On Tuesday, I was hit with Winfixer 2005, Aurora, and many other malware programs. For the past 48 hours, I have been running and re-running Norton AV 2004, and Pest Patrol both in normal mode and in safe mode.
When these didn't work, I found you guys and have following the initial instructions for this forum including:
AdAware (with current beta def file)
CleanUp
SpyBot S&D
Ewido
and Hijack this.
After completing all of these scans, the immediate Winfixer 2005 problem seems to have been fixed, as I am no longer having IE open windows automatically and taking me to WinFixer download page.
However, I still have a file on my Desktop "Install Winfixer 2005" that I didn't want to delete until you guys said it was ok. And I also am getting a Boot error because Windows is not finding "AUNPS2.dll". Lastly, I am running Zone Alarm Pro as my firewall, and I keep getting messages that "DevLdr32" is trying to run, but this program has been blocked by ZAPro.
Following are my logs from Ewido and Hijack This:
Any Help would be greatly appreciated!
Highjack This LOG:
Logfile of HijackThis v1.99.1
Scan saved at 2:38:31 PM, on 8/11/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
H:\Program Files\Adobe\Adobe Version Cue CS2\bin\VersionCueCS2.exe
h:\Program Files\ewido\security suite\ewidoctrl.exe
h:\Program Files\ewido\security suite\ewidoguard.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\Program Files\Norton AntiVirus\SAVScan.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS\SYSTEM32\ZONELABS\vsmon.exe
C:\WINDOWS\wanmpsvc.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
H:\Program Files\Adobe\Adobe Version Cue CS2\data\database\bin\mysqld-nt.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
C:\Program Files\Adaptec\Easy CD Creator 5\DirectCD\DirectCD.exe
C:\Program Files\Support.com\bin\tgcmd.exe
C:\PROGRA~1\HEWLET~1\HPSHAR~1\hpgs2wnf.exe
C:\Program Files\Microsoft Hardware\Mouse\point32.exe
C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
C:\PROGRA~1\PESTPA~1\PPControl.exe
C:\PROGRA~1\PESTPA~1\PPMemCheck.exe
C:\PROGRA~1\PESTPA~1\CookiePatrol.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\QuickTime\qttask.exe
C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb09.exe
C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
C:\WINDOWS\system32\hphmon05.exe
C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe
H:\Program Files\Adobe\Adobe Version Cue CS2\ControlPanel\VersionCueCS2Tray.exe
H:\Program Files\Adobe\Adobe Acrobat 7.0\Distillr\Acrotray.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
H:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE
C:\Program Files\HP DeskJet 895C Series\ereg\Remind32.exe
C:\WINDOWS\System32\HPZipm12.exe
F:\Program Files\Nikon\PictureProject\NkbMonitor.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\rundll32.exe
H:\Program Files\Hijack This\HijackThis.exe
H:\Program Files\Adobe\Adobe Version Cue CS2\data\database\bin\mysqladmin.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.comcast.net
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\SYSTEM\blank.htm
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer provided by Comcast
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
O2 - BHO: Band Class - {00F1D395-4744-40f0-A611-980F61AE2C59} - C:\WINDOWS\dsr.dll (file missing)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - H:\Program Files\Adobe\Adobe Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - H:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: AcroIEToolbarHelper Class - {AE7CD045-E861-484f-8273-0445EE161910} - H:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - H:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O4 - HKLM\..\Run: [SystemTray] SysTray.Exe
O4 - HKLM\..\Run: [Share-to-Web Namespace Daemon] C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
O4 - HKLM\..\Run: [zzzHPSETUP] E:\Setup.exe
O4 - HKLM\..\Run: [ComcastSUPPORT] C:\Program Files\Support.com\bin\tgkill.exe /cleaneahtioga /start
O4 - HKLM\..\Run: [AdaptecDirectCD] C:\Program Files\Adaptec\Easy CD Creator 5\DirectCD\DirectCD.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [POINTER] point32.exe
O4 - HKLM\..\Run: [HP SchedIndexer] C:\Program Files\Hewlett-Packard\LaserJet 33xx\hppschedindexer.exe
O4 - HKLM\..\Run: [HP AutoIndexer] C:\Program Files\Hewlett-Packard\LaserJet 33xx\hppautoindexer.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
O4 - HKLM\..\Run: [PestPatrol Control Center] C:\PROGRA~1\PESTPA~1\PPControl.exe
O4 - HKLM\..\Run: [PPMemCheck] C:\PROGRA~1\PESTPA~1\PPMemCheck.exe
O4 - HKLM\..\Run: [CookiePatrol] C:\PROGRA~1\PESTPA~1\CookiePatrol.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb09.exe
O4 - HKLM\..\Run: [HPHUPD05] c:\Program Files\Hewlett-Packard\\{5372B9A6-6E51-4f90-9B40-E0A3B8475C4E}\hphupd05.exe
O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [HPHmon05] C:\WINDOWS\system32\hphmon05.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [Adobe Version Cue CS2] "H:\Program Files\Adobe\Adobe Version Cue CS2\ControlPanel\VersionCueCS2Tray.exe"
O4 - HKLM\..\Run: [Acrobat Assistant 7.0] "H:\Program Files\Adobe\Adobe Acrobat 7.0\Distillr\Acrotray.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [iTunesHelper] "H:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Dinst] C:\WINDOWS\dinst.exe
O4 - HKLM\..\Run: [AUNPS2] RUNDLL32 AUNPS2.DLL,_Run@16
O4 - HKLM\..\Run: [exp.exe] C:\WINDOWS\system32\exp.exe
O4 - HKLM\..\Run: [WinTask driver] C:\WINDOWS\system32\wintask.exe
O4 - HKLM\..\Run: [Zone Labs Client] C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
O4 - HKLM\..\Run: [ihtrrzb] c:\windows\system32\qxlnuu.exe r
O4 - HKLM\..\RunServices: [MOSearch] C:\PROGRA~1\COMMON~1\System\MOSearch\Bin\mosearch.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\PROGRA~1\MESSEN~1\msmsgs.exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NVMCTRAY.DLL,NvTaskbarInit
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE"
O4 - Startup: PictureProject In Touch.lnk = H:\Program Files\Nikon\PictureProject In Touch\PictureProjectInTouch.exe
O4 - Global Startup: Reminder-hpc41003.lnk = C:\Program Files\HP DeskJet 895C Series\ereg\Remind32.exe
O4 - Global Startup: America Online 7.0 Tray Icon.lnk = C:\Program Files\America Online 7.0\aoltray.exe
O4 - Global Startup: HP LaserJet Director.lnk = C:\Program Files\Hewlett-Packard\LaserJet 33xx\hppdirector.exe
O4 - Global Startup: ZoneAlarm.lnk = C:\Program Files\Zone Labs\ZoneAlarm\zonealarm.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: NkbMonitor.exe.lnk = F:\Program Files\Nikon\PictureProject\NkbMonitor.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Adobe Acrobat Speed Launcher.lnk = ?
O8 - Extra context menu item: Convert link target to Adobe PDF - res://H:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convert link target to existing PDF - res://H:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convert selected links to Adobe PDF - res://H:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Convert selected links to existing PDF - res://H:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Convert selection to Adobe PDF - res://H:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convert selection to existing PDF - res://H:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convert to Adobe PDF - res://H:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convert to existing PDF - res://H:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~1\OFFICE10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INETREPL.DLL
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INETREPL.DLL
O9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INETREPL.DLL
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM95\aim.exe
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\SYSTEM32\SHDOCVW.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: Help - {04238068-4506-44E7-A858-4B492B960DAA} - http://www.comcast.net/memberservices/ (file missing) (HKCU)
O9 - Extra button: ComcastHSI - {A1BE65CE-A9C1-4673-A700-70B65FC2A0F2} - http://www.comcast.net (file missing) (HKCU)
O9 - Extra button: WeatherBug - {AF6CABAB-61F9-4f12-A198-B7D41EF1CB52} - C:\Program Files\AWS\WeatherBug\Weather.exe (file missing) (HKCU)
O9 - Extra button: Support - {DC88328A-B941-4179-AD38-DAA3F7A47C4E} - http://www.comcastsupport.com (file missing) (HKCU)
O9 - Extra button: Dell Home - {DE9F7D9E-71AE-44E3-8DE5-D741FBFD7B86} - http://www.dellnet.com/ (file missing) (HKCU)
O14 - IERESET.INF: START_PAGE_URL=http://www.comcast.net
O16 - DPF: {01A88BB1-1174-41EC-ACCB-963509EAE56B} (SysProWmi Class) - http://support.dell....iler/SysPro.CAB
O16 - DPF: {13F71666-05F2-11D2-B2F6-00A0C9A08B64} (CommonBridge Class) - https://gosystemrs.f...OCX/comconv.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft....k/?linkid=39204
O16 - DPF: {227F25BE-BCDC-11D0-BA80-0000F6181652} (CLRMachineInfoCtl Class) - http://gosystemrs.fa...LoginModule.cab
O16 - DPF: {2359626E-7524-4F87-B04E-22CD38A0C88C} (ICSScannerLight Class) - http://download.zone...ee/cm/ICSCM.cab
O16 - DPF: {2EC07293-4DF5-11D5-992B-0001020FC1FC} (RSCompConvClient Class) - http://gosystemrs.fa...OCX/comconv.cab
O16 - DPF: {455182EE-8F93-11D2-BA3C-00C04F7F6533} (CLRTabbedList Class) - https://gosystemrs.f...STabbedList.cab
O16 - DPF: {49232000-16E4-426C-A231-62846947304B} - http://ipgweb.cce.hp...ads/sysinfo.cab
O16 - DPF: {4E330863-6A11-11D0-BFD8-006097237877} (InstallFromTheWeb ActiveX Control) - http://gosystemrs.fa...CX/iftwclix.cab
O16 - DPF: {71CA4411-45EC-4608-B9D7-6D4B6A9D1BB4} (Attenza System Profiler) - http://service.dell....temProfiler.cab
O16 - DPF: {7279DAF9-31ED-45D6-8CDA-E11A0D24956C} (WebForm Launch Server) - http://files.stf.com...rmServer_v3.cab
O16 - DPF: {7B640A40-EEC1-11D2-B526-00C04F8DEE99} (WebAttachObj Class) - https://gosystemrs.f...Attachments.cab
O16 - DPF: {82BFFC8C-B4BD-11D4-9908-000102053AFB} (GRSNotifierCtrl Class) - http://gosystemrs.fa...webnotifier.cab
O16 - DPF: {86B092BC-7ABA-11D4-98E7-000102053AFB} (MultiDownload Class) - https://gosystemrs.f.../Downloader.cab
O16 - DPF: {88D969C0-F192-11D4-A65F-0040963251E5} (XML DOM Document 4.0) - http://gosystemrs.fa.../OCX/msxml4.cab
O16 - DPF: {973EA5BE-9ED6-11D3-AB1D-00C04F7468E4} (IParseCSV Class) - https://gosystemrs.f...OCX/DCParse.cab
O16 - DPF: {97A90946-2984-11D3-AAE7-00C04F7468E4} (FrmSrcCt Control) - http://gosystemrs.fa.../OCX/frmsrc.cab
O16 - DPF: {AB86CE53-AC9F-449F-9399-D8ABCA09EC09} (Get_ActiveX Control) - https://h17000.www1....loadManager.ocx
O16 - DPF: {AE1C01E3-0283-11D3-9B3F-00C04F8EF466} (HeartbeatCtl Class) - http://fdl.msn.com/z...s/heartbeat.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://zone.msn.com/...ro.cab34246.cab
O16 - DPF: {B91AEDBE-93DF-4017-8BB3-F1C300C0EC51} (InstallShield Setup Player 2K2) - http://gosystemrs.fa...t2002/setup.exe
O16 - DPF: {D76D712E-4A96-11D3-BD95-D296DC2DD072} (:-) VideoSoft FlexGrid 7.0 (OLEDB)) - http://gosystemrs.fa...OCX/vsflex7.cab
O16 - DPF: {DED22F57-FEE2-11D0-953B-00C04FD9152D} (CarPoint Auto-Pricer Control) - http://autos.msn.com.../autopricer.cab
O16 - DPF: {E39EFE5A-58CC-4C5D-8966-D9BD2FA27F41} (WebForm Launch Server) - http://files.stf.com...rmServer_v1.cab
O16 - DPF: {EB387D2F-E27B-4D36-979E-847D1036C65D} (QDiagHUpdateObj Class) - http://h30043.www3.h.../qdiagh.cab?326
O16 - DPF: {EDFCDAF5-95D9-40E9-BBE6-10C33190C3EF} (cGameControl Class) - http://zone.msn.com/.../RumbleCube.cab
O16 - DPF: {F02C6B3B-AB1A-48D3-914D-169954A11142} (WebForm Launch Control) - http://files.stf.com...ormControl2.cab
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Adobe Version Cue CS2 - Unknown owner - H:\Program Files\Adobe\Adobe Version Cue CS2\bin\VersionCueCS2.exe" -win32service (file missing)
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: ewido security suite control - ewido networks - h:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - h:\Program Files\ewido\security suite\ewidoguard.exe
O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Norton AntiVirus Auto Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: System Startup Service (SvcProc) - Unknown owner - C:\WINDOWS\svcproc.exe (file missing)
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\SYSTEM32\ZONELABS\vsmon.exe
O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - C:\WINDOWS\wanmpsvc.exe
EWIDO:
---------------------------------------------------------
ewido security suite - Scan report
---------------------------------------------------------
+ Created on: 1:31:32 PM, 8/11/2005
+ Report-Checksum: 41111DFA
+ Scan result:
HKLM\SOFTWARE\Classes\CLSID\{2B96D5CC-C5B5-49A5-A69D-CC0A30F9028C} -> Spyware.MiniBug : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{9603A736-05B9-4D78-BDD5-BDCB0914E522} -> Spyware.WurldMedia : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{BC12B055-C9F5-407D-9B66-1851973F32AF} -> Spyware.WurldMedia : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{C15B7EA2-A360-43E8-A591-5FAEDC7C4E1D} -> Spyware.Altnet : Cleaned with backup
HKU\S-1-5-21-2052111302-1677128483-1957994488-1004\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0019C3E2-DD48-4A6D-ABCD-8D32436323D9} -> Spyware.BookedSpace : Cleaned with backup
HKU\S-1-5-21-2052111302-1677128483-1957994488-1004\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{35B7E48B-9D81-4C6C-9578-5FD4F620D886} -> Spyware.MarketScore : Cleaned with backup
HKU\S-1-5-21-2052111302-1677128483-1957994488-1004\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{7C559105-9ECF-42B8-B3F7-832E75EDD959} -> Spyware.ISTBar : Cleaned with backup
HKU\S-1-5-21-2052111302-1677128483-1957994488-1004\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AEECBFDA-12FA-4881-BDCE-8C3E1CE4B344} -> Spyware.BargainBuddy : Cleaned with backup
HKU\S-1-5-21-2052111302-1677128483-1957994488-1004\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{CE188402-6EE7-4022-8868-AB25173A3E14} -> Spyware.BargainBuddy : Cleaned with backup
HKU\S-1-5-21-2052111302-1677128483-1957994488-1004\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F4E04583-354E-4076-BE7D-ED6A80FD66DA} -> Spyware.BargainBuddy : Cleaned with backup
C:\WINDOWS\SYSTEM32\sve.dll -> Spyware.Look2Me : Cleaned with backup
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\49AZ4T6Z\pcs_0026[1].exe -> Spyware.Pacer : Cleaned with backup
C:\WINDOWS\Downloaded Program Files\ActiveX.ocx -> Spyware.Look2Me : Cleaned with backup
C:\WINDOWS\wt\wtupdates\webd\4.1.1\files\wtvh.dll -> Spyware.WildTangent : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@linksynergy[3].txt -> Spyware.Cookie.Linksynergy : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][7].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@fastclick[11].txt -> Spyware.Cookie.Fastclick : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@clickagents[3].txt -> Spyware.Cookie.Clickagents : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][2].txt -> Spyware.Cookie.Sextracker : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@sextracker[1].txt -> Spyware.Cookie.Sextracker : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][4].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][4].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@valueclick[6].txt -> Spyware.Cookie.Valueclick : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][1].txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@paycounter[4].txt -> Spyware.Cookie.Paycounter : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@bfast[5].txt -> Spyware.Cookie.Bfast : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][2].txt -> Spyware.Cookie.Gator : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][2].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][7].txt -> Spyware.Cookie.Advertising : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][5].txt -> Spyware.Cookie.Liveperson : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@gator[4].txt -> Spyware.Cookie.Gator : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@bluestreak[7].txt -> Spyware.Cookie.Bluestreak : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@questionmarket[7].txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][5].txt -> Spyware.Cookie.Adserver : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@internetfuel[3].txt -> Spyware.Cookie.Internetfuel : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@advertising[5].txt -> Spyware.Cookie.Advertising : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@2o7[5].txt -> Spyware.Cookie.2o7 : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][1].txt -> Spyware.Cookie.Advertising : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][3].txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@fastclick[8].txt -> Spyware.Cookie.Fastclick : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@2o7[4].txt -> Spyware.Cookie.2o7 : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][4].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@hitbox[7].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@advertising[6].txt -> Spyware.Cookie.Advertising : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][2].txt -> Spyware.Cookie.Realtracker : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][1].txt -> Spyware.Cookie.Falkag : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][2].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][4].txt -> Spyware.Cookie.Ru4 : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][3].txt -> Spyware.Cookie.Liveperson : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@linksynergy[4].txt -> Spyware.Cookie.Linksynergy : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@gator[2].txt -> Spyware.Cookie.Gator : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][2].txt -> Spyware.Cookie.Falkag : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][2].txt -> Spyware.Cookie.Falkag : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@questionmarket[6].txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@statcounter[2].txt -> Spyware.Cookie.Statcounter : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][3].txt -> Spyware.Cookie.Specificpop : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@sextracker[4].txt -> Spyware.Cookie.Sextracker : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@paycounter[3].txt -> Spyware.Cookie.Paycounter : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@revenue[3].txt -> Spyware.Cookie.Revenue : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@centrport[2].txt -> Spyware.Cookie.Centrport : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][2].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@bfast[1].txt -> Spyware.Cookie.Bfast : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][2].txt -> Spyware.Cookie.Sextracker : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][3].txt -> Spyware.Cookie.Bridgetrack : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@trafficmp[4].txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@hotlog[1].txt -> Spyware.Cookie.Hotlog : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@bluestreak[1].txt -> Spyware.Cookie.Bluestreak : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][1].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][1].txt -> Spyware.Cookie.Ru4 : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@adtech[1].txt -> Spyware.Cookie.Adtech : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][2].txt -> Spyware.Cookie.Adserver : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@qksrv[3].txt -> Spyware.Cookie.Qksrv : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][1].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][1].txt -> Spyware.Cookie.Sextracker : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@pointroll[1].txt -> Spyware.Cookie.Pointroll : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@internetfuel[1].txt -> Spyware.Cookie.Internetfuel : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@trafficmp[6].txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@specificpop[3].txt -> Spyware.Cookie.Specificpop : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@tradedoubler[2].txt -> Spyware.Cookie.Tradedoubler : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@xxxcounter[1].txt -> Spyware.Cookie.Xxxcounter : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][4].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][6].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@247realmedia[1].txt -> Spyware.Cookie.247realmedia : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][1].txt -> Spyware.Cookie.Gator : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][1].txt -> Spyware.Cookie.Realtracker : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@commission-junction[1].txt -> Spyware.Cookie.Commission-junction : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][5].txt -> Spyware.Cookie.Advertising : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][2].txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@mediaplex[5].txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@gator[1].txt -> Spyware.Cookie.Gator : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@bluestreak[5].txt -> Spyware.Cookie.Bluestreak : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@fastclick[9].txt -> Spyware.Cookie.Fastclick : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][2].txt -> Spyware.Cookie.Coremetrics : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@advertising[3].txt -> Spyware.Cookie.Advertising : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][4].txt -> Spyware.Cookie.Liveperson : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][5].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][1].txt -> Spyware.Cookie.Revenue : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][4].txt -> Spyware.Cookie.Qksrv : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][1].txt -> Spyware.Cookie.Specificpop : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][3].txt -> Spyware.Cookie.Sextracker : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@specificpop[1].txt -> Spyware.Cookie.Specificpop : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][1].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@questionmarket[5].txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][4].txt -> Spyware.Cookie.Enliven : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@sextracker[3].txt -> Spyware.Cookie.Sextracker : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@hitbox[6].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@qksrv[1].txt -> Spyware.Cookie.Qksrv : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@2o7[3].txt -> Spyware.Cookie.2o7 : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@ad-flow[3].txt -> Spyware.Cookie.Ad-flow : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][1].txt -> Spyware.Cookie.Sextracker : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][3].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][2].txt -> Spyware.Cookie.Ru4 : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@x10[4].txt -> Spyware.Cookie.X10 : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@sexlist[1].txt -> Spyware.Cookie.Sexlist : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@fastclick[6].txt -> Spyware.Cookie.Fastclick : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@popupsponsor[1].txt -> Spyware.Cookie.Popupsponsor : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][2].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][3].txt -> Spyware.Cookie.Gator : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@tribalfusion[5].txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][1].txt -> Spyware.Cookie.Sextracker : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][4].txt -> Spyware.Cookie.Adserver : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@trafficmp[5].txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][4].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][2].txt -> Spyware.Cookie.Bridgetrack : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@tribalfusion[4].txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@paycounter[2].txt -> Spyware.Cookie.Paycounter : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@hotlog[3].txt -> Spyware.Cookie.Hotlog : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][1].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@revenue[2].txt -> Spyware.Cookie.Revenue : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][1].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][3].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@trafficmp[3].txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@tribalfusion[2].txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@hitbox[5].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][4].txt -> Spyware.Cookie.Advertising : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][1].txt -> Spyware.Cookie.Popupsponsor : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@popupsponsor[2].txt -> Spyware.Cookie.Popupsponsor : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][1].txt -> Spyware.Cookie.Enliven : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@hotlog[2].txt -> Spyware.Cookie.Hotlog : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@commission-junction[3].txt -> Spyware.Cookie.Commission-junction : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@tribalfusion[3].txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@2o7[1].txt -> Spyware.Cookie.2o7 : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][2].txt -> Spyware.Cookie.Specificpop : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@ad-flow[1].txt -> Spyware.Cookie.Ad-flow : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@x10[5].txt -> Spyware.Cookie.X10 : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@fastclick[2].txt -> Spyware.Cookie.Fastclick : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@fastclick[7].txt -> Spyware.Cookie.Fastclick : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@ad-logics[2].txt -> Spyware.Cookie.Ad-logics : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][1].txt -> Spyware.Cookie.Ad-logics : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][1].txt -> Spyware.Cookie.Liveperson : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][1].txt -> Spyware.Cookie.Sextracker : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@paycounter[1].txt -> Spyware.Cookie.Paycounter : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@addynamix[2].txt -> Spyware.Cookie.Addynamix : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][1].txt -> Spyware.Cookie.Sextracker : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][1].txt -> Spyware.Cookie.Paypopup : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@valueclick[4].txt -> Spyware.Cookie.Valueclick : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@questionmarket[1].txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@linksynergy[1].txt -> Spyware.Cookie.Linksynergy : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@ru4[4].txt -> Spyware.Cookie.Ru4 : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][2].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@sexlist[2].txt -> Spyware.Cookie.Sexlist : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@targetnet[3].txt -> Spyware.Cookie.Targetnet : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][3].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@findwhat[1].txt -> Spyware.Cookie.Findwhat : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][1].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][1].txt -> Spyware.Cookie.Falkag : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][1].txt -> Spyware.Cookie.Ads360 : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][3].txt -> Spyware.Cookie.Ads360 : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@linksynergy[2].txt -> Spyware.Cookie.Linksynergy : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][3].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][1].txt -> Spyware.Cookie.Sextracker : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][1].txt -> Spyware.Cookie.Valuead : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@bluestreak[4].txt -> Spyware.Cookie.Bluestreak : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@valueclick[2].txt -> Spyware.Cookie.Valueclick : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][2].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][3].txt -> Spyware.Cookie.Qksrv : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][3].txt -> Spyware.Cookie.Adserver : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@valueclick[3].txt -> Spyware.Cookie.Valueclick : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@targetnet[2].txt -> Spyware.Cookie.Targetnet : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@bluestreak[3].txt -> Spyware.Cookie.Bluestreak : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@mediaplex[1].txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@questionmarket[4].txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][1].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][1].txt -> Spyware.Cookie.Valuead : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][1].txt -> Spyware.Cookie.Adserver : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@fastclick[4].txt -> Spyware.Cookie.Fastclick : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@hitbox[4].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@centrport[3].txt -> Spyware.Cookie.Centrport : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@ru4[3].txt -> Spyware.Cookie.Ru4 : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][2].txt -> Spyware.Cookie.Qksrv : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@pointroll[2].txt -> Spyware.Cookie.Pointroll : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/[email protected][4].txt -> Spyware.Cookie.Bridgetrack : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@tribalfusion[1].txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@hitbox[3].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20040610163924702.zip/Documents and Settings/abarna/Cookies/abarna@atdmt[2].txt -> Spyware.Cookie.Atdmt : Cleaned with backup
C:\Program Files\Pe