OK here's the ewido log
———————————————————
ewido security suite - Scan report
———————————————————
+ Created on: 1:01:29 PM, 7/30/2005
+ Report-Checksum: DE777B9B
+ Scan result:
HKLM\SOFTWARE\Classes\AtlControl.AtlCtrl -> Spyware.HotBar : Cleaned with backup
HKLM\SOFTWARE\Classes\AtlControl.AtlCtrl\CLSID -> Spyware.HotBar : Cleaned with backup
HKLM\SOFTWARE\Classes\AtlControl.AtlCtrl\CurVer -> Spyware.HotBar : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{2B96D5CC-C5B5-49A5-A69D-CC0A30F9028C} -> Spyware.MiniBug : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{C886256C-7A63-4213-AD2F-02AD3735DF06} -> Spyware.HotBar : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{FF8DA190-3574-11D4-8068-0060082AE372} -> Spyware.BingoFun : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{3F947DE3-D937-414D-AF0A-548A4148A5E6} -> Spyware.HotBar : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{717BEB87-70F4-4EAB-80D4-E357B3619530} -> Spyware.HotBar : Cleaned with backup
HKLM\SOFTWARE\Classes\TypeLib\{D6C76AA4-8532-4AFD-841D-287972A9E1E8} -> Spyware.HotBar : Cleaned with backup
[784] c:\windows\system32\dyansn.exe -> Adware.BetterInternet : Cleaned with backup
C:\Documents and Settings\Edward\Cookies\edward@specificpop[1].txt -> Spyware.Cookie.Specificpop : Cleaned with backup
C:\Documents and Settings\Edward\Local Settings\Temp\S8ISXCR7O.exe -> Spyware.WinFetcher : Cleaned with backup
C:\Documents and Settings\Edward\Local Settings\Temporary Internet Files\Content.IE5\GXMVCXAZ\exploit[1].htm -> Not-A-Virus.Exploit.HTML.Mht : Cleaned with backup
C:\Documents and Settings\Edward\Local Settings\Temporary Internet Files\Content.IE5\GXMVCXAZ\np1[1].exe -> TrojanDownloader.IstBar.er : Cleaned with backup
C:\Documents and Settings\Edward\Local Settings\Temporary Internet Files\Content.IE5\I7LOM9BD\hp1[1].htm -> Not-A-Virus.Exploit.HTML.Mht : Cleaned with backup
C:\Documents and Settings\Edward\Local Settings\Temporary Internet Files\Content.IE5\I7LOM9BD\hp2[1].htm -> Not-A-Virus.Exploit.HTML.Mht : Cleaned with backup
C:\Documents and Settings\Edward\Local Settings\Temporary Internet Files\Content.IE5\I7LOM9BD\wmp[1].htm -> Not-A-Virus.Exploit.HTML.Mht : Cleaned with backup
C:\Documents and Settings\Edward\Local Settings\Temporary Internet Files\Content.IE5\KD67O12B\6-7[1].exe -> Spyware.Hijacker.Generic : Cleaned with backup
C:\Documents and Settings\Edward\Local Settings\Temporary Internet Files\Content.IE5\KH8XA3S5\exitpoplight1[1].htm -> Trojan.NoClose.i : Cleaned with backup
C:\Documents and Settings\Edward\Local Settings\Temporary Internet Files\Content.IE5\KH8XA3S5\np1[1].htm -> Not-A-Virus.Exploit.HTML.Mht : Cleaned with backup
C:\Documents and Settings\Edward\Local Settings\Temporary Internet Files\Content.IE5\PU4VUUMF\AproposClientInstaller[1].exe -> TrojanDownloader.Apropo.d : Cleaned with backup
C:\Documents and Settings\Edward\Local Settings\Temporary Internet Files\Content.IE5\PU4VUUMF\exitpoplight1[1].htm -> Trojan.NoClose.i : Cleaned with backup
C:\Documents and Settings\Edward\Local Settings\Temporary Internet Files\Content.IE5\PU4VUUMF\si1[1].htm -> Not-A-Virus.Exploit.HTML.Mht : Cleaned with backup
C:\Documents and Settings\Edward\Local Settings\Temporary Internet Files\Content.IE5\QN23M56F\np1[1].htm -> Not-A-Virus.Exploit.HTML.Mht : Cleaned with backup
C:\Documents and Settings\Edward\Local Settings\Temporary Internet Files\Content.IE5\WRVZ6SLT\si1[1].htm -> Not-A-Virus.Exploit.HTML.Mht : Cleaned with backup
:mozilla.206:C:\Documents and Settings\Edward.COMPUTER\Application Data\Mozilla\Firefox\Profiles\arkfshfe.default\cookies.txt -> Spyware.Cookie.Paypopup : Cleaned with backup
:mozilla.207:C:\Documents and Settings\Edward.COMPUTER\Application Data\Mozilla\Firefox\Profiles\arkfshfe.default\cookies.txt -> Spyware.Cookie.Paypopup : Cleaned with backup
:mozilla.208:C:\Documents and Settings\Edward.COMPUTER\Application Data\Mozilla\Firefox\Profiles\arkfshfe.default\cookies.txt -> Spyware.Cookie.Paypopup : Cleaned with backup
:mozilla.209:C:\Documents and Settings\Edward.COMPUTER\Application Data\Mozilla\Firefox\Profiles\arkfshfe.default\cookies.txt -> Spyware.Cookie.Paypopup : Cleaned with backup
:mozilla.210:C:\Documents and Settings\Edward.COMPUTER\Application Data\Mozilla\Firefox\Profiles\arkfshfe.default\cookies.txt -> Spyware.Cookie.Paypopup : Cleaned with backup
:mozilla.262:C:\Documents and Settings\Edward.COMPUTER\Application Data\Mozilla\Firefox\Profiles\arkfshfe.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.263:C:\Documents and Settings\Edward.COMPUTER\Application Data\Mozilla\Firefox\Profiles\arkfshfe.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.264:C:\Documents and Settings\Edward.COMPUTER\Application Data\Mozilla\Firefox\Profiles\arkfshfe.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.265:C:\Documents and Settings\Edward.COMPUTER\Application Data\Mozilla\Firefox\Profiles\arkfshfe.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.266:C:\Documents and Settings\Edward.COMPUTER\Application Data\Mozilla\Firefox\Profiles\arkfshfe.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.267:C:\Documents and Settings\Edward.COMPUTER\Application Data\Mozilla\Firefox\Profiles\arkfshfe.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.268:C:\Documents and Settings\Edward.COMPUTER\Application Data\Mozilla\Firefox\Profiles\arkfshfe.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.269:C:\Documents and Settings\Edward.COMPUTER\Application Data\Mozilla\Firefox\Profiles\arkfshfe.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
C:\Documents and Settings\Edward.COMPUTER\Cookies\edward@paypopup[1].txt -> Spyware.Cookie.Paypopup : Cleaned with backup
C:\Documents and Settings\Edward.COMPUTER\Local Settings\Temp\180sainstallernusac.exe/clientax.dll -> Spyware.180Solutions : Cleaned with backup
C:\Documents and Settings\Edward.COMPUTER\Local Settings\Temp\d_loader.exe -> TrojanDownloader.IstBar : Cleaned with backup
C:\Documents and Settings\Edward.COMPUTER\Local Settings\Temp\ts_8_new.exe -> TrojanDownloader.TSUpdate.f : Cleaned with backup
C:\Documents and Settings\Edward.COMPUTER\Local Settings\Temp\wsvqmu.exe -> Backdoor.Spyboter : Cleaned with backup
C:\Documents and Settings\Ester\Cookies\[removed][1].txt -> Spyware.Cookie.Bpath : Cleaned with backup
C:\Documents and Settings\Ester\Cookies\ester@specificpop[2].txt -> Spyware.Cookie.Specificpop : Cleaned with backup
C:\Documents and Settings\Ester\Local Settings\Temp\ClrSch\FNuninstaller.EXE -> Spyware.ClearSearch : Cleaned with backup
C:\Documents and Settings\Ester\Local Settings\Temporary Internet Files\Content.IE5\UZ4V474H\hp1[1].htm -> Not-A-Virus.Exploit.HTML.Mht : Cleaned with backup
C:\Documents and Settings\Ester.COMPUTER\Cookies\[removed][2].txt -> Spyware.Cookie.Specificclick : Cleaned with backup
C:\Documents and Settings\Jack.COMPUTER\Cookies\[removed][2].txt -> Spyware.Cookie.Specificclick : Cleaned with backup
C:\Documents and Settings\Michael\Cookies\[removed][1].txt -> Spyware.Cookie.Bpath : Cleaned with backup
C:\Documents and Settings\Michael\Cookies\[removed][2].txt -> Spyware.Cookie.Bpath : Cleaned with backup
C:\Documents and Settings\Michael\Cookies\michael@specificpop[2].txt -> Spyware.Cookie.Specificpop : Cleaned with backup
C:\Documents and Settings\Michael\Local Settings\Temp\ClrSch\FNuninstaller.EXE -> Spyware.ClearSearch : Cleaned with backup
C:\Documents and Settings\Michael\Local Settings\Temporary Internet Files\Content.IE5\0LW5QZ0D\wmp[1].htm -> Not-A-Virus.Exploit.HTML.Mht : Cleaned with backup
C:\Documents and Settings\Michael\Local Settings\Temporary Internet Files\Content.IE5\BBLJR1CW\wmp[1].htm -> Not-A-Virus.Exploit.HTML.Mht : Cleaned with backup
C:\Documents and Settings\Michael\Local Settings\Temporary Internet Files\Content.IE5\FMSZ79K5\CACLUXN8.htm -> Trojan.NoClose.i : Cleaned with backup
C:\Documents and Settings\Owner.COMPUTER\Cookies\[removed][2].txt -> Spyware.Cookie.Specificclick : Cleaned with backup
C:\Documents and Settings\Owner.COMPUTER\Cookies\[removed][2].txt -> Spyware.Cookie.Bpath : Cleaned with backup
C:\Documents and Settings\Owner.COMPUTER\Cookies\owner@edge.ru4[1].txt -> Spyware.Cookie.Ru4 : Cleaned with backup
C:\Program Files\AWS\WeatherBug\MiniBugTransporter.dll -> Spyware.Wheaterbug : Cleaned with backup
C:\Program Files\Common Files\zwfi\zwfia.exe -> TrojanDownloader.TSUpdate.l : Cleaned with backup
C:\Program Files\Common Files\zwfi\zwfil.exe -> TrojanDownloader.TSUpdate.j : Cleaned with backup
C:\Program Files\Common Files\zwfi\zwfip.exe -> Spyware.Xupiter : Cleaned with backup
C:\Program Files\Support Software\SS2.DLL -> Spyware.MediaPops : Cleaned with backup
:mozilla.6:C:\Program Files\Support.com\backup\Co\cookies.txt\45155_5d3b5f78f_/cookies.txt -> Spyware.Cookie.Doubleclick : Error during cleaning
:mozilla.7:C:\Program Files\Support.com\backup\Co\cookies.txt\45155_5d3b5f78f_/cookies.txt -> Spyware.Cookie.Tribalfusion : Error during cleaning
:mozilla.39:C:\Program Files\Support.com\backup\Co\cookies.txt\45155_5d3b5f78f_/cookies.txt -> Spyware.Cookie.Atdmt : Error during cleaning
:mozilla.52:C:\Program Files\Support.com\backup\Co\cookies.txt\45155_5d3b5f78f_/cookies.txt -> Spyware.Cookie.Paypopup : Error during cleaning
:mozilla.53:C:\Program Files\Support.com\backup\Co\cookies.txt\45155_5d3b5f78f_/cookies.txt -> Spyware.Cookie.Paypopup : Error during cleaning
:mozilla.54:C:\Program Files\Support.com\backup\Co\cookies.txt\45155_5d3b5f78f_/cookies.txt -> Spyware.Cookie.Paypopup : Error during cleaning
:mozilla.55:C:\Program Files\Support.com\backup\Co\cookies.txt\45155_5d3b5f78f_/cookies.txt -> Spyware.Cookie.Paypopup : Error during cleaning
:mozilla.56:C:\Program Files\Support.com\backup\Co\cookies.txt\45155_5d3b5f78f_/cookies.txt -> Spyware.Cookie.Paypopup : Error during cleaning
:mozilla.70:C:\Program Files\Support.com\backup\Co\cookies.txt\45155_5d3b5f78f_/cookies.txt -> Spyware.Cookie.Trafficmp : Error during cleaning
:mozilla.71:C:\Program Files\Support.com\backup\Co\cookies.txt\45155_5d3b5f78f_/cookies.txt -> Spyware.Cookie.Trafficmp : Error during cleaning
:mozilla.72:C:\Program Files\Support.com\backup\Co\cookies.txt\45155_5d3b5f78f_/cookies.txt -> Spyware.Cookie.Trafficmp : Error during cleaning
:mozilla.73:C:\Program Files\Support.com\backup\Co\cookies.txt\45155_5d3b5f78f_/cookies.txt -> Spyware.Cookie.Trafficmp : Error during cleaning
:mozilla.74:C:\Program Files\Support.com\backup\Co\cookies.txt\45155_5d3b5f78f_/cookies.txt -> Spyware.Cookie.Trafficmp : Error during cleaning
:mozilla.75:C:\Program Files\Support.com\backup\Co\cookies.txt\45155_5d3b5f78f_/cookies.txt -> Spyware.Cookie.Trafficmp : Error during cleaning
:mozilla.76:C:\Program Files\Support.com\backup\Co\cookies.txt\45155_5d3b5f78f_/cookies.txt -> Spyware.Cookie.Trafficmp : Error during cleaning
:mozilla.78:C:\Program Files\Support.com\backup\Co\cookies.txt\45155_5d3b5f78f_/cookies.txt -> Spyware.Cookie.Fastclick : Error during cleaning
:mozilla.79:C:\Program Files\Support.com\backup\Co\cookies.txt\45155_5d3b5f78f_/cookies.txt -> Spyware.Cookie.Fastclick : Error during cleaning
:mozilla.80:C:\Program Files\Support.com\backup\Co\cookies.txt\45155_5d3b5f78f_/cookies.txt -> Spyware.Cookie.Fastclick : Error during cleaning
:mozilla.83:C:\Program Files\Support.com\backup\Co\cookies.txt\45155_5d3b5f78f_/cookies.txt -> Spyware.Cookie.Advertising : Error during cleaning
:mozilla.84:C:\Program Files\Support.com\backup\Co\cookies.txt\45155_5d3b5f78f_/cookies.txt -> Spyware.Cookie.Advertising : Error during cleaning
:mozilla.86:C:\Program Files\Support.com\backup\Co\cookies.txt\45155_5d3b5f78f_/cookies.txt -> Spyware.Cookie.Advertising : Error during cleaning
:mozilla.87:C:\Program Files\Support.com\backup\Co\cookies.txt\45155_5d3b5f78f_/cookies.txt -> Spyware.Cookie.Advertising : Error during cleaning
:mozilla.89:C:\Program Files\Support.com\backup\Co\cookies.txt\45155_5d3b5f78f_/cookies.txt -> Spyware.Cookie.Advertising : Error during cleaning
:mozilla.90:C:\Program Files\Support.com\backup\Co\cookies.txt\45155_5d3b5f78f_/cookies.txt -> Spyware.Cookie.Advertising : Error during cleaning
:mozilla.92:C:\Program Files\Support.com\backup\Co\cookies.txt\45155_5d3b5f78f_/cookies.txt -> Spyware.Cookie.Advertising : Error during cleaning
:mozilla.33:C:\Program Files\Support.com\backup\Co\cookies.txt\45395_50ab37fc0_/cookies.txt -> Spyware.Cookie.Atdmt : Error during cleaning
:mozilla.46:C:\Program Files\Support.com\backup\Co\cookies.txt\45395_50ab37fc0_/cookies.txt -> Spyware.Cookie.Paypopup : Error during cleaning
:mozilla.47:C:\Program Files\Support.com\backup\Co\cookies.txt\45395_50ab37fc0_/cookies.txt -> Spyware.Cookie.Paypopup : Error during cleaning
:mozilla.48:C:\Program Files\Support.com\backup\Co\cookies.txt\45395_50ab37fc0_/cookies.txt -> Spyware.Cookie.Paypopup : Error during cleaning
:mozilla.49:C:\Program Files\Support.com\backup\Co\cookies.txt\45395_50ab37fc0_/cookies.txt -> Spyware.Cookie.Paypopup : Error during cleaning
:mozilla.50:C:\Program Files\Support.com\backup\Co\cookies.txt\45395_50ab37fc0_/cookies.txt -> Spyware.Cookie.Paypopup : Error during cleaning
:mozilla.64:C:\Program Files\Support.com\backup\Co\cookies.txt\45395_50ab37fc0_/cookies.txt -> Spyware.Cookie.Trafficmp : Error during cleaning
:mozilla.65:C:\Program Files\Support.com\backup\Co\cookies.txt\45395_50ab37fc0_/cookies.txt -> Spyware.Cookie.Trafficmp : Error during cleaning
:mozilla.66:C:\Program Files\Support.com\backup\Co\cookies.txt\45395_50ab37fc0_/cookies.txt -> Spyware.Cookie.Trafficmp : Error during cleaning
:mozilla.67:C:\Program Files\Support.com\backup\Co\cookies.txt\45395_50ab37fc0_/cookies.txt -> Spyware.Cookie.Trafficmp : Error during cleaning
:mozilla.68:C:\Program Files\Support.com\backup\Co\cookies.txt\45395_50ab37fc0_/cookies.txt -> Spyware.Cookie.Trafficmp : Error during cleaning
:mozilla.69:C:\Program Files\Support.com\backup\Co\cookies.txt\45395_50ab37fc0_/cookies.txt -> Spyware.Cookie.Trafficmp : Error during cleaning
:mozilla.70:C:\Program Files\Support.com\backup\Co\cookies.txt\45395_50ab37fc0_/cookies.txt -> Spyware.Cookie.Trafficmp : Error during cleaning
:mozilla.73:C:\Program Files\Support.com\backup\Co\cookies.txt\45395_50ab37fc0_/cookies.txt -> Spyware.Cookie.Fastclick : Error during cleaning
:mozilla.74:C:\Program Files\Support.com\backup\Co\cookies.txt\45395_50ab37fc0_/cookies.txt -> Spyware.Cookie.Fastclick : Error during cleaning
:mozilla.75:C:\Program Files\Support.com\backup\Co\cookies.txt\45395_50ab37fc0_/cookies.txt -> Spyware.Cookie.Fastclick : Error during cleaning
:mozilla.78:C:\Program Files\Support.com\backup\Co\cookies.txt\45395_50ab37fc0_/cookies.txt -> Spyware.Cookie.Advertising : Error during cleaning
:mozilla.79:C:\Program Files\Support.com\backup\Co\cookies.txt\45395_50ab37fc0_/cookies.txt -> Spyware.Cookie.Advertising : Error during cleaning
:mozilla.81:C:\Program Files\Support.com\backup\Co\cookies.txt\45395_50ab37fc0_/cookies.txt -> Spyware.Cookie.Advertising : Error during cleaning
:mozilla.82:C:\Program Files\Support.com\backup\Co\cookies.txt\45395_50ab37fc0_/cookies.txt -> Spyware.Cookie.Advertising : Error during cleaning
:mozilla.84:C:\Program Files\Support.com\backup\Co\cookies.txt\45395_50ab37fc0_/cookies.txt -> Spyware.Cookie.Advertising : Error during cleaning
:mozilla.85:C:\Program Files\Support.com\backup\Co\cookies.txt\45395_50ab37fc0_/cookies.txt -> Spyware.Cookie.Advertising : Error during cleaning
:mozilla.87:C:\Program Files\Support.com\backup\Co\cookies.txt\45395_50ab37fc0_/cookies.txt -> Spyware.Cookie.Advertising : Error during cleaning
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP139\A0031063.pif:azasyx -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP139\A0031063.pif:llxqtp -> Trojan.Feat.2 : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP139\A0031063.pif:pjoio -> TrojanDownloader.Agent.lz : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP139\A0031063.pif:tkekzf -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP139\A0031063.pif:tzsxsh -> Trojan.Feat.2 : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP139\A0031067.pif:azasyx -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP139\A0031067.pif:llxqtp -> Trojan.Feat.2 : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP139\A0031067.pif:pjoio -> TrojanDownloader.Agent.lz : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP139\A0031067.pif:tkekzf -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP139\A0031067.pif:tzsxsh -> Trojan.Feat.2 : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP139\A0031078.pif:azasyx -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP139\A0031078.pif:llxqtp -> Trojan.Feat.2 : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP139\A0031078.pif:pjoio -> TrojanDownloader.Agent.lz : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP139\A0031078.pif:tkekzf -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP139\A0031078.pif:tzsxsh -> Trojan.Feat.2 : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP140\A0031086.pif:azasyx -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP140\A0031086.pif:llxqtp -> Trojan.Feat.2 : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP140\A0031086.pif:pjoio -> TrojanDownloader.Agent.lz : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP140\A0031086.pif:tkekzf -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP140\A0031086.pif:tzsxsh -> Trojan.Feat.2 : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP140\A0032076.pif:azasyx -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP140\A0032076.pif:llxqtp -> Trojan.Feat.2 : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP140\A0032076.pif:pjoio -> TrojanDownloader.Agent.lz : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP140\A0032076.pif:tkekzf -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP140\A0032076.pif:tzsxsh -> Trojan.Feat.2 : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP140\A0033076.pif:azasyx -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP140\A0033076.pif:llxqtp -> Trojan.Feat.2 : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP140\A0033076.pif:pjoio -> TrojanDownloader.Agent.lz : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP140\A0033076.pif:tkekzf -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP140\A0033076.pif:tzsxsh -> Trojan.Feat.2 : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP140\A0033084.pif:azasyx -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP140\A0033084.pif:llxqtp -> Trojan.Feat.2 : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP140\A0033084.pif:tkekzf -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP140\A0033084.pif:tzsxsh -> Trojan.Feat.2 : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP140\A0033093.pif:azasyx -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP140\A0033093.pif:llxqtp -> Trojan.Feat.2 : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP140\A0033093.pif:pjoio -> TrojanDownloader.Agent.lz : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP140\A0033093.pif:tkekzf -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP140\A0033093.pif:tzsxsh -> Trojan.Feat.2 : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP141\A0033100.pif:azasyx -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP141\A0033100.pif:llxqtp -> Trojan.Feat.2 : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP141\A0033100.pif:pjoio -> TrojanDownloader.Agent.lz : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP141\A0033100.pif:tkekzf -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP141\A0033100.pif:tzsxsh -> Trojan.Feat.2 : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP141\A0033146.dll -> Spyware.SearchPage : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP141\A0033147.dll -> TrojanDownloader.Agent.lz : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP141\A0033148.dll -> Spyware.SearchPage : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP141\A0033152.exe -> Spyware.Hijacker.Generic : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP141\A0033166.dll -> Spyware.SearchPage : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP199\A0062027.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP199\A0062036.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP199\A0062053.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP199\A0063028.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP199\A0063029.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP199\A0063030.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP199\A0063046.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP199\A0063062.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP200\A0063080.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP200\A0063086.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP200\A0063105.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP200\A0064088.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP200\A0064090.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP200\A0064091.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP200\A0064103.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP200\A0064115.exe -> TrojanDownloader.Intexp.c : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP200\A0064120.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP200\A0064142.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP201\A0064145.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP201\A0064162.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP201\A0064169.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP201\A0064170.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP201\A0064171.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP201\A0064188.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP202\A0064191.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP202\A0064197.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP202\A0064198.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP202\A0064199.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP202\A0064204.exe -> Trojan.Imiserv.c : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP202\A0064220.DLL -> Spyware.ClearSearch : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP202\A0064222.exe -> Spyware.ClearSearch : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP202\A0064226.DLL -> Spyware.ClearSearch : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP202\A0064227.EXE -> Spyware.ClearSearch : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP202\A0064238.exe -> TrojanDropper.Small.ky : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP202\A0064243.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP202\A0064251.exe -> Adware.eZula : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP202\A0064255.exe -> Adware.eZula : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP202\A0064256.dll -> Adware.eZula : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP202\A0064257.dll -> Adware.eZula : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP202\A0064262.dll -> Spyware.SuperBar : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP202\A0064277.exe -> Spyware.WebHancer : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP202\A0064279.dll -> Spyware.WebHancer : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP202\A0064282.exe -> Spyware.WebHancer : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP202\A0064285.exe -> Adware.SaveNow : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP202\A0064292.exe -> Spyware.Hijacker.Generic : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP202\A0064328.exe -> Spyware.WindowEnhancer : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP202\A0064381.exe -> TrojanDownloader.Small.hs : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP202\A0064385.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP202\A0064387.dll -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP202\A0064398.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP202\A0064429.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP202\A0064530.exe -> TrojanDownloader.TSUpdate.k : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP202\A0064536.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP202\A0064537.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP202\A0064546.dll -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP202\A0064547.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP203\A0065172.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP203\A0065194.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP203\A0065239.dll -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP203\A0065240.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP203\A0065277.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP203\A0065283.dll -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP203\A0065284.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP203\A0065304.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP203\A0065305.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP203\A0065306.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP203\A0066300.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP203\A0066302.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{4C40F4F1-2BC9-4471-8F1D-ABBCD47214AA}\RP203\A0066311.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP49\A0009869.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP49\A0009932.ocx -> Spyware.Delfin : Cleaned with backup
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP51\A0010221.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP55\A0013939.DLL -> Spyware.ClearSearch : Cleaned with backup
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP55\A0013958.DLL -> Spyware.ClearSearch : Cleaned with backup
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP55\A0013977.DLL -> Spyware.ClearSearch : Cleaned with backup
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP55\A0013995.DLL -> Spyware.ClearSearch : Cleaned with backup
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP55\A0014014.EXE -> Spyware.ClearSearch : Cleaned with backup
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP55\A0014019.DLL -> Spyware.ClearSearch : Cleaned with backup
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP56\A0014032.EXE -> Spyware.ClearSearch : Cleaned with backup
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP56\A0014033.DLL -> Spyware.ClearSearch : Cleaned with backup
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP56\A0014034.exe -> Spyware.ClearSearch : Cleaned with backup
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP56\A0014051.EXE -> Spyware.ClearSearch : Cleaned with backup
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP56\A0014053.DLL -> Spyware.ClearSearch : Cleaned with backup
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP56\A0014054.exe -> Spyware.ClearSearch : Cleaned with backup
C:\WINDOWS\Downloaded Program Files\m67m.ocx -> Spyware.MediaMotor : Cleaned with backup
C:\WINDOWS\dsr.exe -> Trojan.Imiserv.c : Cleaned with backup
C:\WINDOWS\imGiant.dll -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\imgthin.exe -> TrojanDownloader.VB.if : Cleaned with backup
C:\WINDOWS\Nail.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\SYSTEM32:cpaa.dll -> TrojanDownloader.Small : Cleaned with backup
C:\WINDOWS\SYSTEM32\ca2.dll -> Spyware.SearchIt : Cleaned with backup
C:\WINDOWS\SYSTEM32\DrPMon.dll -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\SYSTEM32\dyansn.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\SYSTEM32\KASPERAntivirus.exe -> Backdoor.Spyboter : Cleaned with backup
C:\WINDOWS\SYSTEM32\sfi2.dll -> Spyware.SearchIt : Cleaned with backup
C:\WINDOWS\SYSTEM32\sysdrc.dll -> TrojanDropper.Agent.cy : Cleaned with backup
C:\WINDOWS\_default(10).pif:azasyx -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default(10).pif:llxqtp -> Trojan.Feat.2 : Cleaned with backup
C:\WINDOWS\_default(10).pif:pjoio -> TrojanDownloader.Agent.lz : Cleaned with backup
C:\WINDOWS\_default(10).pif:tkekzf -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default(10).pif:tzsxsh -> Trojan.Feat.2 : Cleaned with backup
C:\WINDOWS\_default(11).pif:azasyx -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default(11).pif:llxqtp -> Trojan.Feat.2 : Cleaned with backup
C:\WINDOWS\_default(11).pif:pjoio -> TrojanDownloader.Agent.lz : Cleaned with backup
C:\WINDOWS\_default(11).pif:tkekzf -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default(11).pif:tzsxsh -> Trojan.Feat.2 : Cleaned with backup
C:\WINDOWS\_default(2).pif:azasyx -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default(2).pif:llxqtp -> Trojan.Feat.2 : Cleaned with backup
C:\WINDOWS\_default(2).pif:pjoio -> TrojanDownloader.Agent.lz : Cleaned with backup
C:\WINDOWS\_default(2).pif:tkekzf -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default(2).pif:tzsxsh -> Trojan.Feat.2 : Cleaned with backup
C:\WINDOWS\_default(3).pif:azasyx -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default(3).pif:llxqtp -> Trojan.Feat.2 : Cleaned with backup
C:\WINDOWS\_default(3).pif:pjoio -> TrojanDownloader.Agent.lz : Cleaned with backup
C:\WINDOWS\_default(3).pif:tkekzf -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default(3).pif:tzsxsh -> Trojan.Feat.2 : Cleaned with backup
C:\WINDOWS\_default(4).pif:azasyx -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default(4).pif:llxqtp -> Trojan.Feat.2 : Cleaned with backup
C:\WINDOWS\_default(4).pif:tkekzf -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default(4).pif:tzsxsh -> Trojan.Feat.2 : Cleaned with backup
C:\WINDOWS\_default(5).pif:azasyx -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default(5).pif:llxqtp -> Trojan.Feat.2 : Cleaned with backup
C:\WINDOWS\_default(5).pif:pjoio -> TrojanDownloader.Agent.lz : Cleaned with backup
C:\WINDOWS\_default(5).pif:tkekzf -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default(5).pif:tzsxsh -> Trojan.Feat.2 : Cleaned with backup
C:\WINDOWS\_default(6).pif:azasyx -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default(6).pif:llxqtp -> Trojan.Feat.2 : Cleaned with backup
C:\WINDOWS\_default(6).pif:pjoio -> TrojanDownloader.Agent.lz : Cleaned with backup
C:\WINDOWS\_default(6).pif:tkekzf -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default(6).pif:tzsxsh -> Trojan.Feat.2 : Cleaned with backup
C:\WINDOWS\_default(7).pif:azasyx -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default(7).pif:llxqtp -> Trojan.Feat.2 : Cleaned with backup
C:\WINDOWS\_default(7).pif:pjoio -> TrojanDownloader.Agent.lz : Cleaned with backup
C:\WINDOWS\_default(7).pif:tkekzf -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default(7).pif:tzsxsh -> Trojan.Feat.2 : Cleaned with backup
C:\WINDOWS\_default(8).pif:azasyx -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default(8).pif:llxqtp -> Trojan.Feat.2 : Cleaned with backup
C:\WINDOWS\_default(8).pif:pjoio -> TrojanDownloader.Agent.lz : Cleaned with backup
C:\WINDOWS\_default(8).pif:tkekzf -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default(8).pif:tzsxsh -> Trojan.Feat.2 : Cleaned with backup
C:\WINDOWS\_default(9).pif:azasyx -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default(9).pif:llxqtp -> Trojan.Feat.2 : Cleaned with backup
C:\WINDOWS\_default(9).pif:pjoio -> TrojanDownloader.Agent.lz : Cleaned with backup
C:\WINDOWS\_default(9).pif:tkekzf -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\_default(9).pif:tzsxsh -> Trojan.Feat.2 : Cleaned with backup
::Report End
and here's the hjt log. Thanx
Logfile of HijackThis v1.99.1
Scan saved at 1:07:53 PM, on 7/30/2005
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\ewido\security suite\ewidoctrl.exe
C:\Program Files\ewido\security suite\ewidoguard.exe
C:\WINDOWS\Explorer.exe
C:\Program Files\BroadJump\Client Foundation\CFD.exe
C:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb03.exe
C:\WINDOWS\System32\hkcmd.exe
C:\Program Files\Support.com\bin\tgcmd.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
C:\Program Files\SealedMedia\sealmon.exe
C:\WINDOWS\System32\wuauclt.exe
C:\WINDOWS\System32\wuauclt.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Documents and Settings\Edward\aim.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\HijackThis.exe
F2 - REG:system.ini: Shell=Explorer.exe C:\WINDOWS\Nail.exe
O2 - BHO: Band Class - {00F1D395-4744-40f0-A611-980F61AE2C59} - C:\WINDOWS\dsr.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O4 - HKLM\..\Run: [BJCFD] C:\Program Files\BroadJump\Client Foundation\CFD.exe
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb03.exe
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
O4 - HKLM\..\Run: [tgcmd] "C:\Program Files\Support.com\bin\tgcmd.exe" /server /startmonitor /deaf
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [StorageGuard] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [ViewMgr] C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
O4 - HKLM\..\Run: [Kasper Antivirus] KASPERANTIVIRUS.EXE
O4 - HKLM\..\Run: [sealmon] C:\Program Files\SealedMedia\sealmon.exe
O4 - HKLM\..\Run: [webHancer Survey Companion] "C:\Program Files\webHancer\Programs\whSurvey.exe"
O4 - HKLM\..\Run: [Dinst] C:\WINDOWS\dinst.exe
O4 - HKLM\..\Run: [kkkfbi] c:\windows\system32\mwtcidz.exe r
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [AIM] C:\Documents and Settings\Edward\aim.exe -cnetwait.odl
O4 - HKCU\..\Run: [DR_S] C:\Program Files\DR_S\DR_S.exe
O4 - HKCU\..\Run: [boeline] C:\WINDOWS\boeline.exe
O4 - HKCU\..\Run: [zwfi] C:\PROGRA~1\COMMON~1\zwfi\zwfim.exe
O4 - Global Startup: Forget Me Not.lnk = C:\Program Files\Broderbund\AG CreataCard\AGRemind.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O8 - Extra context menu item: &AIM Search - res://C:\Program Files\AIM Toolbar\AIMBar.dll/aimsearch.htm
O8 - Extra context menu item: &AOL Toolbar Search - res://c:\program files\aol\aol toolbar 2.0\aoltbhtml.dll/search.html
O9 - Extra button: AOL Toolbar - {3369AF0D-62E9-4bda-8103-B4C75499B578} - C:\Program Files\AOL\AOL Toolbar 2.0\aoltb.dll
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Documents and Settings\Edward\aim.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O9 - Extra 'Tools' menuitem: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O16 - DPF: {33E54F7F-561C-49E6-929B-D7E76D3AFEB1} (Pool Control) -
http://www.worldwinner.com/games/v45/pool/pool.cab
O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} (RdxIE Class) -
http://software-dl.real.com/25b51b8642f8e2…ip/RdxIE601.cab
O16 - DPF: {8A94C905-FF9D-43B6-8708-F0F22D22B1CB} (Wwlaunch Control) - http://www.worldwinner.com/games/shared/wwlaunch.cab
O16 - DPF: {E6EB803E-DD89-11D3-80C4-0050DA2E09D0} (LightSurfUploadCtl Class) -
http://prints.picturecenter.kodak.com/acti…loadControl.cab
O16 - DPF: {FA3662C3-B8E8-11D6-A667-0010B556D978} (IWinAmpActiveX Class) -
http://cdn.digitalcity.com/_media/dalaillama/ampx.cab
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido\security suite\ewidoguard.exe
O23 - Service: McAfee SecurityCenter Update Manager (mcupdmgr.exe) - Unknown owner - C:\PROGRA~1\McAfee.com\Agent\mcupdmgr.exe (file missing)