Okay. I did what you said. At first I tried to do the stuff in Safe Mode without the instructions in front of me, which proved to be a mistake. I forgot what to do after the Ewido scan. I restarted in Normal mode, saved your instructions to a html file on my desktop and started over from the Ewido scan. The result of this is that I have two Ewido logs.
Anyway, here's the logs, of the HJT and the Ewido. The first Ewido log is dated wrong, due to my having the wrong time/date on my comp.
Logfile of HijackThis v1.99.1
Scan saved at 11:36:12 PM, on 8/24/2005
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
F:\FCKYOU2\System32\smss.exe
F:\FCKYOU2\system32\winlogon.exe
F:\FCKYOU2\system32\services.exe
F:\FCKYOU2\system32\lsass.exe
F:\FCKYOU2\system32\svchost.exe
F:\FCKYOU2\System32\svchost.exe
F:\FCKYOU2\system32\spoolsv.exe
F:\FCKYOU2\system32\cisvc.exe
F:\Program Files\ewido\security suite\ewidoctrl.exe
F:\FCKYOU2\system32\srvany.exe
F:\FCKYOU2\System32\svchost.exe
F:\FCKYOU2\yodrxoi.exe
F:\FCKYOU2\system32\resetservice.exe
F:\FCKYOU2\aqlvsvc.exe
F:\FCKYOU2\Explorer.EXE
F:\Program Files\ClamWin\bin\ClamTray.exe
F:\Program Files\Java\j2re1.4.2_05\bin\jusched.exe
F:\FCKYOU2\TPPALDR.EXE
F:\FCKYOU2\byxeipa.exe
F:\FCKYOU2\vodkenc.exe
F:\Program Files\ClamWin\bin\ClamTray.exe
F:\Program Files\Gaim\gaim.exe
F:\Documents and Settings\Shenzie\Desktop\hijackthis\HijackThis.exe
F:\Program Files\Microtek\ScanWizard 5\ScannerFinder.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar =
http://websearch.drs...esearch.cgi?id=R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = E:\\FCKYOU2\SYSTEM32\BLANK.HTM
F2 - REG:system.ini: UserInit=F:\FCKYOU2\System32\Userinit.exe
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - F:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: Shareaza Web Download Hook - {0EEDB912-C5FA-486F-8334-57288578C627} - F:\Program Files\Shareaza\Plugins\RazaWebHook.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - F:\PROGRA~1\SPYBOT~1.1\SDHelper.dll
O2 - BHO: LANBridge Class - {71D1708F-973D-4600-AF01-AD86688403AE} - F:\FCKYOU2\System32\vtduccli.dll (file missing)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - f:\program files\google\googletoolbar2.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - f:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [Entropia Client] F:\Program Files\Entropia\Entropia Client\bin\Launcher.exe -Startup
O4 - HKLM\..\Run: [Babylon Client] F:\Program Files\Babylon\Babylon.exe -AutoStart
O4 - HKLM\..\Run: [ClamWin] "F:\Program Files\ClamWin\bin\ClamTray.exe" --logon
O4 - HKLM\..\Run: [SunJavaUpdateSched] F:\Program Files\Java\j2re1.4.2_05\bin\jusched.exe
O4 - HKLM\..\Run: [DXDllRegExe] F:\FCKYOU2\RegisteredPackages\{44BBA855-CC51-11CF-AAFA-00AA00B6015C}\dxdllreg.exe
O4 - HKLM\..\Run: [TPP Auto Loader] F:\FCKYOU2\TPPALDR.EXE
O4 - HKLM\..\Run: [Sysnet] F:\DOCUME~1\Shenzie\LOCALS~1\Temp\sysnet.exe
O4 - HKLM\..\Run: [byxeipa] F:\FCKYOU2\byxeipa.EXE
O4 - HKLM\..\Run: [vodkenc] F:\FCKYOU2\vodkenc.EXE
O4 - HKCU\..\Run: [ClamWin] F:\Program Files\ClamWin\bin\ClamTray.exe --logon
O4 - HKCU\..\Run: [Gaim] F:\Program Files\Gaim\gaim.exe
O4 - HKCU\..\Run: [HijackThis startup scan] F:\Documents and Settings\Shenzie\Desktop\hijackthis\HijackThis.exe /startupscan
O4 - Startup: IconPackager.lnk.disabled
O4 - Global Startup: Microtek Scanner Finder.lnk = F:\Program Files\Microtek\ScanWizard 5\ScannerFinder.exe
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: &Google Search - res://f:\program files\google\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: Backward Links - res://f:\program files\google\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://f:\program files\google\GoogleToolbar2.dll/cmcache.html
O8 - Extra context menu item: Download with &Shareaza - res://F:\Program Files\Shareaza\Plugins\RazaWebHook.dll/3000
O8 - Extra context menu item: Similar Pages - res://f:\program files\google\GoogleToolbar2.dll/cmsimilar.html
O8 - Extra context menu item: Translate into English - res://f:\program files\google\GoogleToolbar2.dll/cmtrans.html
O18 - Filter: text/html - {8293D547-38DD-4325-B35A-F1817EDFA5FC} - F:\Program Files\CMAPP\Client\cmappmf.dll
O20 - Winlogon Notify: reset5 - F:\FCKYOU2\SYSTEM32\reset5.dll
O23 - Service: ewido security suite control - ewido networks - F:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: LogServerShell - Unknown owner - F:\Program Files\Entropia\Entropia Client\Bin\LogServerShell.exe (file missing)
O23 - Service: Reset 5 - Unknown owner - F:\FCKYOU2\system32\srvany.exe
O23 - Service: TaskManagerShell - Unknown owner - F:\Program Files\Entropia\Entropia Client\Bin\TaskManagerShell.exe (file missing)
O23 - Service: Windows Overlay Components - Unknown owner - F:\FCKYOU2\yodrxoi.exe
O23 - Service: Windows VisFx Components - Unknown owner - F:\FCKYOU2\aqlvsvc.exe
---------------------------------------------------------
ewido security suite - Scan report
---------------------------------------------------------
+ Created on: 5:39:44 PM, 8/28/2005
+ Report-Checksum: A79521A0
+ Scan result:
HKLM\SOFTWARE\Classes\CLSID\{01F44A8A-8C97-4325-A378-76E68DC4AB2E} -> Spyware.IEPlugin : Cleaned without backup
HKLM\SOFTWARE\Classes\CLSID\{6024FCD5-91FC-4DC7-8481-63EABD5051D8} -> Spyware.Begin2Search : Cleaned without backup
HKLM\SOFTWARE\Classes\CLSID\{CB5B2BC6-F957-4D8A-BE67-83F3EC58BA01} -> Spyware.Begin2Search : Cleaned without backup
HKLM\SOFTWARE\Classes\CLSID\{E4776F3A-6936-4A9C-B2DA-E57C239FD2F8} -> Spyware.Begin2Search : Cleaned without backup
HKLM\SOFTWARE\Classes\CLSID\{FF81672F-13FF-401F-8662-6E895C564CC4} -> Spyware.Begin2Search : Cleaned without backup
HKLM\SOFTWARE\Classes\dsktrf.amo -> Spyware.DesktopTraffic : Cleaned without backup
HKLM\SOFTWARE\Classes\dsktrf.amo\CLSID -> Spyware.DesktopTraffic : Cleaned without backup
HKLM\SOFTWARE\Classes\dsktrf.amo\CurVer -> Spyware.DesktopTraffic : Cleaned without backup
HKLM\SOFTWARE\Classes\dsktrf.iiittt -> Spyware.DesktopTraffic : Cleaned without backup
HKLM\SOFTWARE\Classes\dsktrf.iiittt\CLSID -> Spyware.DesktopTraffic : Cleaned without backup
HKLM\SOFTWARE\Classes\dsktrf.iiittt\CurVer -> Spyware.DesktopTraffic : Cleaned without backup
HKLM\SOFTWARE\Classes\dsktrf.momo -> Spyware.Begin2Search : Cleaned without backup
HKLM\SOFTWARE\Classes\dsktrf.momo\CLSID -> Spyware.Begin2Search : Cleaned without backup
HKLM\SOFTWARE\Classes\dsktrf.momo\CurVer -> Spyware.Begin2Search : Cleaned without backup
HKLM\SOFTWARE\Classes\dsktrf.ohb -> Spyware.DesktopTraffic : Cleaned without backup
HKLM\SOFTWARE\Classes\dsktrf.ohb\CLSID -> Spyware.DesktopTraffic : Cleaned without backup
HKLM\SOFTWARE\Classes\dsktrf.ohb\CurVer -> Spyware.DesktopTraffic : Cleaned without backup
HKLM\SOFTWARE\Classes\IMIToolbar.BottomFrame -> Spyware.IEPlugin : Cleaned without backup
HKLM\SOFTWARE\Classes\IMIToolbar.BottomFrame\CLSID -> Spyware.IEPlugin : Cleaned without backup
HKLM\SOFTWARE\Classes\IMIToolbar.BottomFrame\CurVer -> Spyware.IEPlugin : Cleaned without backup
HKLM\SOFTWARE\Classes\IMIToolbar.LeftFrame -> Spyware.IEPlugin : Cleaned without backup
HKLM\SOFTWARE\Classes\IMIToolbar.LeftFrame\CLSID -> Spyware.IEPlugin : Cleaned without backup
HKLM\SOFTWARE\Classes\IMIToolbar.LeftFrame\CurVer -> Spyware.IEPlugin : Cleaned without backup
HKLM\SOFTWARE\Classes\IMIToolbar.PopupBrowser -> Spyware.IEPlugin : Cleaned without backup
HKLM\SOFTWARE\Classes\IMIToolbar.PopupBrowser\CLSID -> Spyware.IEPlugin : Cleaned without backup
HKLM\SOFTWARE\Classes\IMIToolbar.PopupBrowser\CurVer -> Spyware.IEPlugin : Cleaned without backup
HKLM\SOFTWARE\Classes\IMIToolbar.PopupWindow -> Spyware.IEPlugin : Cleaned without backup
HKLM\SOFTWARE\Classes\IMIToolbar.PopupWindow\CLSID -> Spyware.IEPlugin : Cleaned without backup
HKLM\SOFTWARE\Classes\IMIToolbar.PopupWindow\CurVer -> Spyware.IEPlugin : Cleaned without backup
HKLM\SOFTWARE\Classes\Interface\{17973BD7-959C-4D8A-8B2F-AB200E20A75E} -> Spyware.Begin2Search : Cleaned without backup
HKLM\SOFTWARE\Classes\Interface\{42F58F60-9299-4564-9ABD-8E9324844560} -> Spyware.Begin2Search : Cleaned without backup
HKLM\SOFTWARE\Classes\Interface\{696D1AF8-D0FF-42FD-BD8D-D0B20D64F508} -> Spyware.Begin2Search : Cleaned without backup
HKLM\SOFTWARE\Classes\Interface\{6FE4AADF-EDAC-4037-9164-0B60179A4F12} -> Spyware.Begin2Search : Cleaned without backup
HKLM\SOFTWARE\Classes\Interface\{8FC08358-3634-44C7-A8F2-96DC7F39ACD2} -> Spyware.Begin2Search : Cleaned without backup
HKLM\SOFTWARE\Classes\Interface\{A797A41D-F9F0-4A32-B9B5-AF927CB5AE54} -> Spyware.Begin2Search : Cleaned without backup
HKLM\SOFTWARE\Classes\Interface\{B12508AD-CA55-4238-8DB3-55808BA6915A} -> Spyware.Begin2Search : Cleaned without backup
HKLM\SOFTWARE\Classes\Interface\{BF7CB2C3-55B6-44C1-9615-920D004C27F7} -> Spyware.Begin2Search : Cleaned without backup
HKLM\SOFTWARE\Classes\Interface\{DE53FA5D-11CC-4CB5-8D8E-EB5AA59C1E5A} -> Spyware.Begin2Search : Cleaned without backup
HKLM\SOFTWARE\Classes\Interface\{E38924F7-F290-4C13-BEEC-E8C587F58128} -> Spyware.Begin2Search : Cleaned without backup
HKLM\SOFTWARE\Classes\Interface\{F912C325-5B26-4AD6-BF39-84370833E972} -> Spyware.Begin2Search : Cleaned without backup
HKLM\SOFTWARE\Classes\Interface\{FA82A7EC-2AFC-4EE0-8F83-3229F7C6437E} -> Spyware.Begin2Search : Cleaned without backup
HKLM\SOFTWARE\Classes\TypeLib\{64440E59-A0DD-421C-AA4B-268141D764BB} -> Spyware.Begin2Search : Cleaned without backup
HKLM\SOFTWARE\Classes\Wbho.Band -> Spyware.IEPlugin : Cleaned without backup
HKLM\SOFTWARE\Classes\Wbho.Band\CLSID -> Spyware.IEPlugin : Cleaned without backup
HKLM\SOFTWARE\Classes\Wbho.Band\CurVer -> Spyware.IEPlugin : Cleaned without backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4D568F0F-8AC9-40AB-88B7-415134C78777} -> Spyware.Begin2Search : Cleaned without backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CB5B2BC6-F957-4D8A-BE67-83F3EC58BA01} -> Spyware.Begin2Search : Cleaned without backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\70tovmto -> Spyware.SAHA : Cleaned without backup
HKLM\SOFTWARE\VGroup -> Spyware.SAHA : Cleaned without backup
HKLM\SOFTWARE\VGroup\SAHPopup -> Spyware.SAHA : Cleaned without backup
HKU\S-1-5-21-1547161642-1644491937-682003330-1004\Software\aaa_soft -> Spyware.Begin2Search : Cleaned without backup
HKU\S-1-5-21-1547161642-1644491937-682003330-1004\Software\aaa_soft\kkkk -> Spyware.Begin2Search : Cleaned without backup
HKU\S-1-5-21-1547161642-1644491937-682003330-1004\Software\aaa_soft\pppp -> Spyware.Begin2Search : Cleaned without backup
HKU\S-1-5-21-1547161642-1644491937-682003330-1004\Software\aaa_soft\ssss -> Spyware.Begin2Search : Cleaned without backup
HKU\S-1-5-21-1547161642-1644491937-682003330-1004\Software\drelkge789AEF5 -> Spyware.DesktopTraffic : Cleaned without backup
HKU\S-1-5-21-1547161642-1644491937-682003330-1004\Software\drelkge789AEF5\eeennn -> Spyware.DesktopTraffic : Cleaned without backup
HKU\S-1-5-21-1547161642-1644491937-682003330-1004\Software\drelkge789AEF5\kkws -> Spyware.DesktopTraffic : Cleaned without backup
HKU\S-1-5-21-1547161642-1644491937-682003330-1004\Software\drelkge789AEF5\ppops -> Spyware.DesktopTraffic : Cleaned without backup
HKU\S-1-5-21-1547161642-1644491937-682003330-1004\Software\drelkge789AEF5\reel -> Spyware.DesktopTraffic : Cleaned without backup
HKU\S-1-5-21-1547161642-1644491937-682003330-1004\Software\drelkge789AEF5\ssites -> Spyware.DesktopTraffic : Cleaned without backup
HKU\S-1-5-21-1547161642-1644491937-682003330-1004\Software\_dsktptr -> Spyware.DesktopTraffic : Cleaned without backup
HKU\S-1-5-21-1547161642-1644491937-682003330-1004\Software\_dsktptr\ppops -> Spyware.DesktopTraffic : Cleaned without backup
HKU\S-1-5-21-1547161642-1644491937-682003330-1004\Software\_dsktptr\ssites -> Spyware.DesktopTraffic : Cleaned without backup
F:\FCKYOU2\5k7s3b9s.exe -> Adware.SAHA : Cleaned without backup
F:\FCKYOU2\70tovmto.exe -> Adware.SAHA : Cleaned without backup
F:\FCKYOU2\aqlvenc.exe -> Spyware.Hijacker.Generic : Cleaned without backup
F:\FCKYOU2\AuroraHandler.dll -> Adware.BetterInternet : Cleaned without backup
F:\FCKYOU2\dinst.exe -> TrojanDownloader.Intexp.d : Cleaned without backup
F:\FCKYOU2\dsr.dll -> Spyware.Hijacker.Generic : Cleaned without backup
F:\FCKYOU2\dsr.exe -> Trojan.Imiserv.c : Cleaned without backup
F:\FCKYOU2\hjvusvc.exe -> TrojanDropper.Agent.mu : Cleaned without backup
F:\FCKYOU2\ijelgmdim.exe -> Adware.BetterInternet : Cleaned without backup
F:\FCKYOU2\system32\2p1ebr65.exe -> Adware.Saha : Cleaned without backup
F:\FCKYOU2\system32\ap9h4qmo.exe -> Adware.SAHA : Cleaned without backup
F:\FCKYOU2\system32\l62gjp87.exe -> Adware.SAHA : Cleaned without backup
F:\FCKYOU2\system32\lanbrup.exe -> Spyware.SafeSurfing : Cleaned without backup
F:\FCKYOU2\system32\lkir8l2gm.dll -> Adware.SAHA : Cleaned without backup
F:\FCKYOU2\system32\nsh2.dll -> Spyware.Beginto : Cleaned without backup
F:\FCKYOU2\system32\nsi2C3.dll -> Spyware.Beginto : Cleaned without backup
F:\FCKYOU2\system32\nskA4.dll -> Spyware.Beginto : Cleaned without backup
F:\FCKYOU2\system32\nsv2.dll -> Spyware.Beginto : Cleaned without backup
F:\FCKYOU2\system32\nsx2.dll -> Spyware.Beginto : Cleaned without backup
F:\FCKYOU2\system32\o4ps3dv9.dll -> Adware.SAHA : Cleaned without backup
F:\FCKYOU2\system32\q17i9a4j.exe -> Adware.SAHA : Cleaned without backup
F:\FCKYOU2\system32\qh4mkbv9.dll -> Adware.SAHA : Cleaned without backup
F:\FCKYOU2\system32\redtrsha.dll -> Spyware.SafeSurfing : Cleaned without backup
F:\FCKYOU2\system32\richup.exe -> Spyware.SafeSurfing : Cleaned without backup
F:\FCKYOU2\system32\rtneg3.dll -> Spyware.Beginto : Cleaned without backup
F:\FCKYOU2\system32\vtduccli.dll -> Spyware.SafeSurfing : Cleaned without backup
F:\FCKYOU2\System320nsz2FC0 -> Spyware.HotSearchBar : Cleaned without backup
F:\FCKYOU2\tdtb.exe -> Trojan.Imiserv.c : Cleaned without backup
F:\Documents and Settings\Shenzie\Cookies\
[email protected][1].txt -> Spyware.Cookie.Shopathomeselect : Cleaned without backup
::Report End
---------------------------------------------------------
ewido security suite - Scan report
---------------------------------------------------------
+ Created on: 11:24:30 PM, 8/24/2005
+ Report-Checksum: A471D3A0
+ Scan result:
:mozilla.15:F:\Documents and Settings\Anyone Else\Application Data\Mozilla\Profiles\default\cj0ig1ik.slt\cookies.txt -> Spyware.Cookie.Mediaplex : Cleaned without backup
:mozilla.17:F:\Documents and Settings\Anyone Else\Application Data\Mozilla\Profiles\default\cj0ig1ik.slt\cookies.txt -> Spyware.Cookie.Doubleclick : Cleaned without backup
:mozilla.22:F:\Documents and Settings\Anyone Else\Application Data\Mozilla\Profiles\default\cj0ig1ik.slt\cookies.txt -> Spyware.Cookie.Googleadservices : Cleaned without backup
:mozilla.30:F:\Documents and Settings\Anyone Else\Application Data\Mozilla\Profiles\default\cj0ig1ik.slt\cookies.txt -> Spyware.Cookie.Bluestreak : Cleaned without backup
F:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\092BCDEN\DrPMon[1].dll -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\.clamwin\quarantine\reg6523.exe -> Spyware.Beginto : Cleaned without backup
:mozilla.89:F:\Documents and Settings\Shenzie\Application Data\Mozilla\Profiles\default\frns20vm.slt\cookies.txt -> Spyware.Cookie.Centrport : Cleaned without backup
:mozilla.6:F:\Documents and Settings\Shenzie\Application Data\Mozilla\Profiles\mdezh66g.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned without backup
:mozilla.7:F:\Documents and Settings\Shenzie\Application Data\Mozilla\Profiles\mdezh66g.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned without backup
:mozilla.8:F:\Documents and Settings\Shenzie\Application Data\Mozilla\Profiles\mdezh66g.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned without backup
:mozilla.9:F:\Documents and Settings\Shenzie\Application Data\Mozilla\Profiles\mdezh66g.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned without backup
:mozilla.10:F:\Documents and Settings\Shenzie\Application Data\Mozilla\Profiles\mdezh66g.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned without backup
:mozilla.11:F:\Documents and Settings\Shenzie\Application Data\Mozilla\Profiles\mdezh66g.default\cookies.txt -> Spyware.Cookie.Valueclick : Cleaned without backup
:mozilla.12:F:\Documents and Settings\Shenzie\Application Data\Mozilla\Profiles\mdezh66g.default\cookies.txt -> Spyware.Cookie.Valueclick : Cleaned without backup
F:\Documents and Settings\Shenzie\Desktop\hijackthis\backups\backup-20050429-214757-745.dll -> Spyware.Beginto : Cleaned without backup
F:\Documents and Settings\Shenzie\Desktop\hijackthis\backups\backup-20050514-111619-779.dll -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\AEH\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\asfjkk32.tmp -> Spyware.SafeSurfing : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\ATW\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\BMI\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\BTW\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\BZP\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\CDH\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\CKY\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\CMI\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\CXO\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\DQE\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\DrTemp\wupdt.exe -> TrojanDownloader.Intexp.c : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\DUN\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\DUY\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\ELX\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\END\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\EWX\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\FNB\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\FNH\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\GEY\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\GIO\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\GRZ\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\GTL\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\GTY\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\GXD\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\HKE\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\HOJ\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\II512.tmp -> Spyware.Beginto.c : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\JAA\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\JAG\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\JHQ\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\labpengs.tmp -> Spyware.SafeSurfing : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\LVI\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\MKL\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\MZW\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\OHO\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\OLG\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\OUY\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\PAC\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\RKY\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\RMO\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\ROH\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\RVC\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\RXD\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\SDD\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\SDF\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\SMX\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\SZJ\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\TFA\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\THZ\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\VGX\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\VIF\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\VRO\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\VRV\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\WIF\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\WMB\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\WXQ\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\XMO\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\XQV\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\XSM\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\XZW\uacupg.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\YHK\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\YSQ\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\ZAE\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\ZAR\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Local Settings\Temp\ZNB\aurareco.exe -> Adware.BetterInternet : Cleaned without backup
F:\Documents and Settings\Shenzie\Shenzie\Cookies\
[email protected][1].txt -> Spyware.Cookie.2o7 : Cleaned without backup
F:\FCKYOU2\mwfpenc.exe -> Spyware.Hijacker.Generic : Cleaned without backup
F:\Program Files\CMAPP\Client\cmappclient.exe -> Spyware.CASClient : Cleaned without backup
F:\Program Files\CMAPP\Client\cmappmf.dll -> Spyware.CASClient : Cleaned without backup
H:\finished downloaded\Babylon 3.50b reg_crack.zip/FILE.VBS -> Worm.Gedza : Cleaned without backup
::Report End
Thanks for your help!
I appreciate it.