Ok, I've completed the task...it took a while. Am I healed yet? Again, thank you for guiding me in this problem.
Thanks
nakaz
-------------------------------------------------------------------------------
KASPERSKY ON-LINE SCANNER REPORT
Thursday, December 01, 2005 23:58:13
Operating System: Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600)
Kaspersky On-line Scanner version: 5.0.67.0
Kaspersky Anti-Virus database last update: 2/12/2005
Kaspersky Anti-Virus database records: 162754
-------------------------------------------------------------------------------
Scan Settings:
Scan using the following antivirus database: extended
Scan Archives: true
Scan Mail Bases: true
Scan Target - My Computer:
A:\
C:\
D:\
Scan Statistics:
Total number of scanned objects: 43065
Number of viruses found: 13
Number of infected objects: 437
Number of suspicious objects: 0
Duration of the scan process: 3028 sec
Infected Object Name - Virus Name
C:\Documents and Settings\Owner\Local Settings\Temp\nusm.dat Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\Program Files\Support.com\backup\ho\hosts\34392_5d25641c9_/hosts Infected: Trojan.Win32.Qhost.r
C:\Program Files\Support.com\backup\ho\hosts\34392_5d25641c9_ Infected: Trojan.Win32.Qhost.r
C:\Program Files\Support.com\backup\ho\hosts\35606_566016dff_/hosts Infected: Trojan.Win32.Qhost.r
C:\Program Files\Support.com\backup\ho\hosts\35606_566016dff_ Infected: Trojan.Win32.Qhost.r
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP449\A0139945.exe Infected: Trojan-Clicker.Win32.Agent.bc
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP453\A0140477.exe Infected: Trojan-Clicker.Win32.Agent.bc
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP453\A0140478.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP454\A0140492.exe Infected: Trojan-Clicker.Win32.Agent.bc
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP454\A0140496.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP455\A0140508.exe Infected: Trojan-Clicker.Win32.Agent.bc
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP455\A0140509.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP456\A0140526.exe Infected: Trojan-Clicker.Win32.Agent.bc
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP457\A0141543.exe Infected: Trojan-Clicker.Win32.Agent.bc
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP457\A0141544.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP458\A0141571.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP459\A0141593.exe Infected: Trojan-Clicker.Win32.Agent.bc
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP459\A0141594.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP459\A0141608.exe Infected: Trojan-Clicker.Win32.Agent.bc
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP459\A0141609.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP461\A0141633.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP462\A0141650.exe Infected: Trojan-Clicker.Win32.Agent.bc
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP462\A0141653.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP462\A0142648.exe Infected: Trojan-Clicker.Win32.Agent.bc
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP462\A0142649.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP462\A0142659.exe Infected: Trojan-Clicker.Win32.Agent.bc
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP462\A0142660.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP462\A0142665.exe Infected: Trojan-Clicker.Win32.Agent.bc
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP462\A0149687.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP462\A0149688.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP463\A0149736.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151792.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151793.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151794.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151795.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151796.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151797.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151798.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151799.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151800.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151801.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151802.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151803.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151804.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151805.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151806.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151807.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151808.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151809.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151810.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151811.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151812.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151813.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151814.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151815.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151816.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151817.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151818.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151819.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151820.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151821.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151822.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151823.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151824.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151825.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151826.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151827.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151828.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151829.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151830.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151831.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151832.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151833.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151834.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151835.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151836.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151837.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151838.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151839.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151840.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151841.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151842.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151843.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151844.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151845.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151846.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151847.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151848.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151849.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151850.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151851.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151852.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151853.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151854.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151855.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151856.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151857.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151858.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151859.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151860.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151861.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151862.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151863.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151864.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151865.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151866.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151867.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151868.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151869.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151870.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151871.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151872.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151873.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151874.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151875.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151876.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151877.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151878.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151879.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151880.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151881.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151882.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151883.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151884.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151885.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151886.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151887.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151888.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151889.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151890.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151891.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151892.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151893.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151894.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151895.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151896.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151897.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151898.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151899.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151900.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151901.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151902.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151903.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151904.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151905.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151906.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151907.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151908.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151909.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151910.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151911.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151912.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151913.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151914.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151915.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151916.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151917.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151918.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151919.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151920.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151921.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151922.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151923.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151924.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151925.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151926.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151927.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151928.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151929.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151930.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151931.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151932.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151933.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151934.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151935.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151936.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151937.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151938.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151939.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151940.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151941.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151942.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151943.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151944.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151945.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151946.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151947.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151948.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151949.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151950.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151951.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151952.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151953.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151954.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151955.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151956.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151957.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151958.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151959.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151960.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151961.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151962.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151963.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151964.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151965.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151966.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151967.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151968.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151969.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151970.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151971.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151972.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151973.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151974.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151975.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151976.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151977.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151978.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151979.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151980.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151981.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151982.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151983.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151984.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151985.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151986.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151987.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151988.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151989.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151990.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151991.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151992.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151993.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151994.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151995.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151996.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151997.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151998.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0151999.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0152000.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0152001.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0152002.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0152003.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0152004.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0152005.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0152006.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0152007.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0152008.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0152009.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0152010.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0152011.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0152012.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0152013.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0152014.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0152015.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0152016.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0152017.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0152018.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0152019.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0152020.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0152021.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0152022.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0152023.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0152024.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0152025.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0152026.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0152027.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0152028.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0152029.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0152030.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0152031.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0152032.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0152033.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0152034.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0152035.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0152036.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0152037.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0152038.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0152039.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0152040.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0152041.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0152042.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0152043.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0152044.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0152045.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0152046.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0152047.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0152048.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0152049.exe Infected: Trojan-Spy.Win32.Agent.l
C:\System Volume Information\_restore{1920DD05-C3B3-4337-B7AE-8CBB7597E6CD}\RP464\A0152050.exe Infected: Trojan-Spy.Win32.Agent.l
C:\WINNT\accom.exe Infected: Trojan-Spy.Win32.Agent.l
C:\WINNT\addins\dbftp.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\addins\exptapi.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\addins\waveweb.exe Infected: Trojan-Downloader.Win32.Virtumonde.f
C:\WINNT\AppPatch\acvga.exe Infected: Trojan-Clicker.Win32.Agent.bc
C:\WINNT\AppPatch\bindrv.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\AppPatch\binvga.exe Infected: Trojan-Downloader.Win32.Virtumonde.f
C:\WINNT\AppPatch\olebin.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\AppPatch\playas.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\AppPatch\runw.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\AppPatch\srvtapi.exe Infected: Trojan-Clicker.Win32.Agent.bc
C:\WINNT\AppPatch\utilftp.exe Infected: Trojan-Downloader.Win32.Virtumonde.f
C:\WINNT\assembly\dnsmsvc.exe Infected: Trojan-Spy.Win32.Agent.l
C:\WINNT\assembly\dvdtapi.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\assembly\faxbin.exe Infected: Trojan-Spy.Win32.Agent.bo
C:\WINNT\assembly\GAC\srvav.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\assembly\temp\iissrv.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\assembly\temp\waveinfo.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\bakbas.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\cabplay.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\Config\addisk.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\Config\fontftp.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\Config\mp3ap.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\Config\msvcsys.exe Infected: Trojan-Dropper.Win32.Agent.fd
C:\WINNT\Config\olevb.exe Infected: Trojan-Clicker.Win32.Agent.bc
C:\WINNT\Config\pscmd.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\Config\snet.exe Infected: Trojan-Downloader.Win32.Virtumonde.a
C:\WINNT\Config\vbvss.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.j
C:\WINNT\Config\vgaxml.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\Cursors\acfont.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\Cursors\antimp3.exe Infected: Trojan-Downloader.Win32.Virtumonde.f
C:\WINNT\Cursors\avmp3.exe Infected: Trojan-Spy.Win32.Agent.l
C:\WINNT\Cursors\info.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.j
C:\WINNT\Cursors\libfax.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\Cursors\msvcc.exe Infected: Trojan-Downloader.Win32.Virtumonde.f
C:\WINNT\Cursors\olekey.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\Cursors\srvcab.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\Driver Cache\javafont.exe Infected: Trojan-Downloader.Win32.Virtumonde.f
C:\WINNT\Driver Cache\tcphard.exe Infected: Trojan-Clicker.Win32.Agent.bc
C:\WINNT\drvsys.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.j
C:\WINNT\Fonts\anticr.exe Infected: Trojan-Downloader.Win32.Virtumonde.f
C:\WINNT\Fonts\astask.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\Fonts\basjava.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\Fonts\drvvss.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\Fonts\fontwin.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\Fonts\ipexp.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\Fonts\nutas.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\Fonts\runtask.exe Infected: Trojan-Downloader.Win32.Virtumonde.f
C:\WINNT\Fonts\sun.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.f
C:\WINNT\Fonts\utilcom.exe Infected: Trojan-Downloader.Win32.Virtumonde.f
C:\WINNT\Help\expwms.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\Help\mui\040d\netvga.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\Help\mui\040e\svcac.exe Infected: Trojan-Downloader.Win32.Virtumonde.f
C:\WINNT\Help\mui\0816\ipkb.exe Infected: Trojan-Downloader.Win32.Virtumonde.f
C:\WINNT\Help\SBSI\avvss.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\Help\SBSI\dnshard.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\Help\SBSI\logxml.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\Help\SBSI\odbcdrv.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\Help\SBSI\playsvr.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\Help\SBSI\tapidrv.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\Help\starter\disk.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\Help\starter\mseula.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\Help\svctapi.exe Infected: Trojan-Spy.Win32.Agent.l
C:\WINNT\iisole.exe Infected: Trojan-Downloader.Win32.Virtumonde.a
C:\WINNT\inf\antiad.exe Infected: Trojan-Spy.Win32.Agent.l
C:\WINNT\inf\dllps.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\inf\eulaftp.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\inf\iphard.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\inf\msvc.exe Infected: Trojan-Downloader.Win32.Virtumonde.f
C:\WINNT\inf\pcsrv.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\inf\srvdos.exe Infected: Trojan-Downloader.Win32.Virtumonde.f
C:\WINNT\inf\sysdos.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\inf\un.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\java\classes\dosav.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.j
C:\WINNT\java\classes\hardmc.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\java\hardwin.exe Infected: Trojan-Downloader.Win32.Virtumonde.f
C:\WINNT\java\Packages\adreg.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\java\Packages\antilog.exe Infected: Trojan-Downloader.Win32.Virtumonde.f
C:\WINNT\java\Packages\sysplay.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\java\Packages\xmliis.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\java\rasun.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\java\xmlhard.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\msagent\chars\aslog.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\msagent\chars\asnut.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\msagent\chars\ftpms.exe Infected: Trojan-Spy.Win32.Agent.l
C:\WINNT\msagent\chars\mshard.exe Infected: Trojan-Clicker.Win32.Agent.bc
C:\WINNT\msagent\chars\netutil.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\msagent\svcmfc.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\netlib.exe Infected: Trojan-Spy.Win32.Agent.l
C:\WINNT\nutkb.exe Infected: Trojan-Downloader.Win32.Virtumonde.f
C:\WINNT\Registration\adsys.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\Registration\coms.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.j
C:\WINNT\Registration\mp3.exe Infected: Trojan-Downloader.Win32.Virtumonde.f
C:\WINNT\Registration\olewms.exe Infected: Trojan-Downloader.Win32.Virtumonde.f
C:\WINNT\Registration\utilps.exe Infected: Trojan-Spy.Win32.Agent.l
C:\WINNT\repair\accexp.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\repair\accmfc.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\repair\adodbc.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.j
C:\WINNT\repair\avdrv.exe Infected: Trojan-Downloader.Win32.Virtumonde.f
C:\WINNT\repair\inetvb.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\repair\infoexp.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\repair\shard.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\repair\taskiis.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\security\Database\infomsvc.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\security\Database\sysav.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\security\Database\vssmp3.exe Infected: Trojan-Downloader.Win32.Virtumonde.f
C:\WINNT\security\logs\catdisk.exe Infected: Trojan-Downloader.Win32.Virtumonde.f
C:\WINNT\security\logs\mctask.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\security\logs\mfcreg.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\security\raslib.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\ServicePackFiles\accwave.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\ServicePackFiles\antiinet.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\ServicePackFiles\cabpc.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\ServicePackFiles\dllsys.exe Infected: Trojan-Downloader.Win32.Virtumonde.f
C:\WINNT\ServicePackFiles\expplay.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.j
C:\WINNT\ServicePackFiles\exprun.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\ServicePackFiles\javaimg.exe Infected: Trojan-Downloader.Win32.Virtumonde.f
C:\WINNT\ServicePackFiles\libabr.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\ServicePackFiles\playinet.exe Infected: Trojan-Downloader.Win32.Virtumonde.f
C:\WINNT\ServicePackFiles\svcdrv.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\ServicePackFiles\vssac.exe Infected: Trojan-Downloader.Win32.Virtumonde.f
C:\WINNT\svcdb.exe Infected: Trojan-Spy.Win32.Agent.bo
C:\WINNT\system\bascom.exe Infected: Trojan-Downloader.Win32.Virtumonde.f
C:\WINNT\system\mp3com.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\system\msun.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\system\pcvga.exe Infected: Trojan-Clicker.Win32.Agent.bc
C:\WINNT\system32\1025\libdoc.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\system32\bkinst.exe Infected: Trojan-Downloader.Win32.Virtumonde.d
C:\WINNT\system32\CatRoot\antixml.exe Infected: Trojan-Downloader.Win32.Virtumonde.f
C:\WINNT\system32\CatRoot\javaplay.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\system32\ias\accat.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\system32\ias\dnsdisk.exe Infected: Trojan-Clicker.Win32.Agent.bc
C:\WINNT\system32\usmt\iiss.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\Tasks\aceula.exe Infected: Trojan-Spy.Win32.Agent.l
C:\WINNT\Tasks\ip.exe Infected: Trojan-Spy.Win32.Agent.l
C:\WINNT\UnstSA2.exe Infected: Trojan-Dropper.Win32.Delf.z
C:\WINNT\vssdrv.exe Infected: Trojan-Clicker.Win32.Agent.bc
C:\WINNT\Web\dbac.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\Web\hardodbc.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.j
C:\WINNT\Web\msvckb.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\Web\nutinfo.exe Infected: Trojan-Spy.Win32.Agent.l
C:\WINNT\Web\printers\infoinet.exe Infected: Trojan-Downloader.Win32.Virtumonde.f
C:\WINNT\Web\rasmp3.exe Infected: not-a-virus:AdWare.Win32.Virtumonde.m
C:\WINNT\Web\srvvga.exe Infected: Trojan-Downloader.Win32.Virtumonde.f
C:\WINNT\Web\utillib.exe Infected: Trojan-Clicker.Win32.Agent.bc
C:\WINNT\wsem217.dll Infected: Trojan-Downloader.Win32.Dyfuca.cn
C:\WINNT\xmls.exe Infected: Trojan-Downloader.Win32.Virtumonde.f
Scan process completed.
Logfile of HijackThis v1.99.1
Scan saved at 11:59:36 PM, on 12/1/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINNT\System32\smss.exe
C:\WINNT\system32\winlogon.exe
C:\WINNT\system32\services.exe
C:\WINNT\system32\lsass.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\System32\svchost.exe
C:\WINNT\system32\spoolsv.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINNT\System32\Ati2evxx.exe
C:\Program Files\Common Files\Command Software\dvpapi.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
C:\WINNT\Explorer.EXE
C:\WINNT\system32\wscntfy.exe
C:\WINNT\system\msun.exe
C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\WINNT\GWMDMMSG.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\WINNT\GWHotKey.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe
C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe
C:\Program Files\Support.com\bin\tgcmd.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\QUICKENW\QAGENT.EXE
C:\Program Files\Symantec\LiveUpdate\ALUNOTIFY.EXE
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\QuickTime\qttask.exe
C:\WINNT\system32\mrtMngr.EXE
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Documents and Settings\Owner\Desktop\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.comcast.net/R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.gateway.netR0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.gateway.netR1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost;<local>
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Freedom Popup Killer - {3C060EA2-E6A9-4E49-A530-D4657B8C449A} - C:\Program Files\Zero Knowledge\Freedom\pkR.dll
O2 - BHO: Freedom BHO - {56071E0D-C61B-11D3-B41C-00E02927A304} - C:\Program Files\Zero Knowledge\Freedom\FreeBHOR.dll
O2 - BHO: CATLEvents Object - {BB54DE33-E539-4749-BFAC-CC49617E8F2A} - C:\DOCUME~1\Owner\LOCALS~1\Temp\nusm.dat
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe
O4 - HKLM\..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [GWMDMMSG] GWMDMMSG.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [GWMDMpi] C:\WINNT\GWMDMpi.exe
O4 - HKLM\..\Run: [Multi-function Keyboard] GWHotKey.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [ccRegVfy] "C:\Program Files\Common Files\Symantec Shared\ccRegVfy.exe"
O4 - HKLM\..\Run: [AdaptecDirectCD] "C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe"
O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe
O4 - HKLM\