Btw I'm running Windows XP Professional Version 2002 SP2
Really need some help to resolve this.
As directed I have performed this following steps.
SUPERAntiSpyware Scan Log
http://www.superantispyware.com
Generated 10/31/2007 at 06:42 AM
Application Version : 3.9.1008
Core Rules Database Version : 3333
Trace Rules Database Version: 1334
Scan type : Complete Scan
Total Scan Time : 01:21:37
Memory items scanned : 375
Memory threats detected : 1
Registry items scanned : 7515
Registry threats detected : 17
File items scanned : 62848
File threats detected : 5
Trojan.Net-Spoo1v
C:\WINDOWS\SYSTEM32\SPOO1V.EXE
C:\WINDOWS\SYSTEM32\SPOO1V.EXE
Trojan.Sino-sos/LPK
HKLM\Software\Classes\CLSID\{00C104F7-0F5C-470C-ABCF-A5B2E70752F1}
HKCR\CLSID\{00C104F7-0F5C-470C-ABCF-A5B2E70752F1}
HKCR\CLSID\{00C104F7-0F5C-470C-ABCF-A5B2E70752F1}
HKCR\CLSID\{00C104F7-0F5C-470C-ABCF-A5B2E70752F1}\InprocServer32
HKCR\CLSID\{00C104F7-0F5C-470C-ABCF-A5B2E70752F1}\InprocServer32#ThreadingModel
HKCR\CLSID\{00C104F7-0F5C-470C-ABCF-A5B2E70752F1}\ProgID
HKCR\CLSID\{00C104F7-0F5C-470C-ABCF-A5B2E70752F1}\Programmable
HKCR\CLSID\{00C104F7-0F5C-470C-ABCF-A5B2E70752F1}\TypeLib
HKCR\CLSID\{00C104F7-0F5C-470C-ABCF-A5B2E70752F1}\VersionIndependentProgID
C:\WINDOWS\SYSTEM32\WBDICS.DLL
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{00C104F7-0F5C-470C-ABCF-A5B2E70752F1}
Unclassified.Unknown Origin
HKLM\Software\Classes\CLSID\{385AB8C6-FB22-4D17-8834-064E2BA0A6F0}
HKCR\CLSID\{385AB8C6-FB22-4D17-8834-064E2BA0A6F0}
HKCR\CLSID\{385AB8C6-FB22-4D17-8834-064E2BA0A6F0}
HKCR\CLSID\{385AB8C6-FB22-4D17-8834-064E2BA0A6F0}\InprocServer32
HKCR\CLSID\{385AB8C6-FB22-4D17-8834-064E2BA0A6F0}\InprocServer32#ThreadingModel
HKCR\CLSID\{385AB8C6-FB22-4D17-8834-064E2BA0A6F0}\TypeLib
C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\MICROSOFT\PCTOOLS\PCTOOLS.DLL
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{385AB8C6-FB22-4D17-8834-064E2BA0A6F0}
Trojan.Downloader-Sino/QQ
C:\SYSTEM VOLUME INFORMATION\_RESTORE{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP14\A0011945.DLL
Adware.Tracking Cookie
C:\WINDOWS\system32\config\systemprofile\Cookies\system@thinkmedia[1].txt
---------------------------------------------------------------------------------------------------------
Logfile of Spyware Terminator v2.0.0.194 (db:1.0.996.756)
Scan Time: 10/31/2007 4:04:28 AM length: 1696 s
Platform: Windows XP Service Pack 2 (WINNT 5.1.2600)
User: Admin
Boot Mode: Safe
Scan type: Full_Spyware_Scan
Scanned Objects: 91756 (Critical:126)
Filter: No System items, No Safe items, No Invalid items
Running Processes
ZcfgSvc.exe [Intel Corporation] : C:\Program Files\Intel\Wireless\Bin\ZcfgSvc.exe
Internet Settings
R - HKCU\Software\Microsoft\Internet Explorer\Main, Search Bar = http://www.google.com/ie
R - HKLM\Software\Microsoft\Internet Explorer\Main, Start Page = http://go.microsoft....k/?LinkId=69157
R - HKLM\Software\Microsoft\Internet Explorer\Search, SearchAssistant = http://client.jogo.c...esearch-en.html
R - HKLM\Software\Microsoft\Internet Explorer\Search, CustomizeSearch = http://client.jogo.c...msearch-en.html
R - HKLM\System\CurrentControlSet\Services\Tcpip\Parameters, Domain =
R - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Telephony, DomainName =
BHO
02 - BHO: Pando Search Assistant BHO - {06663B51-0D73-4f9f-BCC5-4AA941470AFD} - [Pando] : C:\Program Files\PandoBar\SrchAstt\1.bin\P4SRCHAS.DLL
02 - BHO: CAdLogic Object - {11F09AFD-75AD-4E51-AB43-E09E9351CE16} - : C:\Program Files\Common Files\CPUSH\cpush0.dll
02 - BHO: CInterceptor Object - {38D3FE60-3D53-4F37-BB0E-C7A97A26A156} - [Pando Networks] : C:\Program Files\Pando Networks\Pando\PandoIEPlugin.dll
02 - BHO: Invoke Class - {3AA0903B-1E13-4865-B114-15792D413C41} - : C:\WINDOWS\system32\c671.dll
02 - BHO: IEAux Class - {7605CC7C-00FD-4A5F-BAFD-828342DE6279} - [??????????(CNNIC)] : C:\Program Files\OCINS\ieaux.dll
02 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - [Google Inc.] : C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll
02 - BHO: Pando Toolbar BHO - {E3EA4FD1-CADE-4ae5-84F7-086EEE888BE4} - [Pando] : C:\Program Files\PandoBar\bar\1.bin\PANDOBAR.DLL
Toolbars
03 - Toolbar: Pando Toolbar - {E3EA4FD9-CADE-4ae5-84F7-086EEE888BE4} - [Pando] : C:\Program Files\PandoBar\bar\1.bin\PANDOBAR.DLL
StartUps
04 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, SPYWATCH : [BulletProofSoft.com] : C:\Program Files\BULLETPROOFSOFT.COM\SPYWAREREMOVER\SPYWATCH.EXE
04 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Pando : [Pando Networks] : C:\Program Files\PANDO NETWORKS\PANDO\PANDO.EXE
04 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Active Desktop Calendar : [XemiComputers ltd.] : C:\Program Files\XemiComputers\Active Desktop Calendar\ADC.exe
04 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, swg : [Google Inc.] : C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run, hnu29 : [Microsoft Corporation] : C:\WINDOWS\Downloaded Program Files\hnu29.dll
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, IdnSvr : [?????????(CNNIC)] : C:\Program Files\OCINS\idnsvr.exe
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, WMAAD : [Sony Corporation] : C:\Program Files\Sony\WALKMAN Launcher\WMAAD.exe
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, VC7Player : [H+H Software GmbH] : C:\Program Files\HHVcdV7Sys\VC7Play.exe
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, System : : C:\Program Files\Common Files\system\Updaterun.exe
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, LoadFujitsuQuickTouch : [FUJITSU LIMITED] : C:\Program Files\Fujitsu\Application Panel\QuickTouch.exe
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, LoadBtnHnd : [FUJITSU LIMITED] : C:\Program Files\Fujitsu\BtnHnd\BtnHnd.exe
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, IndicatorUtility : [FUJITSU LIMITED] : C:\Program Files\Fujitsu\Fujitsu Hotkey Utility\IndicatorUty.exe
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Fix-It AV : [V Communications, Inc.] : C:\Program Files\VCOM\SystemSuite\MemCheck.exe
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, EOUApp : [Intel Corporation] : C:\Program Files\Intel\Wireless\Bin\EOUWiz.exe
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, ASM : [AOL LLC] : C:\Program Files\AOL\ACTIVE SECURITY MONITOR\ASMONITOR.EXE
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, AVP : [Kaspersky Lab] : C:\Program Files\KASPERSKY LAB\KASPERSKY INTERNET SECURITY 7.0\AVP.EXE
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce, txqgyi57 : : C:\WINDOWS\system32\TXQGYI57.DLL
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce, drdhs : : C:\WINDOWS\system32\DRDHS.DLL
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce, wnn74 : : C:\WINDOWS\system32\WNN74.DLL
04 - HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows, AppInit_DLLs : [Kaspersky Lab] : C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\adialhk.dll
04 - HKLM\System\CurrentControlSet\Control\Session Manager, BootExecute : : C:\WINDOWS\system32\LSDELETE.EXE
04 - Startup: %START_PROGRAMSALL%\Startup\Adobe Acrobat Speed Launcher.lnk : C:\WINDOWS\Installer\{AC76BA86-1033-0000-7760-000000000002}\SC_Acrobat.exe
Shell Extensions
WinRAR - {B41DB860-8EE4-11D2-9906-E49FADC173CA} - : C:\Program Files\WinRAR\rarext.dll
dBpShell Class - {FED7043D-346A-414D-ACD7-550D052499A7} - : C:\Program Files\Illustrate\dBpowerAMP\dBShell.dll
dMCIShell Class - {2C49B5D0-ACE7-4D17-9DF0-A254A6C5A0C5} - : C:\Program Files\Illustrate\dBpowerAMP\dMCShell.dll
Shell Extension for CDRW - {950FF917-7A57-46BC-8017-59D9BF474000} - [Ahead Software AG] : C:\Program Files\Ahead\InCD\incdshx.dll
Microsoft Outlook - {00020D75-0000-0000-C000-000000000046} - [Microsoft Corporation] : C:\Program Files\Microsoft Office\OFFICE11\MLSHEXT.DLL
Outlook File Icon Extension - {0006F045-0000-0000-C000-000000000046} - [Microsoft Corporation] : C:\Program Files\Microsoft Office\OFFICE11\OLKFSTUB.DLL
- {42042206-2D85-11D3-8CFF-005004838597} - [Microsoft Corporation] : C:\Program Files\Microsoft Office\OFFICE11\msohev.dll
RealOne Player Context Menu Class - {F0CB00CD-5A07-4D91-97F5-A8C92CDA93E4} - [RealNetworks, Inc.] : C:\Program Files\Real\RealPlayer\rpshell.dll
Acrobat Elements Context Menu - {D25B2CAB-8A9A-4517-A9B2-CB5F68A5A802} - [Adobe Systems Inc.] : C:\Program Files\Adobe\Acrobat 7.0\Acrobat Elements\ContextMenu.dll
Image Converter context menu - {C6643EC0-49AC-4c15-A455-04104DB900A9} - : C:\Program Files\Sony\IMAGE CONVERTER 3\CtxMenu.dll
Web Anti-Virus statistics - {85E0B171-04FA-11D1-B7DA-00A0C90348D6} - [Kaspersky Lab] : C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\SCIEPlgn.dll
Protocol Filters
- {807553E5-5146-11D5-A672-00B0D022E945} - [Microsoft Corporation] : C:\Program Files\Common Files\Microsoft Shared\OFFICE11\MSOXMLMF.DLL
Protocol Handler
Data Page Plugable Protocal mso-offdap11 Handler - {32505114-5902-49B2-880A-1F7738E5A384} - [Microsoft Corporation] : C:\Program Files\Common Files\Microsoft Shared\Web Components\11\OWC11.DLL
Services
23 - : C:\WINDOWS\system32\DRIVERS\adcyn7.sys
23 - [Broadcom Corporation] : C:\WINDOWS\system32\DRIVERS\b57xp32.sys
23 - : C:\WINDOWS\system32\DRIVERS\bhxcer41.sys
23 - [O2 Micro] : C:\WINDOWS\system32\drivers\o2mmb.sys
23 - [FUJITSU LIMITED] : C:\WINDOWS\system32\DRIVERS\FUJ02B1.sys
23 - [Intel Corporation] : C:\WINDOWS\system32\DRIVERS\iaStor.sys
23 - : C:\WINDOWS\system32\DRIVERS\iokpky.sys
23 - [Intel Corporation] : C:\WINDOWS\system32\DRIVERS\iwca.sys
23 - : C:\WINDOWS\system32\DRIVERS\kbbhw.sys
23 - [Kaspersky Lab] : C:\WINDOWS\system32\DRIVERS\klim5.sys
23 - : C:\WINDOWS\system32\drivers\msqmx.sys
23 - : C:\WINDOWS\system32\DRIVERS\qcgrwj19.sys
23 - : C:\WINDOWS\system32\DRIVERS\sdbig.sys
23 - [Sygate Technologies, Inc.] : C:\WINDOWS\system32\Drivers\Teefer.sys
23 - : C:\WINDOWS\system32\DRIVERS\txqgyi57.sys
23 - [Intel® Corporation] : C:\WINDOWS\system32\DRIVERS\w29n51.sys
23 - [Sygate Technologies, Inc.] : C:\WINDOWS\system32\DRIVERS\WPSDRVNT.SYS
23 - : C:\WINDOWS\system32\DRIVERS\wwarvj43.sys
Winlogon Notify
HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent, DLLName : [ATI Technologies Inc.] : C:\WINDOWS\system32\Ati2evxx.dll
HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\IntelWireless, DLLName : [Intel Corporation] : C:\Program Files\Intel\Wireless\Bin\LgNotify.dll
HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\klogon, DLLName : [Kaspersky Lab] : C:\WINDOWS\system32\klogon.dll
Thread Files
<Adware CDN> [?????????(CNNIC)] : C:\Program Files\OCINS\idnsvr.exe
<Trojan/Back-IRC.Zapchast> : C:\Program Files\Common Files\system\Updaterun.exe
<Unreadable Binary Files> : C:\WINDOWS\system32\DRDHS.DLL
<Unreadable Binary Files> : C:\WINDOWS\system32\WNN74.DLL
<Adware CDN> [??????????(CNNIC)] : C:\Program Files\OCINS\ieaux.dll
<AdWare.W32.Cinmus> : C:\WINDOWS\system32\DRIVERS\ACPIDISK.SYS
<Unreadable Binary Files> : C:\WINDOWS\system32\DRIVERS\adcyn7.sys
<Unreadable Binary Files> : C:\WINDOWS\system32\DRIVERS\bhxcer41.sys
<Adware CDN> [??????????(CNNIC)] : C:\WINDOWS\system32\drivers\cnprov.sys
<Trojan/Dloader.Agent.ELI> : C:\WINDOWS\system32\DRIVERS\FU8B.SYS
<Adware CDN> [??????????(CNNIC)] : C:\WINDOWS\system32\drivers\idnaux.sys
<Unreadable Binary Files> : C:\WINDOWS\system32\DRIVERS\iokpky.sys
<Unreadable Binary Files> : C:\WINDOWS\system32\DRIVERS\kbbhw.sys
<Trojan/QQHelp-Gen> : C:\WINDOWS\system32\drivers\msqmx.sys
<Trojan/w32.RetRCT.PDR> : C:\WINDOWS\system32\DRIVERS\MXDISPDR.SYS
<Unreadable Binary Files> : C:\WINDOWS\system32\DRIVERS\qcgrwj19.sys
<Unreadable Binary Files> : C:\WINDOWS\system32\DRIVERS\sdbig.sys
<Unreadable Binary Files> : C:\WINDOWS\system32\DRIVERS\txqgyi57.sys
<Unreadable Binary Files> : C:\WINDOWS\system32\DRIVERS\wwarvj43.sys
<Adware CDN> [??????????(CNNIC)] : C:\Program Files\OCINS\uninstall.exe
<Trojan/QQHelp-Gen> : C:\WINDOWS\system32\advport.dll
<Adware CDN> : C:\WINDOWS\system32\cdnprh.dll
<Adware CDN> [??????????(CNNIC)] : C:\WINDOWS\system32\idnreg.dll
<MediaPass> : C:\WINDOWS\system32\ide21201.vxd
<Trojan/QQHelp-Gen> : C:\WINDOWS\system32\Score.txt
<Trojan/QQHelp-Gen> : C:\WINDOWS\system32\wbem\ocmor.dll
<Trojan/Back-IRC.Zapchast> : C:\WINDOWS\f2.exe
<Trojan/Back-IRC.Zapchast> : C:\WINDOWS\g3.exe
<Adware CDN> [??????????(CNNIC)] : C:\Program Files\OCINS\austr.dll
<Adware CDN> [??????????(CNNIC)] : C:\Program Files\OCINS\cndsv.dll
<Adware CDN> [??????????(CNNIC)] : C:\Program Files\OCINS\cnprovh.dll
<Adware CDN> [??????????(CNNIC)] : C:\Program Files\OCINS\config.exe
<Adware CDN> [??????????(CNNIC)] : C:\Program Files\OCINS\convf.dll
<Adware CDN> [??????????(CNNIC)] : C:\Program Files\OCINS\convs.dll
<Adware CDN> [?????????(CNNIC)] : C:\Program Files\OCINS\idnsvr.dll
<Adware CDN> [??????????(CNNIC)] : C:\Program Files\OCINS\srchsp.dll
<Adware CDN> [??????????] : C:\Program Files\OCINS\update\update.exe
<Adware CDN> : C:\Program Files\OCINS\cnrbtn.html
<Adware CDN> : C:\Program Files\OCINS\cnstc.ini
<Adware CDN> : C:\Program Files\OCINS\ctrcfg.ini
<Adware CDN> : C:\Program Files\OCINS\cuscfg.dat
<Adware CDN> : C:\Program Files\OCINS\idnaux.dat
<Adware CDN> : C:\Program Files\OCINS\kwacs.dat
<Adware CDN> : C:\Program Files\OCINS\kwrep.dat
<Adware CDN> : C:\Program Files\OCINS\ocinfo.dat
<Adware CDN> : C:\Program Files\OCINS\path.dat
<Adware CDN> : C:\Program Files\OCINS\usrcfg.ini
<Adware CDN> : C:\Program Files\OCINS\version.dat
<Adware CDN> : C:\Program Files\OCINS\update\data.cab
<Adware CDN> : C:\Program Files\OCINS\update\data2.cab
<Adware CDN> : C:\Program Files\OCINS\update\idnaux.dat
<Adware CDN> : C:\Program Files\OCINS\update\ocinfo.dat
<Adware CDN> : C:\Program Files\OCINS\update\path.dat
<Adware CDN> : C:\Program Files\OCINS\update\version.dat
<Trojan/Dloader.Adload.CHN> : C:\Documents and Settings\All Users\Application Data\t\a1613.dat
<Trojan/Dloader.Adload.CHN> : C:\Documents and Settings\All Users\Application Data\t\b1613.dat
<Trojan/Dloader.Adload.CHN> : C:\Documents and Settings\All Users\Application Data\t\k1613.dat
<Trojan/Dloader.Adload.CHN> : C:\Documents and Settings\All Users\Application Data\t\p1613.dat
<Trojan/Dloader.Adload.CHN> : C:\Documents and Settings\All Users\Application Data\t\r1613.dat
<Trojan/Dloader.Agent.ELI> : C:\Documents and Settings\All Users\Templates\temp.exe
<Zwinky-MWS> : C:\WINDOWS\Downloaded Program Files\f3initialsetup1.0.0.15.inf
<AdWare.W32.Cinmus.PCT> [???(??)??????] : C:\Documents and Settings\All Users\Application Data\Microsoft\PCTools\pctools.dll
<Trojan.Agent.adv> : C:\Documents and Settings\Kaven\sd.exe
<Trojan.Agent.adv> [Microsoft Corporation] : C:\Program Files\Common Files\Error Report\svdll.dll
--------------------------------------------------------------------------------------------------------------------------
LOGFILE Kaspersky Internet Security 7.0
Scan My Computer : completed
Scanned: 384867
Detected: 104
Untreated: 104
Start time: 10/31/2007 7:31:20 AM
Duration: 01:27:34
Finish time: 10/31/2007 8:58:54 AM
Detected
Status Object
detected: adware not-a-virus:AdWare.Win32.AdHelper.eb File: c:\windows\system32\xfoep.dll//PE_Patch
detected: Trojan program Trojan-Downloader.Win32.Agent.dix File: c:\windows\system32\drivers\adcyn7.sys
detected: Trojan program Trojan.Win32.BHO.gn File: c:\windows\system32\drivers\iokpky.sys
detected: Trojan program Trojan-Downloader.Win32.Agent.bbb File: c:\windows\system32\drivers\kbbhw.sys
detected: Trojan program Trojan.Win32.Agent.abe File: c:\windows\system32\drivers\qcgrwj19.sys
detected: Trojan program Trojan.Win32.Agent.bps File: c:\windows\system32\drivers\txqgyi57.sys
detected: Trojan program Trojan.Win32.BHO.dg File: c:\windows\system32\drivers\wwarvj43.sys
detected: Trojan program Backdoor.Win32.Agent.cgg File: c:\windows\system32\shdocvw32.dll
detected: Trojan program Trojan.Win32.Agent.bpt File: C:\WINDOWS\system32\txqgyi57.dll
detected: Trojan program Trojan.Win32.Agent.bkk File: c:\windows\system32\wuxztt.dll
detected: Trojan program Backdoor.Win32.Agent.cgg File: C:\System Volume Information\_restore{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP11\A0007932.dll
detected: Trojan program Trojan.Win32.StartPage.apb File: C:\SYSTEM VOLUME INFORMATION\_RESTORE{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP11\A0007933.SYS
detected: adware not-a-virus:AdWare.Win32.BHO.jd File: C:\SYSTEM VOLUME INFORMATION\_RESTORE{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP11\A0007934.DLL
detected: Trojan program Trojan.Win32.Agent.adv File: C:\SYSTEM VOLUME INFORMATION\_RESTORE{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP11\A0007935.DLL
detected: Trojan program Trojan-Downloader.Win32.Agent.dvu File: C:\SYSTEM VOLUME INFORMATION\_RESTORE{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP11\A0007936.EXE
detected: virus Worm.Win32.Agent.p File: C:\SYSTEM VOLUME INFORMATION\_RESTORE{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP11\A0007937.EXE
detected: Trojan program Backdoor.Win32.Agent.cgg File: C:\SYSTEM VOLUME INFORMATION\_RESTORE{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP12\A0007971.DLL
detected: Trojan program Trojan-Downloader.Win32.QQHelper.adn File: C:\SYSTEM VOLUME INFORMATION\_RESTORE{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP12\A0007972.EXE
detected: virus Worm.Win32.Agent.p File: C:\SYSTEM VOLUME INFORMATION\_RESTORE{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP12\A0007973.EXE
detected: adware not-a-virus:AdWare.Win32.Agent.fv File: C:\SYSTEM VOLUME INFORMATION\_RESTORE{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP12\A0007974.EXE
detected: virus Worm.Win32.Agent.p File: C:\SYSTEM VOLUME INFORMATION\_RESTORE{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP12\A0007975.EXE
detected: Trojan program Trojan.Win32.Agent.adv File: C:\SYSTEM VOLUME INFORMATION\_RESTORE{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP12\A0008906.DLL
detected: Trojan program Trojan-Downloader.Win32.Agent.dvu File: C:\SYSTEM VOLUME INFORMATION\_RESTORE{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP12\A0008907.EXE
detected: Trojan program Trojan-Downloader.Win32.QQHelper.adf File: C:\SYSTEM VOLUME INFORMATION\_RESTORE{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP12\A0008908.DLL//PE_Patch
detected: Trojan program Trojan-Downloader.Win32.Agent.dix File: C:\SYSTEM VOLUME INFORMATION\_RESTORE{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP12\A0008909.SYS
detected: Trojan program Trojan.Win32.StartPage.apb File: C:\SYSTEM VOLUME INFORMATION\_RESTORE{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP12\A0008910.SYS
detected: adware not-a-virus:AdWare.Win32.Agent.fv File: C:\SYSTEM VOLUME INFORMATION\_RESTORE{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP12\A0008911.DLL//UPack
detected: Trojan program Backdoor.Win32.Agent.cgg File: C:\SYSTEM VOLUME INFORMATION\_RESTORE{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP12\A0008912.DLL
detected: adware not-a-virus:AdWare.Win32.BHO.jd File: C:\SYSTEM VOLUME INFORMATION\_RESTORE{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP12\A0008914.DLL
detected: virus Worm.Win32.Agent.p File: C:\SYSTEM VOLUME INFORMATION\_RESTORE{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP12\A0008915.EXE
detected: Trojan program Trojan-Dropper.Win32.Agent.cbc File: C:\SYSTEM VOLUME INFORMATION\_RESTORE{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP12\A0008916.EXE
detected: Trojan program Backdoor.Win32.Agent.cgg File: C:\SYSTEM VOLUME INFORMATION\_RESTORE{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP13\A0008922.DLL
detected: virus Worm.Win32.Agent.p File: C:\SYSTEM VOLUME INFORMATION\_RESTORE{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP13\A0008923.EXE
detected: Trojan program Backdoor.Win32.Agent.cgg File: C:\SYSTEM VOLUME INFORMATION\_RESTORE{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP14\A0008945.DLL
detected: Trojan program Trojan-Downloader.Win32.QQHelper.adn File: C:\SYSTEM VOLUME INFORMATION\_RESTORE{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP14\A0008946.EXE
detected: virus Worm.Win32.Agent.p File: C:\SYSTEM VOLUME INFORMATION\_RESTORE{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP14\A0008947.EXE
detected: adware not-a-virus:AdWare.Win32.Agent.fv File: C:\SYSTEM VOLUME INFORMATION\_RESTORE{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP14\A0008948.EXE
detected: virus Worm.Win32.Agent.p File: C:\SYSTEM VOLUME INFORMATION\_RESTORE{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP14\A0008949.EXE
detected: Trojan program Trojan.Win32.Agent.adv File: C:\System Volume Information\_restore{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP14\A0011908.exe//data.rar/svdll.dll
detected: Trojan program Trojan.Win32.Agent.adv File: C:\SYSTEM VOLUME INFORMATION\_RESTORE{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP14\A0011909.DLL
detected: Trojan program Trojan-Downloader.Win32.Agent.dvu File: C:\SYSTEM VOLUME INFORMATION\_RESTORE{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP14\A0011910.EXE
detected: Trojan program Trojan-Downloader.Win32.Agent.bbb File: C:\SYSTEM VOLUME INFORMATION\_RESTORE{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP14\A0011911.EXE
detected: Trojan program Trojan.Win32.StartPage.apb File: C:\SYSTEM VOLUME INFORMATION\_RESTORE{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP14\A0011912.EXE
detected: Trojan program Trojan-Downloader.Win32.Agent.dix File: C:\SYSTEM VOLUME INFORMATION\_RESTORE{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP14\A0011913.SYS
detected: Trojan program Trojan-Dropper.Win32.Agent.cbc File: C:\SYSTEM VOLUME INFORMATION\_RESTORE{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP14\A0011914.EXE
detected: adware not-a-virus:AdWare.Win32.BHO.jd File: C:\SYSTEM VOLUME INFORMATION\_RESTORE{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP14\A0011918.DLL
detected: adware not-a-virus:AdWare.Win32.Cinmus.d File: C:\SYSTEM VOLUME INFORMATION\_RESTORE{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP14\A0011920.DLL
detected: Trojan program Trojan-Downloader.Win32.QQHelper.adf File: C:\SYSTEM VOLUME INFORMATION\_RESTORE{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP14\A0011941.DLL//PE_Patch
detected: Trojan program Trojan.Win32.StartPage.apb File: C:\SYSTEM VOLUME INFORMATION\_RESTORE{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP14\A0011942.SYS
detected: adware not-a-virus:AdWare.Win32.Agent.fv File: C:\SYSTEM VOLUME INFORMATION\_RESTORE{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP14\A0011953.DLL//UPack
detected: Trojan program Backdoor.Win32.Agent.cgg File: C:\SYSTEM VOLUME INFORMATION\_RESTORE{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP14\A0011954.DLL
detected: Trojan program Trojan-Downloader.Win32.QQHelper.afk File: C:\SYSTEM VOLUME INFORMATION\_RESTORE{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP14\A0011955.DLL
detected: Trojan program Trojan-Downloader.Win32.QQHelper.adn File: C:\SYSTEM VOLUME INFORMATION\_RESTORE{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP14\A0011956.EXE
detected: virus Worm.Win32.Agent.p File: C:\SYSTEM VOLUME INFORMATION\_RESTORE{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP14\A0011957.EXE
detected: adware not-a-virus:AdWare.Win32.Agent.fv File: C:\SYSTEM VOLUME INFORMATION\_RESTORE{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP14\A0011958.EXE
detected: virus Worm.Win32.Agent.p File: C:\SYSTEM VOLUME INFORMATION\_RESTORE{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP14\A0011959.EXE
detected: Trojan program Backdoor.Win32.Agent.cgg File: C:\SYSTEM VOLUME INFORMATION\_RESTORE{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP15\A0011961.DLL
detected: Trojan program Trojan-Downloader.Win32.QQHelper.afk File: C:\SYSTEM VOLUME INFORMATION\_RESTORE{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP15\A0011963.DLL
detected: adware not-a-virus:AdWare.Win32.Agent.fv File: C:\SYSTEM VOLUME INFORMATION\_RESTORE{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP15\A0011964.DLL//UPack
detected: virus Worm.Win32.Agent.p File: C:\SYSTEM VOLUME INFORMATION\_RESTORE{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP15\A0011965.EXE
detected: Trojan program Trojan-Downloader.Win32.QQHelper.adn File: C:\SYSTEM VOLUME INFORMATION\_RESTORE{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP15\A0011966.EXE
detected: virus Worm.Win32.Agent.p File: C:\SYSTEM VOLUME INFORMATION\_RESTORE{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP15\A0011967.EXE
detected: adware not-a-virus:AdWare.Win32.Agent.fv File: C:\SYSTEM VOLUME INFORMATION\_RESTORE{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP15\A0011968.DLL//UPack
detected: adware not-a-virus:AdWare.Win32.Agent.fv File: C:\SYSTEM VOLUME INFORMATION\_RESTORE{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP15\A0011969.EXE
detected: Trojan program Trojan-Downloader.Win32.Hmir.u File: C:\System Volume Information\_restore{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP15\A0011970.exe
detected: adware not-a-virus:AdWare.Win32.Agent.fv File: C:\System Volume Information\_restore{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP15\A0011973.exe
detected: adware not-a-virus:AdWare.Win32.Agent.fv File: C:\System Volume Information\_restore{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP15\A0011979.dll//UPack
detected: Trojan program Backdoor.Win32.Agent.cgg File: C:\System Volume Information\_restore{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP15\A0011980.dll
detected: Trojan program Trojan-Downloader.Win32.QQHelper.afk File: C:\System Volume Information\_restore{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP15\A0011981.dll
detected: virus Worm.Win32.Agent.p File: C:\System Volume Information\_restore{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP15\A0011982.exe
detected: Trojan program Trojan-Downloader.Win32.QQHelper.adn File: C:\System Volume Information\_restore{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP15\A0011987.exe
detected: virus Worm.Win32.Agent.p File: C:\System Volume Information\_restore{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP15\A0011988.exe
detected: adware not-a-virus:AdWare.Win32.Agent.fv File: C:\System Volume Information\_restore{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP15\A0011989.exe
detected: adware not-a-virus:AdWare.Win32.Agent.fv File: C:\System Volume Information\_restore{24545FEF-B211-4ADD-BCD7-5B9C5DBE970B}\RP15\A0011990.dll//UPack
detected: Trojan program Trojan-Downloader.Win32.QQHelper.adn File: C:\Documents and Settings\Kaven\bind_50104.exe
detected: adware not-a-virus:AdWare.Win32.Cinmus.po File: C:\Documents and Settings\Kaven\dodolook020.exe//data0003//data0001
detected: adware not-a-virus:AdWare.Win32.Cinmus.j File: C:\Documents and Settings\Kaven\dodolook020.exe//data0003//data0004
detected: virus Worm.Win32.Agent.p File: C:\Documents and Settings\Kaven\ie.exe
detected: adware not-a-virus:AdWare.Win32.Agent.fv File: C:\Documents and Settings\Kaven\RGShell.dll//UPack
detected: adware not-a-virus:AdWare.Win32.Agent.fv File: C:\Documents and Settings\Kaven\spool.exe
detected: adware not-a-virus:AdWare.Win32.Agent.fv File: C:\Documents and Settings\Kaven\todd.exe//data.rar/RGShell.dll//UPack
detected: adware not-a-virus:AdWare.Win32.Agent.fv File: C:\Documents and Settings\Kaven\todd.exe//data.rar/spool.exe
detected: adware not-a-virus:AdWare.Win32.WSearch.aa File: C:\Documents and Settings\Kaven\Local Settings\Temp\cml204.tmp
detected: adware not-a-virus:AdWare.Win32.WSearch.aa File: C:\Documents and Settings\Kaven\Local Settings\Temp\cml26A.tmp
detected: adware not-a-virus:AdWare.Win32.WSearch.aa File: C:\Documents and Settings\Kaven\Local Settings\Temp\cml3E.tmp
detected: virus Worm.Win32.Agent.p File: C:\Program Files\Internet Explorer\iexp1ore.exe
detected: Trojan program Trojan-Downloader.Win32.Agent.ekz File: C:\WINDOWS\DOWNLOADED PROGRAM FILES\AW7C88.DLL
detected: Trojan program Trojan-Downloader.Win32.Agent.ecv File: C:\WINDOWS\DOWNLOADED PROGRAM FILES\BUM105ZV.DLL
detected: adware not-a-virus:AdWare.Win32.Agent.mf File: C:\WINDOWS\DOWNLOADED PROGRAM FILES\D2LEHM.DLL//PE_Patch.PECompact//PecBundle//PECompact
detected: Trojan program Trojan-Downloader.Win32.Agent.ecv File: C:\WINDOWS\DOWNLOADED PROGRAM FILES\EF7M.DLL
detected: Trojan program Trojan-Downloader.Win32.Agent.ekz File: C:\WINDOWS\DOWNLOADED PROGRAM FILES\KQVVN.DLL
detected: Trojan program Trojan-Downloader.Win32.Agent.ecv File: C:\WINDOWS\DOWNLOADED PROGRAM FILES\MHC27H.DLL
detected: Trojan program Trojan-Downloader.Win32.Agent.ebs File: C:\WINDOWS\DOWNLOADED PROGRAM FILES\R5F51RM.DLL
detected: Trojan program Trojan-Downloader.Win32.Agent.ekz File: C:\WINDOWS\DOWNLOADED PROGRAM FILES\S7R9.DLL
detected: Trojan program Trojan-Downloader.Win32.Agent.ecv File: C:\WINDOWS\DOWNLOADED PROGRAM FILES\SFB.DLL
detected: Trojan program Trojan-Downloader.Win32.Agent.ekz File: C:\WINDOWS\DOWNLOADED PROGRAM FILES\XN3725E.DLL
detected: Trojan program Trojan-Downloader.Win32.Agent.ebs File: C:\WINDOWS\DOWNLOADED PROGRAM FILES\Z7R5AILD.DLL
detected: Trojan program Trojan.Win32.BHO.qi File: c:\windows\system32\apphelps.dll
detected: Trojan program Trojan-Downloader.Win32.Agent.bbb File: C:\WINDOWS\SYSTEM32\DRDHS.DLL
detected: Trojan program Trojan.Win32.Agent.abe File: C:\WINDOWS\system32\kbdics.dll
detected: Trojan program Trojan-Downloader.Win32.Hmir.u File: C:\WINDOWS\SYSTEM32\KE3HUM539S.EXE
detected: adware not-a-virus:AdWare.Win32.Agent.fv File: C:\WINDOWS\system32\RGShell.dll//UPack
detected: Trojan program Trojan-Downloader.Win32.Agent.dix File: C:\WINDOWS\system32\wnn74.dll
detected: Trojan program Trojan-Downloader.Win32.QQHelper.afk File: C:\WINDOWS\SYSTEM32\WBEM\BPTBL.DLL
-------------------------------------------------------------------------------------------------------------------------------------
Logfile of HijackThis v1.99.1
Scan saved at 9:47:49 AM, on 10/31/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16544)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Ahead\InCD\InCDsrv.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Intel\Wireless\Bin\ZcfgSvc.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\Rundll32.exe
C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe
C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\67751.exe
C:\Program Files\Intel\Wireless\Bin\OProtSvc.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\Program Files\Spyware Terminator\sp_rsser.exe
C:\WINDOWS\system32\svchost.exe
C:\PROGRA~1\VCOM\SYSTEM~1\MXTask.exe
C:\Program Files\HHVcdV7Sys\VC7SecS.exe
C:\PROGRA~1\VCOM\SYSTEM~1\mxtask.exe
C:\WINDOWS\system32\taskmgr.exe
C:\Documents and Settings\Kaven\Desktop\SECURITY N SYSTEM UTILITIES\HijackThis.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\regsvr32.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft....k/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft....k/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft....k/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft....k/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://client.jogo.c...esearch-en.html
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = http://client.jogo.c...msearch-en.html
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: sosHlpr Class - {00C104F7-0F5C-470C-ABCF-A5B2E70752F1} - C:\WINDOWS\system32\wuxztt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Pando Search Assistant BHO - {06663B51-0D73-4f9f-BCC5-4AA941470AFD} - C:\Program Files\PandoBar\SrchAstt\1.bin\P4SRCHAS.DLL
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {1CB20BF0-BBAE-40A7-93F4-6435FF3D0411} - C:\PROGRA~1\Crawler\Toolbar\ctbr.dll
O2 - BHO: flashget urlcatch - {2F364306-AA45-47B5-9F9D-39A8B94E7EF7} - C:\Program Files\FlashGet\jccatch.dll
O2 - BHO: Info cache - {385AB8C6-FB22-4D17-8834-064E2BA0A6F0} - C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\MICROSOFT\PCTOOLS\PCTOOLS.DLL (file missing)
O2 - BHO: CInterceptor Object - {38D3FE60-3D53-4F37-BB0E-C7A97A26A156} - C:\Program Files\Pando Networks\Pando\PandoIEPlugin.dll
O2 - BHO: Invoke Class - {3AA0903B-1E13-4865-B114-15792D413C41} - C:\WINDOWS\system32\c671.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O2 - BHO: Pando Toolbar BHO - {E3EA4FD1-CADE-4ae5-84F7-086EEE888BE4} - C:\Program Files\PandoBar\bar\1.bin\PANDOBAR.DLL
O2 - BHO: FlashGet GetFlash Class - {F156768E-81EF-470C-9057-481BA8380DBA} - C:\Program Files\FlashGet\getflash.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: Pando Toolbar - {E3EA4FD9-CADE-4ae5-84F7-086EEE888BE4} - C:\Program Files\PandoBar\bar\1.bin\PANDOBAR.DLL
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: &Crawler Toolbar - {4B3803EA-5230-4DC3-A7FC-33638F3D3542} - C:\PROGRA~1\Crawler\Toolbar\ctbr.dll
O4 - HKLM\..\Run: [WMAAD] C:\Program Files\Sony\WALKMAN Launcher\WMAAD.exe
O4 - HKLM\..\Run: [VC7Player] C:\Program Files\HHVcdV7Sys\VC7Play.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe"
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [LoadFujitsuQuickTouch] C:\Program Files\Fujitsu\Application Panel\QuickTouch.exe
O4 - HKLM\..\Run: [LoadBtnHnd] C:\Program Files\Fujitsu\BtnHnd\BtnHnd.exe
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [IntelWireless] C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [IndicatorUtility] C:\Program Files\Fujitsu\Fujitsu Hotkey Utility\IndicatorUty.exe
O4 - HKLM\..\Run: [InCD] C:\Program Files\Ahead\InCD\InCD.exe
O4 - HKLM\..\Run: [Fix-It AV] C:\PROGRA~1\VCOM\SYSTEM~1\MemCheck.exe
O4 - HKLM\..\Run: [EOUApp] C:\Program Files\Intel\Wireless\Bin\EOUWiz.exe
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [ASM] "C:\Program Files\AOL\Active Security Monitor\ASMonitor.exe" HIDEMAIN
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe"
O4 - HKLM\..\Run: [Acrobat Assistant 7.0] "C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe"
O4 - HKLM\..\Run: [SpywareTerminator] "C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe"
O4 - HKLM\..\RunOnce: [sdbig] %systemroot%\system32\regsvr32.exe /s %systemroot%\system32\apphelps.dll
O4 - HKLM\..\RunOnce: [qcgrwj19] %systemroot%\system32\regsvr32.exe /s %systemroot%\system32\kbdics.dll
O4 - HKLM\..\RunOnce: [drdhs] %systemroot%\system32\Rundll32.exe %systemroot%\system32\drdhs.dll,DllUnregisterServer
O4 - HKLM\..\RunOnce: [iokpky] %systemroot%\system32\regsvr32.exe /s %systemroot%\system32\obcts.dll
O4 - HKLM\..\RunOnce: [bhxcer41] %systemroot%\system32\regsvr32.exe /s %systemroot%\system32\wbdics.dll
O4 - HKLM\..\RunOnce: [wnn74] %systemroot%\system32\Rundll32.exe %systemroot%\system32\wnn74.dll,DllUnregisterServer
O4 - HKCU\..\Run: [SPYWATCH] C:\Program Files\BulletProofSoft.com\SpywareRemover\SpyWatch.exe /STARTUP
O4 - HKCU\..\Run: [Pando] "C:\Program Files\Pando Networks\Pando\Pando.exe" /Minimized
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Active Desktop Calendar] C:\Program Files\XemiComputers\Active Desktop Calendar\ADC.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - HKCU\..\RunOnce: [TSClientMSIUninstaller] cmd.exe /C "cscript %systemroot%\Installer\TSClientMsiTrans\tscuinst.vbs"
O4 - Global Startup: Adobe Acrobat Speed Launcher.lnk = ?
O4 - Global Startup: Adobe Gamma Loader.exe.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: &Access Internet Keyword - C:\Program Files\OCINS\cnrbtn.html
O8 - Extra context menu item: &Download All with FlashGet - C:\Program Files\FlashGet\jc_all.htm
O8 - Extra context menu item: &Download with FlashGet - C:\Program Files\FlashGet\jc_link.htm
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.liv...m/quickadd.aspx
O8 - Extra context menu item: Convert link target to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convert link target to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convert selected links to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Convert selected links to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Convert selection to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convert selection to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convert to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convert to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Crawler Search - tbr:iemenu
O8 - Extra context menu item: E&xport to Microsoft Office Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O9 - Extra button: Web Anti-Virus statistics - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\SCIEPlgn.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {B012491E-8FA4-4851-AA9B-22E33784FBAD} - (no file)
O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\Program Files\FlashGet\FlashGet.exe
O9 - Extra 'Tools' menuitem: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\Program Files\FlashGet\FlashGet.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: WebControlDeploy - https://grouper.com/...rouperSetup.cab
O16 - DPF: {1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB} - http://ak.exe.imgfar...tup1.0.0.15.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} - http://download.mcaf...01/mcinsctl.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: tbr - {4D25FB7A-8902-4291-960E-9ADA051CFBBF} - C:\PROGRA~1\Crawler\Toolbar\ctbr.dll
O20 - AppInit_DLLs: C:\PROGRA~1\KASPER~1\KASPER~1.0\adialhk.dll
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O20 - Winlogon Notify: IntelWireless - C:\Program Files\Intel\Wireless\Bin\LgNotify.dll
O20 - Winlogon Notify: klogon - C:\WINDOWS\system32\klogon.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft AB - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Kaspersky Internet Security 7.0 (AVP) - Unknown owner - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe" -r (file missing)
O23 - Service: EvtEng - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Image Converter SCSI Service (ICScsiSV) - Sony Corporation - C:\Program Files\Sony\IMAGE CONVERTER 3\ICScsiSV.exe
O23 - Service: IcVzMonLauncher - Sony Corporation - C:\Program Files\Sony\IMAGE CONVERTER 3\IcVzMonLauncher.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: Image Converter video recording monitor for VAIO Entertainment - Sony Corporation - C:\Program Files\Sony\IMAGE CONVERTER 3\IcVzMon.exe
O23 - Service: InCD Helper (InCDsrv) - Ahead Software AG - C:\Program Files\Ahead\InCD\InCDsrv.exe
O23 - Service: MSCSPTISRV - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe
O23 - Service: OwnershipProtocol - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\OProtSvc.exe
O23 - Service: PACSPTISVR - Unknown owner - C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe
O23 - Service: RegSrvc - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: SonicStage Back-End Service - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SsBeSvc.exe
O23 - Service: Windows Management Prints System (spoo1v) - Unknown owner - spoo1v.exe (file missing)
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe
O23 - Service: Spyware Terminator Clam Service (sp_clamsrv) - Crawler.com - C:\Program Files\WinClamAVShield\sp_clamsrv.exe
O23 - Service: Spyware Terminator Realtime Shield Service (sp_rssrv) - Crawler.com - C:\Program Files\Spyware Terminator\sp_rsser.exe
O23 - Service: SonicStage SCSI Service (SSScsiSV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SSScsiSV.exe
O23 - Service: SystemSuite Task Manager - V Communications, Inc. - C:\PROGRA~1\VCOM\SYSTEM~1\MXTask.exe
O23 - Service: Virtual CD v7 Management Service (VC7SecS) - H+H Software GmbH - C:\Program Files\HHVcdV7Sys\VC7SecS.exe
---------------------------------------------------------------------------------------------------------------------------
Hijackthis Uninstall List
Active Desktop Calendar 4.8
Active Security Monitor 2.0.0.18
Ad-Aware 2007
Adobe Acrobat 7.0.9 Professional
Adobe Download Manager 2.0 (Remove Only)
Adobe Flash Player 9
Adobe Photoshop 6.0
Adobe Reader 7.0.8
Adobe SVG Viewer
Agere Systems AC'97 Modem
ATI Display Driver
AVS VideoConverter 3.1.1.152
CCleaner (remove only)
Crawler Toolbar with Web Security Guard
dBpowerAMP Monkeys Audio Codec
dBpowerAMP mp3PRO Input Codec
dBpowerAMP Music Converter
dBpowerAMP Ogg Vorbis Codec
dBPowerAMP Real Audio Encoder R3
dBpowerAMP VTX Codec
dBpowerAMP Winamp Codec
dBpowerAMP WMA V8 Codec
Diablo II
dMC Auxiliary Input
dMC File Selector
dMC Generic CLI Encoder
dMC mp3PRO (CLI) Encoder
dMC Power Pack
DSL100U USB ADSL Modem
eMule
FlashGet 1.9.6.1073
Form Fill (Windows Live Toolbar)
Fruity Loops Studio XXL 5.01
Fujitsu Hotkey Utility
Google Toolbar for Internet Explorer
HijackThis 1.99.1
Hotfix for Windows Media Format 11 SDK (KB929399)
Hotfix for Windows Media Player 11 (KB939683)
Hotfix for Windows XP (KB896344)
Hotfix for Windows XP (KB914440)
Hotfix for Windows XP (KB915865)
Hotfix for Windows XP (KB926239)
HouseCall 6.6
Image Converter 3
Intel® PROSet/Wireless Software
IsoBuster 1.5
J2SE Runtime Environment 5.0 Update 11
J2SE Runtime Environment 5.0 Update 4
J2SE Runtime Environment 5.0 Update 6
J2SE Runtime Environment 5.0 Update 9
Java 2 Runtime Environment, SE v1.4.2_10
Java 6 Update 2
Java SE Runtime Environment 6 Update 1
Kaspersky Internet Security 7.0
Kaspersky Internet Security 7.0
K-Lite Codec Pack 2.49 Full
LifeBook Application Panel
LimeWire 4.13.2
Macromedia Shockwave Player
Map Button (Windows Live Toolbar)
mCore
mDriver
mDrWiFi
mEoU.msi
mHelp
Microsoft .NET Framework 1.1
Microsoft .NET Framework 1.1
Microsoft .NET Framework 1.1 Hotfix (KB928366)
Microsoft .NET Framework 2.0
Microsoft .NET Framework 3.0
Microsoft .NET Framework 3.0
Microsoft Base Smart Card Cryptographic Service Provider Package
Microsoft Compression Client Pack 1.0 for Windows XP
Microsoft Internationalized Domain Names Mitigation APIs
Microsoft National Language Support Downlevel APIs
Microsoft Office Professional Edition 2003
Microsoft SQL Server Desktop Engine (SONY_MEDIAMGR)
Microsoft Text-to-Speech Engine 4.0 (English)
Microsoft User-Mode Driver Framework Feature Pack 1.0
mIWA
mIWCA
Mixed In Key 2.5
mLogView
mMHouse
Mozilla Firefox (2.0.0.8)
mPfMgr
mPfWiz
mProSafe
MSN
MSXML 4.0 SP2 (KB927978)
MSXML 4.0 SP2 (KB936181)
MSXML 6.0 Parser (KB927977)
mWlsSafe
mXML
mZConfig
Nero Suite
OneCare Advisor (Windows Live Toolbar)
OpenMG Limited Patch 4.7-07-14-05-01
OpenMG Secure Module 4.7.00
Orion Platinum v5.8
Pando
Pando Toolbar
PDF Manual NW-A800 Series
Popup Blocker (Windows Live Toolbar)
PowerDVD
PPLive 1.5.43
RealPlayer
Realtek AC'97 Audio
Security Update for Microsoft .NET Framework 2.0 (KB928365)
Security Update for Windows Internet Explorer 7 (KB928090)
Security Update for Windows Internet Explorer 7 (KB931768)
Security Update for Windows Internet Explorer 7 (KB933566)
Security Update for Windows Internet Explorer 7 (KB937143)
Security Update for Windows Internet Explorer 7 (KB938127)
Security Update for Windows Internet Explorer 7 (KB939653)
Security Update for Windows Media Player (KB911564)
Security Update for Windows Media Player 10 (KB911565)
Security Update for Windows Media Player 10 (KB917734)
Security Update for Windows Media Player 11 (KB936782)
Security Update for Windows Media Player 6.4 (KB925398)
Security Update for Windows XP (KB883939)
Security Update for Windows XP (KB890046)
Security Update for Windows XP (KB893066)
Security Update for Windows XP (KB893756)
Security Update for Windows XP (KB896358)
Security Update for Windows XP (KB896422)
Security Update for Windows XP (KB896423)
Security Update for Windows XP (KB896424)
Security Update for Windows XP (KB896428)
Security Update for Windows XP (KB896688)
Security Update for Windows XP (KB899587)
Security Update for Windows XP (KB899588)
Security Update for Windows XP (KB899589)
Security Update for Windows XP (KB899591)
Security Update for Windows XP (KB900725)
Security Update for Windows XP (KB901017)
Security Update for Windows XP (KB901214)
Security Update for Windows XP (KB902400)
Security Update for Windows XP (KB903235)
Security Update for Windows XP (KB904706)
Security Update for Windows XP (KB905414)
Security Update for Windows XP (KB905749)
Security Update for Windows XP (KB905915)
Security Update for Windows XP (KB908519)
Security Update for Windows XP (KB908531)
Security Update for Windows XP (KB911562)
Security Update for Windows XP (KB911567)
Security Update for Windows XP (KB911927)
Security Update for Windows XP (KB912812)
Security Update for Windows XP (KB912919)
Security Update for Windows XP (KB913446)
Security Update for Windows XP (KB913580)
Security Update for Windows XP (KB914388)
Security Update for Windows XP (KB914389)
Security Update for Windows XP (KB916281)
Security Update for Windows XP (KB917159)
Security Update for Windows XP (KB917344)
Security Update for Windows XP (KB917422)
Security Update for Windows XP (KB917953)
Security Update for Windows XP (KB918118)
Security Update for Windows XP (KB918439)
Security Update for Windows XP (KB918899)
Security Update for Windows XP (KB919007)
Security Update for Windows XP (KB920213)
Security Update for Windows XP (KB920214)
Security Update for Windows XP (KB920670)
Security Update for Windows XP (KB920683)
Security Update for Windows XP (KB920685)
Security Update for Windows XP (KB921398)
Security Update for Windows XP (KB921503)
Security Update for Windows XP (KB921883)
Security Update for Windows XP (KB922616)
Security Update for Windows XP (KB922760)
Security Update for Windows XP (KB922819)
Security Update for Windows XP (KB923191)
Security Update for Windows XP (KB923414)
Security Up
Edited by dinz, 31 October 2007 - 08:06 AM.