Ok here are the ewido results:
ewido security suite - Scan report
---------------------------------------------------------
+ Created on: 12:14:30 AM, 11/22/2005
+ Report-Checksum: 94B9A304
+ Scan result:
HKU\S-1-5-21-57989841-1993962763-854245398-1003\Software\Adverts -> Spyware.CoolWebSearch : Cleaned with backup
HKU\S-1-5-21-57989841-1993962763-854245398-1003\Software\IST -> Spyware.ISTBar : Cleaned with backup
C:\WINDOWS\SYSTEM\krec32\keys32.dll -> TrojanSpy.KBMan : Cleaned with backup
C:\WINDOWS\SYSTEM\Update_Hosts.DLL -> Spyware.IGetNet : Cleaned with backup
C:\WINDOWS\SYSTEM\mamc0m.dll -> TrojanDownloader.Rameh.a : Cleaned with backup
C:\WINDOWS\SYSTEM\GrlNt0i.dll -> TrojanDownloader.Rameh.a : Cleaned with backup
C:\WINDOWS\SYSTEM\Ud3rT0n5.dll -> TrojanDownloader.Rameh.a : Cleaned with backup
C:\WINDOWS\TEMP\Sentry.cab/Sentry.exe -> TrojanDownloader.Stubby.b : Cleaned with backup
C:\WINDOWS\TEMP\Sentry.exe -> TrojanDownloader.Stubby.b : Cleaned with backup
C:\WINDOWS\TEMP\ICD3.tmp\btiein.dll -> TrojanDownloader.QDown.w : Cleaned with backup
C:\WINDOWS\TEMP\ICD4.tmp\btiein.dll -> TrojanDownloader.QDown.w : Cleaned with backup
C:\WINDOWS\TEMP\ICD5.tmp\btiein.dll -> TrojanDownloader.QDown.w : Cleaned with backup
C:\WINDOWS\TEMP\ICD6.tmp\btiein.dll -> TrojanDownloader.QDown.w : Cleaned with backup
C:\WINDOWS\Downloaded Program Files\CONFLICT.1\btiein.dll -> TrojanDownloader.QDown.w : Cleaned with backup
C:\WINDOWS\Downloaded Program Files\btiein.dll -> TrojanDownloader.QDown.w : Cleaned with backup
C:\WINDOWS\Downloaded Program Files\WUInst.dll -> Adware.SaveNow : Cleaned with backup
C:\WINDOWS\Temporary Internet Files\Content.IE5\6JA7SDSV\btiein[1].cab/btiein.dll -> TrojanDownloader.QDown.w : Cleaned with backup
C:\WINDOWS\Temporary Internet Files\Content.IE5\O9AROH6R\680[1].htm -> Spyware.BookedSpace : Cleaned with backup
C:\WINDOWS\Temporary Internet Files\Content.IE5\O9AROH6R\500[1].htm -> Spyware.BookedSpace : Cleaned with backup
C:\WINDOWS\Cookies\
[email protected][1].txt -> Spyware.Cookie.Ru4 : Cleaned with backup
C:\WINDOWS\Cookies\
[email protected][1].txt -> Spyware.Cookie.Masterstats : Cleaned with backup
C:\WINDOWS\Cookies\default@paycounter[1].txt -> Spyware.Cookie.Paycounter : Cleaned with backup
C:\WINDOWS\Cookies\
[email protected][1].txt -> Spyware.Cookie.Adserver : Cleaned with backup
C:\WINDOWS\Cookies\
[email protected][1].txt -> Spyware.Cookie.Clickzs : Cleaned with backup
C:\WINDOWS\Cookies\
[email protected][1].txt -> Spyware.Cookie.Clickzs : Cleaned with backup
C:\WINDOWS\Cookies\
[email protected][1].txt -> Spyware.Cookie.Clickzs : Cleaned with backup
C:\WINDOWS\Cookies\
[email protected][1].txt -> Spyware.Cookie.Clickzs : Cleaned with backup
C:\WINDOWS\Cookies\
[email protected][2].txt -> Spyware.Cookie.Trakkerd : Cleaned with backup
C:\WINDOWS\Cookies\default@trafficmp[2].txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
C:\WINDOWS\Cookies\default@com[1].txt -> Spyware.Cookie.Com : Cleaned with backup
C:\WINDOWS\Cookies\default@tribalfusion[1].txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
C:\WINDOWS\Cookies\default@paycounter[3].txt -> Spyware.Cookie.Paycounter : Cleaned with backup
C:\WINDOWS\Cookies\default@ad-flow[2].txt -> Spyware.Cookie.Ad-flow : Cleaned with backup
C:\WINDOWS\Cookies\default@clickagents[1].txt -> Spyware.Cookie.Clickagents : Cleaned with backup
C:\WINDOWS\Cookies\
[email protected][2].txt -> Spyware.Cookie.Specificpop : Cleaned with backup
C:\WINDOWS\Cookies\default@ru4[2].txt -> Spyware.Cookie.Ru4 : Cleaned with backup
C:\WINDOWS\Cookies\
[email protected][2].txt -> Spyware.Cookie.Clickzs : Cleaned with backup
C:\WINDOWS\Cookies\
[email protected][2].txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
C:\WINDOWS\Cookies\default@spylog[1].txt -> Spyware.Cookie.Spylog : Cleaned with backup
C:\WINDOWS\Cookies\default@overture[1].txt -> Spyware.Cookie.Overture : Cleaned with backup
C:\WINDOWS\Cookies\
[email protected][1].txt -> Spyware.Cookie.Statcounter : Cleaned with backup
C:\WINDOWS\Cookies\default@overture[2].txt -> Spyware.Cookie.Overture : Cleaned with backup
C:\WINDOWS\Cookies\default@xxxcounter[1].txt -> Spyware.Cookie.Xxxcounter : Cleaned with backup
C:\WINDOWS\Cookies\default@x10[1].txt -> Spyware.Cookie.X10 : Cleaned with backup
C:\WINDOWS\Cookies\
[email protected][1].txt -> Spyware.Cookie.Xhit : Cleaned with backup
C:\WINDOWS\Cookies\
[email protected][1].txt -> Spyware.Cookie.Myaffiliateprogram : Cleaned with backup
C:\WINDOWS\Cookies\
[email protected][1].txt -> Spyware.Cookie.Internetfuel : Cleaned with backup
C:\WINDOWS\Cookies\
[email protected][2].txt -> Spyware.Cookie.Sex-in-www : Cleaned with backup
C:\WINDOWS\Cookies\default@bluestreak[2].txt -> Spyware.Cookie.Bluestreak : Cleaned with backup
C:\WINDOWS\Cookies\
[email protected][1].txt -> Spyware.Cookie.Paypopup : Cleaned with backup
C:\WINDOWS\Cookies\default@hotlog[2].txt -> Spyware.Cookie.Hotlog : Cleaned with backup
C:\WINDOWS\Cookies\default@adorigin[1].txt -> Spyware.Cookie.Adorigin : Cleaned with backup
C:\WINDOWS\Cookies\
[email protected][1].txt -> Spyware.Cookie.X10 : Cleaned with backup
C:\WINDOWS\Cookies\
[email protected][2].txt -> Spyware.Cookie.Adserver : Cleaned with backup
C:\WINDOWS\Cookies\default@trafficmp[3].txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
C:\WINDOWS\Cookies\default@pointroll[2].txt -> Spyware.Cookie.Pointroll : Cleaned with backup
C:\WINDOWS\Cookies\default@questionmarket[1].txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
C:\WINDOWS\Cookies\
[email protected][1].txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
C:\WINDOWS\Cookies\default@tribalfusion[2].txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
C:\WINDOWS\Cookies\default@addynamix[1].txt -> Spyware.Cookie.Addynamix : Cleaned with backup
C:\WINDOWS\Cookies\default@com[3].txt -> Spyware.Cookie.Com : Cleaned with backup
C:\WINDOWS\Cookies\default@2o7[1].txt -> Spyware.Cookie.2o7 : Cleaned with backup
C:\WINDOWS\Cookies\
[email protected][1].txt -> Spyware.Cookie.Falkag : Cleaned with backup
C:\WINDOWS\Cookies\default@clickagents[2].txt -> Spyware.Cookie.Clickagents : Cleaned with backup
C:\WINDOWS\Cookies\default@xxxcounter[3].txt -> Spyware.Cookie.Xxxcounter : Cleaned with backup
C:\WINDOWS\Cookies\default@bluestreak[1].txt -> Spyware.Cookie.Bluestreak : Cleaned with backup
C:\WINDOWS\Cookies\
[email protected][3].txt -> Spyware.Cookie.Specificpop : Cleaned with backup
C:\WINDOWS\Cookies\default@abetterinternet[1].txt -> Spyware.Cookie.Abetterinternet : Cleaned with backup
C:\WINDOWS\Cookies\default@ad-flow[3].txt -> Spyware.Cookie.Ad-flow : Cleaned with backup
C:\WINDOWS\Cookies\
[email protected][2].txt -> Spyware.Cookie.Porngraph : Cleaned with backup
C:\WINDOWS\Cookies\
[email protected][2].txt -> Spyware.Cookie.Wegcash : Cleaned with backup
C:\WINDOWS\Cookies\default@internetfuel[2].txt -> Spyware.Cookie.Internetfuel : Cleaned with backup
C:\WINDOWS\Cookies\default@hotlog[3].txt -> Spyware.Cookie.Hotlog : Cleaned with backup
C:\WINDOWS\Cookies\default@revenue[2].txt -> Spyware.Cookie.Revenue : Cleaned with backup
C:\WINDOWS\Cookies\
[email protected][1].txt -> Spyware.Cookie.Revenue : Cleaned with backup
C:\WINDOWS\Cookies\default@xxxtoolbar[2].txt -> Spyware.Cookie.Xxxtoolbar : Cleaned with backup
C:\WINDOWS\Cookies\
[email protected][2].txt -> Spyware.Cookie.Falkag : Cleaned with backup
C:\WINDOWS\Cookies\default@xxxcounter[4].txt -> Spyware.Cookie.Xxxcounter : Cleaned with backup
C:\WINDOWS\Cookies\default@advertising[1].txt -> Spyware.Cookie.Advertising : Cleaned with backup
C:\WINDOWS\Cookies\
[email protected][3].txt -> Spyware.Cookie.Ru4 : Cleaned with backup
C:\WINDOWS\Cookies\
[email protected][3].txt -> Spyware.Cookie.Adserver : Cleaned with backup
C:\WINDOWS\Cookies\default@sexlist[2].txt -> Spyware.Cookie.Sexlist : Cleaned with backup
C:\WINDOWS\Cookies\default@hitbox[1].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\WINDOWS\Cookies\
[email protected][1].txt -> Spyware.Cookie.Porngraph : Cleaned with backup
C:\WINDOWS\Cookies\default@atdmt[2].txt -> Spyware.Cookie.Atdmt : Cleaned with backup
C:\WINDOWS\Cookies\default@tribalfusion[3].txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
C:\WINDOWS\Cookies\default@bluestreak[3].txt -> Spyware.Cookie.Bluestreak : Cleaned with backup
C:\WINDOWS\Cookies\default@sextracker[2].txt -> Spyware.Cookie.Sextracker : Cleaned with backup
C:\WINDOWS\Cookies\
[email protected][2].txt -> Spyware.Cookie.Pointroll : Cleaned with backup
C:\WINDOWS\Cookies\default@paycounter[2].txt -> Spyware.Cookie.Paycounter : Cleaned with backup
C:\WINDOWS\Cookies\
[email protected][1].txt -> Spyware.Cookie.Sextracker : Cleaned with backup
C:\WINDOWS\Cookies\default@overture[4].txt -> Spyware.Cookie.Overture : Cleaned with backup
C:\WINDOWS\Cookies\
[email protected][1].txt -> Spyware.Cookie.Sextracker : Cleaned with backup
C:\WINDOWS\Cookies\
[email protected][1].txt -> Spyware.Cookie.Liveperson : Cleaned with backup
C:\WINDOWS\Cookies\
[email protected][1].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\WINDOWS\Cookies\default@targetnet[2].txt -> Spyware.Cookie.Targetnet : Cleaned with backup
C:\WINDOWS\Cookies\default@doubleclick[1].txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
C:\WINDOWS\Cookies\default@revenue[3].txt -> Spyware.Cookie.Revenue : Cleaned with backup
C:\WINDOWS\Cookies\
[email protected][2].txt -> Spyware.Cookie.Coremetrics : Cleaned with backup
C:\WINDOWS\Cookies\default@bfast[1].txt -> Spyware.Cookie.Bfast : Cleaned with backup
C:\WINDOWS\Cookies\default@2o7[2].txt -> Spyware.Cookie.2o7 : Cleaned with backup
C:\WINDOWS\Cookies\default@com[4].txt -> Spyware.Cookie.Com : Cleaned with backup
C:\WINDOWS\Cookies\
[email protected][2].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\WINDOWS\Cookies\default@qksrv[1].txt -> Spyware.Cookie.Qksrv : Cleaned with backup
C:\WINDOWS\Cookies\
[email protected][2].txt -> Spyware.Cookie.Advertising : Cleaned with backup
C:\WINDOWS\Cookies\default@fastclick[2].txt -> Spyware.Cookie.Fastclick : Cleaned with backup
C:\WINDOWS\Cookies\default@mediaplex[1].txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
C:\WINDOWS\Cookies\default@questionmarket[3].txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
C:\WINDOWS\Cookies\
[email protected][1].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\WINDOWS\Cookies\default@commission-junction[1].txt -> Spyware.Cookie.Commission-junction : Cleaned with backup
C:\WINDOWS\Cookies\
[email protected][2].txt -> Spyware.Cookie.Burstbeacon : Cleaned with backup
C:\WINDOWS\od-stnd236.exe -> Dialer.Generic : Cleaned with backup
C:\WINDOWS\od-stnd102.exe -> Dialer.Generic : Cleaned with backup
C:\WINDOWS\hostprep.exe -> Spyware.BiSpy : Cleaned with backup
C:\Programs\mce.zip/Matrix Code Emulator.scr -> Backdoor.Backattack.20.C : Error during cleaning
C:\winnt\system32\tcp.dll -> Backdoor.Zapchast : Cleaned with backup
C:\winnt\system32\lssas.exe -> Backdoor.ServU-based : Cleaned with backup
E:\Documents and Settings\tc\Desktop\hijackthis\backups\backup-20051121-203107-563.dll -> Spyware.Virtumonde : Cleaned with backup
E:\Documents and Settings\tc\My Documents\i_bpk_lite.exe/Setup.exe -> TrojanSpy.Perfectkeylogger.10 : Cleaned with backup
E:\Documents and Settings\tc\My Documents\s2k.serials2k7.1.zip/s2k.hacking.exe -> Dialer.Generic : Error during cleaning
E:\Documents and Settings\tc\My Documents\Serials\s2k.hacking.exe -> Dialer.Generic : Cleaned with backup
E:\limewire\Propellerheads Recycle v2.1 Incl Keygen-H2o\Propellerheads.ReCycle.v2.1.Incl.Keygen-H2O\Setup.exe -> TrojanDropper.ExeBundle.285 : Cleaned with backup
E:\limewire\Propellerheads Recycle v2.1 Incl Keygen-H2o.zip/Propellerheads.ReCycle.v2.1.Incl.Keygen-H2O/Setup.exe -> TrojanDropper.ExeBundle.285 : Error during cleaning
E:\Program Files\NetMeeting\MyWay\myBar\1.bin\MY2NS.EXE -> Spyware.MyWay : Cleaned with backup
E:\Program Files\NetMeeting\MyWay\myBar\1.bin\MYBAR.DLL -> Spyware.MyWay : Cleaned with backup
E:\Program Files\NetMeeting\MyWay\myBar\1.bin\NPMYWAY.DLL -> Spyware.MyWay : Cleaned with backup
E:\Program Files\Perfect Keylogger Lite\bpk.exe -> TrojanSpy.Perfectkeylogger.10 : Cleaned with backup
E:\Program Files\Perfect Keylogger Lite\bsdhooks.dll -> TrojanSpy.Perfectkeylogger.10 : Cleaned with backup
E:\Program Files\Perfect Keylogger Lite\lview.exe -> TrojanSpy.Perfectkeylogger.10 : Cleaned with backup
E:\Program Files\Perfect Keylogger Lite\uninstall.exe -> TrojanSpy.Perfectkeylogger.10 : Cleaned with backup
E:\Program Files\Perfect Keyloggerkiller\bsdhooks.dll -> TrojanSpy.Perfectkeylogger.10 : Cleaned with backup
E:\Program Files\PestPatrol\Quarantine\20040613131526358.zip/Program Files/kazaa/topsearch.dll -> Spyware.Altnet : Error during cleaning
E:\Program Files\SpyFerret by OnlinePCfix\Archives\tc@atdmt[1].cab/tc@atdmt[1].txt -> Spyware.Cookie.Atdmt : Cleaned with backup
E:\Program Files\SpyFerret by OnlinePCfix\Archives\
[email protected]/
[email protected][2].txt -> Spyware.Cookie.Hitslink : Cleaned with backup
E:\Program Files\SpyFerret by OnlinePCfix\Archives\
[email protected]/
[email protected][1].txt -> Spyware.Cookie.Sextracker : Cleaned with backup
E:\Program Files\SpyFerret by OnlinePCfix\Archives\
[email protected]/
[email protected][1].txt -> Spyware.Cookie.Sextracker : Cleaned with backup
E:\Program Files\SpyFerret by OnlinePCfix\Archives\
[email protected]/
[email protected][1].txt -> Spyware.Cookie.Bridgetrack : Cleaned with backup
E:\Program Files\SpyFerret by OnlinePCfix\Archives\tc@sexlist[1].cab/tc@sexlist[1].txt -> Spyware.Cookie.Sexlist : Cleaned with backup
E:\Program Files\SpyFerret by OnlinePCfix\Archives\tc@sextracker[2].cab/tc@sextracker[2].txt -> Spyware.Cookie.Sextracker : Cleaned with backup
E:\Program Files\SpyFerret by OnlinePCfix\Archives\WebP2PInstaller.cab/WebP2PInstaller.dll -> TrojanDownloader.WebP2PInstaller : Cleaned with backup
E:\Program Files\Windows Media Player\wmplayer.exe.tmp -> TrojanDownloader.WinShow.af : Cleaned with backup
E:\WINDOWS\crgx32.dll -> TrojanDownloader.Wintrim.be : Cleaned with backup
E:\WINDOWS\sdkqh32.dll -> TrojanDownloader.Wintrim.be : Cleaned with backup
E:\WINDOWS\system32\awvts.dll -> TrojanDownloader.ConHook.l : Cleaned with backup
E:\WINDOWS\system32\ljhhi.dll -> TrojanDownloader.ConHook.l : Cleaned with backup
E:\WINDOWS\system32\~uninstal.exe/ms32.dll -> Backdoor.Zapchast : Error during cleaning
::Report End