Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

Problems with nailpol-a, winfixer, java trojan [CLOSED]


  • This topic is locked This topic is locked

#1
calderd

calderd

    Member

  • Member
  • PipPip
  • 27 posts
Logfile of HijackThis v1.99.1
Scan saved at 6:22:45 PM, on 24/08/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Ahead\InCD\InCDsrv.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.exe
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\LEXPPS.EXE
C:\Program Files\Creative\ShareDLL\CtNotify.exe
C:\Program Files\Logitech\iTouch\iTouch.exe
C:\WINDOWS\system32\CTHELPER.EXE
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
C:\Program Files\HP\Personal Printing Solutions Product Research\HP Product Research.exe
C:\Program Files\Ahead\InCD\InCD.exe
C:\Program Files\Logitech\MouseWare\system\em_exec.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\Creative\ShareDLL\Mediadet.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\WINDOWS\itwahqf.EXE
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\WINDOWS\system32\ctfmon.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\WINDOWS\System32\CTsvcCDA.exe
C:\Program Files\Adobe\Acrobat 5.0\Distillr\AcroTray.exe
C:\Program Files\ewido\security suite\ewidoctrl.exe
C:\Program Files\ewido\security suite\ewidoguard.exe
C:\MSSQL7\Binn\sqlmangr.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\palmOne\HOTSYNC.EXE
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wdfmgr.exe
C:\Program Files\HP\hpcoretech\comp\hptskmgr.exe
C:\WINDOWS\vmdxsnr.exe
C:\Program Files\HP\Digital Imaging\bin\hpqgalry.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\System32\alg.exe
C:\Program Files\Netscape\Netscape\Netscp.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\hijack\HijackThis.exe

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
R3 - URLSearchHook: (no name) - {00A6FAF6-072E-44cf-8957-5838F569A31D} - C:\Program Files\MyWebSearch\SrchAstt\1.bin\MWSSRCAS.DLL (file missing)
F2 - REG:system.ini: Shell=Explorer.exe C:\WINDOWS\Nail.exe
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\Userinit.exe
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: PicShow Class - {4487598C-2EC7-43A2-870E-6D8D720FDD9F} - C:\WINDOWS\system32\pkshgbtg.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: LANBridge Class - {71D1708F-973D-4600-AF01-AD86688403AE} - C:\WINDOWS\system32\zjrxclbx.dll (file missing)
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.4000.1001\en-ca\msntb.dll
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.4000.1001\en-ca\msntb.dll
O4 - HKLM\..\Run: [Disc Detector] C:\Program Files\Creative\ShareDLL\CtNotify.exe
O4 - HKLM\..\Run: [zBrowser Launcher] C:\Program Files\Logitech\iTouch\iTouch.exe
O4 - HKLM\..\Run: [WINDVDPatch] CTHELPER.EXE
O4 - HKLM\..\Run: [UpdReg] C:\WINDOWS\UpdReg.EXE
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [Logitech Utility] Logi_MwX.Exe
O4 - HKLM\..\Run: [Jet Detection] "C:\Program Files\Creative\SBLive\PROGRAM\ADGJDet.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [HP Metrics] C:\Program Files\HP\Personal Printing Solutions Product Research\HP Product Research.exe a
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [InCD] C:\Program Files\Ahead\InCD\InCD.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [MyWebSearch Email Plugin] C:\PROGRA~1\MYWEBS~1\bar\1.bin\mwsoemon.exe
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [itwahqf] C:\WINDOWS\itwahqf.EXE
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [AVG7_EMC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O4 - HKLM\..\Run: [THGuard] "C:\Program Files\TrojanHunter 4.2\THGuard.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MyWebSearch Email Plugin] C:\PROGRA~1\MYWEBS~1\bar\1.bin\mwsoemon.exe
O4 - HKCU\..\Run: [pshower] C:\WINDOWS\system32\pshwr.exe
O4 - HKCU\..\Run: [CMAPP] "C:\Program Files\CMAPP\Client\cmappclient.exe"
O4 - Startup: HotSync Manager.LNK = C:\Program Files\palmOne\HOTSYNC.EXE
O4 - Startup: MyWebSearch Email Plugin.lnk = C:\Program Files\MyWebSearch\bar\1.bin\MWSOEMON.EXE
O4 - Global Startup: Acrobat Assistant.lnk = C:\Program Files\Adobe\Acrobat 5.0\Distillr\AcroTray.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: HP Image Zone Fast Start.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: MyWebSearch Email Plugin.lnk = C:\Program Files\MyWebSearch\bar\1.bin\MWSOEMON.EXE
O4 - Global Startup: Service Manager.lnk = C:\MSSQL7\Binn\sqlmangr.exe
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {04E214E5-63AF-4236-83C6-A7ADCBF9BD02} (HouseCall Control) - http://housecall-bet...all/xscan60.cab
O16 - DPF: {0A5FD7C5-A45C-49FC-ADB5-9952547D5715} (Creative Software AutoUpdate) - http://www.creative....007/CTSUEng.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupd...b?1099773519484
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.micros...b?1123718011558
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai...all/xscan53.cab
O16 - DPF: {BDD2F926-8158-4F62-9E0D-B3B75FD1F07F} (McObjectFactory Class) - http://download.mcaf...0,2/mcmysec.cab
O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) - http://download.mcaf...561/mcfscan.cab
O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://www.creative....15008/CTPID.cab
O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTsvcCDA.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido\security suite\ewidoguard.exe
O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Program Files\Ahead\InCD\InCDsrv.exe
O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: System Startup Service (SvcProc) - Unknown owner - C:\WINDOWS\svcproc.exe (file missing)
O23 - Service: Windows Overlay Components - Unknown owner - C:\WINDOWS\vmdxsnr.exe
  • 0

Advertisements


#2
Rawe

Rawe

    Visiting Staff

  • Member
  • PipPipPipPipPipPipPip
  • 4,746 posts
Hello and welcome!

Please download Trend Micro™ Anti-Spyware for the Web Utility (by clicking the "Scan and Clean your PC" button).
  • Save it to your desktop.
  • Double-click the new icon on your desktop (tmas-web-scan.exe)
  • It will say "Loading TrendMicro definitions".
  • Once the definitions are loaded, the program will appear to close then re-open.
  • Click "Start Scan"
  • After it's done scanning, click "Scan Results"
  • Make sure all items found have a check next to them, then click "Clean Threats Now".
  • Click Exit.
Reboot your computer. In place of the TrendMicro icon will be a text file called "Antispyware.log", please double-click that log and copy the entire contents and paste them here.
  • 0

#3
calderd

calderd

    Member

  • Topic Starter
  • Member
  • PipPip
  • 27 posts
Hi Rawe.. thanks for your super quick response!!

OK, i ran the program and here is the log.. but first, when I re-started the computer I got the following error : Windows can not find c:\windows\nail.exe

And now the log...

Started Scanning
Internet Cookies
Found 'btg.btgrab.com' in 'Internet Explorer Cache'
Found 'cliks.org' in 'Internet Explorer Cache'
Found 'trafficmp.com' in 'Internet Explorer Cache'
Found 'statcounter.com' in 'Internet Explorer Cache'
Found 'abetterinternet.com' in 'Internet Explorer Cache'
Found 'ads.cc214142.com' in 'Internet Explorer Cache'
Found 'offeroptimizer.com' in 'Internet Explorer Cache'
Found 'linksynergy.com' in 'Internet Explorer Cache'
Found 'atdmt.com' in 'Internet Explorer Cache'
Found 'casalemedia.com' in 'Internet Explorer Cache'
Found 'findwhat.com' in 'Internet Explorer Cache'
Found 'btg.btgrab.com' in 'Internet Explorer Cache'
Found 'ads.pointroll.com' in 'Internet Explorer Cache'
Found 'doubleclick.net' in 'Internet Explorer Cache'
Programs in Memory
Windows Registry
Found '' in 'SOFTWARE\LimeWire'
Found '' in 'Software\Kazaa'
Found '' in 'Software\Kazaa\ResultsFilter'
Found '' in 'Software\Kazaa\Settings'
Found '' in 'Software\Kazaa\Transfer'
Found '' in 'Software\KaZaA\CloudLoad'
Found '' in 'Software\KaZaA\ConnectionInfo'
Found '' in 'Software\KaZaA\LocalContent'
Found '' in 'SOFTWARE\Classes\ed2k'
Found '' in 'SOFTWARE\Classes\ed2k\DefaultIcon'
Found '' in 'SOFTWARE\Classes\ed2k\shell\open\command'
Found '' in 'Software\Kazaa'
Found '' in 'Software\Kazaa\Advanced'
Found '' in 'Software\Kazaa\LocalContent'
Found '' in 'Software\Kazaa\Promotions\Broadband'
Found '' in 'Software\Kazaa\Skins'
Found '' in 'Software\Kazaa\UserDetails'
Found '' in 'SOFTWARE\Kazaa\Bandwidth\in'
Found '' in 'SOFTWARE\Kazaa\Bandwidth\LastEstimate'
Found '' in 'SOFTWARE\Kazaa\Bandwidth\out'
Found '' in 'SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\D:\InstallShield\Kazaa\kazaa.exe'
Found '' in 'SOFTWARE\Magnet'
Found '' in 'SOFTWARE\Classes\magnet'
Found '' in 'SOFTWARE\Classes\magnet\shell\open\command'
Found 'URL Protocol' in 'SOFTWARE\Classes\magnet'
Found 'Tmp' in 'Software\Kazaa'
Found 'Status' in 'Software\Kazaa\Advanced'
Found 'BBDbLoc' in 'Software\Kazaa\Promotions\Broadband'
Found 'NullImageLoc' in 'Software\Kazaa\Promotions\Broadband'
Found 'NullImageLoc2' in 'Software\Kazaa\Promotions\Broadband'
Found 'b' in 'SOFTWARE\Kazaa\Bandwidth\LastEstimate'
Found 'b0' in 'SOFTWARE\Kazaa\Bandwidth\in'
Found 'b0' in 'SOFTWARE\Kazaa\Bandwidth\out'
Found 'b0seconds' in 'SOFTWARE\Kazaa\Bandwidth\in'
Found 'b0seconds' in 'SOFTWARE\Kazaa\Bandwidth\out'
Found 'b1' in 'SOFTWARE\Kazaa\Bandwidth\in'
Found 'b1' in 'SOFTWARE\Kazaa\Bandwidth\out'
Found 'DatabaseDir' in 'SOFTWARE\Kazaa\LocalContent'
Found 'Date' in 'Software\Kazaa\Settings'
Found 'DownloadDir' in 'SOFTWARE\Kazaa\LocalContent'
Found 'UseCount' in 'Software\Kazaa\Settings'
Found 'NoUploadLimitWhenIdle' in 'Software\Kazaa\Transfer'
Found 'FirewallStatus' in 'SOFTWARE\Kazaa'
Found 'ListenPort' in 'SOFTWARE\Kazaa'
Found 'my_ip_address' in 'SOFTWARE\Kazaa'
Found 'network_config' in 'SOFTWARE\Kazaa'
Found 'Tmp' in 'SOFTWARE\Kazaa'
Found 'UDP_probe_successes' in 'SOFTWARE\Kazaa'
Found 'UDP_receive_status' in 'SOFTWARE\Kazaa'
Found 'time' in 'SOFTWARE\Kazaa\Bandwidth\LastEstimate'
Found 'ShareDir' in 'SOFTWARE\Kazaa\CloudLoad'
Found 'KazaaNet' in 'SOFTWARE\Kazaa\ConnectionInfo'
Found '' in 'Software\AppConf'
Found 'confset' in 'Software\AppConf'
Found '' in 'SOFTWARE\Classes\CLSID\{B7156514-A76C-4545-9D5B-A4E1D02C7AEC}'
Found '' in 'SOFTWARE\Classes\CLSID\{B7156514-A76C-4545-9D5B-A4E1D02C7AEC}\InprocServer32'
Found 'ThreadingModel' in 'SOFTWARE\Classes\CLSID\{B7156514-A76C-4545-9D5B-A4E1D02C7AEC}\InprocServer32'
Found '' in 'SOFTWARE\Classes\CLSID\{B7156514-A76C-4545-9D5B-A4E1D02C7AEC}\MiscStatus'
Found '' in 'SOFTWARE\Classes\CLSID\{B7156514-A76C-4545-9D5B-A4E1D02C7AEC}\MiscStatus\1'
Found '' in 'SOFTWARE\Classes\CLSID\{B7156514-A76C-4545-9D5B-A4E1D02C7AEC}\ProgID'
Found '' in 'SOFTWARE\Classes\CLSID\{B7156514-A76C-4545-9D5B-A4E1D02C7AEC}\ToolboxBitmap32'
Found '' in 'SOFTWARE\Classes\CLSID\{B7156514-A76C-4545-9D5B-A4E1D02C7AEC}\TypeLib'
Found '' in 'SOFTWARE\Classes\CLSID\{B7156514-A76C-4545-9D5B-A4E1D02C7AEC}\Version'
Found '' in 'SOFTWARE\Classes\CLSID\{B7156514-A76C-4545-9D5B-A4E1D02C7AEC}\VersionIndependentProgID'
Found '' in 'SOFTWARE\Classes\TopSearch.TSLink'
Found '' in 'SOFTWARE\Classes\TopSearch.TSLink.1'
Found '' in 'SOFTWARE\Classes\TopSearch.TSLink.1\CLSID'
Found '' in 'SOFTWARE\Classes\TopSearch.TSLink\CLSID'
Found '' in 'SOFTWARE\Classes\TopSearch.TSLink\CurVer'
Found '' in 'SOFTWARE\Classes\TypeLib\{EDD3B3E9-3FFD-4836-A6DE-D4A9C473A971}\1.0'
Found '' in 'SOFTWARE\Classes\TypeLib\{EDD3B3E9-3FFD-4836-A6DE-D4A9C473A971}\1.0\0\win32'
Found '' in 'SOFTWARE\Classes\TypeLib\{EDD3B3E9-3FFD-4836-A6DE-D4A9C473A971}\1.0\FLAGS'
Found '' in 'SOFTWARE\Classes\TypeLib\{EDD3B3E9-3FFD-4836-A6DE-D4A9C473A971}\1.0\HELPDIR'
Found '' in 'Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\Range1'
Found '' in 'SOFTWARE\MyWebSearch'
Found '' in 'SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MyWebSearch bar Uninstall'
Found '' in 'SOFTWARE\Microsoft\Office\Word\Addins\MyWebSearch.OutlookAddin'
Found '' in 'SOFTWARE\FunWebProducts'
Found '' in 'SOFTWARE\FocusInteractive'
Found '' in 'SOFTWARE\Classes\TypeLib\{F42228FB-E84E-479E-B922-FBBD096E792C}'
Found '' in 'SOFTWARE\Classes\TypeLib\{E47CAEE0-DEEA-464A-9326-3F2801535A4D}'
Found '' in 'SOFTWARE\Classes\TypeLib\{8E6F1830-9607-4440-8530-13BE7C4B1D14}'
Found '' in 'SOFTWARE\Classes\TypeLib\{8CA01F0E-987C-49C3-B852-2F1AC4A7094C}'
Found '' in 'SOFTWARE\Classes\TypeLib\{7473D290-B7BB-4F24-AE82-7E2CE94BB6A9}'
Found '' in 'SOFTWARE\Classes\TypeLib\{29D67D3C-509A-4544-903F-C8C1B8236554}'
Found '' in 'SOFTWARE\Classes\TypeLib\{07B18EA0-A523-4961-B6BB-170DE4475CCA}'
Found '' in 'SOFTWARE\Classes\ScreenSaverControl.ScreenSaverInstaller.1'
Found '' in 'SOFTWARE\Classes\ScreenSaverControl.ScreenSaverInstaller'
Found '' in 'SOFTWARE\Classes\MyWebSearchToolBar.SettingsPlugin.1'
Found '' in 'SOFTWARE\Classes\MyWebSearchToolBar.SettingsPlugin'
Found '' in 'SOFTWARE\Classes\MyWebSearch.OutlookAddin.1'
Found '' in 'SOFTWARE\Classes\MyWebSearch.OutlookAddin'
Found '' in 'SOFTWARE\Classes\FunWebProducts.PopSwatterSettingsControl.1'
Found '' in 'SOFTWARE\Classes\FunWebProducts.PopSwatterSettingsControl'
Found '' in 'SOFTWARE\Classes\FunWebProducts.PopSwatterBarButton.1'
Found '' in 'SOFTWARE\Classes\FunWebProducts.PopSwatterBarButton'
Found '' in 'SOFTWARE\Classes\FunWebProducts.KillerObjManager.1'
Found '' in 'SOFTWARE\Classes\FunWebProducts.KillerObjManager'
Found '' in 'SOFTWARE\Classes\FunWebProducts.IECookiesManager.1'
Found '' in 'SOFTWARE\Classes\FunWebProducts.IECookiesManager'
Found '' in 'SOFTWARE\Classes\FunWebProducts.HTMLMenu.2'
Found '' in 'SOFTWARE\Classes\FunWebProducts.HTMLMenu.1'
Found '' in 'SOFTWARE\Classes\FunWebProducts.HTMLMenu'
Found '' in 'SOFTWARE\Classes\FunWebProducts.HistorySwatterControlBar.1'
Found '' in 'SOFTWARE\Classes\FunWebProducts.HistorySwatterControlBar'
Found '' in 'SOFTWARE\Classes\FunWebProducts.HistoryKillerScheduler.1'
Found '' in 'SOFTWARE\Classes\FunWebProducts.HistoryKillerScheduler'
Found '' in 'SOFTWARE\Classes\CLSID\{CFF4CE82-3AA2-451F-9B77-7165605FB835}'
Found '' in 'SOFTWARE\Classes\CLSID\{C9D7BE3E-141A-4C85-8CD6-32461F3DF2C7}'
Found '' in 'SOFTWARE\Classes\CLSID\{B813095C-81C0-4E40-AA14-67520372B987}'
Found '' in 'SOFTWARE\Classes\CLSID\{ADB01E81-3C79-4272-A0F1-7B2BE7A782DC}'
Found '' in 'SOFTWARE\Classes\CLSID\{A9571378-68A1-443d-B082-284F960C6D17}'
Found '' in 'SOFTWARE\Classes\CLSID\{9FF05104-B030-46FC-94B8-81276E4E27DF}'
Found '' in 'SOFTWARE\Classes\CLSID\{98D9753D-D73B-42D5-8C85-4469CDA897AB}'
Found '' in 'SOFTWARE\Classes\CLSID\{938AA51A-996C-4884-98CE-80DD16A5C9DA}'
Found '' in 'SOFTWARE\Classes\CLSID\{8E6F1832-9607-4440-8530-13BE7C4B1D14}'
Found '' in 'SOFTWARE\Classes\CLSID\{7473D292-B7BB-4f24-AE82-7E2CE94BB6A9}'
Found '' in 'SOFTWARE\Classes\CLSID\{63D0ED2C-B45B-4458-8B3B-60C69BBBD83C}'
Found '' in 'SOFTWARE\Classes\CLSID\{3DC201FB-E9C9-499C-A11F-23C360D7C3F8}'
Found '' in 'SOFTWARE\Classes\CLSID\{0F8ECF4F-3646-4C3A-8881-8E138FFCAF70}'
Found '' in 'SOFTWARE\Classes\CLSID\{07B18EAB-A523-4961-B6BB-170DE4475CCA}'
Found '' in 'SOFTWARE\Classes\CLSID\{07B18EA3-A523-4961-B6BB-170DE4475CCA}'
Found '' in 'SOFTWARE\Classes\CLSID\{00A6FAF6-072E-44cf-8957-5838F569A31D}'
Found '' in 'Software\MyWebSearch'
Found 'MyWebSearch Email Plugin' in 'SOFTWARE\Microsoft\Windows\CurrentVersion\Run'
Found 'MyWebSearch Email Plugin' in 'Software\Microsoft\Windows\CurrentVersion\Run'
Found '{00A6FAF6-072E-44cf-8957-5838F569A31D}' in 'Software\Microsoft\Internet Explorer\URLSearchHooks'
Found '' in 'SOFTWARE\Fun Web Products'
Found 'LoadBehavior' in 'SOFTWARE\Microsoft\Office\Outlook\Addins\MyWebSearch.OutlookAddin'
Found 'FriendlyName' in 'SOFTWARE\Microsoft\Office\Outlook\Addins\MyWebSearch.OutlookAddin'
Found 'Description' in 'SOFTWARE\Microsoft\Office\Outlook\Addins\MyWebSearch.OutlookAddin'
Found 'LoadBehavior' in 'SOFTWARE\Microsoft\Office\Word\Addins\MyWebSearch.OutlookAddin'
Found 'FriendlyName' in 'SOFTWARE\Microsoft\Office\Word\Addins\MyWebSearch.OutlookAddin'
Found 'Description' in 'SOFTWARE\Microsoft\Office\Word\Addins\MyWebSearch.OutlookAddin'
Internet URL Shortcuts
Files and Directories
Found 'kmd.exe' in 'C:\Documents and Settings\Danielle\My Documents\My Download Files'
Found '' in 'C:\Program Files\FunWebProducts'
Found '' in 'C:\Program Files\FunWebProducts\Shared'
Found '' in 'C:\Program Files\Kazaa\BGP2P'
Found '' in 'C:\Program Files\Kazaa\Db'
Found '' in 'C:\Program Files\Kazaa\Help'
Found '' in 'C:\Program Files\Kazaa\Promotions'
Found 'LimeWire20.dll' in 'C:\Program Files\LimeWire'
Found '' in 'C:\Program Files\MyWay'
Found '' in 'C:\Program Files\MyWebSearch'
Found '' in 'C:\Program Files\MyWebSearch\bar'
Found 'F3CJPEG.DLL' in 'C:\Program Files\MyWebSearch\bar\1.bin'
Started Scanning
Internet Cookies
Found 'btg.btgrab.com' in 'Internet Explorer Cache'
Found 'cliks.org' in 'Internet Explorer Cache'
Found 'trafficmp.com' in 'Internet Explorer Cache'
Found 'statcounter.com' in 'Internet Explorer Cache'
Found 'abetterinternet.com' in 'Internet Explorer Cache'
Found 'ads.cc214142.com' in 'Internet Explorer Cache'
Found 'offeroptimizer.com' in 'Internet Explorer Cache'
Found 'linksynergy.com' in 'Internet Explorer Cache'
Found 'atdmt.com' in 'Internet Explorer Cache'
Found 'casalemedia.com' in 'Internet Explorer Cache'
Found 'findwhat.com' in 'Internet Explorer Cache'
Found 'btg.btgrab.com' in 'Internet Explorer Cache'
Found 'ads.pointroll.com' in 'Internet Explorer Cache'
Found 'doubleclick.net' in 'Internet Explorer Cache'
Programs in Memory
Windows Registry
Found '' in 'SOFTWARE\LimeWire'
Found '' in 'Software\Kazaa'
Found '' in 'Software\Kazaa\ResultsFilter'
Found '' in 'Software\Kazaa\Settings'
Found '' in 'Software\Kazaa\Transfer'
Found '' in 'Software\KaZaA\CloudLoad'
Found '' in 'Software\KaZaA\ConnectionInfo'
Found '' in 'Software\KaZaA\LocalContent'
Found '' in 'SOFTWARE\Classes\ed2k'
Found '' in 'SOFTWARE\Classes\ed2k\DefaultIcon'
Found '' in 'SOFTWARE\Classes\ed2k\shell\open\command'
Found '' in 'Software\Kazaa'
Found '' in 'Software\Kazaa\Advanced'
Found '' in 'Software\Kazaa\LocalContent'
Found '' in 'Software\Kazaa\Promotions\Broadband'
Found '' in 'Software\Kazaa\Skins'
Found '' in 'Software\Kazaa\UserDetails'
Found '' in 'SOFTWARE\Kazaa\Bandwidth\in'
Found '' in 'SOFTWARE\Kazaa\Bandwidth\LastEstimate'
Found '' in 'SOFTWARE\Kazaa\Bandwidth\out'
Found '' in 'SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\D:\InstallShield\Kazaa\kazaa.exe'
Found '' in 'SOFTWARE\Magnet'
Found '' in 'SOFTWARE\Classes\magnet'
Found '' in 'SOFTWARE\Classes\magnet\shell\open\command'
Found 'URL Protocol' in 'SOFTWARE\Classes\magnet'
Found 'Tmp' in 'Software\Kazaa'
Found 'Status' in 'Software\Kazaa\Advanced'
Found 'BBDbLoc' in 'Software\Kazaa\Promotions\Broadband'
Found 'NullImageLoc' in 'Software\Kazaa\Promotions\Broadband'
Found 'NullImageLoc2' in 'Software\Kazaa\Promotions\Broadband'
Found 'b' in 'SOFTWARE\Kazaa\Bandwidth\LastEstimate'
Found 'b0' in 'SOFTWARE\Kazaa\Bandwidth\in'
Found 'b0' in 'SOFTWARE\Kazaa\Bandwidth\out'
Found 'b0seconds' in 'SOFTWARE\Kazaa\Bandwidth\in'
Found 'b0seconds' in 'SOFTWARE\Kazaa\Bandwidth\out'
Found 'b1' in 'SOFTWARE\Kazaa\Bandwidth\in'
Found 'b1' in 'SOFTWARE\Kazaa\Bandwidth\out'
Found 'DatabaseDir' in 'SOFTWARE\Kazaa\LocalContent'
Found 'Date' in 'Software\Kazaa\Settings'
Found 'DownloadDir' in 'SOFTWARE\Kazaa\LocalContent'
Found 'UseCount' in 'Software\Kazaa\Settings'
Found 'NoUploadLimitWhenIdle' in 'Software\Kazaa\Transfer'
Found 'FirewallStatus' in 'SOFTWARE\Kazaa'
Found 'ListenPort' in 'SOFTWARE\Kazaa'
Found 'my_ip_address' in 'SOFTWARE\Kazaa'
Found 'network_config' in 'SOFTWARE\Kazaa'
Found 'Tmp' in 'SOFTWARE\Kazaa'
Found 'UDP_probe_successes' in 'SOFTWARE\Kazaa'
Found 'UDP_receive_status' in 'SOFTWARE\Kazaa'
Found 'time' in 'SOFTWARE\Kazaa\Bandwidth\LastEstimate'
Found 'ShareDir' in 'SOFTWARE\Kazaa\CloudLoad'
Found 'KazaaNet' in 'SOFTWARE\Kazaa\ConnectionInfo'
Found '' in 'Software\AppConf'
Found 'confset' in 'Software\AppConf'
Found '' in 'SOFTWARE\Classes\CLSID\{B7156514-A76C-4545-9D5B-A4E1D02C7AEC}'
Found '' in 'SOFTWARE\Classes\CLSID\{B7156514-A76C-4545-9D5B-A4E1D02C7AEC}\InprocServer32'
Found 'ThreadingModel' in 'SOFTWARE\Classes\CLSID\{B7156514-A76C-4545-9D5B-A4E1D02C7AEC}\InprocServer32'
Found '' in 'SOFTWARE\Classes\CLSID\{B7156514-A76C-4545-9D5B-A4E1D02C7AEC}\MiscStatus'
Found '' in 'SOFTWARE\Classes\CLSID\{B7156514-A76C-4545-9D5B-A4E1D02C7AEC}\MiscStatus\1'
Found '' in 'SOFTWARE\Classes\CLSID\{B7156514-A76C-4545-9D5B-A4E1D02C7AEC}\ProgID'
Found '' in 'SOFTWARE\Classes\CLSID\{B7156514-A76C-4545-9D5B-A4E1D02C7AEC}\ToolboxBitmap32'
Found '' in 'SOFTWARE\Classes\CLSID\{B7156514-A76C-4545-9D5B-A4E1D02C7AEC}\TypeLib'
Found '' in 'SOFTWARE\Classes\CLSID\{B7156514-A76C-4545-9D5B-A4E1D02C7AEC}\Version'
Found '' in 'SOFTWARE\Classes\CLSID\{B7156514-A76C-4545-9D5B-A4E1D02C7AEC}\VersionIndependentProgID'
Found '' in 'SOFTWARE\Classes\TopSearch.TSLink'
Found '' in 'SOFTWARE\Classes\TopSearch.TSLink.1'
Found '' in 'SOFTWARE\Classes\TopSearch.TSLink.1\CLSID'
Found '' in 'SOFTWARE\Classes\TopSearch.TSLink\CLSID'
Found '' in 'SOFTWARE\Classes\TopSearch.TSLink\CurVer'
Found '' in 'SOFTWARE\Classes\TypeLib\{EDD3B3E9-3FFD-4836-A6DE-D4A9C473A971}\1.0'
Found '' in 'SOFTWARE\Classes\TypeLib\{EDD3B3E9-3FFD-4836-A6DE-D4A9C473A971}\1.0\0\win32'
Found '' in 'SOFTWARE\Classes\TypeLib\{EDD3B3E9-3FFD-4836-A6DE-D4A9C473A971}\1.0\FLAGS'
Found '' in 'SOFTWARE\Classes\TypeLib\{EDD3B3E9-3FFD-4836-A6DE-D4A9C473A971}\1.0\HELPDIR'
Found '' in 'Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\Range1'
Found '' in 'SOFTWARE\MyWebSearch'
Found '' in 'SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MyWebSearch bar Uninstall'
Found '' in 'SOFTWARE\Microsoft\Office\Word\Addins\MyWebSearch.OutlookAddin'
Found '' in 'SOFTWARE\FunWebProducts'
Found '' in 'SOFTWARE\FocusInteractive'
Found '' in 'SOFTWARE\Classes\TypeLib\{F42228FB-E84E-479E-B922-FBBD096E792C}'
Found '' in 'SOFTWARE\Classes\TypeLib\{E47CAEE0-DEEA-464A-9326-3F2801535A4D}'
Found '' in 'SOFTWARE\Classes\TypeLib\{8E6F1830-9607-4440-8530-13BE7C4B1D14}'
Found '' in 'SOFTWARE\Classes\TypeLib\{8CA01F0E-987C-49C3-B852-2F1AC4A7094C}'
Found '' in 'SOFTWARE\Classes\TypeLib\{7473D290-B7BB-4F24-AE82-7E2CE94BB6A9}'
Found '' in 'SOFTWARE\Classes\TypeLib\{29D67D3C-509A-4544-903F-C8C1B8236554}'
Found '' in 'SOFTWARE\Classes\TypeLib\{07B18EA0-A523-4961-B6BB-170DE4475CCA}'
Found '' in 'SOFTWARE\Classes\ScreenSaverControl.ScreenSaverInstaller.1'
Found '' in 'SOFTWARE\Classes\ScreenSaverControl.ScreenSaverInstaller'
Found '' in 'SOFTWARE\Classes\MyWebSearchToolBar.SettingsPlugin.1'
Found '' in 'SOFTWARE\Classes\MyWebSearchToolBar.SettingsPlugin'
Found '' in 'SOFTWARE\Classes\MyWebSearch.OutlookAddin.1'
Found '' in 'SOFTWARE\Classes\MyWebSearch.OutlookAddin'
Found '' in 'SOFTWARE\Classes\FunWebProducts.PopSwatterSettingsControl.1'
Found '' in 'SOFTWARE\Classes\FunWebProducts.PopSwatterSettingsControl'
Found '' in 'SOFTWARE\Classes\FunWebProducts.PopSwatterBarButton.1'
Found '' in 'SOFTWARE\Classes\FunWebProducts.PopSwatterBarButton'
Found '' in 'SOFTWARE\Classes\FunWebProducts.KillerObjManager.1'
Found '' in 'SOFTWARE\Classes\FunWebProducts.KillerObjManager'
Found '' in 'SOFTWARE\Classes\FunWebProducts.IECookiesManager.1'
Found '' in 'SOFTWARE\Classes\FunWebProducts.IECookiesManager'
Found '' in 'SOFTWARE\Classes\FunWebProducts.HTMLMenu.2'
Found '' in 'SOFTWARE\Classes\FunWebProducts.HTMLMenu.1'
Found '' in 'SOFTWARE\Classes\FunWebProducts.HTMLMenu'
Found '' in 'SOFTWARE\Classes\FunWebProducts.HistorySwatterControlBar.1'
Found '' in 'SOFTWARE\Classes\FunWebProducts.HistorySwatterControlBar'
Found '' in 'SOFTWARE\Classes\FunWebProducts.HistoryKillerScheduler.1'
Found '' in 'SOFTWARE\Classes\FunWebProducts.HistoryKillerScheduler'
Found '' in 'SOFTWARE\Classes\CLSID\{CFF4CE82-3AA2-451F-9B77-7165605FB835}'
Found '' in 'SOFTWARE\Classes\CLSID\{C9D7BE3E-141A-4C85-8CD6-32461F3DF2C7}'
Found '' in 'SOFTWARE\Classes\CLSID\{B813095C-81C0-4E40-AA14-67520372B987}'
Found '' in 'SOFTWARE\Classes\CLSID\{ADB01E81-3C79-4272-A0F1-7B2BE7A782DC}'
Found '' in 'SOFTWARE\Classes\CLSID\{A9571378-68A1-443d-B082-284F960C6D17}'
Found '' in 'SOFTWARE\Classes\CLSID\{9FF05104-B030-46FC-94B8-81276E4E27DF}'
Found '' in 'SOFTWARE\Classes\CLSID\{98D9753D-D73B-42D5-8C85-4469CDA897AB}'
Found '' in 'SOFTWARE\Classes\CLSID\{938AA51A-996C-4884-98CE-80DD16A5C9DA}'
Found '' in 'SOFTWARE\Classes\CLSID\{8E6F1832-9607-4440-8530-13BE7C4B1D14}'
Found '' in 'SOFTWARE\Classes\CLSID\{7473D292-B7BB-4f24-AE82-7E2CE94BB6A9}'
Found '' in 'SOFTWARE\Classes\CLSID\{63D0ED2C-B45B-4458-8B3B-60C69BBBD83C}'
Found '' in 'SOFTWARE\Classes\CLSID\{3DC201FB-E9C9-499C-A11F-23C360D7C3F8}'
Found '' in 'SOFTWARE\Classes\CLSID\{0F8ECF4F-3646-4C3A-8881-8E138FFCAF70}'
Found '' in 'SOFTWARE\Classes\CLSID\{07B18EAB-A523-4961-B6BB-170DE4475CCA}'
Found '' in 'SOFTWARE\Classes\CLSID\{07B18EA3-A523-4961-B6BB-170DE4475CCA}'
Found '' in 'SOFTWARE\Classes\CLSID\{00A6FAF6-072E-44cf-8957-5838F569A31D}'
Found '' in 'Software\MyWebSearch'
Found 'MyWebSearch Email Plugin' in 'SOFTWARE\Microsoft\Windows\CurrentVersion\Run'
Found 'MyWebSearch Email Plugin' in 'Software\Microsoft\Windows\CurrentVersion\Run'
Found '{00A6FAF6-072E-44cf-8957-5838F569A31D}' in 'Software\Microsoft\Internet Explorer\URLSearchHooks'
Found '' in 'SOFTWARE\Fun Web Products'
Found 'LoadBehavior' in 'SOFTWARE\Microsoft\Office\Outlook\Addins\MyWebSearch.OutlookAddin'
Found 'FriendlyName' in 'SOFTWARE\Microsoft\Office\Outlook\Addins\MyWebSearch.OutlookAddin'
Found 'Description' in 'SOFTWARE\Microsoft\Office\Outlook\Addins\MyWebSearch.OutlookAddin'
Found 'LoadBehavior' in 'SOFTWARE\Microsoft\Office\Word\Addins\MyWebSearch.OutlookAddin'
Found 'FriendlyName' in 'SOFTWARE\Microsoft\Office\Word\Addins\MyWebSearch.OutlookAddin'
Found 'Description' in 'SOFTWARE\Microsoft\Office\Word\Addins\MyWebSearch.OutlookAddin'
Internet URL Shortcuts
Files and Directories
Found 'kmd.exe' in 'C:\Documents and Settings\Danielle\My Documents\My Download Files'
Found '' in 'C:\Program Files\FunWebProducts'
Found '' in 'C:\Program Files\FunWebProducts\Shared'
Found '' in 'C:\Program Files\Kazaa\BGP2P'
Found '' in 'C:\Program Files\Kazaa\Db'
Found '' in 'C:\Program Files\Kazaa\Help'
Found '' in 'C:\Program Files\Kazaa\Promotions'
Found 'LimeWire20.dll' in 'C:\Program Files\LimeWire'
Found '' in 'C:\Program Files\MyWay'
Found '' in 'C:\Program Files\MyWebSearch'
Found '' in 'C:\Program Files\MyWebSearch\bar'
Found 'F3CJPEG.DLL' in 'C:\Program Files\MyWebSearch\bar\1.bin'
Found 'creditcard32123123123asdsa123.ico' in 'C:\WINDOWS\system32'
Finished Scanning
Started Backup
Finished Backup
Started Cleaning
Checking for 'C:\Documents and Settings\Danielle\My Documents\My Download Files\kmd.exe' in shortcut areas.
Checking for 'C:\Documents and Settings\Danielle\My Documents\My Download Files\kmd.exe' in startup areas.
Cleaning 'C:\Documents and Settings\Danielle\My Documents\My Download Files\kmd.exe'
Checking for 'C:\Program Files\FunWebProducts' in shortcut areas.
Checking for 'C:\Program Files\FunWebProducts' in startup areas.
Cleaning 'C:\Program Files\FunWebProducts'
Checking for 'C:\Program Files\FunWebProducts\Shared\Cache\CursorManiaBtn.html' in shortcut areas.
Checking for 'C:\Program Files\FunWebProducts\Shared\Cache\CursorManiaBtn.html' in startup areas.
Cleaning 'C:\Program Files\FunWebProducts\Shared\Cache\CursorManiaBtn.html'
Checking for 'C:\Program Files\FunWebProducts\Shared\Cache\FunBuddyIconBtn.html' in shortcut areas.
Checking for 'C:\Program Files\FunWebProducts\Shared\Cache\FunBuddyIconBtn.html' in startup areas.
Cleaning 'C:\Program Files\FunWebProducts\Shared\Cache\FunBuddyIconBtn.html'
Checking for 'C:\Program Files\FunWebProducts\Shared\Cache\MailStampBtn.html' in shortcut areas.
Checking for 'C:\Program Files\FunWebProducts\Shared\Cache\MailStampBtn.html' in startup areas.
Cleaning 'C:\Program Files\FunWebProducts\Shared\Cache\MailStampBtn.html'
Checking for 'C:\Program Files\FunWebProducts\Shared\Cache\MyStationeryBtn.htmlx' in shortcut areas.
Checking for 'C:\Program Files\FunWebProducts\Shared\Cache\MyStationeryBtn.htmlx' in startup areas.
Cleaning 'C:\Program Files\FunWebProducts\Shared\Cache\MyStationeryBtn.htmlx'
Checking for 'C:\Program Files\FunWebProducts\Shared\Cache\SmileyCentralBtn.html' in shortcut areas.
Checking for 'C:\Program Files\FunWebProducts\Shared\Cache\SmileyCentralBtn.html' in startup areas.
Cleaning 'C:\Program Files\FunWebProducts\Shared\Cache\SmileyCentralBtn.html'
Checking for 'C:\Program Files\FunWebProducts\Shared' in shortcut areas.
Checking for 'C:\Program Files\FunWebProducts\Shared' in startup areas.
Cleaning 'C:\Program Files\FunWebProducts\Shared'
[SCANMODS] The file 'C:\Program Files\FunWebProducts\Shared' was not found. Most likely already cleaned by another scanner module.
Checking for 'C:\Program Files\Kazaa\BGP2P' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\ace.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\ace.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\ace.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\arc.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\arc.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\arc.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\arj.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\arj.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\arj.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\bach.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\bach.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\bach.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\bzip2.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\bzip2.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\bzip2.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\cab.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\cab.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\cab.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\cevakrnl.cvd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\cevakrnl.cvd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\cevakrnl.cvd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\cevakrnl.ivd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\cevakrnl.ivd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\cevakrnl.ivd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\cevakrnl.rvd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\cevakrnl.rvd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\cevakrnl.rvd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\cevakrnl.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\cevakrnl.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\cevakrnl.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\ceva_dll.cvd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\ceva_dll.cvd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\ceva_dll.cvd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\ceva_vfs.cvd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\ceva_vfs.cvd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\ceva_vfs.cvd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\chm.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\chm.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\chm.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\cpio.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\cpio.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\cpio.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\cran.cvd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\cran.cvd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\cran.cvd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\cran.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\cran.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\cran.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\dbx.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\dbx.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\dbx.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\docfile.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\docfile.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\docfile.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\emalware.cvd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\emalware.cvd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\emalware.cvd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\emalware.ivd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\emalware.ivd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\emalware.ivd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\emalware.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\emalware.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\emalware.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\epoc.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\epoc.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\epoc.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\gzip.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\gzip.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\gzip.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\ha.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\ha.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\ha.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\hlp.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\hlp.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\hlp.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\hpe.cvd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\hpe.cvd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\hpe.cvd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\hpe.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\hpe.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\hpe.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\hqx.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\hqx.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\hqx.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\html.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\html.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\html.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\imp.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\imp.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\imp.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\inno.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\inno.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\inno.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\instyler.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\instyler.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\instyler.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\iso.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\iso.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\iso.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\java.cvd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\java.cvd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\java.cvd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\java.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\java.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\java.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\jpeg.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\jpeg.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\jpeg.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\lha.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\lha.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\lha.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\lnk.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\lnk.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\lnk.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\mbox.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\mbox.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\mbox.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\mbx.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\mbx.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\mbx.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\mdx.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\mdx.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\mdx.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\mdx_97.cvd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\mdx_97.cvd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\mdx_97.cvd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\mdx_97.ivd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\mdx_97.ivd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\mdx_97.ivd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\mdx_w95.cvd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\mdx_w95.cvd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\mdx_w95.cvd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\mdx_x95.cvd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\mdx_x95.cvd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\mdx_x95.cvd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\mdx_xf.cvd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\mdx_xf.cvd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\mdx_xf.cvd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\mime.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\mime.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\mime.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\mso.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\mso.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\mso.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\na.cvd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\na.cvd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\na.cvd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\na.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\na.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\na.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\nelf.cvd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\nelf.cvd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\nelf.cvd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\nelf.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\nelf.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\nelf.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\nsis.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\nsis.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\nsis.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\objd.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\objd.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\objd.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\pdf.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\pdf.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\pdf.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\pst.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\pst.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\pst.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\rar.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\rar.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\rar.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\rpm.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\rpm.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\rpm.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\rtf.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\rtf.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\rtf.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\rup.cvd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\rup.cvd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\rup.cvd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\rup.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\rup.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\rup.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\sdx.cvd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\sdx.cvd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\sdx.cvd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\sdx.ivd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\sdx.ivd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\sdx.ivd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\sdx.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\sdx.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\sdx.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\sfx.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\sfx.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\sfx.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\swf.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\swf.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\swf.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\tar.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\tar.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\tar.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\td0.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\td0.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\td0.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\thebat.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\thebat.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\thebat.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\tnef.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\tnef.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\tnef.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\unpack.cvd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\unpack.cvd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\unpack.cvd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\unpack.ivd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\unpack.ivd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\unpack.ivd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\unpack.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\unpack.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\unpack.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\update.txt' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\update.txt' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\update.txt'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\uudecode.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\uudecode.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\uudecode.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\ve.cvd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\ve.cvd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\ve.cvd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\ve.ivd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\ve.ivd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\ve.ivd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\ve.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\ve.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\ve.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\vedata.cvd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\vedata.cvd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\vedata.cvd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\viza.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\viza.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\viza.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\wise.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\wise.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\wise.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\xishield.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\xishield.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\xishield.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\z.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\z.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\z.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\zip.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\zip.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\zip.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\zoo.xmd' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins\zoo.xmd' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins\zoo.xmd'
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins.htm' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\plugins.htm' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\plugins.htm'
Checking for 'C:\Program Files\Kazaa\BGP2P\versions.dat' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\BGP2P\versions.dat' in startup areas.
Cleaning 'C:\Program Files\Kazaa\BGP2P\versions.dat'
Checking for 'C:\Program Files\Kazaa\Db' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\Db' in startup areas.
Cleaning 'C:\Program Files\Kazaa\Db'
Checking for 'C:\Program Files\Kazaa\Db\ctx4-041111.cab' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\Db\ctx4-041111.cab' in startup areas.
Cleaning 'C:\Program Files\Kazaa\Db\ctx4-041111.cab'
Checking for 'C:\Program Files\Kazaa\Db\data1024.dbb' in shortcut areas.
Checking for 'C:\Program Files\Kazaa\Db\data1024.
  • 0

#4
Rawe

Rawe

    Visiting Staff

  • Member
  • PipPipPipPipPipPipPip
  • 4,746 posts
Can you post a fresh HiJackThis log :tazz:
  • 0

#5
calderd

calderd

    Member

  • Topic Starter
  • Member
  • PipPip
  • 27 posts
Here you go...

Logfile of HijackThis v1.99.1
Scan saved at 11:47:02 AM, on 25/08/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Ahead\InCD\InCDsrv.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.exe
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\LEXPPS.EXE
C:\Program Files\Creative\ShareDLL\CtNotify.exe
C:\Program Files\Logitech\iTouch\iTouch.exe
C:\WINDOWS\system32\CTHELPER.EXE
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
C:\Program Files\HP\Personal Printing Solutions Product Research\HP Product Research.exe
C:\Program Files\Ahead\InCD\InCD.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\WINDOWS\itwahqf.EXE
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\Program Files\Logitech\MouseWare\system\em_exec.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Creative\ShareDLL\Mediadet.exe
C:\Program Files\Adobe\Acrobat 5.0\Distillr\AcroTray.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\WINDOWS\System32\CTsvcCDA.exe
C:\MSSQL7\Binn\sqlmangr.exe
C:\Program Files\ewido\security suite\ewidoctrl.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\Program Files\palmOne\HOTSYNC.EXE
C:\Program Files\ewido\security suite\ewidoguard.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wdfmgr.exe
C:\WINDOWS\vmdxsnr.exe
C:\Program Files\HP\hpcoretech\comp\hptskmgr.exe
C:\Program Files\HP\Digital Imaging\bin\hpqgalry.exe
C:\Program Files\Netscape\Netscape\Netscp.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\System32\alg.exe
C:\hijack\HijackThis.exe

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
F2 - REG:system.ini: Shell=Explorer.exe C:\WINDOWS\Nail.exe
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\Userinit.exe
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: PicShow Class - {4487598C-2EC7-43A2-870E-6D8D720FDD9F} - C:\WINDOWS\system32\pkshgbtg.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: LANBridge Class - {71D1708F-973D-4600-AF01-AD86688403AE} - C:\WINDOWS\system32\zjrxclbx.dll (file missing)
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.4000.1001\en-ca\msntb.dll
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.4000.1001\en-ca\msntb.dll
O4 - HKLM\..\Run: [Disc Detector] C:\Program Files\Creative\ShareDLL\CtNotify.exe
O4 - HKLM\..\Run: [zBrowser Launcher] C:\Program Files\Logitech\iTouch\iTouch.exe
O4 - HKLM\..\Run: [WINDVDPatch] CTHELPER.EXE
O4 - HKLM\..\Run: [UpdReg] C:\WINDOWS\UpdReg.EXE
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [Logitech Utility] Logi_MwX.Exe
O4 - HKLM\..\Run: [Jet Detection] "C:\Program Files\Creative\SBLive\PROGRAM\ADGJDet.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [HP Metrics] C:\Program Files\HP\Personal Printing Solutions Product Research\HP Product Research.exe a
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [InCD] C:\Program Files\Ahead\InCD\InCD.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [itwahqf] C:\WINDOWS\itwahqf.EXE
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [AVG7_EMC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O4 - HKLM\..\Run: [THGuard] "C:\Program Files\TrojanHunter 4.2\THGuard.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [pshower] C:\WINDOWS\system32\pshwr.exe
O4 - HKCU\..\Run: [CMAPP] "C:\Program Files\CMAPP\Client\cmappclient.exe"
O4 - Startup: HotSync Manager.LNK = C:\Program Files\palmOne\HOTSYNC.EXE
O4 - Startup: MyWebSearch Email Plugin.lnk = C:\Program Files\MyWebSearch\bar\1.bin\MWSOEMON.EXE
O4 - Global Startup: Acrobat Assistant.lnk = C:\Program Files\Adobe\Acrobat 5.0\Distillr\AcroTray.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: HP Image Zone Fast Start.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: MyWebSearch Email Plugin.lnk = C:\Program Files\MyWebSearch\bar\1.bin\MWSOEMON.EXE
O4 - Global Startup: Service Manager.lnk = C:\MSSQL7\Binn\sqlmangr.exe
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {04E214E5-63AF-4236-83C6-A7ADCBF9BD02} (HouseCall Control) - http://housecall-bet...all/xscan60.cab
O16 - DPF: {0A5FD7C5-A45C-49FC-ADB5-9952547D5715} (Creative Software AutoUpdate) - http://www.creative....007/CTSUEng.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupd...b?1099773519484
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.micros...b?1123718011558
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai...all/xscan53.cab
O16 - DPF: {BDD2F926-8158-4F62-9E0D-B3B75FD1F07F} (McObjectFactory Class) - http://download.mcaf...0,2/mcmysec.cab
O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) - http://download.mcaf...561/mcfscan.cab
O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://www.creative....15008/CTPID.cab
O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTsvcCDA.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido\security suite\ewidoguard.exe
O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Program Files\Ahead\InCD\InCDsrv.exe
O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: System Startup Service (SvcProc) - Unknown owner - C:\WINDOWS\svcproc.exe (file missing)
O23 - Service: Windows Overlay Components - Unknown owner - C:\WINDOWS\vmdxsnr.exe
  • 0

#6
Rawe

Rawe

    Visiting Staff

  • Member
  • PipPipPipPipPipPipPip
  • 4,746 posts
Please print these instructions out, or write them down, as you can't read them during the fix.

First;

Please download Ewido Security Suite it is a free version of the program.
  • Install Ewido Security Suite
  • When installing, under "Additional Options" uncheck..
    • Install background guard
    • Install scan via context menu
  • Launch Ewido, there should be an icon on your desktop, double-click it.
  • The program will now open to the main screen.
  • When you run Ewido for the first time, you will get a warning "Database could not be found!" Click OK. We will fix this in a moment.
  • You will need to update Ewido to the latest definition files.
    • On the left hand side of the main screen click update.
    • Then click on Start Update.
  • The update will start and a progress bar will show the updates being installed.
    (the status bar at the bottom will display "Update successful")
  • Exit Ewido. DO NOT run a scan yet.
If you are having problems with the updater, you can use this link to manually update Ewido.
ewido manual updates

Download CleanUp
Install the program, dont run it yet, we will later.

Please download this file: the Nailfix Utility
Save it to your desktop.
DO NOT run it yet.

Launch Notepad, copy & paste the following text from the code box below, into a empty text file (Starting from @ECHO);

@ECHO OFF
cd\windows
Nail.exe /FULLREMOVE
sc config SvcProc start= disabled
sc stop SvcProc
sc delete SvcProc
attrib -s -r -h nail.exe
attrib -s -r -h svcproc.exe
del nail.exe
del svcproc.exe
exit

Save the file to the desktop as remove.bat and make sure the "Save as type" field says "All files".

Next, please reboot your computer in Safe Mode by doing the following:
1) Restart your computer
2) After hearing your computer beep once during startup, but before the Windows icon appears, press F8.
3) Instead of Windows loading as normal, a menu should appear
4) Select the first option, to run Windows in Safe Mode.


Once in Safe Mode, please double-click on nailfix.exe.
Click "Next" in the setup, then make sure "Run Nailfix" is checked and click "Finish".
Your desktop and icons will disappear and reappear, and a window should open and close very quickly --- this is normal.

Next double-click remove.bat

A window should open and close very quickly --- this is normal.

Now open Ewido and do a scan of your system.
  • Click on scanner
  • Click on Complete System Scan and the scan will begin.
  • Clean anything it finds.
  • Once the scan has completed, there will be a button located on the bottom of the screen named Save report
  • Click Save report.
  • Save the report .txt file to your desktop or a location where you can find it easily.
Close Ewido.

Now scan with HJT and place a checkmark next to each of the following items:
F2 - REG:system.ini: Shell=Explorer.exe C:\WINDOWS\Nail.exe
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\Userinit.exe
O2 - BHO: PicShow Class - {4487598C-2EC7-43A2-870E-6D8D720FDD9F} - C:\WINDOWS\system32\pkshgbtg.dll
O2 - BHO: LANBridge Class - {71D1708F-973D-4600-AF01-AD86688403AE} - C:\WINDOWS\system32\zjrxclbx.dll (file missing)
O4 - HKLM\..\Run: [itwahqf] C:\WINDOWS\itwahqf.EXE
O4 - HKCU\..\Run: [pshower] C:\WINDOWS\system32\pshwr.exe
O4 - Startup: MyWebSearch Email Plugin.lnk = C:\Program Files\MyWebSearch\bar\1.bin\MWSOEMON.EXE


Close all open windows except for HJT, then click the Fix Checked button. Close HJT.

Enable show hidden files and folders:

Go to My Computer >Tools >Folder Options >View tab and make sure that Show hidden files and folders is enabled. Also make sure that the System Files and Folders are showing / visible. Uncheck the Hide protected operating system files - option.

Go to -> Start -> Control Panel -> Add/Remove programs and uninstall if present:

MyWebSearch

Now using Windows Explorer locate the following files/folders and delete if present;

C:\WINDOWS\Nail.exe
C:\WINDOWS\system32\Userinit.exe
C:\WINDOWS\system32\pkshgbtg.dll
C:\WINDOWS\system32\zjrxclbx.dll
C:\WINDOWS\itwahqf.EXE
C:\WINDOWS\system32\pshwr.exe
C:\Program Files\MyWebSearch\


Now run the CleanUp program:

*IMPORTANT NOTE*
CleanUp deletes EVERYTHING out of your temp/temporary folders, it does not make backups.
If you have any documents or programs that are saved in any Temporary Folders, please make a backup of these before running CleanUp

Running CleanUp
  • Start CleanUp by double-clicking the icon on your desktop (or from the Start > All Programs menu).
  • When CleanUp starts go to the Options button (right side of CleanUp screen)
  • Move the arrow down to "Custom CleanUp!"
  • Now place a checkmark next to the following (Make sure nothing else is checked!):
    • Delete Cookies
      This is optional, if you leave the box checked it will remove all of your cookies, at this point removing cookies is a good idea
    • Empty Recycle Bins
    • Delete Prefetch files
    • Cleanup! All Users
  • Click OK
  • Then click on the CleanUp button. This will take a short while, let it do its thing.
  • When asked to reboot system select No
  • Close CleanUp
Finally, restart your computer back into Normal Mode and please post a new HJT log, as well as the ewido report log from the Ewido scan by using Add Reply

- Rawe :tazz:

Edited by Rawe, 25 August 2005 - 01:03 PM.

  • 0

#7
calderd

calderd

    Member

  • Topic Starter
  • Member
  • PipPip
  • 27 posts
You're quick. I have ewido installed already.. as per the prep pages. Should I uninstall it and then reinstall it as per your instructions?
  • 0

#8
Rawe

Rawe

    Visiting Staff

  • Member
  • PipPipPipPipPipPipPip
  • 4,746 posts
Just disable the Ewido guard and update the program. No need to reinstall :tazz:
  • 0

#9
calderd

calderd

    Member

  • Topic Starter
  • Member
  • PipPip
  • 27 posts
Hey there Rawe.. slight problem...

I followed your instructions to the "T" and now the computer will not reboot properly... I get to the login screen where I see my profile, I click it, and it starts to log me in, and then promptly kicks me out back to the login screen???

Help!
  • 0

#10
calderd

calderd

    Member

  • Topic Starter
  • Member
  • PipPip
  • 27 posts
ohhh.. and I can't get in in safe mode either!
  • 0

Advertisements


#11
Rawe

Rawe

    Visiting Staff

  • Member
  • PipPipPipPipPipPipPip
  • 4,746 posts
See this site for additional help with booting into Safe Mode.

http://service1.syma...c_nam#_Section3
  • 0

#12
calderd

calderd

    Member

  • Topic Starter
  • Member
  • PipPip
  • 27 posts
Hey Rawe.. unfortunately, I can't log on to the computer .. it boots up ok, but at the welcome screen I am unable to load any of the profiles... it starts to load them and then kicks me out... so, that website is of no help. I am using my husband's Mac right now since I can't use my own PC. Please Help!!! :tazz:
  • 0

#13
Rawe

Rawe

    Visiting Staff

  • Member
  • PipPipPipPipPipPipPip
  • 4,746 posts
Can you try disconnecting the net and try to reboot. IF it works, try the steps.. If not, I'll ask for a little help with this.
  • 0

#14
calderd

calderd

    Member

  • Topic Starter
  • Member
  • PipPip
  • 27 posts
sorry, that doesn't work either :tazz:

It's bizarre.. boot up is completely normal... just can't login...
  • 0

#15
Rawe

Rawe

    Visiting Staff

  • Member
  • PipPipPipPipPipPipPip
  • 4,746 posts
Login as Administrator (if the login works, it has to be an Administrator account).

Launch HiJackThis and view the list of backups made this far. Restore this entry:

F2 - REG:system.ini: UserInit=C:\WINDOWS\System32\Userinit.exe

Then try to follow the same steps again. :tazz:
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP