As for the TrendMicro file it says the name is SPYW_WEBSEARCH.A however it does not show the location of it, and now when I click on the remove button it says removing spyware program, and then when it says it is done it says the resulting action was that it did not remove the spyware program.
==========================================================
As for the TDS-3 log here it is
08:33:35 [Init] Trojan Defence Suite v3.2.0 (UNLICENSED)
08:33:35 [Init] Started 07-03-05 08:33:35 Central Standard Time (UTC: 6), Internet Time @648.32
08:33:35 [Init] Loading TDS-3 Systems ...
08:33:35 [Init] Token successfully adjusted.
08:33:35 [Init] • TDS Privileges : OK. Adjusted TDS-3 token privileges to maximum
08:33:35 [Init] • Plugins : OK. Loaded 13
08:33:35 [Init] • Exec Protection : Not Installed
08:33:35 [Init] WARNING: Your Radius.TD3 database needs to be updated!
08:33:35 [Init] Please download the latest from
http://tds.diamondcs.com.au/radius.td3
08:33:35 [Init] Licensed users can use the Update facility from the TDS menu
08:33:35 [Init] Loading Radius Advanced Scanning Systems ... <R3 Engine, DCS Labs>
08:33:41 [Init] • Radius Advanced Specialist Extensions on standby for 13 trojan families
08:33:41 [Init] • Systems Initialised [48581 references - 24105 primaries/12292 traces/12184 variants/other]
08:33:41 [Init] Radius Systems loaded. <Databases updated 07-03-2005>
08:33:41 [Init] TDS-3 Ready. <Tj@70.183.231.171, 127.0.0.1 - United States>
08:33:41 [Tip Of The Day] Did you know? - You can use DiamondCS Port Explorer to see which ports are being used by which processes, and even packet-sniff processes and sockets! See
http://www.diamondcs.com.au/portexplorer/
08:33:41 [TDS] Good morning Tj.
08:33:44 [Mutex Memory Scan] Started...
08:33:45 [Mutex Memory Scan] Finished (no trojan mutexes found).
08:33:45 [TDS-3] This is an EVALUATION demo of TDS-3. Please see the help file for help on registering.
08:34:21 [CRC32] Started - verifying 29 files ...
08:34:22 [CRC32] File doesn't exist: C:\WINDOWS\System32\shell.dll
08:34:24 [CRC32] Test finished.
08:35:21 [Memory Scan] Memory scan started, please wait a moment ...
08:35:21 [Memory Scan] Memory scan complete.
08:35:21 [Mutex Memory Scan] Started...
08:35:23 [Mutex Memory Scan] Finished (no trojan mutexes found).
08:35:23 [Trace Scan] Started...
08:35:29 [Trace Scan] Finished.
08:35:29 [ServiceScan] Scanning for services and drivers ...
08:35:31 [ServiceScan] Scanned 304 services and drivers.
08:35:31 [File Scan] Scanning in A:\ ...
08:35:32 [File Scan] Scanned 0 files: 0 alarms in 1.078125 seconds (Avg 1. files/sec)
08:35:32 [File Scan] Scanning in C:\ ...
08:43:29 [Locked File] Couldn't open c:\windows\$ntuninstallkb826939$\accwiz.exe for read access, file is locked
08:43:29 [Locked File] Couldn't open c:\windows\$ntuninstallkb826939$\hh.exe for read access, file is locked
08:43:29 [Locked File] Couldn't open c:\windows\$ntuninstallkb826939$\locator.exe for read access, file is locked
08:43:29 [Locked File] Couldn't open c:\windows\$ntuninstallkb826939$\magnify.exe for read access, file is locked
08:43:29 [Locked File] Couldn't open c:\windows\$ntuninstallkb826939$\migwiz.exe for read access, file is locked
08:43:29 [Locked File] Couldn't open c:\windows\$ntuninstallkb826939$\narrator.exe for read access, file is locked
08:43:29 [Locked File] Couldn't open c:\windows\$ntuninstallkb826939$\ntkrnlpa.exe for read access, file is locked
08:43:29 [Locked File] Couldn't open c:\windows\$ntuninstallkb826939$\ntoskrnl.exe for read access, file is locked
08:43:29 [Locked File] Couldn't open c:\windows\$ntuninstallkb826939$\osk.exe for read access, file is locked
08:53:15 [File Scan] Scanned 37351 files: 2 alarms in 1063.016 seconds (Avg 36.14 files/sec)
08:53:15 [File Scan] Scanning in D:\ ...
08:53:15 [File Scan] Scanned 0 files: 2 alarms in 0.015625 seconds (Avg 1. files/sec)
08:53:15 [Scan] Finished.
the two alarm files in the alarm window under the log were
name File
Adware.Pugi Dropper C:\documents and settings\tj\application data\winks\submit2.exe
Adware.Pugi Dropper C:\windows\submit2.exe