Tech Support banner
Status
Not open for further replies.
1 - 4 of 4 Posts

·
Registered
Joined
·
5 Posts
Discussion Starter · #1 ·
The error is similiar to the way Worm.32 worked. It give exactly 60 seconds, I've ran adaware, spybot, avast, even the worm blaster and trenmicro. Non Solved the propblem. I'm unable to actually capture the exact error, but like i said it looks exactly like the worm32 execpt there is no mention of RPC it actually says its related to "services.exe"...Please help this is really bugging me.

Heres the HiJacklog.

Logfile of HijackThis v1.99.1
Scan saved at 7:32:15 PM, on 1/3/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5730.0011)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\LEXPPS.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\CA\CA Internet Security Suite\CA Anti-Virus\ISafe.exe
C:\WINDOWS\system32\cisvc.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\CA\CA Internet Security Suite\CA Anti-Virus\VetMsg.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\Explorer.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\support.com\bin\tgcmd.exe
C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Dell\Media Experience\PCMService.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb0 5.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\System32\DSentry.exe
C:\Program Files\DIGStream\digstream.exe
C:\Program Files\ESPNRunTime\DIGServices.exe
C:\Program Files\Dell AIO Printer A920\dlbkbmgr.exe
C:\Program Files\CA\CA Internet Security Suite\cctray\cctray.exe
C:\Program Files\CA\CA Internet Security Suite\CA Anti-Virus\CAVRID.exe
C:\Program Files\Google\GoogleToolbarNotifier\1.2.908.5008\Go ogleToolbarNotifier.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Dell AIO Printer A920\dlbkbmon.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Joe Kish\Desktop\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell4me.com/myway
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://aimhome.netscape.com/aimhome.adp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = about:blank
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.dell4me.com/myway
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer presented by Comcast
F2 - REG:system.ini: Shell=Explorer.exe
N4 - Mozilla: user_pref("browser.startup.homepage", "http://home.netscape.com/bookmark/7_1/home.html"); (C:\Documents and Settings\Joe Kish\Application Data\Mozilla\Profiles\default\uxk0dsk0.slt\prefs.j s)
N4 - Mozilla: user_pref("browser.search.defaultengine", "engine://C%3A%5CPROGRA%7E1%5CNETSCAPE%5CNETSCAPE%5Csearchpl ugins%5CSBWeb_01.src"); (C:\Documents and Settings\Joe Kish\Application Data\Mozilla\Profiles\default\uxk0dsk0.slt\prefs.j s)
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: (no name) - {77701e16-9bfe-4b63-a5b4-7bd156758a37} - (no file)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll
O3 - Toolbar: (no name) - {2CDE1A7D-A478-4291-BF31-E1B4C16F92EB} - (no file)
O3 - Toolbar: &ESPN - {AE6F2894-AF10-4C9C-B16E-1DFC6FF8C0C6} - C:\Program Files\ESPN\Toolbar\DIGToolBar.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [tgcmd] "C:\Program Files\support.com\bin\tgcmd.exe" /server
O4 - HKLM\..\Run: [StorageGuard] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\Media Experience\PCMService.exe"
O4 - HKLM\..\Run: [mswspl] "c:\PROGRA~1\mcafee.com\vso\mcvsshld.exe"
O4 - HKLM\..\Run: [iTunesHelper] C:\Program Files\iTunes\iTunesHelper.exe
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb0 5.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [EbatesMoeMoneyMaker0] "C:\Program Files\Ebates_MoeMoneyMaker\EbatesMoeMoneyMaker0.ex e"
O4 - HKLM\..\Run: [DVDSentry] C:\WINDOWS\System32\DSentry.exe
O4 - HKLM\..\Run: [DIGStream] C:\Program Files\DIGStream\digstream.exe
O4 - HKLM\..\Run: [DIGServices] C:\Program Files\ESPNRunTime\DIGServices.exe /brand=ESPN /priority=0 /poll=24
O4 - HKLM\..\Run: [Dell AIO Printer A920] "C:\Program Files\Dell AIO Printer A920\dlbkbmgr.exe"
O4 - HKLM\..\Run: [MSKDetectorExe] C:\Program Files\McAfee\SpamKiller\MSKDetct.exe /uninstall
O4 - HKLM\..\Run: [cctray] "C:\Program Files\CA\CA Internet Security Suite\cctray\cctray.exe"
O4 - HKLM\..\Run: [CAVRID] "C:\Program Files\CA\CA Internet Security Suite\CA Anti-Virus\CAVRID.exe"
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.908.5008\Go ogleToolbarNotifier.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Global Startup: Digital Line Detect.lnk = ?
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: &AIM Search - res://C:\Program Files\AIM Toolbar\AIMBar.dll/aimsearch.htm
O8 - Extra context menu item: &Viewpoint Search - res://C:\Program Files\Viewpoint\Viewpoint Toolbar\ViewBar.dll/CXTSEARCH.HTML
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Ebates - file://C:\Program Files\Ebates_MoeMoneyMaker\Sy350\Tp350\scri350a.ht m
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2\bin\npjpi142.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2\bin\npjpi142.dll
O9 - Extra button: ComcastHSI - {669B269B-0D4E-41FB-A3D8-FD67CA94F646} - http://www.comcast.net/ (file missing)
O9 - Extra button: Support - {8828075D-D097-4055-AA02-2DBFA9D85E8A} - http://www.comcastsupport.com/ (file missing)
O9 - Extra button: Help - {97809617-3937-4F84-B335-9BB05EF1A8D4} - http://online.comcast.net/help/ (file missing)
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: Ebates - {6685509E-B47B-4f47-8E16-9A5F3A62F683} - file://C:\Program Files\Ebates_MoeMoneyMaker\Sy350\Tp350\scri350a.ht m (file missing) (HKCU)
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} - http://download.mcafee.com/molbin/sh...1/mcinsctl.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsof...?1166366728109
O16 - DPF: {70522FA2-4656-11D5-B0E9-0050DAC24E8F} - http://cc.iwon.com/ct/pm3/iWonPMSetup_12_1,0,2,5.exe
O16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} - http://download.mcafee.com/molbin/sh...26/mcgdmgr.cab
O20 - AppInit_DLLs: hhselz32.dll confbrw.dll brwstat.dll t
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O20 - Winlogon Notify: winftsap - C:\WINDOWS\
O23 - Service: CAISafe - Computer Associates International, Inc. - C:\Program Files\CA\CA Internet Security Suite\CA Anti-Virus\ISafe.exe
O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
O23 - Service: Trend Micro Central Control Component (PcCtlCom) - Unknown owner - C:\PROGRA~1\TRENDM~1\INTERN~1\PcCtlCom.exe (file missing)
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Trend Micro Real-time Service (Tmntsrv) - Unknown owner - C:\PROGRA~1\TRENDM~1\INTERN~1\Tmntsrv.exe (file missing)
O23 - Service: Trend Micro Personal Firewall (TmPfw) - Unknown owner - C:\PROGRA~1\TRENDM~1\INTERN~1\TmPfw.exe (file missing)
O23 - Service: Trend Micro Proxy Service (tmproxy) - Unknown owner - C:\PROGRA~1\TRENDM~1\INTERN~1\tmproxy.exe (file missing)
O23 - Service: VET Message Service (VETMSGNT) - CA, Inc. - C:\Program Files\CA\CA Internet Security Suite\CA Anti-Virus\VetMsg.exe
 

·
Registered
Joined
·
2,506 Posts
Hello xHeXed, welcome to TSF and thanks for your patience. You may wish to Subscribe to this thread so that you are notified when you receive a reply. To do this click Thread Tools (above the first post), then click Subscribe to this Thread. Make sure it is set to Instant Notification, then click Subscribe.

Please print out or copy this page to Notepad in order to assist you when carrying out the following instructions. If there is anything you don't understand, please ask BEFORE proceeding with the fixes. Please do these steps in order and do not skip any.

Unhide Files
Go to My Computer > Tools > Folder Options > View tab and select "Show hidden files and folders". Uncheck the "Hide protected operating system files (Recommended)" option. Also make sure there is no checkmark beside "Hide file extensions for known file types". Click OK.

Download CleanUp!
Download and install CleanUp! but do not run it yet. (alternate link if main link isn't working: http://www.greyknight17.com/spy/CleanUp.exe)

WARNING: CleanUp! deletes EVERYTHING out of temporary folders and does not make backups. If you have any documents or programs that are saved in any temporary folders, please make a backup of these before running CleanUp!

WARNING: Do not run cleanup under Windows XP x64 Edition. If you're not sure if you have the 64-bit version of Windows then you probably do not; however, you can check by using IE to download the whichcpu tool and then running it.


Download AVG Anti-Spyware
Please download, install, and update AVG Anti-Spyware.
  1. Load AVG Anti-Spyware and then click the Shield tab at the top
    • Click on the word active to change it to inactive.
  2. Click the Update tab at the top:
    • Under Manual update, click Start update. After the update finishes, the status bar at the bottom will display "Update successful". If you are having trouble updating, you can also download and run the manual updater.
    • Under Automatic update, change the Update interval to something more reasonable like 12 or 24 hours.
  3. Click the Scanner tab at the top and then the Settings sub-tab:
    • Under How to act?, click Recommended actions and select Quarantine.
    • Under Reports, select Automatically generate report after every scan
  4. Close AVG Anti-Spyware. Do not run a scan with it yet.

Uninstall
Click Start > Control Panel > Add / Remove Programs and uninstall the following programs (if they exist):

Ebates or Ebates_MoeMoneyMaker
Viewpoint Toolbar
Please let me know if any of these were unable to uninstall.


Reboot
Reboot your system to Safe Mode by repeatedly tapping the F8 key until the menu appears and choosing Safe Mode from the list. On some systems, this may be the F5 key so try that if F8 doesn't work. Login on with your usual account. Make sure to close any open windows.


HijackThis Fixes
Open HijackThis and click on 'Do a System Scan Only'. Check the following entries if they still exist (make sure you do not miss any):
O2 - BHO: (no name) - {77701e16-9bfe-4b63-a5b4-7bd156758a37} - (no file)
O3 - Toolbar: (no name) - {2CDE1A7D-A478-4291-BF31-E1B4C16F92EB} - (no file)
O4 - HKLM\..\Run: [EbatesMoeMoneyMaker0] "C:\Program Files\Ebates_MoeMoneyMaker\EbatesMoeMoneyMaker0.exe"
O8 - Extra context menu item: &Viewpoint Search - res://C:\Program Files\Viewpoint\Viewpoint Toolbar\ViewBar.dll/CXTSEARCH.HTML
O8 - Extra context menu item: Ebates - file://C:\Program Files\Ebates_MoeMoneyMaker\Sy350\Tp350\scri350a.htm
O9 - Extra button: Ebates - {6685509E-B47B-4f47-8E16-9A5F3A62F683} - file://C:\Program Files\Ebates_MoeMoneyMaker\Sy350\Tp350\scri350a.ht m (file missing) (HKCU)
O16 - DPF: {70522FA2-4656-11D5-B0E9-0050DAC24E8F} - http://cc.iwon.com/ct/pm3/iWonPMSetup_12_1,0,2,5.exe
O20 - AppInit_DLLs: hhselz32.dll confbrw.dll brwstat.dll t
O20 - Winlogon Notify: winftsap - C:\WINDOWS\
Please remember to close all other windows, including browsers then click Fix checked. Close HijackThis.


Deletions
Delete the following Files indicated in RED and Folders indicated in BLUE if they still exist.
C:\Program Files\Ebates_MoeMoneyMaker
C:\Program Files\Viewpoint
C:\WINDOWS\system32\brwstat.dll
C:\WINDOWS\system32\comrkbdd.exe
C:\WINDOWS\system32\confbrw.dll
C:\WINDOWS\system32\e1.dll
C:\WINDOWS\system32\hhselz32.dll
C:\WINDOWS\system32\kbdpkbdr.exe
C:\WINDOWS\system32\mrhomghxqe.exe
C:\WINDOWS\system32\mslsicwd.dll
C:\WINDOWS\system32\winftsap.dll
C:\WINDOWS\system32\winftsap.exe
C:\WINDOWS\cserv32.exe
C:\WINDOWS\cserv32.s
C:\WINDOWS\cserv32.wax


Run CleanUp!
Open Cleanup! by double-clicking the icon on your desktop (or from the Start > All Programs menu). Set the program up as follows:
  • Click "Options..."
  • Move the arrow down to "Custom CleanUp!"
  • Put a check next to the following:
    • Empty Recycle Bins
    • Delete Cookies
    • Delete Prefetch files
    • Cleanup! All Users
    • Click on the "Temporary Files" and make sure the box for "Scan drives for file matching" is unchecked.
    Click OK.
  • Press the CleanUp! button to start the program.
Once it's finished CleanUp! will ask you to logoff/reboot. Please select NO as we will do this later.


Run AVG Anti-Spyware
  • Run AVG Anti-Spyware and click on the Scanner tab at the top and then click on Complete System Scan. This scan can take quite a while to run, so be prepared.
  • AVG Anti-Spyware will list any infections found on the left hand side. When the scan has finished, it will automatically set the recommended action.
  • If Set all elements to is not set to Quarantine (1), please click Recommended Action and choose Quarantine from the popup menu (2).
  • At the bottom of the window, click on the Apply all actions button (3).
  • When it has finished, click the Save Scan Report button (4), then click Save Report As and save the report it to your desktop.
  • Close AVG Anti-Spyware.

Reboot
Reboot your system to Normal Mode.


Online Scan
Perform an online scan using Internet Explorer with Kaspersky WebScanner. Click on Launch Kaspersky Anti-Virus Web Scanner. You will be prompted to install an ActiveX component from Kaspersky, Click Yes.
  • The program will launch and then begin downloading the latest definition files.
  • Once the files have been downloaded, click on NEXT.
  • Now click on Scan Settings
  • In the scan settings make that the following are selected:
    • Scan using the following Anti-Virus database: extended
    • Scan Options: Scan Archives and Scan Mail Bases
  • Click OK
  • Turn off the real time scanner of any existing antivirus program before performing the online scan. You can turn it back on after the scan is done.
  • Now under select a target to scan, select My Computer
  • The program will start and scan your system.
  • The scan will take a while so be patient and let it run all the way.
  • Once the scan is complete it will display if your system has been infected.
  • Click on the Save as Text button and save the file to your desktop.
  • Copy and paste that information in your next post.
Take note the names and locations of any file it detects but fails to clean.


Download Autoruns
  • Please download Autoruns and AutoCmd.
  • Extract the contents of Autoruns into a new folder.
  • Now extract the contents of AutoCmd into the same folder as Autoruns. This is important!
  • Double-click on AutoCmd.cmd & select option '1'
  • It will produce a log called autoruns_X_Y.txt (where X and Y are the date and time respectively). Please attach the log in your next reply.

Generate An Uninstall List
  • Open HijackThis.
  • Click on the "Configure" button on the bottom right.
  • Click on the tab "Misc Tools".
  • Click on the Box that says "Open Uninstall Manager".
  • Click on the button "Save list"
Please save a copy and paste the contents with your next reply.


With Your Next Post...
Please paste the following with your next reply (in this order please):
  1. AVG Anti-Spyware scan report,
  2. Kaspersky scan report,
  3. your Autoruns log,
  4. your uninstall list, and
  5. a new HiJackThis log taken after Kaspersky finishes.
 

·
Registered
Joined
·
5 Posts
Discussion Starter · #3 ·
Reports from Scans

Thanks Deckard for the help I REALLY APPRECIATE IT.

Here are the scan reports.

1.AVG -
---------------------------------------------------------
AVG Anti-Spyware - Scan Report
---------------------------------------------------------

+ Created at: 11:50:49 PM 1/5/2007

+ Scan result:



C:\Program Files\AWS\WeatherBug\MiniBugTransporter.dll -> Adware.Aws : Cleaned with backup (quarantined).
C:\Program Files\iWon\iWonBar\1.bin\IWONBAR.DLL -> Adware.IWon : Cleaned with backup (quarantined).
HKLM\SOFTWARE\SearchUpgrader -> Adware.KeenValue : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP2\A0001043.exe -> Not-A-Virus.Downloader.Win32.DigStream.a : Cleaned with backup (quarantined).
:mozilla.10:C:\Documents and Settings\Kristen Bougher\Application Data\Mozilla\Profiles\default\0qrk67nn.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.11:C:\Documents and Settings\Kristen Bougher\Application Data\Mozilla\Profiles\default\0qrk67nn.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.12:C:\Documents and Settings\Kristen Bougher\Application Data\Mozilla\Profiles\default\0qrk67nn.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.13:C:\Documents and Settings\Kristen Bougher\Application Data\Mozilla\Profiles\default\0qrk67nn.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.14:C:\Documents and Settings\Kristen Bougher\Application Data\Mozilla\Profiles\default\0qrk67nn.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.15:C:\Documents and Settings\Kristen Bougher\Application Data\Mozilla\Profiles\default\0qrk67nn.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.16:C:\Documents and Settings\Joe Kish\Application Data\Netscape\NSAE\Profiles\j30lrid2.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.16:C:\Documents and Settings\Kristen Bougher\Application Data\Mozilla\Profiles\default\0qrk67nn.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.17:C:\Documents and Settings\Kristen Bougher\Application Data\Mozilla\Profiles\default\0qrk67nn.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.18:C:\Documents and Settings\Kristen Bougher\Application Data\Mozilla\Profiles\default\0qrk67nn.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.19:C:\Documents and Settings\Kristen Bougher\Application Data\Mozilla\Profiles\default\0qrk67nn.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.20:C:\Documents and Settings\Kristen Bougher\Application Data\Mozilla\Profiles\default\0qrk67nn.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.21:C:\Documents and Settings\Kristen Bougher\Application Data\Mozilla\Profiles\default\0qrk67nn.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.22:C:\Documents and Settings\Kristen Bougher\Application Data\Mozilla\Profiles\default\0qrk67nn.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.23:C:\Documents and Settings\Kristen Bougher\Application Data\Mozilla\Profiles\default\0qrk67nn.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.24:C:\Documents and Settings\Kristen Bougher\Application Data\Mozilla\Profiles\default\0qrk67nn.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.25:C:\Documents and Settings\Kristen Bougher\Application Data\Mozilla\Profiles\default\0qrk67nn.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.68:C:\Documents and Settings\Kristen Bougher\Application Data\Netscape\NSB\Profiles\h1iwwrjj.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.69:C:\Documents and Settings\Joe Kish\Application Data\Netscape\NSB\Profiles\c0btscca.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.6:C:\Documents and Settings\Administrator\Application Data\Mozilla\Profiles\default\x1xbwkyu.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.6:C:\Documents and Settings\Kristen Bougher\Application Data\Mozilla\Profiles\default\0qrk67nn.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.70:C:\Documents and Settings\Joe Kish\Application Data\Netscape\NSB\Profiles\c0btscca.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.71:C:\Documents and Settings\Joe Kish\Application Data\Netscape\NSB\Profiles\c0btscca.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.72:C:\Documents and Settings\Joe Kish\Application Data\Netscape\NSB\Profiles\c0btscca.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.73:C:\Documents and Settings\Joe Kish\Application Data\Netscape\NSB\Profiles\c0btscca.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.74:C:\Documents and Settings\Joe Kish\Application Data\Netscape\NSB\Profiles\c0btscca.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.75:C:\Documents and Settings\Joe Kish\Application Data\Netscape\NSB\Profiles\c0btscca.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.76:C:\Documents and Settings\Joe Kish\Application Data\Netscape\NSB\Profiles\c0btscca.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.77:C:\Documents and Settings\Joe Kish\Application Data\Netscape\NSB\Profiles\c0btscca.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.78:C:\Documents and Settings\Joe Kish\Application Data\Netscape\NSB\Profiles\c0btscca.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.79:C:\Documents and Settings\Joe Kish\Application Data\Netscape\NSB\Profiles\c0btscca.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.7:C:\Documents and Settings\Administrator\Application Data\Mozilla\Profiles\default\x1xbwkyu.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.7:C:\Documents and Settings\Kristen Bougher\Application Data\Mozilla\Profiles\default\0qrk67nn.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.8:C:\Documents and Settings\Kristen Bougher\Application Data\Mozilla\Profiles\default\0qrk67nn.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.8:C:\Documents and Settings\LocalService\Application Data\Netscape\NSB\Profiles\r5u2wudj.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.9:C:\Documents and Settings\Kristen Bougher\Application Data\Mozilla\Profiles\default\0qrk67nn.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.9:C:\Documents and Settings\LocalService\Application Data\Netscape\NSB\Profiles\r5u2wudj.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.113:C:\Documents and Settings\Kristen Bougher\Application Data\Mozilla\Profiles\default\0qrk67nn.slt\cookies.txt -> TrackingCookie.Aavalue : Cleaned.
:mozilla.114:C:\Documents and Settings\Kristen Bougher\Application Data\Mozilla\Profiles\default\0qrk67nn.slt\cookies.txt -> TrackingCookie.Aavalue : Cleaned.
:mozilla.115:C:\Documents and Settings\Kristen Bougher\Application Data\Mozilla\Profiles\default\0qrk67nn.slt\cookies.txt -> TrackingCookie.Aavalue : Cleaned.
:mozilla.116:C:\Documents and Settings\Kristen Bougher\Application Data\Mozilla\Profiles\default\0qrk67nn.slt\cookies.txt -> TrackingCookie.Aavalue : Cleaned.
:mozilla.117:C:\Documents and Settings\Kristen Bougher\Application Data\Mozilla\Profiles\default\0qrk67nn.slt\cookies.txt -> TrackingCookie.Aavalue : Cleaned.
:mozilla.178:C:\Documents and Settings\Kristen Bougher\Application Data\Mozilla\Profiles\default\0qrk67nn.slt\cookies.txt -> TrackingCookie.Aavalue : Cleaned.
:mozilla.179:C:\Documents and Settings\Kristen Bougher\Application Data\Mozilla\Profiles\default\0qrk67nn.slt\cookies.txt -> TrackingCookie.Aavalue : Cleaned.
:mozilla.180:C:\Documents and Settings\Kristen Bougher\Application Data\Mozilla\Profiles\default\0qrk67nn.slt\cookies.txt -> TrackingCookie.Aavalue : Cleaned.
:mozilla.183:C:\Documents and Settings\Kristen Bougher\Application Data\Mozilla\Profiles\default\0qrk67nn.slt\cookies.txt -> TrackingCookie.Aavalue : Cleaned.
:mozilla.184:C:\Documents and Settings\Kristen Bougher\Application Data\Mozilla\Profiles\default\0qrk67nn.slt\cookies.txt -> TrackingCookie.Aavalue : Cleaned.
:mozilla.185:C:\Documents and Settings\Kristen Bougher\Application Data\Mozilla\Profiles\default\0qrk67nn.slt\cookies.txt -> TrackingCookie.Aavalue : Cleaned.
:mozilla.189:C:\Documents and Settings\Kristen Bougher\Application Data\Mozilla\Profiles\default\0qrk67nn.slt\cookies.txt -> TrackingCookie.Aavalue : Cleaned.
:mozilla.190:C:\Documents and Settings\Kristen Bougher\Application Data\Mozilla\Profiles\default\0qrk67nn.slt\cookies.txt -> TrackingCookie.Aavalue : Cleaned.
:mozilla.191:C:\Documents and Settings\Kristen Bougher\Application Data\Mozilla\Profiles\default\0qrk67nn.slt\cookies.txt -> TrackingCookie.Aavalue : Cleaned.
:mozilla.26:C:\Documents and Settings\Kristen Bougher\Application Data\Mozilla\Profiles\default\0qrk67nn.slt\cookies.txt -> TrackingCookie.Aavalue : Cleaned.
:mozilla.125:C:\Documents and Settings\Joe Kish\Application Data\Netscape\NSB\Profiles\c0btscca.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.126:C:\Documents and Settings\Joe Kish\Application Data\Netscape\NSB\Profiles\c0btscca.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.62:C:\Documents and Settings\Kristen Bougher\Application Data\Netscape\NSB\Profiles\h1iwwrjj.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.64:C:\Documents and Settings\Kristen Bougher\Application Data\Netscape\NSB\Profiles\h1iwwrjj.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.109:C:\Documents and Settings\Joe Kish\Application Data\Netscape\NSB\Profiles\c0btscca.default\cookies.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.20:C:\Documents and Settings\Joe Kish\Application Data\Netscape\NSB\Profiles\c0btscca.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.21:C:\Documents and Settings\Joe Kish\Application Data\Netscape\NSB\Profiles\c0btscca.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.25:C:\Documents and Settings\Joe Kish\Application Data\Netscape\NSB\Profiles\c0btscca.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.27:C:\Documents and Settings\Joe Kish\Application Data\Netscape\NSB\Profiles\c0btscca.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.28:C:\Documents and Settings\Joe Kish\Application Data\Netscape\NSB\Profiles\c0btscca.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.38:C:\Documents and Settings\Kristen Bougher\Application Data\Netscape\NSB\Profiles\h1iwwrjj.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.39:C:\Documents and Settings\Kristen Bougher\Application Data\Netscape\NSB\Profiles\h1iwwrjj.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.40:C:\Documents and Settings\Kristen Bougher\Application Data\Netscape\NSB\Profiles\h1iwwrjj.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.41:C:\Documents and Settings\Kristen Bougher\Application Data\Netscape\NSB\Profiles\h1iwwrjj.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.42:C:\Documents and Settings\Kristen Bougher\Application Data\Netscape\NSB\Profiles\h1iwwrjj.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.43:C:\Documents and Settings\Kristen Bougher\Application Data\Netscape\NSB\Profiles\h1iwwrjj.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.6:C:\Documents and Settings\LocalService\Application Data\Netscape\NSB\Profiles\r5u2wudj.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.7:C:\Documents and Settings\LocalService\Application Data\Netscape\NSB\Profiles\r5u2wudj.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.26:C:\Documents and Settings\Kristen Bougher\Application Data\Netscape\NSB\Profiles\h1iwwrjj.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned.
:mozilla.7:C:\Documents and Settings\Joe Kish\Application Data\Netscape\NSB\Profiles\c0btscca.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned.
:mozilla.89:C:\Documents and Settings\Joe Kish\Application Data\Netscape\NSB\Profiles\c0btscca.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.90:C:\Documents and Settings\Joe Kish\Application Data\Netscape\NSB\Profiles\c0btscca.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.91:C:\Documents and Settings\Joe Kish\Application Data\Netscape\NSB\Profiles\c0btscca.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.51:C:\Documents and Settings\Kristen Bougher\Application Data\Mozilla\Profiles\default\0qrk67nn.slt\cookies.txt -> TrackingCookie.Centrport : Cleaned.
:mozilla.52:C:\Documents and Settings\Kristen Bougher\Application Data\Mozilla\Profiles\default\0qrk67nn.slt\cookies.txt -> TrackingCookie.Centrport : Cleaned.
:mozilla.10:C:\Documents and Settings\LocalService\Application Data\Netscape\NSB\Profiles\r5u2wudj.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.11:C:\Documents and Settings\LocalService\Application Data\Netscape\NSB\Profiles\r5u2wudj.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.14:C:\Documents and Settings\Joe Kish\Application Data\Netscape\NSAE\Profiles\j30lrid2.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.18:C:\Documents and Settings\Kristen Bougher\Application Data\Netscape\NSB\Profiles\h1iwwrjj.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.26:C:\Documents and Settings\Joe Kish\Application Data\Netscape\NSB\Profiles\c0btscca.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.75:C:\Documents and Settings\Kristen Bougher\Application Data\Mozilla\Profiles\default\0qrk67nn.slt\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.53:C:\Documents and Settings\Joe Kish\Application Data\Netscape\NSB\Profiles\c0btscca.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
:mozilla.54:C:\Documents and Settings\Joe Kish\Application Data\Netscape\NSB\Profiles\c0btscca.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
:mozilla.55:C:\Documents and Settings\Joe Kish\Application Data\Netscape\NSB\Profiles\c0btscca.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
:mozilla.56:C:\Documents and Settings\Joe Kish\Application Data\Netscape\NSB\Profiles\c0btscca.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
:mozilla.57:C:\Documents and Settings\Joe Kish\Application Data\Netscape\NSB\Profiles\c0btscca.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
:mozilla.33:C:\Documents and Settings\Joe Kish\Application Data\Netscape\NSB\Profiles\c0btscca.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.34:C:\Documents and Settings\Joe Kish\Application Data\Netscape\NSB\Profiles\c0btscca.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.35:C:\Documents and Settings\Joe Kish\Application Data\Netscape\NSB\Profiles\c0btscca.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.36:C:\Documents and Settings\Joe Kish\Application Data\Netscape\NSB\Profiles\c0btscca.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.37:C:\Documents and Settings\Joe Kish\Application Data\Netscape\NSB\Profiles\c0btscca.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.38:C:\Documents and Settings\Joe Kish\Application Data\Netscape\NSB\Profiles\c0btscca.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.39:C:\Documents and Settings\Joe Kish\Application Data\Netscape\NSB\Profiles\c0btscca.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.10:C:\Documents and Settings\Joe Kish\Application Data\Netscape\NSB\Profiles\c0btscca.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.14:C:\Documents and Settings\Joe Kish\Application Data\Netscape\NSB\Profiles\c0btscca.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.15:C:\Documents and Settings\Joe Kish\Application Data\Netscape\NSB\Profiles\c0btscca.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.16:C:\Documents and Settings\Joe Kish\Application Data\Netscape\NSB\Profiles\c0btscca.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.17:C:\Documents and Settings\Joe Kish\Application Data\Netscape\NSB\Profiles\c0btscca.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.63:C:\Documents and Settings\Kristen Bougher\Application Data\Netscape\NSB\Profiles\h1iwwrjj.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.50:C:\Documents and Settings\Kristen Bougher\Application Data\Netscape\NSB\Profiles\h1iwwrjj.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.51:C:\Documents and Settings\Kristen Bougher\Application Data\Netscape\NSB\Profiles\h1iwwrjj.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.52:C:\Documents and Settings\Kristen Bougher\Application Data\Netscape\NSB\Profiles\h1iwwrjj.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.30:C:\Documents and Settings\Joe Kish\Application Data\Netscape\NSB\Profiles\c0btscca.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned.
:mozilla.110:C:\Documents and Settings\Kristen Bougher\Application Data\Mozilla\Profiles\default\0qrk67nn.slt\cookies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.111:C:\Documents and Settings\Kristen Bougher\Application Data\Mozilla\Profiles\default\0qrk67nn.slt\cookies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.66:C:\Documents and Settings\Kristen Bougher\Application Data\Netscape\NSB\Profiles\h1iwwrjj.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.67:C:\Documents and Settings\Kristen Bougher\Application Data\Netscape\NSB\Profiles\h1iwwrjj.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.34:C:\Documents and Settings\Kristen Bougher\Application Data\Mozilla\Profiles\default\0qrk67nn.slt\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.35:C:\Documents and Settings\Kristen Bougher\Application Data\Mozilla\Profiles\default\0qrk67nn.slt\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.36:C:\Documents and Settings\Kristen Bougher\Application Data\Mozilla\Profiles\default\0qrk67nn.slt\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.49:C:\Documents and Settings\Joe Kish\Application Data\Netscape\NSB\Profiles\c0btscca.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.50:C:\Documents and Settings\Joe Kish\Application Data\Netscape\NSB\Profiles\c0btscca.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.51:C:\Documents and Settings\Joe Kish\Application Data\Netscape\NSB\Profiles\c0btscca.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.52:C:\Documents and Settings\Joe Kish\Application Data\Netscape\NSB\Profiles\c0btscca.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.124:C:\Documents and Settings\Kristen Bougher\Application Data\Mozilla\Profiles\default\0qrk67nn.slt\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.125:C:\Documents and Settings\Kristen Bougher\Application Data\Mozilla\Profiles\default\0qrk67nn.slt\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.47:C:\Documents and Settings\Joe Kish\Application Data\Netscape\NSB\Profiles\c0btscca.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.48:C:\Documents and Settings\Joe Kish\Application Data\Netscape\NSB\Profiles\c0btscca.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.78:C:\Documents and Settings\Kristen Bougher\Application Data\Mozilla\Profiles\default\0qrk67nn.slt\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.79:C:\Documents and Settings\Kristen Bougher\Application Data\Mozilla\Profiles\default\0qrk67nn.slt\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.80:C:\Documents and Settings\Kristen Bougher\Application Data\Mozilla\Profiles\default\0qrk67nn.slt\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.33:C:\Documents and Settings\Kristen Bougher\Application Data\Mozilla\Profiles\default\0qrk67nn.slt\cookies.txt -> TrackingCookie.Specificclick : Cleaned.
:mozilla.140:C:\Documents and Settings\Kristen Bougher\Application Data\Mozilla\Profiles\default\0qrk67nn.slt\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.141:C:\Documents and Settings\Kristen Bougher\Application Data\Mozilla\Profiles\default\0qrk67nn.slt\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.142:C:\Documents and Settings\Kristen Bougher\Application Data\Mozilla\Profiles\default\0qrk67nn.slt\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.143:C:\Documents and Settings\Kristen Bougher\Application Data\Mozilla\Profiles\default\0qrk67nn.slt\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.144:C:\Documents and Settings\Kristen Bougher\Application Data\Mozilla\Profiles\default\0qrk67nn.slt\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.151:C:\Documents and Settings\Kristen Bougher\Application Data\Mozilla\Profiles\default\0qrk67nn.slt\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.58:C:\Documents and Settings\Joe Kish\Application Data\Netscape\NSB\Profiles\c0btscca.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.30:C:\Documents and Settings\Kristen Bougher\Application Data\Netscape\NSB\Profiles\h1iwwrjj.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.31:C:\Documents and Settings\Kristen Bougher\Application Data\Netscape\NSB\Profiles\h1iwwrjj.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.113:C:\Documents and Settings\Joe Kish\Application Data\Netscape\NSB\Profiles\c0btscca.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
:mozilla.114:C:\Documents and Settings\Joe Kish\Application Data\Netscape\NSB\Profiles\c0btscca.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
:mozilla.115:C:\Documents and Settings\Joe Kish\Application Data\Netscape\NSB\Profiles\c0btscca.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.


::Report end

2.Kaspersky-
KASPERSKY ONLINE SCANNER REPORT
Saturday, January 06, 2007 7:39:03 AM
Operating System: Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600)
Kaspersky Online Scanner version: 5.0.83.0
Kaspersky Anti-Virus database last update: 6/01/2007
Kaspersky Anti-Virus database records: 256329

Scan Settings
Scan using the following antivirus database extended
Scan Archives true
Scan Mail Bases true

Scan Target My Computer
A:\
C:\
D:\
E:\

Scan Statistics
Total number of scanned objects 50394
Number of viruses found 8
Number of infected objects 16 / 0
Number of suspicious objects 0
Duration of the scan process 00:49:21

Infected Object Name Virus Name Last Action
C:\1c7502abe1dd67140c5dd571eb\$shtdwn$.req Object is locked skipped

C:\1c7502abe1dd67140c5dd571eb\sp2qfe\tcpip.sys Object is locked skipped

C:\1c7502abe1dd67140c5dd571eb\spmsg.dll Object is locked skipped

C:\1c7502abe1dd67140c5dd571eb\spuninst.exe Object is locked skipped

C:\1c7502abe1dd67140c5dd571eb\update\branches.inf Object is locked skipped

C:\1c7502abe1dd67140c5dd571eb\update\eula.txt Object is locked skipped

C:\1c7502abe1dd67140c5dd571eb\update\KB884020.CAT Object is locked skipped

C:\1c7502abe1dd67140c5dd571eb\update\spcustom.dll Object is locked skipped

C:\1c7502abe1dd67140c5dd571eb\update\update.exe Object is locked skipped

C:\1c7502abe1dd67140c5dd571eb\update\update.ver Object is locked skipped

C:\1c7502abe1dd67140c5dd571eb\update\updatebr.inf Object is locked skipped

C:\1c7502abe1dd67140c5dd571eb\update\update_SP2QFE.inf Object is locked skipped

C:\466988127d8a6ef83519b718333fa3\$shtdwn$.req Object is locked skipped

C:\466988127d8a6ef83519b718333fa3\sp1qfe\ole32.dll Object is locked skipped

C:\466988127d8a6ef83519b718333fa3\sp1qfe\olecli32.dll Object is locked skipped

C:\466988127d8a6ef83519b718333fa3\sp1qfe\olecnv32.dll Object is locked skipped

C:\466988127d8a6ef83519b718333fa3\sp1qfe\rpcrt4.dll Object is locked skipped

C:\466988127d8a6ef83519b718333fa3\sp1qfe\rpcss.dll Object is locked skipped

C:\466988127d8a6ef83519b718333fa3\sp2gdr\ole32.dll Object is locked skipped

C:\466988127d8a6ef83519b718333fa3\sp2gdr\olecli32.dll Object is locked skipped

C:\466988127d8a6ef83519b718333fa3\sp2gdr\olecnv32.dll Object is locked skipped

C:\466988127d8a6ef83519b718333fa3\sp2gdr\rpcss.dll Object is locked skipped

C:\466988127d8a6ef83519b718333fa3\sp2qfe\ole32.dll Object is locked skipped

C:\466988127d8a6ef83519b718333fa3\sp2qfe\olecli32.dll Object is locked skipped

C:\466988127d8a6ef83519b718333fa3\sp2qfe\olecnv32.dll Object is locked skipped

C:\466988127d8a6ef83519b718333fa3\sp2qfe\rpcss.dll Object is locked skipped

C:\466988127d8a6ef83519b718333fa3\spmsg.dll Object is locked skipped

C:\466988127d8a6ef83519b718333fa3\spuninst.exe Object is locked skipped

C:\466988127d8a6ef83519b718333fa3\update\branches.inf Object is locked skipped

C:\466988127d8a6ef83519b718333fa3\update\eula.txt Object is locked skipped

C:\466988127d8a6ef83519b718333fa3\update\KB894391.CAT Object is locked skipped

C:\466988127d8a6ef83519b718333fa3\update\spcustom.dll Object is locked skipped

C:\466988127d8a6ef83519b718333fa3\update\update.exe Object is locked skipped

C:\466988127d8a6ef83519b718333fa3\update\update.ver Object is locked skipped

C:\466988127d8a6ef83519b718333fa3\update\updatebr.inf Object is locked skipped

C:\466988127d8a6ef83519b718333fa3\update\update_SP1QFE.inf Object is locked skipped

C:\466988127d8a6ef83519b718333fa3\update\update_SP2GDR.inf Object is locked skipped

C:\466988127d8a6ef83519b718333fa3\update\update_SP2QFE.inf Object is locked skipped

C:\466988127d8a6ef83519b718333fa3\update\updspapi.dll Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\$shtdwn$.req Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\admparse.dll Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\admparse.dll.mui Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\advpack.dll Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\advpack.dll.mui Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\browseui.dll Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\corpol.dll Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\custsat.dll Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\dxtmsft.dll Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\dxtrans.dll Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\extmgr.dll Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\extmgr.dll.mui Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\feeddisc.wav Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\hmmapi.dll Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\hmmapi.dll.mui Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\html.iec Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\html.iec.mui Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\icardie.dll Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\icardie.dll.mui Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\icrav03.rat Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\ie4uinit.exe Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\ie4uinit.exe.mui Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\ieakeng.dll Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\ieakeng.dll.mui Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\ieakmmc.chm Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\ieaksie.dll Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\ieaksie.dll.mui Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\ieakui.dll Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\ieakui.dll.mui Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\ieapfltr.dat Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\ieapfltr.dll Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\iedkcs32.dll Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\iedkcs32.dll.mui Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\iedw.exe Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\iedw.exe.mui Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\ieencode.dll Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\ieeula.chm Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\ieframe.dll Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\ieframe.dll.mui Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\iepeers.dll Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\iepeers.dll.mui Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\ieproxy.dll Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\iernonce.dll Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\iernonce.dll.mui Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\iertutil.dll Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\iesetup.dll Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\iesetup.dll.mui Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\iesupp.chm Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\ieudinit.exe Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\ieui.dll Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\ieui.dll.mui Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\ieuinit.inf Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\ieunatt.exe.mui Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\iexplore.chm Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\iexplore.exe Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\iexplore.exe.mui Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\imgutil.dll Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\inetcorp.iem Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\inetcpl.cpl Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\inetcpl.cpl.mui Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\inetres.adm Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\inetset.iem Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\infobar.wav Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\inseng.dll Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\inseng.dll.mui Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\install.ins Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\jscript.dll Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\jsproxy.dll Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\licmgr10.dll Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\licmgr10.dll.mui Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\msfeeds.dll Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\msfeeds.mof Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\msfeedsbs.dll Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\msfeedsbs.dll.mui Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\msfeedsbs.mof Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\msfeedssync.exe Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\mshta.exe Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\mshta.exe.mui Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\mshtml.dll Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\mshtml.dll.mui Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\mshtml.tlb Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\mshtmled.dll Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\mshtmled.dll.mui Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\mshtmler.dll Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\mshtmler.dll.mui Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\msls31.dll Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\msrating.dll Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\msrating.dll.mui Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\mstime.dll Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\navstart.wav Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\occache.dll Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\occache.dll.mui Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\occache.ini Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\pngfilt.dll Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\popupblk.wav Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\shdocvw.dll Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\shlwapi.dll Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\spmsg.dll Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\spuninst.exe Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\spupdsvc.exe Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\tdc.ocx Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\ticrf.rat Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\update\eula.rtf Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\update\idndl.exe Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\update\ie7.cat Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\update\iecustom.dll Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\update\iereseticons.exe Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\update\iesetup.exe Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\update\legitlibm.dll Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\update\nlsdl.exe Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\update\update.exe Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\update\update.exe.manifest Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\update\update.inf Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\update\update.ver Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\update\updspapi.dll Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\update\xmllitesetup.exe Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\url.dll Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\urlmon.dll Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\urlmon.dll.mui Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\vbscript.dll Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\vgx.dll Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\webcheck.dll Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\webcheck.dll.mui Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\webcheck.ini Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\winfxdocobj.exe Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\winfxdocobj.exe.mui Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\wininet.dll Object is locked skipped

C:\8f8fa6eabc15022b0f9e62def08edbbf\wininet.dll.mui Object is locked skipped

C:\a25944f0ff9c9f10383567\$shtdwn$.req Object is locked skipped

C:\a25944f0ff9c9f10383567\sp1qfe\ole32.dll Object is locked skipped

C:\a25944f0ff9c9f10383567\sp1qfe\olecli32.dll Object is locked skipped

C:\a25944f0ff9c9f10383567\sp1qfe\olecnv32.dll Object is locked skipped

C:\a25944f0ff9c9f10383567\sp1qfe\rpcrt4.dll Object is locked skipped

C:\a25944f0ff9c9f10383567\sp1qfe\rpcss.dll Object is locked skipped

C:\a25944f0ff9c9f10383567\sp2gdr\ole32.dll Object is locked skipped

C:\a25944f0ff9c9f10383567\sp2gdr\olecli32.dll Object is locked skipped

C:\a25944f0ff9c9f10383567\sp2gdr\olecnv32.dll Object is locked skipped

C:\a25944f0ff9c9f10383567\sp2gdr\rpcss.dll Object is locked skipped

C:\a25944f0ff9c9f10383567\sp2qfe\ole32.dll Object is locked skipped

C:\a25944f0ff9c9f10383567\sp2qfe\olecli32.dll Object is locked skipped

C:\a25944f0ff9c9f10383567\sp2qfe\olecnv32.dll Object is locked skipped

C:\a25944f0ff9c9f10383567\sp2qfe\rpcss.dll Object is locked skipped

C:\a25944f0ff9c9f10383567\spmsg.dll Object is locked skipped

C:\a25944f0ff9c9f10383567\spuninst.exe Object is locked skipped

C:\a25944f0ff9c9f10383567\update\branches.inf Object is locked skipped

C:\a25944f0ff9c9f10383567\update\eula.txt Object is locked skipped

C:\a25944f0ff9c9f10383567\update\KB894391.CAT Object is locked skipped

C:\a25944f0ff9c9f10383567\update\spcustom.dll Object is locked skipped

C:\a25944f0ff9c9f10383567\update\update.exe Object is locked skipped

C:\a25944f0ff9c9f10383567\update\update.ver Object is locked skipped

C:\a25944f0ff9c9f10383567\update\updatebr.inf Object is locked skipped

C:\a25944f0ff9c9f10383567\update\update_SP1QFE.inf Object is locked skipped

C:\a25944f0ff9c9f10383567\update\update_SP2GDR.inf Object is locked skipped

C:\a25944f0ff9c9f10383567\update\update_SP2QFE.inf Object is locked skipped

C:\a25944f0ff9c9f10383567\update\updspapi.dll Object is locked skipped

C:\af55292483787da5b54a97ca9f41a972\$shtdwn$.req Object is locked skipped

C:\af55292483787da5b54a97ca9f41a972\rtmgdr\ole32.dll Object is locked skipped

C:\af55292483787da5b54a97ca9f41a972\rtmgdr\olecli32.dll Object is locked skipped

C:\af55292483787da5b54a97ca9f41a972\rtmgdr\olecnv32.dll Object is locked skipped

C:\af55292483787da5b54a97ca9f41a972\rtmgdr\rpcproxy.dll Object is locked skipped

C:\af55292483787da5b54a97ca9f41a972\rtmgdr\rpcrt4.dll Object is locked skipped

C:\af55292483787da5b54a97ca9f41a972\rtmgdr\rpcss.dll Object is locked skipped

C:\af55292483787da5b54a97ca9f41a972\rtmqfe\ole32.dll Object is locked skipped

C:\af55292483787da5b54a97ca9f41a972\rtmqfe\olecli32.dll Object is locked skipped

C:\af55292483787da5b54a97ca9f41a972\rtmqfe\olecnv32.dll Object is locked skipped

C:\af55292483787da5b54a97ca9f41a972\rtmqfe\rpcproxy.dll Object is locked skipped

C:\af55292483787da5b54a97ca9f41a972\rtmqfe\rpcrt4.dll Object is locked skipped

C:\af55292483787da5b54a97ca9f41a972\rtmqfe\rpcss.dll Object is locked skipped

C:\af55292483787da5b54a97ca9f41a972\spmsg.dll Object is locked skipped

C:\af55292483787da5b54a97ca9f41a972\spuninst.exe Object is locked skipped

C:\af55292483787da5b54a97ca9f41a972\update\branches.inf Object is locked skipped

C:\af55292483787da5b54a97ca9f41a972\update\eula.txt Object is locked skipped

C:\af55292483787da5b54a97ca9f41a972\update\KB894391.CAT Object is locked skipped

C:\af55292483787da5b54a97ca9f41a972\update\spcustom.dll Object is locked skipped

C:\af55292483787da5b54a97ca9f41a972\update\update.exe Object is locked skipped

C:\af55292483787da5b54a97ca9f41a972\update\update.ver Object is locked skipped

C:\af55292483787da5b54a97ca9f41a972\update\updatebr.inf Object is locked skipped

C:\af55292483787da5b54a97ca9f41a972\update\update_RTMGDR.inf Object is locked skipped

C:\af55292483787da5b54a97ca9f41a972\update\update_RTMQFE.inf Object is locked skipped

C:\af55292483787da5b54a97ca9f41a972\update\updspapi.dll Object is locked skipped

C:\d0642f12741889e4d2\$shtdwn$.req Object is locked skipped

C:\d0642f12741889e4d2\sp1qfe\ole32.dll Object is locked skipped

C:\d0642f12741889e4d2\sp1qfe\olecli32.dll Object is locked skipped

C:\d0642f12741889e4d2\sp1qfe\olecnv32.dll Object is locked skipped

C:\d0642f12741889e4d2\sp1qfe\rpcrt4.dll Object is locked skipped

C:\d0642f12741889e4d2\sp1qfe\rpcss.dll Object is locked skipped

C:\d0642f12741889e4d2\sp2gdr\ole32.dll Object is locked skipped

C:\d0642f12741889e4d2\sp2gdr\olecli32.dll Object is locked skipped

C:\d0642f12741889e4d2\sp2gdr\olecnv32.dll Object is locked skipped

C:\d0642f12741889e4d2\sp2gdr\rpcss.dll Object is locked skipped

C:\d0642f12741889e4d2\sp2qfe\ole32.dll Object is locked skipped

C:\d0642f12741889e4d2\sp2qfe\olecli32.dll Object is locked skipped

C:\d0642f12741889e4d2\sp2qfe\olecnv32.dll Object is locked skipped

C:\d0642f12741889e4d2\sp2qfe\rpcss.dll Object is locked skipped

C:\d0642f12741889e4d2\spmsg.dll Object is locked skipped

C:\d0642f12741889e4d2\spuninst.exe Object is locked skipped

C:\d0642f12741889e4d2\update\branches.inf Object is locked skipped

C:\d0642f12741889e4d2\update\eula.txt Object is locked skipped

C:\d0642f12741889e4d2\update\KB894391.CAT Object is locked skipped

C:\d0642f12741889e4d2\update\spcustom.dll Object is locked skipped

C:\d0642f12741889e4d2\update\update.exe Object is locked skipped

C:\d0642f12741889e4d2\update\update.ver Object is locked skipped

C:\d0642f12741889e4d2\update\updatebr.inf Object is locked skipped

C:\d0642f12741889e4d2\update\update_SP1QFE.inf Object is locked skipped

C:\d0642f12741889e4d2\update\update_SP2GDR.inf Object is locked skipped

C:\d0642f12741889e4d2\update\update_SP2QFE.inf Object is locked skipped

C:\d0642f12741889e4d2\update\updspapi.dll Object is locked skipped

C:\Documents and Settings\All Users\Application Data\Grisoft\Avg7Data\avg7log.log Object is locked skipped

C:\Documents and Settings\All Users\Application Data\Grisoft\Avg7Data\avg7log.log.lck Object is locked skipped

C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\c00927b3a84a7aa6e989b124150dadea_1dce0e75-1303-433a-bfc1-6b582bd25551 Object is locked skipped

C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\e4e17015f91517de096d4c75d5a69c54_1dce0e75-1303-433a-bfc1-6b582bd25551 Object is locked skipped

C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat Object is locked skipped

C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat Object is locked skipped

C:\Documents and Settings\Joe Kish\.housecall6.6\Quarantine\brwmgr32.dll.bac_a01328 Infected: Email-Worm.Win32.Warezov.gz skipped

C:\Documents and Settings\Joe Kish\.housecall6.6\Quarantine\brwperf.exe.bac_a01328 Infected: Email-Worm.Win32.Warezov.dq skipped

C:\Documents and Settings\Joe Kish\.housecall6.6\Quarantine\brwprf32.dll.bac_a01328 Infected: Email-Worm.Win32.Warezov.gz skipped

C:\Documents and Settings\Joe Kish\.housecall6.6\Quarantine\brwstat.dll.bac_a01328 Infected: Email-Worm.Win32.Warezov.gz skipped

C:\Documents and Settings\Joe Kish\.housecall6.6\Quarantine\confbrw.dll.bac_a01328 Infected: Email-Worm.Win32.Warezov.gz skipped

C:\Documents and Settings\Joe Kish\.housecall6.6\Quarantine\msbb.exe.bac_a01328 Infected: not-a-virus:AdWare.Win32.180Solutions skipped

C:\Documents and Settings\Joe Kish\.housecall6.6\Quarantine\SbSrv.exe.bac_a01328 Infected: not-a-virus:AdWare.Win32.HotBar.bg skipped

C:\Documents and Settings\Joe Kish\Cookies\index.dat Object is locked skipped

C:\Documents and Settings\Joe Kish\Local Settings\Application Data\Microsoft\Feeds Cache\index.dat Object is locked skipped

C:\Documents and Settings\Joe Kish\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped

C:\Documents and Settings\Joe Kish\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

C:\Documents and Settings\Joe Kish\Local Settings\History\History.IE5\index.dat Object is locked skipped

C:\Documents and Settings\Joe Kish\Local Settings\History\History.IE5\MSHist012007010620070107\index.dat Object is locked skipped

C:\Documents and Settings\Joe Kish\Local Settings\Temporary Internet Files\AntiPhishing\B3BB5BBA-E7D5-40AB-A041-A5B1C0B26C8F.dat Object is locked skipped

C:\Documents and Settings\Joe Kish\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped

C:\Documents and Settings\Joe Kish\ntuser.dat Object is locked skipped

C:\Documents and Settings\Joe Kish\ntuser.dat.LOG Object is locked skipped

C:\Documents and Settings\Kristen Bougher\Local Settings\Temp\hsperfdata_Kristen Bougher\1648 Object is locked skipped

C:\Documents and Settings\LocalService\Cookies\index.dat Object is locked skipped

C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped

C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

C:\Documents and Settings\LocalService\Local Settings\History\History.IE5\index.dat Object is locked skipped

C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped

C:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped

C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped

C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped

C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped

C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped

C:\f8e1adff2bced87f2a\$shtdwn$.req Object is locked skipped

C:\f8e1adff2bced87f2a\admparse.dll Object is locked skipped

C:\f8e1adff2bced87f2a\admparse.dll.mui Object is locked skipped

C:\f8e1adff2bced87f2a\advpack.dll Object is locked skipped

C:\f8e1adff2bced87f2a\advpack.dll.mui Object is locked skipped

C:\f8e1adff2bced87f2a\browseui.dll Object is locked skipped

C:\f8e1adff2bced87f2a\corpol.dll Object is locked skipped

C:\f8e1adff2bced87f2a\custsat.dll Object is locked skipped

C:\f8e1adff2bced87f2a\dxtmsft.dll Object is locked skipped

C:\f8e1adff2bced87f2a\dxtrans.dll Object is locked skipped

C:\f8e1adff2bced87f2a\extmgr.dll Object is locked skipped

C:\f8e1adff2bced87f2a\extmgr.dll.mui Object is locked skipped

C:\f8e1adff2bced87f2a\feeddisc.wav Object is locked skipped

C:\f8e1adff2bced87f2a\hmmapi.dll Object is locked skipped

C:\f8e1adff2bced87f2a\hmmapi.dll.mui Object is locked skipped

C:\f8e1adff2bced87f2a\html.iec Object is locked skipped

C:\f8e1adff2bced87f2a\html.iec.mui Object is locked skipped

C:\f8e1adff2bced87f2a\icardie.dll Object is locked skipped

C:\f8e1adff2bced87f2a\icardie.dll.mui Object is locked skipped

C:\f8e1adff2bced87f2a\icrav03.rat Object is locked skipped

C:\f8e1adff2bced87f2a\ie4uinit.exe Object is locked skipped

C:\f8e1adff2bced87f2a\ie4uinit.exe.mui Object is locked skipped

C:\f8e1adff2bced87f2a\ieakeng.dll Object is locked skipped

C:\f8e1adff2bced87f2a\ieakeng.dll.mui Object is locked skipped

C:\f8e1adff2bced87f2a\ieakmmc.chm Object is locked skipped

C:\f8e1adff2bced87f2a\ieaksie.dll Object is locked skipped

C:\f8e1adff2bced87f2a\ieaksie.dll.mui Object is locked skipped

C:\f8e1adff2bced87f2a\ieakui.dll Object is locked skipped

C:\f8e1adff2bced87f2a\ieakui.dll.mui Object is locked skipped

C:\f8e1adff2bced87f2a\ieapfltr.dat Object is locked skipped

C:\f8e1adff2bced87f2a\ieapfltr.dll Object is locked skipped

C:\f8e1adff2bced87f2a\iedkcs32.dll Object is locked skipped

C:\f8e1adff2bced87f2a\iedkcs32.dll.mui Object is locked skipped

C:\f8e1adff2bced87f2a\iedw.exe Object is locked skipped

C:\f8e1adff2bced87f2a\iedw.exe.mui Object is locked skipped

C:\f8e1adff2bced87f2a\ieencode.dll Object is locked skipped

C:\f8e1adff2bced87f2a\ieeula.chm Object is locked skipped

C:\f8e1adff2bced87f2a\ieframe.dll Object is locked skipped

C:\f8e1adff2bced87f2a\ieframe.dll.mui Object is locked skipped

C:\f8e1adff2bced87f2a\iepeers.dll Object is locked skipped

C:\f8e1adff2bced87f2a\iepeers.dll.mui Object is locked skipped

C:\f8e1adff2bced87f2a\ieproxy.dll Object is locked skipped

C:\f8e1adff2bced87f2a\iernonce.dll Object is locked skipped

C:\f8e1adff2bced87f2a\iernonce.dll.mui Object is locked skipped

C:\f8e1adff2bced87f2a\iertutil.dll Object is locked skipped

C:\f8e1adff2bced87f2a\iesetup.dll Object is locked skipped

C:\f8e1adff2bced87f2a\iesetup.dll.mui Object is locked skipped

C:\f8e1adff2bced87f2a\iesupp.chm Object is locked skipped

C:\f8e1adff2bced87f2a\ieudinit.exe Object is locked skipped

C:\f8e1adff2bced87f2a\ieui.dll Object is locked skipped

C:\f8e1adff2bced87f2a\ieui.dll.mui Object is locked skipped

C:\f8e1adff2bced87f2a\ieuinit.inf Object is locked skipped

C:\f8e1adff2bced87f2a\ieunatt.exe.mui Object is locked skipped

C:\f8e1adff2bced87f2a\iexplore.chm Object is locked skipped

C:\f8e1adff2bced87f2a\iexplore.exe Object is locked skipped

C:\f8e1adff2bced87f2a\iexplore.exe.mui Object is locked skipped

C:\f8e1adff2bced87f2a\imgutil.dll Object is locked skipped

C:\f8e1adff2bced87f2a\inetcorp.iem Object is locked skipped

C:\f8e1adff2bced87f2a\inetcpl.cpl Object is locked skipped

C:\f8e1adff2bced87f2a\inetcpl.cpl.mui Object is locked skipped

C:\f8e1adff2bced87f2a\inetres.adm Object is locked skipped

C:\f8e1adff2bced87f2a\inetset.iem Object is locked skipped

C:\f8e1adff2bced87f2a\infobar.wav Object is locked skipped

C:\f8e1adff2bced87f2a\inseng.dll Object is locked skipped

C:\f8e1adff2bced87f2a\inseng.dll.mui Object is locked skipped

C:\f8e1adff2bced87f2a\install.ins Object is locked skipped

C:\f8e1adff2bced87f2a\jscript.dll Object is locked skipped

C:\f8e1adff2bced87f2a\jsproxy.dll Object is locked skipped

C:\f8e1adff2bced87f2a\licmgr10.dll Object is locked skipped

C:\f8e1adff2bced87f2a\licmgr10.dll.mui Object is locked skipped

C:\f8e1adff2bced87f2a\msfeeds.dll Object is locked skipped

C:\f8e1adff2bced87f2a\msfeeds.mof Object is locked skipped

C:\f8e1adff2bced87f2a\msfeedsbs.dll Object is locked skipped

C:\f8e1adff2bced87f2a\msfeedsbs.dll.mui Object is locked skipped

C:\f8e1adff2bced87f2a\msfeedsbs.mof Object is locked skipped

C:\f8e1adff2bced87f2a\msfeedssync.exe Object is locked skipped

C:\f8e1adff2bced87f2a\mshta.exe Object is locked skipped

C:\f8e1adff2bced87f2a\mshta.exe.mui Object is locked skipped

C:\f8e1adff2bced87f2a\mshtml.dll Object is locked skipped

C:\f8e1adff2bced87f2a\mshtml.dll.mui Object is locked skipped

C:\f8e1adff2bced87f2a\mshtml.tlb Object is locked skipped

C:\f8e1adff2bced87f2a\mshtmled.dll Object is locked skipped

C:\f8e1adff2bced87f2a\mshtmled.dll.mui Object is locked skipped

C:\f8e1adff2bced87f2a\mshtmler.dll Object is locked skipped

C:\f8e1adff2bced87f2a\mshtmler.dll.mui Object is locked skipped

C:\f8e1adff2bced87f2a\msls31.dll Object is locked skipped

C:\f8e1adff2bced87f2a\msrating.dll Object is locked skipped

C:\f8e1adff2bced87f2a\msrating.dll.mui Object is locked skipped

C:\f8e1adff2bced87f2a\mstime.dll Object is locked skipped

C:\f8e1adff2bced87f2a\navstart.wav Object is locked skipped

C:\f8e1adff2bced87f2a\occache.dll Object is locked skipped

C:\f8e1adff2bced87f2a\occache.dll.mui Object is locked skipped

C:\f8e1adff2bced87f2a\occache.ini Object is locked skipped

C:\f8e1adff2bced87f2a\pngfilt.dll Object is locked skipped

C:\f8e1adff2bced87f2a\popupblk.wav Object is locked skipped

C:\f8e1adff2bced87f2a\shdocvw.dll Object is locked skipped

C:\f8e1adff2bced87f2a\shlwapi.dll Object is locked skipped

C:\f8e1adff2bced87f2a\spmsg.dll Object is locked skipped

C:\f8e1adff2bced87f2a\spuninst.exe Object is locked skipped

C:\f8e1adff2bced87f2a\spupdsvc.exe Object is locked skipped

C:\f8e1adff2bced87f2a\tdc.ocx Object is locked skipped

C:\f8e1adff2bced87f2a\ticrf.rat Object is locked skipped

C:\f8e1adff2bced87f2a\update\eula.rtf Object is locked skipped

C:\f8e1adff2bced87f2a\update\idndl.exe Object is locked skipped

C:\f8e1adff2bced87f2a\update\ie7.cat Object is locked skipped

C:\f8e1adff2bced87f2a\update\iecustom.dll Object is locked skipped

C:\f8e1adff2bced87f2a\update\iereseticons.exe Object is locked skipped

C:\f8e1adff2bced87f2a\update\iesetup.exe Object is locked skipped

C:\f8e1adff2bced87f2a\update\legitlibm.dll Object is locked skipped

C:\f8e1adff2bced87f2a\update\nlsdl.exe Object is locked skipped

C:\f8e1adff2bced87f2a\update\update.exe Object is locked skipped

C:\f8e1adff2bced87f2a\update\update.exe.manifest Object is locked skipped

C:\f8e1adff2bced87f2a\update\update.inf Object is locked skipped

C:\f8e1adff2bced87f2a\update\update.ver Object is locked skipped

C:\f8e1adff2bced87f2a\update\updspapi.dll Object is locked skipped

C:\f8e1adff2bced87f2a\update\xmllitesetup.exe Object is locked skipped

C:\f8e1adff2bced87f2a\url.dll Object is locked skipped

C:\f8e1adff2bced87f2a\urlmon.dll Object is locked skipped

C:\f8e1adff2bced87f2a\urlmon.dll.mui Object is locked skipped

C:\f8e1adff2bced87f2a\vbscript.dll Object is locked skipped

C:\f8e1adff2bced87f2a\vgx.dll Object is locked skipped

C:\f8e1adff2bced87f2a\webcheck.dll Object is locked skipped

C:\f8e1adff2bced87f2a\webcheck.dll.mui Object is locked skipped

C:\f8e1adff2bced87f2a\webcheck.ini Object is locked skipped

C:\f8e1adff2bced87f2a\winfxdocobj.exe Object is locked skipped

C:\f8e1adff2bced87f2a\winfxdocobj.exe.mui Object is locked skipped

C:\f8e1adff2bced87f2a\wininet.dll Object is locked skipped

C:\f8e1adff2bced87f2a\wininet.dll.mui Object is locked skipped

C:\Program Files\iWon\iWonBar\1.bin\IWON2NS.EXE Infected: not-a-virus:AdWare.Win32.MyWay.b skipped

C:\Program Files\iWon\iWonBar\1.bin\NPIWON0.DLL Infected: not-a-virus:AdWare.Win32.IWon skipped

C:\Program Files\iWon\iWonSlot\1.bin\IWONSLOT.DLL Infected: not-a-virus:AdWare.Win32.IWon skipped

C:\System Volume Information\catalog.wci\00000002.ps1 Object is locked skipped

C:\System Volume Information\catalog.wci\00000002.ps2 Object is locked skipped

C:\System Volume Information\catalog.wci\00010014.ci Object is locked skipped

C:\System Volume Information\catalog.wci\00010015.ci Object is locked skipped

C:\System Volume Information\catalog.wci\00010015.dir Object is locked skipped

C:\System Volume Information\catalog.wci\cicat.fid Object is locked skipped

C:\System Volume Information\catalog.wci\cicat.hsh Object is locked skipped

C:\System Volume Information\catalog.wci\CiCL0001.000 Object is locked skipped

C:\System Volume Information\catalog.wci\CiP10000.000 Object is locked skipped

C:\System Volume Information\catalog.wci\CiP20000.000 Object is locked skipped

C:\System Volume Information\catalog.wci\CiPT0000.000 Object is locked skipped

C:\System Volume Information\catalog.wci\CiSL0001.000 Object is locked skipped

C:\System Volume Information\catalog.wci\CiSP0000.000 Object is locked skipped

C:\System Volume Information\catalog.wci\CiST0000.000 Object is locked skipped

C:\System Volume Information\catalog.wci\CiVP0000.000 Object is locked skipped

C:\System Volume Information\catalog.wci\INDEX.000 Object is locked skipped

C:\System Volume Information\catalog.wci\propstor.bk1 Object is locked skipped

C:\System Volume Information\catalog.wci\propstor.bk2 Object is locked skipped

C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP2\A0001170.DLL Infected: not-a-virus:AdWare.Win32.IWon.d skipped

C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP2\change.log Object is locked skipped

C:\WINDOWS\$NtUninstallKB824141$\user32.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB824141$\win32k.sys Object is locked skipped

C:\WINDOWS\$NtUninstallKB828741$\catsrv.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB828741$\catsrvut.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB828741$\clbcatex.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB828741$\clbcatq.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB828741$\colbact.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB828741$\comadmin.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB828741$\comrepl.exe Object is locked skipped

C:\WINDOWS\$NtUninstallKB828741$\comsvcs.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB828741$\comuid.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB828741$\es.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB828741$\msdtcprx.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB828741$\msdtctm.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB828741$\msdtcuiu.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB828741$\mtxclu.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB828741$\mtxoci.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB828741$\ole32.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB828741$\rpcrt4.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB828741$\rpcss.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB828741$\txflog.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB835732$\callcont.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB835732$\gdi32.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB835732$\h323.tsp Object is locked skipped

C:\WINDOWS\$NtUninstallKB835732$\h323msp.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB835732$\helpctr.exe Object is locked skipped

C:\WINDOWS\$NtUninstallKB835732$\ipnathlp.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB835732$\lsasrv.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB835732$\mf3216.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB835732$\msasn1.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB835732$\msgina.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB835732$\mst120.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB835732$\netapi32.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB835732$\nmcom.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB835732$\rtcdll.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB835732$\schannel.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB835732$\xpsp2res.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB837001$\dao360.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB837001$\expsrv.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB837001$\msexch40.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB837001$\msexcl40.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB837001$\msjet40.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB837001$\msjetoledb40.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB837001$\msjint40.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB837001$\msjter40.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB837001$\msjtes40.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB837001$\msltus40.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB837001$\mspbde40.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB837001$\msrd2x40.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB837001$\msrd3x40.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB837001$\msrepl40.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB837001$\mstext40.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB837001$\mswdat10.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB837001$\mswstr10.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB837001$\msxbde40.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB837001$\vbajet32.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB839645$\fldrclnr.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB839645$\shell32.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB839645$\sxs.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB839645$\xpsp2res.dll Object is locked skipped

C:\WINDOWS\$NtUninstallQ329115$\reg00003 Object is locked skipped

C:\WINDOWS\$NtUninstallQ828026$\msdxm.ocx Object is locked skipped

C:\WINDOWS\$NtUninstallQ828026$\wmpcore.dll Object is locked skipped

C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped

C:\WINDOWS\SchedLgU.Txt Object is locked skipped

C:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked skipped

C:\WINDOWS\Sti_Trace.log Object is locked skipped

C:\WINDOWS\SYSTEM32\CatRoot2\edb.log Object is locked skipped

C:\WINDOWS\SYSTEM32\CatRoot2\tmp.edb Object is locked skipped

C:\WINDOWS\SYSTEM32\CONFIG\AppEvent.Evt Object is locked skipped

C:\WINDOWS\SYSTEM32\CONFIG\DEFAULT Object is locked skipped

C:\WINDOWS\SYSTEM32\CONFIG\DEFAULT.LOG Object is locked skipped

C:\WINDOWS\SYSTEM32\CONFIG\Internet.evt Object is locked skipped

C:\WINDOWS\SYSTEM32\CONFIG\SAM Object is locked skipped

C:\WINDOWS\SYSTEM32\CONFIG\SAM.LOG Object is locked skipped

C:\WINDOWS\SYSTEM32\CONFIG\SecEvent.Evt Object is locked skipped

C:\WINDOWS\SYSTEM32\CONFIG\SECURITY Object is locked skipped

C:\WINDOWS\SYSTEM32\CONFIG\SECURITY.LOG Object is locked skipped

C:\WINDOWS\SYSTEM32\CONFIG\SOFTWARE Object is locked skipped

C:\WINDOWS\SYSTEM32\CONFIG\SOFTWARE.LOG Object is locked skipped

C:\WINDOWS\SYSTEM32\CONFIG\SysEvent.Evt Object is locked skipped

C:\WINDOWS\SYSTEM32\CONFIG\SYSTEM Object is locked skipped

C:\WINDOWS\SYSTEM32\CONFIG\SYSTEM.LOG Object is locked skipped

C:\WINDOWS\SYSTEM32\H323LOG.TXT Object is locked skipped

C:\WINDOWS\SYSTEM32\iwdhbzxu.exe/stream/data0012/stream/data0001 Infected: not-a-virus:AdWare.Win32.Shopper.c skipped

C:\WINDOWS\SYSTEM32\iwdhbzxu.exe/stream/data0012/stream Infected: not-a-virus:AdWare.Win32.Shopper.c skipped

C:\WINDOWS\SYSTEM32\iwdhbzxu.exe/stream/data0012 Infected: not-a-virus:AdWare.Win32.Shopper.c skipped

C:\WINDOWS\SYSTEM32\iwdhbzxu.exe/stream Infected: not-a-virus:AdWare.Win32.Shopper.c skipped

C:\WINDOWS\SYSTEM32\iwdhbzxu.exe NSIS: infected - 4 skipped

C:\WINDOWS\SYSTEM32\WBEM\Repository\FS\INDEX.BTR Object is locked skipped

C:\WINDOWS\SYSTEM32\WBEM\Repository\FS\INDEX.MAP Object is locked skipped

C:\WINDOWS\SYSTEM32\WBEM\Repository\FS\MAPPING.VER Object is locked skipped

C:\WINDOWS\SYSTEM32\WBEM\Repository\FS\MAPPING1.MAP Object is locked skipped

C:\WINDOWS\SYSTEM32\WBEM\Repository\FS\MAPPING2.MAP Object is locked skipped

C:\WINDOWS\SYSTEM32\WBEM\Repository\FS\OBJECTS.DATA Object is locked skipped

C:\WINDOWS\SYSTEM32\WBEM\Repository\FS\OBJECTS.MAP Object is locked skipped

C:\WINDOWS\WIADEBUG.LOG Object is locked skipped

C:\WINDOWS\WIASERVC.LOG Object is locked skipped

C:\WINDOWS\WindowsUpdate.log Object is locked skipped

Scan process completed.

3.Autoruns Log-
Joe Kish - Sat 01/06/[email protected]:43:06.79
running from C:\Documents and Settings\Joe Kish\Desktop\Auto\

Other users of this machine:
* Administrator
* Kristen Bougher

----------------------------------------------------------------------------------

HKLM\System\CurrentControlSet\Services
AVG Anti-Spyware Guard
AVG Anti-Spyware guard
(Not verified) Anti-Malware Development a.s.
c:\program files\grisoft\avg anti-spyware 7.5\guard.exe
Avg7Alrt
AVG Alert Manager
(Not verified) GRISOFT, s.r.o.
c:\program files\grisoft\avg free\avgamsvr.exe
Avg7UpdSvc
AVG Update Service
(Not verified) GRISOFT, s.r.o.
c:\program files\grisoft\avg free\avgupsvc.exe
PcCtlCom
Manages the Trend Micro PC-cillin components.
File not found: C:\PROGRA~1\TRENDM~1\INTERN~1\PcCtlCom.exe
Tmntsrv
Enables scanning in real time.
File not found: C:\PROGRA~1\TRENDM~1\INTERN~1\Tmntsrv.exe
TmPfw
Manages the Trend Micro Personal Firewall.
File not found: C:\PROGRA~1\TRENDM~1\INTERN~1\TmPfw.exe
tmproxy
Manages the Trend Micro Proxy.
File not found: C:\PROGRA~1\TRENDM~1\INTERN~1\tmproxy.exe

HKLM\System\CurrentControlSet\Services
AVG Anti-Spyware Driver
c:\program files\grisoft\avg anti-spyware 7.5\guard.sys
Avg7Core
AVG Scanning Engine
(Not verified) GRISOFT, s.r.o.
c:\windows\system32\drivers\avg7core.sys
Avg7RsW
AVG Resident Shield Unload Helper
(Not verified) GRISOFT, s.r.o.
c:\windows\system32\drivers\avg7rsw.sys
Avg7RsXP
AVG Resident Anti-Virus Shield
(Not verified) GRISOFT, s.r.o.
c:\windows\system32\drivers\avg7rsxp.sys
AvgAsCln
AVG7 Clean Driver
(Not verified) GRISOFT, s.r.o.
c:\windows\system32\drivers\avgascln.sys
AvgClean
AVG7 Clean Driver
(Not verified) GRISOFT, s.r.o.
c:\windows\system32\drivers\avgclean.sys
GEARAspiWDM
CDRom Class Filter Driver
(Verified) GEAR Software Inc.
c:\windows\system32\drivers\gearaspiwdm.sys
iAimTV2
File not found: System32\DRIVERS\wATV03nt.sys
MTSSQYCU
File not found: C:\WINDOWS\system32\mtssqycu.eyd
omci
OMCI Device Driver
(Not verified) Dell Computer Corporation
c:\windows\system32\drivers\omci.sys
PxHelp20
Px Engine Device Driver for Windows 2000/XP
(Not verified) Sonic Solutions
c:\windows\system32\drivers\pxhelp20.sys
Tmfilter
File not found: system32\drivers\TmXPFlt.sys
Tmpreflt
File not found: system32\drivers\Tmpreflt.sys
tmtdi
File not found: C:\WINDOWS\System32\Drivers\tmtdi.sys
tm_cfw
File not found: C:\WINDOWS\System32\Drivers\tm_cfw.sys
Vsapint
File not found: system32\drivers\VsapiNT.sys
wanatw
File not found: System32\DRIVERS\wanatw4.sys

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
TkBellExe
RealNetworks Scheduler
(Not verified) RealNetworks, Inc.
c:\program files\common files\real\update_ob\realsched.exe
tgcmd
Support.com Scheduler and Command Dispatcher
(Not verified) Support.com, Inc.
c:\program files\support.com\bin\tgcmd.exe
PCMService
PowerCinema Resident Program for Dell
(Not verified) CyberLink Corp.
c:\program files\dell\media experience\pcmservice.exe
mswspl
File not found: c:\PROGRA~1\mcafee.com\vso\mcvsshld.exe
DVDSentry
DVDSentry
(Not verified) Dell - Advanced Desktop Engineering
c:\windows\system32\dsentry.exe
DIGStream
File not found: C:\Program Files\DIGStream\digstream.exe
Dell AIO Printer A920
Dell AIO Printer A920Button Manager
(Not verified) Dell Computer Corporation
c:\program files\dell aio printer a920\dlbkbmgr.exe
AVG7_CC
AVG Control Center
(Not verified) GRISOFT, s.r.o.
c:\program files\grisoft\avg free\avgcc.exe
!AVG Anti-Spyware
AVG Anti-Spyware
(Not verified) Anti-Malware Development a.s.
c:\program files\grisoft\avg anti-spyware 7.5\avgas.exe

HKLM\SOFTWARE\Classes\Protocols\Handler
cdo
Microsoft SharePoint Portal Server Object Model
(Not verified) Microsoft Corporation
c:\program files\common files\microsoft shared\web folders\pkmcdo.dll
ms-itss
Microsoft® InfoTech Storage System Library
(Not verified) Microsoft Corporation
c:\program files\common files\microsoft shared\information retrieval\msitss.dll

HKCU\SOFTWARE\Microsoft\Internet Explorer\Desktop\Components
0
File not found: About:Home

C:\Documents and Settings\All Users\Start Menu\Programs\Startup
Digital Line Detect.lnk
Digital Line Detection
(Not verified) BVRP Software
c:\program files\digital line detect\dlg.exe

HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
Google Toolbar Helper
Google IE Client Toolbar
(Verified) Google Inc
c:\program files\google\googletoolbar3.dll

HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks
AVG Anti-Spyware 7.5
AVG Anti-Spyware shellexecutehook
(Not verified) Anti-Malware Development a.s.
c:\program files\grisoft\avg anti-spyware 7.5\shellexecutehook.dll

HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved
Display Panning CPL Extension
File not found: deskpan.dll
RecordNow! SendToExt
Shell Extensions
(Not verified) Sonic Solutions
c:\program files\sonic\recordnow!\shlext.dll
Shell Extensions for RealOne Player
RealPlayer Shell Extensions
(Not verified) RealNetworks, Inc.
c:\program files\real\realplayer\rpshell.dll
Web Folders
Microsoft Web Folders
(Not verified) Microsoft Corporation
c:\program files\common files\microsoft shared\web folders\msonsext.dll
iTunes
iTunes Mini Player DLL
(Not verified) Apple Computer, Inc.
c:\program files\itunes\itunesminiplayer.dll
AVG7 Shell Extension
AVG Shell Extension
(Not verified) GRISOFT, s.r.o.
c:\program files\grisoft\avg free\avgse.dll
AVG7 Find Extension
AVG Shell Extension
(Not verified) GRISOFT, s.r.o.
c:\program files\grisoft\avg free\avgse.dll

HKCU\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved
Graph Shell Extension
Shell extension for Graph
(Not verified) Ivan Johansen
c:\program files\graph\thumbnails.dll

HKLM\Software\Microsoft\Internet Explorer\Toolbar
0
IE Toolbar controls
(Not verified) Walt Disney Internet Group
c:\program files\espn\toolbar\digtoolbar.dll
googletoolbar3.dll
Google IE Client Toolbar
(Verified) Google Inc
c:\program files\google\googletoolbar3.dll

HKLM\Software\Microsoft\Internet Explorer\Extensions
ComcastHSI
File not found: http://www.comcast.net/
Support
File not found: http://www.comcastsupport.com/
Help
File not found: http://online.comcast.net/help/
@xpsp3res.dll,-20001
File not found: C:\WINDOWS\Network

4.Unistall List-
ABBYY FineReader 5.0 Sprint
AcademicOnline Interactive Mathematics
Adobe Acrobat and Reader 6.0.3 Update
Adobe Atmosphere Player for Acrobat and Adobe Reader
Adobe Download Manager 1.2 (Remove Only)
Adobe Photoshop Album 2.0 Starter Edition
AVG Anti-Spyware 7.5
AVG Free Edition
Broadcom Management Programs
CleanUp!
Comcast High-Speed Internet Install Wizard
ComcastSUPPORT
Conexant SmartHSFi V.9x 56K DF PCI Modem
DA920EN
Dell AIO Printer A920
Dell Media Experience
Dell Solution Center
Dell Support 5.0.0 (734)
Digital Line Detect
DVDSentry
ESPN RunTime
Google Toolbar for Internet Explorer
Graph 4.1
HijackThis 1.99.1
Hotfix for Windows XP (KB914440)
Hotfix for Windows XP (KB915865)
hp psc 2100 series
Intel(R) Extreme Graphics Driver
InterActual Player
Internet Explorer Default Page
iTunes
Java 2 Runtime Environment, SE v1.4.2
Kaspersky Online Scanner
Learn2 Player (Uninstall Only)
Macromedia Flash Player 8
MathType 5
Microsoft Data Access Components KB870669
Microsoft Encarta Encyclopedia Standard 2004
Microsoft Internationalized Domain Names Mitigation APIs
Microsoft National Language Support Downlevel APIs
Microsoft Office XP Professional
Modem Helper
MSXML 4.0 SP2 (KB927978)
Netscape (7.1)
Netscape Browser (remove only)
NetWaiting
QuickTime
RealPlayer
Security Update for Step By Step Interactive Training (KB898458)
Security Update for Windows Media Player (KB911564)
Security Update for Windows Media Player 6.4 (KB925398)
Security Update for Windows Media Player 9 (KB911565)
Security Update for Windows Media Player 9 (KB917734)
Security Update for Windows XP (KB883939)
Security Update for Windows XP (KB890046)
Security Update for Windows XP (KB893756)
Security Update for Windows XP (KB896358)
Security Update for Windows XP (KB896422)
Security Update for Windows XP (KB896423)
Security Update for Windows XP (KB896424)
Security Update for Windows XP (KB896428)
Security Update for Windows XP (KB896688)
Security Update for Windows XP (KB899587)
Security Update for Windows XP (KB899588)
Security Update for Windows XP (KB899591)
Security Update for Windows XP (KB900725)
Security Update for Windows XP (KB901017)
Security Update for Windows XP (KB901214)
Security Update for Windows XP (KB902400)
Security Update for Windows XP (KB903235)
Security Update for Windows XP (KB904706)
Security Update for Windows XP (KB905414)
Security Update for Windows XP (KB905749)
Security Update for Windows XP (KB905915)
Security Update for Windows XP (KB908519)
Security Update for Windows XP (KB908531)
Security Update for Windows XP (KB911280)
Security Update for Windows XP (KB911562)
Security Update for Windows XP (KB911567)
Security Update for Windows XP (KB911927)
Security Update for Windows XP (KB912812)
Security Update for Windows XP (KB912919)
Security Update for Windows XP (KB913446)
Security Update for Windows XP (KB913580)
Security Update for Windows XP (KB914388)
Security Update for Windows XP (KB914389)
Security Update for Windows XP (KB916281)
Security Update for Windows XP (KB917159)
Security Update for Windows XP (KB917344)
Security Update for Windows XP (KB917422)
Security Update for Windows XP (KB917953)
Security Update for Windows XP (KB918439)
Security Update for Windows XP (KB918899)
Security Update for Windows XP (KB919007)
Security Update for Windows XP (KB920213)
Security Update for Windows XP (KB920214)
Security Update for Windows XP (KB920670)
Security Update for Windows XP (KB920683)
Security Update for Windows XP (KB920685)
Security Update for Windows XP (KB921398)
Security Update for Windows XP (KB921883)
Security Update for Windows XP (KB922616)
Security Update for Windows XP (KB922760)
Security Update for Windows XP (KB922819)
Security Update for Windows XP (KB923191)
Security Update for Windows XP (KB923414)
Security Update for Windows XP (KB923689)
Security Update for Windows XP (KB923694)
Security Update for Windows XP (KB923980)
Security Update for Windows XP (KB924191)
Security Update for Windows XP (KB924270)
Security Update for Windows XP (KB924496)
Security Update for Windows XP (KB925454)
Security Update for Windows XP (KB925486)
Security Update for Windows XP (KB926255)
Sonic RecordNow!
Sonic Update Manager
Spybot - Search & Destroy 1.4
Update for Windows XP (KB894391)
Update for Windows XP (KB896727)
Update for Windows XP (KB898461)
Update for Windows XP (KB900485)
Update for Windows XP (KB904942)
Update for Windows XP (KB910437)
Update for Windows XP (KB916595)
Update for Windows XP (KB920872)
Update for Windows XP (KB922582)
Windows Installer 3.1 (KB893803)
Windows Installer 3.1 (KB893803)
Windows Internet Explorer 7
Windows XP Hotfix - KB834707
Windows XP Hotfix - KB867282
Windows XP Hotfix - KB873333
Windows XP Hotfix - KB873339
Windows XP Hotfix - KB884020
Windows XP Hotfix - KB885250
Windows XP Hotfix - KB885835
Windows XP Hotfix - KB885836
Windows XP Hotfix - KB885884
Windows XP Hotfix - KB886185
Windows XP Hotfix - KB887472
Windows XP Hotfix - KB887742
Windows XP Hotfix - KB888113
Windows XP Hotfix - KB888302
Windows XP Hotfix - KB890047
Windows XP Hotfix - KB890175
Windows XP Hotfix - KB890859
Windows XP Hotfix - KB890923
Windows XP Hotfix - KB891781
Windows XP Hotfix - KB893066
Windows XP Hotfix - KB893086
Windows XP Service Pack 2
WordPerfect Office 11

5.New HiJack Log

Logfile of HijackThis v1.99.1
Scan saved at 7:55:24 AM, on 1/6/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5730.0011)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\LEXPPS.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\WINDOWS\system32\cisvc.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\support.com\bin\tgcmd.exe
C:\Program Files\Dell\Media Experience\PCMService.exe
C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb05.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\System32\DSentry.exe
C:\Program Files\Dell AIO Printer A920\dlbkbmgr.exe
C:\Program Files\Dell AIO Printer A920\dlbkbmon.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\cidaemon.exe
C:\Documents and Settings\Joe Kish\Desktop\Auto\autoruns.exe
C:\Documents and Settings\Joe Kish\Desktop\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell4me.com/myway
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://aimhome.netscape.com/aimhome.adp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = about:blank
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.dell4me.com/myway
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer presented by Comcast
F2 - REG:system.ini: Shell=Explorer.exe
N4 - Mozilla: user_pref("browser.startup.homepage", "http://home.netscape.com/bookmark/7_1/home.html"); (C:\Documents and Settings\Joe Kish\Application Data\Mozilla\Profiles\default\uxk0dsk0.slt\prefs.js)
N4 - Mozilla: user_pref("browser.search.defaultengine", "engine://C%3A%5CPROGRA%7E1%5CNETSCAPE%5CNETSCAPE%5Csearchplugins%5CSBWeb_01.src"); (C:\Documents and Settings\Joe Kish\Application Data\Mozilla\Profiles\default\uxk0dsk0.slt\prefs.js)
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll
O3 - Toolbar: &ESPN - {AE6F2894-AF10-4C9C-B16E-1DFC6FF8C0C6} - C:\Program Files\ESPN\Toolbar\DIGToolBar.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [tgcmd] "C:\Program Files\support.com\bin\tgcmd.exe" /server
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\Media Experience\PCMService.exe"
O4 - HKLM\..\Run: [mswspl] "c:\PROGRA~1\mcafee.com\vso\mcvsshld.exe"
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb05.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [DVDSentry] C:\WINDOWS\System32\DSentry.exe
O4 - HKLM\..\Run: [DIGStream] C:\Program Files\DIGStream\digstream.exe
O4 - HKLM\..\Run: [Dell AIO Printer A920] "C:\Program Files\Dell AIO Printer A920\dlbkbmgr.exe"
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Global Startup: Digital Line Detect.lnk = ?
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: &AIM Search - res://C:\Program Files\AIM Toolbar\AIMBar.dll/aimsearch.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2\bin\npjpi142.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2\bin\npjpi142.dll
O9 - Extra button: ComcastHSI - {669B269B-0D4E-41FB-A3D8-FD67CA94F646} - http://www.comcast.net/ (file missing)
O9 - Extra button: Support - {8828075D-D097-4055-AA02-2DBFA9D85E8A} - http://www.comcastsupport.com/ (file missing)
O9 - Extra button: Help - {97809617-3937-4F84-B335-9BB05EF1A8D4} - http://online.comcast.net/help/ (file missing)
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/eng/partner/default/kavwebscan_unicode.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} - http://download.mcafee.com/molbin/shared/mcinsctl/4,0,0,101/mcinsctl.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1166366728109
O16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} - http://download.mcafee.com/molbin/shared/mcgdmgr/1,0,0,26/mcgdmgr.cab
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
O23 - Service: Trend Micro Central Control Component (PcCtlCom) - Unknown owner - C:\PROGRA~1\TRENDM~1\INTERN~1\PcCtlCom.exe (file missing)
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Trend Micro Real-time Service (Tmntsrv) - Unknown owner - C:\PROGRA~1\TRENDM~1\INTERN~1\Tmntsrv.exe (file missing)
O23 - Service: Trend Micro Personal Firewall (TmPfw) - Unknown owner - C:\PROGRA~1\TRENDM~1\INTERN~1\TmPfw.exe (file missing)
O23 - Service: Trend Micro Proxy Service (tmproxy) - Unknown owner - C:\PROGRA~1\TRENDM~1\INTERN~1\tmproxy.exe (file missing)
 

·
Registered
Joined
·
2,506 Posts
Looking much better. How is your machine behaving now?

Deletions
Delete these directories and file:
C:\Program Files\iWon
C:\Program Files\AWS
C:\WINDOWS\SYSTEM32\iwdhbzxu.exe

Online Scanner
Perform an online scan with Internet Explorer with Panda ActiveScan.
  1. Click on the "Scan your PC" button located at the bottom of the page. A popup window should appear -- make sure you allow it if you have a popup blocker.
  2. Enter your e-mail address, country, and state and click Scan Now.
  3. Your computer will download Panda's 8 megabyte ActiveX control at this point. Follow the on-screen directions if it asks you to install the ActiveX control.
  4. Begin the scan by selecting My Computer. Note:
    • Please turn off the real time scanner of any existing antivirus program while performing the online scan.
    • Please ignore any entry it finds and the offer to buy the program to remove the entry, as we will address this later.
    • Click on See report then click Save report.
    • It is not necessary to remain online while it's doing the scan, but you will have to re-connect after it has finished to see the report.

Please post the results of Panda scan along with a new HijackThis log after Panda finishes.
 
1 - 4 of 4 Posts
Status
Not open for further replies.
Top