hay, cheers for the help, i did everything you said, although some of the files you told me to delete wernt on the HJT log, but i presued that was just because they had been dleted by one of the other things
heres my logs
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\EPSON\EBAPI\SAgent2.exe
C:\Program Files\ewido\security suite\ewidoctrl.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\Program Files\Pinnacle\InstantCDDVD\InstantWrite\iwctrl.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Java\jre1.5.0_05\bin\jusched.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\Opera\Opera.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\HJT\HijackThis.exe
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O2 - BHO: Toolbar Helper - {D44BBB61-E17F-4AE6-A502-8D7E0B29E616} - C:\WINDOWS\system32\s1932.dll
O3 - Toolbar: Stumble&Upon - {22D003CE-6952-46C5-80B9-D19B479620AB} - C:\WINDOWS\system32\s1932.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [IW ControlCenter] C:\Program Files\Pinnacle\InstantCDDVD\InstantWrite\iwctrl.exe
O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINDOWS\System32\PSDrvCheck.exe
O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [CARPService] carpserv.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_05\bin\jusched.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKCU\..\Run: [ATI Launchpad] "C:\Program Files\ATI Multimedia\main\launchpd.exe"
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - Startup: LimeWire On Startup.lnk = C:\Program Files\LimeWire\LimeWire.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: StumbleUpon: &Blog This - res://C:\WINDOWS\system32\s1932.dll/blogimage
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_05\bin\npjpi150_05.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_05\bin\npjpi150_05.dll
O9 - Extra button: ATI TV - {44226DFF-747E-4edc-B30C-78752E50CD0C} - C:\Program Files\ATI Multimedia\tv\EXPLBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {1754A1BA-A1DF-4F10-B199-AA55AA1A120F} (InstallerBehaviorFactory Class) -
https://signup.msn.c...es/MsnInstC.cabO16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
http://update.micros...b?1131624414984O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: EPSON Printer Status Agent2 (EPSONStatusAgent2) - SEIKO EPSON CORPORATION - C:\Program Files\Common Files\EPSON\EBAPI\SAgent2.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido\security suite\ewidoguard.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: X10 Device Network Service (x10nets) - Unknown owner - C:\PROGRA~1\ATIMUL~1\RemCtrl\x10nets.exe (file missing)
and heres my AB log
------------------------------------------------
Streams(ADS) not scanned: System not NTFS
------------------------------------------------
Removed File! : C:\WINDOWS\demtke.dat
Removed File! : C:\WINDOWS\svesvr.dat
Removed File! : C:\WINDOWS\nrvnu.dat
Removed File! : C:\WINDOWS\jadft.dat
Removed File! : C:\WINDOWS\sdbaor.dat
Removed File! : C:\WINDOWS\nozma.dat
Removed File! : C:\WINDOWS\system32\tykel.dat
Removed File! : C:\WINDOWS\system32\waodg.dat
------------------------------------------------
Scan was COMPLETED SUCCESSFULLY at 18:18:02
and heres ewido
HKLM\SOFTWARE\Classes\CLSID\{04D2569C-ED83-79FB-0E43-F43DFA258774} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{676575DD-4D46-911D-8037-9B10D6EE8BB5} -> Spyware.CoolWebSearch : Cleaned with backup
C:\WINDOWS\system32\sysfind.exe -> Dialer.Generic : Cleaned with backup
C:\WINDOWS\system32\sysfind.exe.tcf -> Dialer.Generic : Cleaned with backup
C:\WINDOWS\system32\sysfind.exe2659.tcf -> Dialer.Generic : Cleaned with backup
C:\WINDOWS\system32\ipri.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\d3zp32.exe -> TrojanDownloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\neter.exe -> TrojanDownloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\winay32.dll -> TrojanDownloader.WinShow.bg : Cleaned with backup
C:\WINDOWS\kpcill.dat -> TrojanDownloader.WinShow.bg : Cleaned with backup
C:\WINDOWS\dkarah.dat -> TrojanDownloader.Agent.td : Cleaned with backup
C:\WINDOWS\bhhvgb.dat -> TrojanDownloader.WinShow.bg : Cleaned with backup
C:\WINDOWS\uirzln.dat -> TrojanDownloader.Agent.td : Cleaned with backup
C:\WINDOWS\sgrfk.dll -> Adware.SearchPage : Cleaned with backup
C:\WINDOWS\ifyxyq.dat -> TrojanDownloader.Agent.td : Cleaned with backup
C:\WINDOWS\aqdiym.dat -> TrojanDownloader.Agent.td : Cleaned with backup
C:\WINDOWS\pjxnli.log -> Adware.SearchPage : Cleaned with backup
C:\WINDOWS\msyh32.exe -> TrojanDownloader.Agent.td : Cleaned with backup
C:\WINDOWS\cbvsnm.log -> TrojanDownloader.Agent.td : Cleaned with backup
C:\WINDOWS\cpsdye.log -> TrojanDownloader.Agent.td : Cleaned with backup
C:\WINDOWS\krqzqx.txt -> TrojanDownloader.Agent.td : Cleaned with backup
C:\WINDOWS\corpfm.dat -> TrojanDownloader.Agent.td : Cleaned with backup
C:\WINDOWS\koxxyc.dat -> Adware.SearchPage : Cleaned with backup
C:\WINDOWS\czadxp.dat -> TrojanDownloader.Agent.td : Cleaned with backup
C:\WINDOWS\appgc32.exe -> TrojanDownloader.Agent.td : Cleaned with backup
C:\WINDOWS\netpp.exe -> TrojanDownloader.Agent.td : Cleaned with backup
C:\WINDOWS\pmfpct.log -> TrojanDownloader.Agent.td : Cleaned with backup
C:\WINDOWS\vnozyi.log -> TrojanDownloader.Agent.td : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP1\A0000016.exe -> Heuristic.Win32.Dialer : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP29\A0026809.DLL -> Adware.SpySheriff : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP29\A0026810.DLL -> Adware.SpySheriff : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP29\A0026811.DLL -> Adware.SpySheriff : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP29\A0026812.dll -> Spyware.SpywareNo : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP29\A0026813.dll -> Adware.SpySheriff : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP29\A0026819.EXE -> Not-A-Virus.Hoax.Renos.p : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP29\A0026820.exe -> Adware.SpySheriff : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP29\A0027532.dll -> TrojanDownloader.Small.azk : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP29\A0027568.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP29\A0027571.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP32\A0028136.EXE -> TrojanDropper.Delf.fd : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP32\A0028467.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP32\A0028535.exe -> TrojanDownloader.Small.bsu : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP32\A0028468.exe.tcf -> Dialer.Generic : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030102.EXE -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030104.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030105.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030106.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030107.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030108.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030109.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030110.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030111.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030112.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030113.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030114.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030115.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030116.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030117.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030118.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030119.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030120.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030121.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030122.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030123.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030124.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030125.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030164.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030165.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030166.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030167.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030168.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030169.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030170.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030171.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030172.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030173.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030174.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030175.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030176.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030177.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030178.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030179.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030198.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030199.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030200.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030201.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030202.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030203.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030204.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030205.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030206.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030207.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030208.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030209.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030211.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030212.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030213.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030214.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030215.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030216.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030217.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030218.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030219.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030220.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030221.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030224.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030225.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030226.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030227.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030228.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030229.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030230.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030231.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030232.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030241.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030242.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030243.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030244.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030247.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030248.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030250.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030251.exe -> TrojanDownloader.Agent.td : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030254.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030255.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030259.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030278.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030279.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030280.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030281.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030298.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030300.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030301.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030302.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030310.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030313.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030319.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030324.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030344.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030345.exe -> TrojanDownloader.Agent.td : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030347.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030348.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030349.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030350.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030352.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030354.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030355.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030356.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030357.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030358.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030363.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030364.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030365.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030367.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030368.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030370.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030371.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030373.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP37\A0030375.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP41\A0030476.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP41\A0030477.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP41\A0030478.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP41\A0030479.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP41\A0030480.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP41\A0030481.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP41\A0030482.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP41\A0030483.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP41\A0030484.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP41\A0030485.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP41\A0030486.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP41\A0030487.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP41\A0030488.exe -> TrojanDownloader.Agent.td : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP41\A0030489.dll.tcf -> Spyware.SearchPage : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP41\A0030490.dll.tcf -> Spyware.SearchPage : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP41\A0030491.dll.tcf -> Spyware.SearchPage : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP69\A0031915.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP69\A0031916.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP69\A0031917.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP69\A0031918.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP69\A0031919.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP69\A0031920.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP69\A0031921.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP69\A0031922.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP69\A0031923.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP69\A0031924.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP69\A0031925.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP69\A0031926.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP69\A0031931.dll -> Adware.SearchPage : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP69\A0031952.dll -> Adware.SearchPage : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP69\A0031908.dll.tcf -> Spyware.SearchPage : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP69\A0031930.exe.tcf -> Dialer.Generic : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP69\A0031932.dll.tcf -> Spyware.SearchPage : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP99\A0037184.exe.tcf -> Dialer.Generic : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP99\A0037326.dll -> Adware.SearchPage : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP99\A0037327.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP102\A0039051.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP103\A0039249.exe -> TrojanDownloader.Small.bsu : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP103\A0039252.dll -> Adware.SearchPage : Cleaned with backup
C:\System Volume Information\_restore{73910013-50A7-4717-97D6-F2504B358FDD}\RP103\A0039267.EXE -> TrojanDownloader.Agent.td : Cleaned with backup
cheers!