This is a read-only archive. No new posts or registrations. Privacy Page
Spyware / Malware / Virus Removal

[Closed] Desktop disappears, W32/Trats and Generic Dropper Malwar

9 min read

This thread's last reply is from . Advice, software, and links below may be out of date — treat specific steps and download links with caution.

Looking for the outcome? Ask AI

Ok when I restart my computer, my McAffee pops up saying something about a Generic Dropper (Trojan) and W32/Trats (Virus). It says it was blocked and removed, but this happens on every restart, so it is coming back some how. I have ran all the cleaners and scanners such as AVG, SpyBot, and ATF, before posting this HijAckThis Log, so my problem may have been solved. But I am posting to make sure. I will post my hicjack this log and my AVG Free Edition Log. Also, sometimes my desktop will disappear and just go to the background without any icons or start bar, and I have to restart.
Here is the HijackThis Log:

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 5:22:06 PM, on 1/12/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16574)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\McAfee\MBK\MBackMonitor.exe
C:\Program Files\Common Files\McAfee\HackerWatch\HWAPI.exe
C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
c:\program files\common files\mcafee\mna\mcnasvc.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe
C:\PROGRA~1\McAfee\MSC\mcpromgr.exe
c:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exe
c:\PROGRA~1\COMMON~1\mcafee\redirsvc\redirsvc.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\McAfee\MPF\MPFSrv.exe
C:\PROGRA~1\McAfee\MPS\mps.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
C:\WINDOWS\system32\SearchIndexer.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\McAfee\MPS\mpsevh.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\ALCWZRD.EXE
C:\WINDOWS\AGRSMMSG.exe
C:\WINDOWS\ALCXMNTR.EXE
c:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\PROGRA~1\Grisoft\AVG7\avgcc.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Linksys Wireless-G PCI Wireless Network Monitor\WLService.exe
C:\Program Files\Linksys Wireless-G PCI Wireless Network Monitor\WMP54Gv4.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE
C:\PROGRA~1\COMMON~1\McAfee\EmProxy\emproxy.exe
C:\WINDOWS\system32\SearchProtocolHost.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a;…&pf=desktop
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a;…&pf=desktop
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a;…&pf=desktop
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a;…&pf=desktop
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://comcast.net/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a;…&pf=desktop
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
F3 - REG:win.ini: load=C:\WINDOWS\system32\ddaba.exe
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Dcads Search Assistant - {1648E328-3E5A-4EA5-A9C6-E5F09EE272DA} - C:\WINDOWS\system32\dcads_sidebar.dll
O2 - BHO: CDNSCacheObj Object - {376892AE-1825-4E5F-9F85-23F9640051CC} - C:\WINDOWS\xmljacodec.dll (file missing)
O2 - BHO: {2ba3f862-183d-98eb-fe74-96caa8add2d5} - {5d2dda8a-ac69-47ef-be89-d381268f3ab2} - C:\WINDOWS\system32\msqancud.dll (file missing)
O2 - BHO: dcads - {6FC3C36D-7635-4D43-BA62-0D9D2F2CD06E} - C:\WINDOWS\system32\nsiD21.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MI1933~1\Office12\GRA8E1~1.DLL
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - c:\PROGRA~1\mcafee\VIRUSS~1\scriptcl.dll
O2 - BHO: (no name) - {BCA10465-EBE0-4F11-9F77-CBE3966C6C8D} - C:\WINDOWS\system32\ddaba.dll (file missing)
O3 - Toolbar: (no name) - {E1BACF55-35E1-4E47-9247-2D48660E5545} - (no file)
O4 - HKLM\..\Run: [hpsysdrv] c:\windows\system\hpsysdrv.exe
O4 - HKLM\..\Run: [FastCache] C:\Program Files\AnalogX\FastCache\fc.exe
O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
O4 - HKLM\..\Run: [AlcWzrd] ALCWZRD.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [SiSPower] Rundll32.exe SiSPower.dll,ModeAgent
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [AlcxMonitor] ALCXMNTR.EXE
O4 - HKLM\..\Run: [MBkLogOnHook] C:\Program Files\McAfee\MBK\LogOnHook.exe
O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [PS2] C:\WINDOWS\system32\ps2.exe
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask .exe" -atboottime
O4 - HKLM\..\Run: [f0160978] rundll32.exe "C:\WINDOWS\system32\fsgimqpk.dll",b
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Policies\Explorer\Run: [System Patcher] BTCPatcher.exe
O4 - HKUS\S-1-5-19\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [DWQueuedReporting] "C:\PROGRA~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" -t (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [DWQueuedReporting] "C:\PROGRA~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" -t (User 'Default user')
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MI1933~1\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MI1933~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MI1933~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MI1933~1\Office12\REFIEBAR.DLL
O9 - Extra button: Run IMVU - {d9288080-1baa-4bc4-9cf8-a92d743db949} - C:\Documents and Settings\Compaq_Owner\Start Menu\Programs\IMVU\Run IMVU.lnk (file missing)
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {02A2D714-433E-46E4-B217-7C3B3FAF8EAE} (ScrabbleCubes Control) - http://www.worldwinner.com/games/v46/scrab…rabblecubes.cab
O16 - DPF: {0C7F3F20-8BAB-11D2-9432-00C04F8EF48F} (Downloadable Speech API) - http://activex.microsoft.com/activex/contr…api/spchapi.exe
O16 - DPF: {0E5F0222-96B9-11D3-8997-00104BD12D94} (PCPitstop Utility) - http://www.pcpitstop.com/pcpitstop/PCPitStop.CAB
O16 - DPF: {48DD0448-9209-4F81-9F6D-D83562940134} (MySpace Uploader Control) - http://lads.myspace.com/upload/MySpaceUploader.cab
O16 - DPF: {49232000-16E4-426C-A231-62846947304B} (SysData Class) - http://ipgweb.cce.hp.com/rdqaio/downloads/sysinfo.cab
O16 - DPF: {6B75345B-AA36-438A-BBE6-4078B4C6984D} (HpProductDetection Class) - http://h20270.www2.hp.com/ediags/gmn2/inst…ctDetection.cab
O16 - DPF: {8A94C905-FF9D-43B6-8708-F0F22D22B1CB} (Wwlaunch Control) - http://www.worldwinner.com/games/shared/wwlaunch.cab
O16 - DPF: {8BC53B30-32E4-4ED3-BEF9-DB761DB77453} (CInstallLPCtrl Object) - http://u3.sandisk.com/download/apps/LPInstaller.CAB
O16 - DPF: {A90A5822-F108-45AD-8482-9BC8B12DD539} (Crucial cpcScan) - http://www.crucial.com/controls/cpcScanner.cab
O16 - DPF: {CA141FD0-AC7F-11D1-97A3-0060082730FF} (Lernout & Hauspie TruVoice English Text to Speech Engine) - http://activex.microsoft.com/activex/contr…nt2/tv_enua.exe
O16 - DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} (get_atlcom Class) - http://www.adobe.com/products/acrobat/nos/gp.cab
O16 - DPF: {FFB3A759-98B1-446F-BDA9-909C6EB18CC7} (PCPitstop Exam) - http://utilities.pcpitstop.com/optimize2/pcpitstop2.dll
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MI1933~1\Office12\GR99D3~1.DLL
O20 - Winlogon Notify: vtutsqo - vtutsqo.dll (file missing)
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
O23 - Service: McAfee E-mail Proxy (Emproxy) - McAfee, Inc. - C:\PROGRA~1\COMMON~1\McAfee\EmProxy\emproxy.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: MBackMonitor - McAfee - C:\Program Files\McAfee\MBK\MBackMonitor.exe
O23 - Service: McAfee HackerWatch Service - McAfee, Inc. - C:\Program Files\Common Files\McAfee\HackerWatch\HWAPI.exe
O23 - Service: McAfee Update Manager (mcmispupdmgr) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcupdmgr.exe
O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - c:\program files\common files\mcafee\mna\mcnasvc.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe
O23 - Service: McAfee Protection Manager (mcpromgr) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcpromgr.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exe
O23 - Service: McAfee Redirector Service (McRedirector) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\redirsvc\redirsvc.exe
O23 - Service: McAfee Real-time Scanner (McShield) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
O23 - Service: McAfee SystemGuards (McSysmon) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee, Inc. - C:\Program Files\McAfee\MPF\MPFSrv.exe
O23 - Service: McAfee Privacy Service (MPS9) - McAfee, Inc. - C:\PROGRA~1\McAfee\MPS\mps.exe
O23 - Service: PCLEPCI - Pinnacle Systems GmbH - C:\WINDOWS\system32\drivers\pclepci.sys
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
O23 - Service: WMP54Gv4SVC - GEMTEKS - C:\Program Files\Linksys Wireless-G PCI Wireless Network Monitor\WLService.exe
O24 - Desktop Component 0: (no name) - file:///C:/DOCUME~1/COMPAQ~1/LOCALS~1/Temp/msohtmlclip1/01/clip_image001.jpg

–
End of file - 12165 bytes
Here is the AVG Free Scanner Log (It was copied from Excel to Notepad, so if you want me to attach it was an excel file, please let me know): General properties Report name Complete Test Start time 1/12/2008 8:40 End time 1/12/2008 11:29:59 AM (total: 2:49:06.6 hrs) Launch method Scanning launched manually Scanning result Threats found Report status Scanning completed successfully Object summary Scanned 146122 Threats Found 99 Cleaned 0 Moved to vault 92 Deleted 7 Errors 0 C:\Documents and Settings\Compaq_Owner\Desktop\Lawrence's\LimeWire\TuneUp Utilities 2007 6.0.2311 Keygen.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\Documents and Settings\Compaq_Owner\Local Settings\Temp\TEMP.ZIP:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\3D Studio Max 9 Keygen.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\Adobe Acrobat Professional 8.1 Keygen.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\Adobe Creative Suite 3 Keygen.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\Adobe Photoshop CS3 Crack.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\Adobe Photoshop CS3 Lite KEY.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\Adobe Photoshop Elements v6.0 Keygen.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\Adobe Photoshop Lightroom 1.3 Keygen.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\Adobe Premiere Pro CS3 Keygen.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\Advanced System Optimizer 2.20.4.746 Crack.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\Advanced Uninstaller Professional 8.5.1 + Working KEY.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\Alcohol 120 v.1.9.6 Keygen.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\Alive YouTube Video Converter 1.2.6.9.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\ALL.Adobe.Products.Cracks.and.Keygens.(ALL.in.One).rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\All.Antivirus.Keygen-Serials-Cracks.(Symantec-Antivir-McAfee-Kaspersky-Nod32-AVG).by.ElL0cos.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\All.MicroSoft.Products.Keygens.and.Cracks.(all-in-one).rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\AnyDVD & AnyDVD HD 6.3 Crack.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\Ashampoo Office 2008 3.00 + KEY.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\Autodesk 3DS MAX 2008 Crack.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\Autodesk AutoCAD 2008 Crack.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\Autodesk Inventor Suite 2008 Keygen.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\Black XP 5.0 DVD Keygen.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\ConvertXtoDVD 2.2.3.2 Keygen.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\CyberLink PowerDVD 7.3.3516 Keygen.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\Daemon Tools Pro Basic 4.11.0219 Serial.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\DivX Bundle 6.8 Professional + Keygen.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\DivX-XviD.Multi.Converter.1.9.[Converte.movies.en.el.fomrat.de.tu.selciòn).rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\DVDFab Platinum 4.0.1.2 Keygen.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\DVDFab Platinum 4.0.3 Keygen.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\Easy DVD Creator 1.6.2 Working KEY! Espanòl.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\ESET NOD32 Antivirus 3.0.566 Patcher to have ALL updates.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\FL Studio 7 Crack.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\FlashFXP.v3.6.MULTiLiNGUAL-(ESP-ITA-ENG-DEU-FRA)-KeyGen.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\FlashGet 1.9.6.1073 [Best Download manager] + Key.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\Google Earth 4.2 Keygen.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\Guitar Pro v5.2 Keygen.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\Internet Download Manager 5.11.10 Keygen.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\Intervideo WinDVD Platinum 8.0 Keygen.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\Kaspersky Antivirus Working Keygen.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\Macromedia DreamWeaver CS3 Keygen.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\Magic DVD Ripper 5.2.1:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\Magic ISO 5.4 Keygen.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\Magic Video Converter 8.0.2.18 Keygen.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\Matlab 2007 Crack.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\McAfee.Total.Protection.2007.Multilingual.Working.Crack-DAiMX.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\McAfee.Total.Protection.2008.WorkingPatch.Update.TILL.2010.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\Mega.CODEC.Video.and.Audio.for.WindowsXP.and.Windows.VISTA.colleciòn.by.Mus taX.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\Microsoft Office 2007 Keygen.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\Microsoft Windows VISTA Validation Crack 2008 Patch.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\Nero 8 Ultra Edition 8.1.1.4 Keygen.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\NOD32 3.xx Universal Fix Patch.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\Norton 360 Working Keygen.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\Norton Ghost 12 Keygen.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\Norton Product Suite 2007 Keygen (WORK).rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\NortonInternetSecurity 2008 Espanol [gracias oN0x].rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\O&O Defrag Professional 10.0.1634 Key (funciona).rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\Oxygen Phone Manager for Nokia Phones II 2.12.1.5.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\Pinnacle Studio Plus v11 Keygen.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\PlayStation 2 Emulator for PC (PCSX2).rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\Power ISO 3.8 + Aiudos + Cracks.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\Power ISO 3.8 Keygen.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\RapidGet.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\Rapidshare Leecher 2008 + All Rapidshare Tools.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\Rapidshare Premium Donloader.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\Real Player 11.0.0.372 Crack-W0rking.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\Roxio Easy Media Creator 10 Keygen.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\Spyware Doctor 5.1.0.273.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\TuneUp Utilities 2007 6.0.2311 Keygen.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\Winamp Pro v5.5 Keygen.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\WinAVI Video Converter 8.0 Keygen.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\Windows Vista x86 Ultimate Genuine Keygen.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\Windows XP Professional Genuine Keygen.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\WinRar 3.71 Crack.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\My Downloads\YouTube Downloader.rar:\BTCPatcher.exe Trojan horse BackDoor.Delf.AXM Infected, Embedded object, Deleted C:\Documents and Settings\Compaq_Owner\Desktop\Lawrence's\LimeWire\TuneUp Utilities 2007 6.0.2311 Keygen.rar Moved to Vault, Archive C:\Documents and Settings\Compaq_Owner\Local Settings\Temp\TEMP.ZIP Moved to Vault, Archive C:\My Downloads\3D Studio Max 9 Keygen.rar Moved to Vault, Archive C:\My Downloads\Adobe Acrobat Professional 8.1 Keygen.rar Moved to Vault, Archive C:\My Downloads\Adobe Creative Suite 3 Keygen.rar Moved to Vault, Archive C:\My Downloads\Adobe Photoshop CS3 Crack.rar Moved to Vault, Archive C:\My Downloads\Adobe Photoshop CS3 Lite KEY.rar Moved to Vault, Archive C:\My Downloads\Adobe Photoshop Elements v6.0 Keygen.rar Moved to Vault, Archive C:\My Downloads\Adobe Photoshop Lightroom 1.3 Keygen.rar Moved to Vault, Archive C:\My Downloads\Adobe Premiere Pro CS3 Keygen.rar Moved to Vault, Archive C:\My Downloads\Advanced System Optimizer 2.20.4.746 Crack.rar Moved to Vault, Archive C:\My Downloads\Advanced Uninstaller Professional 8.5.1 + Working KEY.rar Moved to Vault, Archive C:\My Downloads\Alcohol 120 v.1.9.6 Keygen.rar Moved to Vault, Archive C:\My Downloads\Alive YouTube Video Converter 1.2.6.9.rar Moved to Vault, Archive C:\My Downloads\ALL.Adobe.Products.Cracks.and.Keygens.(ALL.in.One).rar Moved to Vault, Archive C:\My Downloads\All.Antivirus.Keygen-Serials-Cracks.(Symantec-Antivir-McAfee-Kaspersky-Nod32-AVG).by.ElL0cos.rar Moved to Vault, Archive C:\My Downloads\All.MicroSoft.Products.Keygens.and.Cracks.(all-in-one).rar Moved to Vault, Archive C:\My Downloads\AnyDVD & AnyDVD HD 6.3 Crack.rar Moved to Vault, Archive C:\My Downloads\Ashampoo Office 2008 3.00 + KEY.rar Moved to Vault, Archive C:\My Downloads\Autodesk 3DS MAX 2008 Crack.rar Moved to Vault, Archive C:\My Downloads\Autodesk AutoCAD 2008 Crack.rar Moved to Vault, Archive C:\My Downloads\Autodesk Inventor Suite 2008 Keygen.rar Moved to Vault, Archive C:\My Downloads\Black XP 5.0 DVD Keygen.rar Moved to Vault, Archive C:\My Downloads\ConvertXtoDVD 2.2.3.2 Keygen.rar Moved to Vault, Archive C:\My Downloads\CyberLink PowerDVD 7.3.3516 Keygen.rar Moved to Vault, Archive C:\My Downloads\Daemon Tools Pro Basic 4.11.0219 Serial.rar Moved to Vault, Archive C:\My Downloads\DivX Bundle 6.8 Professional + Keygen.rar Moved to Vault, Archive C:\My Downloads\DivX-XviD.Multi.Converter.1.9.[Converte.movies.en.el.fomrat.de.tu.selciòn).rar Moved to Vault, Archive C:\My Downloads\DVDFab Platinum 4.0.1.2 Keygen.rar Moved to Vault, Archive C:\My Downloads\DVDFab Platinum 4.0.3 Keygen.rar Moved to Vault, Archive C:\My Downloads\Easy DVD Creator 1.6.2 Working KEY! Espanòl.rar Moved to Vault, Archive C:\My Downloads\ESET NOD32 Antivirus 3.0.566 Patcher to have ALL updates.rar Moved to Vault, Archive C:\My Downloads\FL Studio 7 Crack.rar Moved to Vault, Archive C:\My Downloads\FlashFXP.v3.6.MULTiLiNGUAL-(ESP-ITA-ENG-DEU-FRA)-KeyGen.rar Moved to Vault, Archive C:\My Downloads\FlashGet 1.9.6.1073 [Best Download manager] + Key.rar Moved to Vault, Archive C:\My Downloads\Google Earth 4.2 Keygen.rar Moved to Vault, Archive C:\My Downloads\Guitar Pro v5.2 Keygen.rar Moved to Vault, Archive C:\My Downloads\Internet Download Manager 5.11.10 Keygen.rar Moved to Vault, Archive C:\My Downloads\Intervideo WinDVD Platinum 8.0 Keygen.rar Moved to Vault, Archive C:\My Downloads\Kaspersky Antivirus Working Keygen.rar Moved to Vault, Archive C:\My Downloads\Macromedia DreamWeaver CS3 Keygen.rar Moved to Vault, Archive C:\My Downloads\Magic DVD Ripper 5.2.1 Moved to Vault, Archive C:\My Downloads\Magic ISO 5.4 Keygen.rar Moved to Vault, Archive C:\My Downloads\Magic Video Converter 8.0.2.18 Keygen.rar Moved to Vault, Archive C:\My Downloads\Matlab 2007 Crack.rar Moved to Vault, Archive C:\My Downloads\McAfee.Total.Protection.2007.Multilingual.Working.Crack-DAiMX.rar Moved to Vault, Archive C:\My Downloads\McAfee.Total.Protection.2008.WorkingPatch.Update.TILL.2010.rar Moved to Vault, Archive C:\My Downloads\Mega.CODEC.Video.and.Audio.for.WindowsXP.and.Windows.VISTA.colleciòn.by.Mus taX.rar Moved to Vault, Archive C:\My Downloads\Microsoft Office 2007 Keygen.rar Moved to Vault, Archive C:\My Downloads\Microsoft Windows VISTA Validation Crack 2008 Patch.rar Moved to Vault, Archive C:\My Downloads\Nero 8 Ultra Edition 8.1.1.4 Keygen.rar Moved to Vault, Archive C:\My Downloads\NOD32 3.xx Universal Fix Patch.rar Moved to Vault, Archive C:\My Downloads\Norton 360 Working Keygen.rar Moved to Vault, Archive C:\My Downloads\Norton Ghost 12 Keygen.rar Moved to Vault, Archive C:\My Downloads\Norton Product Suite 2007 Keygen (WORK).rar Moved to Vault, Archive C:\My Downloads\NortonInternetSecurity 2008 Espanol [gracias oN0x].rar Moved to Vault, Archive C:\My Downloads\O&O Defrag Professional 10.0.1634 Key (funciona).rar Moved to Vault, Archive C:\My Downloads\Oxygen Phone Manager for Nokia Phones II 2.12.1.5.rar Moved to Vault, Archive C:\My Downloads\Pinnacle Studio Plus v11 Keygen.rar Moved to Vault, Archive C:\My Downloads\PlayStation 2 Emulator for PC (PCSX2).rar Moved to Vault, Archive C:\My Downloads\Power ISO 3.8 + Aiudos + Cracks.rar Moved to Vault, Archive C:\My Downloads\Power ISO 3.8 Keygen.rar Moved to Vault, Archive C:\My Downloads\RapidGet.rar Moved to Vault, Archive C:\My Downloads\Rapidshare Leecher 2008 + All Rapidshare Tools.rar Moved to Vault, Archive C:\My Downloads\Rapidshare Premium Donloader.rar Moved to Vault, Archive C:\My Downloads\Real Player 11.0.0.372 Crack-W0rking.rar Moved to Vault, Archive C:\My Downloads\Roxio Easy Media Creator 10 Keygen.rar Moved to Vault, Archive C:\My Downloads\Spyware Doctor 5.1.0.273.rar Moved to Vault, Archive C:\My Downloads\TuneUp Utilities 2007 6.0.2311 Keygen.rar Moved to Vault, Archive C:\My Downloads\Winamp Pro v5.5 Keygen.rar Moved to Vault, Archive C:\My Downloads\WinAVI Video Converter 8.0 Keygen.rar Moved to Vault, Archive C:\My Downloads\Windows Vista x86 Ultimate Genuine Keygen.rar Moved to Vault, Archive C:\My Downloads\Windows XP Professional Genuine Keygen.rar Moved to Vault, Archive C:\My Downloads\WinRar 3.71 Crack.rar Moved to Vault, Archive C:\My Downloads\YouTube Downloader.rar Moved to Vault, Archive C:\Program Files\iTunes\iTunesHelper.exe Deleted C:\Program Files\QuickTime\qttask.exe Deleted C:\Program Files\SCAR 2.03\scar.exe Deleted C:\Program Files\SCAR 3.06\includes\SRL\SCARBrowser\SCARBrowser.exe Deleted C:\WINDOWS\xmljacodec.dll Deleted C:\WINDOWS\system32\bsucbtop.dll Moved to Vault C:\WINDOWS\system32\BTCPatcher.exe Deleted C:\WINDOWS\system32\bwwsfvwk.dll Moved to Vault C:\WINDOWS\system32\djrdwtnh.dll Moved to Vault C:\WINDOWS\system32\dnykggme.dll Moved to Vault C:\WINDOWS\system32\erivmwjq.dll Moved to Vault C:\WINDOWS\system32\fsgimqpk.dll Moved to Vault C:\WINDOWS\system32\fwximdfp.dll Moved to Vault C:\WINDOWS\system32\jnahrqsi.dll Moved to Vault C:\WINDOWS\system32\msqancud.dll Moved to Vault C:\WINDOWS\system32\NTSpool.exe Deleted C:\WINDOWS\system32\ntynojov.dll Moved to Vault C:\WINDOWS\system32\osybbckh.dll Moved to Vault C:\WINDOWS\system32\tcqifhww.dll Moved to Vault C:\WINDOWS\system32\uflkjheo.dll Moved to Vault C:\WINDOWS\system32\uqwilawb.dll Moved to Vault C:\WINDOWS\system32\vhgvmarf.dll Moved to Vault C:\WINDOWS\system32\vqdkyvkf.dll Moved to Vault C:\WINDOWS\system32\wknhnxdr.dll Moved to Vault
I guess you can see it doesn't pay to steal programs.

All those "crack's",it's easy to see how you infected yourself.

If you want our help you need to uninstall all the illegal programs you have then post a new HijackThis log.

Ask AI

AI can make mistakes. Check the cited posts. Archived advice can be out-of-date

Don't include personal information. Questions and selected public posts go to OpenAI. About Ask AI