Hi again - Things are MUCH better - I can even connect to the internet without being flooded with pop-ups!
When going through the processes you recommended, I couldn't run "Trend Micro" because it kept shutting down Internet Explorer, and I couldn't save the final Ewido report - the "save report" file stayed grayed out, but I did save the "process file", "startup file", etc. I'll paste in everything I've got !
Thank you, thank you!!! Please advise what's next! My son is really looking forward to having his laptop back, and is never downloading music again - especially not from Limewire!
~Sue
Look2Me-Destroyer V1.0.7
Scanning for infected files.....
Scan started at 3/5/2006 8:48:15 PM
Infected! C:\WINDOWS\system32\dn0q01d5e.dll
Infected! C:\WINDOWS\system32\dn0q01d5e.dll
Infected! C:\WINDOWS\system32\meimg32.dll
Infected! C:\WINDOWS\system32\guard.tmp
Attempting to delete infected files...
Attempting to delete: C:\WINDOWS\system32\dn0q01d5e.dll
C:\WINDOWS\system32\dn0q01d5e.dll Deleted successfully!
Attempting to delete: C:\WINDOWS\system32\dn0q01d5e.dll
C:\WINDOWS\system32\dn0q01d5e.dll Deleted successfully!
Attempting to delete: C:\WINDOWS\system32\meimg32.dll
C:\WINDOWS\system32\meimg32.dll Deleted successfully!
Attempting to delete: C:\WINDOWS\system32\guard.tmp
C:\WINDOWS\system32\guard.tmp Deleted successfully!
Making registry repairs.
Removing: HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\OptimalLayout
Removing: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved "{7D593218-8CE3-4058-9477-616A8364DE99}"
HKCR\Clsid\{7D593218-8CE3-4058-9477-616A8364DE99}
Removing: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved "{D9B0D650-5C2E-425D-B0FC-EF04BD03BD50}"
HKCR\Clsid\{D9B0D650-5C2E-425D-B0FC-EF04BD03BD50}
Removing: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved "{EE25FC1B-59F0-4447-B98B-7E99B127FC48}"
HKCR\Clsid\{EE25FC1B-59F0-4447-B98B-7E99B127FC48}
Restoring Windows certificates.
Replaced hosts file with default windows hosts file
Restoring SeDebugPrivilege for Administrators - Succeeded
------------
--------------------------------------------------------
ewido anti-malware - Process report
---------------------------------------------------------
+ Created on: 3:06:31 AM, 3/7/2006
+ Report-Checksum: 9C726780
0: System Process
4: System Process
136: \SystemRoot\System32\smss.exe
188: \??\C:\WINDOWS\system32\csrss.exe
212: \??\C:\WINDOWS\system32\winlogon.exe
260: C:\WINDOWS\system32\services.exe
272: C:\WINDOWS\system32\lsass.exe
432: C:\WINDOWS\system32\svchost.exe
496: C:\WINDOWS\system32\svchost.exe
564: C:\WINDOWS\system32\svchost.exe
696: C:\WINDOWS\Explorer.EXE
808: C:\Program Files\ewido anti-malware\SecuritySuite.exe
1024: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE
1140: C:\WINDOWS\system32\NOTEPAD.EXE
------------------------------------------
---------------------------------------------------------
ewido anti-malware - Startup report
---------------------------------------------------------
+ Created on: 8:54:33 AM, 3/7/2006
+ Report-Checksum: 7C352E70
Reg\HKLM\Run HP Software Update c:\Program Files\HP\HP Software Update\HPWuSchd2.exe
Reg\HKLM\Run win3206334602875 C:\WINDOWS\win3206334602875.exe
Reg\HKLM\Run SoundMAXPnP C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe
Reg\HKCU\Run Ayakkvfj C:\Program Files\Common Files\sуmbols\mѕiexec.exe
Reg\HKCU\Run Spyware Doctor "C:\Program Files\Spyware Doctor\swdoctor.exe" /Q
Reg\HKLM\Run HotKeysCmds C:\WINDOWS\system32\hkcmd.exe
Reg\HKLM\Run Persistence C:\WINDOWS\system32\igfxpers.exe
Reg\HKLM\Run AGRSMMSG AGRSMMSG.exe
Reg\HKLM\Run hpWirelessAssistant C:\Program Files\hpq\HP Wireless Assistant\HP Wireless Assistant.exe
Reg\HKLM\Run SoundMAX C:\Program Files\Analog Devices\SoundMAX\Smax4.exe /tray
Reg\HKLM\Run PTHOSTTR C:\Program Files\HPQ\HP ProtectTools Security Manager\PTHOSTTR.EXE /Start
Reg\HKLM\Run UpdateManager "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
Reg\HKLM\Run dla C:\WINDOWS\system32\dla\tfswctrl.exe
Reg\HKLM\Run SynTPEnh C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
Reg\HKCU\Run SurfSideKick 3 C:\Program Files\SurfSideKick 3\Ssk.exe
Reg\HKLM\Run eabconfg.cpl C:\Program Files\HPQ\Quick Launch Buttons\EabServr.exe /Start
Reg\HKLM\Run Cpqset C:\Program Files\HPQ\Default Settings\cpqset.exe
Reg\HKLM\Run WatchDog C:\Program Files\InterVideo\DVD Check\DVDCheck.exe
Reg\HKLM\Run ISUSPM Startup C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
Reg\HKLM\Run winupdates C:\Program Files\winupdates\winupdates.exe /auto
Reg\HKLM\Run TheMonitor C:\WINDOWS\SYSC00.exe
Reg\HKLM\Run win3207346028753 C:\WINDOWS\win3207346028753.exe
Reg\HKLM\Run webHancer Survey Companion "C:\Program Files\webHancer\Programs\whSurvey.exe"
Reg\HKLM\Run ahkw C:\windows\eee2.exe
Reg\HKLM\Run loadadv64 C:\WINDOWS\system32\loadadv64
Reg\HKLM\Run Tagasuarus7.exe C:\WINDOWS\system32\Tagasuarus7.exe
Reg\HKLM\Run ms04753346028 C:\WINDOWS\ms04753346028.exe
Reg\HKLM\Run ms03875334602 C:\WINDOWS\ms03875334602.exe
Reg\HKLM\Run sys02287533460 C:\WINDOWS\sys02287533460.exe
Reg\HKLM\Run IMJPMIG8.1 "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
Reg\HKLM\Run MSPY2002 C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
Reg\HKLM\Run PHIME2002ASync C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
Reg\HKLM\Run PHIME2002A C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
Reg\HKLM\Run sys09602875334 C:\WINDOWS\sys09602875334.exe
Reg\HKLM\Run ms05533460287 C:\WINDOWS\ms05533460287.exe
Reg\HKLM\Run ccApp "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
Reg\HKLM\Run Symantec NetDriver Monitor C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
Reg\HKLM\Run sys01028753346 C:\WINDOWS\sys01028753346.exe
Reg\HKLM\Run nttevbqA C:\WINDOWS\nttevbqA.exe
Reg\HKLM\Run AVG7_CC C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
Reg\HKLM\Run SurfSideKick 3 C:\Program Files\SurfSideKick 3\Ssk.exe
Reg\HKLM\Run SunJavaUpdateSched C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
Reg\HKCU\Run MSMSGS "C:\Program Files\Messenger\msmsgs.exe" /background
Reg\HKCU\Run services32 C:\Program Files\Common Files\Windows\mc-110-12-0000137.exe
Reg\HKCU\Run kooq C:\PROGRA~1\COMMON~1\kooq\kooqm.exe
Reg\HKCU\Run CU1 C:\Program Files\Common Files\VCClient\VCClient.exe
Reg\HKCU\Run CU2 C:\Program Files\Common Files\VCClient\VCMain.exe
Reg\HKCU\Run Tbsa "C:\WINDOWS\RACLE~1\chkdsk.exe" -vt ndrv
Reg\HKLM\Run IgfxTray C:\WINDOWS\system32\igfxtray.exe
Reg\HKLM\Run win3208460287533 C:\WINDOWS\win3208460287533.exe
Shell\CommonStartup HP Digital Imaging Monitor.lnk C:\Documents and Settings\All Users\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk
Shell\CommonStartup DVD Check.lnk C:\Documents and Settings\All Users\Start Menu\Programs\Startup\DVD Check.lnk
--------------------------
Logfile of HijackThis v1.99.1
Scan saved at 9:30:20 AM, on 3/5/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\WINDOWS\Q2hyaXM\command.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
C:\Program Files\Spyware Doctor\sdhelp.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS\system32\igfxtray.exe
C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe
C:\Program Files\HPQ\HP ProtectTools Security Manager\PTHOSTTR.EXE
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\HPQ\Quick Launch Buttons\EabServr.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Common Files\s?mbols\m?iexec.exe
C:\Program Files\Spyware Doctor\swdoctor.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
c:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files\HPQ\SHARED\HPQWMI.exe
C:\WINDOWS\explorer.exe
C:\Documents and Settings\Chris\Desktop\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar =
http://us.rd.yahoo.c...rch/search.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) =
http://us.rd.yahoo.c...//www.yahoo.com
R3 - URLSearchHook: (no name) - _{5A632109-A9D5-EA23-ED3D-EBB588248AF9} - (no file)
R3 - URLSearchHook: (no name) - {02EE5B04-F144-47BB-83FB-A60BD91B74A9} - (no file)
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe
O4 - HKLM\..\Run: [SoundMAX] C:\Program Files\Analog Devices\SoundMAX\Smax4.exe /tray
O4 - HKLM\..\Run: [PTHOSTTR] C:\Program Files\HPQ\HP ProtectTools Security Manager\PTHOSTTR.EXE /Start
O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [hpWirelessAssistant] C:\Program Files\hpq\HP Wireless Assistant\HP Wireless Assistant.exe
O4 - HKLM\..\Run: [eabconfg.cpl] C:\Program Files\HPQ\Quick Launch Buttons\EabServr.exe /Start
O4 - HKLM\..\Run: [Cpqset] C:\Program Files\HPQ\Default Settings\cpqset.exe
O4 - HKLM\..\Run: [WatchDog] C:\Program Files\InterVideo\DVD Check\DVDCheck.exe
O4 - HKLM\..\Run: [HP Software Update] c:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [winupdates] C:\Program Files\winupdates\winupdates.exe /auto
O4 - HKLM\..\Run: [keyboard] C:\\keyboard.exe
O4 - HKLM\..\Run: [TheMonitor] C:\WINDOWS\SYSC00.exe
O4 - HKLM\..\Run: [win3208460287533] C:\WINDOWS\win3208460287533.exe
O4 - HKLM\..\Run: [NJv7jy] "C:\WINDOWS\system32\dgfgql.exe"
O4 - HKLM\..\Run: [win3207346028753] C:\WINDOWS\win3207346028753.exe
O4 - HKLM\..\Run: [webHancer Survey Companion] "C:\Program Files\webHancer\Programs\whSurvey.exe"
O4 - HKLM\..\Run: [ahkw] C:\windows\eee2.exe
O4 - HKLM\..\Run: [loadadv64] C:\WINDOWS\system32\loadadv64
O4 - HKLM\..\Run: [Tagasuarus7.exe] C:\WINDOWS\system32\Tagasuarus7.exe
O4 - HKLM\..\Run: [ms04753346028] C:\WINDOWS\ms04753346028.exe
O4 - HKLM\..\Run: [ms03875334602] C:\WINDOWS\ms03875334602.exe
O4 - HKLM\..\Run: [sys02287533460] C:\WINDOWS\sys02287533460.exe
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [sys09602875334] C:\WINDOWS\sys09602875334.exe
O4 - HKLM\..\Run: [win3206334602875] C:\WINDOWS\win3206334602875.exe
O4 - HKLM\..\Run: [ms05533460287] C:\WINDOWS\ms05533460287.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [sys01028753346] C:\WINDOWS\sys01028753346.exe
O4 - HKLM\..\Run: [nttevbqA] C:\WINDOWS\nttevbqA.exe
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [SurfSideKick 3] C:\Program Files\SurfSideKick 3\Ssk.exe
O4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [services32] C:\Program Files\Common Files\Windows\mc-110-12-0000137.exe
O4 - HKCU\..\Run: [kooq] C:\PROGRA~1\COMMON~1\kooq\kooqm.exe
O4 - HKCU\..\Run: [CU1] C:\Program Files\Common Files\VCClient\VCClient.exe
O4 - HKCU\..\Run: [CU2] C:\Program Files\Common Files\VCClient\VCMain.exe
O4 - HKCU\..\Run: [Tbsa] "C:\WINDOWS\RACLE~1\chkdsk.exe" -vt ndrv
O4 - HKCU\..\Run: [Ayakkvfj] C:\Program Files\Common Files\s?mbols\m?iexec.exe
O4 - HKCU\..\Run: [Spyware Doctor] "C:\Program Files\Spyware Doctor\swdoctor.exe" /Q
O4 - HKCU\..\Run: [SurfSideKick 3] C:\Program Files\SurfSideKick 3\Ssk.exe
O4 - Global Startup: DVD Check.lnk = C:\Program Files\InterVideo\DVD Check\DVDCheck.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: &Search -
http://edits.mywebse...?p=ZSYYYYYYDMUS
O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar2.dll/cmwordtrans.html
O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html
O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar2.dll/cmtrans.html
O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycmap.htm
O8 - Extra context menu item: Yahoo! &SMS - file:///C:\Program Files\Yahoo!\Common/ycsms.htm
O9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - C:\PROGRA~1\SPYWAR~1\tools\iesdpb.dll
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O15 - Trusted Zone:
http://click.getmirar.com (HKLM)
O15 - Trusted Zone:
http://click.mirarsearch.com (HKLM)
O15 - Trusted Zone:
http://redirect.mirarsearch.com (HKLM)
O16 - DPF: {74C861A1-D548-4916-BC8A-FDE92EDFF62C} -
http://mediaplayer.w...ler/install.cab
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) -
http://download.game...aploader_v6.cab
O20 - AppInit_DLLs: repairs303169536.dll
O20 - Winlogon Notify: IME - C:\WINDOWS\system32\hr8q05l5e.dll
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: Command Service (cmdService) - Unknown owner - C:\WINDOWS\Q2hyaXM\command.exe
O23 - Service: HP WMI Interface (hpqwmi) - Hewlett-Packard Development Company, L.P. - C:\Program Files\HPQ\SHARED\HPQWMI.exe
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: PC Tools Spyware Doctor (SDhelper) - PC Tools Research Pty Ltd - C:\Program Files\Spyware Doctor\sdhelp.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
-------------This is another error report log that was generated----------
#
# An unexpected error has been detected by HotSpot Virtual Machine:
#
# Internal Error (53484152454432554E54494D450E43505001A3), pid=3872, tid=3752
#
# Java VM: Java HotSpot Client VM (1.5.0_06-b05 mixed mode, sharing)
--------------- T H R E A D ---------------
Current thread (0x08996560): JavaThread "main" [_thread_in_Java, id=3752]
Stack: [0x071b0000,0x072b0000), sp=0x072aae00, free space=1003k
Native frames: (J=compiled Java code, j=interpreted, Vv=VM code, C=native code)
C 0x6d78d540
C 0x6d6d2c36
C 0x6d7615b5
C 0x6d747cfe
C 0x6d749324
C 0x6d6f447a
C 0x6d6e6f5d
C 0x6d6e5e58
C 0x6d734baa
C 0x6d735847
C 0x6d73572d
C 0x6d6efc8d
j com.sun.deploy.util.URLUtil.encodePath(Ljava/lang/String;)Ljava/lang/String;+215
j com.sun.deploy.config.Config.getDefaultProps()Ljava/util/Properties;+175
j com.sun.deploy.config.Config.initialize()Z+2
j com.sun.deploy.config.Config.<clinit>()V+1176
v ~StubRoutines::call_stub
C 0x6d6f45a9
C 0x6d749317
C 0x6d6f447a
C 0x6d6e6f5d
C 0x6d6e5e58
C 0x6d734baa
C 0x6d735847
C 0x6d73572d
C 0x6d6efc8d
j sun.plugin.util.PluginConfig.<init>()V+8
j sun.plugin.util.UserProfile.<clinit>()V+4
v ~StubRoutines::call_stub
C 0x6d6f45a9
C 0x6d749317
C 0x6d6f447a
C 0x6d6e6f5d
C 0x6d6e5e58
C 0x6d734baa
C 0x6d735847
C 0x6d73572d
C 0x6d6efc8d
j sun.plugin.AppletViewer.loadPropertiesFiles()V+4
j sun.plugin.JavaRunTime.initEnvironment(Ljava/lang/String;Ljava/lang/String;Ljava/lang/String;)V+45
v ~StubRoutines::call_stub
C 0x6d6f45a9
C 0x6d749317
C 0x6d6f447a
C 0x6d6fb4b3
C 0x6d451d51
C 0x6d451eb2
C 0x6d405a1d
C 0x6d591aae
C [ole32.dll+0x47de2]
C [ole32.dll+0x4fdb4]
C [ole32.dll+0x4face]
C [ole32.dll+0x5f7bb]
C [ole32.dll+0x5f6a2]
C [ole32.dll+0x5f88d]
C [ole32.dll+0x5f839]
C [ole32.dll+0x5052b]
C [ole32.dll+0x504e2]
C [ole32.dll+0x5f8e0]
C [ole32.dll+0x5f6a2]
C [ole32.dll+0x5f6bc]
C [ole32.dll+0x5f6a2]
C [ole32.dll+0x5f536]
C [ole32.dll+0x5f3ef]
C [ole32.dll+0x5f371]
C [urlmon.dll+0x4df19]
C [urlmon.dll+0x47a1b]
C [urlmon.dll+0x49e10]
C [urlmon.dll+0x4b02c]
C [USER32.dll+0x8709]
C [USER32.dll+0x9655]
C [USER32.dll+0x958f]
C [USER32.dll+0x89e8]
C [BROWSEUI.dll+0x26f6d]
C [BROWSEUI.dll+0x2e8b3]
C [BROWSEUI.dll+0x2ea19]
C [BROWSEUI.dll+0x2ecbd]
C [kernel32.dll+0xb50b]
--------------- P R O C E S S ---------------
Java Threads: ( => current thread )
0x08b3dd50 JavaThread "AWT-Windows" daemon [_thread_in_native, id=2872]
0x08b3d960 JavaThread "AWT-Shutdown" [_thread_in_Java, id=2392]
0x08b3cc00 JavaThread "Java2D Disposer" daemon [_thread_blocked, id=2340]
0x08a3faa8 JavaThread "Low Memory Detector" daemon [_thread_blocked, id=2248]
0x063e68a8 JavaThread "CompilerThread0" daemon [_thread_blocked, id=2500]
0x089ad780 JavaThread "Signal Dispatcher" daemon [_thread_blocked, id=2208]
0x089d3588 JavaThread "Finalizer" daemon [_thread_blocked, id=872]
0x08a3e0a8 JavaThread "Reference Handler" daemon [_thread_blocked, id=172]
=>0x08996560 JavaThread "main" [_thread_in_Java, id=3752]
Other Threads:
0x08999d10 VMThread [id=532]
0x08999db8 WatcherThread [id=2304]
VM state:not at safepoint (normal execution)
VM Mutex/Monitor currently owned by a thread: None
Heap
def new generation total 576K, used 131K [0x20f00000, 0x20fa0000, 0x21660000)
eden space 512K, 13% used [0x20f00000, 0x20f10f98, 0x20f80000)
from space 64K, 100% used [0x20f90000, 0x20fa0000, 0x20fa0000)
to space 64K, 0% used [0x20f80000, 0x20f80000, 0x20f90000)
tenured generation total 1408K, used 193K [0x21660000, 0x217c0000, 0x26f00000)
the space 1408K, 13% used [0x21660000, 0x216906c0, 0x21690800, 0x217c0000)
compacting perm gen total 8192K, used 244K [0x26f00000, 0x27700000, 0x2af00000)
the space 8192K, 2% used [0x26f00000, 0x26f3d2d0, 0x26f3d400, 0x27700000)
ro space 8192K, 63% used [0x2af00000, 0x2b40b178, 0x2b40b200, 0x2b700000)
rw space 12288K, 46% used [0x2b700000, 0x2bc99fa8, 0x2bc9a000, 0x2c300000)
Dynamic libraries:
0x00400000 - 0x00419000 C:\Program Files\Internet Explorer\iexplore.exe
0x7c900000 - 0x7c9b0000 C:\WINDOWS\system32\ntdll.dll
0x7c800000 - 0x7c8f4000 C:\WINDOWS\system32\kernel32.dll
0x77c10000 - 0x77c68000 C:\WINDOWS\system32\msvcrt.dll
0x77d40000 - 0x77dd0000 C:\WINDOWS\system32\USER32.dll
0x77f10000 - 0x77f56000 C:\WINDOWS\system32\GDI32.dll
0x77f60000 - 0x77fd6000 C:\WINDOWS\system32\SHLWAPI.dll
0x77dd0000 - 0x77e6b000 C:\WINDOWS\system32\ADVAPI32.dll
0x77e70000 - 0x77f01000 C:\WINDOWS\system32\RPCRT4.dll
0x77760000 - 0x778cc000 C:\WINDOWS\system32\SHDOCVW.dll
0x77a80000 - 0x77b14000 C:\WINDOWS\system32\CRYPT32.dll
0x77b20000 - 0x77b32000 C:\WINDOWS\system32\MSASN1.dll
0x754d0000 - 0x75550000 C:\WINDOWS\system32\CRYPTUI.dll
0x76c30000 - 0x76c5e000 C:\WINDOWS\system32\WINTRUST.dll
0x76c90000 - 0x76cb8000 C:\WINDOWS\system32\IMAGEHLP.dll
0x77120000 - 0x771ac000 C:\WINDOWS\system32\OLEAUT32.dll
0x774e0000 - 0x7761c000 C:\WINDOWS\system32\ole32.dll
0x5b860000 - 0x5b8b4000 C:\WINDOWS\system32\NETAPI32.dll
0x771b0000 - 0x77256000 C:\WINDOWS\system32\WININET.dll
0x76f60000 - 0x76f8c000 C:\WINDOWS\system32\WLDAP32.dll
0x77c00000 - 0x77c08000 C:\WINDOWS\system32\VERSION.dll
0x76390000 - 0x763ad000 C:\WINDOWS\system32\IMM32.DLL
0x629c0000 - 0x629c9000 C:\WINDOWS\system32\LPK.DLL
0x74d90000 - 0x74dfb000 C:\WINDOWS\system32\USP10.dll
0x40200000 - 0x4021a000 C:\WINDOWS\system32\repairs303169536.dll
0x773d0000 - 0x774d2000 C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll
0x5a800000 - 0x5a817000 C:\Program Files\Spyware Doctor\Tools\eg.dat
0x7c9c0000 - 0x7d1d4000 C:\WINDOWS\system32\SHELL32.dll
0x5d090000 - 0x5d127000 C:\WINDOWS\system32\comctl32.dll
0x5a000000 - 0x5a018000 C:\Program Files\Spyware Doctor\Tools\klg.dat
0x00d10000 - 0x00d28000 C:\Program Files\Spyware Doctor\Tools\swpg.dat
0x5ad70000 - 0x5ada8000 C:\WINDOWS\system32\uxtheme.dll
0x77fe0000 - 0x77ff1000 C:\WINDOWS\system32\Secur32.dll
0x75f80000 - 0x7607c000 C:\WINDOWS\system32\BROWSEUI.dll
0x20000000 - 0x20012000 C:\WINDOWS\system32\browselc.dll
0x77b40000 - 0x77b62000 C:\WINDOWS\system32\appHelp.dll
0x76fd0000 - 0x7704f000 C:\WINDOWS\system32\CLBCATQ.DLL
0x77050000 - 0x77115000 C:\WINDOWS\system32\COMRes.dll
0x755c0000 - 0x755ee000 C:\WINDOWS\system32\msctfime.ime
0x77260000 - 0x772fc000 C:\WINDOWS\system32\urlmon.dll
0x77a20000 - 0x77a74000 C:\WINDOWS\System32\cscui.dll
0x76600000 - 0x7661d000 C:\WINDOWS\System32\CSCDLL.dll
0x77920000 - 0x77a13000 C:\WINDOWS\system32\SETUPAPI.dll
0x62900000 - 0x62962000 C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
0x71ad0000 - 0x71ad9000 C:\WINDOWS\system32\WSOCK32.dll
0x71ab0000 - 0x71ac7000 C:\WINDOWS\system32\WS2_32.dll
0x71aa0000 - 0x71aa8000 C:\WINDOWS\system32\WS2HELP.dll
0x76b40000 - 0x76b6d000 C:\WINDOWS\system32\WINMM.dll
0x76ee0000 - 0x76f1c000 C:\WINDOWS\system32\RASAPI32.DLL
0x76e90000 - 0x76ea2000 C:\WINDOWS\system32\rasman.dll
0x76eb0000 - 0x76edf000 C:\WINDOWS\system32\TAPI32.dll
0x76e80000 - 0x76e8e000 C:\WINDOWS\system32\rtutils.dll
0x75cf0000 - 0x75d81000 C:\WINDOWS\system32\mlang.dll
0x10000000 - 0x10035000 C:\Program Files\Norton AntiVirus\NavShExt.dll
0x7c120000 - 0x7c139000 C:\WINDOWS\system32\ATL71.DLL
0x7c3a0000 - 0x7c41b000 C:\WINDOWS\system32\MSVCP71.dll
0x7c340000 - 0x7c396000 C:\WINDOWS\system32\MSVCR71.dll
0x6af30000 - 0x6af6d000 C:\Program Files\Common Files\Symantec Shared\ccL30.dll
0x75e90000 - 0x75f40000 C:\WINDOWS\system32\SXS.DLL
0x02000000 - 0x022c5000 C:\WINDOWS\system32\xpsp2res.dll
0x7d1e0000 - 0x7d492000 C:\WINDOWS\system32\msi.dll
0x769c0000 - 0x76a73000 C:\WINDOWS\system32\USERENV.dll
0x65200000 - 0x65214000 C:\Program Files\Yahoo!\Companion\Installs\cpn\pubmod.dll
0x65000000 - 0x65032000 C:\Program Files\Yahoo!\Companion\Installs\cpn\ypubc.dll
0x64100000 - 0x6411d000 C:\Program Files\Yahoo!\Companion\Installs\cpn\YMERemote.dll
0x02ab0000 - 0x02b38000 C:\WINDOWS\system32\shdoclc.dll
0x5ff20000 - 0x5ff46000 C:\WINDOWS\system32\MSRATING.dll
0x5ff50000 - 0x5ff61000 C:\WINDOWS\system32\msratelc.dll
0x71a50000 - 0x71a8f000 C:\WINDOWS\system32\mswsock.dll
0x662b0000 - 0x66308000 C:\WINDOWS\system32\hnetcfg.dll
0x71a90000 - 0x71a98000 C:\WINDOWS\System32\wshtcpip.dll
0x77c70000 - 0x77c93000 C:\WINDOWS\system32\msv1_0.dll
0x76d60000 - 0x76d79000 C:\WINDOWS\system32\iphlpapi.dll
0x722b0000 - 0x722b5000 C:\WINDOWS\system32\sensapi.dll
0x76fc0000 - 0x76fc6000 C:\WINDOWS\system32\rasadhlp.dll
0x76f20000 - 0x76f47000 C:\WINDOWS\system32\DNSAPI.dll
0x76fb0000 - 0x76fb8000 C:\WINDOWS\System32\winrnr.dll
0x7d4a0000 - 0x7d782000 C:\WINDOWS\system32\mshtml.dll
0x746c0000 - 0x746e7000 C:\WINDOWS\system32\msls31.dll
0x03a30000 - 0x03a44000 C:\Program Files\Common Files\Symantec Shared\Script Blocking\scrauth.dll
0x03a50000 - 0x03a63000 C:\Program Files\Common Files\Symantec Shared\Script Blocking\ScrBlock.dll
0x6b180000 - 0x6b192000 C:\Program Files\Common Files\Symantec Shared\ccVrTrst.dll
0x0ffd0000 - 0x0fff8000 C:\WINDOWS\system32\rsaenh.dll
0x75c50000 - 0x75cbe000 c:\windows\system32\jscript.dll
0x746f0000 - 0x7471a000 C:\WINDOWS\system32\msimtf.dll
0x74720000 - 0x7476b000 C:\WINDOWS\system32\MSCTF.dll
0x325c0000 - 0x325d2000 C:\Program Files\Microsoft Office\OFFICE11\msohev.dll
0x66e50000 - 0x66e8f000 C:\WINDOWS\system32\iepeers.dll
0x73000000 - 0x73026000 C:\WINDOWS\system32\WINSPOOL.DRV
0x76200000 - 0x76271000 C:\WINDOWS\system32\mshtmled.dll
0x40700000 - 0x4071c000 C:\Program Files\SurfSideKick 3\SskBho.dll
0x40500000 - 0x40546000 C:\Program Files\SurfSideKick 3\SskCore.dll
0x74980000 - 0x74ab0000 C:\WINDOWS\system32\msxml3.dll
0x4d4f0000 - 0x4d548000 C:\WINDOWS\system32\WINHTTP.dll
0x72d20000 - 0x72d29000 C:\WINDOWS\system32\wdmaud.drv
0x72d10000 - 0x72d18000 C:\WINDOWS\system32\msacm32.drv
0x77be0000 - 0x77bf5000 C:\WINDOWS\system32\MSACM32.dll
0x77bd0000 - 0x77bd7000 C:\WINDOWS\system32\midimap.dll
0x767f0000 - 0x76817000 C:\WINDOWS\system32\schannel.dll
0x68100000 - 0x68124000 C:\WINDOWS\system32\dssenh.dll
0x05800000 - 0x05815000 C:\Program Files\Yahoo!\Messenger\YPagerChecker.dll
0x73300000 - 0x73367000 c:\windows\system32\vbscript.dll
0x73dd0000 - 0x73ece000 C:\WINDOWS\system32\MFC42.DLL
0x05830000 - 0x059bd000 C:\WINDOWS\system32\macromed\flash\flash.ocx
0x763b0000 - 0x763f9000 C:\WINDOWS\system32\comdlg32.dll
0x6d430000 - 0x6d43a000 C:\WINDOWS\system32\ddrawex.dll
0x73760000 - 0x737a9000 C:\WINDOWS\system32\DDRAW.dll
0x73bc0000 - 0x73bc6000 C:\WINDOWS\system32\DCIMAN32.dll
0x76d40000 - 0x76d58000 C:\WINDOWS\system32\MPRAPI.dll
0x77cc0000 - 0x77cf2000 C:\WINDOWS\system32\ACTIVEDS.dll
0x76e10000 - 0x76e35000 C:\WINDOWS\system32\adsldpc.dll
0x76b20000 - 0x76b31000 C:\WINDOWS\system32\ATL.DLL
0x71bf0000 - 0x71c03000 C:\WINDOWS\system32\SAMLIB.dll
0x71d40000 - 0x71d5c000 C:\WINDOWS\system32\actxprxy.dll
0x66880000 - 0x6688c000 C:\WINDOWS\system32\ImgUtil.dll
0x72b20000 - 0x72b38000 C:\WINDOWS\system32\plugin.ocx
0x5e310000 - 0x5e31c000 C:\WINDOWS\system32\pngfilt.dll
0x6bdd0000 - 0x6be05000 C:\WINDOWS\system32\dxtrans.dll
0x6be10000 - 0x6be6a000 C:\WINDOWS\system32\dxtmsft.dll
0x6e4a0000 - 0x6e4ac000 C:\WINDOWS\system32\corpol.dll
0x75e60000 - 0x75e73000 C:\WINDOWS\system32\cryptnet.dll
0x76f50000 - 0x76f58000 C:\WINDOWS\system32\WtsApi32.dll
0x76360000 - 0x76370000 C:\WINDOWS\system32\WINSTA.dll
0x76bb0000 - 0x76bb5000 C:\WINDOWS\system32\SFC.DLL
0x76c60000 - 0x76c8a000 C:\WINDOWS\system32\sfc_os.dll
0x75260000 - 0x75289000 C:\WINDOWS\system32\ADVPACK.DLL
0x75150000 - 0x75164000 C:\WINDOWS\system32\Cabinet.dll
0x605f0000 - 0x605fe000 C:\WINDOWS\system32\MSISIP.DLL
VM Arguments:
jvm_args: -Xbootclasspath/a:C:\PROGRA~1\Java\JRE15~1.0_0\lib\deploy.jar;C:\PROGRA~1\Java\JRE15~1.0_0\lib\plugin.jar -Xmx96m -Djavaplugin.maxHeapSize=96m -Xverify:remote -Djavaplugin.version=1.5.0_06 -Djavaplugin.nodotversion=150_06 -Dbrowser=sun.plugin -DtrustProxy=true -Dapplication.home=C:\PROGRA~1\Java\JRE15~1.0_0 -Djava.protocol.handler.pkgs=sun.plugin.net.protocol -Djavaplugin.vm.options=-Djava.class.path=C:\PROGRA~1\Java\JRE15~1.0_0\classes -Xbootclasspath/a:C:\PROGRA~1\Java\JRE15~1.0_0\lib\deploy.jar;C:\PROGRA~1\Java\JRE15~1.0_0\lib\plugin.jar -Xmx96m -Djavaplugin.maxHeapSize=96m -Xverify:remote -Djavaplugin.version=1.5.0_06 -Djavaplugin.nodotversion=150_06 -Dbrowser=sun.plugin -DtrustProxy=true -Dapplication.home=C:\PROGRA~1\Java\JRE15~1.0_0 -Djava.protocol.handler.pkgs=sun.plugin.net.protocol vfprintf
java_command: <unknown>
Launcher Type: generic
Environment Variables:
PATH=C:\PROGRA~1\Java\JRE15~1.0_0\bin;C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\system32\WBEM;.
USERNAME=Chris
OS=Windows_NT
PROCESSOR_IDENTIFIER=x86 Family 6 Model 13 Stepping 8, GenuineIntel
--------------- S Y S T E M ---------------
OS: Windows XP Build 2600 Service Pack 2
CPU:total 1 family 6, cmov, cx8, fxsr, mmx, sse, sse2
Memory: 4k page, physical 777584k(346696k free), swap 1901104k(1421604k free)
vm_info: Java HotSpot Client VM (1.5.0_06-b05) for windows-x86, built on Nov 10 2005 11:12:14 by "java_re" with MS VC++ 6.0
-----and an "Active Scan" log------
Incident Status Location
Adware:adware/superspider Not disinfected C:\WINDOWS\SYSTEM32\a.exe
Spyware:spyware/surfsidekick Not disinfected C:\WINDOWS\SYSTEM32\bk.exe
Potentially unwanted tool:application/mywebsearch Not disinfected C:\WINDOWS\SYSTEM32\f3PSSavr.scr
Potentially unwanted tool:application/funweb Not disinfected C:\WINDOWS\DOWNLOADED PROGRAM FILES\f3initialsetup1.0.0.15.inf
Spyware:spyware/media-motor Not disinfected C:\WINDOWS\mm63.ocx
Adware:adware/commad Not disinfected Windows Registry
Potentially unwanted tool:application/myway Not disinfected HKEY_CLASSES_ROOT\CLSID\{9AFB8248-617F-460D-9366-D71CDEDA3179}
Adware:adware/dyfuca Not disinfected Windows Registry
Spyware:Cookie/2o7.net Not disinfected C:\Documents and Settings\Chris\Cookies\chris@2o7[1].txt
Spyware:Cookie/64.62.232 Not disinfected C:\Documents and Settings\Chris\Cookies\chris@64.62.232[2].txt
Spyware:Cookie/YieldManager Not disinfected C:\Documents and Settings\Chris\Cookies\chris@ad.yieldmanager[2].txt
Spyware:Cookie/Hbmediapro Not disinfected C:\Documents and Settings\Chris\Cookies\chris@adopt.hbmediapro[2].txt
Spyware:Cookie/Adrevolver Not disinfected C:\Documents and Settings\Chris\Cookies\chris@adrevolver[1].txt
Spyware:Cookie/Adrevolver Not disinfected C:\Documents and Settings\Chris\Cookies\chris@adrevolver[2].txt
Spyware:Cookie/PointRoll Not disinfected C:\Documents and Settings\Chris\Cookies\chris@ads.pointroll[2].txt
Spyware:Cookie/Falkag Not disinfected C:\Documents and Settings\Chris\Cookies\chris@as-eu.falkag[1].txt
Spyware:Cookie/Falkag Not disinfected C:\Documents and Settings\Chris\Cookies\chris@as-us.falkag[1].txt
Spyware:Cookie/Ask Not disinfected C:\Documents and Settings\Chris\Cookies\chris@ask[1].txt
Spyware:Cookie/Azjmp Not disinfected C:\Documents and Settings\Chris\Cookies\chris@azjmp[2].txt
Spyware:Cookie/Belnk Not disinfected C:\Documents and Settings\Chris\Cookies\chris@belnk[1].txt
Spyware:Cookie/Belnk Not disinfected C:\Documents and Settings\Chris\Cookies\chris@dist.belnk[2].txt
Spyware:Cookie/GangbangSquad Not disinfected C:\Documents and Settings\Chris\Cookies\chris@gangbangsquad[2].txt
Spyware:Cookie/go Not disinfected C:\Documents and Settings\Chris\Cookies\chris@go[2].txt
Spyware:Cookie/Socalcoeds Not disinfected C:\Documents and Settings\Chris\Cookies\chris@socalcoeds[2].txt
Spyware:Cookie/Toplist Not disinfected C:\Documents and Settings\Chris\Cookies\chris@toplist[2].txt
Spyware:Cookie/Traffic Marketplace Not disinfected C:\Documents and Settings\Chris\Cookies\chris@trafficmp[1].txt
Spyware:Cookie/WebPower Not disinfected C:\Documents and Settings\Chris\Cookies\chris@webpower[2].txt
Spyware:Cookie/Xiti Not disinfected C:\Documents and Settings\Chris\Cookies\chris@xiti[1].txt
Spyware:Cookie/Adserver Not disinfected C:\Documents and Settings\Chris\Cookies\chris@z1.adserver[1].txt
Virus:Trj/Downloader.HXO Not disinfected C:\Documents and Settings\Chris\a.exe
Spyware:Cookie/2o7.net Not disinfected C:\Documents and Settings\Chris\Cookies\chris@2o7[1].txt
Spyware:Cookie/64.62.232 Not disinfected C:\Documents and Settings\Chris\Cookies\chris@64.62.232[2].txt
Spyware:Cookie/YieldManager Not disinfected C:\Documents and Settings\Chris\Cookies\chris@ad.yieldmanager[1].txt
Spyware:Cookie/Hbmediapro Not disinfected C:\Documents and Settings\Chris\Cookies\chris@adopt.hbmediapro[2].txt
Spyware:Cookie/Adrevolver Not disinfected C:\Documents and Settings\Chris\Cookies\chris@adrevolver[1].txt
Spyware:Cookie/Adrevolver Not disinfected C:\Documents and Settings\Chris\Cookies\chris@adrevolver[2].txt
Spyware:Cookie/PointRoll Not disinfected C:\Documents and Settings\Chris\Cookies\chris@ads.pointroll[2].txt
Spyware:Cookie/Falkag Not disinfected C:\Documents and Settings\Chris\Cookies\chris@as-eu.falkag[1].txt
Spyware:Cookie/Falkag Not disinfected C:\Documents and Settings\Chris\Cookies\chris@as-us.falkag[1].txt
Spyware:Cookie/Ask Not disinfected C:\Documents and Settings\Chris\Cookies\chris@ask[1].txt
Spyware:Cookie/Azjmp Not disinfected C:\Documents and Settings\Chris\Cookies\chris@azjmp[2].txt
Spyware:Cookie/Belnk Not disinfected C:\Documents and Settings\Chris\Cookies\chris@belnk[1].txt
Spyware:Cookie/Belnk Not disinfected C:\Documents and Settings\Chris\Cookies\chris@dist.belnk[2].txt
Spyware:Cookie/GangbangSquad Not disinfected C:\Documents and Settings\Chris\Cookies\chris@gangbangsquad[2].txt
Spyware:Cookie/go Not disinfected C:\Documents and Settings\Chris\Cookies\chris@go[2].txt