Jump to content

Build Theme!
  •  
  • Infected?

big grin WE'RE SURE THAT YOU'LL LOVE US!

We invite you to ask questions, share experiences, and learn. It's 100% free. Did we mention that it's free. It is. It's free. Join 91603 other members! Anybody can ask, anybody can answer. Consistently helpful members with best answers are invited to staff. Here's how it works. Virus cleanup? Start here -> Malware Removal Forum.

Try What the Tech -- It's free!


Photo

my log


  • Please log in to reply
83 replies to this topic

#1 sdutcher

sdutcher

    Authentic Member

  • Authentic Member
  • PipPip
  • 101 posts

Posted 14 March 2007 - 05:03 AM

here is a log,
also have S&D, and it's finding
coolwwwsearch, and a few others

Logfile of HijackThis v1.99.1
Scan saved at 5:58:23 AM, on 3/14/2007
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\LEXPPS.EXE
C:\Program Files\Spyware Doctor\sdhelp.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\wdfmgr.exe
C:\Program Files\Viewpoint\Common\ViewpointService.exe
C:\WINDOWS\Explorer.EXE
C:\windows\system32\winclean.exe
C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe
C:\Program Files\Lexmark 1200 Series\lxczbmgr.exe
C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
C:\Program Files\TrueAssistant\TrueAssistant.exe
C:\Program Files\TrueSwitchVerizonYahoo\TrueInstall.exe
C:\Program Files\Lexmark 1200 Series\lxczbmon.exe
C:\WINDOWS\System32\wuauclt.exe
C:\Documents and Settings\Andrew Horsfall\Desktop\help files\HijackThis.exe

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://verizon.yahoo.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - Default URLSearchHook is missing
F1 - win.ini: run=fntldr.exe
F2 - REG:system.ini: UserInit=c:\windows\system32\userinit.exe
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O4 - HKLM\..\Run: [Verizon Internet Security Suite] "C:\Program Files\Verizon\Verizon Internet Security Suite\Rps.exe"
O4 - HKLM\..\Run: [rsEW38j] pmstrmgr.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Motive SmartBridge] C:\PROGRA~1\VERIZO~2\HELPSU~1\SMARTB~1\MotiveSB.exe
O4 - HKLM\..\Run: [Dpi] C:\Program Files\Common Files\Dpi\dpi.exe
O4 - HKLM\..\Run: [bindfastjunkaudio] C:\Documents and Settings\All Users\Application Data\Roam four bind fast\managerchic.exe
O4 - HKLM\..\Run: [A Verizon App] C:\PROGRA~1\VERIZO~2\HELPSU~1\VERIZO~1.EXE
O4 - HKLM\..\Run: [winclean] c:\windows\system32\winclean.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe"
O4 - HKLM\..\Run: [Lexmark 1200 Series] "C:\Program Files\Lexmark 1200 Series\lxczbmgr.exe"
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKCU\..\Run: [Aim6] "C:\Program Files\AIM6\aim6.exe" /d locale=en-US ee://aol/imApp
O4 - Startup: TrueAssistant.lnk = C:\Program Files\TrueAssistant\TrueAssistant.exe
O4 - Startup: TrueSwitch Wizard Verizon Yahoo.lnk = C:\Program Files\TrueSwitchVerizonYahoo\TrueInstall.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - C:\WINDOWS\System32\shdocvw.dll
O16 - DPF: {01113300-3E00-11D2-8470-0060089874ED} - https://activatemyds...DSL/tgctlcm.cab
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} (McAfee.com Operating System Class) - http://bin.mcafee.co...72/mcinsctl.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} - http://update.micros...b?1165785661687
O16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} (DwnldGroupMgr Class) - http://bin.mcafee.co...,15/mcgdmgr.cab
O16 - DPF: {BCD5A227-8720-497B-AF5F-4403E94342E3} - https://netservices..../DSLControl.cab
O16 - DPF: {FFFFFFFF-CACE-BABE-BABE-00AA0055595A} - http://www.trueswitc...TrueInstall.exe
O19 - User stylesheet: (file missing)
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O21 - SSODL: CpKmwpvg - {2C813CC9-862B-9663-7343-6EE25FD6A136} - C:\WINDOWS\System32\enlgu.dll (file missing)
O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
O23 - Service: PC Tools Spyware Doctor (SDhelper) - PC Tools Research Pty Ltd - C:\Program Files\Spyware Doctor\sdhelp.exe
O23 - Service: Viewpoint Manager Service - Viewpoint Corporation - C:\Program Files\Viewpoint\Common\ViewpointService.exe
O23 - Service: YPCService - Yahoo! Inc. - C:\WINDOWS\SYSTEM32\YPCSER~1.EXE

    Advertisements

Register to Remove


#2 IndiGenus

IndiGenus

    Teacher Emeritus

  • Authentic Member
  • PipPipPipPipPipPip
  • 5,251 posts
  • Interests:Computer Security, Music, Sports

Posted 14 March 2007 - 07:58 PM

Hello sdutcher and welcome to the forums here at Tom Coyote.

You have several infections going on here. This will likely take several steps to get clean so please be patient and stay with the fix until I declare you all clean, even if things appear to be running better.

A couple of issues I see right up front is the lack of any Antivirus and this machine is still running SP1, so I'm assuming there are many critical security updates missing.

I don't recommend updating to SP2 until the computer is clean as Malware can cause SP2 problems. But you should make sure your firewall is turned on which it is not by default in SP1:
Please do the following:

1. Click Start, click Run, type control.exe netconnections, and then click OK.
2. Right-click the connection on which you would like to enable ICF, and then click Properties.
3. On the Advanced tab, click the box to select the option to Protect my computer or network.

I would recommend putting an AV in place ASAP and here are a couple of free suggestions.

AVG AntiVirus
Avast Antivirus Home Version--Free

-----------------------------------------------------------------------------------------

Let's proceed with the fix:

Please download and run CWShredder:

http://www.majorgeek...dder_d3019.html

Make sure that all browser windows are closed with the exception of Cwshredder and choose Fix Then Reboot.

-----------------------------------------------------------------------------------------

Please Download NoLop to your desktop from one of the links below...
Link 1
Link 2
Link 3
  • First close any other programs you have running as this will require a reboot
  • Double click NoLop.exe to run it
  • Now click the button labelled "Search and Destroy"
    <<your computer will now be scanned for infected files>>
  • When scanning is finished you will be prompted to reboot only if infected, Click OK
  • Now click the "REBOOT" Button.
  • A Message should popup from NoLop. If not, double click the program again and it will finish Please Post the contents of C:\NoLop.log along with a fresh HijackThis log
--If you receive an error, "mscomctl.ocx or one of its dependencies are not correctly registered," please download mscomctl.ocx to your system32 folder then rerun the program.--

------------------------------------------------------------------------------------------

Please download SDFix and save it to your Desktop.

You should print out these instructions, or copy them to a NotePad file for reading while in Safe Mode, because you will not be able to connect to the Internet to read from this site.

Double click on SDFix.exe. It should automatically extract a folder called SDFix to your system drive (usually C:\). Please reboot your computer in Safe Mode by doing the following :
  • Restart your computer
  • After hearing your computer beep once during startup, but before the Windows icon appears, tap the F8 key continually;
  • Instead of Windows loading as normal, a menu with options should appear;
  • Select the first option, to run Windows in Safe Mode, then press "Enter".
  • Choose your usual account.
  • Open the SDFix folder and double click on RunThis.bat to start the script.
  • Type Y and press Enter to begin the script.
  • It will start cleaning your PC and then prompt you to press any key to Reboot.
  • Press any key to restart the PC.
  • Your system will take longer than normal to restart as the fixtool will be removing files.
  • When the desktop loads the Fixtool will complete the removal and display Finished.
  • Press any key to end the script and to load your desktop icons.
  • A text file should automatically open, so please copy the contents and post them here. We also need you to post a new HijackThis log

Regards,
Dave
IndiGenus

The help you receive here is free, but if you would like to help me continue the fight against Malware then Posted Image

Logs will be closed if you haven't replied within 5 days



Proud Graduate of TC/WTT Classroom



"To find perfect composure in the midst of change is to find ourselves in nirvana."

Suzuki Roshi


#3 sdutcher

sdutcher

    Authentic Member

  • Authentic Member
  • PipPip
  • 101 posts

Posted 17 March 2007 - 04:27 PM

here are the logs after doing those things,
although i could not get the internet connection firewall
to work, it returned an error relating to internet connection
sharing

i did manually delete some files that were found in spybot, from
C prompt.

NoLop! Log by Skate_Punk_21

Fix running from: C:\Documents and Settings\Andrew Horsfall\Desktop
[3/17/2007]
[10:34:36 AM]

---Infection Files Found/Removed---
C:\WINDOWS\tasks\B6A6B76484852AE0.job

Beginning Removal...
Rebooting...
Removing Lop's Leftover Files/Folders...
Editing Registry...
**Fix Complete!**

---Listing AppData sub directories---

C:\Documents and Settings\Administrator\Application Data\Microsoft
C:\Documents and Settings\Administrator.jare\Application Data\Identities
C:\Documents and Settings\Administrator.jare\Application Data\Macromedia
C:\Documents and Settings\Administrator.jare\Application Data\Microsoft
C:\Documents and Settings\Administrator.jare\Application Data\Mozilla
C:\Documents and Settings\Administrator.jare\Application Data\Real
C:\Documents and Settings\Administrator.jare\Application Data\Talkback
C:\Documents and Settings\All Users\Application Data\Adobe
C:\Documents and Settings\All Users\Application Data\Aol
C:\Documents and Settings\All Users\Application Data\Aol Downloads
C:\Documents and Settings\All Users\Application Data\Aol Ocp
C:\Documents and Settings\All Users\Application Data\Apple Computer
C:\Documents and Settings\All Users\Application Data\Avg7 -- EMPTY Directory
C:\Documents and Settings\All Users\Application Data\Dpi -- EMPTY Directory
C:\Documents and Settings\All Users\Application Data\Exetender
C:\Documents and Settings\All Users\Application Data\Google
C:\Documents and Settings\All Users\Application Data\Mcafee.com
C:\Documents and Settings\All Users\Application Data\Microsoft
C:\Documents and Settings\All Users\Application Data\Motive -- EMPTY Directory
C:\Documents and Settings\All Users\Application Data\Msn6
C:\Documents and Settings\All Users\Application Data\Pcsvc
C:\Documents and Settings\All Users\Application Data\Playfirst
C:\Documents and Settings\All Users\Application Data\Program Aim Mfcd Bleh
C:\Documents and Settings\All Users\Application Data\Quicktime
C:\Documents and Settings\All Users\Application Data\Roam Four Bind Fast
C:\Documents and Settings\All Users\Application Data\Sandlot Games
C:\Documents and Settings\All Users\Application Data\Sbsi
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
C:\Documents and Settings\All Users\Application Data\Temp -- EMPTY Directory
C:\Documents and Settings\All Users\Application Data\Trymedia
C:\Documents and Settings\All Users\Application Data\Verizon
C:\Documents and Settings\All Users\Application Data\Viewpoint
C:\Documents and Settings\All Users\Application Data\Webroot
C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
C:\Documents and Settings\All Users\Application Data\Yahoo!
C:\Documents and Settings\All Users\Application Data\Yahoo! Companion
C:\Documents and Settings\Andrew Horsfall\Application Data\Acccore
C:\Documents and Settings\Andrew Horsfall\Application Data\Adobe
C:\Documents and Settings\Andrew Horsfall\Application Data\Adobeum -- EMPTY Directory
C:\Documents and Settings\Andrew Horsfall\Application Data\Aim -- EMPTY Directory
C:\Documents and Settings\Andrew Horsfall\Application Data\Alta -- EMPTY Directory
C:\Documents and Settings\Andrew Horsfall\Application Data\Apple Computer
C:\Documents and Settings\Andrew Horsfall\Application Data\Corel
C:\Documents and Settings\Andrew Horsfall\Application Data\Cyberlink
C:\Documents and Settings\Andrew Horsfall\Application Data\Google -- EMPTY Directory
C:\Documents and Settings\Andrew Horsfall\Application Data\Help -- EMPTY Directory
C:\Documents and Settings\Andrew Horsfall\Application Data\Identities
C:\Documents and Settings\Andrew Horsfall\Application Data\Lavasoft
C:\Documents and Settings\Andrew Horsfall\Application Data\Lycos
C:\Documents and Settings\Andrew Horsfall\Application Data\Macromedia
C:\Documents and Settings\Andrew Horsfall\Application Data\Microsoft
C:\Documents and Settings\Andrew Horsfall\Application Data\Mozilla
C:\Documents and Settings\Andrew Horsfall\Application Data\Msn6
C:\Documents and Settings\Andrew Horsfall\Application Data\Pc Tools
C:\Documents and Settings\Andrew Horsfall\Application Data\Real
C:\Documents and Settings\Andrew Horsfall\Application Data\Roxio
C:\Documents and Settings\Andrew Horsfall\Application Data\Syntrillium
C:\Documents and Settings\Andrew Horsfall\Application Data\Talkback
C:\Documents and Settings\Andrew Horsfall\Application Data\Verizon
C:\Documents and Settings\Andrew Horsfall\Application Data\Weatherbug
C:\Documents and Settings\Andrew Horsfall\Application Data\Webroot
C:\Documents and Settings\Andrew Horsfall\Application Data\Yahoo!
C:\Documents and Settings\Default User\Application Data\Identities
C:\Documents and Settings\Default User\Application Data\Microsoft
C:\Documents and Settings\Default User\Application Data\Real
C:\Documents and Settings\Hannah\Application Data\Acccore
C:\Documents and Settings\Hannah\Application Data\Apple Computer
C:\Documents and Settings\Hannah\Application Data\Identities
C:\Documents and Settings\Hannah\Application Data\Microsoft
C:\Documents and Settings\Hannah\Application Data\Playfirst
C:\Documents and Settings\Hannah\Application Data\Real
C:\Documents and Settings\Hannah\Application Data\Sun
C:\Documents and Settings\Hannah\Application Data\Webroot
C:\Documents and Settings\Localservice\Application Data\Microsoft
C:\Documents and Settings\Localservice\Application Data\Mozilla
C:\Documents and Settings\Localservice\Application Data\Talkback
C:\Documents and Settings\Localservice\Application Data\Webroot
C:\Documents and Settings\Networkservice\Application Data\Microsoft
C:\Documents and Settings\Skittlez45689\Application Data\Acccore
C:\Documents and Settings\Skittlez45689\Application Data\Adobe
C:\Documents and Settings\Skittlez45689\Application Data\Apple Computer
C:\Documents and Settings\Skittlez45689\Application Data\Google
C:\Documents and Settings\Skittlez45689\Application Data\Help -- EMPTY Directory
C:\Documents and Settings\Skittlez45689\Application Data\Identities
C:\Documents and Settings\Skittlez45689\Application Data\Microsoft
C:\Documents and Settings\Skittlez45689\Application Data\Real
C:\Documents and Settings\Skittlez45689\Application Data\Sun
C:\Documents and Settings\Skittlez45689\Application Data\Viewpoint
C:\Documents and Settings\Skittlez45689\Application Data\Webroot




SDFix: Version 1.73

Run by Administrator - Sat 03/17/2007 - 10:52:23.82

Microsoft Windows XP [Version 5.1.2600]

Running From: C:\SDFix

Safe Mode:
Checking Services:






Restoring Windows Registry Entries
Restoring Default Hosts File


Rebooting...

Normal Mode:
Checking Files:

Below files will be copied to Backups folder then removed:

C:\WINDOWS\SYSTEM32\PFB0E0~1.DLL - Deleted
C:\WINDOWS\SYSTEM32\PFCA7F~1.DLL - Deleted
C:\WINDOWS\SYSTEM32\SFXZMT~1.DLL - Deleted
C:\WINDOWS\SYSTEM32\SFXZMT~2.DLL - Deleted
C:\WINDOWS\SYSTEM32\SFXZMT~3.DLL - Deleted
C:\WINDOWS\SYSTEM32\SFXZMT~4.DLL - Deleted
C:\WINDOWS\SYSTEM32\zu.exe.exe - Deleted
C:\WINDOWS\emdat.tm - Deleted
C:\WINDOWS\emdat.tmp - Deleted
C:\WINDOWS\system32\drivers\etc\hosts.tim - Deleted
C:\WINDOWS\system32\paars.ini - Deleted
C:\WINDOWS\system32\setup.exe.tmp - Deleted
C:\WINDOWS\system32\unsvchosts.lzma - Deleted
C:\WINDOWS\system32\zlbw.dll - Deleted



ADS Check:

C:\WINDOWS\system32
:lzx32.sys 65568
Total size: 65568 bytes.


Removing ADS...

system32: deleted 65568 bytes in 1 streams.

Checking for remaining Streams

C:\WINDOWS\system32
No streams found.


Final Check:

Remaining Services:
------------------



Authorized Application Key Export:

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\\PROGRA~1\\Yahoo!\\MESSEN~1\\YPager.exe"="C:\\Program Files\\Yahoo!\\Messenger\\YPager.exe:*:Enabled:Yahoo! Messenger"
"C:\\PROGRA~1\\Yahoo!\\MESSEN~1\\Yserver.exe"="C:\\Program Files\\Yahoo!\\Messenger\\YServer.exe:*:Enabled:Yahoo! FT Server"


Remaining Files:
---------------

Backups Folder: - C:\SDFix\backups\backups.zip

Checking For Files with Hidden Attributes :

C:\Documents and Settings\Andrew Horsfall\Local Settings\Temp\3pdeyu.dll
C:\Documents and Settings\Andrew Horsfall\Local Settings\Temp\womyi2ay.dll
C:\Program Files\Common Files\Microsoft Shared\Web Folders\mswsc10.dll
C:\WINDOWS\javaqd32.dll
C:\WINDOWS\msit32.dll
C:\Program Files\Common Files\Adobe\ESD\DLMCleanup.exe
C:\WINDOWS\SYSTEM32\alsys.exehufgna
C:\WINDOWS\SYSTEM32\CONFIG\default.tmp.LOG
C:\WINDOWS\SYSTEM32\CONFIG\software.tmp.LOG
C:\WINDOWS\SYSTEM32\CONFIG\system.tmp.LOG
C:\Documents and Settings\Andrew Horsfall\Application Data\Verizon\VSP\downloads\vz-sas-tutorials-2006-09_v2.41.zip.dir\en\images\Thumbs.db

Finished


Logfile of HijackThis v1.99.1
Scan saved at 5:17:37 PM, on 3/17/2007
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\LEXPPS.EXE
C:\WINDOWS\System32\alg.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\Program Files\Spyware Doctor\sdhelp.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\wdfmgr.exe
C:\Program Files\Viewpoint\Common\ViewpointService.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
C:\WINDOWS\notepad.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe
C:\Program Files\Lexmark 1200 Series\lxczbmgr.exe
C:\Program Files\Lexmark 1200 Series\lxczbmon.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\Program Files\TrueAssistant\TrueAssistant.exe
C:\Program Files\TrueSwitchVerizonYahoo\TrueInstall.exe
C:\Program Files\Microsoft Office\Office10\WINWORD.EXE
C:\Documents and Settings\Andrew Horsfall\Desktop\help files\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://verizon.yahoo.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - Default URLSearchHook is missing
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O4 - HKLM\..\Run: [Verizon Internet Security Suite] "C:\Program Files\Verizon\Verizon Internet Security Suite\Rps.exe"
O4 - HKLM\..\Run: [rsEW38j] pmstrmgr.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Motive SmartBridge] C:\PROGRA~1\VERIZO~2\HELPSU~1\SMARTB~1\MotiveSB.exe
O4 - HKLM\..\Run: [bindfastjunkaudio] C:\Documents and Settings\All Users\Application Data\Roam four bind fast\managerchic.exe
O4 - HKLM\..\Run: [A Verizon App] C:\PROGRA~1\VERIZO~2\HELPSU~1\VERIZO~1.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe"
O4 - HKLM\..\Run: [Lexmark 1200 Series] "C:\Program Files\Lexmark 1200 Series\lxczbmgr.exe"
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [Aim6] "C:\Program Files\AIM6\aim6.exe" /d locale=en-US ee://aol/imApp
O4 - Startup: TrueAssistant.lnk = C:\Program Files\TrueAssistant\TrueAssistant.exe
O4 - Startup: TrueSwitch Wizard Verizon Yahoo.lnk = C:\Program Files\TrueSwitchVerizonYahoo\TrueInstall.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - C:\WINDOWS\System32\shdocvw.dll
O16 - DPF: {01113300-3E00-11D2-8470-0060089874ED} - https://activatemyds...DSL/tgctlcm.cab
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} (McAfee.com Operating System Class) - http://bin.mcafee.co...72/mcinsctl.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} - http://update.micros...b?1165785661687
O16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} (DwnldGroupMgr Class) - http://bin.mcafee.co...,15/mcgdmgr.cab
O16 - DPF: {BCD5A227-8720-497B-AF5F-4403E94342E3} - https://netservices..../DSLControl.cab
O16 - DPF: {FFFFFFFF-CACE-BABE-BABE-00AA0055595A} - http://www.trueswitc...TrueInstall.exe
O19 - User stylesheet: (file missing)
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O21 - SSODL: CpKmwpvg - {2C813CC9-862B-9663-7343-6EE25FD6A136} - C:\WINDOWS\System32\enlgu.dll (file missing)
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
O23 - Service: PC Tools Spyware Doctor (SDhelper) - PC Tools Research Pty Ltd - C:\Program Files\Spyware Doctor\sdhelp.exe
O23 - Service: Viewpoint Manager Service - Viewpoint Corporation - C:\Program Files\Viewpoint\Common\ViewpointService.exe
O23 - Service: YPCService - Yahoo! Inc. - C:\WINDOWS\SYSTEM32\YPCSER~1.EXE



thanks for your help

#4 IndiGenus

IndiGenus

    Teacher Emeritus

  • Authentic Member
  • PipPipPipPipPipPip
  • 5,251 posts
  • Interests:Computer Security, Music, Sports

Posted 18 March 2007 - 12:19 PM

Hello sdutcher,

We need to make sure all hidden files are showing so please:
* Click Start.
* Open My Computer.
* Select the Tools menu and click Folder Options.
* Select the View Tab.
* Under the Hidden files and folders heading select Show hidden files and folders.
* Uncheck the Hide protected operating system files (recommended) option.
* Click Yes to confirm.
* Click OK.
Please reverse this process once the fix is complete.

-------------------------------------------------------------

I see that Viewpoint is installed. Viewpoint, Viewpoint Manager, Viewpoint Media Player are Viewpoint components which are installed as a side effect of installing other software, most notably AOL and AOL Instant Messenger (AIM). Viewpoint Manager is responsible for managing and updating Viewpoint Media Player’s components. You can disable this using the Viewpoint Manager Control Panel found in the Windows Control Panel menu. By selecting Disable auto‑updating for the Viewpoint Manager ‑‑ the player will no longer attempt to check for updates. Anything that is installed without your consent is suspect. Read what Viewpoint says and make your own decision.

To provide a satisfying consumer experience and to operate effectively, the Viewpoint Media Player periodically sends information to servers at Viewpoint. Each installation of the Viewpoint Media Player is identifiable to Viewpoint via a Customer Unique Identifier (CUID), an alphanumeric identifier embedded in the Viewpoint Media Player. The Viewpoint Media Player randomly generates the CUID during installation and uses it to indicate a unique installation of the product. A CUID is never connected to a user's name, email address, or other personal contact information. CUIDs are used for the sole purpose of filtering redundant information. Each of these information exchanges occurs anonymously.

Viewpoint Manager is considered as foistware instead of malware since it is installed without user's approval but doesn't spy or do anything "bad". This may change, read Viewpoint to Plunge Into Adware.
I recommend that you remove the Viewpoint products; however, decide for yourself. To uninstall the the Viewpoint components (Viewpoint, Viewpoint Manager, Viewpoint Media Player):
  • Click Start, point to Settings, and then click Control Panel.
  • In Control Panel, double-click Add or Remove Programs.
  • In Add or Remove Programs, highlight >>Viewpoint component<< , click Remove.
  • Do the same for each Viewpoint component.
----------------------------------------------------------------

Run HijackThis. Hit None of the above, Click Do a System Scan Only. Put a Check in the box on the left side on these:

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R3 - Default URLSearchHook is missing
O4 - HKLM\..\Run: [rsEW38j] pmstrmgr.exe
O4 - HKLM\..\Run: [bindfastjunkaudio] C:\Documents and Settings\All Users\Application Data\Roam four bind fast\managerchic.exe
O21 - SSODL: CpKmwpvg - {2C813CC9-862B-9663-7343-6EE25FD6A136} - C:\WINDOWS\System32\enlgu.dll (file missing)

Then close all windows except this one and press Fix checked.

Using Windows Explorer delete the following files and folder if found.

C:\WINDOWS\System32\enlgu.dll<--File

C:\Documents and Settings\All Users\Application Data\Roam four bind fast<--Folder

Please do a search for the file as follows:
Start > Search > All Files And Folders
Under More Advanced Options, make sure the following are checked:
*Search system folders
*Search hidden files and folders
*Search subfolders
Then copy and paste the following in the search box:

pmstrmgr.exe

If found delete all instances of this file.

---------------------------------------------

Download ATF (Atribune Temp File) Cleaner© by Atribune to your desktop.

Double-click ATF Cleaner.exe to open it.

Under Main select the following:
Under Main choose: Select All
Click the Empty Selected button.

If you use Firefox:
Click Firefox at the top and choose: Select All
Click the Empty Selected button.
NOTE: If you would like to keep your saved passwords, please click NO at the prompt.

It's normal after running ATF cleaner that the PC will be slower to boot the first time.

---------------------------------------------

Using Internet Explorer, click on Kaspersky Online Scanner * You will be prompted to install an ActiveX component from Kaspersky, Click 'Yes'.
* The program will launch and then start to download the latest definition files.
* Once the scanner is installed and the definitions downloaded, click 'Next'.
* Now click on 'Scan Settings'
* In the scan settings make sure that the following are selected:
o Scan using the following Anti-Virus database: 'Extended' (If available, otherwise 'Standard')
o Scan Options: 'Scan Archives' and 'Scan Mail Bases'
* Click 'OK'
* Now under 'Select a target to scan' select 'My Computer'
* The scan will take a while, so be patient and let it run. Once the scan is complete, it will display whether your system has been infected.
* Now click on the 'Save as Text' button:
* Save the file to your desktop.
Please post the Kaspersky report and a new HijackThis log. Also let me know how things are running at this point.

Regards,
Dave
IndiGenus

The help you receive here is free, but if you would like to help me continue the fight against Malware then Posted Image

Logs will be closed if you haven't replied within 5 days



Proud Graduate of TC/WTT Classroom



"To find perfect composure in the midst of change is to find ourselves in nirvana."

Suzuki Roshi


#5 sdutcher

sdutcher

    Authentic Member

  • Authentic Member
  • PipPip
  • 101 posts

Posted 20 March 2007 - 07:21 PM

Logfile of HijackThis v1.99.1
Scan saved at 8:16:01 PM, on 3/20/2007
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\LEXPPS.EXE
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
C:\Program Files\Spyware Doctor\sdhelp.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\wdfmgr.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe
C:\Program Files\Lexmark 1200 Series\lxczbmgr.exe
C:\Program Files\Lexmark 1200 Series\lxczbmon.exe
C:\Program Files\TrueSwitchVerizonYahoo\TrueInstall.exe
C:\WINDOWS\System32\wuauclt.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Documents and Settings\Andrew Horsfall\Desktop\help files\HijackThis.exe

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://verizon.yahoo.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O4 - HKLM\..\Run: [Verizon Internet Security Suite] "C:\Program Files\Verizon\Verizon Internet Security Suite\Rps.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Motive SmartBridge] C:\PROGRA~1\VERIZO~2\HELPSU~1\SMARTB~1\MotiveSB.exe
O4 - HKLM\..\Run: [A Verizon App] C:\PROGRA~1\VERIZO~2\HELPSU~1\VERIZO~1.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe"
O4 - HKLM\..\Run: [Lexmark 1200 Series] "C:\Program Files\Lexmark 1200 Series\lxczbmgr.exe"
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP
O4 - HKCU\..\Run: [Aim6] "C:\Program Files\AIM6\aim6.exe" /d locale=en-US ee://aol/imApp
O4 - Startup: TrueAssistant.lnk = C:\Program Files\TrueAssistant\TrueAssistant.exe
O4 - Startup: TrueSwitch Wizard Verizon Yahoo.lnk = C:\Program Files\TrueSwitchVerizonYahoo\TrueInstall.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - C:\WINDOWS\System32\shdocvw.dll
O16 - DPF: {01113300-3E00-11D2-8470-0060089874ED} - https://activatemyds...DSL/tgctlcm.cab
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky...can_unicode.cab
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} (McAfee.com Operating System Class) - http://bin.mcafee.co...72/mcinsctl.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} - http://update.micros...b?1165785661687
O16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} (DwnldGroupMgr Class) - http://bin.mcafee.co...,15/mcgdmgr.cab
O16 - DPF: {BCD5A227-8720-497B-AF5F-4403E94342E3} - https://netservices..../DSLControl.cab
O16 - DPF: {FFFFFFFF-CACE-BABE-BABE-00AA0055595A} - http://www.trueswitc...TrueInstall.exe
O19 - User stylesheet: (file missing)
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
O23 - Service: PC Tools Spyware Doctor (SDhelper) - PC Tools Research Pty Ltd - C:\Program Files\Spyware Doctor\sdhelp.exe
O23 - Service: YPCService - Yahoo! Inc. - C:\WINDOWS\SYSTEM32\YPCSER~1.EXE

#6 sdutcher

sdutcher

    Authentic Member

  • Authentic Member
  • PipPip
  • 101 posts

Posted 20 March 2007 - 07:22 PM

------------------------------------------------------------------------------- KASPERSKY ONLINE SCANNER REPORT Tuesday, March 20, 2007 8:12:36 PM Operating System: Microsoft Windows XP Home Edition, Service Pack 1 (Build 2600) Kaspersky Online Scanner version: 5.0.83.0 Kaspersky Anti-Virus database last update: 20/03/2007 Kaspersky Anti-Virus database records: 283703 ------------------------------------------------------------------------------- Scan Settings: Scan using the following antivirus database: extended Scan Archives: true Scan Mail Bases: true Scan Target - My Computer: C:\ D:\ E:\ Scan Statistics: Total number of scanned objects: 61948 Number of viruses found: 22 Number of infected objects: 179 / 0 Number of suspicious objects: 2 Duration of the scan process: 01:08:48 Infected Object Name / Virus Name / Last Action C:\Documents and Settings\All Users\Application Data\Avg7\Log\emc.log Object is locked skipped C:\Documents and Settings\All Users\Application Data\Grisoft\Avg7Data\avg7log.log Object is locked skipped C:\Documents and Settings\All Users\Application Data\Grisoft\Avg7Data\avg7log.log.lck Object is locked skipped C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\0f089bd22bcf453ccf810126980056fe_1dce0e75-1303-433a-bfc1-6b582bd25551 Object is locked skipped C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\3905f0a0a26ca29aa4901d5c45e85501_1dce0e75-1303-433a-bfc1-6b582bd25551 Object is locked skipped C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\4ad2a42c17daf75b38f2e4a7d6d6e4a1_1dce0e75-1303-433a-bfc1-6b582bd25551 Object is locked skipped C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\569dd682d9ab39adb7a62975b2256a79_1dce0e75-1303-433a-bfc1-6b582bd25551 Object is locked skipped C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\684022895e042d95da3395278522a327_1dce0e75-1303-433a-bfc1-6b582bd25551 Object is locked skipped C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\68b5a73dac7cc6e14f1e263f43a263fc_1dce0e75-1303-433a-bfc1-6b582bd25551 Object is locked skipped C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\7cd41c6f0419848b802e6ad96fea065d_1dce0e75-1303-433a-bfc1-6b582bd25551 Object is locked skipped C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\b7224bcd4e9c279dc8a90ccaf4b9e671_1dce0e75-1303-433a-bfc1-6b582bd25551 Object is locked skipped C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\f96db401122ef1904f57836808d8dd71_1dce0e75-1303-433a-bfc1-6b582bd25551 Object is locked skipped C:\Documents and Settings\All Users\Application Data\Microsoft\Dr Watson\user.dmp Object is locked skipped C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\SmitfraudC1.zip/VXH8JKDQ6.EXE Suspicious: Password-protected-EXE skipped C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\SmitfraudC1.zip ZIP: suspicious - 1 skipped C:\Documents and Settings\Andrew Horsfall\Cookies\INDEX.DAT Object is locked skipped C:\Documents and Settings\Andrew Horsfall\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped C:\Documents and Settings\Andrew Horsfall\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped C:\Documents and Settings\Andrew Horsfall\Local Settings\History\History.IE5\INDEX.DAT Object is locked skipped C:\Documents and Settings\Andrew Horsfall\Local Settings\History\History.IE5\MSHist012007032020070321\index.dat Object is locked skipped C:\Documents and Settings\Andrew Horsfall\Local Settings\Temp\3pdEYU.exe Infected: not-a-virus:AdWare.Win32.WinFetcher.d skipped C:\Documents and Settings\Andrew Horsfall\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped C:\Documents and Settings\Andrew Horsfall\ntuser.dat Object is locked skipped C:\Documents and Settings\Andrew Horsfall\ntuser.dat.LOG Object is locked skipped C:\Documents and Settings\Becky\Application Data\acccore\caches\bart\1\0201D213AD Object is locked skipped C:\Documents and Settings\Becky\Application Data\acccore\caches\bart\1024\0201E05FD0 Object is locked skipped C:\Documents and Settings\Becky\Application Data\acccore\caches\bart\1024\2B000001E4 Object is locked skipped C:\Documents and Settings\Becky\Application Data\acccore\caches\bart\129\0201D26213 Object is locked skipped C:\Documents and Settings\Becky\Application Data\acccore\caches\users\outbacki\buddyicon Object is locked skipped C:\Documents and Settings\Becky\Application Data\acccore\caches\users\outbacki\feedbag Object is locked skipped C:\Documents and Settings\Becky\Application Data\Adobe\Acrobat\7.0\AdobeCMapFnt07.lst Object is locked skipped C:\Documents and Settings\Becky\Application Data\Adobe\Acrobat\7.0\AdobeSysFnt07.lst Object is locked skipped C:\Documents and Settings\Becky\Application Data\Adobe\Acrobat\7.0\Updater\udlog.txt Object is locked skipped C:\Documents and Settings\Becky\Application Data\Adobe\Acrobat\7.0\Updater\udstore.js Object is locked skipped C:\Documents and Settings\Becky\Application Data\Adobe\Acrobat\7.0\UserCache.bin Object is locked skipped C:\Documents and Settings\Becky\Application Data\Adobe\Photoshop Album\Log.txt Object is locked skipped C:\Documents and Settings\Becky\Application Data\Adobe\Photoshop Album\psa.prf Object is locked skipped C:\Documents and Settings\Becky\Application Data\Adobe\Photoshop Album\status.dat Object is locked skipped C:\Documents and Settings\Becky\Application Data\AdobeAUM\pase201winen_US.aum Object is locked skipped C:\Documents and Settings\Becky\Application Data\AdobeAUM\pase201winen_US_meta.txt Object is locked skipped C:\Documents and Settings\Becky\Application Data\DESKTOP.INI Object is locked skipped C:\Documents and Settings\Becky\Application Data\Microsoft\Address Book\Becky.wab Object is locked skipped C:\Documents and Settings\Becky\Application Data\Microsoft\Address Book\Becky.wa~ Object is locked skipped C:\Documents and Settings\Becky\Application Data\Microsoft\Internet Explorer\BRNDLOG.BAK Object is locked skipped C:\Documents and Settings\Becky\Application Data\Microsoft\Internet Explorer\BRNDLOG.TXT Object is locked skipped C:\Documents and Settings\Becky\Application Data\Microsoft\Internet Explorer\Desktop.htt Object is locked skipped C:\Documents and Settings\Becky\Application Data\Microsoft\Internet Explorer\Internet Explorer Wallpaper.bmp Object is locked skipped C:\Documents and Settings\Becky\Application Data\Microsoft\Internet Explorer\Quick Launch\America Online 8.0.lnk Object is locked skipped C:\Documents and Settings\Becky\Application Data\Microsoft\Internet Explorer\Quick Launch\Dell Jukebox by musicmatch.lnk Object is locked skipped C:\Documents and Settings\Becky\Application Data\Microsoft\Internet Explorer\Quick Launch\DESKTOP.INI Object is locked skipped C:\Documents and Settings\Becky\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk Object is locked skipped C:\Documents and Settings\Becky\Application Data\Microsoft\Internet Explorer\Quick Launch\Show Desktop.scf Object is locked skipped C:\Documents and Settings\Becky\Application Data\Microsoft\Internet Explorer\Quick Launch\Sonic MyDVD - Capture Video and Audio - Create interactive DVD and VCD Titles..lnk Object is locked skipped C:\Documents and Settings\Becky\Application Data\Microsoft\Internet Explorer\Quick Launch\Windows Media Player.lnk Object is locked skipped C:\Documents and Settings\Becky\Application Data\Microsoft\Office\MSO1033.acl Object is locked skipped C:\Documents and Settings\Becky\Application Data\Microsoft\Office\Recent\index.dat Object is locked skipped C:\Documents and Settings\Becky\Application Data\Microsoft\Office\Recent\Templates.LNK Object is locked skipped C:\Documents and Settings\Becky\Application Data\Microsoft\Office\Word10.pip Object is locked skipped C:\Documents and Settings\Becky\Application Data\Microsoft\Protect\CREDHIST Object is locked skipped C:\Documents and Settings\Becky\Application Data\Microsoft\Protect\S-1-5-21-2587760716-676309004-189216933-1003\1622c6fa-0b7b-43cd-8253-c9a4b841edb4 Object is locked skipped C:\Documents and Settings\Becky\Application Data\Microsoft\Protect\S-1-5-21-2587760716-676309004-189216933-1003\Preferred Object is locked skipped C:\Documents and Settings\Becky\Application Data\Microsoft\Templates\Normal.dot Object is locked skipped C:\Documents and Settings\Becky\Application Data\Microsoft\Windows\Themes\Custom.theme Object is locked skipped C:\Documents and Settings\Becky\Application Data\Real\rnadmin\rnsystem.dat Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@a8-asy.a8ww[1].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@a8ww[1].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@aimtoday.aim[2].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@aim[1].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@anad.tacoda[1].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@aolcom[1].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@aol[1].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@atwola[2].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@circuitcity[2].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@cm.circuitcity[1].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@comedycentral[2].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@dcshm.verizon[1].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@dc[1].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@dc[3].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@driveinsurance[1].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@eatps.web.aol[1].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@edge.ru4[1].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@emjcd[2].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@ian[2].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@icc.intellisrv[2].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@imgwww.priceline[2].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@kefta[1].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@link[1].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@m.webtrends[1].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@m03.webmail.aol[1].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@mail.yahoo[2].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@mail1.webmail.aol[2].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@microsoft[1].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@mtbanking[2].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@my.screenname.aol[1].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@my.yahoo[1].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@online-security-experts[2].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@payment1.driveinsurance[1].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@payment2.driveinsurance[1].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@priceline[2].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@progressive[2].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@screenname.aol[1].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@search.aol[2].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@search.msn[1].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@surround.verizon[1].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@today[1].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@trafficdashboard[1].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@travel.aol[1].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@verizon.yahoo[1].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@verizononline[2].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@verizon[1].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@verizon[3].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@walmartwom[1].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@walmart[1].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@webmail-vda.webmail.aol[1].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@webmail.aol[1].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@welcome.mail.aol[1].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@windowshelp.microsoft[1].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@ww9.kohls[1].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@www.aim[1].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@www.bestbuy[2].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@www.circuitcity[1].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@www.kohls[1].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@www.landing.orchardbank[1].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@www.roxio[1].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@www.yahoo[2].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@www22.verizon[2].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@yahoo[1].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\becky@ymailupdates[1].txt Object is locked skipped C:\Documents and Settings\Becky\Cookies\INDEX.DAT Object is locked skipped C:\Documents and Settings\Becky\Desktop\desktop.ini Object is locked skipped C:\Documents and Settings\Becky\Favorites\Buy the SanDisk 2GB Digital Audio Player (SDMX52048A18) and other MP3 Players & iPods at circuitcity.com.url Object is locked skipped C:\Documents and Settings\Becky\Favorites\Dell\Dell Auction.url Object is locked skipped C:\Documents and Settings\Becky\Favorites\Dell\Dell.url Object is locked skipped C:\Documents and Settings\Becky\Favorites\Dell\Dellnet.url Object is locked skipped C:\Documents and Settings\Becky\Favorites\Dell\Gigabuys.url Object is locked skipped C:\Documents and Settings\Becky\Favorites\Dell\Support.Dell.com.url Object is locked skipped C:\Documents and Settings\Becky\Favorites\Desktop.ini Object is locked skipped C:\Documents and Settings\Becky\Favorites\Help\Online Help.url Object is locked skipped C:\Documents and Settings\Becky\Favorites\Links\Customize Links.url Object is locked skipped C:\Documents and Settings\Becky\Favorites\Links\Free Hotmail.url Object is locked skipped C:\Documents and Settings\Becky\Favorites\Links\Windows Media.url Object is locked skipped C:\Documents and Settings\Becky\Favorites\Links\Windows.url Object is locked skipped C:\Documents and Settings\Becky\Favorites\MSN.com.url Object is locked skipped C:\Documents and Settings\Becky\Favorites\Radio Station Guide.url Object is locked skipped C:\Documents and Settings\Becky\Favorites\Verizon Central\Verizon Central.url Object is locked skipped C:\Documents and Settings\Becky\Favorites\Verizon Yahoo! Bookmarks.url Object is locked skipped C:\Documents and Settings\Becky\Favorites\Verizon Yahoo! Briefcase.url Object is locked skipped C:\Documents and Settings\Becky\Favorites\Verizon Yahoo! Calendar.url Object is locked skipped C:\Documents and Settings\Becky\Favorites\Verizon Yahoo! Entertainment.url Object is locked skipped C:\Documents and Settings\Becky\Favorites\Verizon Yahoo! Finance.url Object is locked skipped C:\Documents and Settings\Becky\Favorites\Verizon Yahoo! Games.url Object is locked skipped C:\Documents and Settings\Becky\Favorites\Verizon Yahoo! Groups.url Object is locked skipped C:\Documents and Settings\Becky\Favorites\Verizon Yahoo! Home.url Object is locked skipped C:\Documents and Settings\Becky\Favorites\Verizon Yahoo! Mail.url Object is locked skipped C:\Documents and Settings\Becky\Favorites\Verizon Yahoo! Maps.url Object is locked skipped C:\Documents and Settings\Becky\Favorites\Verizon Yahoo! Member Center\Account(s) & Billing.url Object is locked skipped C:\Documents and Settings\Becky\Favorites\Verizon Yahoo! Member Center\Help & Customer Care.url Object is locked skipped C:\Documents and Settings\Becky\Favorites\Verizon Yahoo! Member Center\Products & Services.url Object is locked skipped C:\Documents and Settings\Becky\Favorites\Verizon Yahoo! Member Center\Verizon Yahoo! Member Center.url Object is locked skipped C:\Documents and Settings\Becky\Favorites\Verizon Yahoo! Music.url Object is locked skipped C:\Documents and Settings\Becky\Favorites\Verizon Yahoo! News.url Object is locked skipped C:\Documents and Settings\Becky\Favorites\Verizon Yahoo! People Search.url Object is locked skipped C:\Documents and Settings\Becky\Favorites\Verizon Yahoo! Photos.url Object is locked skipped C:\Documents and Settings\Becky\Favorites\Verizon Yahoo! Shopping.url Object is locked skipped C:\Documents and Settings\Becky\Favorites\Verizon Yahoo! Sports.url Object is locked skipped C:\Documents and Settings\Becky\Favorites\Verizon Yahoo! Travel.url Object is locked skipped C:\Documents and Settings\Becky\Favorites\Verizon Yahoo! Weather.url Object is locked skipped C:\Documents and Settings\Becky\Favorites\Yahooligans!.url Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Application Data\Adobe\Acrobat\7.0\Cache\AcroFnt07.lst Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Application Data\Adobe\Color\ACECache4.lst Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Application Data\AOL OCP\AIM\Storage\All Users\localStorage\common.cls Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Application Data\AOL OCP\AIM\Storage\All Users\profile.dat Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Application Data\AOL OCP\AIM\Storage\data\outbacki\localStorage\common.cls Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Application Data\AOL OCP\AIM\Storage\data\outbacki\profile.dat Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Application Data\IconCache.db Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Application Data\Identities\{69086636-3B60-4432-B518-DFACA7D6E8BB}\Microsoft\Outlook Express\cleanup.log Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Application Data\Identities\{69086636-3B60-4432-B518-DFACA7D6E8BB}\Microsoft\Outlook Express\Folders.dbx Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Application Data\Identities\{69086636-3B60-4432-B518-DFACA7D6E8BB}\Microsoft\Outlook Express\Inbox.dbx Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Application Data\Identities\{69086636-3B60-4432-B518-DFACA7D6E8BB}\Microsoft\Outlook Express\Offline.dbx Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Application Data\Identities\{69086636-3B60-4432-B518-DFACA7D6E8BB}\Microsoft\Outlook Express\Outbox.dbx Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Application Data\Microsoft\CD Burning\My Pictures\Desktop.ini Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Application Data\Microsoft\CD Burning\My Pictures\Sample Pictures.lnk Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Application Data\Microsoft\Internet Explorer\MSIMGSIZ.DAT Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Application Data\Microsoft\Wallpaper1.bmp Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped C:\Documents and Settings\Becky\Local Settings\DESKTOP.INI Object is locked skipped C:\Documents and Settings\Becky\Local Settings\History\desktop.ini Object is locked skipped C:\Documents and Settings\Becky\Local Settings\History\History.IE5\desktop.ini Object is locked skipped C:\Documents and Settings\Becky\Local Settings\History\History.IE5\INDEX.DAT Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temp\AutoDL%3FBundleId=11026_b197d946.exe Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temp\jinstall.cfg Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temp\jusched.log Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temp\rtdrvmon.exe Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temp\WERC8.tmp.dir00\taskdir.exe.hdmp Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temp\WERC8.tmp.dir00\taskdir.exe.mdmp Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temp\~DF728F.tmp Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4BSPEZOF\1fc4522a929a09ab64faa297367cf565_1[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4BSPEZOF\4123799bc1dec118f0b41f4ac1b4b45f_1[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4BSPEZOF\4710bf8360c6e38c2224f26e29c61832_1[1].jpg Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4BSPEZOF\520b01114f5da88fe10f7f725f894f5f_1[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4BSPEZOF\63865d7062fd36bee36b1603746e898a_1[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4BSPEZOF\75358c6dcb4a4f0359c7b45ede234e78_1[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4BSPEZOF\75ffe868ac03817d848423c32e2d8224_1[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4BSPEZOF\7605c3942f5c70fd2f08a39212fb9650_1[1].js Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4BSPEZOF\81dec2b750878c04cee8fc80a915b5da_1[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4BSPEZOF\br_9a9a9a_fff[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4BSPEZOF\btbg[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4BSPEZOF\c434517b1389f8f032d80a1bf88fd44c_1[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4BSPEZOF\CAMZKTQB.HTM Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4BSPEZOF\ctr[1].php Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4BSPEZOF\desktop.ini Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4BSPEZOF\download[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4BSPEZOF\download[1].jpg Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4BSPEZOF\fe2c8cc9e20b8d115c638d59c4dcf44d_1[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4BSPEZOF\get_the_best_deal[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4BSPEZOF\help_red[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4BSPEZOF\img[1].htm Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4BSPEZOF\img[2].htm Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4BSPEZOF\lsmfonts20040826[1].css Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4BSPEZOF\mc_tab_r[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4BSPEZOF\messenger[1].jpg Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4BSPEZOF\sideknob_b[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4BSPEZOF\vzhelp[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4BSPEZOF\vzhelp[2].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4BSPEZOF\WebResource[1].axd Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4BSPEZOF\ybb_print_200505190859[1].css Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4BSPEZOF\yop_pic[1].jpg Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4TYRG9EJ\259793512edd2593d1c5c5cf9def80c8_1[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4TYRG9EJ\282x34_red_bar[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4TYRG9EJ\391a72cf4fa6a946774927c3b19fc69a_1[1].js Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4TYRG9EJ\3cacaf71b0d584c2c886772d0198ebeb_1[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4TYRG9EJ\5b8e02a2c3cd2e2f18766798c3ee0c3a_1[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4TYRG9EJ\69a4afd0e233b04cd6952083a8968b04_1[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4TYRG9EJ\6a6c65304788bd5e968b503bbbc3e642_1[1].png Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4TYRG9EJ\9xYQrdi5^Dqfh2cnC2_Fjg--[1] Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4TYRG9EJ\c67f651870c1f4655e8589f41ce866bf_1[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4TYRG9EJ\c8ad9845c9414424cb5854238af212b0_1[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4TYRG9EJ\cta_dr[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4TYRG9EJ\d449315275150870e151d56f9de97086_1[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4TYRG9EJ\default.aspx_2[1].js Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4TYRG9EJ\desktop.ini Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4TYRG9EJ\download[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4TYRG9EJ\f1954b116d5d28866dc333d8e9e11187_1[2].js Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4TYRG9EJ\img[1].htm Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4TYRG9EJ\img[2].htm Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4TYRG9EJ\img[3].htm Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4TYRG9EJ\img[4].htm Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4TYRG9EJ\img[5].htm Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4TYRG9EJ\loopqualbox_bottom_left[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4TYRG9EJ\loopqualbox_bottom_right[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4TYRG9EJ\mc_hdr_bg[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4TYRG9EJ\product_detail;_ylt=Av0LW2kpgn2sxpTb4lgoh4_V78cF[1].htm Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4TYRG9EJ\verizony[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4TYRG9EJ\verizon_logo[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4TYRG9EJ\ybb_200505240133[2].js Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4TYRG9EJ\ybb_print_200505190859[2].css Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\4TYRG9EJ\ygma5[1].css Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\6JYLAZOX\075588455@Frame2[1] Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\6JYLAZOX\48af1a8898e009e677dc7376c5b391f9_1[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\6JYLAZOX\5753e3d4274b1fca12e300f20f381ba9_1[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\6JYLAZOX\67c33ee22a6ccb9aa7e7dcaebbe2cc18_1[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\6JYLAZOX\690d535b94271a9b6900046514a26d1c_1[1].js Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\6JYLAZOX\a1832eabdc247fad12ce41a10641d254_1[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\6JYLAZOX\bb034592821ed27d179764b5fbc7ef26_1[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\6JYLAZOX\bc_2.0.3[2].js Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\6JYLAZOX\bri[1].jpg Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\6JYLAZOX\browserHistory[1].html Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\6JYLAZOX\CA6XYVQ7 Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\6JYLAZOX\CAJQAX7J.gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\6JYLAZOX\CAWXAB49 Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\6JYLAZOX\couple[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\6JYLAZOX\d427e36e4357a638545644198062a417_1[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\6JYLAZOX\desktop.ini Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\6JYLAZOX\download[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\6JYLAZOX\event[1] Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\6JYLAZOX\img[1].htm Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\6JYLAZOX\img[2].htm Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\6JYLAZOX\img[3].htm Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\6JYLAZOX\img[4].htm Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\6JYLAZOX\loopqualbox_top_left[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\6JYLAZOX\mail[1].jpg Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\6JYLAZOX\online-security-experts[1].htm Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\6JYLAZOX\pho[1].jpg Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\6JYLAZOX\spacer[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\6JYLAZOX\tl_9a9a9a_fff[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\6JYLAZOX\WebResource[1] Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\6JYLAZOX\WebResource[1].axd Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\6JYLAZOX\ycs_aheaderft[2].css Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\desktop.ini Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\G5MJ01AB\03a57a932e4175ad15078cf2c62e1b27_1[1].js Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\G5MJ01AB\13015113c52e74fbe8c4e1e42fe5016b_1[1].png Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\G5MJ01AB\59520db67a651269ccde5a28b4616009_1[1].js Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\G5MJ01AB\a9ef7e3e4ceca261835850b7f712c967_1[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\G5MJ01AB\afb258a78efa8efc9b5583e083c2220b_1[1].png Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\G5MJ01AB\arrow[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\G5MJ01AB\authrootstl[1].cab Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\G5MJ01AB\b47f2071d0d74ea899c0125b18c95721_1[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\G5MJ01AB\b91aa3e8b672f6d87eeac1ee9995c009_1[2].js Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\G5MJ01AB\bl_9a9a9a_fff[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\G5MJ01AB\browserHistory[1].htm Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\G5MJ01AB\d6d69d5b42afe1a366305940dd167643_1[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\G5MJ01AB\desktop.ini Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\G5MJ01AB\df3e567d6f16d040326c7a0ea29a4f41_1[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\G5MJ01AB\download[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\G5MJ01AB\grids_2.0.0[2].css Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\G5MJ01AB\img[1].htm Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\G5MJ01AB\img[2].htm Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\G5MJ01AB\img[3].htm Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\G5MJ01AB\img[4].htm Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\G5MJ01AB\loopqualbox_top_right[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\G5MJ01AB\masthead_lt_cap[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\G5MJ01AB\mc_tab_sel_l[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\G5MJ01AB\pblocker[1].jpg Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\G5MJ01AB\r280927454[1].jpg Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\G5MJ01AB\style[1].css Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\G5MJ01AB\top_of_heads[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\G5MJ01AB\tr_9a9a9a_fff[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\G5MJ01AB\ybb_200507180256[2].css Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\INDEX.DAT Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\MZZJP2KG\46c08f52222e2074b1644e0187089c4c_1[1].png Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\MZZJP2KG\49b30ab6f38eb61671efa6f3ec938eca_1[2].js Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\MZZJP2KG\5f2c336ccc6ec2852109d5cdd8ad7723_1[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\MZZJP2KG\8010c4a954b60932344920ac360960b2_1[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\MZZJP2KG\864c9e9b0c3d4e859a2b9c11fc37633e_1[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\MZZJP2KG\a159c0b6e51b60f8677a452ee611a7f0_1[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\MZZJP2KG\aol[1].htm Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\MZZJP2KG\authrootseq[1].txt Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\MZZJP2KG\b739eb7935976d89aecbc5d5a0d82a5b_1[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\MZZJP2KG\blank[1].html Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\MZZJP2KG\CAYJYZIL.gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\MZZJP2KG\CAYNAFM1.gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\MZZJP2KG\dcs[1].js Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\MZZJP2KG\desktop.ini Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\MZZJP2KG\download[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\MZZJP2KG\download[2].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\MZZJP2KG\f98d167cd005f8eec5d90453650ba45d_1[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\MZZJP2KG\img[1].htm Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\MZZJP2KG\img[2].htm Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\MZZJP2KG\login_verify2[1].htm Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\MZZJP2KG\lsmfonts20040826[2].css Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\MZZJP2KG\mail[1].jpg Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\MZZJP2KG\mdserver[1].dll Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\MZZJP2KG\mdserver[2].dll Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\MZZJP2KG\red_masthead_tile[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\MZZJP2KG\rs[1] Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\MZZJP2KG\yahoo_2.0.0-b4[1].js Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\MZZJP2KG\yellow_tile[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\MZZJP2KG\ylib_dom[2].js Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\MZZJP2KG\yregml_200507281530[2].js Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\O9YJK1IJ\027e2b0fe4e0aa7c3a2892a650cebf4a_1[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\O9YJK1IJ\4b565bfce44ecf3e3d394fa04ab2d535_1[2].css Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\O9YJK1IJ\5097a959d9920cd8665c537dc31ae941_1[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\O9YJK1IJ\85a9a123a11cd7dc1ef9c670f0145fbe_1[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\O9YJK1IJ\afbc4be1d0b47c67167c6455c3b1c8e3_1[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\O9YJK1IJ\aol[3] Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\O9YJK1IJ\bg_lrg_vz[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\O9YJK1IJ\CACZPT72.HTM Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\O9YJK1IJ\d1d889feed1d155f0285f2694cd2c2aa_1[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\O9YJK1IJ\dadf7879d175cdbce22bb8fd7aca9f3e_1[1].png Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\O9YJK1IJ\desktop.ini Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\O9YJK1IJ\dom_2.0.0-b4[2].js Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\O9YJK1IJ\download[1].jpg Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\O9YJK1IJ\download[2].jpg Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\O9YJK1IJ\fatbelt_liam[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\O9YJK1IJ\fd39a38bbb0d7ce6362f408c7284bea1_1[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\O9YJK1IJ\img[1].htm Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\O9YJK1IJ\MainBg[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\O9YJK1IJ\mc_tab_l[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\O9YJK1IJ\p3p[1].xml Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\O9YJK1IJ\redbar_rt_cap[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\O9YJK1IJ\spyaway_setup[1].exe Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\O9YJK1IJ\vzy_sm_mailbeta[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\O9YJK1IJ\WebResource[1].axd Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\O9YJK1IJ\ybb_200508150345[2].js Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\O9YJK1IJ\ylib_list[2].js Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\O9YJK1IJ\ymknb_lb[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\O9YJK1IJ\[1] Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\O9YJK1IJ\[2] Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\ODANGXUB\2360491782cdd2adc980127939c45f81_1[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\ODANGXUB\488857fc455c894f6ef563a45328870a_1[2].js Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\ODANGXUB\8a2d6677ef414f86d8969ad07e0346b8_1[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\ODANGXUB\adsWrapper[3].js Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\ODANGXUB\animation_2.0.0-b4[2].js Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\ODANGXUB\aol[3] Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\ODANGXUB\bba5c070dbb63c35f0ede3d94ca33077_1[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\ODANGXUB\bc_2.0.3[2].js Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\ODANGXUB\blank[1].8 Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\ODANGXUB\db5abf9cf564919aea3f4d731f239894_1[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\ODANGXUB\default.aspx[1].js Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\ODANGXUB\desktop.ini Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\ODANGXUB\download[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\ODANGXUB\getUserFeedData[1] Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\ODANGXUB\getUserFeedData[2] Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\ODANGXUB\img[1].htm Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\ODANGXUB\img[2].htm Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\ODANGXUB\mdserver[1].dll Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\ODANGXUB\rs[2] Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\ODANGXUB\signup_today[1].gif Object is locked skipped C:\Documents and Settings\Becky\Local Settings\Temporary Internet Files\Content.IE5\ODANGXUB\spacer[1].gif Object

#7 sdutcher

sdutcher

    Authentic Member

  • Authentic Member
  • PipPip
  • 101 posts

Posted 20 March 2007 - 07:23 PM

C:\Documents and Settings\Jare'\asfds Object is locked skipped C:\Documents and Settings\Jare'\Cookies\INDEX.DAT Object is locked skipped C:\Documents and Settings\Jare'\Cookies\jare'@yahoo[1].txt Object is locked skipped C:\Documents and Settings\Jare'\Desktop\asfds Object is locked skipped C:\Documents and Settings\Jare'\Desktop\desktop.ini Object is locked skipped C:\Documents and Settings\Jare'\Desktop\MP10Setup.exe Object is locked skipped C:\Documents and Settings\Jare'\Desktop\sdfdsf Object is locked skipped C:\Documents and Settings\Jare'\Desktop\Unused Desktop Shortcuts\resume.doc Object is locked skipped C:\Documents and Settings\Jare'\Desktop\wdcsadsad Object is locked skipped C:\Documents and Settings\Jare'\Desktop\zxczxc Object is locked skipped C:\Documents and Settings\Jare'\Favorites\CheapTickets More flight + hotel packages.url Object is locked skipped C:\Documents and Settings\Jare'\Favorites\Dell\Dell Auction.url Object is locked skipped C:\Documents and Settings\Jare'\Favorites\Dell\Dell.url Object is locked skipped C:\Documents and Settings\Jare'\Favorites\Dell\Dellnet.url Object is locked skipped C:\Documents and Settings\Jare'\Favorites\Dell\Gigabuys.url Object is locked skipped C:\Documents and Settings\Jare'\Favorites\Dell\Support.Dell.com.url Object is locked skipped C:\Documents and Settings\Jare'\Favorites\Dell\Verizon Yahoo! Mail.url Object is locked skipped C:\Documents and Settings\Jare'\Favorites\Desktop.ini Object is locked skipped C:\Documents and Settings\Jare'\Favorites\Five Ways to Watch TV on Your PC Christopher Null Yahoo! Tech.url Object is locked skipped C:\Documents and Settings\Jare'\Favorites\hannah\The Picayune Item - Thomas Sanchez.url Object is locked skipped C:\Documents and Settings\Jare'\Favorites\hannah\uncle tommy.url Object is locked skipped C:\Documents and Settings\Jare'\Favorites\Help\Online Help.url Object is locked skipped C:\Documents and Settings\Jare'\Favorites\https--www.nwa.com-cgi-bin-view_res.proparam=3357DEEA3FF035FA2C0DE6170FB5811EC05D8A16CCB3669BD90825CD446546751ED577259B3F170A.url Object is locked skipped C:\Documents and Settings\Jare'\Favorites\Links\Customize Links.url Object is locked skipped C:\Documents and Settings\Jare'\Favorites\Links\Free Hotmail.url Object is locked skipped C:\Documents and Settings\Jare'\Favorites\Links\Windows Media.url Object is locked skipped C:\Documents and Settings\Jare'\Favorites\Links\Windows.url Object is locked skipped C:\Documents and Settings\Jare'\Favorites\MSN.com.url Object is locked skipped C:\Documents and Settings\Jare'\Favorites\My eBay Buying Items I'm Bidding On.url Object is locked skipped C:\Documents and Settings\Jare'\Favorites\NOLA.com NewsFlash - Tangi drug officers kill driver after altercation.url Object is locked skipped C:\Documents and Settings\Jare'\Favorites\Online Security Test.url Object is locked skipped C:\Documents and Settings\Jare'\Favorites\Orchard Bank Credit Card Application - Log in for Account Services.url Object is locked skipped C:\Documents and Settings\Jare'\Favorites\Radio Station Guide.url Object is locked skipped C:\Documents and Settings\Jare'\Favorites\Rent A Car with Avis car rental.url Object is locked skipped C:\Documents and Settings\Jare'\Favorites\The Picayune Item - Thomas Sanchez.url Object is locked skipped C:\Documents and Settings\Jare'\Favorites\TracFone Nationwide Prepaid Wireless.url Object is locked skipped C:\Documents and Settings\Jare'\Favorites\Verizon Central\Verizon Central.url Object is locked skipped C:\Documents and Settings\Jare'\Favorites\Verizon Yahoo! Bookmarks.url Object is locked skipped C:\Documents and Settings\Jare'\Favorites\Verizon Yahoo! Calendar.url Object is locked skipped C:\Documents and Settings\Jare'\Favorites\Verizon Yahoo! Entertainment.url Object is locked skipped C:\Documents and Settings\Jare'\Favorites\Verizon Yahoo! Finance.url Object is locked skipped C:\Documents and Settings\Jare'\Favorites\Verizon Yahoo! Home.url Object is locked skipped C:\Documents and Settings\Jare'\Favorites\Verizon Yahoo! Maps.url Object is locked skipped C:\Documents and Settings\Jare'\Favorites\Verizon Yahoo! Member Center\Account(s) & Billing.url Object is locked skipped C:\Documents and Settings\Jare'\Favorites\Verizon Yahoo! Member Center\Help & Customer Care.url Object is locked skipped C:\Documents and Settings\Jare'\Favorites\Verizon Yahoo! Member Center\Products & Services.url Object is locked skipped C:\Documents and Settings\Jare'\Favorites\Verizon Yahoo! Member Center\Verizon Yahoo! Member Center.url Object is locked skipped C:\Documents and Settings\Jare'\Favorites\Verizon Yahoo! Music.url Object is locked skipped C:\Documents and Settings\Jare'\Favorites\Verizon Yahoo! News.url Object is locked skipped C:\Documents and Settings\Jare'\Favorites\Verizon Yahoo! People Search.url Object is locked skipped C:\Documents and Settings\Jare'\Favorites\Verizon Yahoo! Photos.url Object is locked skipped C:\Documents and Settings\Jare'\Favorites\Verizon Yahoo! Travel.url Object is locked skipped C:\Documents and Settings\Jare'\Favorites\Verizon Yahoo! Weather.url Object is locked skipped C:\Documents and Settings\Jare'\Favorites\Yahoo! Travel Car Search Results.url Object is locked skipped C:\Documents and Settings\Jare'\Favorites\Yahooligans!.url Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Application Data\Adobe\Acrobat\7.0\Cache\AcroFnt07.lst Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Application Data\Adobe\Color\ACECache4.lst Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Application Data\IconCache.db Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Application Data\Identities\{A2555F6D-9AFB-46F5-A606-579D8921FB10}\Microsoft\Outlook Express\cleanup.log Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Application Data\Identities\{A2555F6D-9AFB-46F5-A606-579D8921FB10}\Microsoft\Outlook Express\Deleted Items.dbx Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Application Data\Identities\{A2555F6D-9AFB-46F5-A606-579D8921FB10}\Microsoft\Outlook Express\Folders.dbx Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Application Data\Identities\{A2555F6D-9AFB-46F5-A606-579D8921FB10}\Microsoft\Outlook Express\Inbox.dbx Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Application Data\Identities\{A2555F6D-9AFB-46F5-A606-579D8921FB10}\Microsoft\Outlook Express\Offline.dbx Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Application Data\Identities\{A2555F6D-9AFB-46F5-A606-579D8921FB10}\Microsoft\Outlook Express\Outbox.dbx Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Application Data\Identities\{A2555F6D-9AFB-46F5-A606-579D8921FB10}\Microsoft\Outlook Express\Pop3uidl.dbx Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Application Data\Identities\{A2555F6D-9AFB-46F5-A606-579D8921FB10}\Microsoft\Outlook Express\Sent Items.dbx Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Application Data\Microsoft\HelpCtr\D23D0028-A543-4767-B4AA-1581D8E1CDB2_1033.xml Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Application Data\Microsoft\HelpCtr\HelpSessionHistory.dat Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Application Data\Microsoft\Internet Explorer\MSIMGSIZ.DAT Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\DESKTOP.INI Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\History\desktop.ini Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\History\History.IE5\desktop.ini Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\History\History.IE5\INDEX.DAT Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\10BF1.dmp Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\18.tmp Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\19.tmp Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\1B.tmp Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\1C73B28949398.tif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\1C73B2AED8CA0.tif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\3SM5IK9J.htm Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\7D.tmp Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\7F.tmp Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\av3B6.exe Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\b122.exe Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\Cookies\index.dat Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\DhlRGcegi Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\DpiDGmohg Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\gkjnr.conf Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\gtb2k1033.exe Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\h91746.exe Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\her.pt Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\History\History.IE5\desktop.ini Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\History\History.IE5\index.dat Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\ICD1.tmp\Flash9b.ocx Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\ICD1.tmp\FlashUtil9b.exe Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\ICD1.tmp\swflash.inf Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\ICD2.tmp\Flash9b.ocx Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\ICD2.tmp\FlashUtil9b.exe Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\ICD2.tmp\swflash.inf Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\ICD3.tmp\Flash9b.ocx Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\ICD3.tmp\FlashUtil9b.exe Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\ICD3.tmp\swflash.inf Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\ICD4.tmp\Flash9b.ocx Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\ICD4.tmp\FlashUtil9b.exe Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\ICD4.tmp\swflash.inf Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\ICD5.tmp\Flash9b.ocx Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\ICD5.tmp\FlashUtil9b.exe Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\ICD5.tmp\swflash.inf Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\is-1IVEA.tmp\SecurityUtil.dll Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\is-OBMV4.tmp\SecurityUtil.dll Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\JA2894BA.htm Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\java_install.log Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\java_install_reg.log Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\jinstall.cfg Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\jupdate1.5.0.xml Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\jusched.log Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\kaw Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\kawkgs Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\laf3B4.tmp Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\laf3B5.tmp Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\Lotdu Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\maxdd1.game Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\MinEGmghi Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\NmqOLhhhg Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\nsx2.tmp Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\nsx3.tmp\System.dll Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\ocpinst.log Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\plaxo.log Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\QmgMMedfi Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\rsysinit.exe Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\rtdrvmon.exe Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\SystemDoctorFreeSetup.exe Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\TCD33.tmp\content.inf Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\TCD33.tmp\Parts management-dealership operations resume.dot Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\tciojhkp.exe Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\Temporary Internet Files\Content.IE5\4ZZNVTYY\desktop.ini Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\Temporary Internet Files\Content.IE5\78R8HE9Z\desktop.ini Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\Temporary Internet Files\Content.IE5\A5EDUOZI\desktop.ini Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\Temporary Internet Files\Content.IE5\desktop.ini Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\Temporary Internet Files\Content.IE5\QQFUH1GW\desktop.ini Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\toasterWrite1.html Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\UrjFHmehf Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\USDR6_0001_D19M2108\accepted.txt Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\USDR6_0001_D19M2108\installer.exe Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\USDR6_0001_D19M2108\size.dat Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\VBE\MSForms.exd Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\WER1.tmp Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\WER1.tmp.dir00\appcompat.txt Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\WER1A.tmp Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\WER1A.tmp.dir00\appcompat.txt Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\WER1A.tmp.dir00\manifest.txt Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\WER1A.tmp.dir00\taskdir.exe.hdmp Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\WER1A.tmp.dir00\taskdir.exe.mdmp Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\WER2.tmp Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\WER2.tmp.dir00\sysdata.xml Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\WER271.tmp Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\WER3.tmp Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\WER3.tmp.dir00\manifest.txt Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\WER3.tmp.dir00\sysdata.xml Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\WER334.tmp Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\WER368.tmp Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\WER368.tmp.dir00\appcompat.txt Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\WER368.tmp.dir00\manifest.txt Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\WER368.tmp.dir00\taskdir.exe.hdmp Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\WER368.tmp.dir00\taskdir.exe.mdmp Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\WER4.tmp Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\WER4.tmp.dir00\manifest.txt Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\WER4.tmp.dir00\sysdata.xml Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\WindowsInstaller-KB893803-v2-x86.exe Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\~DF3035.tmp Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\~DF3D83.tmp Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\~DF6126.tmp Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\~DF72C3.tmp Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\~DF731.tmp Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temp\~DFE9F4.tmp Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\0PWVO70R\.rand=0[1].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\0PWVO70R\.rand=0[2].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\0PWVO70R\.rand=0[3].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\0PWVO70R\.rand=0[4].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\0PWVO70R\.rand=0[5].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\0PWVO70R\.rand=0[6].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\0PWVO70R\.rand=0[7].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\22S0IY4N\sbox-bg[1].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\4BSPEZOF\.rand=0[10].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\4BSPEZOF\.rand=0[1].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\4BSPEZOF\.rand=0[2].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\4BSPEZOF\.rand=0[3].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\4BSPEZOF\.rand=0[6].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\4BSPEZOF\.rand=0[7].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\4BSPEZOF\.rand=0[8].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\4BSPEZOF\.rand=0[9].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\6JYLAZOX\.401292138_f862dc45af_o1edit[1].jpg Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\6JYLAZOX\.rand=0[1].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\6JYLAZOX\.rand=0[2].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\6JYLAZOX\.rand=0[3].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\6JYLAZOX\.rand=0[4].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\8DW5MZ8D\.rand=0[1].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\8DW5MZ8D\.rand=0[2].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\8DW5MZ8D\.rand=0[3].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\desktop.ini Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\GDU7CLA3\.icydkmaggieg2[1].jpg Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\GDU7CLA3\.rand=0[1].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\GDU7CLA3\.rand=0[2].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\GDU7CLA3\.rand=0[3].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\GDU7CLA3\.rand=0[4].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\GDU7CLA3\.rand=0[5].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\GDU7CLA3\.rand=0[6].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\GDU7CLA3\.rand=0[7].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\GDU7CLA3\.rand=0[8].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\GDU7CLA3\.rand=0[9].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\GH6ZKLEJ\.rand=0[1].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\GH6ZKLEJ\.rand=0[2].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\GH6ZKLEJ\.rand=0[3].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\GH6ZKLEJ\.rand=0[4].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\GH6ZKLEJ\.rand=0[5].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\GH6ZKLEJ\.rand=0[6].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\GH6ZKLEJ\.rand=0[7].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\GH6ZKLEJ\.rand=0[8].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\GH6ZKLEJ\.rand=0[9].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\GLIVC1AV\.rand=0[1].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\GLIVC1AV\.rand=0[2].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\GLIVC1AV\.rand=0[3].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\GLIVC1AV\.rand=0[4].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\GLIVC1AV\.rand=0[5].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\GLIVC1AV\.rand=0[6].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\GLIVC1AV\.rand=0[7].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\GLIVC1AV\.rand=0[8].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\GLIVC1AV\.rand=0[9].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\KL6J4XIJ\.rand=0[10].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\KL6J4XIJ\.rand=0[1].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\KL6J4XIJ\.rand=0[2].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\KL6J4XIJ\.rand=0[7].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\KL6J4XIJ\.rand=0[8].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\KL6J4XIJ\.rand=0[9].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\KXEZ89IN\.rand=0[1].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\KXEZ89IN\.rand=0[6].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\KXEZ89IN\.rand=0[7].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\KXEZ89IN\.rand=0[8].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\KXU70XEF\.rand=0[1].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\KXU70XEF\.rand=0[5].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\NSMHGS85\clientlogo[1].bmp Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\NSMHGS85\icons_1.4[1].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\NSMHGS85\loading[1].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\NSMHGS85\pa-icons2[1].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\NSMHGS85\weather-form-icon[1].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\O9YJK1IJ\.hawaii023-776783[1].jpg Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\O9YJK1IJ\.rand=0[1].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\O9YJK1IJ\.rand=0[2].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\O9YJK1IJ\.rand=0[3].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\O9YJK1IJ\.rand=0[5].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\O9YJK1IJ\.rand=0[6].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\O9YJK1IJ\.rand=0[7].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\O9YJK1IJ\.rand=0[8].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\O9YJK1IJ\.rand=0[9].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\OQM466AY\client[1].xml Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\OQM466AY\grd-1px_1.1[1].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\OQM466AY\pa-preview-shadow[1].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\OQM466AY\pa_module[1].php Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\OQM466AY\pa_module[1].txt Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\OQM466AY\signouticon[1].bmp Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\OQM466AY\trough_1.7[1].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\OT2JQP0H\.rand=0[1].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\OT2JQP0H\.rand=0[2].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\OT2JQP0H\.rand=0[3].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\OT2JQP0H\.rand=0[4].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\OT2JQP0H\.rand=0[5].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\OT2JQP0H\.rand=0[6].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\OT2JQP0H\.rand=0[7].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\QX4JUTM5\.rand=0[1].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\QX4JUTM5\.rand=0[2].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\QX4JUTM5\.rand=0[3].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\STAZK5QF\.rand=0[1].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\STAZK5QF\.rand=0[3].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\STAZK5QF\.rand=0[5].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\WXEVC9AB\.britneycarrex_450x3001[1].jpg Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\WXEVC9AB\.icydkarmanipc[1].jpg Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\WXEVC9AB\.rand=0[1].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\WXEVC9AB\.rand=0[5].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\WXEVC9AB\.rand=0[6].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\WXEVC9AB\.rand=0[7].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\Y32J21MJ\.rand=0[1].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\Y32J21MJ\.rand=0[2].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\Y32J21MJ\.rand=0[3].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\Content.IE5\Y32J21MJ\.rand=0[4].gif Object is locked skipped C:\Documents and Settings\Jare'\Local Settings\Temporary Internet Files\desktop.ini Object is locked skipped C:\Documents and Settings\Jare'\My Documents\DESKTOP.INI Object is locked skipped C:\Documents and Settings\Jare'\My Documents\My Music\Desktop.ini Object is locked skipped C:\Documents and Settings\Jare'\My Documents\My Music\Sample Music.lnk Object is locked skipped C:\Documents and Settings\Jare'\My Documents\My Pictures\Desktop.ini Object is locked skipped C:\Documents and Settings\Jare'\My Documents\My Pictures\Sample Pictures.lnk Object is locked skipped C:\Documents and Settings\Jare'\My Documents\My Videos\Desktop.ini Object is locked skipped C:\Documents and Settings\Jare'\My Documents\My Videos\Windows Movie Maker Sample File.wmv Object is locked skipped C:\Documents and Settings\Jare'\My Documents\~$rry Barkley references.doc Object is locked skipped C:\Documents and Settings\Jare'\NetHood\My Web Sites on MSN\Desktop.ini Object is locked skipped C:\Documents and Settings\Jare'\NetHood\My Web Sites on MSN\target.lnk Object is locked skipped C:\Documents and Settings\Jare'\NetHood\SharedDocs on jare (Jare)\Desktop.ini Object is locked skipped C:\Documents and Settings\Jare'\NetHood\SharedDocs on jare (Jare)\target.lnk Object is locked skipped C:\Documents and Settings\Jare'\ntuser.dat Object is locked skipped C:\Documents and Settings\Jare'\ntuser.dat.LOG Object is locked skipped C:\Documents and Settings\Jare'\NTUSER.INI Object is locked skipped C:\Documents and Settings\Jare'\Recent\Contemporary Letter.lnk Object is locked skipped C:\Documents and Settings\Jare'\Recent\Contemporary Resum1.lnk Object is locked skipped C:\Documents and Settings\Jare'\Recent\Contemporary Resume II.lnk Object is locked skipped C:\Documents and Settings\Jare'\Recent\Contemporary Resume.lnk Object is locked skipped C:\Documents and Settings\Jare'\Recent\cover letter.lnk Object is locked skipped C:\Documents and Settings\Jare'\Recent\Desktop.ini Object is locked skipped C:\Documents and Settings\Jare'\Recent\http--www.cumminsnortheast.com-Home-Employment-Cummins_Engine_&_Power_Technician_Williamsville.doc.lnk Object is locked skipped C:\Documents and Settings\Jare'\Recent\http--www.cumminsnortheast.com-Home-Employment-Service_Writer_Williamsville.doc.lnk Object is locked skipped C:\Documents and Settings\Jare'\Recent\http--www.slidell.la.us-arrest-AR%203-6-06.DOC.lnk Object is locked skipped C:\Documents and Settings\Jare'\Recent\Internet Explorer.lnk Object is locked skipped C:\Documents and Settings\Jare'\Recent\Local Disk ©.lnk Object is locked skipped C:\Documents and Settings\Jare'\Recent\REGERROR.lnk Object is locked skipped C:\Documents and Settings\Jare'\Recent\resume.lnk Object is locked skipped C:\Documents and Settings\Jare'\Recent\RPULSE.lnk Object is locked skipped C:\Documents and Settings\Jare'\Recent\service department resume.lnk Object is locked skipped C:\Documents and Settings\Jare'\Recent\sysprep (2).lnk Object is locked skipped C:\Documents and Settings\Jare'\Recent\SYSPREP.LNK Object is locked skipped C:\Documents and Settings\Jare'\Recent\Unused Desktop Shortcuts.lnk Object is locked skipped C:\Documents and Settings\Jare'\sdfdsf Object is locked skipped C:\Documents and Settings\Jare'\SendTo\Compressed (zipped) Folder.ZFSendToTarget Object is locked skipped C:\Documents and Settings\Jare'\SendTo\Desktop (create shortcut).DeskLink Object is locked skipped C:\Documents and Settings\Jare'\SendTo\DESKTOP.INI Object is locked skipped C:\Documents and Settings\Jare'\SendTo\Mail Recipient.MAPIMail Object is locked skipped C:\Documents and Settings\Jare'\SendTo\My Documents.mydocs Object is locked skipped C:\Documents and Settings\Jare'\Start Menu\DESKTOP.INI Object is locked skipped C:\Documents and Settings\Jare'\Start Menu\Programs\Accessories\Accessibility\DESKTOP.INI Object is locked skipped C:\Documents and Settings\Jare'\Start Menu\Programs\Accessories\Accessibility\Magnifier.lnk Object is locked skipped C:\Documents and Settings\Jare'\Start Menu\Programs\Accessories\Accessibility\Narrator.lnk Object is locked skipped C:\Documents and Settings\Jare'\Start Menu\Programs\Accessories\Accessibility\On-Screen Keyboard.lnk Object is locked skipped C:\Documents and Settings\Jare'\Start Menu\Programs\Accessories\Accessibility\Utility Manager.lnk Object is locked skipped C:\Documents and Settings\Jare'\Start Menu\Programs\Accessories\Address Book.lnk Object is locked skipped C:\Documents and Settings\Jare'\Start Menu\Programs\Accessories\Command Prompt.lnk Object is locked skipped C:\Documents and Settings\Jare'\Start Menu\Programs\Accessories\DESKTOP.INI Object is locked skipped C:\Documents and Settings\Jare'\Start Menu\Programs\Accessories\Entertainment\DESKTOP.INI Object is locked skipped C:\Documents and Settings\Jare'\Start Menu\Programs\Accessories\Entertainment\RealOne Player.lnk Object is locked skipped C:\Documents and Settings\Jare'\Start Menu\Programs\Accessories\Entertainment\Windows Media Player.lnk Object is locked skipped C:\Documents and Settings\Jare'\Start Menu\Programs\Accessories\Notepad.lnk Object is locked skipped C:\Documents and Settings\Jare'\Start Menu\Programs\Accessories\Program Compatibility Wizard.lnk Object is locked skipped C:\Documents and Settings\Jare'\Start Menu\Programs\Accessories\Synchronize.lnk Object is locked skipped C:\Documents and Settings\Jare'\Start Menu\Programs\Accessories\Tour Windows XP.lnk Object is locked skipped C:\Documents and Settings\Jare'\Start Menu\Programs\Accessories\Windows Explorer.lnk Object is locked skipped C:\Documents and Settings\Jare'\Start Menu\Programs\Dell Accessories\Express Service Code.lnk Object is locked skipped C:\Documents and Settings\Jare'\Start Menu\Programs\DESKTOP.INI Object is locked skipped C:\Documents and Settings\Jare'\Start Menu\Programs\Internet Explorer.lnk Object is locked skipped C:\Documents and Settings\Jare'\Start Menu\Programs\Outlook Express.lnk Object is locked skipped C:\Documents and Settings\Jare'\Start Menu\Programs\Remote Assistance.lnk Object is locked skipped C:\Documents and Settings\Jare'\Start Menu\Programs\Startup\DESKTOP.INI Object is locked skipped C:\Documents and Settings\Jare'\Start Menu\Programs\Windows Media Player.lnk Object is locked skipped C:\Documents and Settings\Jare'\Templates\ACCESS9.MDB Object is locked skipped C:\Documents and Settings\Jare'\Templates\AMIPRO.SAM Object is locked skipped C:\Documents and Settings\Jare'\Templates\EXCEL.XLS Object is locked skipped C:\Documents and Settings\Jare'\Templates\EXCEL4.XLS Object is locked skipped C:\Documents and Settings\Jare'\Templates\EXCEL9.XLS Object is locked skipped C:\Documents and Settings\Jare'\Templates\LOTUS.WK4 Object is locked skipped C:\Documents and Settings\Jare'\Templates\POWERPNT.PPT Object is locked skipped C:\Documents and Settings\Jare'\Templates\PRESENTA.SHW Object is locked skipped C:\Documents and Settings\Jare'\Templates\PWRPNT10.POT Object is locked skipped C:\Documents and Settings\Jare'\Templates\Quattro.QPW Object is locked skipped C:\Documents and Settings\Jare'\Templates\QUATTRO.WB2 Object is locked skipped C:\Documents and Settings\Jare'\Templates\shw11.shw Object is locked skipped C:\Documents and Settings\Jare'\Templates\SNDREC.WAV Object is locked skipped C:\Documents and Settings\Jare'\Templates\WINWORD.DOC Object is locked skipped C:\Documents and Settings\Jare'\Templates\WINWORD2.DOC Object is locked skipped C:\Documents and Settings\Jare'\Templates\WINWORD8.DOC Object is locked skipped C:\Documents and Settings\Jare'\Templates\WORDPFCT.WPD Object is locked skipped C:\Documents and Settings\Jare'\Templates\WORDPFCT.WPG Object is locked skipped C:\Documents and Settings\Jare'\Templates\wpg11.wpg Object is locked skipped C:\Documents and Settings\Jare'\UserData\41IVSXUZ\oWSA_UD[1].xml Object is locked skipped C:\Documents and Settings\Jare'\UserData\index.dat Object is locked skipped C:\Documents and Settings\Jare'\UserData\SLIZKXE3\sn[1].xml Object is locked skipped C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped C:\Documents and Settings\LocalService\ntuser.dat Object is locked skipped C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped C:\Documents and Settings\NetworkService\ntuser.dat Object is locked skipped C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped C:\Documents and Settings\Skittlez45689\Desktop\Hannah's folder\2 baby teacups.doc Object is locked skipped C:\Documents and Settings\Skittlez45689\Desktop\Hannah's folder\alex youngg.jpg Object is locked skipped C:\Documents and Settings\Skittlez45689\Desktop\Hannah's folder\alexs page.jpg Object is locked skipped C:\Documents and Settings\Skittlez45689\Desktop\Hannah's folder\alexx 2.jpg Object is locked skipped C:\Documents and Settings\Skittlez45689\Desktop\Hannah's folder\alexx.jpg Object is locked skipped C:\Documents and Settings\Skittlez45689\Desktop\Hannah's folder\angel.jpg Object is locked skipped C:\Documents and Settings\Skittlez45689\Desktop\Hannah's folder\Desktop.ini Object is locked skipped C:\Documents and Settings\Skittlez45689\Desktop\Hannah's folder\dont matter.doc Object is locked skipped C:\Documents and Settings\Skittlez45689\Desktop\Hannah's folder\Fave Songs.doc Object is locked skipped C:\Documents and Settings\Skittlez45689\Desktop\Hannah's folder\henry.jpg Object is locked skipped C:\Documents and Settings\Skittlez45689\Desktop\Hannah's folder\iTunes.lnk Object is locked skipped C:\Documents and Settings\Skittlez45689\Desktop\Hannah's folder\pitty.jpg Object is locked skipped C:\Documents and Settings\Skittlez45689\Desktop\Hannah's folder\poe.jpg Object is locked skipped C:\Documents and Settings\Skittlez45689\Desktop\Hannah's folder\Rockstar.doc Object is locked skipped C:\Documents and Settings\Skittlez45689\Desktop\Hannah's folder\soonsi.jpg Object is locked skipped C:\Documents and Settings\Skittlez45689\Desktop\Hannah's folder\Thumbs.db Object is locked skipped C:\Documents and Settings\Skittlez45689\Desktop\Hannah's folder\titanic pics 1.doc Object is locked skipped C:\Program Files\Internet Explorer\msimg32.dll Infected: not-a-virus:AdTool.Win32.MyWebSearch.au skipped C:\Program Files\ProcManager.exe Infected: not-a-virus:RiskTool.Win32.PsKill.a skipped C:\Program Files\Yahoo!\YPSR\Quarantine\20061118024722.zip Object is locked skipped C:\Program Files\Yahoo!\YPSR\Quarantine\ppq5.tmp Object is locked skipped C:\Program Files\Yahoo!\YPSR\Quarantine\ppq7.tmp Object is locked skipped C:\Program Files\Yahoo!\YPSR\Quarantine\ppqdb.dat Object is locked skipped C:\Program Files\Yahoo!\YPSR\Quarantine\ppqsdb.dat Object is locked skipped C:\RECYCLER\S-1-5-21-2587760716-676309004-189216933-1013\Dc1.doc Object is locked skipped C:\RECYCLER\S-1-5-21-2587760716-676309004-189216933-1013\Dc11.doc Object is locked skipped C:\RECYCLER\S-1-5-21-2587760716-676309004-189216933-1013\Dc2.jpg Object is locked skipped C:\RECYCLER\S-1-5-21-2587760716-676309004-189216933-1013\Dc4.jpg Object is locked skipped C:\RECYCLER\S-1-5-21-2587760716-676309004-189216933-1013\Dc5.jpg Object is locked skipped C:\RECYCLER\S-1-5-21-2587760716-676309004-189216933-1013\Dc6.jpg Object is locked skipped C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP135\A0063801.exe Object is locked skipped C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP142\A0076961.exe/WISE0023.BIN/data0001.cab/VVSN.exe Infected: not-a-virus:AdWare.Win32.SaveNow.z skipped C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP142\A0076961.exe/WISE0023.BIN/data0001.cab Infected: not-a-virus:AdWare.Win32.SaveNow.z skipped C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP142\A0076961.exe/WISE0023.BIN Infected: not-a-virus:AdWare.Win32.SaveNow.z skipped C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP142\A0076961.exe/WISE0027.BIN Infected: not-a-virus:AdTool.Win32.WhenU.a skipped C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP142\A0076961.exe WiseSFX: infected - 4 skipped C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP142\A0076961.exe WiseSFX Dropper: infected - 4 skipped C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP142\A0076969.EXE Infected: not-a-virus:AdWare.Win32.MyWay.b skipped C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP142\A0076972.DLL Infected: not-a-virus:AdTool.Win32.MyWebSearch.au skipped C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP142\A0076973.DLL Infected: not-a-virus:AdTool.Win32.MyWebSearch.as skipped C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP142\A0076974.DLL Infected: not-a-virus:AdTool.Win32.MyWebSearch.at skipped C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP142\A0076977.DLL Infected: not-a-virus:AdTool.Win32.MyWebSearch skipped C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP142\A0076978.DLL Infected: not-a-virus:AdTool.Win32.MyWebSearch skipped C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP142\A0076979.DLL Infected: not-a-virus:AdTool.Win32.MyWebSearch.af skipped C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP142\A0076980.DLL Infected: not-a-virus:AdTool.Win32.MyWebSearch.au skipped C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP142\A0076981.DLL Infected: not-a-virus:AdTool.Win32.MyWebSearch.au skipped C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP142\A0076982.SCR Infected: not-a-virus:AdTool.Win32.MyWebSearch skipped C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP142\A0076983.DLL Infected: not-a-virus:AdTool.Win32.MyWebSearch.au skipped C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP142\A0076984.DLL Infected: not-a-virus:AdTool.Win32.MyWebSearch skipped C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP142\A0076985.EXE Infected: not-a-virus:AdTool.Win32.MyWebSearch skipped C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP142\A0076986.DLL Infected: not-a-virus:AdTool.Win32.MyWebSearch.an skipped C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP142\A0076987.DLL Infected: not-a-virus:AdTool.Win32.MyWebSearch.aq skipped C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP142\A0076988.DLL Infected: not-a-virus:AdTool.Win32.MyWebSearch skipped C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP142\A0076990.DLL Infected: not-a-virus:AdTool.Win32.MyWebSearch.at skipped C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP142\A0076991.DLL Infected: not-a-virus:AdTool.Win32.MyWebSearch.ax skipped C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP142\A0076993.DLL Infected: not-a-virus:AdTool.Win32.MyWebSearch.at skipped C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP142\A0076995.DLL Infected: not-a-virus:AdTool.Win32.MyWebSearch skipped C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP142\A0076996.DLL Infected: not-a-virus:AdTool.Win32.MyWebSearch.as skipped C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP142\A0076997.DLL Infected: not-a-virus:AdTool.Win32.MyWebSearch.ad skipped C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP142\A0076999.EXE Infected: not-a-virus:AdTool.Win32.MyWebSearch.au skipped C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP142\A0077000.EXE Infected: not-a-virus:AdTool.Win32.MyWebSearch.au skipped C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP142\A0077001.EXE Infected: not-a-virus:AdTool.Win32.MyWebSearch skipped C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP142\A0077002.DLL Infected: not-a-virus:AdTool.Win32.MyWeb

#8 IndiGenus

IndiGenus

    Teacher Emeritus

  • Authentic Member
  • PipPipPipPipPipPip
  • 5,251 posts
  • Interests:Computer Security, Music, Sports

Posted 21 March 2007 - 06:58 AM

Hello sdutcher,

Once again, we need to make sure all hidden files are showing so please:
* Click Start.
* Open My Computer.
* Select the Tools menu and click Folder Options.
* Select the View Tab.
* Under the Hidden files and folders heading select Show hidden files and folders.
* Uncheck the Hide protected operating system files (recommended) option.
* Click Yes to confirm.
* Click OK.
Please reverse this process once the fix is complete.

Using Windows Explorer delete the following file:

C:\Program Files\ProcManager.exe<--File

Please go to http://virusscan.jotti.org, click on Browse, and upload the following file for analysis:

C:\Program Files\Internet Explorer\msimg32.dll<--File (Only from this location)

Then click Submit. Allow the file to be scanned, and then please copy and paste the results here for me to see.

If Jotti is too busy you can try these.

http://www.kaspersky...anforvirus.html
http://www.virustota.../en/indexf.html

Regards,
Dave
IndiGenus

The help you receive here is free, but if you would like to help me continue the fight against Malware then Posted Image

Logs will be closed if you haven't replied within 5 days



Proud Graduate of TC/WTT Classroom



"To find perfect composure in the midst of change is to find ourselves in nirvana."

Suzuki Roshi


#9 sdutcher

sdutcher

    Authentic Member

  • Authentic Member
  • PipPip
  • 101 posts

Posted 21 March 2007 - 02:26 PM

Still getting stuf coming up in the scans with AdAware,
coolwwwsearch, but none of the programs seem able
to fix it,, this file may be the culprit huh?

Service load:
0% 100%
File: msimg32.dll
Status:
INFECTED/MALWARE (Note: this file has been scanned before. Therefore, this file's scan results will not be stored in the database)
MD5 e12defecda3fae103d8af11bff1aad90
Packers detected:
-
Scanner results
Scan taken on 21 Mar 2007 20:17:22 (GMT)
AntiVir Found SPR/AdTool.MyWebSearch.AU
ArcaVir Found Riskware.Adtool.Mywebsearch.Au
Avast Found nothing
AVG Antivirus Found nothing
BitDefender Found Adware.MyWebSearch.M
ClamAV Found nothing
Dr.Web Found nothing
F-Prot Antivirus Found nothing
F-Secure Anti-Virus Found not-a-virus:AdTool.Win32.MyWebSearch.au (6, 2, 615)
Fortinet Found W32/MyWebSearch
Kaspersky Anti-Virus Found not-a-virus:AdTool.Win32.MyWebSearch.au
NOD32 Found nothing
Norman Virus Control Found nothing
Panda Antivirus Found nothing
VirusBuster Found nothing
VBA32 Found nothing


here is HJT log

Logfile of HijackThis v1.99.1
Scan saved at 3:23:22 PM, on 3/21/2007
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\LEXPPS.EXE
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
C:\Program Files\Spyware Doctor\sdhelp.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe
C:\Program Files\Lexmark 1200 Series\lxczbmgr.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\PROGRA~1\Grisoft\AVG7\avgcc.exe
C:\Program Files\Lexmark 1200 Series\lxczbmon.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\TrueAssistant\TrueAssistant.exe
C:\Program Files\TrueSwitchVerizonYahoo\TrueInstall.exe
C:\WINDOWS\System32\wdfmgr.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Andrew Horsfall\Desktop\help files\HijackThis.exe

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://verizon.yahoo.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O4 - HKLM\..\Run: [Verizon Internet Security Suite] "C:\Program Files\Verizon\Verizon Internet Security Suite\Rps.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Motive SmartBridge] C:\PROGRA~1\VERIZO~2\HELPSU~1\SMARTB~1\MotiveSB.exe
O4 - HKLM\..\Run: [A Verizon App] C:\PROGRA~1\VERIZO~2\HELPSU~1\VERIZO~1.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe"
O4 - HKLM\..\Run: [Lexmark 1200 Series] "C:\Program Files\Lexmark 1200 Series\lxczbmgr.exe"
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP
O4 - HKCU\..\Run: [Aim6] "C:\Program Files\AIM6\aim6.exe" /d locale=en-US ee://aol/imApp
O4 - Startup: TrueAssistant.lnk = C:\Program Files\TrueAssistant\TrueAssistant.exe
O4 - Startup: TrueSwitch Wizard Verizon Yahoo.lnk = C:\Program Files\TrueSwitchVerizonYahoo\TrueInstall.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - C:\WINDOWS\System32\shdocvw.dll
O16 - DPF: {01113300-3E00-11D2-8470-0060089874ED} - https://activatemyds...DSL/tgctlcm.cab
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky...can_unicode.cab
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} (McAfee.com Operating System Class) - http://bin.mcafee.co...72/mcinsctl.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} - http://update.micros...b?1165785661687
O16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} (DwnldGroupMgr Class) - http://bin.mcafee.co...,15/mcgdmgr.cab
O16 - DPF: {BCD5A227-8720-497B-AF5F-4403E94342E3} - https://netservices..../DSLControl.cab
O16 - DPF: {FFFFFFFF-CACE-BABE-BABE-00AA0055595A} - http://www.trueswitc...TrueInstall.exe
O19 - User stylesheet: (file missing)
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
O23 - Service: PC Tools Spyware Doctor (SDhelper) - PC Tools Research Pty Ltd - C:\Program Files\Spyware Doctor\sdhelp.exe
O23 - Service: YPCService - Yahoo! Inc. - C:\WINDOWS\SYSTEM32\YPCSER~1.EXE

#10 IndiGenus

IndiGenus

    Teacher Emeritus

  • Authentic Member
  • PipPipPipPipPipPip
  • 5,251 posts
  • Interests:Computer Security, Music, Sports

Posted 21 March 2007 - 02:43 PM

Well considering where we started out on this (which was pretty bad) things are looking alot better.

Let's go ahead and delete that dll file. Once again make sure hidden files are shown as you did earlier and use Windows Explorer to delete the following file.

NOTE: Only delete this file in this location. There are likely legitimate copies elsewhere on your computer so only delete this one:

C:\Program Files\Internet Explorer\msimg32.dll

Let's also run another scan from a different tool.

Please go Here and do an online scan. Let it fix any infections.
Let me know what is found.

After scan, reboot and post a new HijackThis log

Also let me know how the computer is running now.

Regards,
Dave
IndiGenus

The help you receive here is free, but if you would like to help me continue the fight against Malware then Posted Image

Logs will be closed if you haven't replied within 5 days



Proud Graduate of TC/WTT Classroom



"To find perfect composure in the midst of change is to find ourselves in nirvana."

Suzuki Roshi

    Advertisements

Register to Remove


#11 sdutcher

sdutcher

    Authentic Member

  • Authentic Member
  • PipPip
  • 101 posts

Posted 22 March 2007 - 10:38 AM

I was able to delete that file np but, at the F Secure site, the scan took hours,, and once it finished, (the first time it time it found 1 virus) it would not "heal" the virus, and prompted to run again. This time, it ran and found 27 , and the same error happened, couldn't heal anything. Also, pop up windows are coming up with a message like this: "message from registry to cleaner", and then goes on and instructs to visit a website for cleaning etc.. several of those popup while doing the online scans. It seems I can get AVG to find and take care of most stuff,, or Ad Aware,, or Spybot, but they aren't getting a certain worm or virus that repopulates. I know 1 virus found with F-Secure said it was: agent.afbc The computer seems to be very slow online still, but offline seems faster. I often check resources, and don't see it pegging out at 100% much lately. Also, ATF cleaner wouldn't remove any files until today, (except under the firefox tab) then it said it finally did remove some files.

#12 IndiGenus

IndiGenus

    Teacher Emeritus

  • Authentic Member
  • PipPipPipPipPipPip
  • 5,251 posts
  • Interests:Computer Security, Music, Sports

Posted 22 March 2007 - 11:43 AM

* Download Dr.Web CureIt to the desktop:
ftp://ftp.drweb.com/pub/drweb/cureit/drweb-cureit.exe
  • Doubleclick the drweb-cureit.exe file and Allow to run the express scan
  • This will scan the files currently running in memory and when something is found, click the yes button when it asks you if you want to cure it. This is only a short scan.
  • Once the short scan has finished, Click Options > Change settings
  • Choose the "Scan"-tab, remove the mark at "Heuristic analysis".
  • Back at the main window, mark the drives that you want to scan.
  • Select all drives. A red dot shows which drives have been chosen.
  • Click the green arrow at the right, and the scan will start.
  • Click 'Yes to all' if it asks if you want to cure/move the file.
  • When the scan has finished, look if you can click next icon next to the files found: Posted Image
  • If so, click it and then click the next icon right below and select Move incurable as you'll see in next image:
    Posted Image
    This will move it to the %userprofile%\DoctorWeb\quarantaine-folder if it can't be cured. (this in case if we need samples)
  • After selecting, in the Dr.Web CureIt menu on top, click file and choose save report list
  • Save the report to your desktop. The report will be called DrWeb.csv
  • Close Dr.Web Cureit.
  • Reboot your computer!! Because it could be possible that files in use will be moved/deleted during reboot.
  • After reboot, post the contents of the log from Dr.Web you saved previously in your next reply.

IndiGenus

The help you receive here is free, but if you would like to help me continue the fight against Malware then Posted Image

Logs will be closed if you haven't replied within 5 days



Proud Graduate of TC/WTT Classroom



"To find perfect composure in the midst of change is to find ourselves in nirvana."

Suzuki Roshi


#13 sdutcher

sdutcher

    Authentic Member

  • Authentic Member
  • PipPip
  • 101 posts

Posted 22 March 2007 - 07:15 PM

here is drweb's log Dynomite.exe;C:\Program Files\PopCap Games\Dynomite Deluxe;Modification of APE.based;Moved.; Process.exe;C:\SDFix\apps;Tool.Prockill;Incurable.Moved.; A0079633.exe;C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP146;Modification of APE.based;Moved.; f3PSSavr.scr;C:\WINDOWS\SYSTEM32;Adware.Msearch;Incurable.Moved.; id119.exe;C:\WINDOWS\SYSTEM32;Trojan.Sectho;Deleted.; i noticed some AVG popup windows, finding viruses, that it could not heal... i noticed some of them are in certain user accounts, in the temp internet file, but they are locked with a password. can i delete a user account? or can they be scanned while locked? this may explain some scanners showing "skipped" files??

#14 IndiGenus

IndiGenus

    Teacher Emeritus

  • Authentic Member
  • PipPipPipPipPipPip
  • 5,251 posts
  • Interests:Computer Security, Music, Sports

Posted 23 March 2007 - 09:17 AM

Let's try yet another scanner here as I still believe you have infections in place.

You will need to run this with Internet Explorer.
Run Panda's ActiveScan from here and perform a full system scan.
  • Once you are on the Panda site click the "Scan your PC" button
  • A new window will open...click the big "Check Now" button
  • Enter your Country
  • Enter your State/Province
  • Enter your e-mail address and click send
  • Select either Home User or Company
  • Click the big Scan Now button
  • If it wants to install an ActiveX component allow it
  • It will start downloading the files it requires for the scan (Note: It will take a couple minutes)
  • If you are on a slow connection it will take about 15 minuites for the scanner to load.
  • Click on "Local Disks" to start the scan
  • Once scan is done, click "see report" then "save report"
  • Save the log someplace you can find
  • Reboot
  • Post the Panda scan results in your next reply
Dave

Edited by IndiGenus, 23 March 2007 - 09:18 AM.

IndiGenus

The help you receive here is free, but if you would like to help me continue the fight against Malware then Posted Image

Logs will be closed if you haven't replied within 5 days



Proud Graduate of TC/WTT Classroom



"To find perfect composure in the midst of change is to find ourselves in nirvana."

Suzuki Roshi


#15 sdutcher

sdutcher

    Authentic Member

  • Authentic Member
  • PipPip
  • 101 posts

Posted 24 March 2007 - 05:02 AM

Incident Status Location Potentially unwanted tool:Application/Processor Not disinfected C:\Documents and Settings\Andrew Horsfall\Desktop\SDFix.exe[SDFix\apps\Process.exe] Potentially unwanted tool:Application/MyWebSearch Not disinfected C:\Documents and Settings\Andrew Horsfall\DoctorWeb\Quarantine\f3PSSavr.scr Potentially unwanted tool:Application/Processor Not disinfected C:\Documents and Settings\Andrew Horsfall\DoctorWeb\Quarantine\Process.exe Adware:adware/wintools Not disinfected C:\Documents and Settings\Andrew Horsfall\Favorites\Search the Web for Everything in One Click!.url Adware:Adware/StatBlaster Not disinfected C:\Documents and Settings\Andrew Horsfall\Local Settings\Temp\3pdEYU.exe Spyware:Cookie/Atwola Not disinfected C:\Documents and Settings\Becky\Cookies\becky@atwola[2].txt Spyware:Cookie/Atwola Not disinfected C:\Documents and Settings\Hannah\Cookies\hannah@atwola[1].txt Spyware:Cookie/Azjmp Not disinfected C:\Documents and Settings\Hannah\Cookies\hannah@azjmp[2].txt Spyware:Cookie/Belnk Not disinfected C:\Documents and Settings\Hannah\Cookies\hannah@belnk[1].txt Spyware:Cookie/Belnk Not disinfected C:\Documents and Settings\Hannah\Cookies\hannah@dist.belnk[2].txt Potentially unwanted tool:Application/SpyDawn Not disinfected C:\Documents and Settings\Jare'\Local Settings\Temp\av3B6.exe Spyware:Cookie/Atwola Not disinfected C:\Documents and Settings\Skittlez45689\Cookies\skittlez45689@atwola[1].txt Spyware:Cookie/Belnk Not disinfected C:\Documents and Settings\Skittlez45689\Cookies\skittlez45689@belnk[1].txt Spyware:Cookie/Cgi-bin Not disinfected C:\Documents and Settings\Skittlez45689\Cookies\skittlez45689@cgi-bin[1].txt Spyware:Cookie/Belnk Not disinfected C:\Documents and Settings\Skittlez45689\Cookies\skittlez45689@dist.belnk[2].txt Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Skittlez45689\Cookies\skittlez45689@go[1].txt Spyware:Cookie/Screensavers Not disinfected C:\Documents and Settings\Skittlez45689\Cookies\skittlez45689@i.screensavers[1].txt Spyware:Cookie/Atwola Not disinfected C:\Documents and Settings\Skittlez45689\Local Settings\Temp\Cookies\skittlez45689@atwola[1].txt Adware:adware/delfinmedia Not disinfected C:\keys.ini Adware:Adware/Startpage.MC Not disinfected C:\Program Files\Common Files\Microsoft Shared\Web Folders\mswsc10.dll Adware:adware/ncase Not disinfected C:\WINDOWS\180ax.exe Adware:adware/clickalchemy Not disinfected C:\WINDOWS\alchem.ini Adware:Adware/SearchAid Not disinfected C:\WINDOWS\BOOTSTAT.DAT:bzehr Adware:Adware/SearchAid Not disinfected C:\WINDOWS\BOOTSTAT.DAT:yxqls Adware:adware/easysearch Not disinfected C:\WINDOWS\dialup.exe Potentially unwanted tool:Application/FunWeb Not disinfected C:\WINDOWS\Downloaded Program Files\f3initialsetup1.0.0.15.inf Adware:Adware Program Not disinfected C:\WINDOWS\Downloaded Program Files\WildApp.inf Adware:Adware/SearchAid Not disinfected C:\WINDOWS\DtcInstall.log:lomjo Adware:Adware/SearchAid Not disinfected C:\WINDOWS\Greenstone.bmp:zcdso Adware:Adware/IPInsight Not disinfected C:\WINDOWS\INF\alchem.inf Adware:Adware/SearchAid Not disinfected C:\WINDOWS\ipld.dll:kicam Adware:Adware/SearchAid Not disinfected C:\WINDOWS\mfcwo.dll:ckaip Adware:Adware/SearchAid Not disinfected C:\WINDOWS\mssys.com:grgej Adware:Adware/Startpage.CDA Not disinfected C:\WINDOWS\mssys.com Adware:Adware/SearchAid Not disinfected C:\WINDOWS\nsreg.dat:ediqi Adware:Adware/SearchAid Not disinfected C:\WINDOWS\OCGEN.LOG:njvsb Adware:Adware/SearchAid Not disinfected C:\WINDOWS\ODBCINST.INI:nclih Adware:Adware/SearchAid Not disinfected C:\WINDOWS\orun32.isu:boylo Adware:Adware/SearchAid Not disinfected C:\WINDOWS\orun32.isu:ctlan Dialer:dialer.bny Not disinfected C:\WINDOWS\pcconfig.dat Adware:Adware/SearchAid Not disinfected C:\WINDOWS\Q816981.log:nqrec Adware:Adware/SearchAid Not disinfected C:\WINDOWS\Q816982.log:ledpp Adware:Adware/SearchAid Not disinfected C:\WINDOWS\QUICKEN.INI:wsfeq Adware:adware/superspider Not disinfected C:\WINDOWS\runwin32.exe Adware:adware/twain-tech Not disinfected C:\WINDOWS\satmat.exe Adware:Adware/SearchAid Not disinfected C:\WINDOWS\SchedLgU.Txt:hcyde Adware:Adware/SearchAid Not disinfected C:\WINDOWS\Soap Bubbles.bmp:zpdva Spyware:spyware/betterinet Not disinfected C:\WINDOWS\SUSP.exe Adware:adware/ipbill Not disinfected C:\WINDOWS\SYSTEM32\dload.exe Adware:Adware/IEDriver Not disinfected C:\WINDOWS\Temp\setup4.exe Adware:adware/topconvert Not disinfected C:\WINDOWS\updatetc.exe Adware:Adware/SearchAid Not disinfected C:\WINDOWS\VBADDIN.INI:tgcxo Adware:adware/conspy Not disinfected C:\WINDOWS\waol.exe Adware:Adware/SearchAid Not disinfected C:\WINDOWS\WINNT.BMP:jpjvp Adware:Adware/SearchAid Not disinfected C:\WINDOWS\WINNT256.BMP:dpghv Adware:Adware/SearchAid Not disinfected C:\WINDOWS\wintj32.dll:elopk Adware:adware program Not disinfected C:\WINDOWS\x.exe Adware:Adware/SearchAid Not disinfected C:\WINDOWS\_DEFAULT.PIF:geqgq

Related Topics



0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users