By the way, the popups do seem to have stopped now.
Logfile of HijackThis v1.99.1
Scan saved at 1:32:04 PM, on 1/25/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\LEXPPS.EXE
C:\Program Files\Symantec AntiVirus\DefWatch.exe
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\Program Files\ewido anti-malware\ewidoguard.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Browser Mouse\Browser Mouse\1.0\lwbwheel.exe
C:\WINDOWS\System32\LXSUPMON.EXE
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Java\jre1.5.0_05\bin\jusched.exe
C:\Program Files\Yahoo!\Yahoo! Music Engine\ymetray.exe
C:\Program Files\Microsoft AntiSpyware\gcasServ.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\PROGRA~1\SYMANT~1\VPTray.exe
C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe
C:\Program Files\Symantec AntiVirus\SavRoam.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Symantec AntiVirus\Rtvscan.exe
C:\Documents and Settings\Dao\Desktop\HijackThis.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Common Files\AOL\1134389105\ee\AOLHostManager.exe
C:\Program Files\Common Files\AOL\1134389105\ee\AOLServiceHost.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = www.yahoo.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.yahoo.com
N3 - Netscape 7: user_pref("browser.search.defaultengine", "
http://www.google.com/"); (C:\Documents and Settings\Dao\Application Data\Mozilla\Profiles\default\a8tgnh38.slt\prefs.js)
O3 - Toolbar: AOL Toolbar - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:\Program Files\AOL\AOL Toolbar 2.0\aoltb.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O4 - HKLM\..\Run: [LWBMOUSE] C:\Program Files\Browser Mouse\Browser Mouse\1.0\lwbwheel.exe
O4 - HKLM\..\Run: [LXSUPMON] C:\WINDOWS\System32\LXSUPMON.EXE RUN
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [iTunesHelper] C:\Program Files\iTunes\iTunesHelper.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_05\bin\jusched.exe
O4 - HKLM\..\Run: [ymetray] "C:\Program Files\Yahoo!\Yahoo! Music Engine\ymetray.exe"
O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft AntiSpyware\gcasServ.exe"
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [vptray] C:\PROGRA~1\SYMANT~1\VPTray.exe
O4 - HKCU\..\Run: [Yahoo! Pager] C:\Program Files\Yahoo!\Messenger\ypager.exe -quiet
O8 - Extra context menu item: &AIM Search - res://C:\Program Files\AIM Toolbar\AIMBar.dll/aimsearch.htm
O8 - Extra context menu item: &AOL Toolbar Search - c:\program files\aol\aol toolbar 2.0\resources\en-US\local\search.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: AOL Toolbar - {3369AF0D-62E9-4bda-8103-B4C75499B578} - C:\Program Files\AOL\AOL Toolbar 2.0\aoltb.dll
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM95\aim.exe
O9 - Extra button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\PROGRA~1\Yahoo!\MESSEN~1\YPager.exe
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\PROGRA~1\Yahoo!\MESSEN~1\YPager.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) -
http://go.microsoft....k/?linkid=39204
O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} -
http://software-dl.r...ip/RdxIE601.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
http://v5.windowsupd...b?1096127783174
O16 - DPF: {D30CA0FD-1CA0-11D4-AC78-006008A9A8BC} (WebBasedClientInstall Class) -
http://www.lawrence....nav/WebInst.cab
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C:\Program Files\Symantec AntiVirus\DefWatch.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido anti-malware\ewidoguard.exe
O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
O23 - Service: Local Security Authority Subsystem Service (lsass) - Unknown owner - C:\WINDOWS\scvhost.exe (file missing)
O23 - Service: SAVRoam (SavRoam) - symantec - C:\Program Files\Symantec AntiVirus\SavRoam.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec AntiVirus - Symantec Corporation - C:\Program Files\Symantec AntiVirus\Rtvscan.exe
---------------------------------------------------------
ewido anti-malware - Scan report
---------------------------------------------------------
+ Created on: 1:23:42 PM, 1/25/2006
+ Report-Checksum: 7DB1EE80
+ Scan result:
HKLM\SOFTWARE\Classes\CLSID\{2B96D5CC-C5B5-49A5-A69D-CC0A30F9028C} -> Spyware.MiniBug : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{49DB48FF-02B5-4645-B676-94A4DF1AA026} -> Spyware.SecondThought : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{6E0ED53C-9908-49ED-B055-7CB31B162577} -> Spyware.SecondThought : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{830D3AED-2FA9-454F-B266-D931862BBF34} -> Spyware.SecondThought : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{8C53BD8E-B12D-4C8F-AD0E-C9DDC39D1273} -> Spyware.SecondThought : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{9BCDD51B-4A7B-446C-8452-D32D38004582} -> Spyware.SecondThought : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{A986F4DB-792E-4571-8974-0BB6E024766F} -> Spyware.SecondThought : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{BCCAB53D-0895-40C3-A942-A03538CE227A} -> Spyware.SecondThought : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{C0F88E9E-DCEB-4655-968A-AE508A677C39} -> Spyware.SecondThought : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{D7EAC2D8-2D52-4010-A4AD-DFDF60C1706C} -> Spyware.SecondThought : Cleaned with backup
HKLM\SOFTWARE\Classes\PROTOCOLS\Name-Space Handler\res -> Spyware.WebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\TypeLib\{5E594162-60A9-487D-84B8-DBDD716CB862} -> Spyware.VirtualBouncer : Cleaned with backup
HKLM\SOFTWARE\DelFin -> Spyware.Delfin : Cleaned with backup
HKLM\SOFTWARE\DelFin\PromulGate -> Spyware.Delfin : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{850CD0B8-DA33-4558-A8C8-95D7908E37A7} -> Spyware.WebSearch : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\AUI -> Spyware.WebSearch : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\DelFin Media Viewer -> Spyware.Delfin : Cleaned with backup
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{707E6F76-9FFB-4920-A976-EA101271BC25} -> Spyware.CleverIEHooker : Cleaned with backup
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{E8EAEB34-F7B5-4C55-87FF-720FAF53D841} -> Spyware.MidAddle : Cleaned with backup
HKU\S-1-5-21-269536213-2304659736-1445258045-1005\Software\DelFin -> Spyware.Delfin : Cleaned with backup
HKU\S-1-5-21-269536213-2304659736-1445258045-1005\Software\DelFin\PromulGate -> Spyware.Delfin : Cleaned with backup
HKU\S-1-5-21-269536213-2304659736-1445258045-1005\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{707E6F76-9FFB-4920-A976-EA101271BC25} -> Spyware.CleverIEHooker : Cleaned with backup
HKU\S-1-5-21-269536213-2304659736-1445258045-1005\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{E8EAEB34-F7B5-4C55-87FF-720FAF53D841} -> Spyware.MidAddle : Cleaned with backup
HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{707E6F76-9FFB-4920-A976-EA101271BC25} -> Spyware.CleverIEHooker : Cleaned with backup
HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{E8EAEB34-F7B5-4C55-87FF-720FAF53D841} -> Spyware.MidAddle : Cleaned with backup
:mozilla.6:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.7:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.8:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.9:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.10:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.11:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.12:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.13:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.14:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.15:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.16:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.17:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.18:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.19:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.20:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.21:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.22:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.23:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.32:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Adbrite : Cleaned with backup
:mozilla.39:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.40:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.41:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.42:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.43:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.45:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Adtech : Cleaned with backup
:mozilla.46:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Adtech : Cleaned with backup
:mozilla.55:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.72:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Burstnet : Cleaned with backup
:mozilla.74:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.75:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.76:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.77:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.79:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.80:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.90:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Com : Cleaned with backup
:mozilla.91:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Com : Cleaned with backup
:mozilla.104:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.105:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.106:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.107:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.108:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.109:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.115:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.116:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.117:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.246:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Overture : Cleaned with backup
:mozilla.247:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Overture : Cleaned with backup
:mozilla.252:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Overture : Cleaned with backup
:mozilla.257:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Pro-market : Cleaned with backup
:mozilla.258:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Pro-market : Cleaned with backup
:mozilla.262:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Qksrv : Cleaned with backup
:mozilla.263:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Qksrv : Cleaned with backup
:mozilla.265:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
:mozilla.271:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Valuead : Cleaned with backup
:mozilla.272:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Valuead : Cleaned with backup
:mozilla.273:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Valuead : Cleaned with backup
:mozilla.274:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Valuead : Cleaned with backup
:mozilla.275:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Valuead : Cleaned with backup
:mozilla.280:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Revenue : Cleaned with backup
:mozilla.289:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.290:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.291:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.292:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.293:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.297:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.298:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.312:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Tradedoubler : Cleaned with backup
:mozilla.313:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Tradedoubler : Cleaned with backup
:mozilla.314:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.315:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.316:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.317:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.318:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.320:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.351:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.352:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.353:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.354:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.355:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.363:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.364:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.365:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.366:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.377:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.382:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Bridgetrack : Cleaned with backup
:mozilla.397:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Sitestat : Cleaned with backup
:mozilla.425:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.426:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.427:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.429:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Onestat : Cleaned with backup
:mozilla.430:C:\Documents and Settings\Dao\Application Data\Mozilla\Firefox\Profiles\2d6ki2ol.default\cookies.txt -> Spyware.Cookie.Onestat : Cleaned with backup
:mozilla.11:C:\Documents and Settings\Dao\Application Data\Mozilla\Profiles\default\a8tgnh38.slt\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.12:C:\Documents and Settings\Dao\Application Data\Mozilla\Profiles\default\a8tgnh38.slt\cookies.txt -> Spyware.Cookie.Com : Cleaned with backup
:mozilla.13:C:\Documents and Settings\Dao\Application Data\Mozilla\Profiles\default\a8tgnh38.slt\cookies.txt -> Spyware.Cookie.Com : Cleaned with backup
:mozilla.24:C:\Documents and Settings\Dao\Application Data\Mozilla\Profiles\default\a8tgnh38.slt\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.25:C:\Documents and Settings\Dao\Application Data\Mozilla\Profiles\default\a8tgnh38.slt\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.26:C:\Documents and Settings\Dao\Application Data\Mozilla\Profiles\default\a8tgnh38.slt\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.27:C:\Documents and Settings\Dao\Application Data\Mozilla\Profiles\default\a8tgnh38.slt\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.31:C:\Documents and Settings\Dao\Application Data\Mozilla\Profiles\default\a8tgnh38.slt\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.32:C:\Documents and Settings\Dao\Application Data\Mozilla\Profiles\default\a8tgnh38.slt\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
C:\Documents and Settings\Dao\Cookies\dao@ad.yieldmanager[1].txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
C:\Documents and Settings\Dao\Cookies\dao@adopt.specificclick[1].txt -> Spyware.Cookie.Specificclick : Cleaned with backup
C:\Documents and Settings\Dao\Cookies\dao@data4.perf.overture[1].txt -> Spyware.Cookie.Overture : Cleaned with backup
C:\Documents and Settings\Dao\Cookies\dao@image.masterstats[1].txt -> Spyware.Cookie.Masterstats : Cleaned with backup
C:\Documents and Settings\Dao\Cookies\dao@partygaming.122.2o7[1].txt -> Spyware.Cookie.2o7 : Cleaned with backup
C:\Documents and Settings\Dao\Cookies\dao@sales.liveperson[1].txt -> Spyware.Cookie.Liveperson : Cleaned with backup
C:\Documents and Settings\Dao\Cookies\dao@secure.specificpop[1].txt -> Spyware.Cookie.Specificpop : Cleaned with backup
C:\Documents and Settings\Dao\Cookies\dao@specificpop[1].txt -> Spyware.Cookie.Specificpop : Cleaned with backup
C:\Documents and Settings\Dao\Desktop\l2mfix\backup.zip/dlls/aci3duag.dll -> Spyware.Look2Me : Error during cleaning
C:\Documents and Settings\Dao\Desktop\l2mfix\backup.zip/dlls/closys.dll -> Spyware.Look2Me : Error during cleaning
C:\Documents and Settings\Dao\Desktop\l2mfix\backup.zip/dlls/guard.tmp -> Spyware.Look2Me : Error during cleaning
C:\Documents and Settings\Dao\Desktop\l2mfix\backup.zip/dlls/h84m0ih1e84.dll -> Spyware.Look2Me : Error during cleaning
C:\Documents and Settings\Dao\Desktop\l2mfix\backup.zip/dlls/irrml5911.dll -> Spyware.Look2Me : Error during cleaning
C:\Documents and Settings\Dao\Desktop\l2mfix\backup.zip/dlls/iylogmsg.dll -> Spyware.Look2Me : Error during cleaning
C:\Documents and Settings\Dao\Desktop\l2mfix\backup.zip/dlls/kedmaori.dll -> Spyware.Look2Me : Error during cleaning
C:\Documents and Settings\Dao\Desktop\l2mfix\backup.zip/dlls/l86o0ij3e8o.dll -> Spyware.Look2Me : Error during cleaning
C:\Documents and Settings\Dao\Desktop\l2mfix\backup.zip/dlls/lvr4099qe.dll -> Spyware.Look2Me : Error during cleaning
C:\Documents and Settings\Dao\Desktop\l2mfix\backup.zip/dlls/mdglibnt.dll -> Spyware.Look2Me : Error during cleaning
C:\Documents and Settings\Dao\Desktop\l2mfix\backup.zip/dlls/mwvcrt40.dll -> Spyware.Look2Me : Error during cleaning
C:\Documents and Settings\Dao\Desktop\l2mfix\backup.zip/dlls/peotowiz.dll -> Spyware.Look2Me : Error during cleaning
C:\Documents and Settings\Dao\Desktop\l2mfix\backup.zip/dlls/ptustab.dll -> Spyware.Look2Me : Error during cleaning
C:\Documents and Settings\Dao\Desktop\l2mfix\backup.zip/dlls/rBsauto.dll -> Spyware.Look2Me : Error during cleaning
C:\Documents and Settings\Dao\Desktop\l2mfix\backup.zip/dlls/sslogcfg.dll -> Spyware.Look2Me : Error during cleaning
C:\Documents and Settings\Dao\Desktop\l2mfix\backup.zip/dlls/wd2help.dll -> Spyware.Look2Me : Error during cleaning
C:\Documents and Settings\Dao\Desktop\l2mfix\dlls\aci3duag.dll -> Spyware.Look2Me : Cleaned with backup
C:\Documents and Settings\Dao\Desktop\l2mfix\dlls\closys.dll -> Spyware.Look2Me : Cleaned with backup
C:\Documents and Settings\Dao\Desktop\l2mfix\dlls\guard.tmp -> Spyware.Look2Me : Cleaned with backup
C:\Documents and Settings\Dao\Desktop\l2mfix\dlls\h84m0ih1e84.dll -> Spyware.Look2Me : Cleaned with backup
C:\Documents and Settings\Dao\Desktop\l2mfix\dlls\irrml5911.dll -> Spyware.Look2Me : Cleaned with backup
C:\Documents and Settings\Dao\Desktop\l2mfix\dlls\iylogmsg.dll -> Spyware.Look2Me : Cleaned with backup
C:\Documents and Settings\Dao\Desktop\l2mfix\dlls\kedmaori.dll -> Spyware.Look2Me : Cleaned with backup
C:\Documents and Settings\Dao\Desktop\l2mfix\dlls\l86o0ij3e8o.dll -> Spyware.Look2Me : Cleaned with backup
C:\Documents and Settings\Dao\Desktop\l2mfix\dlls\lvr4099qe.dll -> Spyware.Look2Me : Cleaned with backup
C:\Documents and Settings\Dao\Desktop\l2mfix\dlls\mdglibnt.dll -> Spyware.Look2Me : Cleaned with backup
C:\Documents and Settings\Dao\Desktop\l2mfix\dlls\mwvcrt40.dll -> Spyware.Look2Me : Cleaned with backup
C:\Documents and Settings\Dao\Desktop\l2mfix\dlls\peotowiz.dll -> Spyware.Look2Me : Cleaned with backup
C:\Documents and Settings\Dao\Desktop\l2mfix\dlls\ptustab.dll -> Spyware.Look2Me : Cleaned with backup
C:\Documents and Settings\Dao\Desktop\l2mfix\dlls\rBsauto.dll -> Spyware.Look2Me : Cleaned with backup
C:\Documents and Settings\Dao\Desktop\l2mfix\dlls\sslogcfg.dll -> Spyware.Look2Me : Cleaned with backup
C:\Documents and Settings\Dao\Desktop\l2mfix\dlls\wd2help.dll -> Spyware.Look2Me : Cleaned with backup
C:\Documents and Settings\Dao\Local Settings\Temp\Cookies\dao@ad.yieldmanager[2].txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
C:\Documents and Settings\Dao\Local Settings\Temp\Cookies\dao@trafficmp[1].txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
C:\Documents and Settings\Dao\Local Settings\Temp\LmT6iK.exe -> Adware.Midadle : Cleaned with backup
C:\Documents and Settings\Dao\Local Settings\Temp\shie.dll -> Adware.MidADle : Cleaned with backup
C:\Documents and Settings\Dao\Local Settings\Temporary Internet Files\Content.IE5\LS87HX8L\AppWrap[1].exe -> Spyware.AdURL : Cleaned with backup
C:\Documents and Settings\Dao\Local Settings\Temporary Internet Files\Content.IE5\LS87HX8L\AppWrap[2].exe -> Spyware.Zestyfind : Cleaned with backup
C:\Documents and Settings\Dao\Local Settings\Temporary Internet Files\Content.IE5\XVNRT58A\AppWrap[1].exe -> Spyware.AdURL : Cleaned with backup
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\8XU3K9YB\drsmartload_js[1].htm -> Downloader.IstBar.j : Cleaned with backup
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\8XU3K9YB\installerus[1].exe -> Downloader.Qoologic.at : Cleaned with backup
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\JZRPHOGZ\wow[1].exe/DRSMAR~1.EXE.exe -> Downloader.Adload.j : Cleaned with backup
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\JZRPHOGZ\wow[1].exe/drsmartload197a.exe -> Downloader.Adload.j : Cleaned with backup
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\JZRPHOGZ\wow[1].exe/elt888.exe -> Logger.Agent.hi : Cleaned with backup
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\NNZVPCQV\drsmartload[1].exe -> Downloader.Adload.j : Cleaned with backup
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\NNZVPCQV\mtrslib2[1].js -> Downloader.Small.ag : Cleaned with backup
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\TIM8X15L\NNSCAA638[1].EXE -> Spyware.NewDotNet : Cleaned with backup
C:\Program Files\AWS\WeatherBug\MiniBugTransporter.dll -> Spyware.Wheaterbug : Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\193E3AAD-E07F-4014-AA11-87FD2B\8BE5FF4B-8C84-4AB8-8ABF-EDFA26 -> Spyware.DownloadWare : Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\A714CA2B-2177-44F4-BABA-2B9549\A8FAF403-2EDE-4EC5-AE46-656C14 -> Downloader.Qoologic.at : Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\A714CA2B-2177-44F4-BABA-2B9549\B712FF70-45C8-4BCA-8831-71C737 -> Downloader.Qoologic.at : Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\A714CA2B-2177-44F4-BABA-2B9549\FF86867F-0AAC-4543-9AB1-3B5E88 -> Downloader.Qoologic.at : Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\CF9EE7B9-CBB9-4D95-A552-B24610\0289BF53-EC9A-48A0-9600-E4EDDA -> Adware.NewDotNet : Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\CF9EE7B9-CBB9-4D95-A552-B24610\1DF6BB8C-B8FE-4DBC-94F0-847170 -> Spyware.NewDotNet : Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\CF9EE7B9-CBB9-4D95-A552-B24610\3515A7C8-39A7-4CC4-AC69-9712A9 -> Spyware.NewDotNet : Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\EA0F646C-54C6-4C6B-8398-06F39E\C93749B8-F564-4331-ACB4-046C56 -> Downloader.Qoologic.az : Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\F577C176-20EF-4C58-BB5E-90495F\268DF0DA-8781-4074-AA22-A26F01 -> Spyware.VirtualBouncer : Cleaned with backup
C:\Program Files\Netscape\Netscape\Plugins\npwthost.dll -> Spyware.WildTangent : Cleaned with backup
C:\Program Files\Network Monitor\netmon.exe -> Not-A-Virus.Monitor.Win32.NetMon.a : Cleaned with backup
C:\Program Files\Yazzle Sudoku\Sudoku.exe -> Dropper.VB.kk : Cleaned with backup
C:\WINDOWS\drsmartload197a.exe -> Downloader.Adload.j : Cleaned with backup
C:\WINDOWS\DRSMAR~1.EXE.exe -> Downloader.Adload.j : Cleaned with backup
C:\WINDOWS\elt888.exe -> Logger.Agent.hi : Cleaned with backup
C:\WINDOWS\icont.exe -> Spyware.AdURL : Cleaned with backup
C:\WINDOWS\iconu.exe -> Spyware.Zestyfind : Cleaned with backup
C:\WINDOWS\NDNuninstall7_14.exe -> Adware.NewDotNet : Cleaned with backup
C:\WINDOWS\system32\ctbv2.dll -> Adware.SAHA : Cleaned with backup
C:\WINDOWS\system32\httppost.exe -> Adware.Specofer : Cleaned with backup
C:\WINDOWS\system32\nostalgia1.dll/MSView.dll -> Trojan.KeyHost.e : Cleaned with backup
C:\WINDOWS\system32\nostalgia1.dll/MSVprep.exe -> Spyware.BiSpy : Cleaned with backup
C:\WINDOWS\system32\nostalgia1.dll/MSView.dll -> Trojan.KeyHost.e : Cleaned with backup
C:\WINDOWS\system32\nostalgia1.dll/MSVprep.exe -> Spyware.BiSpy : Cleaned with backup
C:\WINDOWS\system32\SHAgent.dll -> Adware.SAHA : Cleaned with backup
C:\WINDOWS\system32\SHAgent.dlltmp -> Adware.SAHA : Cleaned with backup
C:\WINDOWS\system32\zkajvf.dll -> Adware.PurityScan : Cleaned with backup
C:\WINDOWS\temp\bw2.com -> Spyware.Zestyfind : Cleaned with backup
C:\WINDOWS\temp\Cookies\dao@2o7[1].txt -> Spyware.Cookie.2o7 : Cleaned with backup
C:\WINDOWS\temp\Cookies\dao@ad.yieldmanager[1].txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
C:\WINDOWS\temp\Cookies\dao@adopt.specificclick[2].txt -> Spyware.Cookie.Specificclick : Cleaned with backup
C:\WINDOWS\temp\Cookies\dao@ads.addynamix[1].txt -> Spyware.Cookie.Addynamix : Cleaned with backup
C:\WINDOWS\temp\Cookies\dao@as-eu.falkag[1].txt -> Spyware.Cookie.Falkag : Cleaned with backup
C:\WINDOWS\temp\Cookies\dao@as1.falkag[2].txt -> Spyware.Cookie.Falkag : Cleaned with backup
C:\WINDOWS\temp\Cookies\dao@casalemedia[1].txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
C:\WINDOWS\temp\Cookies\dao@hypertracker[1].txt -> Spyware.Cookie.Hypertracker : Cleaned with backup
C:\WINDOWS\temp\Cookies\dao@partygaming.122.2o7[1].txt -> Spyware.Cookie.2o7 : Cleaned with backup
C:\WINDOWS\temp\Cookies\dao@paypopup[1].txt -> Spyware.Cookie.Paypopup : Cleaned with backup
C:\WINDOWS\temp\Cookies\dao@trafficmp[1].txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
C:\WINDOWS\temp\Cookies\dao@yieldmanager[2].txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
C:\WINDOWS\temp\Cookies\dao@z1.adserver[1].txt -> Spyware.Cookie.Adserver : Cleaned with backup
::Report End