Go Back   Tech Support Forum > Security Center > Virus/Trojan/Spyware Help

User Tag List

HOTMAIL SENDING OUT SPAM AND COMPUTER SLOW

This is a discussion on HOTMAIL SENDING OUT SPAM AND COMPUTER SLOW within the Virus/Trojan/Spyware Help forums, part of the Tech Support Forum category. . DDS (Ver_2011-08-26.01) - NTFSAMD64 Internet Explorer: 8.0.7600.16385 Run by User at 10:45:07 on 2011-09-19 Microsoft Windows 7 Home Premium


Closed Thread
 
Thread Tools Search this Thread
Old 09-25-2011, 05:51 AM   #1
Registered Member
 
Join Date: Dec 2010
Posts: 8
OS: vista service pack 2



.
DDS (Ver_2011-08-26.01) - NTFSAMD64
Internet Explorer: 8.0.7600.16385
Run by User at 10:45:07 on 2011-09-19
Microsoft Windows 7 Home Premium 6.1.7600.0.1252.65.1033.18.7863.5581 [GMT 8:00]
.
AV: Norton Internet Security *Enabled/Updated* {63DF5164-9100-186D-2187-8DC619EFD8BF}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: Norton Internet Security *Enabled/Updated* {D8BEB080-B73A-17E3-1B37-B6B462689202}
FW: Norton Internet Security *Enabled* {5BE4D041-DB6F-1935-0AD8-24F3E73C9FC4}
.
============== Running Processes ===============
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\atieclxx.exe
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Windows\Explorer.EXE
C:\Program Files (x86)\Bonjour\mDNSResponder.exe
C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
C:\Program Files (x86)\Launch Manager\dsiwmis.exe
C:\Program Files\Acer\Acer PowerSmart Manager\ePowerSvc.exe
C:\Program Files (x86)\Giraffic\GirafficWatchdog.exe
C:\Program Files (x86)\Acer\Registration\GREGsvc.exe
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
C:\Program Files (x86)\Norton Internet Security\Engine\18.6.0.29\ccSvcHst.exe
C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
C:\Program Files\Acer\Optical Drive Power Management\ODDPWRSvc.exe
C:\Program Files (x86)\Cyberlink\Shared files\RichVideo.exe
C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
C:\Program Files\Acer\Acer Updater\UpdaterService.exe
C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe
C:\Program Files\Acer\Optical Drive Power Management\ODDPWR.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files (x86)\Norton Internet Security\Engine\18.6.0.29\ccSvcHst.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Windows\PLFSetI.exe
C:\Program Files\PeerBlock\peerblock.exe
C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\Rainmeter\Rainmeter.exe
C:\Users\User\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Program Files (x86)\Launch Manager\LManager.exe
C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\system32\SearchIndexer.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\wbem\wmiprvse.exe
C:\Program Files (x86)\Launch Manager\LMworker.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files\Acer\Acer PowerSmart Manager\ePowerTray.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files (x86)\Razer\DeathAdder\razerhid.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Program Files (x86)\Razer\DeathAdder\razerofa.exe
C:\Program Files\Acer\Acer PowerSmart Manager\ePowerEvent.exe
C:\Program Files (x86)\Yuna Software\Messenger Plus!\PlusService.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Program Files (x86)\Razer\DeathAdder\vdDaemon.exe
C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Windows\SysWOW64\RunDll32.exe
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\system32\DllHost.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
C:\Program Files (x86)\iTunes\iTunes.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BtITunesPlugIn.exe
C:\Windows\system32\conhost.exe
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceHelper.exe
C:\Windows\system32\conhost.exe
C:\Program Files (x86)\Common Files\Apple\Apple Application Support\distnoted.exe
C:\Windows\system32\conhost.exe
C:\Program Files (x86)\Giraffic\Giraffic.exe
C:\Windows\system32\taskeng.exe
C:\Windows\servicing\TrustedInstaller.exe
C:\Windows\system32\rundll32.exe
C:\Windows\SysWOW64\cmd.exe
C:\Windows\system32\conhost.exe
C:\Windows\SysWOW64\cscript.exe
C:\Windows\system32\wbem\wmiprvse.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = https://tr-crewnet.navitaire.com/
uDefault_Page_URL = hxxp://homepage.acer.com/rdr.aspx?b=ACAW&l=4809&m=aspire_4820tg&r=27360711k406l04e3z195t5551j24p
mDefault_Page_URL = hxxp://homepage.acer.com/rdr.aspx?b=ACAW&l=4809&m=aspire_4820tg&r=27360711k406l04e3z195t5551j24p
mStart Page = hxxp://homepage.acer.com/rdr.aspx?b=ACAW&l=4809&m=aspire_4820tg&r=27360711k406l04e3z195t5551j24p
uInternet Settings,ProxyOverride = *.local
mWinlogon: Userinit=userinit.exe
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO: Symantec NCO BHO: {602adb0e-4aff-4217-8aa1-95dac4dfa408} - C:\Program Files (x86)\Norton Internet Security\Engine\18.6.0.29\coIEPlg.dll
BHO: Symantec Intrusion Prevention: {6d53ec84-6aae-4787-aeee-f4628f01010c} - C:\Program Files (x86)\Norton Internet Security\Engine\18.6.0.29\IPS\IPSBHO.DLL
BHO: Groove GFS Browser Helper: {72853161-30c5-4d22-b7f9-0bbc1d38a37e} - C:\PROGRA~2\MICROS~2\Office14\GROOVEEX.DLL
BHO: Windows Live ID Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO: Windows Live Messenger Companion Helper: {9fdde16b-836f-4806-ab1f-1455cbeff289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
BHO: Google Toolbar Helper: {aa58ed58-01dd-4d91-8333-cf10577473f7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
BHO: Skype Browser Helper: {ae805869-2e5c-4ed4-8f7b-f1f7851a4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
BHO: Google Toolbar Notifier BHO: {af69de43-7d58-4638-b6fa-ce66b5ad205d} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.7.6406.1642\swg.dll
BHO: Office Document Cache Handler: {b4f3a835-0e21-4959-ba22-42b3008e02ff} - C:\PROGRA~2\MICROS~2\Office14\URLREDIR.DLL
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
TB: Norton Toolbar: {7febefe3-6b19-4349-98d2-ffb09d4b49ca} - C:\Program Files (x86)\Norton Internet Security\Engine\18.6.0.29\coIEPlg.dll
TB: Google Toolbar: {2318c2b1-4965-11d4-9b18-009027a5cd4f} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
uRun: [PeerBlock] C:\Program Files\PeerBlock\peerblock.exe
uRun: [msnmsgr] "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background
uRun: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
uRun: [Google Update] "C:\Users\User\AppData\Local\Google\Update\GoogleUpdate.exe" /c
mRun: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe
mRun: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
mRun: [MDS_Menu] "C:\Program Files (x86)\Acer Arcade Deluxe\MediaShow Espresso\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Acer Arcade Deluxe\MediaShow Espresso" UpdateWithCreateOnce "Software\CyberLink\MediaShow Espresso\5.6"
mRun: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
mRun: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
mRun: [DeathAdder] C:\Program Files (x86)\Razer\DeathAdder\razerhid.exe
mRun: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
mRun: [PlusService] C:\Program Files (x86)\Yuna Software\Messenger Plus!\PlusService.exe
mRun: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
StartupFolder: C:\Users\User\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\Dropbox.lnk - C:\Users\User\AppData\Roaming\Dropbox\bin\Dropbox.exe
StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\BLUETO~1.LNK - C:\Program Files (x86)\WIDCOMM\Bluetooth Software\BTTray.exe
StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\RAINME~1.LNK - C:\Program Files\Rainmeter\Rainmeter.exe
mPolicies-explorer: NoActiveDesktop = 1 (0x1)
mPolicies-explorer: NoActiveDesktopChanges = 1 (0x1)
mPolicies-system: ConsentPromptBehaviorAdmin = 0 (0x0)
mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
mPolicies-system: EnableLUA = 0 (0x0)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
mPolicies-system: PromptOnSecureDesktop = 0 (0x0)
mPolicies-system: SoftwareSASGeneration = 1 (0x1)
IE: E&xport to Microsoft Excel - C:\PROGRA~2\MICROS~2\Office14\EXCEL.EXE/3000
IE: Google Sidewiki... - C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_7461B1589E8B4FB7.dll/cmsidewiki.html
IE: Se&nd to OneNote - C:\PROGRA~2\MICROS~2\Office14\ONBttnIE.dll/105
IE: Send image to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
IE: Send page to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
IE: {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
IE: {0000036B-C524-4050-81A0-243669A86B9F} - {B63DBA5F-523F-4B9C-A43D-65DF1977EAD3} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab
TCP: Interfaces\{1B38696B-DD53-4943-BC14-176E6D6E171B} : NameServer = 192.168.0.1
TCP: Interfaces\{1B38696B-DD53-4943-BC14-176E6D6E171B}\24541434F4E423 : DhcpNameServer = 10.223.8.20 10.223.7.21 10.223.7.24
TCP: Interfaces\{378F92C7-93EA-468C-91E4-9194F9251A4B} : DhcpNameServer = 203.116.1.94 203.116.254.150
TCP: Interfaces\{5C3B29F2-0460-411A-9232-E2457CE1D5BA} : DhcpNameServer = 202.96.209.5 202.96.209.133
Filter: application/x-ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
Filter: application/x-ica; charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
Filter: application/x-ica; charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
Filter: application/x-ica; charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
Filter: application/x-ica; charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
Filter: application/x-ica; charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
Filter: application/x-ica; charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
Filter: application/x-ica; charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
Filter: application/x-ica;charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
Filter: application/x-ica;charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
Filter: application/x-ica;charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
Filter: application/x-ica;charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
Filter: application/x-ica;charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
Filter: application/x-ica;charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
Filter: application/x-ica;charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
Filter: ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Acer\Acer VCM\Skype4COM.dll
Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
SEH: Groove GFS Stub Execution Hook: {b5a7f190-dda6-4420-b3ba-52453494e6cd} - C:\PROGRA~2\MICROS~2\Office14\GROOVEEX.DLL
BHO-X64: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO-X64: AcroIEHelperStub - No File
BHO-X64: Symantec NCO BHO: {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine\18.6.0.29\coIEPlg.dll
BHO-X64: Symantec NCO BHO - No File
BHO-X64: Symantec Intrusion Prevention: {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Engine\18.6.0.29\IPS\IPSBHO.DLL
BHO-X64: Symantec Intrusion Prevention - No File
BHO-X64: Groove GFS Browser Helper: {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~2\Office14\GROOVEEX.DLL
BHO-X64: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO-X64: Windows Live Messenger Companion Helper: {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
BHO-X64: Google Toolbar Helper: {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
BHO-X64: Skype Browser Helper: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
BHO-X64: SkypeIEPluginBHO - No File
BHO-X64: Google Toolbar Notifier BHO: {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.7.6406.1642\swg.dll
BHO-X64: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~2\Office14\URLREDIR.DLL
BHO-X64: URLRedirectionBHO - No File
BHO-X64: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
TB-X64: Norton Toolbar: {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\18.6.0.29\coIEPlg.dll
TB-X64: Google Toolbar: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
mRun-x64: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe
mRun-x64: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
mRun-x64: [MDS_Menu] "C:\Program Files (x86)\Acer Arcade Deluxe\MediaShow Espresso\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Acer Arcade Deluxe\MediaShow Espresso" UpdateWithCreateOnce "Software\CyberLink\MediaShow Espresso\5.6"
mRun-x64: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
mRun-x64: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
mRun-x64: [DeathAdder] C:\Program Files (x86)\Razer\DeathAdder\razerhid.exe
mRun-x64: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
mRun-x64: [PlusService] C:\Program Files (x86)\Yuna Software\Messenger Plus!\PlusService.exe
mRun-x64: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
mRun-x64: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
IE-X64: {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
SEH-X64: Groove GFS Stub Execution Hook: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\PROGRA~2\MICROS~2\Office14\GROOVEEX.DLL
.
================= FIREFOX ===================
.
FF - ProfilePath - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\am1vzyn7.default\
FF - plugin: C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL
FF - plugin: C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL
FF - plugin: C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll
FF - plugin: C:\Program Files (x86)\Common Files\Research In Motion\BBWebSLLauncher\NPWebSLLauncher.dll
FF - plugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll
FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.65\npGoogleUpdate3.dll
FF - plugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll
FF - plugin: C:\Program Files (x86)\Microsoft Silverlight\4.0.60531.0\npctrlui.dll
FF - plugin: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
FF - plugin: C:\Users\User\AppData\Local\Google\Update\1.3.21.57\npGoogleUpdate3.dll
.
============= SERVICES / DRIVERS ===============
.
R0 SymDS;Symantec Data Store;C:\Windows\system32\drivers\NISx64\1206000.01D\SYMDS64.SYS --> C:\Windows\system32\drivers\NISx64\1206000.01D\SYMDS64.SYS [?]
R0 SymEFA;Symantec Extended File Attributes;C:\Windows\system32\drivers\NISx64\1206000.01D\SYMEFA64.SYS --> C:\Windows\system32\drivers\NISx64\1206000.01D\SYMEFA64.SYS [?]
R1 BHDrvx64;BHDrvx64;C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.1.0.37\Definitions\BASHDefs\20110909.001\BHDrvx64.sys [2011-9-10 1152632]
R1 ctxusbm;Citrix USB Monitor Driver;C:\Windows\system32\DRIVERS\ctxusbm.sys --> C:\Windows\system32\DRIVERS\ctxusbm.sys [?]
R1 IDSVia64;IDSVia64;C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.1.0.37\Definitions\IPSDefs\20110917.031\IDSviA64.sys [2011-9-18 488568]
R1 SymIRON;Symantec Iron Driver;C:\Windows\system32\drivers\NISx64\1206000.01D\Ironx64.SYS --> C:\Windows\system32\drivers\NISx64\1206000.01D\Ironx64.SYS [?]
R1 SymNetS;Symantec Network Security WFP Driver;C:\Windows\system32\Drivers\NISx64\1206000.01D\SYMNETS.SYS --> C:\Windows\system32\Drivers\NISx64\1206000.01D\SYMNETS.SYS [?]
R1 vwififlt;Virtual WiFi Filter Driver;C:\Windows\system32\DRIVERS\vwififlt.sys --> C:\Windows\system32\DRIVERS\vwififlt.sys [?]
R2 AdobeARMservice;Adobe Acrobat Update Service;C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2011-6-6 64952]
R2 AMD External Events Utility;AMD External Events Utility;C:\Windows\system32\atiesrxx.exe --> C:\Windows\system32\atiesrxx.exe [?]
R2 DsiWMIService;Dritek WMI Service;C:\Program Files (x86)\Launch Manager\dsiwmis.exe [2010-8-14 325200]
R2 ePowerSvc;Acer ePower Service;C:\Program Files\Acer\Acer PowerSmart Manager\ePowerSvc.exe [2011-7-5 821792]
R3 amdkmdag;amdkmdag;C:\Windows\system32\DRIVERS\atipmdag.sys --> C:\Windows\system32\DRIVERS\atipmdag.sys [?]
R3 amdkmdap;amdkmdap;C:\Windows\system32\DRIVERS\atikmpag.sys --> C:\Windows\system32\DRIVERS\atikmpag.sys [?]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv;C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2011-7-28 136824]
R3 HECIx64;Intel(R) Management Engine Interface;C:\Windows\system32\DRIVERS\HECIx64.sys --> C:\Windows\system32\DRIVERS\HECIx64.sys [?]
R3 Impcd;Impcd;C:\Windows\system32\DRIVERS\Impcd.sys --> C:\Windows\system32\DRIVERS\Impcd.sys [?]
R3 intelkmd;intelkmd;C:\Windows\system32\DRIVERS\igdpmd64.sys --> C:\Windows\system32\DRIVERS\igdpmd64.sys [?]
R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;C:\Windows\system32\DRIVERS\L1C62x64.sys --> C:\Windows\system32\DRIVERS\L1C62x64.sys [?]
R3 pbfilter;pbfilter;C:\Program Files\PeerBlock\pbfilter.sys [2011-7-7 24176]
R3 VKbms;Virtual HID Minidriver;C:\Windows\system32\DRIVERS\VKbms.sys --> C:\Windows\system32\DRIVERS\VKbms.sys [?]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
S3 AmUStor;AM USB Stroage Driver;C:\Windows\system32\drivers\AmUStor.SYS --> C:\Windows\system32\drivers\AmUStor.SYS [?]
S3 btwampfl;Bluetooth AMP USB Filter;C:\Windows\system32\drivers\btwampfl.sys --> C:\Windows\system32\drivers\btwampfl.sys [?]
S3 btwl2cap;Bluetooth L2CAP Service;C:\Windows\system32\DRIVERS\btwl2cap.sys --> C:\Windows\system32\DRIVERS\btwl2cap.sys [?]
S3 danewFltr;NewDeathAdder Mouse;C:\Windows\system32\drivers\danew.sys --> C:\Windows\system32\drivers\danew.sys [?]
S3 Netaapl;Apple Mobile Device Ethernet Service;C:\Windows\system32\DRIVERS\netaapl64.sys --> C:\Windows\system32\DRIVERS\netaapl64.sys [?]
S3 pwdrvio;pwdrvio;\??\C:\Windows\system32\pwdrvio.sys --> C:\Windows\system32\pwdrvio.sys [?]
S3 pwdspio;pwdspio;\??\C:\Windows\system32\pwdspio.sys --> C:\Windows\system32\pwdspio.sys [?]
S3 USBAAPL64;Apple Mobile USB Driver;C:\Windows\system32\Drivers\usbaapl64.sys --> C:\Windows\system32\Drivers\usbaapl64.sys [?]
.
=============== Created Last 30 ================
.
2011-09-19 02:31:22 -------- d-----w- C:\Users\User\AppData\Local\{E0106630-1AA7-4722-BB78-89BAB5AAA655}
2011-09-19 02:31:10 -------- d-----w- C:\Users\User\AppData\Local\{2DC770DF-96BC-4A8D-AA9E-4F00F0796900}
2011-09-18 12:27:12 -------- d-----w- C:\Program Files (x86)\Veetle
2011-09-18 06:19:26 -------- d-----w- C:\Users\User\AppData\Local\{656D61B7-8B74-4F2E-997E-68C1E58C36C7}
2011-09-18 06:19:13 -------- d-----w- C:\Users\User\AppData\Local\{D092142B-E483-4F10-BD26-A2DB670A21E4}
2011-09-17 18:18:46 -------- d-----w- C:\Users\User\AppData\Local\{8F9A2D44-4BAC-4170-A41C-B41717C39AB1}
2011-09-17 18:18:34 -------- d-----w- C:\Users\User\AppData\Local\{DFB3367E-ACBE-44CA-A958-E8BC2F691860}
2011-09-17 06:17:31 -------- d-----w- C:\Users\User\AppData\Local\{01AC48CB-D479-45EE-A03E-212F2165096E}
2011-09-17 06:17:05 -------- d-----w- C:\Users\User\AppData\Local\{FBA59CAA-BAB0-4605-8456-690600A9FFB4}
2011-09-16 15:52:51 -------- d-----w- C:\Users\User\AppData\Local\{6128FA2C-B49E-45F5-828E-EF08E38D8B8A}
2011-09-16 02:35:14 -------- d-----w- C:\Users\User\AppData\Local\{D9BE9A6D-0D77-4649-8FC3-E6F693F7EDB8}
2011-09-15 05:29:16 -------- d-----w- C:\Users\User\AppData\Local\{36588D0B-F956-4D8F-9F68-6ADED0FAA6DC}
2011-09-15 05:29:01 -------- d-----w- C:\Users\User\AppData\Local\{22CAD442-A670-4068-92E3-1AE75D6A5BBC}
2011-09-14 06:40:31 -------- d-----w- C:\Users\User\AppData\Local\{649DE12F-2776-4D9F-BA02-056BC8002E48}
2011-09-14 06:40:12 -------- d-----w- C:\Users\User\AppData\Local\{1E6F2FDB-8867-445E-9FE3-95D7BE891AB4}
2011-09-13 09:07:39 -------- d-----w- C:\Users\User\AppData\Local\{06EC2826-0D84-4279-B7C0-DFC9713D38FB}
2011-09-13 09:07:23 -------- d-----w- C:\Users\User\AppData\Local\{3DBE9889-3E70-4966-91F0-AE427824BF5C}
2011-09-12 07:37:18 -------- d-----w- C:\Users\User\AppData\Local\{2A78CCF7-7E20-4D89-BC7A-BB84FA582556}
2011-09-12 07:37:02 -------- d-----w- C:\Users\User\AppData\Local\{A01FABEE-CE70-426A-9362-567793D8BBC4}
2011-09-11 05:28:11 -------- d-----w- C:\Users\User\AppData\Local\{BA782161-989C-433E-BA9B-6DB521751665}
2011-09-11 05:27:10 -------- d-----w- C:\Users\User\AppData\Local\{187BAA76-E538-44DF-BC90-C8E18C402C0E}
2011-09-10 15:56:48 -------- d-----w- C:\Users\User\AppData\Local\{B851CAFF-FEA0-4502-A943-79B5C73C19DD}
2011-09-10 15:56:23 -------- d-----w- C:\Users\User\AppData\Local\{5E6ED45F-DB98-4EDB-8473-2FBC2517E1C9}
2011-09-09 15:27:27 -------- d-----w- C:\Users\User\AppData\Local\{43312AE8-1329-4DF9-BDF5-FF471878EEA9}
2011-09-09 15:27:15 -------- d-----w- C:\Users\User\AppData\Local\{DE0FBF14-102C-4D66-B97D-145498215AE9}
2011-09-09 14:38:00 -------- d-----w- C:\ProgramData\Giraffic
2011-09-09 14:37:59 -------- d-----w- C:\Program Files (x86)\Giraffic
2011-09-09 14:37:50 -------- d-----w- C:\Program Files (x86)\Veoh Networks
2011-09-09 03:25:30 -------- d-----w- C:\Users\User\AppData\Local\{97CF791F-88D6-4117-84D8-E2EBFEA7F4E1}
2011-09-09 03:24:24 -------- d-----w- C:\Users\User\AppData\Local\{A1CC5DAC-B613-400E-B8A3-8B19A07DC374}
2011-09-08 13:51:13 -------- d-----w- C:\Users\User\AppData\Local\dxhr
2011-09-08 13:50:14 -------- d-----w- C:\Users\User\AppData\Local\28050
2011-09-08 13:28:17 -------- d-----w- C:\Program Files (x86)\Dead Island
2011-09-08 12:46:19 -------- d-----w- C:\Program Files (x86)\Square Enix
2011-09-08 04:10:59 -------- d-----w- C:\Program Files (x86)\TightVNC
2011-09-08 04:10:25 -------- d-----w- C:\Users\User\AppData\Roaming\Phase Five Systems
2011-09-08 04:09:35 -------- d-----w- C:\Program Files (x86)\Jump Desktop
2011-09-08 02:50:02 -------- d-----w- C:\Users\User\AppData\Local\{295A8153-5DC6-4283-8816-4E69627E8A87}
2011-09-08 02:49:23 -------- d-----w- C:\Users\User\AppData\Local\{EB837A99-208D-45D0-B840-D4FE7CAAEED6}
2011-09-08 02:48:26 -------- d-----w- C:\Users\User\AppData\Local\{E5425AAF-4432-49C1-9409-D9BBB3664EDD}
2011-09-07 06:23:07 -------- d-----w- C:\Users\User\AppData\Local\{C3C694D6-5C40-4AED-9D5D-D75F07C2060C}
2011-09-07 06:19:55 -------- d-----w- C:\Users\User\AppData\Local\{FE239DF7-E8ED-4678-88A4-B46B1989DBA1}
2011-09-06 15:14:56 -------- d-----w- C:\Users\User\AppData\Local\{76B75C14-7FB1-4F15-8711-5435D9B3B136}
2011-09-06 15:14:44 -------- d-----w- C:\Users\User\AppData\Local\{348FDC83-80A5-432F-8088-01FD89CB29E2}
2011-09-06 03:13:05 -------- d-----w- C:\Users\User\AppData\Local\{E65ED2C5-D321-446C-98A6-9B99B5E77748}
2011-09-06 03:12:41 -------- d-----w- C:\Users\User\AppData\Local\{7121862B-5E7A-4EF5-8333-03D0C08412C1}
2011-09-05 14:47:11 -------- d-----w- C:\Users\User\AppData\Local\{78B31829-E876-423C-8CA1-AC9C02E09957}
2011-09-05 14:47:00 -------- d-----w- C:\Users\User\AppData\Local\{9D27F667-51F1-4BEC-84EC-635EF17A44C5}
2011-09-05 14:46:49 -------- d-----w- C:\Users\User\AppData\Local\{18F616F2-842E-40F3-A334-3799E8801815}
2011-09-05 14:46:37 -------- d-----w- C:\Users\User\AppData\Local\{8C6E5F69-D950-4FAF-BF62-6C77C820410A}
2011-09-05 04:52:24 -------- d-----w- C:\Users\User\AppData\Roaming\Wi-Fi Sync
2011-09-05 03:04:06 -------- d-----w- C:\Users\User\AppData\Local\Cranium
2011-09-05 02:59:48 -------- d-----w- C:\Users\User\AppData\Local\Cranium_Consulting_and_Cu
2011-09-05 02:59:00 -------- d-----w- C:\Program Files (x86)\iPhoneBrowser
2011-09-05 02:45:58 -------- d-----w- C:\Users\User\AppData\Local\{14DDEA34-8691-46CE-A1DF-B58452EFFBF8}
2011-09-05 02:45:24 -------- d-----w- C:\Users\User\AppData\Local\{9FD5543F-8254-4047-AC3D-5763BD639D3F}
2011-09-04 05:21:12 -------- d-----w- C:\Users\User\AppData\Local\{28503E35-8E62-4CA9-914B-A5DB189E2E6A}
2011-09-04 05:21:00 -------- d-----w- C:\Users\User\AppData\Local\{4E7A2DE6-6951-4DF8-8626-F4C18C0CD7B1}
2011-09-04 05:20:49 -------- d-----w- C:\Users\User\AppData\Local\{1F514BDA-FCF7-4719-8CA7-BDA42A88433D}
2011-09-04 05:20:38 -------- d-----w- C:\Users\User\AppData\Local\{C2D251BC-D1D7-48C3-8974-4075158FD76D}
2011-09-03 17:20:09 -------- d-----w- C:\Users\User\AppData\Local\{B4FA8E91-9123-44B3-B9B7-028A0498A0EB}
2011-09-03 17:19:45 -------- d-----w- C:\Users\User\AppData\Local\{C28C8DE5-CE29-4C1C-AE7B-D27843E4E8D4}
2011-09-03 17:19:01 -------- d-----w- C:\Users\User\AppData\Local\{7E8D702C-F58B-4420-83C5-6312F06E0134}
2011-09-03 00:49:47 -------- d-----w- C:\Users\User\AppData\Local\{BE244DEF-D2E7-4765-A3DB-76F23F816A0D}
2011-09-03 00:49:31 -------- d-----w- C:\Users\User\AppData\Local\{28A507DB-F42D-404E-A611-3331ABF00861}
2011-09-03 00:49:08 -------- d-----w- C:\Users\User\AppData\Local\{973072F2-8D48-4360-BCA9-C5FFD04448CD}
2011-09-02 06:27:59 -------- d-----w- C:\Users\User\AppData\Local\{699324F0-A052-42B9-8379-A2955314BA41}
2011-09-02 06:27:46 -------- d-----w- C:\Users\User\AppData\Local\{41818B68-175A-406D-AA75-2B12AD0AE74A}
2011-09-02 06:27:32 -------- d-----w- C:\Users\User\AppData\Local\{4669E8F6-6DE5-4246-B999-0D3CBB406499}
2011-09-01 14:39:23 -------- d-----w- C:\Users\User\AppData\Local\{3078D2CE-840F-4D19-B6EB-FEDA605FCFEB}
2011-09-01 14:39:10 -------- d-----w- C:\Users\User\AppData\Local\{6D93AD64-C8D4-4CF2-B28B-D2B644DDFEB5}
2011-09-01 10:23:50 -------- d-----w- C:\Users\User\AppData\Local\{56AEF3D4-40EA-4851-88A7-225C57227A3D}
2011-09-01 10:23:23 -------- d-----w- C:\Users\User\AppData\Local\{B7004620-DC75-4984-A3B6-B59E994CBF0D}
2011-09-01 09:45:04 15712 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\d30d591f1cc688b01\MeshBetaRemover.exe
2011-09-01 08:59:13 -------- d-----w- C:\Users\User\AppData\Local\{7C712C9E-5D76-4B97-8678-DFB11256635C}
2011-08-31 14:22:10 -------- d-----w- C:\Users\User\AppData\Local\{A989F1E2-3C38-4F8E-A5F7-D0D458B1E951}
2011-08-31 14:21:57 -------- d-----w- C:\Users\User\AppData\Local\{A6203057-7FE3-43FD-BB34-08612D1BDF6B}
2011-08-31 01:56:27 -------- d-----w- C:\Users\User\AppData\Local\{7A6E7CE4-0C4D-4D68-9714-A87B7E525619}
2011-08-31 01:55:18 -------- d-----w- C:\Users\User\AppData\Local\{F9912885-D3BE-442C-9427-1EE1D281860D}
2011-08-30 08:16:58 -------- d-----w- C:\Users\User\AppData\Local\{EEE621AC-371F-4AF4-BC89-A2462EC4A0B3}
2011-08-30 08:15:41 -------- d-----w- C:\Users\User\AppData\Local\{26D0256B-B41A-4F12-AB6A-287E99BAA9D2}
2011-08-29 09:20:43 -------- d-----w- C:\Users\User\AppData\Local\{4FC85597-4502-48F5-BCB3-A54301EFF782}
2011-08-29 09:20:26 -------- d-----w- C:\Users\User\AppData\Local\{69EED39C-3229-46C4-B9AA-444E347F37C4}
2011-08-28 06:43:32 -------- d-----w- C:\Users\User\AppData\Local\{1DDD10F4-6BFC-4B4F-B6F0-328D7280B0AB}
2011-08-28 06:43:14 -------- d-----w- C:\Users\User\AppData\Local\{2B8B3EDF-A462-41B5-B80C-1CAF7B0173E0}
2011-08-27 15:46:28 -------- d-----w- C:\Users\User\AppData\Local\{C7933EC4-350F-4052-81C7-C28123BBDFC7}
2011-08-27 15:46:11 -------- d-----w- C:\Users\User\AppData\Local\{D8F0F256-A829-45D3-970E-CED3E718621B}
2011-08-27 15:17:40 -------- d-----w- C:\Program Files\Microsoft Synchronization Services
2011-08-27 15:16:56 -------- d-----w- C:\Program Files\Microsoft SQL Server Compact Edition
2011-08-27 15:14:24 -------- d-----w- C:\Program Files (x86)\Microsoft Visual Studio 8
2011-08-27 15:12:30 -------- d-----w- C:\Program Files\Microsoft Analysis Services
2011-08-27 15:12:30 -------- d-----w- C:\Program Files (x86)\Microsoft Analysis Services
2011-08-27 03:45:35 -------- d-----w- C:\Users\User\AppData\Local\{503DC219-7FCB-4649-9082-594362F06758}
2011-08-27 03:45:09 -------- d-----w- C:\Users\User\AppData\Local\{FD9564F5-5BCD-4FE0-8C7B-2A798C56691E}
2011-08-26 03:08:09 -------- d-----w- C:\Users\User\AppData\Local\{EBE2B129-90C9-4060-A6A4-5886545E5E5C}
2011-08-25 14:43:59 -------- d-----w- C:\Program Files (x86)\WinSCP
2011-08-25 14:41:11 -------- d-----w- C:\Users\User\AppData\Local\{E339123E-96B0-4D04-841E-40BFBC22657D}
2011-08-25 14:40:09 -------- d-----w- C:\Users\User\AppData\Local\{31EABB20-C63A-4700-A35B-33B973467291}
2011-08-24 15:00:56 -------- d-----w- C:\Users\User\AppData\Local\{20A315D1-1811-47BC-A3CE-63248E800F3A}
2011-08-24 15:00:40 -------- d-----w- C:\Users\User\AppData\Local\{0BC6131A-101A-4605-9D48-F2A2BAD1DF28}
2011-08-24 03:08:46 2048 ----a-w- C:\Windows\SysWow64\tzres.dll
2011-08-24 03:08:46 2048 ----a-w- C:\Windows\System32\tzres.dll
2011-08-24 03:02:31 -------- d-----w- C:\Users\User\AppData\Roaming\Hobbyist Software
2011-08-24 03:01:44 -------- d-----w- C:\Program Files (x86)\Hobbyist Software
2011-08-24 03:00:07 -------- d-----w- C:\Users\User\AppData\Local\{D219B5E2-EAD3-4BE1-BDC0-965EB4553C3B}
2011-08-24 02:59:46 -------- d-----w- C:\Users\User\AppData\Local\{C8D1B3FF-E617-4056-81EB-D20D379B323F}
2011-08-23 11:46:48 -------- d-----w- C:\Users\User\AppData\Local\{14D7E024-5780-49BF-A27A-54E8C6A52225}
2011-08-23 11:46:32 -------- d-----w- C:\Users\User\AppData\Local\{C1986F61-0782-4CBB-80CB-DC0D9268A16F}
2011-08-21 15:22:33 -------- d-----w- C:\Users\User\AppData\Local\{655946C7-C908-4BAC-8F1D-B9D74B5F5996}
2011-08-21 15:22:18 -------- d-----w- C:\Users\User\AppData\Local\{B6901526-5BA5-4D83-924A-C0B3A81B4622}
2011-08-21 03:21:36 -------- d-----w- C:\Users\User\AppData\Local\{0DB6F83D-AB1C-4119-92F1-1B6CF7865EB3}
2011-08-21 03:21:13 -------- d-----w- C:\Users\User\AppData\Local\{BFFD6977-4774-4A4B-B69E-62E0A40090D2}
2011-08-20 03:55:23 -------- d-----w- C:\Users\User\AppData\Local\{BB2105EB-D6BE-4455-AD88-83DC4E541DA9}
2011-08-20 03:55:09 -------- d-----w- C:\Users\User\AppData\Local\{C332E68D-2015-4D05-ABD2-DE9F2C494E1B}
.
==================== Find3M ====================
.
2011-08-13 16:58:32 404640 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2011-08-04 03:45:46 8192 ----a-w- C:\Windows\SysWow64\srvany.exe
2011-07-22 05:35:08 1638912 ----a-w- C:\Windows\System32\mshtml.tlb
2011-07-22 04:56:17 1638912 ----a-w- C:\Windows\SysWow64\mshtml.tlb
2011-07-21 07:28:16 286720 ------w- C:\Windows\Setup1.exe
2011-07-21 07:28:15 73216 ----a-w- C:\Windows\ST6UNST.EXE
2011-07-16 05:26:54 362496 ----a-w- C:\Windows\System32\wow64win.dll
2011-07-16 05:26:53 243200 ----a-w- C:\Windows\System32\wow64.dll
2011-07-16 05:26:53 13312 ----a-w- C:\Windows\System32\wow64cpu.dll
2011-07-16 05:26:18 214528 ----a-w- C:\Windows\System32\winsrv.dll
2011-07-16 05:24:09 16384 ----a-w- C:\Windows\System32\ntvdm64.dll
2011-07-16 05:21:32 422400 ----a-w- C:\Windows\System32\KernelBase.dll
2011-07-16 05:17:46 338432 ----a-w- C:\Windows\System32\conhost.exe
2011-07-16 04:36:09 14336 ----a-w- C:\Windows\SysWow64\ntvdm64.dll
2011-07-16 04:32:14 44032 ----a-w- C:\Windows\apppatch\acwow64.dll
2011-07-16 04:31:50 25600 ----a-w- C:\Windows\SysWow64\setup16.exe
2011-07-16 04:30:29 5120 ----a-w- C:\Windows\SysWow64\wow32.dll
2011-07-16 04:30:27 272384 ----a-w- C:\Windows\SysWow64\KernelBase.dll
2011-07-16 02:26:12 7680 ----a-w- C:\Windows\SysWow64\instnm.exe
2011-07-16 02:26:11 2048 ----a-w- C:\Windows\SysWow64\user.exe
2011-07-16 02:21:47 6144 ---ha-w- C:\Windows\SysWow64\api-ms-win-security-base-l1-1-0.dll
2011-07-16 02:21:47 4608 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-threadpool-l1-1-0.dll
2011-07-16 02:21:47 3584 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-xstate-l1-1-0.dll
2011-07-16 02:21:47 3072 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-util-l1-1-0.dll
2011-07-09 02:44:55 287744 ----a-w- C:\Windows\System32\drivers\mrxsmb10.sys
2011-07-08 09:45:12 386168 ----a-w- C:\Windows\System32\drivers\NISx64\1206000.01D\symnets.sys
2011-07-07 15:54:56 472808 ----a-w- C:\Windows\SysWow64\deployJava1.dll
2011-07-07 11:10:36 174200 ----a-w- C:\Windows\System32\drivers\SYMEVENT64x86.SYS
2011-07-04 18:16:07 2560 ----a-w- C:\Windows\SysWow64\drivers\zh-TW\qwavedrv.sys.mui
2011-07-04 18:15:59 13824 ----a-w- C:\Windows\SysWow64\drivers\zh-TW\bfe.dll.mui
2011-07-04 18:15:59 10240 ----a-w- C:\Windows\SysWow64\drivers\zh-TW\pacer.sys.mui
2011-07-04 18:15:50 2048 ----a-w- C:\Windows\SysWow64\drivers\zh-TW\scfilter.sys.mui
2011-07-04 18:15:49 4608 ----a-w- C:\Windows\SysWow64\drivers\zh-TW\ndiscap.sys.mui
2011-07-04 18:15:46 30208 ----a-w- C:\Windows\SysWow64\drivers\zh-TW\tcpip.sys.mui
2011-07-04 18:09:57 2048 ----a-w- C:\Windows\SysWow64\drivers\zh-CN\qwavedrv.sys.mui
2011-07-04 18:09:48 13824 ----a-w- C:\Windows\SysWow64\drivers\zh-CN\bfe.dll.mui
2011-07-04 18:09:48 10240 ----a-w- C:\Windows\SysWow64\drivers\zh-CN\pacer.sys.mui
2011-07-04 18:09:41 2048 ----a-w- C:\Windows\SysWow64\drivers\zh-CN\scfilter.sys.mui
2011-07-04 18:09:39 4096 ----a-w- C:\Windows\SysWow64\drivers\zh-CN\ndiscap.sys.mui
2011-07-04 18:09:34 30208 ----a-w- C:\Windows\SysWow64\drivers\zh-CN\tcpip.sys.mui
2011-07-04 17:28:10 0 ----a-w- C:\Windows\ativpsrm.bin
2011-07-04 17:27:13 3 ----a-w- C:\Windows\System32\PLD_Framework.cmd
2011-06-23 05:29:39 5507968 ----a-w- C:\Windows\System32\ntoskrnl.exe
2011-06-23 04:38:05 3957120 ----a-w- C:\Windows\SysWow64\ntkrnlpa.exe
2011-06-23 04:38:04 3902336 ----a-w- C:\Windows\SysWow64\ntoskrnl.exe
2011-06-21 06:27:14 1896832 ----a-w- C:\Windows\System32\drivers\tcpip.sys
2011-06-21 06:20:48 1197056 ----a-w- C:\Windows\System32\wininet.dll
2011-06-21 06:20:06 57856 ----a-w- C:\Windows\System32\licmgr10.dll
2011-06-21 05:36:36 981504 ----a-w- C:\Windows\SysWow64\wininet.dll
2011-06-21 05:35:05 44544 ----a-w- C:\Windows\SysWow64\licmgr10.dll
2011-06-21 05:05:13 482816 ----a-w- C:\Windows\System32\html.iec
2011-06-21 04:26:02 386048 ----a-w- C:\Windows\SysWow64\html.iec
.
============= FINISH: 10:54:16.95 ===============
Attached Files
File Type: zip Attach.zip (2.7 KB, 57 views)
spirit91 is offline  
Sponsored Links
Advertisement
 
Old 09-28-2011, 09:03 AM   #2
Registered Member
 
Join Date: Dec 2010
Posts: 8
OS: vista service pack 2



bump up pleaseee
spirit91 is offline  
Old 10-02-2011, 08:25 PM   #3
TSF Security Manager
Emeritus
 
Ried's Avatar

Microsoft Most Valuable Professional
 
Join Date: Jan 2005
Location: Ohio
Posts: 42,837
OS: WinXP Home, Vista, Windows 7 64bit



Hello spirit91,

The first thing you need to do is change your hotmail password. Use another computer to do that until we've checked for malware.

Has Norton detected anything?

Download Malwarebytes' Anti-Malware to your desktop.
  • Double-click mbam-setup.exe and follow the prompts to install the program.
  • At the end, be sure a checkmark is placed next to the following:
    • Update Malwarebytes' Anti-Malware
    • Launch Malwarebytes' Anti-Malware
  • Then click Finish.
  • If an update is found, it will download and install the latest version.
  • Once the program has loaded, select Perform Quick scan, then click Scan.
  • When the scan is complete, click OK, then Show Results to view the results.
  • Be sure that everything is checked, and click Remove Selected.
  • When completed, a log will open in Notepad. Save it to your desktop.
Note: Malwarebytes' Anti-Malware may require a reboot to complete removals. After a reboot, if required, post that saved log in your next reply.
__________________
Member of UNITE since 2006

Microsoft MVP - 2010, 2011, 2012, 2013, 2014, 2015

"It is one life whether we spend it laughing or weeping." "Take the time to laugh--it is the music of the soul."
Ried is offline  
Sponsored Links
Advertisement
 
Old 10-03-2011, 02:02 AM   #4
Registered Member
 
Join Date: Dec 2010
Posts: 8
OS: vista service pack 2



thankyou for replying to me,
no i have tried full scan with norton a few times and it found nothing.
here is the scan log.


Malwarebytes' Anti-Malware 1.51.2.1300
Malwarebytes : Free anti-malware, anti-virus and spyware removal download

Database version: 7852

Windows 6.1.7600
Internet Explorer 8.0.7600.16385

3/10/2011 5:01:17 PM
mbam-log-2011-10-03 (17-01-17).txt

Scan type: Quick scan
Objects scanned: 206596
Time elapsed: 5 minute(s), 20 second(s)

Memory Processes Infected: 1
Memory Modules Infected: 6
Registry Keys Infected: 3
Registry Values Infected: 1
Registry Data Items Infected: 0
Folders Infected: 20
Files Infected: 520

Memory Processes Infected:
c:\program files (x86)\funshion online\Funshion\funshionservice.exe (Adware.Funshion) -> 6816 -> Unloaded process successfully.

Memory Modules Infected:
c:\program files (x86)\funshion online\Funshion\dbghelp.dll (Adware.Funshion) -> Delete on reboot.
c:\program files (x86)\funshion online\Funshion\Dump.dll (Adware.Funshion) -> Delete on reboot.
c:\program files (x86)\funshion online\Funshion\fpsrv.dll (Adware.Funshion) -> Delete on reboot.
c:\program files (x86)\funshion online\Funshion\fptassrv.dll (Adware.Funshion) -> Delete on reboot.
c:\program files (x86)\funshion online\Funshion\getmacaddress.dll (Adware.Funshion) -> Delete on reboot.
c:\program files (x86)\funshion online\Funshion\quality.dll (Adware.Funshion) -> Delete on reboot.

Registry Keys Infected:
HKEY_CLASSES_ROOT\fsp (Adware.Funshion) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Funshion Task (Adware.Funshion) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Funshion (Adware.Funshion) -> Quarantined and deleted successfully.

Registry Values Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\Funshion (Adware.Funshion) -> Value: Funshion -> Quarantined and deleted successfully.

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
c:\program files (x86)\funshion online (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\icon (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin (Adware.Funshion) -> Quarantined and deleted successfully.
c:\programdata\microsoft\Windows\start menu\Programs\Funshion (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\backup (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\baiduflash (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\baiduflash\subflash (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\cacheflash (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\flash (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\flashNew (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\flashstamp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\download (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\historytorrent (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\ini (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\Seed (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\update (Adware.Funshion) -> Quarantined and deleted successfully.

Files Infected:
c:\program files (x86)\funshion online\Funshion\funshionservice.exe (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\Funshion.exe (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\downloads\funshioninstall2.3.0.21.exe (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\administrator\AppData\Roaming\microsoft\internet explorer\quick launch\Funshion.lnk (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\AppData\Roaming\microsoft\internet explorer\quick launch\Funshion.lnk (Adware.Funshion) -> Quarantined and deleted successfully.
c:\programdata\microsoft\Windows\start menu\Funshion.lnk (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Windows\System32\funshion.ini (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Windows\SysWOW64\funshion.ini (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion.ini (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\cook.dll (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\CoreAAC.ax (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\coreavc.ax (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\crashreport.exe (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\dbghelp.dll (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\drvc.dll (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\Dump.dll (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\fpsrv.dll (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\fptassrv.dll (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\funshion-install.ico (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\funshion.ini (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\funshiongame2.ico (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\funshionplugin2.dll (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\funshionservice.diagnose (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\funshionupgrade.exe (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\Funshop2.ico (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\getmacaddress.dll (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\langresenamerican.dll (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\nicdescr.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\pncrt.dll (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\pndx5032.dll (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\quality.dll (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\rmoc3260.dll (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\uninstall.exe (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\icon\MP4.ico (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\icon\RMVB.ico (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\bmpcleanfile.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\bmpcleardisk.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\bmpError.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\bmplistheaderbk.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\bmpmenubk.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\bmpplaybartip.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\bmpprompt.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\bmpquestion.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\bmptimerclose.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\buffering.gif (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\captionbkgnd.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\captionclosebtn.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\captionmaxbtn.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\captionmenubtn.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\captionmenubtnen.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\captionmenuf.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\captionmenufen.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\captionminbtn.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\captionnormalbtn.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\captiontext.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\captiontexten.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\changemodebtn.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\checkbox_box.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\checkbox_check.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\diskwarnning.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\dragcorner.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\getfspfile.gif (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\hideplayinfobtn.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\ierrorreshbtn.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\ierrorwndbk.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\ietoolbarback.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\ietoolbarbkgnd.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\ietoolbarforward.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\ietoolbargamepage.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\ietoolbarhomepage.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\ietoolbarrefresh.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\ietoolbarshoppage.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\ietoolbarshowplayer.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\ietoolbarshowplayeren.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\imgcleanfilebtn.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\imgdrawmenuitem.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\intergratemodebtn.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\listheaderbkgnd.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\listheadersplid.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\list_expend.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\loadteleplayweb.gif (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\mainncframebtm.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\mainncframeleft.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\mainncframeright.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\mainncframetop.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\mainncleftbtmcorner.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\mainnclefttopcorner.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\mainncrightbtmcorner.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\mainncrighttopcorner.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\openlocalbtnmenu.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\optionbtnarrow.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\optionbtnbk.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\optionsplidbarhead.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\optionsplidbartrail.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\optionsplidebarbkgnd.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\optionsplidebarthumb.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\optiontext.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\optiontexten.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\pauseadclosebtn.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\pauseflickerbtn.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playbarsplidlinebk.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playbarsplidrgn.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playbarvolumebarbkgnd.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playbarvolumebarbkgndright.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playbarvolumebarbkgndrightsmall.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playbarvolumebarbkgndsmall.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playbarvolumebarthumb.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playbarvolumebarthumbsmall.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playbufferinfowndbkgnd.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playbufferinfowndleft.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playbufferinfowndright.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playerbarbkgnd.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playerbarbtnfullview.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playerbarbtnmute.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playerbarbtnmutesmall.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playerbarbtnnext.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playerbarbtnnextsmall.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playerbarbtnnontop.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playerbarbtnnormal.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playerbarbtnpause.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playerbarbtnpausesmall.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playerbarbtnplay.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playerbarbtnplaylist.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playerbarbtnplaysmall.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playerbarbtnpre.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playerbarbtnpresmall.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playerbarbtnsetting.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playerbarbtnsimple.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playerbarbtnstop.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playerbarbtnstopsmall.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playerbarbtntop.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playerbarbtnvolume.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playerbarbtnvolumesmall.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playerbarleftbk.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playerbarrightbk.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playerbarsplid.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playerhidebtn.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playerhidebtnen.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playersimplebarbk.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playersimplebarbkgnd.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playertipclosebtn.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playinfobkgnd.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playinfobkgndsel.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playinfobtmbar.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playinfobtnmenu.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playinfocurplay.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playinfoheaderbkgnd.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playinfoitemtextbk.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playinfoitemtexthover.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playinfotitle.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playinfotitlebk.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playinfotitleen.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playlistaddbtn.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playlistremove.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playlistversplid.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playlistversplidmark.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playsplidbarbefore.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playsplidbarbeforesmall.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playsplidbarbkgnd.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playsplidbarbkgndsmall.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playsplidbardownload.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playsplidbardownloadsmall.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playsplidbarhead.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playsplidbarheadsmall.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playsplidbarthumb.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playsplidbarthumbsmall.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playsplidbartrail.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\playsplidbartrailsmall.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\radiobtnbox.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\radiobtnpt.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\rpcloading.gif (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\rpcstartdlgbk.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\Scroll.gif (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\scrollbardownarrow.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\scrollbardownarrowl.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\scrollbardownarrowround.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\scrollbaruparrow.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\scrollbaruparrowl.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\scrollbaruparrowround.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\scrollbarverbkgnd.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\scrollbarverbkgndl.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\scrollbarverwidgetbkgnd.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\scrollbarverwidgetbkgndhover.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\scrollbarverwidgetbkgndl.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\scrollbarverwidgethead.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\scrollbarverwidgetheadhover.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\scrollbarverwidgetheadl.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\scrollbarverwidgetmid.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\scrollbarverwidgetmidhover.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\scrollbarverwidgetmidl.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\scrollbarverwidgettrail.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\scrollbarverwidgettrailhover.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\scrollbarverwidgettraill.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\scrolllinkbkgnd.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\scrolllinkfrm.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\showplayinfobtn.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\splidbarbkgnd.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\splidbarmark.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\statusbarbkgnd.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\statusbarleft.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\statusbarright.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\statusbarsplid.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\tabmodebtn.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\taskbarbtnmenu.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\taskbarbtnopenlcl.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\taskbartipdownarrow.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\tasklistbtnhide.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\tasklistbtnshow.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\tasklistreplaybtn.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\tasklistrightline.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\taskliststaticons.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\taskliststatselicon.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\taskmanagerclosebtn.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\taskmanagerclosetxtbtn.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\taskmgnbarbk.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\taskmgnbarcuritem.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\taskmgnbaritem.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\taskmgnbarlscrollbtn.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\taskmgnbarrscrollbtn.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\taskmgntitlebkgnd.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\taskmgntitleleft.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\taskmgntitleright.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\taskmngbtnicon.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\tasktabbkgnd.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\tasktabbtnpopicon.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\TaskText.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\tasktexten.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\tasktoolbarbk.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\tasktoolbarbk000.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\tasktoolbarbkgnd.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\tasktoolbardelete.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\tasktoolbardiskclear.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\tasktoolbardownload.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\tasktoolbarmovedown.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\tasktoolbarmoveup.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\tasktoolbarplay.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\tasktoolbarrestore.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\tasktoolbarshowweb.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\tasktoolbarshowweben.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\tasktoolbarsplid.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\tasktoolbarstop.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\textbtnbk.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\tipbottomarrow.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\tiprightarrow.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\tiptoparrow.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\updatebtmbkgnd.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\updatebtmclosebtn.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\updatebtmigorebtn.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\updatebtmupdatebtn.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\updatecapbkgnd.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\updatecapclosebtn.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\updatecaption.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\updateiconfail.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\updateiconinit.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\updateiconsuc.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\vodPlay.gif (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\vodplayen.gif (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\vodWeb.gif (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\vodWebEn.gif (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\webclosebtn.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\webclosebtnrgn.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\program files (x86)\funshion online\Funshion\skin\webtoolbarbk.bmp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\programdata\microsoft\Windows\start menu\Programs\Funshion\funshion use help.lnk (Adware.Funshion) -> Quarantined and deleted successfully.
c:\programdata\microsoft\Windows\start menu\Programs\Funshion\Funshion.lnk (Adware.Funshion) -> Quarantined and deleted successfully.
c:\programdata\microsoft\Windows\start menu\Programs\Funshion\Pop Game.lnk (Adware.Funshion) -> Quarantined and deleted successfully.
c:\programdata\microsoft\Windows\start menu\Programs\Funshion\shopping sites.lnk (Adware.Funshion) -> Quarantined and deleted successfully.
c:\programdata\microsoft\Windows\start menu\Programs\Funshion\uninstall funshion.lnk (Adware.Funshion) -> Quarantined and deleted successfully.
c:\programdata\microsoft\Windows\start menu\Programs\Funshion\update history.lnk (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\install.ini (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\user-pc_info.ini (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\cacheflash\blankFs.swf (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\cacheflash\donghuanew_18.swf (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\flash\980ef71b_c41b_511c_2591_1c44d72c2cec.swf (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\flashNew\03edab09_6bff_fb78_1916_cfc64c6b1255.date1315723434.swf (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\flashNew\04c66822_7097_df71_d71f_449b038c28f7.date1315071113.swf (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\flashNew\13626772_0374_cab9_da56_599e23dab7b5.date1315319988.swf (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\flashNew\1906cb4d_1a26_c3c3_896e_58f40b7eca77.date1315549293.swf (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\flashNew\228b58ce_9cc0_3b99_2647_09bc77674226.swf (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\flashNew\234c98ab_9374_bf9e_840b_4122f50cf336.date1317572981.swf (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\flashNew\2896936a_bb80_7af7_9625_bf225bd17b91.date1315071113.swf (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\flashNew\3567d1a2_f901_bf5d_9d97_72243b217c9b.swf (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\flashNew\35d93ea2_0bb8_ca61_6fdf_8db82503ad63.date1317572981.swf (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\flashNew\3c7b1257_3160_714c_4e00_01379716c6e7.date1317572981.swf (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\flashNew\4129e73b_a9f2_0e7f_a6c0_e24019d10024.date1317572981.swf (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\flashNew\49d0800d_628c_c634_1776_3aa5ce047715.date1315723434.swf (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\flashNew\4b2c4adf_edff_db90_050f_6dd44afcf131.date1315723434.swf (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\flashNew\4fb870e3_6a2a_ad04_0e3c_b29ac08d244a.date1315319988.flv (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\flashNew\51b568a9_4005_13bb_5b23_c1115c3db637.date1315111448.swf (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\flashNew\58576d38_ffec_6e60_c6f3_f792e1c33fd4.swf (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\flashNew\5a6ebf8c_5c0f_8d70_6029_68bbb414df95.swf (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\flashNew\62a11b7d_f55d_9e15_ee0b_cda1c446fea0.date1317572981.swf (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\flashNew\69c3b9e1_1f9d_7df3_aa96_1f17c510b7cf.swf (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\flashNew\6e2ec1b1_4ccc_5eef_a895_ee828d5c6229.swf (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\flashNew\7476f680_06b8_e824_aa90_8f2a3548c084.swf (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\flashNew\8114383c_80bd_8558_a285_ce132b89cd83.flv (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\flashNew\849fdb5a_5f7e_9b08_346f_b766abf3f6d8.swf (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\flashNew\89634a54_922e_5e30_8633_e89a4ce8b964.swf (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\flashNew\8fa52e58_102e_d05b_243c_a3e45b745ef8.date1315723434.flv (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\flashNew\95413133_62a4_ff6a_0e62_224e57ae11ae.date1315549293.swf (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\flashNew\97b093ab_feb5_b409_cfe4_2b12949e5604.date1315111448.swf (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\flashNew\a9d17ea9_4b99_5016_5882_d21e06dceba3.swf (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\flashNew\a9e30e5c_e87d_17fa_c1ce_f71795085fd6.date1315319988.swf (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\flashNew\abb36982_1f85_fc7e_0659_7bfd45bf403c.date1317572980.swf (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\flashNew\af2b894b_d400_dff6_bb58_da65016cbec5.date1317572980.flv (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\flashNew\b2312566_d832_a2a7_5a39_2d4b13e1bf61.date1315319988.swf (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\flashNew\b2dce6ac_e920_1541_757e_fcd99ad6aa49.date1317572980.swf (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\flashNew\c83499fc_f128_bfb2_c102_0b3496314e58.date1315549293.swf (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\flashNew\c9512770_e5b0_ef2d_98a0_6791e9834aad.date1315319988.swf (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\flashNew\c9eca6ac_c7c2_e9c7_e2e7_d19a2f28560c.date1317572980.swf (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\flashNew\cdd11f37_3674_a87c_3bad_2704fb750340.swf (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\flashNew\dad59071_cfe3_99b0_5c4c_67ab7fc8a759.date1317572980.swf (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\flashNew\dd24d73e_60dc_d6f1_6909_c3b09764f10a.date1315723434.swf (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\flashNew\de1d3734_1d94_f803_a288_d498fe2f01a9.date1315723434.swf (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\flashNew\de60e6ca_f682_9cbd_19b6_b8d692d2cb63.date1317572980.swf (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\flashNew\defe2f9b_34bc_6d2c_8cfd_ea2ab9c0da6f.date1317572980.swf (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\flashNew\e0ce1e22_e0e0_e5a9_3e92_db0e5fc5e9a7.date1317572980.swf (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\flashNew\e1e11714_f4bf_7642_cb06_6efb34609194.swf (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\flashNew\f0d60bdb_e7f6_fb3b_3286_27da096dab3c.swf (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\flashNew\f19e354e_023a_1660_9ac6_edb84ae93498.date1317572980.flv (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\flashNew\f977627b_eca4_62ed_c575_b0dcdc393ac3.date1315319988.swf (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\flashNew\fdf93623_e0f5_ebac_327f_ffd4b473752d.date1317572980.swf (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\flashstamp\297df161_aa3c_4df5_4fb2_3812c12362eb.swf (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\cache\flashstamp\5e40eaeb_549e_b9e5_4789_d8f68518ff29.swf (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1310054126_6634280_1294283968_742.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1310054126_6634280_1294283968_742.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1310054312_6634280_1294108372_503.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1310054312_6634280_1294108372_503.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1310186286_6634280_1294301056_884.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1310186286_6634280_1294301056_884.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1310188945_6634280_1294383780_835.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1310188945_6634280_1294383780_835.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1310206536_18277256_1294470044_308.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1310206536_18277256_1294470044_308.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1310206543_18277256_1294470044_259.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1310206543_18277256_1294470044_259.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1310400377_24272712_1310351580_590.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1310400377_24272712_1310351580_590.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1311263904_2111662_1206079308_984.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1311263904_2111662_1206079308_984.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1311264032_2111662_1206079162_522.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1311264032_2111662_1206079162_522.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1311264042_2111662_1206079181_594.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1311264042_2111662_1206079181_594.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1311264059_2111662_1206079203_447.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1311264059_2111662_1206079203_447.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1311264074_2111662_1206079226_571.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1311264074_2111662_1206079226_571.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1311264081_2111662_1206079266_539.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1311264081_2111662_1206079266_539.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1311264108_2111662_1206079244_111.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1311264108_2111662_1206079244_111.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1311264114_2111662_1206079285_270.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1311264114_2111662_1206079285_270.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1311264121_2111662_1206079326_231.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1311264121_2111662_1206079326_231.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1311264131_2111662_1206079351_733.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1311264131_2111662_1206079351_733.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1311264138_2111662_1206079374_253.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1311264138_2111662_1206079374_253.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1311264148_2111662_1206079420_60.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1311264148_2111662_1206079420_60.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1311264155_2111662_1206079440_641.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1311264155_2111662_1206079440_641.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1311264160_2111662_1206079460_904.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1311264160_2111662_1206079460_904.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1311675058_1451101_1241924105_39.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1311675058_1451101_1241924105_39.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1311675066_1451101_1241924089_249.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1311675066_1451101_1241924089_249.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1311675071_1451101_1241924068_299.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1311675071_1451101_1241924068_299.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1311675079_1451101_1241924053_158.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1311675079_1451101_1241924053_158.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1311675084_1451101_1241924033_774.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1311675084_1451101_1241924033_774.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1311675092_1451101_1241924015_916.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1311675092_1451101_1241924015_916.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1311675099_1451101_1241923980_250.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1311675099_1451101_1241923980_250.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1311675104_1451101_1241923966_331.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1311675104_1451101_1241923966_331.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1311675113_1451101_1241923951_979.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1311675113_1451101_1241923951_979.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1311675119_1451101_1241923931_342.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1311675119_1451101_1241923931_342.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1312891423_6634280_1288753493_101.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1312891423_6634280_1288753493_101.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313596728_24570037_1312252119_851.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313596728_24570037_1312252119_851.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313598318_24272712_1312339804_902.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313598318_24272712_1312339804_902.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313598337_24570037_1312427155_449.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313598337_24570037_1312427155_449.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313598342_24272712_1312511337_873.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313598342_24272712_1312511337_873.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313598348_23623226_1312625428_383.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313598348_23623226_1312625428_383.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313598353_20080446_1312858666_453.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313598353_20080446_1312858666_453.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313598357_20080446_1312944680_71.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313598357_20080446_1312944680_71.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313598364_20080446_1313030572_894.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313598364_20080446_1313030572_894.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313598369_24727249_1313115907_582.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313598369_24727249_1313115907_582.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313598391_24727249_1313465874_224.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313598391_24727249_1313465874_224.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313598405_24727249_1313465875_725.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313598405_24727249_1313465875_725.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313598411_24727249_1313549511_64.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313598411_24727249_1313549511_64.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313772545_24727249_1313634411_974.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313772545_24727249_1313634411_974.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313772551_24727249_1313721599_227.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313772551_24727249_1313721599_227.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313853500_18277256_1313832794_122.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313853500_18277256_1313832794_122.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313937575_24272712_1311647574_250.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313937575_24272712_1311647574_250.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313938468_24570037_1311737269_509.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313938468_24570037_1311737269_509.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313941646_24272712_1311821177_895.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313941646_24272712_1311821177_895.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313941651_24570037_1311908430_315.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313941651_24570037_1311908430_315.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313941664_20080446_1311998817_544.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313941664_20080446_1311998817_544.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313941670_24570037_1312251547_118.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313941670_24570037_1312251547_118.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313941682_24272712_1312339617_303.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313941682_24272712_1312339617_303.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313941687_24570037_1312423712_428.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313941687_24570037_1312423712_428.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313941697_24272712_1312511318_24.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313941697_24272712_1312511318_24.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313941702_23623226_1312625983_594.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313941702_23623226_1312625983_594.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313941707_20080446_1312858545_619.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313941707_20080446_1312858545_619.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313941712_20080446_1312942349_659.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313941712_20080446_1312942349_659.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313941718_20080446_1313030450_408.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313941718_20080446_1313030450_408.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313941723_24727249_1313115962_981.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313941723_24727249_1313115962_981.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313941733_23623226_1313218394_311.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313941733_23623226_1313218394_311.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313941738_24727249_1313464745_777.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313941738_24727249_1313464745_777.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313941743_24727249_1313549254_83.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313941743_24727249_1313549254_83.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313941748_24727249_1313634278_701.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313941748_24727249_1313634278_701.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313941754_24727249_1313721544_268.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313941754_24727249_1313721544_268.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313941759_18277256_1313832689_742.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1313941759_18277256_1313832689_742.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1314102231_24727249_1314065682_479.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1314102231_24727249_1314065682_479.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1314192131_20080446_1314152889_379.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1314192131_20080446_1314152889_379.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1314289353_24727249_1314240732_457.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1314289353_24727249_1314240732_457.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1314289440_wujiandao.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1314289440_wujiandao.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1314289476_6634280_1291001150_555.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1314289476_6634280_1291001150_555.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1314289551_6634280_1291001649_402.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1314289551_6634280_1291001649_402.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1314363643_24727249_1314327993_826.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1314363643_24727249_1314327993_826.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1314367507_24727249_1314065471_874.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1314367507_24727249_1314065471_874.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1314367515_20080446_1314152837_370.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1314367515_20080446_1314152837_370.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1314367527_24727249_1314240641_696.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1314367527_24727249_1314240641_696.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1314367547_24727249_1314327917_554.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1314367547_24727249_1314327917_554.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1314547948_20080446_1314516763_528.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1314547948_20080446_1314516763_528.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1314547957_20080446_1314516763_938.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1314547957_20080446_1314516763_938.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1314720337_24727249_1314673160_500.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1314720337_24727249_1314673160_500.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1314801746_24727249_1314763230_76.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1314801746_24727249_1314763230_76.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1314868647_24727249_1314844904_645.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1314868647_24727249_1314844904_645.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1315070974_23623226_1315034149_986.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1315070974_23623226_1315034149_986.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1315070994_23623226_1315034150_122.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1315070994_23623226_1315034150_122.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1315319892_24726995_1315279233_989.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1315319892_24726995_1315279233_989.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1315409933_24726995_1315367151_472.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1315409933_24726995_1315367151_472.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1315473967_24726995_1315449772_537.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1315473967_24726995_1315449772_537.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1315561665_18277256_1315536474_35.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1315561665_18277256_1315536474_35.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1315723374_23623226_1315640523_632.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1315723374_23623226_1315640523_632.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1315723378_23623226_1315640522_717.dat (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\control\1315723378_23623226_1315640522_717.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\download\funshioninstall2.4.2.56.exe (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\ini\httpfile.ini (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\ini\temp_config.ini (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\Seed\24727249_1314844904_645.fsp (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\update\adlinkparamfile.fax (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\update\ad_define.fai (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\update\ad_define.fai.bak (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\update\ad_material.fax (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\update\flashparam.txt (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\update\flashparam.txt.bak (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\update\localad.fax (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\update\Pop Game.lnk (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\update\popwind.json (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\update\shopping sites.lnk (Adware.Funshion) -> Quarantined and deleted successfully.
c:\Users\User\funshion\update\updatexmlfile.txt (Adware.Funshion) -> Quarantined and deleted successfully.
spirit91 is offline  
Old 10-03-2011, 05:16 AM   #5
TSF Security Manager
Emeritus
 
Ried's Avatar

Microsoft Most Valuable Professional
 
Join Date: Jan 2005
Location: Ohio
Posts: 42,837
OS: WinXP Home, Vista, Windows 7 64bit



You're welcome. :)

It's important to run an online scan to search for any remnants that may be lurking. Please go to here to run the online scannner from ESET.
  • Turn off the real time scanner of any existing antivirus program while performing the online scan
  • Tick the box next to YES, I accept the Terms of Use.
  • Click Start
  • When asked, allow the activex control to install
  • Click Start
  • Make sure that the option Remove found threats is unticked, and the option Scan unwanted applications is checked
  • Click on Advanced Settings and ensure these options are ticked:
    • Scan for potentially unwanted applications
    • Scan for potentially unsafe applications
    • Enable Anti-Stealth Technology
  • Click Scan
  • Wait for the scan to finish
  • If any threats were found, click the 'List of found threats' , then click Export to text file....
  • Save it to your desktop, then please copy and paste that log as a reply to this topic.
__________________
Member of UNITE since 2006

Microsoft MVP - 2010, 2011, 2012, 2013, 2014, 2015

"It is one life whether we spend it laughing or weeping." "Take the time to laugh--it is the music of the soul."
Ried is offline  
Old 10-03-2011, 10:57 PM   #6
Registered Member
 
Join Date: Dec 2010
Posts: 8
OS: vista service pack 2



there you go! thank you very much!!

C:\Program Files (x86)\Veoh Networks\VeohWebPlayer\OCSetupHlp.dll Win32/OpenCandy application
C:\Program Files (x86)\Veoh Networks\VeohWebPlayer\qlps-qlipso-sntb.exe a variant of Win32/Toolbar.Zugo application
C:\Users\User\Downloads\TCPZ_20090108\TCPZ_20090108\TCPZ.exe a variant of Win32/TCPZ.F application
C:\Users\User\Downloads\UTORRENT\Google Earth Plus 6.0.0.1735 incl patch\Google Earth Plus 6.0.0.1735 incl patch\google.earth.plus.5.2.x-mpt.exe Win32/HackTool.Patcher.A application
C:\Users\User\Downloads\UTORRENT\Tom Clancy's H.A.W.X\Install Files\Main.cf2 a variant of Win32/GameHack.F application
C:\Users\User\Games\Tom Clancy's H.A.W.X\EXTRAS\Promo Trainer\H.A.W.X. Trainer.exe a variant of Win32/GameHack.F application
spirit91 is offline  
Old 10-05-2011, 09:27 PM   #7
TSF Security Manager
Emeritus
 
Ried's Avatar

Microsoft Most Valuable Professional
 
Join Date: Jan 2005
Location: Ohio
Posts: 42,837
OS: WinXP Home, Vista, Windows 7 64bit



Those uTorrent downloads could have been the source. Please take a few minutes to read these 2 sticky topics we have at the top of this forum:

P2P File Sharing
Cracked (Illegal) Software

You should uninstall those programs. Is your hotmail still sending out spam after changing your password?
__________________
Member of UNITE since 2006

Microsoft MVP - 2010, 2011, 2012, 2013, 2014, 2015

"It is one life whether we spend it laughing or weeping." "Take the time to laugh--it is the music of the soul."
Ried is offline  
Closed Thread

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Similar Threads
Thread Thread Starter Forum Replies Last Post
Hotmail Sending Spam Links to Contacts
Hello, TechSupport Forum I hope you can resolve my issue where my hotmail is sending my contacts links to follow into spam. I can confirm this because i have added myself to my contacts list and i have recived one from myself. On top of that, my contacts responded back telling me that they are...
L_D Resolved HJT Threads 3 04-02-2011 09:35 PM
Help! My Computer is sending spam from my hotmail account
My computer has been sending Spam emails to my contact list off and on for a couple of weeks now. I've run Avast antivirus and SuperAntiSpyware multiple times, but still the spam goes out. I am using Outlook to manage my email (several accounts setup, but only my msn.com account is affected). It...
coast105 Resolved HJT Threads 7 03-31-2011 07:25 PM
Google redirects and computer running slow
Ok, I hate having to ask for help by bothering people but I'm in a bind. Google redirects me to spam links when I click them the first time but the second time, it's fine. When I click 'back' when I'm on this spam website it sends me two pages back. Also, my computer has been running slower and...
Joeramos Resolved HJT Threads 4 03-03-2011 12:08 PM

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is on
Smilies are on
[IMG] code is on
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off


Post a Question


» Site Navigation
 > FAQ
  > 10.0.0.2
Powered by vBadvanced CMPS v3.2.3


All times are GMT -7. The time now is 12:18 AM.


Powered by vBulletin® Version 3.8.8
Copyright ©2000 - 2020, vBulletin Solutions, Inc.
vBulletin Security provided by vBSecurity v2.2.2 (Pro) - vBulletin Mods & Addons Copyright © 2020 DragonByte Technologies Ltd.
User Alert System provided by Advanced User Tagging v3.1.0 (Pro) - vBulletin Mods & Addons Copyright © 2020 DragonByte Technologies Ltd.
Copyright 2001 - 2018, Tech Support Forum

Windows 10 - Windows 7 - Windows XP - Windows Vista - Trojan Removal - Spyware Removal - Virus Removal - Networking - Security - Top Web Hosts