This is a read-only archive. No new posts or registrations. Privacy Page
Spyware / Malware / Virus Removal

[Closed] Rootkit found, how do i get rid of it?

17 min read

This thread's last reply is from . Advice, software, and links below may be out of date — treat specific steps and download links with caution.

Looking for the outcome? Ask AI

I have had many crashes and bsod's lately, and when i did startup repair it said something about a rootkit. So, i used avg to scan for rootkits. It found one, C:\Windows\System32\Drivers\arolph3x.sys. Only problem is, when i went to fix/delete it simply said 'Access Denied'. So i was wondering, is there a way i can make avg get access, or can i just delete the file manually? I really don't want to download more software, i have enough on my pc. Thanks (:
Hi,

I really don't want to download more software, i have enough on my pc.


All the tools I ask you to download will be removed once the computer is clean.


NOTE:
  • Malware removal is NOT instantaneous, most infections require more than one round to properly eradicate.
  • Absence of symptoms does not always mean the job is complete, you can be certain that I will advise you when the computer is clean.
  • Kindly follow my instructions in the order posted.
  • Please DO NOT run any scans or fix items without my direction.



Please do the following:

STEP #1

Please download DDS and save it to your desktop.
  • Disable any script blocking protection
  • Double click dds.pif to run the tool.
  • When done, two DDS.txt's will open.
  • Save both reports to your desktop.
—————————————————
Please include the contents of the following in your next reply:

DDS.txt
Attach.txt.



STEP #2


[external image: Posted Image]
Download GMER Rootkit Scanner from here or here.
  • Extract the contents of the zipped file to desktop.
  • Double click GMER.exe. If asked to allow gmer.sys driver to load, please consent .
  • If it gives you a warning about rootkit activity and asks if you want to run scan…click on NO.

    [external image: Posted Image]
    Click the image to enlarge it
  • In the right panel, you will see several boxes that have been checked. Uncheck the following …
    • Sections
    • IAT/EAT
    • Drives/Partition other than Systemdrive (typically C:\)
    • Show All (don't miss this one)
  • Then click the Scan button & wait for it to finish.
  • Once done click on the [Save..] button, and in the File name area, type in "Gmer.txt" or it will save as a .log file which cannot be uploaded to your post.
  • Save it where you can easily find it, such as your desktop, and attach it in reply.

**Caution**
Rootkit scans often produce false positives. Do NOT take any action on any "<— ROOKIT" entries
DDS (Ver_09-06-26.01) - NTFSx86
Run by [removed] at 18:55:36.82 on 08/07/2009
Internet Explorer: 8.0.6001.18783 BrowserJavaVersion: 1.6.0_13
Microsoft® Windows Vista™ Home Basic 6.0.6001.1.1252.44.1033.18.958.264 [GMT 1:00]

SP: Windows Defender *enabled* (Updated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46}

============== Running Processes ===============

C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k rpcss
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\SLsvc.exe
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\rundll32.exe
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Program Files\AVG\AVG8\IdentityProtection\agent\Bin\AVGIDSAgent.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\Program Files\Google\Update\1.2.183.7\GoogleCrashHandler.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\AVG\AVG8\avgtray.exe
C:\Program Files\AVG\AVG8\IdentityProtection\agent\Bin\AVGIDSUI.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Adobe\Reader 9.0\Reader\reader_sl.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\RocketDock\RocketDock.exe
C:\Program Files\NETGEAR\WG111v3\WG111v3.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\AERTSrv.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\PROGRA~1\AVG\AVG8\avgfws8.exe
C:\Program Files\AVG\AVG8\IdentityProtection\agent\Bin\AVGIDSWatcher.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Windows\system32\PnkBstrA.exe
C:\Windows\system32\PnkBstrB.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\PROGRA~1\AVG\AVG8\avgam.exe
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\PROGRA~1\AVG\AVG8\avgnsx.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\System32\svchost.exe -k WerSvcGroup
C:\Windows\system32\SearchIndexer.exe
C:\Windows\System32\mobsync.exe
C:\Windows\system32\WUDFHost.exe
C:\PROGRA~1\AVG\AVG8\avgemc.exe
C:\Program Files\AVG\AVG8\avgcsrvx.exe
C:\Users\Kurt\AppData\Local\Google\Update\1.2.183.7\GoogleCrashHandler.exe
C:\Program Files\AVG\AVG8\IdentityProtection\agent\Bin\AVGIDSMonitor.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Users\Kurt\Downloads\Otherstuff\dds.pif
C:\Windows\system32\wbem\wmiprvse.exe

============== Pseudo HJT Report ===============

uStart Page = hxxp://www.greenday.com/
uWindow Title = Internet Explorer provided by Dell
mDefault_Page_URL = hxxp://www.google.co.uk/ig/dell?hl=en&client=dell-usuk&channel=uk&ibd=6080317
uInternet Settings,ProxyServer = 91.205.174.189:9939->Germany (Premium)
uInternet Settings,ProxyOverride = local
BHO: Octh Class: {000123b4-9b42-4900-b3f7-f4b073efc214} - c:\program files\orbitdownloader\orbitcth.dll
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: AVG Safe Search: {3ca2f312-6f6e-4b53-a66e-4e65e497c8c0} - c:\program files\avg\avg8\avgssie.dll
BHO: Click-to-Call BHO: {5c255c8a-e604-49b4-9d64-90988571cecb} - c:\program files\windows live\messenger\wlchtc.dll
BHO: Search Helper: {6ebf7485-159f-4bff-a14f-b9e3aac4465b} - c:\program files\microsoft\search enhancement pack\search helper\SEPsearchhelperie.dll
BHO: Windows Live Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: Java™ Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: Windows Live Toolbar Helper: {e15a8dc0-8516-42a1-81ea-dc94ec1acf10} - c:\program files\windows live\toolbar\wltcore.dll
TB: DAEMON Tools Toolbar: {32099aac-c132-4136-9e9a-4e364a424e17} - c:\program files\daemon tools toolbar\DTToolbar.dll
TB: Grab Pro: {c55bbcd6-41ad-48ad-9953-3609c48eacc7} - c:\program files\orbitdownloader\GrabPro.dll
TB: &Windows Live Toolbar: {21fa44ef-376d-4d53-9b0f-8a89d3229068} - c:\program files\windows live\toolbar\wltcore.dll
TB: {4982D40A-C53B-4615-B15B-B5B5E98D167C} - No File
TB: {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - No File
EB: Real.com: {fe54fa40-d68c-11d2-98fa-00c0f0318afe} - c:\windows\system32\Shdocvw.dll
uRun: [RocketDock] "c:\program files\rocketdock\RocketDock.exe"
uRun: [DAEMON Tools Lite] "c:\program files\daemon tools lite\daemon.exe" -autorun
uRun: [Google Update] "c:\users\kurt\appdata\local\google\update\GoogleUpdate.exe" /c
uRun: [DellSupportCenter] "c:\program files\dell support center\bin\sprtcmd.exe" /P DellSupportCenter
mRun: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
mRun: [ECenter] c:\dell\e-center\EULALauncher.exe
mRun: [RtHDVCpl] RtHDVCpl.exe
mRun: [GSISETUP] e:\drivers\voyage~3\setup.exe
mRun: [DellSupportCenter] "c:\program files\dell support center\bin\sprtcmd.exe" /P DellSupportCenter
mRun: [AppleSyncNotifier] c:\program files\common files\apple\mobile device support\bin\AppleSyncNotifier.exe
mRun: [SunJavaUpdateSched] "c:\program files\java\jre6\bin\jusched.exe"
mRun: [AVG8_TRAY] c:\progra~1\avg\avg8\avgtray.exe
mRun: [AVGIDS] "c:\program files\avg\avg8\identityprotection\agent\bin\AVGIDSUI.exe"
mRun: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup
mRun: [NvMediaCenter] RUNDLL32.EXE c:\windows\system32\NvMcTray.dll,NvTaskbarInit
mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 9.0\reader\Reader_sl.exe"
mRun: [QuickTime Task] "c:\program files\quicktime\QTTask.exe" -atboottime
mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"
StartupFolder: c:\users\kurt\appdata\roaming\micros~1\windows\startm~1\programs\startup\onenot~1.lnk - c:\program files\microsoft office\office12\ONENOTEM.EXE
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\netgea~1.lnk - c:\program files\netgear\wg111v3\WG111v3.exe
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
IE: &AOL Toolbar search - c:\program files\aol toolbar\toolbar.dll/SEARCH.HTML
IE: &Download by Orbit - c:\program files\orbitdownloader\orbitmxt.dll/201
IE: &Grab video by Orbit - c:\program files\orbitdownloader\orbitmxt.dll/204
IE: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx
IE: Do&wnload selected by Orbit - c:\program files\orbitdownloader\orbitmxt.dll/203
IE: Down&load all by Orbit - c:\program files\orbitdownloader\orbitmxt.dll/202
IE: E&xport to Microsoft Excel - c:\progra~1\micros~3\office12\EXCEL.EXE/3000
IE: {d9288080-1baa-4bc4-9cf8-a92d743db949} - c:\users\kurt\appdata\roaming\microsoft\windows\start menu\programs\imvu\Run IMVU.lnk
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - c:\program files\windows live\writer\WriterBrowserExtension.dll
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\progra~1\micros~3\office12\ONBttnIE.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~3\office12\REFIEBAR.DLL
IE: {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - {FE54FA40-D68C-11d2-98FA-00C0F0318AFE} - c:\windows\system32\Shdocvw.dll
DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} - hxxp://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
DPF: {5D6F45B3-9043-443D-A792-115447494D24} - hxxp://messenger.zone.msn.com/EN-GB/a-UNO1/GAME_UNO1.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_13-windows-i586.cab
DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} - hxxp://messenger.zone.msn.com/binary/ZIntro.cab56649.cab
DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} - hxxp://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
DPF: {CAFEEFAC-0016-0000-0000-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_13-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_13-windows-i586.cab
DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} - hxxp://messenger.zone.msn.com/binary/MineSweeper.cab56986.cab
TCP: {98458B58-16F4-4BC9-B3E9-A102CE27AF01} = 192.168.0.1
Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - c:\program files\avg\avg8\avgpp.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\progra~1\common~1\skype\SKYPE4~1.DLL
AppInit_DLLs: avgrsstx.dll
SEH: {7FC793E3-2599-4E31-9806-1E7BFF68F894} - No File

================= FIREFOX ===================

FF - ProfilePath - c:\users\kurt\appdata\roaming\mozilla\firefox\profiles\t3ybijn4.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.myspace.com/kurtherbie
FF - component: c:\program files\avg\avg8\firefox\components\avgssff.dll
FF - component: c:\program files\nokia\nokia pc suite 7\bkmrksync\components\BkMrkExt.dll
FF - component: c:\program files\real\realplayer\browserrecord\components\nprpbrowserrecordplugin.dll
FF - plugin: c:\program files\google\google earth plugin\npgeplugin.dll
FF - plugin: c:\program files\google\update\1.2.133.33\npGoogleOneClick7.dll
FF - plugin: c:\program files\google\update\1.2.133.37\npGoogleOneClick7.dll
FF - plugin: c:\program files\google\update\1.2.141.5\npGoogleOneClick7.dll
FF - plugin: c:\program files\google\update\1.2.145.5\npGoogleOneClick8.dll
FF - plugin: c:\program files\google\update\1.2.183.7\npGoogleOneClick8.dll
FF - plugin: c:\program files\microsoft\office live\npOLW.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npclntax_ZangoSA.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npPandoWebInst.dll
FF - plugin: c:\program files\windows live\photo gallery\NPWLPG.dll
FF - plugin: c:\programdata\id software\quakelive\npquakezero.dll
FF - plugin: c:\programdata\nexoneu\ngm\npNxGameeu.dll
FF - plugin: c:\users\kurt\appdata\local\google\update\1.2.183.7\npGoogleOneClick8.dll
FF - plugin: c:\users\kurt\appdata\roaming\mozilla\firefox\profiles\t3ybijn4.default\extensions\[removed]\plugins\npiaplayer.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\microsoft.net\framework\v3.5\windows presentation foundation\dotnetassistantextension\
FF - HiddenExtension: Java Console: No Registry Reference - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}
FF - HiddenExtension: Java Console: No Registry Reference - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0012-ABCDEFFEDCBA}
FF - HiddenExtension: Java Console: No Registry Reference - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}

—- FIREFOX POLICIES —-
FF - user.js: network.proxy.type - 0
FF - user.js: network.proxy.http -
user_pref(network.proxy.http_port,);
FF - user.js: network.proxy.no_proxies_on -
FF - user.js: yahoo.homepage.dontask - true
============= SERVICES / DRIVERS ===============

R0 amacpi;Microsoft Away Mode System;c:\windows\system32\drivers\null.sys [2008-8-21 4608]
R0 AVGIDSErHr;AVGIDSErHr;c:\windows\system32\drivers\AVGIDSErHr.sys [2009-2-26 25608]
R0 AvgRkx86;avgrkx86.sys;c:\windows\system32\drivers\avgrkx86.sys [2009-4-6 12552]
R1 Avgfwfd;AVG network filter service;c:\windows\system32\drivers\avgfwd6x.sys [2009-4-6 23832]
R1 AvgLdx86;AVG AVI Loader Driver x86;c:\windows\system32\drivers\avgldx86.sys [2009-4-6 327688]
R1 AvgTdiX;AVG8 Network Redirector;c:\windows\system32\drivers\avgtdix.sys [2009-4-6 108552]
R2 AERTFilters;Andrea RT Filters Service;c:\windows\system32\AERTSrv.exe [2007-12-5 77824]
R2 avg8emc;AVG8 E-mail Scanner;c:\progra~1\avg\avg8\avgemc.exe [2009-4-25 906520]
R2 avg8wd;AVG8 WatchDog;c:\progra~1\avg\avg8\avgwdsvc.exe [2009-4-6 298776]
R2 avgfws8;AVG8 Firewall;c:\progra~1\avg\avg8\avgfws8.exe [2009-4-25 1368952]
R2 AVGIDSAgent;AVGIDSAgent;c:\program files\avg\avg8\identityprotection\agent\bin\AVGIDSAgent.exe [2009-2-26 5576712]
R2 AVGIDSWatcher;AVGIDSWatcher;c:\program files\avg\avg8\identityprotection\agent\bin\AVGIDSWatcher.exe [2009-2-26 563720]
R2 SeaPort;SeaPort;c:\program files\microsoft\search enhancement pack\seaport\SeaPort.exe [2009-5-19 240512]
R3 AVGIDSDriver;AVGIDSDriver;c:\program files\avg\avg8\identityprotection\agent\driver\platform_vista\AVGIDSDriver.sys [2009-2-26 121352]
R3 AVGIDSFilter;AVGIDSFilter;c:\program files\avg\avg8\identityprotection\agent\driver\platform_vista\AVGIDSFilter.sys [2009-2-26 30216]
R3 AVGIDSShim;AVGIDSShim;c:\program files\avg\avg8\identityprotection\agent\driver\platform_vista\AVGIDSShim.sys [2009-2-26 29136]
R3 RTL8187B;NETGEAR WG111v3 54Mbps Wireless USB 2.0 Adapter Vista Driver;c:\windows\system32\drivers\wg111v3.sys [2007-12-28 289280]
S2 gupdate1c987cb1e629322;Google Update Service (gupdate1c987cb1e629322);c:\program files\google\update\GoogleUpdate.exe [2009-2-5 133104]
S3 ASPI;Advanced SCSI Programming Interface Driver;c:\windows\system32\drivers\ASPI32.SYS [2008-11-29 84832]
S3 cpuz132;cpuz132;c:\windows\system32\drivers\cpuz132_x32.sys [2009-5-3 12672]
S3 SUPERWEBCAM;SuperWebcam, WDM Virtual Video Capture Device;c:\windows\system32\drivers\superwebcam.sys [2009-2-6 31872]

=============== Created Last 30 ================

2009-07-08 16:14 102,213,463 a——- c:\windows\MEMORY.DMP
2009-06-26 17:01 –d—– c:\program files\BandwidthMonitor
2009-06-25 19:10 –d—– c:\users\kurt\appdata\roaming\GarageGames
2009-06-17 17:26 97,800 a——- c:\windows\system32\infocardapi.dll
2009-06-17 17:26 105,016 a——- c:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
2009-06-17 17:26 622,080 a——- c:\windows\system32\icardagt.exe
2009-06-17 17:26 43,544 a——- c:\windows\system32\PresentationHostProxy.dll
2009-06-17 17:26 37,384 a——- c:\windows\system32\infocardcpl.cpl
2009-06-17 17:26 11,264 a——- c:\windows\system32\icardres.dll
2009-06-17 17:26 781,344 a——- c:\windows\system32\PresentationNative_v0300.dll
2009-06-17 17:26 326,160 a——- c:\windows\system32\PresentationHost.exe
2009-06-17 17:05 96,760 a——- c:\windows\system32\dfshim.dll
2009-06-17 17:04 282,112 a——- c:\windows\system32\mscoree.dll
2009-06-17 17:04 41,984 a——- c:\windows\system32\netfxperf.dll
2009-06-17 17:03 158,720 a——- c:\windows\system32\mscorier.dll
2009-06-17 17:03 83,968 a——- c:\windows\system32\mscories.dll
2009-06-10 16:16 2,033,152 a——- c:\windows\system32\win32k.sys
2009-06-10 16:16 636,928 a——- c:\windows\system32\localspl.dll
2009-06-10 16:16 784,896 a——- c:\windows\system32\rpcrt4.dll

==================== Find3M ====================

2009-07-01 15:54 143,360 a——- c:\windows\inf\infstrng.dat
2009-07-01 15:54 51,200 a——- c:\windows\inf\infpub.dat
2009-06-30 16:02 327,688 a——- c:\windows\system32\drivers\avgldx86.sys
2009-06-30 16:02 11,952 a——- c:\windows\system32\avgrsstx.dll
2009-06-14 22:05 86,016 a——- c:\windows\inf\infstor.dat
2009-05-29 13:36 2,060,288 a——- c:\windows\system32\usbaaplrc.dll
2009-05-29 13:36 39,424 a——- c:\windows\system32\drivers\usbaapl.sys
2009-05-09 06:50 915,456 a——- c:\windows\system32\wininet.dll
2009-05-09 06:34 71,680 a——- c:\windows\system32\iesetup.dll
2009-04-22 00:20 14,311,680 a——- c:\windows\system32\xlive.dll
2009-04-22 00:20 13,642,496 a——- c:\windows\system32\xlivefnt.dll
2009-04-13 15:12 189,072 a——- c:\windows\system32\PnkBstrB.exe
2009-03-31 18:41 22,328 a——- c:\users\kurt\appdata\roaming\PnkBstrK.sys
2008-12-03 19:20 31 a——- c:\users\kurt\jagex_runescape_preferences.dat
2008-08-24 11:09 174 a–sh— c:\program files\desktop.ini
2008-08-24 11:01 665,600 a——- c:\windows\inf\drvindex.dat
2008-07-26 10:36 4 a——- c:\users\kurt\appdata\roaming\wklnhst.dat
2008-06-25 15:51 32 a—-r– c:\programdata\hash.dat
2008-06-25 15:51 32 a—-r– c:\progra~2\hash.dat
2007-04-23 15:21 269,824 a——- c:\windows\inf\wg111v3\vista64\wg111v3.sys
2007-04-23 15:19 227,328 a——- c:\windows\inf\wg111v3\WG111v3.sys
2007-04-23 15:19 227,328 a——- c:\windows\inf\wg111v3\vista\wg111v3.sys
2006-12-15 12:30 315,392 a——- c:\windows\inf\wg111v3\InstallDriver.exe
2006-12-15 12:30 212,992 a——- c:\windows\inf\wg111v3\CopyWHQLDriver.exe
2006-12-15 12:30 98,304 a——- c:\windows\inf\wg111v3\UScanM.exe
2006-12-15 12:30 28,672 a——- c:\windows\inf\wg111v3\SetDrv.exe
2006-12-15 12:30 20,480 a——- c:\windows\inf\wg111v3\RTWUPath.exe
2006-12-15 12:30 19,968 a——- c:\windows\inf\wg111v3\RTWREFU.EXE
2006-11-02 13:39 287,440 a——- c:\windows\inf\perflib\0409\perfi.dat
2006-11-02 13:39 287,440 a——- c:\windows\inf\perflib\0409\perfh.dat
2006-11-02 13:39 30,674 a——- c:\windows\inf\perflib\0409\perfd.dat
2006-11-02 13:39 30,674 a——- c:\windows\inf\perflib\0409\perfc.dat
2006-11-02 10:20 287,440 a——- c:\windows\inf\perflib\0000\perfi.dat
2006-11-02 10:20 287,440 a——- c:\windows\inf\perflib\0000\perfh.dat
2006-11-02 10:20 30,674 a——- c:\windows\inf\perflib\0000\perfd.dat
2006-11-02 10:20 30,674 a——- c:\windows\inf\perflib\0000\perfc.dat
2008-06-05 16:36 16,384 a–sh— c:\windows\serviceprofiles\localservice\appdata\local\microsoft\windows\history\history.ie5\index.dat
2008-06-05 16:36 32,768 a–sh— c:\windows\serviceprofiles\localservice\appdata\local\microsoft\windows\temporary internet files\content.ie5\index.dat
2008-06-05 16:36 16,384 a–sh— c:\windows\serviceprofiles\localservice\appdata\roaming\microsoft\windows\cookies\index.dat

============= FINISH: 18:56:35.88 ===============

Hope we can fix it (:
Hi,

Please do the following:

Download Combofix from any of the links below. You must rename it before saving it.
Save it to your desktop.

**Note: In the event you already have Combofix, this is a new version that I need you to download. It is important that it is saved and renamed following this process directly to your desktop**

  • If you are using Firefox, make sure that your download settings are as follows:
  • Tools->Options->Main tab
  • Set to "Always ask me where to Save the files".


Link 1
Link 2



During the download, rename Combofix to Combo-Fix as follows:

[external image: Posted Image]


[external image: Posted Image]
——————————————————————–
  • It is important you rename Combofix during the download, but not after.
  • Please do not rename Combofix to other names, but only to the one indicated.


———————————————————–

  • Double click on Combo-Fix.exe & follow the prompts.
    • When finished, it will produce a report for you.
    • Please post the "C:\Combo-Fix.txt" for further review.
    **Note: Do not mouseclick combo-fix's window while it's running. That may cause it to stall**


    ———————————————————–

  • Very Important! Temporarily disable your anti-virus, script blocking and any anti-malware real-time protection before performing a scan. They can interfere with ComboFix or remove some of its embedded files which may cause "unpredictable results".
  • Click on this link to see a list of programs that should be disabled. The list is not all inclusive. If yours is not listed and you don't know how to disable it, please ask.

    ———————————————————–

Due to inactivity this topic will be closed. If you need help please start a new thread and post a new HJT log
Due to a very busy schedule I was not able to respond to my first thread in time ):
However, I am posting my problem again, please read about it in the following link:

Thread 1

C:\Combo-Fix.txt:

ComboFix 09-07-12.03 - Kurt 13/07/2009 19:03.1.2 - NTFSx86
Microsoft® Windows Vista™ Home Basic 6.0.6001.1.1252.44.1033.18.958.310 [GMT 1:00]
Running from: c:\users\[removed]\Downloads\Otherstuff\Combo-Fix.exe
SP: Windows Defender *enabled* (Updated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46}
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\$recycle.bin\S-1-5-21-1476087358-3955371007-1731012160-500
c:\$recycle.bin\S-1-5-21-1738422755-998661840-641317060-500
c:\$recycle.bin\S-1-5-21-2365545147-1999384947-2466353664-500
c:\program files\Mozilla Firefox\plugins\npclntax_ZangoSA.dll
c:\windows\icon.ico
c:\windows\Installer\3d39198.msi

.
((((((((((((((((((((((((( Files Created from 2009-06-13 to 2009-07-13 )))))))))))))))))))))))))))))))
.

2009-07-13 18:15 . 2009-07-13 18:16 ——– d—–w- c:\users\Kurt\AppData\Local\temp
2009-07-13 18:15 . 2009-07-13 18:15 ——– d—–w- c:\users\Guest\AppData\Local\temp
2009-07-10 15:10 . 2009-06-30 15:02 327688 —-a-w- c:\programdata\avg8\update\backup\avgldx86.sys
2009-07-10 15:10 . 2009-06-30 15:02 2052376 —-a-w- c:\programdata\avg8\update\backup\avgcorex.dll
2009-07-10 15:10 . 2009-06-30 15:02 906520 —-a-w- c:\programdata\avg8\update\backup\avgemc.exe
2009-07-10 15:10 . 2009-06-30 15:02 2314496 —-a-w- c:\programdata\avg8\update\backup\avgdiagex.exe
2009-07-10 15:10 . 2009-06-30 15:02 3402008 —-a-w- c:\programdata\avg8\update\backup\avgui.exe
2009-07-10 15:10 . 2009-06-30 15:02 1204504 —-a-w- c:\programdata\avg8\update\backup\avgabout.dll
2009-07-10 15:10 . 2009-06-30 15:02 3298072 —-a-w- c:\programdata\avg8\update\backup\setup.exe
2009-07-10 15:10 . 2009-06-30 15:02 1368952 —-a-w- c:\programdata\avg8\update\backup\avgfws8.exe
2009-07-10 15:10 . 2009-06-30 15:02 337176 —-a-w- c:\programdata\avg8\update\backup\avglogx.dll
2009-07-10 15:10 . 2009-06-30 15:02 829208 —-a-w- c:\programdata\avg8\update\backup\avgcfgx.dll
2009-06-30 14:58 . 2009-06-30 14:58 1454360 —-a-w- c:\programdata\avg8\update\backup\avgupd.dll
2009-06-30 14:58 . 2009-06-30 14:58 1085208 —-a-w- c:\programdata\avg8\update\backup\avgupd.exe
2009-06-30 14:58 . 2009-06-25 15:02 587032 —-a-w- c:\programdata\avg8\update\backup\avgiproxy.exe
2009-06-30 14:58 . 2009-06-25 15:02 755992 —-a-w- c:\programdata\avg8\update\backup\avginet.dll
2009-06-26 16:01 . 2009-06-26 16:01 ——– d—–w- c:\program files\BandwidthMonitor
2009-06-25 18:10 . 2009-06-25 18:10 ——– d—–w- c:\users\Kurt\AppData\Roaming\GarageGames
2009-06-18 15:21 . 2009-05-09 05:34 71680 —-a-w- c:\windows\system32\iesetup.dll
2009-06-18 15:21 . 2009-05-09 05:50 915456 —-a-w- c:\windows\system32\wininet.dll
2009-06-17 16:26 . 2008-06-20 01:14 97800 —-a-w- c:\windows\system32\infocardapi.dll
2009-06-17 16:26 . 2008-06-20 01:14 105016 —-a-w- c:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
2009-06-17 16:26 . 2008-06-20 01:14 43544 —-a-w- c:\windows\system32\PresentationHostProxy.dll
2009-06-17 16:26 . 2008-06-20 01:14 11264 —-a-w- c:\windows\system32\icardres.dll
2009-06-17 16:26 . 2008-06-20 01:14 622080 —-a-w- c:\windows\system32\icardagt.exe
2009-06-17 16:26 . 2008-06-20 01:14 781344 —-a-w- c:\windows\system32\PresentationNative_v0300.dll
2009-06-17 16:26 . 2008-06-20 01:14 326160 —-a-w- c:\windows\system32\PresentationHost.exe
2009-06-17 16:05 . 2008-07-27 18:03 96760 —-a-w- c:\windows\system32\dfshim.dll
2009-06-17 16:04 . 2008-07-27 18:03 282112 —-a-w- c:\windows\system32\mscoree.dll
2009-06-17 16:04 . 2008-07-27 18:03 41984 —-a-w- c:\windows\system32\netfxperf.dll
2009-06-17 16:03 . 2008-07-27 18:03 158720 —-a-w- c:\windows\system32\mscorier.dll
2009-06-17 16:03 . 2008-07-27 18:03 83968 —-a-w- c:\windows\system32\mscories.dll

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-07-10 19:51 . 2008-08-20 09:39 ——– d—–w- c:\users\Kurt\AppData\Roaming\Skype
2009-07-10 19:24 . 2008-08-20 09:41 ——– d—–w- c:\users\Kurt\AppData\Roaming\skypePM
2009-07-10 19:01 . 2008-08-26 20:07 ——– d—–w- c:\users\Kurt\AppData\Roaming\uTorrent
2009-07-10 15:02 . 2009-04-06 17:32 335752 —-a-w- c:\windows\system32\drivers\avgldx86.sys
2009-07-09 00:13 . 2008-10-02 15:58 ——– d—–w- c:\users\Kurt\AppData\Roaming\DAEMON Tools
2009-06-30 15:02 . 2009-04-06 17:32 11952 —-a-w- c:\windows\system32\avgrsstx.dll
2009-06-30 15:02 . 2009-04-06 17:32 27784 —-a-w- c:\windows\system32\drivers\avgmfx86.sys
2009-06-24 15:15 . 2008-03-17 13:24 ——– d—–w- c:\program files\Google
2009-06-18 15:05 . 2008-03-20 19:59 72616 —-a-w- c:\users\Kurt\AppData\Local\GDIPFONTCACHEV1.DAT
2009-06-17 16:44 . 2008-03-21 09:25 ——– d—–w- c:\programdata\Microsoft Help
2009-06-12 22:04 . 2009-03-28 19:42 ——– d—–w- c:\program files\PeerGuardian2
2009-06-10 16:19 . 2008-03-17 13:29 ——– d—–w- c:\program files\Microsoft Works
2009-06-07 18:31 . 2008-03-17 13:21 ——– d–h–w- c:\program files\InstallShield Installation Information
2009-06-07 18:31 . 2008-03-17 13:22 ——– d—–w- c:\program files\CyberLink
2009-06-07 17:51 . 2008-03-17 13:28 ——– d—–w- c:\programdata\SupportSoft
2009-06-07 17:51 . 2008-03-17 13:28 ——– d—–w- c:\program files\Dell Support Center
2009-06-07 17:23 . 2008-12-02 18:50 ——– d—–w- c:\program files\NCH Swift Sound
2009-06-07 17:22 . 2008-12-02 18:51 ——– d—–w- c:\program files\NCH Software
2009-06-04 21:09 . 2008-11-22 19:44 ——– d—–w- c:\program files\iTunes
2009-06-04 21:08 . 2009-06-04 21:08 ——– d—–w- c:\program files\iPod
2009-06-04 21:08 . 2008-07-06 17:01 ——– d—–w- c:\program files\Common Files\Apple
2009-06-04 21:03 . 2009-06-04 21:02 ——– d—–w- c:\program files\QuickTime
2009-06-04 20:44 . 2009-06-04 20:44 75048 —-a-w- c:\programdata\Apple Computer\Installer Cache\iTunes 8.2.0.23\SetupAdmin.exe
2009-05-31 11:33 . 2008-12-02 18:50 ——– d—–w- c:\users\Kurt\AppData\Roaming\NCH Swift Sound
2009-05-29 12:36 . 2009-05-29 12:36 39424 —-a-w- c:\windows\system32\drivers\usbaapl.sys
2009-05-29 12:36 . 2009-05-29 12:36 2060288 —-a-w- c:\windows\system32\usbaaplrc.dll
2009-05-28 17:00 . 2008-06-20 15:03 ——– d—–w- c:\program files\Bethesda Softworks
2009-05-19 18:39 . 2008-09-25 17:59 ——– d—–w- c:\program files\Common Files\Adobe
2009-05-17 18:57 . 2009-03-26 18:21 ——– d—–w- c:\program files\HyCam2
2009-05-17 18:49 . 2008-09-02 11:04 1018 —-a-w- c:\windows\system32\ealregsnapshot1.reg
2009-05-17 18:33 . 2008-05-26 19:55 ——– d—–w- c:\program files\Pivot Stickfigure Animator
2009-05-17 18:29 . 2009-01-25 15:48 ——– d—–w- c:\program files\EA Games
2009-05-17 18:11 . 2008-11-11 20:53 ——– d—–w- c:\programdata\Media Center Programs
2009-05-17 17:44 . 2008-12-19 16:05 ——– d—–w- c:\program files\Orbitdownloader
2009-05-03 20:34 . 2009-05-03 18:09 34396584 —-a-w- c:\programdata\Installations\{7694EC32-CB0E-4B35-9088-7B320CB1F4FE}\Nokia_PC_Suite_7_1_26_0_eng.exe
2009-05-03 18:08 . 2009-05-03 18:08 8192 —-a-w- c:\programdata\Installations\{7694EC32-CB0E-4B35-9088-7B320CB1F4FE}\Installer\CommonCustomActions\UninstCCD.exe
2009-05-03 18:08 . 2009-05-03 18:08 61440 —-a-w- c:\programdata\Installations\{7694EC32-CB0E-4B35-9088-7B320CB1F4FE}\Installer\CommonCustomActions\UninstPCSFEMsi.exe
2009-05-03 18:08 . 2009-05-03 18:08 10240 —-a-w- c:\programdata\Installations\{7694EC32-CB0E-4B35-9088-7B320CB1F4FE}\Installer\CommonCustomActions\UninstPCS.exe
2009-04-25 08:23 . 2009-04-06 17:32 108552 —-a-w- c:\windows\system32\drivers\avgtdix.sys
2009-04-25 08:22 . 2009-04-06 17:30 23832 —-a-w- c:\windows\system32\drivers\avgfwd6x.sys
2009-04-25 08:22 . 2009-04-06 17:32 12552 —-a-w- c:\windows\system32\drivers\avgrkx86.sys
2009-04-23 12:43 . 2009-06-10 15:16 784896 —-a-w- c:\windows\system32\rpcrt4.dll
2009-04-23 12:42 . 2009-06-10 15:16 636928 —-a-w- c:\windows\system32\localspl.dll
2009-04-21 23:20 . 2009-04-21 23:20 14311680 —-a-w- c:\windows\system32\xlive.dll
2009-04-21 23:20 . 2009-04-21 23:20 13642496 —-a-w- c:\windows\system32\xlivefnt.dll
2009-04-21 11:55 . 2009-06-10 15:16 2033152 —-a-w- c:\windows\system32\win32k.sys
2008-12-16 19:23 . 2008-12-16 19:23 0 –sha-w- c:\windows\SBA3D68B7.tmp
2008-03-17 21:03 . 2008-03-17 20:50 8192 –sha-w- c:\windows\Users\Default\NTUSER.DAT
.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RocketDock"="c:\program files\RocketDock\RocketDock.exe" [2007-09-02 495616]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\daemon.exe" [2008-08-08 490952]
"Google Update"="c:\users\Kurt\AppData\Local\Google\Update\GoogleUpdate.exe" [2008-09-06 133104]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"="c:\program files\Windows Defender\MSASCui.exe" [2008-01-19 1008184]
"ECenter"="c:\dell\E-Center\EULALauncher.exe" [2007-05-25 17920]
"AppleSyncNotifier"="c:\program files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe" [2009-05-13 177472]
"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2009-03-09 148888]
"AVG8_TRAY"="c:\progra~1\AVG\AVG8\avgtray.exe" [2009-06-30 1948440]
"AVGIDS"="c:\program files\AVG\AVG8\IdentityProtection\agent\bin\AVGIDSUI.exe" [2009-02-26 1579528]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2008-05-02 13535776]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2008-05-02 92704]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-02-27 35696]
"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2009-05-26 413696]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2009-05-30 292136]
"RtHDVCpl"="RtHDVCpl.exe" - c:\windows\RtHDVCpl.exe [2008-01-17 4907008]

c:\users\Kurt\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
OneNote 2007 Screen Clipper and Launcher.lnk - c:\program files\Microsoft Office\Office12\ONENOTEM.EXE [2008-10-25 98696]

c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
NETGEAR WG111v3 Smart Wizard.lnk - c:\program files\NETGEAR\WG111v3\WG111v3.exe [2007-9-14 1695744]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=c:\windows\System32\avgrsstx.dll

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux"=wdmaud.drv

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
@="Service"

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\McAfeeAntiSpyware]
"DisableMonitoring"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc]
"AntiVirusOverride"=dword:00000001

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\DomainProfile]
"EnableFirewall"= 0 (0x0)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\FirewallRules]
"{E9825168-B3BB-40B1-8E09-E5D477C4801E}"= UDP:c:\program files\Microsoft Office\Office12\ONENOTE.EXE:Microsoft Office OneNote
"{F1281183-F958-4B45-BF4D-243A54C45BD1}"= TCP:c:\program files\Microsoft Office\Office12\ONENOTE.EXE:Microsoft Office OneNote
"{0EFE5D72-539E-4B1B-B3BE-1E1D8911E2D7}"= UDP:c:\windows\System32\PnkBstrA.exe:PnkBstrA
"{8185E717-DE05-4BB6-98CD-A9B834DE7992}"= TCP:c:\windows\System32\PnkBstrA.exe:PnkBstrA
"{857954D1-F687-4433-85A4-1259A6F863FD}"= UDP:c:\windows\System32\PnkBstrB.exe:PnkBstrB
"{028B4887-836F-4CA0-8578-2EB76B446CB3}"= TCP:c:\windows\System32\PnkBstrB.exe:PnkBstrB
"{E3DE0825-D86E-4521-847B-79F12DF0C7B6}"= UDP:c:\program files\Common Files\AOL\ACS\AOLacsd.exe:AOL
"{F0E46E1D-86CC-467A-91E0-82FA54BAD869}"= UDP:c:\program files\Common Files\AOL\ACS\AOLDial.exe:AOL
"{75008D59-3D9C-4DCE-BA8D-8089F5433BC3}"= TCP:c:\program files\Common Files\AOL\ACS\AOLacsd.exe:AOL
"{EDDDD29D-556B-499E-8095-5BE8A575B1B4}"= TCP:c:\program files\Common Files\AOL\ACS\AOLDial.exe:AOL
"{E03BF6E1-D767-4BFB-A723-294C0BDC6854}"= UDP:c:\program files\Common Files\AOL\ACS\AOLDial.exe:AOL
"{33D99C89-EF54-4879-B389-5FEE6DE5BCD6}"= UDP:c:\program files\Common Files\AOL\ACS\AOLacsd.exe:AOL
"{D9FA46C8-0767-4DD5-8860-2572E73AC3D2}"= TCP:c:\program files\Common Files\AOL\ACS\AOLDial.exe:AOL
"{B50E21FC-1F98-4B18-AF93-BD4F4A4DB0FF}"= TCP:c:\program files\Common Files\AOL\ACS\AOLacsd.exe:AOL
"{8DC1BE51-A063-4084-9F27-DBD2B4FE062F}"= UDP:c:\program files\Common Files\AOL\ACS\AOLDial.exe:AOL Connectivity Service Dialler
"{45068D93-9659-4598-9013-E1F994601CA1}"= TCP:c:\program files\Common Files\AOL\ACS\AOLDial.exe:AOL Connectivity Service Dialler
"{67BAC06E-091D-4FCB-8409-9C26F6EAFC79}"= UDP:c:\program files\Common Files\AOL\ACS\AOLacsd.exe:AOL Connectivity Services
"{AC10FFE2-982E-41F5-A0D5-DF7602778F9C}"= TCP:c:\program files\Common Files\AOL\ACS\AOLacsd.exe:AOL Connectivity Services
"{5933D06C-E846-41F4-8075-3D420F908B22}"= UDP:c:\program files\Common Files\AOL\1219094480\ee\aolsoftware.exe:AOL Shared Components
"{B0CF5D97-77AC-47AA-8BAF-5CE2C79571FD}"= TCP:c:\program files\Common Files\AOL\1219094480\ee\aolsoftware.exe:AOL Shared Components
"{E1CF3473-1A1A-46FF-909C-8556B121DD2E}"= UDP:c:\program files\AOL 9.0 VR\waol.exe:AOL
"{910195DE-2665-4C2F-899C-F31CBCBD0546}"= TCP:c:\program files\AOL 9.0 VR\waol.exe:AOL
"{E28F01D3-F4B0-4DBC-BA8E-CFA66609D9F8}"= UDP:c:\program files\Common Files\AOL\TopSpeed\3.0\aoltpsd3.exe:AOL TopSpeed
"{DFF08AFC-F44D-42DD-A5CC-4B9A48EAA48C}"= TCP:c:\program files\Common Files\AOL\TopSpeed\3.0\aoltpsd3.exe:AOL TopSpeed
"{55A94213-6602-4CA7-8A2F-65C517B2F3B3}"= UDP:c:\program files\Common Files\AOL\Loader\aolload.exe:AOL Loader
"{2FBEEBB7-3124-4FDA-B25A-B1BA2153F1D1}"= TCP:c:\program files\Common Files\AOL\Loader\aolload.exe:AOL Loader
"{FB6B3DFF-E2B2-40D4-8C31-9A3DA7ED1E59}"= UDP:c:\program files\Common Files\AOL\System Information\sinf.exe:AOL System Information
"{74BC5D66-C89E-4847-AF0C-612A63E3243A}"= TCP:c:\program files\Common Files\AOL\System Information\sinf.exe:AOL System Information
"{959124FD-5563-4DEC-BEE9-2C420DF9DF42}"= UDP:c:\program files\Common Files\AOL\AOL Spyware Protection\AOLSP Scheduler.exe:AOL
"{E8829873-AC43-47AC-8B17-5AB27D75336D}"= TCP:c:\program files\Common Files\AOL\AOL Spyware Protection\AOLSP Scheduler.exe:AOL
"{F8942188-F0C7-413F-BE85-D79C11889E35}"= UDP:c:\program files\Common Files\AOL\AOL Spyware Protection\asp.exe:AOL
"{D6998DF1-6113-4F6E-9BCD-713A62A0B8E5}"= TCP:c:\program files\Common Files\AOL\AOL Spyware Protection\asp.exe:AOL
"TCP Query User{F7FEC6E6-695E-4019-89E3-29506286652D}c:\\program files\\xfire\\xfire.exe"= UDP:c:\program files\xfire\xfire.exe:Xfire
"UDP Query User{0FDF7E35-0AD8-46D1-9634-6B54829EFEB8}c:\\program files\\xfire\\xfire.exe"= TCP:c:\program files\xfire\xfire.exe:Xfire
"{6C71B254-CE40-4BFB-8CB8-E299ED3FCD83}"= c:\program files\Skype\Phone\Skype.exe:Skype
"{C49DE6BE-F29C-4E97-BA49-3BC9B43F2FED}"= UDP:c:\program files\LimeWire\LimeWire.exe:LimeWire
"{A6C2C982-26A6-4519-865E-8FED96C0E8A6}"= TCP:c:\program files\LimeWire\LimeWire.exe:LimeWire
"{42E848EC-B1BD-47FA-A522-38CD8E2C3900}"= UDP:c:\program files\DNA\btdna.exe:DNA
"{5500823F-0BA2-4DA0-ADF8-DAEB1379EAF2}"= TCP:c:\program files\DNA\btdna.exe:DNA
"TCP Query User{1F50D074-C4E3-470F-A99B-4720C7CE3BF1}c:\\program files\\steam\\steamapps\\common\\trackmania nations forever\\tmforever.exe"= UDP:c:\program files\steam\steamapps\common\trackmania nations forever\tmforever.exe:TmForever
"UDP Query User{7EFE736E-780C-47EB-88DC-773B753CBB21}c:\\program files\\steam\\steamapps\\common\\trackmania nations forever\\tmforever.exe"= TCP:c:\program files\steam\steamapps\common\trackmania nations forever\tmforever.exe:TmForever
"TCP Query User{79D1BE08-A356-4F5C-8054-177C06DF8A3C}c:\\program files\\steam\\steamapps\\thug319\\counter-strike source\\hl2.exe"= UDP:c:\program files\steam\steamapps\thug319\counter-strike source\hl2.exe:hl2
"UDP Query User{5E0FC255-0009-4EA2-9160-E0AD95A092F6}c:\\program files\\steam\\steamapps\\thug319\\counter-strike source\\hl2.exe"= TCP:c:\program files\steam\steamapps\thug319\counter-strike source\hl2.exe:hl2
"{DF461D69-1843-421E-8BF4-3B4032F4BF80}"= UDP:c:\program files\uTorrent\uTorrent.exe:µTorrent (TCP-In)
"{5BD71D69-7777-4507-ADDD-2FC0F00F01F6}"= TCP:c:\program files\uTorrent\uTorrent.exe:µTorrent (UDP-In)
"TCP Query User{3C62FEE1-72D2-4B83-98AD-B0CD2B07C2A2}c:\\program files\\steam\\steamapps\\thug319\\garrysmod\\hl2.exe"= UDP:c:\program files\steam\steamapps\thug319\garrysmod\hl2.exe:hl2
"UDP Query User{01339CC7-E28D-4444-AB61-CEFFAF25961C}c:\\program files\\steam\\steamapps\\thug319\\garrysmod\\hl2.exe"= TCP:c:\program files\steam\steamapps\thug319\garrysmod\hl2.exe:hl2
"TCP Query User{235CAB37-53E5-44C8-A7E9-031B3B23190B}c:\\program files\\steam\\steamapps\\lethal_hunter\\garrysmod\\hl2.exe"= UDP:c:\program files\steam\steamapps\lethal_hunter\garrysmod\hl2.exe:hl2
"UDP Query User{D36A580A-EB43-43E1-82AB-6CCDAE076C37}c:\\program files\\steam\\steamapps\\lethal_hunter\\garrysmod\\hl2.exe"= TCP:c:\program files\steam\steamapps\lethal_hunter\garrysmod\hl2.exe:hl2
"TCP Query User{B453BC86-25FE-4854-A734-7E91E8FA16B0}c:\\program files\\electronic arts\\eadm\\core.exe"= UDP:c:\program files\electronic arts\eadm\core.exe:EA Download Manager
"UDP Query User{13EC2BFB-3292-47C9-AE6C-D55C3A2E6F78}c:\\program files\\electronic arts\\eadm\\core.exe"= TCP:c:\program files\electronic arts\eadm\core.exe:EA Download Manager
"TCP Query User{5A58E726-ED00-40AF-BE5B-A43F94CF6906}c:\\program files\\steam\\steamapps\\lethal_hunter\\source sdk base\\hl2.exe"= UDP:c:\program files\steam\steamapps\lethal_hunter\source sdk base\hl2.exe:hl2
"UDP Query User{F47A572B-E935-443D-8373-A7C244789FE9}c:\\program files\\steam\\steamapps\\lethal_hunter\\source sdk base\\hl2.exe"= TCP:c:\program files\steam\steamapps\lethal_hunter\source sdk base\hl2.exe:hl2
"TCP Query User{3932644D-4728-450B-B52E-5CCD9BEEC3DD}c:\\program files\\webmediaplayer\\webmediaplayer.exe"= UDP:c:\program files\webmediaplayer\webmediaplayer.exe:WebMediaPlayer
"UDP Query User{EAC2CD4A-F573-4097-B5B6-D8B0C953220E}c:\\program files\\webmediaplayer\\webmediaplayer.exe"= TCP:c:\program files\webmediaplayer\webmediaplayer.exe:WebMediaPlayer
"TCP Query User{A5E87C83-894C-4ABF-9880-A6CC44611F33}c:\\program files\\mozilla firefox\\firefox.exe"= UDP:c:\program files\mozilla firefox\firefox.exe:Firefox
"UDP Query User{702F1BA5-8845-44E3-AEA6-74F68FEF72FC}c:\\program files\\mozilla firefox\\firefox.exe"= TCP:c:\program files\mozilla firefox\firefox.exe:Firefox
"TCP Query User{BD06E545-1583-4C1B-A738-00577A6F8895}c:\\program files\\pure.multi-3.full-rip.skullptura\\pure.multi-3.full-rip.skullptura\\pure\\pure.exe"= UDP:c:\program files\pure.multi-3.full-rip.skullptura\pure.multi-3.full-rip.skullptura\pure\pure.exe:Pure
"UDP Query User{FE02B9D2-13F3-4A81-B8B8-AFB47EC6FF4F}c:\\program files\\pure.multi-3.full-rip.skullptura\\pure.multi-3.full-rip.skullptura\\pure\\pure.exe"= TCP:c:\program files\pure.multi-3.full-rip.skullptura\pure.multi-3.full-rip.skullptura\pure\pure.exe:Pure
"TCP Query User{DC85C08B-C5D9-4E02-B288-62EBC3680C0D}c:\\program files\\musicbrainz picard\\picard.exe"= UDP:c:\program files\musicbrainz picard\picard.exe:The next generation MusicBrainz tagger
"UDP Query User{8B67F6FE-057D-4ACF-9D8C-2A782AC055BB}c:\\program files\\musicbrainz picard\\picard.exe"= TCP:c:\program files\musicbrainz picard\picard.exe:The next generation MusicBrainz tagger
"TCP Query User{470385B9-6D5D-4899-82E1-44AC49B2376C}c:\\program files\\steam\\steamapps\\common\\eve online\\bin\\exefile.exe"= UDP:c:\program files\steam\steamapps\common\eve online\bin\exefile.exe:CCP ExeFile
"UDP Query User{99591944-79F5-4272-96EA-9C9397C5FE54}c:\\program files\\steam\\steamapps\\common\\eve online\\bin\\exefile.exe"= TCP:c:\program files\steam\steamapps\common\eve online\bin\exefile.exe:CCP ExeFile
"TCP Query User{43007FC3-CCE0-488B-9D9F-3131E1AF8212}c:\\program files\\gametap\\bin\\release\\gametap.exe"= UDP:c:\program files\gametap\bin\release\gametap.exe:GameTap Application
"UDP Query User{ABC79035-E11E-45FA-9EF2-5FA7AE7F3611}c:\\program files\\gametap\\bin\\release\\gametap.exe"= TCP:c:\program files\gametap\bin\release\gametap.exe:GameTap Application
"TCP Query User{F69131A7-E571-41FD-95A2-1040A96082BD}c:\\program files\\bethesda softworks\\fallout 3\\fallout3.exe"= UDP:c:\program files\bethesda softworks\fallout 3\fallout3.exe:Fallout3
"UDP Query User{19DD2048-952E-4F34-9C7C-0FDF1089B1AB}c:\\program files\\bethesda softworks\\fallout 3\\fallout3.exe"= TCP:c:\program files\bethesda softworks\fallout 3\fallout3.exe:Fallout3
"TCP Query User{332C9F0C-6FB8-4BB7-9275-30517597E4E5}c:\\program files\\steam\\steamapps\\common\\left 4 dead demo\\left4dead.exe"= UDP:c:\program files\steam\steamapps\common\left 4 dead demo\left4dead.exe:left4dead
"UDP Query User{15905FB7-57F8-4BD8-BF61-D0C552C647F4}c:\\program files\\steam\\steamapps\\common\\left 4 dead demo\\left4dead.exe"= TCP:c:\program files\steam\steamapps\common\left 4 dead demo\left4dead.exe:left4dead
"TCP Query User{0C512DC7-0CB3-4E93-A62B-A4C651FB0E5D}c:\\program files\\steam\\steamapps\\thug319\\half-life 2 deathmatch\\hl2.exe"= UDP:c:\program files\steam\steamapps\thug319\half-life 2 deathmatch\hl2.exe:hl2
"UDP Query User{F7157D8A-8DF8-4B4D-B672-D452728F055D}c:\\program files\\steam\\steamapps\\thug319\\half-life 2 deathmatch\\hl2.exe"= TCP:c:\program files\steam\steamapps\thug319\half-life 2 deathmatch\hl2.exe:hl2
"{E55B4EAD-3BE3-4765-AF89-0ACEADA56122}"= UDP:c:\program files\iTunes\iTunes.exe:iTunes
"{3BB34404-4B57-4BB6-AEAD-4674EE2F201B}"= TCP:c:\program files\iTunes\iTunes.exe:iTunes
"TCP Query User{4EE54C3D-FADB-457E-88D0-E788573C6FEE}c:\\program files\\vuze\\azureus.exe"= UDP:c:\program files\vuze\azureus.exe:Azureus
"UDP Query User{3F2D2327-C3F4-487D-B900-893C341C96DC}c:\\program files\\vuze\\azureus.exe"= TCP:c:\program files\vuze\azureus.exe:Azureus
"TCP Query User{04995B2A-6A15-4119-B0D6-8BA8003E609D}c:\\program files\\left4dead\\hl2.exe"= UDP:c:\program files\left4dead\hl2.exe:hl2
"UDP Query User{ACDD95DD-AF28-4FE0-A6FC-7AD8A55F97AD}c:\\program files\\left4dead\\hl2.exe"= TCP:c:\program files\left4dead\hl2.exe:hl2
"TCP Query User{C6C4C7E0-7AF6-4F59-8031-0A36B64F36BD}c:\\program files\\orbitdownloader\\orbitnet.exe"= UDP:c:\program files\orbitdownloader\orbitnet.exe:P2P service of Orbit Downloader
"UDP Query User{567C774A-C21C-4AFD-826F-0A3F7F8855F9}c:\\program files\\orbitdownloader\\orbitnet.exe"= TCP:c:\program files\orbitdownloader\orbitnet.exe:P2P service of Orbit Downloader
"TCP Query User{E4FEFD2A-BFB5-4CD5-B5E6-8FFB2857818B}c:\\program files\\steam\\steamapps\\thug319\\source sdk base\\hl2.exe"= UDP:c:\program files\steam\steamapps\thug319\source sdk base\hl2.exe:hl2
"UDP Query User{FF17BBE6-CCA7-40F6-A43D-34BDC9984DBB}c:\\program files\\steam\\steamapps\\thug319\\source sdk base\\hl2.exe"= TCP:c:\program files\steam\steamapps\thug319\source sdk base\hl2.exe:hl2
"TCP Query User{1F890238-A6EE-4D89-93E6-A4A78E52B93C}c:\\programdata\\ijjigame\\plauncher.exe"= UDP:c:\programdata\ijjigame\plauncher.exe:PLauncher Application
"UDP Query User{AC617981-53CE-4036-9D86-3330967AEA99}c:\\programdata\\ijjigame\\plauncher.exe"= TCP:c:\programdata\ijjigame\plauncher.exe:PLauncher Application
"TCP Query User{DAAC70F1-6CD3-4A76-95EB-027BCCF33016}c:\\program files\\steam\\steamapps\\thug319\\team fortress 2\\hl2.exe"= UDP:c:\program files\steam\steamapps\thug319\team fortress 2\hl2.exe:hl2
"UDP Query User{A5FC7B14-8B30-4141-A09D-103F503621D1}c:\\program files\\steam\\steamapps\\thug319\\team fortress 2\\hl2.exe"= TCP:c:\program files\steam\steamapps\thug319\team fortress 2\hl2.exe:hl2
"{848527CA-2CD7-4FEF-94BE-FFB7E8873084}"= UDP:c:\program files\Bonjour\mDNSResponder.exe:Bonjour
"{B793B617-22B9-47C5-B910-438EE5DFACD4}"= TCP:c:\program files\Bonjour\mDNSResponder.exe:Bonjour
"{76840261-2551-4999-A41D-33CD5188472F}"= UDP:c:\users\Kurt\AppData\Local\Temp\PurpleBean.exe:PurpleBean.exe
"{6D7E76C2-6903-4672-81F1-7A27966A20F2}"= TCP:c:\users\Kurt\AppData\Local\Temp\PurpleBean.exe:PurpleBean.exe
"TCP Query User{D3FD2A8D-545F-4895-9224-D5C5FCCA453A}c:\\program files\\steam\\steamapps\\garfield41\\counter-strike\\hl.exe"= UDP:c:\program files\steam\steamapps\garfield41\counter-strike\hl.exe:Half-Life Launcher
"UDP Query User{6287CE94-87B9-429D-AFBA-CBC976A28DCA}c:\\program files\\steam\\steamapps\\garfield41\\counter-strike\\hl.exe"= TCP:c:\program files\steam\steamapps\garfield41\counter-strike\hl.exe:Half-Life Launcher
"TCP Query User{36108A24-1DC4-45CF-BEB8-4420AC9B0BE7}c:\\program files\\steam\\steamapps\\uberemo\\counter-strike source\\hl2.exe"= UDP:c:\program files\steam\steamapps\uberemo\counter-strike source\hl2.exe:hl2
"UDP Query User{3AB268DC-C504-4F74-8A10-24F809A8CA4D}c:\\program files\\steam\\steamapps\\uberemo\\counter-strike source\\hl2.exe"= TCP:c:\program files\steam\steamapps\uberemo\counter-strike source\hl2.exe:hl2
"{90AA2793-4269-4E70-B8B6-68C4515C445B}"= UDP:c:\program files\Pando Networks\Media Booster\PMB.exe:Pando Media Booster
"{CDAA2EB9-9121-4FD6-8533-4C7430225D1E}"= TCP:c:\program files\Pando Networks\Media Booster\PMB.exe:Pando Media Booster
"TCP Query User{39963537-2302-4DE9-A96F-12ED69DD6672}c:\\nexon\\nexon_eu_downloader\\nexon_eu_downloader_engine.exe"= UDP:c:\nexon\nexon_eu_downloader\nexon_eu_downloader_engine.exe:NEXON_EU_Downloader_Engine
"UDP Query User{E1064D3A-8054-4D7E-A3DE-4D8639221BD0}c:\\nexon\\nexon_eu_downloader\\nexon_eu_downloader_engine.exe"= TCP:c:\nexon\nexon_eu_downloader\nexon_eu_downloader_engine.exe:NEXON_EU_Downloader_Engine
"{77EA2DA4-0619-4635-B323-A93A75953F7B}"= UDP:c:\programdata\NexonEU\NGM\NGM.exe:Nexon Game Manager
"{0AECA292-D1A4-46DF-A8A2-23FEB5076443}"= TCP:c:\programdata\NexonEU\NGM\NGM.exe:Nexon Game Manager
"{C4F71118-4AC3-4370-9CBC-B565EAAEC0C9}"= UDP:c:\program files\Activision\Call of Duty 4 - Modern Warfare\iw3mp.exe:Call of Duty® 4 - Modern Warfare™
"{955D52F2-0123-422F-AE9F-8C02B66FC995}"= TCP:c:\program files\Activision\Call of Duty 4 - Modern Warfare\iw3mp.exe:Call of Duty® 4 - Modern Warfare™
"{8BE2A40C-AAC0-499E-94B3-CFAE23262F5A}"= UDP:c:\program files\Steam\steamapps\common\dawn of war demo\W40k.exe:Dawn of War Demo
"{7AAACFFB-0F0F-4ECA-BE75-8AACC19C8759}"= TCP:c:\program files\Steam\steamapps\common\dawn of war demo\W40k.exe:Dawn of War Demo
"{EAD0D445-3D8B-485D-81B5-90882BE06E0B}"= UDP:c:\program files\Steam\steamapps\common\peggle extreme\PeggleExtreme.exe:Peggle Extreme
"{DC4DA12A-BC09-4438-BC2C-7CEA20A6FB4C}"= TCP:c:\program files\Steam\steamapps\common\peggle extreme\PeggleExtreme.exe:Peggle Extreme
"{D0DDA192-4E5F-443C-A010-BA16672EC924}"= c:\program files\Windows Live\Sync\WindowsLiveSync.exe:Windows Live Sync
"TCP Query User{EBB36DF1-E644-4812-80F6-F19596A88AE9}c:\\program files\\steam\\steamapps\\common\\warhammer 40,000 dawn of war ii - beta\\dow2.exe"= UDP:c:\program files\steam\steamapps\common\warhammer 40,000 dawn of war ii - beta\dow2.exe:DOW2
"UDP Query User{E034C328-C4B1-4E67-A78D-3820500BCC1D}c:\\program files\\steam\\steamapps\\common\\warhammer 40,000 dawn of war ii - beta\\dow2.exe"= TCP:c:\program files\steam\steamapps\common\warhammer 40,000 dawn of war ii - beta\dow2.exe:DOW2
"TCP Query User{C3CC1356-91BE-44E9-9764-5ED5C96C075A}c:\\program files\\utorrent\\utorrent.exe"= UDP:c:\program files\utorrent\utorrent.exe:µTorrent
"UDP Query User{03233615-664B-4541-8EE6-83D5721D6671}c:\\program files\\utorrent\\utorrent.exe"= TCP:c:\program files\utorrent\utorrent.exe:µTorrent
"TCP Query User{837F3CA0-5D68-473B-B2C6-A6A390318CF5}c:\\program files\\steam\\steamapps\\thug319\\garrysmod\\hl2.exe"= UDP:c:\program files\steam\steamapps\thug319\garrysmod\hl2.exe:hl2
"UDP Query User{BEFC429E-0297-4AF6-AF48-F35589A74B9B}c:\\program files\\steam\\steamapps\\thug319\\garrysmod\\hl2.exe"= TCP:c:\program files\steam\steamapps\thug319\garrysmod\hl2.exe:hl2
"{65F125EA-AF7F-4841-AA8C-F7B4B49F9375}"= UDP:9420:Akamai NetSession Interface
"{04AB7E6B-E0A1-4A8C-8A75-5C6B15BA2044}"= TCP:5000:Akamai NetSession Interface
"{1C5E2D27-E6ED-4499-9BA7-39D299B539EA}"= UDP:9420:Akamai NetSession Interface
"{3F8AB4AC-A94E-4AEE-B5B7-45DFF702F687}"= TCP:5000:Akamai NetSession Interface
"TCP Query User{D7C79FE3-DB32-44FB-882A-3D404BBAE541}c:\\program files\\secondlife\\slvoice.exe"= UDP:c:\program files\secondlife\slvoice.exe:SLVoice
"UDP Query User{B667BFC1-8113-4337-A25E-47204327140B}c:\\program files\\secondlife\\slvoice.exe"= TCP:c:\program files\secondlife\slvoice.exe:SLVoice
"TCP Query User{DEBA6D48-C1D0-4F55-A90D-890CB95DC155}c:\\program files\\orbitdownloader\\orbitnet.exe"= UDP:c:\program files\orbitdownloader\orbitnet.exe:P2P service of Orbit Downloader
"UDP Query User{6FA06E4E-DCB5-4532-8C29-36638BEE830F}c:\\program files\\orbitdownloader\\orbitnet.exe"= TCP:c:\program files\orbitdownloader\orbitnet.exe:P2P service of Orbit Downloader
"TCP Query User{24D7FDD2-052B-423A-8F7B-272B524F6EB7}c:\\program files\\softnyx\\wolfteam\\wolfteam.bin"= UDP:c:\program files\softnyx\wolfteam\wolfteam.bin:WolfTeam
"UDP Query User{E4B0DB3A-DBE2-4AF3-94BE-82F80B17782C}c:\\program files\\softnyx\\wolfteam\\wolfteam.bin"= TCP:c:\program files\softnyx\wolfteam\wolfteam.bin:WolfTeam
"TCP Query User{F1B1F478-5CB6-41B9-B47C-4C708A69BEAC}c:\\program files\\left4dead\\hl2.exe"= UDP:c:\program files\left4dead\hl2.exe:hl2
"UDP Query User{B5F8BF1B-C9A1-4926-A7CA-B7818D4D8D50}c:\\program files\\left4dead\\hl2.exe"= TCP:c:\program files\left4dead\hl2.exe:hl2
"TCP Query User{354D6457-586A-449F-9DAE-A37DF350838B}c:\\program files\\activision\\call of duty 4 - modern warfare\\iw3mp.exe"= UDP:c:\program files\activision\call of duty 4 - modern warfare\iw3mp.exe:iw3mp
"UDP Query User{A41F57F9-AD25-4251-94DC-848C17308E98}c:\\program files\\activision\\call of duty 4 - modern warfare\\iw3mp.exe"= TCP:c:\program files\activision\call of duty 4 - modern warfare\iw3mp.exe:iw3mp
"TCP Query User{622131F1-EB10-4BCB-8F94-A04921239F2E}c:\\program files\\electronic arts\\eadm\\core.exe"= UDP:c:\program files\electronic arts\eadm\core.exe:EA Download Manager
"UDP Query User{F634F8EE-21F9-4F6F-9DA2-EB02CE574AEA}c:\\program files\\electronic arts\\eadm\\core.exe"= TCP:c:\program files\electronic arts\eadm\core.exe:EA Download Manager
"TCP Query User{AE5F33B4-A9F1-4652-829C-7F6285442AE4}c:\\program files\\steam\\steamapps\\thug319\\half-life 2 deathmatch\\hl2.exe"= UDP:c:\program files\steam\steamapps\thug319\half-life 2 deathmatch\hl2.exe:hl2
"UDP Query User{6C8516C7-7267-44CD-B395-28F290DB972F}c:\\program files\\steam\\steamapps\\thug319\\half-life 2 deathmatch\\hl2.exe"= TCP:c:\program files\steam\steamapps\thug319\half-life 2 deathmatch\hl2.exe:hl2
"TCP Query User{88518A1F-E1FF-44F5-AB6F-D26D243C1C4B}c:\\program files\\steam\\steamapps\\thug319\\source sdk base\\hl2.exe"= UDP:c:\program files\steam\steamapps\thug319\source sdk base\hl2.exe:hl2
"UDP Query User{A73EA092-42E7-4AF8-9BAB-429C4C7173B3}c:\\program files\\steam\\steamapps\\thug319\\source sdk base\\hl2.exe"= TCP:c:\program files\steam\steamapps\thug319\source sdk base\hl2.exe:hl2
"TCP Query User{B7F4C669-5900-4DFD-A7D6-F243DABBEB0F}c:\\program files\\steam\\steamapps\\lethal_hunter\\counter-strike source\\hl2.exe"= UDP:c:\program files\steam\steamapps\lethal_hunter\counter-strike source\hl2.exe:hl2
"UDP Query User{8ADAA599-701E-421F-AB96-1A706B4198B1}c:\\program files\\steam\\steamapps\\lethal_hunter\\counter-strike source\\hl2.exe"= TCP:c:\program files\steam\steamapps\lethal_hunter\counter-strike source\hl2.exe:hl2
"TCP Query User{3CA49089-4612-4EC9-B2A2-512211BDB8E6}c:\\program files\\steam\\steamapps\\common\\dawn of war demo\\w40k.exe"= UDP:c:\program files\steam\steamapps\common\dawn of war demo\w40k.exe:W40K
"UDP Query User{399F2799-6C7E-49EC-8A77-E4C984F9AA8E}c:\\program files\\steam\\steamapps\\common\\dawn of war demo\\w40k.exe"= TCP:c:\program files\steam\steamapps\common\dawn of war demo\w40k.exe:W40K
"TCP Query User{2D9BD12A-E418-474B-AACB-CF0F4461B4D4}c:\\program files\\steam\\steamapps\\common\\left 4 dead\\left4dead.exe"= UDP:c:\program files\steam\steamapps\common\left 4 dead\left4dead.exe:left4dead
"UDP Query User{6CEE7CDA-C38A-4122-8670-192B71354FE5}c:\\program files\\steam\\steamapps\\common\\left 4 dead\\left4dead.exe"= TCP:c:\program files\steam\steamapps\common\left 4 dead\left4dead.exe:left4dead
"{3CAC8694-1B12-4D71-9ED6-887E6AA34242}"= UDP:c:\windows\System32\PnkBstrA.exe:PnkBstrA
"{1C7EF47B-E7CB-48F9-90E8-B326FC9542C1}"= TCP:c:\windows\System32\PnkBstrA.exe:PnkBstrA
"{E3CDD15B-532E-488C-8D96-957ADCABD955}"= UDP:c:\windows\System32\PnkBstrB.exe:PnkBstrB
"{DC235836-66C2-4F5A-9257-4A6D24C38164}"= TCP:c:\windows\System32\PnkBstrB.exe:PnkBstrB
"TCP Query User{F87B771E-45E9-4E03-BBA4-2AC1BB46AD51}c:\\program files\\mozilla firefox\\firefox.exe"= UDP:c:\program files\mozilla firefox\firefox.exe:Firefox
"UDP Query User{99C13931-6365-4BF3-9F74-E9EFF3235FCA}c:\\program files\\mozilla firefox\\firefox.exe"= TCP:c:\program files\mozilla firefox\firefox.exe:Firefox
"TCP Query User{45F523E4-C918-431A-9B81-D847DD50E39C}c:\\program files\\ip hider\\ip hider.exe"= UDP:c:\program files\ip hider\ip hider.exe:IP Hider
"UDP Query User{6B596D07-95C3-4793-8ED1-4FC4C56EEC73}c:\\program files\\ip hider\\ip hider.exe"= TCP:c:\program files\ip hider\ip hider.exe:IP Hider
"TCP Query User{D58CF1F1-DEEC-4546-B036-C1EB560FAD3F}c:\\program files\\bethesda softworks\\fallout 3\\fallout3.exe"= UDP:c:\program files\bethesda softworks\fallout 3\fallout3.exe:Fallout3
"UDP Query User{A6AAA458-F427-4E79-B659-4DB7E85E02ED}c:\\program files\\bethesda softworks\\fallout 3\\fallout3.exe"= TCP:c:\program files\bethesda softworks\fallout 3\fallout3.exe:Fallout3
"TCP Query User{BCAAD1B9-FD9C-4EBA-A5F8-D31C25ACA4D4}c:\\program files\\icq6.5\\icq.exe"= UDP:c:\program files\icq6.5\icq.exe:ICQ
"UDP Query User{CB28CA19-B1B9-4264-B17E-1E893AEDE7FA}c:\\program files\\icq6.5\\icq.exe"= TCP:c:\program files\icq6.5\icq.exe:ICQ
"TCP Query User{3CEFCCD6-3213-4505-8774-8A3BAC56D58E}c:\\program files\\steam\\steamapps\\lethal_hunter\\garrysmod\\hl2.exe"= UDP:c:\program files\steam\steamapps\lethal_hunter\garrysmod\hl2.exe:hl2
"UDP Query User{8711FBB0-8D4A-461A-A418-0A21BB1749C4}c:\\program files\\steam\\steamapps\\lethal_hunter\\garrysmod\\hl2.exe"= TCP:c:\program files\steam\steamapps\lethal_hunter\garrysmod\hl2.exe:hl2
"TCP Query User{210EDF65-848A-4A91-80B9-832FC93FCB29}c:\\program files\\steam\\steamapps\\lethal_hunter\\half-life 2 deathmatch\\hl2.exe"= UDP:c:\program files\steam\steamapps\lethal_hunter\half-life 2 deathmatch\hl2.exe:hl2
"UDP Query User{89089853-4C94-46C5-95FA-C292118ED1F5}c:\\program files\\steam\\steamapps\\lethal_hunter\\half-life 2 deathmatch\\hl2.exe"= TCP:c:\program files\steam\steamapps\lethal_hunter\half-life 2 deathmatch\hl2.exe:hl2
"TCP Query User{90F3011E-3643-4217-AEB7-29F11C0ABE52}c:\\program files\\steam\\steamapps\\lethal_hunter\\source sdk base\\hl2.exe"= UDP:c:\program files\steam\steamapps\lethal_hunter\source sdk base\hl2.exe:hl2
"UDP Query User{38EAE4A0-8C9E-4755-9310-3CF816C234EE}c:\\program files\\steam\\steamapps\\lethal_hunter\\source sdk base\\hl2.exe"= TCP:c:\program files\steam\steamapps\lethal_hunter\source sdk base\hl2.exe:hl2
"{0399905C-05BE-4AC2-933B-5D57493130A6}"= c:\program files\AVG\AVG8\avgam.exe:avgam.exe
"{D4FD6D3D-FABE-4091-8AB3-5BBBC6EBEBD5}"= c:\program files\AVG\AVG8\avgdiag.exe:avgdiag.exe
"{720528B2-7D5F-42A9-9250-A8C424C1E495}"= c:\program files\AVG\AVG8\avgdiagex.exe:avgdiagex.exe
"{374CF2D4-6A38-4839-AAFA-CBDB9C267B63}"= c:\program files\AVG\AVG8\avgemc.exe:avgemc.exe
"{C9E3A752-3875-42CF-963E-829107F4F55C}"= c:\program files\AVG\AVG8\avgupd.exe:avgupd.exe
"{E3FB8F57-E34A-495A-A0BC-8FC12E06C6C6}"= c:\program files\AVG\AVG8\avgnsx.exe:avgnsx.exe
"{C7687CB8-305D-4937-B130-65A6E98BB5D2}"= UDP:c:\program files\Steam\steamapps\common\trackmania nations forever\TmForever.exe:TrackMania Nations Forever
"{072ADCE6-4024-4AEE-AFD4-2A4401420203}"= TCP:c:\program files\Steam\steamapps\common\trackmania nations forever\TmForever.exe:TrackMania Nations Forever
"{CADF1677-5B32-419D-8C35-C0D1AC226500}"= UDP:c:\program files\Steam\steamapps\common\trackmania nations forever\TmForeverLauncher.exe:TrackMania Nations Forever
"{DD88BF00-4711-44BD-AF19-07AAC921E3B8}"= TCP:c:\program files\Steam\steamapps\common\trackmania nations forever\TmForeverLauncher.exe:TrackMania Nations Forever
"{41503B34-53D4-4444-86F0-10CD8C406A94}"= UDP:c:\program files\Steam\steamapps\common\left 4 dead\left4dead.exe:Left 4 Dead
"{AE3B9A4B-78E6-4C5F-86EF-6F8346E94D4F}"= TCP:c:\program files\Steam\steamapps\common\left 4 dead\left4dead.exe:Left 4 Dead
"{741C2566-3E3C-4609-BA12-A7D442F2E325}"= UDP:c:\program files\iTunes\iTunes.exe:iTunes
"{827CE7BD-7319-4580-825E-110D16B264D6}"= TCP:c:\program files\iTunes\iTunes.exe:iTunes

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\PublicProfile]
"EnableFirewall"= 0 (0x0)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\StandardProfile]
"EnableFirewall"= 0 (0x0)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\StandardProfile\AuthorizedApplications\List]
"c:\\Program Files\\Orbitdownloader\\orbitdm.exe"= c:\program files\Orbitdownloader\orbitdm.exe:*:Enabled:Orbit
"c:\\Program Files\\Orbitdownloader\\orbitnet.exe"= c:\program files\Orbitdownloader\orbitnet.exe:*:Enabled:Orbit
"c:\\Nexon\\Combat Arms EU\\CombatArms.exe"= c:\nexon\Combat Arms EU\CombatArms.exe:*Enabled:CombatArms.exe
"c:\\Nexon\\Combat Arms EU\\Engine.exe"= c:\nexon\Combat Arms EU\Engine.exe:*Enabled:Engine.exe

R0 amacpi;Microsoft Away Mode System;c:\windows\System32\drivers\null.sys [21/08/2008 18:49 4608]
R0 AVGIDSErHr;AVGIDSErHr;c:\windows\System32\drivers\AVGIDSErHr.sys [26/02/2009 12:46 25608]
R0 AvgRkx86;avgrkx86.sys;c:\windows\System32\drivers\avgrkx86.sys [06/04/2009 18:32 12552]
R1 Avgfwfd;AVG network filter service;c:\windows\System32\drivers\avgfwd6x.sys [06/04/2009 18:30 23832]
R1 AvgLdx86;AVG AVI Loader Driver x86;c:\windows\System32\drivers\avgldx86.sys [06/04/2009 18:32 335752]
R1 AvgTdiX;AVG8 Network Redirector;c:\windows\System32\drivers\avgtdix.sys [06/04/2009 18:32 108552]
R2 AERTFilters;Andrea RT Filters Service;c:\windows\System32\AERTSrv.exe [05/12/2007 06:17 77824]
R2 avg8emc;AVG8 E-mail Scanner;c:\progra~1\AVG\AVG8\avgemc.exe [25/04/2009 09:22 907032]
R2 avg8wd;AVG8 WatchDog;c:\progra~1\AVG\AVG8\avgwdsvc.exe [06/04/2009 18:31 298776]
R2 avgfws8;AVG8 Firewall;c:\progra~1\AVG\AVG8\avgfws8.exe [25/04/2009 09:22 1368952]
R2 AVGIDSAgent;AVGIDSAgent;c:\program files\AVG\AVG8\IdentityProtection\agent\Bin\AVGIDSAgent.exe [26/02/2009 12:46 5576712]
R2 AVGIDSWatcher;AVGIDSWatcher;c:\program files\AVG\AVG8\IdentityProtection\agent\Bin\AVGIDSWatcher.exe [26/02/2009 12:46 563720]
R3 AVGIDSDriver;AVGIDSDriver;c:\program files\AVG\AVG8\IdentityProtection\agent\driver\platform_VISTA\AVGIDSDriver.sys [26/02/2009 12:46 121352]
R3 AVGIDSFilter;AVGIDSFilter;c:\program files\AVG\AVG8\IdentityProtection\agent\driver\platform_VISTA\AVGIDSFilter.sys [26/02/2009 12:46 30216]
R3 AVGIDSShim;AVGIDSShim;c:\program files\AVG\AVG8\IdentityProtection\agent\driver\platform_VISTA\AVGIDSShim.sys [26/02/2009 12:46 29136]
R3 RTL8187B;NETGEAR WG111v3 54Mbps Wireless USB 2.0 Adapter Vista Driver;c:\windows\System32\drivers\wg111v3.sys [28/12/2007 06:58 289280]
S2 gupdate1c987cb1e629322;Google Update Service (gupdate1c987cb1e629322);c:\program files\Google\Update\GoogleUpdate.exe [05/02/2009 20:51 133104]
S3 ASPI;Advanced SCSI Programming Interface Driver;c:\windows\System32\drivers\ASPI32.SYS [29/11/2008 21:12 84832]
S3 cpuz132;cpuz132;c:\windows\System32\drivers\cpuz132_x32.sys [03/05/2009 10:01 12672]
S3 SUPERWEBCAM;SuperWebcam, WDM Virtual Video Capture Device;c:\windows\System32\drivers\superwebcam.sys [06/02/2009 17:14 31872]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalServiceNoNetwork REG_MULTI_SZ PLA DPS BFE mpssvc

[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF}]
"c:\windows\System32\rundll32.exe" "c:\windows\System32\iedkcs32.dll",BrandIEActiveSetup SIGNUP
.
Contents of the 'Scheduled Tasks' folder

2009-07-13 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-02-05 19:56]

2009-07-13 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-02-05 19:56]

2009-07-13 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1476087358-3955371007-1731012160-1000.job
- c:\users\Kurt\AppData\Local\Google\Update\GoogleUpdate.exe [2008-09-06 15:50]

2009-07-12 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1476087358-3955371007-1731012160-1000Core.job
- c:\users\Kurt\AppData\Local\Google\Update\GoogleUpdate.exe [2008-09-06 15:50]

2009-07-13 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1476087358-3955371007-1731012160-1000UA.job
- c:\users\Kurt\AppData\Local\Google\Update\GoogleUpdate.exe [2008-09-06 15:50]

2009-07-13 c:\windows\Tasks\User_Feed_Synchronization-{3829515B-1FFE-4074-B022-E587D4B883A4}.job
- c:\windows\system32\msfeedssync.exe [2009-06-18 11:31]
.
- - - - ORPHANS REMOVED - - - -

HKCU-Run-DellSupportCenter - c:\program files\Dell Support Center\bin\sprtcmd.exe
HKLM-Run-GSISETUP - e:\drivers\VOYAGE~3\setup.exe
HKLM-Run-DellSupportCenter - c:\program files\Dell Support Center\bin\sprtcmd.exe


.
——- Supplementary Scan ——-
.
uStart Page = hxxp://www.greenday.com/
uInternet Settings,ProxyServer = 91.205.174.189:9939->Germany (Premium)
uInternet Settings,ProxyOverride = local
IE: &AOL; Toolbar search - c:\program files\AOL Toolbar\toolbar.dll/SEARCH.HTML
IE: &Download; by Orbit - c:\program files\Orbitdownloader\orbitmxt.dll/201
IE: &Grab; video by Orbit - c:\program files\Orbitdownloader\orbitmxt.dll/204
IE: Add to Windows &Live; Favorites - http://favorites.live.com/quickadd.aspx
IE: Do&wnload; selected by Orbit - c:\program files\Orbitdownloader\orbitmxt.dll/203
IE: Down&load; all by Orbit - c:\program files\Orbitdownloader\orbitmxt.dll/202
IE: E&xport; to Microsoft Excel - c:\progra~1\MICROS~3\Office12\EXCEL.EXE/3000
IE: {{d9288080-1baa-4bc4-9cf8-a92d743db949} - c:\users\Kurt\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\IMVU\Run IMVU.lnk
TCP: {98458B58-16F4-4BC9-B3E9-A102CE27AF01} = 192.168.0.1
FF - ProfilePath - c:\users\Kurt\AppData\Roaming\Mozilla\Firefox\Profiles\t3ybijn4.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.myspace.com/kurtherbie
FF - component: c:\program files\AVG\AVG8\Firefox\components\avgssff.dll
FF - component: c:\program files\Mozilla Firefox\extensions\{B13721C7-F507-4982-B2E5-502A71474FED}\components\NPComponent.dll
FF - component: c:\program files\Nokia\Nokia PC Suite 7\bkmrksync\components\BkMrkExt.dll
FF - component: c:\program files\Real\RealPlayer\browserrecord\components\nprpbrowserrecordplugin.dll
FF - plugin: c:\program files\Google\Google Earth Plugin\npgeplugin.dll
FF - plugin: c:\program files\Google\Update\1.2.183.7\npGoogleOneClick8.dll
FF - plugin: c:\program files\Microsoft\Office Live\npOLW.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\np-mswmp.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\npPandoWebInst.dll
FF - plugin: c:\program files\Windows Live\Photo Gallery\NPWLPG.dll
FF - plugin: c:\programdata\id Software\QuakeLive\npquakezero.dll
FF - plugin: c:\programdata\NexonEU\NGM\npNxGameeu.dll
FF - plugin: c:\users\Kurt\AppData\Local\Google\Update\1.2.183.7\npGoogleOneClick8.dll
FF - plugin: c:\users\Kurt\AppData\Roaming\Mozilla\Firefox\Profiles\t3ybijn4.default\extensions\[removed]\plugins\npiaplayer.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
FF - HiddenExtension: Java Console: No Registry Reference - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}
FF - HiddenExtension: Java Console: No Registry Reference - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0012-ABCDEFFEDCBA}

—- FIREFOX POLICIES —-
FF - user.js: network.proxy.type - 0
FF - user.js: network.proxy.http -
user_pref(network.proxy.http_port,);
FF - user.js: network.proxy.no_proxies_on -
FF - user.js: yahoo.homepage.dontask - true.

**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-07-13 19:15
Windows 6.0.6001 Service Pack 1 NTFS

scanning hidden processes …

scanning hidden autostart entries …

scanning hidden files …

scan completed successfully
hidden files: 0

**************************************************************************
.
——————— LOCKED REGISTRY KEYS ———————

[HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.htm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="FirefoxHTML"

[HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.html\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="FirefoxHTML"

[HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.shtml\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="FirefoxHTML"

[HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xht\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="FirefoxHTML"

[HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xhtml\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="FirefoxHTML"

[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000

[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
Completion time: 2009-07-13 19:21
ComboFix-quarantined-files.txt 2009-07-13 18:21

Pre-Run: 115,677,663,232 bytes free
Post-Run: 115,611,795,456 bytes free

445 — E O F — 2009-07-13 15:30

Any help will be appreciated :)
Thanks
Hi,

Please do the following:

Download TFC to your desktop
  • Close any open windows.
  • Double click the TFC icon to run the program
  • TFC will close all open programs itself in order to run,
  • Click the Start button to begin the process.
  • Allow TFC to run uninterrupted.
  • The program should not take long to finish it's job
  • Once its finished it should automatically reboot your machine,
  • if it doesn't, manually reboot to ensure a complete clean
It's normal after running TFC cleaner that the PC will be slower to boot the first time.

NEXT

Please download Malwarebytes' Anti-Malware
  • Double Click mbam-setup.exe to install the application.
  • Make sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.
  • If an update is found, it will download and install the latest version.
  • Once the program has loaded, select "Perform Quick Scan", then click Scan.
  • The scan may take some time to finish, so please be patient.
  • When the scan is complete, click OK, then Show Results to view the results.
  • Make sure that everything is checked, and click Remove Selected. <– very important
  • When disinfection is completed, a log will open in Notepad and you may be prompted to Restart. (See Extra Note)
  • The log is automatically saved by MBAM and can be viewed by clicking the Logs tab in MBAM.
  • Copy&Paste the entire report in your next reply.

Extra Note:If MBAM encounters a file that is difficult to remove, you will be presented with 1 of 2 prompts, click OK to either and let MBAM proceed with the disinfection process, if asked to restart the computer, please do so immediately.



NEXT

**Vista users - right click on the IE icon and run as administrator

Run an on-line scan with Kaspersky

Using Internet Explorer or Firefox, visit Kaspersky On-line Scanner

1. Click Accept, when prompted to download and install the program files and database of malware definitions.
2. To optimize scanning time and produce a more sensible report for review:
  • Close any open programs
  • Turn off the real time scanner of any existing antivirus program while performing the online scan
3. Click Run at the Security prompt.
The program will then begin downloading and installing and will also update the database.
Please be patient as this can take several minutes.
  • Once the update is complete, click on My Computer under the green Scan bar to the left to start the scan.
  • Once the scan is complete, it will display if your system has been infected. It does not provide an option to clean/disinfect. We only require a report from it.
  • Do NOT be alarmed by what you see in the report. Many of the finds have likely been quarantined.
  • Click View scan report at the bottom.

    [external image: Posted Image]
  • Click the Save as Text button to save the file to your desktop so that you may post it in your next reply


In your next reply please include
  • MBAM Log
  • Kaspersky report
Malwarebytes' Anti-Malware 1.39 Database version: 2427 Windows 6.0.6001 Service Pack 1 14/07/2009 17:46:15 mbam-log-2009-07-14 (17-46-14).txt Scan type: Quick Scan Objects scanned: 87326 Time elapsed: 14 minute(s), 29 second(s) Memory Processes Infected: 0 Memory Modules Infected: 0 Registry Keys Infected: 4 Registry Values Infected: 0 Registry Data Items Infected: 0 Folders Infected: 4 Files Infected: 293 Memory Processes Infected: (No malicious items detected) Memory Modules Infected: (No malicious items detected) Registry Keys Infected: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{c5428486-50a0-4a02-9d20-520b59a9f9b3} (Adware.Shopping.Report) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{6fd31ed6-7c94-4bbc-8e95-f927f4d3a949} (Adware.180Solutions) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\ErrorFix (Rogue.ErrorFix) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\ErrorFix (Rogue.ErrorFix) -> Quarantined and deleted successfully. Registry Values Infected: (No malicious items detected) Registry Data Items Infected: (No malicious items detected) Folders Infected: C:\Users\Kurt\AppData\Roaming\ErrorFix (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\Logs (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\Quarantine (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240 (Rogue.ErrorFix) -> Quarantined and deleted successfully. Files Infected: c:\Users\Kurt\AppData\Roaming\ErrorFix\results.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\Logs\2008-11-23 13-43-590.log (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\Logs\2008-11-24 16-06-290.log (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\filelist.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-0.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-1.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-10.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-100.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-101.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-102.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-103.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-104.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-105.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-106.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-107.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-108.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-109.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-11.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-110.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-111.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-112.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-113.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-114.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-115.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-116.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-117.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-118.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-119.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-12.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-120.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-121.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-122.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-123.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-124.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-125.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-126.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-127.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-128.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-129.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-13.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-130.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-131.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-132.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-133.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-134.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-135.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-136.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-137.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-138.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-139.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-14.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-140.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-141.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-142.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-143.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-144.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-145.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-146.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-147.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-148.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-149.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-15.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-150.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-151.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-152.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-153.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-154.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-155.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-156.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-157.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-158.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-159.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-16.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-160.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-161.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-162.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-163.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-164.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-165.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-166.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-167.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-168.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-169.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-17.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-170.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-171.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-172.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-173.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-174.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-175.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-176.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-177.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-178.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-179.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-18.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-180.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-181.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-182.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-183.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-184.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-185.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-186.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-187.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-188.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-189.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-19.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-190.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-191.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-192.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-193.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-194.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-195.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-196.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-197.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-198.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-199.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-2.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-20.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-200.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-201.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-202.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-203.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-204.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-205.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-206.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-207.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-208.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-209.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-21.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-210.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-211.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-212.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-213.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-214.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-215.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-216.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-217.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-218.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-219.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-22.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-220.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-221.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-222.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-223.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-224.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-225.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-226.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-227.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-228.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-229.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-23.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-230.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-231.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-232.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-233.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-234.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-235.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-236.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-237.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-238.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-239.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-24.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-240.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-241.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-242.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-243.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-244.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-245.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-246.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-247.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-248.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-249.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-25.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-250.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-251.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-252.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-253.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-254.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-255.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-256.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-257.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-258.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-259.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-26.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-260.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-261.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-262.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-263.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-264.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-265.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-266.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-267.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-268.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-269.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-27.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-270.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-271.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-272.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-273.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-274.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-275.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-276.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-277.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-278.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-279.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-28.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-280.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-281.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-282.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-283.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-284.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-285.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-286.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-287.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-288.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-29.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-3.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-30.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-31.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-32.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-33.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-34.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-35.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-36.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-37.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-38.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-39.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-4.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-40.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-41.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-42.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-43.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-44.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-45.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-46.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-47.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-48.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-49.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-5.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-50.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-51.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-52.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-53.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-54.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-55.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-56.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-57.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-58.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-59.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-6.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-60.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-61.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-62.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-63.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-64.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-65.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-66.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-67.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-68.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-69.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-7.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-70.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-71.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-72.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-73.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-74.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-75.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-76.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-77.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-78.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-79.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-8.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-80.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-81.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-82.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-83.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-84.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-85.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-86.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-87.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-88.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-89.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-9.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-90.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-91.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-92.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-93.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-94.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-95.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-96.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-97.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-98.db (Rogue.ErrorFix) -> Quarantined and deleted successfully. c:\Users\Kurt\AppData\Roaming\ErrorFix\quarantine\2008-11-23 13-45-240\regb-99.db (Rogue.ErrorFix) -> Quarantined and deleted successfully.

Ask AI

AI can make mistakes. Check the cited posts. Archived advice can be out-of-date

Don't include personal information. Questions and selected public posts go to OpenAI. About Ask AI