I did everything, I couldn't find somethings and when I tried to get rid of them with Pcket Killbox I got this error when I tried to restart..."PendingFileRenameOperations Registry Data has been removed by external process". And then it wouldn't restart. But everything is running A WHOLE LOT smoother. Here's the hijack L2M log and Ewido report.
Logfile of HijackThis v1.99.1
Scan saved at 6:38:20 PM, on 3/8/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\UAService7.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\CTHELPER.EXE
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Logitech\MouseWare\system\em_exec.exe
C:\Program Files\Microsoft Broadband Networking\MSBNTray.exe
C:\WINDOWS\system32\wscntfy.exe
C:\hijack\HijackThis.exe
O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [Logitech Utility] Logi_MwX.Exe
O4 - HKLM\..\Run: [NaviSearch] C:\Program Files\NaviSearch\bin\nls.exe
O4 - HKLM\..\Run: [IpNetwork] C:\Program Files\Network\ipnetwork.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: Microsoft Broadband Networking.lnk = ?
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {A8F2B9BD-A6A0-486A-9744-18920D898429} (ScorchPlugin Class) -
http://www.sibelius....tiveXPlugin.cab
O16 - DPF: {B9A296D4-38AC-4566-8168-F7ACAF7D35E6} (Eyeball Video Session Control) -
http://imlive.com/Ch...VideoContol.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: StarWind iSCSI Service (StarWindService) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
O23 - Service: SecuROM User Access Service (V7) (UserAccess7) - Unknown owner - C:\WINDOWS\system32\UAService7.exe
Look2Me-Destroyer V1.0.7
Scanning for infected files.....
Scan started at 3/8/2006 4:58:31 PM
Infected! C:\WINDOWS\system32\m6820gloe6qc0.dll
Infected! C:\WINDOWS\system32\avi2evxx.dll
Infected! C:\WINDOWS\system32\i024lafq1d2e.dll
Infected! C:\WINDOWS\system32\m6820gloe6qc0.dll
Infected! C:\WINDOWS\system32\myricons.dll
Infected! C:\WINDOWS\system32\p4r40e9qeh.dll
Infected! C:\WINDOWS\system32\guard.tmp
Attempting to delete infected files...
Attempting to delete: C:\WINDOWS\system32\m6820gloe6qc0.dll
C:\WINDOWS\system32\m6820gloe6qc0.dll Deleted successfully!
Attempting to delete: C:\WINDOWS\system32\avi2evxx.dll
C:\WINDOWS\system32\avi2evxx.dll Deleted successfully!
Attempting to delete: C:\WINDOWS\system32\i024lafq1d2e.dll
C:\WINDOWS\system32\i024lafq1d2e.dll Deleted successfully!
Attempting to delete: C:\WINDOWS\system32\m6820gloe6qc0.dll
C:\WINDOWS\system32\m6820gloe6qc0.dll Deleted successfully!
Attempting to delete: C:\WINDOWS\system32\myricons.dll
C:\WINDOWS\system32\myricons.dll Deleted successfully!
Attempting to delete: C:\WINDOWS\system32\p4r40e9qeh.dll
C:\WINDOWS\system32\p4r40e9qeh.dll Deleted successfully!
Attempting to delete: C:\WINDOWS\system32\guard.tmp
C:\WINDOWS\system32\guard.tmp Deleted successfully!
Making registry repairs.
Removing: HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WebCheck
Removing: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved "{221B57EC-4CD7-4EC5-85AF-8990163E344E}"
HKCR\Clsid\{221B57EC-4CD7-4EC5-85AF-8990163E344E}
Removing: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved "{98788972-042B-4D46-A7C0-21668A309F8F}"
HKCR\Clsid\{98788972-042B-4D46-A7C0-21668A309F8F}
Removing: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved "{01164DD2-6BF9-4A03-AC49-83FB53C16E6F}"
HKCR\Clsid\{01164DD2-6BF9-4A03-AC49-83FB53C16E6F}
Restoring Windows certificates.
Replaced hosts file with default windows hosts file
Restoring SeDebugPrivilege for Administrators - Succeeded
---------------------------------------------------------
ewido anti-malware - Scan report
---------------------------------------------------------
+ Created on: 5:44:00 PM, 3/8/2006
+ Report-Checksum: FC980AA5
+ Scan result:
HKLM\SOFTWARE\Bargains -> Adware.BargainBuddy : Cleaned with backup
HKLM\SOFTWARE\Classes\ADP.UrlCatcher -> Adware.BargainBuddy : Cleaned with backup
HKLM\SOFTWARE\Classes\ADP.UrlCatcher\CLSID -> Adware.BargainBuddy : Cleaned with backup
HKLM\SOFTWARE\Classes\ADP.UrlCatcher.1 -> Adware.BargainBuddy : Cleaned with backup
HKLM\SOFTWARE\Classes\NLS.UrlCatcher -> Adware.NaviSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\NLS.UrlCatcher\CLSID -> Adware.NaviSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\NLS.UrlCatcher.1 -> Adware.NaviSearch : Cleaned with backup
HKLM\SOFTWARE\eXactUtil -> Adware.BargainBuddy : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\BargainBuddy -> Adware.BargainBuddy : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\NaviSearch -> Adware.NaviSearch : Cleaned with backup
HKLM\SOFTWARE\NaviSearch -> Adware.NaviSearch : Cleaned with backup
HKLM\SOFTWARE\SurfSideKick3 -> Adware.SurfSide : Cleaned with backup
HKLM\SOFTWARE\SurfSideKick3\Internet Explorer -> Adware.SurfSide : Cleaned with backup
HKU\S-1-5-21-682003330-1123561945-839522115-1003\Software\SurfSideKick3 -> Adware.SurfSide : Cleaned with backup
HKU\S-1-5-21-682003330-1123561945-839522115-1003\Software\SurfSideKick3\Internet Explorer -> Adware.SurfSide : Cleaned with backup
[2044] C:\mousepad1.exe -> Hijacker.VB.li : Cleaned with backup
[232] C:\WINDOWS\SYSC00.exe -> Trojan.VB.tg : Cleaned with backup
[220] C:\WINDOWS\ms059562018229.exe -> Downloader.VB.tw : Cleaned with backup
[260] C:\Program Files\BullsEye Network\bin\bargains.exe -> Adware.BargainBuddy : Cleaned with backup
[272] C:\Program Files\NaviSearch\bin\nls.exe -> Adware.BargainBuddy : Cleaned with backup
[276] C:\Program Files\Network\ipnetwork.exe -> Adware.Maxifiles : Cleaned with backup
[468] C:\Program Files\Common Files\Windows\services32.exe -> Adware.Maxifiles : Cleaned with backup
:mozilla.15:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\5sh6rnll.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned with backup
:mozilla.16:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\5sh6rnll.default\cookies.txt -> TrackingCookie.Adtech : Cleaned with backup
:mozilla.17:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\5sh6rnll.default\cookies.txt -> TrackingCookie.Adtech : Cleaned with backup
:mozilla.18:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\5sh6rnll.default\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned with backup
:mozilla.28:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\5sh6rnll.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned with backup
:mozilla.32:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\5sh6rnll.default\cookies.txt -> TrackingCookie.Bfast : Cleaned with backup
:mozilla.12:C:\Documents and Settings\Justin\Application Data\Mozilla\Firefox\Profiles\zzu4jzm6.Admin\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.13:C:\Documents and Settings\Justin\Application Data\Mozilla\Firefox\Profiles\zzu4jzm6.Admin\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.14:C:\Documents and Settings\Justin\Application Data\Mozilla\Firefox\Profiles\zzu4jzm6.Admin\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.15:C:\Documents and Settings\Justin\Application Data\Mozilla\Firefox\Profiles\zzu4jzm6.Admin\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.16:C:\Documents and Settings\Justin\Application Data\Mozilla\Firefox\Profiles\zzu4jzm6.Admin\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.17:C:\Documents and Settings\Justin\Application Data\Mozilla\Firefox\Profiles\zzu4jzm6.Admin\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.25:C:\Documents and Settings\Justin\Application Data\Mozilla\Firefox\Profiles\zzu4jzm6.Admin\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.26:C:\Documents and Settings\Justin\Application Data\Mozilla\Firefox\Profiles\zzu4jzm6.Admin\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.34:C:\Documents and Settings\Justin\Application Data\Mozilla\Firefox\Profiles\zzu4jzm6.Admin\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
:mozilla.35:C:\Documents and Settings\Justin\Application Data\Mozilla\Firefox\Profiles\zzu4jzm6.Admin\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
:mozilla.36:C:\Documents and Settings\Justin\Application Data\Mozilla\Firefox\Profiles\zzu4jzm6.Admin\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
:mozilla.37:C:\Documents and Settings\Justin\Application Data\Mozilla\Firefox\Profiles\zzu4jzm6.Admin\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
:mozilla.38:C:\Documents and Settings\Justin\Application Data\Mozilla\Firefox\Profiles\zzu4jzm6.Admin\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
:mozilla.39:C:\Documents and Settings\Justin\Application Data\Mozilla\Firefox\Profiles\zzu4jzm6.Admin\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
:mozilla.40:C:\Documents and Settings\Justin\Application Data\Mozilla\Firefox\Profiles\zzu4jzm6.Admin\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
:mozilla.41:C:\Documents and Settings\Justin\Application Data\Mozilla\Firefox\Profiles\zzu4jzm6.Admin\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
:mozilla.42:C:\Documents and Settings\Justin\Application Data\Mozilla\Firefox\Profiles\zzu4jzm6.Admin\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
:mozilla.44:C:\Documents and Settings\Justin\Application Data\Mozilla\Firefox\Profiles\zzu4jzm6.Admin\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.45:C:\Documents and Settings\Justin\Application Data\Mozilla\Firefox\Profiles\zzu4jzm6.Admin\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.46:C:\Documents and Settings\Justin\Application Data\Mozilla\Firefox\Profiles\zzu4jzm6.Admin\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.47:C:\Documents and Settings\Justin\Application Data\Mozilla\Firefox\Profiles\zzu4jzm6.Admin\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.48:C:\Documents and Settings\Justin\Application Data\Mozilla\Firefox\Profiles\zzu4jzm6.Admin\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.49:C:\Documents and Settings\Justin\Application Data\Mozilla\Firefox\Profiles\zzu4jzm6.Admin\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.50:C:\Documents and Settings\Justin\Application Data\Mozilla\Firefox\Profiles\zzu4jzm6.Admin\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.51:C:\Documents and Settings\Justin\Application Data\Mozilla\Firefox\Profiles\zzu4jzm6.Admin\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.52:C:\Documents and Settings\Justin\Application Data\Mozilla\Firefox\Profiles\zzu4jzm6.Admin\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.53:C:\Documents and Settings\Justin\Application Data\Mozilla\Firefox\Profiles\zzu4jzm6.Admin\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.54:C:\Documents and Settings\Justin\Application Data\Mozilla\Firefox\Profiles\zzu4jzm6.Admin\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
C:\Documents and Settings\Justin\Cookies\justin@ad.yieldmanager[1].txt -> TrackingCookie.Yieldmanager : Cleaned with backup
C:\Documents and Settings\Justin\Cookies\justin@ads1.revenue[1].txt -> TrackingCookie.Revenue : Cleaned with backup
C:\Documents and Settings\Justin\Cookies\justin@burstnet[2].txt -> TrackingCookie.Burstnet : Cleaned with backup
C:\Documents and Settings\Justin\Cookies\justin@com[1].txt -> TrackingCookie.Com : Cleaned with backup
C:\Documents and Settings\Justin\Cookies\justin@cpvfeed[1].txt -> TrackingCookie.Cpvfeed : Cleaned with backup
C:\Documents and Settings\Justin\Cookies\justin@e-2dj6wjlogodzcao.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Justin\Cookies\justin@kmpads[1].txt -> TrackingCookie.Kmpads : Cleaned with backup
C:\Documents and Settings\Justin\Cookies\justin@meetupcom.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned with backup
C:\Documents and Settings\Justin\Cookies\justin@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned with backup
C:\Documents and Settings\Justin\Cookies\justin@partygaming.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned with backup
C:\Documents and Settings\Justin\Cookies\justin@starware[2].txt -> TrackingCookie.Starware : Cleaned with backup
C:\Documents and Settings\Justin\Cookies\justin@tacoda[2].txt -> TrackingCookie.Tacoda : Cleaned with backup
C:\Documents and Settings\Justin\Cookies\justin@www.burstbeacon[1].txt -> TrackingCookie.Burstbeacon : Cleaned with backup
C:\Documents and Settings\Justin\Local Settings\Temp\Cookies\justin@acronis.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned with backup
C:\Documents and Settings\Justin\Local Settings\Temp\Cookies\justin@ad.yieldmanager[2].txt -> TrackingCookie.Yieldmanager : Cleaned with backup
C:\Documents and Settings\Justin\Local Settings\Temp\Cookies\justin@ads.addynamix[2].txt -> TrackingCookie.Addynamix : Cleaned with backup
C:\Documents and Settings\Justin\Local Settings\Temp\Cookies\justin@as-eu.falkag[2].txt -> TrackingCookie.Falkag : Cleaned with backup
C:\Documents and Settings\Justin\Local Settings\Temp\Cookies\justin@atdmt[2].txt -> TrackingCookie.Atdmt : Cleaned with backup
C:\Documents and Settings\Justin\Local Settings\Temp\Cookies\justin@bluestreak[1].txt -> TrackingCookie.Bluestreak : Cleaned with backup
C:\Documents and Settings\Justin\Local Settings\Temp\Cookies\justin@c.goclick[2].txt -> TrackingCookie.Goclick : Cleaned with backup
C:\Documents and Settings\Justin\Local Settings\Temp\Cookies\justin@c5.zedo[1].txt -> TrackingCookie.Zedo : Cleaned with backup
C:\Documents and Settings\Justin\Local Settings\Temp\Cookies\justin@com[2].txt -> TrackingCookie.Com : Cleaned with backup
C:\Documents and Settings\Justin\Local Settings\Temp\Cookies\justin@cpvfeed[2].txt -> TrackingCookie.Cpvfeed : Cleaned with backup
C:\Documents and Settings\Justin\Local Settings\Temp\Cookies\justin@doubleclick[1].txt -> TrackingCookie.Doubleclick : Cleaned with backup
C:\Documents and Settings\Justin\Local Settings\Temp\Cookies\justin@ehg-tigerdirect2.hitbox[1].txt -> TrackingCookie.Hitbox : Cleaned with backup
C:\Documents and Settings\Justin\Local Settings\Temp\Cookies\justin@fastclick[1].txt -> TrackingCookie.Fastclick : Cleaned with backup
C:\Documents and Settings\Justin\Local Settings\Temp\Cookies\justin@findwhat[1].txt -> TrackingCookie.Findwhat : Cleaned with backup
C:\Documents and Settings\Justin\Local Settings\Temp\Cookies\justin@hitbox[1].txt -> TrackingCookie.Hitbox : Cleaned with backup
C:\Documents and Settings\Justin\Local Settings\Temp\Cookies\justin@kmpads[1].txt -> TrackingCookie.Kmpads : Cleaned with backup
C:\Documents and Settings\Justin\Local Settings\Temp\Cookies\justin@media.fastclick[2].txt -> TrackingCookie.Fastclick : Cleaned with backup
C:\Documents and Settings\Justin\Local Settings\Temp\Cookies\justin@partygaming.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned with backup
C:\Documents and Settings\Justin\Local Settings\Temp\Cookies\justin@perf.overture[1].txt -> TrackingCookie.Overture : Cleaned with backup
C:\Documents and Settings\Justin\Local Settings\Temp\Cookies\justin@pmads.valuead[1].txt -> TrackingCookie.Valuead : Cleaned with backup
C:\Documents and Settings\Justin\Local Settings\Temp\Cookies\justin@project2.realtracker[2].txt -> TrackingCookie.Realtracker : Cleaned with backup
C:\Documents and Settings\Justin\Local Settings\Temp\Cookies\justin@revenue[1].txt -> TrackingCookie.Revenue : Cleaned with backup
C:\Documents and Settings\Justin\Local Settings\Temp\Cookies\justin@server.iad.liveperson[2].txt -> TrackingCookie.Liveperson : Cleaned with backup
C:\Documents and Settings\Justin\Local Settings\Temp\Cookies\justin@starware[2].txt -> TrackingCookie.Starware : Cleaned with backup
C:\Documents and Settings\Justin\Local Settings\Temp\Cookies\justin@stats1.reliablestats[1].txt -> TrackingCookie.Reliablestats : Cleaned with backup
C:\Documents and Settings\Justin\Local Settings\Temp\Cookies\justin@targetnet[1].txt -> TrackingCookie.Targetnet : Cleaned with backup
C:\Documents and Settings\Justin\Local Settings\Temp\Cookies\justin@trafficmp[1].txt -> TrackingCookie.Trafficmp : Cleaned with backup
C:\Documents and Settings\Justin\Local Settings\Temp\Cookies\justin@tribalfusion[2].txt -> TrackingCookie.Tribalfusion : Cleaned with backup
C:\Documents and Settings\Justin\Local Settings\Temp\Cookies\justin@z1.adserver[1].txt -> TrackingCookie.Adserver : Cleaned with backup
C:\Documents and Settings\Justin\Local Settings\Temp\Cookies\justin@zedo[2].txt -> TrackingCookie.Zedo : Cleaned with backup
C:\Documents and Settings\Justin\Local Settings\Temp\i1EC.tmp -> Adware.SurfSide : Cleaned with backup
C:\Documents and Settings\Justin\Local Settings\Temp\i5.tmp -> Adware.SurfSide : Cleaned with backup
C:\Documents and Settings\Justin\Local Settings\Temp\Temporary Internet Files\Content.IE5\0TQVSH6F\ipnetwork[1].exe -> Adware.Maxifiles : Cleaned with backup
C:\Documents and Settings\Justin\Local Settings\Temp\Temporary Internet Files\Content.IE5\0TQVSH6F\stubNsbg[1].exe -> Adware.Maxifiles : Cleaned with backup
C:\Documents and Settings\Justin\Local Settings\Temp\Temporary Internet Files\Content.IE5\89AN8XIF\send_car_int[1].htm -> Not-A-Virus.Exploit.HTML.CodeBaseExec : Cleaned with backup
C:\Documents and Settings\Justin\Local Settings\Temp\Temporary Internet Files\Content.IE5\89AN8XIF\send_ocx_sof[1].htm -> Not-A-Virus.Exploit.HTML.CodeBaseExec : Cleaned with backup
C:\Documents and Settings\Justin\Local Settings\Temp\Temporary Internet Files\Content.IE5\89AN8XIF\send_ocx_sof[2].htm -> Not-A-Virus.Exploit.HTML.CodeBaseExec : Cleaned with backup
C:\Documents and Settings\Justin\Local Settings\Temp\Temporary Internet Files\Content.IE5\K9IRS1EZ\send_ocx_sof[1].htm -> Not-A-Virus.Exploit.HTML.CodeBaseExec : Cleaned with backup
C:\Documents and Settings\Justin\Local Settings\Temporary Internet Files\Content.IE5\KFI3WBIB\mousepad1[2].exe -> Hijacker.VB.li : Cleaned with backup
C:\gimmysmileys.exe -> Downloader.VB.xu : Cleaned with backup
C:\Installer.exe -> Adware.Look2Me : Cleaned with backup
C:\keyboard.exe -> Downloader.VB.xv : Cleaned with backup
C:\mousepad.exe -> Hijacker.VB.li : Cleaned with backup
C:\mousepad1.exe -> Hijacker.VB.li : Cleaned with backup
C:\MTE3NDI6ODoxNg.exe -> Downloader.Small.buy : Cleaned with backup
C:\Program Files\BullsEye Network -> Adware.BargainBuddy : Cleaned with backup
C:\Program Files\BullsEye Network\ad.dat -> Adware.BargainBuddy : Cleaned with backup
C:\Program Files\BullsEye Network\bin -> Adware.BargainBuddy : Cleaned with backup
C:\Program Files\BullsEye Network\bin\adv.exe -> Adware.BargainBuddy : Cleaned with backup
C:\Program Files\BullsEye Network\bin\adx.exe -> Adware.BargainBuddy : Cleaned with backup
C:\Program Files\BullsEye Network\bin\bargains.exe -> Adware.BargainBuddy : Cleaned with backup
C:\Program Files\BullsEye Network\index.dat -> Adware.BargainBuddy : Cleaned with backup
C:\Program Files\BullsEye Network\t1141855522.dec -> Adware.BargainBuddy : Cleaned with backup
C:\Program Files\BullsEye Network\ub.dat -> Adware.BargainBuddy : Cleaned with backup
C:\Program Files\BullsEye Network\Uninstall.exe -> Adware.BargainBuddy : Cleaned with backup
C:\Program Files\Canon\MP Navigator 1.1\mpn.exe -> Not-A-Virus.NetTool.Win32.CalcDNet.d : Cleaned with backup
C:\Program Files\Common Files\InetGet\mc-110-12-0000228.exe -> Dropper.Agent.aac : Cleaned with backup
C:\Program Files\Common Files\VCClient\SS1001.exe -> Dropper.Small.qn : Cleaned with backup
C:\Program Files\Common Files\Windows\mc-110-12-0000228.exe -> Dropper.Agent.aac : Cleaned with backup
C:\Program Files\Common Files\Windows\services32.exe -> Adware.Maxifiles : Cleaned with backup
C:\Program Files\NaviSearch -> Adware.BargainBuddy : Cleaned with backup
C:\Program Files\NaviSearch\ad.dat -> Adware.BargainBuddy : Cleaned with backup
C:\Program Files\NaviSearch\bin -> Adware.BargainBuddy : Cleaned with backup
C:\Program Files\NaviSearch\bin\nls.exe -> Adware.BargainBuddy : Cleaned with backup
C:\Program Files\NaviSearch\Uninstall.exe -> Adware.BargainBuddy : Cleaned with backup
C:\Program Files\Network\ipnetwork.exe -> Adware.Maxifiles : Cleaned with backup
C:\Program Files\Network Monitor\netmon.exe -> Not-A-Virus.Monitor.Win32.NetMon.a : Cleaned with backup
C:\ucmoreiex.exe/UCMTSAIE.DLL -> Adware.Ucmore : Cleaned with backup
C:\ucmoreiex.exe/IUCMORE.DLL -> Adware.Ucmore : Cleaned with backup
C:\visfx500.exe -> Dropper.Agent.aie : Cleaned with backup
C:\WINDOWS\ms059562018229.exe -> Downloader.VB.tw : Cleaned with backup
C:\WINDOWS\qffeowj.exe_tobedeleted -> Hijacker.VB.ij : Cleaned with backup
C:\WINDOWS\SnVzdGlu\asappsrv.dll -> Adware.CommAd : Cleaned with backup
C:\WINDOWS\SnVzdGlu\command.exe -> Adware.CommAd : Cleaned with backup
C:\WINDOWS\SYSC00.exe -> Trojan.VB.tg : Cleaned with backup
C:\WINDOWS\system32\exdl.exe -> Adware.BargainBuddy : Cleaned with backup
C:\WINDOWS\system32\exdl1.exe -> Adware.BargainBuddy : Cleaned with backup
C:\WINDOWS\system32\exdl2.exe -> Adware.BargainBuddy : Cleaned with backup
C:\WINDOWS\system32\exul.exe -> Adware.BargainBuddy : Cleaned with backup
C:\WINDOWS\system32\exul1.exe -> Adware.BargainBuddy : Cleaned with backup
C:\WINDOWS\system32\javexulm.vxd -> Adware.BargainBuddy : Cleaned with backup
C:\WINDOWS\system32\mqexdlm.srg -> Adware.BargainBuddy : Cleaned with backup
C:\WINDOWS\system32\msbe.dll -> Adware.BargainBuddy : Cleaned with backup
C:\WINDOWS\system32\nvms.dll -> Adware.BargainBuddy : Cleaned with backup
C:\WINDOWS\Temp\Cookies\justin@kmpads[1].txt -> TrackingCookie.Kmpads : Cleaned with backup
C:\WINDOWS\unin101.exe -> Trojan.VB.tg : Cleaned with backup
C:\WINDOWS\uni_eh.exe -> Trojan.VB.tg : Cleaned with backup
::Report End
That's it, Thanks for all the help. Hopefully u can tell if there is still some stuff lingering on my system.
Jbuc