Excal,
I still have the registry entries.
I ran Ewido again in safe mode today (11/15/2005). The log is below - just some cookies
Also, I posted a log from when I first ran Ewido (on 11/7/2005) which shows (what appear to be) some *other* cws registry entries and other bad stuff.
XXXX Start of most recent Ewido log (11/15/2005)---------------------------------------------------------
ewido security suite - Scan report
--------------------------------------------------------
+ Created on: 11:36:12 PM, 11/15/2005
+ Report-Checksum: 626AA5E7
+ Scan result:
:mozilla.16:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\g4vhv82i.default\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.27:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\g4vhv82i.default\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.28:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\g4vhv82i.default\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.42:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\g4vhv82i.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.43:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\g4vhv82i.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.46:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\g4vhv82i.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.47:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\g4vhv82i.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.48:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\g4vhv82i.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.49:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\g4vhv82i.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.50:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\g4vhv82i.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.51:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\g4vhv82i.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
::Report End
XXXX End of most recent Ewido log (11/15/2005)XXXX Start of previous Ewido log (11/7/2005)---------------------------------------------------------
ewido security suite - Scan report
---------------------------------------------------------
+ Created on: 1:42:18 AM, 11/7/2005
+ Report-Checksum: FDB7512A
+ Scan result:
C:\Program Files\Intuit\COBackup.exe -> Heuristic.Win32.Dialer : Ignored
[I think this is OK] HKLM\SOFTWARE\Classes\CLSID\{2FB10B1F-E342-08A1-CBAA-D4A2CD2ABAC6} -> Spyware.CoolWebSearch : Cleaned without backup
HKLM\SOFTWARE\Classes\CLSID\{52CA0FCE-F9E0-2125-6CA6-2627141A47E9} -> Spyware.CoolWebSearch : Cleaned without backup
HKLM\SOFTWARE\Classes\CLSID\{5FA0CF1E-5FF7-5212-6D7D-5710E683BABB} -> Spyware.CoolWebSearch : Cleaned without backup
HKLM\SOFTWARE\Classes\CLSID\{7EFCA545-7AB8-61BF-D7DE-AEA89256912C} -> Spyware.CoolWebSearch : Cleaned without backup
HKLM\SOFTWARE\Classes\CLSID\{81AE8953-3335-A1BB-5174-F82625372B4E} -> Spyware.CoolWebSearch : Cleaned without backup
HKLM\SOFTWARE\Classes\CLSID\{9D7705A4-9543-9869-8249-F62AC961BDA5} -> Spyware.CoolWebSearch : Cleaned without backup
HKLM\SOFTWARE\Classes\CLSID\{BCA18F7D-4CAB-D300-286E-432722FFB0FB} -> Spyware.CoolWebSearch : Cleaned without backup
C:\Program Files\PestPatrol\Quarantine\20050730024420.zip/Documents and Settings/Owner/Cookies/owner@2o7[2].txt -> Spyware.Cookie.2o7 : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20050730024420.zip/Documents and Settings/Owner/Cookies/owner@casalemedia[2].txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20050730024420.zip/Documents and Settings/Owner/Cookies/
[email protected][1].txt -> Spyware.Cookie.Bridgetrack : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20050730024420.zip/Documents and Settings/Owner/Cookies/
[email protected][2].txt -> Spyware.Cookie.Clickzs : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20050730024420.zip/Documents and Settings/Owner/Cookies/owner@questionmarket[1].txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20050730024420.zip/Documents and Settings/Owner/Cookies/owner@serving-sys[2].txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20050730024420.zip/Documents and Settings/Owner/Cookies/owner@spylog[1].txt -> Spyware.Cookie.Spylog : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20050730024420.zip/Documents and Settings/Owner/Cookies/owner@tribalfusion[2].txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20050730024420.zip/Documents and Settings/Owner/Cookies/
[email protected][1].txt -> Spyware.Cookie.Adserver : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20051101232212.zip/Documents and Settings/Owner/Cookies/owner@2o7[2].txt -> Spyware.Cookie.2o7 : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20051101232212.zip/Documents and Settings/Owner/Cookies/owner@advertising[1].txt -> Spyware.Cookie.Advertising : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20051101232212.zip/Documents and Settings/Owner/Cookies/owner@atdmt[1].txt -> Spyware.Cookie.Atdmt : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20051101232212.zip/Documents and Settings/Owner/Cookies/
[email protected][1].txt -> Spyware.Cookie.Bridgetrack : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20051101232212.zip/Documents and Settings/Owner/Cookies/
[email protected][1].txt -> Spyware.Cookie.Coremetrics : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20051101232212.zip/Documents and Settings/Owner/Cookies/owner@doubleclick[1].txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20051101232212.zip/Documents and Settings/Owner/Cookies/owner@hitbox[2].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20051101232212.zip/Documents and Settings/Owner/Cookies/owner@mediaplex[1].txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20051101232212.zip/Documents and Settings/Owner/Cookies/owner@questionmarket[2].txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20051101232212.zip/Documents and Settings/Owner/Cookies/
[email protected][1].txt -> Spyware.Cookie.Advertising : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20051102014500.zip/Documents and Settings/Owner/Cookies/owner@com[2].txt -> Spyware.Cookie.Com : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20051106234002.zip/Documents and Settings/Owner/Cookies/owner@atdmt[1].txt -> Spyware.Cookie.Atdmt : Cleaned with backup
C:\Program Files\PestPatrol\Quarantine\20051106234002.zip/Documents and Settings/Owner/Cookies/owner@tradedoubler[1].txt -> Spyware.Cookie.Tradedoubler : Cleaned with backup
C:\WINDOWS\aucfg.ini:hciar -> TrojanDownloader.Agent.bc : Cleaned without backup
C:\WINDOWS\aucfg.ini:hmysl -> TrojanDownloader.Agent.bq : Cleaned without backup
C:\WINDOWS\aucfg.ini:jpzml -> TrojanDownloader.Agent.bq : Cleaned without backup
C:\WINDOWS\Blue Lace 16.bmp:dpjrhg -> TrojanDownloader.Agent.bc : Cleaned without backup
C:\WINDOWS\Blue Lace 16.bmp:dydcx -> TrojanDownloader.Agent.bc : Cleaned without backup
C:\WINDOWS\Blue Lace 16.bmp:vaosj -> TrojanDownloader.Agent.bq : Cleaned without backup
C:\WINDOWS\cdplayer.ini:hsiti -> TrojanDownloader.Agent.bc : Cleaned without backup
C:\WINDOWS\cdplayer.ini:wyuhb -> TrojanDownloader.Agent.bq : Cleaned without backup
C:\WINDOWS\CleaningLab.INI:wqcxji -> Trojan.Agent.bi : Cleaned without backup
C:\WINDOWS\Coffee Bean.bmp:oaguu -> TrojanDownloader.Agent.bq : Cleaned without backup
C:\WINDOWS\Coffee Bean.bmp:oruce -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\control.ini:cwara -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\control.ini:sllme -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\cpqastat.ini:zpwen -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\desktop.ini:mkctq -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\doom3.ini:avbwpc -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\Downloaded Program Files\gsda.dll.tcf -> Dialer.Generic : Cleaned with backup
C:\WINDOWS\earnmoney.ico:iytev -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\elkla.dat:swucrn -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\EngineExe.INI:yhzkj -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\eReg.dat:kqfsj -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\eReg.dat:miawk -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\explorer.scf:drsce -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\FeatherTexture.bmp:dooye -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\FeatherTexture.bmp:pmxrg -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\FeatherTexture.bmp:qzpvt -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\Greenstone.bmp:kipesb -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\Greenstone.bmp:lspcl -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\Greenstone.bmp:qgvwut -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\intuprof.ini:cbarud -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\intuprof.ini:ljvxd -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\INTURS.DAT:yppjpa -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\INTURS.DAT:ztukq -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\kodakpcd.Owner.ini:aooun -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\lmijntb.ini:tbpsn -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\matchnet.ico:tzdry -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\matchnet.ico:vcvrhc -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\mgxoschk.ini:ncark -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\ModemLog_Lucent Win Modem.txt:manwag -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\ModemLog_Lucent Win Modem.txt:oekqd -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\msoffice.ini:ysznw -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\netflix.ico:iutck -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\netflix.ico:qddjh -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\netflix.ico:qzoqx -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\nsreg.dat:xrkgsu -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\ODBC.INI:jtcfs -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\ODBC.INI:lqvrfi -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\ODBC.INI:ncaluh -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\ODBCINST.INI:uxterd -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\orun32.ini:eyeza -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\orun32.ini:fphny -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\orun32.ini:fvkqor -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\orun32.ini:lwpai -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\orun32.ini:mbrpw -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\orun32.isu:orjrc -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\PanelExe.INI:iqgcce -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\Prairie Wind.bmp:ajzhwo -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\QUICKEN.INI:risle -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\QUICKEN.INI:wfzbp -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\qwimp.ini:mwhqt -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\readme.ico:gwjulx -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\Readme.txt:uwacs -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\Readme.txt:ytqic -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\REGLOCS.OLD:mtfvx -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\Rhododendron.bmp:hgcul -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\Rhododendron.bmp:zzujf -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\River Sumida.bmp:neqer -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\Santa Fe Stucco.bmp:dwmnmr -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\Santa Fe Stucco.bmp:sxvsvb -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\setupapi.log.0.old:odvzvn -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\setupapi.log.0.old:zqlgk -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\SetupPestPatrolBeta.mif:cksmb -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\Soap Bubbles.bmp:tqnclq -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\tiscali_it_2.ico:pbuly -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\tiscali_it_2.ico:wekaws -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\TOC Printer.INI:fiala -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\TOC Printer.INI:frrok -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\vb.ini:auyma -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\vb.ini:avabc -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\vb.ini:pieelq -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\vb.ini:qbdew -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\vb.ini:qtvzh -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\vbaddin.ini:kvpbo -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\VTruck1.ini:kqmuk -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\VTruck1.ini:nnvqb -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\win.ini:loduz -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\win.ini:lvkxx -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\WININIT.INI:lkveoq -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\WININIT.INI:qrior -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\winnt.bmp:hiogn -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\winnt.bmp:pvipsx -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\winnt.bmp:tueis -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\winnt.bmp:wsngd -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\winnt.bmp:xlzqa -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\winnt256.bmp:xdcex -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\WMSysPrx.prx:glsxdb -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\Zapotec.bmp:bruyo -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\Zapotec.bmp:mbdcz -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\Zapotec.bmp:vcabb -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\Zapotec.bmp:ycgcj -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\Zapotec.bmp:ylldxd -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:abglw -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\_default.pif:acnvi -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\_default.pif:actub -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\_default.pif:aczfu -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\_default.pif:ajptl -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\_default.pif:amkmi -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\_default.pif:anmwn -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\_default.pif:arzlu -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:axgbi -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:axvooa -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:axxcv -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:bdrng -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:bhqyv -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:bkmwi -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\_default.pif:blrpl -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\_default.pif:bnzpq -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:bosnc -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:bpkma -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:bqzii -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\_default.pif:ccdsg -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\_default.pif:cjliqu -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default.pif:ckzkg -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:cxgnc -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\_default.pif:cyjwzl -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default.pif:dbxoj -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\_default.pif:dbxojd -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:dgqvfo -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:dktmi -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:dpbyco -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default.pif:drvum -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\_default.pif:dwicr -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\_default.pif:eblzk -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\_default.pif:eiiet -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\_default.pif:elxoe -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:enhgq -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\_default.pif:eogkg -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:eogkgx -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:eohoz -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:euxfe -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\_default.pif:faxdzk -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:fbvhv -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:fnwiwz -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:fptsh -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\_default.pif:fsgyg -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\_default.pif:fsxyr -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:fzrfz -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:gdqmb -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:geaqxu -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:gghib -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:ggmgc -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\_default.pif:gikrk -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\_default.pif:glmegq -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:gntwm -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:gqszc -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:gsmnwi -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:hgqkr -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:hroep -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\_default.pif:hslvoq -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:hxkfr -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\_default.pif:hzqrt -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:ibbjjv -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:iidek -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\_default.pif:ikbpd -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\_default.pif:iqcoh -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\_default.pif:isapz -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:iubwf -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:ivyjo -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:iyljw -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:jdphm -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\_default.pif:jggoy -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\_default.pif:jjnft -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\_default.pif:jnznb -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\_default.pif:kixxc -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:kjgwm -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\_default.pif:kjzhg -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:kkftth -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:kljuf -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\_default.pif:kpkzi -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\_default.pif:kpsix -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:kqioy -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\_default.pif:kwmvq -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\_default.pif:kwpkwp -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\_default.pif:kylim -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\_default.pif:kztsu -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:lcket -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:lewex -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:lnuii -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:lpxhj -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:lvzof -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:majzu -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:mfmdr -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:mfpto -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:mksxgd -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default.pif:mlzxh -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\_default.pif:mphds -> TrojanDownloader.Agent.bc : Cleaned with backup
::Report End
XXXX End of previous Ewido log (11/7/2005)