Here is my HJT log and ewido.txt log
Logfile of HijackThis v1.99.1
Scan saved at 12:24:15 AM, on 12/2/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\ewido\security suite\ewidoctrl.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Ares Lite Edition\AresLite.exe
C:\Program Files\AIM95\aim.exe
C:\WINDOWS\system32\msiexec.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Jason Chase\Desktop\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer,SearchURL = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.cortland.edu/R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://red.clientapp...//www.yahoo.comR1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar =
http://red.clientapp...rch/search.htmlR1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://red.clientapp...//www.yahoo.comR1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) =
http://red.clientapp...//www.yahoo.comR1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
O4 - HKLM\..\Run: [Ms Java] C:\Documents and Settings\Jason Chase\zangme.exe
O4 - HKLM\..\Run: [System service79] C:\WINDOWS\\\etb\\pokapoka79.exe
O4 - HKCU\..\Run: [areslite] "C:\Program Files\Ares Lite Edition\AresLite.exe" -h
O4 - HKCU\..\Run: [Microsoft Works Update Detection] C:\Program Files\Microsoft Works\WkDetect.exe
O4 - HKCU\..\Run: [services32] C:\Program Files\Common Files\Windows\mc-110-12-0000080.exe
O4 - HKCU\..\Run: [AIM] C:\Program Files\AIM95\aim.exe -cnetwait.odl
O8 - Extra context menu item: &AIM Search - res://C:\Program Files\AIM Toolbar\AIMBar.dll/aimsearch.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Freeprod Toolbar - {77FBF9B8-1D37-4FF2-9CED-192D8E3ABA6F} - C:\Program Files\Freeprod Toolbar\freeprod.dll
O9 - Extra 'Tools' menuitem: Freeprod Toolbar - {77FBF9B8-1D37-4FF2-9CED-192D8E3ABA6F} - C:\Program Files\Freeprod Toolbar\freeprod.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM95\aim.exe
O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: WeatherBug - {AF6CABAB-61F9-4f12-A198-B7D41EF1CB52} - C:\Program Files\AWS\WeatherBug\Weather.exe (file missing) (HKCU)
O12 - Plugin for .mov: C:\Program Files\Internet Explorer\PLUGINS\npqtplugin.dll
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) -
http://a840.g.akamai...all/xscan53.cabO16 - DPF: {8FCDF9D9-A28B-480F-8C3D-581F119A8AB8} -
http://static.zangoc.../bridge-c18.cabO20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: Intel® NMS (NMSSvc) - Intel Corporation - C:\WINDOWS\System32\NMSSvc.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe
ewido security suite - Scan report
---------------------------------------------------------
+ Created on: 12:18:03 AM, 12/2/2005
+ Report-Checksum: E0AD9685
+ Scan result:
HKLM\SOFTWARE\Classes\CLSID\{2B96D5CC-C5B5-49A5-A69D-CC0A30F9028C} -> Spyware.MiniBug : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{9603A736-05B9-4D78-BDD5-BDCB0914E522} -> Spyware.WurldMedia : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{BC12B055-C9F5-407D-9B66-1851973F32AF} -> Spyware.WurldMedia : Cleaned with backup
HKLM\SOFTWARE\DelFin -> Spyware.Delfin : Cleaned with backup
HKLM\SOFTWARE\DelFin\PromulGate -> Spyware.Delfin : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\DelFin Media Viewer -> Spyware.Delfin : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MediaLoads Enhanced -> Spyware.Downloadware : Cleaned with backup
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{5AA06644-BC46-4220-A460-47A6EB47C96D} -> Spyware.NavExcel : Cleaned with backup
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D80C4E21-C346-4E21-8E64-20746AA20AEB} -> Spyware.NavExcel : Cleaned with backup
HKU\S-1-5-21-917563655-3179742922-2167395947-1006\Software\DelFin -> Spyware.Delfin : Cleaned with backup
HKU\S-1-5-21-917563655-3179742922-2167395947-1006\Software\DelFin\PromulGate -> Spyware.Delfin : Cleaned with backup
HKU\S-1-5-21-917563655-3179742922-2167395947-1006\Software\DNS -> Adware.Shorty : Cleaned with backup
HKU\S-1-5-21-917563655-3179742922-2167395947-1006\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{5AA06644-BC46-4220-A460-47A6EB47C96D} -> Spyware.NavExcel : Cleaned with backup
HKU\S-1-5-21-917563655-3179742922-2167395947-1006\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{87067F04-DE4C-4688-BC3C-4FCF39D609E7} -> Spyware.WebSearch : Cleaned with backup
HKU\S-1-5-21-917563655-3179742922-2167395947-1006\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D80C4E21-C346-4E21-8E64-20746AA20AEB} -> Spyware.NavExcel : Cleaned with backup
HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{5AA06644-BC46-4220-A460-47A6EB47C96D} -> Spyware.NavExcel : Cleaned with backup
HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D80C4E21-C346-4E21-8E64-20746AA20AEB} -> Spyware.NavExcel : Cleaned with backup
C:\Documents and Settings\Jason Chase\cash.exe -> Trojan.LowZones.bs : Cleaned with backup
C:\Documents and Settings\Jason Chase\Cookies\jason
[email protected][2].txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
C:\Documents and Settings\Jason Chase\Cookies\jason chase@com[2].txt -> Spyware.Cookie.Com : Cleaned with backup
C:\Documents and Settings\Jason Chase\Cookies\jason
[email protected][2].txt -> Spyware.Cookie.Clickzs : Cleaned with backup
C:\Documents and Settings\Jason Chase\Local Settings\Temp\1114612_31060_1036_59260_79.41.tst -> Trojan.EliteBar.h : Cleaned with backup
C:\Documents and Settings\Jason Chase\Local Settings\Temp\1114612_31060_1036_59260_79.41.tst1 -> Trojan.EliteBar.d : Cleaned with backup
C:\Documents and Settings\Jason Chase\Local Settings\Temp\131552_4064_352_392_79.41.tst -> Trojan.EliteBar.h : Cleaned with backup
C:\Documents and Settings\Jason Chase\Local Settings\Temp\131928_4064_352_5276_79.41.tst -> Trojan.EliteBar.h : Cleaned with backup
C:\Documents and Settings\Jason Chase\Local Settings\Temp\1704186_31060_1036_55400_79.41.tst -> Trojan.EliteBar.h : Cleaned with backup
C:\Documents and Settings\Jason Chase\Local Settings\Temp\196858_46876_1996_47152_79.41.tst -> Trojan.EliteBar.h : Cleaned with backup
C:\Documents and Settings\Jason Chase\Local Settings\Temp\196924_2324_1944_2588_79.41.tst -> Trojan.EliteBar.h : Cleaned with backup
C:\Documents and Settings\Jason Chase\Local Settings\Temp\196938_45372_2008_49216_79.41.tst -> Trojan.EliteBar.h : Cleaned with backup
C:\Documents and Settings\Jason Chase\Local Settings\Temp\197050_3388_188_3496_79.41.tst -> Trojan.EliteBar.h : Cleaned with backup
C:\Documents and Settings\Jason Chase\Local Settings\Temp\197096_4032_212_4796_79.41.tst -> Trojan.EliteBar.h : Cleaned with backup
C:\Documents and Settings\Jason Chase\Local Settings\Temp\197100_2976_168_3292_79.41.tst -> Trojan.EliteBar.h : Cleaned with backup
C:\Documents and Settings\Jason Chase\Local Settings\Temp\262240_2760_896_2832_79.41.tst -> Trojan.EliteBar.h : Cleaned with backup
C:\Documents and Settings\Jason Chase\Local Settings\Temp\262498_40772_1904_37408_79.41.tst -> Trojan.EliteBar.h : Cleaned with backup
C:\Documents and Settings\Jason Chase\Local Settings\Temp\262574_10080_120_10192_79.41.tst -> Trojan.EliteBar.h : Cleaned with backup
C:\Documents and Settings\Jason Chase\Local Settings\Temp\262614_2956_1920_3036_79.41.tst -> Trojan.EliteBar.h : Cleaned with backup
C:\Documents and Settings\Jason Chase\Local Settings\Temp\328040_40772_1904_44588_79.41.tst -> Trojan.EliteBar.h : Cleaned with backup
C:\Documents and Settings\Jason Chase\Local Settings\Temp\393738_8636_376_8372_79.41.tst -> Trojan.EliteBar.h : Cleaned with backup
C:\Documents and Settings\Jason Chase\Local Settings\Temp\393830_1804_1652_4816_79.41.tst -> Trojan.EliteBar.h : Cleaned with backup
C:\Documents and Settings\Jason Chase\Local Settings\Temp\459126_40772_1904_42888_79.41.tst -> Trojan.EliteBar.h : Cleaned with backup
C:\Documents and Settings\Jason Chase\Local Settings\Temp\524520_31060_1036_31140_79.41.tst -> Trojan.EliteBar.h : Cleaned with backup
C:\Documents and Settings\Jason Chase\Local Settings\Temp\524870_7844_1472_38292_79.41.tst -> Trojan.EliteBar.h : Cleaned with backup
C:\Documents and Settings\Jason Chase\Local Settings\Temp\65914_2364_1960_2604_79.41.tst -> Trojan.EliteBar.h : Cleaned with backup
C:\Documents and Settings\Jason Chase\Local Settings\Temp\66022_2620_352_2776_79.41.tst -> Trojan.EliteBar.h : Cleaned with backup
C:\Documents and Settings\Jason Chase\Local Settings\Temp\66022_2620_352_2776_79.41.tst1 -> Trojan.EliteBar.d : Cleaned with backup
C:\Documents and Settings\Jason Chase\Local Settings\Temp\721224_7844_1472_8004_79.41.tst -> Trojan.EliteBar.h : Cleaned with backup
C:\Documents and Settings\Jason Chase\Local Settings\Temp\721352_32792_212_33880_79.41.tst -> Trojan.EliteBar.h : Cleaned with backup
C:\Documents and Settings\Jason Chase\Local Settings\Temp\786772_7844_1472_24936_79.41.tst -> Trojan.EliteBar.h : Cleaned with backup
C:\Documents and Settings\Jason Chase\Local Settings\Temp\Cookies\jason
[email protected][1].txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
C:\Documents and Settings\Jason Chase\Local Settings\Temp\dkw47E0.tmp.tst -> Trojan.EliteBar.d : Cleaned with backup
C:\Documents and Settings\Jason Chase\Local Settings\Temp\dkwB84D.tmp.tst -> Trojan.EliteBar.d : Cleaned with backup
C:\Documents and Settings\Jason Chase\Local Settings\Temp\dkwFD42.tmp.tst -> Trojan.EliteBar.d : Cleaned with backup
C:\Documents and Settings\Jason Chase\Local Settings\Temp\installer.exe -> Spyware.PurityScan : Cleaned with backup
C:\Documents and Settings\Jason Chase\Local Settings\Temp\k_2304.tmp -> Trojan.EliteBar.a : Cleaned with backup
C:\Documents and Settings\Jason Chase\Local Settings\Temp\k_3765.tmp -> Trojan.EliteBar.a : Cleaned with backup
C:\Documents and Settings\Jason Chase\Local Settings\Temp\k_3808.tmp -> Trojan.EliteBar.a : Cleaned with backup
C:\Documents and Settings\Jason Chase\Local Settings\Temp\k_425B.tmp -> Trojan.EliteBar.a : Cleaned with backup
C:\Documents and Settings\Jason Chase\Local Settings\Temp\k_BE53.tmp -> Trojan.EliteBar.a : Cleaned with backup
C:\Documents and Settings\Jason Chase\Local Settings\Temp\temp.fr7B5E -> Trojan.EliteBar : Cleaned with backup
C:\Documents and Settings\Jason Chase\Local Settings\Temp\temp.frA98D -> Trojan.EliteBar.h : Cleaned with backup
C:\Documents and Settings\Jason Chase\Local Settings\Temporary Internet Files\Content.IE5\0HIF0HYN\mm[2].js -> Spyware.Chitika : Cleaned with backup
C:\Documents and Settings\Jason Chase\updaat.exe -> Backdoor.Rbot.agq : Cleaned with backup
C:\Documents and Settings\Jason Chase\zangme.exe -> Downloader.Agent.dn : Cleaned with backup
C:\Program Files\AWS\WeatherBug\MiniBugTransporter.dll -> Spyware.Wheaterbug : Cleaned with backup
C:\Program Files\Common Files\Download\freeprodtb.exe -> Spyware.Maxifiles : Cleaned with backup
C:\Program Files\Common Files\Download\mc-110-12-0000080.exe -> Spyware.Maxifiles : Cleaned with backup
C:\Program Files\Common Files\InetGet\mc-110-12-0000080.exe -> Spyware.Maxifiles : Cleaned with backup
C:\Program Files\Common Files\puetpslb\pnpnmupdbm\qaomacbnp.exe.tcf -> Adware.Gator : Cleaned with backup
C:\Program Files\Common Files\puetpslb\tomnodqq\mcooadde.exe.tcf -> Adware.Gator : Cleaned with backup
C:\Program Files\Common Files\services.exe -> Spyware.Maxifiles : Cleaned with backup
C:\Program Files\Common Files\Totem Shared\Update\DialerOffline.dll.010 -> Dialer.Generic : Cleaned with backup
C:\Program Files\Common Files\Windows\mc-110-12-0000080.exe -> Spyware.Maxifiles : Cleaned with backup
C:\Program Files\Common Files\Windows\services32.exe -> Spyware.Maxifiles : Cleaned with backup
C:\Program Files\Common Files\ziui\ziuia.exe -> Downloader.TSUpdate.l : Cleaned with backup
C:\Program Files\Common Files\ziui\ziuid\ziuic.dll -> Downloader.Small : Cleaned with backup
C:\Program Files\Common Files\ziui\ziuim.exe -> Downloader.TSUpdate.n : Cleaned with backup
C:\Program Files\Common Files\ziui\ziuip.exe -> Downloader.TSUpdate.f : Cleaned with backup
C:\Program Files\MediaLoads\v1\ML.exe -> Spyware.DownloadWare : Cleaned with backup
C:\RECYCLER\S-1-5-21-917563655-3179742922-2167395947-1006\Dc13\NavHelper\v2.0.4c\NHelper.dll -> Spyware.NavExcel : Cleaned with backup
C:\RECYCLER\S-1-5-21-917563655-3179742922-2167395947-1006\Dc13\NavHelper\v2.0.4c\NHUninstaller.exe -> Spyware.NavExcel : Cleaned with backup
C:\RECYCLER\S-1-5-21-917563655-3179742922-2167395947-1006\Dc13\NavHelper\v2.0.4c\NHUpdater.exe -> Spyware.NavExcel : Cleaned with backup
C:\RECYCLER\S-1-5-21-917563655-3179742922-2167395947-1006\Dc13\NavHelper\v2.0.4c\v2.0.4c.c.cab/NHelper.dll -> Spyware.NavExcel : Cleaned with backup
C:\RECYCLER\S-1-5-21-917563655-3179742922-2167395947-1006\Dc13\NavHelper\v2.0.4c\v2.0.4c.c.cab/NHUninstaller.exe -> Spyware.NavExcel : Cleaned with backup
C:\RECYCLER\S-1-5-21-917563655-3179742922-2167395947-1006\Dc13\NavHelper\v2.0.4c\v2.0.4c.c.cab/NHUpdater.exe -> Spyware.NavExcel : Cleaned with backup
C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP854\A0057955.exe -> Spyware.Maxifiles : Cleaned with backup
C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP854\A0057977.exe -> Spyware.Maxifiles : Cleaned with backup
C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP854\A0058003.exe -> Spyware.Maxifiles : Cleaned with backup
C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP854\A0058033.exe -> Spyware.Maxifiles : Cleaned with backup
C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP854\A0058036.exe -> Trojan.LowZones.bs : Cleaned with backup
C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP855\A0059006.exe -> Spyware.Maxifiles : Cleaned with backup
C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP855\A0059009.exe -> Trojan.LowZones.bs : Cleaned with backup
C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP856\A0059029.exe -> Backdoor.SdBot.agi : Cleaned with backup
C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP858\A0059137.exe -> Spyware.Maxifiles : Cleaned with backup
C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP860\A0060109.exe -> Spyware.Maxifiles : Cleaned with backup
C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP860\A0060112.dll/gui.exe -> Downloader.Agent.rv : Cleaned with backup
C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP860\A0060113.exe -> Downloader.Agent.rv : Cleaned with backup
C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP860\A0060122.exe -> Spyware.Maxifiles : Cleaned with backup
C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP860\A0060125.exe -> Trojan.EliteBar.a : Cleaned with backup
C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP860\A0061141.exe -> Spyware.WinAD : Cleaned with backup
C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP860\A0061143.exe -> Spyware.NavExcel : Cleaned with backup
C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP860\A0061145.dll -> Spyware.NavExcel : Cleaned with backup
C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP860\A0061186.exe -> Spyware.Maxifiles : Cleaned with backup
C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP860\A0061189.dll/gui.exe -> Downloader.Agent.rv : Cleaned with backup
C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP860\A0061191.exe -> Downloader.Agent.rv : Cleaned with backup
C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP860\A0061192.exe -> Trojan.EliteBar.a : Cleaned with backup
C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP861\A0062181.dll -> Trojan.EliteBar.a : Cleaned with backup
C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP861\A0062186.exe -> Spyware.Maxifiles : Cleaned with backup
C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP861\A0062199.exe -> Spyware.Maxifiles : Cleaned with backup
C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP861\A0063199.exe -> Spyware.Maxifiles : Cleaned with backup
C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP861\A0063215.exe -> Spyware.Maxifiles : Cleaned with backup
C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP861\A0063226.exe -> Spyware.Maxifiles : Cleaned with backup
C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP862\A0063238.exe -> Spyware.Maxifiles : Cleaned with backup
C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP862\A0063241.exe.tcf -> Adware.Gator : Cleaned with backup
C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP862\A0063242.exe.tcf -> Adware.Gator : Cleaned with backup
C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP862\A0064238.exe -> Spyware.Maxifiles : Cleaned with backup
C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP862\A0065238.exe -> Spyware.Maxifiles : Cleaned with backup
C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP863\A0066238.exe -> Spyware.Maxifiles : Cleaned with backup
C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP864\A0067238.exe -> Spyware.Maxifiles : Cleaned with backup
C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP875\A0081376.exe -> Spyware.Maxifiles : Cleaned with backup
C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP875\A0082374.exe -> Spyware.Maxifiles : Cleaned with backup
C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP876\A0083374.exe -> Spyware.Maxifiles : Cleaned with backup
C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP876\A0083387.exe -> Spyware.Maxifiles : Cleaned with backup
C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP876\A0084387.exe -> Spyware.Maxifiles : Cleaned with backup
C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP876\A0085387.exe -> Spyware.Maxifiles : Cleaned with backup
C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP876\A0086387.exe -> Spyware.Maxifiles : Cleaned with backup
C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP876\A0086399.exe -> Spyware.Maxifiles : Cleaned with backup
C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP876\A0087399.exe -> Spyware.Maxifiles : Cleaned with backup
C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP876\A0087411.exe -> Spyware.Maxifiles : Cleaned with backup
C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP876\A0087430.exe -> Spyware.Maxifiles : Cleaned with backup
C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP876\A0087451.exe -> Trojan.EliteBar : Cleaned with backup
C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP876\A0087452.exe -> Adware.Maxifiles : Cleaned with backup
C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP876\A0087453.dll -> Spyware.CommAd : Cleaned with backup
C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP876\A0087454.exe -> Adware.CommAd : Cleaned with backup
C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP876\A0087456.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP876\A0087458.dll -> Trojan.EliteBar.h : Cleaned with backup
C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP876\A0087459.exe -> Trojan.EliteBar : Cleaned with backup
C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP876\A0087464.exe -> Spyware.Maxifiles : Cleaned with backup
C:\WINDOWS\NDNuninstall4_80.exe -> Spyware.NewDotNet : Cleaned with backup
C:\WINDOWS\NDNuninstall5_40.exe -> Spyware.NewDotNet : Cleaned with backup
C:\WINDOWS\SYSTEM32\windir32.exe -> Backdoor.SdBot.agp : Cleaned with backup
C:\WINDOWS\SYSTEM32\wininit32.exe -> Backdoor.Rbot.agq : Cleaned with backup
C:\WINDOWS\SYSTEM32\wzviujc.dll -> Spyware.WurldMedia : Cleaned with backup
C:\WINDOWS\SYSTEM32\zzmjajdl.dll -> Spyware.WurldMedia : Cleaned with backup
::Report End