Welcome to MalwareRemoval.com,
What if we told you that you could get malware removal help from experts, and that it was 100% free? MalwareRemoval.com provides free support for people with infected computers. Our help, and the tools we use are always 100% free. No hidden catch. We simply enjoy helping others. You enjoy a clean, safe computer.

Malware Removal Instructions

teenagers hijack this log-anyone to look at please!!

MalwareRemoval.com provides free support for people with infected computers. Using plain language that anyone can understand, our community of volunteer experts will walk you through each step.

teenagers hijack this log-anyone to look at please!!

Unread postby rainbow bridge » May 30th, 2005, 5:02 pm

Hello. This is the log of a pc that I removed 303 viruses and gawd knows how many spywares from. I have installed and scanned several times with the following:
AVG
MSAntispy
Spybot
Adaware
Spywareblaster
Ccleaner
A2
All the scans (also done in safe mode) are saying its clean- but I dont think it is! I still have pop ups and keep being redirected to a search page :(
This pc belongs to my friends teenage boys and they have been visiting some pretty unsavoury sites I must say.They had Kazaa installed and inadequate Anti virus...say no more
Any one help please?












Logfile of HijackThis v1.99.0
Scan saved at 13:52:10, on 30/05/2005
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\LEXPPS.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\WINDOWS\system32\cisvc.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\hkcmd.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\Dell AIO Printer A920\dlbkbmgr.exe
C:\WINDOWS\System32\gsicon.exe
C:\WINDOWS\System32\dslagent.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Java\jre1.5.0_01\bin\jusched.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\Program Files\Dell AIO Printer A920\dlbkbmon.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe
C:\WINDOWS\System32\5ac69tq9.exe
C:\Program Files\Microsoft AntiSpyware\gcasServ.exe
C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe
C:\Program Files\BT Broadband\Help\bin\mpbtn.exe
C:\Program Files\CASIO\Photo Loader\Plauto.exe
C:\Program Files\BTopenworld NetHelp\bin\mpbtn.exe
C:\WINDOWS\System32\wuauclt.exe
C:\WINDOWS\notepad.exe
C:\WINDOWS\System32\msiexec.exe
C:\WINDOWS\system32\cidaemon.exe
C:\Documents and Settings\Owner\Desktop\HijackThis.exe
C:\PROGRA~1\Yahoo!\browser\ybrowser.exe
C:\PROGRA~1\Yahoo!\browser\ycommon.exe
C:\PROGRA~1\Yahoo!\MESSEN~1\YPAGER.EXE
C:\Program Files\Yahoo!\browser\ybrwicon.exe
C:\Program Files\Microsoft Office\Office\WINWORD.EXE
C:\WINDOWS\notepad.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://uk.red.clientapps.yahoo.com/cust ... yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://uk.red.clientapps.yahoo.com/cust ... yahoo.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer provided by BT Yahoo! Broadband
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - Default URLSearchHook is missing
O2 - BHO: (no name) - {11AE6604-818C-5674-D543-A5DD292CDB2A} - C:\WINDOWS\system32\nettc32.dll
O2 - BHO: (no name) - {251F1678-C6A5-89D9-D60F-44823539572A} - (no file)
O2 - BHO: (no name) - {36981703-1485-0313-13DD-7B92DCE8CA3E} - C:\WINDOWS\iebk32.dll
O2 - BHO: (no name) - {67C3D253-86E0-3455-99E5-3DD535E435E7} - C:\WINDOWS\ieon32.dll
O2 - BHO: (no name) - {976DFA7F-2E21-F47E-C5BB-B6C988EE98A5} - C:\WINDOWS\system32\iewb.dll
O2 - BHO: (no name) - {97AB2DB6-2797-5E66-F69B-1C10B62342C2} - C:\WINDOWS\mfczv32.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: (no name) - {F9AD27F1-50B4-A52F-10E5-9CAEB34A9715} - C:\WINDOWS\system32\atlcc32.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: BT Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn1\ycomp5_3_12_0.dll
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [StorageGuard] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [Dell AIO Printer A920] "C:\Program Files\Dell AIO Printer A920\dlbkbmgr.exe"
O4 - HKLM\..\Run: [GSICONEXE] gsicon.exe
O4 - HKLM\..\Run: [DSLAGENTEXE] dslagent.exe USB
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] C:\Program Files\iTunes\iTunesHelper.exe
O4 - HKLM\..\Run: [iexplore.exe] C:\Program Files\Internet Explorer\iexplore.exe
O4 - HKLM\..\Run: [Grid Axis Global Free] C:\Documents and Settings\All Users\Application Data\Debug Dvd Grid Axis\corn log.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_01\bin\jusched.exe
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [AVG7_EMC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O4 - HKLM\..\Run: [SpeedTouch USB Diagnostics] "C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe" /icon
O4 - HKLM\..\Run: [5ac69tq9] C:\WINDOWS\System32\5ac69tq9.exe
O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft AntiSpyware\gcasServ.exe"
O4 - Global Startup: BT Broadband Help.lnk = C:\Program Files\BT Broadband\Help\bin\matcli.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O4 - Global Startup: Microsoft Windows.hta
O4 - Global Startup: NetHelp.lnk = C:\Program Files\BTopenworld NetHelp\bin\matcli.exe
O4 - Global Startup: Photo Loader supervisory.lnk = C:\Program Files\CASIO\Photo Loader\Plauto.exe
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Translate into English - res://c:\program files\google\GoogleToolbar1.dll/cmtrans.html
O9 - Extra button: BT Yahoo! Sidebar - {51085E3D-A958-42A2-A6BE-A6A9B0BAF276} - C:\Program Files\Yahoo!\browser\ysidebarIE.dll
O9 - Extra 'Tools' menuitem: BT &Yahoo! Sidebar - {51085E3D-A958-42A2-A6BE-A6A9B0BAF276} - C:\Program Files\Yahoo!\browser\ysidebarIE.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O9 - Extra 'Tools' menuitem: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O9 - Extra button: BT - {9B4FA52B-1B82-41A4-A632-738F65490A0D} - http://www.bt.com (file missing) (HKCU)
O9 - Extra button: Homepage - {D8C37BFB-10B1-4C22-8624-44CA2FCD5AF5} - http://bt.yahoo.com (file missing) (HKCU)
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/ms ... b31267.cab
O16 - DPF: {15AD6789-CDB4-47E1-A9DA-992EE8E6BAD6} - http://static.windupdates.com/cab/62479 ... dge-c9.cab
O16 - DPF: {22A88341-AFCB-45F0-A856-C2BAE74F878E} - http://www.20x2p.com/f0d7321e/enter.cab
O16 - DPF: {231B1C6E-F934-42A2-92B6-C2FEFEC24276} (yucsetreg Class) - C:\Program Files\Yahoo!\common\yucconfig.dll
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/Mi ... b28578.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\common\yinsthelper.dll
O16 - DPF: {42F2C9BA-614F-47C0-B3E3-ECFD34EED658} - http://www.ysbweb.com/ist/softwares/v4. ... egular.cab
O16 - DPF: {4C39376E-FA9D-4349-BACC-D305C1750EF3} (EPUImageControl Class) - http://tools.ebayimg.com/eps/wl/activex ... 0-3-24.cab
O16 - DPF: {527196A4-B1A3-4647-931D-37BA5AF23037} - http://teen4-sex.com/open.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.com/v ... 3875199743
O16 - DPF: {771A1334-6B08-4A6B-AEDC-CF994BA2CEBE} - http://www.ysbweb.com/ist/softwares/v4. ... egular.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Me ... b28578.cab
O16 - DPF: {DE910060-8EFB-44B9-B492-75180696643F} - http://www.hotsearchbar.com/toolbar30/hsrb.cab
O16 - DPF: {FF3F0F03-0F01-131A-A3F9-08F02B23E0CC} - http://66.117.37.13/gba938.exe
O16 - DPF: {FFCEABDA-C04E-7F4A-E9B6-DFA72B2F49FB} - http://213.200.210.10/dl/101/GB205_1050.exe
O17 - HKLM\System\CCS\Services\Tcpip\..\{7CAE70A6-1031-4E12-AC57-14F22A028D27}: NameServer = 194.72.9.38 194.74.65.87
O23 - Service: Workstation NetLogon Service - Unknown - C:\WINDOWS\system32\syspd32.exe (file missing)
O23 - Service: AVG7 Alert Manager Server - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LexBce Server - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
O23 - Service: Miscrosoft Updates Service 4 - Unknown - C:\WINDOWS\System32\msupd4.exe
O23 - Service: WebSeach Toolbar support NT service - Unknown - C:\PROGRA~1\Toolbar\TBPSSvc.exe (file missing)
O23 - Service: WinTools for IE service - Unknown - C:\Program Files\Common Files\WinTools\WToolsS.exe (file missing)
O23 - Service: Windows Update Service - Unknown - C:\WINDOWS\System32\wuamgrd.exe (file missing)
O23 - Service: YPCService - Yahoo! Inc. - C:\WINDOWS\system32\YPCSER~1.EXE
rainbow bridge
Regular Member
 
Posts: 46
Joined: May 30th, 2005, 4:42 pm
Advertisement
Register to Remove

Unread postby 'KotaGuy » May 30th, 2005, 5:20 pm

Hi rainbow bridge. I'm 'KotaGuy. Welcome to Malware Removal.

I need you to update your version of HijackThis. Uninstall delete the old version, and download the newest version here.

Place it in its own folder.

Run and scan with it and post the new log please.

Thanks!
User avatar
'KotaGuy
Admin/Teacher Emeritus
 
Posts: 12472
Joined: April 7th, 2005, 7:06 pm
Location: Alberta, Canada

kotaguy

Unread postby rainbow bridge » May 30th, 2005, 5:37 pm

Hiya! Here is the new updated log, I hope you can help!
rainbow bridge
Regular Member
 
Posts: 46
Joined: May 30th, 2005, 4:42 pm

oops

Unread postby rainbow bridge » May 30th, 2005, 5:38 pm

Logfile of HijackThis v1.99.1
Scan saved at 22:31:15, on 30/05/2005
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\LEXPPS.EXE
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\WINDOWS\system32\cisvc.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\hkcmd.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\Dell AIO Printer A920\dlbkbmgr.exe
C:\WINDOWS\System32\gsicon.exe
C:\WINDOWS\System32\dslagent.exe
C:\Program Files\Dell AIO Printer A920\dlbkbmon.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Java\jre1.5.0_01\bin\jusched.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe
C:\WINDOWS\System32\5ac69tq9.exe
C:\Program Files\Microsoft AntiSpyware\gcasServ.exe
C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\BT Broadband\Help\bin\mpbtn.exe
C:\Program Files\CASIO\Photo Loader\Plauto.exe
C:\Program Files\BTopenworld NetHelp\bin\mpbtn.exe
C:\WINDOWS\System32\wuauclt.exe
C:\PROGRA~1\Yahoo!\browser\ycommon.exe
C:\PROGRA~1\Yahoo!\MESSEN~1\YPAGER.EXE
C:\Program Files\Yahoo!\browser\ybrwicon.exe
C:\WINDOWS\system32\cidaemon.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Owner\Desktop\hijackthis\HijackThis.exe
C:\WINDOWS\System32\msiexec.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer provided by BT Yahoo! Broadband
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - Default URLSearchHook is missing
O2 - BHO: (no name) - {11AE6604-818C-5674-D543-A5DD292CDB2A} - C:\WINDOWS\system32\nettc32.dll
O2 - BHO: (no name) - {251F1678-C6A5-89D9-D60F-44823539572A} - (no file)
O2 - BHO: (no name) - {36981703-1485-0313-13DD-7B92DCE8CA3E} - C:\WINDOWS\iebk32.dll
O2 - BHO: (no name) - {67C3D253-86E0-3455-99E5-3DD535E435E7} - C:\WINDOWS\ieon32.dll
O2 - BHO: (no name) - {976DFA7F-2E21-F47E-C5BB-B6C988EE98A5} - C:\WINDOWS\system32\iewb.dll
O2 - BHO: (no name) - {97AB2DB6-2797-5E66-F69B-1C10B62342C2} - C:\WINDOWS\mfczv32.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: (no name) - {F9AD27F1-50B4-A52F-10E5-9CAEB34A9715} - C:\WINDOWS\system32\atlcc32.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: BT Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn1\ycomp5_3_12_0.dll
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [StorageGuard] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [Dell AIO Printer A920] "C:\Program Files\Dell AIO Printer A920\dlbkbmgr.exe"
O4 - HKLM\..\Run: [GSICONEXE] gsicon.exe
O4 - HKLM\..\Run: [DSLAGENTEXE] dslagent.exe USB
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] C:\Program Files\iTunes\iTunesHelper.exe
O4 - HKLM\..\Run: [iexplore.exe] C:\Program Files\Internet Explorer\iexplore.exe
O4 - HKLM\..\Run: [Grid Axis Global Free] C:\Documents and Settings\All Users\Application Data\Debug Dvd Grid Axis\corn log.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_01\bin\jusched.exe
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [AVG7_EMC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O4 - HKLM\..\Run: [SpeedTouch USB Diagnostics] "C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe" /icon
O4 - HKLM\..\Run: [5ac69tq9] C:\WINDOWS\System32\5ac69tq9.exe
O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft AntiSpyware\gcasServ.exe"
O4 - Global Startup: BT Broadband Help.lnk = C:\Program Files\BT Broadband\Help\bin\matcli.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O4 - Global Startup: Microsoft Windows.hta
O4 - Global Startup: NetHelp.lnk = C:\Program Files\BTopenworld NetHelp\bin\matcli.exe
O4 - Global Startup: Photo Loader supervisory.lnk = C:\Program Files\CASIO\Photo Loader\Plauto.exe
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Translate into English - res://c:\program files\google\GoogleToolbar1.dll/cmtrans.html
O9 - Extra button: BT Yahoo! Sidebar - {51085E3D-A958-42A2-A6BE-A6A9B0BAF276} - C:\Program Files\Yahoo!\browser\ysidebarIE.dll
O9 - Extra 'Tools' menuitem: BT &Yahoo! Sidebar - {51085E3D-A958-42A2-A6BE-A6A9B0BAF276} - C:\Program Files\Yahoo!\browser\ysidebarIE.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O9 - Extra 'Tools' menuitem: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O9 - Extra button: BT - {9B4FA52B-1B82-41A4-A632-738F65490A0D} - http://www.bt.com (file missing) (HKCU)
O9 - Extra button: Homepage - {D8C37BFB-10B1-4C22-8624-44CA2FCD5AF5} - http://bt.yahoo.com (file missing) (HKCU)
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/ms ... b31267.cab
O16 - DPF: {15AD6789-CDB4-47E1-A9DA-992EE8E6BAD6} - http://static.windupdates.com/cab/62479 ... dge-c9.cab
O16 - DPF: {22A88341-AFCB-45F0-A856-C2BAE74F878E} - http://www.20x2p.com/f0d7321e/enter.cab
O16 - DPF: {231B1C6E-F934-42A2-92B6-C2FEFEC24276} (yucsetreg Class) - C:\Program Files\Yahoo!\common\yucconfig.dll
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/Mi ... b28578.cab
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/Shar ... vSniff.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\common\yinsthelper.dll
O16 - DPF: {42F2C9BA-614F-47C0-B3E3-ECFD34EED658} - http://www.ysbweb.com/ist/softwares/v4. ... egular.cab
O16 - DPF: {4C39376E-FA9D-4349-BACC-D305C1750EF3} (EPUImageControl Class) - http://tools.ebayimg.com/eps/wl/activex ... 0-3-24.cab
O16 - DPF: {527196A4-B1A3-4647-931D-37BA5AF23037} - http://teen4-sex.com/open.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.com/v ... 3875199743
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/Shar ... /cabsa.cab
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2004 ... scan53.cab
O16 - DPF: {771A1334-6B08-4A6B-AEDC-CF994BA2CEBE} - http://www.ysbweb.com/ist/softwares/v4. ... egular.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Me ... b28578.cab
O16 - DPF: {DE910060-8EFB-44B9-B492-75180696643F} - http://www.hotsearchbar.com/toolbar30/hsrb.cab
O16 - DPF: {FF3F0F03-0F01-131A-A3F9-08F02B23E0CC} - http://66.117.37.13/gba938.exe
O16 - DPF: {FFCEABDA-C04E-7F4A-E9B6-DFA72B2F49FB} - http://213.200.210.10/dl/101/GB205_1050.exe
O17 - HKLM\System\CCS\Services\Tcpip\..\{7CAE70A6-1031-4E12-AC57-14F22A028D27}: NameServer = 194.72.9.38 194.74.65.87
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O23 - Service: Workstation NetLogon Service ( 11Fßä#·ºÄÖ`I) - Unknown owner - C:\WINDOWS\system32\syspd32.exe (file missing)
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
O23 - Service: WebSeach Toolbar support NT service (TBPSSvc) - Unknown owner - C:\PROGRA~1\Toolbar\TBPSSvc.exe (file missing)
O23 - Service: WinTools for IE service (WinToolsSvc) - Unknown owner - C:\Program Files\Common Files\WinTools\WToolsS.exe (file missing)
O23 - Service: Windows Update Service (wuamgrd) - Unknown owner - C:\WINDOWS\System32\wuamgrd.exe (file missing)
O23 - Service: YPCService - Yahoo! Inc. - C:\WINDOWS\system32\YPCSER~1.EXE
rainbow bridge
Regular Member
 
Posts: 46
Joined: May 30th, 2005, 4:42 pm

Unread postby 'KotaGuy » May 30th, 2005, 6:51 pm

Thanks for posting the new log.

Download and install CCleaner. don't use it yet.

Copy this into either notepad or wordpad for reference during the fix.

Please disable Microsoft AntiSpyware Real Time Protection, as it may interfere with the fix. To do this:
  • Open Microsoft AntiSpyware.
  • Click on Tools, Settings.
  • In the left pane, click on Real-time Protection.
  • Under Startup Options uncheck Enable the Microsoft AntiSpyware Security Agents on startup (recommended).
  • Under Real-time spyware threat protection uncheck Enable real-time spyware threat protection (recommended).
  • After you uncheck these, click on the Save button and close Microsoft AntiSpyware.
  • Right click on the Microsoft AntiSpyware icon on the taskbar and select Shutdown Microsoft AntiSpyware.
Download CWShredder. Run the program. Update it. Press the Fix button. Exit when done.

Hit Ctrl+Alt+Delete to bring up the Task Manager. End Task:

5ac69tq9.exe

Click Start>Run, type in sevices.msc. In the list of services, find:

Workstation NetLogon Service
WebSeach Toolbar support NT service
WinTools for IE service
Windows Update Service


For each of these, do the following:
  • Right click on the Service.
  • Stop the Service.
  • Change the Stratup Type to Disabled
You can exit the Services console when done.

Go to Add/Remove Programs. Uninstall the following if there:

WinTools
WebSearch Toolbar


Run and scan with HijackThis. With all browsers and windows closed, place a check beside the following and fix:

R3 - Default URLSearchHook is missing
O2 - BHO: (no name) - {11AE6604-818C-5674-D543-A5DD292CDB2A} - C:\WINDOWS\system32\nettc32.dll
O2 - BHO: (no name) - {251F1678-C6A5-89D9-D60F-44823539572A} - (no file)
O2 - BHO: (no name) - {36981703-1485-0313-13DD-7B92DCE8CA3E} - C:\WINDOWS\iebk32.dll
O2 - BHO: (no name) - {67C3D253-86E0-3455-99E5-3DD535E435E7} - C:\WINDOWS\ieon32.dll
O2 - BHO: (no name) - {976DFA7F-2E21-F47E-C5BB-B6C988EE98A5} - C:\WINDOWS\system32\iewb.dll
O2 - BHO: (no name) - {97AB2DB6-2797-5E66-F69B-1C10B62342C2} - C:\WINDOWS\mfczv32.dll
O2 - BHO: (no name) - {F9AD27F1-50B4-A52F-10E5-9CAEB34A9715} - C:\WINDOWS\system32\atlcc32.dll
O4 - HKLM\..\Run: [Grid Axis Global Free] C:\Documents and Settings\All Users\Application Data\Debug Dvd Grid Axis\corn log.exe
O4 - HKLM\..\Run: [5ac69tq9] C:\WINDOWS\System32\5ac69tq9.exe
O4 - Global Startup: Microsoft Windows.hta
O16 - DPF: {15AD6789-CDB4-47E1-A9DA-992EE8E6BAD6} - http://static.windupdates.com/cab/62479 ... dge-c9.cab
O16 - DPF: {22A88341-AFCB-45F0-A856-C2BAE74F878E} - http://www.20x2p.com/f0d7321e/enter.cab
O16 - DPF: {42F2C9BA-614F-47C0-B3E3-ECFD34EED658} - http://www.ysbweb.com/ist/softwares/v4. ... egular.cab
O16 - DPF: {527196A4-B1A3-4647-931D-37BA5AF23037} - http://teen4-sex.com/open.exe
O16 - DPF: {771A1334-6B08-4A6B-AEDC-CF994BA2CEBE} - http://www.ysbweb.com/ist/softwares/v4. ... egular.cab
O16 - DPF: {DE910060-8EFB-44B9-B492-75180696643F} - http://www.hotsearchbar.com/toolbar30/hsrb.cab
O16 - DPF: {FF3F0F03-0F01-131A-A3F9-08F02B23E0CC} - http://66.117.37.13/gba938.exe
O16 - DPF: {FFCEABDA-C04E-7F4A-E9B6-DFA72B2F49FB} - http://213.200.210.10/dl/101/GB205_1050.exe
O23 - Service: Workstation NetLogon Service ( 11Fßä#·ºÄÖ`I) - Unknown owner - C:\WINDOWS\system32\syspd32.exe (file missing)
O23 - Service: WebSeach Toolbar support NT service (TBPSSvc) - Unknown owner - C:\PROGRA~1\Toolbar\TBPSSvc.exe (file missing)
O23 - Service: WinTools for IE service (WinToolsSvc) - Unknown owner - C:\Program Files\Common Files\WinTools\WToolsS.exe (file missing)
O23 - Service: Windows Update Service (wuamgrd) - Unknown owner - C:\WINDOWS\System32\wuamgrd.exe (file missing)


Boot into Safe Mode. To do this:
  • Reboot your computer.
  • Tap the F8 button as your computer is booting to bring you to the Advanced Options Menu.
  • Select Safe Mode and press Enter.

Search for and delete the following folders:

C:\Program Files\Common Files\WinTools
C:\Program Files\Common Files\Toolbar
C:\Documents and Settings\All Users\Application Data\Debug Dvd Grid Axis

Search for and delete the following files:

C:\WINDOWS\System32\5ac69tq9.exe
C:\WINDOWS\system32\syspd32.exe
C:\WINDOWS\System32\wuamgrd.exe
Microsoft Windows.hta

Browse to the C:\Windows\Prefetch folder. Delete all the files in the folder, do not delete the folder itself. Empty your Recycle Bin. Run CCleaner.

Reboot Windows normally and post a new HijackThis log please.
User avatar
'KotaGuy
Admin/Teacher Emeritus
 
Posts: 12472
Joined: April 7th, 2005, 7:06 pm
Location: Alberta, Canada

kotaguy

Unread postby rainbow bridge » May 30th, 2005, 7:56 pm

Wow! Thanks for all that info.
Have followed as best as I could, and here is the latest log. I am off to bed now, will look in in the morning. Once again, thank you kindly for your help. :lol:
rainbow bridge
Regular Member
 
Posts: 46
Joined: May 30th, 2005, 4:42 pm

oops I dunnit again...

Unread postby rainbow bridge » May 30th, 2005, 7:57 pm

Logfile of HijackThis v1.99.1
Scan saved at 00:52:16, on 31/05/2005
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\LEXPPS.EXE
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\WINDOWS\system32\cisvc.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\hkcmd.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe
C:\Program Files\Dell AIO Printer A920\dlbkbmgr.exe
C:\WINDOWS\System32\gsicon.exe
C:\Program Files\Dell AIO Printer A920\dlbkbmon.exe
C:\WINDOWS\System32\dslagent.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Java\jre1.5.0_01\bin\jusched.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe
C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe
C:\Program Files\BT Broadband\Help\bin\mpbtn.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\CASIO\Photo Loader\Plauto.exe
C:\Program Files\BTopenworld NetHelp\bin\mpbtn.exe
C:\Program Files\Yahoo!\browser\ybrowser.exe
C:\PROGRA~1\Yahoo!\browser\ycommon.exe
C:\WINDOWS\System32\wuauclt.exe
C:\PROGRA~1\Yahoo!\MESSEN~1\YPAGER.EXE
C:\Program Files\Yahoo!\browser\ybrwicon.exe
C:\WINDOWS\System32\wuauclt.exe
C:\Documents and Settings\Owner\Desktop\hijackthis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer provided by BT Yahoo! Broadband
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: BT Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn1\ycomp5_3_12_0.dll
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [StorageGuard] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [Dell AIO Printer A920] "C:\Program Files\Dell AIO Printer A920\dlbkbmgr.exe"
O4 - HKLM\..\Run: [GSICONEXE] gsicon.exe
O4 - HKLM\..\Run: [DSLAGENTEXE] dslagent.exe USB
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] C:\Program Files\iTunes\iTunesHelper.exe
O4 - HKLM\..\Run: [iexplore.exe] C:\Program Files\Internet Explorer\iexplore.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_01\bin\jusched.exe
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [AVG7_EMC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O4 - HKLM\..\Run: [SpeedTouch USB Diagnostics] "C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe" /icon
O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft AntiSpyware\gcasServ.exe"
O4 - Global Startup: BT Broadband Help.lnk = C:\Program Files\BT Broadband\Help\bin\matcli.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O4 - Global Startup: NetHelp.lnk = C:\Program Files\BTopenworld NetHelp\bin\matcli.exe
O4 - Global Startup: Photo Loader supervisory.lnk = C:\Program Files\CASIO\Photo Loader\Plauto.exe
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Translate into English - res://c:\program files\google\GoogleToolbar1.dll/cmtrans.html
O9 - Extra button: BT Yahoo! Sidebar - {51085E3D-A958-42A2-A6BE-A6A9B0BAF276} - C:\Program Files\Yahoo!\browser\ysidebarIE.dll
O9 - Extra 'Tools' menuitem: BT &Yahoo! Sidebar - {51085E3D-A958-42A2-A6BE-A6A9B0BAF276} - C:\Program Files\Yahoo!\browser\ysidebarIE.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O9 - Extra 'Tools' menuitem: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O9 - Extra button: BT - {9B4FA52B-1B82-41A4-A632-738F65490A0D} - http://www.bt.com (file missing) (HKCU)
O9 - Extra button: Homepage - {D8C37BFB-10B1-4C22-8624-44CA2FCD5AF5} - http://bt.yahoo.com (file missing) (HKCU)
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/ms ... b31267.cab
O16 - DPF: {231B1C6E-F934-42A2-92B6-C2FEFEC24276} (yucsetreg Class) - C:\Program Files\Yahoo!\common\yucconfig.dll
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/Mi ... b28578.cab
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/Shar ... vSniff.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\common\yinsthelper.dll
O16 - DPF: {4C39376E-FA9D-4349-BACC-D305C1750EF3} (EPUImageControl Class) - http://tools.ebayimg.com/eps/wl/activex ... 0-3-24.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.com/v ... 3875199743
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/Shar ... /cabsa.cab
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2004 ... scan53.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Me ... b28578.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://www.pandasoftware.com/activescan/as5/asinst.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{7CAE70A6-1031-4E12-AC57-14F22A028D27}: NameServer = 194.72.9.38 194.74.65.87
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O23 - Service: Workstation NetLogon Service ( 11Fßä#·ºÄÖ`I) - Unknown owner - C:\WINDOWS\system32\syspd32.exe (file missing)
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
O23 - Service: WebSeach Toolbar support NT service (TBPSSvc) - Unknown owner - C:\PROGRA~1\Toolbar\TBPSSvc.exe (file missing)
O23 - Service: WinTools for IE service (WinToolsSvc) - Unknown owner - C:\Program Files\Common Files\WinTools\WToolsS.exe (file missing)
O23 - Service: Windows Update Service (wuamgrd) - Unknown owner - C:\WINDOWS\System32\wuamgrd.exe (file missing)
O23 - Service: YPCService - Yahoo! Inc. - C:\WINDOWS\system32\YPCSER~1.EXE
rainbow bridge
Regular Member
 
Posts: 46
Joined: May 30th, 2005, 4:42 pm

Unread postby 'KotaGuy » May 30th, 2005, 10:37 pm

Thanks for posting the new log... looking better!

Copy/Paste the following quote box into notepad.

REGEDIT4

[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\ 11Fßä#·ºÄÖ`I]

[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_ 11Fßä#·ºÄÖ`I]

[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\TBPSSvc]

[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_TBPSSvc]

[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WinToolsSvc]

[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_WinToolsSvc]

[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuamgrd]

[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_wuamgrd]


Save it on the Desktop. Name it fixme.reg. Save it as File Type "All Files"(not as a plain text document).

Double click fixme.reg. Answer Yes to merge it into the registry.

Reboot and post a new HijackThis log please.
User avatar
'KotaGuy
Admin/Teacher Emeritus
 
Posts: 12472
Joined: April 7th, 2005, 7:06 pm
Location: Alberta, Canada

kotaguy

Unread postby rainbow bridge » May 31st, 2005, 4:57 am

Hello again. Thank you for helping me with this.



Logfile of HijackThis v1.99.1
Scan saved at 09:56:23, on 31/05/2005
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\LEXPPS.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\WINDOWS\system32\cisvc.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\hkcmd.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe
C:\Program Files\Dell AIO Printer A920\dlbkbmgr.exe
C:\WINDOWS\System32\gsicon.exe
C:\WINDOWS\System32\dslagent.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Java\jre1.5.0_01\bin\jusched.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\Program Files\Dell AIO Printer A920\dlbkbmon.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe
C:\Program Files\CASIO\Photo Loader\Plauto.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\BT Broadband\Help\bin\mpbtn.exe
C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe
C:\Program Files\BTopenworld NetHelp\bin\mpbtn.exe
C:\WINDOWS\System32\wuauclt.exe
C:\WINDOWS\System32\wuauclt.exe
C:\Program Files\Yahoo!\browser\ybrowser.exe
C:\PROGRA~1\Yahoo!\browser\ycommon.exe
C:\PROGRA~1\Yahoo!\MESSEN~1\YPAGER.EXE
C:\Program Files\Yahoo!\browser\ybrwicon.exe
C:\Documents and Settings\Owner\Desktop\hijackthis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer provided by BT Yahoo! Broadband
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: BT Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn1\ycomp5_3_12_0.dll
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [StorageGuard] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [Dell AIO Printer A920] "C:\Program Files\Dell AIO Printer A920\dlbkbmgr.exe"
O4 - HKLM\..\Run: [GSICONEXE] gsicon.exe
O4 - HKLM\..\Run: [DSLAGENTEXE] dslagent.exe USB
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] C:\Program Files\iTunes\iTunesHelper.exe
O4 - HKLM\..\Run: [iexplore.exe] C:\Program Files\Internet Explorer\iexplore.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_01\bin\jusched.exe
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [AVG7_EMC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O4 - HKLM\..\Run: [SpeedTouch USB Diagnostics] "C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe" /icon
O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft AntiSpyware\gcasServ.exe"
O4 - Global Startup: BT Broadband Help.lnk = C:\Program Files\BT Broadband\Help\bin\matcli.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O4 - Global Startup: NetHelp.lnk = C:\Program Files\BTopenworld NetHelp\bin\matcli.exe
O4 - Global Startup: Photo Loader supervisory.lnk = C:\Program Files\CASIO\Photo Loader\Plauto.exe
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Translate into English - res://c:\program files\google\GoogleToolbar1.dll/cmtrans.html
O9 - Extra button: BT Yahoo! Sidebar - {51085E3D-A958-42A2-A6BE-A6A9B0BAF276} - C:\Program Files\Yahoo!\browser\ysidebarIE.dll
O9 - Extra 'Tools' menuitem: BT &Yahoo! Sidebar - {51085E3D-A958-42A2-A6BE-A6A9B0BAF276} - C:\Program Files\Yahoo!\browser\ysidebarIE.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O9 - Extra 'Tools' menuitem: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O9 - Extra button: BT - {9B4FA52B-1B82-41A4-A632-738F65490A0D} - http://www.bt.com (file missing) (HKCU)
O9 - Extra button: Homepage - {D8C37BFB-10B1-4C22-8624-44CA2FCD5AF5} - http://bt.yahoo.com (file missing) (HKCU)
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/ms ... b31267.cab
O16 - DPF: {231B1C6E-F934-42A2-92B6-C2FEFEC24276} (yucsetreg Class) - C:\Program Files\Yahoo!\common\yucconfig.dll
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/Mi ... b28578.cab
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/Shar ... vSniff.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\common\yinsthelper.dll
O16 - DPF: {4C39376E-FA9D-4349-BACC-D305C1750EF3} (EPUImageControl Class) - http://tools.ebayimg.com/eps/wl/activex ... 0-3-24.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.com/v ... 3875199743
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/Shar ... /cabsa.cab
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2004 ... scan53.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Me ... b28578.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://www.pandasoftware.com/activescan/as5/asinst.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{7CAE70A6-1031-4E12-AC57-14F22A028D27}: NameServer = 194.72.9.38 194.74.65.87
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
O23 - Service: YPCService - Yahoo! Inc. - C:\WINDOWS\system32\YPCSER~1.EXE
rainbow bridge
Regular Member
 
Posts: 46
Joined: May 30th, 2005, 4:42 pm

Unread postby 'KotaGuy » May 31st, 2005, 12:02 pm

Good Work! Log looks CLEAN!!:thumbup:

How is the computer behaving? Any of the previous symptoms?
User avatar
'KotaGuy
Admin/Teacher Emeritus
 
Posts: 12472
Joined: April 7th, 2005, 7:06 pm
Location: Alberta, Canada

kotaguy

Unread postby rainbow bridge » May 31st, 2005, 5:41 pm

Hello. well i am so very glad the log is clean! thank you so much.
I did find 2 diallers in the network connections - www_bau and GB Dialler, which I have deleted.
The pc seems to be fine, except, when it boots up and gets to the desktop, it displays a "page not found" window, as if it has tried to connect to the internet. As it is not a cable connection (ie it is a dialup usb adsl modem) there is obviously no immediate connection when it is booted. Can you correct this please?
Sincerely yours
rainbow bridge
rainbow bridge
Regular Member
 
Posts: 46
Joined: May 30th, 2005, 4:42 pm

Unread postby rainbow bridge » May 31st, 2005, 5:43 pm

actually the window says the page cannot be displayed!!
rainbow bridge
Regular Member
 
Posts: 46
Joined: May 30th, 2005, 4:42 pm

Unread postby 'KotaGuy » May 31st, 2005, 6:10 pm

Download and run MWAV.

Post the MWAV log when done.

Thanks!
User avatar
'KotaGuy
Admin/Teacher Emeritus
 
Posts: 12472
Joined: April 7th, 2005, 7:06 pm
Location: Alberta, Canada

kotaguy

Unread postby rainbow bridge » June 1st, 2005, 4:52 am

here is the mwav log:

Wed Jun 01 09:43:35 2005 => **********************************************************
Wed Jun 01 09:43:35 2005 => MicroWorld AntiVirus & Spyware Toolkit Utility.
Wed Jun 01 09:43:35 2005 => Copyright © 2003-2005, MicroWorld Technologies Inc.
Wed Jun 01 09:43:35 2005 => **********************************************************
Wed Jun 01 09:43:35 2005 => Version 6.2.9 (C:\DOCUME~1\Owner\LOCALS~1\Temp\mwavscan.com)
Wed Jun 01 09:43:35 2005 => Log File: C:\DOCUME~1\Owner\LOCALS~1\Temp\MWAV.LOG
Wed Jun 01 09:43:35 2005 => MWAV Registered: FALSE.
Wed Jun 01 09:43:35 2005 => MWAV Mode: Only Scan files.
Wed Jun 01 09:43:38 2005 => Latest Date of files inside MWAV: 29 May 2005 13:10:21.
Wed Jun 01 09:43:41 2005 => AV Library Loaded...
Wed Jun 01 09:43:41 2005 => MWAV doing self scanning...
Wed Jun 01 09:43:41 2005 => Scanning File C:\DOCUME~1\Owner\LOCALS~1\Temp\kavss.exe
Wed Jun 01 09:43:41 2005 => Scanning File C:\DOCUME~1\Owner\LOCALS~1\Temp\Getvlist.exe
Wed Jun 01 09:43:41 2005 => Scanning File C:\DOCUME~1\Owner\LOCALS~1\Temp\kavss.dll
Wed Jun 01 09:43:41 2005 => Scanning File C:\DOCUME~1\Owner\LOCALS~1\Temp\kavssdi.dll
Wed Jun 01 09:43:41 2005 => Scanning File C:\DOCUME~1\Owner\LOCALS~1\Temp\kavssi.dll
Wed Jun 01 09:43:41 2005 => Scanning File C:\DOCUME~1\Owner\LOCALS~1\Temp\kavvlg.dll
Wed Jun 01 09:43:41 2005 => Scanning File C:\DOCUME~1\Owner\LOCALS~1\Temp\msvlclnt.dll
Wed Jun 01 09:43:41 2005 => Scanning File C:\DOCUME~1\Owner\LOCALS~1\Temp\ipc.dll
Wed Jun 01 09:43:41 2005 => Scanning File C:\DOCUME~1\Owner\LOCALS~1\Temp\main.avi
Wed Jun 01 09:43:41 2005 => Scanning File C:\DOCUME~1\Owner\LOCALS~1\Temp\virus.avi
Wed Jun 01 09:43:41 2005 => MWAV files are clean.
Wed Jun 01 09:43:44 2005 => Virus Database Date: 2005/05/29
Wed Jun 01 09:43:44 2005 => Virus Database Count: 132253

Wed Jun 01 09:43:56 2005 => **********************************************************
Wed Jun 01 09:43:56 2005 => MicroWorld AntiVirus & Spyware Toolkit Utility.
Wed Jun 01 09:43:56 2005 => Copyright © 2003-2005, MicroWorld Technologies Inc.
Wed Jun 01 09:43:56 2005 =>
Wed Jun 01 09:43:56 2005 => Support: support@mwti.net
Wed Jun 01 09:43:56 2005 => Web: http://www.mwti.net
Wed Jun 01 09:43:56 2005 => **********************************************************
Wed Jun 01 09:43:56 2005 => Version 6.2.9 (C:\DOCUME~1\Owner\LOCALS~1\Temp\mwavscan.com)
Wed Jun 01 09:43:56 2005 => Log File: C:\DOCUME~1\Owner\LOCALS~1\Temp\MWAV.LOG
Wed Jun 01 09:43:56 2005 => User Account: Owner
Wed Jun 01 09:43:56 2005 => Windows Root Folder: C:\WINDOWS
Wed Jun 01 09:43:56 2005 => Windows Sys32 Folder: C:\WINDOWS\System32
Wed Jun 01 09:43:56 2005 => OS: Windows NT
Wed Jun 01 09:43:56 2005 => Latest Date of files inside MWAV: 29 May 2005 13:10:21.

Wed Jun 01 09:43:56 2005 => Options Selected by User:
Wed Jun 01 09:43:56 2005 => Memory Check: Enabled
Wed Jun 01 09:43:56 2005 => Registry Check: Enabled
Wed Jun 01 09:43:56 2005 => StartUp Folder Check: Enabled
Wed Jun 01 09:43:56 2005 => System Folder Check: Enabled
Wed Jun 01 09:43:56 2005 => System Area Check: Disabled
Wed Jun 01 09:43:56 2005 => Services Check: Enabled
Wed Jun 01 09:43:56 2005 => Drive Check Option Disabled
Wed Jun 01 09:43:56 2005 => Folder Check: Disabled

Wed Jun 01 09:43:56 2005 => ***** Scanning Memory Files *****
Wed Jun 01 09:43:56 2005 => Scanning File C:\WINDOWS\System32\smss.exe
Wed Jun 01 09:43:56 2005 => Scanning File C:\WINDOWS\System32\ntdll.dll
Wed Jun 01 09:43:56 2005 => Scanning File C:\WINDOWS\SYSTEM32\CSRSS.EXE
Wed Jun 01 09:43:56 2005 => Scanning File C:\WINDOWS\system32\CSRSRV.dll
Wed Jun 01 09:43:56 2005 => Scanning File C:\WINDOWS\system32\basesrv.dll
Wed Jun 01 09:43:56 2005 => Scanning File C:\WINDOWS\system32\winsrv.dll
Wed Jun 01 09:43:56 2005 => Scanning File C:\WINDOWS\system32\GDI32.dll
Wed Jun 01 09:43:57 2005 => Scanning File C:\WINDOWS\system32\KERNEL32.dll
Wed Jun 01 09:43:57 2005 => Scanning File C:\WINDOWS\system32\USER32.dll
Wed Jun 01 09:43:57 2005 => Scanning File C:\WINDOWS\system32\ADVAPI32.dll
Wed Jun 01 09:43:57 2005 => Scanning File C:\WINDOWS\system32\RPCRT4.dll
Wed Jun 01 09:43:57 2005 => Scanning File C:\WINDOWS\System32\sxs.dll
Wed Jun 01 09:43:57 2005 => Scanning File C:\WINDOWS\SYSTEM32\WINLOGON.EXE
Wed Jun 01 09:43:57 2005 => Scanning File C:\WINDOWS\system32\msvcrt.dll
Wed Jun 01 09:43:57 2005 => Scanning File C:\WINDOWS\system32\USERENV.dll
Wed Jun 01 09:43:57 2005 => Scanning File C:\WINDOWS\system32\NDdeApi.dll
Wed Jun 01 09:43:57 2005 => Scanning File C:\WINDOWS\system32\CRYPT32.dll
Wed Jun 01 09:43:57 2005 => Scanning File C:\WINDOWS\system32\MSASN1.dll
Wed Jun 01 09:43:57 2005 => Scanning File C:\WINDOWS\system32\Secur32.dll
Wed Jun 01 09:43:57 2005 => Scanning File C:\WINDOWS\system32\WINSTA.dll
Wed Jun 01 09:43:57 2005 => Scanning File C:\WINDOWS\system32\PROFMAP.dll
Wed Jun 01 09:43:57 2005 => Scanning File C:\WINDOWS\system32\NETAPI32.dll
Wed Jun 01 09:43:58 2005 => Scanning File C:\WINDOWS\system32\REGAPI.dll
Wed Jun 01 09:43:58 2005 => Scanning File C:\WINDOWS\system32\WS2_32.dll
Wed Jun 01 09:43:58 2005 => Scanning File C:\WINDOWS\system32\WS2HELP.dll
Wed Jun 01 09:43:58 2005 => Scanning File C:\WINDOWS\system32\AUTHZ.dll
Wed Jun 01 09:43:58 2005 => Scanning File C:\WINDOWS\system32\PSAPI.DLL
Wed Jun 01 09:43:58 2005 => Scanning File C:\WINDOWS\system32\VERSION.dll
Wed Jun 01 09:43:58 2005 => Scanning File C:\WINDOWS\system32\SETUPAPI.dll
Wed Jun 01 09:43:58 2005 => Scanning File C:\WINDOWS\System32\MSGINA.dll
Wed Jun 01 09:43:58 2005 => Scanning File C:\WINDOWS\system32\SHELL32.dll
Wed Jun 01 09:43:58 2005 => Scanning File C:\WINDOWS\system32\SHLWAPI.dll
Wed Jun 01 09:43:58 2005 => Scanning File C:\WINDOWS\system32\COMCTL32.dll
Wed Jun 01 09:43:58 2005 => Scanning File C:\WINDOWS\System32\ODBC32.dll
Wed Jun 01 09:43:58 2005 => Scanning File C:\WINDOWS\system32\comdlg32.dll
Wed Jun 01 09:43:58 2005 => Scanning File C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.1643_x-ww_7c3a9bc6\comctl32.dll
Wed Jun 01 09:43:59 2005 => Scanning File C:\WINDOWS\System32\odbcint.dll
Wed Jun 01 09:43:59 2005 => Scanning File C:\WINDOWS\System32\SHSVCS.dll
Wed Jun 01 09:43:59 2005 => Scanning File C:\WINDOWS\system32\sfc.dll
Wed Jun 01 09:43:59 2005 => Scanning File C:\WINDOWS\System32\sfc_os.dll
Wed Jun 01 09:43:59 2005 => Scanning File C:\WINDOWS\System32\WINTRUST.dll
Wed Jun 01 09:43:59 2005 => Scanning File C:\WINDOWS\system32\ole32.dll
Wed Jun 01 09:43:59 2005 => Scanning File C:\WINDOWS\system32\IMAGEHLP.dll
Wed Jun 01 09:43:59 2005 => Scanning File C:\WINDOWS\System32\WINSCARD.DLL
Wed Jun 01 09:43:59 2005 => Scanning File C:\WINDOWS\System32\WTSAPI32.dll
Wed Jun 01 09:43:59 2005 => Scanning File C:\WINDOWS\System32\uxtheme.dll
Wed Jun 01 09:43:59 2005 => Scanning File C:\WINDOWS\System32\WINMM.dll
Wed Jun 01 09:43:59 2005 => Scanning File C:\WINDOWS\System32\serwvdrv.dll
Wed Jun 01 09:43:59 2005 => Scanning File C:\WINDOWS\System32\umdmxfrm.dll
Wed Jun 01 09:43:59 2005 => Scanning File C:\WINDOWS\system32\cscdll.dll
Wed Jun 01 09:43:59 2005 => Scanning File C:\WINDOWS\System32\rsaenh.dll
Wed Jun 01 09:43:59 2005 => Scanning File C:\WINDOWS\system32\WlNotify.dll
Wed Jun 01 09:43:59 2005 => Scanning File C:\WINDOWS\System32\WINSPOOL.DRV
Wed Jun 01 09:43:59 2005 => Scanning File C:\WINDOWS\system32\MPR.dll
Wed Jun 01 09:44:00 2005 => Scanning File C:\WINDOWS\System32\SAMLIB.dll
Wed Jun 01 09:44:00 2005 => Scanning File C:\WINDOWS\System32\cscui.dll
Wed Jun 01 09:44:00 2005 => Scanning File C:\WINDOWS\System32\NTMARTA.DLL
Wed Jun 01 09:44:00 2005 => Scanning File C:\WINDOWS\system32\WLDAP32.dll
Wed Jun 01 09:44:00 2005 => Scanning File C:\WINDOWS\system32\msv1_0.dll
Wed Jun 01 09:44:00 2005 => Scanning File C:\WINDOWS\System32\wdmaud.drv
Wed Jun 01 09:44:00 2005 => Scanning File C:\WINDOWS\System32\msacm32.drv
Wed Jun 01 09:44:00 2005 => Scanning File C:\WINDOWS\System32\MSACM32.dll
Wed Jun 01 09:44:00 2005 => Scanning File C:\WINDOWS\System32\midimap.dll
Wed Jun 01 09:44:00 2005 => Scanning File C:\WINDOWS\System32\COMRes.dll
Wed Jun 01 09:44:00 2005 => Scanning File C:\WINDOWS\system32\OLEAUT32.dll
Wed Jun 01 09:44:00 2005 => Scanning File C:\WINDOWS\System32\CLBCATQ.DLL
Wed Jun 01 09:44:00 2005 => Scanning File C:\WINDOWS\system32\services.exe
Wed Jun 01 09:44:00 2005 => Scanning File C:\WINDOWS\system32\SCESRV.dll
Wed Jun 01 09:44:00 2005 => Scanning File C:\WINDOWS\system32\umpnpmgr.dll
Wed Jun 01 09:44:00 2005 => Scanning File C:\WINDOWS\system32\NCObjAPI.DLL
Wed Jun 01 09:44:00 2005 => Scanning File C:\WINDOWS\system32\eventlog.dll
Wed Jun 01 09:44:01 2005 => Scanning File C:\WINDOWS\system32\Apphelp.dll
Wed Jun 01 09:44:01 2005 => Scanning File C:\WINDOWS\system32\lsass.exe
Wed Jun 01 09:44:01 2005 => Scanning File C:\WINDOWS\system32\LSASRV.dll
Wed Jun 01 09:44:01 2005 => Scanning File C:\WINDOWS\system32\NTDSAPI.dll
Wed Jun 01 09:44:01 2005 => Scanning File C:\WINDOWS\system32\DNSAPI.dll
Wed Jun 01 09:44:01 2005 => Scanning File C:\WINDOWS\system32\SAMSRV.dll
Wed Jun 01 09:44:01 2005 => Scanning File C:\WINDOWS\system32\cryptdll.dll
Wed Jun 01 09:44:01 2005 => Scanning File C:\WINDOWS\system32\msprivs.dll
Wed Jun 01 09:44:01 2005 => Scanning File C:\WINDOWS\system32\kerberos.dll
Wed Jun 01 09:44:01 2005 => Scanning File C:\WINDOWS\system32\netlogon.dll
Wed Jun 01 09:44:01 2005 => Scanning File C:\WINDOWS\system32\w32time.dll
Wed Jun 01 09:44:01 2005 => Scanning File C:\WINDOWS\system32\MSVCP60.dll
Wed Jun 01 09:44:01 2005 => Scanning File C:\WINDOWS\system32\iphlpapi.dll
Wed Jun 01 09:44:01 2005 => Scanning File C:\WINDOWS\system32\schannel.dll
Wed Jun 01 09:44:01 2005 => Scanning File C:\WINDOWS\system32\wdigest.dll
Wed Jun 01 09:44:01 2005 => Scanning File C:\WINDOWS\system32\scecli.dll
Wed Jun 01 09:44:02 2005 => Scanning File C:\WINDOWS\system32\ipsecsvc.dll
Wed Jun 01 09:44:02 2005 => Scanning File C:\WINDOWS\system32\oakley.DLL
Wed Jun 01 09:44:02 2005 => Scanning File C:\WINDOWS\system32\WINIPSEC.DLL
Wed Jun 01 09:44:02 2005 => Scanning File C:\WINDOWS\system32\pstorsvc.dll
Wed Jun 01 09:44:02 2005 => Scanning File C:\WINDOWS\system32\psbase.dll
Wed Jun 01 09:44:02 2005 => Scanning File C:\WINDOWS\system32\mswsock.dll
Wed Jun 01 09:44:02 2005 => Scanning File C:\WINDOWS\System32\wshtcpip.dll
Wed Jun 01 09:44:02 2005 => Scanning File C:\WINDOWS\System32\dssenh.dll
Wed Jun 01 09:44:02 2005 => Scanning File C:\WINDOWS\system32\svchost.exe
Wed Jun 01 09:44:02 2005 => Scanning File c:\windows\system32\rpcss.dll
Wed Jun 01 09:44:02 2005 => Scanning File C:\WINDOWS\System32\winrnr.dll
Wed Jun 01 09:44:02 2005 => Scanning File C:\WINDOWS\system32\rasadhlp.dll
Wed Jun 01 09:44:02 2005 => Scanning File C:\WINDOWS\system32\msi.dll
Wed Jun 01 09:44:02 2005 => Scanning File c:\windows\system32\dhcpcsvc.dll
Wed Jun 01 09:44:02 2005 => Scanning File c:\windows\system32\wzcsvc.dll
Wed Jun 01 09:44:02 2005 => Scanning File c:\windows\system32\rtutils.dll
Wed Jun 01 09:44:02 2005 => Scanning File c:\windows\system32\WMI.dll
Wed Jun 01 09:44:02 2005 => Scanning File c:\windows\system32\ESENT.dll
Wed Jun 01 09:44:03 2005 => Scanning File C:\WINDOWS\System32\rastls.dll
Wed Jun 01 09:44:03 2005 => Scanning File C:\WINDOWS\System32\ATL.DLL
Wed Jun 01 09:44:03 2005 => Scanning File C:\WINDOWS\System32\CRYPTUI.dll
Wed Jun 01 09:44:03 2005 => Scanning File C:\WINDOWS\system32\WININET.dll
Wed Jun 01 09:44:03 2005 => Scanning File C:\WINDOWS\System32\MPRAPI.dll
Wed Jun 01 09:44:03 2005 => Scanning File C:\WINDOWS\System32\ACTIVEDS.dll
Wed Jun 01 09:44:03 2005 => Scanning File C:\WINDOWS\System32\adsldpc.dll
Wed Jun 01 09:44:03 2005 => Scanning File C:\WINDOWS\System32\RASAPI32.dll
Wed Jun 01 09:44:03 2005 => Scanning File C:\WINDOWS\System32\rasman.dll
Wed Jun 01 09:44:03 2005 => Scanning File C:\WINDOWS\System32\TAPI32.dll
Wed Jun 01 09:44:03 2005 => Scanning File C:\WINDOWS\System32\raschap.dll
Wed Jun 01 09:44:04 2005 => Scanning File c:\windows\system32\schedsvc.dll
Wed Jun 01 09:44:04 2005 => Scanning File C:\WINDOWS\System32\MSIDLE.DLL
Wed Jun 01 09:44:04 2005 => Scanning File c:\windows\system32\audiosrv.dll
Wed Jun 01 09:44:04 2005 => Scanning File c:\windows\system32\wkssvc.dll
Wed Jun 01 09:44:04 2005 => Scanning File c:\windows\system32\cryptsvc.dll
Wed Jun 01 09:44:04 2005 => Scanning File c:\windows\system32\certcli.dll
Wed Jun 01 09:44:04 2005 => Scanning File c:\windows\system32\msgsvc.dll
Wed Jun 01 09:44:04 2005 => Scanning File c:\windows\system32\srvsvc.dll
Wed Jun 01 09:44:04 2005 => Scanning File c:\windows\pchealth\helpctr\binaries\pchsvc.dll
Wed Jun 01 09:44:04 2005 => Scanning File c:\windows\system32\es.dll
Wed Jun 01 09:44:04 2005 => Scanning File c:\windows\system32\ersvc.dll
Wed Jun 01 09:44:04 2005 => Scanning File c:\windows\system32\netman.dll
Wed Jun 01 09:44:04 2005 => Scanning File c:\windows\system32\srsvc.dll
Wed Jun 01 09:44:04 2005 => Scanning File c:\windows\system32\POWRPROF.dll
Wed Jun 01 09:44:04 2005 => Scanning File c:\windows\system32\seclogon.dll
Wed Jun 01 09:44:04 2005 => Scanning File c:\windows\system32\tapisrv.dll
Wed Jun 01 09:44:04 2005 => Scanning File c:\windows\system32\trkwks.dll
Wed Jun 01 09:44:04 2005 => Scanning File c:\windows\system32\rasmans.dll
Wed Jun 01 09:44:05 2005 => Scanning File c:\windows\system32\Sens.dll
Wed Jun 01 09:44:05 2005 => Scanning File c:\windows\system32\netcfgx.dll
Wed Jun 01 09:44:05 2005 => Scanning File c:\windows\system32\CLUSAPI.dll
Wed Jun 01 09:44:05 2005 => Scanning File c:\windows\system32\wuauserv.dll
Wed Jun 01 09:44:05 2005 => Scanning File c:\windows\system32\wbem\wmisvc.dll
Wed Jun 01 09:44:05 2005 => Scanning File c:\windows\system32\wbem\wbemcomn.dll
Wed Jun 01 09:44:05 2005 => Scanning File C:\WINDOWS\System32\VSSAPI.DLL
Wed Jun 01 09:44:05 2005 => Scanning File C:\WINDOWS\System32\wuaueng.dll
Wed Jun 01 09:44:05 2005 => Scanning File C:\WINDOWS\System32\ADVPACK.dll
Wed Jun 01 09:44:05 2005 => Scanning File C:\WINDOWS\System32\SHFOLDER.dll
Wed Jun 01 09:44:05 2005 => Scanning File C:\WINDOWS\System32\WINHTTP.dll
Wed Jun 01 09:44:05 2005 => Scanning File C:\WINDOWS\System32\Cabinet.dll
Wed Jun 01 09:44:05 2005 => Scanning File C:\WINDOWS\System32\mspatcha.dll
Wed Jun 01 09:44:05 2005 => Scanning File C:\WINDOWS\System32\rastapi.dll
Wed Jun 01 09:44:06 2005 => Scanning File c:\windows\system32\browser.dll
Wed Jun 01 09:44:06 2005 => Scanning File C:\WINDOWS\System32\unimdm.tsp
Wed Jun 01 09:44:06 2005 => Scanning File C:\WINDOWS\System32\uniplat.dll
Wed Jun 01 09:44:06 2005 => Scanning File C:\WINDOWS\system32\comsvcs.dll
Wed Jun 01 09:44:06 2005 => Scanning File C:\WINDOWS\system32\MTXCLU.DLL
Wed Jun 01 09:44:06 2005 => Scanning File C:\WINDOWS\system32\WSOCK32.dll
Wed Jun 01 09:44:06 2005 => Scanning File C:\WINDOWS\system32\colbact.DLL
Wed Jun 01 09:44:06 2005 => Scanning File C:\WINDOWS\System32\RESUTILS.DLL
Wed Jun 01 09:44:06 2005 => Scanning File C:\WINDOWS\System32\mtxoci.dll
Wed Jun 01 09:44:06 2005 => Scanning File C:\WINDOWS\System32\unimdmat.dll
Wed Jun 01 09:44:06 2005 => Scanning File C:\WINDOWS\System32\modemui.dll
Wed Jun 01 09:44:06 2005 => Scanning File C:\WINDOWS\System32\kmddsp.tsp
Wed Jun 01 09:44:06 2005 => Scanning File C:\WINDOWS\System32\ndptsp.tsp
Wed Jun 01 09:44:06 2005 => Scanning File C:\WINDOWS\System32\ipconf.tsp
Wed Jun 01 09:44:06 2005 => Scanning File C:\WINDOWS\System32\h323.tsp
Wed Jun 01 09:44:06 2005 => Scanning File C:\WINDOWS\System32\hidphone.tsp
Wed Jun 01 09:44:07 2005 => Scanning File C:\WINDOWS\System32\HID.DLL
Wed Jun 01 09:44:07 2005 => Scanning File C:\WINDOWS\System32\rasppp.dll
Wed Jun 01 09:44:07 2005 => Scanning File C:\WINDOWS\System32\ntlsapi.dll
Wed Jun 01 09:44:07 2005 => Scanning File c:\windows\system32\ipnathlp.dll
Wed Jun 01 09:44:07 2005 => Scanning File c:\windows\system32\netshell.dll
Wed Jun 01 09:44:07 2005 => Scanning File c:\windows\system32\credui.dll
Wed Jun 01 09:44:07 2005 => Scanning File c:\windows\system32\HNetCfg.dll
Wed Jun 01 09:44:07 2005 => Scanning File C:\WINDOWS\System32\Wbem\wbemcore.dll
Wed Jun 01 09:44:07 2005 => Scanning File C:\WINDOWS\System32\Wbem\esscli.dll
Wed Jun 01 09:44:07 2005 => Scanning File C:\WINDOWS\System32\Wbem\FastProx.dll
Wed Jun 01 09:44:07 2005 => Scanning File C:\WINDOWS\System32\wbem\wmiutils.dll
Wed Jun 01 09:44:07 2005 => Scanning File C:\WINDOWS\System32\wbem\repdrvfs.dll
Wed Jun 01 09:44:07 2005 => Scanning File C:\WINDOWS\System32\wbem\wmiprvsd.dll
Wed Jun 01 09:44:08 2005 => Scanning File C:\WINDOWS\System32\wbem\wbemess.dll
Wed Jun 01 09:44:08 2005 => Scanning File c:\windows\system32\termsrv.dll
Wed Jun 01 09:44:08 2005 => Scanning File c:\windows\system32\ICAAPI.dll
Wed Jun 01 09:44:08 2005 => Scanning File c:\windows\system32\mstlsapi.dll
Wed Jun 01 09:44:08 2005 => Scanning File C:\WINDOWS\System32\upnp.dll
Wed Jun 01 09:44:08 2005 => Scanning File C:\WINDOWS\System32\SSDPAPI.dll
Wed Jun 01 09:44:08 2005 => Scanning File C:\WINDOWS\System32\RASDLG.dll
Wed Jun 01 09:44:08 2005 => Scanning File C:\WINDOWS\System32\wups.dll
Wed Jun 01 09:44:08 2005 => Scanning File C:\WINDOWS\System32\wbem\ncprov.dll
Wed Jun 01 09:44:08 2005 => Scanning File C:\WINDOWS\system32\msxml3.dll
Wed Jun 01 09:44:08 2005 => Scanning File C:\WINDOWS\System32\wbem\wbemsvc.dll
Wed Jun 01 09:44:08 2005 => Scanning File C:\WINDOWS\System32\cryptnet.dll
Wed Jun 01 09:44:08 2005 => Scanning File c:\windows\system32\dnsrslvr.dll
Wed Jun 01 09:44:08 2005 => Scanning File c:\windows\system32\lmhsvc.dll
Wed Jun 01 09:44:08 2005 => Scanning File c:\windows\system32\webclnt.dll
Wed Jun 01 09:44:08 2005 => Scanning File c:\windows\system32\ssdpsrv.dll
Wed Jun 01 09:44:09 2005 => Scanning File C:\WINDOWS\Explorer.EXE
Wed Jun 01 09:44:09 2005 => Scanning File C:\WINDOWS\System32\BROWSEUI.dll
Wed Jun 01 09:44:09 2005 => Scanning File C:\WINDOWS\System32\SHDOCVW.dll
Wed Jun 01 09:44:09 2005 => Scanning File C:\WINDOWS\System32\themeui.dll
Wed Jun 01 09:44:09 2005 => Scanning File C:\WINDOWS\System32\MSIMG32.dll
Wed Jun 01 09:44:09 2005 => Scanning File C:\WINDOWS\System32\actxprxy.dll
Wed Jun 01 09:44:09 2005 => Scanning File C:\WINDOWS\System32\ntshrui.dll
Wed Jun 01 09:44:09 2005 => Scanning File C:\WINDOWS\System32\LINKINFO.dll
Wed Jun 01 09:44:09 2005 => Scanning File C:\PROGRA~1\MICROS~3\SHELLE~1.DLL
Wed Jun 01 09:44:09 2005 => Scanning File C:\WINDOWS\system32\urlmon.dll
Wed Jun 01 09:44:09 2005 => Scanning File C:\WINDOWS\System32\webcheck.dll
Wed Jun 01 09:44:09 2005 => Scanning File C:\WINDOWS\System32\stobject.dll
Wed Jun 01 09:44:09 2005 => Scanning File C:\WINDOWS\System32\BatMeter.dll
Wed Jun 01 09:44:09 2005 => Scanning File C:\WINDOWS\System32\printui.dll
Wed Jun 01 09:44:09 2005 => Scanning File C:\WINDOWS\System32\CFGMGR32.dll
Wed Jun 01 09:44:10 2005 => Scanning File C:\WINDOWS\System32\drprov.dll
Wed Jun 01 09:44:10 2005 => Scanning File C:\WINDOWS\System32\ntlanman.dll
Wed Jun 01 09:44:10 2005 => Scanning File C:\WINDOWS\System32\NETUI0.dll
Wed Jun 01 09:44:10 2005 => Scanning File C:\WINDOWS\System32\NETUI1.dll
Wed Jun 01 09:44:10 2005 => Scanning File C:\WINDOWS\System32\NETRAP.dll
Wed Jun 01 09:44:10 2005 => Scanning File C:\WINDOWS\System32\davclnt.dll
Wed Jun 01 09:44:10 2005 => Scanning File C:\WINDOWS\System32\shdoclc.dll
Wed Jun 01 09:44:10 2005 => Scanning File C:\PROGRA~1\Yahoo!\MESSEN~1\idle.dll
Wed Jun 01 09:44:10 2005 => Scanning File C:\WINDOWS\system32\LEXBCES.EXE
Wed Jun 01 09:44:10 2005 => Scanning File C:\WINDOWS\system32\lexp2p32.dll
Wed Jun 01 09:44:10 2005 => Scanning File C:\WINDOWS\system32\lex2kusb.dll
Wed Jun 01 09:44:10 2005 => Scanning File C:\WINDOWS\system32\LEXPPS.EXE
Wed Jun 01 09:44:10 2005 => Scanning File C:\WINDOWS\system32\LEXBCE.DLL
Wed Jun 01 09:44:10 2005 => Scanning File C:\WINDOWS\system32\spoolsv.exe
Wed Jun 01 09:44:11 2005 => Scanning File C:\WINDOWS\system32\SPOOLSS.DLL
Wed Jun 01 09:44:11 2005 => Scanning File C:\WINDOWS\system32\localspl.dll
Wed Jun 01 09:44:11 2005 => Scanning File C:\WINDOWS\system32\cnbjmon.dll
Wed Jun 01 09:44:11 2005 => Scanning File C:\WINDOWS\system32\LEXLMPM.DLL
Wed Jun 01 09:44:11 2005 => Scanning File C:\WINDOWS\system32\pjlmon.dll
Wed Jun 01 09:44:11 2005 => Scanning File C:\WINDOWS\system32\tcpmon.dll
Wed Jun 01 09:44:11 2005 => Scanning File C:\WINDOWS\system32\usbmon.dll
Wed Jun 01 09:44:11 2005 => Scanning File C:\WINDOWS\System32\spool\PRTPROCS\W32X86\DLBKPP5C.dll
Wed Jun 01 09:44:11 2005 => Scanning File C:\WINDOWS\System32\spool\PRTPROCS\W32X86\WfxPrint2000.dll
Wed Jun 01 09:44:11 2005 => Scanning File C:\WINDOWS\system32\win32spl.dll
Wed Jun 01 09:44:11 2005 => Scanning File C:\WINDOWS\system32\inetpp.dll
Wed Jun 01 09:44:11 2005 => Scanning File C:\WINDOWS\system32\icmp.dll
Wed Jun 01 09:44:11 2005 => Scanning File C:\WINDOWS\system32\DLBKpwr.dll
Wed Jun 01 09:44:11 2005 => Scanning File C:\WINDOWS\System32\alg.exe
Wed Jun 01 09:44:11 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
Wed Jun 01 09:44:11 2005 => Scanning File C:\WINDOWS\System32\MSVCP71.dll
Wed Jun 01 09:44:11 2005 => Scanning File C:\WINDOWS\System32\MSVCR71.dll
Wed Jun 01 09:44:12 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\avglog.dll
Wed Jun 01 09:44:12 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\avgcfg.dll
Wed Jun 01 09:44:12 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\avgklib.dll
Wed Jun 01 09:44:12 2005 => Scanning File C:\WINDOWS\System32\SensAPI.DLL
Wed Jun 01 09:44:12 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\avglng.dll
Wed Jun 01 09:44:12 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\avgamint.dll
Wed Jun 01 09:44:12 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsps.dll
Wed Jun 01 09:44:12 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
Wed Jun 01 09:44:12 2005 => Scanning File C:\WINDOWS\system32\cisvc.exe
Wed Jun 01 09:44:12 2005 => Scanning File C:\WINDOWS\system32\query.dll
Wed Jun 01 09:44:12 2005 => Scanning File c:\windows\system32\wiaservc.dll
Wed Jun 01 09:44:12 2005 => Scanning File c:\windows\system32\mscms.dll
Wed Jun 01 09:44:13 2005 => Scanning File C:\WINDOWS\System32\hkcmd.exe
Wed Jun 01 09:44:13 2005 => Scanning File C:\WINDOWS\System32\hccutils.DLL
Wed Jun 01 09:44:13 2005 => Scanning File C:\WINDOWS\System32\igfxdev.dll
Wed Jun 01 09:44:13 2005 => Scanning File C:\WINDOWS\System32\igfxsrvc.dll
Wed Jun 01 09:44:13 2005 => Scanning File C:\WINDOWS\System32\igfxres.dll
Wed Jun 01 09:44:13 2005 => Scanning File C:\WINDOWS\System32\igfxhk.dll
Wed Jun 01 09:44:13 2005 => Scanning File C:\WINDOWS\system32\dla\tfswctrl.exe
Wed Jun 01 09:44:13 2005 => Scanning File C:\WINDOWS\System32\tfswapi.dll
Wed Jun 01 09:44:13 2005 => Scanning File C:\WINDOWS\system32\dla\tfswcres.dll
Wed Jun 01 09:44:13 2005 => Scanning File C:\PROGRA~1\DELLAI~1\dlbkbmgr.exe
Wed Jun 01 09:44:13 2005 => Scanning File C:\WINDOWS\System32\gsicon.exe
Wed Jun 01 09:44:14 2005 => Scanning File C:\WINDOWS\System32\dslagent.exe
Wed Jun 01 09:44:14 2005 => Scanning File C:\PROGRA~1\QUICKT~1\qttask.exe
Wed Jun 01 09:44:14 2005 => Scanning File C:\PROGRA~1\iTunes\ITUNES~1.EXE
Wed Jun 01 09:44:14 2005 => Scanning File C:\PROGRA~1\iTunes\ITUNES~3.RES\ENBEFF~1.LPR\ITUNES~1.DLL
Wed Jun 01 09:44:14 2005 => Scanning File C:\PROGRA~1\iTunes\ITUNES~3.RES\ITUNES~1.DLL
Wed Jun 01 09:44:14 2005 => Scanning File C:\PROGRA~1\DELLAI~1\dlbkbmon.exe
Wed Jun 01 09:44:14 2005 => Scanning File C:\PROGRA~1\Java\JRE15~1.0_0\bin\jusched.exe
Wed Jun 01 09:44:14 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
Wed Jun 01 09:44:14 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\AvgAbout.dll
Wed Jun 01 09:44:14 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\AvgCtrl.dll
Wed Jun 01 09:44:14 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\MFC71.DLL
Wed Jun 01 09:44:15 2005 => Scanning File C:\WINDOWS\System32\MSVFW32.dll
Wed Jun 01 09:44:15 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\AvgTest.dll
Wed Jun 01 09:44:15 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\AvgTMgr.dll
Wed Jun 01 09:44:15 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\AvgTRes.dll
Wed Jun 01 09:44:15 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\AvgSet.dll
Wed Jun 01 09:44:15 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\avgf.dll
Wed Jun 01 09:44:15 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\AVGRES.DLL
Wed Jun 01 09:44:15 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\avgcckrn.dll
Wed Jun 01 09:44:15 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\avgvault.dll
Wed Jun 01 09:44:15 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\avgscan.dll
Wed Jun 01 09:44:15 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\avgunarc.dll
Wed Jun 01 09:44:16 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\avgrep.dll
Wed Jun 01 09:44:16 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\avgemsui.dll
Wed Jun 01 09:44:16 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\avgemcps.dll
Wed Jun 01 09:44:16 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
Wed Jun 01 09:44:16 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\libsasl.dll
Wed Jun 01 09:44:16 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\saslcrammd5.dll
Wed Jun 01 09:44:16 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\sasldigestmd5.dll
Wed Jun 01 09:44:16 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\sasllogin.dll
Wed Jun 01 09:44:16 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\saslplain.dll
Wed Jun 01 09:44:16 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\avgmail.dll
Wed Jun 01 09:44:16 2005 => Scanning File C:\PROGRA~1\Thomson\SPEEDT~1\Dragdiag.exe
Wed Jun 01 09:44:16 2005 => Scanning File C:\PROGRA~1\MICROS~3\gcasServ.exe
Wed Jun 01 09:44:16 2005 => Scanning File C:\WINDOWS\System32\MSVBVM60.DLL
Wed Jun 01 09:44:17 2005 => Scanning File C:\PROGRA~1\MICROS~3\GCANTI~1.DLL
Wed Jun 01 09:44:17 2005 => Scanning File C:\PROGRA~1\iPod\bin\IPODSE~1.EXE
Wed Jun 01 09:44:17 2005 => Scanning File C:\PROGRA~1\iPod\bin\IPODSE~1.RES\ENBEFF~1.LPR\IPODSE~1.DLL
Wed Jun 01 09:44:17 2005 => Scanning File C:\PROGRA~1\iPod\bin\IPODSE~1.RES\IPODSE~1.DLL
Wed Jun 01 09:44:17 2005 => Scanning File C:\PROGRA~1\CASIO\PHOTOL~1\Plauto.exe
Wed Jun 01 09:44:17 2005 => Scanning File C:\WINDOWS\System32\oledlg.dll
Wed Jun 01 09:44:17 2005 => Scanning File C:\WINDOWS\System32\OLEPRO32.DLL
Wed Jun 01 09:44:17 2005 => Scanning File C:\PROGRA~1\BTBROA~1\Help\bin\mpbtn.exe
Wed Jun 01 09:44:17 2005 => Scanning File C:\PROGRA~1\BTBROA~1\Help\bin\CLIENT~1.DLL
Wed Jun 01 09:44:17 2005 => Scanning File C:\PROGRA~1\BTBROA~1\Help\bin\ASSTCA~1.DLL
Wed Jun 01 09:44:17 2005 => Scanning File C:\PROGRA~1\BTBROA~1\Help\bin\resource.dll
Wed Jun 01 09:44:17 2005 => Scanning File C:\PROGRA~1\BTOPEN~1\bin\mpbtn.exe
Wed Jun 01 09:44:18 2005 => Scanning File C:\PROGRA~1\BTOPEN~1\bin\CLIENT~1.DLL
Wed Jun 01 09:44:18 2005 => Scanning File C:\PROGRA~1\BTOPEN~1\bin\ASSTCA~1.DLL
Wed Jun 01 09:44:18 2005 => Scanning File C:\PROGRA~1\MICROS~3\GCASDT~1.EXE
Wed Jun 01 09:44:18 2005 => Scanning File C:\WINDOWS\System32\GCCollection.dll
Wed Jun 01 09:44:18 2005 => Scanning File C:\WINDOWS\System32\hashlib.dll
Wed Jun 01 09:44:18 2005 => Scanning File C:\WINDOWS\System32\wuauclt.exe
Wed Jun 01 09:44:18 2005 => Scanning File C:\WINDOWS\System32\wuaucpl.cpl
Wed Jun 01 09:44:18 2005 => Scanning File C:\WINDOWS\System32\wucltui.dll
Wed Jun 01 09:44:18 2005 => Scanning File C:\PROGRA~1\Yahoo!\browser\ybrowser.exe
Wed Jun 01 09:44:18 2005 => Scanning File C:\PROGRA~1\Yahoo!\browser\YBrwRes.dll
Wed Jun 01 09:44:18 2005 => Scanning File C:\WINDOWS\System32\MSVCR70.dll
Wed Jun 01 09:44:18 2005 => Scanning File C:\PROGRA~1\Yahoo!\browser\ybskin.dll
Wed Jun 01 09:44:18 2005 => Scanning File C:\PROGRA~1\Yahoo!\browser\ytbctl.dll
Wed Jun 01 09:44:18 2005 => Scanning File C:\PROGRA~1\Yahoo!\browser\ypub.dll
Wed Jun 01 09:44:18 2005 => Scanning File C:\PROGRA~1\Yahoo!\browser\YCommon.Dll
Wed Jun 01 09:44:19 2005 => Scanning File C:\PROGRA~1\Yahoo!\browser\yuc.dll
Wed Jun 01 09:44:19 2005 => Scanning File C:\WINDOWS\System32\MLANG.dll
Wed Jun 01 09:44:19 2005 => Scanning File C:\WINDOWS\System32\mshtml.dll
Wed Jun 01 09:44:19 2005 => Scanning File C:\PROGRA~1\Yahoo!\browser\ybcomp.dll
Wed Jun 01 09:44:19 2005 => Scanning File C:\PROGRA~1\Yahoo!\browser\YCOMMO~1.DLL
Wed Jun 01 09:44:19 2005 => Scanning File C:\WINDOWS\System32\msimtf.dll
Wed Jun 01 09:44:19 2005 => Scanning File C:\WINDOWS\System32\MSCTF.dll
Wed Jun 01 09:44:19 2005 => Scanning File c:\windows\system32\jscript.dll
Wed Jun 01 09:44:19 2005 => Scanning File C:\PROGRA~1\Yahoo!\browser\YLOCAL~1.DLL
Wed Jun 01 09:44:19 2005 => Scanning File C:\WINDOWS\System32\dxtrans.dll
Wed Jun 01 09:44:19 2005 => Scanning File C:\WINDOWS\System32\ddrawex.dll
Wed Jun 01 09:44:19 2005 => Scanning File C:\WINDOWS\System32\DDRAW.dll
Wed Jun 01 09:44:19 2005 => Scanning File C:\WINDOWS\System32\DCIMAN32.dll
Wed Jun 01 09:44:20 2005 => Scanning File C:\WINDOWS\System32\dxtmsft.dll
Wed Jun 01 09:44:20 2005 => Scanning File C:\WINDOWS\System32\MSLS31.DLL
Wed Jun 01 09:44:20 2005 => Scanning File C:\WINDOWS\System32\IMM32.DLL
Wed Jun 01 09:44:20 2005 => Scanning File C:\WINDOWS\System32\imgutil.dll
Wed Jun 01 09:44:20 2005 => Scanning File C:\WINDOWS\System32\mshtmled.dll
Wed Jun 01 09:44:20 2005 => Scanning File C:\WINDOWS\System32\asycfilt.dll
Wed Jun 01 09:44:20 2005 => Scanning File C:\PROGRA~1\Yahoo!\browser\ychoose.dll
Wed Jun 01 09:44:20 2005 => Scanning File C:\PROGRA~1\Yahoo!\MESSEN~1\ypagerps.dll
Wed Jun 01 09:44:20 2005 => Scanning File C:\WINDOWS\System32\vbscript.dll
Wed Jun 01 09:44:20 2005 => Scanning File C:\WINDOWS\System32\macromed\flash\Flash.ocx
Wed Jun 01 09:44:20 2005 => Scanning File C:\WINDOWS\System32\iepeers.dll
Wed Jun 01 09:44:20 2005 => Scanning File C:\WINDOWS\DOWNLO~1\EPUWAL~1.DLL
Wed Jun 01 09:44:20 2005 => Scanning File C:\DOCUME~1\Owner\LOCALS~1\Temp\epurcmainver11.dll
Wed Jun 01 09:44:20 2005 => Scanning File C:\WINDOWS\System32\dispex.dll
Wed Jun 01 09:44:20 2005 => Scanning File C:\WINDOWS\System32\msieftp.dll
Wed Jun 01 09:44:20 2005 => Scanning File C:\WINDOWS\System32\plugin.ocx
Wed Jun 01 09:44:20 2005 => Scanning File C:\PROGRA~1\Yahoo!\browser\ycommon.exe
Wed Jun 01 09:44:21 2005 => Scanning File C:\PROGRA~1\Yahoo!\browser\YCommon.Dll
Wed Jun 01 09:44:21 2005 => Scanning File C:\PROGRA~1\Yahoo!\MESSEN~1\YPAGER.EXE
Wed Jun 01 09:44:21 2005 => Scanning File C:\PROGRA~1\Yahoo!\MESSEN~1\ygxa_2.dll
Wed Jun 01 09:44:21 2005 => Scanning File C:\PROGRA~1\Yahoo!\MESSEN~1\xmlparse.dll
Wed Jun 01 09:44:21 2005 => Scanning File C:\PROGRA~1\Yahoo!\MESSEN~1\xmltok.dll
Wed Jun 01 09:44:21 2005 => Scanning File C:\PROGRA~1\Yahoo!\MESSEN~1\pcre.dll
Wed Jun 01 09:44:21 2005 => Scanning File C:\PROGRA~1\Yahoo!\MESSEN~1\YML.dll
Wed Jun 01 09:44:21 2005 => Scanning File C:\PROGRA~1\Yahoo!\MESSEN~1\res_msgr.dll
Wed Jun 01 09:44:21 2005 => Scanning File C:\PROGRA~1\Yahoo!\MESSEN~1\ycrwin32.dll
Wed Jun 01 09:44:21 2005 => Scanning File C:\PROGRA~1\Yahoo!\MESSEN~1\MyYahoo.dll
Wed Jun 01 09:44:21 2005 => Scanning File C:\PROGRA~1\Yahoo!\MESSEN~1\D32-FW.DLL
Wed Jun 01 09:44:22 2005 => Scanning File C:\WINDOWS\System32\riched32.dll
Wed Jun 01 09:44:22 2005 => Scanning File C:\WINDOWS\System32\RICHED20.dll
Wed Jun 01 09:44:22 2005 => Scanning File C:\PROGRA~1\Yahoo!\MESSEN~1\stock.dll
Wed Jun 01 09:44:22 2005 => Scanning File C:\PROGRA~1\Yahoo!\browser\ybrwicon.exe
Wed Jun 01 09:44:22 2005 => Scanning File C:\WINDOWS\system32\cidaemon.exe
Wed Jun 01 09:44:22 2005 => Scanning File C:\WINDOWS\System32\LangWrbk.dll
Wed Jun 01 09:44:22 2005 => Scanning File C:\WINDOWS\System32\mstask.dll
Wed Jun 01 09:44:22 2005 => Scanning File C:\WINDOWS\system32\xpsp2res.dll
Wed Jun 01 09:44:22 2005 => Scanning File C:\WINDOWS\system32\nlhtml.dll
Wed Jun 01 09:44:22 2005 => Scanning File C:\WINDOWS\system32\cabview.dll
Wed Jun 01 09:44:22 2005 => Scanning File C:\DOCUME~1\Owner\LOCALS~1\Temp\mwavscan.com
Wed Jun 01 09:44:22 2005 => Scanning File C:\DOCUME~1\Owner\LOCALS~1\Temp\msvlclnt.dll
Wed Jun 01 09:44:23 2005 => Scanning File C:\DOCUME~1\Owner\LOCALS~1\Temp\kavssdi.dll
Wed Jun 01 09:44:23 2005 => Scanning File C:\DOCUME~1\Owner\LOCALS~1\Temp\kavssd.dll
Wed Jun 01 09:44:23 2005 => Scanning File C:\DOCUME~1\Owner\LOCALS~1\Temp\kavssi.dll
Wed Jun 01 09:44:23 2005 => Scanning File C:\DOCUME~1\Owner\LOCALS~1\Temp\ipc.dll
Wed Jun 01 09:44:23 2005 => Scanning File C:\DOCUME~1\Owner\LOCALS~1\Temp\RICHED32.DLL
Wed Jun 01 09:44:23 2005 => Scanning File C:\DOCUME~1\Owner\LOCALS~1\Temp\PSAPI.DLL
Wed Jun 01 09:44:23 2005 => Scanning File C:\WINDOWS\System32\VDMDBG.DLL
Wed Jun 01 09:44:23 2005 => Scanning File C:\DOCUME~1\Owner\LOCALS~1\Temp\kavss.exe
Wed Jun 01 09:44:23 2005 => Scanning File C:\DOCUME~1\Owner\LOCALS~1\Temp\kavss.dll

Wed Jun 01 09:44:23 2005 => ***** Scanning Registry Files *****

Wed Jun 01 09:44:23 2005 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad
Wed Jun 01 09:44:23 2005 => *** File C:\WINDOWS\system32\SHELL32.dll having Size Restriction ***. Filesize 8153 kb > 3072 kb...
Wed Jun 01 09:44:23 2005 => Scanning File C:\WINDOWS\system32\SHELL32.dll [**]
Wed Jun 01 09:44:23 2005 => *** File C:\WINDOWS\system32\SHELL32.dll having Size Restriction ***. Filesize 8153 kb > 3072 kb...
Wed Jun 01 09:44:23 2005 => Scanning File C:\WINDOWS\system32\SHELL32.dll [**]
Wed Jun 01 09:44:23 2005 => Scanning File C:\WINDOWS\System32\webcheck.dll
Wed Jun 01 09:44:23 2005 => Scanning File C:\WINDOWS\System32\stobject.dll

Wed Jun 01 09:44:23 2005 => Scanning HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad

Wed Jun 01 09:44:23 2005 => Scanning HKLM\SOFTWARE\Microsoft\Internet Explorer\Plugins\Extension

Wed Jun 01 09:44:23 2005 => Scanning HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar
Wed Jun 01 09:44:23 2005 => Scanning File C:\WINDOWS\System32\msdxm.ocx
Wed Jun 01 09:44:23 2005 => Scanning File c:\PROGRA~1\google\GOOGLE~1.DLL
Wed Jun 01 09:44:23 2005 => Scanning File C:\PROGRA~1\Yahoo!\COMPAN~1\Installs\cpn1\YCOMP5~1.DLL

Wed Jun 01 09:44:23 2005 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects
Wed Jun 01 09:44:23 2005 => {AA58ED58-01DD-4d91-8333-CF10577473F7} = c:\program files\google\googletoolbar1.dll
Wed Jun 01 09:44:23 2005 => Scanning File c:\PROGRA~1\google\GOOGLE~1.DLL

Wed Jun 01 09:44:23 2005 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\explorer\SharedTaskScheduler
Wed Jun 01 09:44:23 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:23 2005 => Scanning File C:\WINDOWS\System32\browseui.dll

Wed Jun 01 09:44:23 2005 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved
Wed Jun 01 09:44:23 2005 => Scanning File C:\WINDOWS\system32\mmsys.cpl
Wed Jun 01 09:44:24 2005 => Scanning File C:\WINDOWS\system32\icmui.dll
Wed Jun 01 09:44:24 2005 => Scanning File C:\WINDOWS\system32\rshx32.dll
Wed Jun 01 09:44:24 2005 => Scanning File C:\WINDOWS\system32\docprop.dll
Wed Jun 01 09:44:24 2005 => Scanning File C:\WINDOWS\system32\ntshrui.dll
Wed Jun 01 09:44:24 2005 => Scanning File C:\WINDOWS\System32\themeui.dll
Wed Jun 01 09:44:24 2005 => Scanning File C:\WINDOWS\system32\deskadp.dll
Wed Jun 01 09:44:24 2005 => Scanning File C:\WINDOWS\system32\deskmon.dll
Wed Jun 01 09:44:24 2005 => Scanning File C:\WINDOWS\system32\dssec.dll
Wed Jun 01 09:44:24 2005 => Scanning File C:\WINDOWS\system32\SlayerXP.dll
Wed Jun 01 09:44:24 2005 => Scanning File C:\WINDOWS\system32\shscrap.dll
Wed Jun 01 09:44:24 2005 => Scanning File C:\WINDOWS\system32\diskcopy.dll
Wed Jun 01 09:44:24 2005 => Scanning File C:\WINDOWS\system32\ntlanui2.dll
Wed Jun 01 09:44:24 2005 => Scanning File C:\WINDOWS\System32\icmui.dll
Wed Jun 01 09:44:24 2005 => Scanning File C:\WINDOWS\system32\icmui.dll
Wed Jun 01 09:44:24 2005 => Scanning File C:\WINDOWS\system32\printui.dll
Wed Jun 01 09:44:24 2005 => Scanning File C:\WINDOWS\system32\dskquoui.dll
Wed Jun 01 09:44:24 2005 => Scanning File C:\WINDOWS\system32\syncui.dll
Wed Jun 01 09:44:24 2005 => Scanning File C:\WINDOWS\System32\hticons.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\system32\fontext.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\system32\icmui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\system32\rshx32.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\system32\ntshrui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\system32\deskperf.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\system32\cryptext.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\system32\cryptext.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\system32\NETSHELL.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\system32\NETSHELL.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\system32\wiashext.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\system32\wiashext.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\system32\wiashext.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\system32\wiashext.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\system32\wiashext.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\remotepg.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\wshext.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\PROGRA~1\COMMON~1\System\OLEDB~1\oledb32.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\mstask.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\mstask.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\mstask.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\shmedia.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\shmedia.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\shmedia.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\shmedia.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\shmedia.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\shmedia.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\shdocvw.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\shdocvw.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\shdocvw.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\shdocvw.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\shdocvw.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\shdocvw.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\shdocvw.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\shdocvw.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\shdocvw.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\shdocvw.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\shdocvw.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\shdocvw.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\shdocvw.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\shdocvw.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\shdocvw.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\shdocvw.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\sendmail.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\sendmail.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\occache.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\webcheck.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\webcheck.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\webcheck.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\webcheck.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\webcheck.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\webcheck.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\webcheck.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\webcheck.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\webcheck.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\webcheck.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\appwiz.cpl
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\appwiz.cpl
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\appwiz.cpl
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\shimgvw.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\shimgvw.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\shimgvw.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\shimgvw.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\shimgvw.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\shimgvw.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\netplwiz.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\netplwiz.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\netplwiz.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\netplwiz.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\zipfldr.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\zipfldr.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\zipfldr.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\cdfview.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\cdfview.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\cdfview.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\cdfview.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\cdfview.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\msieftp.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\docprop2.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\docprop2.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\docprop2.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\docprop2.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\docprop2.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\docprop2.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\dsquery.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\dsquery.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\dsquery.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\dsquery.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\dsuiext.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\dsuiext.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\mydocs.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\mydocs.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\mydocs.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\cscui.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\cscui.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\cscui.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\msagent\agentpsh.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\dfsshlex.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\photowiz.dll
Wed Jun 01 09:44:27 2005 => Scanning File C:\WINDOWS\System32\mmcshext.dll
Wed Jun 01 09:44:27 2005 => Scanning File C:\WINDOWS\system32\cabview.dll
Wed Jun 01 09:44:27 2005 => Scanning File C:\PROGRA~1\OUTLOO~1\wabfind.dll
Wed Jun 01 09:44:27 2005 => Scanning File C:\WINDOWS\System32\wmpshell.dll
Wed Jun 01 09:44:27 2005 => Scanning File C:\WINDOWS\System32\wmpshell.dll
Wed Jun 01 09:44:27 2005 => Scanning File C:\WINDOWS\System32\wmpshell.dll
Wed Jun 01 09:44:27 2005 => Scanning File C:\PROGRA~1\Sonic\RECORD~1\shlext.dll
Wed Jun 01 09:44:27 2005 => Scanning File C:\WINDOWS\System32\wuaucpl.cpl
Wed Jun 01 09:44:27 2005 => Scanning File C:\PROGRA~1\MICROS~2\Office\OLKFSTUB.DLL
Wed Jun 01 09:44:27 2005 => Scanning File C:\PROGRA~1\iTunes\ITUNES~1.DLL
Wed Jun 01 09:44:27 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\avgse.dll
Wed Jun 01 09:44:27 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\avgse.dll
Wed Jun 01 09:44:27 2005 => Scanning File C:\PROGRA~1\Yahoo!\common\ymmapi.dll
Wed Jun 01 09:44:27 2005 => Scanning File C:\PROGRA~1\A2FREE~1\A2CONT~1.DLL

Wed Jun 01 09:44:27 2005 => Scanning HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows

Wed Jun 01 09:44:27 2005 => Scanning HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon
Wed Jun 01 09:44:27 2005 => Scanning File C:\WINDOWS\Explorer.exe
Wed Jun 01 09:44:27 2005 => Scanning File C:\WINDOWS\system32\userinit.exe
Wed Jun 01 09:44:28 2005 => Scanning File C:\WINDOWS\system32\dskquota.dll
Wed Jun 01 09:44:28 2005 => Scanning File C:\WINDOWS\system32\scecli.dll
Wed Jun 01 09:44:28 2005 => Scanning File C:\WINDOWS\system32\iedkcs32.dll
Wed Jun 01 09:44:28 2005 => Scanning File C:\WINDOWS\system32\scecli.dll
Wed Jun 01 09:44:28 2005 => Scanning File C:\WINDOWS\system32\crypt32.dll
Wed Jun 01 09:44:28 2005 => Scanning File C:\WINDOWS\system32\cryptnet.dll
Wed Jun 01 09:44:28 2005 => Scanning File C:\WINDOWS\system32\cscdll.dll
Wed Jun 01 09:44:28 2005 => Scanning File C:\WINDOWS\system32\igfxsrvc.dll
Wed Jun 01 09:44:28 2005 => Scanning File C:\WINDOWS\system32\wlnotify.dll
Wed Jun 01 09:44:28 2005 => Scanning File C:\WINDOWS\system32\wlnotify.dll
Wed Jun 01 09:44:28 2005 => Scanning File C:\WINDOWS\system32\sclgntfy.dll
Wed Jun 01 09:44:28 2005 => Scanning File C:\WINDOWS\system32\WlNotify.dll
Wed Jun 01 09:44:28 2005 => Scanning File C:\WINDOWS\system32\wlnotify.dll
Wed Jun 01 09:44:28 2005 => Scanning File C:\WINDOWS\system32\wlnotify.dll

Wed Jun 01 09:44:28 2005 => Scanning HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon

Wed Jun 01 09:44:28 2005 => Scanning HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System

Wed Jun 01 09:44:28 2005 => Scanning HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows

Wed Jun 01 09:44:28 2005 => Scanning HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AEDEBUG
Wed Jun 01 09:44:28 2005 => Scanning File C:\WINDOWS\system32\drwtsn32.exe

Wed Jun 01 09:44:28 2005 => Scanning HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options
Wed Jun 01 09:44:28 2005 => Scanning File C:\WINDOWS\system32\ntsd.exe

Wed Jun 01 09:44:28 2005 => Scanning HKCU\Control Panel\Desktop
Wed Jun 01 09:44:28 2005 => Scanning File C:\WINDOWS\System32\logon.scr

Wed Jun 01 09:44:28 2005 => Scanning HKLM\SYSTEM\CurrentControlSet\Control\WOW
Wed Jun 01 09:44:28 2005 => Scanning File C:\WINDOWS\system32\ntvdm.exe
Wed Jun 01 09:44:28 2005 => Scanning File C:\WINDOWS\system32\ntvdm.exe

Wed Jun 01 09:44:28 2005 => Scanning HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components
Wed Jun 01 09:44:28 2005 => Scanning File C:\WINDOWS\inf\unregmp2.exe
Wed Jun 01 09:44:28 2005 => Scanning File C:\WINDOWS\system32\shmgrate.exe
Wed Jun 01 09:44:28 2005 => Scanning File C:\WINDOWS\system32\shmgrate.exe
Wed Jun 01 09:44:28 2005 => Scanning File C:\WINDOWS\system32\RunDLL32.exe
Wed Jun 01 09:44:28 2005 => Scanning File C:\WINDOWS\system32\regsvr32.exe
Wed Jun 01 09:44:28 2005 => Scanning File C:\PROGRA~1\OUTLOO~1\setup50.exe
Wed Jun 01 09:44:29 2005 => Scanning File C:\WINDOWS\system32\rundll32.exe
Wed Jun 01 09:44:29 2005 => Scanning File C:\WINDOWS\system32\rundll32.exe
Wed Jun 01 09:44:29 2005 => Scanning File C:\WINDOWS\system32\rundll32.exe
Wed Jun 01 09:44:29 2005 => Scanning File C:\PROGRA~1\OUTLOO~1\setup50.exe
Wed Jun 01 09:44:29 2005 => Scanning File C:\WINDOWS\system32\regsvr32.exe
Wed Jun 01 09:44:29 2005 => Scanning File C:\WINDOWS\system32\ie4uinit.exe

Wed Jun 01 09:44:29 2005 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run

Wed Jun 01 09:44:29 2005 => Scanning HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run

Wed Jun 01 09:44:29 2005 => Scanning HKLM\SOFTWARE\Microsoft\WindowsNT\CurrentVersion\Run

Wed Jun 01 09:44:29 2005 => Scanning HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Run

Wed Jun 01 09:44:29 2005 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
Wed Jun 01 09:44:29 2005 => Scanning File C:\WINDOWS\System32\igfxtray.exe
Wed Jun 01 09:44:29 2005 => Scanning File C:\WINDOWS\System32\hkcmd.exe
Wed Jun 01 09:44:29 2005 => Scanning File C:\WINDOWS\system32\dla\tfswctrl.exe
Wed Jun 01 09:44:29 2005 => Scanning File C:\PROGRA~1\COMMON~1\Sonic\UPDATE~1\sgtray.exe
Wed Jun 01 09:44:29 2005 => Scanning File C:\PROGRA~1\DELLAI~1\dlbkbmgr.exe
Wed Jun 01 09:44:29 2005 => Scanning File C:\WINDOWS\system32\gsicon.exe
Wed Jun 01 09:44:29 2005 => Scanning File C:\WINDOWS\system32\dslagent.exe
Wed Jun 01 09:44:29 2005 => Scanning File C:\PROGRA~1\QUICKT~1\qttask.exe
Wed Jun 01 09:44:29 2005 => Scanning File C:\PROGRA~1\iTunes\ITUNES~1.EXE
Wed Jun 01 09:44:29 2005 => Scanning File C:\PROGRA~1\INTERN~1\iexplore.exe
Wed Jun 01 09:44:29 2005 => Scanning File C:\PROGRA~1\Java\JRE15~1.0_0\bin\jusched.exe
Wed Jun 01 09:44:30 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
Wed Jun 01 09:44:30 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
Wed Jun 01 09:44:30 2005 => Scanning File C:\PROGRA~1\Thomson\SPEEDT~1\Dragdiag.exe
Wed Jun 01 09:44:30 2005 => Scanning File C:\PROGRA~1\MICROS~3\gcasServ.exe

Wed Jun 01 09:44:30 2005 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce

Wed Jun 01 09:44:30 2005 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnceEx

Wed Jun 01 09:44:30 2005 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServices

Wed Jun 01 09:44:30 2005 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServicesOnce

Wed Jun 01 09:44:30 2005 => Scanning HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Wed Jun 01 09:44:30 2005 => Scanning HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce

Wed Jun 01 09:44:30 2005 => Scanning HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnceEx

Wed Jun 01 09:44:30 2005 => Scanning HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServices

Wed Jun 01 09:44:30 2005 => Scanning HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce\Setup

Wed Jun 01 09:44:30 2005 => Scanning HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
Wed Jun 01 09:44:30 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\avgw.exe

Wed Jun 01 09:44:30 2005 => Scanning HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce

Wed Jun 01 09:44:30 2005 => Scanning HKCR\txtfile\shell\open\command

Wed Jun 01 09:44:30 2005 => Scanning HKCR\comfile\shell\open\command

Wed Jun 01 09:44:30 2005 => Scanning HKCR\exefile\shell\open\command

Wed Jun 01 09:44:30 2005 => Scanning HKCR\dllfile\shell\open\command

Wed Jun 01 09:44:30 2005 => Scanning HKCR\batfile\shell\open\command

Wed Jun 01 09:44:30 2005 => Scanning HKCR\piffile\shell\open\command

Wed Jun 01 09:44:30 2005 => Scanning HKCR\scrfile\shell\open\command

Wed Jun 01 09:44:30 2005 => Scanning HKCR\scrfile\shell\config\command

Wed Jun 01 09:44:30 2005 => Scanning HKCR\regfile\shell\open\command

Wed Jun 01 09:44:30 2005 => Scanning HKCR\htmlfile\shell\open\command
Wed Jun 01 09:44:30 2005 => Scanning File C:\PROGRA~1\INTERN~1\iexplore.exe

Wed Jun 01 09:44:30 2005 => Scanning HKCR\htafile\shell\open\command

Wed Jun 01 09:44:30 2005 => Scanning HKCR\jsfile\shell\open\command
Wed Jun 01 09:44:30 2005 => Scanning File C:\WINDOWS\System32\WScript.exe

Wed Jun 01 09:44:30 2005 => Scanning HKCR\jsefile\shell\open\command
Wed Jun 01 09:44:30 2005 => Scanning File C:\WINDOWS\System32\WScript.exe

Wed Jun 01 09:44:30 2005 => Scanning HKCR\vbsfile\shell\open\command
Wed Jun 01 09:44:30 2005 => Scanning File C:\WINDOWS\System32\WScript.exe

Wed Jun 01 09:44:30 2005 => Scanning HKCR\vbefile\shell\open\command
Wed Jun 01 09:44:30 2005 => Scanning File C:\WINDOWS\System32\WScript.exe

Wed Jun 01 09:44:30 2005 => Scanning HKCR\wshfile\shell\open\command
Wed Jun 01 09:44:30 2005 => Scanning File C:\WINDOWS\System32\WScript.exe

Wed Jun 01 09:44:30 2005 => Scanning HKCR\wsffile\shell\open\command
Wed Jun 01 09:44:30 2005 => Scanning File C:\WINDOWS\System32\WScript.exe

Wed Jun 01 09:44:30 2005 => ***** Scanning StartUp Folders *****

Wed Jun 01 09:44:30 2005 => ***** Scanning C:\Documents and Settings\Owner\Start Menu\Programs\Startup Folder *****
Wed Jun 01 09:44:30 2005 => Scanning Folder: C:\Documents and Settings\Owner\Start Menu\Programs\Startup\*.*
Wed Jun 01 09:44:30 2005 => Scanning File C:\Documents and Settings\Owner\Start Menu\Programs\Startup\desktop.ini [**]

Wed Jun 01 09:44:30 2005 => ***** Scanning C:\Documents and Settings\Owner\Desktop Folder *****
Wed Jun 01 09:44:30 2005 => Scanning Folder: C:\Documents and Settings\Owner\Desktop\*.*
Wed Jun 01 09:44:30 2005 => Scanning Folder: C:\Documents and Settings\Owner\Desktop\Anti Virus and Spware removers\*.*
Wed Jun 01 09:44:30 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\Anti Virus and Spware removers\a-squared StartCenter.lnk
Wed Jun 01 09:44:30 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\Anti Virus and Spware removers\Ad-aware 6.lnk
Wed Jun 01 09:44:30 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\Anti Virus and Spware removers\AVG Free.lnk
Wed Jun 01 09:44:30 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\Anti Virus and Spware removers\CCleaner.lnk
Wed Jun 01 09:44:30 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\Anti Virus and Spware removers\CWShredder.exe
Wed Jun 01 09:44:30 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\Anti Virus and Spware removers\Microsoft AntiSpyware.lnk
Wed Jun 01 09:44:31 2005 => Scanning Folder: C:\Documents and Settings\Owner\Desktop\Anti Virus and Spware removers\Spybot - Search & Destroy\*.*
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\Anti Virus and Spware removers\Spybot - Search & Destroy\Spybot - Search & Destroy.lnk
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\Anti Virus and Spware removers\Spybot - Search & Destroy\Uninstall Spybot - Search & Destroy.lnk
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\Anti Virus and Spware removers\SpywareBlaster.lnk
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\BT Openworld Broadband.lnk
Wed Jun 01 09:44:31 2005 => Scanning Folder: C:\Documents and Settings\Owner\Desktop\check these files and delete if not wanted\*.*
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\check these files and delete if not wanted\Scrap.shs
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\check these files and delete if not wanted\wort-a.ide [**]
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\fixme.reg
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\from kotaguy all.doc
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\GoogleToolbarInstaller.exe
Wed Jun 01 09:44:31 2005 => Scanning Folder: C:\Documents and Settings\Owner\Desktop\hijackthis\*.*
Wed Jun 01 09:44:31 2005 => Scanning Folder: C:\Documents and Settings\Owner\Desktop\hijackthis\backups\*.*
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\hijackthis\backups\backup-20050531-002811-196 [**]
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\hijackthis\backups\backup-20050531-002811-196.dll
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\hijackthis\backups\backup-20050531-002811-200 [**]
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\hijackthis\backups\backup-20050531-002811-261 [**]
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\hijackthis\backups\backup-20050531-002811-292 [**]
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\hijackthis\backups\backup-20050531-002811-292.dll
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\hijackthis\backups\backup-20050531-002811-302 [**]
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\hijackthis\backups\backup-20050531-002811-302.dll
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\hijackthis\backups\backup-20050531-002811-420 [**]
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\hijackthis\backups\backup-20050531-002811-420.dll
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\hijackthis\backups\backup-20050531-002811-448 [**]
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\hijackthis\backups\backup-20050531-002811-448.dll
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\hijackthis\backups\backup-20050531-002811-470 [**]
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\hijackthis\backups\backup-20050531-002811-477 [**]
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\hijackthis\backups\backup-20050531-002811-524 [**]
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\hijackthis\backups\backup-20050531-002811-527 [**]
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\hijackthis\backups\backup-20050531-002811-527.dll
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\hijackthis\backups\backup-20050531-002811-770 [**]
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\hijackthis\backups\backup-20050531-002811-785 [**]
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\hijackthis\backups\backup-20050531-002811-877 [**]
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\hijackthis\backups\backup-20050531-002811-980 [**]
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\hijackthis\backups\backup-20050531-002811-980.inf
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\hijackthis\backups\backup-20050531-002812-150 [**]
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\hijackthis\backups\backup-20050531-002812-156 [**]
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\hijackthis\backups\backup-20050531-002812-156.inf
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\hijackthis\backups\backup-20050531-002812-241 [**]
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\hijackthis\backups\backup-20050531-002812-299 [**]
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\hijackthis\backups\backup-20050531-002812-401 [**]
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\hijackthis\backups\backup-20050531-002812-679 [*
rainbow bridge
Regular Member
 
Posts: 46
Joined: May 30th, 2005, 4:42 pm

kotaguy

Unread postby rainbow bridge » June 1st, 2005, 4:58 am

Here is log didvided up. Thanks again.


Wed Jun 01 09:43:35 2005 => **********************************************************
Wed Jun 01 09:43:35 2005 => MicroWorld AntiVirus & Spyware Toolkit Utility.
Wed Jun 01 09:43:35 2005 => Copyright © 2003-2005, MicroWorld Technologies Inc.
Wed Jun 01 09:43:35 2005 => **********************************************************
Wed Jun 01 09:43:35 2005 => Version 6.2.9 (C:\DOCUME~1\Owner\LOCALS~1\Temp\mwavscan.com)
Wed Jun 01 09:43:35 2005 => Log File: C:\DOCUME~1\Owner\LOCALS~1\Temp\MWAV.LOG
Wed Jun 01 09:43:35 2005 => MWAV Registered: FALSE.
Wed Jun 01 09:43:35 2005 => MWAV Mode: Only Scan files.
Wed Jun 01 09:43:38 2005 => Latest Date of files inside MWAV: 29 May 2005 13:10:21.
Wed Jun 01 09:43:41 2005 => AV Library Loaded...
Wed Jun 01 09:43:41 2005 => MWAV doing self scanning...
Wed Jun 01 09:43:41 2005 => Scanning File C:\DOCUME~1\Owner\LOCALS~1\Temp\kavss.exe
Wed Jun 01 09:43:41 2005 => Scanning File C:\DOCUME~1\Owner\LOCALS~1\Temp\Getvlist.exe
Wed Jun 01 09:43:41 2005 => Scanning File C:\DOCUME~1\Owner\LOCALS~1\Temp\kavss.dll
Wed Jun 01 09:43:41 2005 => Scanning File C:\DOCUME~1\Owner\LOCALS~1\Temp\kavssdi.dll
Wed Jun 01 09:43:41 2005 => Scanning File C:\DOCUME~1\Owner\LOCALS~1\Temp\kavssi.dll
Wed Jun 01 09:43:41 2005 => Scanning File C:\DOCUME~1\Owner\LOCALS~1\Temp\kavvlg.dll
Wed Jun 01 09:43:41 2005 => Scanning File C:\DOCUME~1\Owner\LOCALS~1\Temp\msvlclnt.dll
Wed Jun 01 09:43:41 2005 => Scanning File C:\DOCUME~1\Owner\LOCALS~1\Temp\ipc.dll
Wed Jun 01 09:43:41 2005 => Scanning File C:\DOCUME~1\Owner\LOCALS~1\Temp\main.avi
Wed Jun 01 09:43:41 2005 => Scanning File C:\DOCUME~1\Owner\LOCALS~1\Temp\virus.avi
Wed Jun 01 09:43:41 2005 => MWAV files are clean.
Wed Jun 01 09:43:44 2005 => Virus Database Date: 2005/05/29
Wed Jun 01 09:43:44 2005 => Virus Database Count: 132253

Wed Jun 01 09:43:56 2005 => **********************************************************
Wed Jun 01 09:43:56 2005 => MicroWorld AntiVirus & Spyware Toolkit Utility.
Wed Jun 01 09:43:56 2005 => Copyright © 2003-2005, MicroWorld Technologies Inc.
Wed Jun 01 09:43:56 2005 =>
Wed Jun 01 09:43:56 2005 => Support: support@mwti.net
Wed Jun 01 09:43:56 2005 => Web: http://www.mwti.net
Wed Jun 01 09:43:56 2005 => **********************************************************
Wed Jun 01 09:43:56 2005 => Version 6.2.9 (C:\DOCUME~1\Owner\LOCALS~1\Temp\mwavscan.com)
Wed Jun 01 09:43:56 2005 => Log File: C:\DOCUME~1\Owner\LOCALS~1\Temp\MWAV.LOG
Wed Jun 01 09:43:56 2005 => User Account: Owner
Wed Jun 01 09:43:56 2005 => Windows Root Folder: C:\WINDOWS
Wed Jun 01 09:43:56 2005 => Windows Sys32 Folder: C:\WINDOWS\System32
Wed Jun 01 09:43:56 2005 => OS: Windows NT
Wed Jun 01 09:43:56 2005 => Latest Date of files inside MWAV: 29 May 2005 13:10:21.

Wed Jun 01 09:43:56 2005 => Options Selected by User:
Wed Jun 01 09:43:56 2005 => Memory Check: Enabled
Wed Jun 01 09:43:56 2005 => Registry Check: Enabled
Wed Jun 01 09:43:56 2005 => StartUp Folder Check: Enabled
Wed Jun 01 09:43:56 2005 => System Folder Check: Enabled
Wed Jun 01 09:43:56 2005 => System Area Check: Disabled
Wed Jun 01 09:43:56 2005 => Services Check: Enabled
Wed Jun 01 09:43:56 2005 => Drive Check Option Disabled
Wed Jun 01 09:43:56 2005 => Folder Check: Disabled

Wed Jun 01 09:43:56 2005 => ***** Scanning Memory Files *****
Wed Jun 01 09:43:56 2005 => Scanning File C:\WINDOWS\System32\smss.exe
Wed Jun 01 09:43:56 2005 => Scanning File C:\WINDOWS\System32\ntdll.dll
Wed Jun 01 09:43:56 2005 => Scanning File C:\WINDOWS\SYSTEM32\CSRSS.EXE
Wed Jun 01 09:43:56 2005 => Scanning File C:\WINDOWS\system32\CSRSRV.dll
Wed Jun 01 09:43:56 2005 => Scanning File C:\WINDOWS\system32\basesrv.dll
Wed Jun 01 09:43:56 2005 => Scanning File C:\WINDOWS\system32\winsrv.dll
Wed Jun 01 09:43:56 2005 => Scanning File C:\WINDOWS\system32\GDI32.dll
Wed Jun 01 09:43:57 2005 => Scanning File C:\WINDOWS\system32\KERNEL32.dll
Wed Jun 01 09:43:57 2005 => Scanning File C:\WINDOWS\system32\USER32.dll
Wed Jun 01 09:43:57 2005 => Scanning File C:\WINDOWS\system32\ADVAPI32.dll
Wed Jun 01 09:43:57 2005 => Scanning File C:\WINDOWS\system32\RPCRT4.dll
Wed Jun 01 09:43:57 2005 => Scanning File C:\WINDOWS\System32\sxs.dll
Wed Jun 01 09:43:57 2005 => Scanning File C:\WINDOWS\SYSTEM32\WINLOGON.EXE
Wed Jun 01 09:43:57 2005 => Scanning File C:\WINDOWS\system32\msvcrt.dll
Wed Jun 01 09:43:57 2005 => Scanning File C:\WINDOWS\system32\USERENV.dll
Wed Jun 01 09:43:57 2005 => Scanning File C:\WINDOWS\system32\NDdeApi.dll
Wed Jun 01 09:43:57 2005 => Scanning File C:\WINDOWS\system32\CRYPT32.dll
Wed Jun 01 09:43:57 2005 => Scanning File C:\WINDOWS\system32\MSASN1.dll
Wed Jun 01 09:43:57 2005 => Scanning File C:\WINDOWS\system32\Secur32.dll
Wed Jun 01 09:43:57 2005 => Scanning File C:\WINDOWS\system32\WINSTA.dll
Wed Jun 01 09:43:57 2005 => Scanning File C:\WINDOWS\system32\PROFMAP.dll
Wed Jun 01 09:43:57 2005 => Scanning File C:\WINDOWS\system32\NETAPI32.dll
Wed Jun 01 09:43:58 2005 => Scanning File C:\WINDOWS\system32\REGAPI.dll
Wed Jun 01 09:43:58 2005 => Scanning File C:\WINDOWS\system32\WS2_32.dll
Wed Jun 01 09:43:58 2005 => Scanning File C:\WINDOWS\system32\WS2HELP.dll
Wed Jun 01 09:43:58 2005 => Scanning File C:\WINDOWS\system32\AUTHZ.dll
Wed Jun 01 09:43:58 2005 => Scanning File C:\WINDOWS\system32\PSAPI.DLL
Wed Jun 01 09:43:58 2005 => Scanning File C:\WINDOWS\system32\VERSION.dll
Wed Jun 01 09:43:58 2005 => Scanning File C:\WINDOWS\system32\SETUPAPI.dll
Wed Jun 01 09:43:58 2005 => Scanning File C:\WINDOWS\System32\MSGINA.dll
Wed Jun 01 09:43:58 2005 => Scanning File C:\WINDOWS\system32\SHELL32.dll
Wed Jun 01 09:43:58 2005 => Scanning File C:\WINDOWS\system32\SHLWAPI.dll
Wed Jun 01 09:43:58 2005 => Scanning File C:\WINDOWS\system32\COMCTL32.dll
Wed Jun 01 09:43:58 2005 => Scanning File C:\WINDOWS\System32\ODBC32.dll
Wed Jun 01 09:43:58 2005 => Scanning File C:\WINDOWS\system32\comdlg32.dll
Wed Jun 01 09:43:58 2005 => Scanning File C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.1643_x-ww_7c3a9bc6\comctl32.dll
Wed Jun 01 09:43:59 2005 => Scanning File C:\WINDOWS\System32\odbcint.dll
Wed Jun 01 09:43:59 2005 => Scanning File C:\WINDOWS\System32\SHSVCS.dll
Wed Jun 01 09:43:59 2005 => Scanning File C:\WINDOWS\system32\sfc.dll
Wed Jun 01 09:43:59 2005 => Scanning File C:\WINDOWS\System32\sfc_os.dll
Wed Jun 01 09:43:59 2005 => Scanning File C:\WINDOWS\System32\WINTRUST.dll
Wed Jun 01 09:43:59 2005 => Scanning File C:\WINDOWS\system32\ole32.dll
Wed Jun 01 09:43:59 2005 => Scanning File C:\WINDOWS\system32\IMAGEHLP.dll
Wed Jun 01 09:43:59 2005 => Scanning File C:\WINDOWS\System32\WINSCARD.DLL
Wed Jun 01 09:43:59 2005 => Scanning File C:\WINDOWS\System32\WTSAPI32.dll
Wed Jun 01 09:43:59 2005 => Scanning File C:\WINDOWS\System32\uxtheme.dll
Wed Jun 01 09:43:59 2005 => Scanning File C:\WINDOWS\System32\WINMM.dll
Wed Jun 01 09:43:59 2005 => Scanning File C:\WINDOWS\System32\serwvdrv.dll
Wed Jun 01 09:43:59 2005 => Scanning File C:\WINDOWS\System32\umdmxfrm.dll
Wed Jun 01 09:43:59 2005 => Scanning File C:\WINDOWS\system32\cscdll.dll
Wed Jun 01 09:43:59 2005 => Scanning File C:\WINDOWS\System32\rsaenh.dll
Wed Jun 01 09:43:59 2005 => Scanning File C:\WINDOWS\system32\WlNotify.dll
Wed Jun 01 09:43:59 2005 => Scanning File C:\WINDOWS\System32\WINSPOOL.DRV
Wed Jun 01 09:43:59 2005 => Scanning File C:\WINDOWS\system32\MPR.dll
Wed Jun 01 09:44:00 2005 => Scanning File C:\WINDOWS\System32\SAMLIB.dll
Wed Jun 01 09:44:00 2005 => Scanning File C:\WINDOWS\System32\cscui.dll
Wed Jun 01 09:44:00 2005 => Scanning File C:\WINDOWS\System32\NTMARTA.DLL
Wed Jun 01 09:44:00 2005 => Scanning File C:\WINDOWS\system32\WLDAP32.dll
Wed Jun 01 09:44:00 2005 => Scanning File C:\WINDOWS\system32\msv1_0.dll
Wed Jun 01 09:44:00 2005 => Scanning File C:\WINDOWS\System32\wdmaud.drv
Wed Jun 01 09:44:00 2005 => Scanning File C:\WINDOWS\System32\msacm32.drv
Wed Jun 01 09:44:00 2005 => Scanning File C:\WINDOWS\System32\MSACM32.dll
Wed Jun 01 09:44:00 2005 => Scanning File C:\WINDOWS\System32\midimap.dll
Wed Jun 01 09:44:00 2005 => Scanning File C:\WINDOWS\System32\COMRes.dll
Wed Jun 01 09:44:00 2005 => Scanning File C:\WINDOWS\system32\OLEAUT32.dll
Wed Jun 01 09:44:00 2005 => Scanning File C:\WINDOWS\System32\CLBCATQ.DLL
Wed Jun 01 09:44:00 2005 => Scanning File C:\WINDOWS\system32\services.exe
Wed Jun 01 09:44:00 2005 => Scanning File C:\WINDOWS\system32\SCESRV.dll
Wed Jun 01 09:44:00 2005 => Scanning File C:\WINDOWS\system32\umpnpmgr.dll
Wed Jun 01 09:44:00 2005 => Scanning File C:\WINDOWS\system32\NCObjAPI.DLL
Wed Jun 01 09:44:00 2005 => Scanning File C:\WINDOWS\system32\eventlog.dll
Wed Jun 01 09:44:01 2005 => Scanning File C:\WINDOWS\system32\Apphelp.dll
Wed Jun 01 09:44:01 2005 => Scanning File C:\WINDOWS\system32\lsass.exe
Wed Jun 01 09:44:01 2005 => Scanning File C:\WINDOWS\system32\LSASRV.dll
Wed Jun 01 09:44:01 2005 => Scanning File C:\WINDOWS\system32\NTDSAPI.dll
Wed Jun 01 09:44:01 2005 => Scanning File C:\WINDOWS\system32\DNSAPI.dll
Wed Jun 01 09:44:01 2005 => Scanning File C:\WINDOWS\system32\SAMSRV.dll
Wed Jun 01 09:44:01 2005 => Scanning File C:\WINDOWS\system32\cryptdll.dll
Wed Jun 01 09:44:01 2005 => Scanning File C:\WINDOWS\system32\msprivs.dll
Wed Jun 01 09:44:01 2005 => Scanning File C:\WINDOWS\system32\kerberos.dll
Wed Jun 01 09:44:01 2005 => Scanning File C:\WINDOWS\system32\netlogon.dll
Wed Jun 01 09:44:01 2005 => Scanning File C:\WINDOWS\system32\w32time.dll
Wed Jun 01 09:44:01 2005 => Scanning File C:\WINDOWS\system32\MSVCP60.dll
Wed Jun 01 09:44:01 2005 => Scanning File C:\WINDOWS\system32\iphlpapi.dll
Wed Jun 01 09:44:01 2005 => Scanning File C:\WINDOWS\system32\schannel.dll
Wed Jun 01 09:44:01 2005 => Scanning File C:\WINDOWS\system32\wdigest.dll
Wed Jun 01 09:44:01 2005 => Scanning File C:\WINDOWS\system32\scecli.dll
Wed Jun 01 09:44:02 2005 => Scanning File C:\WINDOWS\system32\ipsecsvc.dll
Wed Jun 01 09:44:02 2005 => Scanning File C:\WINDOWS\system32\oakley.DLL
Wed Jun 01 09:44:02 2005 => Scanning File C:\WINDOWS\system32\WINIPSEC.DLL
Wed Jun 01 09:44:02 2005 => Scanning File C:\WINDOWS\system32\pstorsvc.dll
Wed Jun 01 09:44:02 2005 => Scanning File C:\WINDOWS\system32\psbase.dll
Wed Jun 01 09:44:02 2005 => Scanning File C:\WINDOWS\system32\mswsock.dll
Wed Jun 01 09:44:02 2005 => Scanning File C:\WINDOWS\System32\wshtcpip.dll
Wed Jun 01 09:44:02 2005 => Scanning File C:\WINDOWS\System32\dssenh.dll
Wed Jun 01 09:44:02 2005 => Scanning File C:\WINDOWS\system32\svchost.exe
Wed Jun 01 09:44:02 2005 => Scanning File c:\windows\system32\rpcss.dll
Wed Jun 01 09:44:02 2005 => Scanning File C:\WINDOWS\System32\winrnr.dll
Wed Jun 01 09:44:02 2005 => Scanning File C:\WINDOWS\system32\rasadhlp.dll
Wed Jun 01 09:44:02 2005 => Scanning File C:\WINDOWS\system32\msi.dll
Wed Jun 01 09:44:02 2005 => Scanning File c:\windows\system32\dhcpcsvc.dll
Wed Jun 01 09:44:02 2005 => Scanning File c:\windows\system32\wzcsvc.dll
Wed Jun 01 09:44:02 2005 => Scanning File c:\windows\system32\rtutils.dll
Wed Jun 01 09:44:02 2005 => Scanning File c:\windows\system32\WMI.dll
Wed Jun 01 09:44:02 2005 => Scanning File c:\windows\system32\ESENT.dll
Wed Jun 01 09:44:03 2005 => Scanning File C:\WINDOWS\System32\rastls.dll
Wed Jun 01 09:44:03 2005 => Scanning File C:\WINDOWS\System32\ATL.DLL
Wed Jun 01 09:44:03 2005 => Scanning File C:\WINDOWS\System32\CRYPTUI.dll
Wed Jun 01 09:44:03 2005 => Scanning File C:\WINDOWS\system32\WININET.dll
Wed Jun 01 09:44:03 2005 => Scanning File C:\WINDOWS\System32\MPRAPI.dll
Wed Jun 01 09:44:03 2005 => Scanning File C:\WINDOWS\System32\ACTIVEDS.dll
Wed Jun 01 09:44:03 2005 => Scanning File C:\WINDOWS\System32\adsldpc.dll
Wed Jun 01 09:44:03 2005 => Scanning File C:\WINDOWS\System32\RASAPI32.dll
Wed Jun 01 09:44:03 2005 => Scanning File C:\WINDOWS\System32\rasman.dll
Wed Jun 01 09:44:03 2005 => Scanning File C:\WINDOWS\System32\TAPI32.dll
Wed Jun 01 09:44:03 2005 => Scanning File C:\WINDOWS\System32\raschap.dll
Wed Jun 01 09:44:04 2005 => Scanning File c:\windows\system32\schedsvc.dll
Wed Jun 01 09:44:04 2005 => Scanning File C:\WINDOWS\System32\MSIDLE.DLL
Wed Jun 01 09:44:04 2005 => Scanning File c:\windows\system32\audiosrv.dll
Wed Jun 01 09:44:04 2005 => Scanning File c:\windows\system32\wkssvc.dll
Wed Jun 01 09:44:04 2005 => Scanning File c:\windows\system32\cryptsvc.dll
Wed Jun 01 09:44:04 2005 => Scanning File c:\windows\system32\certcli.dll
Wed Jun 01 09:44:04 2005 => Scanning File c:\windows\system32\msgsvc.dll
Wed Jun 01 09:44:04 2005 => Scanning File c:\windows\system32\srvsvc.dll
Wed Jun 01 09:44:04 2005 => Scanning File c:\windows\pchealth\helpctr\binaries\pchsvc.dll
Wed Jun 01 09:44:04 2005 => Scanning File c:\windows\system32\es.dll
Wed Jun 01 09:44:04 2005 => Scanning File c:\windows\system32\ersvc.dll
Wed Jun 01 09:44:04 2005 => Scanning File c:\windows\system32\netman.dll
Wed Jun 01 09:44:04 2005 => Scanning File c:\windows\system32\srsvc.dll
Wed Jun 01 09:44:04 2005 => Scanning File c:\windows\system32\POWRPROF.dll
Wed Jun 01 09:44:04 2005 => Scanning File c:\windows\system32\seclogon.dll
Wed Jun 01 09:44:04 2005 => Scanning File c:\windows\system32\tapisrv.dll
Wed Jun 01 09:44:04 2005 => Scanning File c:\windows\system32\trkwks.dll
Wed Jun 01 09:44:04 2005 => Scanning File c:\windows\system32\rasmans.dll
Wed Jun 01 09:44:05 2005 => Scanning File c:\windows\system32\Sens.dll
Wed Jun 01 09:44:05 2005 => Scanning File c:\windows\system32\netcfgx.dll
Wed Jun 01 09:44:05 2005 => Scanning File c:\windows\system32\CLUSAPI.dll
Wed Jun 01 09:44:05 2005 => Scanning File c:\windows\system32\wuauserv.dll
Wed Jun 01 09:44:05 2005 => Scanning File c:\windows\system32\wbem\wmisvc.dll
Wed Jun 01 09:44:05 2005 => Scanning File c:\windows\system32\wbem\wbemcomn.dll
Wed Jun 01 09:44:05 2005 => Scanning File C:\WINDOWS\System32\VSSAPI.DLL
Wed Jun 01 09:44:05 2005 => Scanning File C:\WINDOWS\System32\wuaueng.dll
Wed Jun 01 09:44:05 2005 => Scanning File C:\WINDOWS\System32\ADVPACK.dll
Wed Jun 01 09:44:05 2005 => Scanning File C:\WINDOWS\System32\SHFOLDER.dll
Wed Jun 01 09:44:05 2005 => Scanning File C:\WINDOWS\System32\WINHTTP.dll
Wed Jun 01 09:44:05 2005 => Scanning File C:\WINDOWS\System32\Cabinet.dll
Wed Jun 01 09:44:05 2005 => Scanning File C:\WINDOWS\System32\mspatcha.dll
Wed Jun 01 09:44:05 2005 => Scanning File C:\WINDOWS\System32\rastapi.dll
Wed Jun 01 09:44:06 2005 => Scanning File c:\windows\system32\browser.dll
Wed Jun 01 09:44:06 2005 => Scanning File C:\WINDOWS\System32\unimdm.tsp
Wed Jun 01 09:44:06 2005 => Scanning File C:\WINDOWS\System32\uniplat.dll
Wed Jun 01 09:44:06 2005 => Scanning File C:\WINDOWS\system32\comsvcs.dll
Wed Jun 01 09:44:06 2005 => Scanning File C:\WINDOWS\system32\MTXCLU.DLL
Wed Jun 01 09:44:06 2005 => Scanning File C:\WINDOWS\system32\WSOCK32.dll
Wed Jun 01 09:44:06 2005 => Scanning File C:\WINDOWS\system32\colbact.DLL
Wed Jun 01 09:44:06 2005 => Scanning File C:\WINDOWS\System32\RESUTILS.DLL
Wed Jun 01 09:44:06 2005 => Scanning File C:\WINDOWS\System32\mtxoci.dll
Wed Jun 01 09:44:06 2005 => Scanning File C:\WINDOWS\System32\unimdmat.dll
Wed Jun 01 09:44:06 2005 => Scanning File C:\WINDOWS\System32\modemui.dll
Wed Jun 01 09:44:06 2005 => Scanning File C:\WINDOWS\System32\kmddsp.tsp
Wed Jun 01 09:44:06 2005 => Scanning File C:\WINDOWS\System32\ndptsp.tsp
Wed Jun 01 09:44:06 2005 => Scanning File C:\WINDOWS\System32\ipconf.tsp
Wed Jun 01 09:44:06 2005 => Scanning File C:\WINDOWS\System32\h323.tsp
Wed Jun 01 09:44:06 2005 => Scanning File C:\WINDOWS\System32\hidphone.tsp
Wed Jun 01 09:44:07 2005 => Scanning File C:\WINDOWS\System32\HID.DLL
Wed Jun 01 09:44:07 2005 => Scanning File C:\WINDOWS\System32\rasppp.dll
Wed Jun 01 09:44:07 2005 => Scanning File C:\WINDOWS\System32\ntlsapi.dll
Wed Jun 01 09:44:07 2005 => Scanning File c:\windows\system32\ipnathlp.dll
Wed Jun 01 09:44:07 2005 => Scanning File c:\windows\system32\netshell.dll
Wed Jun 01 09:44:07 2005 => Scanning File c:\windows\system32\credui.dll
Wed Jun 01 09:44:07 2005 => Scanning File c:\windows\system32\HNetCfg.dll
Wed Jun 01 09:44:07 2005 => Scanning File C:\WINDOWS\System32\Wbem\wbemcore.dll
Wed Jun 01 09:44:07 2005 => Scanning File C:\WINDOWS\System32\Wbem\esscli.dll
Wed Jun 01 09:44:07 2005 => Scanning File C:\WINDOWS\System32\Wbem\FastProx.dll
Wed Jun 01 09:44:07 2005 => Scanning File C:\WINDOWS\System32\wbem\wmiutils.dll
Wed Jun 01 09:44:07 2005 => Scanning File C:\WINDOWS\System32\wbem\repdrvfs.dll
Wed Jun 01 09:44:07 2005 => Scanning File C:\WINDOWS\System32\wbem\wmiprvsd.dll
Wed Jun 01 09:44:08 2005 => Scanning File C:\WINDOWS\System32\wbem\wbemess.dll
Wed Jun 01 09:44:08 2005 => Scanning File c:\windows\system32\termsrv.dll
Wed Jun 01 09:44:08 2005 => Scanning File c:\windows\system32\ICAAPI.dll
Wed Jun 01 09:44:08 2005 => Scanning File c:\windows\system32\mstlsapi.dll
Wed Jun 01 09:44:08 2005 => Scanning File C:\WINDOWS\System32\upnp.dll
Wed Jun 01 09:44:08 2005 => Scanning File C:\WINDOWS\System32\SSDPAPI.dll
Wed Jun 01 09:44:08 2005 => Scanning File C:\WINDOWS\System32\RASDLG.dll
Wed Jun 01 09:44:08 2005 => Scanning File C:\WINDOWS\System32\wups.dll
Wed Jun 01 09:44:08 2005 => Scanning File C:\WINDOWS\System32\wbem\ncprov.dll
Wed Jun 01 09:44:08 2005 => Scanning File C:\WINDOWS\system32\msxml3.dll
Wed Jun 01 09:44:08 2005 => Scanning File C:\WINDOWS\System32\wbem\wbemsvc.dll
Wed Jun 01 09:44:08 2005 => Scanning File C:\WINDOWS\System32\cryptnet.dll
Wed Jun 01 09:44:08 2005 => Scanning File c:\windows\system32\dnsrslvr.dll
Wed Jun 01 09:44:08 2005 => Scanning File c:\windows\system32\lmhsvc.dll
Wed Jun 01 09:44:08 2005 => Scanning File c:\windows\system32\webclnt.dll
Wed Jun 01 09:44:08 2005 => Scanning File c:\windows\system32\ssdpsrv.dll
Wed Jun 01 09:44:09 2005 => Scanning File C:\WINDOWS\Explorer.EXE
Wed Jun 01 09:44:09 2005 => Scanning File C:\WINDOWS\System32\BROWSEUI.dll
Wed Jun 01 09:44:09 2005 => Scanning File C:\WINDOWS\System32\SHDOCVW.dll
Wed Jun 01 09:44:09 2005 => Scanning File C:\WINDOWS\System32\themeui.dll
Wed Jun 01 09:44:09 2005 => Scanning File C:\WINDOWS\System32\MSIMG32.dll
Wed Jun 01 09:44:09 2005 => Scanning File C:\WINDOWS\System32\actxprxy.dll
Wed Jun 01 09:44:09 2005 => Scanning File C:\WINDOWS\System32\ntshrui.dll
Wed Jun 01 09:44:09 2005 => Scanning File C:\WINDOWS\System32\LINKINFO.dll
Wed Jun 01 09:44:09 2005 => Scanning File C:\PROGRA~1\MICROS~3\SHELLE~1.DLL
Wed Jun 01 09:44:09 2005 => Scanning File C:\WINDOWS\system32\urlmon.dll
Wed Jun 01 09:44:09 2005 => Scanning File C:\WINDOWS\System32\webcheck.dll
Wed Jun 01 09:44:09 2005 => Scanning File C:\WINDOWS\System32\stobject.dll
Wed Jun 01 09:44:09 2005 => Scanning File C:\WINDOWS\System32\BatMeter.dll
Wed Jun 01 09:44:09 2005 => Scanning File C:\WINDOWS\System32\printui.dll
Wed Jun 01 09:44:09 2005 => Scanning File C:\WINDOWS\System32\CFGMGR32.dll
Wed Jun 01 09:44:10 2005 => Scanning File C:\WINDOWS\System32\drprov.dll
Wed Jun 01 09:44:10 2005 => Scanning File C:\WINDOWS\System32\ntlanman.dll
Wed Jun 01 09:44:10 2005 => Scanning File C:\WINDOWS\System32\NETUI0.dll
Wed Jun 01 09:44:10 2005 => Scanning File C:\WINDOWS\System32\NETUI1.dll
Wed Jun 01 09:44:10 2005 => Scanning File C:\WINDOWS\System32\NETRAP.dll
Wed Jun 01 09:44:10 2005 => Scanning File C:\WINDOWS\System32\davclnt.dll
Wed Jun 01 09:44:10 2005 => Scanning File C:\WINDOWS\System32\shdoclc.dll
Wed Jun 01 09:44:10 2005 => Scanning File C:\PROGRA~1\Yahoo!\MESSEN~1\idle.dll
Wed Jun 01 09:44:10 2005 => Scanning File C:\WINDOWS\system32\LEXBCES.EXE
Wed Jun 01 09:44:10 2005 => Scanning File C:\WINDOWS\system32\lexp2p32.dll
Wed Jun 01 09:44:10 2005 => Scanning File C:\WINDOWS\system32\lex2kusb.dll
Wed Jun 01 09:44:10 2005 => Scanning File C:\WINDOWS\system32\LEXPPS.EXE
Wed Jun 01 09:44:10 2005 => Scanning File C:\WINDOWS\system32\LEXBCE.DLL
Wed Jun 01 09:44:10 2005 => Scanning File C:\WINDOWS\system32\spoolsv.exe
Wed Jun 01 09:44:11 2005 => Scanning File C:\WINDOWS\system32\SPOOLSS.DLL
Wed Jun 01 09:44:11 2005 => Scanning File C:\WINDOWS\system32\localspl.dll
Wed Jun 01 09:44:11 2005 => Scanning File C:\WINDOWS\system32\cnbjmon.dll
Wed Jun 01 09:44:11 2005 => Scanning File C:\WINDOWS\system32\LEXLMPM.DLL
Wed Jun 01 09:44:11 2005 => Scanning File C:\WINDOWS\system32\pjlmon.dll
Wed Jun 01 09:44:11 2005 => Scanning File C:\WINDOWS\system32\tcpmon.dll
Wed Jun 01 09:44:11 2005 => Scanning File C:\WINDOWS\system32\usbmon.dll
Wed Jun 01 09:44:11 2005 => Scanning File C:\WINDOWS\System32\spool\PRTPROCS\W32X86\DLBKPP5C.dll
Wed Jun 01 09:44:11 2005 => Scanning File C:\WINDOWS\System32\spool\PRTPROCS\W32X86\WfxPrint2000.dll
Wed Jun 01 09:44:11 2005 => Scanning File C:\WINDOWS\system32\win32spl.dll
Wed Jun 01 09:44:11 2005 => Scanning File C:\WINDOWS\system32\inetpp.dll
Wed Jun 01 09:44:11 2005 => Scanning File C:\WINDOWS\system32\icmp.dll
Wed Jun 01 09:44:11 2005 => Scanning File C:\WINDOWS\system32\DLBKpwr.dll
Wed Jun 01 09:44:11 2005 => Scanning File C:\WINDOWS\System32\alg.exe
Wed Jun 01 09:44:11 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
Wed Jun 01 09:44:11 2005 => Scanning File C:\WINDOWS\System32\MSVCP71.dll
Wed Jun 01 09:44:11 2005 => Scanning File C:\WINDOWS\System32\MSVCR71.dll
Wed Jun 01 09:44:12 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\avglog.dll
Wed Jun 01 09:44:12 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\avgcfg.dll
Wed Jun 01 09:44:12 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\avgklib.dll
Wed Jun 01 09:44:12 2005 => Scanning File C:\WINDOWS\System32\SensAPI.DLL
Wed Jun 01 09:44:12 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\avglng.dll
Wed Jun 01 09:44:12 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\avgamint.dll
Wed Jun 01 09:44:12 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsps.dll
Wed Jun 01 09:44:12 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
Wed Jun 01 09:44:12 2005 => Scanning File C:\WINDOWS\system32\cisvc.exe
Wed Jun 01 09:44:12 2005 => Scanning File C:\WINDOWS\system32\query.dll
Wed Jun 01 09:44:12 2005 => Scanning File c:\windows\system32\wiaservc.dll
Wed Jun 01 09:44:12 2005 => Scanning File c:\windows\system32\mscms.dll
Wed Jun 01 09:44:13 2005 => Scanning File C:\WINDOWS\System32\hkcmd.exe
Wed Jun 01 09:44:13 2005 => Scanning File C:\WINDOWS\System32\hccutils.DLL
Wed Jun 01 09:44:13 2005 => Scanning File C:\WINDOWS\System32\igfxdev.dll
Wed Jun 01 09:44:13 2005 => Scanning File C:\WINDOWS\System32\igfxsrvc.dll
Wed Jun 01 09:44:13 2005 => Scanning File C:\WINDOWS\System32\igfxres.dll
Wed Jun 01 09:44:13 2005 => Scanning File C:\WINDOWS\System32\igfxhk.dll
Wed Jun 01 09:44:13 2005 => Scanning File C:\WINDOWS\system32\dla\tfswctrl.exe
Wed Jun 01 09:44:13 2005 => Scanning File C:\WINDOWS\System32\tfswapi.dll
Wed Jun 01 09:44:13 2005 => Scanning File C:\WINDOWS\system32\dla\tfswcres.dll
Wed Jun 01 09:44:13 2005 => Scanning File C:\PROGRA~1\DELLAI~1\dlbkbmgr.exe
Wed Jun 01 09:44:13 2005 => Scanning File C:\WINDOWS\System32\gsicon.exe
Wed Jun 01 09:44:14 2005 => Scanning File C:\WINDOWS\System32\dslagent.exe
Wed Jun 01 09:44:14 2005 => Scanning File C:\PROGRA~1\QUICKT~1\qttask.exe
Wed Jun 01 09:44:14 2005 => Scanning File C:\PROGRA~1\iTunes\ITUNES~1.EXE
Wed Jun 01 09:44:14 2005 => Scanning File C:\PROGRA~1\iTunes\ITUNES~3.RES\ENBEFF~1.LPR\ITUNES~1.DLL
Wed Jun 01 09:44:14 2005 => Scanning File C:\PROGRA~1\iTunes\ITUNES~3.RES\ITUNES~1.DLL
Wed Jun 01 09:44:14 2005 => Scanning File C:\PROGRA~1\DELLAI~1\dlbkbmon.exe
Wed Jun 01 09:44:14 2005 => Scanning File C:\PROGRA~1\Java\JRE15~1.0_0\bin\jusched.exe
Wed Jun 01 09:44:14 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
Wed Jun 01 09:44:14 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\AvgAbout.dll
Wed Jun 01 09:44:14 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\AvgCtrl.dll
Wed Jun 01 09:44:14 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\MFC71.DLL
Wed Jun 01 09:44:15 2005 => Scanning File C:\WINDOWS\System32\MSVFW32.dll
Wed Jun 01 09:44:15 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\AvgTest.dll
Wed Jun 01 09:44:15 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\AvgTMgr.dll
Wed Jun 01 09:44:15 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\AvgTRes.dll
Wed Jun 01 09:44:15 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\AvgSet.dll
Wed Jun 01 09:44:15 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\avgf.dll
Wed Jun 01 09:44:15 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\AVGRES.DLL
Wed Jun 01 09:44:15 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\avgcckrn.dll
Wed Jun 01 09:44:15 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\avgvault.dll
Wed Jun 01 09:44:15 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\avgscan.dll
Wed Jun 01 09:44:15 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\avgunarc.dll
Wed Jun 01 09:44:16 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\avgrep.dll
Wed Jun 01 09:44:16 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\avgemsui.dll
Wed Jun 01 09:44:16 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\avgemcps.dll
Wed Jun 01 09:44:16 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
Wed Jun 01 09:44:16 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\libsasl.dll
Wed Jun 01 09:44:16 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\saslcrammd5.dll
Wed Jun 01 09:44:16 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\sasldigestmd5.dll
Wed Jun 01 09:44:16 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\sasllogin.dll
Wed Jun 01 09:44:16 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\saslplain.dll
Wed Jun 01 09:44:16 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\avgmail.dll
Wed Jun 01 09:44:16 2005 => Scanning File C:\PROGRA~1\Thomson\SPEEDT~1\Dragdiag.exe
Wed Jun 01 09:44:16 2005 => Scanning File C:\PROGRA~1\MICROS~3\gcasServ.exe
Wed Jun 01 09:44:16 2005 => Scanning File C:\WINDOWS\System32\MSVBVM60.DLL
Wed Jun 01 09:44:17 2005 => Scanning File C:\PROGRA~1\MICROS~3\GCANTI~1.DLL
Wed Jun 01 09:44:17 2005 => Scanning File C:\PROGRA~1\iPod\bin\IPODSE~1.EXE
Wed Jun 01 09:44:17 2005 => Scanning File C:\PROGRA~1\iPod\bin\IPODSE~1.RES\ENBEFF~1.LPR\IPODSE~1.DLL
Wed Jun 01 09:44:17 2005 => Scanning File C:\PROGRA~1\iPod\bin\IPODSE~1.RES\IPODSE~1.DLL
Wed Jun 01 09:44:17 2005 => Scanning File C:\PROGRA~1\CASIO\PHOTOL~1\Plauto.exe
Wed Jun 01 09:44:17 2005 => Scanning File C:\WINDOWS\System32\oledlg.dll
Wed Jun 01 09:44:17 2005 => Scanning File C:\WINDOWS\System32\OLEPRO32.DLL
Wed Jun 01 09:44:17 2005 => Scanning File C:\PROGRA~1\BTBROA~1\Help\bin\mpbtn.exe
Wed Jun 01 09:44:17 2005 => Scanning File C:\PROGRA~1\BTBROA~1\Help\bin\CLIENT~1.DLL
Wed Jun 01 09:44:17 2005 => Scanning File C:\PROGRA~1\BTBROA~1\Help\bin\ASSTCA~1.DLL
Wed Jun 01 09:44:17 2005 => Scanning File C:\PROGRA~1\BTBROA~1\Help\bin\resource.dll
Wed Jun 01 09:44:17 2005 => Scanning File C:\PROGRA~1\BTOPEN~1\bin\mpbtn.exe
Wed Jun 01 09:44:18 2005 => Scanning File C:\PROGRA~1\BTOPEN~1\bin\CLIENT~1.DLL
Wed Jun 01 09:44:18 2005 => Scanning File C:\PROGRA~1\BTOPEN~1\bin\ASSTCA~1.DLL
Wed Jun 01 09:44:18 2005 => Scanning File C:\PROGRA~1\MICROS~3\GCASDT~1.EXE
Wed Jun 01 09:44:18 2005 => Scanning File C:\WINDOWS\System32\GCCollection.dll
Wed Jun 01 09:44:18 2005 => Scanning File C:\WINDOWS\System32\hashlib.dll
Wed Jun 01 09:44:18 2005 => Scanning File C:\WINDOWS\System32\wuauclt.exe
Wed Jun 01 09:44:18 2005 => Scanning File C:\WINDOWS\System32\wuaucpl.cpl
Wed Jun 01 09:44:18 2005 => Scanning File C:\WINDOWS\System32\wucltui.dll
Wed Jun 01 09:44:18 2005 => Scanning File C:\PROGRA~1\Yahoo!\browser\ybrowser.exe
Wed Jun 01 09:44:18 2005 => Scanning File C:\PROGRA~1\Yahoo!\browser\YBrwRes.dll
Wed Jun 01 09:44:18 2005 => Scanning File C:\WINDOWS\System32\MSVCR70.dll
Wed Jun 01 09:44:18 2005 => Scanning File C:\PROGRA~1\Yahoo!\browser\ybskin.dll
Wed Jun 01 09:44:18 2005 => Scanning File C:\PROGRA~1\Yahoo!\browser\ytbctl.dll
Wed Jun 01 09:44:18 2005 => Scanning File C:\PROGRA~1\Yahoo!\browser\ypub.dll
Wed Jun 01 09:44:18 2005 => Scanning File C:\PROGRA~1\Yahoo!\browser\YCommon.Dll
Wed Jun 01 09:44:19 2005 => Scanning File C:\PROGRA~1\Yahoo!\browser\yuc.dll
Wed Jun 01 09:44:19 2005 => Scanning File C:\WINDOWS\System32\MLANG.dll
Wed Jun 01 09:44:19 2005 => Scanning File C:\WINDOWS\System32\mshtml.dll
Wed Jun 01 09:44:19 2005 => Scanning File C:\PROGRA~1\Yahoo!\browser\ybcomp.dll
Wed Jun 01 09:44:19 2005 => Scanning File C:\PROGRA~1\Yahoo!\browser\YCOMMO~1.DLL
Wed Jun 01 09:44:19 2005 => Scanning File C:\WINDOWS\System32\msimtf.dll
Wed Jun 01 09:44:19 2005 => Scanning File C:\WINDOWS\System32\MSCTF.dll
Wed Jun 01 09:44:19 2005 => Scanning File c:\windows\system32\jscript.dll
Wed Jun 01 09:44:19 2005 => Scanning File C:\PROGRA~1\Yahoo!\browser\YLOCAL~1.DLL
Wed Jun 01 09:44:19 2005 => Scanning File C:\WINDOWS\System32\dxtrans.dll
Wed Jun 01 09:44:19 2005 => Scanning File C:\WINDOWS\System32\ddrawex.dll
Wed Jun 01 09:44:19 2005 => Scanning File C:\WINDOWS\System32\DDRAW.dll
Wed Jun 01 09:44:19 2005 => Scanning File C:\WINDOWS\System32\DCIMAN32.dll
Wed Jun 01 09:44:20 2005 => Scanning File C:\WINDOWS\System32\dxtmsft.dll
Wed Jun 01 09:44:20 2005 => Scanning File C:\WINDOWS\System32\MSLS31.DLL
Wed Jun 01 09:44:20 2005 => Scanning File C:\WINDOWS\System32\IMM32.DLL
Wed Jun 01 09:44:20 2005 => Scanning File C:\WINDOWS\System32\imgutil.dll
Wed Jun 01 09:44:20 2005 => Scanning File C:\WINDOWS\System32\mshtmled.dll
Wed Jun 01 09:44:20 2005 => Scanning File C:\WINDOWS\System32\asycfilt.dll
Wed Jun 01 09:44:20 2005 => Scanning File C:\PROGRA~1\Yahoo!\browser\ychoose.dll
Wed Jun 01 09:44:20 2005 => Scanning File C:\PROGRA~1\Yahoo!\MESSEN~1\ypagerps.dll
Wed Jun 01 09:44:20 2005 => Scanning File C:\WINDOWS\System32\vbscript.dll
Wed Jun 01 09:44:20 2005 => Scanning File C:\WINDOWS\System32\macromed\flash\Flash.ocx
Wed Jun 01 09:44:20 2005 => Scanning File C:\WINDOWS\System32\iepeers.dll
Wed Jun 01 09:44:20 2005 => Scanning File C:\WINDOWS\DOWNLO~1\EPUWAL~1.DLL
Wed Jun 01 09:44:20 2005 => Scanning File C:\DOCUME~1\Owner\LOCALS~1\Temp\epurcmainver11.dll
Wed Jun 01 09:44:20 2005 => Scanning File C:\WINDOWS\System32\dispex.dll
Wed Jun 01 09:44:20 2005 => Scanning File C:\WINDOWS\System32\msieftp.dll
Wed Jun 01 09:44:20 2005 => Scanning File C:\WINDOWS\System32\plugin.ocx
Wed Jun 01 09:44:20 2005 => Scanning File C:\PROGRA~1\Yahoo!\browser\ycommon.exe
Wed Jun 01 09:44:21 2005 => Scanning File C:\PROGRA~1\Yahoo!\browser\YCommon.Dll
Wed Jun 01 09:44:21 2005 => Scanning File C:\PROGRA~1\Yahoo!\MESSEN~1\YPAGER.EXE
Wed Jun 01 09:44:21 2005 => Scanning File C:\PROGRA~1\Yahoo!\MESSEN~1\ygxa_2.dll
Wed Jun 01 09:44:21 2005 => Scanning File C:\PROGRA~1\Yahoo!\MESSEN~1\xmlparse.dll
Wed Jun 01 09:44:21 2005 => Scanning File C:\PROGRA~1\Yahoo!\MESSEN~1\xmltok.dll
Wed Jun 01 09:44:21 2005 => Scanning File C:\PROGRA~1\Yahoo!\MESSEN~1\pcre.dll
Wed Jun 01 09:44:21 2005 => Scanning File C:\PROGRA~1\Yahoo!\MESSEN~1\YML.dll
Wed Jun 01 09:44:21 2005 => Scanning File C:\PROGRA~1\Yahoo!\MESSEN~1\res_msgr.dll
Wed Jun 01 09:44:21 2005 => Scanning File C:\PROGRA~1\Yahoo!\MESSEN~1\ycrwin32.dll
Wed Jun 01 09:44:21 2005 => Scanning File C:\PROGRA~1\Yahoo!\MESSEN~1\MyYahoo.dll
Wed Jun 01 09:44:21 2005 => Scanning File C:\PROGRA~1\Yahoo!\MESSEN~1\D32-FW.DLL
Wed Jun 01 09:44:22 2005 => Scanning File C:\WINDOWS\System32\riched32.dll
Wed Jun 01 09:44:22 2005 => Scanning File C:\WINDOWS\System32\RICHED20.dll
Wed Jun 01 09:44:22 2005 => Scanning File C:\PROGRA~1\Yahoo!\MESSEN~1\stock.dll
Wed Jun 01 09:44:22 2005 => Scanning File C:\PROGRA~1\Yahoo!\browser\ybrwicon.exe
Wed Jun 01 09:44:22 2005 => Scanning File C:\WINDOWS\system32\cidaemon.exe
Wed Jun 01 09:44:22 2005 => Scanning File C:\WINDOWS\System32\LangWrbk.dll
Wed Jun 01 09:44:22 2005 => Scanning File C:\WINDOWS\System32\mstask.dll
Wed Jun 01 09:44:22 2005 => Scanning File C:\WINDOWS\system32\xpsp2res.dll
Wed Jun 01 09:44:22 2005 => Scanning File C:\WINDOWS\system32\nlhtml.dll
Wed Jun 01 09:44:22 2005 => Scanning File C:\WINDOWS\system32\cabview.dll
Wed Jun 01 09:44:22 2005 => Scanning File C:\DOCUME~1\Owner\LOCALS~1\Temp\mwavscan.com
Wed Jun 01 09:44:22 2005 => Scanning File C:\DOCUME~1\Owner\LOCALS~1\Temp\msvlclnt.dll
Wed Jun 01 09:44:23 2005 => Scanning File C:\DOCUME~1\Owner\LOCALS~1\Temp\kavssdi.dll
Wed Jun 01 09:44:23 2005 => Scanning File C:\DOCUME~1\Owner\LOCALS~1\Temp\kavssd.dll
Wed Jun 01 09:44:23 2005 => Scanning File C:\DOCUME~1\Owner\LOCALS~1\Temp\kavssi.dll
Wed Jun 01 09:44:23 2005 => Scanning File C:\DOCUME~1\Owner\LOCALS~1\Temp\ipc.dll
Wed Jun 01 09:44:23 2005 => Scanning File C:\DOCUME~1\Owner\LOCALS~1\Temp\RICHED32.DLL
Wed Jun 01 09:44:23 2005 => Scanning File C:\DOCUME~1\Owner\LOCALS~1\Temp\PSAPI.DLL
Wed Jun 01 09:44:23 2005 => Scanning File C:\WINDOWS\System32\VDMDBG.DLL
Wed Jun 01 09:44:23 2005 => Scanning File C:\DOCUME~1\Owner\LOCALS~1\Temp\kavss.exe
Wed Jun 01 09:44:23 2005 => Scanning File C:\DOCUME~1\Owner\LOCALS~1\Temp\kavss.dll

Wed Jun 01 09:44:23 2005 => ***** Scanning Registry Files *****

Wed Jun 01 09:44:23 2005 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad
Wed Jun 01 09:44:23 2005 => *** File C:\WINDOWS\system32\SHELL32.dll having Size Restriction ***. Filesize 8153 kb > 3072 kb...
Wed Jun 01 09:44:23 2005 => Scanning File C:\WINDOWS\system32\SHELL32.dll [**]
Wed Jun 01 09:44:23 2005 => *** File C:\WINDOWS\system32\SHELL32.dll having Size Restriction ***. Filesize 8153 kb > 3072 kb...
Wed Jun 01 09:44:23 2005 => Scanning File C:\WINDOWS\system32\SHELL32.dll [**]
Wed Jun 01 09:44:23 2005 => Scanning File C:\WINDOWS\System32\webcheck.dll
Wed Jun 01 09:44:23 2005 => Scanning File C:\WINDOWS\System32\stobject.dll

Wed Jun 01 09:44:23 2005 => Scanning HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad

Wed Jun 01 09:44:23 2005 => Scanning HKLM\SOFTWARE\Microsoft\Internet Explorer\Plugins\Extension

Wed Jun 01 09:44:23 2005 => Scanning HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar
Wed Jun 01 09:44:23 2005 => Scanning File C:\WINDOWS\System32\msdxm.ocx
Wed Jun 01 09:44:23 2005 => Scanning File c:\PROGRA~1\google\GOOGLE~1.DLL
Wed Jun 01 09:44:23 2005 => Scanning File C:\PROGRA~1\Yahoo!\COMPAN~1\Installs\cpn1\YCOMP5~1.DLL

Wed Jun 01 09:44:23 2005 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects
Wed Jun 01 09:44:23 2005 => {AA58ED58-01DD-4d91-8333-CF10577473F7} = c:\program files\google\googletoolbar1.dll
Wed Jun 01 09:44:23 2005 => Scanning File c:\PROGRA~1\google\GOOGLE~1.DLL

Wed Jun 01 09:44:23 2005 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\explorer\SharedTaskScheduler
Wed Jun 01 09:44:23 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:23 2005 => Scanning File C:\WINDOWS\System32\browseui.dll

Wed Jun 01 09:44:23 2005 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved
Wed Jun 01 09:44:23 2005 => Scanning File C:\WINDOWS\system32\mmsys.cpl
Wed Jun 01 09:44:24 2005 => Scanning File C:\WINDOWS\system32\icmui.dll
Wed Jun 01 09:44:24 2005 => Scanning File C:\WINDOWS\system32\rshx32.dll
Wed Jun 01 09:44:24 2005 => Scanning File C:\WINDOWS\system32\docprop.dll
Wed Jun 01 09:44:24 2005 => Scanning File C:\WINDOWS\system32\ntshrui.dll
Wed Jun 01 09:44:24 2005 => Scanning File C:\WINDOWS\System32\themeui.dll
Wed Jun 01 09:44:24 2005 => Scanning File C:\WINDOWS\system32\deskadp.dll
Wed Jun 01 09:44:24 2005 => Scanning File C:\WINDOWS\system32\deskmon.dll
Wed Jun 01 09:44:24 2005 => Scanning File C:\WINDOWS\system32\dssec.dll
Wed Jun 01 09:44:24 2005 => Scanning File C:\WINDOWS\system32\SlayerXP.dll
Wed Jun 01 09:44:24 2005 => Scanning File C:\WINDOWS\system32\shscrap.dll
Wed Jun 01 09:44:24 2005 => Scanning File C:\WINDOWS\system32\diskcopy.dll
Wed Jun 01 09:44:24 2005 => Scanning File C:\WINDOWS\system32\ntlanui2.dll
Wed Jun 01 09:44:24 2005 => Scanning File C:\WINDOWS\System32\icmui.dll
Wed Jun 01 09:44:24 2005 => Scanning File C:\WINDOWS\system32\icmui.dll
Wed Jun 01 09:44:24 2005 => Scanning File C:\WINDOWS\system32\printui.dll
Wed Jun 01 09:44:24 2005 => Scanning File C:\WINDOWS\system32\dskquoui.dll
Wed Jun 01 09:44:24 2005 => Scanning File C:\WINDOWS\system32\syncui.dll
Wed Jun 01 09:44:24 2005 => Scanning File C:\WINDOWS\System32\hticons.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\system32\fontext.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\system32\icmui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\system32\rshx32.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\system32\ntshrui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\system32\deskperf.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\system32\cryptext.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\system32\cryptext.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\system32\NETSHELL.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\system32\NETSHELL.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\system32\wiashext.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\system32\wiashext.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\system32\wiashext.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\system32\wiashext.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\system32\wiashext.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\remotepg.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\wshext.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\PROGRA~1\COMMON~1\System\OLEDB~1\oledb32.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\mstask.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\mstask.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\mstask.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\shmedia.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\shmedia.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\shmedia.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\shmedia.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\shmedia.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\shmedia.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\shdocvw.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\shdocvw.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\shdocvw.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\shdocvw.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\shdocvw.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\shdocvw.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\shdocvw.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\shdocvw.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\shdocvw.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\shdocvw.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\shdocvw.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\shdocvw.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\shdocvw.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\shdocvw.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\shdocvw.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\shdocvw.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\sendmail.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\sendmail.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\occache.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\webcheck.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\webcheck.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\webcheck.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\webcheck.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\webcheck.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\webcheck.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\webcheck.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\webcheck.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\webcheck.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\webcheck.dll
Wed Jun 01 09:44:25 2005 => Scanning File C:\WINDOWS\System32\appwiz.cpl
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\appwiz.cpl
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\appwiz.cpl
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\shimgvw.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\shimgvw.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\shimgvw.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\shimgvw.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\shimgvw.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\shimgvw.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\netplwiz.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\netplwiz.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\netplwiz.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\netplwiz.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\zipfldr.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\zipfldr.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\zipfldr.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\cdfview.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\cdfview.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\cdfview.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\cdfview.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\cdfview.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\msieftp.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\docprop2.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\docprop2.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\docprop2.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\docprop2.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\docprop2.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\docprop2.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\dsquery.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\dsquery.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\dsquery.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\dsquery.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\dsuiext.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\dsuiext.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\mydocs.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\mydocs.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\mydocs.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\cscui.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\cscui.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\cscui.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\msagent\agentpsh.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\dfsshlex.dll
Wed Jun 01 09:44:26 2005 => Scanning File C:\WINDOWS\System32\photowiz.dll
Wed Jun 01 09:44:27 2005 => Scanning File C:\WINDOWS\System32\mmcshext.dll
Wed Jun 01 09:44:27 2005 => Scanning File C:\WINDOWS\system32\cabview.dll
Wed Jun 01 09:44:27 2005 => Scanning File C:\PROGRA~1\OUTLOO~1\wabfind.dll
Wed Jun 01 09:44:27 2005 => Scanning File C:\WINDOWS\System32\wmpshell.dll
Wed Jun 01 09:44:27 2005 => Scanning File C:\WINDOWS\System32\wmpshell.dll
Wed Jun 01 09:44:27 2005 => Scanning File C:\WINDOWS\System32\wmpshell.dll
Wed Jun 01 09:44:27 2005 => Scanning File C:\PROGRA~1\Sonic\RECORD~1\shlext.dll
Wed Jun 01 09:44:27 2005 => Scanning File C:\WINDOWS\System32\wuaucpl.cpl
Wed Jun 01 09:44:27 2005 => Scanning File C:\PROGRA~1\MICROS~2\Office\OLKFSTUB.DLL
Wed Jun 01 09:44:27 2005 => Scanning File C:\PROGRA~1\iTunes\ITUNES~1.DLL
Wed Jun 01 09:44:27 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\avgse.dll
Wed Jun 01 09:44:27 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\avgse.dll
Wed Jun 01 09:44:27 2005 => Scanning File C:\PROGRA~1\Yahoo!\common\ymmapi.dll
Wed Jun 01 09:44:27 2005 => Scanning File C:\PROGRA~1\A2FREE~1\A2CONT~1.DLL

Wed Jun 01 09:44:27 2005 => Scanning HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows

Wed Jun 01 09:44:27 2005 => Scanning HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon
Wed Jun 01 09:44:27 2005 => Scanning File C:\WINDOWS\Explorer.exe
Wed Jun 01 09:44:27 2005 => Scanning File C:\WINDOWS\system32\userinit.exe
Wed Jun 01 09:44:28 2005 => Scanning File C:\WINDOWS\system32\dskquota.dll
Wed Jun 01 09:44:28 2005 => Scanning File C:\WINDOWS\system32\scecli.dll
Wed Jun 01 09:44:28 2005 => Scanning File C:\WINDOWS\system32\iedkcs32.dll
Wed Jun 01 09:44:28 2005 => Scanning File C:\WINDOWS\system32\scecli.dll
Wed Jun 01 09:44:28 2005 => Scanning File C:\WINDOWS\system32\crypt32.dll
Wed Jun 01 09:44:28 2005 => Scanning File C:\WINDOWS\system32\cryptnet.dll
Wed Jun 01 09:44:28 2005 => Scanning File C:\WINDOWS\system32\cscdll.dll
Wed Jun 01 09:44:28 2005 => Scanning File C:\WINDOWS\system32\igfxsrvc.dll
Wed Jun 01 09:44:28 2005 => Scanning File C:\WINDOWS\system32\wlnotify.dll
Wed Jun 01 09:44:28 2005 => Scanning File C:\WINDOWS\system32\wlnotify.dll
Wed Jun 01 09:44:28 2005 => Scanning File C:\WINDOWS\system32\sclgntfy.dll
Wed Jun 01 09:44:28 2005 => Scanning File C:\WINDOWS\system32\WlNotify.dll
Wed Jun 01 09:44:28 2005 => Scanning File C:\WINDOWS\system32\wlnotify.dll
Wed Jun 01 09:44:28 2005 => Scanning File C:\WINDOWS\system32\wlnotify.dll

Wed Jun 01 09:44:28 2005 => Scanning HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon

Wed Jun 01 09:44:28 2005 => Scanning HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System

Wed Jun 01 09:44:28 2005 => Scanning HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows

Wed Jun 01 09:44:28 2005 => Scanning HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AEDEBUG
Wed Jun 01 09:44:28 2005 => Scanning File C:\WINDOWS\system32\drwtsn32.exe

Wed Jun 01 09:44:28 2005 => Scanning HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options
Wed Jun 01 09:44:28 2005 => Scanning File C:\WINDOWS\system32\ntsd.exe

Wed Jun 01 09:44:28 2005 => Scanning HKCU\Control Panel\Desktop
Wed Jun 01 09:44:28 2005 => Scanning File C:\WINDOWS\System32\logon.scr

Wed Jun 01 09:44:28 2005 => Scanning HKLM\SYSTEM\CurrentControlSet\Control\WOW
Wed Jun 01 09:44:28 2005 => Scanning File C:\WINDOWS\system32\ntvdm.exe
Wed Jun 01 09:44:28 2005 => Scanning File C:\WINDOWS\system32\ntvdm.exe

Wed Jun 01 09:44:28 2005 => Scanning HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components
Wed Jun 01 09:44:28 2005 => Scanning File C:\WINDOWS\inf\unregmp2.exe
Wed Jun 01 09:44:28 2005 => Scanning File C:\WINDOWS\system32\shmgrate.exe
Wed Jun 01 09:44:28 2005 => Scanning File C:\WINDOWS\system32\shmgrate.exe
Wed Jun 01 09:44:28 2005 => Scanning File C:\WINDOWS\system32\RunDLL32.exe
Wed Jun 01 09:44:28 2005 => Scanning File C:\WINDOWS\system32\regsvr32.exe
Wed Jun 01 09:44:28 2005 => Scanning File C:\PROGRA~1\OUTLOO~1\setup50.exe
Wed Jun 01 09:44:29 2005 => Scanning File C:\WINDOWS\system32\rundll32.exe
Wed Jun 01 09:44:29 2005 => Scanning File C:\WINDOWS\system32\rundll32.exe
Wed Jun 01 09:44:29 2005 => Scanning File C:\WINDOWS\system32\rundll32.exe
Wed Jun 01 09:44:29 2005 => Scanning File C:\PROGRA~1\OUTLOO~1\setup50.exe
Wed Jun 01 09:44:29 2005 => Scanning File C:\WINDOWS\system32\regsvr32.exe
Wed Jun 01 09:44:29 2005 => Scanning File C:\WINDOWS\system32\ie4uinit.exe

Wed Jun 01 09:44:29 2005 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run

Wed Jun 01 09:44:29 2005 => Scanning HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run

Wed Jun 01 09:44:29 2005 => Scanning HKLM\SOFTWARE\Microsoft\WindowsNT\CurrentVersion\Run

Wed Jun 01 09:44:29 2005 => Scanning HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Run

Wed Jun 01 09:44:29 2005 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
Wed Jun 01 09:44:29 2005 => Scanning File C:\WINDOWS\System32\igfxtray.exe
Wed Jun 01 09:44:29 2005 => Scanning File C:\WINDOWS\System32\hkcmd.exe
Wed Jun 01 09:44:29 2005 => Scanning File C:\WINDOWS\system32\dla\tfswctrl.exe
Wed Jun 01 09:44:29 2005 => Scanning File C:\PROGRA~1\COMMON~1\Sonic\UPDATE~1\sgtray.exe
Wed Jun 01 09:44:29 2005 => Scanning File C:\PROGRA~1\DELLAI~1\dlbkbmgr.exe
Wed Jun 01 09:44:29 2005 => Scanning File C:\WINDOWS\system32\gsicon.exe
Wed Jun 01 09:44:29 2005 => Scanning File C:\WINDOWS\system32\dslagent.exe
Wed Jun 01 09:44:29 2005 => Scanning File C:\PROGRA~1\QUICKT~1\qttask.exe
Wed Jun 01 09:44:29 2005 => Scanning File C:\PROGRA~1\iTunes\ITUNES~1.EXE
Wed Jun 01 09:44:29 2005 => Scanning File C:\PROGRA~1\INTERN~1\iexplore.exe
Wed Jun 01 09:44:29 2005 => Scanning File C:\PROGRA~1\Java\JRE15~1.0_0\bin\jusched.exe
Wed Jun 01 09:44:30 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
Wed Jun 01 09:44:30 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
Wed Jun 01 09:44:30 2005 => Scanning File C:\PROGRA~1\Thomson\SPEEDT~1\Dragdiag.exe
Wed Jun 01 09:44:30 2005 => Scanning File C:\PROGRA~1\MICROS~3\gcasServ.exe

Wed Jun 01 09:44:30 2005 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce

Wed Jun 01 09:44:30 2005 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnceEx

Wed Jun 01 09:44:30 2005 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServices

Wed Jun 01 09:44:30 2005 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServicesOnce

Wed Jun 01 09:44:30 2005 => Scanning HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Wed Jun 01 09:44:30 2005 => Scanning HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce

Wed Jun 01 09:44:30 2005 => Scanning HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnceEx

Wed Jun 01 09:44:30 2005 => Scanning HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServices

Wed Jun 01 09:44:30 2005 => Scanning HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce\Setup

Wed Jun 01 09:44:30 2005 => Scanning HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
Wed Jun 01 09:44:30 2005 => Scanning File C:\PROGRA~1\Grisoft\AVGFRE~1\avgw.exe

Wed Jun 01 09:44:30 2005 => Scanning HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce

Wed Jun 01 09:44:30 2005 => Scanning HKCR\txtfile\shell\open\command

Wed Jun 01 09:44:30 2005 => Scanning HKCR\comfile\shell\open\command

Wed Jun 01 09:44:30 2005 => Scanning HKCR\exefile\shell\open\command

Wed Jun 01 09:44:30 2005 => Scanning HKCR\dllfile\shell\open\command

Wed Jun 01 09:44:30 2005 => Scanning HKCR\batfile\shell\open\command

Wed Jun 01 09:44:30 2005 => Scanning HKCR\piffile\shell\open\command

Wed Jun 01 09:44:30 2005 => Scanning HKCR\scrfile\shell\open\command

Wed Jun 01 09:44:30 2005 => Scanning HKCR\scrfile\shell\config\command

Wed Jun 01 09:44:30 2005 => Scanning HKCR\regfile\shell\open\command

Wed Jun 01 09:44:30 2005 => Scanning HKCR\htmlfile\shell\open\command
Wed Jun 01 09:44:30 2005 => Scanning File C:\PROGRA~1\INTERN~1\iexplore.exe

Wed Jun 01 09:44:30 2005 => Scanning HKCR\htafile\shell\open\command

Wed Jun 01 09:44:30 2005 => Scanning HKCR\jsfile\shell\open\command
Wed Jun 01 09:44:30 2005 => Scanning File C:\WINDOWS\System32\WScript.exe

Wed Jun 01 09:44:30 2005 => Scanning HKCR\jsefile\shell\open\command
Wed Jun 01 09:44:30 2005 => Scanning File C:\WINDOWS\System32\WScript.exe

Wed Jun 01 09:44:30 2005 => Scanning HKCR\vbsfile\shell\open\command
Wed Jun 01 09:44:30 2005 => Scanning File C:\WINDOWS\System32\WScript.exe

Wed Jun 01 09:44:30 2005 => Scanning HKCR\vbefile\shell\open\command
Wed Jun 01 09:44:30 2005 => Scanning File C:\WINDOWS\System32\WScript.exe

Wed Jun 01 09:44:30 2005 => Scanning HKCR\wshfile\shell\open\command
Wed Jun 01 09:44:30 2005 => Scanning File C:\WINDOWS\System32\WScript.exe

Wed Jun 01 09:44:30 2005 => Scanning HKCR\wsffile\shell\open\command
Wed Jun 01 09:44:30 2005 => Scanning File C:\WINDOWS\System32\WScript.exe

Wed Jun 01 09:44:30 2005 => ***** Scanning StartUp Folders *****

Wed Jun 01 09:44:30 2005 => ***** Scanning C:\Documents and Settings\Owner\Start Menu\Programs\Startup Folder *****
Wed Jun 01 09:44:30 2005 => Scanning Folder: C:\Documents and Settings\Owner\Start Menu\Programs\Startup\*.*
Wed Jun 01 09:44:30 2005 => Scanning File C:\Documents and Settings\Owner\Start Menu\Programs\Startup\desktop.ini [**]

Wed Jun 01 09:44:30 2005 => ***** Scanning C:\Documents and Settings\Owner\Desktop Folder *****
Wed Jun 01 09:44:30 2005 => Scanning Folder: C:\Documents and Settings\Owner\Desktop\*.*
Wed Jun 01 09:44:30 2005 => Scanning Folder: C:\Documents and Settings\Owner\Desktop\Anti Virus and Spware removers\*.*
Wed Jun 01 09:44:30 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\Anti Virus and Spware removers\a-squared StartCenter.lnk
Wed Jun 01 09:44:30 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\Anti Virus and Spware removers\Ad-aware 6.lnk
Wed Jun 01 09:44:30 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\Anti Virus and Spware removers\AVG Free.lnk
Wed Jun 01 09:44:30 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\Anti Virus and Spware removers\CCleaner.lnk
Wed Jun 01 09:44:30 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\Anti Virus and Spware removers\CWShredder.exe
Wed Jun 01 09:44:30 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\Anti Virus and Spware removers\Microsoft AntiSpyware.lnk
Wed Jun 01 09:44:31 2005 => Scanning Folder: C:\Documents and Settings\Owner\Desktop\Anti Virus and Spware removers\Spybot - Search & Destroy\*.*
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\Anti Virus and Spware removers\Spybot - Search & Destroy\Spybot - Search & Destroy.lnk
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\Anti Virus and Spware removers\Spybot - Search & Destroy\Uninstall Spybot - Search & Destroy.lnk
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\Anti Virus and Spware removers\SpywareBlaster.lnk
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\BT Openworld Broadband.lnk
Wed Jun 01 09:44:31 2005 => Scanning Folder: C:\Documents and Settings\Owner\Desktop\check these files and delete if not wanted\*.*
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\check these files and delete if not wanted\Scrap.shs
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\check these files and delete if not wanted\wort-a.ide [**]
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\fixme.reg
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\from kotaguy all.doc
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\GoogleToolbarInstaller.exe
Wed Jun 01 09:44:31 2005 => Scanning Folder: C:\Documents and Settings\Owner\Desktop\hijackthis\*.*
Wed Jun 01 09:44:31 2005 => Scanning Folder: C:\Documents and Settings\Owner\Desktop\hijackthis\backups\*.*
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\hijackthis\backups\backup-20050531-002811-196 [**]
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\hijackthis\backups\backup-20050531-002811-196.dll
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\hijackthis\backups\backup-20050531-002811-200 [**]
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\hijackthis\backups\backup-20050531-002811-261 [**]
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\hijackthis\backups\backup-20050531-002811-292 [**]
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\hijackthis\backups\backup-20050531-002811-292.dll
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\hijackthis\backups\backup-20050531-002811-302 [**]
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\hijackthis\backups\backup-20050531-002811-302.dll
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\hijackthis\backups\backup-20050531-002811-420 [**]
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\hijackthis\backups\backup-20050531-002811-420.dll
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\hijackthis\backups\backup-20050531-002811-448 [**]
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\hijackthis\backups\backup-20050531-002811-448.dll
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\hijackthis\backups\backup-20050531-002811-470 [**]
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\hijackthis\backups\backup-20050531-002811-477 [**]
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\hijackthis\backups\backup-20050531-002811-524 [**]
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\hijackthis\backups\backup-20050531-002811-527 [**]
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\hijackthis\backups\backup-20050531-002811-527.dll
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\hijackthis\backups\backup-20050531-002811-770 [**]
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\hijackthis\backups\backup-20050531-002811-785 [**]
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\hijackthis\backups\backup-20050531-002811-877 [**]
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\hijackthis\backups\backup-20050531-002811-980 [**]
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\hijackthis\backups\backup-20050531-002811-980.inf
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\hijackthis\backups\backup-20050531-002812-150 [**]
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\hijackthis\backups\backup-20050531-002812-156 [**]
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\hijackthis\backups\backup-20050531-002812-156.inf
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\hijackthis\backups\backup-20050531-002812-241 [**]
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\hijackthis\backups\backup-20050531-002812-299 [**]
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\hijackthis\backups\backup-20050531-002812-401 [**]
Wed Jun 01 09:44:31 2005 => Scanning File C:\Documents and Settings\Owner\Desktop\hijackthis\backups\backup-200
rainbow bridge
Regular Member
 
Posts: 46
Joined: May 30th, 2005, 4:42 pm
Advertisement
Register to Remove

Next

  • Similar Topics
    Replies
    Views
    Last post

Return to Infected? Virus, malware, adware, ransomware, oh my!



Who is online

Users browsing this forum: No registered users and 50 guests

Contact us:

Advertisements do not imply our endorsement of that product or service. Register to remove all ads. The forum is run by volunteers who donate their time and expertise. We make every attempt to ensure that the help and advice posted is accurate and will not cause harm to your computer. However, we do not guarantee that they are accurate and they are to be used at your own risk. All trademarks are the property of their respective owners.

Member site: UNITE Against Malware