Welcome to MalwareRemoval.com,
What if we told you that you could get malware removal help from experts, and that it was 100% free? MalwareRemoval.com provides free support for people with infected computers. Our help, and the tools we use are always 100% free. No hidden catch. We simply enjoy helping others. You enjoy a clean, safe computer.

Malware Removal Instructions

IExplorer.exe Malware, very annoying indeed =/

MalwareRemoval.com provides free support for people with infected computers. Using plain language that anyone can understand, our community of volunteer experts will walk you through each step.

IExplorer.exe Malware, very annoying indeed =/

Unread postby Vicious » August 26th, 2008, 2:46 pm

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:38:24 AM, on 8/26/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
c:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
c:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
c:\Program Files\Common Files\Symantec Shared\ccProxy.exe
C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe
c:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
c:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
c:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Viewpoint\Common\ViewpointService.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\svchust.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe
C:\Program Files\UltraMon\UltraMon.exe
C:\Program Files\SysMetrix\SysMetrix.exe
C:\WINDOWS\PixArt\PAC207\Monitor.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\UltraMon\UltraMonTaskbar.exe
C:\Program Files\Winamp\winampa.exe
C:\Program Files\Microsoft IntelliPoint\ipoint.exe
C:\Program Files\ResChanger 2005\ResChanger2005.exe
C:\program files\steam\steam.exe
C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
C:\Program Files\DAEMON Tools\daemon.exe
C:\Program Files\Rainlendar2\Rainlendar2.exe
C:\Program Files\CursorXP\CursorXP.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\Program Files\ASUS WiFi-AP Solo\RtWLan.exe
C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Windows Desktop Search\WindowsSearch.exe
c:\Program Files\Common Files\Symantec Shared\Security Console\NSCSRVCE.EXE
C:\Program Files\Stardock\ObjectDock\ObjectDock.exe
C:\Program Files\Windows Desktop Search\WindowsSearchIndexer.exe
C:\Program Files\Xfire\xfire.exe
C:\Program Files\Common Files\AOL\Loader\aolload.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\Program Files\Common Files\Symantec Shared\CCAPP.EXE
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\wuauclt.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://google.daemonsearch.com/com/
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,C:\WINDOWS\system32\svchust.exe
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: dsWebAllowBHO Class - {2F85D76C-0569-466F-A488-493E6BD0E955} - C:\Program Files\Windows Desktop Search\dsWebAllow.dll
O2 - BHO: WEB·´²¡¶¾±£»¤ - {523C33CB-510E-4857-9801-78F1D892879C} - C:\WINDOWS\system32\kavsys.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Norton Internet Security 2006 - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - c:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll
O2 - BHO: NAV Helper - {A8F38D8D-E480-4D52-B7A2-731BB6995FDD} - c:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Norton Internet Security 2006 - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - c:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll
O3 - Toolbar: Norton AntiVirus - {C4069E3A-68F1-403E-B40E-20066696354B} - c:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [JMB36X IDE Setup] C:\WINDOWS\RaidTool\xInsIDE.exe
O4 - HKLM\..\Run: [36X Raid Configurer] C:\WINDOWS\system32\xRaidSetup.exe boot
O4 - HKLM\..\Run: [ccApp] "c:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [LogonStudio] "C:\Program Files\WinCustomize\LogonStudio\logonstudio.exe" /RANDOM
O4 - HKLM\..\Run: [BootSkin Startup Jobs] "C:\PROGRA~1\Stardock\WINCUS~1\BootSkin\BootSkin.exe" /StartupJobs
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [Symantec PIF AlertEng] "C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe" /a /m "C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\AlertEng.dll"
O4 - HKLM\..\Run: [UltraMon] "C:\Program Files\UltraMon\UltraMon.exe" /auto
O4 - HKLM\..\Run: [SysMetrix] C:\Program Files\SysMetrix\SysMetrix.exe
O4 - HKLM\..\Run: [Monitor] C:\WINDOWS\PixArt\PAC207\Monitor.exe
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\winampa.exe"
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [IntelliPoint] "c:\Program Files\Microsoft IntelliPoint\ipoint.exe"
O4 - HKCU\..\Run: [ResChanger 2005] C:\Program Files\ResChanger 2005\ResChanger2005.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [Aim6] "C:\Program Files\AIM6\aim6.exe" /d locale=en-US ee://aol/imApp
O4 - HKCU\..\Run: [Steam] "c:\program files\steam\steam.exe" -silent
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [ares] "C:\Program Files\Ares\Ares.exe" -h
O4 - HKCU\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKCU\..\Run: [Rainlendar2] C:\Program Files\Rainlendar2\Rainlendar2.exe
O4 - HKCU\..\Run: [CursorXP] C:\Program Files\CursorXP\CursorXP.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [Uniblue RegistryBooster 2] C:\Program Files\Uniblue\RegistryBooster 2\RegistryBooster.exe /S
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - Startup: Stardock ObjectDock.lnk = C:\Program Files\Stardock\ObjectDock\ObjectDock.exe
O4 - Startup: Xfire.lnk = C:\Program Files\Xfire\xfire.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: ASUS WiFi-AP Solo.lnk = ?
O4 - Global Startup: InterVideo WinCinema Manager.lnk = C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
O4 - Global Startup: Windows Desktop Search.lnk = C:\Program Files\Windows Desktop Search\WindowsSearch.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Internet Security Password Validation (ccISPwdSvc) - Symantec Corporation - c:\Program Files\Norton Internet Security\ccPwdSvc.exe
O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccProxy.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: COM Host (comHost) - Symantec Corporation - c:\Program Files\Norton Internet Security\comHost.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: LiveUpdate Notice Service - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - c:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton Protection Center Service (NSCService) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\Security Console\NSCSRVCE.EXE
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Unknown owner - C:\Program Files\WinPcap\rpcapd.exe (file missing)
O23 - Service: Symantec AVScan (SAVScan) - Symantec Corporation - c:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: SolidWorks Licensing Service - SolidWorks - C:\Program Files\Common Files\SolidWorks Shared\Service\SolidWorksLicensing.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Symantec Core LC - Unknown owner - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: Viewpoint Manager Service - Viewpoint Corporation - C:\Program Files\Viewpoint\Common\ViewpointService.exe

--
End of file - 12061 bytes


The current situation I've been facing recently is the Iexplorer.exe popping up on my task manager (range from 23k-30k memory usage). It doesn't make my CPU go up 100%, however, on certain sites I get the spyware detection ad popping up as fast as i can terminate them. Sometimes after I terminate the process on my Task Manager, it doesn't appear for a while. Is it some program I am running that provokes the spyware/malware from jumping out? or does it only happens by chance? Please give me support and Insight on how to prevent such things from happening again. Thanks!




******* EDIT*****: Iexplore.exe is gone after following steps from other post about similar topic:

Steps Followed from http://malwareremoval.com/forum/viewtopic.php?f=11&t=33898
1.) Malwarebytes' Anti-Malware
2.) FILELISTER
3.) FileFind
4.) Kaspersky


My most Recent Log:

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 4:53:00 AM, on 8/29/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Viewpoint\Common\ViewpointService.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe
C:\Program Files\UltraMon\UltraMon.exe
C:\WINDOWS\PixArt\PAC207\Monitor.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\Winamp\winampa.exe
C:\Program Files\Microsoft IntelliPoint\ipoint.exe
C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe
C:\Program Files\UltraMon\UltraMonTaskbar.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Program Files\ResChanger 2005\ResChanger2005.exe
C:\program files\steam\steam.exe
C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
C:\Program Files\Rainlendar2\Rainlendar2.exe
C:\Program Files\CursorXP\CursorXP.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\ASUS WiFi-AP Solo\RtWLan.exe
C:\Program Files\Stardock\ObjectDock\ObjectDock.exe
C:\Program Files\Xfire\xfire.exe
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Winamp\winamp.exe
C:\WINDOWS\system32\WISPTIS.EXE
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\WINDOWS\system32\NOTEPAD.EXE

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://google.daemonsearch.com/com/
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: dsWebAllowBHO Class - {2F85D76C-0569-466F-A488-493E6BD0E955} - C:\Program Files\Windows Desktop Search\dsWebAllow.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O3 - Toolbar: (no name) - {C4069E3A-68F1-403E-B40E-20066696354B} - (no file)
O4 - HKLM\..\Run: [JMB36X IDE Setup] C:\WINDOWS\RaidTool\xInsIDE.exe
O4 - HKLM\..\Run: [36X Raid Configurer] C:\WINDOWS\system32\xRaidSetup.exe boot
O4 - HKLM\..\Run: [ccApp] "c:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [LogonStudio] "C:\Program Files\WinCustomize\LogonStudio\logonstudio.exe" /RANDOM
O4 - HKLM\..\Run: [BootSkin Startup Jobs] "C:\PROGRA~1\Stardock\WINCUS~1\BootSkin\BootSkin.exe" /StartupJobs
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [Symantec PIF AlertEng] "C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe" /a /m "C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\AlertEng.dll"
O4 - HKLM\..\Run: [UltraMon] "C:\Program Files\UltraMon\UltraMon.exe" /auto
O4 - HKLM\..\Run: [SysMetrix] C:\Program Files\SysMetrix\SysMetrix.exe
O4 - HKLM\..\Run: [Monitor] C:\WINDOWS\PixArt\PAC207\Monitor.exe
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\winampa.exe"
O4 - HKLM\..\Run: [IntelliPoint] "c:\Program Files\Microsoft IntelliPoint\ipoint.exe"
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe"
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKCU\..\Run: [ResChanger 2005] C:\Program Files\ResChanger 2005\ResChanger2005.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [Aim6] "C:\Program Files\AIM6\aim6.exe" /d locale=en-US ee://aol/imApp
O4 - HKCU\..\Run: [Steam] "c:\program files\steam\steam.exe" -silent
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [Rainlendar2] C:\Program Files\Rainlendar2\Rainlendar2.exe
O4 - HKCU\..\Run: [CursorXP] C:\Program Files\CursorXP\CursorXP.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [Uniblue RegistryBooster 2] C:\Program Files\Uniblue\RegistryBooster 2\RegistryBooster.exe /S
O4 - Startup: Stardock ObjectDock.lnk = C:\Program Files\Stardock\ObjectDock\ObjectDock.exe
O4 - Startup: Xfire.lnk = C:\Program Files\Xfire\xfire.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: ASUS WiFi-AP Solo.lnk = ?
O8 - Extra context menu item: Add to Anti-Banner - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\ie_banner_deny.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O9 - Extra button: Web Anti-Virus statistics - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\SCIEPlgn.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O20 - AppInit_DLLs: wbsys.dll,C:\PROGRA~1\KASPER~1\KASPER~1.0\adialhk.dll
O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: Kaspersky Internet Security 7.0 (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Unknown owner - c:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe (file missing)
O23 - Service: Symantec Settings Manager (ccSetMgr) - Unknown owner - c:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe (file missing)
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: LiveUpdate Notice Service - Unknown owner - C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe (file missing)
O23 - Service: Norton Protection Center Service (NSCService) - Unknown owner - c:\Program Files\Common Files\Symantec Shared\Security Console\NSCSRVCE.EXE (file missing)
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Unknown owner - C:\Program Files\WinPcap\rpcapd.exe (file missing)
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Unknown owner - c:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe (file missing)
O23 - Service: SolidWorks Licensing Service - SolidWorks - C:\Program Files\Common Files\SolidWorks Shared\Service\SolidWorksLicensing.exe
O23 - Service: Viewpoint Manager Service - Viewpoint Corporation - C:\Program Files\Viewpoint\Common\ViewpointService.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe

--
End of file - 9509 bytes
Vicious
Active Member
 
Posts: 5
Joined: August 26th, 2008, 2:32 pm
Advertisement
Register to Remove

Re: IExplorer.exe Malware, very annoying indeed =/

Unread postby Carolyn » August 30th, 2008, 2:39 pm

Hello and Welcome to the forums!

My name is Carolyn and I'll be glad to help you with your computer problems. HijackThis logs can take some time to research, so please be patient with me. I know that you need your computer working as quickly as possible, and I will work hard to help see that it happens.

Please do not run any other tool untill instructed to do so!
Please reply to this thread, do not start another!
Please tell me about any problems that have occurred during the fix.
Please tell me of any other symptoms you may be having as these can help also.
Please try as much as possible not to run anything while executing a fix.


If you follow these instructions, everything should go smoothly.


Please post the following:
  1. The Malwarebyte's Anti-Malware log
  2. The contents of log.txt
  3. The contents of info.txt
  4. The Kaspersky log
User avatar
Carolyn
MRU Emeritus
MRU Emeritus
 
Posts: 4701
Joined: April 18th, 2007, 9:36 am
Location: Maine

Re: IExplorer.exe Malware, very annoying indeed =/

Unread postby Vicious » August 30th, 2008, 8:39 pm

Thanks Carolyn!
i'm not sure what the contents of info.txt and log.txt meant. Where can i get them?


1. malwarebytes log.

Malwarebytes' Anti-Malware 1.25
Database version: 1088
Windows 5.1.2600 Service Pack 3

5:38:27 PM 8/30/2008
mbam-log-08-30-2008 (17-38-27).txt

Scan type: Quick Scan
Objects scanned: 46102
Time elapsed: 3 minute(s), 45 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
(No malicious items detected)

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Files Infected:
(No malicious items detected)



2.) what is the contents of info.txt ?




3.) what is the contents of log.txt ?























4.) Kaspersky log


Protection : running
--------------------
Total scanned: 17059
Detected: 19
Untreated: 0
Attacks blocked: 0
Start time: 8/30/2008 5:14:27 PM
Duration: 00:35:17


Detected
--------
Status Object
------ ------
deleted: Trojan program Trojan-Clicker.Win32.Agent.tq File: c:\windows\system32\kavsys.dll
not found: virus Heur.Invader (modification) File: C:\Documents and Settings\Aaron Hoo\Desktop\SDFix.exe/SDFix\apps\Cghtme.exe
deleted: Trojan program Trojan-Downloader.Win32.Agent.ayi File: C:\Program Files\Downloads\Software\SolidWorks\Solidwork 2007 SP0.0 Multilang DVD Edition.nrg//Crack/sw2007cr.exe
deleted: Trojan program Backdoor.IRC.Zapchast File: C:\WINDOWS\svchost\scr.ini
deleted: Trojan program Backdoor.IRC.Zapchast File: C:\WINDOWS\svchost\updater.ini
deleted: Trojan program Trojan-Clicker.Win32.Agent.tq File: C:\WINDOWS\system32\kavsel.dll
deleted: Trojan program Trojan-Clicker.Win32.Agent.xv File: C:\WINDOWS\system32\macsoin.dll
deleted: Trojan program Backdoor.Win32.mIRC-based File: C:\System Volume Information\_restore{FCA3C11D-07DE-4BFD-A0DC-ECD61F9DCED3}\RP446\A0097448.exe//CryptFF
deleted: Trojan program Trojan-Clicker.Win32.Agent.tq File: C:\System Volume Information\_restore{FCA3C11D-07DE-4BFD-A0DC-ECD61F9DCED3}\RP447\A0097740.dll
not found: virus Heur.Invader (modification) File: C:\Documents and Settings\Aaron Hoo\Desktop\SDFix.exe/SDFix\catchme.exe
deleted: Trojan program Trojan-Downloader.Win32.Small.aamo File: C:\System Volume Information\_restore{FCA3C11D-07DE-4BFD-A0DC-ECD61F9DCED3}\RP430\A0094637.dll
deleted: Trojan program Backdoor.IRC.Zapchast File: C:\System Volume Information\_restore{FCA3C11D-07DE-4BFD-A0DC-ECD61F9DCED3}\RP447\A0098904.ini
deleted: Trojan program Backdoor.IRC.Zapchast File: C:\System Volume Information\_restore{FCA3C11D-07DE-4BFD-A0DC-ECD61F9DCED3}\RP447\A0098905.ini
deleted: Trojan program Trojan-Clicker.Win32.Agent.tq File: C:\System Volume Information\_restore{FCA3C11D-07DE-4BFD-A0DC-ECD61F9DCED3}\RP447\A0098906.dll
deleted: Trojan program Trojan-Clicker.Win32.Agent.xv File: C:\System Volume Information\_restore{FCA3C11D-07DE-4BFD-A0DC-ECD61F9DCED3}\RP447\A0098907.dll
deleted: Trojan program Backdoor.IRC.Zapchast File: C:\System Volume Information\_restore{FCA3C11D-07DE-4BFD-A0DC-ECD61F9DCED3}\RP448\A0098952.ini
deleted: Trojan program Backdoor.IRC.Zapchast File: C:\System Volume Information\_restore{FCA3C11D-07DE-4BFD-A0DC-ECD61F9DCED3}\RP448\A0098953.ini
deleted: Trojan program Trojan-Clicker.Win32.Agent.tq File: C:\System Volume Information\_restore{FCA3C11D-07DE-4BFD-A0DC-ECD61F9DCED3}\RP448\A0098954.dll
deleted: Trojan program Trojan-Clicker.Win32.Agent.xv File: C:\System Volume Information\_restore{FCA3C11D-07DE-4BFD-A0DC-ECD61F9DCED3}\RP448\A0098955.dll


Events
------
Time Event
---- -----
8/26/2007 10:40:17 PM Kaspersky Internet Security is not activated.
8/26/2007 10:40:17 PM A full computer scan has never been performed. You are advised to perform a full scan as soon as possible.
8/26/2007 10:40:20 PM Protection of your computer started.
8/26/2007 10:40:20 PM Some protection components are disabled. You are advised to enable them.
8/26/2007 10:40:24 PM Update error: The updates source cannot be found.
8/26/2007 10:40:24 PM Program database is out of date. Your computer is at risk of infection. It is strongly recommended that you update your database.
8/26/2007 10:41:17 PM Update error: The updates source cannot be found.
8/26/2007 10:41:17 PM Program database is out of date. Your computer is at risk of infection. It is strongly recommended that you update your database.
8/26/2007 10:42:52 PM Process (PID 2392) tried to access Kaspersky Internet Security process (PID 528), but the action has been blocked by the Self-Defense component. No action on your part is required.
8/26/2007 10:42:52 PM Process (PID 2392) tried to access Kaspersky Internet Security process (PID 2972), but the action has been blocked by the Self-Defense component. No action on your part is required.
8/26/2007 10:43:28 PM Process (PID 2344) tried to access Kaspersky Internet Security process (PID 528), but the action has been blocked by the Self-Defense component. No action on your part is required.
8/26/2007 10:43:28 PM Process (PID 2344) tried to access Kaspersky Internet Security process (PID 2972), but the action has been blocked by the Self-Defense component. No action on your part is required.
8/26/2007 11:02:01 PM Please restart your computer to complete the installation of new or updated protection components.
8/26/2007 11:02:14 PM Please restart your computer to complete the installation of new or updated protection components.
8/26/2007 11:02:14 PM Update completed successfully
8/26/2007 11:02:37 PM Protection of your computer is not running. You are advised to resume protection.
8/26/2007 11:03:55 PM Kaspersky Internet Security is not activated.
8/26/2007 11:04:03 PM A full computer scan has never been performed. You are advised to perform a full scan as soon as possible.
8/26/2007 11:04:41 PM Process (PID 4084) tried to access Kaspersky Internet Security process (PID 772), but the action has been blocked by the Self-Defense component. No action on your part is required.
8/26/2007 11:04:50 PM Process (PID 3732) tried to access Kaspersky Internet Security process (PID 772), but the action has been blocked by the Self-Defense component. No action on your part is required.
8/26/2007 11:05:01 PM Protection of your computer started.
8/26/2007 11:05:01 PM Some protection components are disabled. You are advised to enable them.
8/26/2007 11:05:06 PM Process (PID 3696) tried to access Kaspersky Internet Security process (PID 3404), but the action has been blocked by the Self-Defense component. No action on your part is required.
8/26/2007 11:05:06 PM Process (PID 3696) tried to access Kaspersky Internet Security process (PID 908), but the action has been blocked by the Self-Defense component. No action on your part is required.
8/26/2007 11:05:06 PM Process (PID 3696) tried to access Kaspersky Internet Security process (PID 772), but the action has been blocked by the Self-Defense component. No action on your part is required.
8/26/2007 11:07:45 PM File C:\Documents and Settings\Aaron Hoo\Desktop\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Audio/12-Innocence_1.wma: is password protected.
8/26/2007 11:07:45 PM File C:\Documents and Settings\Aaron Hoo\Desktop\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Audio/Click1.ogg: is password protected.
8/26/2007 11:07:45 PM File C:\Documents and Settings\Aaron Hoo\Desktop\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Audio/High1.ogg: is password protected.
8/26/2007 11:07:45 PM File C:\Documents and Settings\Aaron Hoo\Desktop\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/autorun.cdd: is password protected.
8/26/2007 11:07:45 PM File C:\Documents and Settings\Aaron Hoo\Desktop\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Buttons/13_649.btn: is password protected.
8/26/2007 11:07:45 PM File C:\Documents and Settings\Aaron Hoo\Desktop\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Docs/Kaspersky Trial Reset.reg: is password protected.
8/26/2007 11:07:45 PM File C:\Documents and Settings\Aaron Hoo\Desktop\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Docs/texthelp.txt: is password protected.
8/26/2007 11:07:45 PM File C:\Documents and Settings\Aaron Hoo\Desktop\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Flash/flash1.swf: is password protected.
8/26/2007 11:07:45 PM File C:\Documents and Settings\Aaron Hoo\Desktop\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Flash/seedforspeedswf.swf: is password protected.
8/26/2007 11:07:45 PM File C:\Documents and Settings\Aaron Hoo\Desktop\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Images/44443382.jpg: is password protected.
8/26/2007 11:07:45 PM File C:\Documents and Settings\Aaron Hoo\Desktop\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Images/Thumbs.db: is password protected.
8/26/2007 11:07:45 PM File C:\Documents and Settings\Aaron Hoo\Desktop\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Videos/mew.avi: is password protected.
8/26/2007 11:07:45 PM File C:\Documents and Settings\Aaron Hoo\Desktop\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Videos/Thumbs.db: is password protected.
8/26/2007 11:07:45 PM File C:\Documents and Settings\Aaron Hoo\Desktop\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/autorun.exe: is password protected.
8/26/2007 11:08:12 PM File c:\windows\system32\kavsys.dll: detected Trojan program 'Trojan-Clicker.Win32.Agent.tq'.
8/26/2007 11:08:12 PM Security threats have been detected. You are advised to neutralize them immediately.
8/26/2007 11:08:12 PM File c:\windows\system32\kavsys.dll: is still infected, postponed.
8/26/2007 11:08:29 PM File c:\windows\system32\kavsys.dll: detected Trojan program 'Trojan-Clicker.Win32.Agent.tq'.
8/26/2007 11:08:34 PM File c:\windows\system32\kavsys.dll: detected Trojan program 'Trojan-Clicker.Win32.Agent.tq'.
8/26/2007 11:08:34 PM Startup object HKEY_LOCAL_MACHINE\SOFTWARE\\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{523C33CB-510E-4857-9801-78F1D892879C}: deleted.
8/26/2007 11:08:36 PM File c:\windows\system32\kavsys.dll: deleted.
8/26/2007 11:08:39 PM File c:\windows\system32\kavsys.dll: is still infected, skipped by user.
8/26/2007 11:08:51 PM Protection of your computer is not running. You are advised to resume protection.
8/26/2007 11:12:04 PM Kaspersky Internet Security is not activated.
8/26/2007 11:12:04 PM A full computer scan has never been performed. You are advised to perform a full scan as soon as possible.
8/26/2007 11:12:16 PM Protection of your computer started.
8/26/2007 11:12:16 PM Some protection components are disabled. You are advised to enable them.
8/26/2007 11:12:56 PM Process (PID 2528) tried to access Kaspersky Internet Security process (PID 776), but the action has been blocked by the Self-Defense component. No action on your part is required.
8/26/2007 11:12:56 PM Process (PID 2528) tried to access Kaspersky Internet Security process (PID 752), but the action has been blocked by the Self-Defense component. No action on your part is required.
8/26/2007 11:12:56 PM Process (PID 2528) tried to access Kaspersky Internet Security process (PID 3120), but the action has been blocked by the Self-Defense component. No action on your part is required.
8/26/2007 11:13:40 PM Process (PID 4076) tried to access Kaspersky Internet Security process (PID 776), but the action has been blocked by the Self-Defense component. No action on your part is required.
8/26/2007 11:13:40 PM Process (PID 4076) tried to access Kaspersky Internet Security process (PID 752), but the action has been blocked by the Self-Defense component. No action on your part is required.
8/26/2007 11:13:54 PM Process (PID 3456) tried to access Kaspersky Internet Security process (PID 776), but the action has been blocked by the Self-Defense component. No action on your part is required.
8/26/2007 11:13:54 PM Process (PID 3456) tried to access Kaspersky Internet Security process (PID 752), but the action has been blocked by the Self-Defense component. No action on your part is required.
8/26/2007 11:14:42 PM Process (PID 1800) tried to access Kaspersky Internet Security process (PID 776), but the action has been blocked by the Self-Defense component. No action on your part is required.
8/26/2008 11:20:18 PM Update can not be started because of error: no license key
8/26/2008 11:39:13 PM Update completed successfully
8/26/2008 11:45:22 PM File C:\Documents and Settings\Aaron Hoo\Desktop\SDFix.exe/SDFix\apps\Cghtme.exe: detected modification of virus 'Heur.Invader'.
8/26/2008 11:45:22 PM Security threats have been detected. You are advised to neutralize them immediately.
8/26/2008 11:48:46 PM File C:\Documents and Settings\Aaron Hoo\Desktop\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Audio/12-Innocence_1.wma: is password protected.
8/26/2008 11:48:46 PM File C:\Documents and Settings\Aaron Hoo\Desktop\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Audio/Click1.ogg: is password protected.
8/26/2008 11:48:46 PM File C:\Documents and Settings\Aaron Hoo\Desktop\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Audio/High1.ogg: is password protected.
8/26/2008 11:48:46 PM File C:\Documents and Settings\Aaron Hoo\Desktop\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/autorun.cdd: is password protected.
8/26/2008 11:48:46 PM File C:\Documents and Settings\Aaron Hoo\Desktop\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Buttons/13_649.btn: is password protected.
8/26/2008 11:48:46 PM File C:\Documents and Settings\Aaron Hoo\Desktop\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Docs/Kaspersky Trial Reset.reg: is password protected.
8/26/2008 11:48:46 PM File C:\Documents and Settings\Aaron Hoo\Desktop\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Docs/texthelp.txt: is password protected.
8/26/2008 11:48:46 PM File C:\Documents and Settings\Aaron Hoo\Desktop\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Flash/flash1.swf: is password protected.
8/26/2008 11:48:46 PM File C:\Documents and Settings\Aaron Hoo\Desktop\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Flash/seedforspeedswf.swf: is password protected.
8/26/2008 11:48:46 PM File C:\Documents and Settings\Aaron Hoo\Desktop\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Images/44443382.jpg: is password protected.
8/26/2008 11:48:46 PM File C:\Documents and Settings\Aaron Hoo\Desktop\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Images/Thumbs.db: is password protected.
8/26/2008 11:48:46 PM File C:\Documents and Settings\Aaron Hoo\Desktop\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Videos/mew.avi: is password protected.
8/26/2008 11:48:46 PM File C:\Documents and Settings\Aaron Hoo\Desktop\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Videos/Thumbs.db: is password protected.
8/26/2008 11:48:46 PM File C:\Documents and Settings\Aaron Hoo\Desktop\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/autorun.exe: is password protected.
8/26/2008 11:50:20 PM Running process C:\Program Files\Winamp\winamp.exe: detected modification of riskware 'Hidden data sending'.
8/26/2008 11:51:20 PM Process C:\Program Files\Winamp\winamp.exe (PID: 3276): attempt to perform suspicious actions is allowed.
8/26/2008 11:54:43 PM File C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\fakeWGA.zip/sbRecovery.reg: is password protected.
8/26/2008 11:54:43 PM File C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\fakeWGA.zip/sbRecovery.ini: is password protected.
8/26/2008 11:54:43 PM File C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\fakeWGA1.zip/sbRecovery.reg: is password protected.
8/26/2008 11:54:43 PM File C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\fakeWGA1.zip/sbRecovery.ini: is password protected.
8/26/2008 11:54:43 PM File C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\fakeWGA2.zip/sbRecovery.reg: is password protected.
8/26/2008 11:54:43 PM File C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\fakeWGA2.zip/sbRecovery.ini: is password protected.
8/26/2008 11:54:43 PM File C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\MicrosoftWindowsSecurityCenterdisabled.zip/sbRecovery.reg: is password protected.
8/26/2008 11:54:43 PM File C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\MicrosoftWindowsSecurityCenterdisabled.zip/sbRecovery.ini: is password protected.
8/27/2008 12:05:51 AM The application FIREFOX.EXE has been changed
8/27/2008 12:37:14 AM File C:\Program Files\Downloads\Software\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Audio/12-Innocence_1.wma: is password protected.
8/27/2008 12:37:14 AM File C:\Program Files\Downloads\Software\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Audio/Click1.ogg: is password protected.
8/27/2008 12:37:14 AM File C:\Program Files\Downloads\Software\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Audio/High1.ogg: is password protected.
8/27/2008 12:37:14 AM File C:\Program Files\Downloads\Software\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/autorun.cdd: is password protected.
8/27/2008 12:37:14 AM File C:\Program Files\Downloads\Software\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Buttons/13_649.btn: is password protected.
8/27/2008 12:37:14 AM File C:\Program Files\Downloads\Software\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Docs/Kaspersky Trial Reset.reg: is password protected.
8/27/2008 12:37:14 AM File C:\Program Files\Downloads\Software\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Docs/texthelp.txt: is password protected.
8/27/2008 12:37:14 AM File C:\Program Files\Downloads\Software\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Flash/flash1.swf: is password protected.
8/27/2008 12:37:14 AM File C:\Program Files\Downloads\Software\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Flash/seedforspeedswf.swf: is password protected.
8/27/2008 12:37:14 AM File C:\Program Files\Downloads\Software\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Images/44443382.jpg: is password protected.
8/27/2008 12:37:14 AM File C:\Program Files\Downloads\Software\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Images/Thumbs.db: is password protected.
8/27/2008 12:37:14 AM File C:\Program Files\Downloads\Software\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Videos/mew.avi: is password protected.
8/27/2008 12:37:14 AM File C:\Program Files\Downloads\Software\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Videos/Thumbs.db: is password protected.
8/27/2008 12:37:14 AM File C:\Program Files\Downloads\Software\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/autorun.exe: is password protected.
8/27/2008 12:37:16 AM File C:\Program Files\Downloads\Software\SolidWorks\Solidwork 2007 SP0.0 Multilang DVD Edition.nrg//Crack/sw2007cr.exe: detected Trojan program 'Trojan-Downloader.Win32.Agent.ayi'.
8/27/2008 12:37:16 AM File C:\Program Files\Downloads\Software\SolidWorks\Solidwork 2007 SP0.0 Multilang DVD Edition.nrg//Crack/sw2007cr.exe: is still infected, postponed.
8/27/2008 1:01:31 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\mdata.ggz/mh.xml: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/HeroInahime.mdx: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/HeroKadaj.mdx: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/HeroKadaj_portrait.mdx: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/HeroKenshinUesugi.mdx: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/HeroNagamasa.mdx: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/HeroNinja.mdx: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/HeroNinja_portrait.mdx: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/Hideyoshi.mdx: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/kanetsugu.mdx: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/keiji.mdx: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/Kotaro.mdx: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/MitsunariIshida.mdx: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/Nene.mdx: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/Oichi.mdx: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/Okuni2.mdx: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/Sakon.mdx: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/ShingenTakeda.mdx: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/Yoshihiro.mdx: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/YoshihiroWeapon.mdx: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/eyasu.blp: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/eyasu2.blp: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/eyasu3.blp: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/ginchiyo.blp: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/ginchiyo2.blp: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/goemon.blp: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/goemon2.blp: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/HeroInahime1.blp: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/HeroInahime2.blp: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/HeroInahimeWeapon.blp: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/HeroKenshinUesugi1.blp: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/HeroKenshinUesugi2.blp: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/HeroKenshinUesugiWeapon.blp: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/HeroNinja.blp: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/hideyoshi.blp: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/hideyoshi2.blp: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/hideyoshi3.blp: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/hideyoshi4.blp: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/Incantation.blp: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/Kadaj.blp: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/kanetsugu.blp: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/kanetsugu2.blp: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/kanetsugu3.blp: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/kotarou.blp: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/kotarou2.blp: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/kotarou3.blp: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/kotarouSign.blp: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/MitsunariIshida1.blp: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/MitsunariIshida2.blp: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/MitsunariIshidaWeapon.blp: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/Nagamasa.blp: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/Nagamasa2.blp: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/Nagamasa3.blp: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/nene.blp: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/nene2.blp: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/nene3.blp: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/oichi1.blp: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/oichi2.blp: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/oichi3.blp: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/okuni.blp: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/okuniWeapon.blp: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/okuniWeapon2.blp: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/runeofrebirth.blp: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/sakon.blp: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/sakon2.blp: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/sakon4.blp: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/ShingenTakeda1.blp: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/ShingenTakeda2.blp: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/Yoshihiro.blp: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/Yoshihiro2.blp: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/Yoshihiro3.blp: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/Kill.blp: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/keiji.blp: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/keiji2.blp: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/keiji3.blp: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/Monkey2.blp: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/Lighting4X4.blp: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/Eyasu.mdx: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/Ginchiyo.mdx: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/Goemon.mdx: is password protected.
8/27/2008 1:01:32 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.br/GGclient.exe.br.xml: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.br.ggz/br/button_addfriend_hover.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.br.ggz/br/button_addfriend_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.br.ggz/br/button_mode_hover.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.br.ggz/br/button_mode_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.br.ggz/br/exit_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.br.ggz/br/exit_on.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.br.ggz/br/forum_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.br.ggz/br/forum_on.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.br.ggz/br/ggladder_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.br.ggz/br/ggladder_on.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.br.ggz/br/GGMainHover.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.br.ggz/br/GGMainNormal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.br.ggz/br/ggtv_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.br.ggz/br/ggtv_on.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.br.ggz/br/gg_menu_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.br.ggz/br/gg_menu_on.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.br.ggz/br/gg_msg_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.br.ggz/br/gg_msg_on.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.br.ggz/br/LobbyHover.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.br.ggz/br/LobbyNormal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.br.ggz/br/RoomHover.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.br.ggz/br/RoomNormal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.br.ggz/br/settings_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.br.ggz/br/settings_on.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.br.ggz/br/support_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.br.ggz/br/support_on.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.br.ggz/br/Thumbs.db: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn/GGclient.exe.cn.xml: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn.ggz/cn/button_addfriend_hover.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn.ggz/cn/button_addfriend_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn.ggz/cn/button_mode_hover.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn.ggz/cn/button_mode_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn.ggz/cn/exit_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn.ggz/cn/exit_on.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn.ggz/cn/forum_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn.ggz/cn/forum_on.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn.ggz/cn/ggladder_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn.ggz/cn/ggladder_on.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn.ggz/cn/GGMainHover.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn.ggz/cn/GGMainNormal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn.ggz/cn/ggtv_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn.ggz/cn/ggtv_on.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn.ggz/cn/gg_menu_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn.ggz/cn/gg_menu_on.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn.ggz/cn/gg_msg_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn.ggz/cn/gg_msg_on.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn.ggz/cn/LobbyHover.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn.ggz/cn/LobbyNormal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn.ggz/cn/reg.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn.ggz/cn/reg_hover.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn.ggz/cn/RoomHover.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn.ggz/cn/RoomNormal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn.ggz/cn/settings_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn.ggz/cn/settings_on.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn.ggz/cn/support_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn.ggz/cn/support_on.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn.ggz/cn/Thumbs.db: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.ru/GGclient.exe.ru.xml: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.ru.ggz/ru/button_addfriend_hover.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.ru.ggz/ru/button_addfriend_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.ru.ggz/ru/button_mode_hover.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.ru.ggz/ru/button_mode_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.ru.ggz/ru/exit_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.ru.ggz/ru/exit_on.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.ru.ggz/ru/forum_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.ru.ggz/ru/forum_on.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.ru.ggz/ru/ggladder_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.ru.ggz/ru/ggladder_on.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.ru.ggz/ru/GGMainHover.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.ru.ggz/ru/GGMainNormal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.ru.ggz/ru/ggtv_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.ru.ggz/ru/ggtv_on.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.ru.ggz/ru/gg_menu_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.ru.ggz/ru/gg_menu_on.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.ru.ggz/ru/gg_msg_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.ru.ggz/ru/gg_msg_on.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.ru.ggz/ru/LobbyHover.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.ru.ggz/ru/LobbyNormal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.ru.ggz/ru/RoomHover.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.ru.ggz/ru/RoomNormal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.ru.ggz/ru/settings_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.ru.ggz/ru/settings_on.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.ru.ggz/ru/support_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.ru.ggz/ru/support_on.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.sp/GGclient.exe.sp.xml: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.sp.ggz/sp/button_addfriend_hover.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.sp.ggz/sp/button_addfriend_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.sp.ggz/sp/button_mode_hover.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.sp.ggz/sp/button_mode_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.sp.ggz/sp/exit_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.sp.ggz/sp/exit_on.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.sp.ggz/sp/forum_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.sp.ggz/sp/forum_on.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.sp.ggz/sp/ggladder_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.sp.ggz/sp/ggladder_on.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.sp.ggz/sp/GGMainHover.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.sp.ggz/sp/GGMainNormal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.sp.ggz/sp/ggtv_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.sp.ggz/sp/ggtv_on.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.sp.ggz/sp/gg_menu_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.sp.ggz/sp/gg_menu_on.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.sp.ggz/sp/gg_msg_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.sp.ggz/sp/gg_msg_on.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.sp.ggz/sp/LobbyHover.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.sp.ggz/sp/LobbyNormal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.sp.ggz/sp/RoomHover.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.sp.ggz/sp/RoomNormal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.sp.ggz/sp/settings_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.sp.ggz/sp/settings_on.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.sp.ggz/sp/support_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.sp.ggz/sp/support_on.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.sp.ggz/sp/Thumbs.db: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.th/GGclient.exe.th.xml: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.th.ggz/th/button_addfriend_hover.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.th.ggz/th/button_addfriend_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.th.ggz/th/button_mode_hover.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.th.ggz/th/button_mode_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.th.ggz/th/exit_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.th.ggz/th/exit_on.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.th.ggz/th/forum_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.th.ggz/th/forum_on.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.th.ggz/th/ggladder_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.th.ggz/th/ggladder_on.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.th.ggz/th/GGMainHover.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.th.ggz/th/GGMainNormal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.th.ggz/th/ggtv_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.th.ggz/th/ggtv_on.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.th.ggz/th/gg_menu_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.th.ggz/th/gg_menu_on.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.th.ggz/th/gg_msg_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.th.ggz/th/gg_msg_on.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.th.ggz/th/LobbyHover.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.th.ggz/th/LobbyNormal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.th.ggz/th/RoomHover.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.th.ggz/th/RoomNormal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.th.ggz/th/settings_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.th.ggz/th/settings_on.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.th.ggz/th/support_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.th.ggz/th/support_on.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.th.ggz/th/Thumbs.db: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.tw/GGclient.exe.tw.xml: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.tw.ggz/tw/button_addfriend_hover.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.tw.ggz/tw/button_addfriend_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.tw.ggz/tw/button_mode_hover.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.tw.ggz/tw/button_mode_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.tw.ggz/tw/exit_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.tw.ggz/tw/exit_on.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.tw.ggz/tw/forum_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.tw.ggz/tw/forum_on.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.tw.ggz/tw/ggladder_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.tw.ggz/tw/ggladder_on.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.tw.ggz/tw/GGMainHover.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.tw.ggz/tw/GGMainNormal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.tw.ggz/tw/ggtv_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.tw.ggz/tw/ggtv_on.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.tw.ggz/tw/gg_menu_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.tw.ggz/tw/gg_menu_on.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.tw.ggz/tw/gg_msg_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.tw.ggz/tw/gg_msg_on.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.tw.ggz/tw/LobbyHover.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.tw.ggz/tw/LobbyNormal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.tw.ggz/tw/reg.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.tw.ggz/tw/reg_hover.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.tw.ggz/tw/RoomHover.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.tw.ggz/tw/RoomNormal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.tw.ggz/tw/settings_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.tw.ggz/tw/settings_on.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.tw.ggz/tw/support_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.tw.ggz/tw/support_on.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.vn/GGclient.exe.vn.xml: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.vn.ggz/vn/button_addfriend_hover.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.vn.ggz/vn/button_addfriend_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.vn.ggz/vn/button_mode_hover.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.vn.ggz/vn/button_mode_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.vn.ggz/vn/exit_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.vn.ggz/vn/exit_on.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.vn.ggz/vn/forum_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.vn.ggz/vn/forum_on.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.vn.ggz/vn/ggladder_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.vn.ggz/vn/ggladder_on.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.vn.ggz/vn/GGMainHover.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.vn.ggz/vn/GGMainNormal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.vn.ggz/vn/ggtv_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.vn.ggz/vn/ggtv_on.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.vn.ggz/vn/gg_menu_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.vn.ggz/vn/gg_menu_on.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.vn.ggz/vn/gg_msg_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.vn.ggz/vn/gg_msg_on.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.vn.ggz/vn/LobbyHover.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.vn.ggz/vn/LobbyNormal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.vn.ggz/vn/RoomHover.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.vn.ggz/vn/RoomNormal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.vn.ggz/vn/settings_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.vn.ggz/vn/settings_on.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.vn.ggz/vn/support_normal.bmp: is password protected.
8/27/2008 1:01:33 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.vn.ggz/vn/support_on.bmp: is password protected.
8/27/2008 1:42:12 AM Update completed successfully
8/27/2008 2:01:07 AM File C:\WINDOWS\svchost\scr.ini: detected Trojan program 'Backdoor.IRC.Zapchast'.
8/27/2008 2:01:07 AM File C:\WINDOWS\svchost\scr.ini: is still infected, postponed.
8/27/2008 2:01:08 AM File C:\WINDOWS\svchost\updater.ini: detected Trojan program 'Backdoor.IRC.Zapchast'.
8/27/2008 2:01:08 AM File C:\WINDOWS\svchost\updater.ini: is still infected, postponed.
8/27/2008 2:01:26 AM File C:\WINDOWS\system32\kavsel.dll: detected Trojan program 'Trojan-Clicker.Win32.Agent.tq'.
8/27/2008 2:01:26 AM File C:\WINDOWS\system32\kavsel.dll: is still infected, postponed.
8/27/2008 2:01:30 AM File C:\WINDOWS\system32\macsoin.dll: detected Trojan program 'Trojan-Clicker.Win32.Agent.xv'.
8/27/2008 2:01:30 AM File C:\WINDOWS\system32\macsoin.dll: is still infected, postponed.
8/27/2008 2:04:43 AM File c:\program files\downloads\software\solidworks\solidwork 2007 sp0.0 multilang dvd edition.nrg//Crack/sw2007cr.exe: detected Trojan program 'Trojan-Downloader.Win32.Agent.ayi'.
8/27/2008 4:01:44 AM Update completed successfully
8/27/2008 6:23:26 AM Update completed successfully
8/27/2008 8:34:39 AM File c:\program files\downloads\software\solidworks\solidwork 2007 sp0.0 multilang dvd edition.nrg: deleted.
8/27/2008 8:34:39 AM File c:\windows\svchost\scr.ini: detected Trojan program 'Backdoor.IRC.Zapchast'.
8/27/2008 8:36:10 AM File c:\windows\svchost\scr.ini: deleted.
8/27/2008 8:36:10 AM File c:\windows\svchost\updater.ini: detected Trojan program 'Backdoor.IRC.Zapchast'.
8/27/2008 8:36:16 AM File c:\windows\svchost\updater.ini: deleted.
8/27/2008 8:36:16 AM File c:\windows\system32\kavsel.dll: detected Trojan program 'Trojan-Clicker.Win32.Agent.tq'.
8/27/2008 8:38:10 AM File c:\windows\system32\kavsel.dll: deleted.
8/27/2008 8:38:10 AM File c:\windows\system32\macsoin.dll: detected Trojan program 'Trojan-Clicker.Win32.Agent.xv'.
8/27/2008 8:38:13 AM File c:\windows\system32\macsoin.dll: deleted.
8/27/2008 8:41:36 AM Update completed successfully
8/27/2008 9:07:32 AM File C:\System Volume Information\_restore{FCA3C11D-07DE-4BFD-A0DC-ECD61F9DCED3}\RP446\A0097448.exe//CryptFF: detected Trojan program 'Backdoor.Win32.mIRC-based'. User: MSHOME\AARONTHEGREAT$, computer: localhost.
8/27/2008 9:07:32 AM Security threats have been detected. You are advised to neutralize them immediately.
8/27/2008 11:01:54 AM Update completed successfully
8/27/2008 11:26:23 AM File C:\System Volume Information\_restore{FCA3C11D-07DE-4BFD-A0DC-ECD61F9DCED3}\RP446\A0097448.exe//CryptFF: is still infected, cannot be disinfected.
8/27/2008 11:26:30 AM File C:\System Volume Information\_restore{FCA3C11D-07DE-4BFD-A0DC-ECD61F9DCED3}\RP446\A0097448.exe: deleted.
8/27/2008 12:44:48 PM Protection of your computer is disabled.
8/27/2008 12:44:57 PM Protection of your computer started.
8/27/2008 12:44:57 PM Some protection components are disabled. You are advised to enable them.
8/27/2008 12:45:39 PM Protection of your computer is not running. You are advised to resume protection.
8/27/2008 1:03:05 PM A full computer scan has never been performed. You are advised to perform a full scan as soon as possible.
8/27/2008 1:03:34 PM Protection of your computer started.
8/27/2008 1:03:47 PM The application SVCHOST.EXE has been changed
8/27/2008 1:03:48 PM Process (PID 2468) tried to access Kaspersky Internet Security process (PID 824), but the action has been blocked by the Self-Defense component. No action on your part is required.
8/27/2008 1:03:48 PM Process (PID 2468) tried to access Kaspersky Internet Security process (PID 1008), but the action has been blocked by the Self-Defense component. No action on your part is required.
8/27/2008 1:04:11 PM Process (PID 1108) tried to access Kaspersky Internet Security process (PID 824), but the action has been blocked by the Self-Defense component. No action on your part is required.
8/27/2008 1:04:11 PM Process (PID 1108) tried to access Kaspersky Internet Security process (PID 1008), but the action has been blocked by the Self-Defense component. No action on your part is required.
8/27/2008 1:04:12 PM The application SPOOLSV.EXE has been changed
8/27/2008 1:04:50 PM Update completed successfully
8/27/2008 1:19:09 PM File C:\System Volume Information\_restore{FCA3C11D-07DE-4BFD-A0DC-ECD61F9DCED3}\RP447\A0097740.dll: detected Trojan program 'Trojan-Clicker.Win32.Agent.tq'. User: MSHOME\AARONTHEGREAT$, computer: localhost.
8/27/2008 1:19:09 PM Security threats have been detected. You are advised to neutralize them immediately.
8/27/2008 1:19:09 PM File C:\System Volume Information\_restore{FCA3C11D-07DE-4BFD-A0DC-ECD61F9DCED3}\RP447\A0097740.dll: is still infected, skipped by user.
8/27/2008 2:06:22 PM File C:\System Volume Information\_restore{FCA3C11D-07DE-4BFD-A0DC-ECD61F9DCED3}\RP447\A0097740.dll: detected Trojan program 'Trojan-Clicker.Win32.Agent.tq'. User: MSHOME\AARONTHEGREAT$, computer: localhost.
8/27/2008 2:06:22 PM File C:\System Volume Information\_restore{FCA3C11D-07DE-4BFD-A0DC-ECD61F9DCED3}\RP447\A0097740.dll: is still infected, skipped by user.
8/27/2008 2:18:01 PM Parental control: impossible to perform heuristic analysis of the web site http://weather1.sdcentral.net: A network failure occurred during file downloading.
8/27/2008 2:18:07 PM Process (PID 436) tried to access Kaspersky Internet Security process (PID 1008), but the action has been blocked by the Self-Defense component. No action on your part is required.
8/27/2008 2:18:07 PM Process (PID 436) tried to access Kaspersky Internet Security process (PID 824), but the action has been blocked by the Self-Defense component. No action on your part is required.
8/27/2008 2:18:07 PM Process (PID 436) tried to access Kaspersky Internet Security process (PID 3616), but the action has been blocked by the Self-Defense component. No action on your part is required.
8/27/2008 2:18:37 PM Parental control: object http://c.msn.com/c.gif?did=1&t=9pcanzJX ... NpsHITg*U$ blocked. Detection method: Database.
8/27/2008 2:20:24 PM Process (PID 4084) tried to access Kaspersky Internet Security process (PID 824), but the action has been blocked by the Self-Defense component. No action on your part is required.
8/27/2008 2:20:31 PM Parental control: object http://en-us.start2.mozilla.com/firefox ... S:official allowed. Detection method: Database.
8/27/2008 2:20:38 PM Parental control: object http://en-us.fxfeeds.mozilla.com/en-US/ ... dlines.xml allowed. Detection method: Database.
8/27/2008 2:20:39 PM Parental control: object http://fxfeeds.mozilla.com/firefox/headlines.xml allowed. Detection method: Database.
8/27/2008 2:20:56 PM Parental control: object http://en-us.start2.mozilla.com/firefox ... S:official allowed. Detection method: Database.
8/27/2008 2:28:19 PM Parental control: object http://3.adbrite.com/mb/text_group.php? ... 1&newwin=1 blocked. Detection method: Database.
8/27/2008 2:28:19 PM Parental control: object http://www.google-analytics.com/urchin.js blocked. Detection method: Heuristics.
8/27/2008 2:28:22 PM Parental control: object http://www.google-analytics.com/urchin.js blocked. Detection method: Heuristics.
8/27/2008 2:32:26 PM Parental control: object http://en-us.start2.mozilla.com/firefox ... S:official allowed. Detection method: Database.
8/27/2008 2:42:39 PM Parental control: object http://clients1.google.com/complete/search?hl=en&q=porn blocked. Detection method: Database.
8/27/2008 2:43:08 PM Parental control: object http://a.tribalfusion.com/j.ad?site=new ... d=13328859 blocked. Detection method: Database.
8/27/2008 2:43:31 PM Parental control: object http://en.wikipedia.org/wiki/The_Dark_Knight_(film) blocked. Detection method: Heuristics.
8/27/2008 2:43:32 PM Parental control: object http://en.wikipedia.org/favicon.ico blocked. Detection method: Heuristics.
8/27/2008 2:43:35 PM Parental control: object http://en.wikipedia.org/favicon.ico blocked. Detection method: Heuristics.
8/27/2008 2:43:36 PM Parental control: object http://en.wikipedia.org/wiki/The_Dark_Knight_(film) blocked. Detection method: Heuristics.
8/27/2008 2:43:53 PM Parental control: object http://en.wikipedia.org/ blocked. Detection method: Heuristics.
8/27/2008 2:43:56 PM Parental control: object http://en.wikipedia.org/skins-1.5/commo ... nPrint.css blocked. Detection method: Heuristics.
8/27/2008 2:43:56 PM Parental control: object http://en.wikipedia.org/skins-1.5/monobook/main.css blocked. Detection method: Heuristics.
8/27/2008 2:43:59 PM Parental control: object http://en.wikipedia.org/favicon.ico blocked. Detection method: Heuristics.
8/27/2008 2:44:04 PM Parental control: object http://en.wikipedia.org/wiki/Main_Page blocked. Detection method: Heuristics.
8/27/2008 2:48:06 PM Parental control: object http://www.google-analytics.com/urchin.js blocked. Detection method: Heuristics.
8/27/2008 2:48:06 PM Parental control: object http://rcm.amazon.com/e/cm?t=boxofficem ... iso-8859-1 allowed. Detection method: Database.
8/27/2008 2:48:07 PM Parental control: object http://rcm-images.amazon.com/images/I/4 ... _SL50_.jpg allowed. Detection method: Database.
8/27/2008 2:48:07 PM Parental control: object http://rcm-images.amazon.com/images/G/0 ... _80x60.gif allowed. Detection method: Database.
8/27/2008 2:48:07 PM Parental control: object http://rcm-images.amazon.com/images/I/4 ... _SL50_.jpg allowed. Detection method: Database.
8/27/2008 2:48:07 PM Parental control: object http://rcm-images.amazon.com/images/G/0 ... -pixel.gif allowed. Detection method: Database.
8/27/2008 2:48:07 PM Parental control: object http://rcm-images.amazon.com/images/I/4 ... 50,50_.jpg allowed. Detection method: Database.
8/27/2008 2:48:49 PM Parental control: object http://support.mozilla.com/en-US/kb/How ... cation+Bar allowed. Detection method: Database.
8/27/2008 2:48:49 PM Parental control: object http://support.mozilla.com/en-US/kb/lib/tiki-js.js allowed. Detection method: Database.
8/27/2008 2:48:49 PM Parental control: object http://support.mozilla.com/js/__utm.js allowed. Detection method: Database.
8/27/2008 2:48:49 PM Parental control: object http://support.mozilla.com/img/__utm.gi ... cation+Bar allowed. Detection method: Database.
8/27/2008 2:48:49 PM Parental control: object http://support.mozilla.com/styles/mozco ... la-menu.js allowed. Detection method: Database.
8/27/2008 2:48:49 PM Parental control: object http://support.mozilla.com/styles/mozcommon.css allowed. Detection method: Database.
8/27/2008 2:48:49 PM Parental control: object http://support.mozilla.com/en-US/kb/styles/mozkb.css allowed. Detection method: Database.
8/27/2008 2:48:49 PM Parental control: object http://support.mozilla.com/js/wikiplugin_showfor.js allowed. Detection method: Database.
8/27/2008 2:48:49 PM Parental control: object http://support.mozilla.com/js/s_code.js allowed. Detection method: Database.
8/27/2008 2:48:49 PM Parental control: object http://support.mozilla.com/styles/mozco ... d-tile.png allowed. Detection method: Database.
8/27/2008 2:48:49 PM Parental control: object http://support.mozilla.com/styles/mozco ... a-logo.png allowed. Detection method: Database.
8/27/2008 2:48:49 PM Parental control: object http://support.mozilla.com/styles/mozco ... nslate.png allowed. Detection method: Database.
8/27/2008 2:48:49 PM Parental control: object http://support.mozilla.com/styles/mozco ... _print.png allowed. Detection method: Database.
8/27/2008 2:48:49 PM Parental control: object http://support.mozilla.com/styles/mozco ... button.png allowed. Detection method: Database.
8/27/2008 2:48:49 PM Parental control: object http://support.mozilla.com/tiki-poll_fo ... l&stub=all allowed. Detection method: Database.
8/27/2008 2:48:49 PM Parental control: object http://support.mozilla.com/styles/mozco ... n_edit.png allowed. Detection method: Database.
8/27/2008 2:48:49 PM Parental control: object http://support.mozilla.com/styles/mozco ... eature.jpg allowed. Detection method: Database.
8/27/2008 2:48:49 PM Parental control: object http://support.mozilla.com/styles/mozco ... ground.png allowed. Detection method: Database.
8/27/2008 2:48:49 PM Parental control: object http://support.mozilla.com/styles/mozco ... ivider.png allowed. Detection method: Database.
8/27/2008 2:48:49 PM Parental control: object http://support.mozilla.com/styles/mozco ... rounds.png allowed. Detection method: Database.
8/27/2008 2:48:49 PM Parental control: object http://support.mozilla.com/styles/mozco ... ivider.png allowed. Detection method: Database.
8/27/2008 2:48:49 PM Parental control: object http://support.mozilla.com/styles/mozcommon/topbar.png allowed. Detection method: Database.
8/27/2008 2:48:49 PM Parental control: object http://support.mozilla.com/styles/mozco ... ox-bot.png allowed. Detection method: Database.
8/27/2008 2:48:49 PM Parental control: object http://support.mozilla.com/styles/mozcommon/botbar.png allowed. Detection method: Database.
8/27/2008 2:48:49 PM Parental control: object http://support.mozilla.com/styles/mozco ... ox-top.png allowed. Detection method: Database.
8/27/2008 2:48:49 PM Parental control: object http://support.mozilla.com/styles/mozcommon/hr1.png allowed. Detection method: Database.
8/27/2008 2:48:49 PM Parental control: object http://support.mozilla.com/en-US/kb/sty ... on/hr1.png allowed. Detection method: Database.
8/27/2008 2:48:49 PM Parental control: object http://support.mozilla.com/styles/mozco ... submit.png allowed. Detection method: Database.
8/27/2008 2:48:49 PM Parental control: object http://support.mozilla.com/styles/mozco ... module.png allowed. Detection method: Database.
8/27/2008 2:48:49 PM Parental control: object http://support.mozilla.com/en-US/kb/sty ... on/hr2.png allowed. Detection method: Database.
8/27/2008 2:48:49 PM Parental control: object http://support.mozilla.com/styles/mozco ... border.png allowed. Detection method: Database.
8/27/2008 2:48:49 PM Parental control: object http://support.mozilla.com/styles/mozcommon/cc.png allowed. Detection method: Database.
8/27/2008 2:48:49 PM Parental control: object http://ostats.mozilla.com/b/ss/mozillas ... 5458488976?[AQB]&ndh=1&t=27/7/2008%2014%3A48%3A49%203%20420&ns=mozilla&pageName=en-US/kb/How%2Bto%2Bdisable%2Bthe%2BSmart%2BLocation%2BBar&g=http%3A//support.mozilla.com/en-US/kb/How%2Bto%2Bdisable%2Bthe%2BSmart%2BLocation%2BBar&cc=USD&s=1280x1024&c=32&j=1.7&v=Y&k=Y&bw=1280&bh=695&p=Mozilla%20Default%20Plug-in%3BWindows%20Genuine%20Advantage%3BShockwave%20for%20Director%3BQuickTime%20Plug-in%207.4.5%3BDivX%20Web%20Player%3BMetaStream%203%20Plugin%3BMicrosoft%20Office%202003%3BAdobe%20Acrobat%3BShockwave%20Flash%3BiTunes%20Application%20Detector%3BSilverlight%20Plug-In%3BVeetle%20TV%20Core%3BVeetle%20TV%20Player%3BJava%28TM%29%20Platform%20SE%206%20U2%3BMicrosoft%AE%20DRM%3BWindows%20Media%20Player%20Plug-in%20Dynamic%20Link%20Library%3B&[AQE] allowed. Detection method: Database.
8/27/2008 2:48:50 PM Parental control: object http://support.mozilla.com/favicon.ico allowed. Detection method: Database.
8/27/2008 2:49:51 PM Parental control: object http://support.mozilla.com/img/__utm.gi ... cation+Bar allowed. Detection method: Database.
8/27/2008 2:49:52 PM Parental control: object http://ostats.mozilla.com/b/ss/mozillas ... 0118991177?[AQB]&ndh=1&t=27/7/2008%2014%3A49%3A52%203%20420&ns=mozilla&pageName=en-US/kb/How%2Bto%2Bdisable%2Bthe%2BSmart%2BLocation%2BBar&g=http%3A//support.mozilla.com/en-US/kb/How%2Bto%2Bdisable%2Bthe%2BSmart%2BLocation%2BBar%23Removing_bookmarks_results_from_the_list&cc=USD&s=1280x1024&c=32&j=1.7&v=Y&k=Y&bw=1280&bh=695&p=Mozilla%20Default%20Plug-in%3BWindows%20Genuine%20Advantage%3BShockwave%20for%20Director%3BQuickTime%20Plug-in%207.4.5%3BDivX%20Web%20Player%3BMetaStream%203%20Plugin%3BMicrosoft%20Office%202003%3BAdobe%20Acrobat%3BShockwave%20Flash%3BiTunes%20Application%20Detector%3BSilverlight%20Plug-In%3BVeetle%20TV%20Core%3BVeetle%20TV%20Player%3BJava%28TM%29%20Platform%20SE%206%20U2%3BMicrosoft%AE%20DRM%3BWindows%20Media%20Player%20Plug-in%20Dynamic%20Link%20Library%3B&[AQE] allowed. Detection method: Database.
8/27/2008 2:49:57 PM Parental control: object http://en-us.start2.mozilla.com/firefox ... S:official allowed. Detection method: Database.
8/27/2008 2:50:38 PM Parental control: object http://en-us.start2.mozilla.com/firefox ... S:official allowed. Detection method: Database.
8/27/2008 2:51:08 PM Parental control: object http://support.mozilla.com/en-US/kb/How ... cation+Bar allowed. Detection method: Database.
8/27/2008 2:51:09 PM Parental control: object http://support.mozilla.com/img/__utm.gi ... cation+Bar allowed. Detection method: Database.
8/27/2008 2:51:09 PM Parental control: object http://support.mozilla.com/tiki-poll_fo ... l&stub=all allowed. Detection method: Database.
8/27/2008 2:51:09 PM Parental control: object http://ostats.mozilla.com/b/ss/mozillas ... 7291319589?[AQB]&ndh=1&t=27/7/2008%2014%3A51%3A9%203%20420&ns=mozilla&pageName=en-US/kb/How%2Bto%2Bdisable%2Bthe%2BSmart%2BLocation%2BBar&g=http%3A//support.mozilla.com/en-US/kb/How%2Bto%2Bdisable%2Bthe%2BSmart%2BLocation%2BBar&cc=USD&s=1280x1024&c=32&j=1.7&v=Y&k=Y&bw=1280&bh=738&p=Mozilla%20Default%20Plug-in%3BWindows%20Genuine%20Advantage%3BShockwave%20for%20Director%3BQuickTime%20Plug-in%207.4.5%3BDivX%20Web%20Player%3BMetaStream%203%20Plugin%3BMicrosoft%20Office%202003%3BAdobe%20Acrobat%3BShockwave%20Flash%3BiTunes%20Application%20Detector%3BSilverlight%20Plug-In%3BVeetle%20TV%20Core%3BVeetle%20TV%20Player%3BJava%28TM%29%20Platform%20SE%206%20U2%3BMicrosoft%AE%20DRM%3BWindows%20Media%20Player%20Plug-in%20Dynamic%20Link%20Library%3B&[AQE] allowed. Detection method: Database.
8/27/2008 2:51:54 PM Parental control: object http://en-us.start2.mozilla.com/firefox ... S:official allowed. Detection method: Database.
8/27/2008 2:56:16 PM Parental control: object http://images.live365.com/scp/wmp/images/icon_15x15.png blocked. Detection method: Database.
8/27/2008 3:05:49 PM Update completed successfully
8/27/2008 3:22:00 PM Parental control: object http://en-us.fxfeeds.mozilla.com/en-US/ ... dlines.xml allowed. Detection method: Database.
8/27/2008 3:22:00 PM Parental control: object http://fxfeeds.mozilla.com/firefox/headlines.xml allowed. Detection method: Database.
8/27/2008 3:24:28 PM Parental control: object http://en-us.start2.mozilla.com/firefox ... S:official allowed. Detection method: Database.
8/27/2008 3:31:08 PM Running process C:\Program Files\Winamp\winamp.exe: detected modification of riskware 'Hidden data sending'.
8/27/2008 3:31:33 PM Running process C:\Program Files\Winamp\winamp.exe: added to exclusion list.
8/27/2008 3:31:33 PM Process C:\Program Files\Winamp\winamp.exe (PID: 3992): attempt to perform suspicious actions is allowed.
8/27/2008 3:41:37 PM Parental control: object http://images.amazon.com/images/G/01/ad ... 97-9016319 allowed. Detection method: Database.
8/27/2008 3:41:39 PM Parental control: object http://www.imdb.com/find?s=all&q=&x=0&y=0 blocked. Detection method: Database.
8/27/2008 3:41:39 PM Parental control: object http://toolbarqueries.google.com/search ... D0%26y%3D0 blocked. Detection method: Database.
8/27/2008 4:16:38 PM Process (PID 4520) tried to access Kaspersky Internet Security process (PID 1008), but the action has been blocked by the Self-Defense component. No action on your part is required.
8/27/2008 4:16:38 PM Process (PID 4520) tried to access Kaspersky Internet Security process (PID 3616), but the action has been blocked by the Self-Defense component. No action on your part is required.
8/27/2008 4:16:38 PM Process (PID 4520) tried to access Kaspersky Internet Security process (PID 824), but the action has been blocked by the Self-Defense component. No action on your part is required.
8/27/2008 4:22:52 PM A full computer scan has never been performed. You are advised to perform a full scan as soon as possible.
8/27/2008 4:22:56 PM Protection of your computer started.
8/27/2008 4:23:51 PM Process (PID 1100) tried to access Kaspersky Internet Security process (PID 368), but the action has been blocked by the Self-Defense component. No action on your part is required.
8/27/2008 4:23:51 PM Process (PID 1100) tried to access Kaspersky Internet Security process (PID 1792), but the action has been blocked by the Self-Defense component. No action on your part is required.
8/27/2008 4:26:30 PM Parental control: object http://en-us.start2.mozilla.com/firefox ... S:official allowed. Detection method: Database.
8/27/2008 4:26:41 PM Parental control: object http://en-us.fxfeeds.mozilla.com/en-US/ ... dlines.xml allowed. Detection method: Database.
8/27/2008 4:26:41 PM Parental control: object http://fxfeeds.mozilla.com/firefox/headlines.xml allowed. Detection method: Database.
8/27/2008 5:23:38 PM Update completed successfully
8/27/2008 6:36:50 PM Parental control: object http://en-us.start2.mozilla.com/firefox ... S:official allowed. Detection method: Database.
8/27/2008 6:36:58 PM Parental control: object http://en-us.fxfeeds.mozilla.com/en-US/ ... dlines.xml allowed. Detection method: Database.
8/27/2008 6:36:59 PM Parental control: object http://fxfeeds.mozilla.com/firefox/headlines.xml allowed. Detection method: Database.
8/27/2008 7:43:43 PM Update completed successfully
8/27/2008 7:45:40 PM Parental control: object http://en-us.start2.mozilla.com/firefox ... S:official allowed. Detection method: Database.
8/27/2008 7:45:45 PM Parental control: object http://en-us.fxfeeds.mozilla.com/en-US/ ... dlines.xml allowed. Detection method: Database.
8/27/2008 7:45:45 PM Parental control: object http://fxfeeds.mozilla.com/firefox/headlines.xml allowed. Detection method: Database.
8/28/2008 9:08:57 PM Update error: The updates source cannot be found.
8/28/2008 9:10:03 PM Parental control: object http://en-us.start2.mozilla.com/firefox ... S:official allowed. Detection method: Database.
8/28/2008 9:10:09 PM Parental control: object http://en-us.fxfeeds.mozilla.com/en-US/ ... dlines.xml allowed. Detection method: Database.
8/28/2008 9:10:09 PM Parental control: object http://fxfeeds.mozilla.com/firefox/headlines.xml allowed. Detection method: Database.
8/28/2008 9:15:15 PM Protection of your computer is not running. You are advised to resume protection.
8/28/2008 9:16:20 PM A full computer scan has never been performed. You are advised to perform a full scan as soon as possible.
8/28/2008 9:16:25 PM Protection of your computer started.
8/28/2008 9:22:25 PM Protection of your computer is not running. You are advised to resume protection.
8/28/2008 9:23:39 PM A full computer scan has never been performed. You are advised to perform a full scan as soon as possible.
8/28/2008 9:23:39 PM Protection of your computer started.
8/28/2008 9:24:38 PM Process (PID 1112) tried to access Kaspersky Internet Security process (PID 396), but the action has been blocked by the Self-Defense component. No action on your part is required.
8/28/2008 9:29:39 PM Update completed successfully
8/28/2008 9:37:31 PM Parental control: object http://en-us.start2.mozilla.com/firefox ... S:official allowed. Detection method: Database.
8/28/2008 9:37:36 PM Parental control: object http://en-us.start2.mozilla.com/firefox ... S:official allowed. Detection method: Database.
8/28/2008 10:05:08 PM Process (PID 1452) tried to access Kaspersky Internet Security process (PID 396), but the action has been blocked by the Self-Defense component. No action on your part is required.
8/28/2008 10:05:08 PM Process (PID 1452) tried to access Kaspersky Internet Security process (PID 3416), but the action has been blocked by the Self-Defense component. No action on your part is required.
8/28/2008 10:22:15 PM Parental control: object http://en-us.start2.mozilla.com/firefox ... S:official allowed. Detection method: Database.
8/28/2008 10:22:18 PM Parental control: object http://en-us.fxfeeds.mozilla.com/en-US/ ... dlines.xml allowed. Detection method: Database.
8/28/2008 10:22:19 PM Parental control: object http://fxfeeds.mozilla.com/firefox/headlines.xml allowed. Detection method: Database.
8/28/2008 10:25:10 PM Process (PID 3672) tried to access Kaspersky Internet Security process (PID 396), but the action has been blocked by the Self-Defense component. No action on your part is required.
8/28/2008 10:25:14 PM Parental control: object http://en-us.start2.mozilla.com/firefox ... S:official allowed. Detection method: Database.
8/28/2008 10:33:59 PM File C:\Documents and Settings\Aaron Hoo\Desktop\SDFix.exe/SDFix\catchme.exe: detected modification of virus 'Heur.Invader'.
8/28/2008 10:33:59 PM Security threats have been detected. You are advised to neutralize them immediately.
8/28/2008 10:33:59 PM File C:\Documents and Settings\Aaron Hoo\Desktop\SDFix.exe/SDFix\apps\Cghtme.exe: detected modification of virus 'Heur.Invader'.
8/28/2008 10:34:38 PM Process (PID 3604) tried to access Kaspersky Internet Security process (PID 396), but the action has been blocked by the Self-Defense component. No action on your part is required.
8/28/2008 10:34:38 PM Process (PID 3604) tried to access Kaspersky Internet Security process (PID 3416), but the action has been blocked by the Self-Defense component. No action on your part is required.
8/28/2008 10:38:36 PM Parental control: object http://en-us.start2.mozilla.com/firefox ... S:official allowed. Detection method: Database.
8/28/2008 10:45:40 PM Parental control: object http://en-us.start2.mozilla.com/firefox ... S:official allowed. Detection method: Database.
8/28/2008 10:45:55 PM File C:\Documents and Settings\Aaron Hoo\Desktop\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Audio/12-Innocence_1.wma: is password protected.
8/28/2008 10:45:55 PM File C:\Documents and Settings\Aaron Hoo\Desktop\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Audio/Click1.ogg: is password protected.
8/28/2008 10:45:55 PM File C:\Documents and Settings\Aaron Hoo\Desktop\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Audio/High1.ogg: is password protected.
8/28/2008 10:45:55 PM File C:\Documents and Settings\Aaron Hoo\Desktop\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/autorun.cdd: is password protected.
8/28/2008 10:45:55 PM File C:\Documents and Settings\Aaron Hoo\Desktop\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Buttons/13_649.btn: is password protected.
8/28/2008 10:45:55 PM File C:\Documents and Settings\Aaron Hoo\Desktop\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Docs/Kaspersky Trial Reset.reg: is password protected.
8/28/2008 10:45:55 PM File C:\Documents and Settings\Aaron Hoo\Desktop\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Docs/texthelp.txt: is password protected.
8/28/2008 10:45:55 PM File C:\Documents and Settings\Aaron Hoo\Desktop\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Flash/flash1.swf: is password protected.
8/28/2008 10:45:55 PM File C:\Documents and Settings\Aaron Hoo\Desktop\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Flash/seedforspeedswf.swf: is password protected.
8/28/2008 10:45:55 PM File C:\Documents and Settings\Aaron Hoo\Desktop\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Images/44443382.jpg: is password protected.
8/28/2008 10:45:55 PM File C:\Documents and Settings\Aaron Hoo\Desktop\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Images/Thumbs.db: is password protected.
8/28/2008 10:45:55 PM File C:\Documents and Settings\Aaron Hoo\Desktop\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Videos/mew.avi: is password protected.
8/28/2008 10:45:55 PM File C:\Documents and Settings\Aaron Hoo\Desktop\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Videos/Thumbs.db: is password protected.
8/28/2008 10:45:55 PM File C:\Documents and Settings\Aaron Hoo\Desktop\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/autorun.exe: is password protected.
8/28/2008 10:46:15 PM The application DWWIN.EXE has been changed
8/28/2008 10:49:06 PM A full computer scan has never been performed. You are advised to perform a full scan as soon as possible.
8/28/2008 10:49:08 PM Protection of your computer started.
8/28/2008 10:52:31 PM Process (PID 3152) tried to access Kaspersky Internet Security process (PID 2024), but the action has been blocked by the Self-Defense component. No action on your part is required.
8/28/2008 10:52:39 PM Protection of your computer is not running. You are advised to resume protection.
8/28/2008 10:54:36 PM A full computer scan has never been performed. You are advised to perform a full scan as soon as possible.
8/28/2008 10:54:39 PM Protection of your computer started.
8/28/2008 10:59:03 PM Process (PID 876) tried to access Kaspersky Internet Security process (PID 2064), but the action has been blocked by the Self-Defense component. No action on your part is required.
8/28/2008 10:59:12 PM Protection of your computer is not running. You are advised to resume protection.
8/28/2008 11:00:19 PM A full computer scan has never been performed. You are advised to perform a full scan as soon as possible.
8/28/2008 11:00:19 PM Protection of your computer started.
8/28/2008 11:02:50 PM Parental control: object http://en-us.start2.mozilla.com/firefox ... S:official allowed. Detection method: Database.
8/28/2008 11:06:27 PM Parental control: object http://en-us.start2.mozilla.com/firefox ... S:official allowed. Detection method: Database.
8/28/2008 11:07:14 PM The application EXPLORER.EXE has been changed
8/28/2008 11:17:01 PM Parental control: object http://en-us.start2.mozilla.com/firefox ... S:official allowed. Detection method: Database.
8/28/2008 11:26:00 PM Parental control: object http://en-us.start2.mozilla.com/firefox ... S:official allowed. Detection method: Database.
8/28/2008 11:32:06 PM Parental control: object http://en-us.start2.mozilla.com/firefox ... S:official allowed. Detection method: Database.
8/28/2008 11:33:01 PM Parental control: object http://en-us.fxfeeds.mozilla.com/en-US/ ... dlines.xml allowed. Detection method: Database.
8/28/2008 11:33:01 PM Parental control: object http://fxfeeds.mozilla.com/firefox/headlines.xml allowed. Detection method: Database.
8/28/2008 11:40:48 PM Update completed successfully
8/28/2008 11:41:03 PM Process (PID 2300) tried to access Kaspersky Internet Security process (PID 416), but the action has been blocked by the Self-Defense component. No action on your part is required.
8/28/2008 11:42:48 PM The application IEXPLORE.EXE has been changed
8/28/2008 11:59:19 PM File C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\fakeWGA.zip/sbRecovery.reg: is password protected.
8/28/2008 11:59:19 PM File C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\fakeWGA.zip/sbRecovery.ini: is password protected.
8/28/2008 11:59:19 PM File C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\fakeWGA1.zip/sbRecovery.reg: is password protected.
8/28/2008 11:59:19 PM File C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\fakeWGA1.zip/sbRecovery.ini: is password protected.
8/28/2008 11:59:19 PM File C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\fakeWGA2.zip/sbRecovery.reg: is password protected.
8/28/2008 11:59:19 PM File C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\fakeWGA2.zip/sbRecovery.ini: is password protected.
8/28/2008 11:59:19 PM File C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\MicrosoftWindowsSecurityCenterdisabled.zip/sbRecovery.reg: is password protected.
8/28/2008 11:59:19 PM File C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\MicrosoftWindowsSecurityCenterdisabled.zip/sbRecovery.ini: is password protected.
8/29/2008 12:31:03 AM File C:\Program Files\Downloads\Software\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Audio/12-Innocence_1.wma: is password protected.
8/29/2008 12:31:03 AM File C:\Program Files\Downloads\Software\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Audio/Click1.ogg: is password protected.
8/29/2008 12:31:03 AM File C:\Program Files\Downloads\Software\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Audio/High1.ogg: is password protected.
8/29/2008 12:31:03 AM File C:\Program Files\Downloads\Software\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/autorun.cdd: is password protected.
8/29/2008 12:31:03 AM File C:\Program Files\Downloads\Software\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Buttons/13_649.btn: is password protected.
8/29/2008 12:31:03 AM File C:\Program Files\Downloads\Software\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Docs/Kaspersky Trial Reset.reg: is password protected.
8/29/2008 12:31:03 AM File C:\Program Files\Downloads\Software\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Docs/texthelp.txt: is password protected.
8/29/2008 12:31:03 AM File C:\Program Files\Downloads\Software\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Flash/flash1.swf: is password protected.
8/29/2008 12:31:03 AM File C:\Program Files\Downloads\Software\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Flash/seedforspeedswf.swf: is password protected.
8/29/2008 12:31:03 AM File C:\Program Files\Downloads\Software\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Images/44443382.jpg: is password protected.
8/29/2008 12:31:03 AM File C:\Program Files\Downloads\Software\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Images/Thumbs.db: is password protected.
8/29/2008 12:31:03 AM File C:\Program Files\Downloads\Software\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Videos/mew.avi: is password protected.
8/29/2008 12:31:03 AM File C:\Program Files\Downloads\Software\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/AutoPlay/Videos/Thumbs.db: is password protected.
8/29/2008 12:31:03 AM File C:\Program Files\Downloads\Software\Kaspersky Internet Security 7.0.0.125\Kaspersky - Reset Trial.exe/autorun.exe: is password protected.
8/29/2008 12:50:04 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\mdata.ggz/mh.xml: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/HeroInahime.mdx: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/HeroKadaj.mdx: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/HeroKadaj_portrait.mdx: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/HeroKenshinUesugi.mdx: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/HeroNagamasa.mdx: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/HeroNinja.mdx: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/HeroNinja_portrait.mdx: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/Hideyoshi.mdx: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/kanetsugu.mdx: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/keiji.mdx: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/Kotaro.mdx: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/MitsunariIshida.mdx: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/Nene.mdx: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/Oichi.mdx: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/Okuni2.mdx: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/Sakon.mdx: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/ShingenTakeda.mdx: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/Yoshihiro.mdx: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/YoshihiroWeapon.mdx: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/eyasu.blp: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/eyasu2.blp: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/eyasu3.blp: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/ginchiyo.blp: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/ginchiyo2.blp: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/goemon.blp: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/goemon2.blp: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/HeroInahime1.blp: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/HeroInahime2.blp: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/HeroInahimeWeapon.blp: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/HeroKenshinUesugi1.blp: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/HeroKenshinUesugi2.blp: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/HeroKenshinUesugiWeapon.blp: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/HeroNinja.blp: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/hideyoshi.blp: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/hideyoshi2.blp: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/hideyoshi3.blp: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/hideyoshi4.blp: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/Incantation.blp: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/Kadaj.blp: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/kanetsugu.blp: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/kanetsugu2.blp: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/kanetsugu3.blp: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/kotarou.blp: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/kotarou2.blp: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/kotarou3.blp: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/kotarouSign.blp: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/MitsunariIshida1.blp: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/MitsunariIshida2.blp: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/MitsunariIshidaWeapon.blp: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/Nagamasa.blp: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/Nagamasa2.blp: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/Nagamasa3.blp: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/nene.blp: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/nene2.blp: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/nene3.blp: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/oichi1.blp: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/oichi2.blp: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/oichi3.blp: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/okuni.blp: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/okuniWeapon.blp: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/okuniWeapon2.blp: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/runeofrebirth.blp: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/sakon.blp: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/sakon2.blp: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/sakon4.blp: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/ShingenTakeda1.blp: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/ShingenTakeda2.blp: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/Yoshihiro.blp: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/Yoshihiro2.blp: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/Yoshihiro3.blp: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/Kill.blp: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/keiji.blp: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/keiji2.blp: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/keiji3.blp: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/Monkey2.blp: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/textures/Lighting4X4.blp: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/Eyasu.mdx: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/Ginchiyo.mdx: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Ladder\GGCMPQ.zip/Goemon.mdx: is password protected.
8/29/2008 12:50:05 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.br/GGclient.exe.br.xml: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.br.ggz/br/button_addfriend_hover.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.br.ggz/br/button_addfriend_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.br.ggz/br/button_mode_hover.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.br.ggz/br/button_mode_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.br.ggz/br/exit_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.br.ggz/br/exit_on.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.br.ggz/br/forum_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.br.ggz/br/forum_on.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.br.ggz/br/ggladder_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.br.ggz/br/ggladder_on.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.br.ggz/br/GGMainHover.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.br.ggz/br/GGMainNormal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.br.ggz/br/ggtv_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.br.ggz/br/ggtv_on.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.br.ggz/br/gg_menu_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.br.ggz/br/gg_menu_on.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.br.ggz/br/gg_msg_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.br.ggz/br/gg_msg_on.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.br.ggz/br/LobbyHover.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.br.ggz/br/LobbyNormal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.br.ggz/br/RoomHover.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.br.ggz/br/RoomNormal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.br.ggz/br/settings_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.br.ggz/br/settings_on.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.br.ggz/br/support_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.br.ggz/br/support_on.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.br.ggz/br/Thumbs.db: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn/GGclient.exe.cn.xml: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn.ggz/cn/button_addfriend_hover.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn.ggz/cn/button_addfriend_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn.ggz/cn/button_mode_hover.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn.ggz/cn/button_mode_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn.ggz/cn/exit_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn.ggz/cn/exit_on.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn.ggz/cn/forum_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn.ggz/cn/forum_on.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn.ggz/cn/ggladder_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn.ggz/cn/ggladder_on.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn.ggz/cn/GGMainHover.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn.ggz/cn/GGMainNormal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn.ggz/cn/ggtv_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn.ggz/cn/ggtv_on.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn.ggz/cn/gg_menu_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn.ggz/cn/gg_menu_on.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn.ggz/cn/gg_msg_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn.ggz/cn/gg_msg_on.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn.ggz/cn/LobbyHover.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn.ggz/cn/LobbyNormal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn.ggz/cn/reg.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn.ggz/cn/reg_hover.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn.ggz/cn/RoomHover.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn.ggz/cn/RoomNormal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn.ggz/cn/settings_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn.ggz/cn/settings_on.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn.ggz/cn/support_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn.ggz/cn/support_on.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.cn.ggz/cn/Thumbs.db: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.ru/GGclient.exe.ru.xml: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.ru.ggz/ru/button_addfriend_hover.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.ru.ggz/ru/button_addfriend_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.ru.ggz/ru/button_mode_hover.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.ru.ggz/ru/button_mode_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.ru.ggz/ru/exit_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.ru.ggz/ru/exit_on.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.ru.ggz/ru/forum_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.ru.ggz/ru/forum_on.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.ru.ggz/ru/ggladder_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.ru.ggz/ru/ggladder_on.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.ru.ggz/ru/GGMainHover.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.ru.ggz/ru/GGMainNormal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.ru.ggz/ru/ggtv_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.ru.ggz/ru/ggtv_on.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.ru.ggz/ru/gg_menu_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.ru.ggz/ru/gg_menu_on.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.ru.ggz/ru/gg_msg_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.ru.ggz/ru/gg_msg_on.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.ru.ggz/ru/LobbyHover.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.ru.ggz/ru/LobbyNormal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.ru.ggz/ru/RoomHover.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.ru.ggz/ru/RoomNormal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.ru.ggz/ru/settings_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.ru.ggz/ru/settings_on.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.ru.ggz/ru/support_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.ru.ggz/ru/support_on.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.sp/GGclient.exe.sp.xml: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.sp.ggz/sp/button_addfriend_hover.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.sp.ggz/sp/button_addfriend_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.sp.ggz/sp/button_mode_hover.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.sp.ggz/sp/button_mode_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.sp.ggz/sp/exit_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.sp.ggz/sp/exit_on.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.sp.ggz/sp/forum_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.sp.ggz/sp/forum_on.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.sp.ggz/sp/ggladder_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.sp.ggz/sp/ggladder_on.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.sp.ggz/sp/GGMainHover.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.sp.ggz/sp/GGMainNormal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.sp.ggz/sp/ggtv_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.sp.ggz/sp/ggtv_on.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.sp.ggz/sp/gg_menu_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.sp.ggz/sp/gg_menu_on.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.sp.ggz/sp/gg_msg_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.sp.ggz/sp/gg_msg_on.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.sp.ggz/sp/LobbyHover.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.sp.ggz/sp/LobbyNormal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.sp.ggz/sp/RoomHover.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.sp.ggz/sp/RoomNormal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.sp.ggz/sp/settings_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.sp.ggz/sp/settings_on.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.sp.ggz/sp/support_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.sp.ggz/sp/support_on.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.sp.ggz/sp/Thumbs.db: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.th/GGclient.exe.th.xml: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.th.ggz/th/button_addfriend_hover.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.th.ggz/th/button_addfriend_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.th.ggz/th/button_mode_hover.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.th.ggz/th/button_mode_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.th.ggz/th/exit_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.th.ggz/th/exit_on.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.th.ggz/th/forum_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.th.ggz/th/forum_on.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.th.ggz/th/ggladder_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.th.ggz/th/ggladder_on.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.th.ggz/th/GGMainHover.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.th.ggz/th/GGMainNormal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.th.ggz/th/ggtv_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.th.ggz/th/ggtv_on.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.th.ggz/th/gg_menu_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.th.ggz/th/gg_menu_on.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.th.ggz/th/gg_msg_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.th.ggz/th/gg_msg_on.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.th.ggz/th/LobbyHover.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.th.ggz/th/LobbyNormal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.th.ggz/th/RoomHover.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.th.ggz/th/RoomNormal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.th.ggz/th/settings_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.th.ggz/th/settings_on.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.th.ggz/th/support_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.th.ggz/th/support_on.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.th.ggz/th/Thumbs.db: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.tw/GGclient.exe.tw.xml: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.tw.ggz/tw/button_addfriend_hover.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.tw.ggz/tw/button_addfriend_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.tw.ggz/tw/button_mode_hover.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.tw.ggz/tw/button_mode_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.tw.ggz/tw/exit_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.tw.ggz/tw/exit_on.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.tw.ggz/tw/forum_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.tw.ggz/tw/forum_on.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.tw.ggz/tw/ggladder_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.tw.ggz/tw/ggladder_on.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.tw.ggz/tw/GGMainHover.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.tw.ggz/tw/GGMainNormal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.tw.ggz/tw/ggtv_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.tw.ggz/tw/ggtv_on.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.tw.ggz/tw/gg_menu_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.tw.ggz/tw/gg_menu_on.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.tw.ggz/tw/gg_msg_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.tw.ggz/tw/gg_msg_on.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.tw.ggz/tw/LobbyHover.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.tw.ggz/tw/LobbyNormal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.tw.ggz/tw/reg.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.tw.ggz/tw/reg_hover.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.tw.ggz/tw/RoomHover.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.tw.ggz/tw/RoomNormal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.tw.ggz/tw/settings_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.tw.ggz/tw/settings_on.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.tw.ggz/tw/support_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.tw.ggz/tw/support_on.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.vn/GGclient.exe.vn.xml: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.vn.ggz/vn/button_addfriend_hover.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.vn.ggz/vn/button_addfriend_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.vn.ggz/vn/button_mode_hover.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.vn.ggz/vn/button_mode_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.vn.ggz/vn/exit_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.vn.ggz/vn/exit_on.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.vn.ggz/vn/forum_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.vn.ggz/vn/forum_on.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.vn.ggz/vn/ggladder_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.vn.ggz/vn/ggladder_on.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.vn.ggz/vn/GGMainHover.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.vn.ggz/vn/GGMainNormal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.vn.ggz/vn/ggtv_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.vn.ggz/vn/ggtv_on.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.vn.ggz/vn/gg_menu_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.vn.ggz/vn/gg_menu_on.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.vn.ggz/vn/gg_msg_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.vn.ggz/vn/gg_msg_on.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.vn.ggz/vn/LobbyHover.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.vn.ggz/vn/LobbyNormal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.vn.ggz/vn/RoomHover.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.vn.ggz/vn/RoomNormal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.vn.ggz/vn/settings_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.vn.ggz/vn/settings_on.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.vn.ggz/vn/support_normal.bmp: is password protected.
8/29/2008 12:50:06 AM File C:\Program Files\Ocean Technology\GG E-Sports Platform\Languages\GGclient.exe.vn.ggz/vn/support_on.bmp: is password protected.
8/29/2008 1:41:05 AM Update error: The updates source cannot be found.
8/29/2008 2:01:04 AM Update error: The updates source cannot be found.
8/29/2008 2:21:04 AM Update error: The updates source cannot be found.
8/29/2008 2:36:33 AM Update error: The updates source cannot be found.
8/29/2008 2:41:04 AM Update error: The updates source cannot be found.
8/29/2008 2:44:33 AM Parental control: object http://en-us.start2.mozilla.com/firefox ... S:official allowed. Detection method: Database.
8/29/2008 2:46:56 AM Parental control: object http://images.amazon.com/images/P/07394 ... ZZZZZZ.jpg allowed. Detection method: Database.
8/29/2008 2:46:56 AM Parental control: object http://images.amazon.com/images/P/15823 ... ZZZZZZ.jpg allowed. Detection method: Database.
8/29/2008 2:46:56 AM Parental control: object http://images.amazon.com/images/P/03453 ... ZZZZZZ.jpg allowed. Detection method: Database.
8/29/2008 2:46:56 AM Parental control: object http://images.amazon.com/images/P/08864 ... ZZZZZZ.jpg allowed. Detection method: Database.
8/29/2008 2:46:56 AM Parental control: object http://images.amazon.com/images/P/03948 ... ZZZZZZ.jpg allowed. Detection method: Database.
8/29/2008 2:46:56 AM Parental control: object http://images.amazon.com/images/P/19002 ... ZZZZZZ.jpg allowed. Detection method: Database.
8/29/2008 2:46:56 AM Parental control: object http://images.amazon.com/images/P/B0006 ... ZZZZZZ.jpg allowed. Detection method: Database.
8/29/2008 2:46:56 AM Parental control: object http://images.amazon.com/images/P/B0002 ... ZZZZZZ.jpg allowed. Detection method: Database.
8/29/2008 2:46:56 AM Parental control: object http://images.amazon.com/images/P/B0006 ... ZZZZZZ.jpg allowed. Detection method: Database.
8/29/2008 2:46:56 AM Parental control: object http://images.amazon.com/images/P/B0002 ... ZZZZZZ.jpg allowed. Detection method: Database.
8/29/2008 2:48:03 AM Parental control: object http://en-us.fxfeeds.mozilla.com/en-US/ ... dlines.xml allowed. Detection method: Database.
8/29/2008 2:48:03 AM Parental control: object http://fxfeeds.mozilla.com/firefox/headlines.xml allowed. Detection method: Database.
8/29/2008 2:51:06 AM Parental control: object http://en-us.start2.mozilla.com/firefox ... S:official allowed. Detection method: Database.
8/29/2008 3:01:04 AM Update error: The updates source cannot be found.
8/29/2008 3:21:04 AM Update error: The updates source cannot be found.
8/29/2008 3:41:04 AM Update error: The updates source cannot be found.
8/29/2008 4:01:04 AM Update error: The updates source cannot be found.
8/29/2008 4:18:03 AM Parental control: object http://en-us.fxfeeds.mozilla.com/en-US/ ... dlines.xml allowed. Detection method: Database.
8/29/2008 4:18:03 AM Parental control: object http://fxfeeds.mozilla.com/firefox/headlines.xml allowed. Detection method: Database.
8/29/2008 4:21:37 AM Update completed successfully
8/29/2008 4:44:46 AM Parental control: object http://en-us.start2.mozilla.com/firefox ... S:official allowed. Detection method: Database.
8/29/2008 4:50:10 AM Parental control: object http://en-us.start2.mozilla.com/firefox ... S:official allowed. Detection method: Database.
8/29/2008 4:59:26 AM Parental control: object http://en-us.start2.mozilla.com/firefox ... S:official allowed. Detection method: Database.
8/29/2008 5:08:09 AM Process (PID 1672) tried to access Kaspersky Internet Security process (PID 416), but the action has been blocked by the Self-Defense component. No action on your part is required.
8/29/2008 5:08:10 AM Process (PID 1672) tried to access Kaspersky Internet Security process (PID 3788), but the action has been blocked by the Self-Defense component. No action on your part is required.
8/29/2008 5:29:54 AM Parental control: object http://en-us.fxfeeds.mozilla.com/en-US/ ... dlines.xml allowed. Detection method: Database.
8/29/2008 5:29:55 AM Parental control: object http://fxfeeds.mozilla.com/firefox/headlines.xml allowed. Detection method: Database.
8/29/2008 5:39:45 AM File C:\System Volume Information\_restore{FCA3C11D-07DE-4BFD-A0DC-ECD61F9DCED3}\RP430\A0094637.dll: detected Trojan program 'Trojan-Downloader.Win32.Small.aamo'. User: AARONTHEGREAT\Aaron Hoo, computer: localhost.
8/29/2008 5:39:45 AM Security threats have been detected. You are advised to neutralize them immediately.
8/29/2008 5:40:31 AM File C:\System Volume Information\_restore{FCA3C11D-07DE-4BFD-A0DC-ECD61F9DCED3}\RP430\A0094637.dll: deleted.
8/29/2008 5:41:36 AM File C:\System Volume Information\_restore{FCA3C11D-07DE-4BFD-A0DC-ECD61F9DCED3}\RP447\A0098904.ini: detected Trojan program 'Backdoor.IRC.Zapchast'. User: AARONTHEGREAT\Aaron Hoo, computer: localhost.
8/29/2008 5:41:36 AM Security threats have been detected. You are advised to neutralize them immediately.
8/29/2008 5:41:49 AM File C:\System Volume Information\_restore{FCA3C11D-07DE-4BFD-A0DC-ECD61F9DCED3}\RP447\A0098904.ini: deleted.
8/29/2008 5:41:49 AM File C:\System Volume Information\_restore{FCA3C11D-07DE-4BFD-A0DC-ECD61F9DCED3}\RP447\A0098905.ini: detected Trojan program 'Backdoor.IRC.Zapchast'. User: AARONTHEGREAT\Aaron Hoo, computer: localhost.
8/29/2008 5:41:49 AM Security threats have been detected. You are advised to neutralize them immediately.
8/29/2008 5:41:53 AM File C:\System Volume Information\_restore{FCA3C11D-07DE-4BFD-A0DC-ECD61F9DCED3}\RP447\A0098905.ini: deleted.
8/29/2008 5:41:53 AM File C:\System Volume Information\_restore{FCA3C11D-07DE-4BFD-A0DC-ECD61F9DCED3}\RP447\A0098906.dll: detected Trojan program 'Trojan-Clicker.Win32.Agent.tq'. User: AARONTHEGREAT\Aaron Hoo, computer: localhost.
8/29/2008 5:41:53 AM Security threats have been detected. You are advised to neutralize them immediately.
8/29/2008 5:41:55 AM File C:\System Volume Information\_restore{FCA3C11D-07DE-4BFD-A0DC-ECD61F9DCED3}\RP447\A0098906.dll: deleted.
8/29/2008 5:41:55 AM File C:\System Volume Information\_restore{FCA3C11D-07DE-4BFD-A0DC-ECD61F9DCED3}\RP447\A0098907.dll: detected Trojan program 'Trojan-Clicker.Win32.Agent.xv'. User: AARONTHEGREAT\Aaron Hoo, computer: localhost.
8/29/2008 5:41:55 AM Security threats have been detected. You are advised to neutralize them immediately.
8/29/2008 5:41:57 AM File C:\System Volume Information\_restore{FCA3C11D-07DE-4BFD-A0DC-ECD61F9DCED3}\RP447\A0098907.dll: deleted.
8/29/2008 5:41:57 AM File C:\System Volume Information\_restore{FCA3C11D-07DE-4BFD-A0DC-ECD61F9DCED3}\RP448\A0098952.ini: detected Trojan program 'Backdoor.IRC.Zapchast'. User: AARONTHEGREAT\Aaron Hoo, computer: localhost.
8/29/2008 5:41:57 AM Security threats have been detected. You are advised to neutralize them immediately.
8/29/2008 5:41:59 AM File C:\System Volume Information\_restore{FCA3C11D-07DE-4BFD-A0DC-ECD61F9DCED3}\RP448\A0098952.ini: deleted.
8/29/2008 5:41:59 AM File C:\System Volume Information\_restore{FCA3C11D-07DE-4BFD-A0DC-ECD61F9DCED3}\RP448\A0098953.ini: detected Trojan program 'Backdoor.IRC.Zapchast'. User: AARONTHEGREAT\Aaron Hoo, computer: localhost.
8/29/2008 5:41:59 AM Security threats have been detected. You are advised to neutralize them immediately.
8/29/2008 5:42:01 AM File C:\System Volume Information\_restore{FCA3C11D-07DE-4BFD-A0DC-ECD61F9DCED3}\RP448\A0098953.ini: deleted.
8/29/2008 5:42:01 AM File C:\System Volume Information\_restore{FCA3C11D-07DE-4BFD-A0DC-ECD61F9DCED3}\RP448\A0098954.dll: detected Trojan program 'Trojan-Clicker.Win32.Agent.tq'. User: AARONTHEGREAT\Aaron Hoo, computer: localhost.
8/29/2008 5:42:01 AM Security threats have been detected. You are advised to neutralize them immediately.
8/29/2008 5:42:05 AM File C:\System Volume Information\_restore{FCA3C11D-07DE-4BFD-A0DC-ECD61F9DCED3}\RP448\A0098954.dll: deleted.
8/29/2008 5:42:05 AM File C:\System Volume Information\_restore{FCA3C11D-07DE-4BFD-A0DC-ECD61F9DCED3}\RP448\A0098955.dll: detected Trojan program 'Trojan-Clicker.Win32.Agent.xv'. User: AARONTHEGREAT\Aaron Hoo, computer: localhost.
8/29/2008 5:42:05 AM Security threats have been detected. You are advised to neutralize them immediately.
8/29/2008 5:42:07 AM File C:\System Volume Information\_restore{FCA3C11D-07DE-4BFD-A0DC-ECD61F9DCED3}\RP448\A0098955.dll: deleted.
8/29/2008 6:42:01 AM Update completed successfully
8/29/2008 9:02:02 AM Update completed successfully
8/29/2008 10:29:54 AM Parental control: object http://en-us.fxfeeds.mozilla.com/en-US/ ... dlines.xml allowed. Detection method: Database.
8/29/2008 10:29:54 AM Parental control: object http://fxfeeds.mozilla.com/firefox/headlines.xml allowed. Detection method: Database.
8/29/2008 10:31:53 AM Parental control: object http://en-us.start2.mozilla.com/firefox ... S:official allowed. Detection method: Database.
8/29/2008 11:21:56 AM Update completed successfully
8/29/2008 11:24:51 AM Parental control: object http://en-us.start2.mozilla.com/firefox ... S:official allowed. Detection method: Database.
8/29/2008 11:39:57 AM Parental control: object http://en-us.fxfeeds.mozilla.com/en-US/ ... dlines.xml allowed. Detection method: Database.
8/29/2008 11:39:57 AM Parental control: object http://fxfeeds.mozilla.com/firefox/headlines.xml allowed. Detection method: Database.
8/29/2008 12:54:57 PM Parental control: object http://en-us.fxfeeds.mozilla.com/en-US/ ... dlines.xml allowed. Detection method: Database.
8/29/2008 12:54:57 PM Parental control: object http://fxfeeds.mozilla.com/firefox/headlines.xml allowed. Detection method: Database.
8/29/2008 1:28:03 PM Parental control: object http://en-us.start2.mozilla.com/firefox ... S:official allowed. Detection method: Database.
8/29/2008 1:42:17 PM Update completed successfully
8/29/2008 2:09:57 PM Parental control: object http://en-us.fxfeeds.mozilla.com/en-US/ ... dlines.xml allowed. Detection method: Database.
8/29/2008 2:09:57 PM Parental control: object http://fxfeeds.mozilla.com/firefox/headlines.xml allowed. Detection method: Database.
8/29/2008 2:32:49 PM Parental control: object http://en-us.start2.mozilla.com/firefox ... S:official allowed. Detection method: Database.
8/29/2008 3:24:57 PM Parental control: object http://en-us.fxfeeds.mozilla.com/en-US/ ... dlines.xml allowed. Detection method: Database.
8/29/2008 3:24:57 PM Parental control: object http://fxfeeds.mozilla.com/firefox/headlines.xml allowed. Detection method: Database.
8/29/2008 4:02:09 PM Update completed successfully
8/29/2008 4:20:05 PM Parental control: object http://en-us.start2.mozilla.com/firefox ... S:official allowed. Detection method: Database.
8/29/2008 4:39:57 PM Parental control: object http://en-us.fxfeeds.mozilla.com/en-US/ ... dlines.xml allowed. Detection method: Database.
8/29/2008 4:39:57 PM Parental control: object http://fxfeeds.mozilla.com/firefox/headlines.xml allowed. Detection method: Database.
8/29/2008 5:54:57 PM Parental control: object http://en-us.fxfeeds.mozilla.com/en-US/ ... dlines.xml allowed. Detection method: Database.
8/29/2008 5:54:57 PM Parental control: object http://fxfeeds.mozilla.com/firefox/headlines.xml allowed. Detection method: Database.
8/29/2008 6:22:09 PM Update completed successfully
8/29/2008 8:00:15 PM Parental control: object http://images.amazon.com/images/G/01/ad ... 17-4436373 allowed. Detection method: Database.
8/29/2008 8:09:57 PM Parental control: object http://en-us.fxfeeds.mozilla.com/en-US/ ... dlines.xml allowed. Detection method: Database.
8/29/2008 8:09:57 PM Parental control: object http://fxfeeds.mozilla.com/firefox/headlines.xml allowed. Detection method: Database.
8/29/2008 8:42:06 PM Update completed successfully
8/29/2008 11:01:55 PM Update completed successfully
8/30/2008 1:09:57 AM Parental control: object http://en-us.fxfeeds.mozilla.com/en-US/ ... dlines.xml allowed. Detection method: Database.
8/30/2008 1:09:57 AM Parental control: object http://fxfeeds.mozilla.com/firefox/headlines.xml allowed. Detection method: Database.
8/30/2008 1:21:56 AM Update completed successfully
8/30/2008 2:24:57 AM Parental control: object http://en-us.fxfeeds.mozilla.com/en-US/ ... dlines.xml allowed. Detection method: Database.
8/30/2008 2:24:57 AM Parental control: object http://fxfeeds.mozilla.com/firefox/headlines.xml allowed. Detection method: Database.
8/30/2008 3:39:57 AM Parental control: object http://en-us.fxfeeds.mozilla.com/en-US/ ... dlines.xml allowed. Detection method: Database.
8/30/2008 3:39:57 AM Parental control: object http://fxfeeds.mozilla.com/firefox/headlines.xml allowed. Detection method: Database.
8/30/2008 3:42:11 AM Update completed successfully
8/30/2008 5:29:11 AM Protection of your computer is not running. You are advised to resume protection.
8/30/2008 5:05:12 PM A full computer scan has never been performed. You are advised to perform a full scan as soon as possible.
8/30/2008 5:05:12 PM Protection of your computer started.
8/30/2008 5:13:17 PM Protection of your computer is not running. You are advised to resume protection.
8/30/2008 5:14:27 PM A full computer scan has never been performed. You are advised to perform a full scan as soon as possible.
8/30/2008 5:14:27 PM Protection of your computer started.
8/30/2008 5:17:07 PM Parental control: object http://en-us.start2.mozilla.com/firefox ... S:official allowed. Detection method: Database.
8/30/2008 5:24:19 PM Parental control: object http://en-us.start2.mozilla.com/firefox ... S:official allowed. Detection method: Database.
8/30/2008 5:25:49 PM Update completed successfully
8/30/2008 5:26:30 PM Process (PID 1220) tried to access Kaspersky Internet Security process (PID 384), but the action has been blocked by the Self-Defense component. No action on your part is required.
8/30/2008 5:26:31 PM Process (PID 1220) tried to access Kaspersky Internet Security process (PID 1004), but the action has been blocked by the Self-Defense component. No action on your part is required.
8/30/2008 5:26:58 PM Parental control: object http://en-us.start2.mozilla.com/firefox ... S:official allowed. Detection method: Database.
8/30/2008 5:32:15 PM Parental control: object http://en-us.fxfeeds.mozilla.com/en-US/ ... dlines.xml allowed. Detection method: Database.
8/30/2008 5:32:15 PM Parental control: object http://fxfeeds.mozilla.com/firefox/headlines.xml allowed. Detection method: Database.
8/30/2008 5:46:05 PM Parental control: object http://en-us.start2.mozilla.com/firefox ... S:official allowed. Detection method: Database.


Reports
-------
Component Status Start Finish Size
--------- ------ ----- ------ ----
Web Anti-Virus completed 8/27/2008 12:44:58 PM 8/27/2008 12:45:39 PM 0 bytes
Web Anti-Virus completed 8/27/2008 1:03:37 PM 8/27/2008 4:19:11 PM 0 bytes
Web Anti-Virus completed 8/28/2008 11:00:19 PM 8/30/2008 5:29:03 AM 0 bytes
Web Anti-Virus completed 8/28/2008 10:54:38 PM 8/28/2008 10:59:09 PM 0 bytes
Web Anti-Virus completed 8/28/2008 10:49:08 PM 8/28/2008 10:52:37 PM 0 bytes
Web Anti-Virus completed 8/28/2008 9:23:39 PM 8/28/2008 10:47:07 PM 0 bytes
File Anti-Virus completed 8/27/2008 4:22:56 PM 8/28/2008 9:15:15 PM 0 bytes
Web Anti-Virus completed 8/27/2008 4:22:57 PM 8/28/2008 9:15:14 PM 0 bytes
Web Anti-Virus completed 8/28/2008 9:16:25 PM 8/28/2008 9:22:24 PM 0 bytes
Web Anti-Virus completed 8/30/2008 5:05:13 PM 8/30/2008 5:13:16 PM 0 bytes
Anti-Spam completed 8/28/2008 10:54:38 PM 8/28/2008 10:59:09 PM 0 bytes
Update completed 8/27/2008 8:40:52 AM 8/27/2008 8:41:36 AM 0 bytes
Update completed 8/27/2008 11:00:52 AM 8/27/2008 11:01:54 AM 0 bytes
Update completed 8/27/2008 6:20:52 AM 8/27/2008 6:23:26 AM 0 bytes
Update completed 8/27/2008 4:00:52 AM 8/27/2008 4:01:44 AM 0 bytes
Update completed 8/27/2008 1:40:39 AM 8/27/2008 1:42:12 AM 0 bytes
Update completed 8/26/2008 11:38:35 PM 8/26/2008 11:39:13 PM 0 bytes
Update completed 8/30/2008 5:25:27 PM 8/30/2008 5:25:49 PM 18.1 KB
File Anti-Virus completed 8/27/2008 12:44:57 PM 8/27/2008 12:45:39 PM 0 bytes
File Anti-Virus completed 8/28/2008 11:00:19 PM 8/30/2008 5:29:09 AM 0 bytes
File Anti-Virus completed 8/28/2008 10:54:38 PM 8/28/2008 10:59:10 PM 0 bytes
Firewall completed 8/30/2008 5:05:12 PM 8/30/2008 5:13:16 PM 0 bytes
Anti-Spam completed 8/28/2008 11:00:19 PM 8/30/2008 5:29:00 AM 0 bytes
File Anti-Virus completed 8/28/2008 10:49:08 PM 8/28/2008 10:52:37 PM 0 bytes
File Anti-Virus completed 8/27/2008 1:03:34 PM 8/27/2008 4:19:14 PM 0 bytes
Firewall completed 8/28/2008 11:00:19 PM 8/30/2008 5:29:02 AM 0 bytes
Firewall completed 8/27/2008 1:03:34 PM 8/27/2008 4:19:09 PM 0 bytes
Firewall completed 8/27/2008 4:22:56 PM 8/28/2008 9:15:13 PM 0 bytes
Firewall completed 8/28/2008 9:16:23 PM 8/28/2008 9:22:24 PM 0 bytes
Firewall completed 8/27/2008 12:44:57 PM 8/27/2008 12:45:39 PM 0 bytes
Firewall completed 8/28/2008 9:23:39 PM 8/28/2008 10:47:06 PM 0 bytes
Firewall completed 8/28/2008 10:49:08 PM 8/28/2008 10:52:37 PM 0 bytes
Firewall completed 8/28/2008 10:54:38 PM 8/28/2008 10:59:10 PM 0 bytes
Mail Anti-Virus completed 8/27/2008 12:44:57 PM 8/27/2008 12:45:39 PM 0 bytes
Mail Anti-Virus completed 8/27/2008 1:03:34 PM 8/27/2008 4:19:08 PM 0 bytes
Mail Anti-Virus completed 8/30/2008 5:05:12 PM 8/30/2008 5:13:16 PM 0 bytes
Mail Anti-Virus completed 8/28/2008 11:00:19 PM 8/30/2008 5:29:01 AM 0 bytes
Mail Anti-Virus completed 8/28/2008 9:23:39 PM 8/28/2008 10:47:04 PM 0 bytes
Mail Anti-Virus completed 8/28/2008 10:49:08 PM 8/28/2008 10:52:37 PM 0 bytes
Mail Anti-Virus completed 8/28/2008 10:54:38 PM 8/28/2008 10:59:09 PM 0 bytes
File Anti-Virus completed 8/30/2008 5:05:12 PM 8/30/2008 5:13:17 PM 0 bytes
Mail Anti-Virus completed 8/28/2008 9:16:25 PM 8/28/2008 9:22:24 PM 0 bytes
Anti-Spam completed 8/27/2008 4:22:56 PM 8/28/2008 9:15:13 PM 0 bytes
Mail Anti-Virus completed 8/27/2008 4:22:56 PM 8/28/2008 9:15:13 PM 0 bytes
Parental control completed 8/27/2008 4:22:56 PM 8/28/2008 9:15:13 PM 0 bytes
Parental control completed 8/28/2008 10:54:38 PM 8/28/2008 10:59:09 PM 0 bytes
Parental control completed 8/27/2008 12:45:12 PM 8/27/2008 12:45:39 PM 0 bytes
Parental control completed 8/28/2008 9:16:25 PM 8/28/2008 9:22:24 PM 0 bytes
Anti-Spam completed 8/28/2008 9:16:23 PM 8/28/2008 9:22:24 PM 0 bytes
Parental control completed 8/30/2008 5:05:13 PM 8/30/2008 5:13:16 PM 0 bytes
Parental control completed 8/28/2008 11:00:19 PM 8/30/2008 5:29:00 AM 0 bytes
Parental control completed 8/27/2008 1:03:34 PM 8/27/2008 4:19:08 PM 0 bytes
Parental control completed 8/28/2008 10:49:08 PM 8/28/2008 10:52:37 PM 0 bytes
Parental control completed 8/28/2008 9:23:39 PM 8/28/2008 10:47:04 PM 0 bytes
Privacy Control completed 8/28/2008 10:54:38 PM 8/28/2008 10:59:09 PM 0 bytes
Privacy Control completed 8/27/2008 1:03:34 PM 8/27/2008 4:19:08 PM 0 bytes
Privacy Control completed 8/30/2008 5:05:12 PM 8/30/2008 5:13:16 PM 0 bytes
Privacy Control completed 8/28/2008 11:00:19 PM 8/30/2008 5:29:01 AM 0 bytes
Privacy Control completed 8/28/2008 10:49:08 PM 8/28/2008 10:52:37 PM 0 bytes
Privacy Control completed 8/27/2008 12:44:57 PM 8/27/2008 12:45:39 PM 0 bytes
Privacy Control completed 8/27/2008 4:22:56 PM 8/28/2008 9:15:13 PM 0 bytes
Privacy Control completed 8/28/2008 9:23:39 PM 8/28/2008 10:47:04 PM 0 bytes
Anti-Spam completed 8/28/2008 9:23:39 PM 8/28/2008 10:47:04 PM 0 bytes
Privacy Control completed 8/28/2008 9:16:25 PM 8/28/2008 9:22:24 PM 0 bytes
File Anti-Virus completed 8/28/2008 9:23:39 PM 8/28/2008 10:47:04 PM 0 bytes
Proactive Defense completed 8/28/2008 10:49:08 PM 8/28/2008 10:52:37 PM 0 bytes
Proactive Defense completed 8/27/2008 4:22:56 PM 8/28/2008 9:15:15 PM 0 bytes
Anti-Spam completed 8/28/2008 10:49:08 PM 8/28/2008 10:52:37 PM 0 bytes
Proactive Defense completed 8/28/2008 9:23:39 PM 8/28/2008 10:47:08 PM 0 bytes
Proactive Defense completed 8/27/2008 1:03:34 PM 8/27/2008 4:19:11 PM 0 bytes
Proactive Defense completed 8/27/2008 12:44:57 PM 8/27/2008 12:45:39 PM 0 bytes
Proactive Defense completed 8/28/2008 11:00:19 PM 8/30/2008 5:29:11 AM 0 bytes
Proactive Defense completed 8/30/2008 5:05:12 PM 8/30/2008 5:13:17 PM 0 bytes
Proactive Defense completed 8/28/2008 10:54:38 PM 8/28/2008 10:59:10 PM 0 bytes
File Anti-Virus completed 8/28/2008 9:16:25 PM 8/28/2008 9:22:25 PM 0 bytes
Proactive Defense completed 8/28/2008 9:16:25 PM 8/28/2008 9:22:25 PM 0 bytes
Scan completed 8/26/2008 11:41:19 PM 8/27/2008 8:38:13 AM 0 bytes
Scan completed 8/28/2008 11:53:23 PM 8/29/2008 1:24:11 AM 98.3 MB
Scan critical areas completed 8/27/2008 2:19:18 PM 8/27/2008 2:22:10 PM 919.9 KB
Scan startup objects completed 8/28/2008 9:18:35 PM 8/28/2008 9:21:01 PM 0 bytes
Scan startup objects completed 8/28/2008 10:51:20 PM 8/28/2008 10:52:20 PM 0 bytes
Scan startup objects completed 8/30/2008 5:16:27 PM 8/30/2008 5:17:37 PM 456.7 KB
Scan startup objects completed 8/28/2008 10:56:50 PM 8/28/2008 10:57:30 PM 0 bytes
Scan startup objects completed 8/28/2008 9:25:39 PM 8/28/2008 9:26:05 PM 0 bytes
Scan startup objects completed 8/27/2008 4:24:58 PM 8/27/2008 4:27:39 PM 0 bytes
Scan startup objects completed 8/28/2008 11:02:19 PM 8/28/2008 11:03:22 PM 0 bytes
Scan startup objects completed 8/27/2008 1:05:46 PM 8/27/2008 1:06:20 PM 0 bytes
Scan startup objects completed 8/30/2008 5:07:27 PM 8/30/2008 5:08:05 PM 0 bytes
Update completed 8/27/2008 7:43:07 PM 8/27/2008 7:43:43 PM 0 bytes
Anti-Spam completed 8/27/2008 1:03:34 PM 8/27/2008 4:19:08 PM 0 bytes
Update completed 8/29/2008 11:21:34 AM 8/29/2008 11:21:56 AM 0 bytes
Update completed 8/29/2008 9:01:34 AM 8/29/2008 9:02:02 AM 0 bytes
Update completed 8/29/2008 1:41:34 PM 8/29/2008 1:42:17 PM 0 bytes
Update completed 8/27/2008 3:05:16 PM 8/27/2008 3:05:49 PM 0 bytes
Anti-Spam completed 8/30/2008 5:05:12 PM 8/30/2008 5:13:16 PM 0 bytes
Update completed 8/27/2008 1:03:43 PM 8/27/2008 1:04:50 PM 0 bytes
Update completed 8/29/2008 6:41:35 AM 8/29/2008 6:42:01 AM 0 bytes
Update completed 8/28/2008 9:29:09 PM 8/28/2008 9:29:39 PM 0 bytes
Update completed 8/29/2008 4:21:04 AM 8/29/2008 4:21:37 AM 0 bytes
Anti-Spam completed 8/27/2008 12:44:57 PM 8/27/2008 12:45:39 PM 0 bytes
Update completed 8/30/2008 3:41:35 AM 8/30/2008 3:42:11 AM 0 bytes
Update completed 8/30/2008 1:21:34 AM 8/30/2008 1:21:56 AM 0 bytes
Update completed 8/28/2008 11:40:23 PM 8/28/2008 11:40:48 PM 0 bytes
Update completed 8/29/2008 4:01:34 PM 8/29/2008 4:02:09 PM 0 bytes
Update completed 8/29/2008 11:01:34 PM 8/29/2008 11:01:55 PM 0 bytes
Update completed 8/29/2008 8:41:34 PM 8/29/2008 8:42:06 PM 0 bytes
Update completed 8/27/2008 5:23:07 PM 8/27/2008 5:23:38 PM 0 bytes
Update completed 8/29/2008 6:21:34 PM 8/29/2008 6:22:09 PM 0 bytes
Firewall disabled 8/26/2007 11:12:16 PM 8/27/2008 12:44:49 PM 0 bytes
File Anti-Virus disabled 8/26/2007 11:12:16 PM 8/27/2008 12:44:48 PM 0 bytes
Mail Anti-Virus disabled 8/26/2007 11:12:16 PM 8/27/2008 12:44:48 PM 0 bytes
Privacy Control disabled 8/26/2007 11:12:16 PM 8/27/2008 12:44:48 PM 0 bytes
Proactive Defense disabled 8/26/2007 11:12:16 PM 8/27/2008 12:44:50 PM 0 bytes
Web Anti-Virus disabled 8/26/2007 11:12:16 PM 8/27/2008 12:44:49 PM 0 bytes
Anti-Spam disabled 8/26/2007 11:12:16 PM 8/27/2008 12:44:48 PM 0 bytes
Firewall running 8/30/2008 5:14:27 PM 24.8 KB
Anti-Spam running 8/30/2008 5:14:27 PM 0 bytes
Mail Anti-Virus running 8/30/2008 5:14:27 PM 0 bytes
Parental control running 8/30/2008 5:14:27 PM 291.2 KB
Privacy Control running 8/30/2008 5:14:27 PM 0 bytes
Proactive Defense running 8/30/2008 5:14:27 PM 0 bytes
File Anti-Virus running 8/30/2008 5:14:27 PM 2.7 MB
Web Anti-Virus running 8/30/2008 5:14:27 PM 230.4 KB
Update stopped 8/30/2008 5:05:14 PM 8/30/2008 5:13:17 PM 0 bytes
Update The updates source cannot be found 8/28/2008 9:08:56 PM 8/28/2008 9:08:57 PM 0 bytes
Update The updates source cannot be found 8/29/2008 2:21:04 AM 8/29/2008 2:21:04 AM 0 bytes


Quarantine
----------
Status Object Size Added
------ ------ ---- -----


Backup
------
Status Object Size
------ ------ ----
Infected: Trojan program Trojan-Downloader.Win32.Small.aamo C:\System Volume Information\_restore{FCA3C11D-07DE-4BFD-A0DC-ECD61F9DCED3}\RP430\A0094637.dll 140 KB
Infected: Trojan program Trojan-Clicker.Win32.Agent.tq C:\System Volume Information\_restore{FCA3C11D-07DE-4BFD-A0DC-ECD61F9DCED3}\RP448\A0098954.dll 28 KB
Infected: Trojan program Trojan-Clicker.Win32.Agent.xv C:\System Volume Information\_restore{FCA3C11D-07DE-4BFD-A0DC-ECD61F9DCED3}\RP447\A0098907.dll 28 KB
Infected: Trojan program Backdoor.IRC.Zapchast C:\System Volume Information\_restore{FCA3C11D-07DE-4BFD-A0DC-ECD61F9DCED3}\RP448\A0098953.ini 30.2 KB
Infected: Trojan program Trojan-Clicker.Win32.Agent.xv c:\windows\system32\macsoin.dll 28 KB
Infected: Trojan program Backdoor.IRC.Zapchast C:\System Volume Information\_restore{FCA3C11D-07DE-4BFD-A0DC-ECD61F9DCED3}\RP447\A0098904.ini 2 KB
Infected: Trojan program Trojan-Clicker.Win32.Agent.tq C:\System Volume Information\_restore{FCA3C11D-07DE-4BFD-A0DC-ECD61F9DCED3}\RP447\A0098906.dll 28 KB
Infected: Trojan program Trojan-Clicker.Win32.Agent.xv C:\System Volume Information\_restore{FCA3C11D-07DE-4BFD-A0DC-ECD61F9DCED3}\RP448\A0098955.dll 28 KB
Infected: Trojan program Backdoor.IRC.Zapchast c:\windows\svchost\updater.ini 30.2 KB
Infected: Trojan program Backdoor.IRC.Zapchast C:\System Volume Information\_restore{FCA3C11D-07DE-4BFD-A0DC-ECD61F9DCED3}\RP447\A0098905.ini 30.2 KB
Infected: Trojan program Trojan-Downloader.Win32.Agent.ayi c:\program files\downloads\software\solidworks\solidwork 2007 sp0.0 multilang dvd edition.nrg 3.3 GB
Infected: Trojan program Backdoor.IRC.Zapchast c:\windows\svchost\scr.ini 2 KB
Infected: Trojan program Backdoor.IRC.Zapchast C:\System Volume Information\_restore{FCA3C11D-07DE-4BFD-A0DC-ECD61F9DCED3}\RP448\A0098952.ini 2 KB
Infected: Trojan program Trojan-Clicker.Win32.Agent.tq c:\windows\system32\kavsel.dll 28 KB
Infected: Trojan program Backdoor.Win32.mIRC-based C:\System Volume Information\_restore{FCA3C11D-07DE-4BFD-A0DC-ECD61F9DCED3}\RP446\A0097448.exe 1.6 MB
Infected: Trojan program Trojan-Clicker.Win32.Agent.tq c:\system volume information\_restore{fca3c11d-07de-4bfd-a0dc-ecd61f9dced3}\rp447\a0097740.dll 28 KB
Vicious
Active Member
 
Posts: 5
Joined: August 26th, 2008, 2:32 pm

Re: IExplorer.exe Malware, very annoying indeed =/

Unread postby Carolyn » August 31st, 2008, 8:12 am

Hello,

When reviewing the Kaspersky Log, it shows this:

deleted: Trojan program Trojan-Downloader.Win32.Agent.ayi File: C:\Program Files\Downloads\Software\SolidWorks\Solidwork 2007 SP0.0 Multilang DVD Edition.nrg//Crack/sw2007cr.exe

Someone on this system was trying to access cracks or a 'keygen'....this is a certain way to attract malware to your system. 'Keygen' are often associated or loaded with malware, and should be avoided (along with 'cracks' and associated 'crack' sites).

The Kaspersky Log also indicates that you have not activated Kaspersky Internet Security, which leads me to suspect that installation is illegal as well.

Malware Removal Forum Guidelines and Rules wrote:Any time the helper detects that you may have illegal software on your machine, that helper may stop assisting you immediately until you can demonstrate that you have rectified the situation. We will not support fixing machines with pirated or otherwise illegal software.


The full text of this Forum's guidelines can be found HERE

Before we continue to clean your computer, I have to insist that any illegal software be removed.

Please remove any/all illegal software from your computer.

After removing Kaspersky Internet Security, you should install one of the following free Antivirus products:

Use an Anti Virus Software - It is very important that your computer has an anti-virus software running on your machine. This alone can save you a lot of trouble with malware in the future. Here are some Anti Virus products which are free for personal use and most used:
AntiVir
Avast
BitDefender

Update your Anti Virus Software - It is imperitive that you update your Anti virus software at least once a week (Even more if you wish). If you do not update your anti virus software then it will not be able to catch any of the new variants that may come out.

------------------------------------------------------------------------------------------------------

I hate to give you bad news but one or more of the identified infections is a backdoor trojan.

Backdoor Trojans are the most dangerous and most widespread type of Trojan. Backdoor Trojans provide the author or "master" of the Trojan with remote "administration" of victim machines. Unlike legitimate remote administration utilities, they install, launch and run invisibly, without the consent or knowledge of the user. Once installed, backdoor Trojans can be instructed to send, receive, execute and delete files, harvest confidential data from the computer, log activity on the computer and more.

I would counsel you to disconnect this PC from the Internet immediately. If you do any banking or other financial transactions on the PC or if it should contain any other sensitive information, please get to a known clean computer and change all passwords where applicable, and it would be wise to contact those same financial institutions to apprise them of your situation.
In addition to the backdoor Trojan that has been identified, your computer is afflicted with multiple other infections. Although we can make an attempt to clean this machine, we cannot guarantee that it will be secure afterwards. Your best and safest course of action is a reformat and reinstallation of the Windows operating system.

If you do decide to attempt cleaning rather than a reformat, do understand that although we may be able to remove all known visible malware, we cannot guarantee that unknown and unseen malware will have been removed, nor will your system be restored to its pre-infection state. We cannot remedy unknown changes the malware may likely have made in order to allow itself access, nor can we repair the damages it may possibly have caused to vital system files.

Please note that even if we should be successful in removing these infections from your system, it is quite possible that the changes made to the system by the malware may impact negatively on your computer during the removal process. In short, your system may never regain its former stability or its full functionality without a reformat.

Please read these for more information:

How Do I Handle Possible Identify Theft, Internet Fraud and CC Fraud?

When Should I Format, How Should I Reinstall

Should you have any questions, please feel free to ask.
Please let us know what you have decided to do in your next post.
User avatar
Carolyn
MRU Emeritus
MRU Emeritus
 
Posts: 4701
Joined: April 18th, 2007, 9:36 am
Location: Maine

Re: IExplorer.exe Malware, very annoying indeed =/

Unread postby Vicious » September 1st, 2008, 1:43 am

"Please remove any/all illegal software from your computer"

The Kaspersky internet Security i am using right now is a trial version. When I was installing the software, I had the option to "activate trial" since I did not purchase the activation code, that was the only option for me. could that be a reason?


another thing I've been wondering, my pc is connected to my University's internet, California Polytechnic University of Pomona, and the I&IT people has been monitoring people's computer for p2p software. So I am wondering if that is related to any of the suspicion?
Vicious
Active Member
 
Posts: 5
Joined: August 26th, 2008, 2:32 pm

Re: IExplorer.exe Malware, very annoying indeed =/

Unread postby Carolyn » September 1st, 2008, 4:07 pm

Vicious wrote:"Please remove any/all illegal software from your computer"

The Kaspersky internet Security i am using right now is a trial version. When I was installing the software, I had the option to "activate trial" since I did not purchase the activation code, that was the only option for me. could that be a reason?


another thing I've been wondering, my pc is connected to my University's internet, California Polytechnic University of Pomona, and the I&IT people has been monitoring people's computer for p2p software. So I am wondering if that is related to any of the suspicion?


The Kaspersky log says that the product is not activated, it does not indicate that there is a trial period. The log also indicates that the virus definitions had not been updated.

I don't see what the University's IT people could possibly have to do with this.

Did you read the part of my post warning you that your computer was compromised by a Backdoor Trojan?
User avatar
Carolyn
MRU Emeritus
MRU Emeritus
 
Posts: 4701
Joined: April 18th, 2007, 9:36 am
Location: Maine

Re: IExplorer.exe Malware, very annoying indeed =/

Unread postby Vicious » September 1st, 2008, 11:52 pm

Thanks carolyn, i've decided to reformat. Will get back to you with updates asap.
Vicious
Active Member
 
Posts: 5
Joined: August 26th, 2008, 2:32 pm

Re: IExplorer.exe Malware, very annoying indeed =/

Unread postby Carolyn » September 2nd, 2008, 6:14 am

I respect your decision to format and reinstall. That is what I would do.

Formatting your hard drive and reinstalling Windows are fairly involved processes. You might do well to post requesting assistance from this bleepingcomputer.com forum Windows XP Home and Professional
The helpers there are well equipped to guide you through the format and installation processes. They may also be able to assist you with backing up data before you format your hard drive.

Here is a link with information that will be helpful: Reformatting Windows by wng_z3r0

Here are some important points to keep in mind before you begin this process:

Some Re-installation Notes (taken from When should I re-format? How should I reinstall?)


* Be sure to back-up all data before re-formatting the computer's hard drive. This includes address books, documents, music, settings, saved games, and anything else not obsolete.

The re-format process will wipe the computer's hard drive clean, destroying all data and programs.

* PCs are made so they can be reformatted. But sometimes, especially with major brand-name computers, there are special procedures that require reading the manual, visiting the manufacturer's website, or, if the manufacturer has gone out of business, searching on http://www.google.com.

Some computers have the BIOS or re-installation software in small partitions on the hard drive.

- Do not re-partition the hard drive without carefully consulting the maker's manual and website.
- Check on the use of any partition, other than C:, before re-formatting it.

* Some computers require special drivers which are downloadable from the computer manufacturer's or vendor's website or device manufacturer's website. Use an uninfected computer to download these files to diskettes or a CD, and print out the installation instructions, in advance.

* Gather together the CDs, diskettes, and Internet addresses required to re-install the software.

* Since you should avoid searching the web until your computer is fully secured, it is a good idea to download any programs you will need to secure your computer prior to re-formatting. Use an uninfected computer to do this.

* Physically unplug the computer from the Internet before re-formatting.

* Leave the computer physically disconnected (unplugged) from the Internet until it is protected by a firewall (ICF, an NAT router, or other hardware or software firewall).

If the computer has a wireless card, remove or shield the card so that the computer cannot connect to any access points.)

* An unpatched computer without proper firewall protection can be infected within seconds of being connected to the Internet.

The computer must be protected by a hardware firewall, NAT router, or a software firewall before plugging it back in to the internet or you can be infected in a few seconds.

* When installing from a Windows XP SP2 CD, the installation will default to having the Windows XP SP2 Firewall activated, so the hazard is greatly reduced. With earlier service packs of Windows XP and earlier versions of Windows, you must manually turn on a firewall.



After your computer is back up and running with all of the Service Packs and Updates installed, here are some steps that can help you to keep your computer safe from malware:
  • Turn System Restore on
    • On the Desktop, right click on the My Computer icon.
    • Click Properties.
    • Click the System Restore tab.
    • Uncheck *Turn off System Restore*.
    • Click Apply, and then click OK.
    Note: only do this once,and not on a regular basis
  • Set correct settings for files
    • Click Start > My Computer > Tools menu (at top of page) > Folder Options > View tab.
    • Under Hidden files and folders if necessary select Do not show hidden files and folders.
    • If unchecked please check Hide protected operating system files (Recommended)
    • If necessary check Display content of system folders
    • If necessary Uncheck Hide file extensions for known file types.
    • Click OK
  • Make sure that you keep your antivirus updated
    New viruses come out every minute, so it is essential that you have the latest signatures for your antivirus program to provide you with the best possible protection from malicious software.
    Note: You should only have one antivirus installed at a time. Having more than one antivirus program installed at once is likely to cause conflicts and may well decrease your overall protection as well as impairing the performance of your PC.

  • Install and use a firewall with outbound protection
    The Windows firewall only monitors incoming traffic, NOT outgoing. Using a software firewall in its default configuration to replace the Windows firewall greatly reduces the risk of your computer being hacked. Make sure your firewall is always enabled while your computer is connected to the internet.
    Note: You should only have one firewall installed at a time. Having more than one firewall installed at once is likely to cause conflicts and may well decrease your overall protection as well as seriously impairing the performance of your PC.

  • Security Updates for Windows, Internet Explorer & Microsoft Office
    Whenever a security problem in its software is found, Microsoft will usually create a patch so that after the patch is installed, attackers can't use the vulnerability to install malicious software on your PC. Keeping up with these patches will help to prevent malicious software being installed on your PC. Ensure you are registered for Windows updates via Start > right-click on My Computer > Properties > Automatic Updates tab or visit the Microsoft Update site on a regular basis.
    Note: The update process uses ActiveX, so you will need to use internet explorer for it and allow the ActiveX control to install.

  • Update Non-Microsoft Programs
    Microsoft isn't the only company whose products can contain security vulnerabilities. To check whether other programs running on your PC are in need of an update, you can use the Secunia Software Inspector - I suggest that you run it at least once a month.

  • Make Internet Explorer More Secure
    Upgrade to Internet Explorer 7, then please read and follow the recommendations at this SITE
Recommended Programs

I would recommend the download and installation of some or all of the following programs (if not already present), and the updating of them on a regular basis.

  • WinPatrol
    As a robust security monitor, WinPatrol will alert you to hijackings, malware attacks and critical changes made to your computer without your permission. WinPatrol takes snapshot of your critical system resources and alerts you to any changes that may occur without your knowledge. For more information, please visit HERE.

  • SpywareBlaster
    SpywareBlaster sets killbits in the registry to prevent known malicious ActiveX controls from installing on your computer. If you don't know what ActiveX controls are, see HERE. You can download SpywareBlaster from HERE.

  • Malwarebytes' Anti-Malware
    Malwarebytes' Anti-Malware is an anti-malware application that can thoroughly remove even the most advanced malware. It includes a number of features, including a built in protection monitor that blocks malicious processes before they even start.You can download Malwarebytes' Anti-Malware from HERE. You can find a tutorial HERE.

  • Hosts File
    For added protection you may also like to add a host file. A simple explanation of what a Hosts file does is HERE and for more information regarding host files read HERE.

    Be sure to disable the service "DNS Client" FIRST to allow the use of large HOSTS files without slowdowns.
    If this isn't done first, the next reboot may take a VERY LONG TIME.
    This is how to do it. First be sure you are signed in as a user with administrative privileges:
    Stop and Disable the DNS Client Service
    Go to Start, Run and type Services.msc and click OK.
    Under the Extended Tab, Scroll down and find this service.
    DNS Client
    Right-Click on the DNS Client Service. Choose Properties
    Select the General tab. Click on the Stop button.
    Click the Arrow-down tab on the right-hand side at the Start-up Type box.
    From the drop-down menu, click on Manual
    Click the Apply tab, then click OK



  • Use an alternative Internet Browser
    Many of the exploits are directed to users of Internet Explorer. Try using a different browser instead:
    Firefox
    Opera
Finally I am trying to make one point very clear. It is absolutely essential to keep all of your security programs up to date.

Also please read this great article by Tony Klein So How Did I Get Infected In First Place
User avatar
Carolyn
MRU Emeritus
MRU Emeritus
 
Posts: 4701
Joined: April 18th, 2007, 9:36 am
Location: Maine

Re: IExplorer.exe Malware, very annoying indeed =/

Unread postby NonSuch » September 6th, 2008, 7:26 pm

As this issue appears to be resolved, this topic is now closed.

We are pleased we could help you resolve your computer's malware issues.

If you would like to make a comment or leave a compliment regarding the help you have received, please see Feedback for Our Helpers - Say "Thanks" Here.
User avatar
NonSuch
Administrator
Administrator
 
Posts: 27304
Joined: February 23rd, 2005, 7:08 am
Location: California
Advertisement
Register to Remove


  • Similar Topics
    Replies
    Views
    Last post

Return to Infected? Virus, malware, adware, ransomware, oh my!



Who is online

Users browsing this forum: No registered users and 24 guests

Contact us:

Advertisements do not imply our endorsement of that product or service. Register to remove all ads. The forum is run by volunteers who donate their time and expertise. We make every attempt to ensure that the help and advice posted is accurate and will not cause harm to your computer. However, we do not guarantee that they are accurate and they are to be used at your own risk. All trademarks are the property of their respective owners.

Member site: UNITE Against Malware