Hello, Thanks for helping me out with this annoying problem.
I did everything you said, except the part about disabling MS Antispyware. I could not get the buttons to stay unchecked when i saved changes, si I just deleted the program. I can download it and re-install at a lateer date.
The only other problem i have is that i can't find the Smitfiles from SmitRem program. I saved it, but I don't know where it went. I did a search for it, but it came up empty.
Ok, here are my logs, HiJack This first, then Ewido, then the Panda scan
Logfile of HijackThis v1.99.1
Scan saved at 7:17:29 PM, on 9/26/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\NORTON~1\navapw32.exe
C:\WINDOWS\System32\DSentry.exe
C:\WINDOWS\System32\drivers\CDAC11BA.EXE
C:\WINDOWS\system32\cisvc.exe
C:\Program Files\ewido\security suite\ewidoctrl.exe
C:\WINDOWS\system32\inetsrv\inetinfo.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
C:\WINDOWS\system32\cidaemon.exe
C:\WINDOWS\system32\cidaemon.exe
C:\WINDOWS\system32\cidaemon.exe
C:\Program Files\HiJack This\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: (no name) - {5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB} - (no file)
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll (file missing)
O3 - Toolbar: (no name) - {BA52B914-B692-46c4-B683-905236F6F655} - (no file)
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [NAV Agent] C:\PROGRA~1\NORTON~1\navapw32.exe
O4 - HKLM\..\Run: [DVDSentry] C:\WINDOWS\System32\DSentry.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O8 - Extra context menu item: &AIM Search - res://C:\Program Files\AIM Toolbar\AIMBar.dll/aimsearch.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: MoneySide - {E023F504-0C5A-4750-A1E7-A9046DEA8A21} - C:\Program Files\Microsoft Money\System\mnyviewer.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: Yahoo! Chat -
http://us.chat1.yimg...t/c381/chat.cabO16 - DPF: {0122955E-1FB0-11D2-A238-006097FAEE8B} (CscClnt Class) -
http://205.159.125.1...everContent.cabO16 - DPF: {11260943-421B-11D0-8EAC-0000C07D88CF} (iPIX ActiveX Control) -
http://www.ipix.com/download/ipixx.cabO16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) -
http://go.microsoft....k/?linkid=39204O16 - DPF: {2B323CD9-50E3-11D3-9466-00A0C9700498} (Yahoo! Audio Conferencing) -
http://us.chat1.yimg...v45/yacscom.cabO16 - DPF: {39B0684F-D7BF-4743-B050-FDC3F48F7E3B} (FilePlanet Download Control Class) -
http://www.fileplane...DC_1_0_0_44.cabO16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} (McAfee.com Operating System Class) -
http://download.mcaf...90/mcinsctl.cabO16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) -
http://update.micros...b?1124391079976O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) -
http://a840.g.akamai...all/xscan53.cabO16 - DPF: {7CF052DE-C74F-421B-B04A-3B3037EF5887} (CCMPGui Class) -
http://64.124.45.181.../proxy/CCMP.cabO16 - DPF: {90A29DA5-D020-4B18-8660-6689520C7CD7} (DmiReader Class) -
http://ftp.us.dell.c...es/PROFILER.CABO16 - DPF: {917623D1-D8E5-11D2-BE8B-00104B06BDE3} (CamImage Class) -
http://katzencam2.am...sCamControl.cabO16 - DPF: {9600F64D-755F-11D4-A47F-0001023E6D5A} (Shutterfly Picture Upload Plugin) -
http://web1.shutterf...ds/Uploader.cabO16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) -
http://www.pandasoft...free/asinst.cabO16 - DPF: {9FC5238F-12C4-454F-B1B5-74599A21DE47} (Webshots Photo Uploader) -
http://community.web...otoUploader.CABO16 - DPF: {AB86CE53-AC9F-449F-9399-D8ABCA09EC09} (Get_ActiveX Control) -
https://h17000.www1....loadManager.ocxO16 - DPF: {B3872502-F9FD-4E96-93FF-0D37298F0689} (SOESysInfo Control) -
http://everquest2.st.../soesysinfo.cabO16 - DPF: {BAC01377-73DD-4796-854D-2A8997E3D68A} (Yahoo! Photos Easy Upload Tool Class) -
http://us.dl1.yimg.c...ropper1_1us.cabO16 - DPF: {CE28D5D2-60CF-4C7D-9FE8-0F47A3308078} (ActiveDataInfo Class) -
https://www-secure.s...ta/SymAData.cabO16 - DPF: {D719897A-B07A-4C0C-AEA9-9B663A28DFCB} -
http://ax.phobos.app.../ITDetector.cabO16 - DPF: {E77C0D62-882A-456F-AD8F-7C6C9569B8C7} (ActiveDataObj Class) -
https://www-secure.s.../ActiveData.cabO16 - DPF: {EB387D2F-E27B-4D36-979E-847D1036C65D} (QDiagHUpdateObj Class) -
http://h30043.www3.h.../qdiagh.cab?326O16 - DPF: {FA3662C3-B8E8-11D6-A667-0010B556D978} (IWinAmpActiveX Class) -
http://cdn.digitalci...illama/ampx.cabO23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\SYSTEM32\ati2sgag.exe
O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\System32\drivers\CDAC11BA.EXE
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: Norton AntiVirus Auto Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: Intel® NMS (NMSSvc) - Intel Corporation - C:\WINDOWS\System32\NMSSvc.exe
O23 - Service: PACSPTISVR - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
ewido security suite - Scan report
---------------------------------------------------------
+ Created on: 5:37:11 PM, 9/26/2005
+ Report-Checksum: 27C9DD5
+ Scan result:
HKLM\SOFTWARE\Altnet -> Spyware.Altnet : Error during cleaning
HKLM\SOFTWARE\Altnet\Dashboard -> Spyware.Altnet : Error during cleaning
HKLM\SOFTWARE\Altnet\Dashboard\Messages -> Spyware.Altnet : Error during cleaning
HKLM\SOFTWARE\Altnet\Dashboard\Settings -> Spyware.Altnet : Error during cleaning
C:\Documents and Settings\George Edwards\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\file\SecurityClassLoader.class-7c728-1f29a360.class -> TrojanDownloader.Small.wv : Cleaned with backup
C:\Documents and Settings\George Edwards\Cookies\george
[email protected][2].txt -> Spyware.Cookie.Specificclick : Cleaned with backup
C:\Documents and Settings\George Edwards\Cookies\george
[email protected][2].txt -> Spyware.Cookie.Clickzs : Cleaned with backup
C:\Documents and Settings\George Edwards\Local Settings\Temporary Internet Files\Content.IE5\EGQ64XD3\gdnUS1865[1].exe -> TrojanDownloader.Small.ayl : Cleaned with backup
C:\Documents and Settings\Jennifer Edwards\Local Settings\Application Data\Wildtangent\Cdacache\00\00\0D.dat/files\wtvh.dll -> Spyware.WildTangent : Cleaned with backup
C:\Documents and Settings\Julie Edwards\Local Settings\Application Data\Wildtangent\Cdacache\00\00\0E.dat/files\wtvh.dll -> Spyware.WildTangent : Cleaned with backup
C:\Program Files\Common Files\pdenteqf\paptocdqta\qnouruntq.exe -> Adware.Gator : Cleaned with backup
C:\Program Files\Common Files\pdenteqf\tbmtmpld\mposrppa.exe -> Adware.Gator : Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\2F225092-0A74-49A2-8F96-96486C\14E02164-7ADA-4DEB-8B47-AEA7FC -> TrojanDownloader.Wintool.b : Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\2F225092-0A74-49A2-8F96-96486C\9D66909F-854E-4211-9503-1E5D43 -> Spyware.Wintol : Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\D0B9990E-55E7-407D-9EDB-FEC93A\F4F83C8E-8D6F-492C-ABE1-BA51D7 -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\Program Files\nlzon.dll -> Spyware.SearchPage : Cleaned with backup
C:\Program Files\SpyTrooper\Uninstall.exe -> Adware.SpySheriff : Cleaned with backup
C:\WINDOWS\aaijk.dll -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\addit32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addml32.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\addqt32.dll -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\addxs32.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\anhuvr.dat -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\aoprr.dll -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\apier32.dll -> TrojanDownloader.Agent.kd : Cleaned with backup
C:\WINDOWS\apiji.dll -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\apijt.exe -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\appcj32.dll -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\applg32.dll -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\bwwhmy.dat -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\cobbxb.dat -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\cokftv.dat -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\crcn32.dll -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\d3tb.dll:hxosyk -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\d3tb.dll -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\DESKTOP.INI:oanjlc -> Spyware.OneMoreSearch : Cleaned with backup
C:\WINDOWS\dsjmba.dat -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\dtqfvt.dat -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\dvmlys.dat -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\dwnoju.dat -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\dyxozt.dat -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\dzlzh.dll -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\eentp.dll -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\eolyx.dll -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\evvptz.dat -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\ewsysa.dat -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\exajqw.dat -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\fftgen.dat -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\fnggss.dat -> TrojanDownloader.Agent.kd : Cleaned with backup
C:\WINDOWS\fuleks.dat -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\giwuy.dll -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\gqkdxu.dat -> TrojanDownloader.Agent.kd : Cleaned with backup
C:\WINDOWS\gzrraj.dat -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\hiqvb.dat:lwusm -> TrojanDownloader.Agent.an : Cleaned with backup
C:\WINDOWS\hjdus.dat:oypqc -> TrojanDownloader.Agent.cd : Cleaned with backup
C:\WINDOWS\hlraob.dat -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\hmgtal.dat -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\hpyhvt.dat -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\hshdpy.dat -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\hswjbr.dat -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\icpxpy.dat -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\iefz32.dll -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\iehl.dll -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\iexu.dll -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\iibkbp.dat -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\ipbk.dll -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\ipda.dll -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\iplg32.exe -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\ipwe32.dll -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\irrodb.dat -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\iszqxx.dat -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\ixadwj.dat -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\javada32.dll -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\jdscu.dll -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\jhipul.dat -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\jwypr.dll -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\jzontz.dat -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\knvkuh.dat -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\koddva.dat -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\krzill.dat -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\lbceas.dat -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\ldpzk.dll -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\lslypa.dat -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\lxggyl.dat:ydnah -> TrojanDownloader.Agent.lz : Cleaned with backup
C:\WINDOWS\lxggyl.dat -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\mbkxbl.dat -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\mfcau32.dll -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\mfcdu.exe -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\mfcfp.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\mfcln.exe -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\mfcoh32.dll -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\mfcuu32.dll -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\mfcwu32.dll -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\mfcxp32.dll -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\mfczd32.dll -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\mlqpb.dll -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\mokfoz.dat -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\mpkxlf.dat -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\msas32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\MSDFMAP.INI:jwyte -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\msiww.dll -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\msqm32.dll -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\nblyhx.dat -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\netlw32.dll -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\ntag32.exe -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\ntea.dll -> TrojanDownloader.Agent.kd : Cleaned with backup
C:\WINDOWS\ntfa32.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\ntpw.dll -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\ntvn32.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\n_gfjmbx.dat -> TrojanDownloader.Agent.kd : Cleaned with backup
C:\WINDOWS\n_nfeqfs.log -> TrojanDownloader.Agent.kd : Cleaned with backup
C:\WINDOWS\n_sggbts.dat -> TrojanDownloader.Agent.an : Cleaned with backup
C:\WINDOWS\n_sirjym.dat:urjuv -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\n_sirjym.dat -> TrojanDownloader.Agent.al : Cleaned with backup
C:\WINDOWS\n_tsweap.dat -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\n_uphnet.dat -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\odcnni.dat -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\ohdlp.dll -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\ovgshc.dat -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\piunpz.dat -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\pzkram.dat -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\rbfpv.dll -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\rinko.dll -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\rtvmbv.dat -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\scaiml.dat -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\sdkyh32.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\sysgl32.dll -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\syspd.dll -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\SYSTEM32\aaqat.dll -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\SYSTEM32\afgzz.dll -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\SYSTEM32\apixp.dll -> TrojanDownloader.Agent.kd : Cleaned with backup
C:\WINDOWS\SYSTEM32\appne32.dll -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\SYSTEM32\atljh.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\SYSTEM32\atlza32.dll -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\SYSTEM32\corelsys.dll -> TrojanDownloader.Agent.ba : Cleaned with backup
C:\WINDOWS\SYSTEM32\crof32.dll -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\SYSTEM32\d3rk.dll -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\SYSTEM32\dmiir.dll -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\SYSTEM32\gamgu.dll -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\SYSTEM32\hffqx.dll -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\SYSTEM32\ieaq32.dll -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\SYSTEM32\ieel.dll -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\SYSTEM32\ieha32.dll -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\SYSTEM32\iett.dll -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\SYSTEM32\ipdb32.dll -> TrojanDownloader.Agent.kd : Cleaned with backup
C:\WINDOWS\SYSTEM32\ipic32.dll -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\SYSTEM32\ipmu.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\SYSTEM32\jheig.dll -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\SYSTEM32\kbmoe.dll -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\SYSTEM32\ld88A8.tmp -> TrojanDownloader.Agent.uz : Cleaned with backup
C:\WINDOWS\SYSTEM32\ld89F0.tmp -> TrojanDownloader.Agent.uz : Cleaned with backup
C:\WINDOWS\SYSTEM32\ld8B09.tmp -> TrojanDownloader.Agent.uz : Cleaned with backup
C:\WINDOWS\SYSTEM32\ld951B.tmp -> TrojanDownloader.Agent.uz : Cleaned with backup
C:\WINDOWS\SYSTEM32\lnokz.dll -> Spyware.OneMoreSearch : Cleaned with backup
C:\WINDOWS\SYSTEM32\lnwnr.dll -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\SYSTEM32\mfctk32.dll -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\SYSTEM32\mpzdj.dll -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\SYSTEM32\mscornet.exe -> TrojanDownloader.Zlob.aq : Cleaned with backup
C:\WINDOWS\SYSTEM32\mshk.dll -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\SYSTEM32\msix.dll -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\SYSTEM32\netwf.dll -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\SYSTEM32\ntne32.dll -> TrojanDownloader.Agent.kd : Cleaned with backup
C:\WINDOWS\SYSTEM32\nttr32.dll -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\SYSTEM32\nxrtc.dll -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\SYSTEM32\sdkcv.dll -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\SYSTEM32\sdkhx.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\SYSTEM32\sdkjm32.dll -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\SYSTEM32\sysdv.dll -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\SYSTEM32\sysxr.dll -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\SYSTEM32\tqnce.dll -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\SYSTEM32\tаskmgr.exe -> Spyware.PurityScan : Cleaned with backup
C:\WINDOWS\SYSTEM32\winjo32.dll -> TrojanDownloader.Agent.ap : Cleaned with backup
C:\WINDOWS\SYSTEM32\winqd.dll -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\SYSTEM32\winuz32.dll -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\SYSTEM32\winyx.dll -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\SYSTEM32\xrevw.dll -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\SYSTEM32\xtaus.dll -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\SYSTEM32\yidtj.dll -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\tcescn.dat -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\tchtf.dll -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\tcybzu.dat -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\tfttbq.dat -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\ugmjy.dll -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\uomwiq.dat -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\usmhll.dat -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\vazrbw.dat -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\vplmyy.dat -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\vskqtl.dat -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\vybyvs.dat -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\winwn.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\xttkm.dll -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\xwbkeh.dat -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\ycdhy.dll -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\ydqeni.dat -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\yllfku.dat -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\yuhhb.dll -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\yyyiwz.dat -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\yzzlhb.dat -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\zbhaoi.dat -> TrojanDownloader.Agent.z : Cleaned with backup
C:\WINDOWS\zlrxy.dat:ldfaz -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\zmpby.dat:shmim -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\zmroa.dll -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\zmtbb.dll -> Spyware.SearchPage : Cleaned with backup
C:\WINDOWS\zttagu.dat -> TrojanDownloader.Agent.z : Cleaned with backup
::Report End
Incident Status Location
Virus:Exploit/ByteVerify Disinfected C:\Documents and Settings\George Edwards\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\archive.jar-17b8ed14-5696206d.zip[Dummy.class]
Virus:Exploit/ByteVerify Disinfected C:\Documents and Settings\George Edwards\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\archive.jar-456b5d97-761e5200.zip[Dummy.class]
Virus:Exploit/ByteVerify Disinfected C:\Documents and Settings\George Edwards\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\archive.jar-522ce96a-3b666eec.zip[Dummy.class]
Virus:Exploit/ByteVerify Disinfected C:\Documents and Settings\George Edwards\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\archive.jar-5a055feb-1eb529b6.zip[Dummy.class]
Adware:Adware/WinTools No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\2F225092-0A74-49A2-8F96-96486C\7E15C486-7A39-439C-97DA-067E03
Adware:Adware/PurityScan No disinfected C:\Program Files\nrpn\osoa.exe
Adware:Adware/SearchAid No disinfected C:\Program Files\tuqyy.dll
Adware:Adware/SearchAid No disinfected C:\Program Files\yncsu.dll
Adware:adware/midaddle No disinfected C:\WINDOWS\addit.exe
Adware:adware/searchaid No disinfected C:\WINDOWS\addor32.exe
Adware:adware/cws.008k No disinfected C:\WINDOWS\apirq.exe
Adware:adware/cws No disinfected C:\WINDOWS\apphi32.exe
Adware:Adware/Winshow No disinfected C:\WINDOWS\iiogo.dll
Adware:adware/cws.aboutblank No disinfected C:\WINDOWS\javait.exe
Adware:Adware/WinTools No disinfected C:\WINDOWS\Key2.txt
Adware:Adware/Winshow No disinfected C:\WINDOWS\kxpft.dll
Adware:adware/ncase No disinfected C:\WINDOWS\msbb.exe
Dialer:dialer.clr No disinfected C:\WINDOWS\netes.exe
Adware:adware program No disinfected C:\WINDOWS\netqm32.exe
Adware:Adware/Winshow No disinfected C:\WINDOWS\nilji.dll
Adware:Adware/Winshow No disinfected C:\WINDOWS\riihj.dll
Adware:adware/navipromo No disinfected C:\WINDOWS\sdkaa32.exe
Spyware:spyware/petro-line No disinfected C:\WINDOWS\SYSTEM32\appbs32.dll
Adware:Adware/Winshow No disinfected C:\WINDOWS\SYSTEM32\bsxtx.dll
Adware:Adware/Winshow No disinfected C:\WINDOWS\SYSTEM32\eglaq.dll
Adware:Adware/ExactSearch No disinfected C:\WINDOWS\SYSTEM32\exul.exe
Spyware:spyware/bargainbuddy No disinfected C:\WINDOWS\SYSTEM32\mscb.exe
Adware:adware/transponder No disinfected C:\WINDOWS\SYSTEM32\msts32.exe
Adware:Adware/PsGuard No disinfected C:\WINDOWS\SYSTEM32\msvol.tlb
Adware:adware/mirar No disinfected C:\WINDOWS\SYSTEM32\winnb32.dll
Adware:Adware/Winshow No disinfected C:\WINDOWS\umsdf.dll
The only other thing i want to say is that during one of my on-line scans, MSSearch.exe was found and deleted by me. I don't know how, but thing seemed to calm down a little after that. I was still getting a pop-up from Norton A/V about a hijackdesktop. virus that it couldn't delete. I haven't been using computer much, so I don't know if it disappeared along with these fixes from you
Again, Thanks in advance for the help