BFU v1.00.9
Windows XP (WinNT 5.01.2600 )
Script started at 12:49:28 PM, on 12/7/2006
Option Delete files to Recycle Bin: Yes
Failed: DllUnregister C:\Program Files\zango\zangohook.dll|1 (file not found)
Failed: DllUnregister C:\Program Files\Zango Programs\Zango Toolbar\ZangoTB.dll|1 (file not found)
Failed: DllUnregister \MedAccX.dll|1 (file not found)
Failed: DllUnregister \ZbHostIE.dll|1 (file not found)
Failed: FolderDelete C:\Documents and Settings\Computer\Start Menu\Programs\Zango (folder not found)
Failed: FolderDelete C:\Documents and Settings\Computer\Start Menu\Programs\Zango Games (folder not found)
Failed: FolderDelete C:\Program Files\MediaGateway (folder not found)
Failed: FolderDelete C:\Program Files\Zango Programs (folder not found)
Failed: FolderDelete C:\Program Files\Zango (folder not found)
Failed: FolderDelete C:\Program Files\ZangoClient (folder not found)
Failed: FolderDelete C:\Program Files\Zango Applications (folder not found)
Failed: FolderDelete C:\Program Files\Zango Games (folder not found)
Failed: FolderDelete C:\Program Files\ZangoToolbar (folder not found)
Failed: FolderDelete C:\Program Files\180SearchAssistant (folder not found)
Failed: FolderDelete C:\Program Files\Media Access (folder not found)
Failed: FolderDelete C:\Program Files\Media Pass (folder not found)
Failed: FileDelete C:\DOCUME~1\Computer\LOCALS~1\Temp\ZLT0756e.TMP (operation failed)
Failed: FileDelete C:\DOCUME~1\Computer\LOCALS~1\Temp\Perflib_Perfdata_6e4.dat (operation failed)
Failed: FileDelete C:\DOCUME~1\Computer\LOCALS~1\Temp\~DF98A1.tmp (operation failed)
Script completed.
Sophos Anti-Virus
Version 4.12.0 [Win32/Intel]
Virus data version 4.12, December 2006
Includes detection for 202200 viruses, trojans and worms
Copyright (c) 1989-2006 Sophos Plc,
www.sophos.com
System time 11:30:44, System date 07 December 2006
Command line qualifiers are: -f -remove -nc -nb --stop-scan
IDE directory is: C:\Documents and Settings\Computer\Desktop\SDFix\IDE
Using IDE file strat-bo.ide
Using IDE file dref-o.ide
Using IDE file legmi-yy.ide
Using IDE file rbot-fuo.ide
Using IDE file tileb-fy.ide
Using IDE file bckd-pnp.ide
Using IDE file agnt-dgy.ide
Using IDE file tibs-pf.ide
Using IDE file stex-a.ide
Using IDE file bancb-oj.ide
Using IDE file rbot-fus.ide
Using IDE file looke-ar.ide
Using IDE file line-aeh.ide
Using IDE file pitcom-c.ide
Using IDE file levona-b.ide
Using IDE file ds061113.ide
Using IDE file dropp-ma.ide
Using IDE file pardon-a.ide
Using IDE file sniffe-m.ide
Using IDE file tileb-hx.ide
Using IDE file delspy-e.ide
Using IDE file banc-api.ide
Using IDE file psyme-dd.ide
Using IDE file clagg-aj.ide
Using IDE file ldpin-op.ide
Using IDE file proxy-eu.ide
Using IDE file winspy-l.ide
Using IDE file ds061115.ide
Using IDE file mona-b.ide
Using IDE file banl-aqv.ide
Using IDE file ds061116.ide
Using IDE file qqpa-akl.ide
Using IDE file ntroo-av.ide
Using IDE file batkil-a.ide
Using IDE file zlob-nw.ide
Using IDE file tileb-hn.ide
Using IDE file backdr-c.ide
Using IDE file dwnl-fvg.ide
Using IDE file silly-e.ide
Using IDE file rungbu-c.ide
Using IDE file looke-av.ide
Using IDE file rbot-fwl.ide
Using IDE file nebul-m.ide
Using IDE file rbot-fwm.ide
Using IDE file strd-gen.ide
Using IDE file strat-bq.ide
Using IDE file vb-crj.ide
Using IDE file clagg-ak.ide
Using IDE file look-ax.ide
Using IDE file vixup-bz.ide
Using IDE file qqro-aba.ide
Using IDE file pardon-b.ide
Using IDE file looke-a.ide
Using IDE file looke-ay.ide
Using IDE file dloadaqk.ide
Using IDE file line-aeg.ide
Using IDE file medbot-b.ide
Using IDE file looke-aq.ide
Using IDE file bronto-m.ide
Using IDE file dloa-apl.ide
Using IDE file zlobat.ide
Using IDE file strat-ak.ide
Using IDE file adloa-kb.ide
Using IDE file clagg-al.ide
Using IDE file dload-yt.ide
Using IDE file clagg-am.ide
Using IDE file sdbo-cuj.ide
Using IDE file looke-az.ide
Using IDE file line-aeo.ide
Using IDE file wow-aj.ide
Using IDE file dnsbus-n.ide
Using IDE file nebule-n.ide
Using IDE file rbot-fwy.ide
Using IDE file zlob-wp.ide
Using IDE file strat-bv.ide
Using IDE file ds061127.ide
Using IDE file codeba-u.ide
Using IDE file zlob-wq.ide
Using IDE file feebszip.ide
Using IDE file dloa-akq.ide
Using IDE file ds061128.ide
Using IDE file agen-dsf.ide
Using IDE file dloa-aqn.ide
Using IDE file strat-cd.ide
Using IDE file clagg-an.ide
Using IDE file mytob-if.ide
Using IDE file look-ba.ide
Using IDE file spake-a.ide
Using IDE file zlob-wt.ide
Using IDE file rjump-h.ide
Using IDE file sohana-b.ide
Using IDE file newurg-a.ide
Using IDE file star-bda.ide
Using IDE file paprox-d.ide
Using IDE file dref-q.ide
Using IDE file dloa-aqs.ide
Using IDE file ds061130.ide
Using IDE file bckd-pqp.ide
Using IDE file bagle-qs.ide
Using IDE file strat-cf.ide
Using IDE file looke-bb.ide
Using IDE file nesht-a.ide
Using IDE file baglezip.ide
Using IDE file bagle-qt.ide
Using IDE file poebo-jd.ide
Using IDE file qqro-abd.ide
Using IDE file pardon-c.ide
Using IDE file banc-axx.ide
Using IDE file line-afb.ide
Using IDE file strat-aj.ide
Using IDE file looke-bc.ide
Using IDE file rjump-g.ide
Using IDE file vanity-a.ide
Using IDE file wow-im.ide
Using IDE file ds061204.ide
Using IDE file strat-cg.ide
Using IDE file rbot-fvz.ide
Using IDE file bombka-p.ide
Using IDE file banc-avs.ide
Using IDE file qqhelp-p.ide
Using IDE file strat-ch.ide
Using IDE file ds061205.ide
Using IDE file strat-ci.ide
Using IDE file strat-al.ide
Using IDE file kidala-i.ide
Using IDE file strd-fam.ide
Using IDE file remadm-p.ide
Using IDE file dloa-arb.ide
Using IDE file vb-cuz.ide
Using IDE file lowzo-ds.ide
Using IDE file dloadrwz.ide
Using IDE file murlo-q.ide
Using IDE file limpne-a.ide
Using IDE file dloa-are.ide
Full Scanning
>>> Virus 'Mal/Packer' found in file C:\WINDOWS\SYSTEM32\xvmhkehk.dll
Removal successful
Password protected file C:\Program Files\Adobe\Acrobat 6.0\Reader\Messages\ENU\RdrMsgENU.pdf
1 boot sector swept.
10121 files swept in 21 minutes and 32 seconds.
1 error was encountered.
1 virus was discovered.
1 file out of 10121 was infected.
Please send infected samples to Sophos for analysis.
For advice consult
www.sophos.com, email
[email protected]
or telephone +44 1235 559933
1 encrypted file was not checked.
Ending Sophos Anti-Virus.
Activescan:
Spyware:Spyware/Virtumonde Not disinfected C:\HJT\BACKUPS\backup-20061206-131953-260.dll
Spyware:Spyware/Virtumonde Not disinfected C:\WINDOWS\SYSTEM32\TTORAHLM.DLL
Adware:Adware/WebSearch Not disinfected C:\WINDOWS\SYSTEM32\JXJVNKKY.DLL
Spyware:Spyware/Virtumonde Not disinfected C:\WINDOWS\SYSTEM32\OAOSBKCU.DLL
Potentially unwanted tool:Application/VSToolbar Not disinfected C:\WINDOWS\SYSTEM32\PBCMYKUM.DLL
Potentially unwanted tool:Application/VSToolbar Not disinfected C:\WINDOWS\SYSTEM32\TXOUQBNY.EXE
Potentially unwanted tool:Application/P2PNetworking Not disinfected C:\WINDOWS\SYSTEM32\P2P Networking v126.cpl
Potentially unwanted tool:Application/VSToolbar Not disinfected C:\WINDOWS\SYSTEM32\NDWSKTXT.EXE
Possible Virus. Not disinfected C:\WINDOWS\SYSTEM32\XORKJRPI.EXE
Potentially unwanted tool:Application/VSToolbar Not disinfected C:\WINDOWS\SYSTEM32\NIKDBAVJ.EXE
Potentially unwanted tool:Application/VSToolbar Not disinfected C:\WINDOWS\SYSTEM32\UPRXUEXT.EXE
Potentially unwanted tool:Application/VSToolbar Not disinfected C:\WINDOWS\SYSTEM32\QFEELUOC.EXE
Spyware:Spyware/Virtumonde Not disinfected C:\WINDOWS\SYSTEM32\JAKSAEMK.DLL
Adware:Adware/WebSearch Not disinfected C:\WINDOWS\SYSTEM32\OKEQOFLV.DLL
Potentially unwanted tool:Application/VSToolbar Not disinfected C:\WINDOWS\SYSTEM32\VRKHTSGT.EXE
Spyware:Spyware/Virtumonde Not disinfected C:\WINDOWS\SYSTEM32\VQJBGWOK.DLL
Dialer:dialer.b Not disinfected C:\WINDOWS\tmlpcert2005
Adware:adware/webattaker Not disinfected C:\WINDOWS\UNIQ
Adware:adware/secure32 Not disinfected C:\WINDOWS\COUNTRY.EXE
Potentially unwanted tool:application/bestoffer Not disinfected C:\WINDOWS\SMDAT32M.SYS
Spyware:Spyware/Virtumonde Not disinfected C:\WINDOWS\ARSSM.DLL
Dialer

ialer.B Not disinfected C:\WINDOWS\Downloaded Program Files\IA.INF
Adware:Adware/WinAD Not disinfected C:\918.EXE[lc.exe]
Spyware:Spyware/Virtumonde Not disinfected C:\918.EXE[raser.exe]
Spyware:Cookie/bravenetA Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\
[email protected][1].txt.dat[Documents and Settings/Computer/Cookies/
[email protected][1].txt]
Spyware:Cookie/Traffic Marketplace Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\
[email protected][2].txt.dat[Documents and Settings/Computer/Cookies/
[email protected][2].txt]
Spyware:Cookie/Bluestreak Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\
[email protected][1].txt.dat[Documents and Settings/Computer/Cookies/
[email protected][1].txt]
Spyware:Cookie/Traffic Marketplace Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\
[email protected][3].txt.dat[Documents and Settings/Computer/Cookies/
[email protected][3].txt]
Spyware:Cookie/Belnk Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\
[email protected][1].txt.dat[Documents and Settings/Computer/Cookies/
[email protected][1].txt]
Potentially unwanted tool:Application/P2PNetworking Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\webp2pinstaller.dll.dat[WINDOWS/Downloaded Program Files/WebP2PInstaller.dll]
Spyware:Cookie/Belnk Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\
[email protected][2].txt.dat[Documents and Settings/Computer/Cookies/
[email protected][2].txt]
Spyware:Cookie/OfferOptimizer Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\
[email protected][3].txt.dat[Documents and Settings/Computer/Cookies/
[email protected][3].txt]
Spyware:Cookie/Azjmp Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\
[email protected][2].txt.dat[Documents and Settings/Computer/Cookies/
[email protected][2].txt]
Spyware:Cookie/OfferOptimizer Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\
[email protected][2].txt.dat[Documents and Settings/Computer/Cookies/
[email protected][2].txt]
Spyware:Cookie/Adserver Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\
[email protected][1].txt.dat[Documents and Settings/Computer/Cookies/
[email protected][1].txt]
Spyware:Cookie/Tribalfusion Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\
[email protected][2].txt.dat[Documents and Settings/Computer/Cookies/
[email protected][2].txt]
Spyware:Cookie/Tribalfusion Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\
[email protected][1].txt.dat[Documents and Settings/Computer/Cookies/
[email protected][1].txt]
Spyware:Cookie/AdDynamix Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\
[email protected][2].txt.dat[Documents and Settings/Computer/Cookies/
[email protected][2].txt]
Spyware:Cookie/YieldManager Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\
[email protected][1].txt.dat[Documents and Settings/Computer/Cookies/
[email protected][1].txt]
Spyware:Cookie/QuestionMarket Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\
[email protected][3].txt.dat[Documents and Settings/Computer/Cookies/
[email protected][3].txt]
Spyware:Cookie/YieldManager Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\
[email protected][2].txt.dat[Documents and Settings/Computer/Cookies/
[email protected][2].txt]
Spyware:Cookie/QuestionMarket Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\
[email protected][1].txt.dat[Documents and Settings/Computer/Cookies/
[email protected][1].txt]
Spyware:Cookie/RealMedia Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\
[email protected][1].txt.dat[Documents and Settings/Computer/Cookies/
[email protected][1].txt]
Spyware:Cookie/RealMedia Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\
[email protected][2].txt.dat[Documents and Settings/Computer/Cookies/
[email protected][2].txt]
Spyware:Cookie/Falkag Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\
[email protected][3].txt.dat[Documents and Settings/Computer/Cookies/
[email protected][3].txt]
Spyware:Cookie/Falkag Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\
[email protected][2].txt.dat[Documents and Settings/Computer/Cookies/
[email protected][2].txt]
Adware:Adware/Dyfuca Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\nem220[1].dll.dat[Documents and Settings/LocalService/Local Settings/Temporary Internet Files/Content.IE5/2TO7YD2H/nem220[1].dll]
Spyware:Cookie/Casalemedia Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\
[email protected][2].txt.dat[Documents and Settings/Computer/Cookies/
[email protected][2].txt]
Spyware:Cookie/BurstNet Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\
[email protected][1].txt.dat[Documents and Settings/Computer/Cookies/
[email protected][1].txt]
Spyware:Cookie/BurstNet Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\
[email protected][2].txt.dat[Documents and Settings/Computer/Cookies/
[email protected][2].txt]
Potentially unwanted tool:Application/Processor Not disinfected C:\Documents and Settings\Computer\My Documents\SDFix.zip[SDFix/apps/Process.exe]
Potentially unwanted tool:Application/Processor Not disinfected
---------------------------------------------------------
AVG Anti-Spyware - Scan Report
---------------------------------------------------------
+ Created at: 12:58:15 AM 12/7/2006
+ Scan result:
HKLM\SOFTWARE\Classes\SigningModule.SigningModule -> Adware.Altnet : Ignored.
HKLM\SOFTWARE\Classes\SigningModule.SigningModule.1 -> Adware.Altnet : Ignored.
HKLM\SOFTWARE\Classes\SigningModule.SigningModule\CLSID -> Adware.Altnet : Ignored.
HKLM\SOFTWARE\Classes\SigningModule.SigningModule\CurVer -> Adware.Altnet : Ignored.
C:\WINDOWS\SYSTEM32\vxwfpwgd.dll -> Adware.BHO : Ignored.
HKLM\SOFTWARE\Classes\CLSID\{23E29B01-78ED-B227-C0D9-7F01F2621B9A} -> Adware.CoolWebSearch : Ignored.
HKLM\SOFTWARE\Classes\CLSID\{3C21EAED-F454-E176-15F0-6596002902B8} -> Adware.CoolWebSearch : Ignored.
HKLM\SOFTWARE\Classes\CLSID\{42B625C4-F206-ADFA-4FA4-AC97FDC73591} -> Adware.CoolWebSearch : Ignored.
HKLM\SOFTWARE\Classes\CLSID\{61675AEA-0AAC-FB29-2A8B-E712314B4A52} -> Adware.CoolWebSearch : Ignored.
HKLM\SOFTWARE\Classes\CLSID\{658FA8D3-31A4-2B28-01F7-6BA9B4C9F68F} -> Adware.CoolWebSearch : Ignored.
HKLM\SOFTWARE\Classes\CLSID\{759118BB-AC07-5964-50D8-10B5ADE220AB} -> Adware.CoolWebSearch : Ignored.
HKLM\SOFTWARE\Classes\CLSID\{8F534F76-94D1-789D-5A3D-063BABD3B7B6} -> Adware.CoolWebSearch : Ignored.
HKLM\SOFTWARE\Classes\CLSID\{910D4451-D597-05F5-D318-00556258E9E2} -> Adware.CoolWebSearch : Ignored.
HKLM\SOFTWARE\Classes\CLSID\{95BB3438-0B60-B4FB-A68F-174D498229E8} -> Adware.CoolWebSearch : Ignored.
HKLM\SOFTWARE\Classes\CLSID\{A037137B-6D52-E750-DE3A-846C338DBEF9} -> Adware.CoolWebSearch : Ignored.
HKLM\SOFTWARE\Classes\CLSID\{B264BD6E-DBFC-36A5-E38B-227DFE3A044B} -> Adware.CoolWebSearch : Ignored.
HKLM\SOFTWARE\Classes\CLSID\{CBD77B3F-8090-DD29-E058-34289DE3949A} -> Adware.CoolWebSearch : Ignored.
HKLM\SOFTWARE\Classes\CLSID\{DC0E40FD-D633-7594-A016-624F4172C934} -> Adware.CoolWebSearch : Ignored.
C:\Program Files\Enigma Software Group\SpyHunter\Backup\webp2pinstaller.dll.dat/WINDOWS/Downloaded Program Files/WebP2PInstaller.dll -> Adware.PeerNet : Ignored.
HKLM\SOFTWARE\Classes\CLSID\{59879FA4-4790-461c-A1CC-4EC4DE4CA483} -> Adware.RXToolbar : Ignored.
HKU\S-1-5-21-1004336348-706699826-1343024091-1006\Software\RX Toolbar -> Adware.RXToolbar : Ignored.
C:\WINDOWS\SYSTEM32\awtuv.dll -> Adware.Virtumonde : Ignored.
C:\WINDOWS\SYSTEM32\byvsq.dll -> Adware.Virtumonde : Ignored.
C:\WINDOWS\SYSTEM32\byxxu.dll -> Adware.Virtumonde : Ignored.
C:\WINDOWS\SYSTEM32\byxyx.dll -> Adware.Virtumonde : Ignored.
C:\WINDOWS\SYSTEM32\efeca.dll -> Adware.Virtumonde : Ignored.
C:\WINDOWS\SYSTEM32\gebbc.dll -> Adware.Virtumonde : Ignored.
C:\WINDOWS\SYSTEM32\geeff.dll -> Adware.Virtumonde : Ignored.
C:\WINDOWS\SYSTEM32\hgdcy.dll -> Adware.Virtumonde : Ignored.
C:\WINDOWS\SYSTEM32\hggfe.dll -> Adware.Virtumonde : Ignored.
C:\WINDOWS\SYSTEM32\jkhef.dll -> Adware.Virtumonde : Ignored.
C:\WINDOWS\SYSTEM32\jkkjk.dll -> Adware.Virtumonde : Ignored.
C:\WINDOWS\SYSTEM32\khhef.dll -> Adware.Virtumonde : Ignored.
C:\WINDOWS\SYSTEM32\ljhfc.dll -> Adware.Virtumonde : Ignored.
C:\WINDOWS\SYSTEM32\ljhig.dll -> Adware.Virtumonde : Ignored.
C:\WINDOWS\SYSTEM32\ljjjj.dll -> Adware.Virtumonde : Ignored.
C:\WINDOWS\SYSTEM32\mllig.dll -> Adware.Virtumonde : Ignored.
C:\WINDOWS\SYSTEM32\mlljg.dll -> Adware.Virtumonde : Ignored.
C:\WINDOWS\SYSTEM32\mllki.dll -> Adware.Virtumonde : Ignored.
C:\WINDOWS\SYSTEM32\opnkk.dll -> Adware.Virtumonde : Ignored.
C:\WINDOWS\SYSTEM32\opnlk.dll -> Adware.Virtumonde : Ignored.
C:\WINDOWS\SYSTEM32\oppqq.dll -> Adware.Virtumonde : Ignored.
C:\WINDOWS\SYSTEM32\rqrop.dll -> Adware.Virtumonde : Ignored.
C:\WINDOWS\SYSTEM32\rqrqp.dll -> Adware.Virtumonde : Ignored.
C:\WINDOWS\SYSTEM32\ssqno.dll -> Adware.Virtumonde : Ignored.
C:\WINDOWS\SYSTEM32\wvuuv.dll -> Adware.Virtumonde : Ignored.
C:\WINDOWS\SYSTEM32\wvwvv.dll -> Adware.Virtumonde : Ignored.
C:\WINDOWS\SYSTEM32\xxwtu.dll -> Adware.Virtumonde : Ignored.
C:\WINDOWS\SYSTEM32\xxyab.dll -> Adware.Virtumonde : Ignored.
C:\WINDOWS\SYSTEM32\yabxu.dll -> Adware.Virtumonde : Ignored.
HKLM\SOFTWARE\Classes\CLSID\{EA32FB3B-21C9-42cc-B8EF-01A9B28EDB0D} -> Adware.Virtumonde : Ignored.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA32FB3B-21C9-42cc-B8EF-01A9B28EDB0D} -> Adware.Virtumonde : Ignored.
[1436] C:\WINDOWS\System32\fcyvv.dll -> Adware.Virtumonde : Ignored.
[380] C:\WINDOWS\system32\fcyvv.dll -> Adware.Virtumonde : Ignored.
C:\98.exe -> Adware.WinAD : Ignored.
C:\WINDOWS\SYSTEM32\vmdriver.exe -> Backdoor.Delf.atg : Ignored.
C:\WINDOWS\SYSTEM32\csrs.exe -> Backdoor.IRCBot.fv : Ignored.
C:\WINDOWS\SYSTEM32\TFTP3124 -> Backdoor.SdBot.abk : Ignored.
C:\WINDOWS\SYSTEM32\TFTP464 -> Backdoor.SdBot.abk : Ignored.
C:\WINDOWS\SYSTEM32\mouse.exe -> Backdoor.SdBot.abk : Ignored.
C:\WINDOWS\pojmz.exe -> Downloader.Agent.bc : Ignored.
C:\WINDOWS\SYSTEM32\addbd32.dll -> Downloader.Agent.bq : Ignored.
C:\WINDOWS\SYSTEM32\ipee.dll -> Downloader.Agent.bq : Ignored.
C:\WINDOWS\SYSTEM32\winje.exe -> Downloader.Agent.bq : Ignored.
C:\WINDOWS\d3jc.dll -> Downloader.Agent.bq : Ignored.
C:\WINDOWS\trqccg.dat -> Downloader.Agent.bq : Ignored.
C:\WINDOWS\uqwssc.dat -> Downloader.Agent.bq : Ignored.
C:\WINDOWS\uxwfjf.dat -> Downloader.Agent.bq : Ignored.
HKLM\SOFTWARE\Classes\CLSID\{00DBDAC8-4691-4797-8E6A-7C6AB89BC441} -> Downloader.ConHook.l : Ignored.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{00DBDAC8-4691-4797-8E6A-7C6AB89BC441} -> Downloader.ConHook.l : Ignored.
C:\WINDOWS\SYSTEM32\byxuu.dll -> Downloader.ConHook.r : Ignored.
C:\WINDOWS\SYSTEM32\ddaya.dll -> Downloader.ConHook.r : Ignored.
C:\WINDOWS\SYSTEM32\efcax.dll -> Downloader.ConHook.r : Ignored.
C:\WINDOWS\SYSTEM32\efeee.dll -> Downloader.ConHook.r : Ignored.
C:\WINDOWS\SYSTEM32\fcyvv.dll -> Downloader.ConHook.r : Ignored.
C:\WINDOWS\SYSTEM32\fcyxx.dll -> Downloader.ConHook.r : Ignored.
C:\WINDOWS\SYSTEM32\hgdaw.dll -> Downloader.ConHook.r : Ignored.
C:\WINDOWS\SYSTEM32\jkheb.dll -> Downloader.ConHook.r : Ignored.
C:\WINDOWS\SYSTEM32\khhgf.dll -> Downloader.ConHook.r : Ignored.
C:\WINDOWS\SYSTEM32\ljhhf.dll -> Downloader.ConHook.r : Ignored.
C:\WINDOWS\SYSTEM32\mllll.dll -> Downloader.ConHook.r : Ignored.
C:\WINDOWS\SYSTEM32\nnnkk.dll -> Downloader.ConHook.r : Ignored.
C:\WINDOWS\SYSTEM32\nnnli.dll -> Downloader.ConHook.r : Ignored.
C:\WINDOWS\SYSTEM32\opnom.dll -> Downloader.ConHook.r : Ignored.
C:\WINDOWS\SYSTEM32\qoppm.dll -> Downloader.ConHook.r : Ignored.
C:\WINDOWS\SYSTEM32\rqonk.dll -> Downloader.ConHook.r : Ignored.
C:\WINDOWS\SYSTEM32\rqrqo.dll -> Downloader.ConHook.r : Ignored.
C:\WINDOWS\SYSTEM32\tuspn.dll -> Downloader.ConHook.r : Ignored.
C:\WINDOWS\SYSTEM32\tusqr.dll -> Downloader.ConHook.r : Ignored.
C:\WINDOWS\SYSTEM32\urqnm.dll -> Downloader.ConHook.r : Ignored.
C:\WINDOWS\SYSTEM32\vtstu.dll -> Downloader.ConHook.r : Ignored.
C:\WINDOWS\SYSTEM32\xxwts.dll -> Downloader.ConHook.r : Ignored.
C:\WINDOWS\SYSTEM32\yabca.dll -> Downloader.ConHook.r : Ignored.
C:\WINDOWS\SYSTEM32\yayax.dll -> Downloader.ConHook.r : Ignored.
C:\Program Files\Enigma Software Group\SpyHunter\Backup\nem220[1].dll.dat/Documents and Settings/LocalService/Local Settings/Temporary Internet Files/Content.IE5/2TO7YD2H/nem220[1].dll -> Downloader.Dyfuca : Ignored.
C:\WINDOWS\Downloaded Program Files\USYP_0001_N76M2004NetInstaller.exe -> Downloader.Small : Ignored.
C:\Program Files\Enigma Software Group\SpyHunter\Backup\
[email protected][1].txt.dat/Documents and Settings/Computer/Cookies/
[email protected][1].txt -> TrackingCookie.2o7 : Ignored.
C:\Program Files\Enigma Software Group\SpyHunter\Backup\
[email protected][2].txt.dat/Documents and Settings/Computer/Cookies/
[email protected][2].txt -> TrackingCookie.2o7 : Ignored.
C:\Program Files\Enigma Software Group\SpyHunter\Backup\
[email protected][2].txt.dat/Documents and Settings/Computer/Cookies/
[email protected][2].txt -> TrackingCookie.Addynamix : Ignored.
C:\Program Files\Enigma Software Group\SpyHunter\Backup\
[email protected][1].txt.dat/Documents and Settings/Computer/Cookies/
[email protected][1].txt -> TrackingCookie.Admarketplace : Ignored.
C:\Program Files\Enigma Software Group\SpyHunter\Backup\
[email protected][1].txt.dat/Documents and Settings/Computer/Cookies/
[email protected][1].txt -> TrackingCookie.Adserver : Ignored.
C:\Program Files\Enigma Software Group\SpyHunter\Backup\
[email protected][1].txt.dat/Documents and Settings/Computer/Cookies/
[email protected][1].txt -> TrackingCookie.Bluestreak : Ignored.
C:\Program Files\Enigma Software Group\SpyHunter\Backup\
[email protected][1].txt.dat/Documents and Settings/Computer/Cookies/
[email protected][1].txt -> TrackingCookie.Burstnet : Ignored.
C:\Program Files\Enigma Software Group\SpyHunter\Backup\
[email protected][2].txt.dat/Documents and Settings/Computer/Cookies/
[email protected][2].txt -> TrackingCookie.Burstnet : Ignored.
C:\Program Files\Enigma Software Group\SpyHunter\Backup\
[email protected][2].txt.dat/Documents and Settings/Computer/Cookies/
[email protected][2].txt -> TrackingCookie.Burstnet : Ignored.
C:\Program Files\Enigma Software Group\SpyHunter\Backup\
[email protected][2].txt.dat/Documents and Settings/Computer/Cookies/
[email protected][2].txt -> TrackingCookie.Casalemedia : Ignored.
C:\Program Files\Enigma Software Group\SpyHunter\Backup\
[email protected][2].txt.dat/Documents and Settings/Computer/Cookies/
[email protected][2].txt -> TrackingCookie.Falkag : Ignored.
C:\Program Files\Enigma Software Group\SpyHunter\Backup\
[email protected][3].txt.dat/Documents and Settings/Computer/Cookies/
[email protected][3].txt -> TrackingCookie.Falkag : Ignored.
C:\Program Files\Enigma Software Group\SpyHunter\Backup\
[email protected][1].txt.dat/Documents and Settings/Computer/Cookies/
[email protected][1].txt -> TrackingCookie.Falkag : Ignored.
C:\Program Files\Enigma Software Group\SpyHunter\Backup\
[email protected][1].txt.dat/Documents and Settings/Computer/Cookies/
[email protected][1].txt -> TrackingCookie.Questionmarket : Ignored.
C:\Program Files\Enigma Software Group\SpyHunter\Backup\
[email protected][3].txt.dat/Documents and Settings/Computer/Cookies/
[email protected][3].txt -> TrackingCookie.Questionmarket : Ignored.
C:\Program Files\Enigma Software Group\SpyHunter\Backup\
[email protected][2].txt.dat/Documents and Settings/Computer/Cookies/
[email protected][2].txt -> TrackingCookie.Ru4 : Ignored.
C:\Program Files\Enigma Software Group\SpyHunter\Backup\
[email protected][3].txt.dat/Documents and Settings/Computer/Cookies/
[email protected][3].txt -> TrackingCookie.Ru4 : Ignored.
C:\Program Files\Enigma Software Group\SpyHunter\Backup\
[email protected][2].txt.dat/Documents and Settings/Computer/Cookies/
[email protected][2].txt -> TrackingCookie.Trafficmp : Ignored.
C:\Program Files\Enigma Software Group\SpyHunter\Backup\
[email protected][3].txt.dat/Documents and Settings/Computer/Cookies/
[email protected][3].txt -> TrackingCookie.Trafficmp : Ignored.
C:\Program Files\Enigma Software Group\SpyHunter\Backup\
[email protected][1].txt.dat/Documents and Settings/Computer/Cookies/
[email protected][1].txt -> TrackingCookie.Tribalfusion : Ignored.
C:\Program Files\Enigma Software Group\SpyHunter\Backup\
[email protected][2].txt.dat/Documents and Settings/Computer/Cookies/
[email protected][2].txt -> TrackingCookie.Tribalfusion : Ignored.
C:\Program Files\Enigma Software Group\SpyHunter\Backup\
[email protected][1].txt.dat/Documents and Settings/Computer/Cookies/
[email protected][1].txt -> TrackingCookie.Yieldmanager : Ignored.
C:\Program Files\Enigma Software Group\SpyHunter\Backup\
[email protected][2].txt.dat/Documents and Settings/Computer/Cookies/
[email protected][2].txt -> TrackingCookie.Yieldmanager : Ignored.
C:\WINDOWS\SYSTEM32\xpwyynus.dll -> Trojan.BHO.g : Ignored.
::Report end