Ok i'm still infected with the about:blank virus i think. Here's the logs:
Logfile of HijackThis v1.99.1
Scan saved at 3:51:41 PM, on 8/26/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\ewido\security suite\ewidoctrl.exe
C:\Program Files\ewido\security suite\ewidoguard.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\system32\pctspk.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Linksys Wireless-G USB Wireless Network Monitor\WLService.exe
C:\Program Files\Linksys Wireless-G USB Wireless Network Monitor\WUSB54Gv2.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Adaptec\Easy CD Creator 5\DirectCD\DirectCD.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Linksys Wireless-G USB Wireless Network Monitor\InfoMyCa.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Hijackthis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O4 - HKLM\..\Run: [AdaptecDirectCD] "C:\Program Files\Adaptec\Easy CD Creator 5\DirectCD\DirectCD.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [WUSB54Gv2] C:\Program Files\Linksys Wireless-G USB Wireless Network Monitor\InvokeSvc3.exe
O4 - HKLM\..\RunServices: [Microsoft Services] C:\WINDOWS\System32\bsc32.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [L03ERTYtQ] psa2clv1.exe
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyPoker\PartyPoker.exe
O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyPoker\PartyPoker.exe
O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: Support - {4A49B3A5-243D-4F2A-ACB5-52171DD15298} - C:\Program Files\Internet Explorer\SIGNUP\Presario.htm (file missing) (HKCU)
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O14 - IERESET.INF: START_PAGE_URL=http://store.presario.net/scripts/redirectors/presario/storeredir2.dll?s=consumerfav&c=3c01&lc=0409
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) -
http://www.kaspersky...can_unicode.cabO16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) -
http://us.dl1.yimg.c...nst_current.cabO16 - DPF: {41F17733-B041-4099-A042-B518BB6A408C} -
http://a1540.g.akama...meInstaller.exeO16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
http://v5.windowsupd...b?1102538303334O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) -
http://messenger.msn...pDownloader.cabO23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido\security suite\ewidoguard.exe
O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: PCTEL Speaker Phone (Pctspk) - PCtel, Inc. - C:\WINDOWS\system32\pctspk.exe
O23 - Service: WUSB54Gv2SVC - Unknown owner - C:\Program Files\Linksys Wireless-G USB Wireless Network Monitor\WLService.exe" "WUSB54Gv2.exe (file missing)
---------------------------------------------------------
ewido security suite - Scan report
---------------------------------------------------------
+ Created on: 3:48:35 PM, 8/26/2005
+ Report-Checksum: 8159ECA3
+ Scan result:
HKLM\SOFTWARE\AutoLoader -> Spyware.AproposMedia : Cleaned with backup
HKLM\SOFTWARE\AutoLoader\4w3k1NJfLaLd -> Spyware.AproposMedia : Cleaned with backup
HKLM\SOFTWARE\AutoLoader\4w3y1NJfLaLd -> Spyware.AproposMedia : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{016235BE-59D4-4CEB-ADD5-E2378282A1D9} -> Spyware.AproposMedia : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{07B18EA9-A523-4961-B6BB-170DE4475CCA} -> Spyware.MyWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{9F95F736-0F62-4214-A4B4-CAA6738D4C07} -> Spyware.SaveNow : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{B5AB638F-D76C-415B-A8F2-F3CEAC502212} -> Spyware.AproposMedia : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{BC333116-6EA1-40A1-9D07-ECB192DB8CEA} -> Spyware.AproposMedia : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{FB45C451-B0E9-4407-BB6A-9361013F3E9A} -> Spyware.WebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\Common.Buttons -> Spyware.WebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\ImgConv.clsImgConv -> Spyware.WebRebates : Cleaned with backup
HKLM\SOFTWARE\Classes\ImgConv.clsImgConv\Clsid -> Spyware.WebRebates : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{2DDD90D6-F153-4EA7-A324-4B2D83D1027E} -> Spyware.HotBar : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{B548B7D8-3D03-4AED-A6A1-4251FAD00C10} -> Spyware.AproposMedia : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{B99A727F-0782-4A71-BCC2-6E1E66414904} -> Spyware.AproposMedia : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{BC333116-6EA1-40A1-9D07-ECB192DB8CEA} -> Spyware.AproposMedia : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{C285D18D-43A2-4AEF-83FB-BF280E660A97} -> Spyware.SaveNow : Cleaned with backup
HKLM\SOFTWARE\Classes\PROTOCOLS\Name-Space Handler\res -> Spyware.WebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\TypeLib\{15E7D23B-736E-46FA-BFFD-CBEC4126BEFD} -> Spyware.WebRebates : Cleaned with backup
HKLM\SOFTWARE\Envolo -> Spyware.AproposMedia : Cleaned with backup
HKLM\SOFTWARE\Envolo\AutoUpdate -> Spyware.AproposMedia : Cleaned with backup
HKLM\SOFTWARE\Envolo\AutoUpdate\State -> Spyware.AproposMedia : Cleaned with backup
HKLM\SOFTWARE\Envolo\AutoUpdate\Tasks -> Spyware.AproposMedia : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\ins -> Spyware.WebRebates : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\WhenUSave -> Spyware.SaveNow : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{016235BE-59D4-4CEB-ADD5-E2378282A1D9} -> Spyware.AproposMedia : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AproposClient -> Spyware.AproposMedia : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AutoUpdate -> Spyware.AproposMedia : Cleaned with backup
HKLM\SOFTWARE\SearchRelevancy -> Spyware.SearchRelevancy : Cleaned with backup
HKU\S-1-5-21-173008773-1465058494-1690550294-1006\Software\dsktb -> Spyware.IEPlugin : Cleaned with backup
HKU\S-1-5-21-173008773-1465058494-1690550294-1006\Software\dsktb\DesktopToolbar -> Spyware.IEPlugin : Cleaned with backup
HKU\S-1-5-21-173008773-1465058494-1690550294-1006\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{016235BE-59D4-4CEB-ADD5-E2378282A1D9} -> Spyware.AproposMedia : Cleaned with backup
HKU\S-1-5-21-173008773-1465058494-1690550294-1006\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0E440933-F824-B85E-8849-F5FFA50D8397} -> Spyware.CoolWebSearch : Cleaned with backup
HKU\S-1-5-21-173008773-1465058494-1690550294-1006\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{339BB23F-A864-48C0-A59F-29EA915965EC} -> Spyware.HuntBar : Cleaned with backup
HKU\S-1-5-21-173008773-1465058494-1690550294-1006\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{87766247-311C-43B4-8499-3D5FEC94A183} -> Spyware.HuntBar : Cleaned with backup
HKU\S-1-5-21-173008773-1465058494-1690550294-1006\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8952A998-1E7E-4716-B23D-3DBE03910972} -> Spyware.HuntBar : Cleaned with backup
HKU\S-1-5-21-173008773-1465058494-1690550294-1006\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D46A242B-6194-E7D0-7207-4CC5FFB11ADE} -> Spyware.CoolWebSearch : Cleaned with backup
[132] C:\Program Files\Aprps\cxtpls.dll -> TrojanDownloader.Apropo.w : Cleaned with backup
[2172] C:\Program Files\Aprps\cxtpls.dll -> TrojanDownloader.Apropo.w : Error during cleaning
[2196] C:\Program Files\Aprps\WinGenerics.dll -> Spyware.AproposMedia : Cleaned with backup
C:\A3.exe/ozz.html -> Spyware.Hijacker.Generic : Cleaned with backup
C:\A3.exe/xpi.html -> Spyware.Hijacker.Generic : Cleaned with backup
C:\command.exe -> TrojanDropper.Delf.ev : Cleaned with backup
:mozilla.6:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\husxxko5.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.7:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\husxxko5.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.15:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\husxxko5.default\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.16:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\husxxko5.default\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.17:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\husxxko5.default\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.18:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\husxxko5.default\cookies.txt -> Spyware.Cookie.Adtech : Cleaned with backup
:mozilla.19:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\husxxko5.default\cookies.txt -> Spyware.Cookie.Adtech : Cleaned with backup
:mozilla.23:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\husxxko5.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.25:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\husxxko5.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.26:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\husxxko5.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.32:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\husxxko5.default\cookies.txt -> Spyware.Cookie.Burstnet : Cleaned with backup
:mozilla.35:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\husxxko5.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.36:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\husxxko5.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.37:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\husxxko5.default\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.38:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\husxxko5.default\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.44:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\husxxko5.default\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.45:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\husxxko5.default\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.46:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\husxxko5.default\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.47:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\husxxko5.default\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.48:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\husxxko5.default\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.49:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\husxxko5.default\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.50:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\husxxko5.default\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.51:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\husxxko5.default\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.55:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\husxxko5.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.56:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\husxxko5.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.117:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\husxxko5.default\cookies.txt -> Spyware.Cookie.Valueclick : Cleaned with backup
:mozilla.127:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\husxxko5.default\cookies.txt -> Spyware.Cookie.Paycounter : Cleaned with backup
:mozilla.131:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\husxxko5.default\cookies.txt -> Spyware.Cookie.Valuead : Cleaned with backup
:mozilla.132:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\husxxko5.default\cookies.txt -> Spyware.Cookie.Valuead : Cleaned with backup
:mozilla.133:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\husxxko5.default\cookies.txt -> Spyware.Cookie.Valuead : Cleaned with backup
:mozilla.136:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\husxxko5.default\cookies.txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
:mozilla.140:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\husxxko5.default\cookies.txt -> Spyware.Cookie.Revenue : Cleaned with backup
:mozilla.156:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\husxxko5.default\cookies.txt -> Spyware.Cookie.Specificclick : Cleaned with backup
:mozilla.157:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\husxxko5.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.166:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\husxxko5.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.167:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\husxxko5.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.168:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\husxxko5.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.169:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\husxxko5.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.170:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\husxxko5.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.171:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\husxxko5.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.174:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\husxxko5.default\cookies.txt -> Spyware.Cookie.Valueclick : Cleaned with backup
:mozilla.194:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\husxxko5.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.195:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\husxxko5.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.196:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\husxxko5.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.197:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\husxxko5.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.198:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\husxxko5.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.200:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\husxxko5.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.201:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\husxxko5.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.202:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\husxxko5.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.203:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\husxxko5.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.217:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\husxxko5.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.218:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\husxxko5.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.219:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\husxxko5.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.234:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\husxxko5.default\cookies.txt -> Spyware.Cookie.Burstnet : Cleaned with backup
C:\Documents and Settings\Jim\Cookies\jim@abetterinternet[1].txt -> Spyware.Cookie.Abetterinternet : Cleaned with backup
C:\Documents and Settings\Jim\Cookies\
[email protected][1].txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
C:\Documents and Settings\Jim\Cookies\
[email protected][2].txt -> Spyware.Cookie.Addynamix : Cleaned with backup
C:\Documents and Settings\Jim\Cookies\jim@advertising[1].txt -> Spyware.Cookie.Advertising : Cleaned with backup
C:\Documents and Settings\Jim\Cookies\jim@atdmt[2].txt -> Spyware.Cookie.Atdmt : Cleaned with backup
C:\Documents and Settings\Jim\Cookies\jim@burstnet[2].txt -> Spyware.Cookie.Burstnet : Cleaned with backup
C:\Documents and Settings\Jim\Cookies\
[email protected][1].txt -> Spyware.Cookie.Clickzs : Cleaned with backup
C:\Documents and Settings\Jim\Cookies\jim@doubleclick[1].txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
C:\Documents and Settings\Jim\Cookies\
[email protected][1].txt -> Spyware.Cookie.Overture : Cleaned with backup
C:\Documents and Settings\Jim\Cookies\
[email protected][1].txt -> Spyware.Cookie.Advertising : Cleaned with backup
C:\Documents and Settings\Jim\Cookies\jim@trafficmp[2].txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
C:\Documents and Settings\Jim\Cookies\jim@tribalfusion[2].txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
C:\Documents and Settings\Jim\Cookies\jim@yieldmanager[2].txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
C:\Documents and Settings\Jim\Local Settings\Temp\14.tmp -> TrojanDownloader.Small.ahz : Cleaned with backup
C:\Documents and Settings\Jim\Local Settings\Temp\167171.dll -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Jim\Local Settings\Temp\3.tmp -> TrojanDownloader.Small.vq : Cleaned with backup
C:\Documents and Settings\Jim\Local Settings\Temp\4.tmp -> TrojanDownloader.IstBar.gv : Cleaned with backup
C:\Documents and Settings\Jim\Local Settings\Temp\84125.dll -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Jim\Local Settings\Temp\88687.dll -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Jim\Local Settings\Temp\89171.dll -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Jim\Local Settings\Temp\AutoUpdate0\auto_update_install.exe -> Spyware.AproposMedia : Cleaned with backup
C:\Documents and Settings\Jim\Local Settings\Temp\d.dll -> Adware.MidADle : Cleaned with backup
C:\Documents and Settings\Jim\Local Settings\Temp\i3D.tmp -> TrojanDownloader.Totavel.a : Cleaned with backup
C:\Documents and Settings\Jim\Local Settings\Temp\i4E.tmp -> Spyware.SurfSide : Cleaned with backup
C:\Documents and Settings\Jim\Local Settings\Temp\iAF.tmp -> Spyware.SurfSide : Cleaned with backup
C:\Documents and Settings\Jim\Local Settings\Temp\ms4D.tmp -> TrojanDropper.SurfSide.a : Cleaned with backup
C:\Documents and Settings\Jim\Local Settings\Temp\ms50.tmp -> Spyware.DealHelper : Cleaned with backup
C:\Documents and Settings\Jim\Local Settings\Temp\msedpb.exe -> Trojan.Small.i : Cleaned with backup
C:\Documents and Settings\Jim\Local Settings\Temp\multimpp.dll -> Spyware.BiSpy : Cleaned with backup
C:\Documents and Settings\Jim\Local Settings\Temp\suicidetb.exe -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Jim\Local Settings\Temp\uninstall.exe -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Jim\Local Settings\Temp\VVSNInst.exe -> Adware.SaveNow : Cleaned with backup
C:\Documents and Settings\Jim\Local Settings\Temporary Internet Files\Content.IE5\MEN7ZWNT\AproposClientInstaller[1].exe -> TrojanDownloader.Apropos.s : Cleaned with backup
C:\Documents and Settings\Jim\ozz.html -> Spyware.Hijacker.Generic : Cleaned with backup
C:\Documents and Settings\Jim\RA32.REG -> Trojan.LowZones.a : Cleaned with backup
C:\Documents and Settings\Jim\xpi.html -> Spyware.Hijacker.Generic : Cleaned with backup
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\E6JNC4H3\sideb[1].exe -> Spyware.EliteBar : Cleaned with backup
C:\Hearts.exe -> TrojanDropper.Small.nm : Cleaned with backup
C:\ovdx.exe/RA32.REG -> Trojan.LowZones.a : Cleaned with backup
C:\ozz.html -> Spyware.Hijacker.Generic : Cleaned with backup
C:\Program Files\BearShare\Installer\saveinstwm.exe -> Adware.SaveNow : Cleaned with backup
C:\Program Files\Hijackthis\backups\backup-20050825-232233-453.dll -> TrojanDownloader.Agent.kd : Cleaned with backup
C:\Program Files\Yahoo!\YPSR\Quarantine\ppq112.tmp -> TrojanDownloader.FunWeb.a : Cleaned with backup
C:\Program Files\Yahoo!\YPSR\Quarantine\ppq13.tmp -> Spyware.SideFind : Cleaned with backup
C:\Program Files\Yahoo!\YPSR\Quarantine\ppq14.tmp -> TrojanDownloader.IstBar.fz : Cleaned with backup
C:\Program Files\Yahoo!\YPSR\Quarantine\ppq17.tmp -> TrojanDownloader.IstBar : Cleaned with backup
C:\Program Files\Yahoo!\YPSR\Quarantine\ppq1D.tmp -> Dialer.Generic : Cleaned with backup
C:\Program Files\Yahoo!\YPSR\Quarantine\ppq1E.tmp\Internet Sex Provider\ACCESS.exe -> Dialer.Generic : Cleaned with backup
C:\Program Files\Yahoo!\YPSR\Quarantine\ppqBC.tmp -> Spyware.MyWebSearch : Cleaned with backup
C:\Program Files\Yahoo!\YPSR\Quarantine\ppqBD.tmp -> Spyware.MyWebSearch : Cleaned with backup
C:\Program Files\Yahoo!\YPSR\Quarantine\ppqC0.tmp -> Spyware.BiSpy : Cleaned with backup
C:\Program Files\Yahoo!\YPSR\Quarantine\ppqCF.tmp\sfexd001 -> Spyware.SideFind : Cleaned with backup
C:\ram5.exe/ozz.html -> Spyware.Hijacker.Generic : Cleaned with backup
C:\ram5.exe/xpi.html -> Spyware.Hijacker.Generic : Cleaned with backup
C:\rim2.exe/ozz.html -> Spyware.Hijacker.Generic : Cleaned with backup
C:\rim2.exe/xpi.html -> Spyware.Hijacker.Generic : Cleaned with backup
C:\rim32.exe/ozz.html -> Spyware.Hijacker.Generic : Cleaned with backup
C:\rim32.exe/xpi.html -> Spyware.Hijacker.Generic : Cleaned with backup
C:\rim32v.exe/ozz.html -> Spyware.Hijacker.Generic : Cleaned with backup
C:\rim32v.exe/xpi.html -> Spyware.Hijacker.Generic : Cleaned with backup
C:\Temp\CtxPlus.exe -> TrojanDownloader.Apropo.ab : Cleaned with backup
C:\Temp\cxtpls_loader_ff.exe -> TrojanDownloader.Apropo.r : Cleaned with backup
C:\toolbar.exe -> TrojanDropper.Small.nm : Cleaned with backup
C:\WINDOWS\$NtServicePackUninstall$\regedit.exe:ghkry -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\$NtServicePackUninstall$\winhlp32.exe:ddbvy -> TrojanDownloader.Agent.an : Cleaned with backup
C:\WINDOWS\002344_.tmp:rrnrzx -> Spyware.OneMoreSearch : Cleaned with backup
C:\WINDOWS\abi.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\Active Setup Log.txt:bdhcs -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\Active Setup Log.txt:yicuig -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addft.dll -> TrojanDropper.Small.tn : Cleaned with backup
C:\WINDOWS\aknsy.dat:jmbvxo -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\apigk.dll -> TrojanDropper.Small.tn : Cleaned with backup
C:\WINDOWS\apivg32.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\apptf.dll -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\apptr32.dll -> TrojanDownloader.Agent.an : Cleaned with backup
C:\WINDOWS\atlvf.exe -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\axwym.log:kueazm -> Spyware.OneMoreSearch : Cleaned with backup
C:\WINDOWS\bootstat.dat:avlnz -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\bootstat.dat:qjnzkj -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\clock.avi:uvnhof -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\COM+.log:mwxvqq -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\Compaq Amethyst.BMP:jvfvg -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\Compaq Ruby.BMP:xwnyux -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\Compaq Sapphire.BMP:bwqii -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\crum32.exe:znitte -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\crum32.exe -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\czkmv.log:jsrmus -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\d3qb32.dll:rvccwe -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\d3qb32.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\d3qf.dll -> Trojan.Feat : Cleaned with backup
C:\WINDOWS\d3si32.dll:aanjm -> TrojanDownloader.Agent.kd : Cleaned with backup
C:\WINDOWS\d3si32.dll -> TrojanDownloader.Agent.jb : Cleaned with backup
C:\WINDOWS\ddrou.log:ixyqqs -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\DEBUGSM.INI:jxyno -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\DEBUGSM.INI:kwnhqh -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\desktop.ini:sbfoh -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\dset.dat:fedqt -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\dset.dat:ioomq -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\dshkzwj.exe:gpzba -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\DtcInstall.log:cgorny -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\EPSON 1250 Installer.ini:yprgc -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\eReg.dat:ugywpj -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\explorer.exe:gzzked -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\explorer.scf:tfhrga -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\FaxSetup.log:gszhiz -> Spyware.OneMoreSearch : Cleaned with backup
C:\WINDOWS\FeatherTexture.bmp:yzspyn -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\fodwa.log:qndrgo -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\GatorUninstaller_cme_u.log:pljqis -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\GJGJIINK.ini:hhpmve -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\Gone Fishing.bmp:bggbcj -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\Greenstone.bmp:eiudi -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\Greenstone.bmp:hmcdcu -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\Greenstone.bmp:xtxzdc -> Spyware.OneMoreSearch : Cleaned with backup
C:\WINDOWS\ielb.exe:aqanyi -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\ieow32.dll -> Trojan.Feat : Cleaned with backup
C:\WINDOWS\iis6.log:isbgh -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\iis6.log:iucrxd -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\iis6.log:jckrxy -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\iis6.log:uwendv -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\INTUIT.INI:nxxtgf -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\INTUIT.INI:spvns -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\ipkf.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\iPlayer.INI:bqkhy -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\iPlayer.INI:jzljdf -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\iPlayer.INI:nlwdiw -> Spyware.OneMoreSearch : Cleaned with backup
C:\WINDOWS\iPlayer.INI:tvfcty -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\iPlayer.INI:xpzxh -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\ipoz32.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\iprj.dll -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\ipss32.dll -> Trojan.Feat : Cleaned with backup
C:\WINDOWS\IsUninst.exe:lqosm -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\IsUninst.exe:trdua -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\iun6002.exe:pqkdb -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\javaty.dll -> TrojanDownloader.Agent.jb : Cleaned with backup
C:\WINDOWS\javazp32.dll -> TrojanDownloader.Agent.lz : Cleaned with backup
C:\WINDOWS\jubkl.log:pqjtud -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\KB828741.log:hrbywg -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\KB828741.log:vsgxjp -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\KB835732.log:otqdez -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\KB841533.log:ggzgaw -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\KB841533.log:tjrvfj -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\KB842773.log:ibvsea -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\KB873333.log:mjcbzu -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\KB873339.log:ehsafv -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\KB885250.log:cnlpmn -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\KB885835.log:buoxhl -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\KB885835.log:jicyxj -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\KB886185.log:xhegyw -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\KB886185.log:xikfzf -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\KB887822.log:tvgkbv -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\KB888113.log:nooiii -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\KB890047.log:wpquig -> Spyware.OneMoreSearch : Cleaned with backup
C:\WINDOWS\LCSALRES.dll:wmelp -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\LCSALRES.dll:zruas -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\loud.exe -> Spyware.WinAD : Cleaned with backup
C:\WINDOWS\ltvqp.txt:whafgx -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\mfcls32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\mozver.dat:piltah -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\mswi32.dll:stqrdn -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\netzo.dll -> Trojan.Feat : Cleaned with backup
C:\WINDOWS\nsotools.log:uzfynx -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\nsreg.dat:ycjmbm -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\ntdr.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\ntdtcsetup.log:qktqgu -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\ntww32.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\n_ahvjrm.dat -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\n_apgdvg.txt:fbqijs -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\n_apgdvg.txt -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\n_enebom.txt:tdtvjt -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\n_erdqjo.dat:gwxzqf -> Spyware.OneMoreSearch : Cleaned with backup
C:\WINDOWS\n_erdqjo.dat -> TrojanDownloader.Agent.db : Cleaned with backup
C:\WINDOWS\n_fiqtkc.txt:melale -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\n_gbdvaf.txt:illwae -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\n_gbdvaf.txt -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\n_gugcll.dat:otdztk -> TrojanDownloader.Agent.kd : Cleaned with backup
C:\WINDOWS\n_hgmjxe.txt:ytnenu -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\n_ijumgc.log:uezuy -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\n_ijumgc.log:xcbcrf -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\n_ijumgc.log -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\n_jtowbm.txt:qbelum -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\n_jtowbm.txt -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\n_koivtc.dat:mfsaa -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\n_koivtc.dat:pdtith -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\n_koivtc.dat -> TrojanDownloader.Agent.db : Cleaned with backup
C:\WINDOWS\n_mslanj.dat:icxqww -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\n_mslanj.dat -> TrojanDownloader.Agent.db : Cleaned with backup
C:\WINDOWS\n_pharzs.txt -> TrojanDownloader.Agent.db : Cleaned with backup
C:\WINDOWS\n_pxchoq.dat:bskzfk -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\n_seixel.dat:sybrla -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\n_ttulek.txt:dylxfl -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\n_ubtjth.dat:rgyeo -> TrojanDownloader.Agent.kd : Cleaned with backup
C:\WINDOWS\n_ubtjth.dat:tscnzn -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\n_ubtjth.dat:urvhab -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\n_ubtjth.dat -> TrojanDownloader.Agent.db : Cleaned with backup
C:\WINDOWS\n_virngv.log:lkfngx -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\n_ygndpa.dat:fsnmud -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\n_ygndpa.dat:xqdleg -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\n_yomwhs.log:obwodc -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\n_yomwhs.log -> TrojanDownloader.Agent.db : Cleaned with backup
C:\WINDOWS\n_ytetxe.txt:wlifdk -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\n_ywvdej.txt:wosevo -> Spyware.OneMoreSearch : Cleaned with backup
C:\WINDOWS\n_zndpxu.txt:aacbcz -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\ocmsn.log:hjgebt -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\ODBC.INI:gbotxe -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\ODBC.INI:lbvgwb -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\OEWABLog.txt:vszvvq -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\ogqli.txt:bvrtvh -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\orun32.ini:dykjd -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\orun32.ini:vmzzsv -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\orun32.ini:xnbxfy -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\orun32.isu:unkzxk -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\orun32.isu:ywvgae -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\pcf.INI:rxzjuq -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\pcfriend.INI:qnlcza -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\pcfriend.INI:rwoluo -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\pcfriend.INI:wzdox -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\pistv.dll:cqkwwa -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\PowerReg.dat:fzeww -> TrojanDownloader.Agent.kd : Cleaned with backup
C:\WINDOWS\PowerReg.dat:jxgqor -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\PowerReg.dat:ygcsoq -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\Q308210.log:ayhtr -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\Q309691.log:qbqps -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\Q310437.log:szzyt -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\Q311542.log:utnewo -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\Q313484.log:wslfk -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\Q315000.log:dhoppp -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\Q315000.log:pkdke -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\Q315403Uninst.log:fuyotj -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\Q317277.log:mwfgsz -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\Q329048.log:exyluk -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\Q329834.log:bgahgg -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\QFN.ini:mhdzvb -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\qgsnw.dll -> Spyware.OneMoreSearch : Cleaned with backup
C:\WINDOWS\qqkjm.log:oyaoyr -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\QUICKEN.INI:vhrdw -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\regedit.exe:hzsutb -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\regopt.log:rbwai -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\regopt.log:tlvrfb -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\Rhododendron.bmp:rolwn -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\Santa Fe Stucco.bmp:lmffzd -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\Santa Fe Stucco.bmp:whnkpy -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\Santa Fe Stucco.bmp:xjjul -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\SchedLgU.Txt:bcgfk -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\sdkpo32.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\sdkql32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\SDSALRES.dll:pjuhg -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\setupact.log:rhflj -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\setupapi.log:adkipl -> Spyware.OneMoreSearch : Cleaned with backup
C:\WINDOWS\setuperr.log:codbyy -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\sideb.exe -> Spyware.EliteBar : Cleaned with backup
C:\WINDOWS\ssk.exe -> TrojanDropper.SurfSide.a : Cleaned with backup
C:\WINDOWS\Sti_Trace.log:iuqwet -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\Sti_Trace.log:npouul -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\svhost12.exe -> Backdoor.Rbot : Cleaned with backup
C:\WINDOWS\sysbb32.dll -> TrojanDownloader.Agent.jb : Cleaned with backup
C:\WINDOWS\sysdo.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\sysij.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\syslx.dll -> TrojanDownloader.Agent.jb : Cleaned with backup
C:\WINDOWS\system32\adden32.dll -> Trojan.Feat : Cleaned with backup
C:\WINDOWS\system32\addig.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\system32\apiuc.dll -> TrojanDownloader.Agent.jb : Cleaned with backup
C:\WINDOWS\system32\appak.dll -> TrojanDropper.Small.tn : Cleaned with backup
C:\WINDOWS\system32\appqo.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\appxl.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\atlhj.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\system32\atlpn32.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\system32\atlwk.exe_tobedeleted -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\system32\ATPartners.dll -> Spyware.ATPartners : Cleaned with backup
C:\WINDOWS\system32\auto_update_uninstall.exe -> Spyware.AproposMedia : Cleaned with backup
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\0PQV0123\silent_install[1].exe -> Spyware.EliteBar : Cleaned with backup
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\0PQV0123\silent_install[2].exe -> Spyware.EliteBar : Cleaned with backup
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\0PQV0123\silent_install[3].exe -> Spyware.EliteBar : Cleaned with backup
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\0XA7492B\silent_install[1].exe -> Spyware.EliteBar : Cleaned with backup
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\G5A7CHIN\sideb[1].exe -> Spyware.EliteBar : Cleaned with backup
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\G5A7CHIN\silent_install[1].exe -> Spyware.EliteBar : Cleaned with backup
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\H0OXPSLU\silent_install[1].exe -> Spyware.EliteBar : Cleaned with backup
C:\WINDOWS\system32\crna.dll -> Trojan.Feat : Cleaned with backup
C:\WINDOWS\system32\crvd32.dll -> Trojan.Feat : Cleaned with backup
C:\WINDOWS\system32\crvt32.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\system32\d3yv32.dll -> TrojanDownloader.Agent.jb : Cleaned with backup
C:\WINDOWS\system32\d3ze.dll -> TrojanDownloader.Agent.kd : Cleaned with backup
C:\WINDOWS\system32\iekq32.dll -> TrojanDropper.Small.tn : Cleaned with backup
C:\WINDOWS\system32\ipcs.dll -> TrojanDropper.Small.tn : Cleaned with backup
C:\WINDOWS\system32\ipdi.dll -> TrojanDownloader.Agent.jb : Cleaned with backup
C:\WINDOWS\system32\ipif.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\javags.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\system32\javatl32.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\system32\javavt.dll -> TrojanDownloader.Agent.lz : Cleaned with backup
C:\WINDOWS\system32\kvdqf.dll -> Spyware.OneMoreSearch : Cleaned with backup
C:\WINDOWS\system32\lvctcprx.exe -> Trojan.AproposAd : Cleaned with backup
C:\WINDOWS\system32\lz3rslv.exe -> Trojan.AproposAd : Cleaned with backup
C:\WINDOWS\system32\mfcdt32.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\system32\msedpb.exe -> Trojan.Small.i : Cleaned with backup
C:\WINDOWS\system32\msnimk.gif -> Spyware.Ipend : Cleaned with backup
C:\WINDOWS\system32\mspb.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\system32\msuw32.dll -> TrojanDropper.Small.tn : Cleaned with backup
C:\WINDOWS\system32\ntcm32.dll -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\sdkno32.dll -> TrojanDownloader.Agent.jb : Cleaned with backup
C:\WINDOWS\system32\sdksp32.exe -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\system32\sysjt.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\system32\TFTP1544 -> Worm.Lovesan.a : Cleaned with backup
C:\WINDOWS\system32\tvmk1ez.dll -> Adware.eZula : Cleaned with backup
C:\WINDOWS\system32\Uninstaller.exe -> Spyware.DealHelper : Cleaned with backup
C:\WINDOWS\system32\unregister.exe -> Spyware.VB : Cleaned with backup
C:\WINDOWS\system32\winwq32.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\system32\wіnspool.exe -> Spyware.PurityScan : Cleaned with backup
C:\WINDOWS\system32\yykcv.dll -> Spyware.OneMoreSearch : Cleaned with backup
C:\WINDOWS\TASKMAN.EXE:nbolm -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\twain.dll:fffali -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\twain.dll:wypaor -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\uninstaller.exe:haaske -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\uninstaller.exe:snuim -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\vbaddin.ini:kskcof -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\vminst.log:jpvkxb -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\vmmreg32.dll:mfidtq -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\webdlg32.inf:hugjnx -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\webdlg32.inf:mcsbmk -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\webdlg32.inf:vspdbc -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\wiaservc.log:wljsh -> TrojanDownloader.Agent.cd : Cleaned with backup
C:\WINDOWS\Windows Update.log:tpqwwg -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\Windows Update.log:xevtix -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\WindowsUpdate.log:yvttam -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\winfv.exe:mpjbyq -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\winfv.exe:qkobr -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\winfv.exe -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\winhelp.exe:nzimk -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\winhelp.exe:zpylze -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\winhlp32.exe:ddbvy -> TrojanDownloader.Agent.kd : Cleaned with backup
C:\WINDOWS\winhx.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\wininit.ini:ikyhl -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\wininit.ini:pydhy -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\wininit.ini:vixmpd -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\winnt.bmp:sqqrtp -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\winqn32.dll -> TrojanDropper.Small.tn : Cleaned with backup
C:\WINDOWS\winsg.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\wlkoe.dll:njqrjn -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\WMSysPrx.prx:evlqgt -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\WMSysPrx.prx:qmkyik -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\yzxqv.dll:imhvqd -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\zbzfd.log:mejzph -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\zbzfd.log:pxwbco -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\zbzfd.log:ugnxpt -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default.pif:blqoqt -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default.pif:brdrph -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\_default.pif:byjchb -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default.pif:cllvhm -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\_default.pif:ctbpms -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default.pif:dqfrec -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\_default.pif:dsneht -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\_default.pif:fnxmiz -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\_default.pif:fxozcu -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\_default.pif:gquwdm -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\_default.pif:gscywe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default.pif:hpghkq -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:icwxx -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:ikpkst -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\_default.pif:iwivks -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\_default.pif:jqklnx -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default.pif:jsjkkq -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default.pif:juxwmc -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\_default.pif:loldry -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default.pif:lqnmks -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:lsczfj -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default.pif:lvoimn -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\_default.pif:lzcqkl -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\_default.pif:mmehop -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default.pif:oduylr -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default.pif:oiwont -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\_default.pif:onwtnd -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\_default.pif:pgmklb -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\_default.pif:rexrae -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\_default.pif:rqzmes -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\_default.pif:rsadlr -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default.pif:rufqsr -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default.pif:svtdrf -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\_default.pif:szncdc -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default.pif:tjwvdj -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\_default.pif:tuvdsd -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:umjbtd -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\_default.pif:umuugd -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\_default.pif:uuyzcj -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\_default.pif:uwlpgh -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:vkpzoj -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\_default.pif:vsvspy -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\_default.pif:vtqvap -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\_default.pif:wwrlos -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default.pif:xqmswg -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default.pif:xuxcof -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default.pif:ytulqp -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\wingtp.exe -> Backdoor.IRCBot.az : Cleaned with backup
C:\xchat.exe -> TrojanDropper.Small.nm : Cleaned with backup
C:\xpi.html -> Spyware.Hijacker.Generic : Cleaned with backup
::Report End