Welcome to Tech Support Forum home to more then 136,000 problems solved. Issues have included: Spyware, Malware, Virus Issues, Windows, Microsoft, Linux, Networking, Security, Hardware, and Gaming Getting your problem solved is as easy as:
1. Registering for a free account
2. Asking your question
3. Receiving an answer

Registered members:
* Get free support
* Communicate privately with other members (PM).
* Removal of this message
* See fewer ads.
* And much more..

 



Want to know how to post a question? click here Having problems with spyware and pop-ups? First Steps
Go Back   Tech Support Forum > Security Center > Virus/Trojan/Spyware Help > Resolved HJT Threads
User Name
Password
Site Map Register Donate Rules Blogs Mark Forums Read


Resolved HJT Threads Resolved spyware and popup issues.

 
 
LinkBack Thread Tools
Old 10-04-2008, 10:31 PM   #1 (permalink)
Registered User
 
Join Date: Oct 2004
Posts: 47
OS: XP


TROJ_AGENT.APTW and Possible_Zlob-8 and bogus antivirus pop-ups

Hi -- I love you guys, you are the greatest.

This time it's my teenage son's computer. Antivirus is TM-PC-cillin. Spyware/adware not turned on. Got many TROJ_ZLOB.BOO (still getting them), but after turning on spyware/adware, they now are successfully quaratined. TROJ_AGENT.APTW --> quarantine failed. Possible_ZLOB-8 --> first action is blank.

I followed the "Five Steps". Deleted Viewpoint Manager and Viewpoint Media Player. Have Wild Tangent Web Driver -- wasn't sure, but will delete if I should. I could not get Panda Active Scan 2.0 to run in IE, but it did download and ran under FoxFire. I ran a scan and saved it to my desktop. Downloaded Spyware Blaster (in new programs) and IE-spyad (not in new programs, but found on C:). I didn't do anything more, ie, run either program. I also wonder about Norton PC checkup that popped up while I was working on these -- it is suspiciously the last program on the All Programs list, like it got installed when I wasn't looking (I didn't run if from the pop-up). I tightened up my IE security, with some frustration, since I can't do this in FireFox. I ran Windows Update, Office Update, then came upon Microsoft Update after a reboot and ran that too -- all high priority updates are done. In Step 5, I downloaded HJT and ran a scan, which is appended below. I don't see that you've asked me for the Panda Active Scan and I'm not supposed to attach anything you don't ask for.

During all this, I've received dozens of pop-ups warning of security and performance problems. If I open IE, I also get my home page redirected to some bogus antivirus program. Things like Windows Antivirus 2009, Advanced Antivirus, Antispyware ProXP. If I enable real time scanning with PC-cillin, the virus notification pop-ups (every 3 seconds!) make it impossible to do any work. The Windows Security center pop-ups look real (warning of PC-cillin being off), but I'm not taking any chances. I turned real time scanning back on and it's annoying the heck out of me.

Thanks. Let me know if you want the Active Scan file

Here's my HJT log:

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:58:00 PM, on 10/4/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16705)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Microsoft SQL Server\MSSQL$MICROSOFTSMLBIZ\Binn\sqlservr.exe
C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\PcCtlCom.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\Tmntsrv.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\tmproxy.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\TRENDM~1\INTERN~1\TmPfw.exe
C:\WINDOWS\system32\ctfmon.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\PccGuide.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Applications\wcs.exe
C:\Program Files\Applications\iebtm.exe
C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\Program Files\Applications\wcm.exe
C:\WINDOWS\stsystra.exe
C:\Program Files\Applications\iebtmm.exe
C:\Program Files\Dell\QuickSet\quickset.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\Dell\Media Experience\PCMService.exe
C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\Program Files\Dell Photo AIO Printer 924\dlccmon.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Java\jre1.5.0_08\bin\jusched.exe
C:\PROGRA~1\Intel\Wireless\Bin\Dot1XCfg.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\NetWaiting\netWaiting.exe
C:\Program Files\Trend Micro\Internet Security 12\TMAS_OE\TMAS_OEMon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\WINDOWS\system32\dlcccoms.exe
C:\DOCUME~1\Me\Desktop\COMU~1.SER\SsAAD.exe
C:\Program Files\Messenger\msmsgs.exe
C:\WINDOWS\system32\algg.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe
C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
C:\Program Files\LimeWire\LimeWire.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Common Files\Microsoft Shared\Speech\sapisvr.exe
C:\Documents and Settings\Me\Desktop\HiJackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer,SearchURL = http://windiwsfsearch.com
R1 - HKLM\Software\Microsoft\Internet Explorer,SearchURL = http://windiwsfsearch.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com/ig/dell?hl=en&...suk&channel=us
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://windiwsfsearch.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://windiwsfsearch.com/ie6.html
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://windiwsfsearch.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://windiwsfsearch.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://windiwsfsearch.com/ie6.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://windiwsfsearch.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://windiwsfsearch.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://windiwsfsearch.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Page_URL = http://www.google.com/ig/dell?hl=en&...suk&channel=us
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: 768890 helper - {446EF370-1987-49DB-AAFF-8EC680903F7A} - C:\WINDOWS\system32\768890\768890.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_08\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar4.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.0.1225.9868\swg.dll
O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\BAE\BAE.dll
O2 - BHO: (no name) - {CFEE97A3-4911-444D-8BE8-E243A23D3DE2} - C:\Program Files\Applications\iebt.dll
O3 - Toolbar: Veoh Browser Plug-in - {D0943516-5076-4020-A3B5-AEFAF26AB263} - C:\Program Files\Veoh Networks\Veoh\Plugins\reg\VeohToolbar.dll
O3 - Toolbar: Internet Service - {144A6B24-0EBC-4D89-BF09-A06A718E57B5} - C:\Program Files\Applications\iebr.dll (file missing)
O4 - HKLM\..\Run: [IntelZeroConfig] "C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe"
O4 - HKLM\..\Run: [IntelWireless] "C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe" /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [SigmatelSysTrayApp] stsystra.exe
O4 - HKLM\..\Run: [Dell QuickSet] C:\Program Files\Dell\QuickSet\quickset.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\Media Experience\PCMService.exe"
O4 - HKLM\..\Run: [DVDLauncher] "C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe"
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [ISUSPM Startup] "C:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe" -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [pccguide.exe] "C:\Program Files\Trend Micro\Internet Security 12\pccguide.exe"
O4 - HKLM\..\Run: [dlccmon.exe] "C:\Program Files\Dell Photo AIO Printer 924\dlccmon.exe"
O4 - HKLM\..\Run: [DLCCCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\DLCCtime.dll,_RunDLLEntry@16
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_08\bin\jusched.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [dscactivate] "C:\Program Files\Dell Support Center\gs_agent\custom\dsca.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [ANTIVIRUS] C:\Program Files\MSX\MSx.exe
O4 - HKCU\..\Run: [ModemOnHold] C:\Program Files\NetWaiting\netWaiting.exe
O4 - HKCU\..\Run: [OE_OEM] "C:\Program Files\Trend Micro\Internet Security 12\TMAS_OE\TMAS_OEMon.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [SsAAD.exe] C:\DOCUME~1\Me\Desktop\COMU~1.SER\SsAAD.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Veoh] "C:\Program Files\Veoh Networks\Veoh\VeohClient.exe" /VeohHide
O4 - HKCU\..\Run: [ANTIVIRUS] C:\Program Files\MSX\MSx.exe
O4 - HKCU\..\Run: [wblogon] C:\WINDOWS\system32\algg.exe
O4 - HKLM\..\Policies\Explorer\Run: [smile] C:\Program Files\Applications\wcs.exe
O4 - HKLM\..\Policies\Explorer\Run: [start] C:\Program Files\Applications\iebtm.exe
O4 - Startup: LimeWire On Startup.lnk = C:\Program Files\LimeWire\LimeWire.exe
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: Digital Line Detect.lnk = ?
O4 - Global Startup: Service Manager.lnk = C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Send to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_08\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_08\bin\ssv.dll
O9 - Extra button: (no name) - {9034A523-D068-4BE8-A284-9DF278BE776E} - http://www.ietoolthru.com/redirect.php (file missing)
O9 - Extra 'Tools' menuitem: IE Anti-Spyware - {9034A523-D068-4BE8-A284-9DF278BE776E} - http://www.ietoolthru.com/redirect.php (file missing)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: MUSICMATCH MX Web Player - {d81ca86b-ef63-42af-bee3-4502d9a03c2d} - http://wwws.musicmatch.com/mmz/openWebRadio.html (file missing)
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {2D8ED06D-3C30-438B-96AE-4D110FDC1FB8} (ActiveScan 2.0 Installer Class) - http://acs.pandasoftware.com/actives.../as2stubie.cab
O16 - DPF: {5F8469B4-B055-49DD-83F7-62B522420ECC} (Facebook Photo Uploader Control) - http://upload.facebook.com/controls/...toUploader.cab
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - http://download.divx.com/player/DivXBrowserPlugin.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsof...?1223176275015
O16 - DPF: {D4323BF2-006A-4440-A2F5-27E3E7AB25F8} (Virtools WebPlayer Class) - http://a532.g.akamai.net/f/532/6712/.../installer.exe
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: dlcc_device - - C:\WINDOWS\system32\dlcccoms.exe
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: MSCSPTISRV - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NICCONFIGSVC - Dell Inc. - C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: PACSPTISVR - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe
O23 - Service: Trend Micro Central Control Component (PcCtlCom) - Trend Micro Incorporated. - C:\PROGRA~1\TRENDM~1\INTERN~1\PcCtlCom.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Intel(R) PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe
O23 - Service: SonicStage SCSI Service (SSScsiSV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SSScsiSV.exe
O23 - Service: Trend Micro Real-time Service (Tmntsrv) - Trend Micro Incorporated. - C:\PROGRA~1\TRENDM~1\INTERN~1\Tmntsrv.exe
O23 - Service: Trend Micro Personal Firewall (TmPfw) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~1\TmPfw.exe
O23 - Service: Trend Micro Proxy Service (tmproxy) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~1\tmproxy.exe
O23 - Service: Intel(R) PROSet/Wireless SSO Service (WLANKEEPER) - Intel(R) Corporation - C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
O24 - Desktop Component 0: (no name) - file:///C:/DOCUME~1/Me/LOCALS~1/Temp/msohtml1/01/clip_image002.jpg

--
End of file - 14513 bytes
ChenZi is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Important Information
Join the #1 Tech Support Forum Today - It's Totally Free!

TechSupportForum.com is a leading support website for your computer needs. We offer free, friendly and personalized computer support. Why pay to have your computer fixed when you can do it for free.

Join TechSupportforum.com Today - Click Here

Old 10-07-2008, 06:31 AM   #2 (permalink)
Moderator, Analyst, Security Team
 
TheBruce1's Avatar
 
Join Date: Oct 2006
Location: Důn Čideann,Scotland.
Posts: 5,093
OS: XP


Re: TROJ_AGENT.APTW and Possible_Zlob-8 and bogus antivirus pop-ups

Hello,
  • Download RSIT by random/random and save it to your desktop.
  • Double click on RSIT.exe to run RSIT.
  • Click Continue at the disclaimer screen.
  • Once it has finished, two logs will open. Please post the contents of both log.txt (<<will be maximized) and info.txt (<<will be minimized)

=========
Logs Required
log.txt
info.txt


If there is no response to this post within 72hrs, this thread will be closed.
__________________
Member of ASAP since 2007
Member of UNITE since 2008


**Notice to BT customers**
BT to dump Phorm, see Here for more information. No DPI

If we have helped you in anyway, please consider Donating
TheBruce1 is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Old 10-07-2008, 02:23 PM   #3 (permalink)
Registered User
 
Join Date: Oct 2004
Posts: 47
OS: XP


Re: TROJ_AGENT.APTW and Possible_Zlob-8 and bogus antivirus pop-ups

Hey, TheBruce1 -- thanks for coming to my aid ...real time scan was not off during the RSIT scan (because the little boxes interfere with working). I'll re-run if you'd like.

Logfile of random's system information tool 1.04 (written by random/random)
Run by Me at 2008-10-07 16:11:11
Microsoft Windows XP Professional Service Pack 3
System drive C: has 14 GB (27%) free of 54 GB
Total RAM: 1022 MB (17% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 4:11:25 PM, on 10/7/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16705)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Microsoft SQL Server\MSSQL$MICROSOFTSMLBIZ\Binn\sqlservr.exe
C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\PcCtlCom.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\Tmntsrv.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\tmproxy.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\TRENDM~1\INTERN~1\TmPfw.exe
C:\WINDOWS\system32\ctfmon.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\PccGuide.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Applications\wcs.exe
C:\Program Files\Applications\iebtm.exe
C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\Program Files\Applications\wcm.exe
C:\WINDOWS\stsystra.exe
C:\Program Files\Applications\iebtmm.exe
C:\Program Files\Dell\QuickSet\quickset.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\Dell\Media Experience\PCMService.exe
C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\Program Files\Dell Photo AIO Printer 924\dlccmon.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Java\jre1.5.0_08\bin\jusched.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\NetWaiting\netWaiting.exe
C:\Program Files\Trend Micro\Internet Security 12\TMAS_OE\TMAS_OEMon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\WINDOWS\system32\dlcccoms.exe
C:\DOCUME~1\Me\Desktop\COMU~1.SER\SsAAD.exe
C:\Program Files\Messenger\msmsgs.exe
C:\WINDOWS\system32\algg.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe
C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
C:\Program Files\LimeWire\LimeWire.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
c:\program files\common files\installshield\updateservice\isuspm.exe
C:\Program Files\Common Files\InstallShield\UpdateService\agent.exe
C:\Program Files\Common Files\Microsoft Shared\Speech\sapisvr.exe
C:\PROGRA~1\Intel\Wireless\Bin\Dot1XCfg.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Documents and Settings\Me\Desktop\RSIT.exe
C:\Documents and Settings\Me\Desktop\HiJackThis\Me.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\TSC.EXE

R1 - HKCU\Software\Microsoft\Internet Explorer,SearchURL = http://windiwsfsearch.com
R1 - HKLM\Software\Microsoft\Internet Explorer,SearchURL = http://windiwsfsearch.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com/ig/dell?hl=en&...suk&channel=us
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://windiwsfsearch.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://windiwsfsearch.com/ie6.html
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://windiwsfsearch.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://windiwsfsearch.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://windiwsfsearch.com/ie6.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://windiwsfsearch.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://windiwsfsearch.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://windiwsfsearch.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Page_URL = http://www.google.com/ig/dell?hl=en&...suk&channel=us
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: 768890 helper - {446EF370-1987-49DB-AAFF-8EC680903F7A} - C:\WINDOWS\system32\768890\768890.dll (file missing)
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_08\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar4.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.0.1225.9868\swg.dll
O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\BAE\BAE.dll
O2 - BHO: (no name) - {CFEE97A3-4911-444D-8BE8-E243A23D3DE2} - C:\Program Files\Applications\iebt.dll
O3 - Toolbar: Veoh Browser Plug-in - {D0943516-5076-4020-A3B5-AEFAF26AB263} - C:\Program Files\Veoh Networks\Veoh\Plugins\reg\VeohToolbar.dll
O3 - Toolbar: Internet Service - {144A6B24-0EBC-4D89-BF09-A06A718E57B5} - C:\Program Files\Applications\iebr.dll (file missing)
O4 - HKLM\..\Run: [IntelZeroConfig] "C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe"
O4 - HKLM\..\Run: [IntelWireless] "C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe" /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [SigmatelSysTrayApp] stsystra.exe
O4 - HKLM\..\Run: [Dell QuickSet] C:\Program Files\Dell\QuickSet\quickset.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\Media Experience\PCMService.exe"
O4 - HKLM\..\Run: [DVDLauncher] "C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe"
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [ISUSPM Startup] "c:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe" -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [pccguide.exe] "C:\Program Files\Trend Micro\Internet Security 12\pccguide.exe"
O4 - HKLM\..\Run: [dlccmon.exe] "C:\Program Files\Dell Photo AIO Printer 924\dlccmon.exe"
O4 - HKLM\..\Run: [DLCCCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\DLCCtime.dll,_RunDLLEntry@16
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_08\bin\jusched.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [dscactivate] "C:\Program Files\Dell Support Center\gs_agent\custom\dsca.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [ANTIVIRUS] C:\Program Files\MSX\MSx.exe
O4 - HKCU\..\Run: [ModemOnHold] C:\Program Files\NetWaiting\netWaiting.exe
O4 - HKCU\..\Run: [OE_OEM] "C:\Program Files\Trend Micro\Internet Security 12\TMAS_OE\TMAS_OEMon.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [SsAAD.exe] C:\DOCUME~1\Me\Desktop\COMU~1.SER\SsAAD.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Veoh] "C:\Program Files\Veoh Networks\Veoh\VeohClient.exe" /VeohHide
O4 - HKCU\..\Run: [ANTIVIRUS] C:\Program Files\MSX\MSx.exe
O4 - HKCU\..\Run: [wblogon] C:\WINDOWS\system32\algg.exe
O4 - HKLM\..\Policies\Explorer\Run: [smile] C:\Program Files\Applications\wcs.exe
O4 - HKLM\..\Policies\Explorer\Run: [start] C:\Program Files\Applications\iebtm.exe
O4 - Startup: LimeWire On Startup.lnk = C:\Program Files\LimeWire\LimeWire.exe
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: Digital Line Detect.lnk = ?
O4 - Global Startup: Service Manager.lnk = C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Send to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_08\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_08\bin\ssv.dll
O9 - Extra button: (no name) - {9034A523-D068-4BE8-A284-9DF278BE776E} - http://www.ietoolthru.com/redirect.php (file missing)
O9 - Extra 'Tools' menuitem: IE Anti-Spyware - {9034A523-D068-4BE8-A284-9DF278BE776E} - http://www.ietoolthru.com/redirect.php (file missing)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: MUSICMATCH MX Web Player - {d81ca86b-ef63-42af-bee3-4502d9a03c2d} - http://wwws.musicmatch.com/mmz/openWebRadio.html (file missing)
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {2D8ED06D-3C30-438B-96AE-4D110FDC1FB8} (ActiveScan 2.0 Installer Class) - http://acs.pandasoftware.com/actives.../as2stubie.cab
O16 - DPF: {5F8469B4-B055-49DD-83F7-62B522420ECC} (Facebook Photo Uploader Control) - http://upload.facebook.com/controls/...toUploader.cab
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - http://download.divx.com/player/DivXBrowserPlugin.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsof...?1223176275015
O16 - DPF: {D4323BF2-006A-4440-A2F5-27E3E7AB25F8} (Virtools WebPlayer Class) - http://a532.g.akamai.net/f/532/6712/.../installer.exe
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: dlcc_device - - C:\WINDOWS\system32\dlcccoms.exe
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: MSCSPTISRV - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NICCONFIGSVC - Dell Inc. - C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: PACSPTISVR - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe
O23 - Service: Trend Micro Central Control Component (PcCtlCom) - Trend Micro Incorporated. - C:\PROGRA~1\TRENDM~1\INTERN~1\PcCtlCom.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Intel(R) PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe
O23 - Service: SonicStage SCSI Service (SSScsiSV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SSScsiSV.exe
O23 - Service: Trend Micro Real-time Service (Tmntsrv) - Trend Micro Incorporated. - C:\PROGRA~1\TRENDM~1\INTERN~1\Tmntsrv.exe
O23 - Service: Trend Micro Personal Firewall (TmPfw) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~1\TmPfw.exe
O23 - Service: Trend Micro Proxy Service (tmproxy) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~1\tmproxy.exe
O23 - Service: Intel(R) PROSet/Wireless SSO Service (WLANKEEPER) - Intel(R) Corporation - C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
O24 - Desktop Component 0: (no name) - file:///C:/DOCUME~1/Me/LOCALS~1/Temp/msohtml1/01/clip_image002.jpg

--
End of file - 14790 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\AppleSoftwareUpdate.job
C:\WINDOWS\tasks\At1.job
C:\WINDOWS\tasks\At2.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
AcroIEHlprObj Class - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll [2003-11-03 54248]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{446EF370-1987-49DB-AAFF-8EC680903F7A}]
768890 Class - C:\WINDOWS\system32\768890\768890.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5CA3D70E-1895-11CF-8E15-001234567890}]
DriveLetterAccess - C:\WINDOWS\system32\dla\tfswshx.dll [2004-12-06 118842]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
SSVHelper Class - C:\Program Files\Java\jre1.5.0_08\bin\ssv.dll [2006-07-26 434279]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - c:\program files\google\googletoolbar4.dll [2007-01-20 2403392]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\3.0.1225.9868\swg.dll [2008-04-13 734704]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CA6319C0-31B7-401E-A518-A07C3DB8F777}]
CBrowserHelperObject Object - C:\Program Files\BAE\BAE.dll [2006-06-14 94208]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CFEE97A3-4911-444D-8BE8-E243A23D3DE2}]
C:\Program Files\Applications\iebt.dll [2008-10-04 8192]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{D0943516-5076-4020-A3B5-AEFAF26AB263} - Veoh Browser Plug-in - C:\Program Files\Veoh Networks\Veoh\Plugins\reg\VeohToolbar.dll [2008-05-15 352256]
{144A6B24-0EBC-4D89-BF09-A06A718E57B5} - Internet Service - C:\Program Files\Applications\iebr.dll []

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IntelZeroConfig"=C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe [2005-12-28 667718]
"IntelWireless"=C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe [2005-12-28 602182]
"SigmatelSysTrayApp"=C:\WINDOWS\stsystra.exe [2006-03-24 282624]
"Dell QuickSet"=C:\Program Files\Dell\QuickSet\quickset.exe [2006-04-06 1032192]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2006-03-08 761947]
"ATICCC"=C:\Program Files\ATI Technologies\ATI.ACE\cli.exe [2005-08-12 45056]
"PCMService"=C:\Program Files\Dell\Media Experience\PCMService.exe [2004-04-11 290816]
"DVDLauncher"=C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe [2005-12-09 49152]
"dla"=C:\WINDOWS\system32\dla\tfswctrl.exe [2004-12-06 127035]
"ISUSPM Startup"=c:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe [2005-06-10 249856]
"ISUSScheduler"=C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe [2005-06-10 81920]
""= []
"pccguide.exe"=C:\Program Files\Trend Micro\Internet Security 12\pccguide.exe [2005-08-30 823362]
"dlccmon.exe"=C:\Program Files\Dell Photo AIO Printer 924\dlccmon.exe [2005-10-20 430080]
"DLCCCATS"=rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\DLCCtime.dll []
"iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2006-09-25 229952]
"SunJavaUpdateSched"=C:\Program Files\Java\jre1.5.0_08\bin\jusched.exe [2006-07-26 49263]
"NeroFilterCheck"=C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [2007-03-01 153136]
"dscactivate"=C:\Program Files\Dell Support Center\gs_agent\custom\dsca.exe [2007-11-15 16384]
"QuickTime Task"=C:\Program Files\QuickTime\qttask.exe [2008-02-01 385024]
"ANTIVIRUS"=C:\Program Files\MSX\MSx.exe [2008-09-27 412160]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"smile"=C:\Program Files\Applications\wcs.exe [2008-09-30 17408]
"start"=C:\Program Files\Applications\iebtm.exe [2008-09-30 20480]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ModemOnHold"=C:\Program Files\NetWaiting\netWaiting.exe [2003-09-10 20480]
"OE_OEM"=C:\Program Files\Trend Micro\Internet Security 12\TMAS_OE\TMAS_OEMon.exe [2006-04-11 176201]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-13 15360]
"swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2007-08-13 68856]
"SsAAD.exe"=C:\DOCUME~1\Me\Desktop\COMU~1.SER\SsAAD.exe [2006-05-08 81920]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe [2007-05-16 153136]
"MSMSGS"=C:\Program Files\Messenger\msmsgs.exe [2008-04-13 1695232]
"Veoh"=C:\Program Files\Veoh Networks\Veoh\VeohClient.exe [2008-05-15 3644464]
""= []
"ANTIVIRUS"=C:\Program Files\MSX\MSx.exe [2008-09-27 412160]
"wblogon"=C:\WINDOWS\system32\algg.exe [2008-09-30 20480]

C:\Documents and Settings\All Users\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
Digital Line Detect.lnk - C:\Program Files\Digital Line Detect\DLG.exe
Service Manager.lnk - C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe

C:\Documents and Settings\Me\Start Menu\Programs\Startup
LimeWire On Startup.lnk - C:\Program Files\LimeWire\LimeWire.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2006-02-16 61440]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2008-09-05 241704]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Common Files\AOL\ACS\AOLacsd.exe"="C:\Program Files\Common Files\AOL\ACS\AOLacsd.exe:*:Enabled:AOL"
"C:\Program Files\Common Files\AOL\ACS\AOLDial.exe"="C:\Program Files\Common Files\AOL\ACS\AOLDial.exe:*:Enabled:AOL"
"C:\Program Files\America Online 9.0\waol.exe"="C:\Program Files\America Online 9.0\waol.exe:*:Enabled:America Online 9.0"
"C:\Program Files\iTunes\iTunes.exe"="C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes"
"C:\Program Files\LimeWire\LimeWire.exe"="C:\Program Files\LimeWire\LimeWire.exe:*:Enabled:LimeWire"
"C:\Program Files\Atari\Neverwinter Nights 2\nwn2main.exe"="C:\Program Files\Atari\Neverwinter Nights 2\nwn2main.exe:*:Enabled:Neverwinter Nights 2 Main"
"C:\Program Files\Atari\Neverwinter Nights 2\nwn2main_amdxp.exe"="C:\Program Files\Atari\Neverwinter Nights 2\nwn2main_amdxp.exe:*:Enabled:Neverwinter Nights 2 AMD"
"C:\Program Files\Atari\Neverwinter Nights 2\nwupdate.exe"="C:\Program Files\Atari\Neverwinter Nights 2\nwupdate.exe:*:Enabled:Neverwinter Nights 2 Updater"
"C:\Program Files\Atari\Neverwinter Nights 2\nwn2server.exe"="C:\Program Files\Atari\Neverwinter Nights 2\nwn2server.exe:*:Enabled:Neverwinter Nights 2 Server"
"C:\Program Files\Common Files\AOL\Loader\aolload.exe"="C:\Program Files\Common Files\AOL\Loader\aolload.exe:*:Enabled:AOL Loader"
"C:\Program Files\Messenger\msmsgs.exe"="C:\Program Files\Messenger\msmsgs.exe:*:Enabled:Windows Messenger"
"C:\Program Files\Bonjour\mDNSResponder.exe"="C:\Program Files\Bonjour\mDNSResponder.exe:*:Enabled:Bonjour"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Common Files\AOL\ACS\AOLDial.exe"="C:\Program Files\Common Files\AOL\ACS\AOLDial.exe:*:Enabled:AOL"
"C:\Program Files\Common Files\AOL\ACS\AOLacsd.exe"="C:\Program Files\Common Files\AOL\ACS\AOLacsd.exe:*:Enabled:AOL"
"C:\Program Files\America Online 9.0\waol.exe"="C:\Program Files\America Online 9.0\waol.exe:*:Enabled:America Online 9.0"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"

======List of files/folders created in the last 1 months======

2008-10-07 16:11:11 ----D---- C:\rsit
2008-10-07 1615 ----D---- C:\WINDOWS\LastGood
2008-10-07 1615 ----A---- C:\WINDOWS\system32\mucltui.dll.mui
2008-10-07 1615 ----A---- C:\WINDOWS\system32\mucltui.dll
2008-10-04 23:26:29 ----D---- C:\WINDOWS\$SQLUninstallSQL2000-KB948110-v8.00.2050-x86-ENU$
2008-10-04 23:24:30 ----SHD---- C:\Config.Msi
2008-10-04 23:24:10 ----D---- C:\Program Files\Microsoft CAPICOM 2.1.0.2
2008-10-04 19:40:03 ----A---- C:\WINDOWS\system32\DEBUG_LOG.txt
2008-10-04 18:11:28 ----D---- C:\Documents and Settings\Me\Application Data\OfficeUpdate12
2008-10-04 18:10:32 ----D---- C:\Documents and Settings\All Users\Application Data\Office Genuine Advantage
2008-10-04 18:02:17 ----D---- C:\Program Files\Norton PC Checkup
2008-10-04 17:56:59 ----HDC---- C:\WINDOWS\$NtUninstallKB951978$
2008-10-04 17:45:41 ----D---- C:\ie-spyad_zo
2008-10-04 17:36:17 ----D---- C:\Documents and Settings\All Users\Application Data\TEMP
2008-10-04 17:36:14 ----D---- C:\Program Files\SpywareBlaster
2008-10-04 17:31:10 ----D---- C:\Program Files\Panda Security
2008-10-04 14:39:32 ----D---- C:\WINDOWS\Prefetch
2008-10-04 13:59:13 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2008-10-04 13:59:03 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2008-10-04 13:58:51 ----HDC---- C:\WINDOWS\$NtUninstallKB951748$
2008-10-04 13:58:39 ----HDC---- C:\WINDOWS\$NtUninstallKB951698$
2008-10-04 13:58:29 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2008-10-04 13:58:21 ----HDC---- C:\WINDOWS\$NtUninstallKB951376$
2008-10-04 13:58:08 ----HDC---- C:\WINDOWS\$NtUninstallKB951066$
2008-10-04 13:57:57 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2008-10-04 13:57:48 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2008-10-04 13:57:37 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2008-10-04 13:57:23 ----HDC---- C:\WINDOWS\$NtUninstallKB938464$
2008-10-04 13:46:30 ----D---- C:\WINDOWS\system32\scripting
2008-10-04 13:46:28 ----D---- C:\WINDOWS\l2schemas
2008-10-04 13:46:26 ----D---- C:\WINDOWS\system32\en
2008-10-04 13:46:24 ----D---- C:\WINDOWS\system32\bits
2008-10-04 13:38:06 ----D---- C:\WINDOWS\ServicePackFiles
2008-10-04 13:17:11 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2008-09-30 02:08:37 ----A---- C:\WINDOWS\system32\algg.exe
2008-09-30 02:07:57 ----D---- C:\Program Files\MSX
2008-09-30 02:07:49 ----D---- C:\WINDOWS\system32\768890
2008-09-30 02:07:39 ----D---- C:\Program Files\Applications
2008-09-13 09:33:20 ----N---- C:\WINDOWS\system32\wmphoto.dll
2008-09-13 09:33:16 ----N---- C:\WINDOWS\system32\wlanapi.dll
2008-09-13 09:33:13 ----N---- C:\WINDOWS\system32\windowscodecsext.dll
2008-09-13 09:33:13 ----N---- C:\WINDOWS\system32\windowscodecs.dll
2008-09-13 09:33:02 ----N---- C:\WINDOWS\system32\tspkg.dll
2008-09-13 09:33:02 ----N---- C:\WINDOWS\system32\tsgqec.dll
2008-09-13 09:32:49 ----N---- C:\WINDOWS\system32\spupdwxp.exe
2008-09-13 09:32:47 ----A---- C:\WINDOWS\system32\spdwnwxp.exe
2008-09-13 09:32:45 ----N---- C:\WINDOWS\system32\slserv.exe
2008-09-13 09:32:44 ----N---- C:\WINDOWS\system32\slrundll.exe
2008-09-13 09:32:44 ----N---- C:\WINDOWS\system32\slgen.dll
2008-09-13 09:32:44 ----N---- C:\WINDOWS\system32\slextspk.dll
2008-09-13 09:32:44 ----N---- C:\WINDOWS\system32\slcoinst.dll
2008-09-13 09:32:44 ----N---- C:\WINDOWS\slrundll.exe
2008-09-13 09:32:40 ----N---- C:\WINDOWS\system32\setupn.exe
2008-09-13 09:32:37 ----N---- C:\WINDOWS\system32\s3gnb.dll
2008-09-13 09:32:35 ----N---- C:\WINDOWS\system32\rhttpaa.dll
2008-09-13 09:32:33 ----N---- C:\WINDOWS\system32\rasqec.dll
2008-09-13 09:32:32 ----N---- C:\WINDOWS\system32\qutil.dll
2008-09-13 09:32:31 ----N---- C:\WINDOWS\system32\qcliprov.dll
2008-09-13 09:32:31 ----N---- C:\WINDOWS\system32\qagentrt.dll
2008-09-13 09:32:31 ----N---- C:\WINDOWS\system32\qagent.dll
2008-09-13 09:32:28 ----N---- C:\WINDOWS\system32\photometadatahandler.dll
2008-09-13 09:32:24 ----N---- C:\WINDOWS\system32\onex.dll
2008-09-13 09:32:10 ----N---- C:\WINDOWS\system32\napstat.exe
2008-09-13 09:32:10 ----N---- C:\WINDOWS\system32\napmontr.dll
2008-09-13 09:32:10 ----N---- C:\WINDOWS\system32\napipsec.dll
2008-09-13 09:32:09 ----N---- C:\WINDOWS\system32\mtxparhd.dll
2008-09-13 09:32:08 ----N---- C:\WINDOWS\system32\msxml6r.dll
2008-09-13 09:32:08 ----N---- C:\WINDOWS\system32\msxml6.dll
2008-09-13 09:32:05 ----N---- C:\WINDOWS\system32\msshavmsg.dll
2008-09-13 09:32:05 ----N---- C:\WINDOWS\system32\mssha.dll
2008-09-13 09:31:43 ----N---- C:\WINDOWS\system32\mmcperf.exe
2008-09-13 09:31:42 ----N---- C:\WINDOWS\system32\mmcfxcommon.dll
2008-09-13 09:31:42 ----N---- C:\WINDOWS\system32\mmcex.dll
2008-09-13 09:31:42 ----N---- C:\WINDOWS\system32\microsoft.managementconsole.dll
2008-09-13 09:31:25 ----N---- C:\WINDOWS\system32\l2gpstore.dll
2008-09-13 09:31:24 ----N---- C:\WINDOWS\system32\kmsvc.dll
2008-09-13 09:31:23 ----N---- C:\WINDOWS\system32\kbdpash.dll
2008-09-13 09:31:23 ----N---- C:\WINDOWS\system32\kbdnepr.dll
2008-09-13 09:31:23 ----N---- C:\WINDOWS\system32\kbdiultn.dll
2008-09-13 09:31:22 ----N---- C:\WINDOWS\system32\kbdbhc.dll
2008-09-13 09:31:06 ----N---- C:\WINDOWS\system32\smtpapi.dll
2008-09-13 09:31:05 ----N---- C:\WINDOWS\system32\rwnh.dll
2008-09-13 09:31:00 ----N---- C:\WINDOWS\system32\comsdupd.exe
2008-09-13 09:30:51 ----N---- C:\WINDOWS\system32\hsfcisp2.dll
2008-09-13 09:30:40 ----N---- C:\WINDOWS\system32\faxpatch.exe
2008-09-13 09:30:40 ----A---- C:\WINDOWS\002910_.tmp
2008-09-13 09:30:37 ----N---- C:\WINDOWS\system32\eapsvc.dll
2008-09-13 09:30:37 ----N---- C:\WINDOWS\system32\eapqec.dll
2008-09-13 09:30:37 ----N---- C:\WINDOWS\system32\eappprxy.dll
2008-09-13 09:30:37 ----N---- C:\WINDOWS\system32\eapphost.dll
2008-09-13 09:30:36 ----N---- C:\WINDOWS\system32\eappgnui.dll
2008-09-13 09:30:36 ----N---- C:\WINDOWS\system32\eappcfg.dll
2008-09-13 09:30:36 ----N---- C:\WINDOWS\system32\eapp3hst.dll
2008-09-13 09:30:36 ----N---- C:\WINDOWS\system32\eapolqec.dll
2008-09-13 09:30:27 ----N---- C:\WINDOWS\system32\dot3ui.dll
2008-09-13 09:30:27 ----N---- C:\WINDOWS\system32\dot3svc.dll
2008-09-13 09:30:27 ----N---- C:\WINDOWS\system32\dot3msm.dll
2008-09-13 09:30:27 ----N---- C:\WINDOWS\system32\dot3dlg.dll
2008-09-13 09:30:26 ----N---- C:\WINDOWS\system32\dot3gpclnt.dll
2008-09-13 09:30:26 ----N---- C:\WINDOWS\system32\dot3cfg.dll
2008-09-13 09:30:26 ----N---- C:\WINDOWS\system32\dot3api.dll
2008-09-13 09:30:22 ----N---- C:\WINDOWS\system32\dimsroam.dll
2008-09-13 09:30:22 ----N---- C:\WINDOWS\system32\dimsntfy.dll
2008-09-13 09:30:19 ----N---- C:\WINDOWS\system32\dhcpqec.dll
2008-09-13 09:30:12 ----N---- C:\WINDOWS\system32\credssp.dll
2008-09-13 09:30:02 ----N---- C:\WINDOWS\system32\bitsprx4.dll
2008-09-13 09:30:01 ----N---- C:\WINDOWS\system32\azroles.dll
2008-09-13 09:30:00 ----N---- C:\WINDOWS\system32\ativtmxx.dll
2008-09-13 09:29:58 ----N---- C:\WINDOWS\system32\ati3d1ag.dll
2008-09-13 09:29:57 ----N---- C:\WINDOWS\system32\ati2dvaa.dll
2008-09-13 09:29:46 ----N---- C:\WINDOWS\system32\aaclient.dll
2008-09-11 0650 ----HDC---- C:\WINDOWS\$NtUninstallKB938464_0$
2008-09-11 06:05:41 ----HDC---- C:\WINDOWS\$NtUninstallKB954154_WM11$

======List of files/folders modified in the last 1 months======

2008-10-07 1616 ----D---- C:\WINDOWS\Temp
2008-10-07 1615 ----HD---- C:\WINDOWS\inf
2008-10-07 1615 ----D---- C:\WINDOWS\system32
2008-10-07 1615 ----D---- C:\WINDOWS
2008-10-07 16:05:06 ----D---- C:\Program Files\Mozilla Firefox
2008-10-05 21:20:47 ----D---- C:\WINDOWS\msagent
2008-10-05 21:20:44 ----A---- C:\WINDOWS\NeroDigital.ini
2008-10-05 21:18:07 ----RD---- C:\WINDOWS\Web
2008-10-05 21:18:07 ----D---- C:\WINDOWS\SHELLNEW
2008-10-05 18:13:03 ----D---- C:\WINDOWS\system32\CatRoot2
2008-10-04 23:35:27 ----A---- C:\WINDOWS\ModemLog_Conexant HDA D110 MDC V.92 Modem.txt
2008-10-04 23:34:03 ----A---- C:\WINDOWS\SchedLgU.Txt
2008-10-04 23:30:23 ----SHD---- C:\WINDOWS\Installer
2008-10-04 23:29:27 ----D---- C:\Program Files\Microsoft Silverlight
2008-10-04 23:28:02 ----A---- C:\WINDOWS\win.ini
2008-10-04 23:24:10 ----D---- C:\Program Files
2008-10-04 23:23:59 ----RSD---- C:\WINDOWS\assembly
2008-10-04 23:11:28 ----SD---- C:\WINDOWS\Downloaded Program Files
2008-10-04 23:00:25 ----D---- C:\Program Files\MSN
2008-10-04 21:38:01 ----D---- C:\WINDOWS\system32\drivers
2008-10-04 19:42:40 ----D---- C:\Program Files\Common Files\Symantec Shared
2008-10-04 18:19:27 ----RSD---- C:\WINDOWS\Fonts
2008-10-04 18:19:06 ----D---- C:\Program Files\Common Files\Microsoft Shared
2008-10-04 18:03:02 ----SD---- C:\WINDOWS\Tasks
2008-10-04 18:02:48 ----SHD---- C:\RECYCLER
2008-10-04 17:58:02 ----RSHD---- C:\WINDOWS\system32\dllcache
2008-10-04 17:57:12 ----A---- C:\WINDOWS\imsins.BAK
2008-10-04 17:55:59 ----HD---- C:\WINDOWS\$hf_mig$
2008-10-04 17:44:16 ----D---- C:\drivers
2008-10-04 16:38:50 ----D---- C:\Documents and Settings\All Users\Application Data\Viewpoint
2008-10-04 14:42:24 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2008-10-04 14:41:32 ----D---- C:\Program Files\Dl_cats
2008-10-04 14:40:56 ----A---- C:\WINDOWS\OEWABLog.txt
2008-10-04 14:39:43 ----A---- C:\WINDOWS\setuplog.txt
2008-10-04 14:38:56 ----D---- C:\WINDOWS\system32\Setup
2008-10-04 14:38:56 ----D---- C:\WINDOWS\ime
2008-10-04 14:38:56 ----D---- C:\WINDOWS\AppPatch
2008-10-04 14:38:56 ----D---- C:\Program Files\Messenger
2008-10-04 14:38:55 ----D---- C:\WINDOWS\system32\wbem
2008-10-04 14:38:07 ----D---- C:\WINDOWS\security
2008-10-04 14:00:12 ----D---- C:\WINDOWS\system32\CatRoot
2008-10-04 13:48:14 ----D---- C:\WINDOWS\WinSxS
2008-10-04 13:47:21 ----D---- C:\WINDOWS\system32\inetsrv
2008-10-04 13:47:20 ----D---- C:\WINDOWS\network diagnostic
2008-10-04 13:47:20 ----D---- C:\WINDOWS\Help
2008-10-04 13:46:34 ----D---- C:\WINDOWS\system32\en-US
2008-10-04 13:46:33 ----D---- C:\WINDOWS\system32\usmt
2008-10-04 13:46:24 ----D---- C:\WINDOWS\PeerNet
2008-10-04 13:46:24 ----D---- C:\Program Files\Movie Maker
2008-10-04 13:37:36 ----D---- C:\WINDOWS\system32\Restore
2008-10-04 13:37:35 ----D---- C:\WINDOWS\system32\npp
2008-10-04 13:37:35 ----D---- C:\WINDOWS\mui
2008-10-04 13:37:28 ----D---- C:\WINDOWS\srchasst
2008-10-04 13:37:25 ----D---- C:\Program Files\NetMeeting
2008-10-04 13:37:21 ----D---- C:\WINDOWS\system32\Com
2008-10-04 13:37:16 ----D---- C:\Program Files\Windows Media Player
2008-10-04 13:37:15 ----D---- C:\Program Files\Windows NT
2008-10-04 13:37:14 ----D---- C:\Program Files\Outlook Express
2008-10-04 13:37:08 ----D---- C:\Program Files\Common Files\System
2008-10-04 13:36:34 ----D---- C:\WINDOWS\system32\oobe
2008-10-04 13:36:26 ----D---- C:\WINDOWS\system
2008-10-04 13:27:21 ----D---- C:\WINDOWS\system32\ReinstallBackups
2008-10-04 13:17:01 ----D---- C:\WINDOWS\ehome
2008-09-12 17:35:05 ----D---- C:\WINDOWS\Debug

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 APPDRV;APPDRV; C:\WINDOWS\SYSTEM32\DRIVERS\APPDRV.SYS [2005-08-12 16128]
R1 GearAspiWDM;GearAspiWDM; C:\WINDOWS\system32\drivers\GearAspiWDM.sys [2006-07-14 14448]
R1 intelppm;Intel Processor Driver; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-13 36352]
R1 omci;OMCI WDM Device Driver; C:\WINDOWS\system32\DRIVERS\omci.sys [2004-02-13 17153]
R1 sscdbhk5;sscdbhk5; C:\WINDOWS\system32\drivers\sscdbhk5.sys [2004-07-14 5627]
R1 ssrtln;ssrtln; C:\WINDOWS\system32\drivers\ssrtln.sys [2004-07-14 23545]
R1 tmtdi;Trend Micro TDI Driver; C:\WINDOWS\System32\Drivers\tmtdi.sys [2005-08-30 38528]
R2 AegisP;AEGIS Protocol (IEEE 802.1x) v3.4.9.0; C:\WINDOWS\system32\DRIVERS\AegisP.sys [2006-08-08 21275]
R2 ASCTRM;ASCTRM; C:\WINDOWS\system32\drivers\ASCTRM.sys [2006-08-08 8552]
R2 BTSERIAL;Bluetooth Serial Driver; \??\C:\WINDOWS\system32\drivers\btserial.sys []
R2 drvnddm;drvnddm; C:\WINDOWS\system32\drivers\drvnddm.sys [2004-11-23 40480]
R2 mdmxsdk;mdmxsdk; C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys [2004-03-16 13059]
R2 s24trans;WLAN Transport; C:\WINDOWS\system32\DRIVERS\s24trans.sys [2005-12-28 13568]
R2 tfsnboio;tfsnboio; C:\WINDOWS\system32\dla\tfsnboio.sys [2004-12-06 25883]
R2 tfsncofs;tfsncofs; C:\WINDOWS\system32\dla\tfsncofs.sys [2004-12-06 34843]
R2 tfsndrct;tfsndrct; C:\WINDOWS\system32\dla\tfsndrct.sys [2004-12-06 4123]
R2 tfsndres;tfsndres; C:\WINDOWS\system32\dla\tfsndres.sys [2004-12-06 2239]
R2 tfsnifs;tfsnifs; C:\WINDOWS\system32\dla\tfsnifs.sys [2004-12-06 86586]
R2 tfsnopio;tfsnopio; C:\WINDOWS\system32\dla\tfsnopio.sys [2004-12-06 15227]
R2 tfsnpool;tfsnpool; C:\WINDOWS\system32\dla\tfsnpool.sys [2004-12-06 6363]
R2 tfsnudf;tfsnudf; C:\WINDOWS\system32\dla\tfsnudf.sys [2004-12-06 98714]
R2 tfsnudfa;tfsnudfa; C:\WINDOWS\system32\dla\tfsnudfa.sys [2004-12-06 100603]
R2 tm_cfw;Common Firewall Driver; C:\WINDOWS\System32\Drivers\tm_cfw.sys [2005-08-30 1884585]
R2 Tmfilter;Tmfilter; C:\WINDOWS\system32\drivers\TmXPFlt.sys [2008-07-18 205328]
R2 Tmpreflt;Tmpreflt; C:\WINDOWS\system32\drivers\Tmpreflt.sys [2008-07-18 36368]
R2 Vsapint;Vsapint; C:\WINDOWS\system32\drivers\Vsapint.sys [2008-07-18 1195448]
R3 Arp1394;1394 ARP Client Protocol; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-13 60800]
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2006-02-16 1421312]
R3 bcm4sbxp;Broadcom 440x 10/100 Integrated Controller XP Driver; C:\WINDOWS\system32\DRIVERS\bcm4sbxp.sys [2005-08-05 45312]
R3 BTKRNL;Bluetooth Bus Enumerator; C:\WINDOWS\system32\DRIVERS\btkrnl.sys [2006-05-24 851434]
R3 BTWUSB;WIDCOMM USB Bluetooth Driver; C:\WINDOWS\System32\Drivers\btwusb.sys [2006-05-24 66488]
R3 CmBatt;Microsoft ACPI Control Method Battery Driver; C:\WINDOWS\system32\DRIVERS\CmBatt.sys [2008-04-13 13952]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 HSF_DPV;HSF_DPV; C:\WINDOWS\system32\DRIVERS\HSF_DPV.sys [2005-07-21 1035008]
R3 HSFHWAZL;HSFHWAZL; C:\WINDOWS\system32\DRIVERS\HSFHWAZL.sys [2005-07-21 201600]
R3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-13 61824]
R3 rimmptsk;rimmptsk; C:\WINDOWS\system32\DRIVERS\rimmptsk.sys [2005-10-14 28544]
R3 rimsptsk;rimsptsk; C:\WINDOWS\system32\DRIVERS\rimsptsk.sys [2005-10-14 51328]
R3 rismxdp;Ricoh xD-Picture Card Driver; C:\WINDOWS\system32\DRIVERS\rixdptsk.sys [2005-10-14 307968]
R3 sdbus;sdbus; C:\WINDOWS\system32\DRIVERS\sdbus.sys [2008-04-13 79232]
R3 STHDA;SigmaTel High Definition Audio CODEC; C:\WINDOWS\system32\drivers\sthda.sys [2006-03-24 1156648]
R3 SynTP;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2006-03-08 191872]
R3 usbehci;Microsoft USB 2.0 Enhanced Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-13 30208]
R3 usbhub;Microsoft USB Standard Hub Driver; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-13 59520]
R3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
R3 w39n51;Intel(R) PRO/Wireless 3945ABG Adapter Driver; C:\WINDOWS\system32\DRIVERS\w39n51.sys [2005-12-04 1428096]
R3 wanatw;WAN Miniport (ATW); C:\WINDOWS\system32\DRIVERS\wanatw4.sys [2003-01-10 33588]
R3 winachsf;winachsf; C:\WINDOWS\system32\DRIVERS\HSF_CNXT.sys [2005-07-21 717952]
S1 kbdhid;Keyboard HID Driver; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-13 14592]
S3 asbp2poa;asbp2poa; \??\C:\DOCUME~1\Me\LOCALS~1\Temp\asbp2poa.sys []
S3 BVRPMPR5;BVRPMPR5 NDIS Protocol Driver; \??\E:\INSTAL~E\Core\BVRPMPR5.SYS []
S3 E100B;Intel(R) PRO Adapter Driver; C:\WINDOWS\system32\DRIVERS\e100b325.sys [2001-08-17 117760]
S3 HidUsb;Microsoft HID Class Driver; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
S3 mouhid;Mouse HID Driver; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-08-17 12160]
S3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2004-08-03 1897408]
S3 SaiH075C;SaiH075C; C:\WINDOWS\system32\DRIVERS\SaiH075C.sys [2006-07-27 176640]
S3 usbccgp;Microsoft USB Generic Parent Driver; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
S3 usbprint;Microsoft USB PRINTER Class; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;USB Scanner Driver; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 USBSTOR;USB Mass Storage Driver; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 WpdUsb;WpdUsb; C:\WINDOWS\System32\Drivers\wpdusb.sys [2006-10-18 38528]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S4 agp440;Intel AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\agp440.sys [2008-04-13 42368]
S4 agpCPQ;Compaq AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\agpCPQ.sys [2008-04-13 44928]
S4 alim1541;ALI AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\alim1541.sys [2008-04-13 42752]
S4 amdagp;AMD AGP Bus Filter Driver; C:\WINDOWS\system32\DRIVERS\amdagp.sys [2008-04-13 43008]
S4 cbidf;cbidf; C:\WINDOWS\system32\DRIVERS\cbidf2k.sys [2001-08-17 13952]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\DRIVERS\intelide.sys [2008-04-13 5504]
S4 sisagp;SIS AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\sisagp.sys [2008-04-13 40960]
S4 viaagp;VIA AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\viaagp.sys [2008-04-13 42240]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AOL ACS;AOL Connectivity Service; C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe [2004-04-07 1135728]
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [2008-01-15 110592]
R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2006-02-16 405504]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2007-07-24 229376]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe [2006-05-24 266295]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\Wireless\Bin\EvtEng.exe [2005-12-28 114753]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-20 322120]
R2 MSSQL$MICROSOFTSMLBIZ;MSSQL$MICROSOFTSMLBIZ; C:\Program Files\Microsoft SQL Server\MSSQL$MICROSOFTSMLBIZ\Binn\sqlservr.exe [2008-05-25 9154560]
R2 NICCONFIGSVC;NICCONFIGSVC; C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe [2006-04-06 380928]
R2 PcCtlCom;Trend Micro Central Control Component; C:\PROGRA~1\TRENDM~1\INTERN~1\PcCtlCom.exe [2006-09-04 880722]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe [2005-12-28 217164]
R2 S24EventMonitor;Intel(R) PROSet/Wireless Service; C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe [2005-12-28 540745]
R2 Tmntsrv;Trend Micro Real-time Service; C:\PROGRA~1\TRENDM~1\INTERN~1\Tmntsrv.exe [2005-08-30 290889]
R2 TmPfw;Trend Micro Personal Firewall; C:\PROGRA~1\TRENDM~1\INTERN~1\TmPfw.exe [2005-08-30 585792]
R2 tmproxy;Trend Micro Proxy Service; C:\PROGRA~1\TRENDM~1\INTERN~1\tmproxy.exe [2005-08-30 262215]
R2 WLANKEEPER;Intel(R) PROSet/Wireless SSO Service; C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe [2005-12-28 262217]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-13 14336]
R3 dlcc_device;dlcc_device; C:\WINDOWS\system32\dlcccoms.exe [2005-10-27 491520]
R3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2006-09-25 451136]
R3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe [2007-05-16 271920]
S2 Fax;Fax; C:\WINDOWS\system32\fxssvc.exe [2008-04-13 267776]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2007-10-24 33800]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2007-10-24 70144]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2007-02-14 138168]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [2005-11-14 69632]
S3 MSCSPTISRV;MSCSPTISRV; C:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe [2006-04-27 53337]
S3 MSSQLServerADHelper;MSSQLServerADHelper; C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqladhlp.exe [2005-05-03 73728]
S3 NBService;NBService; C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe [2007-04-13 792112]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 PACSPTISVR;PACSPTISVR; C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe [2006-04-27 49241]
S3 SPTISRV;Sony SPTI Service; C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe [2006-04-27 69718]
S3 SQLAgent$MICROSOFTSMLBIZ;SQLAgent$MICROSOFTSMLBIZ; C:\Program Files\Microsoft SQL Server\MSSQL$MICROSOFTSMLBIZ\Binn\sqlagent.EXE [2005-05-03 323584]
S3 SSScsiSV;SonicStage SCSI Service; C:\Program Files\Common Files\Sony Shared\AVLib\SSScsiSV.exe [2006-05-08 69632]
S3 WMPNetworkSvc;Windows Media Player Network Sharing Service; C:\Program Files\Windows Media Player\WMPNetwk.exe [2006-10-18 913408]

-----------------EOF-----------------
info.txt logfile of random's system information tool 1.04 2008-10-07 16:11:30

======Uninstall list======

-->C:\Program Files\Nero\Nero 7\\nero\uninstall\UNNERO.exe /UNINSTALL
-->C:\WINDOWS\IsUninst.exe -fC:\WINDOWS\orun32.isu
-->C:\WINDOWS\system32\\MSIEXEC.EXE /x {075473F5-846A-448B-BCB3-104AA1760205}
-->C:\WINDOWS\system32\\MSIEXEC.EXE /x {1206EF92-2E83-4859-ACCB-2048C3CB7DA6}
-->C:\WINDOWS\system32\\MSIEXEC.EXE /x {AB708C9B-97C8-4AC9-899B-DBF226AC9382}
-->C:\WINDOWS\system32\\MSIEXEC.EXE /x {B12665F4-4E93-4AB4-B7FC-37053B524629}
-->C:\WINDOWS\UNNeroBackItUp.exe /UNINSTALL
-->C:\WINDOWS\UNNeroMediaHome.exe /UNINSTALL
-->C:\WINDOWS\UNNeroShowTime.exe /UNINSTALL
-->C:\WINDOWS\UNNeroVision.exe /UNINSTALL
-->C:\WINDOWS\UNRecode.exe /UNINSTALL
-->Dummy
-->MsiExec.exe /I{95D9B4D8-B091-4fab-80EA-313EB4B82FD6}
-->MsiExec.exe /I{EB997E90-5EB0-4eb5-90D0-90B1D2F0CA03}
-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{88E5FCB8-5F25-11D5-B16F-0800460222F0}\setup.exe" -l0x9 UNINSTALL
-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{D76298C2-E532-4A11-BCFF-76F3F19DA84D}\setup.exe" UNINSTALL
-->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
924PLC32-->MsiExec.exe /I{94721EA3-7EA6-43EA-B99C-A5D0E3C66240}
ABBYY FineReader 6.0 Sprint-->MsiExec.exe /I{ACF60000-22B9-4CE9-98D6-2CCF359BAC07}
Adobe Acrobat - Reader 6.0.2 Update-->MsiExec.exe /I{AC76BA86-0000-0000-0000-6028747ADE01}
Adobe Flash Player 9 ActiveX-->C:\WINDOWS\system32\Macromed\Flash\FlashUtil9b.exe -uninstallDelete
Adobe Flash Player ActiveX-->C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
Adobe Reader 6.0.1-->MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A00000000001}
Adobe Shockwave Player 11-->C:\WINDOWS\system32\adobe\SHOCKW~1\UNWISE.EXE C:\WINDOWS\system32\Adobe\SHOCKW~1\Install.log
AOL Coach Version 1.0(Build:20040229.1 en)-->C:\Program Files\Common Files\aolshare\Coach\AolCInUn.exe
AOL Connectivity Services-->C:\PROGRA~1\COMMON~1\AOL\ACS\AcsUninstall.exe /c
AOL Uninstaller (Choose which Products to Remove)-->C:\Program Files\Common Files\AOL\uninstaller.exe
AOLIcon-->MsiExec.exe /I{62BD0AE0-4EB1-4BBB-8F43-B6400C8FEB2C}
Apple Mobile Device Support-->MsiExec.exe /I{D8AB8F0C-CEEB-4A29-8EF5-219B064813F4}
Apple Software Update-->MsiExec.exe /I{B74F042E-E1B9-4A5B-8D46-387BB172F0A4}
ATI Catalyst Control Center-->MsiExec.exe /I{0D251F37-10CB-46DF-BFA0-4702218DB0B6}
ATI Display Driver-->rundll32 C:\WINDOWS\system32\atiiiexx.dll,_InfEngUnInstallINFFile_RunDLL@16 -force_restart -flags:0x2010001 -inf_class:DISPLAY -clean
Bonjour-->MsiExec.exe /I{47BF1BD6-DCAC-468F-A0AD-E5DECC2211C3}
Broadcom Management Programs-->MsiExec.exe /I{26E1BFB0-E87E-4696-9F89-B467F01F81E5}
Conexant HDA D110 MDC V.92 Modem-->C:\Program Files\CONEXANT\CNXT_MODEM_HDAUDIO_VEN_14F1&DEV_2BFA&SUBSYS_14F100C3\HXFSETUP.EXE -U -Idel1028k.inf
Corel Photo Album 6-->MsiExec.exe /X{8A9B8148-DDD7-448F-BD6C-358386D32354}
Dell Digital Jukebox Driver-->C:\Program Files\Dell\Digital Jukebox Drivers\DrvUnins.exe /s
Dell Media Experience-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{2637C347-9DAD-11D6-9EA2-00055D0CA761}\setup.exe" -uninstall
Dell Photo AIO Printer 924-->C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\dlccUNST.EXE -NOLICENSE
Dell Support Center-->MsiExec.exe /X{E3BFEE55-39E2-4BE0-B966-89FE583822C1}
DellConnect-->C:\Documents and Settings\All Users\Application Data\GTek\GTRemote\GTRCUnin.exe /selfdelete
DellConnect-->MsiExec.exe /X{D22B50A0-DD4E-4E33-9971-891C328677C8}
Digital Content Portal-->MsiExec.exe /I{6D5FCA42-1486-4E32-AFE8-1B7E2AA59D33}
Digital Line Detect-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{E646DCF0-5A68-11D5-B229-002078017FBF}\setup.exe" -l0x9 ControlPanel
DivX Web Player-->C:\Program Files\DivX\DivXWebPlayerUninstall.exe /PLUGIN
Documentation & Support Launcher-->MsiExec.exe /X{B0DF58A2-40DF-4465-AA56-38623EC9938C}
EarthLink setup files-->MsiExec.exe /X{728278A1-0BB7-45E4-AC5E-91D7C0FD1EDE}
EducateU-->MsiExec.exe /I{A683A2C0-821C-486F-858C-FA634DB5E864}
ELIcon-->MsiExec.exe /I{4667B940-BB01-428B-986E-A0CC46497BF7}
Games, Music, & Photos Launcher-->MsiExec.exe /X{B6884A07-0305-47AE-9969-8F26FADC17DE}
Get High Speed Internet!-->MsiExec.exe /I{7A3F0566-5E05-4919-9C98-456F6B5CF831}
Google Earth-->MsiExec.exe /I{1E04F83B-2AB9-4301-9EF7-E86307F79C72}
Google Toolbar for Internet Explorer-->regsvr32 /u /s "c:\program files\google\googletoolbar4.dll"
Guitar Pro 5.2-->"C:\Program Files\Guitar Pro 5\unins000.exe"
High Definition Audio Driver Package - KB835221-->C:\WINDOWS\$NtUninstallKB835221WXP$\spuninst\spuninst.exe
HijackThis 2.0.2-->"C:\Documents and Settings\Me\Desktop\HiJackThis\HijackThis.exe" /uninstall
Hotfix 2050 for SQL Server 2000 ENU (KB948110)-->"C:\WINDOWS\$SQLUninstallSQL2000-KB948110-v8.00.2050-x86-ENU$\spuninst\spuninst.exe"
Hotfix for Windows Internet Explorer 7 (KB947864)-->"C:\WINDOWS\ie7updates\KB947864-IE7\spuninst\spuninst.exe"
Hotfix for Windows Media Format 11 SDK (KB929399)-->"C:\WINDOWS\$NtUninstallKB929399$\spuninst\spuninst.exe"
Hotfix for Windows Media Player 11 (KB939683)-->"C:\WINDOWS\$NtUninstallKB939683$\spuninst\spuninst.exe"
Hotfix for Windows XP (KB952287)-->"C:\WINDOWS\$NtUninstallKB952287$\spuninst\spuninst.exe"
IEBrowse Tool-->"C:\Program Files\Applications\iebtu.exe"
IExplorer Bar-->"C:\Program Files\Applications\iebu.exe"
Intel(R) PROSet/Wireless Software-->C:\WINDOWS\Installer\iProInst.exe
Internet Service Offers Launcher-->MsiExec.exe /X{E42BD75A-FC23-4E3F-9F91-2658334C644F}
iTunes-->MsiExec.exe /I{5878FF02-3B8F-4309-B4E5-0D3DB6F2E8E6}
J2SE Runtime Environment 5.0 Update 8-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0150080}
Jasc Paint Shop Photo Album 5-->MsiExec.exe /I{4192EAC0-6B36-4723-B216-D0E86E7757AC}
Jasc Paint Shop Pro Studio, Dell Editon-->MsiExec.exe /I{78C496B9-5A6B-4692-8C2E-AFFFC34E4961}
Java 2 Runtime Environment, SE v1.4.2_03-->MsiExec.exe /I{7148F0A8-6813-11D6-A77B-00B0D0142030}
Learn2 Player (Uninstall Only)-->C:\Program Files\Learn2.com\StRunner\stuninst.exe
LimeWire 4.12.6-->"C:\Program Files\LimeWire\uninstall.exe"
LiveUpdate 2.6 (Symantec Corporation)-->C:\Program Files\Symantec\LiveUpdate\LSETUP.EXE /U
mCore-->MsiExec.exe /I{E81667C6-2856-46D6-ABEA-6A2F42166779}
mDrWiFi-->MsiExec.exe /I{F6090A17-0967-4A8A-B3C3-422A1B514D49}
mHlpDell-->MsiExec.exe /I{49D687E5-6784-431B-A0A2-2F23B8CC5A1B}
Microsoft .NET Framework 1.1 Hotfix (KB928366)-->"C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe" "C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\M928366\M928366Uninstall.msp"
Microsoft .NET Framework 1.1-->msiexec.exe /X {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 1.1-->MsiExec.exe /X{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 2.0 Service Pack 1-->MsiExec.exe /I{B508B3F1-A24A-32C0-B310-85786919EF28}
Microsoft Compression Client Pack 1.0 for Windows XP-->"C:\WINDOWS\$NtUninstallMSCompPackV1$\spuninst\spuninst.exe"
Microsoft Internationalized Domain Names Mitigation APIs-->"C:\WINDOWS\$NtServicePackUninstallIDNMitigationAPIs$\spuninst\spuninst.exe"
Microsoft National Language Support Downlevel APIs-->"C:\WINDOWS\$NtServicePackUninstallNLSDownlevelMapping$\spuninst\spuninst.exe"
Microsoft Office Outlook 2003 with Business Contact Manager Update-->MsiExec.exe /I{BA68600E-96D9-4E92-80F2-26B9681B5A63}
Microsoft Office Small Business Edition 2003-->MsiExec.exe /I{91CA0409-6000-11D3-8CFE-0150048383C9}
Microsoft Silverlight-->MsiExec.exe /I{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
Microsoft SQL Server Desktop Engine (MICROSOFTSMLBIZ)-->MsiExec.exe /X{E09B48B5-E141-427A-AB0C-D3605127224A}
Microsoft User-Mode Driver Framework Feature Pack 1.0-->"C:\WINDOWS\$NtUninstallWudf01000$\spuninst\spuninst.exe"
mIWA-->MsiExec.exe /I{3E9D596A-61D4-4239-BD19-2DB984D2A16F}
mLogView-->MsiExec.exe /I{0E2B0B41-7E08-4F9F-B21F-41C4133F43B7}
mMHouse-->MsiExec.exe /I{F0BFC7EF-9CF8-44EE-91B0-158884CD87C5}
Modem Helper-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{7F142D56-3326-11D5-B229-002078017FBF}\setup.exe" -l0x9 ControlPanel
Mozilla Firefox (2.0.0.14)-->C:\Program Files\Mozilla Firefox\uninstall\helper.exe
mPfMgr-->MsiExec.exe /I{8B928BA1-EDEC-4227-A2DA-DD83026C36F5}
mPfWiz-->MsiExec.exe /I{90B0D222-8C21-4B35-9262-53B042F18AF9}
mProSafe-->MsiExec.exe /I{23FB368F-1399-4EAC-817C-4B83ECBE3D83}
MSM32Installer-->MsiExec.exe /I{55A75679-02D1-4C8C-85CA-B4E4DF4D775F}
MSN-->C:\Program Files\MSN\MsnInstaller\msninst.exe /Action:ARP
mSSO-->MsiExec.exe /I{06BE8AFD-A8E2-4B63-BAE7-287016D16ACB}
MSXML 4.0 SP2 (KB927978)-->MsiExec.exe /I{37477865-A3F1-4772-AD43-AAFC6BCFF99F}
MSXML 4.0 SP2 (KB936181)-->MsiExec.exe /I{C04E32E0-0416-434D-AFB9-6969D703A9EF}
Music Creator 4-->"C:\Program Files\Cakewalk\Music Creator 4\unins000.exe"
Musicmatch® Jukebox-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{85D3CC30-8859-481A-9654-FD9B74310BEF}\setup.exe" -l0x9 -uninst
mWlsSafe-->MsiExec.exe /I{FCA651F3-5BDA-4DDA-9E4A-5D87D6914CC4}
mWMI-->MsiExec.exe /I{63DB9CCD-2B56-4217-9A3D-507AC78320CA}
mXML-->MsiExec.exe /I{9CC89556-3578-48DD-8408-04E66EBEF401}
mZConfig-->MsiExec.exe /I{94658027-9F16-4509-BBD7-A59FE57C3023}
Nero 7-->MsiExec.exe /X{A20A58C4-6784-4B4B-86CC-94E2E3671033}
neroxml-->MsiExec.exe /I{56C049BE-79E9-4502-BEA7-9754A3E60F9B}
NetWaiting-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{3F92ABBB-6BBF-11D5-B229-002078017FBF}\setup.exe" -l0x9 ControlPanel
NetZeroInstallers-->MsiExec.exe /X{352310C3-E46B-42D3-8F32-54721FDD72D9}
Norton PC Checkup-->C:\Program Files\Norton PC Checkup\uninstall.exe
OpenMG AAC Add-on Module 1.0.00-->C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\1150\INTEL3~1\IDriver.exe /M{23BE930B-6AC4-4D0D-B5C3-03062A2BF2A3} UNINSTALL
OpenMG Limited Patch 4.5-06-05-12-01-->C:\Program Files\Common Files\Sony Shared\OpenMG\HotFixes\HotFix4.5-06-05-12-01\HotFixSetup\setup.exe /u
OpenMG Secure Module 4.5.01-->C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\1150\INTEL3~1\IDriver.exe /M{3633BA28-67CE-4AC8-A677-3406CA84C3D8} UNINSTALL
Panda ActiveScan 2.0-->C:\Program Files\Panda Security\ActiveScan 2.0\as2uninst.exe
PDF Manual NW-E000 Series-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{5F0C7588-DC73-4465-8BAB-21813C1EC047}\setup.exe" -l0x9 UNINSTALL -removeonly
PowerDVD 5.7-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}\setup.exe" -uninstall
Qloud Plug-in for iTunes-->C:\Program Files\iTunes\Plug-Ins\Qloud\iTunesQLoudSetup.exe /uninstall
Qualxserve Service Agreement-->MsiExec.exe /X{0F756CD9-4A1E-409B-B101-601DDC4C03AA}
QuickSet-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{C5074CC4-0E26-4716-A307-960272A90040}\setup.exe" -l0x9 APPDRVNT4
QuickTime-->MsiExec.exe /I{BFD96B89-B769-4CD6-B11E-E79FFD46F067}
RealPlayer Basic-->C:\Program Files\Common Files\Real\Update\\rnuninst.exe RealNetworks|RealPlayer|6.0
Rhapsody Player Engine-->MsiExec.exe /I{22DE1881-9D24-4981-B5CC-EC7E9F2F4D52}
Search Assist-->MsiExec.exe /X{DF6A589A-7A1A-430C-9FF2-A0BDB42669DC}
SecondLife (remove only)-->"C:\Documents and Settings\Me\Desktop\SecondLife\uninst.exe" /P="SecondLife"
Security Update for CAPICOM (KB931906)-->MsiExec.exe /I{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
Security Update for CAPICOM (KB931906)-->MsiExec.exe /X{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
Security Update for Step By Step Interactive Training (KB898458)-->"C:\WINDOWS\$NtUninstallKB898458$\spuninst\spuninst.exe"
Security Update for Step By Step Interactive Training (KB923723)-->"C:\WINDOWS\$NtUninstallKB923723$\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 7 (KB938127)-->"C:\WINDOWS\ie7updates\KB938127-IE7\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 7 (KB944533)-->"C:\WINDOWS\ie7updates\KB944533-IE7\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 7 (KB950759)-->"C:\WINDOWS\ie7updates\KB950759-IE7\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 7 (KB953838)-->"C:\WINDOWS\ie7updates\KB953838-IE7\spuninst\spuninst.exe"
Security Update for Windows Media Player 11 (KB936782)-->"C:\WINDOWS\$NtUninstallKB936782_WMP11$\spuninst\spuninst.exe"
Security Update for Windows Media Player 11 (KB954154)-->"C:\WINDOWS\$NtUninstallKB954154_WM11$\spuninst\spuninst.exe"
Security Update for Windows Media Player 9 (KB917734)-->"C:\WINDOWS\$NtUninstallKB917734_WMP9$\spuninst\spuninst.exe"
Security Update for Windows XP (KB938464)-->"C:\WINDOWS\$NtUninstallKB938464$\spuninst\spuninst.exe"
Security Update for Windows XP (KB941569)-->"C:\WINDOWS\$NtUninstallKB941569$\spuninst\spuninst.exe"
Security Update for Windows XP (KB946648)-->"C:\WINDOWS\$NtUninstallKB946648$\spuninst\spuninst.exe"
Security Update for Windows XP (KB950760)-->"C:\WINDOWS\$NtUninstallKB950760$\spuninst\spuninst.exe"
Security Update for Windows XP (KB950762)-->"C:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe"
Security Update for Windows XP (KB950974)-->"C:\WINDOWS\$NtUninstallKB950974$\spuninst\spuninst.exe"
Security Update for Windows XP (KB951066)-->"C:\WINDOWS\$NtUninstallKB951066$\spuninst\spuninst.exe"
Security Update for Windows XP (KB951376)-->"C:\WINDOWS\$NtUninstallKB951376$\spuninst\spuninst.exe"
Security Update for Windows XP (KB951376-v2)-->"C:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe"
Security Update for Windows XP (KB951698)-->"C:\WINDOWS\$NtUninstallKB951698$\spuninst\spuninst.exe"
Security Update for Windows XP (KB951748)-->"C:\WINDOWS\$NtUninstallKB951748$\spuninst\spuninst.exe"
Security Update for Windows XP (KB952954)-->"C:\WINDOWS\$NtUninstallKB952954$\spuninst\spuninst.exe"
Security Update for Windows XP (KB953839)-->"C:\WINDOWS\$NtUninstallKB953839$\spuninst\spuninst.exe"
Snood for Windows version 3.52-W-->"C:\Program Files\Snood\unins000.exe"
Sonic DLA-->MsiExec.exe /I{1206EF92-2E83-4859-ACCB-2048C3CB7DA6}
Sonic MyDVD LE-->MsiExec.exe /I{21657574-BD54-48A2-9450-EB03B2C7FC29}
Sonic RecordNow Audio-->MsiExec.exe /I{AB708C9B-97C8-4AC9-899B-DBF226AC9382}
Sonic RecordNow Copy-->MsiExec.exe /I{B12665F4-4E93-4AB4-B7FC-37053B524629}
Sonic RecordNow Data-->MsiExec.exe /I{075473F5-846A-448B-BCB3-104AA1760205}
Sonic Update Manager-->MsiExec.exe /I{30465B6C-B53F-49A1-9EBA-A3F187AD502E}
SonicStage 4.0-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{A0EB195B-5876-48E6-879D-33D4B2102610}\setup.exe" -l0x9 UNINSTALL -removeonly
SpywareBlaster 4.1-->"C:\Program Files\SpywareBlaster\unins000.exe"
Star Wars®: Knights of the Old Republic (TM)-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{2A9A40C7-6670-4D5F-8F41-D12E2E08B48B}\setup.exe" -l0x9
Synaptics Pointing Device Driver-->rundll32.exe "C:\Program Files\Synaptics\SynTP\SynISDLL.dll",standAloneUninstall
Trend Micro PC-cillin Internet Security 12-->MsiExec.exe /X{7698EDA5-A90F-4205-99CB-8FF6F9048ED9}
Update for Windows XP (KB951072-v2)-->"C:\WINDOWS\$NtUninstallKB951072-v2$\spuninst\spuninst.exe"
Update for Windows XP (KB951978)-->"C:\WINDOWS\$NtUninstallKB951978$\spuninst\spuninst.exe"
URL Assistant-->regsvr32 /u /s "C:\Program Files\BAE\BAE.dll"
VeohTV BETA-->C:\Program Files\InstallShield Installation Information\{0405E51E-9582-4207-8F38-AC44201D3808}\setup.exe -runfromtemp -l0x0409
Virtools 3D Life Player-->C:\Program Files\Virtools\3D Life Player\WebplayerConfig.exe -u
Warning Center-->"C:\Program Files\Applications\wcu.exe"
WebCyberCoach 3.2 Dell-->"C:\Program Files\WebCyberCoach\b_Dell\WCC_Wipe.exe" "WebCyberCoach ext\wtrb" /inf "engine.inf,RealUninstallSection,,4" /infcfg "enginecf.inf,RealUninstallSection,,4"
WIDCOMM Bluetooth Software-->MsiExec.exe /X{3F4EC965-28EF-45C3-B063-04B25D4E9679}
WildTangent Web Driver-->C:\Program Files\WildTangent\Apps\CDA\CDAUninstall.exe
Windows Media Format 11 runtime-->"C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
Windows Media Format 11 runtime-->"C:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe"
Windows Media Player 11-->"C:\Program Files\Windows Media Player\Setup_wm.exe" /Uninstall
Windows Media Player 11-->"C:\WINDOWS\$NtUninstallwmp11$\spuninst\spuninst.exe"
Windows XP Service Pack 3-->"C:\WINDOWS\$NtServicePackUninstall$\spuninst\spuninst.exe"

======Security center information======

AV: Trend Micro PC-cillin Internet Security
FW: Trend Micro PC-cillin Internet Security (Firewall)

======Environment variables======

"ComSpec"=%SystemRoot%\system32\cmd.exe
"Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\ATI Technologies\ATI.ACE\;C:\Program Files\Microsoft SQL Server\80\Tools\Binn\;C:\Program Files\iTunes\Plug-Ins\Qloud\;C:\Program Files\QuickTime\QTSystem\
"windir"=%SystemRoot%
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"PROCESSOR_ARCHITECTURE"=x86
"PROCESSOR_LEVEL"=6
"PROCESSOR_IDENTIFIER"=x86 Family 6 Model 14 Stepping 8, GenuineIntel
"PROCESSOR_REVISION"=0e08
"NUMBER_OF_PROCESSORS"=2
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"SonicCentral"=C:\Program Files\Common Files\Sonic Shared\Sonic Central\
"CLASSPATH"=.;C:\Program Files\Java\jre1.5.0_08\lib\ext\QTJava.zip
"QTJAVA"=C:\Program Files\Java\jre1.5.0_08\lib\ext\QTJava.zip

-----------------EOF-----------------
ChenZi is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Old 10-07-2008, 03:01 PM   #4 (permalink)
Registered User
 
Join Date: Oct 2004
Posts: 47
OS: XP


Re: TROJ_AGENT.APTW and Possible_Zlob-8 and bogus antivirus pop-ups

One more thing. I've taken the infected Dell laptop off the internet ("halt internet traffic" on PC-cillin) and when I'm at work I disable the wireless. I had to connect to download RSIT. During that connected time, I saw a TM-PC-cillin warning that 3 unknown computers were connected to my computer. I think I see these in the PC-cillin Personal Firewall Log with a whole lot of other entries (two per second, in fact), but this isn't my computer (it's my son's), so for all I know these firewall breaches or attempts may go on all the time. All are listed as "Destination Unreachable".

Would it be safer to post my reply on my personal IBM TP (inches away) using a USB drive to transfer the files and would that be safe for my laptop? Not sure how to transfer a program, so prob would connect just for that reason (however, if you tell me I can use a USB drive to transfer a program I can do this at work, as long as I don't infect the network).

I will be on line for the next 7 hours (~5 PM to midnight my time). Unfortunately I have to work eventually, but will be available 7-11 AM [just for] tomorrow (my time) as well. Many thanks.
ChenZi is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Old 10-07-2008, 03:08 PM   #5 (permalink)
Moderator, Analyst, Security Team
 
TheBruce1's Avatar
 
Join Date: Oct 2006
Location: Důn Čideann,Scotland.
Posts: 5,093
OS: XP


Re: TROJ_AGENT.APTW and Possible_Zlob-8 and bogus antivirus pop-ups

Hello again

Please subscribe to this thread to get immediate notification of replies as soon as they are posted. To do this click Thread Tools, then click Subscribe to this Thread. Make sure it is set to Instant Notification, then click Subscribe.

========

Please follow all instructions and in which order they come, if you have any questions, please ask before proceeding. Its important that you follow this through until i give you the all clear, a lack of symptoms does not mean that it is no longer present.

Please DO NOT Attach logs to your posts unless you are advised to do so.

==========

Click > Start > Control Panel > Add / Remove Programs and uninstall the following programs :

IEBrowse Tool<--- IEBrowse Tool is a Trojan typically installed with rogue anti-spyware programs.
IExplorer Bar<----IExplorer Bar is a Trojan typically installed with rogue anti-spyware programs.
WildTangent Web Driver(Optional)<----Wild Tangent is a video game software company specializing in online games. It has even made a partnership with AOL to include itself as part of the AOL Instant Messenger for their AIM games section. The WildTangent Web Driver is their technology that allows you to play 3D games over the Internet. Although its not technically considered spyware it does have built in components to update itself and gather information about the computer system including

* Operating System Version
* CPU Type and Speed
* Memory Amount
* Video Card type and Driver Version
* Sound Card type and Driver Version
* DirectX Version
* Location that the Web Driver was installed from


===========

Please visit this webpage for instructions for downloading and running ComboFix:

http://www.bleepingcomputer.com/comb...o-use-combofix

Please ensure you read this guide carefully and install the Recovery Console first.

The Windows Recovery Console will allow you to boot up into a special recovery mode. This allows us to help you in the case that your computer has a problem after an attempted removal of malware. It is a simple procedure that will only take a few moments of your time.

Download this file from Microsoft`s page:

For XP Pro >> http://www.microsoft.com/downloads/d...displaylang=en

Save it as it is originally named to your Desktop.

Now close all open windows and programs, including all antivirus and antispyware programs.



Then drag the setup package onto ComboFix.exe and drop it. Follow the prompts to start ComboFix and when prompted, agree to the End-User License Agreement to install the Recovery Console.

As part of installing the Recovery Console, ComboFix will begin to run. Your desktop may disappear. This is normal. It will return.

ComboFix will now automatically install the Windows Recovery Console onto your computer, which will show up as a new option when booting up your computer. Do not select the Windows Recovery Console option when you start your computer unless requested to by a helper.

Once the Recovery Console is installed, this blue window will appear:



Please continue as follows:

Close/disable all anti virus and anti malware programs so they do not interfere with the running of ComboFix.

Click Yes to allow ComboFix to continue scanning for malware.

When the tool is finished, it will produce a report for you.

===========

Open HijackThis and click on 'Do a System Scan and save a Logfile'. Save the log file and post it here.

===========
Logs Required
C:\Combofix.txt
Hijackthis Log
__________________
Member of ASAP since 2007
Member of UNITE since 2008


**Notice to BT customers**
BT to dump Phorm, see Here for more information. No DPI

If we have helped you in anyway, please consider Donating
TheBruce1 is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Old 10-07-2008, 04:11 PM   #6 (permalink)
Registered User
 
Join Date: Oct 2004
Posts: 47
OS: XP


Re: TROJ_AGENT.APTW and Possible_Zlob-8 and bogus antivirus pop-ups

sorry for the delay. The Microsoft weblink is to create set-up disks, not the recovery console. Is this what you want me to do?
ChenZi is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Old 10-07-2008, 04:31 PM   #7 (permalink)
Moderator, Analyst, Security Team
 
TheBruce1's Avatar
 
Join Date: Oct 2006
Location: Důn Čideann,Scotland.
Posts: 5,093
OS: XP


Re: TROJ_AGENT.APTW and Possible_Zlob-8 and bogus antivirus pop-ups

Even though it says "to create set-up disks", if you follow instructions Combofix will install the recovery console.
__________________
Member of ASAP since 2007
Member of UNITE since 2008


**Notice to BT customers**
BT to dump Phorm, see Here for more information. No DPI

If we have helped you in anyway, please consider Donating
TheBruce1 is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Old 10-07-2008, 04:44 PM   #8 (permalink)
Registered User
 
Join Date: Oct 2004
Posts: 47
OS: XP


Re: TROJ_AGENT.APTW and Possible_Zlob-8 and bogus antivirus pop-ups

OK, so did that, but Recovery Console did not install -- I think I closed the installation window along with the other bogus antivirus install windows I get (sorry). It didn't say that in red, bolded text when I was in the middle of it...

here are the logs.

ComboFix 08-10-07.04 - Me 2008-10-07 18:26:32.1 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.396 [GMT -4:00]
Running from: C:\Documents and Settings\Me\Desktop\ComboFix.exe
Command switches used :: C:\Documents and Settings\Me\Desktop\WindowsXP-KB310994-SP2-Pro-BootDisk-ENU.exe
* Created a new restore point

WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

C:\Documents and Settings\Me\Cookies\MM2048.DAT
C:\Documents and Settings\Me\Cookies\MM256.DAT
C:\Documents and Settings\Me\Local Settings\Temporary Internet Files\temp.dmf
C:\Documents and Settings\Me\My Documents\My Documents.url
C:\Documents and Settings\Me\My Documents\My Music\My Music.url
C:\Documents and Settings\Me\My Documents\My Pictures\My Pictures.url
C:\Documents and Settings\Me\My Documents\My Videos\My Video.url
C:\RECYCLER\ADAPT_Installer.exe
C:\WINDOWS\IE4 Error Log.txt

.
((((((((((((((((((((((((( Files Created from 2008-09-07 to 2008-10-07 )))))))))))))))))))))))))))))))
.

2008-10-07 16:11 . 2008-10-07 16:11 <DIR> d-------- C:\rsit
2008-10-07 16:06 . 2008-07-18 22:07 270,880 --a------ C:\WINDOWS\system32\mucltui.dll
2008-10-07 16:06 . 2008-07-18 22:07 29,728 --a------ C:\WINDOWS\system32\mucltui.dll.mui
2008-10-05 21:17 . 2008-10-05 21:17 41,472 --ahs---- C:\WINDOWS\Thumbs.db
2008-10-05 21:17 . 2008-10-07 18:03 6,656 --ahs---- C:\WINDOWS\system32\Thumbs.db
2008-10-04 23:26 . 2008-10-04 23:26 <DIR> d-------- C:\WINDOWS\$SQLUninstallSQL2000-KB948110-v8.00.2050-x86-ENU$
2008-10-04 23:24 . 2008-10-04 23:24 <DIR> d-------- C:\Program Files\Microsoft CAPICOM 2.1.0.2
2008-10-04 18:11 . 2008-10-04 18:18 <DIR> d-------- C:\Documents and Settings\Me\Application Data\OfficeUpdate12
2008-10-04 18:10 . 2008-10-04 18:10 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Office Genuine Advantage
2008-10-04 18:02 . 2008-10-04 18:02 <DIR> d-------- C:\Program Files\Norton PC Checkup
2008-10-04 17:45 . 2008-10-04 17:45 <DIR> d-------- C:\ie-spyad_zo
2008-10-04 17:36 . 2008-10-04 17:36 <DIR> d-------- C:\Program Files\SpywareBlaster
2008-10-04 17:36 . 2008-10-04 17:36 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\TEMP
2008-10-04 17:31 . 2008-10-04 17:31 <DIR> d-------- C:\Program Files\Panda Security
2008-10-04 17:31 . 2008-06-19 17:24 28,544 --a------ C:\WINDOWS\system32\drivers\pavboot.sys
2008-10-04 13:46 . 2008-10-04 13:46 <DIR> d-------- C:\WINDOWS\system32\scripting
2008-10-04 13:46 . 2008-10-04 13:46 <DIR> d-------- C:\WINDOWS\system32\en
2008-10-04 13:46 . 2008-10-04 13:46 <DIR> d-------- C:\WINDOWS\system32\bits
2008-10-04 13:46 . 2008-10-04 13:46 <DIR> d-------- C:\WINDOWS\l2schemas
2008-10-04 13:38 . 2008-10-04 13:47 <DIR> d-------- C:\WINDOWS\ServicePackFiles
2008-09-30 02:08 . 2008-09-27 19:27 166,912 --a------ C:\WINDOWS\system32\MSx.cpl
2008-09-30 02:07 . 2008-10-07 17:49 <DIR> d-------- C:\WINDOWS\system32\768890
2008-09-30 02:07 . 2008-09-30 02:07 <DIR> d-------- C:\Program Files\MSX
2008-09-30 02:07 . 2008-10-07 17:55 <DIR> d-------- C:\Program Files\Applications
2008-09-18 22:21 . 2008-09-18 22:21 54,156 --ah----- C:\WINDOWS\QTFont.qfn
2008-09-18 22:21 . 2008-09-18 22:21 1,409 --a------ C:\WINDOWS\QTFont.for
2008-09-13 09:32 . 2008-04-13 20:12 1,737,856 --------- C:\WINDOWS\system32\mtxparhd.dll
2008-09-13 09:31 . 2008-04-13 20:11 397,312 --------- C:\WINDOWS\system32\mmcex.dll
2008-09-13 09:30 . 2004-08-03 22:41 1,041,536 --------- C:\WINDOWS\system32\drivers\hsfdpsp2.sys
2008-09-13 09:29 . 2008-04-13 20:11 870,784 --------- C:\WINDOWS\system32\ati3d1ag.dll

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-10-07 21:57 --------- d-----w C:\Program Files\WildTangent
2008-10-05 03:29 --------- d-----w C:\Program Files\Microsoft Silverlight
2008-10-04 23:42 --------- d-----w C:\Program Files\Common Files\Symantec Shared
2008-10-04 20:38 --------- d-----w C:\Documents and Settings\All Users\Application Data\Viewpoint
2008-10-04 18:41 --------- d-----w C:\Program Files\Dl_cats
2008-09-06 03:30 241,704 ------w C:\WINDOWS\system32\dllcache\wgaLogon.dll
2008-09-06 03:29 917,032 ------w C:\WINDOWS\system32\dllcache\WgaTray.exe
2008-08-25 18:31 524,288 ----a-w C:\WINDOWS\opuc.dll
2008-07-19 02:10 94,920 ----a-w C:\WINDOWS\system32\dllcache\cdm.dll
2008-07-19 02:10 94,920 ----a-w C:\WINDOWS\system32\cdm.dll
2008-07-19 02:10 53,448 ----a-w C:\WINDOWS\system32\wuauclt.exe
2008-07-19 02:10 53,448 ----a-w C:\WINDOWS\system32\dllcache\wuauclt.exe
2008-07-19 02:10 45,768 ----a-w C:\WINDOWS\system32\wups2.dll
2008-07-19 02:10 36,552 ----a-w C:\WINDOWS\system32\wups.dll
2008-07-19 02:10 36,552 ----a-w C:\WINDOWS\system32\dllcache\wups.dll
2008-07-19 02:09 563,912 ----a-w C:\WINDOWS\system32\wuapi.dll
2008-07-19 02:09 563,912 ----a-w C:\WINDOWS\system32\dllcache\wuapi.dll
2008-07-19 02:09 325,832 ----a-w C:\WINDOWS\system32\wucltui.dll
2008-07-19 02:09 325,832 ----a-w C:\WINDOWS\system32\dllcache\wucltui.dll
2008-07-19 02:09 205,000 ----a-w C:\WINDOWS\system32\wuweb.dll
2008-07-19 02:09 205,000 ----a-w C:\WINDOWS\system32\dllcache\wuweb.dll
2008-07-19 02:09 1,811,656 ----a-w C:\WINDOWS\system32\wuaueng.dll
2008-07-19 02:09 1,811,656 ----a-w C:\WINDOWS\system32\dllcache\wuaueng.dll
2008-07-19 02:07 210,976 ----a-w C:\WINDOWS\system32\muweb.dll
2008-07-07 20:26 253,952 ----a-w C:\WINDOWS\system32\es.dll
2008-07-07 20:26 253,952 ------w C:\WINDOWS\system32\dllcache\es.dll
2007-06-17 15:44 180,351,392 ----a-w C:\Program Files\Nero-7.9.6.0_eng_trial.exe
2008-05-31 15:56 88 --sh--r C:\WINDOWS\system32\B72C0D4F2C.sys
2008-05-31 15:56 3,766 --sha-w C:\WINDOWS\system32\KGyGaAvL.sys
.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ModemOnHold"="C:\Program Files\NetWaiting\netWaiting.exe" [2003-09-10 20480]
"OE_OEM"="C:\Program Files\Trend Micro\Internet Security 12\TMAS_OE\TMAS_OEMon.exe" [2006-04-11 176201]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2008-04-13 15360]
"swg"="C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2007-08-13 68856]
"SsAAD.exe"="C:\DOCUME~1\Me\Desktop\COMU~1.SER\SsAAD.exe" [2006-05-08 81920]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe" [2007-05-16 153136]
"MSMSGS"="C:\Program Files\Messenger\msmsgs.exe" [2008-04-13 1695232]
"Veoh"="C:\Program Files\Veoh Networks\Veoh\VeohClient.exe" [2008-05-15 3644464]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IntelZeroConfig"="C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe" [2005-12-28 667718]
"IntelWireless"="C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe" [2005-12-28 602182]
"Dell QuickSet"="C:\Program Files\Dell\QuickSet\quickset.exe" [2006-04-06 1032192]
"SynTPEnh"="C:\Program Files\Synaptics\SynTP\SynTPEnh.exe" [2006-03-08 761947]
"ATICCC"="C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" [2005-08-12 45056]
"PCMService"="C:\Program Files\Dell\Media Experience\PCMService.exe" [2004-04-11 290816]
"DVDLauncher"="C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe" [2005-12-09 49152]
"dla"="C:\WINDOWS\system32\dla\tfswctrl.exe" [2004-12-06 127035]
"ISUSPM Startup"="c:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe" [2005-06-10 249856]
"ISUSScheduler"="C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" [2005-06-10 81920]
"pccguide.exe"="C:\Program Files\Trend Micro\Internet Security 12\pccguide.exe" [2005-08-30 823362]
"dlccmon.exe"="C:\Program Files\Dell Photo AIO Printer 924\dlccmon.exe" [2005-10-20 430080]
"DLCCCATS"="C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\DLCCtime.dll" [2005-09-13 73728]
"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [2006-09-25 229952]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.5.0_08\bin\jusched.exe" [2006-07-26 49263]
"NeroFilterCheck"="C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe" [2007-03-01 153136]
"dscactivate"="C:\Program Files\Dell Support Center\gs_agent\custom\dsca.exe" [2007-11-15 16384]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [2008-02-01 385024]
"ANTIVIRUS"="C:\Program Files\MSX\MSx.exe" [2008-09-27 412160]
"SigmatelSysTrayApp"="stsystra.exe" [2006-03-24 C:\WINDOWS\stsystra.exe]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\Currentversion\policies\explorer\Run]
"smile"="C:\Program Files\Applications\wcs.exe" [2008-09-30 17408]

C:\Documents and Settings\Me\Start Menu\Programs\Startup\
LimeWire On Startup.lnk - C:\Program Files\LimeWire\LimeWire.exe [2006-08-22 159744]

C:\Documents and Settings\All Users\Start Menu\Programs\Startup\
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe [2006-05-24 622653]
Digital Line Detect.lnk - C:\Program Files\Digital Line Detect\DLG.exe [2006-08-08 24576]
Service Manager.lnk - C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe [2005-05-03 81920]

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\TrendAntiVirus]
"DisableMonitoring"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\TrendFirewall]
"DisableMonitoring"=dword:00000001

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"C:\\Program Files\\Common Files\\AOL\\ACS\\AOLacsd.exe"=
"C:\\Program Files\\Common Files\\AOL\\ACS\\AOLDial.exe"=
"C:\\Program Files\\America Online 9.0\\waol.exe"=
"C:\\Program Files\\iTunes\\iTunes.exe"=
"C:\\Program Files\\LimeWire\\LimeWire.exe"=
"C:\\Program Files\\Messenger\\msmsgs.exe"=
"C:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=

R0 pavboot;pavboot;C:\WINDOWS\system32\drivers\pavboot.sys [2008-06-19 28544]
S3 asbp2poa;asbp2poa;C:\DOCUME~1\Me\LOCALS~1\Temp\asbp2poa.sys [ ]
S3 SaiH075C;SaiH075C;C:\WINDOWS\system32\DRIVERS\SaiH075C.sys [2006-07-27 176640]

*Newly Created Service* - PROCEXP90
.
Contents of the 'Scheduled Tasks' folder

2008-05-23 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job
- C:\Program Files\Apple Software Update\SoftwareUpdate.exe [2007-08-29 15:57]

2008-10-07 C:\WINDOWS\Tasks\At1.job
- c:\program files\norton pc checkup\pc_checkup.exe [2008-06-29 17:50]

2008-10-05 C:\WINDOWS\Tasks\At2.job
- c:\program files\norton pc checkup\pc_checkup.exe [2008-06-29 17:50]
.
- - - - ORPHANS REMOVED - - - -

BHO-{446EF370-1987-49DB-AAFF-8EC680903F7A} - C:\WINDOWS\system32\768890\768890.dll


.
------- Supplementary Scan -------
.
FireFox -: Profile - C:\Documents and Settings\Me\Application Data\Mozilla\Firefox\Profiles\7klia2m7.default\
FireFox -: prefs.js - STARTUP.HOMEPAGE - hxxp://www.google.com/
.

**************************************************************************

catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-10-07 18:28:58
Windows 5.1.2600 Service Pack 3 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

HKLM\Software\Microsoft\Windows\CurrentVersion\Run
DLCCCATS = rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\DLCCtime.dll,_RunDLLEntry@16???????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????

scanning hidden files ...

scan completed successfully
hidden files: 0

**************************************************************************
.
Completion time: 2008-10-07 18:31:22
ComboFix-quarantined-files.txt 2008-10-07 22:30:52

Pre-Run: 14,828,720,128 bytes free
Post-Run: 15,792,545,792 bytes free

WindowsXP-KB310994-SP2-Pro-BootDisk-ENU.exe

182 --- E O F --- 2008-10-04 17:59:28


Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 6:35:11 PM, on 10/7/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16705)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Microsoft SQL Server\MSSQL$MICROSOFTSMLBIZ\Binn\sqlservr.exe
C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Applications\wcs.exe
C:\Program Files\Applications\wcm.exe
C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\WINDOWS\stsystra.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Dell\QuickSet\quickset.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\Dell\Media Experience\PCMService.exe
C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\PROGRA~1\Intel\Wireless\Bin\Dot1XCfg.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\Program Files\Dell Photo AIO Printer 924\dlccmon.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Java\jre1.5.0_08\bin\jusched.exe
C:\Program Files\NetWaiting\netWaiting.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Trend Micro\Internet Security 12\TMAS_OE\TMAS_OEMon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\WINDOWS\system32\dlcccoms.exe
C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe
C:\Program Files\LimeWire\LimeWire.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\WINDOWS\system32\notepad.exe
C:\WINDOWS\explorer.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\PcCtlCom.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\Tmntsrv.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\TmPfw.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\tmproxy.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\PccGuide.exe
C:\Documents and Settings\Me\Desktop\HiJackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer,SearchURL = http://windiwsfsearch.com
R1 - HKLM\Software\Microsoft\Internet Explorer,SearchURL = http://windiwsfsearch.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://windiwsfsearch.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.refreshpagez.com/?cm=4137...://google.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://windiwsfsearch.com/ie6.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Page_URL = http://www.google.com/ig/dell?hl=en&...suk&channel=us
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_08\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar4.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.0.1225.9868\swg.dll
O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\BAE\BAE.dll
O3 - Toolbar: Veoh Browser Plug-in - {D0943516-5076-4020-A3B5-AEFAF26AB263} - C:\Program Files\Veoh Networks\Veoh\Plugins\reg\VeohToolbar.dll
O4 - HKLM\..\Run: [IntelZeroConfig] "C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe"
O4 - HKLM\..\Run: [IntelWireless] "C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe" /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [SigmatelSysTrayApp] stsystra.exe
O4 - HKLM\..\Run: [Dell QuickSet] C:\Program Files\Dell\QuickSet\quickset.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\Media Experience\PCMService.exe"
O4 - HKLM\..\Run: [DVDLauncher] "C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe"
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [ISUSPM Startup] "c:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe" -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [pccguide.exe] "C:\Program Files\Trend Micro\Internet Security 12\pccguide.exe"
O4 - HKLM\..\Run: [dlccmon.exe] "C:\Program Files\Dell Photo AIO Printer 924\dlccmon.exe"
O4 - HKLM\..\Run: [DLCCCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\DLCCtime.dll,_RunDLLEntry@16
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_08\bin\jusched.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [dscactivate] "C:\Program Files\Dell Support Center\gs_agent\custom\dsca.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [ANTIVIRUS] C:\Program Files\MSX\MSx.exe
O4 - HKCU\..\Run: [ModemOnHold] C:\Program Files\NetWaiting\netWaiting.exe
O4 - HKCU\..\Run: [OE_OEM] "C:\Program Files\Trend Micro\Internet Security 12\TMAS_OE\TMAS_OEMon.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [SsAAD.exe] C:\DOCUME~1\Me\Desktop\COMU~1.SER\SsAAD.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Veoh] "C:\Program Files\Veoh Networks\Veoh\VeohClient.exe" /VeohHide
O4 - HKLM\..\Policies\Explorer\Run: [smile] C:\Program Files\Applications\wcs.exe
O4 - Startup: LimeWire On Startup.lnk = C:\Program Files\LimeWire\LimeWire.exe
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: Digital Line Detect.lnk = ?
O4 - Global Startup: Service Manager.lnk = C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Send to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_08\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_08\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: MUSICMATCH MX Web Player - {d81ca86b-ef63-42af-bee3-4502d9a03c2d} - http://wwws.musicmatch.com/mmz/openWebRadio.html (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {2D8ED06D-3C30-438B-96AE-4D110FDC1FB8} (ActiveScan 2.0 Installer Class) - http://acs.pandasoftware.com/actives.../as2stubie.cab
O16 - DPF: {5F8469B4-B055-49DD-83F7-62B522420ECC} (Facebook Photo Uploader Control) - http://upload.facebook.com/controls/...toUploader.cab
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - http://download.divx.com/player/DivXBrowserPlugin.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsof...?1223176275015
O16 - DPF: {D4323BF2-006A-4440-A2F5-27E3E7AB25F8} (Virtools WebPlayer Class) - http://a532.g.akamai.net/f/532/6712/.../installer.exe
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: dlcc_device - - C:\WINDOWS\system32\dlcccoms.exe
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: MSCSPTISRV - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NICCONFIGSVC - Dell Inc. - C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: PACSPTISVR - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe
O23 - Service: Trend Micro Central Control Component (PcCtlCom) - Trend Micro Incorporated. - C:\PROGRA~1\TRENDM~1\INTERN~1\PcCtlCom.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Intel(R) PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe
O23 - Service: SonicStage SCSI Service (SSScsiSV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SSScsiSV.exe
O23 - Service: Trend Micro Real-time Service (Tmntsrv) - Trend Micro Incorporated. - C:\PROGRA~1\TRENDM~1\INTERN~1\Tmntsrv.exe
O23 - Service: Trend Micro Personal Firewall (TmPfw) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~1\TmPfw.exe
O23 - Service: Trend Micro Proxy Service (tmproxy) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~1\tmproxy.exe
O23 - Service: Intel(R) PROSet/Wireless SSO Service (WLANKEEPER) - Intel(R) Corporation - C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
O24 - Desktop Component 0: (no name) - file:///C:/DOCUME~1/Me/LOCALS~1/Temp/msohtml1/01/clip_image002.jpg

--
End of file - 12799 bytes
ChenZi is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Old 10-07-2008, 05:16 PM   #9 (permalink)
Moderator, Analyst, Security Team
 
TheBruce1's Avatar
 
Join Date: Oct 2006
Location: Důn Čideann,Scotland.
Posts: 5,093
OS: XP


Re: TROJ_AGENT.APTW and Possible_Zlob-8 and bogus antivirus pop-ups

Hello again

Quote:
OK, so did that, but Recovery Console did not install -- I think I closed the installation window along with the other bogus antivirus install windows I get (sorry). It didn't say that in red, bolded text when I was in the middle of it...
Drag the installation file into Combofix and let it install the recovery console, select No when asked to scan.

=========

Download ATF-Cleaner by Atribune to your desktop. Do not run just yet, we will shortly

=======

P2P

P2P - I see you have P2P software LimeWire 4.12.6 installed on your machine. We are not here to pass judgment on file-sharing as a concept. However, we will warn you that engaging in this activity and having this kind of software installed on your machine will always make you more susceptible to re-infections. It may be contributing to your current situation. This page will give you further information.

Please note: Even if you are using a "safe" P2P program, it is only the program that is safe. You will be sharing files from uncertified sources, and these are often infected. The bad guys use P2P filesharing as a major conduit to spread their wares and their infections.

References for the risk of these programs are Here,
Here and Here.

========

Click > Start > Control Panel > Add / Remove Programs and uninstall the following programs:

LiveUpdate 2.6

=========

Open HijackThis and click on 'Do a System Scan Only'. Check the following entries (If they still exist, make sure you do not miss any)

R1 - HKCU\Software\Microsoft\Internet Explorer,SearchURL = http://windiwsfsearch.com
R1 - HKLM\Software\Microsoft\Internet Explorer,SearchURL = http://windiwsfsearch.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://windiwsfsearch.com

-------

If you know what this entry is you can leave it, otherwise have Hijackthis fix it

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.refreshpagez.com/?cm=4137...://google.com/

--------

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://windiwsfsearch.com/ie6.html
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local

--------

If you do not know what this entry is, have hijackthis fix it

O24 - Desktop Component 0: (no name) - file:///C:/DOCUME~1/Me/LOCALS~1/Temp/msohtml1/01/clip_image002.jpg


Please remember to close all other windows, including browsers then click Fix checked.


=========

Open notepad and copy/paste the text in the quotebox below into it:

Quote:
http://www.techsupportforum.com/security-center/hijackthis-log-help/299054-troj_agent-aptw-possible_zlob-8-bogus-antivirus-pop-ups.html
Collect::
C:\Program Files\MSX\MSx.exe
C:\Program Files\Applications\wcs.exe
C:\Program Files\Applications\wcm.exe
Folder::
C:\WINDOWS\system32\768890
C:\Documents and Settings\All Users\Application Data\Viewpoint
C:\Program Files\MSX
DirLook::
C:\Program Files\Applications
Registry::
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ANTIVIRUS"=-
[HKEY_LOCAL_MACHINE\software\microsoft\windows\Currentversion\policies\explorer\Run]
"smile"=-
Save this as CFscript







Refering to the picture above, drag CFscript into ComboFix.exe

Follow the prompts, and post the resulting log, C:\ComboFix.txt

Note: the above code was created specifically for this user. If you are not this user, do NOT follow these directions as they could damage the workings of your system.


Warning:
Do not mouseclick combofix's window whilst it's running. That may cause it to stall


When CF finishes running, the ComboFix log will open along with a message box--do not be alarmed. With the above script, ComboFix will capture a file to submit for analysis.

Ensure you are connected to the internet and click OK. A browser will open. Simply follow the instructions to copy/paste/send the requested file(s).


=========

JAVA OUTDATED


Your Java is out of date. Older versions have vulnerabilities that malware can use to infect your system. Please follow these steps to remove older version Java components and update.
  • Download the latest version of Java Runtime Environment (JRE) 6 Update 7 and save it to your desktop.
  • Scroll down to where it says "Java Runtime Environment (JRE) 6 Update 7. The Java SE Runtime Environment (JRE) allows end-users to run Java applications."
  • Click the "Download" button to the right.
  • Select the Windows platform from the dropdown menu.
  • Read the License Agreement and then check the box that says: "Accept License Agreement". Click on Continue.The page will refresh.
  • Click on the link to download Windows Offline Installation and save the file to your desktop.
  • Close any programs you may have running - especially your web browser.
  • Go to Start > Settings > Control Panel, double-click on Add/Remove Programs and remove all older versions of Java.
  • Check (highlight) any item with Java Runtime Environment (JRE or J2SE) in the name.
  • Click the Remove or Change/Remove button.
  • Repeat as many times as necessary to remove each Java versions.
  • Reboot your computer once all Java components are removed.
  • Then from your desktop double-click on jre-6u7-windows-i586-p.exe to install the newest version.
  • After the install is complete, go into the Control Panel (using Classic View) and double-click the Java Icon. (looks like a coffee cup)
    • On the General tab, under Temporary Internet Files, click the Settings button.
    • Next, click on the Delete Files button
    • There are two options in the window to clear the cache - Leave BOTH Checked
      • Applications and Applets
        Trace and Log Files
    • Click OK on Delete Temporary Files Window
      Note: This deletes ALL the Downloaded Applications and Applets from the CACHE.
    • Click OK to leave the Temporary Files Window
    • Click OK to leave the Java Control Panel.

=========

Double-click ATF Cleaner.exe to open it

Under Main choose:
Windows Temp
Current User Temp
All Users Temp
Cookies
Temporary Internet Files
Prefetch
Java Cache

*The other boxes are optional*
Then click the Empty Selected button.

If you have Firefox installed:
Click Firefox at the top and choose: Select All
Click the Empty Selected button.
NOTE: If you would like to keep your saved passwords, please click NO at the prompt.

If you have Opera installed:
Click Opera at the top and choose: Select All
Click the Empty Selected button.
NOTE: If you would like to keep your saved passwords, please click NO at the prompt.

Click Exit on the Main menu to close the program.

=========

Establish an internet connection & perform an online scan with Internet Explorer at Kaspersky Online Scanner

Click Accept, when prompted to download and install the program files and database of malware definitions.
  • Click Run at the Security prompt.
  • The program will then begin downloading and installing and will also update the database.
  • Please be patient as this can take several minutes.
  • Once the update is complete, click on My Computer under the green Scan bar to the left to start the scan.
  • Once the scan is complete, it will display if your system has been infected. It does not provide an option to clean/disinfect. We only require a report from it.
  • Do NOT be alarmed by what you see in the report. Many of the finds have likely been quarantined.
  • Click View scan report at the bottom.
  • Click the Save Report As... button.
  • Click the Save as Text button to save the file to your desktop so that you may post it in your next reply.
**Note**

This animation will guide you through the process:




To optimize scanning time and produce a more sensible report for review:
  • Close any open programs.
  • Turn off the real-time scanner of all antivirus or antispyware programs while performing the online scan.
Note for Internet Explorer 7 users: If at any time you have trouble viewing the accept button of the license, click on the Zoom tool located at the bottom right of the IE window and set the zoom to 75%. Once the license is accepted, reset to 100%.

===========

Open HijackThis and click on 'Do a System Scan and save a Logfile'. Save the log file and post it here.

============
Logs Required
C:\Combofix.txt
Kaspersky Scan Report
Hijackthis Log


How is your system running now.
__________________
Member of ASAP since 2007
Member of UNITE since 2008


**Notice to BT customers**
BT to dump Phorm, see Here for more information. No DPI

If we have helped you in anyway, please consider Donating

Last edited by TheBruce1; 10-07-2008 at 05:18 PM.
TheBruce1 is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Old 10-07-2008, 06:01 PM   #10 (permalink)
Registered User
 
Join Date: Oct 2004
Posts: 47
OS: XP


Re: TROJ_AGENT.APTW and Possible_Zlob-8 and bogus antivirus pop-ups

OK, got all the way to completing the submission of my CF file via their browser. I closed the window and my desktop has "Active Desktop Recovery". I hit Restore my Active Desktop and it says "script error line 65 char 1 object doesn't support this action code 0 url file:///C:?Documents%20and %20Settings/Me/Application%20Data/Microsoft/Internet%20Explorer/Desktop.htt."

Do I want to continue running scripts on this page?
ChenZi is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Old 10-07-2008, 06:05 PM   #11 (permalink)
Registered User
 
Join Date: Oct 2004
Posts: 47
OS: XP


Re: TROJ_AGENT.APTW and Possible_Zlob-8 and bogus antivirus pop-ups

nevermind. It was webpage desktop wallpaper. I fixed it. Going back to to do list...
ChenZi is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Old 10-07-2008, 10:09 PM   #12 (permalink)
Registered User
 
Join Date: Oct 2004
Posts: 47
OS: XP


Re: TROJ_AGENT.APTW and Possible_Zlob-8 and bogus antivirus pop-ups

OK, I'm done. Here are the HJT and Combofix logs. It appears that the Kaspersky Scan Report is 1.2 million characters (1.257 KB) and the post limit is 100K. It looks like lines and lines of stuff in TM-PC-cillin quarantine. Ideas?

I saw another dialog box of computers trying to access my computer. My personal firewall is on in PC-cillin. The firewall log lists recent attempts -- all are destination unreachable, except for LimeWire which is listed as security rule matched. BTW that link to P2P programs lists LimeWire as safe (but I think I'll get rid of it or discourage its use anyway).

I've been working in FoxFire all night, due to those redirected IE antivirus problems. I can now change my home page and it stays there.

The last detected virus on the virus log was 4 hours ago. The little alert box that opened every few seconds is gone. It's MAGIC !!

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:28:31 PM, on 10/7/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16705)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Microsoft SQL Server\MSSQL$MICROSOFTSMLBIZ\Binn\sqlservr.exe
C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\PcCtlCom.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\svchost.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\Tmntsrv.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\tmproxy.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\TmPfw.exe
C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\WINDOWS\stsystra.exe
C:\Program Files\Dell\QuickSet\quickset.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\Dell\Media Experience\PCMService.exe
C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\Program Files\Trend Micro\Internet Security 12\pccguide.exe
C:\Program Files\Dell Photo AIO Printer 924\dlccmon.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Java\jre1.5.0_08\bin\jusched.exe
C:\Program Files\NetWaiting\netWaiting.exe
C:\Program Files\Trend Micro\Internet Security 12\TMAS_OE\TMAS_OEMon.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\DOCUME~1\Me\Desktop\COMU~1.SER\SsAAD.exe
C:\WINDOWS\system32\dlcccoms.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Messenger\msmsgs.exe
C:\PROGRA~1\Intel\Wireless\Bin\Dot1XCfg.exe
C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe
C:\Program Files\LimeWire\LimeWire.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Documents and Settings\Me\Desktop\HiJackThis\HijackThis.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Page_URL = http://www.google.com/ig/dell?hl=en&...suk&channel=us
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar4.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.0.1225.9868\swg.dll
O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\BAE\BAE.dll
O3 - Toolbar: Veoh Browser Plug-in - {D0943516-5076-4020-A3B5-AEFAF26AB263} - C:\Program Files\Veoh Networks\Veoh\Plugins\reg\VeohToolbar.dll
O4 - HKLM\..\Run: [IntelZeroConfig] "C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe"
O4 - HKLM\..\Run: [IntelWireless] "C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe" /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [SigmatelSysTrayApp] stsystra.exe
O4 - HKLM\..\Run: [Dell QuickSet] C:\Program Files\Dell\QuickSet\quickset.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\Media Experience\PCMService.exe"
O4 - HKLM\..\Run: [DVDLauncher] "C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe"
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [ISUSPM Startup] "C:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe" -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [pccguide.exe] "C:\Program Files\Trend Micro\Internet Security 12\pccguide.exe"
O4 - HKLM\..\Run: [dlccmon.exe] "C:\Program Files\Dell Photo AIO Printer 924\dlccmon.exe"
O4 - HKLM\..\Run: [DLCCCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\DLCCtime.dll,_RunDLLEntry@16
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [dscactivate] "C:\Program Files\Dell Support Center\gs_agent\custom\dsca.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
O4 - HKCU\..\Run: [ModemOnHold] C:\Program Files\NetWaiting\netWaiting.exe
O4 - HKCU\..\Run: [OE_OEM] "C:\Program Files\Trend Micro\Internet Security 12\TMAS_OE\TMAS_OEMon.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [SsAAD.exe] C:\DOCUME~1\Me\Desktop\COMU~1.SER\SsAAD.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Veoh] "C:\Program Files\Veoh Networks\Veoh\VeohClient.exe" /VeohHide
O4 - Startup: LimeWire On Startup.lnk = C:\Program Files\LimeWire\LimeWire.exe
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: Digital Line Detect.lnk = ?
O4 - Global Startup: Service Manager.lnk = C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Send to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: MUSICMATCH MX Web Player - {d81ca86b-ef63-42af-bee3-4502d9a03c2d} - http://wwws.musicmatch.com/mmz/openWebRadio.html (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {2D8ED06D-3C30-438B-96AE-4D110FDC1FB8} (ActiveScan 2.0 Installer Class) - http://acs.pandasoftware.com/actives.../as2stubie.cab
O16 - DPF: {5F8469B4-B055-49DD-83F7-62B522420ECC} (Facebook Photo Uploader Control) - http://upload.facebook.com/controls/...toUploader.cab
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - http://download.divx.com/player/DivXBrowserPlugin.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsof...?1223176275015
O16 - DPF: {D4323BF2-006A-4440-A2F5-27E3E7AB25F8} (Virtools WebPlayer Class) - http://a532.g.akamai.net/f/532/6712/.../installer.exe
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: dlcc_device - - C:\WINDOWS\system32\dlcccoms.exe
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: MSCSPTISRV - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NICCONFIGSVC - Dell Inc. - C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: PACSPTISVR - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe
O23 - Service: Trend Micro Central Control Component (PcCtlCom) - Trend Micro Incorporated. - C:\PROGRA~1\TRENDM~1\INTERN~1\PcCtlCom.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Intel(R) PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe
O23 - Service: SonicStage SCSI Service (SSScsiSV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SSScsiSV.exe
O23 - Service: Trend Micro Real-time Service (Tmntsrv) - Trend Micro Incorporated. - C:\PROGRA~1\TRENDM~1\INTERN~1\Tmntsrv.exe
O23 - Service: Trend Micro Personal Firewall (TmPfw) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~1\TmPfw.exe
O23 - Service: Trend Micro Proxy Service (tmproxy) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~1\tmproxy.exe
O23 - Service: Intel(R) PROSet/Wireless SSO Service (WLANKEEPER) - Intel(R) Corporation - C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe

--
End of file - 11976 bytes


ComboFix 08-10-07.06 - Me 2008-10-07 23:31:35.3 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.588 [GMT -4:00]
Running from: C:\Documents and Settings\Me\Desktop\ComboFix.exe
.

((((((((((((((((((((((((( Files Created from 2008-09-08 to 2008-10-08 )))))))))))))))))))))))))))))))
.

2008-10-07 20:21 . 2008-06-10 02:32 73,728 --a------ C:\WINDOWS\system32\javacpl.cpl
2008-10-07 20:15 . 2008-10-07 20:19 <DIR> d-------- C:\Documents and Settings\Me\.SunDownloadManager
2008-10-07 16:11 . 2008-10-07 16:11 <DIR> d-------- C:\rsit
2008-10-07 16:06 . 2008-07-18 22:07 270,880 --a------ C:\WINDOWS\system32\mucltui.dll
2008-10-07 16:06 . 2008-07-18 22:07 29,728 --a------ C:\WINDOWS\system32\mucltui.dll.mui
2008-10-05 21:17 . 2008-10-05 21:17 41,472 --ahs---- C:\WINDOWS\Thumbs.db
2008-10-05 21:17 . 2008-10-07 18:03 6,656 --ahs---- C:\WINDOWS\system32\Thumbs.db
2008-10-04 23:26 . 2008-10-04 23:26 <DIR> d-------- C:\WINDOWS\$SQLUninstallSQL2000-KB948110-v8.00.2050-x86-ENU$
2008-10-04 23:24 . 2008-10-04 23:24 <DIR> d-------- C:\Program Files\Microsoft CAPICOM 2.1.0.2
2008-10-04 18:11 . 2008-10-04 18:18 <DIR> d-------- C:\Documents and Settings\Me\Application Data\OfficeUpdate12
2008-10-04 18:10 . 2008-10-04 18:10 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Office Genuine Advantage
2008-10-04 18:02 . 2008-10-04 18:02 <DIR> d-------- C:\Program Files\Norton PC Checkup
2008-10-04 17:45 . 2008-10-04 17:45 <DIR> d-------- C:\ie-spyad_zo
2008-10-04 17:36 . 2008-10-04 17:36 <DIR> d-------- C:\Program Files\SpywareBlaster
2008-10-04 17:36 . 2008-10-04 17:36 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\TEMP
2008-10-04 17:31 . 2008-10-04 17:31 <DIR> d-------- C:\Program Files\Panda Security
2008-10-04 17:31 . 2008-06-19 17:24 28,544 --a------ C:\WINDOWS\system32\drivers\pavboot.sys
2008-10-04 13:46 . 2008-10-04 13:46 <DIR> d-------- C:\WINDOWS\system32\scripting
2008-10-04 13:46 . 2008-10-04 13:46 <DIR> d-------- C:\WINDOWS\system32\en
2008-10-04 13:46 . 2008-10-04 13:46 <DIR> d-------- C:\WINDOWS\system32\bits
2008-10-04 13:46 . 2008-10-04 13:46 <DIR> d-------- C:\WINDOWS\l2schemas
2008-10-04 13:38 . 2008-10-04 13:47 <DIR> d-------- C:\WINDOWS\ServicePackFiles
2008-09-30 02:08 . 2008-09-27 19:27 166,912 --a------ C:\WINDOWS\system32\MSx.cpl
2008-09-30 02:07 . 2008-10-07 19:48 <DIR> d-------- C:\Program Files\Applications
2008-09-18 22:21 . 2008-09-18 22:21 54,156 --ah----- C:\WINDOWS\QTFont.qfn
2008-09-18 22:21 . 2008-09-18 22:21 1,409 --a------ C:\WINDOWS\QTFont.for
2008-09-13 09:32 . 2008-04-13 20:12 1,737,856 --------- C:\WINDOWS\system32\mtxparhd.dll
2008-09-13 09:31 . 2008-04-13 20:11 397,312 --------- C:\WINDOWS\system32\mmcex.dll
2008-09-13 09:30 . 2004-08-03 22:41 1,041,536 --------- C:\WINDOWS\system32\drivers\hsfdpsp2.sys
2008-09-13 09:29 . 2008-04-13 20:11 870,784 --------- C:\WINDOWS\system32\ati3d1ag.dll

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-10-08 00:21 --------- d-----w C:\Program Files\Java
2008-10-07 23:33 --------- d-----w C:\Program Files\Common Files\Symantec Shared
2008-10-07 21:57 --------- d-----w C:\Program Files\WildTangent
2008-10-05 03:29 --------- d-----w C:\Program Files\Microsoft Silverlight
2008-10-04 18:41 --------- d-----w C:\Program Files\Dl_cats
2008-09-06 03:30 241,704 ------w C:\WINDOWS\system32\dllcache\wgaLogon.dll
2008-09-06 03:29 917,032 ------w C:\WINDOWS\system32\dllcache\WgaTray.exe
2008-08-25 18:31 524,288 ----a-w C:\WINDOWS\opuc.dll
2008-07-19 02:10 94,920 ----a-w C:\WINDOWS\system32\dllcache\cdm.dll
2008-07-19 02:10 94,920 ----a-w C:\WINDOWS\system32\cdm.dll
2008-07-19 02:10 53,448 ----a-w C:\WINDOWS\system32\wuauclt.exe
2008-07-19 02:10 53,448 ----a-w C:\WINDOWS\system32\dllcache\wuauclt.exe
2008-07-19 02:10 45,768 ----a-w C:\WINDOWS\system32\wups2.dll
2008-07-19 02:10 36,552 ----a-w C:\WINDOWS\system32\wups.dll
2008-07-19 02:10 36,552 ----a-w C:\WINDOWS\system32\dllcache\wups.dll
2008-07-19 02:09 563,912 ----a-w C:\WINDOWS\system32\wuapi.dll
2008-07-19 02:09 563,912 ----a-w C:\WINDOWS\system32\dllcache\wuapi.dll
2008-07-19 02:09 325,832 ----a-w C:\WINDOWS\system32\wucltui.dll
2008-07-19 02:09 325,832 ----a-w C:\WINDOWS\system32\dllcache\wucltui.dll
2008-07-19 02:09 205,000 ----a-w C:\WINDOWS\system32\wuweb.dll
2008-07-19 02:09 205,000 ----a-w C:\WINDOWS\system32\dllcache\wuweb.dll
2008-07-19 02:09 1,811,656 ----a-w C:\WINDOWS\system32\wuaueng.dll
2008-07-19 02:09 1,811,656 ----a-w C:\WINDOWS\system32\dllcache\wuaueng.dll
2008-07-19 02:07 210,976 ----a-w C:\WINDOWS\system32\muweb.dll
2007-06-17 15:44 180,351,392 ----a-w C:\Program Files\Nero-7.9.6.0_eng_trial.exe
2008-05-31 15:56 88 --sh--r C:\WINDOWS\system32\B72C0D4F2C.sys
2008-05-31 15:56 3,766 --sha-w C:\WINDOWS\system32\KGyGaAvL.sys
.

((((((((((((((((((((((((((((( snapshot@2008-10-07_18.30.38.39 )))))))))))))))))))))))))))))))))))))))))
.
- 2006-07-26 06:25:56 49,248 ----a-w C:\WINDOWS\system32\java.exe
+ 2008-06-10 05:21:01 135,168 ----a-w C:\WINDOWS\system32\java.exe
- 2006-07-26 06:26:06 53,346 ----a-w C:\WINDOWS\system32\javaw.exe
+ 2008-06-10 05:21:04 135,168 ----a-w C:\WINDOWS\system32\javaw.exe
- 2006-07-26 08:03:16 127,078 ----a-w C:\WINDOWS\system32\javaws.exe
+ 2008-06-10 06:32:34 139,264 ----a-w C:\WINDOWS\system32\javaws.exe
+ 2008-10-08 00:11:44 16,384 ----atw C:\WINDOWS\Temp\Perflib_Perfdata_260.dat
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ModemOnHold"="C:\Program Files\NetWaiting\netWaiting.exe" [2003-09-10 20480]
"OE_OEM"="C:\Program Files\Trend Micro\Internet Security 12\TMAS_OE\TMAS_OEMon.exe" [2006-04-11 176201]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2008-04-13 15360]
"swg"="C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2007-08-13 68856]
"SsAAD.exe"="C:\DOCUME~1\Me\Desktop\COMU~1.SER\SsAAD.exe" [2006-05-08 81920]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe" [2007-05-16 153136]
"MSMSGS"="C:\Program Files\Messenger\msmsgs.exe" [2008-04-13 1695232]
"Veoh"="C:\Program Files\Veoh Networks\Veoh\VeohClient.exe" [2008-05-15 3644464]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IntelZeroConfig"="C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe" [2005-12-28 667718]
"IntelWireless"="C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe" [2005-12-28 602182]
"Dell QuickSet"="C:\Program Files\Dell\QuickSet\quickset.exe" [2006-04-06 1032192]
"SynTPEnh"="C:\Program Files\Synaptics\SynTP\SynTPEnh.exe" [2006-03-08 761947]
"ATICCC"="C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" [2005-08-12 45056]
"PCMService"="C:\Program Files\Dell\Media Experience\PCMService.exe" [2004-04-11 290816]
"DVDLauncher"="C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe" [2005-12-09 49152]
"dla"="C:\WINDOWS\system32\dla\tfswctrl.exe" [2004-12-06 127035]
"ISUSPM Startup"="C:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe" [2005-06-10 249856]
"ISUSScheduler"="C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" [2005-06-10 81920]
"pccguide.exe"="C:\Program Files\Trend Micro\Internet Security 12\pccguide.exe" [2005-08-30 823362]
"dlccmon.exe"="C:\Program Files\Dell Photo AIO Printer 924\dlccmon.exe" [2005-10-20 430080]
"DLCCCATS"="C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\DLCCtime.dll" [2005-09-13 73728]
"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [2006-09-25 229952]
"NeroFilterCheck"="C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe" [2007-03-01 153136]
"dscactivate"="C:\Program Files\Dell Support Center\gs_agent\custom\dsca.exe" [2007-11-15 16384]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [2008-02-01 385024]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe" [2008-06-10 144784]
"SigmatelSysTrayApp"="stsystra.exe" [2006-03-24 C:\WINDOWS\stsystra.exe]

C:\Documents and Settings\Me\Start Menu\Programs\Startup\
LimeWire On Startup.lnk - C:\Program Files\LimeWire\LimeWire.exe [2006-08-22 159744]

C:\Documents and Settings\All Users\Start Menu\Programs\Startup\
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe [2006-05-24 622653]
Digital Line Detect.lnk - C:\Program Files\Digital Line Detect\DLG.exe [2006-08-08 24576]
Service Manager.lnk - C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe [2005-05-03 81920]

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\TrendAntiVirus]
"DisableMonitoring"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\TrendFirewall]
"DisableMonitoring"=dword:00000001

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"C:\\Program Files\\Common Files\\AOL\\ACS\\AOLacsd.exe"=
"C:\\Program Files\\Common Files\\AOL\\ACS\\AOLDial.exe"=
"C:\\Program Files\\America Online 9.0\\waol.exe"=
"C:\\Program Files\\iTunes\\iTunes.exe"=
"C:\\Program Files\\LimeWire\\LimeWire.exe"=
"C:\\Program Files\\Messenger\\msmsgs.exe"=
"C:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=

R0 pavboot;pavboot;C:\WINDOWS\system32\drivers\pavboot.sys [2008-06-19 28544]
S3 asbp2poa;asbp2poa;C:\DOCUME~1\Me\LOCALS~1\Temp\asbp2poa.sys [ ]
S3 SaiH075C;SaiH075C;C:\WINDOWS\system32\DRIVERS\SaiH075C.sys [2006-07-27 176640]
.
Contents of the 'Scheduled Tasks' folder

2008-10-08 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job
- C:\Program Files\Apple Software Update\SoftwareUpdate.exe [2007-08-29 15:57]

2008-10-07 C:\WINDOWS\Tasks\At1.job
- c:\program files\norton pc checkup\pc_checkup.exe [2008-06-29 17:50]

2008-10-05 C:\WINDOWS\Tasks\At2.job
- c:\program files\norton pc checkup\pc_checkup.exe [2008-06-29 17:50]
.
.
------- Supplementary Scan -------
.
FireFox -: Profile - C:\Documents and Settings\Me\Application Data\Mozilla\Firefox\Profiles\7klia2m7.default\
FireFox -: prefs.js - STARTUP.HOMEPAGE - hxxp://www.google.com/
.

**************************************************************************

catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-10-07 23:35:12
Windows 5.1.2600 Service Pack 3 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

HKLM\Software\Microsoft\Windows\CurrentVersion\Run
DLCCCATS = rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\DLCCtime.dll,_RunDLLEntry@16???????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????

scanning hidden files ...

scan completed successfully
hidden files: 0

**************************************************************************
.
Completion time: 2008-10-07 23:37:39
ComboFix-quarantined-files.txt 2008-10-08 03:36:52
ComboFix2.txt 2008-10-07 23:52:07
ComboFix3.txt 2008-10-07 22:31:23

Pre-Run: 15,623,487,488 bytes free
Post-Run: 15,653,122,048 bytes free

170 --- E O F --- 2008-10-04 17:59:28
ChenZi is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Old 10-08-2008, 06:36 AM   #13 (permalink)
Moderator, Analyst, Security Team
 
TheBruce1's Avatar
 
Join Date: Oct 2006
Location: Důn Čideann,Scotland.
Posts: 5,093
OS: XP


Re: TROJ_AGENT.APTW and Possible_Zlob-8 and bogus antivirus pop-ups

Quote:
OK, I'm done. Here are the HJT and Combofix logs. It appears that the Kaspersky Scan Report is 1.2 million characters (1.257 KB) and the post limit is 100K. It looks like lines and lines of stuff in TM-PC-cillin quarantine. Ideas?
If need be post the contents of the Kaspersky report into several posts.

Quote:
I saw another dialog box of computers trying to access my computer. My personal firewall is on in PC-cillin.
I`m not familiar with PC-cillin, most likely the firewall is blocking access to your computer and all it is doing is reporting that fact.

Quote:
BTW that link to P2P programs lists LimeWire as safe (but I think I'll get rid of it or discourage its use anyway).
You are downloading from unknown sources and many have been infected by downloading from these unknown sources.


Quote:
The last detected virus on the virus log was 4 hours ago. The little alert box that opened every few seconds is gone. It's MAGIC !!
Glad to hear.
__________________
Member of ASAP since 2007
Member of UNITE since 2008


**Notice to BT customers**
BT to dump Phorm, see Here for more information. No DPI

If we have helped you in anyway, please consider Donating
TheBruce1 is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Old 10-08-2008, 06:51 AM   #14 (permalink)
Registered User
 
Join Date: Oct 2004
Posts: 47
OS: XP


Re: TROJ_AGENT.APTW and Possible_Zlob-8 and bogus antivirus pop-ups

Thanks for the reply. I'll work on the Kaspersky posts. Below is about 1/10th of the file.

--------------------------------------------------------------------------------
KASPERSKY ONLINE SCANNER 7 REPORT
Tuesday, October 7, 2008
Operating System: Microsoft Windows XP Professional Service Pack 3 (build 2600)
Kaspersky Online Scanner 7 version: 7.0.25.0
Program database last update: Wednesday, October 08, 2008 01:19:06
Records in database: 1298610
--------------------------------------------------------------------------------

Scan settings:
Scan using the following database: extended
Scan archives: yes
Scan mail databases: yes

Scan area - My Computer:
C:\
D:\
E:\

Scan statistics:
Files scanned: 114273
Threat name: 12
Infected objects: 11103
Suspicious objects: 0
Duration of the scan: 02:12:26


File name / Threat name / Threats count
C:\Documents and Settings\Me\Shared\Flobots-Happy Together.mp3 Infected: Trojan-Downloader.WMA.Wimad.n 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\100.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1001.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1003.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1005.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1007.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1009.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\100B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\100F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\101.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1011.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1013.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1015.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1017.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1019.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\101B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\101F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\102.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1021.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1023.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1025.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1027.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1029.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\102B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\102F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\103.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1031.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1033.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1035.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1037.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1039.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\103B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\103F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1041.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1043.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1045.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1047.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1049.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\104B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\104F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\105.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1051.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1053.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1055.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1057.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1059.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\105B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\105F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\106.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1061.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1063.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1065.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1067.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1069.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\106B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\106F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\107.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1071.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1073.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1075.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1077.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1079.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\107B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\107F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\108.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1081.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1083.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1085.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1087.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1089.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\108B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\108F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\109.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1091.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1093.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1095.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1097.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1099.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\109B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\109F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\10A.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\10A1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\10A3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\10A5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\10A7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\10A9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\10AB.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\10AF.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\10B1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\10B3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\10B5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\10B7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\10B9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\10BB.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\10BF.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\10C.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\10C1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\10C3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\10C5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\10C7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\10C9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\10CB.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\10CF.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\10D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\10D1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\10D3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\10D5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\10D7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\10D9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\10DB.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\10DF.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\10E.tmp Infected: Exploit.Multi.Qtp.b 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\10E1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\10E3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\10E5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\10E7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\10E9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\10EB.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\10EF.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\10F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\10F1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\10F3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\10F5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\10F7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\10F9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\10FB.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\10FF.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1

C:\Program Files\Trend Micro\Internet Security 12\Quarantine\11.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\110.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1101.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1103.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1105.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1107.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1109.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\110B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\110F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\111.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1111.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1113.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1115.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1117.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1119.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\111B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\111F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\112.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1121.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1123.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1125.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1127.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1129.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\112B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\112F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\113.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1131.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1133.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1135.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1137.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1139.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\113B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\113F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\114.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1141.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1143.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1145.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1147.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1149.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\114B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\114F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\115.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1151.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1153.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1155.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1157.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1159.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\115B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\115F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1161.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1163.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1165.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1167.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1169.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\116B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\116F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\117.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1171.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1173.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1175.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1177.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1179.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\117B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\117F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\118.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1181.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1183.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1185.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1187.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1189.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\118B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\118F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1191.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1193.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1195.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1197.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1199.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\119B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\119F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\11A.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\11A1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\11A3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\11A5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\11A7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\11A9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\11AB.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\11AF.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\11B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\11B1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\11B3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\11B5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\11B7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\11B9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\11BB.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\11BF.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\11C.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\11C1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\11C3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\11C5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\11C7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\11C9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\11CB.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\11CF.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\11D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\11D1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\11D3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\11D5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\11D7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\11D9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\11DB.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\11DF.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\11E.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\11E1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\11E3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\11E5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\11E7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\11E9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\11EB.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\11EF.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\11F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\11F1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\11F3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\11F5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\11F7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\11F9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\11FB.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\11FF.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\120.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1201.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1203.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1205.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1207.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1209.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\120B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\120F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\121.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1211.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1213.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1215.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1217.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1219.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\121B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\121F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\122.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1221.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1223.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1225.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1227.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1229.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\122B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\122F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\123.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1231.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1233.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1235.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1237.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1239.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\123B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\123F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\124.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1241.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1243.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1245.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1247.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1249.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\124B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\124F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\125.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1251.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1253.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1255.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1257.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1259.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\125B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\125F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1261.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1263.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1265.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1267.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1269.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\126B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\126F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1271.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1273.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1275.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1277.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1279.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\127B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\127F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\128.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1281.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1283.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1285.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1287.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1289.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\128B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\128F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\129.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1291.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1293.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1295.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1297.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1299.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\129B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\129F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\12A.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\12A1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\12A3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\12A5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\12A7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\12A9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\12AB.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\12AF.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\12B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\12B1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\12B3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\12B5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\12B7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\12B9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\12BB.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\12BF.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\12C.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\12C1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\12C3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\12C5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\12C7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\12C9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\12CB.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\12CF.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\12D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\12D1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\12D3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\12D5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\12D7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\12D9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\12DB.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\12DF.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\12E.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\12E1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\12E3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\12E5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\12E7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\12E9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\12EB.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\12EF.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\12F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\12F1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\12F3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\12F5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\12F7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\12F9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\12FB.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\12FF.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\130.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1301.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1303.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1305.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1307.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1309.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\130B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\130F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\131.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1311.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1313.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1315.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1317.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1319.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\131B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\131F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1321.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1324.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1326.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1328.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\132A.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\132C.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\133.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1330.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1332.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1334.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1336.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1338.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\133A.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\133C.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\134.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1340.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1342.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1344.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1346.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1348.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\134A.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\134C.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1350.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1352.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1354.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1356.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1358.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\135A.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\135C.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\136.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1360.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1362.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1364.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1366.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1368.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\136A.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\136C.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\137.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1370.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1372.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1374.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1376.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1378.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\137A.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\137C.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1380.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1382.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1384.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1386.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1388.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\138A.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\138C.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\139.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1390.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1392.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1394.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1396.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1398.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\139A.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\139C.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\13A.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\13A0.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\13A2.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\13A4.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\13A6.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\13A8.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\13AA.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\13AC.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\13B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\13B0.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\13B2.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\13B4.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\13B6.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\13B8.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\13BA.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\13BC.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\13C.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\13C0.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\13C2.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\13C4.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\13C6.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\13C8.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\13CA.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\13CC.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\13D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\13D0.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\13D2.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\13D4.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\13D6.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\13D8.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\13DA.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\13DC.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\13E.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\13E0.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\13E2.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\13E4.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\13E6.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\13E8.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\13EA.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\13EC.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\13F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\13F0.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\13F2.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\13F4.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\13F6.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\13F8.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\13FA.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\13FC.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\14.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\140.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1400.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1402.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1404.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1406.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1408.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\140A.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\140C.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\141.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1410.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1412.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1414.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1416.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1418.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\141A.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\141C.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\142.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1420.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1422.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1424.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1426.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1428.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\142A.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\142C.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1430.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1432.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1434.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1436.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1438.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\143A.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\143C.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\144.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1440.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1442.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1444.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1446.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1448.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\144A.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\144C.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\145.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1450.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1452.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1454.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1456.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1458.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\145A.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\145C.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\146.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1460.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1462.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1464.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1466.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1468.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\146A.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\146C.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\147.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1470.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1472.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1474.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1476.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1478.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\147A.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\147C.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\148.tmp Infected: Exploit.Multi.Qtp.b 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1480.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1482.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1484.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1486.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1488.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\148A.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\148C.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\149.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1490.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1492.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1494.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1496.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1498.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\149A.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\149C.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\14A.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\14A0.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\14A2.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\14A4.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\14A6.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\14A8.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\14AA.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\14AC.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\14B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\14B0.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\14B2.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\14B4.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\14B6.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\14B8.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\14BA.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\14BC.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\14C.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\14C0.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\14C2.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\14C4.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\14C6.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\14C8.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\14CA.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\14CC.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\14D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\14D0.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\14D2.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\14D4.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\14D6.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\14D8.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\14DA.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\14DC.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\14E.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\14E1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\14E3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\14E5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\14E7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\14E9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\14EB.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\14ED.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\14F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\14F1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\14F3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\14F5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\14F7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\14F9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\14FB.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\14FD.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\150.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1501.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1503.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1505.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1507.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1509.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\150B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\150D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1511.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1513.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1515.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1517.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1519.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\151B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\151D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\152.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1521.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1523.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1525.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1527.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1529.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\152B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\152D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\153.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1531.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1533.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1535.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1537.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1539.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\153B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\153D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\154.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1541.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1543.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1545.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1547.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1549.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\154B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\154D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\155.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1551.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1553.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1555.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1557.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1559.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\155B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\155D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\156.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1561.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1563.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1565.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1567.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1569.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\156B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\156D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\157.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1571.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1573.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1575.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1577.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1579.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\157B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\157D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1581.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1583.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1585.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1587.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1589.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\158B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\158D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\159.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1591.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1593.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1595.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1597.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1599.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\159B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\159D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\15A.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\15A1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\15A3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\15A5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\15A7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\15A9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\15AB.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\15AD.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\15B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\15B1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\15B3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\15B5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\15B7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\15B9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\15BB.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\15BD.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\15C.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\15C1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\15C3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\15C5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\15C7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\15C9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\15CB.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\15CD.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\15D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\15D1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\15D3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\15D5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\15D7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\15D9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\15DB.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\15DD.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\15E.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\15E1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\15E3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\15E5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\15E7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\15E9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\15EB.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\15ED.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\15F1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\15F3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\15F5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\15F7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\15F9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\15FB.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\15FD.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1

C:\Program Files\Trend Micro\Internet Security 12\Quarantine\16.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\160.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1601.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1603.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1605.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1607.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1609.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\160B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\160D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\161.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1611.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1613.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1615.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1617.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1619.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\161B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\161D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\162.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1621.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1623.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1625.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1627.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1629.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\162B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\162D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\163.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1631.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1633.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1635.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1637.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1639.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\163B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\163D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\164.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1641.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1643.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1645.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1647.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1649.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\164B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\164D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\165.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1651.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1653.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1655.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1657.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1659.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\165B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\165D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\166.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1661.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1663.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1665.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1667.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1669.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\166B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\166D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
ChenZi is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Old 10-08-2008, 07:03 AM   #15 (permalink)
Registered User
 
Join Date: Oct 2004
Posts: 47
OS: XP


Re: TROJ_AGENT.APTW and Possible_Zlob-8 and bogus antivirus pop-ups

#2

C:\Program Files\Trend Micro\Internet Security 12\Quarantine\16E.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\16E1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\16E3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\16E5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\16E7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\16E9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\16EB.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\16ED.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\16F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\16F1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\16F3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\16F5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\16F7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\16F9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\16FB.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\16FD.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\170.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1701.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1703.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1705.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1707.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1709.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\170B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\170D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\171.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1711.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1713.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1715.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1717.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1719.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\171B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\171D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\172.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1721.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1723.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1725.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1727.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1729.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\172B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\172D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\173.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1731.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1733.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1735.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1737.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1739.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\173B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\173D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\174.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1741.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1743.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1745.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1747.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1749.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\174B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\174D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\175.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1751.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1753.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1755.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1757.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1759.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\175B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\175D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\176.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1761.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1763.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1765.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1767.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1769.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\176B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\176D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\177.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1771.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1773.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1775.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1777.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1779.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\177B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\177D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1781.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1783.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1785.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1787.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1789.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\178B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\178D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\179.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1791.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1793.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1795.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1797.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1799.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\179B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\179D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\17A.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\17A1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\17A3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\17A5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\17A7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\17A9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\17AB.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\17AD.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\17B1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\17B3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\17B5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\17B7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\17B9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\17BB.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\17BD.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\17C.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\17C1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\17C3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\17C6.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\17C8.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\17CA.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\17CC.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\17CE.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\17D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\17D2.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\17D4.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\17D6.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\17D8.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\17DA.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\17DC.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\17DE.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\17E.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\17E2.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\17E4.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\17E6.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\17E8.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\17EA.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\17EC.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\17EE.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\17F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\17F2.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\17F4.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\17F6.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\17F8.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\17FA.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\17FC.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\17FE.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\18.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\180.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1802.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1804.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1806.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1808.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\180A.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\180C.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\180E.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\181.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1812.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1814.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1816.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1818.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\181A.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\181C.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\181E.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\182.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1822.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1824.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1826.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1828.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\182A.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\182C.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\182E.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\183.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1832.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1834.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1836.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1838.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\183A.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\183C.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\183E.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\184.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1842.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1844.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1846.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1848.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\184A.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\184C.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\184E.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\185.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1852.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1854.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1856.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1858.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\185A.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\185C.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\185E.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\186.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1862.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1864.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1866.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1868.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\186A.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\186C.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\186E.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\187.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1872.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1874.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1876.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1878.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\187A.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\187C.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\187E.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1882.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1884.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1886.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1888.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\188A.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\188C.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\188E.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1892.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1894.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1896.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1898.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\189A.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\189C.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\189E.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\18A2.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\18A4.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\18A6.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\18A8.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\18AA.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\18AC.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\18AE.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\18B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\18B2.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\18B4.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\18B6.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\18B8.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\18BA.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\18BC.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\18BE.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\18C.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\18C2.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\18C4.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\18C6.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\18C8.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\18CA.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\18CC.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\18CE.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\18D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\18D2.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\18D4.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\18D6.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\18D8.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\18DA.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\18DC.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\18DE.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\18E.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\18E2.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\18E4.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\18E6.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\18E8.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\18EA.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\18EC.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\18EE.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\18F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\18F2.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\18F4.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\18F6.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\18F8.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\18FA.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\18FC.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\18FE.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\190.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1902.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1904.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1906.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1908.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\190A.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\190C.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\190E.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\191.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1912.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1914.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1916.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1918.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\191A.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\191C.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\191E.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\192.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1922.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1924.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1926.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1928.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\192A.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\192C.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\192E.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\193.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1932.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1934.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1936.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1938.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\193A.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\193C.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\193E.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\194.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1942.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1944.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1946.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1948.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\194A.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\194C.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\194E.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\195.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1952.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1954.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1956.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1958.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\195A.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\195C.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\195E.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\196.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1962.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1964.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1966.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1968.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\196A.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\196C.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\196E.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1972.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1974.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1976.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1978.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\197A.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\197C.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\197E.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\198.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1985.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1987.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1989.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\198B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\198D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\198F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\199.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1991.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1996.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1998.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\199A.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\199C.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\199E.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\19A0.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\19A2.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\19A7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\19A9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\19AB.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\19AD.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\19AF.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\19B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\19B1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\19B3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\19B8.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\19BA.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\19BC.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\19BE.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\19C.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\19C0.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\19C2.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\19C4.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\19C9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\19CB.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\19CD.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\19CF.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\19D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\19D1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\19D3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\19D5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\19DA.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\19DC.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\19DE.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\19E.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\19E0.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\19E2.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\19E4.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\19E6.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\19EB.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\19ED.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\19EF.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\19F.tmp Infected: Trojan.Java.ClassLoader.ao 3
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\19F1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\19F3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\19F5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\19F7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\19FC.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\19FE.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A0.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A00.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A02.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A04.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A06.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A08.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A0D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A0F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A11.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A13.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A15.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A17.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A19.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A1D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A1F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A2.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A21.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A23.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A25.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A27.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A29.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A2D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A2F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A31.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A33.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A35.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A37.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A39.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A3D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A3F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A4.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A41.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A43.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A45.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A47.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A49.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A4D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A4F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A51.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A53.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A55.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A57.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A59.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A5D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A5F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A61.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A63.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A65.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A67.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A69.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A6D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A6F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A71.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A73.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A75.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A77.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A79.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A7D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A7F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A8.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A81.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A83.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A85.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A87.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A89.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A8D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A8F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A91.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A93.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A95.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A97.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A99.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A9D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1A9F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1AA.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1AA1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1AA3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1AA5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1AA7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1AA9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1AAD.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1AAF.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1AB1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1AB3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1AB5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1AB7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1AB9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1ABD.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1ABF.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1AC.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1AC1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1AC3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1AC5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1AC7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1AC9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1ACD.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1ACF.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1AD.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1AD1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1AD3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1AD5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1AD7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1AD9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1ADD.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1ADF.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1AE.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1AE1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1AE3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1AE5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1AE7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1AE9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1AED.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1AEF.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1AF.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1AF1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1AF3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1AF5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1AF7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1AF9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1AFD.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1AFF.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B0.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B01.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B03.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B05.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B07.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B09.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B0D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B0F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B11.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B13.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B15.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B17.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B19.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B1D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B1F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B2.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B21.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B23.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B25.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B27.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B29.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B2D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B2F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B31.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B33.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B35.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B37.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B39.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B3D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B3F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B41.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B43.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B45.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B47.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B49.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B4D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B4F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B51.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B53.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B55.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B57.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B59.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B5D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B5F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B6.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B61.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B63.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B65.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B67.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B69.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B6D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B6F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B71.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B73.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B75.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B77.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B79.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B7D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B7F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B8.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B81.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B83.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B85.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B87.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B89.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B8D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B8F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B91.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B93.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B95.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B97.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B99.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B9D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1B9F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1BA.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1BA1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1BA3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1BA5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1BA7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1BA9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1BAD.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1BAF.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1BB1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1BB3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1BB5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1BB7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1BB9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1BBD.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1BBF.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1BC.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1BC1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1BC3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1BC5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1BC7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1BC9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1BCD.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1BCF.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1BD.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1BD1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1BD3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1BD5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1BD7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1BD9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1BDD.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1BDF.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1BE.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1BE1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1BE3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1BE5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1BE7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1BE9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1BED.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1BEF.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1BF.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1BF1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1BF3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1BF5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1BF7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1BF9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1BFD.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1BFF.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
ChenZi is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Old 10-08-2008, 07:11 AM   #16 (permalink)
Registered User
 
Join Date: Oct 2004
Posts: 47
OS: XP


Re: TROJ_AGENT.APTW and Possible_Zlob-8 and bogus antivirus pop-ups

#3

C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C0.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C01.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C03.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C05.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C07.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C09.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C0D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C0F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C11.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C13.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C15.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C17.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C19.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C1D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C1F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C21.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C23.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C25.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C27.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C29.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C2D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C2F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C31.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C33.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C35.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C37.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C39.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C3D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C3F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C4.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C41.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C43.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C45.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C47.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C49.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C4D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C4F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C51.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C53.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C55.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C57.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C59.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C5D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C5F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C6.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C61.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C63.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C65.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C67.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C69.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C6D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C6F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C71.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C73.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C75.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C77.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C79.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C7D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C7F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C8.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C81.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C83.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C85.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C87.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C89.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C8D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C8F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C91.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C93.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C95.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C97.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C99.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C9D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1C9F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1CA.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1CA1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1CA3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1CA5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1CA7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1CA9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1CAD.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1CAF.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1CB1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1CB3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1CB5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1CB7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1CB9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1CBD.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1CBF.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1CC.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1CC1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1CC3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1CC5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1CC7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1CC9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1CCD.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1CCF.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1CD.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1CD1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1CD3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1CD5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1CD7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1CD9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1CDD.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1CDF.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1CE.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1CE1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1CE3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1CE5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1CE7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1CE9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1CED.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1CEF.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1CF.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1CF1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1CF3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1CF5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1CF7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1CF9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1CFD.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1CFF.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D01.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D03.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D05.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D07.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D09.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D0D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D0F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D11.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D13.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D15.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D17.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D19.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D1D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D1F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D2.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D21.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D23.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D25.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D27.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D29.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D2D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D2F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D31.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D33.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D35.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D37.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D39.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D3D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D3F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D4.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D41.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D43.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D45.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D47.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D49.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D4D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D4F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D51.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D53.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D55.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D57.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D59.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D5D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D5F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D6.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D61.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D63.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D65.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D67.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D69.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D6D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D6F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D71.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D73.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D75.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D77.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D79.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D7D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D7F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D8.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D81.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D83.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D85.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D87.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D89.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D8D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D8F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D91.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D93.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D95.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D97.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D99.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D9D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1D9F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1DA.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1DA1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1DA3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1DA5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1DA7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1DA9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1DAD.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1DAF.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1DB1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1DB3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1DB5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1DB7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1DB9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1DBD.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1DBF.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1DC.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1DC1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1DC3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1DC5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1DC7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1DC9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1DCD.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1DCF.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1DD.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1DD1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1DD3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1DD5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1DD7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1DD9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1DDD.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1DDF.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1DE1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1DE3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1DE5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1DE7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1DE9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1DED.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1DEF.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1DF.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1DF1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1DF3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1DF5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1DF7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1DF9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1DFD.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1DFF.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E0.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E01.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E03.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E05.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E07.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E09.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E0D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E0F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E11.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E13.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E15.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E17.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E19.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E1D.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E1F.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E2.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E21.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E23.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E25.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E27.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E2E.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E3.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E30.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E32.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E34.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E36.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E38.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E3A.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E3E.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E4.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E40.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E42.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E44.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E46.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E48.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E4A.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E4E.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E50.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E52.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E54.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E56.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E58.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E5A.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E5E.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E6.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E60.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E64.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E66.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E68.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E6A.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E6C.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E70.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E72.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E74.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E76.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E78.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E7A.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E7C.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E8.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E80.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E82.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E84.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E86.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E88.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E8A.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E8C.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E90.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E92.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E94.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E96.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E98.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E9A.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1E9C.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1EA.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1EA0.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1EA2.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1EA4.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1EA6.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1EA8.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1EAA.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1EAC.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1EB0.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1EB2.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1EB9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1EBB.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1EBD.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1EBF.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1EC1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1EC5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1EC7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1EC9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1ECB.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1ECD.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1ECF.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1ED.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1ED1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1ED5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1ED7.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1ED9.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1EDB.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1EDD.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1EDF.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1EE.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1EE1.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1
C:\Program Files\Trend Micro\Internet Security 12\Quarantine\1EE5.tmp Infected: not-a-virus:AdWare.Win32.E404.ik 1