Jump to content

Build Theme!
  •  
  • Infected?

WE'RE SURE THAT YOU'LL LOVE US!

Hey there! :wub: Looks like you're enjoying the discussion, but you're not signed up for an account. When you create an account, we remember exactly what you've read, so you always come right back where you left off. You also get notifications, here and via email, whenever new posts are made. You can like posts to share the love. :D Join 93101 other members! Anybody can ask, anybody can answer. Consistently helpful members may be invited to become staff. Here's how it works. Virus cleanup? Start here -> Malware Removal Forum.

Try What the Tech -- It's free!


Photo

Hijack Log Full page pop up ads


  • This topic is locked This topic is locked
68 replies to this topic

#31 daparker

daparker

    Advanced Member

  • Authentic Member
  • PipPipPipPip
  • 779 posts

Posted 15 December 2005 - 11:32 AM

I assume the popups are still coming? Do they happen when IE is open? Do they happen only on certain sites?

    Advertisements

Register to Remove


#32 clueless123

clueless123

    Authentic Member

  • Authentic Member
  • PipPip
  • 58 posts

Posted 15 December 2005 - 01:12 PM

I'm still getting the full page..but its not an ad anymore here is what it says in big bold letters. *Account for domain affiliatetarget.com has been suspended* It doesn't ask to be redirected or anything that is was doing.

#33 daparker

daparker

    Advanced Member

  • Authentic Member
  • PipPipPipPip
  • 779 posts

Posted 15 December 2005 - 09:27 PM

Please download the Registry Search tool by clicking on the "hard drive" icon three quarters of the way down this page. Save it to the desktop and run it. If you get an alert from your antivirus about scripting, choose to allow the script to run. Search for Plook and click OK. Post the logfile from the tool here for me.

#34 clueless123

clueless123

    Authentic Member

  • Authentic Member
  • PipPip
  • 58 posts

Posted 15 December 2005 - 11:58 PM

REGEDIT4 ; RegSrch.vbs © Bill James ; Registry search results for string "PLOOK" 12/16/05 12:54:13 AM ; NOTE: This file will be deleted when you close WordPad. ; You must manually save this file to a new location if you want to refer to it again later. ; (If you save the file with a .reg extension, you can use it to restore any Registry changes you make to these values.) [HKEY_USERS\.DEFAULT\Software\Yahoo\Pager] "IPLookup"="216.136.173.161,216.136.173.162"

#35 daparker

daparker

    Advanced Member

  • Authentic Member
  • PipPipPipPip
  • 779 posts

Posted 17 December 2005 - 11:36 AM

It would be a good idea to run an online virus scan now.Post the log it generates for me to review.

#36 clueless123

clueless123

    Authentic Member

  • Authentic Member
  • PipPip
  • 58 posts

Posted 18 December 2005 - 12:56 AM

Incident Status Location Adware:adware/wintools Not disinfected C:\windows\TEMP\down.cab Spyware:spyware/surfsidekick Not disinfected C:\windows\TEMP\Ssk.log Adware:adware/dyfuca Not disinfected C:\windows\TEMP\cfout.txt Adware:adware/look2me Not disinfected C:\WINDOWS\SYSTEM\msg118.dll Adware:adware/beginto Not disinfected C:\WINDOWS\SYSTEM\cache32_dsktptr Adware:adware/cws.customie Not disinfected Windows Registry Adware:Adware/Look2Me Not disinfected C:\WINDOWS\SYSTEM\msg118.dll Adware:Adware/SAHAgent Not disinfected C:\WINDOWS\SYSTEM\xmltok.dll Possible Virus. Not disinfected C:\WINDOWS\TEMP\down.cab[btiein.dll] Adware:Adware/WinTools Not disinfected C:\WINDOWS\TEMP\temp.cab[toolbar.dll] Virus:Trj/Downloader.GLH Not disinfected C:\web.exe Adware:Adware/Prositefinder Not disinfected C:\temp\CSv20P160.exe

#37 daparker

daparker

    Advanced Member

  • Authentic Member
  • PipPipPipPip
  • 779 posts

Posted 19 December 2005 - 11:37 AM

Can you send the following file to miekiemoesATmalware-research.co.uk : C:\WINDOWS\SYSTEM\msg118.dll Let me know when that is done.

#38 clueless123

clueless123

    Authentic Member

  • Authentic Member
  • PipPip
  • 58 posts

Posted 19 December 2005 - 12:49 PM

I sent it.

Edited by clueless123, 19 December 2005 - 12:52 PM.


#39 daparker

daparker

    Advanced Member

  • Authentic Member
  • PipPipPipPip
  • 779 posts

Posted 19 December 2005 - 01:35 PM

Please download the Killbox by Option^Explicit.

Note:In the event you already have Killbox, this is a new version that I need you to download.
  • Save it to your desktop.
  • Please double-click Killbox.exe to run it.
  • Select
    • "Delete on Reboot".
    • From the main Killbox Window, Select Options>>Delete on Reboot>>Process all in List
  • Please copy the file paths below to the clipboard by highlighting ALL of them and pressing CTRL + C

    C:\WINDOWS\SYSTEM\msg118.dll
  • Return to Killbox, go to the File menu, and choose "Paste from Clipboard".
  • Click the red-and-white "Delete File" button. Click "Yes" at the Delete on Reboot prompt. Click "No" at the Pending Operations prompt.
If your computer does not restart automatically, please restart it manually.

Once rebooted, let me know if the popups continue.

#40 clueless123

clueless123

    Authentic Member

  • Authentic Member
  • PipPip
  • 58 posts

Posted 19 December 2005 - 04:36 PM

pop ups are still there. This option was not on the killbox though... "Process all in List"

    Advertisements

Register to Remove


#41 daparker

daparker

    Advanced Member

  • Authentic Member
  • PipPipPipPip
  • 779 posts

Posted 19 December 2005 - 05:12 PM

Is the following file still present: C:\WINDOWS\SYSTEM\msg118.dll

#42 clueless123

clueless123

    Authentic Member

  • Authentic Member
  • PipPip
  • 58 posts

Posted 19 December 2005 - 05:28 PM

It is there but in the killbox folder

#43 daparker

daparker

    Advanced Member

  • Authentic Member
  • PipPipPipPip
  • 779 posts

Posted 20 December 2005 - 01:16 AM

Ok, can you run a new MWav scan and post the log for me to review?

#44 clueless123

clueless123

    Authentic Member

  • Authentic Member
  • PipPip
  • 58 posts

Posted 20 December 2005 - 01:40 AM

MWav scan...Have I done this one before? If I have i can't find it anywhere.

#45 clueless123

clueless123

    Authentic Member

  • Authentic Member
  • PipPip
  • 58 posts

Posted 20 December 2005 - 03:05 AM

I did the MWav and it is a very big log so I will have to send several post to get it all. One thing I want to tell you..I am not getting the full page ads anymore..Instead I am getting an page not found every two minutes. Here is the log
Tue Dec 20 02:47:48 2005 => **********************************************************
Tue Dec 20 02:47:48 2005 => MicroWorld Anti Virus & Spyware Toolkit Utility.
Tue Dec 20 02:47:48 2005 => Copyright © 2003-2005, MicroWorld Technologies Inc.
Tue Dec 20 02:47:48 2005 => **********************************************************
Tue Dec 20 02:47:48 2005 => Version 7.4.5 (C:\WINDOWS\TEMP\MWAVSCAN.COM)
Tue Dec 20 02:47:48 2005 => Log File: C:\WINDOWS\TEMP\MWAV.LOG
Tue Dec 20 02:47:48 2005 => MWAV Registered: FALSE.
Tue Dec 20 02:47:48 2005 => MWAV Mode: Only Scan files.
Tue Dec 20 02:47:48 2005 => Latest Date of files inside MWAV: 12 Dec 2005 12:14:08.
Tue Dec 20 02:47:57 2005 => AV Library Loaded...
Tue Dec 20 02:47:57 2005 => MWAV doing self scanning...
Tue Dec 20 02:47:57 2005 => Scanning File C:\WINDOWS\TEMP\kavss.exe
Tue Dec 20 02:47:57 2005 => Scanning File C:\WINDOWS\TEMP\Getvlist.exe
Tue Dec 20 02:47:58 2005 => Scanning File C:\WINDOWS\TEMP\kavss.dll
Tue Dec 20 02:47:58 2005 => Scanning File C:\WINDOWS\TEMP\kavssdi.dll
Tue Dec 20 02:47:58 2005 => Scanning File C:\WINDOWS\TEMP\kavssi.dll
Tue Dec 20 02:47:58 2005 => Scanning File C:\WINDOWS\TEMP\kavvlg.dll
Tue Dec 20 02:47:59 2005 => Scanning File C:\WINDOWS\TEMP\msvlclnt.dll
Tue Dec 20 02:47:59 2005 => Scanning File C:\WINDOWS\TEMP\ipc.dll
Tue Dec 20 02:47:59 2005 => Scanning File C:\WINDOWS\TEMP\main.avi
Tue Dec 20 02:47:59 2005 => Scanning File C:\WINDOWS\TEMP\virus.avi
Tue Dec 20 02:47:59 2005 => MWAV files are clean.
Tue Dec 20 02:48:07 2005 => Virus Database Date: 2005/12/12
Tue Dec 20 02:48:07 2005 => Virus Database Count: 164615

Tue Dec 20 02:48:50 2005 => **********************************************************
Tue Dec 20 02:48:50 2005 => MicroWorld Anti Virus & Spyware Toolkit Utility.
Tue Dec 20 02:48:50 2005 => Copyright © 2003-2005, MicroWorld Technologies Inc.
Tue Dec 20 02:48:50 2005 =>
Tue Dec 20 02:48:50 2005 => Support: support@mwti.net
Tue Dec 20 02:48:50 2005 => Web: http://www.mwti.net
Tue Dec 20 02:48:50 2005 => **********************************************************
Tue Dec 20 02:48:50 2005 => Version 7.4.5 (C:\WINDOWS\TEMP\MWAVSCAN.COM)
Tue Dec 20 02:48:50 2005 => Log File: C:\WINDOWS\TEMP\MWAV.LOG
Tue Dec 20 02:48:50 2005 => Windows Root Folder: C:\WINDOWS
Tue Dec 20 02:48:50 2005 => Windows Sys32 Folder: C:\WINDOWS\SYSTEM
Tue Dec 20 02:48:50 2005 => OS: Windows 98
Tue Dec 20 02:48:50 2005 => Latest Date of files inside MWAV: 12 Dec 2005 12:14:08.

Tue Dec 20 02:48:51 2005 => Options Selected by User:
Tue Dec 20 02:48:51 2005 => Memory Check: Enabled
Tue Dec 20 02:48:51 2005 => Registry Check: Enabled
Tue Dec 20 02:48:51 2005 => StartUp Folder Check: Enabled
Tue Dec 20 02:48:51 2005 => System Folder Check: Enabled
Tue Dec 20 02:48:51 2005 => System Area Check: Disabled
Tue Dec 20 02:48:51 2005 => Services Check: Enabled
Tue Dec 20 02:48:51 2005 => Drive Check Option Disabled
Tue Dec 20 02:48:51 2005 => Folder Check: Disabled

Tue Dec 20 02:48:51 2005 => ***** Scanning Memory Files *****
Tue Dec 20 02:48:51 2005 => Scanning File C:\WINDOWS\SYSTEM\KERNEL32.DLL
Tue Dec 20 02:48:51 2005 => Scanning File C:\WINDOWS\SYSTEM\COMCTL32.DLL
Tue Dec 20 02:48:52 2005 => Scanning File C:\WINDOWS\SYSTEM\OLEAUT32.DLL
Tue Dec 20 02:48:52 2005 => Scanning File C:\WINDOWS\SYSTEM\OLE32.DLL
Tue Dec 20 02:48:52 2005 => Scanning File C:\WINDOWS\SYSTEM\USER32.DLL
Tue Dec 20 02:48:52 2005 => Scanning File C:\WINDOWS\SYSTEM\GDI32.DLL
Tue Dec 20 02:48:52 2005 => Scanning File C:\WINDOWS\SYSTEM\ADVAPI32.DLL
Tue Dec 20 02:48:52 2005 => Scanning File C:\WINDOWS\SYSTEM\KERNEL32.DLL
Tue Dec 20 02:48:53 2005 => Scanning File C:\WINDOWS\SYSTEM\MSGSRV32.EXE
Tue Dec 20 02:48:53 2005 => Scanning File C:\WINDOWS\SYSTEM\MPR.DLL
Tue Dec 20 02:48:53 2005 => Scanning File C:\WINDOWS\SYSTEM\MPREXE.EXE
Tue Dec 20 02:48:53 2005 => Scanning File C:\WINDOWS\SYSTEM\RNANP.DLL
Tue Dec 20 02:48:53 2005 => Scanning File C:\WINDOWS\SYSTEM\MSNP32.DLL
Tue Dec 20 02:48:53 2005 => Scanning File C:\WINDOWS\SYSTEM\MSNET32.DLL
Tue Dec 20 02:48:53 2005 => Scanning File C:\WINDOWS\SYSTEM\IENPSTUB.DLL
Tue Dec 20 02:48:53 2005 => Scanning File C:\WINDOWS\SYSTEM\MSLOCUSR.DLL
Tue Dec 20 02:48:53 2005 => Scanning File C:\WINDOWS\SYSTEM\MPREXE.EXE
Tue Dec 20 02:48:53 2005 => Scanning File C:\WINDOWS\SYSTEM\MPRSERV.DLL
Tue Dec 20 02:48:53 2005 => Scanning File C:\WINDOWS\SYSTEM\MSPWL32.DLL
Tue Dec 20 02:48:54 2005 => Scanning File C:\WINDOWS\SYSTEM\mmtask.tsk
Tue Dec 20 02:48:54 2005 => Scanning File C:\WINDOWS\SYSTEM\MSTASK.EXE
Tue Dec 20 02:48:55 2005 => Scanning File C:\WINDOWS\SYSTEM\MSIDLE.DLL
Tue Dec 20 02:48:55 2005 => Scanning File C:\WINDOWS\SYSTEM\MSTASK.EXE
Tue Dec 20 02:48:57 2005 => Scanning File C:\WINDOWS\SYSTEM\SHELL32.DLL
Tue Dec 20 02:48:57 2005 => Scanning File C:\WINDOWS\SYSTEM\SHLWAPI.DLL
Tue Dec 20 02:48:57 2005 => Scanning File C:\WINDOWS\SYSTEM\MSVCRT.DLL
Tue Dec 20 02:48:57 2005 => Scanning File c:\windows\SYSTEM\KB891711\KB891711.EXE
Tue Dec 20 02:48:57 2005 => Scanning File C:\WINDOWS\EXPLORER.EXE
Tue Dec 20 02:48:58 2005 => Scanning File C:\WINDOWS\SYSTEM\MYDOCS.DLL
Tue Dec 20 02:48:58 2005 => Scanning File C:\WINDOWS\SYSTEM\SENSAPI.DLL
Tue Dec 20 02:48:58 2005 => Scanning File C:\WINDOWS\SYSTEM\ACTXPRXY.DLL
Tue Dec 20 02:48:58 2005 => Scanning File C:\WINDOWS\SYSTEM\IPHLPAPI.DLL
Tue Dec 20 02:48:58 2005 => Scanning File C:\WINDOWS\SYSTEM\MSAFD.DLL
Tue Dec 20 02:48:58 2005 => Scanning File C:\WINDOWS\SYSTEM\IPCFGDLL.DLL
Tue Dec 20 02:48:58 2005 => Scanning File C:\WINDOWS\SYSTEM\DHCPCSVC.DLL
Tue Dec 20 02:48:58 2005 => Scanning File C:\WINDOWS\SYSTEM\ICMP.DLL
Tue Dec 20 02:48:58 2005 => Scanning File C:\WINDOWS\SYSTEM\LINKINFO.DLL
Tue Dec 20 02:48:58 2005 => Scanning File C:\WINDOWS\SYSTEM\ES.DLL
Tue Dec 20 02:48:58 2005 => Scanning File C:\WINDOWS\SYSTEM\SENS.DLL
Tue Dec 20 02:48:59 2005 => Scanning File C:\WINDOWS\SYSTEM\ESTIER2.DLL
Tue Dec 20 02:48:59 2005 => Scanning File C:\WINDOWS\SYSTEM\ESSHARED.DLL
Tue Dec 20 02:48:59 2005 => Scanning File C:\WINDOWS\SYSTEM\IMM32.DLL
Tue Dec 20 02:48:59 2005 => Scanning File C:\WINDOWS\SYSTEM\MSLS31.DLL
Tue Dec 20 02:48:59 2005 => Scanning File C:\WINDOWS\SYSTEM\MSI.DLL
Tue Dec 20 02:48:59 2005 => Scanning File C:\WINDOWS\SYSTEM\WEBCHECK.DLL
Tue Dec 20 02:48:59 2005 => Scanning File C:\WINDOWS\SYSTEM\SHDOCLC.DLL
Tue Dec 20 02:49:00 2005 => Scanning File C:\WINDOWS\SYSTEM\RASAPI32.DLL
Tue Dec 20 02:49:01 2005 => Scanning File C:\WINDOWS\SYSTEM\WSOCK32.DLL
Tue Dec 20 02:49:01 2005 => Scanning File C:\WINDOWS\SYSTEM\MSWSOCK.DLL
Tue Dec 20 02:49:01 2005 => Scanning File C:\WINDOWS\SYSTEM\WS2_32.DLL
Tue Dec 20 02:49:01 2005 => Scanning File C:\WINDOWS\SYSTEM\WS2HELP.DLL
Tue Dec 20 02:49:01 2005 => Scanning File C:\WINDOWS\SYSTEM\SECUR32.DLL
Tue Dec 20 02:49:01 2005 => Scanning File C:\WINDOWS\SYSTEM\MSVCRT20.DLL
Tue Dec 20 02:49:01 2005 => Scanning File C:\WINDOWS\SYSTEM\SVRAPI.DLL
Tue Dec 20 02:49:01 2005 => Scanning File C:\WINDOWS\SYSTEM\TAPI32.DLL
Tue Dec 20 02:49:01 2005 => Scanning File C:\WINDOWS\SYSTEM\NETAPI32.DLL
Tue Dec 20 02:49:02 2005 => Scanning File C:\WINDOWS\SYSTEM\NETBIOS.DLL
Tue Dec 20 02:49:02 2005 => Scanning File C:\WINDOWS\SYSTEM\SHFOLDER.DLL
Tue Dec 20 02:49:02 2005 => Scanning File C:\WINDOWS\SYSTEM\WININET.DLL
Tue Dec 20 02:49:03 2005 => Scanning File C:\WINDOWS\SYSTEM\CRYPT32.DLL
Tue Dec 20 02:49:04 2005 => Scanning File C:\WINDOWS\SYSTEM\MSOSS.DLL
Tue Dec 20 02:49:04 2005 => Scanning File C:\WINDOWS\SYSTEM\MSHTML.DLL
Tue Dec 20 02:49:04 2005 => Scanning File C:\WINDOWS\SYSTEM\MLANG.DLL
Tue Dec 20 02:49:04 2005 => Scanning File C:\WINDOWS\SYSTEM\URLMON.DLL
Tue Dec 20 02:49:06 2005 => Scanning File C:\WINDOWS\SYSTEM\VERSION.DLL
Tue Dec 20 02:49:06 2005 => Scanning File C:\WINDOWS\SYSTEM\RPCRT4.DLL
Tue Dec 20 02:49:06 2005 => Scanning File C:\WINDOWS\SYSTEM\SHD401LC.DLL
Tue Dec 20 02:49:06 2005 => Scanning File C:\WINDOWS\SYSTEM\BROWSEUI.DLL
Tue Dec 20 02:49:09 2005 => Scanning File C:\WINDOWS\SYSTEM\SHDOC401.DLL
Tue Dec 20 02:49:10 2005 => Scanning File C:\WINDOWS\SYSTEM\SHDOCVW.DLL
Tue Dec 20 02:49:11 2005 => Scanning File C:\WINDOWS\EXPLORER.EXE
Tue Dec 20 02:49:11 2005 => Scanning File C:\WINDOWS\SYSTEM\HIDSERV.EXE
Tue Dec 20 02:49:12 2005 => Scanning File C:\WINDOWS\SYSTEM\HIDSERV.EXE
Tue Dec 20 02:49:13 2005 => Scanning File C:\WINDOWS\SYSTEM\SETUPAPI.DLL
Tue Dec 20 02:49:14 2005 => Scanning File C:\WINDOWS\SYSTEM\CFGMGR32.DLL
Tue Dec 20 02:49:14 2005 => Scanning File C:\WINDOWS\SYSTEM\WINSPOOL.DRV
Tue Dec 20 02:49:15 2005 => Scanning File C:\WINDOWS\SYSTEM\COMDLG32.DLL
Tue Dec 20 02:49:15 2005 => Scanning File C:\WINDOWS\SYSTEM\LZ32.DLL
Tue Dec 20 02:49:15 2005 => Scanning File C:\WINDOWS\SYSTEM\NTDLL.DLL
Tue Dec 20 02:49:15 2005 => Scanning File C:\WINDOWS\SYSTEM\WINMM.DLL
Tue Dec 20 02:49:15 2005 => Scanning File C:\WINDOWS\SYSTEM\HID.DLL
Tue Dec 20 02:49:15 2005 => Scanning File C:\WINDOWS\TASKMON.EXE
Tue Dec 20 02:49:15 2005 => Scanning File C:\WINDOWS\TASKMON.EXE
Tue Dec 20 02:49:15 2005 => Scanning File C:\WINDOWS\SYSTEM\SYSTRAY.EXE
Tue Dec 20 02:49:15 2005 => Scanning File C:\WINDOWS\SYSTEM\USBUI.DLL
Tue Dec 20 02:49:16 2005 => Scanning File C:\WINDOWS\SYSTEM\WMI.DLL
Tue Dec 20 02:49:16 2005 => Scanning File C:\WINDOWS\SYSTEM\SYSTRAY.EXE
Tue Dec 20 02:49:16 2005 => Scanning File C:\WINDOWS\SYSTEM\BATMETER.DLL
Tue Dec 20 02:49:16 2005 => Scanning File C:\WINDOWS\SYSTEM\POWRPROF.DLL
Tue Dec 20 02:49:16 2005 => Scanning File C:\WINDOWS\SYSTEM\HPSYSDRV.EXE
Tue Dec 20 02:49:16 2005 => Scanning File C:\WINDOWS\SYSTEM\HPSYSDRV.EXE
Tue Dec 20 02:49:17 2005 => Scanning File C:\WINDOWS\SYSTEM\USBMMKBD.EXE
Tue Dec 20 02:49:17 2005 => Scanning File C:\WINDOWS\SYSTEM\USBMMKBD.EXE
Tue Dec 20 02:49:18 2005 => Scanning File C:\PROGRA~1\NETROPA\ONE-TO~1\MMKEYBD.EXE
Tue Dec 20 02:49:18 2005 => Scanning File C:\WINDOWS\SYSTEM\RNR20.DLL
Tue Dec 20 02:49:18 2005 => Scanning File C:\WINDOWS\SYSTEM\WNASPI32.DLL
Tue Dec 20 02:49:18 2005 => Scanning File C:\WINDOWS\SYSTEM\MSIOSD32.DLL
Tue Dec 20 02:49:19 2005 => Scanning File C:\WINDOWS\SYSTEM\MDMDVDIF.DLL
Tue Dec 20 02:49:19 2005 => Scanning File C:\WINDOWS\SYSTEM\MSVFW32.DLL
Tue Dec 20 02:49:19 2005 => Scanning File C:\WINDOWS\SYSTEM\WOW32.DLL
Tue Dec 20 02:49:19 2005 => Scanning File C:\WINDOWS\SYSTEM\DCIMAN32.DLL
Tue Dec 20 02:49:19 2005 => Scanning File C:\WINDOWS\SYSTEM\BWCC32.DLL
Tue Dec 20 02:49:19 2005 => Scanning File C:\PROGRA~1\HP\HPCORE~1\HPCMPMGR.EXE
Tue Dec 20 02:49:20 2005 => Scanning File C:\WINDOWS\SYSTEM\MSXML4.DLL
Tue Dec 20 02:49:20 2005 => Scanning File C:\WINDOWS\SYSTEM\HPVCR70.DLL
Tue Dec 20 02:49:20 2005 => Scanning File C:\WINDOWS\SYSTEM\STIMON.EXE
Tue Dec 20 02:49:21 2005 => Scanning File C:\WINDOWS\SYSTEM\STIMON.EXE
Tue Dec 20 02:49:21 2005 => Scanning File C:\WINDOWS\SYSTEM\STI.DLL
Tue Dec 20 02:49:21 2005 => Scanning File C:\WINDOWS\SYSTEM\WMIEXE.EXE
Tue Dec 20 02:49:22 2005 => Scanning File C:\WINDOWS\SYSTEM\WMIEXE.EXE
Tue Dec 20 02:49:22 2005 => Scanning File C:\WINDOWS\SYSTEM\WMICORE.DLL
Tue Dec 20 02:49:22 2005 => Scanning File C:\PROGRA~1\VERIZO~1\SMARTB~1\MOTIVESB.EXE
Tue Dec 20 02:49:24 2005 => Scanning File C:\WINDOWS\SYSTEM\QTTASK.EXE
Tue Dec 20 02:49:25 2005 => Scanning File C:\WINDOWS\SYSTEM\QTTASK.EXE
Tue Dec 20 02:49:26 2005 => Scanning File C:\PROGRA~1\NETROPA\ONE-TO~1\KEYBDMGR.EXE
Tue Dec 20 02:49:26 2005 => Scanning File C:\PROGRA~1\TROJAN~1.2\THGUARD.EXE
Tue Dec 20 02:49:27 2005 => Scanning File C:\WINDOWS\SYSTEM\HHCTRL.OCX
Tue Dec 20 02:49:28 2005 => Scanning File C:\WINDOWS\SYSTEM\IMAGEHLP.DLL
Tue Dec 20 02:49:28 2005 => Scanning File C:\PROGRA~1\NETROPA\ONSCRE~1\OSD.EXE
Tue Dec 20 02:49:28 2005 => Scanning File C:\PROGRA~1\COMMON~1\REAL\UPDATE~1\REALSC~1.EXE
Tue Dec 20 02:49:29 2005 => Scanning File C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGCC.EXE
Tue Dec 20 02:49:31 2005 => Scanning File C:\WINDOWS\SYSTEM\MSVCP71.DLL
Tue Dec 20 02:49:31 2005 => Scanning File C:\WINDOWS\SYSTEM\MFC71.DLL
Tue Dec 20 02:49:31 2005 => Scanning File C:\WINDOWS\SYSTEM\MFC71ENU.DLL
Tue Dec 20 02:49:31 2005 => Scanning File C:\WINDOWS\SYSTEM\MSVCR71.DLL
Tue Dec 20 02:49:32 2005 => Scanning File C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGEMC.EXE
Tue Dec 20 02:49:33 2005 => Scanning File C:\WINDOWS\SYSTEM\SCHANNEL.DLL
Tue Dec 20 02:49:33 2005 => Scanning File C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGAMSVR.EXE
Tue Dec 20 02:49:34 2005 => Scanning File C:\WINDOWS\RunDLL.exe
Tue Dec 20 02:49:34 2005 => Scanning File C:\PROGRA~1\AWS\WEATHE~1\WEATHER.EXE
Tue Dec 20 02:49:35 2005 => Scanning File C:\WINDOWS\SYSTEM\OLEPRO32.DLL
Tue Dec 20 02:49:36 2005 => Scanning File C:\WINDOWS\SYSTEM\OLEDLG.DLL
Tue Dec 20 02:49:36 2005 => Scanning File C:\PROGRA~1\WINZIP\WZQKPICK.EXE
Tue Dec 20 02:49:36 2005 => Scanning File C:\COREL\OFFICE7\SHARED\PFIT7\PFPPOP70.EXE
Tue Dec 20 02:49:37 2005 => Scanning File C:\PROGRA~1\WINK\WINK.EXE
Tue Dec 20 02:49:37 2005 => Scanning File C:\PROGRA~1\NETROPA\ONE-TO~1\MMUSBKB2.EXE
Tue Dec 20 02:49:37 2005 => Scanning File C:\COREL\OFFICE7\DAD7\QUICK.EXE
Tue Dec 20 02:49:38 2005 => Scanning File C:\WINDOWS\SYSTEM\MFC40.DLL
Tue Dec 20 02:49:38 2005 => Scanning File C:\WINDOWS\SYSTEM\MSVCRT40.DLL
Tue Dec 20 02:49:38 2005 => Scanning File C:\PROGRA~1\HP\DIGITA~1\BIN\HPQTRA08.EXE
Tue Dec 20 02:49:38 2005 => Scanning File C:\WINDOWS\SYSTEM\HPZIPR12.DLL
Tue Dec 20 02:49:39 2005 => Scanning File C:\WINDOWS\SYSTEM\HPZIDR12.DLL
Tue Dec 20 02:49:39 2005 => Scanning File C:\WINDOWS\SYSTEM\MFC42.DLL
Tue Dec 20 02:49:40 2005 => Scanning File C:\WINDOWS\SYSTEM\MSVCP60.DLL
Tue Dec 20 02:49:40 2005 => Scanning File C:\PROGRA~1\SPYWAR~1\SGMAIN.EXE
Tue Dec 20 02:49:40 2005 => Scanning File C:\WINDOWS\SYSTEM\SCRRUN.DLL
Tue Dec 20 02:49:40 2005 => Scanning File C:\WINDOWS\SYSTEM\RICHED32.DLL
Tue Dec 20 02:49:40 2005 => Scanning File C:\WINDOWS\SYSTEM\RICHTX32.OCX
Tue Dec 20 02:49:40 2005 => Scanning File C:\WINDOWS\SYSTEM\ASYCFILT.DLL
Tue Dec 20 02:49:41 2005 => Scanning File C:\WINDOWS\SYSTEM\MSCOMCTL.OCX
Tue Dec 20 02:49:41 2005 => Scanning File C:\WINDOWS\SYSTEM\MSVBVM60.DLL
Tue Dec 20 02:49:41 2005 => Scanning File C:\WINDOWS\SYSTEM\SPOOL32.EXE
Tue Dec 20 02:49:42 2005 => Scanning File C:\WINDOWS\SYSTEM\MSPP32.DLL
Tue Dec 20 02:49:42 2005 => Scanning File C:\WINDOWS\SYSTEM\HPZS9X09.DLL
Tue Dec 20 02:49:42 2005 => Scanning File C:\WINDOWS\SYSTEM\USBMON.DLL
Tue Dec 20 02:49:42 2005 => Scanning File C:\WINDOWS\SYSTEM\SPOOL32.EXE
Tue Dec 20 02:49:43 2005 => Scanning File C:\WINDOWS\SYSTEM\SPOOLSS.DLL
Tue Dec 20 02:49:43 2005 => Scanning File C:\PROGRA~1\VERIZO~1\BIN\MPBTN.EXE
Tue Dec 20 02:49:45 2005 => Scanning File C:\PROGRA~1\HP\HPCORE~1\COMP\HPTSKMGR.EXE
Tue Dec 20 02:49:45 2005 => Scanning File C:\WINDOWS\SYSTEM\HPVCP70.DLL
Tue Dec 20 02:49:45 2005 => Scanning File C:\WINDOWS\SYSTEM\HPVAUT32.DLL
Tue Dec 20 02:49:45 2005 => Scanning File C:\PROGRA~1\SPYWAR~1\SGBHP.EXE
Tue Dec 20 02:49:46 2005 => Scanning File C:\PROGRA~1\YAHOO!\MESSEN~1\YPAGER.EXE
Tue Dec 20 02:49:53 2005 => Scanning File C:\WINDOWS\SYSTEM\VBSCRIPT.DLL
Tue Dec 20 02:49:53 2005 => Scanning File C:\WINDOWS\SYSTEM\IMGUTIL.DLL
Tue Dec 20 02:49:53 2005 => Scanning File C:\WINDOWS\SYSTEM\JSCRIPT.DLL
Tue Dec 20 02:49:53 2005 => Scanning File C:\WINDOWS\SYSTEM\OLEACC.DLL
Tue Dec 20 02:49:54 2005 => Scanning File C:\WINDOWS\SYSTEM\AVIFIL32.DLL
Tue Dec 20 02:49:54 2005 => Scanning File C:\WINDOWS\SYSTEM\CRTDLL.DLL
Tue Dec 20 02:49:54 2005 => Scanning File C:\WINDOWS\SYSTEM\MSACM32.DLL
Tue Dec 20 02:49:54 2005 => Scanning File C:\WINDOWS\SYSTEM\MSXML3.DLL
Tue Dec 20 02:49:55 2005 => Scanning File C:\WINDOWS\SYSTEM\AVICAP32.DLL
Tue Dec 20 02:49:55 2005 => Scanning File C:\WINDOWS\SYSTEM\XMLPARSE.DLL
Tue Dec 20 02:49:55 2005 => Scanning File C:\WINDOWS\SYSTEM\XMLTOK.DLL
Tue Dec 20 02:49:55 2005 => Scanning File C:\WINDOWS\SYSTEM\RICHED20.DLL
Tue Dec 20 02:49:55 2005 => Scanning File C:\WINDOWS\SYSTEM\MSIMG32.DLL
Tue Dec 20 02:49:55 2005 => Scanning File C:\WINDOWS\SYSTEM\DDHELP.EXE
Tue Dec 20 02:49:56 2005 => Scanning File C:\WINDOWS\SYSTEM\I81XDD.DLL
Tue Dec 20 02:49:56 2005 => Scanning File C:\WINDOWS\SYSTEM\DDRAW.DLL
Tue Dec 20 02:49:57 2005 => Scanning File C:\WINDOWS\SYSTEM\DDHELP.EXE
Tue Dec 20 02:49:57 2005 => Scanning File C:\WINDOWS\SYSTEM\PSTORES.EXE
Tue Dec 20 02:49:57 2005 => Scanning File C:\WINDOWS\SYSTEM\PSBASE.DLL
Tue Dec 20 02:49:57 2005 => Scanning File C:\WINDOWS\SYSTEM\PSTORERC.DLL
Tue Dec 20 02:49:58 2005 => Scanning File C:\WINDOWS\SYSTEM\SOFTPUB.DLL
Tue Dec 20 02:49:58 2005 => Scanning File C:\WINDOWS\SYSTEM\WINTRUST.DLL
Tue Dec 20 02:49:58 2005 => Scanning File C:\WINDOWS\SYSTEM\PSTORES.EXE
Tue Dec 20 02:49:58 2005 => Scanning File C:\PROGRA~1\INTERN~1\IEXPLORE.EXE
Tue Dec 20 02:49:58 2005 => Scanning File C:\WINDOWS\SYSTEM\PLUGIN.OCX
Tue Dec 20 02:49:58 2005 => Scanning File C:\WINDOWS\SYSTEM\MSIEFTP.DLL
Tue Dec 20 02:49:58 2005 => Scanning File C:\WINDOWS\SYSTEM\MSHTMLED.DLL
Tue Dec 20 02:49:59 2005 => Scanning File C:\WINDOWS\SYSTEM\RSABASE.DLL
Tue Dec 20 02:49:59 2005 => Scanning File C:\WINDOWS\SYSTEM\BROWSELC.DLL
Tue Dec 20 02:49:59 2005 => Scanning File C:\WINDOWS\TEMP\MWAVSCAN.COM
Tue Dec 20 02:50:02 2005 => Scanning File IPC.DLL
Tue Dec 20 02:50:02 2005 => Scanning File KAVSSDI.DLL
Tue Dec 20 02:50:02 2005 => Scanning File KAVSSD.DLL
Tue Dec 20 02:50:03 2005 => Scanning File KAVSSI.DLL
Tue Dec 20 02:50:03 2005 => Scanning File MSVLCLNT.DLL
Tue Dec 20 02:50:03 2005 => Scanning File MWAVSCAN.COM
Tue Dec 20 02:50:05 2005 => Scanning File C:\WINDOWS\TEMP\KAVSS.EXE
Tue Dec 20 02:50:06 2005 => Scanning File KAVSS.EXE
Tue Dec 20 02:50:06 2005 => Scanning File KAVSS.DLL

Tue Dec 20 02:50:06 2005 => ***** Scanning Registry Files *****

Tue Dec 20 02:50:06 2005 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad
Tue Dec 20 02:50:06 2005 => Scanning File C:\WINDOWS\SYSTEM\WEBCHECK.DLL

Tue Dec 20 02:50:06 2005 => Scanning HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad

Tue Dec 20 02:50:06 2005 => Scanning HKLM\SOFTWARE\Microsoft\Internet Explorer\Plugins\Extension
Tue Dec 20 02:50:06 2005 => Scanning File C:\PROGRA~1\INTERN~1\PLUGINS\nppdf32.dll
Tue Dec 20 02:50:06 2005 => Scanning File C:\PROGRA~1\INTERN~1\Plugins\NPDocBox.dll

Tue Dec 20 02:50:07 2005 => Scanning HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar
Tue Dec 20 02:50:07 2005 => Scanning File C:\WINDOWS\SYSTEM\MSDXM.OCX
Tue Dec 20 02:50:07 2005 => Scanning File c:\PROGRA~1\GOOGLE\GOOGLE~1.DLL

Tue Dec 20 02:50:08 2005 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects
Tue Dec 20 02:50:08 2005 => {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} = C:\PROGRAM FILES\ADOBE\ACROBAT 5.0\READER\ACTIVEX\ACROIEHELPER.OCX
Tue Dec 20 02:50:08 2005 => Scanning File C:\PROGRA~1\ADOBE\ACROBA~1.0\READER\ACTIVEX\ACROIE~1.OCX
Tue Dec 20 02:50:08 2005 => {65D886A2-7CA7-479B-BB95-14D1EFB7946A} = C:\PROGRAM FILES\YAHOO!\COMMON\YIETAGBM.DLL
Tue Dec 20 02:50:08 2005 => Scanning File C:\PROGRA~1\YAHOO!\COMMON\YIETAGBM.DLL
Tue Dec 20 02:50:08 2005 => {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} = C:\PROGRAM FILES\YAHOO!\COMMON\YIESRVC.DLL
Tue Dec 20 02:50:08 2005 => Scanning File C:\PROGRA~1\YAHOO!\COMMON\YIESRVC.DLL
Tue Dec 20 02:50:08 2005 => {4A368E80-174F-4872-96B5-0B27DDD11DB2} = C:\PROGRAM FILES\SPYWAREGUARD\DLPROTECT.DLL
Tue Dec 20 02:50:08 2005 => Scanning File C:\PROGRA~1\SPYWAR~1\DLPROT~1.DLL
Tue Dec 20 02:50:08 2005 => {53707962-6F74-2D53-2644-206D7942484F} = C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
Tue Dec 20 02:50:08 2005 => Scanning File C:\PROGRA~1\SPYBOT~1\SDHELPER.DLL

Tue Dec 20 02:50:09 2005 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\explorer\SharedTaskScheduler
Tue Dec 20 02:50:09 2005 => Scanning File C:\WINDOWS\SYSTEM\BROWSEUI.DLL
Tue Dec 20 02:50:12 2005 => Scanning File C:\WINDOWS\SYSTEM\BROWSEUI.DLL

Tue Dec 20 02:50:12 2005 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved
Tue Dec 20 02:50:12 2005 => Scanning File C:\WINDOWS\SYSTEM\WSHEXT.DLL
Tue Dec 20 02:50:12 2005 => Scanning File C:\WINDOWS\SYSTEM\mstask.dll
Tue Dec 20 02:50:14 2005 => Scanning File C:\WINDOWS\SYSTEM\icmui.dll
Tue Dec 20 02:50:14 2005 => Scanning File C:\WINDOWS\SYSTEM\icmui.dll
Tue Dec 20 02:50:14 2005 => Scanning File C:\WINDOWS\SYSTEM\icmui.dll
Tue Dec 20 02:50:14 2005 => Scanning File C:\WINDOWS\SYSTEM\icmui.dll
Tue Dec 20 02:50:14 2005 => Scanning File C:\PROGRA~1\COMMON~1\MICROS~1\WEBFOL~1\MSONSEXT.DLL
Tue Dec 20 02:50:14 2005 => Scanning File C:\WINDOWS\SYSTEM\rnaui.dll
Tue Dec 20 02:50:14 2005 => Scanning File C:\WINDOWS\SYSTEM\BROWSEUI.DLL
Tue Dec 20 02:50:14 2005 => Scanning File C:\WINDOWS\SYSTEM\BROWSEUI.DLL
Tue Dec 20 02:50:14 2005 => Scanning File C:\WINDOWS\SYSTEM\BROWSEUI.DLL
Tue Dec 20 02:50:14 2005 => Scanning File C:\WINDOWS\SYSTEM\BROWSEUI.DLL
Tue Dec 20 02:50:14 2005 => Scanning File C:\WINDOWS\SYSTEM\BROWSEUI.DLL
Tue Dec 20 02:50:14 2005 => Scanning File C:\WINDOWS\SYSTEM\BROWSEUI.DLL
Tue Dec 20 02:50:14 2005 => Scanning File C:\WINDOWS\SYSTEM\BROWSEUI.DLL
Tue Dec 20 02:50:14 2005 => Scanning File C:\WINDOWS\SYSTEM\BROWSEUI.DLL
Tue Dec 20 02:50:14 2005 => Scanning File C:\WINDOWS\SYSTEM\BROWSEUI.DLL
Tue Dec 20 02:50:14 2005 => Scanning File C:\WINDOWS\SYSTEM\BROWSEUI.DLL
Tue Dec 20 02:50:14 2005 => Scanning File C:\WINDOWS\SYSTEM\BROWSEUI.DLL
Tue Dec 20 02:50:14 2005 => Scanning File C:\WINDOWS\SYSTEM\BROWSEUI.DLL
Tue Dec 20 02:50:14 2005 => Scanning File C:\WINDOWS\SYSTEM\BROWSEUI.DLL
Tue Dec 20 02:50:14 2005 => Scanning File C:\WINDOWS\SYSTEM\BROWSEUI.DLL
Tue Dec 20 02:50:14 2005 => Scanning File C:\WINDOWS\SYSTEM\BROWSEUI.DLL
Tue Dec 20 02:50:14 2005 => Scanning File C:\WINDOWS\SYSTEM\BROWSEUI.DLL
Tue Dec 20 02:50:14 2005 => Scanning File C:\WINDOWS\SYSTEM\BROWSEUI.DLL
Tue Dec 20 02:50:14 2005 => Scanning File C:\WINDOWS\SYSTEM\BROWSEUI.DLL
Tue Dec 20 02:50:14 2005 => Scanning File C:\WINDOWS\SYSTEM\BROWSEUI.DLL
Tue Dec 20 02:50:14 2005 => Scanning File C:\WINDOWS\SYSTEM\BROWSEUI.DLL
Tue Dec 20 02:50:14 2005 => Scanning File C:\WINDOWS\SYSTEM\BROWSEUI.DLL
Tue Dec 20 02:50:14 2005 => Scanning File C:\WINDOWS\SYSTEM\BROWSEUI.DLL
Tue Dec 20 02:50:14 2005 => Scanning File C:\WINDOWS\SYSTEM\BROWSEUI.DLL
Tue Dec 20 02:50:14 2005 => Scanning File C:\WINDOWS\SYSTEM\BROWSEUI.DLL
Tue Dec 20 02:50:14 2005 => Scanning File C:\WINDOWS\SYSTEM\BROWSEUI.DLL
Tue Dec 20 02:50:14 2005 => Scanning File C:\WINDOWS\SYSTEM\BROWSEUI.DLL
Tue Dec 20 02:50:14 2005 => Scanning File C:\WINDOWS\SYSTEM\BROWSEUI.DLL
Tue Dec 20 02:50:14 2005 => Scanning File C:\WINDOWS\SYSTEM\BROWSEUI.DLL
Tue Dec 20 02:50:14 2005 => Scanning File C:\WINDOWS\SYSTEM\BROWSEUI.DLL
Tue Dec 20 02:50:14 2005 => Scanning File C:\WINDOWS\SYSTEM\BROWSEUI.DLL
Tue Dec 20 02:50:14 2005 => Scanning File C:\WINDOWS\SYSTEM\BROWSEUI.DLL
Tue Dec 20 02:50:14 2005 => Scanning File C:\WINDOWS\SYSTEM\BROWSEUI.DLL
Tue Dec 20 02:50:14 2005 => Scanning File C:\WINDOWS\SYSTEM\SHDOCVW.DLL
Tue Dec 20 02:50:15 2005 => Scanning File C:\WINDOWS\SYSTEM\SHDOCVW.DLL
Tue Dec 20 02:50:15 2005 => Scanning File C:\WINDOWS\SYSTEM\SHDOCVW.DLL
Tue Dec 20 02:50:15 2005 => Scanning File C:\WINDOWS\SYSTEM\shdocvw.dll
Tue Dec 20 02:50:15 2005 => Scanning File C:\WINDOWS\SYSTEM\SHDOCVW.DLL
Tue Dec 20 02:50:15 2005 => Scanning File C:\WINDOWS\SYSTEM\SHDOCVW.DLL
Tue Dec 20 02:50:15 2005 => Scanning File C:\WINDOWS\SYSTEM\SHDOCVW.DLL
Tue Dec 20 02:50:15 2005 => Scanning File C:\WINDOWS\SYSTEM\SHDOCVW.DLL
Tue Dec 20 02:50:15 2005 => Scanning File C:\WINDOWS\SYSTEM\SHDOCVW.DLL
Tue Dec 20 02:50:15 2005 => Scanning File C:\WINDOWS\SYSTEM\SHDOCVW.DLL
Tue Dec 20 02:50:15 2005 => Scanning File C:\WINDOWS\SYSTEM\SHDOCVW.DLL
Tue Dec 20 02:50:15 2005 => Scanning File C:\WINDOWS\SYSTEM\SHDOCVW.DLL
Tue Dec 20 02:50:15 2005 => Scanning File C:\WINDOWS\SYSTEM\SHDOCVW.DLL
Tue Dec 20 02:50:15 2005 => Scanning File C:\WINDOWS\SYSTEM\SHDOCVW.DLL
Tue Dec 20 02:50:15 2005 => Scanning File C:\WINDOWS\SYSTEM\SHDOC401.DLL
Tue Dec 20 02:50:15 2005 => Scanning File C:\WINDOWS\SYSTEM\SHDOC401.DLL
Tue Dec 20 02:50:15 2005 => Scanning File C:\WINDOWS\SYSTEM\SHDOC401.DLL
Tue Dec 20 02:50:15 2005 => Scanning File C:\WINDOWS\SYSTEM\SHDOC401.DLL
Tue Dec 20 02:50:15 2005 => Scanning File C:\WINDOWS\SYSTEM\SHDOC401.DLL
Tue Dec 20 02:50:15 2005 => Scanning File C:\WINDOWS\SYSTEM\SHDOC401.DLL
Tue Dec 20 02:50:15 2005 => Scanning File C:\WINDOWS\SYSTEM\SHDOC401.DLL
Tue Dec 20 02:50:15 2005 => Scanning File C:\WINDOWS\SYSTEM\SHDOC401.DLL
Tue Dec 20 02:50:15 2005 => Scanning File C:\WINDOWS\SYSTEM\SHDOC401.DLL
Tue Dec 20 02:50:15 2005 => Scanning File C:\WINDOWS\SYSTEM\SHDOC401.DLL
Tue Dec 20 02:50:15 2005 => Scanning File C:\WINDOWS\SYSTEM\SHDOC401.DLL
Tue Dec 20 02:50:15 2005 => Scanning File C:\WINDOWS\SYSTEM\SHDOC401.DLL
Tue Dec 20 02:50:15 2005 => Scanning File C:\WINDOWS\SYSTEM\SHDOC401.DLL
Tue Dec 20 02:50:16 2005 => Scanning File C:\WINDOWS\SYSTEM\CRYPTEXT.DLL
Tue Dec 20 02:50:16 2005 => Scanning File C:\WINDOWS\SYSTEM\CRYPTEXT.DLL
Tue Dec 20 02:50:16 2005 => Scanning File C:\WINDOWS\SYSTEM\THUMBVW.DLL
Tue Dec 20 02:50:16 2005 => Scanning File C:\WINDOWS\SYSTEM\THUMBVW.DLL
Tue Dec 20 02:50:16 2005 => Scanning File C:\WINDOWS\SYSTEM\THUMBVW.DLL
Tue Dec 20 02:50:16 2005 => Scanning File C:\WINDOWS\SYSTEM\THUMBVW.DLL
Tue Dec 20 02:50:16 2005 => Scanning File C:\WINDOWS\SYSTEM\THUMBVW.DLL
Tue Dec 20 02:50:16 2005 => Scanning File C:\WINDOWS\SYSTEM\WEBCHECK.DLL
Tue Dec 20 02:50:16 2005 => Scanning File C:\WINDOWS\SYSTEM\WEBCHECK.DLL
Tue Dec 20 02:50:16 2005 => Scanning File C:\WINDOWS\SYSTEM\WEBCHECK.DLL
Tue Dec 20 02:50:16 2005 => Scanning File C:\WINDOWS\SYSTEM\WEBCHECK.DLL
Tue Dec 20 02:50:16 2005 => Scanning File C:\WINDOWS\SYSTEM\WEBCHECK.DLL
Tue Dec 20 02:50:16 2005 => Scanning File C:\WINDOWS\SYSTEM\WEBCHECK.DLL
Tue Dec 20 02:50:16 2005 => Scanning File C:\WINDOWS\SYSTEM\WEBCHECK.DLL
Tue Dec 20 02:50:16 2005 => Scanning File C:\WINDOWS\SYSTEM\WEBCHECK.DLL
Tue Dec 20 02:50:16 2005 => Scanning File C:\WINDOWS\SYSTEM\WEBCHECK.DLL
Tue Dec 20 02:50:16 2005 => Scanning File C:\WINDOWS\SYSTEM\WEBCHECK.DLL
Tue Dec 20 02:50:16 2005 => Scanning File C:\WINDOWS\SYSTEM\OCCACHE.DLL
Tue Dec 20 02:50:16 2005 => Scanning File C:\WINDOWS\SYSTEM\SHELL32.DLL
Tue Dec 20 02:50:16 2005 => Scanning File C:\WINDOWS\SYSTEM\mstask.dll
Tue Dec 20 02:50:16 2005 => Scanning File C:\WINDOWS\SYSTEM\BROWSEUI.DLL
Tue Dec 20 02:50:16 2005 => Scanning File C:\WINDOWS\SYSTEM\BROWSEUI.DLL
Tue Dec 20 02:50:16 2005 => Scanning File C:\WINDOWS\SYSTEM\BROWSEUI.DLL
Tue Dec 20 02:50:16 2005 => Scanning File C:\WINDOWS\SYSTEM\BROWSEUI.DLL
Tue Dec 20 02:50:16 2005 => Scanning File C:\WINDOWS\SYSTEM\BROWSEUI.DLL
Tue Dec 20 02:50:16 2005 => Scanning File C:\WINDOWS\SYSTEM\SHDOCVW.DLL
Tue Dec 20 02:50:16 2005 => Scanning File C:\WINDOWS\SYSTEM\SHDOCVW.DLL
Tue Dec 20 02:50:16 2005 => Scanning File C:\WINDOWS\SYSTEM\SHDOCVW.DLL
Tue Dec 20 02:50:16 2005 => Scanning File C:\WINDOWS\SYSTEM\SENDMAIL.DLL
Tue Dec 20 02:50:16 2005 => Scanning File C:\WINDOWS\SYSTEM\SENDMAIL.DLL
Tue Dec 20 02:50:16 2005 => Scanning File C:\WINDOWS\SYSTEM\THUMBVW.DLL
Tue Dec 20 02:50:16 2005 => Scanning File C:\WINDOWS\SYSTEM\CDFVIEW.DLL
Tue Dec 20 02:50:17 2005 => Scanning File C:\WINDOWS\SYSTEM\CDFVIEW.DLL
Tue Dec 20 02:50:17 2005 => Scanning File C:\WINDOWS\SYSTEM\CDFVIEW.DLL
Tue Dec 20 02:50:17 2005 => Scanning File C:\WINDOWS\SYSTEM\CDFVIEW.DLL
Tue Dec 20 02:50:17 2005 => Scanning File C:\WINDOWS\SYSTEM\CDFVIEW.DLL
Tue Dec 20 02:50:17 2005 => Scanning File C:\PROGRA~1\ICQ\ICQSHEXT.DLL
Tue Dec 20 02:50:17 2005 => Scanning File C:\PROGRA~1\YAHOO!\COMMON\YMMAPI~1.DLL
Tue Dec 20 02:50:18 2005 => Scanning File c:\WINDOWS\SYSTEM\mscoree.dll
Tue Dec 20 02:50:18 2005 => Scanning File C:\PROGRA~1\COMMON~1\SYSTEM\OLEDB~1\OLEDB32.DLL
Tue Dec 20 02:50:18 2005 => Scanning File C:\PROGRA~1\REAL\REALPL~1\RPSHELL.DLL
Tue Dec 20 02:50:19 2005 => Scanning File C:\PROGRA~1\SPYWAR~1\SPYWAR~1.DLL
Tue Dec 20 02:50:19 2005 => Scanning File C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGSE.DLL
Tue Dec 20 02:50:19 2005 => Scanning File C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGSE.DLL

Tue Dec 20 02:50:19 2005 => Scanning HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components
Tue Dec 20 02:50:19 2005 => Scanning File C:\WINDOWS\rundll.exe
Tue Dec 20 02:50:19 2005 => Scanning File C:\WINDOWS\rundll.exe
Tue Dec 20 02:50:19 2005 => Scanning File C:\WINDOWS\rundll.exe
Tue Dec 20 02:50:19 2005 => Scanning File C:\WINDOWS\rundll32.exe
Tue Dec 20 02:50:19 2005 => Scanning File C:\WINDOWS\rundll.exe
Tue Dec 20 02:50:19 2005 => Scanning File C:\WINDOWS\rundll32.exe
Tue Dec 20 02:50:19 2005 => Scanning File C:\WINDOWS\rundll32.exe
Tue Dec 20 02:50:19 2005 => Scanning File c:\windows\msnmgsr1.exe
Tue Dec 20 02:50:19 2005 => Scanning File C:\WINDOWS\RunDLL.exe
Tue Dec 20 02:50:19 2005 => Scanning File C:\WINDOWS\rundll.exe
Tue Dec 20 02:50:19 2005 => Scanning File C:\WINDOWS\rundll.exe
Tue Dec 20 02:50:19 2005 => Scanning File C:\WINDOWS\rundll.exe
Tue Dec 20 02:50:19 2005 => Scanning File C:\WINDOWS\rundll.exe
Tue Dec 20 02:50:19 2005 => Scanning File C:\WINDOWS\rundll.exe
Tue Dec 20 02:50:19 2005 => Scanning File C:\WINDOWS\rundll.exe
Tue Dec 20 02:50:19 2005 => Scanning File C:\WINDOWS\rundll.exe
Tue Dec 20 02:50:19 2005 => Scanning File C:\WINDOWS\rundll.exe
Tue Dec 20 02:50:19 2005 => Scanning File C:\WINDOWS\rundll.exe
Tue Dec 20 02:50:19 2005 => Scanning File C:\WINDOWS\rundll.exe
Tue Dec 20 02:50:19 2005 => Scanning File c:\windows\COMMAND\sulfnbk.exe
Tue Dec 20 02:50:20 2005 => Scanning File C:\WINDOWS\rundll.exe
Tue Dec 20 02:50:20 2005 => Scanning File C:\WINDOWS\rundll32.exe
Tue Dec 20 02:50:20 2005 => Scanning File C:\WINDOWS\rundll.exe
Tue Dec 20 02:50:20 2005 => Scanning File C:\WINDOWS\rundll.exe
Tue Dec 20 02:50:20 2005 => Scanning File C:\WINDOWS\rundll.exe
Tue Dec 20 02:50:20 2005 => Scanning File C:\WINDOWS\rundll.exe
Tue Dec 20 02:50:20 2005 => Scanning File C:\WINDOWS\rundll.exe
Tue Dec 20 02:50:20 2005 => Scanning File C:\WINDOWS\rundll.exe
Tue Dec 20 02:50:20 2005 => Scanning File C:\WINDOWS\rundll.exe
Tue Dec 20 02:50:20 2005 => Scanning File C:\WINDOWS\rundll.exe
Tue Dec 20 02:50:20 2005 => Scanning File C:\WINDOWS\rundll.exe
Tue Dec 20 02:50:20 2005 => Scanning File C:\WINDOWS\rundll.exe
Tue Dec 20 02:50:20 2005 => Scanning File C:\WINDOWS\rundll.exe
Tue Dec 20 02:50:20 2005 => Scanning File C:\WINDOWS\rundll.exe
Tue Dec 20 02:50:20 2005 => Scanning File C:\WINDOWS\rundll.exe
Tue Dec 20 02:50:20 2005 => Scanning File C:\WINDOWS\rundll.exe
Tue Dec 20 02:50:20 2005 => Scanning File C:\WINDOWS\rundll.exe
Tue Dec 20 02:50:20 2005 => Scanning File C:\WINDOWS\rundll.exe
Tue Dec 20 02:50:20 2005 => Scanning File C:\WINDOWS\rundll.exe
Tue Dec 20 02:50:20 2005 => Scanning File C:\WINDOWS\rundll.exe
Tue Dec 20 02:50:20 2005 => Scanning File C:\WINDOWS\rundll.exe
Tue Dec 20 02:50:20 2005 => Scanning File C:\WINDOWS\rundll.exe
Tue Dec 20 02:50:20 2005 => Scanning File C:\WINDOWS\rundll.exe
Tue Dec 20 02:50:20 2005 => Scanning File C:\WINDOWS\rundll.exe
Tue Dec 20 02:50:20 2005 => Scanning File C:\WINDOWS\rundll.exe
Tue Dec 20 02:50:20 2005 => Scanning File C:\WINDOWS\rundll.exe
Tue Dec 20 02:50:20 2005 => Scanning File C:\WINDOWS\rundll.exe
Tue Dec 20 02:50:20 2005 => Scanning File C:\WINDOWS\rundll.exe
Tue Dec 20 02:50:20 2005 => Scanning File C:\WINDOWS\rundll.exe
Tue Dec 20 02:50:20 2005 => Scanning File C:\WINDOWS\rundll32.exe
Tue Dec 20 02:50:20 2005 => Scanning File C:\WINDOWS\rundll32.exe
Tue Dec 20 02:50:20 2005 => Scanning File C:\WINDOWS\rundll32.exe
Tue Dec 20 02:50:20 2005 => Scanning File C:\WINDOWS\rundll.exe
Tue Dec 20 02:50:20 2005 => Scanning File C:\WINDOWS\rundll.exe
Tue Dec 20 02:50:20 2005 => Scanning File C:\WINDOWS\rundll.exe
Tue Dec 20 02:50:20 2005 => Scanning File C:\WINDOWS\rundll.exe
Tue Dec 20 02:50:20 2005 => Scanning File C:\WINDOWS\rundll.exe
Tue Dec 20 02:50:20 2005 => Scanning File C:\WINDOWS\rundll.exe
Tue Dec 20 02:50:20 2005 => Scanning File C:\WINDOWS\rundll.exe
Tue Dec 20 02:50:20 2005 => Scanning File C:\WINDOWS\rundll32.exe
Tue Dec 20 02:50:20 2005 => Scanning File C:\WINDOWS\RUNDLL32.EXE
Tue Dec 20 02:50:20 2005 => Scanning File C:\WINDOWS\rundll32.exe
Tue Dec 20 02:50:20 2005 => Scanning File C:\WINDOWS\SYSTEM\updcrl.exe
Tue Dec 20 02:50:21 2005 => Scanning File C:\WINDOWS\RunDLL32.exe
Tue Dec 20 02:50:21 2005 => Scanning File C:\WINDOWS\rundll32.exe
Tue Dec 20 02:50:21 2005 => ERROR!!! Invalid Entry StubPath = c:\WINDOWS\SYSTEM\Rundll32.exe c:\WINDOWS\SYSTEM\mscories.dll,Install (in key SOFTWARE\Microsoft\Active Setup\Installed Components\{89B4C1CD-B018-4511-B0A1-5476DBF70820}). No Action Taken.
Tue Dec 20 02:50:22 2005 => Scanning File C:\WINDOWS\inf\unregmp2.exe

Tue Dec 20 02:50:22 2005 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run

Tue Dec 20 02:50:22 2005 => Scanning HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run

Tue Dec 20 02:50:22 2005 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
Tue Dec 20 02:50:22 2005 => Scanning File c:\windows\scanregw.exe
Tue Dec 20 02:50:22 2005 => Scanning File c:\windows\taskmon.exe
Tue Dec 20 02:50:23 2005 => Scanning File C:\WINDOWS\SYSTEM\SysTray.Exe
Tue Dec 20 02:50:23 2005 => Scanning File C:\WINDOWS\Rundll32.exe
Tue Dec 20 02:50:23 2005 => Scanning File C:\WINDOWS\SYSTEM\HPScanFix.exe
Tue Dec 20 02:50:23 2005 => Scanning File c:\windows\system\hpsysdrv.exe
Tue Dec 20 02:50:24 2005 => Scanning File C:\WINDOWS\SYSTEM\usbmmkbd.exe
Tue Dec 20 02:50:24 2005 => Scanning File C:\PROGRA~1\NETROPA\ONE-TO~1\MMKEYBD.EXE
Tue Dec 20 02:50:25 2005 => Scanning File C:\PROGRA~1\HP\HPCORE~1\HPCMPMGR.EXE
Tue Dec 20 02:50:25 2005 => Scanning File C:\WINDOWS\SYSTEM\STIMON.EXE
Tue Dec 20 02:50:25 2005 => Scanning File C:\PROGRA~1\VERIZO~1\SMARTB~1\MotiveSB.exe
Tue Dec 20 02:50:27 2005 => Scanning File C:\WINDOWS\SYSTEM\QTTASK.EXE
Tue Dec 20 02:50:29 2005 => Scanning File C:\PROGRA~1\TROJAN~1.2\THGUARD.EXE
Tue Dec 20 02:50:29 2005 => Scanning File C:\PROGRA~1\COMMON~1\REAL\UPDATE~1\REALSC~1.EXE
Tue Dec 20 02:50:30 2005 => Scanning File C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGCC.EXE
Tue Dec 20 02:50:31 2005 => Scanning File C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGEMC.EXE
Tue Dec 20 02:50:33 2005 => Scanning File C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGAMSVR.EXE

Tue Dec 20 02:50:33 2005 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce

Tue Dec 20 02:50:33 2005 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnceEx

Tue Dec 20 02:50:33 2005 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServices
Tue Dec 20 02:50:34 2005 => Scanning File C:\WINDOWS\Rundll32.exe
Tue Dec 20 02:50:34 2005 => Scanning File C:\WINDOWS\SYSTEM\mstask.exe
Tue Dec 20 02:50:36 2005 => Scanning File C:\WINDOWS\SYSTEM\Hidserv.exe
Tue Dec 20 02:50:37 2005 => Scanning File c:\windows\SYSTEM\KB891711\KB891711.EXE

Tue Dec 20 02:50:37 2005 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServicesOnce

Tue Dec 20 02:50:37 2005 => Scanning HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
Tue Dec 20 02:50:37 2005 => Scanning File C:\WINDOWS\RunDLL.exe
Tue Dec 20 02:50:37 2005 => Scanning File C:\PROGRA~1\AWS\WEATHE~1\WEATHER.EXE

Tue Dec 20 02:50:38 2005 => Scanning HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce

Tue Dec 20 02:50:38 2005 => Scanning HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnceEx

Tue Dec 20 02:50:38 2005 => Scanning HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServices

Tue Dec 20 02:50:38 2005 => Scanning HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce\Setup

Tue Dec 20 02:50:38 2005 => Scanning HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
Tue Dec 20 02:50:38 2005 => Scanning File C:\WINDOWS\RunDLL.exe
Tue Dec 20 02:50:38 2005 => Scanning File C:\PROGRA~1\AWS\WEATHE~1\WEATHER.EXE

Tue Dec 20 02:50:38 2005 => Scanning HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce

Tue Dec 20 02:50:38 2005 => Scanning HKCR\txtfile\shell\open\command

Tue Dec 20 02:50:38 2005 => Scanning HKCR\comfile\shell\open\command

Tue Dec 20 02:50:38 2005 => Scanning HKCR\exefile\shell\open\command

Tue Dec 20 02:50:38 2005 => Scanning HKCR\dllfile\shell\open\command

Tue Dec 20 02:50:38 2005 => Scanning HKCR\batfile\shell\open\command

Tue Dec 20 02:50:38 2005 => Scanning HKCR\piffile\shell\open\command

Tue Dec 20 02:50:38 2005 => Scanning HKCR\scrfile\shell\open\command

Tue Dec 20 02:50:38 2005 => Scanning HKCR\scrfile\shell\config\command

Tue Dec 20 02:50:38 2005 => Scanning HKCR\regfile\shell\open\command

Tue Dec 20 02:50:38 2005 => Scanning HKCR\htmlfile\shell\open\command
Tue Dec 20 02:50:38 2005 => Scanning File C:\PROGRA~1\INTERN~1\iexplore.exe

Tue Dec 20 02:50:38 2005 => Scanning HKCR\htafile\shell\open\command
Tue Dec 20 02:50:38 2005 => Scanning File C:\WINDOWS\SYSTEM\MSHTA.EXE

Tue Dec 20 02:50:39 2005 => Scanning HKCR\jsfile\shell\open\command
Tue Dec 20 02:50:39 2005 => Scanning File c:\windows\WScript.exe

Tue Dec 20 02:50:39 2005 => Scanning HKCR\jsefile\shell\open\command
Tue Dec 20 02:50:39 2005 => Scanning File c:\windows\WScript.exe

Tue Dec 20 02:50:39 2005 => Scanning HKCR\vbsfile\shell\open\command
Tue Dec 20 02:50:39 2005 => Scanning File c:\windows\WScript.exe

Tue Dec 20 02:50:39 2005 => Scanning HKCR\vbefile\shell\open\command
Tue Dec 20 02:50:39 2005 => Scanning File c:\windows\WScript.exe

Tue Dec 20 02:50:39 2005 => Scanning HKCR\wshfile\shell\open\command
Tue Dec 20 02:50:39 2005 => Scanning File c:\windows\WScript.exe

Tue Dec 20 02:50:39 2005 => Scanning HKCR\wsffile\shell\open\command
Tue Dec 20 02:50:39 2005 => Scanning File c:\windows\WScript.exe

Tue Dec 20 02:50:39 2005 => ***** Scanning INI Files *****
Tue Dec 20 02:50:39 2005 => looking for Run
Tue Dec 20 02:50:39 2005 => looking for Load
Tue Dec 20 02:50:39 2005 => looking for system.ini shell entry
Tue Dec 20 02:50:39 2005 => Scanning File C:\WINDOWS\Explorer.exe
Tue Dec 20 02:50:40 2005 => Scanning File C:\WINDOWS\SYSTEM\mmsystem.dll

Tue Dec 20 02:50:40 2005 => ***** Scanning StartUp Folders *****

Tue Dec 20 02:50:40 2005 => ***** Scanning C:\WINDOWS\Start Menu\Programs\StartUp Folder *****
Tue Dec 20 02:50:40 2005 => Scanning Folder: C:\WINDOWS\Start Menu\Programs\StartUp\*.*
Tue Dec 20 02:50:40 2005 => Scanning File C:\WINDOWS\Start Menu\Programs\StartUp\Verizon Online Support Center.lnk
Tue Dec 20 02:50:40 2005 => Scanning File C:\WINDOWS\Start Menu\Programs\StartUp\WinZip Quick Pick.lnk
Tue Dec 20 02:50:40 2005 => Scanning File C:\WINDOWS\Start Menu\Programs\StartUp\PerfectPrint.LNK
Tue Dec 20 02:50:40 2005 => Scanning File C:\WINDOWS\Start Menu\Programs\StartUp\wink.lnk
Tue Dec 20 02:50:40 2005 => Scanning File C:\WINDOWS\Start Menu\Programs\StartUp\Corel Desktop Application Director.LNK
Tue Dec 20 02:50:41 2005 => Scanning File C:\WINDOWS\Start Menu\Programs\StartUp\HP Digital Imaging Monitor.lnk
Tue Dec 20 02:50:41 2005 => Scanning File C:\WINDOWS\Start Menu\Programs\StartUp\SpywareGuard.lnk

Tue Dec 20 02:50:41 2005 => ***** Scanning C:\WINDOWS\Desktop Folder *****
Tue Dec 20 02:50:41 2005 => Scanning Folder: C:\WINDOWS\Desktop\*.*
Tue Dec 20 02:50:41 2005 => Scanning File C:\WINDOWS\Desktop\Yahoo! Messenger.lnk
Tue Dec 20 02:50:41 2005 => Scanning File C:\WINDOWS\Desktop\RealPlayer.lnk
Tue Dec 20 02:50:41 2005 => Scanning File C:\WINDOWS\Desktop\Windows Media Player.lnk
Tue Dec 20 02:50:41 2005 => Scanning File C:\WINDOWS\Desktop\Outlook Express.lnk
Tue Dec 20 02:50:41 2005 => Scanning Folder: C:\WINDOWS\Desktop\My Software\*.*
Tue Dec 20 02:50:41 2005 => Scanning File C:\WINDOWS\Desktop\My Software\desktop.ini
Tue Dec 20 02:50:41 2005 => Scanning File C:\WINDOWS\Desktop\My Software\Quicken Basic.lnk
Tue Dec 20 02:50:41 2005 => Scanning File C:\WINDOWS\Desktop\My Software\Microsoft Works.lnk
Tue Dec 20 02:50:42 2005 => Scanning File C:\WINDOWS\Desktop\My Software\Folder.htt
Tue Dec 20 02:50:42 2005 => Scanning File C:\WINDOWS\Desktop\My Software\Microsoft Encarta.lnk
Tue Dec 20 02:50:42 2005 => Scanning File C:\WINDOWS\Desktop\My Software\Microsoft Money.lnk
Tue Dec 20 02:50:42 2005 => Scanning File C:\WINDOWS\Desktop\My Software\Trellix Web site builder.lnk
Tue Dec 20 02:50:42 2005 => Scanning Folder: C:\WINDOWS\Desktop\Games and Entertainment\*.*
Tue Dec 20 02:50:42 2005 => Scanning File C:\WINDOWS\Desktop\Games and Entertainment\desktop.ini
Tue Dec 20 02:50:42 2005 => Scanning File C:\WINDOWS\Desktop\Games and Entertainment\Minesweeper.lnk
Tue Dec 20 02:50:42 2005 => Scanning File C:\WINDOWS\Desktop\Games and Entertainment\Hearts.lnk
Tue Dec 20 02:50:43 2005 => Scanning File C:\WINDOWS\Desktop\Games and Entertainment\FreeCell.lnk
Tue Dec 20 02:50:43 2005 => Scanning File C:\WINDOWS\Desktop\Games and Entertainment\MusicMatch Jukebox.lnk
Tue Dec 20 02:50:43 2005 => Scanning File C:\WINDOWS\Desktop\Games and Entertainment\Folder.htt
Tue Dec 20 02:50:43 2005 => Scanning File C:\WINDOWS\Desktop\Games and Entertainment\EMusic.com.lnk
Tue Dec 20 02:50:43 2005 => Scanning File C:\WINDOWS\Desktop\Games and Entertainment\RealPlayer G2.lnk
Tue Dec 20 02:50:43 2005 => Scanning File C:\WINDOWS\Desktop\Games and Entertainment\Solitaire.lnk
Tue Dec 20 02:50:43 2005 => Scanning File C:\WINDOWS\Desktop\pspbrwse.jbf
Tue Dec 20 02:50:43 2005 => Scanning File C:\WINDOWS\Desktop\AVG Free.lnk
Tue Dec 20 02:50:44 2005 => Scanning Folder: C:\WINDOWS\Desktop\backups\*.*
Tue Dec 20 02:50:44 2005 => Scanning File C:\WINDOWS\Desktop\backups\backup-20051121-014738-555
Tue Dec 20 02:50:44 2005 => Scanning File C:\WINDOWS\Desktop\backups\backup-20051121-014738-573
Tue Dec 20 02:50:44 2005 => Scanning File C:\WINDOWS\Desktop\backups\backup-20051121-014738-352
Tue Dec 20 02:50:44 2005 => Scanning File C:\WINDOWS\Desktop\backups\backup-20051121-014738-748
Tue Dec 20 02:50:44 2005 => Scanning File C:\WINDOWS\Desktop\backups\backup-20051121-014738-562
Tue Dec 20 02:50:44 2005 => Scanning File C:\WINDOWS\Desktop\backups\backup-20051121-014738-384
Tue Dec 20 02:50:44 2005 => Scanning File C:\WINDOWS\Desktop\backups\backup-20051121-014738-651
Tue Dec 20 02:50:44 2005 => Scanning File C:\WINDOWS\Desktop\backups\backup-20051121-014738-850
Tue Dec 20 02:50:44 2005 => Scanning File C:\WINDOWS\Desktop\backups\backup-20051121-014738-519
Tue Dec 20 02:50:45 2005 => Scanning File C:\WINDOWS\Desktop\backups\backup-20051121-014738-513
Tue Dec 20 02:50:45 2005 => Scanning File C:\WINDOWS\Desktop\backups\backup-20051121-014738-715
Tue Dec 20 02:50:45 2005 => Scanning File C:\WINDOWS\Desktop\backups\backup-20051121-014738-756
Tue Dec 20 02:50:45 2005 => Scanning File C:\WINDOWS\Desktop\backups\backup-20051121-014739-489.inf
Tue Dec 20 02:50:45 2005 => Scanning File C:\WINDOWS\Desktop\backups\backup-20051121-014739-489
Tue Dec 20 02:50:45 2005 => Scanning File C:\WINDOWS\Desktop\backups\backup-20051213-140054-370
Tue Dec 20 02:50:45 2005 => Scanning File C:\WINDOWS\Desktop\backups\backup-20051213-140054-536.dll
Tue Dec 20 02:50:46 2005 => Scanning File C:\WINDOWS\Desktop\backups\backup-20051213-140054-536
Tue Dec 20 02:50:46 2005 => Scanning File C:\WINDOWS\Desktop\mp71.exe
Tue Dec 20 02:51:37 2005 => Scanning File C:\WINDOWS\Desktop\ie6setup.exe
Tue Dec 20 02:51:39 2005 => Scanning File C:\WINDOWS\Desktop\shag.gif
Tue Dec 20 02:51:40 2005 => Scanning File C:\WINDOWS\Desktop\123 Free Solitaire.lnk
Tue Dec 20 02:51:40 2005 => Scanning File C:\WINDOWS\Desktop\icqpro2003a.exe
Tue Dec 20 02:51:49 2005 => Scanning File C:\WINDOWS\Desktop\winzip81.exe
Tue Dec 20 02:51:51 2005 => Scanning File C:\WINDOWS\Desktop\Spybot - Search & Destroy.lnk
Tue Dec 20 02:51:51 2005 => Scanning File C:\WINDOWS\Desktop\psp8.zip
Tue Dec 20 02:53:24 2005 => Please Wait... Scanning File
Tue Dec 20 02:54:58 2005 => Please Wait... Scanning File
Tue Dec 20 02:56:06 2005 => Scanning File C:\WINDOWS\Desktop\FotoBee.lnk
Tue Dec 20 02:56:06 2005 => Scanning File C:\WINDOWS\Desktop\Yahoo! Games.url
Tue Dec 20 02:56:06 2005 => Scanning File C:\WINDOWS\Desktop\l2m9xfix.exe
Tue Dec 20 02:56:07 2005 => Scanning File C:\WINDOWS\Desktop\gettbar.exe
Tue Dec 20 02:56:14 2005 => Scanning File C:\WINDOWS\Desktop\FotoSee.lnk
Tue Dec 20 02:56:14 2005 => Scanning File C:\WINDOWS\Desktop\SETUP9X.exe
Tue Dec 20 02:56:26 2005 => Scanning File C:\WINDOWS\Desktop\Mainsource Bank.url
Tue Dec 20 02:56:26 2005 => Scanning File C:\WINDOWS\Desktop\Brookie Heaven - Home.url
Tue Dec 20 02:56:26 2005 => Scanning File C:\WINDOWS\Desktop\Democratic Underground.url
Tue Dec 20 02:56:27 2005 => Scanning File C:\WINDOWS\Desktop\Microsoft XML 4.0 Parser SDK.lnk
Tue Dec 20 02:56:27 2005 => Scanning File C:\WINDOWS\Desktop\CMy DocumentsMom's drivers licesne001.JPG.url
Tue Dec 20 02:56:27 2005 => Scanning File C:\WINDOWS\Desktop\spywareguardsetup.exe
Tue Dec 20 02:56:32 2005 => Scanning File C:\WINDOWS\Desktop\The B&B Board.url
Tue Dec 20 02:56:33 2005 => Scanning File C:\WINDOWS\Desktop\Welcome to Papa John's Online Ordering.url
Tue Dec 20 02:56:33 2005 => Scanning File C:\WINDOWS\Desktop\icqpro2003b.exe
Tue Dec 20 02:56:40 2005 => Scanning File C:\WINDOWS\Desktop\Medical Terminology.lnk
Tue Dec 20 02:56:40 2005 => Scanning File C:\WINDOWS\Desktop\ICQSetup.lnk
Tue Dec 20 02:56:40 2005 => Scanning File C:\WINDOWS\Desktop\TrojanHunter.exe
Tue Dec 20 02:57:08 2005 => Scanning File C:\WINDOWS\Desktop\wmi9x.exe
Tue Dec 20 02:57:08 2005 => Scanning File C:\WINDOWS\Desktop\SpywareGuard.lnk
Tue Dec 20 02:57:08 2005 => Scanning File C:\WINDOWS\Desktop\RegSrch.zip
Tue Dec 20 02:57:09 2005 => Scanning File C:\WINDOWS\Desktop\MSN Hotmail - Inbox.url
Tue Dec 20 02:57:09 2005 => Scanning File C:\WINDOWS\Desktop\Adobe.exe
Tue Dec 20 02:57:23 2005 => Scanning File C:\WINDOWS\Desktop\Acrobat Reader 5.0.lnk
Tue Dec 20 02:57:23 2005 => Scanning File C:\WINDOWS\Desktop\OutpostProInstall.exe
Tue Dec 20 02:57:30 2005 => Scanning File C:\WINDOWS\Desktop\PokerStarsInstall.exe
Tue Dec 20 02:57:34 2005 => Scanning File C:\WINDOWS\Desktop\GoogleToolbarInstaller.exe
Tue Dec 20 02:57:36 2005 => Scanning File C:\WINDOWS\Desktop\Jasc Paint Shop Pro 8.lnk
Tue Dec 20 02:57:36 2005 => Scanning File C:\WINDOWS\Desktop\Online Medical Symptom Checker -- Check your Symptoms.url
Tue Dec 20 02:57:36 2005 => Scanning File C:\WINDOWS\Desktop\The Shady Marlin - Home.url
Tue Dec 20 02:57:36 2005 => Scanning File C:\WINDOWS\Desktop\b02basoptzjh_v8-dl.zip
Tue Dec 20 02:57:36 2005 => Scanning File C:\WINDOWS\Desktop\startdreck217.zip
Tue Dec 20 02:57:40 2005 => Scanning File C:\WINDOWS\Desktop\hijackthis.zip
Tue Dec 20 02:57:42 2005 => Scanning File C:\WINDOWS\Desktop\Libby_ photo album - Photobucket.com.url
Tue Dec 20 02:57:43 2005 => Scanning File C:\WINDOWS\Desktop\SpywareGuard LiveUpdate.lnk
Tue Dec 20 02:57:43 2005 => Scanning File C:\WINDOWS\Desktop\Minnesota Vikings The Official Team Web Site.url
Tue Dec 20 02:57:43 2005 => Scanning File C:\WINDOWS\Desktop\Bill Maher - Forums - powered by vBulletin.url
Tue Dec 20 02:57:43 2005 => Scanning File C:\WINDOWS\Desktop\HijackThis.exe
Tue Dec 20 02:57:45 2005 => Scanning File C:\WINDOWS\Desktop\Activescan.txt
Tue Dec 20 02:57:45 2005 => Scanning Folder: C:\WINDOWS\Desktop\l2m9xfix\*.*
Tue Dec 20 02:57:45 2005 => Scanning File C:\WINDOWS\Desktop\l2m9xfix\findclsids.bat
Tue Dec 20 02:57:45 2005 => Scanning File C:\WINDOWS\Desktop\l2m9xfix\grep.exe
Tue Dec 20 02:57:45 2005 => Scanning File C:\WINDOWS\Desktop\l2m9xfix\killfiles.bat
Tue Dec 20 02:57:45 2005 => Scanning File C:\WINDOWS\Desktop\l2m9xfix\pv.exe
Tue Dec 20 02:57:46 2005 => Scanning File C:\WINDOWS\Desktop\l2m9xfix\RunThis.bat
Tue Dec 20 02:57:46 2005 => Scanning File C:\WINDOWS\Desktop\l2m9xfix\sed.exe
Tue Dec 20 02:57:46 2005 => Scanning File C:\WINDOWS\Desktop\l2m9xfix\strings.exe
Tue Dec 20 02:57:46 2005 => Scanning File C:\WINDOWS\Desktop\l2m9xfix\log.txt
Tue Dec 20 02:57:46 2005 => Scanning File C:\WINDOWS\Desktop\l2m9xfix\clsid.txt
Tue Dec 20 02:57:46 2005 => Scanning Folder: C:\WINDOWS\Desktop\l2m9xfix\backups\*.*
Tue Dec 20 02:57:46 2005 => Scanning File C:\WINDOWS\Desktop\l2m9xfix\pp.txt
Tue Dec 20 02:57:46 2005 => Scanning File C:\WINDOWS\Desktop\l2m9xfix\regfix.reg
Tue Dec 20 02:57:47 2005 => Scanning File C:\WINDOWS\Desktop\Ad-Aware SE Personal.lnk
Tue Dec 20 02:57:47 2005 => Scanning File C:\WINDOWS\Desktop\Simply Bold Graphics Index.url
Tue Dec 20 02:57:47 2005 => Scanning File C:\WINDOWS\Desktop\KillBox.exe
Tue Dec 20 02:57:47 2005 => Scanning File C:\WINDOWS\Desktop\MSN Hotmail - Inbox (2).url
Tue Dec 20 02:57:47 2005 => Scanning File C:\WINDOWS\Desktop\mwav.exe
Tue Dec 20 02:58:13 2005 => Scanning File C:\WINDOWS\Desktop\IUE-CWA LOCAL #919.url
Tue Dec 20 02:58:13 2005 => Scanning File C:\WINDOWS\Desktop\Santa bookmark.jpg
Tue Dec 20 02:58:13 2005 => Scanning File C:\WINDOWS\Desktop\dolls.zip
Tue Dec 20 02:58:40 2005 => Scanning File C:\WINDOWS\Desktop\ImageShack® - My Images.url
Tue Dec 20 02:58:40 2005 => Scanning File C:\WINDOWS\Desktop\yahoo_blackhawk21-1_tm1-1.exe
Tue Dec 20 02:58:41 2005 => Scanning File C:\WINDOWS\Desktop\avg71free_371a669.exe

Related Topics



4 user(s) are reading this topic

0 members, 4 guests, 0 anonymous users