SUPERAntiSpyware Scan Log
Generated 11/12/2007 at 07:42 PM
Application Version : 3.6.1000
Core Rules Database Version : 3342
Trace Rules Database Version: 1343
Scan type : Complete Scan
Total Scan Time : 01:16:47
Memory items scanned : 698
Memory threats detected : 0
Registry items scanned : 5991
Registry threats detected : 37
File items scanned : 58774
File threats detected : 286
Trojan.WinFixer
HKLM\Software\Classes\CLSID\{482C3C0E-D4AE-4184-881B-9535E76AC556}
HKCR\CLSID\{482C3C0E-D4AE-4184-881B-9535E76AC556}
HKCR\CLSID\{482C3C0E-D4AE-4184-881B-9535E76AC556}\InprocServer32
HKCR\CLSID\{482C3C0E-D4AE-4184-881B-9535E76AC556}\InprocServer32#ThreadingModel
C:\WINDOWS\SYSTEM32\DDCCB.DLL
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{482C3C0E-D4AE-4184-881B-9535E76AC556}
MyWay Search Assistant Computers
HKLM\Software\Classes\CLSID\{4D25F921-B9FE-4682-BF72-8AB8210D6D75}
HKCR\CLSID\{4D25F921-B9FE-4682-BF72-8AB8210D6D75}
HKCR\CLSID\{4D25F921-B9FE-4682-BF72-8AB8210D6D75}
HKCR\CLSID\{4D25F921-B9FE-4682-BF72-8AB8210D6D75}\InprocServer32
HKCR\CLSID\{4D25F921-B9FE-4682-BF72-8AB8210D6D75}\InprocServer32#ThreadingModel
HKCR\CLSID\{4D25F921-B9FE-4682-BF72-8AB8210D6D75}\Programmable
C:\PROGRAM FILES\MYWAYSA\SRCHASDE\DESRCAS.DLL
HKLM\Software\Classes\CLSID\{4D25F926-B9FE-4682-BF72-8AB8210D6D75}
HKCR\CLSID\{4D25F926-B9FE-4682-BF72-8AB8210D6D75}
HKCR\CLSID\{4D25F926-B9FE-4682-BF72-8AB8210D6D75}
HKCR\CLSID\{4D25F926-B9FE-4682-BF72-8AB8210D6D75}\InprocServer32
HKCR\CLSID\{4D25F926-B9FE-4682-BF72-8AB8210D6D75}\InprocServer32#ThreadingModel
HKCR\CLSID\{4D25F926-B9FE-4682-BF72-8AB8210D6D75}\Programmable
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4D25F921-B9FE-4682-BF72-8AB8210D6D75}
HKU\S-1-5-21-1460079812-3071989328-3970672322-1006\Software\Microsoft\Internet Explorer\URLSearchHooks#{4D25F926-B9FE-4682-BF72-8AB8210D6D75}
Adware.Vundo Variant
HKLM\Software\Classes\CLSID\{89AD4D75-2429-462e-BD4E-443F233F6033}
HKCR\CLSID\{89AD4D75-2429-462E-BD4E-443F233F6033}
HKCR\CLSID\{89AD4D75-2429-462E-BD4E-443F233F6033}\InprocServer32
HKCR\CLSID\{89AD4D75-2429-462E-BD4E-443F233F6033}\InprocServer32#ThreadingModel
[SASINPROCSERVER32]
HKLM\Software\Classes\CLSID\{C84D8A0A-E708-42B6-90CA-9C30956A87C6}
HKCR\CLSID\{C84D8A0A-E708-42B6-90CA-9C30956A87C6}
HKCR\CLSID\{C84D8A0A-E708-42B6-90CA-9C30956A87C6}\InprocServer32
HKCR\CLSID\{C84D8A0A-E708-42B6-90CA-9C30956A87C6}\InprocServer32#ThreadingModel
C:\WINDOWS\SYSTEM32\BYXUURR.DLL
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{89AD4D75-2429-462e-BD4E-443F233F6033}
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C84D8A0A-E708-42B6-90CA-9C30956A87C6}
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks#{C84D8A0A-E708-42B6-90CA-9C30956A87C6}
HKCR\CLSID\{89AD4D75-2429-462E-BD4E-443F233F6033}
HKCR\CLSID\{C84D8A0A-E708-42B6-90CA-9C30956A87C6}
Unclassified.Unknown Origin
HKLM\Software\Classes\CLSID\{CF46BFB3-2ACC-441b-B82B-36B9562C7FF1}
HKCR\CLSID\{CF46BFB3-2ACC-441B-B82B-36B9562C7FF1}
HKCR\CLSID\{CF46BFB3-2ACC-441B-B82B-36B9562C7FF1}\InprocServer32
HKCR\CLSID\{CF46BFB3-2ACC-441B-B82B-36B9562C7FF1}\InprocServer32#ThreadingModel
C:\WINDOWS\SYSTEM32\HEKXNUDD.DLL
HKCR\CLSID\{CF46BFB3-2ACC-441B-B82B-36B9562C7FF1}
Adware.Tracking Cookie
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@gcc[1].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@cgi-bin[7].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][1].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@1066658953[1].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][1].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][1].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@revsci[2].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@fastclick[5].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][1].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@smileycentral[2].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][2].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][1].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][1].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][2].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@partner2profit[3].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@cpvfeed[2].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][1].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@MobileRingDownloads[2].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][1].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@dcsi583rp10000oevcqz9y4us_6l6d[1].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][2].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][3].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][1].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][1].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][2].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][1].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][1].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][2].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][2].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][2].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantivirus[3].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@optimost[2].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][1].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][1].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][2].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][2].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@doubleclick[2].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@cgi-bin[3].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@roiservice[1].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@adbrite[1].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][1].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected]
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][1].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][1].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@ad[3].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][1].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][1].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@cgi-bin[2].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@cgi-bin[1].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@hitbox[2].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][2].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@teenink[1].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@hornymatches[2].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][2].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@keywordmax[1].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][1].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][1].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][2].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][1].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][2].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@clickaider[1].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@jamster[1].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@lynxtrack[2].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@78771998[2].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@sexbuddies[1].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@html[4].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@indiads[1].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][1].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][1].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][2].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][1].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@clicksor[2].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@cgi-bin[6].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@entrepreneur[2].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][1].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][2].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@onlinerewardcenter[2].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@teenhollywood[1].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][1].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][1].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][2].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][1].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][1].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@cgi-bin[4].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][2].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@N2335[1].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][1].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][2].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][2].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@trafficvenuedirect[2].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][2].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][2].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][1].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][2].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@drivecleaner[1].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@media6degrees[1].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@indexstats[2].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@adredired[1].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@qnsr[1].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@avsystemcare[2].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][1].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][1].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected]
C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected]
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@clicksector[2].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@partner2profit[1].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[10].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[11].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[12].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[13].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[14].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[15].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[16].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[17].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[18].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[19].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[1].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[20].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[21].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[22].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[23].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[24].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[25].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[26].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[27].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[28].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[29].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[2].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[30].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[31].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[32].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[33].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[34].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[35].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[36].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[37].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[38].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[39].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[3].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[40].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[41].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[42].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[43].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[44].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[45].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[46].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[47].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[48].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[49].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[4].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[50].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[51].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[52].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[53].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[54].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[55].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[56].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[57].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[58].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[59].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[5].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[60].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[61].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[62].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[63].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[64].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[65].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[66].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[67].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[68].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[69].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[6].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[70].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[71].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[72].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[73].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[74].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[75].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[76].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[77].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[78].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[79].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[7].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[80].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[81].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[82].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[83].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[84].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[85].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[86].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[87].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[88].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[89].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[8].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[90].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[91].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[92].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[93].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[94].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[95].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[96].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[97].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[98].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[99].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantispyware[9].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantivirus[1].txt
C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@winantivirus[2].txt
Trojan.WinAntiSpyware 2007
C:\Program Files\Common Files\WinAntiSpyware 2007\err.log
C:\Program Files\Common Files\WinAntiSpyware 2007
C:\Documents and Settings\Gina Rivelli\Application Data\WinAntiSpyware 2007\Logs\update.log
C:\Documents and Settings\Gina Rivelli\Application Data\WinAntiSpyware 2007\Logs
C:\Documents and Settings\Gina Rivelli\Application Data\WinAntiSpyware 2007
C:\SYSTEM VOLUME INFORMATION\_RESTORE{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP211\A0111923.SYS
C:\SYSTEM VOLUME INFORMATION\_RESTORE{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP211\A0111944.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP215\A0113491.EXE
Trojan.Downloader-Stera/WinSoftware
C:\SYSTEM VOLUME INFORMATION\_RESTORE{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP211\A0111924.EXE
Trojan.Downloader-Gen/TStamp
C:\SYSTEM VOLUME INFORMATION\_RESTORE{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP215\A0113490.EXE
Trojan.Downloader-Gen/DDC
C:\WINDOWS\SYSTEM32\AHYOPOHB.EXE
C:\WINDOWS\SYSTEM32\AJUUGSYR.EXE
C:\WINDOWS\SYSTEM32\BAIANUWK.EXE
C:\WINDOWS\SYSTEM32\BCIWDDCY.EXE
C:\WINDOWS\SYSTEM32\BIQMRUPU.EXE
C:\WINDOWS\SYSTEM32\CJMFGJYB.EXE
C:\WINDOWS\SYSTEM32\CJSGWGAS.EXE
C:\WINDOWS\SYSTEM32\CLXSIFLC.EXE
C:\WINDOWS\SYSTEM32\CNWPCACE.EXE
C:\WINDOWS\SYSTEM32\DORYFWEL.EXE
C:\WINDOWS\SYSTEM32\DTVAHPQL.EXE
C:\WINDOWS\SYSTEM32\EDVLTPRV.EXE
C:\WINDOWS\SYSTEM32\ELARLKHW.EXE
C:\WINDOWS\SYSTEM32\EXIJDSFX.EXE
C:\WINDOWS\SYSTEM32\FEYOVEQO.EXE
C:\WINDOWS\SYSTEM32\FRWXNQVC.EXE
C:\WINDOWS\SYSTEM32\FUXEABMP.EXE
C:\WINDOWS\SYSTEM32\FXYKQCGK.EXE
C:\WINDOWS\SYSTEM32\GHAJTSVY.EXE
C:\WINDOWS\SYSTEM32\GKCFVHXQ.EXE
C:\WINDOWS\SYSTEM32\GQOEWQXY.EXE
C:\WINDOWS\SYSTEM32\HUEECTGU.EXE
C:\WINDOWS\SYSTEM32\ICTMCCKO.EXE
C:\WINDOWS\SYSTEM32\IIMPBBUK.EXE
C:\WINDOWS\SYSTEM32\JGFAOLPE.EXE
C:\WINDOWS\SYSTEM32\JWOXBKLE.EXE
C:\WINDOWS\SYSTEM32\JXXGBHJU.EXE
C:\WINDOWS\SYSTEM32\KKAFSJJQ.EXE
C:\WINDOWS\SYSTEM32\KKOLBLJW.EXE
C:\WINDOWS\SYSTEM32\KLDVFNLJ.EXE
C:\WINDOWS\SYSTEM32\MCUDJVLR.EXE
C:\WINDOWS\SYSTEM32\MDPBHYYB.EXE
C:\WINDOWS\SYSTEM32\MMEQTPAH.EXE
C:\WINDOWS\SYSTEM32\MRQBFOGT.EXE
C:\WINDOWS\SYSTEM32\NEFCDUPT.EXE
C:\WINDOWS\SYSTEM32\NMPIGMHX.EXE
C:\WINDOWS\SYSTEM32\NNPTUTJE.EXE
C:\WINDOWS\SYSTEM32\NQQJIJXH.EXE
C:\WINDOWS\SYSTEM32\NVYUXUFD.EXE
C:\WINDOWS\SYSTEM32\OLMMTSIH.EXE
C:\WINDOWS\SYSTEM32\ONUACXWU.EXE
C:\WINDOWS\SYSTEM32\POYUNFXG.EXE
C:\WINDOWS\SYSTEM32\PWUCXFQP.EXE
C:\WINDOWS\SYSTEM32\QFXDXORW.EXE
C:\WINDOWS\SYSTEM32\QIHSRMJL.EXE
C:\WINDOWS\SYSTEM32\RFRMLUBM.EXE
C:\WINDOWS\SYSTEM32\RKRUDWJK.EXE
C:\WINDOWS\SYSTEM32\RVRLIORK.EXE
C:\WINDOWS\SYSTEM32\RWAQMBXM.EXE
C:\WINDOWS\SYSTEM32\SJUMDDMX.EXE
C:\WINDOWS\SYSTEM32\SNKCQXRB.EXE
C:\WINDOWS\SYSTEM32\SNWYLVOT.EXE
C:\WINDOWS\SYSTEM32\SUPAXOVR.EXE
C:\WINDOWS\SYSTEM32\UEBAKCVH.EXE
C:\WINDOWS\SYSTEM32\UFHEDSVA.EXE
C:\WINDOWS\SYSTEM32\UJSPPEPN.EXE
C:\WINDOWS\SYSTEM32\UJSTXMUH.EXE
C:\WINDOWS\SYSTEM32\VQHJYKOE.EXE
C:\WINDOWS\SYSTEM32\WDPUUIOA.EXE
C:\WINDOWS\SYSTEM32\WUDQQHHE.EXE
C:\WINDOWS\SYSTEM32\XNTGEFXM.EXE
C:\WINDOWS\SYSTEM32\YADIQCPQ.EXE
C:\WINDOWS\SYSTEM32\YJGVIBKQ.EXE
C:\WINDOWS\SYSTEM32\YPJBCKRY.EXE
Active scan Log
Incident Status Location
Potentially unwanted tool:Application/MyWay Not disinfected C:\Program Files\MyWaySA\SrchAsDe\deSrcAs.dll
Potentially unwanted tool:Application/PRScheduler Not disinfected C:\Documents and Settings\Gina Rivelli\Start Menu\Programs\Startup\PowerReg Scheduler V3.exe
Potentially unwanted tool:application/funweb Not disinfected HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB}
Spyware:Cookie/Winantivirus Not disinfected C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected]
Spyware:Cookie/Winantivirus Not disinfected C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected]
Spyware:Cookie/Winantivirus Not disinfected C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected]
Spyware:Cookie/Winantivirus Not disinfected C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected]
Spyware:Cookie/Winantivirus Not disinfected C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected]
Spyware:Cookie/Winantivirus Not disinfected C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected]
Spyware:Cookie/Winantivirus Not disinfected C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected]
Spyware:Cookie/Winantivirus Not disinfected C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected]
Spyware:Cookie/Winantivirus Not disinfected C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected]
Spyware:Cookie/Winantivirus Not disinfected C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected]
Spyware:Cookie/Winantivirus Not disinfected C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected]
Spyware:Cookie/Winantivirus Not disinfected C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected]
Spyware:Cookie/Winantivirus Not disinfected C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected]
Spyware:Cookie/Winantivirus Not disinfected C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected]
Spyware:Cookie/Winantivirus Not disinfected C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected]
Spyware:Cookie/Winantivirus Not disinfected C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected]
Spyware:Cookie/Winantivirus Not disinfected C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected]
Spyware:Cookie/Winantivirus Not disinfected C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected]
Spyware:Cookie/Winantivirus Not disinfected C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected]
Spyware:Cookie/Winantivirus Not disinfected C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected]
Spyware:Cookie/Winantivirus Not disinfected C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected]
Spyware:Cookie/Com.com Not disinfected C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@com[1].txt
Spyware:Cookie/ErrorSafe Not disinfected C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@errorsafe[1].txt
Spyware:Cookie/Systemdoctor Not disinfected C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@systemdoctor[2].txt
Spyware:Cookie/Target Not disinfected C:\Documents and Settings\Gina Rivelli\Cookies\gina rivelli@target[1].txt
Spyware:Cookie/ErrorSafe Not disinfected C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][1].txt
Spyware:Cookie/Systemdoctor Not disinfected C:\Documents and Settings\Gina Rivelli\Cookies\gina [email protected][2].txt
Spyware:Cookie/2o7 Not disinfected C:\Documents and Settings\Gina Rivelli\Cookies\gina__rivelli@2o7[1].txt
Spyware:Cookie/PointRoll Not disinfected C:\Documents and Settings\Gina Rivelli\Cookies\[email protected][1].txt
Spyware:Cookie/Advertising Not disinfected C:\Documents and Settings\Gina Rivelli\Cookies\gina__rivelli@advertising[1].txt
Spyware:Cookie/Atlas DMT Not disinfected C:\Documents and Settings\Gina Rivelli\Cookies\gina__rivelli@atdmt[1].txt
Spyware:Cookie/Atwola Not disinfected C:\Documents and Settings\Gina Rivelli\Cookies\gina__rivelli@atwola[1].txt
Spyware:Cookie/Mediaplex Not disinfected C:\Documents and Settings\Gina Rivelli\Cookies\gina__rivelli@mediaplex[2].txt
Spyware:Cookie/QuestionMarket Not disinfected C:\Documents and Settings\Gina Rivelli\Cookies\gina__rivelli@questionmarket[1].txt
Virus:Trj/Downloader.PNC Disinfected C:\Program Files\svhost\wr-1-0000077.exe
Spyware:Spyware/Virtumonde Not disinfected C:\WINDOWS\system32\augcljay.dll
Spyware:Spyware/Virtumonde Not disinfected C:\WINDOWS\system32\bvdikdet.dll
Spyware:Spyware/Virtumonde Not disinfected C:\WINDOWS\system32\ctqvffya.dll
Spyware:Spyware/Virtumonde Not disinfected C:\WINDOWS\system32\hcrxmjsb.dll
Spyware:Spyware/Virtumonde Not disinfected C:\WINDOWS\system32\kbyoicsl.dll
Spyware:Spyware/Virtumonde Not disinfected C:\WINDOWS\system32\kgamnjbj.dll
Spyware:Spyware/Virtumonde Not disinfected C:\WINDOWS\system32\kkfvfrof.dll
Spyware:Spyware/Virtumonde Not disinfected C:\WINDOWS\system32\lpjvlusl.dll
Spyware:Spyware/Virtumonde Not disinfected C:\WINDOWS\system32\mjvwspdl.dll
Spyware:Spyware/Virtumonde Not disinfected C:\WINDOWS\system32\mnuhbmyl.dll
Spyware:Spyware/Virtumonde Not disinfected C:\WINDOWS\system32\nqjvelml.dll
Spyware:Spyware/Virtumonde Not disinfected C:\WINDOWS\system32\opgbisuw.dll
Spyware:Spyware/Virtumonde Not disinfected C:\WINDOWS\system32\qxdlucci.dll
Spyware:Spyware/Virtumonde Not disinfected C:\WINDOWS\system32\syvdobbj.dll
Spyware:Spyware/Virtumonde Not disinfected C:\WINDOWS\system32\tingqflb.dll
Spyware:Spyware/Virtumonde Not disinfected C:\WINDOWS\system32\tucqqhql.dll
Spyware:Spyware/Virtumonde Not disinfected C:\WINDOWS\system32\txlptcvu.dll
Spyware:Spyware/Virtumonde Not disinfected C:\WINDOWS\system32\vcnhbwpf.dll
Spyware:Spyware/Virtumonde Not disinfected C:\WINDOWS\system32\wkfifxir.dll
Spyware:Spyware/Virtumonde Not disinfected C:\WINDOWS\system32\ybtfpjcj.dll
Virus:Generic Malware Disinfected C:\WINDOWS\system32\yjigeojl.dll
HijackThis log
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 9:40:53 PM, on 11/12/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16544)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccProxy.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Norton Internet Security\ISSVC.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\wanmpsvc.exe
C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
C:\Program Files\Intel\Modem Event Monitor\IntelMEM.exe
C:\Program Files\Musicmatch\Musicmatch Jukebox\mm_tray.exe
C:\Program Files\Musicmatch\Musicmatch Jukebox\mmtask.exe
C:\Program Files\Real\RealPlayer\RealPlay.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\Common Files\AOL\1165004502\ee\AOLSoftware.exe
C:\Program Files\Common Files\AOL\Loader\aolload.exe
C:\Program Files\QuickTime\QTTask.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\Program Files\Webroot\Spy Sweeper\SpySweeperUI.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\DellSupport\DSAgnt.exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Common Files\AOL\Loader\aolload.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
c:\program files\common files\aol\1165004502\ee\services\antiSpywareApp\ver2_0_32_1\AOLSP Scheduler.exe
C:\Program Files\NETGEAR\WG111v2 Configuration Utility\RtlWake.exe
C:\Program Files\Common Files\AOL\1165004502\EE\aolsoftware.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Webroot\Spy Sweeper\SSU.EXE
C:\Program Files\America Online 9.0b\waol.exe
C:\Program Files\America Online 9.0b\shellmon.exe
C:\Documents and Settings\All Users\Application Data\AOL\UserProfiles\All Users\antiSpyware\dat\updates\aspapp\sunsetAsp2.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell4me.com/myway
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://mysearch.mywa...idebar.jsp?p=DE
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.dell4me.com/myway
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft....k/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft....k/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft....k/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft....k/?LinkId=69157
R3 - URLSearchHook: (no name) - {4D25F926-B9FE-4682-BF72-8AB8210D6D75} - C:\Program Files\MyWaySA\SrchAsDe\deSrcAs.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {4D25F921-B9FE-4682-BF72-8AB8210D6D75} - C:\Program Files\MyWaySA\SrchAsDe\deSrcAs.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: CNisExtBho Class - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll
O2 - BHO: CNavExtBho Class - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Norton Internet Security - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [SoundMAXPnP] "C:\Program Files\Analog Devices\Core\smax4pnp.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe"
O4 - HKLM\..\Run: [IntelMeM] "C:\Program Files\Intel\Modem Event Monitor\IntelMEM.exe"
O4 - HKLM\..\Run: [MMTray] "C:\Program Files\Musicmatch\Musicmatch Jukebox\mm_tray.exe"
O4 - HKLM\..\Run: [mmtask] "C:\Program Files\Musicmatch\Musicmatch Jukebox\mmtask.exe"
O4 - HKLM\..\Run: [RealTray] "C:\Program Files\Real\RealPlayer\RealPlay.exe" SYSTEMBOOTHIDEPLAYER
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [ISUSPM Startup] "C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe" -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [HP Software Update] "C:\Program Files\HP\HP Software Update\HPWuSchd2.exe"
O4 - HKLM\..\Run: [HostManager] "C:\Program Files\Common Files\AOL\1165004502\ee\AOLSoftware.exe"
O4 - HKLM\..\Run: [AOLDialer] "C:\Program Files\Common Files\AOL\ACS\AOLDial.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe&quo
Edited by sharonmerz, 14 November 2007 - 06:03 PM.