Okay, I followed those instructions and here are the logs from the scans:
———————————————————
ewido security suite - Scan report
———————————————————
+ Created on: 2:44:55 PM, 8/5/2005
+ Report-Checksum: 3BCC72AE
+ Scan result:
HKLM\SOFTWARE\Classes\AppID\BookedSpace.DLL -> Spyware.BookedSpace : Cleaned with backup
HKLM\SOFTWARE\Classes\AppID\{0DC5CD7C-F653-4417-AA43-D457BE3A9622} -> Spyware.BookedSpace : Cleaned with backup
HKLM\SOFTWARE\Classes\BookedSpace.Extension -> Spyware.BookedSpace : Cleaned with backup
HKLM\SOFTWARE\Classes\BookedSpace.Extension\CLSID -> Spyware.BookedSpace : Cleaned with backup
HKLM\SOFTWARE\Classes\BookedSpace.Extension\CurVer -> Spyware.BookedSpace : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{0019C3E2-DD48-4A6D-ABCD-8D32436323D9} -> Spyware.BookedSpace : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{08BEC6AA-49FC-4379-3587-4B21E286C19E} -> Spyware.SBSoft : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{B5AB638F-D76C-415B-A8F2-F3CEAC502212} -> Spyware.AproposMedia : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{BC333116-6EA1-40A1-9D07-ECB192DB8CEA} -> Spyware.AproposMedia : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{05080E6B-A88A-4CFD-8C3D-9B2557670B6E} -> Spyware.BookedSpace : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{BC333116-6EA1-40A1-9D07-ECB192DB8CEA} -> Spyware.AproposMedia : Cleaned with backup
HKLM\SOFTWARE\Classes\TypeLib\{0DC5CD7C-F653-4417-AA43-D457BE3A9622} -> Spyware.BookedSpace : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0019C3E2-DD48-4A6D-ABCD-8D32436323D9} -> Spyware.BookedSpace : Cleaned with backup
HKLM\SYSTEM\CurrentControlSet\Control\Print\Monitors\ZepMon -> Spyware.BetterInternet : Cleaned with backup
HKU\S-1-5-21-2501417715-1956145038-3291962546-1115\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0019C3E2-DD48-4A6D-ABCD-8D32436323D9} -> Spyware.BookedSpace : Cleaned with backup
HKU\S-1-5-21-2501417715-1956145038-3291962546-1115\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AEECBFDA-12FA-4881-BDCE-8C3E1CE4B344} -> Spyware.BargainBuddy : Cleaned with backup
HKU\S-1-5-21-2501417715-1956145038-3291962546-1115\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{CE188402-6EE7-4022-8868-AB25173A3E14} -> Spyware.BargainBuddy : Cleaned with backup
HKU\S-1-5-21-2501417715-1956145038-3291962546-1115\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F4E04583-354E-4076-BE7D-ED6A80FD66DA} -> Spyware.BargainBuddy : Cleaned with backup
HKU\S-1-5-21-2501417715-1956145038-3291962546-1115\Software\WareOut -> TrojanDownloader.Wareout : Cleaned with backup
HKU\S-1-5-21-2501417715-1956145038-3291962546-1115\Software\WareOut\FirstRun -> TrojanDownloader.Wareout : Cleaned with backup
HKU\S-1-5-21-2501417715-1956145038-3291962546-1115\Software\WareOut\Options -> TrojanDownloader.Wareout : Cleaned with backup
HKU\S-1-5-21-2501417715-1956145038-3291962546-1115\Software\WareOut\Registration -> TrojanDownloader.Wareout : Cleaned with backup
[1664] VM_03470000 -> Adware.BetterInternet : Error during cleaning
[1860] C:\WINDOWS\system32\kkdest.dll -> Spyware.Look2Me : Cleaned with backup
[2044] c:\windows\system32\jlqccs.exe -> Adware.BetterInternet : Cleaned with backup
C:\Documents and Settings\All Users\Start Menu\Programs\Startup\ntic.exe -> TrojanDownloader.Qoologic.n : Cleaned with backup
C:\Documents and Settings\amys\Cookies\amys@abetterinternet[2].txt -> Spyware.Cookie.Abetterinternet : Cleaned with backup
C:\Documents and Settings\amys\Cookies\[removed][1].txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
C:\Documents and Settings\amys\Cookies\[removed][1].txt -> Spyware.Cookie.Adjuggler : Cleaned with backup
C:\Documents and Settings\amys\Cookies\amys@yieldmanager[2].txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
C:\Documents and Settings\amys\Cookies\[removed][1].txt -> Spyware.Cookie.Adserver : Cleaned with backup
C:\Documents and Settings\amys\Local Settings\Temp\Cookies\amys@abetterinternet[1].txt -> Spyware.Cookie.Abetterinternet : Cleaned with backup
C:\Documents and Settings\amys\Local Settings\Temp\Cookies\[removed][1].txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
C:\Documents and Settings\amys\Local Settings\Temp\Cookies\amys@centrport[1].txt -> Spyware.Cookie.Centrport : Cleaned with backup
C:\Documents and Settings\amys\Local Settings\Temp\SDF\aurareco.exe -> Adware.BetterInternet : Cleaned with backup
C:\Documents and Settings\amys\Local Settings\Temp\temp.frC1A9\MediaAccess.exe -> Spyware.WinAD : Cleaned with backup
C:\Documents and Settings\amys\Local Settings\Temp\temp.frD40A -> Spyware.WinAD : Cleaned with backup
C:\Documents and Settings\amys\Local Settings\Temporary Internet Files\Content.IE5\414B8RKF\AppWrap[1].exe -> TrojanDropper.Agent.pb : Cleaned with backup
C:\Documents and Settings\amys\Local Settings\Temporary Internet Files\Content.IE5\G7KZELWN\AppWrap[1].exe -> TrojanDropper.Agent.pb : Cleaned with backup
C:\Documents and Settings\amys\Local Settings\Temporary Internet Files\Content.IE5\IL2T8P83\AppWrap[1].exe -> TrojanDropper.Agent.pb : Cleaned with backup
C:\Documents and Settings\amys\Local Settings\Temporary Internet Files\Content.IE5\KTA3KHQN\AppWrap[1].exe -> TrojanDropper.Agent.pb : Cleaned with backup
C:\Program Files\BullsEye Network\bin\adv.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\Program Files\BullsEye Network\bin\adx.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\Program Files\BullsEye Network\bin\bargains.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\Program Files\CashBack -> Spyware.CashBack : Cleaned with backup
C:\Program Files\CashBack\ad.dat -> Spyware.CashBack : Cleaned with backup
C:\Program Files\CashBack\bb_auto_wider.swf -> Spyware.CashBack : Cleaned with backup
C:\Program Files\CashBack\bb_click_wider.swf -> Spyware.CashBack : Cleaned with backup
C:\Program Files\CashBack\bb_welcome.html -> Spyware.CashBack : Cleaned with backup
C:\Program Files\CashBack\bb_welcome1.swf -> Spyware.CashBack : Cleaned with backup
C:\Program Files\CashBack\bin -> Spyware.CashBack : Cleaned with backup
C:\Program Files\CashBack\bin\cashback.exe -> Spyware.CashBack : Cleaned with backup
C:\Program Files\CashBack\bin\cb.exe -> Spyware.CashBack : Cleaned with backup
C:\Program Files\CashBack\bin\flash.exe -> Spyware.CashBack : Cleaned with backup
C:\Program Files\CashBack\blank.gif -> Spyware.CashBack : Cleaned with backup
C:\Program Files\CashBack\icon.gif -> Spyware.CashBack : Cleaned with backup
C:\Program Files\CashBack\logo.gif -> Spyware.CashBack : Cleaned with backup
C:\Program Files\CashBack\template.html -> Spyware.CashBack : Cleaned with backup
C:\Program Files\CashBack\template2.html -> Spyware.CashBack : Cleaned with backup
C:\Program Files\CashBack\ub.dat -> Spyware.CashBack : Cleaned with backup
C:\Program Files\CashBack\Uninstall.exe -> Spyware.CashBack : Cleaned with backup
C:\Program Files\NaviSearch\bin\nls.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\Program Files\owsn\mora.exe -> TrojanDownloader.PurityScan.y : Cleaned with backup
C:\Program Files\SurfSideKick 3\Ssk.exe -> Spyware.SurfSide : Cleaned with backup
C:\Program Files\SurfSideKick 3\SskBho.dll -> Spyware.SurfSide : Cleaned with backup
C:\Program Files\SurfSideKick 3\SskCore.dll -> Spyware.SurfSide : Cleaned with backup
C:\RECYCLER\S-1-5-21-2501417715-1956145038-3291962546-1115\Dc12.exe -> Spyware.Downloadware : Cleaned with backup
C:\RECYCLER\S-1-5-21-2501417715-1956145038-3291962546-1115\Dc13.exe -> Spyware.Downloadware : Cleaned with backup
C:\RECYCLER\S-1-5-21-2501417715-1956145038-3291962546-1115\Dc14.exe -> Spyware.Pacer : Cleaned with backup
C:\RECYCLER\S-1-5-21-2501417715-1956145038-3291962546-1115\Dc15.exe -> Spyware.Pacer : Cleaned with backup
C:\RECYCLER\S-1-5-21-2501417715-1956145038-3291962546-1115\Dc16.exe -> Spyware.Pacer : Cleaned with backup
C:\RECYCLER\S-1-5-21-2501417715-1956145038-3291962546-1115\Dc17.exe -> Spyware.Pacer : Cleaned with backup
C:\RECYCLER\S-1-5-21-2501417715-1956145038-3291962546-1115\Dc28.com -> TrojanDropper.Agent.pb : Cleaned with backup
C:\RECYCLER\S-1-5-21-2501417715-1956145038-3291962546-1115\Dc48.exe -> Adware.BetterInternet : Cleaned with backup
C:\RECYCLER\S-1-5-21-2501417715-1956145038-3291962546-1115\Dc50.exe -> Adware.BetterInternet : Cleaned with backup
C:\RECYCLER\S-1-5-21-2501417715-1956145038-3291962546-1115\Dc51.exe -> Adware.BetterInternet : Cleaned with backup
C:\RECYCLER\S-1-5-21-2501417715-1956145038-3291962546-1115\Dc7.exe -> Adware.BetterInternet : Cleaned with backup
C:\RECYCLER\S-1-5-21-2501417715-1956145038-3291962546-1115\Dc8.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP394\A0026305.exe -> Spyware.Pacer : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP394\A0026312.exe -> TrojanDownloader.Qoologic.v : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP394\A0026314.exe -> TrojanDownloader.QDown.z : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP394\A0026322.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP394\A0026326.dll -> Spyware.EliteBar : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP394\A0026327.dll -> Spyware.EliteBar : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP394\A0026340.EXE -> Spyware.VirtualBouncer.j : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP394\A0026341.EXE -> Spyware.VirtualBouncer.j : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP394\A0026344.EXE -> Spyware.VirtualBouncer : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP394\A0026345.exe -> Spyware.VirtualBouncer : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP394\A0026346.exe -> Spyware.VirtualBouncer : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP394\A0026360.dll -> Spyware.VirtualBouncer : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP394\A0026361.dll -> Spyware.VirtualBouncer : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP394\A0026367.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP394\A0026370.exe -> TrojanDropper.Agent.hl : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP394\A0026372.dll -> Spyware.EliteBar : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP394\A0026373.exe -> Spyware.EliteBar : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP394\A0026375.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP394\A0026386.exe -> Adware.Saha : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP394\A0026387.dll -> Adware.SAHA : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP394\A0026389.exe -> TrojanDownloader.Small.abd : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP394\A0026390.dll -> Spyware.VirtualBouncer : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP394\A0026391.dll -> Spyware.VirtualBouncer : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP394\A0026399.dll -> Spyware.EliteBar : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP394\A0026402.exe -> TrojanDropper.Agent.hl : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP394\A0026404.exe -> Spyware.AproposMedia : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP394\A0026406.exe -> TrojanDownloader.Apropo.ae : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP394\A0026407.exe -> TrojanDownloader.Agent.qg : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP394\A0026408.exe -> TrojanDownloader.Small.abd : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP394\A0026409.exe -> TrojanDownloader.Agent.ro : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP394\A0026410.exe -> Spyware.Apropos : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP394\A0026414.exe -> Spyware.SafeSurfing : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP394\A0026416.exe -> Spyware.Pacer : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP394\A0026417.cpl -> TrojanDownloader.Qoologic.p : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP394\A0026427.exe -> TrojanDownloader.Agent.qg : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP394\A0026434.exe -> Spyware.SurfSide : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP394\A0026435.dll -> Spyware.SurfSide : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP394\A0026436.dll -> Spyware.SurfSide : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP394\A0026442.exe -> Spyware.CashBack : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP394\A0026443.exe -> Spyware.CashBack : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP394\A0026455.exe -> TrojanDownloader.VB.kd : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP394\A0026456.exe -> Adware.SAHA : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP394\A0026459.exe -> TrojanDownloader.Intexp.d : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP394\A0026460.dll -> Spyware.Hijacker.Generic : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP394\A0026461.exe -> Trojan.Imiserv.c : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP394\A0026484.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP394\A0026490.exe -> Spyware.Pacer : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP394\A0026492.exe -> Spyware.Pacer : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP395\A0026529.dll -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP395\A0026530.dll -> TrojanDownloader.Qoologic.p : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP395\A0026531.cpl -> TrojanDownloader.Qoologic.p : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP395\A0026532.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP395\A0026533.dll -> Spyware.Look2Me : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP395\A0026537.exe -> Spyware.PurityScan : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP395\A0026539.exe -> TrojanDropper.Agent.qb : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP395\A0026560.exe -> TrojanDropper.Agent.hl : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP395\A0026561.exe -> TrojanDropper.Agent.lu : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP395\A0026565.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP395\A0026566.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP395\A0026567.exe -> Spyware.PurityScan : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP395\A0026570.exe -> TrojanDropper.Agent.qb : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP395\A0026580.exe -> Spyware.PurityScan : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP395\A0026585.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP395\A0026586.exe -> Spyware.PurityScan : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP395\A0026589.exe -> TrojanDropper.Agent.qb : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP396\A0026622.exe -> TrojanDownloader.Small.abd : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP396\A0026626.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP396\A0026636.dll -> Spyware.Look2Me : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP396\A0026638.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP396\A0026639.exe -> Spyware.PurityScan : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP396\A0026640.exe -> Spyware.PurityScan : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP396\A0026643.exe -> TrojanDropper.Agent.qb : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP396\A0026644.exe -> TrojanDownloader.PurityScan.y : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP396\A0026674.dll -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP396\A0026675.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP396\A0026676.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP397\A0026679.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP397\A0026681.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP399\A0026684.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP399\A0026686.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP401\A0026722.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP401\A0026724.exe -> TrojanDownloader.Apropo.ae : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP401\A0026758.dll -> Spyware.Look2Me : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP401\A0026760.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP401\A0026762.exe -> Spyware.PurityScan : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP401\A0026764.exe -> TrojanDropper.Agent.qb : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP401\A0026765.exe -> Spyware.MediaTickets : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP423\A0027313.dll -> Spyware.Look2Me : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP423\A0027344.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP423\A0027360.exe -> Spyware.PurityScan : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP423\A0027375.exe -> TrojanDownloader.PurityScan.y : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP423\A0027376.exe -> TrojanDropper.Agent.qb : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP423\A0027508.exe -> Spyware.PurityScan : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP423\A0027509.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP423\A0027510.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP423\A0027513.exe -> TrojanDropper.Agent.qb : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP423\A0027516.exe -> TrojanDownloader.PurityScan.y : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP423\A0027517.dll -> Spyware.Look2Me : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP423\A0027525.dll -> Spyware.Look2Me : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP423\A0027526.exe -> Spyware.PurityScan : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP423\A0027527.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP423\A0027529.exe -> TrojanDownloader.PurityScan.y : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP423\A0027533.exe -> TrojanDropper.Agent.qb : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP423\A0027539.dll -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP423\A0027540.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP424\A0027546.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP424\A0027552.dll -> Spyware.Look2Me : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP424\A0027554.exe -> Spyware.PurityScan : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP424\A0027555.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP424\A0027558.exe -> TrojanDownloader.PurityScan.y : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP424\A0027566.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP424\A0027568.exe -> TrojanDownloader.PurityScan.y : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP424\A0028565.exe -> Spyware.PurityScan : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP424\A0028567.exe -> Spyware.MediaTickets : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP424\A0028573.dll -> Spyware.Look2Me : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP424\A0028576.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP424\A0028579.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP424\A0028582.dll -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP425\A0028584.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP425\A0028590.dll -> Spyware.Look2Me : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP425\A0028591.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP425\A0028597.dll -> Spyware.EliteBar : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP425\A0028598.dll -> Spyware.EliteBar : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP442\A0031757.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP442\A0032103.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP442\A0032108.dll -> Spyware.EliteBar : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP442\A0032109.dll -> Spyware.EliteBar : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP442\A0032134.dll -> Spyware.Look2Me : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP442\A0032135.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP442\A0032136.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP442\A0032140.dll -> Spyware.EliteBar : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP442\A0032142.dll -> Spyware.EliteBar : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP442\A0032146.exe -> Spyware.FindSpy : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP442\A0032147.exe -> Spyware.Msnagent : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP443\A0032178.exe -> TrojanDownloader.Adload.a : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP443\A0032200.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP443\A0032203.dll -> Spyware.EliteBar : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP443\A0032204.dll -> Spyware.EliteBar : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP444\A0032217.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP444\A0032221.dll -> Spyware.EliteBar : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP444\A0032222.dll -> Spyware.EliteBar : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP444\A0032227.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP444\A0032228.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP444\A0032232.exe -> Spyware.WinAD : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP444\A0032234.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP444\A0032236.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP444\A0032237.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP444\A0032238.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP444\A0032239.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP444\A0032240.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP444\A0032241.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP444\A0032242.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP444\A0032243.vxd -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP444\A0032244.srg -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP444\A0032245.dll -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP444\A0032246.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP444\A0032248.exe -> Spyware.CashBack : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP444\A0032249.exe -> Spyware.CashBack : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP444\A0032250.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP444\A0032251.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP444\A0032253.dll -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP444\A0032254.dll -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP444\A0033213.dll -> Spyware.WinAD : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP444\A0033214.exe -> Spyware.WinAD : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP444\A0033220.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP444\A0033223.dll -> Spyware.EliteBar : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP444\A0033225.dll -> Spyware.EliteBar : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP444\A0033230.dll -> Spyware.Look2Me : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP444\A0033232.exe -> Spyware.FindSpy : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP444\A0033233.exe -> Spyware.Msnagent : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP444\A0033234.dll -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP444\A0033235.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP444\A0033236.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP444\A0033248.dll -> Spyware.Look2Me : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP444\A0033252.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP444\A0033254.dll -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP444\A0033255.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP444\A0033261.dll -> Spyware.Look2Me : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP444\A0033265.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP444\A0033266.dll -> Spyware.EliteBar : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP444\A0033271.exe -> TrojanDropper.Small.qn : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP444\A0033281.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP444\A0033282.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP444\A0033285.dll -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP444\A0033286.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP444\A0033287.dll -> Spyware.SurfSide : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP444\A0033288.dll -> Spyware.SurfSide : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP444\A0033289.exe -> Spyware.SurfSide : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP444\A0033290.exe -> Spyware.PurityScan : Cleaned with backup
C:\System Volume Information\_restore{CBD8C32D-17BB-4888-8B73-A4E866532642}\RP444\A0033291.exe -> TrojanDownloader.PurityScan.y : Cleaned with backup
C:\Temp\Installer.exe -> Spyware.Look2Me : Cleaned with backup
C:\WINDOWS\AuroraHandler.dll -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\cfgmgr52.dll -> Spyware.BookedSpace : Cleaned with backup
C:\WINDOWS\cflqzb.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\dsr.dll -> Spyware.Hijacker.Generic : Cleaned with backup
C:\WINDOWS\dsr.exe -> Trojan.Imiserv.c : Cleaned with backup
C:\WINDOWS\etb\nt_hide62.dll -> Spyware.EliteBar : Cleaned with backup
C:\WINDOWS\etb\pokapoka62.exe -> Spyware.EliteBar : Cleaned with backup
C:\WINDOWS\etb\xud_62.dll -> Spyware.EliteBar : Cleaned with backup
C:\WINDOWS\exdl.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\WINDOWS\Nail.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\ru.exe -> Spyware.PurityScan : Cleaned with backup
C:\WINDOWS\system\savhjsr.exe -> TrojanDownloader.Small.ayh : Cleaned with backup
C:\WINDOWS\system32\ali3duag.dll -> Spyware.Look2Me : Cleaned with backup
C:\WINDOWS\system32\aqbwl.dll -> Spyware.SBSoft : Cleaned with backup
C:\WINDOWS\system32\AUNPS2.dll -> Spyware.Hijacker.Generic : Cleaned with backup
C:\WINDOWS\system32\bbchk.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\WINDOWS\system32\bomqdrc.exe -> TrojanDownloader.Qoologic.n : Cleaned with backup
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\HY7INAVN\!update-2204[1].0000 -> TrojanDownloader.PurityScan.y : Cleaned with backup
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\HY7INAVN\!update-2254[1].0000 -> TrojanDownloader.PurityScan.y : Cleaned with backup
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\HY7INAVN\!update-2274[1].0000 -> Spyware.MediaTickets : Cleaned with backup
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\K2AK8O4D\!update-2234[1].0000 -> TrojanDownloader.PurityScan.y : Cleaned with backup
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\XSG2MW6V\!update-2214[1].0000 -> TrojanDownloader.PurityScan.y : Cleaned with backup
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\XSG2MW6V\!update-2224[1].0000 -> TrojanDownloader.PurityScan.y : Cleaned with backup
C:\WINDOWS\system32\datadx.dll_tobedeleted -> TrojanDownloader.Qoologic.p : Cleaned with backup
C:\WINDOWS\system32\dlhwkjf.dll -> TrojanDownloader.Qoologic.n : Cleaned with backup
C:\WINDOWS\system32\DrPMon.dll -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\exdl.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\WINDOWS\system32\exdl1.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\WINDOWS\system32\exdl2.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\WINDOWS\system32\exdl3.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\WINDOWS\system32\exul.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\WINDOWS\system32\exul1.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\WINDOWS\system32\exul3.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\WINDOWS\system32\guard.tmp -> Spyware.Look2Me : Cleaned with backup
C:\WINDOWS\system32\javexulm.vxd -> Spyware.BargainBuddy : Cleaned with backup
C:\WINDOWS\system32\jbake.dll -> TrojanDownloader.Qoologic.n : Cleaned with backup
C:\WINDOWS\system32\jlqccs.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\joblpa.exe -> TrojanDownloader.Qoologic.n : Cleaned with backup
C:\WINDOWS\system32\kkdest.dll -> Spyware.Look2Me : Cleaned with backup
C:\WINDOWS\system32\kldhept.dll -> Spyware.Look2Me : Cleaned with backup
C:\WINDOWS\system32\maqmqo.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\mqexdlm.srg -> Spyware.BargainBuddy : Cleaned with backup
C:\WINDOWS\system32\msbe.dll -> Spyware.BargainBuddy : Cleaned with backup
C:\WINDOWS\system32\mscb.dll -> Spyware.BargainBuddy : Cleaned with backup
C:\WINDOWS\system32\nsd4E.dll -> Spyware.HotSearchBar : Cleaned with backup
C:\WINDOWS\system32\nvms.dll -> Spyware.BargainBuddy : Cleaned with backup
C:\WINDOWS\system32\pfh.dll -> Spyware.Look2Me : Cleaned with backup
C:\WINDOWS\system32\pvkyw.dat -> TrojanDownloader.Qoologic.n : Cleaned with backup
C:\WINDOWS\system32\recss.dll -> Spyware.Look2Me : Cleaned with backup
C:\WINDOWS\system32\supdate.dll -> TrojanDownloader.Qoologic.p : Cleaned with backup
C:\WINDOWS\system32\wbd_ci.dll -> Spyware.Look2Me : Cleaned with backup
C:\WINDOWS\system32\wchisn.dll -> Spyware.Look2Me : Cleaned with backup
C:\WINDOWS\system32\wintask.exe -> TrojanDownloader.Small.abd : Cleaned with backup
C:\WINDOWS\system32\wpaueng1.dll -> Spyware.Look2Me : Cleaned with backup
C:\WINDOWS\system32\wsauserv.dll -> Spyware.Look2Me : Cleaned with backup
C:\WINDOWS\Temp\!update.exe -> TrojanDownloader.PurityScan.y : Cleaned with backup
C:\WINDOWS\Temp\b.com -> TrojanDropper.Agent.pb : Cleaned with backup
C:\WINDOWS\Temp\Cookies\[removed][2].txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
C:\WINDOWS\Temp\Cookies\[removed][1].txt -> Spyware.Cookie.Adserver : Cleaned with backup
C:\WINDOWS\Temp\MediaAccessInstPack.exe -> Spyware.WinAD : Cleaned with backup
C:\WINDOWS\Temp\pcs_0026.exe -> Spyware.Pacer : Cleaned with backup
C:\WINDOWS\Temp\ptf_0026.exe -> Spyware.Pacer : Cleaned with backup
::Report End
Logfile of HijackThis v1.99.1
Scan saved at 2:46:02 PM, on 8/5/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\ewido\security suite\SecuritySuite.exe
C:\Documents and Settings\amys\SSK39.EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\m?hta.exe
c:\windows\system32\qghappc.exe
C:\Documents and Settings\amys\Desktop\spyware_rm\Hijackthis\hijackthis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://websearch.drsnsrch.com/sidesearch.cgi?id=
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://websearch.drsnsrch.com/sidesearch.cgi?id=
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://websearch.drsnsrch.com/sidesearch.cgi?id=
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://websearch.drsnsrch.com/sidesearch.cgi?id=
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
http://www.exactsearch.net/sidesearch
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = http://websearch.drsnsrch.com/sidesearch.cgi?id=
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = websearch.drsnsrch.com/q.cgi?q=
R3 - URLSearchHook: (no name) - {02EE5B04-F144-47BB-83FB-A60BD91B74A9} - C:\Program Files\SurfSideKick 3\SskBho.dll
F2 - REG:system.ini: Shell=Explorer.exe C:\WINDOWS\Nail.exe
O2 - BHO: Band Class - {00F1D395-4744-40f0-A611-980F61AE2C59} - C:\WINDOWS\dsr.dll (file missing)
O2 - BHO: NLS UrlCatcher Class - {AEECBFDA-12FA-4881-BDCE-8C3E1CE4B344} - C:\WINDOWS\system32\nvms.dll (file missing)
O2 - BHO: CB UrlCatcher Class - {CE188402-6EE7-4022-8868-AB25173A3E14} - C:\WINDOWS\system32\mscb.dll (file missing)
O2 - BHO: ADP UrlCatcher Class - {F4E04583-354E-4076-BE7D-ED6A80FD66DA} - C:\WINDOWS\system32\msbe.dll (file missing)
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
O4 - HKLM\..\Run: [Smapp] C:\Program Files\Analog Devices\SoundMAX\Smtray.exe
O4 - HKLM\..\Run: [IMONTRAY] C:\Program Files\Intel\Intel® Active Monitor\imontray.exe
O4 - HKLM\..\Run: [IntelliType] "C:\Program Files\Microsoft Hardware\Keyboard\type32.exe"
O4 - HKLM\..\Run: [vptray] C:\PROGRA~1\SYMANT~1\SYMANT~1\vptray.exe
O4 - HKLM\..\Run: [ERTYDF] xsetup.exe
O4 - HKLM\..\Run: [AUNPS2] RUNDLL32 AUNPS2.DLL,_Run@16
O4 - HKLM\..\Run: [cfgmgr52] RunDLL32.EXE C:\WINDOWS\cfgmgr52.dll,DllRun
O4 - HKLM\..\Run: [Dinst] C:\WINDOWS\dinst.exe
O4 - HKLM\..\Run: [Media Access] C:\Program Files\Media Access\MediaAccK.exe
O4 - HKLM\..\Run: [BullsEye Network] C:\Program Files\BullsEye Network\bin\bargains.exe
O4 - HKLM\..\Run: [NaviSearch] C:\Program Files\NaviSearch\bin\nls.exe
O4 - HKLM\..\Run: [CashBack] C:\Program Files\CashBack\bin\cashback.exe
O4 - HKLM\..\Run: [SurfSideKick 3] C:\Program Files\SurfSideKick 3\Ssk.exe
O4 - HKLM\..\Run: [tkubvbw] c:\windows\system32\qghappc.exe r
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [CMAPP] "C:\Program Files\CMAPP\Client\cmappclient.exe"
O4 - HKCU\..\Run: [doonRhNsQ] fm2usl.exe
O4 - HKCU\..\Run: [CAS Client] "C:\Program Files\Cas\Client\casclient.exe"
O4 - HKCU\..\Run: [WhatsNewBot] ActionScr.exe
O4 - HKCU\..\Run: [msag] ActionScr.exe
O4 - HKCU\..\Run: [zantu] PrcIdle.exe
O4 - HKCU\..\Run: [SurfSideKick 3] C:\Program Files\SurfSideKick 3\Ssk.exe
O4 - HKCU\..\Run: [Wtca] C:\Program Files\owsn\mora.exe
O4 - HKCU\..\Run: [Xxitgzb] C:\WINDOWS\system32\m?hta.exe
O4 - Global Startup: Post-it® Software Notes.lnk = C:\Program Files\3M\PSNotes\psn.exe
O4 - Global Startup: QuickBooks Update Agent.lnk = C:\Program Files\Common Files\Intuit\QuickBooks\QBUpdate\qbupdate.exe
O4 - Global Startup: Scanner File Utility.lnk = ?
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {1D0D9077-3798-49BB-9058-393499174D5D} - file://c:\counter.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
http://update.microsoft.com/windowsupdate/…b?1123084694234
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = eri.emhiser.local
O17 - HKLM\Software\..\Telephony: DomainName = eri.emhiser.local
O17 - HKLM\System\CCS\Services\Tcpip\..\{4EA6CC27-19F6-46CB-BAD8-FF84B617CE53}: NameServer = 195.95.218.1,85.255.112.7
O17 - HKLM\System\CCS\Services\Tcpip\..\{EE313292-1B87-4777-9877-1BFC36A4D1B1}: NameServer = 195.95.218.1,85.255.112.7
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: Domain = eri.emhiser.local
O17 - HKLM\System\CS1\Services\Tcpip\..\{4EA6CC27-19F6-46CB-BAD8-FF84B617CE53}: NameServer = 195.95.218.1,85.255.112.7
O20 - Winlogon Notify: App Paths - C:\WINDOWS\system32\dtauth.dll
O23 - Service: DefWatch - Symantec Corporation - C:\PROGRA~1\SYMANT~1\SYMANT~1\DefWatch.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: Intel® Active Monitor (imonNT) - Intel Corp. - C:\Program Files\Intel\Intel® Active Monitor\imonnt.exe
O23 - Service: Symantec AntiVirus Client (Norton AntiVirus Server) - Symantec Corporation - C:\PROGRA~1\SYMANT~1\SYMANT~1\Rtvscan.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
O23 - Service: System Startup Service (SvcProc) - Unknown owner - C:\WINDOWS\svcproc.exe