Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

pokapoka70.exe


  • Please log in to reply

#1
twallace

twallace

    New Member

  • Member
  • Pip
  • 4 posts
I have a virus reciveved instant messenger and its causing hella confusion and really bogs it down.
My hijack this :

C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\BySoft FreeRAM\FreeRAM.exe
C:\WINDOWS\system32\windir32.exe
C:\Program Files\Java\jre1.5.0_02\bin\jucheck.exe
C:\Program Files\Gigabyte\Gigabyte Windows Utility Manager\gwum.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Program Files\Sophos SWEEP for NT\ICMON.EXE
C:\Program Files\Common Files\Logitech\KHAL\KHALMNPR.EXE
C:\Program Files\Common Files\EPSON\EBAPI\SAgent2.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Sophos SWEEP for NT\SWNETSUP.EXE
C:\Program Files\Sophos SWEEP for NT\SWEEPSRV.SYS
C:\Program Files\AIM\aim.exe
C:\WINDOWS\regedit.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\DOCUMENTS AND SETTINGS\TIM WALLACE\DESKTOP\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page_bak = http://www.arizona.edu/
R3 - URLSearchHook: AutoSearch Class - {1E432263-6841-4653-8F02-366A2F77E339} - C:\PROGRA~1\WINDOW~4\WinSB1.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [Microsoft Windows DLL Services Configuration] windir32.exe
O4 - HKLM\..\Run: [System service70] C:\WINDOWS\\\etb\\pokapoka70.exe
O4 - HKLM\..\RunServices: [Microsoft Windows DLL Services Configuration] windir32.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [BySoft FreeRAM] C:\Program Files\BySoft FreeRAM\FreeRAM.exe
O4 - HKCU\..\Run: [Microsoft Windows DLL Services Configuration] windir32.exe
O4 - Global Startup: gwum.lnk = C:\Program Files\Gigabyte\Gigabyte Windows Utility Manager\gwum.exe
O4 - Global Startup: EPSON Status Monitor 3 Environment Check 2.lnk = C:\WINDOWS\SYSTEM32\spool\drivers\w32x86\3\E_SRCV02.EXE
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe :tazz: :)
  • 0

Advertisements


#2
twallace

twallace

    New Member

  • Topic Starter
  • Member
  • Pip
  • 4 posts
my ewindo :

---------------------------------------------------------
ewido security suite - Scan report
---------------------------------------------------------

+ Created on: 1:22:27 PM, 10/11/2005
+ Report-Checksum: D65C453B

+ Scan result:

HKLM\SOFTWARE\Classes\CLSID\{0494D0D1-F8E0-41ad-92A3-14154ECE70AC} -> Spyware.MyWay : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{1E432263-6841-4653-8F02-366A2F77E339} -> Spyware.BlazeFind : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{2B96D5CC-C5B5-49A5-A69D-CC0A30F9028C} -> Spyware.MiniBug : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{70BA88C8-DAE8-4CE9-92BB-979C4A75F53B} -> Spyware.GameSpyArcade : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{9FB534E3-67CB-4307-AE0A-9E8B5581BE2C} -> Spyware.WindowsSearchBar : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{A1DD937D-71E1-4BB5-BD5D-1B01B9CB1C2F} -> Spyware.WindowsSearchBar : Cleaned with backup
HKLM\SOFTWARE\Classes\GSDA.GSDACtl\CLSID\\ -> Spyware.GameSpyArcade : Cleaned with backup
HKLM\SOFTWARE\Classes\GSDA.GSDACtl.1\CLSID\\ -> Spyware.GameSpyArcade : Cleaned with backup
HKLM\SOFTWARE\Classes\MiniBugTransporter.MiniBugTransporterX\CLSID\\ -> Spyware.MiniBug : Cleaned with backup
HKLM\SOFTWARE\Classes\MiniBugTransporter.MiniBugTransporterX.1\CLSID\\ -> Spyware.MiniBug : Cleaned with backup
HKLM\SOFTWARE\Classes\QaBar -> Spyware.Adultlinks : Cleaned with backup
HKLM\SOFTWARE\Classes\QaBar\CurVer -> Spyware.Adultlinks : Cleaned with backup
HKLM\SOFTWARE\Classes\WindowsSB.AutoSearch\CLSID\\ -> Spyware.BlazeFind : Cleaned with backup
HKLM\SOFTWARE\Classes\WindowsSB.AutoSearch.1\CLSID\\ -> Spyware.BlazeFind : Cleaned with backup
HKLM\SOFTWARE\Classes\WindowsSB.Band -> Spyware.BlazeFind : Cleaned with backup
HKLM\SOFTWARE\Classes\WindowsSB.Band\CLSID -> Spyware.BlazeFind : Cleaned with backup
HKLM\SOFTWARE\Classes\WindowsSB.Band\CLSID\\ -> Spyware.WindowsSearchBar : Cleaned with backup
HKLM\SOFTWARE\Classes\WindowsSB.Band\CurVer -> Spyware.BlazeFind : Cleaned with backup
HKLM\SOFTWARE\Classes\WindowsSB.Band.1 -> Spyware.BlazeFind : Cleaned with backup
HKLM\SOFTWARE\Classes\WindowsSB.Band.1\CLSID\\ -> Spyware.WindowsSearchBar : Cleaned with backup
HKLM\SOFTWARE\Classes\WindowsSB.EventHandler -> Spyware.BlazeFind : Cleaned with backup
HKLM\SOFTWARE\Classes\WindowsSB.EventHandler\CLSID -> Spyware.BlazeFind : Cleaned with backup
HKLM\SOFTWARE\Classes\WindowsSB.EventHandler\CLSID\\ -> Spyware.WindowsSearchBar : Cleaned with backup
HKLM\SOFTWARE\Classes\WindowsSB.EventHandler\CurVer -> Spyware.BlazeFind : Cleaned with backup
HKLM\SOFTWARE\Classes\WindowsSB.EventHandler.1 -> Spyware.BlazeFind : Cleaned with backup
HKLM\SOFTWARE\Classes\WindowsSB.EventHandler.1\CLSID\\ -> Spyware.WindowsSearchBar : Cleaned with backup
HKLM\SOFTWARE\Innovative Technologies\Advanced Uninstaller\Browser Helper Objects\{0494D0D1-F8E0-41ad-92A3-14154ECE70AC} -> Spyware.MyWay : Cleaned with backup
HKLM\SOFTWARE\Innovative Technologies\Advanced Uninstaller\Browser Helper Objects\{5D60FF48-95BE-4956-B4C6-6BB168A70310} -> Spyware.KeenValue : Cleaned with backup
HKLM\SOFTWARE\Innovative Technologies\Advanced Uninstaller\Browser Helper Objects\{9FB534E3-67CB-4307-AE0A-9E8B5581BE2C} -> Spyware.WindowsSearchBar : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Bargain Buddy -> Spyware.BargainBuddy : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\ISTbarISTbar -> Spyware.HotBar : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Brilliant Digital Entertainment -> Spyware.BrilliantDigital : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Brilliant Digital Entertainment\PROJECTOR -> Spyware.BrilliantDigital : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Brilliant Digital Entertainment\PROJECTOR\casinosky2 -> Spyware.BrilliantDigital : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Brilliant Digital Entertainment\PROJECTOR\casino_skyscraper -> Spyware.BrilliantDigital : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Brilliant Digital Entertainment\PROJECTOR\casino_skyscraper\state -> Spyware.BrilliantDigital : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Brilliant Digital Entertainment\PROJECTOR\e_anywhere -> Spyware.BrilliantDigital : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Brilliant Digital Entertainment\PROJECTOR\e_anywhere\state -> Spyware.BrilliantDigital : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Brilliant Digital Entertainment\PROJECTOR\goldenstarsky -> Spyware.BrilliantDigital : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Brilliant Digital Entertainment\PROJECTOR\goldenstar_sky -> Spyware.BrilliantDigital : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Brilliant Digital Entertainment\PROJECTOR\goldenstar_sky\state -> Spyware.BrilliantDigital : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Brilliant Digital Entertainment\PROJECTOR\GUI -> Spyware.BrilliantDigital : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Brilliant Digital Entertainment\PROJECTOR\reefclub_sky -> Spyware.BrilliantDigital : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Brilliant Digital Entertainment\PROJECTOR\reefclub_sky\state -> Spyware.BrilliantDigital : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Brilliant Digital Entertainment\PROJECTOR\xacm -> Spyware.BrilliantDigital : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Brilliant Digital Entertainment\PROJECTOR\xacm\state -> Spyware.BrilliantDigital : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Brilliant Digital Entertainment\PROJECTOR\xcam -> Spyware.BrilliantDigital : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Cydoor -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Cydoor\Adwr_291 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Cydoor\Adwr_291\Loct_0 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Cydoor\Adwr_291\Loct_0\Level_0 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Cydoor\Adwr_291\Loct_0\Level_1 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Cydoor\Adwr_291\Loct_0\Level_1\Seqn_5006 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Cydoor\Adwr_291\Loct_0\Level_1\Seqn_5083 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Cydoor\Adwr_291\Loct_0\Level_1\Seqn_6084 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Cydoor\Adwr_291\Loct_0\Level_1\Seqn_6089 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Cydoor\Adwr_291\Loct_0\Level_1\Seqn_6220 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Cydoor\Adwr_291\Loct_0\Level_1\Seqn_6406 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Cydoor\Adwr_291\Loct_0\Level_1\Seqn_6409 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Cydoor\Adwr_291\Loct_0\Level_1\Seqn_6415 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Cydoor\Adwr_291\Loct_0\Level_1\Seqn_6423 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Cydoor\Adwr_291\Loct_0\Level_1\Seqn_6519 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Cydoor\Adwr_291\Loct_0\Level_1\Seqn_6665 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Cydoor\Adwr_291\Loct_0\Level_1\Seqn_6728 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Cydoor\Adwr_291\Loct_0\Level_1\Seqn_6760 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Cydoor\Adwr_291\Loct_0\Level_1\Seqn_6797 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Cydoor\Adwr_291\Loct_0\Level_1\Seqn_6798 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Cydoor\Adwr_291\Loct_0\Level_1\Seqn_6799 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Cydoor\Adwr_291\Loct_0\Level_1\Seqn_7098 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Cydoor\Adwr_291\Loct_0\Level_1\Seqn_7206 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Cydoor\Adwr_291\Loct_0\Level_1\Seqn_7207 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Cydoor\Adwr_291\Loct_0\Level_1\Seqn_7377 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Cydoor\Adwr_291\Loct_0\Level_1\Seqn_7940 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Cydoor\Adwr_291\Loct_0\Level_2 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Cydoor\Adwr_291\Loct_1 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Cydoor\Adwr_291\Loct_1\Level_0 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Cydoor\Adwr_291\Loct_1\Level_0\Seqn_5648 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Cydoor\Adwr_291\Loct_1\Level_0\Seqn_6660 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Cydoor\Adwr_291\Loct_1\Level_0\Seqn_6661 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Cydoor\Adwr_291\Loct_1\Level_0\Seqn_7954 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Cydoor\Adwr_291\Loct_2 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Cydoor\Adwr_291\Loct_2\Level_0 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Cydoor\Adwr_291\Loct_2\Level_1 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Cydoor\Adwr_291\Loct_2\Level_1\Seqn_5803 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Cydoor\Adwr_291\Loct_2\Level_1\Seqn_6185 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Cydoor\Adwr_291\Loct_2\Level_1\Seqn_6352 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Cydoor\Adwr_291\Loct_2\Level_1\Seqn_7096 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Cydoor\Adwr_291\Loct_2\Level_1\Seqn_7412 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Cydoor\Adwr_291\Loct_2\Level_2 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Cydoor\Adwr_291\Loct_2\Level_2\Seqn_5060 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Cydoor\Adwr_291\Loct_2\Level_2\Seqn_5661 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Cydoor\Adwr_291\Loct_2\Level_2\Seqn_5912 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Cydoor\Adwr_291\Loct_2\Level_2\Seqn_6321 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Cydoor\Adwr_291\Loct_2\Level_2\Seqn_6634 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Cydoor\Adwr_291\Loct_2\Level_3 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Cydoor\Adwr_291\Loct_2\Level_3\Seqn_6752 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Cydoor Services -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Cydoor Services\Queue -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Cydoor Services\Status -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Cydoor Services\Status\cd_htm -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\HIWIRE -> Spyware.HiWire : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\HIWIRE\khhtfm -> Spyware.HiWire : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\HIWIRE\khhtfm\Gate -> Spyware.HiWire : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\HIWIRE\khhtfm\Registration -> Spyware.HiWire : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\HIWIRE\kyldfm -> Spyware.HiWire : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\HIWIRE\kyldfm\Registration -> Spyware.HiWire : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\HIWIRE\MEDIAMANAGER -> Spyware.HiWire : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\HIWIRE\MEDIAMANAGER\HISTORY -> Spyware.HiWire : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\HIWIRE\MEDIAMANAGER\HISTORY\<Usr ID='19297961'/><Vs ID='2.5.30.US.wjlbfm.Release'/><Third-Party USER-ID='' SESSION-ID=''/><Interface v='g'/> -> Spyware.HiWire : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\HIWIRE\MEDIAMANAGER\REPORT -> Spyware.HiWire : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\HIWIRE\Registration -> Spyware.HiWire : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\HIWIRE\wjlbfm -> Spyware.HiWire : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\HIWIRE\wjlbfm\Gate -> Spyware.HiWire : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\HIWIRE\wjlbfm\Registration -> Spyware.HiWire : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Microsoft\Internet Explorer\Extensions\CmdMapping\\{c95fe080-8f5d-11d2-a20b-00aa003c157a} -> Spyware.Alexa : Cleaned with backup
HKU\S-1-5-21-842925246-436374069-682003330-500\Software\Microsoft\Internet Explorer\MenuExt\Ebates -> Spyware.MoneyMaker : Cleaned with backup
C:\WINDOWS\SYSTEM32\n3tpa1p.dll -> Backdoor.Adbreak.f : Cleaned with backup
C:\WINDOWS\SYSTEM32\windir32.exe -> Backdoor.Aimbot.al : Cleaned with backup
C:\WINDOWS\SYSTEM32\in10b6.dll -> TrojanDropper.Mudrop.m : Cleaned with backup
C:\WINDOWS\SYSTEM32\BO2809040510.exe -> Spyware.VirtualBouncer : Cleaned with backup
C:\WINDOWS\etb\pokapoka70.exe -> Spyware.EliteBar : Cleaned with backup
C:\WINDOWS\etb\xud_70.dll -> TrojanSpy.Small.dj : Cleaned with backup
C:\WINDOWS\Downloaded Program Files\MPX_0826.MP3.EXE -> Spyware.Lop : Cleaned with backup
C:\WINDOWS\Downloaded Program Files\gsda.dll -> Dialer.Generic : Cleaned with backup
C:\WINDOWS\ttil_sbc.exe -> Adware.eZula : Cleaned with backup
C:\Program Files\Srng\SrngInit.exe -> Spyware.ShopNav : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\9175222_1192_1396_1256_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\3148422_1192_1396_4804_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\3541570_1192_1396_4088_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\4786668_1192_1396_6100_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\3017224_1192_1396_5000_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\2820642_1192_1396_5856_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\4325982_1180_1412_5440_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\4391518_1180_1412_4880_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\4457054_1180_1412_6136_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\2296300_1180_1412_3920_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\2820564_1180_1412_3040_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\2886100_1180_1412_5804_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\33557090_1180_1412_3412_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\3017172_1180_1412_4176_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\3082708_1180_1412_5152_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\3148244_1180_1412_5112_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\3213780_1180_1412_4824_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\22088188_1180_1412_6116_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\52627984_1180_1412_4312_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\22219260_1180_1412_5104_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\52759056_1180_1412_2252_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\52824592_1180_1412_4728_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\52890128_1180_1412_2292_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\51513830_1180_1412_4556_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\51579366_1180_1412_6132_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\51644902_1180_1412_5680_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\21367226_1180_1412_6112_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\51775974_1180_1412_5072_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\21498298_1180_1412_5156_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\53479952_1180_1412_5532_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\73140674_1180_1412_5952_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\53611024_1180_1412_5900_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\49023444_1180_1412_4304_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\62654972_1180_1412_5220_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\53086818_1180_1412_5196_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\53938662_1180_1412_5988_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\70060560_1180_1412_540_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\65407444_1180_1412_5192_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\70191632_1180_1412_5304_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\79170044_1180_1412_5276_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\133827168_1180_1412_5336_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\133892704_1180_1412_3712_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\133958240_1180_1412_5676_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\134023776_1180_1412_5736_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\134089312_1180_1412_1840_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\134154848_1180_1412_4100_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\1311012_1180_1412_356_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\2490972_1180_1412_5980_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\2097644_1180_1412_5044_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\1966626_1180_1412_4916_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\3932760_1180_1412_5852_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\2753116_1180_1412_6044_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\2359788_1180_1412_6004_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\2228770_1180_1412_6068_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\4194904_1180_1412_5560_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\3015260_1180_1412_4996_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\2621932_1180_1412_212_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\2490914_1180_1412_4292_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\3867222_1180_1412_5404_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\2163134_1180_1412_4952_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\3408476_1180_1412_4900_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\4325848_1180_1412_3968_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\2165350_1192_1396_4364_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\4131314_1192_1396_5904_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\3606938_1192_1396_4116_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\2755200_1192_1396_4748_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\12978588_1192_1396_6092_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\4589920_1192_1396_4976_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\4196930_1192_1396_4344_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\4262466_1192_1396_4652_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\3541360_1192_1396_4444_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\3279470_1192_1396_5968_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\3541634_1192_1396_4352_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\3934768_1192_1396_5288_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\5769708_1192_1396_5996_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\3541590_1192_1396_4808_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\4524678_1192_1396_5872_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\8653432_1192_1396_2460_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\26741278_1192_1396_4868_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\4786586_1192_1396_3960_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\4196720_1192_1396_1792_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\3934806_1192_1396_5540_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\8194640_1192_1396_5088_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\9243256_1192_1396_4788_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\4590088_1192_1396_4932_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\3803750_1192_1396_4388_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\4065850_1192_1396_4600_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\5441946_1192_1396_4692_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\4524654_1192_1396_3692_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\4917794_1192_1396_3544_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\6031888_1192_1396_5476_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\5704258_1192_1396_3276_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\4655702_1192_1396_5060_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\27855390_1192_1396_5664_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\7211500_1192_1396_4984_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\5179760_1192_1396_4576_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\4721000_1192_1396_5780_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\6752608_1192_1396_5468_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\6818144_1192_1396_4656_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\5441904_1192_1396_1304_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\5835312_1192_1396_4396_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\6883856_1192_1396_4968_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\28117646_1192_1396_4672_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\6032002_1192_1396_5128_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\6818202_1192_1396_4904_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\7932396_1192_1396_5188_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\15862172_1192_1396_3396_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\7473650_1192_1396_3892_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\7539186_1192_1396_4724_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\5638664_1192_1396_4888_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\7801362_1192_1396_5976_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\11405944_1192_1396_4696_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\6097518_1192_1396_4980_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\6359408_1192_1396_5384_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\7670170_1192_1396_5348_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\7211654_1192_1396_5876_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\8653292_1192_1396_6108_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\6490710_1192_1396_1488_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\7211650_1192_1396_5292_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\5966394_1192_1396_4268_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\7080576_1192_1396_5924_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\7014946_1192_1396_6048_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\8522080_1192_1396_1328_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\7014768_1192_1396_4824_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\8391184_1192_1396_5596_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\7604784_1192_1396_5552_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\7211630_1192_1396_4620_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\7408162_1192_1396_4960_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\9177580_1192_1396_2988_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\29231646_1192_1396_2416_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\8456838_1192_1396_4624_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\7670120_1192_1396_5220_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\18352540_1192_1396_4308_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\7801192_1192_1396_4972_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\29690398_1192_1396_4836_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\9964166_1192_1396_4952_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\8784512_1192_1396_312_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\7801490_1192_1396_5508_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\8260182_1192_1396_4436_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\9701728_1192_1396_4496_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\9177730_1192_1396_5388_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\7342684_1192_1396_5840_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\16583012_1192_1396_5644_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\789476_1192_1396_5280_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\983290_1192_1396_6040_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\1573064_1192_1396_4416_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\1638600_1192_1396_4176_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
C:\Documents and Settings\Tim Wallace\Local Settings\Temp\1704136_1192_1396_5520_70.41.tmp -> Spyware.EliteBar : Cleaned with backup
:mozilla.6:C:\Documents and Settings\Tim Wallace\My Documents\Default User\g3gev65g.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.7:C:\Documents and Settings\Tim Wallace\My Documents\Default User\g3gev65g.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.13:C:\Documents and Settings\Tim Wallace\My Documents\Default User\g3gev65g.slt\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.14:C:\Documents and Settings\Tim Wallace\My Documents\Default User\g3gev65g.slt\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.27:C:\Documents and Settings\Tim Wallace\My Documents\Default User\g3gev65g.slt\cookies.txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
:mozilla.35:C:\Documents and Settings\Tim Wallace\My Documents\Default User\g3gev65g.slt\cookies.txt -> Spyware.Cookie.Specificpop : Cleaned with backup
:mozilla.36:C:\Documents and Settings\Tim Wallace\My Documents\Default User\g3gev65g.slt\cookies.txt -> Spyware.Cookie.Specificpop : Cleaned with backup
:mozilla.8:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.Overture : Cleaned with backup
:mozilla.9:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.Overture : Cleaned with backup
:mozilla.23:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.24:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.25:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.26:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.27:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.28:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.29:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.30:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.31:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.32:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.33:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.34:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.35:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.36:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.37:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
:mozilla.38:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.39:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.40:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.41:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.42:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.43:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.44:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.45:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.46:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.47:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.48:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.49:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.50:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
-> : Error during cleaning
:mozilla.52:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.53:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.54:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.55:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.56:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.57:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.58:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.59:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.60:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.61:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.62:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.63:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.64:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.65:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.66:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.67:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.68:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.69:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.70:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.71:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.72:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.73:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.74:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.89:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.90:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.92:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.93:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.94:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.96:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.98:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.99:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.100:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.101:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.102:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.103:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.109:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
:mozilla.111:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
:mozilla.112:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
:mozilla.115:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.116:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.117:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.118:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.121:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.122:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.123:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.Adbrite : Cleaned with backup
:mozilla.124:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.126:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.127:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.135:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.136:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.137:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.138:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.139:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.140:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.141:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.142:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.144:C:\Documents and Settings\Tim Wallace\Application Data\Mozilla\Firefox\Profiles\ndh7d2s4.default\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned w
  • 0

#3
twallace

twallace

    New Member

  • Topic Starter
  • Member
  • Pip
  • 4 posts
Logfile of HijackThis v1.99.1
Scan saved at 1:43:16 PM, on 10/11/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\BySoft FreeRAM\FreeRAM.exe
C:\Program Files\Java\jre1.5.0_02\bin\jucheck.exe
C:\Program Files\Gigabyte\Gigabyte Windows Utility Manager\gwum.exe
C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Program Files\Sophos SWEEP for NT\ICMON.EXE
C:\Program Files\Common Files\Logitech\KHAL\KHALMNPR.EXE
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S10IC2.EXE
C:\Program Files\Common Files\EPSON\EBAPI\SAgent2.exe
C:\Program Files\ewido\security suite\ewidoctrl.exe
C:\Program Files\ewido\security suite\ewidoguard.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Sophos SWEEP for NT\SWNETSUP.EXE
C:\Program Files\Sophos SWEEP for NT\SWEEPSRV.SYS
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Hijackthis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page_bak = http://www.arizona.edu/
R3 - URLSearchHook: (no name) - {1E432263-6841-4653-8F02-366A2F77E339} - (no file)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [BySoft FreeRAM] C:\Program Files\BySoft FreeRAM\FreeRAM.exe
O4 - HKCU\..\Run: [Microsoft Windows DLL Services Configuration] windir32.exe
O4 - Global Startup: gwum.lnk = C:\Program Files\Gigabyte\Gigabyte Windows Utility Manager\gwum.exe
O4 - Global Startup: EPSON Status Monitor 3 Environment Check 2.lnk = C:\WINDOWS\SYSTEM32\spool\drivers\w32x86\3\E_SRCV02.EXE
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
O4 - Global Startup: InterCheck Monitor.LNK = C:\Program Files\Sophos SWEEP for NT\ICMON.EXE
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: MoneySide - {E023F504-0C5A-4750-A1E7-A9046DEA8A21} - C:\Program Files\Microsoft Money\System\mnyviewer.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O23 - Service: EPSON Printer Status Agent2 (EPSONStatusAgent2) - SEIKO EPSON CORPORATION - C:\Program Files\Common Files\EPSON\EBAPI\SAgent2.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido\security suite\ewidoguard.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Unknown owner - %ProgramFiles%\WinPcap\rpcapd.exe" -d -f "%ProgramFiles%\WinPcap\rpcapd.ini (file missing)
O23 - Service: Sophos Anti-Virus Network (SweepNet) - Sophos Plc - C:\Program Files\Sophos SWEEP for NT\SWNETSUP.EXE
O23 - :tazz: Service: Sophos Anti-Virus (SWEEPSRV.SYS) - Sophos Plc - C:\Program Files\Sophos SWEEP for NT\SWEEPSRV.SYS
O23 - Service: TuneUp WinStyler Theme Service (TUWinStylerThemeSvc) - TuneUp Software GmbH - C:\Program Files\TuneUp Utilities 2004\WinStylerThemeSvc.exe

:) :woot:
  • 0

#4
twallace

twallace

    New Member

  • Topic Starter
  • Member
  • Pip
  • 4 posts
My hijack this after instructions were followed befor posting in the forums
Thanks fellas
- Tim Wallace



Logfile of HijackThis v1.99.1
Scan saved at 3:53:46 PM, on 10/17/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Java\jre1.5.0_02\bin\jucheck.exe
C:\Program Files\BySoft FreeRAM\FreeRAM.exe
C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe
C:\Program Files\Gigabyte\Gigabyte Windows Utility Manager\gwum.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Program Files\Sophos SWEEP for NT\ICMON.EXE
C:\Program Files\Common Files\Logitech\KHAL\KHALMNPR.EXE
C:\Program Files\Common Files\EPSON\EBAPI\SAgent2.exe
C:\Program Files\ewido\security suite\ewidoctrl.exe
C:\Program Files\ewido\security suite\ewidoguard.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Sophos SWEEP for NT\SWNETSUP.EXE
C:\Program Files\Sophos SWEEP for NT\SWEEPSRV.SYS
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Winamp\Winamp.exe
C:\Program Files\Lavasoft\Ad-Aware SE Personal\Ad-Aware.exe
C:\Program Files\Hijackthis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page_bak = http://www.arizona.edu/
R3 - URLSearchHook: (no name) - {1E432263-6841-4653-8F02-366A2F77E339} - (no file)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [THGuard] "C:\Program Files\TrojanHunter 4.2\THGuard.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [BySoft FreeRAM] C:\Program Files\BySoft FreeRAM\FreeRAM.exe
O4 - HKCU\..\Run: [updateMgr] C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_0_3
O4 - Global Startup: gwum.lnk = C:\Program Files\Gigabyte\Gigabyte Windows Utility Manager\gwum.exe
O4 - Global Startup: EPSON Status Monitor 3 Environment Check 2.lnk = C:\WINDOWS\SYSTEM32\spool\drivers\w32x86\3\E_SRCV02.EXE
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
O4 - Global Startup: InterCheck Monitor.LNK = C:\Program Files\Sophos SWEEP for NT\ICMON.EXE
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: MoneySide - {E023F504-0C5A-4750-A1E7-A9046DEA8A21} - C:\Program Files\Microsoft Money\System\mnyviewer.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O23 - Service: EPSON Printer Status Agent2 (EPSONStatusAgent2) - SEIKO EPSON CORPORATION - C:\Program Files\Common Files\EPSON\EBAPI\SAgent2.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido\security suite\ewidoguard.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Unknown owner - %ProgramFiles%\WinPcap\rpcapd.exe" -d -f "%ProgramFiles%\WinPcap\rpcapd.ini (file missing)
O23 - Service: Sophos Anti-Virus Network (SweepNet) - Sophos Plc - C:\Program Files\Sophos SWEEP for NT\SWNETSUP.EXE
O23 - Service: Sophos Anti-Virus (SWEEPSRV.SYS) - Sophos Plc - C:\Program Files\Sophos SWEEP for NT\SWEEPSRV.SYS
O23 - Service: TuneUp WinStyler Theme Service (TUWinStylerThemeSvc) - TuneUp Software GmbH - C:\Program Files\TuneUp Utilities 2004\WinStylerThemeSvc.exe

:tazz: :) :woot:
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP