Hello pskelley,
Thanks for the quick response, I really appreciate the help you guys provide. I will indeed take care of getting all the critical updates you suggested ASAP.
OK, back to the business at hand. I went through the steps as you laid out. Here is the new HJT log and the Ewido scan results.
Thanks again for all the help.
Teri
Logfile of HijackThis v1.99.1
Scan saved at 12:13:53 AM, on 8/2/2005
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2600.0000)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd.exe
C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe
C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
C:\Program Files\Java\jre1.5.0_02\bin\jucheck.exe
C:\Program Files\Zero Knowledge\Freedom\Freedom.exe
C:\Program Files\Sunbelt Software\CounterSpy Client\sunasDtServ.exe
C:\Program Files\Sunbelt Software\CounterSpy Client\sunasServ.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\WINDOWS\System32\mshta.exe
C:\Program Files\Microsoft AntiSpyware\gcasServ.exe
C:\Program Files\QuickTime\qttask.exe
C:\WINDOWS\System32\ctfmon.exe
C:\Program Files\ATI Multimedia\RemCtrl\ATIX10.exe
C:\WINDOWS\System32\rundll32.exe
C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Command Software\dvpapi.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Microsoft Office\OFFICE11\OUTLOOK.EXE
C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE
C:\WINDOWS\System32\wuauclt.exe
C:\PROGRA~1\MOZILL~1\FIREFOX.EXE
C:\Program Files\ewido\security suite\ewidoguard.exe
C:\Program Files\ewido\security suite\ewidoctrl.exe
C:\Documents and Settings\lAsT_wInNeR333\My Documents\filelib\Hijack This\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.adelphia.net/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.adelphia.net
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=localhost:8080
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Pop-Up Blocker BHO - {3C060EA2-E6A9-4E49-A530-D4657B8C449A} - C:\Program Files\Zero Knowledge\Freedom\pkR.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Form Filler BHO - {56071E0D-C61B-11D3-B41C-00E02927A304} - C:\Program Files\Zero Knowledge\Freedom\FreeBHOR.dll
O2 - BHO: AOL Toolbar Launcher - {7C554162-8CB7-45A4-B8F4-8EA1C75885F9} - C:\Program Files\AOL\AOL Toolbar 2.0\aoltb.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: AOL Toolbar - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:\Program Files\AOL\AOL Toolbar 2.0\aoltb.dll
O4 - HKLM\..\Run: [HP Software Update] "C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd.exe"
O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [DeviceDiscovery] C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE NvQTwk,NvCplDaemon initialize
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb09.exe
O4 - HKLM\..\Run: [Freedom] C:\Program Files\Zero Knowledge\Freedom\Freedom.exe
O4 - HKLM\..\Run: [sunasDTServ] C:\Program Files\Sunbelt Software\CounterSpy Client\sunasDtServ.exe
O4 - HKLM\..\Run: [sunasServ] C:\Program Files\Sunbelt Software\CounterSpy Client\sunasServ.exe
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft AntiSpyware\gcasServ.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [ATI Remote Control] C:\Program Files\ATI Multimedia\RemCtrl\ATIX10.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [SpyBlocs] C:\Program Files\eBlocs\SpyBlocs\GLF1A.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: &AOL Toolbar Search - res://c:\program files\aol\aol toolbar 2.0\aoltbhtml.dll/search.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Refresh Pa&ge with Full Quality - C:\Program Files\EarthLink TotalAccess\Accelerator\\pac-page.html
O8 - Extra context menu item: Refresh Pi&cture with Full Quality - C:\Program Files\EarthLink TotalAccess\Accelerator\\pac-image.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra button: AOL Toolbar - {3369AF0D-62E9-4bda-8103-B4C75499B578} - C:\Program Files\AOL\AOL Toolbar 2.0\aoltb.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2004061…all/xscan53.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://www.pandasoftware.com/activescan/as5/asinst.cab
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: DvpApi (dvpapi) - Command Software Systems, Inc. - C:\Program Files\Common Files\Command Software\dvpapi.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido\security suite\ewidoguard.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: X10 Device Network Service (x10nets) - Unknown owner - C:\PROGRA~1\ATIMUL~1\RemCtrl\x10nets.exe (file missing)
———————————————————
ewido security suite - Scan report
———————————————————
+ Created on: 12:02:25 AM, 8/2/2005
+ Report-Checksum: 8811B457
+ Scan result:
HKLM\SOFTWARE\Classes\CLSID\{4D1C4E81-A32A-416b-BCDB-33B3EF3617D3} -> Spyware.Need2Find : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{4D1C4E89-A32A-416b-BCDB-33B3EF3617D3} -> Spyware.Need2Find : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{4D1C4E8B-A32A-416b-BCDB-33B3EF3617D3} -> Spyware.Need2Find : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{630D6140-04C5-4db0-B27A-020D766FF09B} -> Spyware.Need2Find : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{4D1C4E8A-A32A-416B-BCDB-33B3EF3617D3} -> Spyware.Need2Find : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{4D1C4E8C-A32A-416B-BCDB-33B3EF3617D3} -> Spyware.Need2Find : Cleaned with backup
HKLM\SOFTWARE\Classes\Need2FindBar.SettingsPlugin -> Spyware.Need2Find : Cleaned with backup
HKLM\SOFTWARE\Classes\Need2FindBar.SettingsPlugin\CLSID -> Spyware.Need2Find : Cleaned with backup
HKLM\SOFTWARE\Classes\Need2FindBar.SettingsPlugin\CurVer -> Spyware.Need2Find : Cleaned with backup
HKLM\SOFTWARE\Classes\Need2FindBar.ToolbarPlugin -> Spyware.Need2Find : Cleaned with backup
HKLM\SOFTWARE\Classes\Need2FindBar.ToolbarPlugin\CLSID -> Spyware.Need2Find : Cleaned with backup
HKLM\SOFTWARE\Classes\Need2FindBar.ToolbarPlugin\CurVer -> Spyware.Need2Find : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\ins -> Spyware.WebRebates : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Need2FindBar Uninstall -> Spyware.Need2Find : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\DisplayUtility -> Spyware.Delfin : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Need2FindBar Uninstall -> Spyware.Need2Find : Cleaned with backup
HKLM\SOFTWARE\Mvu -> Spyware.Delfin : Cleaned with backup
HKLM\SOFTWARE\Need2Find -> Spyware.Need2Find : Cleaned with backup
HKLM\SOFTWARE\Need2Find\bar -> Spyware.Need2Find : Cleaned with backup
HKLM\SOFTWARE\Need2Find\bar\Partner -> Spyware.Need2Find : Cleaned with backup
HKU\S-1-5-21-1547161642-211168765T-839522115-1003\Software\Mvu -> Spyware.Delfin : Cleaned with backup
HKU\S-1-5-21-1547161642-2111687655-839522115-1003\Software\Need2Find -> Spyware.Need2Find : Cleaned with backup
HKU\S-1-5-21-1547161642-2111687655-839522115-1003\Software\Need2Find\bar -> Spyware.Need2Find : Cleaned with backup
C:\Documents and Settings\lAsT_wInNeR333\My Documents\MC3DE\[PC] - Midnight Club 3 Crack.exe -> TrojanDropper.Delf.kd : Cleaned with backup
C:\Documents and Settings\lAsT_wInNeR333\My Documents\Mozilla Downloads\SmileyCentralFFSetup2.0.3.26.exe -> Spyware.MyWebSearch : Cleaned with backup
:mozilla.74:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.75:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.76:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.77:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.82:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.83:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.84:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.104:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Burstnet : Cleaned with backup
:mozilla.105:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.106:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.107:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.108:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.109:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.110:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.119:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.120:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.136:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.137:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.138:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.139:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.140:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.141:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.142:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.143:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.144:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.145:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.146:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.147:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.296:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Revenue : Cleaned with backup
:mozilla.309:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.310:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.311:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.312:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.317:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.318:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.319:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.320:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.321:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.322:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.323:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.324:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.325:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.326:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.337:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Trafic : Cleaned with backup
:mozilla.344:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Clickzs : Cleaned with backup
:mozilla.345:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Clickzs : Cleaned with backup
:mozilla.412:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.413:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.414:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.415:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.416:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.417:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.418:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.426:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Counted : Cleaned with backup
:mozilla.430:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.445:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Sitestat : Cleaned with backup
:mozilla.446:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Sitestat : Cleaned with backup
:mozilla.466:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.471:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.472:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.473:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.476:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Onestat : Cleaned with backup
:mozilla.477:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Onestat : Cleaned with backup
:mozilla.524:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Burstnet : Cleaned with backup
:mozilla.555:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Googleadservices : Cleaned with backup
:mozilla.556:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Googleadservices : Cleaned with backup
:mozilla.557:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Googleadservices : Cleaned with backup
:mozilla.558:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Googleadservices : Cleaned with backup
:mozilla.559:C:\Documents and Settings\lAsT_wInNeR333\Application Data\Mozilla\Firefox\Profiles\k28gegir.default\cookies.txt -> Spyware.Cookie.Googleadservices : Cleaned with backup
C:\Program Files\Common Files\Uninstall Information\RemoveDisplayUtility.exe -> Spyware.Delfin : Cleaned with backup
C:\Program Files\Mozilla Firefox\plugins\NPNd2fn.dll -> Spyware.MyWebSearch : Cleaned with backup
C:\Program Files\Mozilla Firefox\plugins\NPMyGlSh.dll -> Spyware.MyWebSearch : Cleaned with backup
C:\Program Files\Mozilla Firefox\plugins\NPMyWebS.dll -> Spyware.MyWebSearch : Cleaned with backup
C:\Program Files\Need2Find\bar\2.bin\N2PLUGIN.DLL -> Spyware.MyWebSearch : Cleaned with backup
C:\Program Files\Need2Find\bar\2.bin\NPND2FN.DLL -> Spyware.MyWebSearch : Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\F64BCCDE-C9A2-4306-907C-056D33\27058321-27F2-4ABC-93EC-E75532 -> Spyware.Altnet : Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\F64BCCDE-C9A2-4306-907C-056D33\B0F6C7E1-8884-4997-A55C-00D710 -> Spyware.Altnet : Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\11DE83B5-801B-4BD7-99A7-5A677E\3963D629-1372-4279-AEF1-399717 -> Spyware.TopMoxie : Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\11DE83B5-801B-4BD7-99A7-5A677E\66846C02-E134-4486-8123-47F9E7 -> Spyware.TopMoxie : Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\11DE83B5-801B-4BD7-99A7-5A677E\DFE25C9D-4788-49EA-A732-F95896 -> Spyware.WebRebates : Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\11DE83B5-801B-4BD7-99A7-5A677E\9B94CCD8-73A8-4784-BA8B-F3F467 -> Spyware.WebRebates : Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\05390243-6577-4951-ABF1-3C77C3\CB9DA13A-B8A4-478C-810A-C2DA96 -> Spyware.Delfin : Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\81A67B0B-B765-4C60-8B8E-7FA662\82984E1C-4E5A-4864-8323-088F62 -> Spyware.Delfin : Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\1E620087-8F9A-4801-8597-2FEC14\E716CA05-C1FF-4CC1-A8DF-540494 -> Spyware.UCmore : Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\1E620087-8F9A-4801-8597-2FEC14\695DED0E-2BAE-49BA-A766-5B9B8D -> Spyware.UCmore : Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\DE27805E-63BA-49A4-9DFF-4BAAFD\D8A8670F-FEA5-4DAF-B01F-0DC55F -> Spyware.RXBar : Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\9435C8C2-99D0-4D15-83D1-69741F\C09B8F43-D9C8-40FE-A583-6EA309 -> Spyware.UCmore : Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\9435C8C2-99D0-4D15-83D1-69741F\1DF80856-F298-4807-BA74-CA3C16 -> Spyware.UCmore : Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\EE63D09A-A0C0-49DC-8857-118AAB\3271AC42-9B7C-485C-8783-7BC59B -> Spyware.P2PNetworking : Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\EE63D09A-A0C0-49DC-8857-118AAB\C887109A-480B-4845-847F-B18556 -> Spyware.P2PNetworking : Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\EE63D09A-A0C0-49DC-8857-118AAB\D7A7360C-59CE-47B4-AB1F-841BFD -> Spyware.Altnet : Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\492FBD4B-BB34-4E6F-8746-B2F5EF\B5E5F70C-C2BC-4286-9C43-336EBB -> Spyware.P2PNetworking : Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\492FBD4B-BB34-4E6F-8746-B2F5EF\A0C98CF4-4415-4879-A5F1-6122D6 -> Spyware.P2PNetworking : Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\492FBD4B-BB34-4E6F-8746-B2F5EF\84063BD8-339A-4E3A-819B-FBDF2F -> Spyware.P2PNetworking : Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\2B87ADDF-BA09-4579-8A37-C1AEDF\38A75798-8A7E-430F-8B6C-493C60 -> Spyware.NewDotNet : Cleaned with backup
C:\Program Files\winupdates\a.zip/Setup.exe -> Worm.VB.an : Cleaned with backup
C:\Program Files\MyGlobalSearch\bar\1.bin\M9PLUGIN.DLL -> Spyware.MyWebSearch : Cleaned with backup
C:\Program Files\MyGlobalSearch\bar\1.bin\NPMYGLSH.DLL -> Spyware.MyWebSearch : Cleaned with backup
C:\Program Files\Sunbelt Software\CounterSpy Client\Quarantine\4E6BCBB6-42FB-47E8-B98F-ABC272\E98CA843-082F-4E36-970A-0AAC61 -> Spyware.WildTangent : Cleaned with backup
C:\Program Files\Sunbelt Software\CounterSpy Client\Quarantine\4E6BCBB6-42FB-47E8-B98F-ABC272\CC2B70D1-536F-4C1B-9D4A-2203AF -> Spyware.WildTangent : Cleaned with backup
C:\Program Files\Sunbelt Software\CounterSpy Client\Quarantine\699ADB71-FA86-4365-9AD9-078516\BEF16CFF-076E-4495-AE9E-603826 -> Spyware.WildTangent : Cleaned with backup
C:\System Volume Information\_restore{76145693-5821-40D2-BAB5-2DCA86A9A723}\RP5\A0000241.DLL -> Spyware.MySearch : Cleaned with backup
C:\System Volume Information\_restore{76145693-5821-40D2-BAB5-2DCA86A9A723}\RP31\A0008139.exe -> Spyware.Altnet : Cleaned with backup
C:\System Volume Information\_restore{76145693-5821-40D2-BAB5-2DCA86A9A723}\RP31\A0008140.exe -> Spyware.Altnet : Cleaned with backup
C:\System Volume Information\_restore{76145693-5821-40D2-BAB5-2DCA86A9A723}\RP31\A0008141.exe -> Spyware.Altnet : Cleaned with backup
C:\System Volume Information\_restore{76145693-5821-40D2-BAB5-2DCA86A9A723}\RP31\A0008142.exe -> Spyware.Altnet : Cleaned with backup
C:\System Volume Information\_restore{76145693-5821-40D2-BAB5-2DCA86A9A723}\RP31\A0008143.dll -> Spyware.Altnet : Cleaned with backup
C:\System Volume Information\_restore{76145693-5821-40D2-BAB5-2DCA86A9A723}\RP31\A0008144.dll -> Spyware.Altnet : Cleaned with backup
C:\System Volume Information\_restore{76145693-5821-40D2-BAB5-2DCA86A9A723}\RP31\A0008146.dll -> Spyware.Altnet : Cleaned with backup
C:\System Volume Information\_restore{76145693-5821-40D2-BAB5-2DCA86A9A723}\RP31\A0008147.dll -> Spyware.Altnet : Cleaned with backup
C:\System Volume Information\_restore{76145693-5821-40D2-BAB5-2DCA86A9A723}\RP31\A0008148.dll -> Spyware.Altnet : Cleaned with backup
C:\System Volume Information\_restore{76145693-5821-40D2-BAB5-2DCA86A9A723}\RP31\A0008149.dll -> Spyware.Altnet : Cleaned with backup
C:\System Volume Information\_restore{76145693-5821-40D2-BAB5-2DCA86A9A723}\RP31\A0008150.dll -> Adware.BrilliantDigital : Cleaned with backup
C:\System Volume Information\_restore{76145693-5821-40D2-BAB5-2DCA86A9A723}\RP31\A0008178.exe -> Spyware.DelphinMediaViewer : Cleaned with backup
C:\System Volume Information\_restore{76145693-5821-40D2-BAB5-2DCA86A9A723}\RP35\A0014252.dll -> Spyware.WildTangent : Cleaned with backup
C:\System Volume Information\_restore{76145693-5821-40D2-BAB5-2DCA86A9A723}\RP35\A0014279.dll -> Spyware.WildTangent : Cleaned with backup
C:\System Volume Information\_restore{76145693-5821-40D2-BAB5-2DCA86A9A723}\RP38\A0015491.dll -> Spyware.WildTangent : Cleaned with backup
C:\System Volume Information\_restore{76145693-5821-40D2-BAB5-2DCA86A9A723}\RP38\A0015517.dll -> Spyware.WildTangent : Cleaned with backup
C:\System Volume Information\_restore{76145693-5821-40D2-BAB5-2DCA86A9A723}\RP51\A0020908.exe -> TrojanDownloader.IstBar.kc : Cleaned with backup
C:\System Volume Information\_restore{76145693-5821-40D2-BAB5-2DCA86A9A723}\RP51\A0020909.exe -> TrojanDownloader.IstBar.kc : Cleaned with backup
C:\System Volume Information\_restore{76145693-5821-40D2-BAB5-2DCA86A9A723}\RP51\A0022078.exe -> Trojan.Pakes : Cleaned with backup
C:\System Volume Information\_restore{76145693-5821-40D2-BAB5-2DCA86A9A723}\RP51\A0022094.exe -> Spyware.ClearSearch : Cleaned with backup
C:\System Volume Information\_restore{76145693-5821-40D2-BAB5-2DCA86A9A723}\RP52\A0022096.exe -> Spyware.ClearSearch : Cleaned with backup
C:\System Volume Information\_restore{76145693-5821-40D2-BAB5-2DCA86A9A723}\RP52\A0022117.dll -> Adware.eZula : Cleaned with backup
C:\System Volume Information\_restore{76145693-5821-40D2-BAB5-2DCA86A9A723}\RP52\A0022121.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{76145693-5821-40D2-BAB5-2DCA86A9A723}\RP52\A0022122.vxd -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{76145693-5821-40D2-BAB5-2DCA86A9A723}\RP52\A0022130.dll -> Adware.eZula : Cleaned with backup
C:\System Volume Information\_restore{76145693-5821-40D2-BAB5-2DCA86A9A723}\RP52\A0022191.exe -> Backdoor.Wootbot.z : Cleaned with backup
C:\System Volume Information\_restore{76145693-5821-40D2-BAB5-2DCA86A9A723}\RP52\A0022192.exe -> TrojanDownloader.IstBar.is : Cleaned with backup
C:\System Volume Information\_restore{76145693-5821-40D2-BAB5-2DCA86A9A723}\RP52\A0022197.exe -> TrojanDropper.Agent.hh : Cleaned with backup
C:\System Volume Information\_restore{76145693-5821-40D2-BAB5-2DCA86A9A723}\RP55\A0028274.dll -> Spyware.WildTangent : Cleaned with backup
C:\System Volume Information\_restore{76145693-5821-40D2-BAB5-2DCA86A9A723}\RP57\A0029292.dll -> Spyware.WildTangent : Cleaned with backup
C:\System Volume Information\_restore{76145693-5821-40D2-BAB5-2DCA86A9A723}\RP57\A0029318.dll -> Spyware.WildTangent : Cleaned with backup
C:\System Volume Information\_restore{76145693-5821-40D2-BAB5-2DCA86A9A723}\RP58\A0030025.dll -> Spyware.WildTangent : Cleaned with backup
C:\System Volume Information\_restore{76145693-5821-40D2-BAB5-2DCA86A9A723}\RP58\A0030051.dll -> Spyware.WildTangent : Cleaned with backup
C:\System Volume Information\_restore{76145693-5821-40D2-BAB5-2DCA86A9A723}\RP61\A0031048.dll -> Spyware.WildTangent : Cleaned with backup
C:\System Volume Information\_restore{76145693-5821-40D2-BAB5-2DCA86A9A723}\RP61\A0031074.dll -> Spyware.WildTangent : Cleaned with backup
C:\System Volume Information\_restore{76145693-5821-40D2-BAB5-2DCA86A9A723}\RP64\A0032358.dll -> Spyware.WildTangent : Cleaned with backup
C:\System Volume Information\_restore{76145693-5821-40D2-BAB5-2DCA86A9A723}\RP64\A0032385.dll -> Spyware.WildTangent : Cleaned with backup
C:\System Volume Information\_restore{76145693-5821-40D2-BAB5-2DCA86A9A723}\RP64\A0032405.dll -> Spyware.WildTangent : Cleaned with backup
C:\System Volume Information\_restore{76145693-5821-40D2-BAB5-2DCA86A9A723}\RP65\A0033088.DLL -> Spyware.MyWebSearch : Cleaned with backup
C:\System Volume Information\_restore{76145693-5821-40D2-BAB5-2DCA86A9A723}\RP65\A0033091.SCR -> Spyware.MyWebSearch : Cleaned with backup
C:\System Volume Information\_restore{76145693-5821-40D2-BAB5-2DCA86A9A723}\RP65\A0033092.DLL -> Spyware.MyWebSearch : Cleaned with backup
C:\System Volume Information\_restore{76145693-5821-40D2-BAB5-2DCA86A9A723}\RP65\A0033093.DLL -> Spyware.MyWebSearch : Cleaned with backup
C:\System Volume Information\_restore{76145693-5821-40D2-BAB5-2DCA86A9A723}\RP65\A0033094.EXE -> Spyware.MyWebSearch : Cleaned with backup
C:\System Volume Information\_restore{76145693-5821-40D2-BAB5-2DCA86A9A723}\RP65\A0033096.DLL -> Spyware.Wesbar : Cleaned with backup
C:\System Volume Information\_restore{76145693-5821-40D2-BAB5-2DCA86A9A723}\RP65\A0033097.DLL -> Spyware.MyWebSearch : Cleaned with backup
C:\System Volume Information\_restore{76145693-5821-40D2-BAB5-2DCA86A9A723}\RP65\A0033098.DLL -> Spyware.MyWebSearch : Cleaned with backup
C:\System Volume Information\_restore{76145693-5821-40D2-BAB5-2DCA86A9A723}\RP65\A0033099.DLL -> Spyware.MyWebSearch : Cleaned with backup
C:\System Volume Information\_restore{76145693-5821-40D2-BAB5-2DCA86A9A723}\RP65\A0033100.DLL -> Spyware.MyWebSearch : Cleaned with backup
C:\System Volume Information\_restore{76145693-5821-40D2-BAB5-2DCA86A9A723}\RP65\A0033102.DLL -> Spyware.MyWebSearch : Cleaned with backup
C:\System Volume Information\_restore{76145693-5821-40D2-BAB5-2DCA86A9A723}\RP65\A0033155.dll -> Spyware.Delfin : Cleaned with backup
C:\System Volume Information\_restore{76145693-5821-40D2-BAB5-2DCA86A9A723}\RP65\A0033156.dll -> Backdoor.Dumador.bj : Cleaned with backup
C:\System Volume Information\_restore{76145693-5821-40D2-BAB5-2DCA86A9A723}\RP65\A0033157.EXE -> Spyware.Wesbar : Cleaned with backup
C:\TEMP\CSv16P150.exe -> Spyware.ClearSearch : Cleaned with backup
C:\TEMP\EDowST3.exe -> TrojanDownloader.QDown.z : Cleaned with backup
C:\WINDOWS\system32\vxgame1.exe -> TrojanDropper.Small.wv : Cleaned with backup
C:\WINDOWS\system32\winldra.exe -> Backdoor.Dumador.bk : Cleaned with backup
C:\WINDOWS\system32\latest.exe -> Trojan.Crypt.c : Cleaned with backup
C:\WINDOWS\system32\~update.exe -> Trojan.Crypt.c : Cleaned with backup
C:\WINDOWS\system32\vxh8jkdq2.exe -> Not-A-Virus.Hoax.Renos.a : Cleaned with backup
C:\WINDOWS\system32\vxh8jkdq5.exe -> TrojanDownloader.Small.mx : Cleaned with backup
C:\WINDOWS\system32\vxh8jkdq7.exe -> TrojanDownloader.Small.awa : Cleaned with backup
C:\WINDOWS\system32\f3PSSavr.scr -> Spyware.MyWebSearch : Cleaned with backup
C:\WINDOWS\Temp\tsvcin.exe -> Spyware.Delfin : Cleaned with backup
C:\WINDOWS\sys4235.exe -> Trojan.Crypt.c : Cleaned with backup
C:\WINDOWS\sys4236.exe -> Backdoor.Dumador.bk : Cleaned with backup
C:\WINDOWS\sys4237.exe -> Trojan.Crypt.c : Cleaned with backup
C:\WINDOWS\sys4238.exe -> Backdoor.Dumador.bk : Cleaned with backup
C:\WINDOWS\sys4911.exe -> Trojan.Crypt.c : Cleaned with backup
C:\WINDOWS\sys4912.exe -> Backdoor.Dumador.bk : Cleaned with backup
C:\WINDOWS\sys4915.exe -> Backdoor.Dumador.bk : Cleaned with backup
C:\WINDOWS\sys4917.exe -> Backdoor.Dumador.bk : Cleaned with backup
C:\WINDOWS\sys3159.exe -> Trojan.Crypt.c : Cleaned with backup
C:\WINDOWS\sys320.exe -> Trojan.Crypt.c : Cleaned with backup
C:\WINDOWS\sys321.exe -> Trojan.Crypt.c : Cleaned with backup
C:\WINDOWS\sys4653.exe -> Trojan.Crypt.c : Cleaned with backup
C:\WINDOWS\sys4654.exe -> Trojan.Crypt.c : Cleaned with backup
::Report End