Logfile of HijackThis v1.99.1
Scan saved at 12:03:59 AM, on 8/24/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Cisco Systems\VPN Client\cvpnd.exe
C:\Program Files\ewido\security suite\ewidoctrl.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
C:\Program Files\Norton AntiVirus\SAVScan.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Apoint2K\Apoint.exe
C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
C:\Program Files\HPQ\Quick Launch Buttons\EabServr.exe
C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe
C:\Program Files\HP\Digital Imaging\Unload\hpqcmon.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe
C:\Program Files\Apoint2K\Apntex.exe
C:\WINDOWS\System32\hphmon05.exe
C:\PROGRA~1\MUSICM~1\MUSICM~1\mm_tray.exe
C:\WINDOWS\AGRSMMSG.exe
C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mmtask.exe
C:\Program Files\Messenger\msmsgs.exe
c:\windows\system32\qoffaa.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\hijack this\Hijackthis\HijackThis.exe
O2 - BHO: (no name) - {00F1D395-4744-40f0-A611-980F61AE2C59} - (no file)
O2 - BHO: (no name) - {8E13DDE1-E013-47ec-9C4C-27C2F78BDD26} - C:\WINDOWS\system32\awtsr.dll
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint2K\Apoint.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
O4 - HKLM\..\Run: [eabconfg.cpl] C:\Program Files\HPQ\Quick Launch Buttons\EabServr.exe /Start
O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [CamMonitor] C:\Program Files\HP\Digital Imaging\Unload\hpqcmon.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [NAV CfgWiz] C:\Program Files\Common Files\Symantec Shared\CfgWiz.exe /GUID NAV /CMDLINE "REBOOT"
O4 - HKLM\..\Run: [Cpqset] C:\Program Files\HPQ\Default Settings\cpqset.exe
O4 - HKLM\..\Run: [HPHUPD05] C:\Program Files\Hewlett-Packard\{D946675D-1D6C-4dc8-9E0D-B4B8EAA30EAA}\hphupd05.exe
O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [HP Software Update] "C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe"
O4 - HKLM\..\Run: [HPHmon05] C:\WINDOWS\System32\hphmon05.exe
O4 - HKLM\..\Run: [MMTray] C:\PROGRA~1\MUSICM~1\MUSICM~1\mm_tray.exe
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [mmtask] "C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mmtask.exe"
O4 - HKLM\..\Run: [lpnkkd] c:\windows\system32\qoffaa.exe r
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - Global Startup: BTTray.lnk = ?
O4 - Global Startup: Cisco Systems VPN Client.lnk = C:\Program Files\Cisco Systems\VPN Client\vpngui.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Quicken Scheduled Updates.lnk = C:\Program Files\Quicken\bagent.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
O14 - IERESET.INF: START_PAGE_URL=http://qus8l.hpwis.com
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) -
http://go.microsoft....k/?linkid=39204O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) -
http://update.micros...b?1124752795718O20 - Winlogon Notify: awtsr - C:\WINDOWS\SYSTEM32\awtsr.dll
O23 - Service: Bluetooth Service (btwdins) - WIDCOMM, Inc. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: Cisco Systems, Inc. VPN Service (CVPND) - Cisco Systems, Inc. - C:\Program Files\Cisco Systems\VPN Client\cvpnd.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: Norton AntiVirus Auto Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
---------------------------------------------------------
ewido security suite - Scan report
---------------------------------------------------------
+ Created on: 11:36:47 PM, 8/23/2005
+ Report-Checksum: 908D7136
+ Scan result:
HKLM\SOFTWARE\Classes\AppID\{0DC5CD7C-F653-4417-AA43-D457BE3A9622} -> Spyware.BookedSpace : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{417386C3-8D4A-4611-9B91-E57E89D603AC} -> Spyware.AdDestroyer : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{B5AB638F-D76C-415B-A8F2-F3CEAC502212} -> Spyware.AproposMedia : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{BC333116-6EA1-40A1-9D07-ECB192DB8CEA} -> Spyware.AproposMedia : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{10D7DB96-56DC-4617-8EAB-EC506ABE6C7E} -> Spyware.AdDestroyer : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{6CDC3337-01F7-4A79-A4AF-0B19303CC0BE} -> Spyware.AdDestroyer : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{795398D0-DC2F-4118-A69C-592273BA9C2B} -> Spyware.AdDestroyer : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{B288F21C-A144-4CA2-9B70-8AFA1FAE4B06} -> Spyware.AdDestroyer : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{BC333116-6EA1-40A1-9D07-ECB192DB8CEA} -> Spyware.AproposMedia : Cleaned with backup
HKLM\SOFTWARE\Classes\PopOops2.PopOops -> Spyware.AdDestroyer : Cleaned with backup
HKLM\SOFTWARE\Classes\PopOops2.PopOops\Clsid -> Spyware.AdDestroyer : Cleaned with backup
HKLM\SOFTWARE\Classes\SWLAD1.SWLAD -> Spyware.AdDestroyer : Cleaned with backup
HKLM\SOFTWARE\Classes\SWLAD1.SWLAD\Clsid -> Spyware.AdDestroyer : Cleaned with backup
HKLM\SOFTWARE\Classes\TypeLib\{D0C29A75-7146-4737-98EE-BC4D7CF44AF9} -> Spyware.AdDestroyer : Cleaned with backup
HKLM\SOFTWARE\Classes\TypeLib\{E0D3B292-A0B0-4640-975C-2F882E039F52} -> Spyware.AdDestroyer : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Surf SideKick -> Spyware.SurfSide : Cleaned with backup
HKLM\SOFTWARE\VGroup -> Spyware.SAHA : Cleaned with backup
HKLM\SOFTWARE\VGroup\SAHPopup -> Spyware.SAHA : Cleaned with backup
[856] c:\windows\system32\rzslih.exe -> Adware.BetterInternet : Cleaned with backup
C:\asdf.exe -> TrojanDownloader.Small.bhf : Cleaned with backup
C:\Documents and Settings\Administrator\Cookies\administrator@abetterinternet[2].txt -> Spyware.Cookie.Abetterinternet : Cleaned with backup
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\KLQZODQB\recinst[1].exe -> TrojanDownloader.Qoologic.ac : Cleaned with backup
C:\Documents and Settings\All Users\Start Menu\Programs\Startup\rutk.exe -> TrojanDownloader.Qoologic.ac : Cleaned with backup
C:\Documents and Settings\Kelly\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\file\time.class-50c9903d-48e0c9d4.class -> TrojanDownloader.Small.bhf : Cleaned with backup
C:\Documents and Settings\Kelly\Cookies\kelly@2o7[1].txt -> Spyware.Cookie.2o7 : Cleaned with backup
C:\Documents and Settings\Kelly\Cookies\kelly@abetterinternet[2].txt -> Spyware.Cookie.Abetterinternet : Cleaned with backup
C:\Documents and Settings\Kelly\Cookies\
[email protected][1].txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
C:\Documents and Settings\Kelly\Cookies\
[email protected][2].txt -> Spyware.Cookie.Specificclick : Cleaned with backup
C:\Documents and Settings\Kelly\Cookies\
[email protected][1].txt -> Spyware.Cookie.Addynamix : Cleaned with backup
C:\Documents and Settings\Kelly\Cookies\kelly@advertising[1].txt -> Spyware.Cookie.Advertising : Cleaned with backup
C:\Documents and Settings\Kelly\Cookies\kelly@atdmt[2].txt -> Spyware.Cookie.Atdmt : Cleaned with backup
C:\Documents and Settings\Kelly\Cookies\kelly@doubleclick[1].txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
C:\Documents and Settings\Kelly\Cookies\
[email protected][2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Kelly\Cookies\
[email protected][2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Kelly\Cookies\
[email protected][2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Kelly\Cookies\
[email protected][2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Kelly\Cookies\kelly@fastclick[2].txt -> Spyware.Cookie.Fastclick : Cleaned with backup
C:\Documents and Settings\Kelly\Cookies\kelly@findwhat[1].txt -> Spyware.Cookie.Findwhat : Cleaned with backup
C:\Documents and Settings\Kelly\Cookies\kelly@overture[1].txt -> Spyware.Cookie.Overture : Cleaned with backup
C:\Documents and Settings\Kelly\Cookies\kelly@paypopup[2].txt -> Spyware.Cookie.Paypopup : Cleaned with backup
C:\Documents and Settings\Kelly\Cookies\kelly@qksrv[2].txt -> Spyware.Cookie.Qksrv : Cleaned with backup
C:\Documents and Settings\Kelly\Cookies\
[email protected][2].txt -> Spyware.Cookie.Advertising : Cleaned with backup
C:\Documents and Settings\Kelly\Cookies\kelly@shopathomeselect[1].txt -> Spyware.Cookie.Shopathomeselect : Cleaned with backup
C:\Documents and Settings\Kelly\Cookies\kelly@trafficmp[2].txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
C:\Documents and Settings\Kelly\Cookies\kelly@valueclick[1].txt -> Spyware.Cookie.Valueclick : Cleaned with backup
C:\Documents and Settings\Kelly\Cookies\kelly@valueclick[3].txt -> Spyware.Cookie.Valueclick : Cleaned with backup
C:\Documents and Settings\Kelly\Cookies\
[email protected][1].txt -> Spyware.Cookie.Epilot : Cleaned with backup
C:\Documents and Settings\Kelly\Cookies\kelly@yieldmanager[2].txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
C:\Documents and Settings\Kelly\Cookies\
[email protected][1].txt -> Spyware.Cookie.Adserver : Cleaned with backup
C:\Documents and Settings\Kelly\Local Settings\Temp\131588_188_3076_192_62.41.tmp1 -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Kelly\Local Settings\Temp\131640_1740_2372_2100_62.41.tmp1 -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Kelly\Local Settings\Temp\131912_3504_2668_496_62.41.tmp1 -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Kelly\Local Settings\Temp\133664_3536_2396_4492_62.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Kelly\Local Settings\Temp\133772_3536_2396_4496_62.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Kelly\Local Settings\Temp\196914_1008_2520_928_62.41.tmp1 -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Kelly\Local Settings\Temp\198126_3504_2668_3248_62.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Kelly\Local Settings\Temp\198126_3504_2668_3248_62.41.tmp1 -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Kelly\Local Settings\Temp\262820_188_3076_556_62.41.tmp1 -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Kelly\Local Settings\Temp\262848_548_2596_1224_62.41.tmp1 -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Kelly\Local Settings\Temp\262870_548_2596_392_62.41.tmp1 -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Kelly\Local Settings\Temp\327728_256_2512_4044_62.41.tmp1 -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Kelly\Local Settings\Temp\328258_1568_3296_592_62.41.tmp1 -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Kelly\Local Settings\Temp\393942_3428_2752_3604_62.41.tmp1 -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Kelly\Local Settings\Temp\459092_572_2568_292_62.41.tmp1 -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Kelly\Local Settings\Temp\590498_1712_2368_2208_62.41.tmp1 -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Kelly\Local Settings\Temp\65872_240_2388_3272_62.41.tmp1 -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Kelly\Local Settings\Temp\65964_712_2772_3636_62.41.tmp1 -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Kelly\Local Settings\Temp\65984_148_2852_316_62.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Kelly\Local Settings\Temp\65984_148_2852_316_62.41.tmp1 -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Kelly\Local Settings\Temp\66000_548_2596_168_62.41.tmp1 -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Kelly\Local Settings\Temp\66022_696_2488_4048_62.41.tmp1 -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Kelly\Local Settings\Temp\66142_3320_2520_3400_62.41.tmp1 -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Kelly\Local Settings\Temp\66150_3504_2668_2072_62.41.tmp1 -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Kelly\Local Settings\Temp\66212_1740_2372_524_62.41.tmp1 -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Kelly\Local Settings\Temp\66296_1808_2596_1020_62.41.tmp1 -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Kelly\Local Settings\Temp\66388_1868_2852_312_62.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Kelly\Local Settings\Temp\66388_1868_2852_312_62.41.tmp1 -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Kelly\Local Settings\Temp\66838_1788_2668_1700_62.41.tmp1 -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Kelly\Local Settings\Temp\67104_3504_2668_2068_62.41.tmp1 -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Kelly\Local Settings\Temp\67268_3504_2668_3300_62.41.tmp1 -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Kelly\Local Settings\Temp\720976_3504_2668_3460_62.41.tmp1 -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Kelly\Local Settings\Temp\721094_684_2788_3780_62.41.tmp1 -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Kelly\Local Settings\Temp\983658_944_2752_336_62.41.tmp1 -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Kelly\Local Settings\Temp\f252670093.exe -> TrojanDownloader.Qoologic.n : Cleaned with backup
C:\Documents and Settings\Kelly\Local Settings\Temp\i244.tmp -> Spyware.SurfSide : Cleaned with backup
C:\Documents and Settings\Kelly\Local Settings\Temp\i2D.tmp -> Spyware.SurfSide : Cleaned with backup
C:\Documents and Settings\Kelly\Local Settings\Temp\i2DA.tmp -> Spyware.SurfSide : Cleaned with backup
C:\Documents and Settings\Kelly\Local Settings\Temp\i30.tmp -> Spyware.SurfSide : Cleaned with backup
C:\Documents and Settings\Kelly\Local Settings\Temp\i33.tmp -> Spyware.SurfSide : Cleaned with backup
C:\Documents and Settings\Kelly\Local Settings\Temp\installer_MARKETING51 -> TrojanDownloader.Adload.a : Cleaned with backup
C:\Documents and Settings\Kelly\Local Settings\Temp\labpengs.tmp -> Spyware.SafeSurfing : Cleaned with backup
C:\Documents and Settings\Kelly\Local Settings\Temp\MediaGateway2 -> Spyware.WinAD : Cleaned with backup
C:\Documents and Settings\Kelly\Local Settings\Temp\pcs_0006.exe -> Spyware.Pacer : Cleaned with backup
C:\Documents and Settings\Kelly\Local Settings\Temp\pcs_0029.exe -> Spyware.Pacer : Cleaned with backup
C:\Documents and Settings\Kelly\Local Settings\Temp\ptf_0006.exe -> Spyware.Pacer : Cleaned with backup
C:\Documents and Settings\Kelly\Local Settings\Temp\ptf_0029.exe -> Spyware.Pacer : Cleaned with backup
C:\Documents and Settings\Kelly\Local Settings\Temp\SSK3_B5 Seedcorn 4.exe -> TrojanDropper.Small.qn : Cleaned with backup
C:\Documents and Settings\Kelly\Local Settings\Temp\tp7543.exe -> TrojanDownloader.Qoologic.x : Cleaned with backup
C:\Documents and Settings\Kelly\Local Settings\Temporary Internet Files\Content.IE5\6BG9IL0L\pokapoka63[1].exe -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Kelly\Local Settings\Temporary Internet Files\Content.IE5\6BG9IL0L\recinst[1].exe -> TrojanDownloader.Qoologic.x : Cleaned with backup
C:\Documents and Settings\Kelly\Local Settings\Temporary Internet Files\Content.IE5\87Y9E9GN\proxy_inst[1].exe -> Spyware.EliteBar : Cleaned with backup
C:\Program Files\CMAPP\Client\cmappclient.exe -> Spyware.CASClient : Cleaned with backup
C:\Program Files\CMAPP\Client\cmappmf.dll -> Spyware.CASClient : Cleaned with backup
C:\Program Files\SurfSideKick 3\Ssk.exe -> Spyware.SurfSide : Cleaned with backup
C:\Program Files\SurfSideKick 3\SskBho.dll -> Spyware.SurfSide : Cleaned with backup
C:\Program Files\SurfSideKick 3\SskCore.dll -> Spyware.SurfSide : Cleaned with backup
C:\WINDOWS\bbchk.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\WINDOWS\borcsvc.exe -> TrojanDropper.Agent.mu : Cleaned with backup
C:\WINDOWS\cfgmgr52\EECH1.bsx -> Spyware.BookedSpace : Cleaned with backup
C:\WINDOWS\cfgmgr52\SPZ3.bsx -> Spyware.BookedSpace : Cleaned with backup
C:\WINDOWS\iracfxwyoaj.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\erbna.dll -> TrojanDownloader.Qoologic.ac : Cleaned with backup
C:\WINDOWS\system32\ffgjsfd.dll -> TrojanDownloader.Qoologic.ac : Cleaned with backup
C:\WINDOWS\system32\installer_MARKETING51.exe -> TrojanDropper.Agent.hl : Cleaned with backup
C:\WINDOWS\system32\lanbrup.exe -> Spyware.SafeSurfing : Cleaned with backup
C:\WINDOWS\system32\oyuziqey.dll -> Spyware.SafeSurfing : Cleaned with backup
C:\WINDOWS\system32\rzslih.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\silent_ventura5.exe -> Spyware.EliteBar : Cleaned with backup
C:\WINDOWS\system32\supdate.dll -> TrojanDownloader.Qoologic.p : Cleaned with backup
C:\WINDOWS\system32\sxdgps.exe -> TrojanDownloader.Qoologic.ac : Cleaned with backup
C:\WINDOWS\system32\VVSNInst.exe -> Adware.SaveNow : Cleaned with backup
C:\WINDOWS\system32\wgvau.dat -> TrojanDownloader.Qoologic.ac : Cleaned with backup
C:\WINDOWS\visfxun.exe -> TrojanDownloader.VB.kd : Cleaned with backup
C:\WINDOWS\wwqpece.exe -> TrojanDropper.Agent.tb : Cleaned with backup
::Report End