9DB\983172D7-C73A-4976-9B7D-3116D8
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\93444152-2455-4A46-9051-904247\B89A7933-8654-427E-8D5E-F50D5C
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\99E59442-8A5D-4F4D-98EE-D57B5A\E6160663-5C8E-44A6-B42C-63BF64
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\A03DE86B-B132-4974-AD5C-DEB0BE\F646C407-728C-4F94-867D-BAC9AE
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\A86C8ACE-AB71-4203-8F0E-84EE61\C3B88FCD-01C4-48A1-93BC-B666E3
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\AA75FCC9-E0B8-4C37-9239-98391F\EAFD6729-A144-4776-8F7E-3C1B51
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\AAAE6DD2-6868-46F8-A246-3CC643\EAFE9EA4-6E21-41D3-AE03-4701E0
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\B761B760-101B-4916-ABCE-FC79C2\723A2F89-4015-4B2E-8E81-844058
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\BA166F96-2C9C-4F10-9BB9-8300A1\789B76E0-2797-4D57-8F9F-E00472
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\BEE08379-1FD2-44A1-AA2C-53D668\8AE77B2F-F1D1-457A-8AA7-1A1A2C
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\C3AAF797-ABDE-484A-9A68-60A26E\DAEDD5A8-74C4-412E-B06E-CCD122
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\CB249D81-AE66-4CFE-8537-9332F7\0671AF45-A7D4-43A3-9D78-DF4C77
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\CFEAD761-C076-42BB-9DBE-72EA5F\59BB9B2D-5EFD-4411-AE46-2F5870
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\D09812E3-6011-4F27-A038-CBB3C1\FBC2D03D-1436-4324-A8DE-B6215A
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\D8D88FB1-FEDF-4993-83C6-B7A7E8\9E0FC6C6-41CC-4C8D-9553-371CCE
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\DE387B8B-7DF4-499A-B20C-F17FE0\A9ECD338-57B4-4B46-BFD2-CC7039
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\E0DA7995-A051-41A1-94C0-1052CD\9F30376D-8F28-4370-9032-BF95DD
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\E23F95B5-CA67-4231-AD39-4F1A82\DD74FA70-780D-4E03-B9B5-1800CD
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\E2AD1962-15CE-412D-B6AA-1A25EA\893A289A-0DF1-4CB0-BEB5-717829
Adware:Adware/Twain-Tech No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\F03294F7-247A-4A2D-AEC9-EB0F8E\86F0D4A9-7045-431F-A2DE-DAF2AC
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\F4459F9B-3B5F-4C99-B729-B3AE9E\8850637A-BF0F-4A10-BA22-8F1993
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\F96EE07D-C6F4-42E7-AB14-06BCDD\648E31A3-5047-4C42-B38C-CEEAA1
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\FF95A598-EFAD-4199-A56C-1A2718\FF07DFB6-9FE0-4810-8697-D2977B
Adware:Adware/Twain-Tech No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP323\A0058048.exe
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP323\A0058086.inf
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP324\A0058544.inf
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP324\A0058549.inf
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP325\A0059119.inf
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP326\A0059147.inf
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP327\A0059168.inf
Spyware:Spyware/BetterInet No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP328\A0059191.dll
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP328\A0059263.inf
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP329\A0059361.inf
Spyware:Spyware/BetterInet No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP331\A0059437.dll
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP338\A0060735.inf
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP338\A0060741.inf
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP339\A0061025.inf
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP340\A0061698.inf
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP341\A0061719.inf
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP342\A0061786.inf
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP343\A0062195.inf
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP343\A0062199.inf
Adware:Adware/Twain-Tech No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP343\A0062248.exe
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP344\A0063377.inf
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP345\A0063996.inf
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP346\A0064574.inf
Spyware:Spyware/BetterInet No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP347\A0064595.dll
Spyware:Spyware/BetterInet No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP347\A0064596.dll
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP347\A0064598.inf
Spyware:Spyware/BetterInet No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP348\A0064619.dll
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP348\A0064754.inf
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP349\A0064973.inf
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP350\A0065042.inf
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP350\A0065046.inf
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP351\A0065076.inf
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP351\A0065095.inf
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP351\A0065103.inf
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP352\A0065204.inf
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP353\A0065234.inf
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP354\A0065255.inf
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP355\A0065285.inf
Spyware:Spyware/BetterInet No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP356\A0065307.dll
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP356\A0065311.inf
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP357\A0065349.inf
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP358\A0065386.inf
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP359\A0065421.inf
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP360\A0065498.inf
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP361\A0065520.inf
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP362\A0065907.inf
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP363\A0066894.inf
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP364\A0066999.inf
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP364\A0067004.inf
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP365\A0067030.inf
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP366\A0067226.inf
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP367\A0067498.inf
Spyware:Spyware/BetterInet No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP368\A0067531.dll
Virus:Trj/Imiserv.D Disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP368\A0067532.exe
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP368\A0067534.inf
Spyware:Spyware/BetterInet No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP369\A0067555.dll
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP369\A0067951.inf
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP370\A0067980.inf
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP371\A0068013.inf
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP372\A0068039.inf
Spyware:Spyware/BetterInet No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP375\A0068099.dll
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP376\A0068129.inf
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP377\A0068255.inf
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP378\A0068366.inf
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP379\A0068392.inf
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP380\A0068516.inf
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP381\A0068538.inf
Spyware:Spyware/BetterInet No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP382\A0068559.dll
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP382\A0068560.inf
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP383\A0068583.inf
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP384\A0068650.inf
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP385\A0068671.inf
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP386\A0068694.inf
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP387\A0068734.inf
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP388\A0068756.inf
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP389\A0068778.inf
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP390\A0068813.inf
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP391\A0069323.inf
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP391\A0069329.inf
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP391\A0069418.inf
Adware:Adware/Twain-Tech No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP391\A0069433.exe
Spyware:Spyware/BetterInet No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP391\A0069435.dll
Spyware:Spyware/BetterInet No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP391\A0069436.exe
Hacktool:Hacktool/Processor No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP391\A0069759.exe
Adware:Adware/EnhSrch No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP391\A0069806.exe
Adware:Adware/Transponder No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP391\A0069914.inf
Hacktool:Hacktool/Processor No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP391\A0070011.exe
Spyware:Spyware/BetterInet No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP391\A0070013.inf
Hacktool:Hacktool/Processor No disinfected C:\System Volume Information\_restore{CCA15F78-7193-4CA6-8115-2B570DD6546C}\RP391\A0070015.exe
This is the last HijackThis log:
Logfile of HijackThis v1.99.1
Scan saved at 8:17:57 PM, on 8/10/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\SYSTEM32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Intel\ASF Agent\ASFAgent.exe
C:\Program Files\ewido\security suite\ewidoctrl.exe
C:\WINDOWS\System32\inetsrv\inetinfo.exe
C:\Program Files\Network Associates\Common Framework\FrameworkService.exe
C:\Program Files\Network Associates\VirusScan\mcshield.exe
C:\Program Files\Network Associates\VirusScan\vstskmgr.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\PROGRA~1\MICROS~4\MSSQL\binn\sqlservr.exe
C:\Program Files\Microsoft SQL Server\MSSQL\Reporting Services\ReportServer\bin\ReportingServicesService.exe
C:\PROGRA~1\MICROS~4\MSSQL\binn\sqlagent.exe
C:\WINDOWS\SYSTEM32\winlogon.exe
C:\WINDOWS\SYSTEM32\rdpclip.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\ewido\security suite\ewidoguard.exe
C:\Program Files\Java\j2re1.4.2_05\bin\jusched.exe
C:\WINDOWS\System32\DSentry.exe
C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe
C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE
C:\Program Files\Network Associates\Common Framework\UpdaterUI.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Microsoft AntiSpyware\gcasServ.exe
C:\WINDOWS\Downloaded Program Files\UWFX5LP_0001_0803NetInstaller.exe
C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe
C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe
C:\Program Files\Google\ggviewer81-39.exe
C:\WINDOWS\SYSTEM32\logon.scr
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Wang\Local Settings\Temporary Internet Files\Content.IE5\87WYCQ4Y\HijackThis[1].exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.dell.comR1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.dell.comR1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = ftp=proxy.DAI.com:80;gopher=proxy.DAI.com:80;http=proxy.DAI.com:80;https=proxy.DAI.com:80;socks=proxy.DAI.com:80
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.williamoneil.com;*.dailygraphs.com;www.investors.com;198.190.229.*;172.22.*.*;netdai.com;<local>
O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_6_0_0.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: Merriam-Webster Online BHO - {5ADA9CAC-04F9-4DD2-ABFD-74D673BE8624} - C:\WINDOWS\_MWOLTB.DLL
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: Merriam-Webster Online - {B7B76DD6-B6F0-4443-AF81-6A3ECF12A57D} - C:\WINDOWS\_MWOLTB.DLL
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_6_0_0.dll
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_05\bin\jusched.exe
O4 - HKLM\..\Run: [DVDSentry] C:\WINDOWS\System32\DSentry.exe
O4 - HKLM\..\Run: [AdaptecDirectCD] "C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe"
O4 - HKLM\..\Run: [ShStatEXE] "C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE" /STANDALONE
O4 - HKLM\..\Run: [McAfeeUpdaterUI] "C:\Program Files\Network Associates\Common Framework\UpdaterUI.exe" /StartedFromRunKey
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft AntiSpyware\gcasServ.exe"
O4 - HKLM\..\Run: [NI.UWFX5LP_0001_0803] "C:\WINDOWS\Downloaded Program Files\UWFX5LP_0001_0803NetInstaller.exe"
O4 - HKLM\..\Run: [second] C:\Documents and Settings\Wang\Desktop\l2mfix\second.bat
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O4 - Global Startup: Service Manager.lnk = C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html
O8 - Extra context menu item: MWOL &Dictionary - res://C:\WINDOWS\_MWOLTB.DLL/23/219
O8 - Extra context menu item: MWOL &Thesaurus - res://C:\WINDOWS\_MWOLTB.DLL/23/220
O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html
O8 - Extra context menu item: Translate into English - res://c:\program files\google\GoogleToolbar2.dll/cmtrans.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_05\bin\npjpi142_05.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_05\bin\npjpi142_05.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) -
http://go.microsoft....k/?linkid=39204O16 - DPF: {1DD81666-F3AD-11D3-BA86-00500487B4EC} (WonSearchX Control) -
http://www.dailygrap.../WonSearchX.ocxO16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) -
http://us.dl1.yimg.c...nst20040510.cabO16 - DPF: {3CF32649-D1C0-4F42-AB44-ED284748920B} (Merriam-Webster Online Toolbar) -
http://www.webster.c.../webinstall.cabO16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
http://v5.windowsupd...b?1099505347117O16 - DPF: {78267546-F2AC-11D2-A278-005004676C44} (WonList Control) -
http://www.dailygrap...ocx/WonList.ocxO16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) -
http://www.pandasoft...free/asinst.cabO16 - DPF: {AECD14A8-F662-11D1-A395-00805F535788} (Plotwon Control) -
http://www.investors...ocx/plotwon.ocxO16 - DPF: {EE3CD402-69EB-4B53-819D-0CA2F95AD7DA} (PFMngr Control) -
http://www.dailygrap.../ocx/PFMngr.ocxO17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = dai.netdai.com
O17 - HKLM\Software\..\Telephony: DomainName = dai.netdai.com
O17 - HKLM\System\CCS\Services\Tcpip\..\{3F513850-4F26-4F49-A2A8-4DCA701835EE}: NameServer = 172.22.10.66,172.22.10.67,172.22.60.14,172.22.60.18
O17 - HKLM\System\CS3\Services\Tcpip\Parameters: Domain = dai.netdai.com
O17 - HKLM\System\CS3\Services\Tcpip\Parameters: SearchList = dai.netdai.com,wonda.netdai.com,netdai.com,williamoneil.com,investors.com,ibd_editorial.netdai.com
O17 - HKLM\System\CS3\Services\Tcpip\..\{3F513850-4F26-4F49-A2A8-4DCA701835EE}: NameServer = 172.22.10.66,172.22.10.67,172.22.60.14,172.22.60.18
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: SearchList = dai.netdai.com,wonda.netdai.com,netdai.com,williamoneil.com,investors.com,ibd_editorial.netdai.com
O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O23 - Service: ASF Agent (ASFAgent) - Intel Corporation - C:\Program Files\Intel\ASF Agent\ASFAgent.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Se