Welcome to MalwareRemoval.com,
What if we told you that you could get malware removal help from experts, and that it was 100% free? MalwareRemoval.com provides free support for people with infected computers. Our help, and the tools we use are always 100% free. No hidden catch. We simply enjoy helping others. You enjoy a clean, safe computer.

Malware Removal Instructions

Assistance needed to remove malware from my computer. Thanks

MalwareRemoval.com provides free support for people with infected computers. Using plain language that anyone can understand, our community of volunteer experts will walk you through each step.

Assistance needed to remove malware from my computer. Thanks

Unread postby spcvrm » January 16th, 2011, 12:41 am

I think I have a redirecting malware problem.
Any help will be appreciated. Thanks
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:34:28 PM, on 1/15/2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\zHotkey.exe
C:\WINDOWS\ModPS2Key.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\ParetoLogic\FileCure\FileCure.exe
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Program Files\AVG\AVG10\avgtray.exe
C:\Program Files\Messenger\msmsgs.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\PROGRA~1\HEWLET~1\HPSHAR~1\hpgs2wnf.exe
C:\Program Files\Common Files\Nikon\Monitor\NkMonitor.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files\AVG\AVG10\avgwdsvc.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\AVG\AVG10\Identity Protection\agent\bin\avgidsmonitor.exe
C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\New Boundary\PrismXL\PRISMXL.SYS
C:\Program Files\CyberLink\Shared Files\RichVideo.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe
C:\Program Files\AVG\AVG10\avgnsx.exe
C:\Program Files\AVG\AVG10\avgemcx.exe
C:\Program Files\AVG\AVG10\avgchsvx.exe
C:\Program Files\AVG\AVG10\avgrsx.exe
C:\Program Files\AVG\AVG10\avgcsrvx.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Java\jre6\bin\jucheck.exe
C:\Program Files\AVG\AVG10\avgcsrvx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATICKA.EXE
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FAMTCKA.EXE
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FARNCKA.EXE
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.gateway.com/g/startpage.html ... TP&M=W3650
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.gateway.com/g/startpage.html ... TP&M=W3650
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=127.0.0.1:8074
R3 - URLSearchHook: (no name) - {A3BC75A2-1F87-4686-AA43-5347D756017C} - (no file)
R3 - URLSearchHook: (no name) - *{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
R3 - URLSearchHook: (no name) - {472734EA-242A-422b-ADF8-83D1E48CC825} - (no file)
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG10\avgssie.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: NCO 2.0 IE BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - (no file)
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.6.5612.1312\swg.dll
O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - c:\windows\system32\BAE.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [CHotkey] zHotkey.exe
O4 - HKLM\..\Run: [ShowWnd] ShowWnd.exe
O4 - HKLM\..\Run: [ModPS2] ModPS2Key.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [Recguard] %WINDIR%\SMINST\RECGUARD.EXE
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [LanguageShortcut] "C:\Program Files\CyberLink\PowerDVD\Language\Language.exe"
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [zzzHPSETUP] E:\Setup.exe
O4 - HKLM\..\Run: [Share-to-Web Namespace Daemon] C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [CanonSolutionMenu] C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe /logon
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [ISTray] "C:\Program Files\PC Tools Security\pctsGui.exe" /hideGUI
O4 - HKLM\..\Run: [AVG_TRAY] C:\Program Files\AVG\AVG10\avgtray.exe
O4 - HKCU\..\Run: [Power2GoExpress] NA
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKCU\..\Run: [EPSON Stylus Photo R280 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATICKA.EXE /FU "C:\WINDOWS\TEMP\E_S120.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [EPSON Stylus Photo R280 Series (Copy 1)] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATICKA.EXE /FU "C:\WINDOWS\TEMP\E_S40D.tmp" /EF "HKCU"
O4 - HKCU\..\RunOnce: [Shockwave Updater] C:\WINDOWS\system32\Adobe\SHOCKW~1\SWHELP~1.EXE -Update -1103470 -"Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; Trident/4.0; GTB6; .NET CLR 1.1.4322; .NET CLR 2.0.50727; Zango 10.3.75.0; .NET CLR 3.0.4506.2152; .NET CLR 3.5.30729)" -"http://www.nickjr.com/kids-games/little-bears-dress-up.html"
O4 - HKUS\S-1-5-18\..\RunOnce: [RunNarrator] Narrator.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [RunNarrator] Narrator.exe (User 'Default user')
O4 - Startup: OneNote 2007 Screen Clipper and Launcher.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
O4 - Global Startup: Nikon Monitor.lnk = C:\Program Files\Common Files\Nikon\Monitor\NkMonitor.exe
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: PokerStars.net - {FA9B9510-9FCB-4ca0-818C-5D0987B47C4D} - C:\Program Files\PokerStars.NET\PokerStarsUpdate.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {1239CC52-59EF-4DFA-8C61-90FFA846DF7E} (Musicnotes Viewer) - http://www.musicnotes.com/download/mnviewer.cab
O16 - DPF: {3DCEC959-378A-4922-AD7E-FD5C925D927F} (Disney Online Games ActiveX Control) - http://disney.go.com/pirates/online/tes ... eGames.cab
O16 - DPF: {406B5949-7190-4245-91A9-30A17DE16AD0} (Snapfish Activia) - http://www.yorkphoto.com/YorkActivia.cab
O16 - DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/200 ... ader55.cab
O16 - DPF: {BCBC9371-595D-11D4-A96D-00105A1CEF6C} (View22RTE Class) - http://onlinedesigner.hgtv.com/images/app/view22rte.cab
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - http://games.pogo.com/online2/pogo/beje ... der_v6.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{C6C6496D-DA41-4428-90E3-49487782133F}: NameServer = 93.188.163.85,93.188.160.65
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 93.188.163.85,93.188.160.65
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: NameServer = 93.188.163.85,93.188.160.65
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 93.188.163.85,93.188.160.65
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG10\avgpp.dll
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe
O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG10\avgwdsvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: GameConsoleService - WildTangent, Inc. - C:\Program Files\eMachines Games\eMachines Game Console\GameConsoleService.exe
O23 - Service: Google Desktop Manager 5.9.1005.12335 (GoogleDesktopManager-051210-111108) - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Inkjet Printer/Scanner Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: PrismXL - New Boundary Technologies, Inc. - C:\Program Files\Common Files\New Boundary\PrismXL\PRISMXL.SYS
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Program Files\PC Tools Security\pctsAuxs.exe
O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Program Files\PC Tools Security\pctsSvc.exe

--
End of file - 12960 bytes
spcvrm
Regular Member
 
Posts: 20
Joined: January 5th, 2011, 7:36 pm
Advertisement
Register to Remove

Re: Assistance needed to remove malware from my computer. Th

Unread postby Gizzy » January 16th, 2011, 2:56 pm

Hello spcvrm and Welcome to Malware Removal! :)
My name is Gizzy and I'll be glad to help you with your malware problems.

Please note the following while we work:
  • The fixes are specific to your problem and should only be used for this issue on this computer.
  • Perform all actions in the order given.
  • If you don't know or understand something stop and ask! Don't keep going on.
  • Please DO NOT uninstall/install any programs unless asked to. It is more difficult when files/programs appear or disappear from the logs.
  • Please DO NOT run any tools or scans unless I ask you to.
  • It is important that you reply to this thread. Do not start a new topic.
  • Your security programs may give warnings for some of the tools I will ask you to use, Be assured, any links I give are safe.
  • The process is not instant, Please continue to respond to this thread until I give you the All Clean!. Absence of symptoms does not mean that everything is clear.

Note: As I am still in training, All of my posts must first be checked by an Expert/Teacher, So some delays may be inevitable, please be patient and I will reply again asap.


Uninstall List
  1. Open HijackThis.
  2. Click the Open the Misc Tools section button. (If you don't see that button click the Main Menu button first)
  3. Click the Open Uninstall Manager... button and then click the Save list... button.
  4. Save the uninstall_list.txt file to your HijackThis folder. (C:\Program Files\Trend Micro\HijackThis)
  5. Copy and Paste the contents of uninstall_list.txt in your next reply.
User avatar
Gizzy
Retired Graduate
 
Posts: 1101
Joined: December 30th, 2008, 9:54 pm
Location: NJ, USA

Re: Assistance needed to remove malware from my computer. Th

Unread postby spcvrm » January 16th, 2011, 7:49 pm

I think I did this correctly.

1000 Solitaire Games
ACDSee
Acrobat.com
Acrobat.com
Activation Assistant for the 2007 Microsoft Office suites
Adobe Acrobat 4.0
Adobe AIR
Adobe AIR
Adobe Flash Player 10 ActiveX
Adobe Reader 9.4.0
Adobe Shockwave Player 11.5
Agere Systems PCI-SV92PP Soft Modem
Apple Application Support
Apple Mobile Device Support
Apple Software Update
ArcSoft Panorama Maker 4
ArcSoft PhotoFantasy
ArcSoft PhotoImpression
ArcSoft PhotoImpression 6
ArcSoft PhotoStudio 5.5
ArcSoft Print Creations
AVG 2011
AVG 2011
AVG 2011
Bonjour
Browser Address Error Redirector
Canon CanoScan 5600F User Registration
Canon MP Navigator EX 2.0
Canon Utilities Solution Menu
CanoScan 5600F Scanner Driver
Compatibility Pack for the 2007 Office system
Cosmo Player 2.1.1 (41451)
Critical Update for Windows Media Player 11 (KB959772)
Deer Hunt Challenge SE
Disney Pirates of the Caribbean Online
DVD Suite
EA Network Play System
eMachines Connect
eMachines Games
EPSON Print CD
EPSON Printer Software
EPSON R280 User's Guide
Garden Defense Deluxe
Generations® Beginner's Edition 8
Google Apps
Google Chrome
Google Desktop
Google Earth
Google Toolbar for Internet Explorer
Google Toolbar for Internet Explorer
Google Update Helper
Google Updater
High Definition Audio Driver Package - KB888111
HijackThis 2.0.2
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
Hotfix for Windows Media Format 11 SDK (KB929399)
Hotfix for Windows Media Player 11 (KB939683)
Hotfix for Windows XP (KB2158563)
Hotfix for Windows XP (KB2443685)
Hotfix for Windows XP (KB952287)
Hotfix for Windows XP (KB961118)
Hotfix for Windows XP (KB970653-v3)
Hotfix for Windows XP (KB976098-v2)
Hotfix for Windows XP (KB979306)
Hotfix for Windows XP (KB981793)
HP Photo Printing Software
HP Precisionscan Pro 3.1
HP Share-to-Web
Inkjet Printer/Scanner Extended Survey Program
Intel(R) Graphics Media Accelerator Driver
iTunes
J2SE Runtime Environment 5.0 Update 22
Java(TM) 6 Update 17
Java(TM) 6 Update 4
Java(TM) 6 Update 7
Masque IGT Slots Texas Tea
Microsoft .NET Framework 1.1
Microsoft .NET Framework 1.1
Microsoft .NET Framework 1.1 Security Update (KB2416447)
Microsoft .NET Framework 1.1 Security Update (KB979906)
Microsoft .NET Framework 2.0 Service Pack 2
Microsoft .NET Framework 3.0 Service Pack 2
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 3.5 SP1
Microsoft Compression Client Pack 1.0 for Windows XP
Microsoft Internationalized Domain Names Mitigation APIs
Microsoft National Language Support Downlevel APIs
Microsoft Office Excel MUI (English) 2007
Microsoft Office Home and Student 2007
Microsoft Office Home and Student 2007
Microsoft Office OneNote MUI (English) 2007
Microsoft Office PowerPoint MUI (English) 2007
Microsoft Office PowerPoint Viewer 2007 (English)
Microsoft Office Proof (English) 2007
Microsoft Office Proof (French) 2007
Microsoft Office Proof (Spanish) 2007
Microsoft Office Proofing (English) 2007
Microsoft Office Shared MUI (English) 2007
Microsoft Office Shared Setup Metadata MUI (English) 2007
Microsoft Office Word MUI (English) 2007
Microsoft User-Mode Driver Framework Feature Pack 1.0
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Microsoft Web Publishing Wizard 1.52
Microsoft Works
MobileMe Control Panel
Monopoly
MSXML 4.0 SP2 (KB936181)
MSXML 4.0 SP2 (KB941833)
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
MSXML 6 Service Pack 2 (KB954459)
Musicnotes Player
Musicnotes Software Suite 1.1
Nikon Message Center
Nikon Transfer
OpenOffice.org Installer 1.0
ParetoLogic FileCure
Picasa 3
PokerStars.net
Power2Go 5.0
PowerDVD
PS2 Multimedia Keyboard Driver
QuickTime
REALTEK GbE & FE Ethernet PCI NIC Driver
Realtek High Definition Audio Driver
Safari
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2416473)
Security Update for Step By Step Interactive Training (KB923723)
Security Update for Windows Internet Explorer 7 (KB931768)
Security Update for Windows Internet Explorer 7 (KB933566)
Security Update for Windows Internet Explorer 7 (KB937143)
Security Update for Windows Internet Explorer 7 (KB938127)
Security Update for Windows Internet Explorer 7 (KB939653)
Security Update for Windows Internet Explorer 7 (KB942615)
Security Update for Windows Internet Explorer 7 (KB953838)
Security Update for Windows Internet Explorer 7 (KB956390)
Security Update for Windows Internet Explorer 7 (KB958215)
Security Update for Windows Internet Explorer 7 (KB960714)
Security Update for Windows Internet Explorer 7 (KB961260)
Security Update for Windows Internet Explorer 7 (KB963027)
Security Update for Windows Internet Explorer 7 (KB969897)
Security Update for Windows Internet Explorer 7 (KB972260)
Security Update for Windows Internet Explorer 8 (KB2183461)
Security Update for Windows Internet Explorer 8 (KB2360131)
Security Update for Windows Internet Explorer 8 (KB2416400)
Security Update for Windows Internet Explorer 8 (KB971961)
Security Update for Windows Internet Explorer 8 (KB972260)
Security Update for Windows Internet Explorer 8 (KB974455)
Security Update for Windows Internet Explorer 8 (KB976325)
Security Update for Windows Internet Explorer 8 (KB978207)
Security Update for Windows Internet Explorer 8 (KB981332)
Security Update for Windows Internet Explorer 8 (KB982381)
Security Update for Windows Media Player (KB2378111)
Security Update for Windows Media Player (KB952069)
Security Update for Windows Media Player (KB954155)
Security Update for Windows Media Player (KB968816)
Security Update for Windows Media Player (KB973540)
Security Update for Windows Media Player (KB975558)
Security Update for Windows Media Player (KB978695)
Security Update for Windows Media Player 10 (KB911565)
Security Update for Windows Media Player 10 (KB917734)
Security Update for Windows Media Player 11 (KB936782)
Security Update for Windows Media Player 11 (KB954154)
Security Update for Windows XP (KB2079403)
Security Update for Windows XP (KB2115168)
Security Update for Windows XP (KB2121546)
Security Update for Windows XP (KB2160329)
Security Update for Windows XP (KB2229593)
Security Update for Windows XP (KB2259922)
Security Update for Windows XP (KB2279986)
Security Update for Windows XP (KB2286198)
Security Update for Windows XP (KB2296011)
Security Update for Windows XP (KB2296199)
Security Update for Windows XP (KB2347290)
Security Update for Windows XP (KB2360937)
Security Update for Windows XP (KB2387149)
Security Update for Windows XP (KB2423089)
Security Update for Windows XP (KB2436673)
Security Update for Windows XP (KB2440591)
Security Update for Windows XP (KB2443105)
Security Update for Windows XP (KB913433)
Security Update for Windows XP (KB923561)
Security Update for Windows XP (KB938464)
Security Update for Windows XP (KB938464-v2)
Security Update for Windows XP (KB941569)
Security Update for Windows XP (KB946648)
Security Update for Windows XP (KB950762)
Security Update for Windows XP (KB950974)
Security Update for Windows XP (KB951066)
Security Update for Windows XP (KB951376-v2)
Security Update for Windows XP (KB951698)
Security Update for Windows XP (KB951748)
Security Update for Windows XP (KB952004)
Security Update for Windows XP (KB952954)
Security Update for Windows XP (KB953839)
Security Update for Windows XP (KB954211)
Security Update for Windows XP (KB954600)
Security Update for Windows XP (KB955069)
Security Update for Windows XP (KB956391)
Security Update for Windows XP (KB956572)
Security Update for Windows XP (KB956744)
Security Update for Windows XP (KB956802)
Security Update for Windows XP (KB956803)
Security Update for Windows XP (KB956841)
Security Update for Windows XP (KB956844)
Security Update for Windows XP (KB957095)
Security Update for Windows XP (KB957097)
Security Update for Windows XP (KB958644)
Security Update for Windows XP (KB958687)
Security Update for Windows XP (KB958690)
Security Update for Windows XP (KB958869)
Security Update for Windows XP (KB959426)
Security Update for Windows XP (KB960225)
Security Update for Windows XP (KB960715)
Security Update for Windows XP (KB960803)
Security Update for Windows XP (KB960859)
Security Update for Windows XP (KB961371)
Security Update for Windows XP (KB961373)
Security Update for Windows XP (KB961501)
Security Update for Windows XP (KB968537)
Security Update for Windows XP (KB969059)
Security Update for Windows XP (KB969898)
Security Update for Windows XP (KB969947)
Security Update for Windows XP (KB970238)
Security Update for Windows XP (KB970430)
Security Update for Windows XP (KB971468)
Security Update for Windows XP (KB971486)
Security Update for Windows XP (KB971557)
Security Update for Windows XP (KB971633)
Security Update for Windows XP (KB971657)
Security Update for Windows XP (KB972270)
Security Update for Windows XP (KB973346)
Security Update for Windows XP (KB973354)
Security Update for Windows XP (KB973507)
Security Update for Windows XP (KB973525)
Security Update for Windows XP (KB973869)
Security Update for Windows XP (KB973904)
Security Update for Windows XP (KB974112)
Security Update for Windows XP (KB974318)
Security Update for Windows XP (KB974392)
Security Update for Windows XP (KB974571)
Security Update for Windows XP (KB975025)
Security Update for Windows XP (KB975467)
Security Update for Windows XP (KB975560)
Security Update for Windows XP (KB975561)
Security Update for Windows XP (KB975562)
Security Update for Windows XP (KB975713)
Security Update for Windows XP (KB977165)
Security Update for Windows XP (KB977816)
Security Update for Windows XP (KB977914)
Security Update for Windows XP (KB978037)
Security Update for Windows XP (KB978251)
Security Update for Windows XP (KB978262)
Security Update for Windows XP (KB978338)
Security Update for Windows XP (KB978542)
Security Update for Windows XP (KB978601)
Security Update for Windows XP (KB978706)
Security Update for Windows XP (KB979309)
Security Update for Windows XP (KB979482)
Security Update for Windows XP (KB979559)
Security Update for Windows XP (KB979683)
Security Update for Windows XP (KB979687)
Security Update for Windows XP (KB980195)
Security Update for Windows XP (KB980218)
Security Update for Windows XP (KB980232)
Security Update for Windows XP (KB980436)
Security Update for Windows XP (KB981322)
Security Update for Windows XP (KB981852)
Security Update for Windows XP (KB981957)
Security Update for Windows XP (KB981997)
Security Update for Windows XP (KB982132)
Security Update for Windows XP (KB982214)
Security Update for Windows XP (KB982665)
Security Update for Windows XP (KB982802)
Spybot - Search & Destroy
Spyware Doctor with AntiVirus 8.0
Top 20 Solid Gold
Trellix Web Express Site Building
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
Update for Windows Internet Explorer 8 (KB972636)
Update for Windows Internet Explorer 8 (KB976662)
Update for Windows Internet Explorer 8 (KB976749)
Update for Windows Internet Explorer 8 (KB980182)
Update for Windows XP (KB2141007)
Update for Windows XP (KB2345886)
Update for Windows XP (KB2467659)
Update for Windows XP (KB951072-v2)
Update for Windows XP (KB951978)
Update for Windows XP (KB955759)
Update for Windows XP (KB955839)
Update for Windows XP (KB967715)
Update for Windows XP (KB968389)
Update for Windows XP (KB971737)
Update for Windows XP (KB973687)
Update for Windows XP (KB973815)
Windows Backup Utility
Windows Feature Pack for Storage (32-bit) - IMAPI update for Blu-Ray
Windows Internet Explorer 8
Windows Media Format 11 runtime
Windows Media Format 11 runtime
Windows Media Player 11
Windows Media Player 11
Windows XP Service Pack 3
spcvrm
Regular Member
 
Posts: 20
Joined: January 5th, 2011, 7:36 pm

Re: Assistance needed to remove malware from my computer. Th

Unread postby Gizzy » January 17th, 2011, 2:49 pm

Hi spcvrm,

Multiple Anti-virus Programs
You are operating your computer with multiple Anti-virus programs:

  • AVG 2011
  • Spyware Doctor with AntiVirus 8.0

It is not safe to have more than one anti-virus installed on a computer, and doing so not only does not provide better protection, it will actually cause additional problems.
Anti-virus programs hook deep into the system to provide their protection and take up an enormous amount of your computer's resources when they are actively scanning your computer.
Having multiple anti-virus programs on one computer can cause your computer to run very slow, become unstable and even crash, You must remove all but one anti-virus program now.

Go to Start > Control Panel > Add/Remove Programs to uninstall one of the anti-virus programs.
While in Add/Remove also remove the following by clicking Remove

  • Browser Address Error Redirector
  • J2SE Runtime Environment 5.0 Update 22
  • Java(TM) 6 Update 17
  • Java(TM) 6 Update 4
  • Spybot - Search & Destroy

If some programs listed are not present, please do not panic.


Fix HijackThis Entries
  1. Open HijackThis
  2. Click Scan
  3. Tick the box next to the following entries (if present)

    • R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=127.0.0.1:8074
    • R3 - URLSearchHook: (no name) - {A3BC75A2-1F87-4686-AA43-5347D756017C} - (no file)
    • R3 - URLSearchHook: (no name) - *{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
    • R3 - URLSearchHook: (no name) - {472734EA-242A-422b-ADF8-83D1E48CC825} - (no file)
    • O2 - BHO: NCO 2.0 IE BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - (no file)
    • O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - c:\windows\system32\BAE.dll
    • O4 - HKCU\..\Run: [Power2GoExpress] NA
    • O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - http://games.pogo.com/online2/pogo/beje ... der_v6.cab
    • O17 - HKLM\System\CCS\Services\Tcpip\..\{C6C6496D-DA41-4428-90E3-49487782133F}: NameServer = 93.188.163.85,93.188.160.65
    • O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 93.188.163.85,93.188.160.65
    • O17 - HKLM\System\CS2\Services\Tcpip\Parameters: NameServer = 93.188.163.85,93.188.160.65
    • O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 93.188.163.85,93.188.160.65

  4. Close all open windows/browsers and click Fix checked
  5. Reboot your computer


Download and run Rkill
Please download Rkill from one of the following links and save it to your Desktop:

One, Two, Three or Four

  1. Double-click on Rkill to run it.
  2. A command window will open then disappear upon completion, this is normal.
  3. When finished, Notepad will open with a log called, "rkill.log".
  4. Please copy and paste the contents of the rkill.log in your next reply.
  5. The file is automatically saved... located at C:\rkill.log.
  6. Please leave Rkill on the Desktop until otherwise advised.

Note: If your security software warns about Rkill, please ignore and allow the download to continue.


Malwarebytes Anti-Malware
Download Malwarebytes' Anti-Malware to your desktop.
  1. Double-click mbam-setup.exe and follow the prompts to install the program.
  2. At the end, be sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.
  3. If an update is found, it will download and install the latest version.
  4. Once the program has loaded, select Perform quick scan, then click Scan.
  5. When the scan is complete, click OK, then Show Results to view the results.
  6. Check all items except items in the C:\System Volume Information folder, then click on Remove Selected.
  7. When completed, a log will open in Notepad. Please post that log in your next reply.

The log is automatically saved and can be viewed by clicking the Logs tab in Malwarebytes' Anti-Malware. It can also be found here:
  • C:\Documents and Settings\Username\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Logs\mbam-log-date (time).txt

Note: If MBAM encounters a file that is difficult to remove, you will be presented with 1 of 2 prompts, click OK to either and let MBAM proceed with the disinfection process, if asked to restart the computer, please do so immediately. Failure to reboot will prevent MBAM from removing all the malware.


Download and Run RSIT
  1. Download random's system information tool (RSIT) by random/random from here and save it to your desktop.
  2. Double-click on RSIT.exe to run RSIT
  3. Click Continue at the disclaimer screen
  4. Once it has finished, two logs will open, log.txt (<<will be maximized) and info.txt (<<will be minimized)
  5. Copy & paste the contents of both logs in your next reply


Please reply with:
  • Rkill log
  • Malwarebytes' Anti-Malware log
  • RSIT logs (log.txt and info.txt)
  • Update on problems
User avatar
Gizzy
Retired Graduate
 
Posts: 1101
Joined: December 30th, 2008, 9:54 pm
Location: NJ, USA

Re: Assistance needed to remove malware from my computer. Th

Unread postby Gizzy » January 19th, 2011, 7:20 pm

Hi spcvrm,

Do you still require assistance?
The topic will be closed due to inactivity soon.
User avatar
Gizzy
Retired Graduate
 
Posts: 1101
Joined: December 30th, 2008, 9:54 pm
Location: NJ, USA

Re: Assistance needed to remove malware from my computer. Th

Unread postby spcvrm » January 19th, 2011, 11:08 pm

I followed your instructions through Fix checked & then I rebooted. I tried to download the Rkill file. The box poped up & asked if I wanted to run the rkill file & I clicked run. The download box quickly poped up & the green download bars quickly went across to the box & the box quickly closed but then nothing else happened & I did not get a log on Notepad & I didn't get an icon on my desktop. I then clicked save & I have an rkill file in my documents but nothing happens when I try to open it.
Thank you for you help.
spcvrm
Regular Member
 
Posts: 20
Joined: January 5th, 2011, 7:36 pm

Re: Assistance needed to remove malware from my computer. Th

Unread postby Gizzy » January 20th, 2011, 7:03 am

Hi spcvrm,
Please download all tools to where I ask and run them from there, Not from the popup box.
spcvrm wrote:Thank you for you help.
You're welcome. :)

Try the following, If it still doesn't work then just skip it and continue with the rest of the instructions from my earlier post.

Delete the rkill file you downloaded and download it from here and save it to your Desktop

  1. Double-click on the iExplore.exe file you just downloaded to run it.
  2. A command window will open then disappear upon completion, this is normal.
  3. When finished, Notepad will open with a log called, "rkill.log".
  4. Please copy and paste the contents of the rkill.log in your next reply.
  5. The file is automatically saved... located at C:\rkill.log.
  6. Please leave the iExplore.exe file on the Desktop until otherwise advised.

Note: If your security software warns about Rkill, please ignore and allow the download to continue.


Then continue with the instructions in my earlier post.
User avatar
Gizzy
Retired Graduate
 
Posts: 1101
Joined: December 30th, 2008, 9:54 pm
Location: NJ, USA

Re: Assistance needed to remove malware from my computer. Th

Unread postby spcvrm » January 21st, 2011, 1:06 pm

I was able to run the rkill with your additional instructions. Below is the log. I am running the Malwarebytes scan now & will post when it is completed.
Thanks

This log file is located at C:\rkill.log.
Please post this only if requested to by the person helping you.
Otherwise you can close this log when you wish.

Rkill was run on 01/21/2011 at 11:55:06.
Operating System: Microsoft Windows XP


Processes terminated by Rkill or while it was running:

Processes terminated by Rkill or while it was running:



Rkill completed on 01/21/2011 at 11:55:16.
spcvrm
Regular Member
 
Posts: 20
Joined: January 5th, 2011, 7:36 pm

Re: Assistance needed to remove malware from my computer. Th

Unread postby Gizzy » January 23rd, 2011, 12:01 am

Hi spcvrm,

Did you finish with Malwarebytes' yet? Do you have the logs?
User avatar
Gizzy
Retired Graduate
 
Posts: 1101
Joined: December 30th, 2008, 9:54 pm
Location: NJ, USA

Re: Assistance needed to remove malware from my computer. Th

Unread postby spcvrm » January 23rd, 2011, 1:50 am

I'm sorry, I thought i had posted the logs. I now notice I had too many characters. I will have to post the Malwarebytes' log in two parts.
Malwarebytes' Anti-Malware 1.50.1.1100
www.malwarebytes.org

Database version: 5565

Windows 5.1.2600 Service Pack 3
Internet Explorer 8.0.6001.18702

1/21/2011 12:33:27 PM
mbam-log-2011-01-21 (12-33-26).txt

Scan type: Quick scan
Objects scanned: 159845
Time elapsed: 20 minute(s), 32 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 1
Registry Keys Infected: 12
Registry Values Infected: 1
Registry Data Items Infected: 0
Folders Infected: 25
Files Infected: 1070

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
c:\WINDOWS\system32\sshnas21.dll (Trojan.FraudPack.Gen) -> Delete on reboot.

Registry Keys Infected:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{2AA2FBF8-9C76-4E97-A226-25C5F4AB6358} (Adware.Hotbar) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{A7CDDCDC-BEEB-4685-A062-978F5E07CEEE} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{100EB1FD-D03E-47FD-81F3-EE91287F9465} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{6FD31ED6-7C94-4BBC-8E95-F927F4D3A949} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{90B8B761-DF2B-48AC-BBE0-BCC03A819B3B} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{C5428486-50A0-4A02-9D20-520B59A9F9B2} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{C5428486-50A0-4A02-9D20-520B59A9F9B3} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{69725738-CD68-4f36-8D02-8C43722EE5DA} (Adware.Hotbar) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\NtWqIVLZEWZU (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Handle (Malware.Trace) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\Software\qni8hj710fdl (Malware.Trace) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SSHNAS (Trojan.Renos) -> Quarantined and deleted successfully.

Registry Values Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Post Platform\Zango 10.3.75.0 (Adware.Zango) -> Value: Zango 10.3.75.0 -> Quarantined and deleted successfully.

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
c:\documents and settings\Owner\application data\Zango (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\eskin (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\IESkins (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0 (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\dynamic (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1 (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2 (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\DownLoad (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\dynamic (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1 (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2 (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\DownLoad (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\tooltipxml (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\ustat (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\344stat (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1 (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2 (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\DownLoad (Adware.Zango) -> Quarantined and deleted successfully.

Files Infected:
c:\WINDOWS\system32\sshnas21.dll (Trojan.FraudPack.Gen) -> Delete on reboot.
c:\documents and settings\Owner\local settings\Temp\mnxrosecwa.tmp (Trojan.FakeAlert) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\local settings\Temp\59.tmp (Rootkit.TDSS) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\local settings\Temp\5E.tmp (Rootkit.TDSS) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\local settings\Temp\Obj.exe (Trojan.FakeMS) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\local settings\Temp\Obk.exe (Trojan.FraudPack.Gen) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\local settings\Temp\Obm.exe (Trojan.FraudPack.Gen) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\local settings\Temp\Obn.exe (Trojan.FakeMS) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\local settings\Temp\Obo.exe (Trojan.FraudPack.Gen) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\local settings\Temp\Obp.exe (Trojan.FraudPack.Gen) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\local settings\Temp\Obq.exe (Trojan.FraudPack.Gen) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\local settings\Temp\Obr.exe (Trojan.FraudPack.Gen) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\local settings\Temp\Obs.exe (Trojan.FraudPack.Gen) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\local settings\Temp\Obt.exe (Trojan.FraudPack.Gen) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\local settings\Temp\wemanxcors.tmp (Trojan.TDSS) -> Quarantined and deleted successfully.
c:\WINDOWS\Odezaa.exe (Trojan.FraudPack.Gen) -> Quarantined and deleted successfully.
c:\RECYCLER\adapt_installer.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\WINDOWS\Tasks\{22116563-108c-42c0-a7ce-60161b75e508}.job (Trojan.Downloader) -> Quarantined and deleted successfully.
c:\WINDOWS\Tasks\{62c40aa6-4406-467a-a5a5-dfdf1b559b7a}.job (Trojan.FakeAlert) -> Quarantined and deleted successfully.
c:\WINDOWS\Tasks\{bbaeaeaf-1275-40e2-bd6c-bc8f88bd114a}.job (Trojan.Downloader) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\030104_emte10_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\030104_emte11_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\030104_emte12_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\030104_emte13_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\030104_emte14_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\030104_emte19_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\030104_emte20_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\030104_emte21_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\030104_emte9_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\030203lib_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\033102angel_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\033102bigsmile_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\033102birthday_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\033102cheers_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\033102flo_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\033102good_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\033102jump_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\033102king_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\033102lough_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\033102luf_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\033102smiled_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\033102smile_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\033102sor_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\033102thanx_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\033102uhu_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\040103ahh_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\040104_emi2_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\042102_1134_112_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\050103big_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\050103gig_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\050103hm_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\050103nomail_emoti_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\050103norm_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\060104_ema16_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\060104_ema17_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\060104_ema18_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\060104_ema19_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\060104_ema20_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\060104_ema21_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\060104_ema24_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\060104_ema25_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\060104_ema26_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\060104_ema30_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\060104_ema33_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\060104_ema34_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\062802jumpie_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\080402argh_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\080402oops_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\080402ouch_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\033102bigluf_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\040103wow_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\060104_ema15_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\062802hippi_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\110103_peace_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\blocked.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\css2_main.css (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\email-temp-bg.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\icon_edit_preview.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\js2_basetemplate.js (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\layout.cdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\tab_lia.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\082502no_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\082502yes_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\110103_boring1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\110103_confused_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\110103_crying_ugly_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\110103_fantastic_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\110103_feel_better_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\110103_gimme_break_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\110103_heehee_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\110103_hlopaet_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\110103_ign_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\110103_lol_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\110103_no_comment_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\110103_smashing_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\110103_talk2thehand_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\avatar.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\blocked2.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\block_sm.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\block_sm2.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\block_smli.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\block_smli2.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\btn_add-but.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\btn_back-but.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\btn_left_cut_enabled_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\btn_left_enabled_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\btn_left_pressed_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\btn_middle_enabled_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\btn_middle_pressed_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\btn_right_cut_enabled_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\btn_right_enabled_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\btn_right_pressed_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\business_promo.htm (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\buttondir.txt (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\components.cdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\css2_pagingmodule.css (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\css2_topbuttons.css (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\css_cattree.css (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\css_flashpreview.css (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\cursors.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\delete.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\edit_clear_sound.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\edit_fs.htm (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\edit_select.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\email-t1-bg.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\estatationery.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\flashpatch.js (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\flashpreview.htm (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\fs3.htm (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\hotbar_promo.htm (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\icon_checked_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\icon_close_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\icon_close_pressed_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\icon_edit_send.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\icon_flash_preview.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\icon_recently_used.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\icon_remove_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\icon_remove_pressed_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\icon_sand-clock2.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\icon_tell_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\icon_tell_pressed_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\icon_tree_null.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\icon_unchecked_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\icon_unchecked_pressed_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\img_barlayout.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\img_barlayout2.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\img_barlayout4.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\img_corner_left.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\img_local_logo.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\js2_hbgroups.js (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\js2_hbobject3.js (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\js2_hbobjectset3.js (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\js2_hotbarwrapper.js (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\js2_iteratorsandreaders3nf.js (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\js2_pagingmoduleobj3.js (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\js2_texts3.js (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\js2_xmltree3nf.js (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\linkpathlegal.txt (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\n.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\nav_bb_2.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\nav_b_2.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\nav_ff_2.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\nav_f_2.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\progress.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\sales_buttons.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\searchbtn.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\submit.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\tab_bg.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\tab_bga.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\tab_bgia.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\tab_l.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\tab_la.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\tab_r.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\tab_ra.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\tab_ria.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\treedata_animations.xml (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\treedata_backgrounds.xml (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\treedata_ecards.xml (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\treedata_emoticons.xml (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\treedata_notifiers.xml (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\treedata_text.xml (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\tree_dots.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\tree_minus.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\tree_plus.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\1\zango_btn.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\030104_emte10_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\030104_emte11_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\030104_emte12_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\030104_emte13_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\030104_emte14_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\030104_emte19_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\030104_emte20_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\030104_emte21_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\030104_emte9_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\030203lib_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\033102angel_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\033102bigsmile_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\033102birthday_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\033102cheers_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\033102flo_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\033102good_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\033102jump_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\033102king_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\033102lough_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\033102luf_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\033102smiled_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\033102smile_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\033102sor_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\033102thanx_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\033102uhu_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\040103ahh_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\040104_emi2_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\042102_1134_112_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\050103big_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\050103gig_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\050103hm_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\050103nomail_emoti_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\050103norm_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\060104_ema16_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\060104_ema17_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\060104_ema18_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\060104_ema19_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\060104_ema20_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\060104_ema21_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\060104_ema24_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\060104_ema25_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\060104_ema26_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\060104_ema30_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\060104_ema33_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\060104_ema34_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\062802jumpie_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\080402argh_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\080402oops_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\080402ouch_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\033102bigluf_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\040103wow_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\060104_ema15_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\062802hippi_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\110103_peace_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\blocked.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\css2_main.css (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\email-temp-bg.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\icon_edit_preview.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\js2_basetemplate.js (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\layout.cdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\tab_lia.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\082502no_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\082502yes_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\110103_boring1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\110103_confused_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\110103_crying_ugly_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\110103_fantastic_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\110103_feel_better_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\110103_gimme_break_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\110103_heehee_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\110103_hlopaet_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\110103_ign_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\110103_lol_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\110103_no_comment_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\110103_smashing_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\110103_talk2thehand_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\avatar.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\blocked2.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\block_sm.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\block_sm2.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\block_smli.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\block_smli2.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\btn_add-but.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\btn_back-but.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\btn_left_cut_enabled_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\btn_left_enabled_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\btn_left_pressed_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\btn_middle_enabled_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\btn_middle_pressed_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\btn_right_cut_enabled_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\btn_right_enabled_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\btn_right_pressed_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\business_promo.htm (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\buttondir.txt (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\components.cdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\css2_pagingmodule.css (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\css2_topbuttons.css (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\css_cattree.css (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\css_flashpreview.css (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\cursors.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\delete.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\edit_clear_sound.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\edit_fs.htm (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\edit_select.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\email-t1-bg.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\estatationery.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\flashpatch.js (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\flashpreview.htm (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\fs3.htm (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\hotbar_promo.htm (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\icon_checked_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\icon_close_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\icon_close_pressed_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\icon_edit_send.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\icon_flash_preview.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\icon_recently_used.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\icon_remove_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\icon_remove_pressed_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\icon_sand-clock2.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\icon_tell_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\icon_tell_pressed_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\icon_tree_null.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\icon_unchecked_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\icon_unchecked_pressed_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\img_barlayout.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\img_barlayout2.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\img_barlayout4.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\img_corner_left.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\img_local_logo.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\js2_hbgroups.js (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\js2_hbobject3.js (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\js2_hbobjectset3.js (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\js2_hotbarwrapper.js (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\js2_iteratorsandreaders3nf.js (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\js2_pagingmoduleobj3.js (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\js2_texts3.js (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\js2_xmltree3nf.js (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\linkpathlegal.txt (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\n.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\nav_bb_2.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\nav_b_2.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\nav_ff_2.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\nav_f_2.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\progress.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\sales_buttons.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\searchbtn.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\submit.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\tab_bg.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\tab_bga.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\tab_bgia.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\tab_l.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\tab_la.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\tab_r.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\tab_ra.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\tab_ria.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\treedata_animations.xml (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\treedata_backgrounds.xml (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\treedata_ecards.xml (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\treedata_emoticons.xml (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\treedata_notifiers.xml (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\treedata_text.xml (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\tree_dots.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\tree_minus.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\tree_plus.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\2\zango_btn.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\DownLoad\images.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\DownLoad\layout.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\DownLoad\linkpathlegal.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\DownLoad\localcontent.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\DownLoad\hotbar_promo.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\DownLoad\code.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\DownLoad\cursors.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\DownLoad\email-t1-bg.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\DownLoad\progress.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\DownLoad\sales_buttons.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\DownLoad\buttondir.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\DownLoad\email-temp-bg.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\DownLoad\avatar.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\DownLoad\business_promo.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\DownLoad\treexml.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOI\static\DownLoad\zango_btn.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\030104_emte10_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\030104_emte11_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\030104_emte12_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\030104_emte13_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\030104_emte14_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\030104_emte19_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\030104_emte20_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\030104_emte21_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\030104_emte9_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\030203lib_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\033102angel_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\033102bigsmile_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\033102birthday_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\033102cheers_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\033102flo_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\033102good_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\033102jump_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\033102king_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\033102lough_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\033102luf_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\033102smiled_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\033102smile_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\033102sor_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\033102thanx_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\033102uhu_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\040103ahh_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\040104_emi2_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\042102_1134_112_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\050103big_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\050103gig_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\050103hm_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\050103nomail_emoti_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\050103norm_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\060104_ema16_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\060104_ema17_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\060104_ema18_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\060104_ema19_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\060104_ema20_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\060104_ema21_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\060104_ema24_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\060104_ema25_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\060104_ema26_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\060104_ema30_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\060104_ema33_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\060104_ema34_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\062802jumpie_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\080402argh_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\080402oops_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\080402ouch_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\033102bigluf_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\040103wow_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\060104_ema15_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\062802hippi_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\110103_peace_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\blocked.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\css2_main.css (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\email-def-511724-603763.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\email-def-email-new.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\icon_close_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\icon_sand-clock2.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\082502no_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\082502yes_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\110103_boring1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\110103_confused_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\110103_crying_ugly_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\110103_fantastic_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\110103_feel_better_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\110103_gimme_break_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\110103_heehee_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\110103_hlopaet_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\110103_ign_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\110103_lol_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\110103_no_comment_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\110103_smashing_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\110103_talk2thehand_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\avatar.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\blocked2.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\block_sm.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\block_sm2.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\block_smli.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\block_smli2.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\btn_add-but.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\btn_back-but.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\btn_left_cut_enabled_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\btn_left_enabled_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\btn_left_pressed_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\btn_middle_enabled_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\btn_middle_pressed_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\btn_right_cut_enabled_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\btn_right_enabled_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\btn_right_pressed_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\business_promo.htm (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\buttondir.txt (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\components.cdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\css2_pagingmodule.css (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\css2_topbuttons.css (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\css_cattree.css (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\css_flashpreview.css (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\cursors.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\delete.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\edit_clear_sound.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\edit_fs.htm (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\edit_select.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\email-def-511724-543450.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\email-def-511724-548964.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\email-def-511724-589306.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\email-def-511724-591943.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\email-def-511724-592579.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\email-def-511724-598579.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\email-def-511724-9595.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\email-def-511724-9696.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\email-def-511745-514279.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\email-def-email-backgrounds.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\email-def-email-bcards.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\email-def-email-ecards.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\email-def-email-emoticons.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\email-def-email-estationery.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\email-def-email-funny.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\email-def-email-help.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\email-def-email-images.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\email-def-email-info.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\email-def-email-more.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\email-def-email-my.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\email-def-email-new2.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\email-def-email-options.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\email-def-email-people.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\email-def-email-photo.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\email-def-email-tell.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\email-def-email-temp.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\email-def-email-text.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\email-def-email-voice.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\email-def.cdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\email-premium-email-premium.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\email-t1-bg.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\email-temp-bg.res (
spcvrm
Regular Member
 
Posts: 20
Joined: January 5th, 2011, 7:36 pm

Re: Assistance needed to remove malware from my computer. Th

Unread postby spcvrm » January 23rd, 2011, 1:52 am

Here is the continued Malwarebytes' log.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\email-temp-bg.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\estatationery.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\flashpatch.js (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\flashpreview.htm (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\fs3.htm (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\hotbar_promo.htm (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\icon_checked_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\icon_close_pressed_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\icon_edit_preview.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\icon_edit_send.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\icon_flash_preview.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\icon_recently_used.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\icon_remove_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\icon_remove_pressed_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\icon_tell_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\icon_tell_pressed_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\icon_tree_null.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\icon_unchecked_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\icon_unchecked_pressed_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\img_barlayout.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\img_barlayout2.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\img_barlayout4.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\img_corner_left.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\img_local_logo.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\js2_basetemplate.js (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\js2_hbgroups.js (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\js2_hbobject3.js (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\js2_hbobjectset3.js (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\js2_hotbarwrapper.js (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\js2_iteratorsandreaders3nf.js (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\js2_pagingmoduleobj3.js (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\js2_texts3.js (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\js2_xmltree3nf.js (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\layout.cdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\linkpathlegal.txt (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\n.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\nav_bb_2.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\nav_b_2.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\nav_ff_2.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\nav_f_2.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\progress.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\pro_hb_fo_word.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\sales_buttons.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\searchbtn.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\submit.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\tab_bg.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\tab_bga.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\tab_bgia.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\tab_l.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\tab_la.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\tab_lia.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\tab_r.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\tab_ra.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\tab_ria.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\treedata_animations.xml (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\treedata_backgrounds.xml (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\treedata_ecards.xml (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\treedata_emoticons.xml (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\treedata_notifiers.xml (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\treedata_text.xml (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\tree_dots.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\tree_minus.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\tree_plus.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\1\zango_btn.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\030104_emte10_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\030104_emte11_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\030104_emte12_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\030104_emte13_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\030104_emte14_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\030104_emte19_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\030104_emte20_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\030104_emte21_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\030104_emte9_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\030203lib_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\033102angel_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\033102bigsmile_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\033102birthday_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\033102cheers_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\033102flo_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\033102good_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\033102jump_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\033102king_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\033102lough_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\033102luf_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\033102smiled_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\033102smile_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\033102sor_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\033102thanx_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\033102uhu_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\040103ahh_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\040104_emi2_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\042102_1134_112_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\050103big_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\050103gig_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\050103hm_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\050103nomail_emoti_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\050103norm_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\060104_ema16_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\060104_ema17_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\060104_ema18_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\060104_ema19_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\060104_ema20_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\060104_ema21_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\060104_ema24_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\060104_ema25_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\060104_ema26_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\060104_ema30_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\060104_ema33_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\060104_ema34_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\062802jumpie_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\080402argh_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\080402oops_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\080402ouch_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\033102bigluf_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\040103wow_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\060104_ema15_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\062802hippi_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\110103_peace_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\blocked.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\css2_main.css (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\email-def-511724-603763.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\email-def-email-new.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\icon_close_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\icon_sand-clock2.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\082502no_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\082502yes_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\110103_boring1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\110103_confused_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\110103_crying_ugly_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\110103_fantastic_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\110103_feel_better_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\110103_gimme_break_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\110103_heehee_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\110103_hlopaet_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\110103_ign_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\110103_lol_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\110103_no_comment_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\110103_smashing_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\110103_talk2thehand_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\avatar.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\blocked2.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\block_sm.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\block_sm2.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\block_smli.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\block_smli2.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\btn_add-but.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\btn_back-but.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\btn_left_cut_enabled_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\btn_left_enabled_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\btn_left_pressed_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\btn_middle_enabled_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\btn_middle_pressed_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\btn_right_cut_enabled_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\btn_right_enabled_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\btn_right_pressed_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\business_promo.htm (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\buttondir.txt (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\components.cdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\css2_pagingmodule.css (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\css2_topbuttons.css (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\css_cattree.css (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\css_flashpreview.css (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\cursors.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\delete.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\edit_clear_sound.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\edit_fs.htm (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\edit_select.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\email-def-511724-543450.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\email-def-511724-548964.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\email-def-511724-589306.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\email-def-511724-591943.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\email-def-511724-592579.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\email-def-511724-598579.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\email-def-511724-9595.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\email-def-511724-9696.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\email-def-511745-514279.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\email-def-email-backgrounds.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\email-def-email-bcards.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\email-def-email-ecards.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\email-def-email-emoticons.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\email-def-email-estationery.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\email-def-email-funny.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\email-def-email-help.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\email-def-email-images.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\email-def-email-info.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\email-def-email-more.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\email-def-email-my.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\email-def-email-new2.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\email-def-email-options.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\email-def-email-people.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\email-def-email-photo.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\email-def-email-tell.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\email-def-email-temp.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\email-def-email-text.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\email-def-email-voice.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\email-def.cdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\email-premium-email-premium.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\email-t1-bg.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\email-temp-bg.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\estatationery.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\flashpatch.js (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\flashpreview.htm (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\fs3.htm (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\hotbar_promo.htm (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\icon_checked_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\icon_close_pressed_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\icon_edit_preview.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\icon_edit_send.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\icon_flash_preview.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\icon_recently_used.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\icon_remove_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\icon_remove_pressed_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\icon_tell_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\icon_tell_pressed_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\icon_tree_null.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\icon_unchecked_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\icon_unchecked_pressed_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\img_barlayout.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\img_barlayout2.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\img_barlayout4.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\img_corner_left.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\img_local_logo.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\js2_basetemplate.js (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\js2_hbgroups.js (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\js2_hbobject3.js (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\js2_hbobjectset3.js (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\js2_hotbarwrapper.js (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\js2_iteratorsandreaders3nf.js (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\js2_pagingmoduleobj3.js (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\js2_texts3.js (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\js2_xmltree3nf.js (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\layout.cdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\linkpathlegal.txt (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\n.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\nav_bb_2.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\nav_b_2.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\nav_ff_2.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\nav_f_2.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\progress.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\pro_hb_fo_word.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\sales_buttons.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\searchbtn.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\submit.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\tab_bg.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\tab_bga.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\tab_bgia.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\tab_l.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\tab_la.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\tab_lia.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\tab_r.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\tab_ra.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\tab_ria.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\treedata_animations.xml (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\treedata_backgrounds.xml (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\treedata_ecards.xml (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\treedata_emoticons.xml (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\treedata_notifiers.xml (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\treedata_text.xml (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\tree_dots.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\tree_minus.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\tree_plus.gif (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\2\zango_btn.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\DownLoad\hotbar_promo.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\DownLoad\images.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\DownLoad\layout.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\DownLoad\linkpathlegal.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\DownLoad\localcontent.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\DownLoad\code.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\DownLoad\progress.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\DownLoad\pro_hb_fo_word.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\DownLoad\sales_buttons.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\DownLoad\buttondir.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\DownLoad\cursors.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\DownLoad\email-temp-bg.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\DownLoad\avatar.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\DownLoad\business_promo.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\DownLoad\treexml.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\DownLoad\zango_btn.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\DownLoad\email-def.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\HostOL\static\DownLoad\email-t1-bg.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\2021953.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\2893654.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\3786177.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\671709.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\1.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\102369.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\1023892.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\102447.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\1043399.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\1045675.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\1055546.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\1055670.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\1055683.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\1056174.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\1057652.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\1058909.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\1070524.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\113306.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\1139319.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\1169828.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\1192838.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\1202031.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\1211545.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\1255940.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\1272086.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\1308611.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\1384947.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\1385232.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\1385437.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\1386178.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\1388007.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\1388534.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\1389238.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\1395704.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\1395854.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\1401890.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\1406523.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\144984.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\1692522.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\1703865.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\186512.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\197447.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\3863864.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\3865381.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\387816.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\3893089.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\3893245.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\3893450.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\3893473.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\3893642.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\3894262.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\398142.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\428147.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\442926.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\484337.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\516440.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\517489.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\522859.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\543827.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\600583.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\611197.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\620184.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\632688.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\644440.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\651008.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\205037.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\208036.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\214389.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\215796.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\219827.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\2312042.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\2336680.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\2391879.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\2451.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\246954.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\2590073.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\2643193.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\266874.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\2729804.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\273974.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\2879530.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\2881352.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\2883916.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\2884305.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\2884308.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\2884708.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\691517.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\694029.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\698191.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\731481.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\759612.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\761071.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\770327.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\771994.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\776482.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\777882.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\817655.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\819382.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\849897.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\862636.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\884849.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\925705.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\975207.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\976123.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\992504.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\domains.txt (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\2901962.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\293215.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\299575.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\3240891.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\3251993.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\3348131.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\3380364.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\3403221.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\342101.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\3429068.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\351210.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\351966.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\352018.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\360608.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\3698327.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\3756141.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\3756201.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\3756256.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\3783112.sdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\dynamic\ustat\375b.dat (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\avatar.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\btntrans.idx (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\btntrans1.dat (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\buttondir.txt (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\components.cdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\cursors.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\default_explorer-mails.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\default_explorer-people.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\default_favorites.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\default_games.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\default_hide.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\default_hotbarcom.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\default_hotmail.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\default_hsskin.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\default_jemster.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\default_jemsterie.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\default_jemsteruk.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\default_jobsearch.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\default_mails.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\default_mobilesidewalk.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\default_new.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\default.cdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\default_511745-514279.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\default_bidzc_zt_ie-ca.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\default_bidzc_zt_ie-us.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\default_categorize.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\default_reun.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\default_ringtones.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\default_searchboxtrapper.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\default_searchfor.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\default_searchgo.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\default_weather.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\default_yellowpages.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\d_icons_buttons_1000.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\d_icons_buttons_3000.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\d_icons_buttons_bar.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\d_icons_buttons_bbar1.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\d_icons_buttons_logos.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\d_icons_buttons_other.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\d_icons_weather.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\editblbuttons.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\email-def-511724-548964.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\email-def-511724-9595.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\email-t1-bg.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\icons2.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\ie_games_icon.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\ie_video.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\keywords.idx (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\keywords1.dat (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\layout.cdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\linkpathlegal.txt (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\progress.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\sales_buttons.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\sdfmodifier.xml (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\s_icons_buttons.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\t2_bg.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\theweb.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\top7.cdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\top7_theweb.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\tsd_bg.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\zango_btn.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\zango_ie_menu.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\default_comparison.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\default_premium.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\1\d_icons_buttons_2000.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\avatar.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\btntrans.idx (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\btntrans1.dat (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\buttondir.txt (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\components.cdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\cursors.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\default_explorer-mails.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\default_explorer-people.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\default_favorites.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\default_games.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\default_hide.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\default_hotbarcom.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\default_hotmail.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\default_hsskin.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\default_jemster.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\default_jemsterie.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\default_jemsteruk.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\default_jobsearch.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\default_mails.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\default_mobilesidewalk.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\default_new.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\default.cdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\default_511745-514279.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\default_bidzc_zt_ie-ca.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\default_bidzc_zt_ie-us.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\default_categorize.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\default_reun.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\default_ringtones.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\default_searchboxtrapper.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\default_searchfor.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\default_searchgo.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\default_weather.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\default_yellowpages.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\d_icons_buttons_1000.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\d_icons_buttons_3000.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\d_icons_buttons_bar.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\d_icons_buttons_bbar1.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\d_icons_buttons_logos.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\d_icons_buttons_other.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\d_icons_weather.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\editblbuttons.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\email-def-511724-548964.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\email-def-511724-9595.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\email-t1-bg.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\icons2.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\ie_games_icon.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\ie_video.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\keywords.idx (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\keywords1.dat (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\layout.cdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\linkpathlegal.txt (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\progress.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\sales_buttons.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\sdfmodifier.xml (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\s_icons_buttons.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\t2_bg.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\theweb.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\top7.cdf (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\top7_theweb.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\tsd_bg.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\zango_btn.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\zango_ie_menu.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\default_comparison.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\default_premium.mnu (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\2\d_icons_buttons_2000.res (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\DownLoad\avatar.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\DownLoad\BtnTrans.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\DownLoad\btntrans1.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\DownLoad\buttondir.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\DownLoad\editblbuttons.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\DownLoad\email-t1-bg.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\DownLoad\icons2.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\DownLoad\samplegroups2.txt (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\DownLoad\samplegroups2.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\DownLoad\sdfmodifier.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\DownLoad\s_icons_buttons.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\DownLoad\t2_bg.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\DownLoad\top7.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\DownLoad\tsd_bg.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\DownLoad\zango_btn.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\DownLoad\zango_ie_menu.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\DownLoad\ie_video.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\DownLoad\keywords.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\DownLoad\keywords1.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\DownLoad\layout.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\DownLoad\linkpathlegal.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\DownLoad\progress.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\DownLoad\d_icons_buttons_1000.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\DownLoad\d_icons_buttons_2000.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\DownLoad\d_icons_buttons_3000.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\DownLoad\d_icons_buttons_bar.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\DownLoad\d_icons_buttons_bbar1.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\DownLoad\d_icons_buttons_logos.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\DownLoad\d_icons_buttons_other.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\DownLoad\default.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\DownLoad\cursors.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\DownLoad\d_icons_weather.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\DownLoad\ie_games_icon.xip (Adware.Zango) -> Quarantined and deleted successfully.
c:\documents and settings\Owner\application data\Zango\v3.0\Zango\static\DownLoad\sales_buttons.xip (Adware.Zango) -> Quarantined and deleted successfully.
spcvrm
Regular Member
 
Posts: 20
Joined: January 5th, 2011, 7:36 pm

Re: Assistance needed to remove malware from my computer. Th

Unread postby spcvrm » January 23rd, 2011, 1:56 am

Here is the RSIT log I just ranLogfile of random's system information tool 1.08 (written by random/random)
Run by Owner at 2011-01-23 00:53:32
Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 98 GB (68%) free of 146 GB
Total RAM: 1015 MB (50% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:53:43 AM, on 1/23/2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files\AVG\AVG10\avgwdsvc.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
C:\Program Files\Common Files\New Boundary\PrismXL\PRISMXL.SYS
C:\Program Files\CyberLink\Shared Files\RichVideo.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe
C:\Program Files\AVG\AVG10\avgnsx.exe
C:\Program Files\AVG\AVG10\avgemcx.exe
C:\Program Files\AVG\AVG10\avgrsx.exe
C:\Program Files\AVG\AVG10\avgcsrvx.exe
C:\Program Files\AVG\AVG10\avgchsvx.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\zHotkey.exe
C:\WINDOWS\ModPS2Key.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\AVG\AVG10\avgtray.exe
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
C:\Program Files\Messenger\msmsgs.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\PROGRA~1\HEWLET~1\HPSHAR~1\hpgs2wnf.exe
C:\Program Files\Common Files\Nikon\Monitor\NkMonitor.exe
C:\Program Files\AVG\AVG10\Identity Protection\agent\bin\avgidsmonitor.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\AVG\AVG10\avgcsrvx.exe
C:\Program Files\Outlook Express\msimn.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\0QC22S2Y\RSIT[1].exe
C:\Program Files\trend micro\Owner.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.gateway.com/g/startpage.html ... TP&M=W3650
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.gateway.com/g/startpage.html ... TP&M=W3650
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG10\avgssie.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.6.5612.1312\swg.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [CHotkey] zHotkey.exe
O4 - HKLM\..\Run: [ShowWnd] ShowWnd.exe
O4 - HKLM\..\Run: [ModPS2] ModPS2Key.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [Recguard] %WINDIR%\SMINST\RECGUARD.EXE
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [LanguageShortcut] "C:\Program Files\CyberLink\PowerDVD\Language\Language.exe"
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [zzzHPSETUP] E:\Setup.exe
O4 - HKLM\..\Run: [Share-to-Web Namespace Daemon] C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [CanonSolutionMenu] C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe /logon
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [AVG_TRAY] C:\Program Files\AVG\AVG10\avgtray.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKCU\..\Run: [EPSON Stylus Photo R280 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATICKA.EXE /FU "C:\WINDOWS\TEMP\E_S120.tmp" /EF "HKCU"
O4 - HKUS\S-1-5-18\..\RunOnce: [RunNarrator] Narrator.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [RunNarrator] Narrator.exe (User 'Default user')
O4 - Startup: OneNote 2007 Screen Clipper and Launcher.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
O4 - Global Startup: Nikon Monitor.lnk = C:\Program Files\Common Files\Nikon\Monitor\NkMonitor.exe
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: PokerStars.net - {FA9B9510-9FCB-4ca0-818C-5D0987B47C4D} - C:\Program Files\PokerStars.NET\PokerStarsUpdate.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {1239CC52-59EF-4DFA-8C61-90FFA846DF7E} (Musicnotes Viewer) - http://www.musicnotes.com/download/mnviewer.cab
O16 - DPF: {3DCEC959-378A-4922-AD7E-FD5C925D927F} (Disney Online Games ActiveX Control) - http://disney.go.com/pirates/online/tes ... eGames.cab
O16 - DPF: {406B5949-7190-4245-91A9-30A17DE16AD0} (Snapfish Activia) - http://www.yorkphoto.com/YorkActivia.cab
O16 - DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/200 ... ader55.cab
O16 - DPF: {BCBC9371-595D-11D4-A96D-00105A1CEF6C} (View22RTE Class) - http://onlinedesigner.hgtv.com/images/app/view22rte.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG10\avgpp.dll
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe
O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG10\avgwdsvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: GameConsoleService - WildTangent, Inc. - C:\Program Files\eMachines Games\eMachines Game Console\GameConsoleService.exe
O23 - Service: Google Desktop Manager 5.9.1005.12335 (GoogleDesktopManager-051210-111108) - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Inkjet Printer/Scanner Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: PrismXL - New Boundary Technologies, Inc. - C:\Program Files\Common Files\New Boundary\PrismXL\PRISMXL.SYS
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe

--
End of file - 10549 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\AppleSoftwareUpdate.job
C:\WINDOWS\tasks\Google Software Updater.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\tasks\Norton PC Checkup Weekday Scanner.job
C:\WINDOWS\tasks\Norton PC Checkup Weekend Scanner.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-22 75200]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files\AVG\AVG10\avgssie.dll [2010-11-22 2732896]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
SSVHelper Class - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll [2008-06-10 509328]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2009-11-22 256112]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.6.5612.1312\swg.dll [2010-10-05 842296]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2009-11-22 256112]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2008-03-15 98304]
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2008-03-15 114688]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2008-03-15 94208]
"CHotkey"=C:\WINDOWS\zHotkey.exe [2006-11-07 547840]
"ShowWnd"=C:\WINDOWS\ShowWnd.exe [2005-01-27 36864]
"ModPS2"=C:\WINDOWS\ModPS2Key.exe [2006-11-07 53248]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2008-03-16 16132608]
"Alcmtr"=C:\WINDOWS\ALCMTR.EXE [2008-03-16 69632]
"Recguard"=C:\WINDOWS\SMINST\RECGUARD.EXE [2002-09-14 212992]
"RemoteControl"=C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe [2006-12-06 69216]
"LanguageShortcut"=C:\Program Files\CyberLink\PowerDVD\Language\Language.exe [2006-12-06 54832]
"Google Desktop Search"=C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [2010-07-26 30192]
"zzzHPSETUP"=E:\Setup.exe []
"Share-to-Web Namespace Daemon"=C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe [2001-07-03 57344]
"AppleSyncNotifier"=C:\Program Files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe [2010-03-16 47392]
"QuickTime Task"=C:\Program Files\QuickTime\qttask.exe [2010-03-17 421888]
"iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2010-07-16 141608]
"CanonSolutionMenu"=C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe [2008-03-10 689488]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2010-09-23 35760]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-09-20 932288]
"AVG_TRAY"=C:\Program Files\AVG\AVG10\avgtray.exe [2010-10-22 2745696]
"SunJavaUpdateSched"=C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe [2008-06-10 144784]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"MSMSGS"=C:\Program Files\Messenger\msmsgs.exe [2008-04-13 1695232]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-13 15360]
"swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2009-11-22 39408]
"EPSON Stylus Photo R280 Series"=C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATICKA.EXE [2007-04-13 182272]

C:\Documents and Settings\All Users\Start Menu\Programs\Startup
Nikon Monitor.lnk - C:\Program Files\Common Files\Nikon\Monitor\NkMonitor.exe

C:\Documents and Settings\Owner\Start Menu\Programs\Startup
OneNote 2007 Screen Clipper and Launcher.lnk - C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2008-03-15 155648]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\CyberLink\PowerDVD\PowerDVD.exe"="C:\Program Files\CyberLink\PowerDVD\PowerDVD.exe:*:Enabled:CyberLink PowerDVD"
"C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE"="C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote"
"C:\Program Files\AVG\AVG8\avgemc.exe"="C:\Program Files\AVG\AVG8\avgemc.exe:*:Enabled:avgemc.exe"
"C:\Program Files\AVG\AVG8\avgupd.exe"="C:\Program Files\AVG\AVG8\avgupd.exe:*:Enabled:avgupd.exe"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Sony Online Entertainment\Installed Games\EverQuest II\EQ2VoiceService.exe"="C:\Program Files\Sony Online Entertainment\Installed Games\EverQuest II\EQ2VoiceService.exe:*:Disabled:EQ2VoiceService"
"C:\Program Files\Bonjour\mDNSResponder.exe"="C:\Program Files\Bonjour\mDNSResponder.exe:*:Enabled:Bonjour Service"
"C:\Program Files\iTunes\iTunes.exe"="C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes"
"C:\Program Files\AVG\AVG10\avgmfapx.exe"="C:\Program Files\AVG\AVG10\avgmfapx.exe:*:Enabled:AVG Installer"
"C:\Program Files\Google\Google Earth\plugin\geplugin.exe"="C:\Program Files\Google\Google Earth\plugin\geplugin.exe:*:Enabled:Google Earth"
"C:\Program Files\AVG\AVG10\avgnsx.exe"="C:\Program Files\AVG\AVG10\avgnsx.exe:*:Enabled:Online Shield"
"C:\Program Files\AVG\AVG10\avgemcx.exe"="C:\Program Files\AVG\AVG10\avgemcx.exe:*:Enabled:Personal E-mail Scanner"
"C:\WINDOWS\system32\spoolsv.exe"="C:\WINDOWS\system32\spoolsv.exe:*:Enabled:spoolsv.exe"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"

======List of files/folders created in the last 1 months======

2011-01-21 12:47:58 ----D---- C:\rsit
2011-01-21 12:00:56 ----D---- C:\Documents and Settings\Owner\Application Data\Malwarebytes
2011-01-21 12:00:48 ----A---- C:\WINDOWS\system32\drivers\mbamswissarmy.sys
2011-01-21 12:00:47 ----D---- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2011-01-21 12:00:44 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2011-01-21 12:00:44 ----A---- C:\WINDOWS\system32\drivers\mbam.sys
2011-01-20 03:21:52 ----D---- C:\WINDOWS\system32\MpEngineStore
2011-01-20 03:04:07 ----A---- C:\WINDOWS\system32\MRT.INI
2011-01-20 03:01:21 ----HDC---- C:\WINDOWS\$NtUninstallKB2419632$
2010-12-31 12:09:23 ----AD---- C:\Documents and Settings\All Users\Application Data\TEMP
2010-12-31 11:56:54 ----D---- C:\Documents and Settings\All Users\Application Data\Google Updater
2010-12-27 01:01:56 ----D---- C:\Program Files\Trend Micro

======List of files/folders modified in the last 1 months======

2011-01-23 00:33:46 ----D---- C:\WINDOWS\Prefetch
2011-01-22 22:50:02 ----D---- C:\WINDOWS\Temp
2011-01-22 22:50:02 ----A---- C:\WINDOWS\SchedLgU.Txt
2011-01-22 14:15:12 ----SHD---- C:\WINDOWS\Installer
2011-01-22 14:15:07 ----SHD---- C:\Config.Msi
2011-01-22 14:14:47 ----D---- C:\WINDOWS\system32
2011-01-22 14:13:05 ----D---- C:\WINDOWS\system32\CatRoot2
2011-01-22 14:12:25 ----SD---- C:\WINDOWS\Tasks
2011-01-22 11:19:12 ----D---- C:\WINDOWS\system32\drivers\AVG
2011-01-21 20:30:15 ----HD---- C:\WINDOWS\inf
2011-01-21 12:36:21 ----HDC---- C:\WINDOWS\$NtUninstallKB956391$
2011-01-21 12:36:20 ----D---- C:\WINDOWS\system32\drivers
2011-01-21 12:33:22 ----SHD---- C:\RECYCLER
2011-01-21 12:33:22 ----D---- C:\WINDOWS
2011-01-21 12:02:21 ----RD---- C:\Program Files
2011-01-20 03:01:35 ----A---- C:\WINDOWS\system32\MRT.exe
2011-01-20 03:01:31 ----RSHDC---- C:\WINDOWS\system32\dllcache
2011-01-19 21:53:32 ----D---- C:\Documents and Settings\All Users\Application Data\AVG10
2011-01-19 20:38:23 ----HD---- C:\WINDOWS\$hf_mig$
2011-01-19 19:51:40 ----SD---- C:\WINDOWS\Downloaded Program Files
2011-01-19 19:47:26 ----D---- C:\Program Files\Spybot - Search & Destroy
2011-01-19 19:47:24 ----D---- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
2011-01-19 19:46:41 ----D---- C:\Program Files\Java
2011-01-19 19:10:18 ----D---- C:\Program Files\Common Files
2011-01-19 19:06:56 ----SHD---- C:\System Volume Information
2011-01-15 23:05:35 ----D---- C:\WINDOWS\system32\CatRoot
2011-01-05 17:36:08 ----D---- C:\WINDOWS\network diagnostic
2011-01-01 08:49:48 ----D---- C:\Documents and Settings\All Users\Application Data\Adobe
2010-12-31 12:10:05 ----D---- C:\WINDOWS\WinSxS
2010-12-31 12:07:18 ----D---- C:\Program Files\Common Files\Adobe
2010-12-31 12:06:22 ----D---- C:\Program Files\Adobe
2010-12-31 12:04:56 ----D---- C:\Program Files\Google
2010-12-24 22:49:05 ----D---- C:\Documents and Settings\Owner\Application Data\Google

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 agp440;Intel AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\agp440.sys [2008-04-13 42368]
R0 agpCPQ;Compaq AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\agpCPQ.sys [2008-04-13 44928]
R0 alim1541;ALI AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\alim1541.sys [2008-04-13 42752]
R0 amdagp;AMD AGP Bus Filter Driver; C:\WINDOWS\system32\DRIVERS\amdagp.sys [2008-04-13 43008]
R0 AVGIDSEH;AVGIDSEH; C:\WINDOWS\system32\DRIVERS\AVGIDSEH.Sys [2010-09-13 25680]
R0 Avgrkx86;AVG Anti-Rootkit Driver; C:\WINDOWS\system32\DRIVERS\avgrkx86.sys [2010-09-07 26064]
R0 cbidf;cbidf; C:\WINDOWS\system32\DRIVERS\cbidf2k.sys [2001-08-17 13952]
R0 ohci1394;Texas Instruments OHCI Compliant IEEE 1394 Host Controller; C:\WINDOWS\system32\DRIVERS\ohci1394.sys [2008-04-13 61696]
R0 PxHelp20;PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys [2008-11-20 43872]
R0 sisagp;SIS AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\sisagp.sys [2008-04-13 40960]
R0 viaagp;VIA AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\viaagp.sys [2008-04-13 42240]
R1 Avgldx86;AVG AVI Loader Driver; C:\WINDOWS\system32\DRIVERS\avgldx86.sys [2010-09-07 249424]
R1 Avgmfx86;AVG Mini-Filter Resident Anti-Virus Shield; C:\WINDOWS\system32\DRIVERS\avgmfx86.sys [2010-09-07 34384]
R1 Avgtdix;AVG TDI Driver; C:\WINDOWS\system32\DRIVERS\avgtdix.sys [2010-11-09 299984]
R1 intelppm;Intel Processor Driver; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-13 36352]
R3 Afc;PPdus ASPI Shell; C:\WINDOWS\system32\drivers\Afc.sys [2005-02-23 11776]
R3 AgereSoftModem;Agere Systems Soft Modem; C:\WINDOWS\system32\DRIVERS\AGRSM.sys [2005-09-23 1094751]
R3 AVGIDSDriver;AVGIDSDriver; C:\WINDOWS\system32\DRIVERS\AVGIDSDriver.Sys [2010-08-19 123472]
R3 AVGIDSFilter;AVGIDSFilter; C:\WINDOWS\system32\DRIVERS\AVGIDSFilter.Sys [2010-08-19 30288]
R3 AVGIDSShim;AVGIDSShim; C:\WINDOWS\system32\DRIVERS\AVGIDSShim.Sys [2010-08-19 26192]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys [2009-05-18 26600]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\igxpmp32.sys [2008-03-15 1181824]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2008-03-16 4402176]
R3 RTL8023xp;Realtek 10/100/1000 NIC Family all in one NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtnicxp.sys [2008-03-16 81408]
R3 usbprint;Microsoft USB PRINTER Class; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
R3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
S1 kbdhid;Keyboard HID Driver; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-13 14592]
S3 Arp1394;1394 ARP Client Protocol; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-13 60800]
S3 el575nd5;3Com Megahertz 10/100 LAN CardBus PC Card Driver; C:\WINDOWS\system32\DRIVERS\el575nd5.sys [2001-08-17 69692]
S3 HidUsb;Microsoft HID Class Driver; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
S3 mouhid;Mouse HID Driver; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-08-17 12160]
S3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-13 61824]
S3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver; C:\WINDOWS\system32\DRIVERS\RTL8139.SYS [2004-08-04 20992]
S3 sdbus;sdbus; C:\WINDOWS\system32\DRIVERS\sdbus.sys [2008-04-13 79232]
S3 SymIM;Symantec Network Security Intermediate Filter Service; C:\WINDOWS\system32\DRIVERS\SymIM.sys []
S3 SymIMMP;SymIMMP; C:\WINDOWS\system32\DRIVERS\SymIM.sys []
S3 USBAAPL;Apple Mobile USB Driver; C:\WINDOWS\System32\Drivers\usbaapl.sys [2010-04-19 41984]
S3 usbccgp;Microsoft USB Generic Parent Driver; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
S3 usbscan;USB Scanner Driver; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 USBSTOR;USB Mass Storage Driver; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2010-06-10 144176]
R2 AVGIDSAgent;AVGIDSAgent; C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe [2010-11-23 6128208]
R2 avgwd;AVG WatchDog; C:\Program Files\AVG\AVG10\avgwdsvc.exe [2010-10-22 265400]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2010-05-18 345376]
R2 IJPLMSVC;Inkjet Printer/Scanner Extended Survey Program; C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE [2008-01-22 103808]
R2 PrismXL;PrismXL; C:\Program Files\Common Files\New Boundary\PrismXL\PRISMXL.SYS [2006-06-30 65536]
R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files\CyberLink\Shared Files\RichVideo.exe [2008-03-16 167936]
R3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2010-07-16 540968]
S2 gupdate;Google Update Service (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-12-24 136176]
S2 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2010-12-31 194104]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 GameConsoleService;GameConsoleService; C:\Program Files\eMachines Games\eMachines Game Console\GameConsoleService.exe [2007-08-29 181800]
S3 GoogleDesktopManager-051210-111108;Google Desktop Manager 5.9.1005.12335; C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [2010-07-26 30192]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-03 69632]
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WMPNetworkSvc;Windows Media Player Network Sharing Service; C:\Program Files\Windows Media Player\WMPNetwk.exe [2006-10-18 913408]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-13 14336]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------
.
spcvrm
Regular Member
 
Posts: 20
Joined: January 5th, 2011, 7:36 pm

Re: Assistance needed to remove malware from my computer. Th

Unread postby Gizzy » January 23rd, 2011, 3:28 am

Hi spcvrm,

The other RSIT log info.txt should be in the C:\rsit folder, Please post it.
Along with an update on how your computer is running now.
User avatar
Gizzy
Retired Graduate
 
Posts: 1101
Joined: December 30th, 2008, 9:54 pm
Location: NJ, USA

Re: Assistance needed to remove malware from my computer. Th

Unread postby spcvrm » January 24th, 2011, 8:23 pm

Logfile of random's system information tool 1.08 (written by random/random)
Run by Owner at 2011-01-23 00:53:32
Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 98 GB (68%) free of 146 GB
Total RAM: 1015 MB (50% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:53:43 AM, on 1/23/2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files\AVG\AVG10\avgwdsvc.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
C:\Program Files\Common Files\New Boundary\PrismXL\PRISMXL.SYS
C:\Program Files\CyberLink\Shared Files\RichVideo.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe
C:\Program Files\AVG\AVG10\avgnsx.exe
C:\Program Files\AVG\AVG10\avgemcx.exe
C:\Program Files\AVG\AVG10\avgrsx.exe
C:\Program Files\AVG\AVG10\avgcsrvx.exe
C:\Program Files\AVG\AVG10\avgchsvx.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\zHotkey.exe
C:\WINDOWS\ModPS2Key.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\AVG\AVG10\avgtray.exe
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
C:\Program Files\Messenger\msmsgs.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\PROGRA~1\HEWLET~1\HPSHAR~1\hpgs2wnf.exe
C:\Program Files\Common Files\Nikon\Monitor\NkMonitor.exe
C:\Program Files\AVG\AVG10\Identity Protection\agent\bin\avgidsmonitor.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\AVG\AVG10\avgcsrvx.exe
C:\Program Files\Outlook Express\msimn.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\0QC22S2Y\RSIT[1].exe
C:\Program Files\trend micro\Owner.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.gateway.com/g/startpage.html ... TP&M=W3650
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.gateway.com/g/startpage.html ... TP&M=W3650
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG10\avgssie.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.6.5612.1312\swg.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [CHotkey] zHotkey.exe
O4 - HKLM\..\Run: [ShowWnd] ShowWnd.exe
O4 - HKLM\..\Run: [ModPS2] ModPS2Key.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [Recguard] %WINDIR%\SMINST\RECGUARD.EXE
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [LanguageShortcut] "C:\Program Files\CyberLink\PowerDVD\Language\Language.exe"
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [zzzHPSETUP] E:\Setup.exe
O4 - HKLM\..\Run: [Share-to-Web Namespace Daemon] C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [CanonSolutionMenu] C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe /logon
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [AVG_TRAY] C:\Program Files\AVG\AVG10\avgtray.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKCU\..\Run: [EPSON Stylus Photo R280 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATICKA.EXE /FU "C:\WINDOWS\TEMP\E_S120.tmp" /EF "HKCU"
O4 - HKUS\S-1-5-18\..\RunOnce: [RunNarrator] Narrator.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [RunNarrator] Narrator.exe (User 'Default user')
O4 - Startup: OneNote 2007 Screen Clipper and Launcher.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
O4 - Global Startup: Nikon Monitor.lnk = C:\Program Files\Common Files\Nikon\Monitor\NkMonitor.exe
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: PokerStars.net - {FA9B9510-9FCB-4ca0-818C-5D0987B47C4D} - C:\Program Files\PokerStars.NET\PokerStarsUpdate.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {1239CC52-59EF-4DFA-8C61-90FFA846DF7E} (Musicnotes Viewer) - http://www.musicnotes.com/download/mnviewer.cab
O16 - DPF: {3DCEC959-378A-4922-AD7E-FD5C925D927F} (Disney Online Games ActiveX Control) - http://disney.go.com/pirates/online/tes ... eGames.cab
O16 - DPF: {406B5949-7190-4245-91A9-30A17DE16AD0} (Snapfish Activia) - http://www.yorkphoto.com/YorkActivia.cab
O16 - DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/200 ... ader55.cab
O16 - DPF: {BCBC9371-595D-11D4-A96D-00105A1CEF6C} (View22RTE Class) - http://onlinedesigner.hgtv.com/images/app/view22rte.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG10\avgpp.dll
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe
O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG10\avgwdsvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: GameConsoleService - WildTangent, Inc. - C:\Program Files\eMachines Games\eMachines Game Console\GameConsoleService.exe
O23 - Service: Google Desktop Manager 5.9.1005.12335 (GoogleDesktopManager-051210-111108) - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Inkjet Printer/Scanner Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: PrismXL - New Boundary Technologies, Inc. - C:\Program Files\Common Files\New Boundary\PrismXL\PRISMXL.SYS
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe

--
End of file - 10549 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\AppleSoftwareUpdate.job
C:\WINDOWS\tasks\Google Software Updater.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\tasks\Norton PC Checkup Weekday Scanner.job
C:\WINDOWS\tasks\Norton PC Checkup Weekend Scanner.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-22 75200]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files\AVG\AVG10\avgssie.dll [2010-11-22 2732896]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
SSVHelper Class - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll [2008-06-10 509328]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2009-11-22 256112]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.6.5612.1312\swg.dll [2010-10-05 842296]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2009-11-22 256112]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2008-03-15 98304]
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2008-03-15 114688]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2008-03-15 94208]
"CHotkey"=C:\WINDOWS\zHotkey.exe [2006-11-07 547840]
"ShowWnd"=C:\WINDOWS\ShowWnd.exe [2005-01-27 36864]
"ModPS2"=C:\WINDOWS\ModPS2Key.exe [2006-11-07 53248]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2008-03-16 16132608]
"Alcmtr"=C:\WINDOWS\ALCMTR.EXE [2008-03-16 69632]
"Recguard"=C:\WINDOWS\SMINST\RECGUARD.EXE [2002-09-14 212992]
"RemoteControl"=C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe [2006-12-06 69216]
"LanguageShortcut"=C:\Program Files\CyberLink\PowerDVD\Language\Language.exe [2006-12-06 54832]
"Google Desktop Search"=C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [2010-07-26 30192]
"zzzHPSETUP"=E:\Setup.exe []
"Share-to-Web Namespace Daemon"=C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe [2001-07-03 57344]
"AppleSyncNotifier"=C:\Program Files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe [2010-03-16 47392]
"QuickTime Task"=C:\Program Files\QuickTime\qttask.exe [2010-03-17 421888]
"iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2010-07-16 141608]
"CanonSolutionMenu"=C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe [2008-03-10 689488]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2010-09-23 35760]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-09-20 932288]
"AVG_TRAY"=C:\Program Files\AVG\AVG10\avgtray.exe [2010-10-22 2745696]
"SunJavaUpdateSched"=C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe [2008-06-10 144784]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"MSMSGS"=C:\Program Files\Messenger\msmsgs.exe [2008-04-13 1695232]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-13 15360]
"swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2009-11-22 39408]
"EPSON Stylus Photo R280 Series"=C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATICKA.EXE [2007-04-13 182272]

C:\Documents and Settings\All Users\Start Menu\Programs\Startup
Nikon Monitor.lnk - C:\Program Files\Common Files\Nikon\Monitor\NkMonitor.exe

C:\Documents and Settings\Owner\Start Menu\Programs\Startup
OneNote 2007 Screen Clipper and Launcher.lnk - C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2008-03-15 155648]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\CyberLink\PowerDVD\PowerDVD.exe"="C:\Program Files\CyberLink\PowerDVD\PowerDVD.exe:*:Enabled:CyberLink PowerDVD"
"C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE"="C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote"
"C:\Program Files\AVG\AVG8\avgemc.exe"="C:\Program Files\AVG\AVG8\avgemc.exe:*:Enabled:avgemc.exe"
"C:\Program Files\AVG\AVG8\avgupd.exe"="C:\Program Files\AVG\AVG8\avgupd.exe:*:Enabled:avgupd.exe"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Sony Online Entertainment\Installed Games\EverQuest II\EQ2VoiceService.exe"="C:\Program Files\Sony Online Entertainment\Installed Games\EverQuest II\EQ2VoiceService.exe:*:Disabled:EQ2VoiceService"
"C:\Program Files\Bonjour\mDNSResponder.exe"="C:\Program Files\Bonjour\mDNSResponder.exe:*:Enabled:Bonjour Service"
"C:\Program Files\iTunes\iTunes.exe"="C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes"
"C:\Program Files\AVG\AVG10\avgmfapx.exe"="C:\Program Files\AVG\AVG10\avgmfapx.exe:*:Enabled:AVG Installer"
"C:\Program Files\Google\Google Earth\plugin\geplugin.exe"="C:\Program Files\Google\Google Earth\plugin\geplugin.exe:*:Enabled:Google Earth"
"C:\Program Files\AVG\AVG10\avgnsx.exe"="C:\Program Files\AVG\AVG10\avgnsx.exe:*:Enabled:Online Shield"
"C:\Program Files\AVG\AVG10\avgemcx.exe"="C:\Program Files\AVG\AVG10\avgemcx.exe:*:Enabled:Personal E-mail Scanner"
"C:\WINDOWS\system32\spoolsv.exe"="C:\WINDOWS\system32\spoolsv.exe:*:Enabled:spoolsv.exe"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"

======List of files/folders created in the last 1 months======

2011-01-21 12:47:58 ----D---- C:\rsit
2011-01-21 12:00:56 ----D---- C:\Documents and Settings\Owner\Application Data\Malwarebytes
2011-01-21 12:00:48 ----A---- C:\WINDOWS\system32\drivers\mbamswissarmy.sys
2011-01-21 12:00:47 ----D---- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2011-01-21 12:00:44 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2011-01-21 12:00:44 ----A---- C:\WINDOWS\system32\drivers\mbam.sys
2011-01-20 03:21:52 ----D---- C:\WINDOWS\system32\MpEngineStore
2011-01-20 03:04:07 ----A---- C:\WINDOWS\system32\MRT.INI
2011-01-20 03:01:21 ----HDC---- C:\WINDOWS\$NtUninstallKB2419632$
2010-12-31 12:09:23 ----AD---- C:\Documents and Settings\All Users\Application Data\TEMP
2010-12-31 11:56:54 ----D---- C:\Documents and Settings\All Users\Application Data\Google Updater
2010-12-27 01:01:56 ----D---- C:\Program Files\Trend Micro

======List of files/folders modified in the last 1 months======

2011-01-23 00:33:46 ----D---- C:\WINDOWS\Prefetch
2011-01-22 22:50:02 ----D---- C:\WINDOWS\Temp
2011-01-22 22:50:02 ----A---- C:\WINDOWS\SchedLgU.Txt
2011-01-22 14:15:12 ----SHD---- C:\WINDOWS\Installer
2011-01-22 14:15:07 ----SHD---- C:\Config.Msi
2011-01-22 14:14:47 ----D---- C:\WINDOWS\system32
2011-01-22 14:13:05 ----D---- C:\WINDOWS\system32\CatRoot2
2011-01-22 14:12:25 ----SD---- C:\WINDOWS\Tasks
2011-01-22 11:19:12 ----D---- C:\WINDOWS\system32\drivers\AVG
2011-01-21 20:30:15 ----HD---- C:\WINDOWS\inf
2011-01-21 12:36:21 ----HDC---- C:\WINDOWS\$NtUninstallKB956391$
2011-01-21 12:36:20 ----D---- C:\WINDOWS\system32\drivers
2011-01-21 12:33:22 ----SHD---- C:\RECYCLER
2011-01-21 12:33:22 ----D---- C:\WINDOWS
2011-01-21 12:02:21 ----RD---- C:\Program Files
2011-01-20 03:01:35 ----A---- C:\WINDOWS\system32\MRT.exe
2011-01-20 03:01:31 ----RSHDC---- C:\WINDOWS\system32\dllcache
2011-01-19 21:53:32 ----D---- C:\Documents and Settings\All Users\Application Data\AVG10
2011-01-19 20:38:23 ----HD---- C:\WINDOWS\$hf_mig$
2011-01-19 19:51:40 ----SD---- C:\WINDOWS\Downloaded Program Files
2011-01-19 19:47:26 ----D---- C:\Program Files\Spybot - Search & Destroy
2011-01-19 19:47:24 ----D---- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
2011-01-19 19:46:41 ----D---- C:\Program Files\Java
2011-01-19 19:10:18 ----D---- C:\Program Files\Common Files
2011-01-19 19:06:56 ----SHD---- C:\System Volume Information
2011-01-15 23:05:35 ----D---- C:\WINDOWS\system32\CatRoot
2011-01-05 17:36:08 ----D---- C:\WINDOWS\network diagnostic
2011-01-01 08:49:48 ----D---- C:\Documents and Settings\All Users\Application Data\Adobe
2010-12-31 12:10:05 ----D---- C:\WINDOWS\WinSxS
2010-12-31 12:07:18 ----D---- C:\Program Files\Common Files\Adobe
2010-12-31 12:06:22 ----D---- C:\Program Files\Adobe
2010-12-31 12:04:56 ----D---- C:\Program Files\Google
2010-12-24 22:49:05 ----D---- C:\Documents and Settings\Owner\Application Data\Google

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 agp440;Intel AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\agp440.sys [2008-04-13 42368]
R0 agpCPQ;Compaq AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\agpCPQ.sys [2008-04-13 44928]
R0 alim1541;ALI AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\alim1541.sys [2008-04-13 42752]
R0 amdagp;AMD AGP Bus Filter Driver; C:\WINDOWS\system32\DRIVERS\amdagp.sys [2008-04-13 43008]
R0 AVGIDSEH;AVGIDSEH; C:\WINDOWS\system32\DRIVERS\AVGIDSEH.Sys [2010-09-13 25680]
R0 Avgrkx86;AVG Anti-Rootkit Driver; C:\WINDOWS\system32\DRIVERS\avgrkx86.sys [2010-09-07 26064]
R0 cbidf;cbidf; C:\WINDOWS\system32\DRIVERS\cbidf2k.sys [2001-08-17 13952]
R0 ohci1394;Texas Instruments OHCI Compliant IEEE 1394 Host Controller; C:\WINDOWS\system32\DRIVERS\ohci1394.sys [2008-04-13 61696]
R0 PxHelp20;PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys [2008-11-20 43872]
R0 sisagp;SIS AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\sisagp.sys [2008-04-13 40960]
R0 viaagp;VIA AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\viaagp.sys [2008-04-13 42240]
R1 Avgldx86;AVG AVI Loader Driver; C:\WINDOWS\system32\DRIVERS\avgldx86.sys [2010-09-07 249424]
R1 Avgmfx86;AVG Mini-Filter Resident Anti-Virus Shield; C:\WINDOWS\system32\DRIVERS\avgmfx86.sys [2010-09-07 34384]
R1 Avgtdix;AVG TDI Driver; C:\WINDOWS\system32\DRIVERS\avgtdix.sys [2010-11-09 299984]
R1 intelppm;Intel Processor Driver; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-13 36352]
R3 Afc;PPdus ASPI Shell; C:\WINDOWS\system32\drivers\Afc.sys [2005-02-23 11776]
R3 AgereSoftModem;Agere Systems Soft Modem; C:\WINDOWS\system32\DRIVERS\AGRSM.sys [2005-09-23 1094751]
R3 AVGIDSDriver;AVGIDSDriver; C:\WINDOWS\system32\DRIVERS\AVGIDSDriver.Sys [2010-08-19 123472]
R3 AVGIDSFilter;AVGIDSFilter; C:\WINDOWS\system32\DRIVERS\AVGIDSFilter.Sys [2010-08-19 30288]
R3 AVGIDSShim;AVGIDSShim; C:\WINDOWS\system32\DRIVERS\AVGIDSShim.Sys [2010-08-19 26192]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys [2009-05-18 26600]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\igxpmp32.sys [2008-03-15 1181824]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2008-03-16 4402176]
R3 RTL8023xp;Realtek 10/100/1000 NIC Family all in one NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtnicxp.sys [2008-03-16 81408]
R3 usbprint;Microsoft USB PRINTER Class; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
R3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
S1 kbdhid;Keyboard HID Driver; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-13 14592]
S3 Arp1394;1394 ARP Client Protocol; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-13 60800]
S3 el575nd5;3Com Megahertz 10/100 LAN CardBus PC Card Driver; C:\WINDOWS\system32\DRIVERS\el575nd5.sys [2001-08-17 69692]
S3 HidUsb;Microsoft HID Class Driver; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
S3 mouhid;Mouse HID Driver; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-08-17 12160]
S3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-13 61824]
S3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver; C:\WINDOWS\system32\DRIVERS\RTL8139.SYS [2004-08-04 20992]
S3 sdbus;sdbus; C:\WINDOWS\system32\DRIVERS\sdbus.sys [2008-04-13 79232]
S3 SymIM;Symantec Network Security Intermediate Filter Service; C:\WINDOWS\system32\DRIVERS\SymIM.sys []
S3 SymIMMP;SymIMMP; C:\WINDOWS\system32\DRIVERS\SymIM.sys []
S3 USBAAPL;Apple Mobile USB Driver; C:\WINDOWS\System32\Drivers\usbaapl.sys [2010-04-19 41984]
S3 usbccgp;Microsoft USB Generic Parent Driver; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
S3 usbscan;USB Scanner Driver; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 USBSTOR;USB Mass Storage Driver; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2010-06-10 144176]
R2 AVGIDSAgent;AVGIDSAgent; C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe [2010-11-23 6128208]
R2 avgwd;AVG WatchDog; C:\Program Files\AVG\AVG10\avgwdsvc.exe [2010-10-22 265400]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2010-05-18 345376]
R2 IJPLMSVC;Inkjet Printer/Scanner Extended Survey Program; C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE [2008-01-22 103808]
R2 PrismXL;PrismXL; C:\Program Files\Common Files\New Boundary\PrismXL\PRISMXL.SYS [2006-06-30 65536]
R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files\CyberLink\Shared Files\RichVideo.exe [2008-03-16 167936]
R3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2010-07-16 540968]
S2 gupdate;Google Update Service (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-12-24 136176]
S2 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2010-12-31 194104]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 GameConsoleService;GameConsoleService; C:\Program Files\eMachines Games\eMachines Game Console\GameConsoleService.exe [2007-08-29 181800]
S3 GoogleDesktopManager-051210-111108;Google Desktop Manager 5.9.1005.12335; C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [2010-07-26 30192]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-03 69632]
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WMPNetworkSvc;Windows Media Player Network Sharing Service; C:\Program Files\Windows Media Player\WMPNetwk.exe [2006-10-18 913408]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-13 14336]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------
spcvrm
Regular Member
 
Posts: 20
Joined: January 5th, 2011, 7:36 pm

Re: Assistance needed to remove malware from my computer. Th

Unread postby spcvrm » January 24th, 2011, 8:36 pm

My problem is better but not fixed. When I click on some links ie: ebay from the google search page, I get a HTTP error 403 Fobidden-The website declined to show this webpage. Then when I click the back button it does take me to ebay. Before I could not get anywhere from the google search links.
If I click a google link & I get directed to scour.com I can't go back or go anywhere. Sometimes I am getting an internet explorer can't connect error, diagnosis connection problem, but when I click the back button it takes me to the correct site I clicked from the Google search page. Occasionally I can go directly to the site selected from the Google search page, which I couldn't do at all before. Any other suggestions would be appreciated.

Info.txt logfile of random's system information tool 1.08 2011-01-21 12:48:17

======Uninstall list======

-->"C:\Program Files\eMachines Games\Bejeweled 2 Deluxe\Uninstall.exe"
-->"C:\Program Files\eMachines Games\Blackhawk Striker 2\Uninstall.exe"
-->"C:\Program Files\eMachines Games\Blasterball 3\Uninstall.exe"
-->"C:\Program Files\eMachines Games\Build-a-lot\Uninstall.exe"
-->"C:\Program Files\eMachines Games\eMachines Game Console\Uninstall.exe"
-->"C:\Program Files\eMachines Games\FATE\Uninstall.exe"
-->"C:\Program Files\eMachines Games\Penguins!\Uninstall.exe"
-->"C:\Program Files\eMachines Games\Polar Bowler\Uninstall.exe"
-->"C:\Program Files\eMachines Games\Polar Golfer\Uninstall.exe"
-->"C:\Program Files\eMachines Games\Tradewinds\Uninstall.exe"
-->"C:\Program Files\eMachines Games\Virtual Villagers - Chapter 2 - The Lost Children\Uninstall.exe"
-->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
1000 Solitaire Games-->C:\WINDOWS\uninst.exe -f"C:\Program Files\Cosmi\1000 Solitaire\DeIsL1.isu" -c"C:\Program Files\Cosmi\1000 Solitaire\_ISREG32.DLL"
ACDSee-->C:\PROGRA~1\ACDSYS~1\ACDSee\UNWISE.EXE C:\PROGRA~1\ACDSYS~1\ACDSee\INSTALL.LOG
Acrobat.com-->C:\Program Files\Common Files\Adobe AIR\Versions\1.0\Adobe AIR Application Installer.exe -uninstall com.adobe.mauby 4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
Acrobat.com-->MsiExec.exe /I{77DCDCE3-2DED-62F3-8154-05E745472D07}
Activation Assistant for the 2007 Microsoft Office suites-->"C:\Documents and Settings\All Users\Application Data\{174892B1-CBE7-44F5-86FF-AB555EFD73A3}\Microsoft Office Activation Assistant.exe" REMOVE=TRUE MODIFY=FALSE
Adobe Acrobat 4.0-->C:\WINDOWS\ISUNINST.EXE -f"C:\Program Files\Common Files\Adobe\Acrobat 4.0\NT\Uninst.isu" -c"C:\Program Files\Common Files\Adobe\Acrobat 4.0\NT\Uninst.dll"
Adobe AIR-->C:\Program Files\Common Files\Adobe AIR\Versions\1.0\Adobe AIR Updater.exe -arp:uninstall
Adobe AIR-->MsiExec.exe /I{00203668-8170-44A0-BE44-B632FA4D780F}
Adobe Flash Player 10 ActiveX-->C:\WINDOWS\system32\Macromed\Flash\FlashUtil10l_ActiveX.exe -maintain activex
Adobe Reader 9.4.0-->MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A94000000001}
Adobe Shockwave Player 11.5-->"C:\WINDOWS\system32\Adobe\Shockwave 11\uninstaller.exe"
Agere Systems PCI-SV92PP Soft Modem-->agrsmdel
Apple Application Support-->MsiExec.exe /I{B2D328BE-45AD-4D92-96F9-2151490A203E}
Apple Mobile Device Support-->MsiExec.exe /I{85991ED2-010C-4930-96FA-52F43C2CE98A}
Apple Software Update-->MsiExec.exe /I{6956856F-B6B3-4BE0-BA0B-8F495BE32033}
ArcSoft Panorama Maker 4-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{D45E8C45-B601-4A80-AFD8-E16338744DE1}\Setup.exe" -l0x9
ArcSoft PhotoFantasy-->C:\WINDOWS\IsUninst.exe -f"C:\Program Files\ArcSoft\ArcSoft Software\PhotoFantasy\Uninst.isu"
ArcSoft PhotoImpression 6-->C:\Program Files\InstallShield Installation Information\{D03E7B00-CA85-4684-9321-1888873C34BD}\Setup.exe -runfromtemp -l0x0009 -removeonly
ArcSoft PhotoImpression-->C:\WINDOWS\IsUninst.exe -f"C:\Program Files\ArcSoft\ArcSoft Software\PhotoImpression\Uninst.isu"
ArcSoft PhotoStudio 5.5-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{85309D89-7BE9-4094-BB17-24999C6118FC}\SETUP.EXE" -l0x9
ArcSoft Print Creations-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{0D6D96F4-0CAF-4522-B05F-70A88EDECDFD}\Setup.exe" -l0x9
AVG 2011-->"C:\Program Files\AVG\AVG10\avgmfapx.exe" /AppMode=SETUP /Uninstall
AVG 2011-->MsiExec.exe /I{04E7A3BB-DB38-481C-A809-35FA60C78EDF}
AVG 2011-->MsiExec.exe /I{F4C68898-EBA5-46A9-82B3-2D30426086BF}
Bonjour-->MsiExec.exe /X{0CB9668D-F979-4F31-B8B8-67FE90F929F8}
Canon CanoScan 5600F User Registration-->C:\Program Files\Canon\IJEREG\CanoScan 5600F\UNINST.EXE
Canon MP Navigator EX 2.0-->"C:\Program Files\Canon\MP Navigator EX 2.0\Maint.exe" /UninstallRemove C:\Program Files\Canon\MP Navigator EX 2.0\uninst.ini
Canon Utilities Solution Menu-->C:\Program Files\Canon\SolutionMenu\uninst.exe uninst.ini
CanoScan 5600F Scanner Driver-->"C:\WINDOWS\system32\CanonIJ Uninstaller Information\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_CNQ4808\DelDrv.exe" /U:{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_CNQ4808 /L0x0009
Compatibility Pack for the 2007 Office system-->MsiExec.exe /X{90120000-0020-0409-0000-0000000FF1CE}
Cosmo Player 2.1.1 (41451)-->C:\WINDOWS\IsUninst.exe -f"C:\Program Files\CosmoSoftware\CosmoPlayer\CosmoPlayer211.isu"
Critical Update for Windows Media Player 11 (KB959772)-->"C:\WINDOWS\$NtUninstallKB959772_WM11$\spuninst\spuninst.exe"
Deer Hunt Challenge SE-->C:\WINDOWS\IsUninst.exe -f"C:\Program Files\EA SPORTS\Ultimate Hunt Challenge\Uninstdhc.isu"
Disney Pirates of the Caribbean Online-->C:\Program Files\Disney\Disney Online\PiratesOnline\uninst.exe
DVD Suite-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}\setup.exe" -uninstall
EA Network Play System-->C:\WINDOWS\IsUninst.exe -f"C:\Program Files\Electronic Arts\Network Play System\uninst.isu"
eMachines Connect-->MsiExec.exe /I{DF86A72C-4585-4D75-B592-968C8C6604A1}
eMachines Games-->"C:\Program Files\eMachines Games\Uninstall.exe"
EPSON Print CD-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{FF477885-5EA8-40D0-ADF3-D4C1B86FAEA4}\Setup.exe" -l0x9 -SYSTEM
EPSON Printer Software-->C:\Program Files\EPSON\PrinterDriverTemp\SPR280\EPUPDATE.EXE /r
EPSON R280 User's Guide-->C:\Program Files\epson\guide\spr280_e\uninstall.exe
Garden Defense Deluxe-->"C:\Program Files\Zylom Games\Garden Defense Deluxe\GameInstlr.exe" --uninstall UnInstall.log
Generations® Beginner's Edition 8-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{3A4BBC64-1207-11D4-93E4-00105A27284D}\setup.exe"
Google Apps-->MsiExec.exe /I{C8E95BF5-C07F-4D98-BB42-F58FC98BC03E}
Google Chrome-->"C:\Program Files\Google\Chrome\Application\8.0.552.237\Installer\setup.exe" --uninstall --system-level
Google Desktop-->C:\Program Files\Google\Google Desktop Search\GoogleDesktopSetup.exe -uninstall
Google Earth-->MsiExec.exe /X{4286E640-B5FB-11DF-AC4B-005056C00008}
Google Toolbar for Internet Explorer-->"C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarManager_E582EA556D8DE101.exe" /uninstall
Google Toolbar for Internet Explorer-->MsiExec.exe /I{18455581-E099-4BA8-BC6B-F34B2F06600C}
Google Update Helper-->MsiExec.exe /I{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
Google Updater-->"C:\Program Files\Google\Google Updater\GoogleUpdater.exe" -uninstall
High Definition Audio Driver Package - KB888111-->"C:\WINDOWS\$NtUninstallKB888111WXPSP2$\spuninst\spuninst.exe"
HijackThis 2.0.2-->"C:\Program Files\Trend Micro\HijackThis\HijackThis.exe" /uninstall
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT=""
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT=""
Hotfix for Windows Media Format 11 SDK (KB929399)-->"C:\WINDOWS\$NtUninstallKB929399$\spuninst\spuninst.exe"
Hotfix for Windows Media Player 11 (KB939683)-->"C:\WINDOWS\$NtUninstallKB939683$\spuninst\spuninst.exe"
Hotfix for Windows XP (KB2158563)-->"C:\WINDOWS\$NtUninstallKB2158563$\spuninst\spuninst.exe"
Hotfix for Windows XP (KB2443685)-->"C:\WINDOWS\$NtUninstallKB2443685$\spuninst\spuninst.exe"
Hotfix for Windows XP (KB952287)-->"C:\WINDOWS\$NtUninstallKB952287$\spuninst\spuninst.exe"
Hotfix for Windows XP (KB961118)-->"C:\WINDOWS\$NtUninstallKB961118$\spuninst\spuninst.exe"
Hotfix for Windows XP (KB970653-v3)-->"C:\WINDOWS\$NtUninstallKB970653-v3$\spuninst\spuninst.exe"
Hotfix for Windows XP (KB976098-v2)-->"C:\WINDOWS\$NtUninstallKB976098-v2$\spuninst\spuninst.exe"
Hotfix for Windows XP (KB979306)-->"C:\WINDOWS\$NtUninstallKB979306$\spuninst\spuninst.exe"
Hotfix for Windows XP (KB981793)-->"C:\WINDOWS\$NtUninstallKB981793$\spuninst\spuninst.exe"
HP Photo Printing Software-->C:\WINDOWS\IsUninst.exe -f"C:\Program Files\Hewlett-Packard\PhotoSmart\Photo Printing\Uninstall.isu" -c"C:\Program Files\Hewlett-Packard\PhotoSmart\Photo Printing\hpiunPC.dll
HP Precisionscan Pro 3.1-->MsiExec.exe /I{6B36DEBF-27D0-4B1E-858D-D397091C6C7D}
HP Share-to-Web-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{748F4870-8350-11D3-B0BF-080009FB4A19}\setup.exe" --MAIN -l9
Inkjet Printer/Scanner Extended Survey Program-->C:\Program Files\Canon\IJPLM\SETUP.EXE -R
Intel(R) Graphics Media Accelerator Driver-->C:\WINDOWS\system32\igxpun.exe -uninstall
iTunes-->MsiExec.exe /I{C1E11C46-E6EB-4BD2-9ADF-2A98ACBEB216}
Java(TM) 6 Update 7-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160070}
Malwarebytes' Anti-Malware-->"C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"
Masque IGT Slots Texas Tea-->MsiExec.exe /I{C5A17C43-4712-4B16-B80C-ED3FF97500C2}
Microsoft .NET Framework 1.1 Security Update (KB2416447)-->"C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe" "C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\M2416447\M2416447Uninstall.msp"
Microsoft .NET Framework 1.1 Security Update (KB979906)-->"C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe" "C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\M979906\M979906Uninstall.msp"
Microsoft .NET Framework 1.1-->msiexec.exe /X {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 1.1-->MsiExec.exe /X{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 2.0 Service Pack 2-->MsiExec.exe /I{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}
Microsoft .NET Framework 3.0 Service Pack 2-->MsiExec.exe /I{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}
Microsoft .NET Framework 3.5 SP1-->C:\WINDOWS\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
Microsoft .NET Framework 3.5 SP1-->MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
Microsoft Compression Client Pack 1.0 for Windows XP-->"C:\WINDOWS\$NtUninstallMSCompPackV1$\spuninst\spuninst.exe"
Microsoft Internationalized Domain Names Mitigation APIs-->"C:\WINDOWS\$NtServicePackUninstallIDNMitigationAPIs$\spuninst\spuninst.exe"
Microsoft National Language Support Downlevel APIs-->"C:\WINDOWS\$NtServicePackUninstallNLSDownlevelMapping$\spuninst\spuninst.exe"
Microsoft Office Excel MUI (English) 2007-->MsiExec.exe /X{90120000-0016-0409-0000-0000000FF1CE}
Microsoft Office Home and Student 2007-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall HOMESTUDENTR /dll OSETUP.DLL
Microsoft Office Home and Student 2007-->MsiExec.exe /X{91120000-002F-0000-0000-0000000FF1CE}
Microsoft Office OneNote MUI (English) 2007-->MsiExec.exe /X{90120000-00A1-0409-0000-0000000FF1CE}
Microsoft Office PowerPoint MUI (English) 2007-->MsiExec.exe /X{90120000-0018-0409-0000-0000000FF1CE}
Microsoft Office PowerPoint Viewer 2007 (English)-->MsiExec.exe /X{95120000-00AF-0409-0000-0000000FF1CE}
Microsoft Office Proof (English) 2007-->MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
Microsoft Office Proof (French) 2007-->MsiExec.exe /X{90120000-001F-040C-0000-0000000FF1CE}
Microsoft Office Proof (Spanish) 2007-->MsiExec.exe /X{90120000-001F-0C0A-0000-0000000FF1CE}
Microsoft Office Proofing (English) 2007-->MsiExec.exe /X{90120000-002C-0409-0000-0000000FF1CE}
Microsoft Office Shared MUI (English) 2007-->MsiExec.exe /X{90120000-006E-0409-0000-0000000FF1CE}
Microsoft Office Shared Setup Metadata MUI (English) 2007-->MsiExec.exe /X{90120000-0115-0409-0000-0000000FF1CE}
Microsoft Office Word MUI (English) 2007-->MsiExec.exe /X{90120000-001B-0409-0000-0000000FF1CE}
Microsoft User-Mode Driver Framework Feature Pack 1.0-->"C:\WINDOWS\$NtUninstallWudf01000$\spuninst\spuninst.exe"
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{837b34e3-7c30-493c-8f6a-2b0f04e2912c}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17-->MsiExec.exe /X{9A25302D-30C0-39D9-BD6F-21E6EC160475}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148-->MsiExec.exe /X{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}
Microsoft Web Publishing Wizard 1.52-->RunDll32 ADVPACK.DLL,LaunchINFSection C:\WINDOWS\INF\wpfull.inf,WebPostUninstall
Microsoft Works-->MsiExec.exe /I{15BC8CD0-A65B-47D0-A2DD-90A824590FA8}
MobileMe Control Panel-->MsiExec.exe /I{51F96AEC-D902-4434-A0DC-B9692A21AE7C}
Monopoly-->C:\WINDOWS\IsUninst.exe -f"C:\Program Files\Hasbro Interactive\Monopoly\Uninst.isu"
MSXML 4.0 SP2 (KB936181)-->MsiExec.exe /I{C04E32E0-0416-434D-AFB9-6969D703A9EF}
MSXML 4.0 SP2 (KB941833)-->MsiExec.exe /I{C523D256-313D-4866-B36A-F3DE528246EF}
MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
MSXML 4.0 SP2 (KB973688)-->MsiExec.exe /I{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
MSXML 6 Service Pack 2 (KB954459)-->MsiExec.exe /I{1A528690-6A2D-4BC5-B143-8C4AE8D19D96}
Musicnotes Player-->C:\Program Files\Musicnotes\Player\musnotes.exe /u
Musicnotes Software Suite 1.1-->"C:\Program Files\Musicnotes\unins000.exe"
Nikon Message Center-->MsiExec.exe /X{D2FCC1AE-6311-47C5-8130-C6C66D77DD71}
Nikon Transfer-->MsiExec.exe /X{E9757890-7EC5-46C8-99AB-B00F07B6525C}
OpenOffice.org Installer 1.0-->MsiExec.exe /X{0D499481-22C6-4B25-8AC2-6D3F6C885FB9}
Picasa 3-->"C:\Program Files\Google\Picasa3\Uninstall.exe"
PokerStars.net-->"C:\Program Files\PokerStars.NET\PokerStarsUninstall.exe" /u:PokerStars.net
Power2Go 5.0-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{40BF1E83-20EB-11D8-97C5-0009C5020658}\setup.exe" -uninstall
PowerDVD-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}\setup.exe" -uninstall
PS2 Multimedia Keyboard Driver-->"C:\Program Files\InstallShield Installation Information\{FF262740-C85A-11D5-BBEC-00D0B740900A}\setup.exe" -ul
QuickTime-->MsiExec.exe /I{28BE306E-5DA6-4F9C-BDB0-DBA3C8C6FFFD}
REALTEK GbE & FE Ethernet PCI NIC Driver-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{ACCA20B0-C4D1-4BF5-BF21-0A0EB5EF9730}\setup.exe" -l0x9 -removeonly
Realtek High Definition Audio Driver-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}\Setup.exe" -l0x9 -removeonly
Safari-->MsiExec.exe /I{AFAC914D-9E83-4A89-8ABE-427521C82CCF}
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2416473)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A8894F19-59C8-38D2-8A75-36C0CCE56A5B} /qb+ REBOOTPROMPT=""
Security Update for Step By Step Interactive Training (KB923723)-->"C:\WINDOWS\$NtUninstallKB923723$\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 7 (KB931768)-->"C:\WINDOWS\ie7updates\KB931768-IE7\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 7 (KB933566)-->"C:\WINDOWS\ie7updates\KB933566-IE7\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 7 (KB937143)-->"C:\WINDOWS\ie7updates\KB937143-IE7\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 7 (KB938127)-->"C:\WINDOWS\ie7updates\KB938127-IE7\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 7 (KB939653)-->"C:\WINDOWS\ie7updates\KB939653-IE7\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 7 (KB942615)-->"C:\WINDOWS\ie7updates\KB942615-IE7\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 7 (KB953838)-->"C:\WINDOWS\ie7updates\KB953838-IE7\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 7 (KB956390)-->"C:\WINDOWS\ie7updates\KB956390-IE7\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 7 (KB958215)-->"C:\WINDOWS\ie7updates\KB958215-IE7\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 7 (KB960714)-->"C:\WINDOWS\ie7updates\KB960714-IE7\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 7 (KB961260)-->"C:\WINDOWS\ie7updates\KB961260-IE7\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 7 (KB963027)-->"C:\WINDOWS\ie7updates\KB963027-IE7\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 7 (KB969897)-->"C:\WINDOWS\ie7updates\KB969897-IE7\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 7 (KB972260)-->"C:\WINDOWS\ie7updates\KB972260-IE7\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 8 (KB2183461)-->"C:\WINDOWS\ie8updates\KB2183461-IE8\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 8 (KB2360131)-->"C:\WINDOWS\ie8updates\KB2360131-IE8\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 8 (KB2416400)-->"C:\WINDOWS\ie8updates\KB2416400-IE8\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 8 (KB971961)-->"C:\WINDOWS\ie8updates\KB971961-IE8\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 8 (KB972260)-->"C:\WINDOWS\ie8updates\KB972260-IE8\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 8 (KB974455)-->"C:\WINDOWS\ie8updates\KB974455-IE8\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 8 (KB976325)-->"C:\WINDOWS\ie8updates\KB976325-IE8\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 8 (KB978207)-->"C:\WINDOWS\ie8updates\KB978207-IE8\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 8 (KB981332)-->"C:\WINDOWS\ie8updates\KB981332-IE8\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 8 (KB982381)-->"C:\WINDOWS\ie8updates\KB982381-IE8\spuninst\spuninst.exe"
Security Update for Windows Media Player (KB2378111)-->"C:\WINDOWS\$NtUninstallKB2378111_WM9$\spuninst\spuninst.exe"
Security Update for Windows Media Player (KB952069)-->"C:\WINDOWS\$NtUninstallKB952069_WM9$\spuninst\spuninst.exe"
Security Update for Windows Media Player (KB954155)-->"C:\WINDOWS\$NtUninstallKB954155_WM9$\spuninst\spuninst.exe"
Security Update for Windows Media Player (KB968816)-->"C:\WINDOWS\$NtUninstallKB968816_WM9$\spuninst\spuninst.exe"
Security Update for Windows Media Player (KB973540)-->"C:\WINDOWS\$NtUninstallKB973540_WM9$\spuninst\spuninst.exe"
Security Update for Windows Media Player (KB975558)-->"C:\WINDOWS\$NtUninstallKB975558_WM8$\spuninst\spuninst.exe"
Security Update for Windows Media Player (KB978695)-->"C:\WINDOWS\$NtUninstallKB978695_WM9$\spuninst\spuninst.exe"
Security Update for Windows Media Player 10 (KB911565)-->"C:\WINDOWS\$NtUninstallKB911565$\spuninst\spuninst.exe"
Security Update for Windows Media Player 10 (KB917734)-->"C:\WINDOWS\$NtUninstallKB917734_WMP10$\spuninst\spuninst.exe"
Security Update for Windows Media Player 11 (KB936782)-->"C:\WINDOWS\$NtUninstallKB936782_WMP11$\spuninst\spuninst.exe"
Security Update for Windows Media Player 11 (KB954154)-->"C:\WINDOWS\$NtUninstallKB954154_WM11$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2079403)-->"C:\WINDOWS\$NtUninstallKB2079403$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2115168)-->"C:\WINDOWS\$NtUninstallKB2115168$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2121546)-->"C:\WINDOWS\$NtUninstallKB2121546$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2160329)-->"C:\WINDOWS\$NtUninstallKB2160329$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2229593)-->"C:\WINDOWS\$NtUninstallKB2229593$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2259922)-->"C:\WINDOWS\$NtUninstallKB2259922$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2279986)-->"C:\WINDOWS\$NtUninstallKB2279986$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2286198)-->"C:\WINDOWS\$NtUninstallKB2286198$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2296011)-->"C:\WINDOWS\$NtUninstallKB2296011$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2296199)-->"C:\WINDOWS\$NtUninstallKB2296199$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2347290)-->"C:\WINDOWS\$NtUninstallKB2347290$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2360937)-->"C:\WINDOWS\$NtUninstallKB2360937$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2387149)-->"C:\WINDOWS\$NtUninstallKB2387149$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2419632)-->"C:\WINDOWS\$NtUninstallKB2419632$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2423089)-->"C:\WINDOWS\$NtUninstallKB2423089$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2436673)-->"C:\WINDOWS\$NtUninstallKB2436673$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2440591)-->"C:\WINDOWS\$NtUninstallKB2440591$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2443105)-->"C:\WINDOWS\$NtUninstallKB2443105$\spuninst\spuninst.exe"
Security Update for Windows XP (KB913433)-->C:\WINDOWS\system32\MacroMed\Flash\genuinst.exe C:\WINDOWS\system32\MacroMed\Flash\KB913433.inf
Security Update for Windows XP (KB923561)-->"C:\WINDOWS\$NtUninstallKB923561$\spuninst\spuninst.exe"
Security Update for Windows XP (KB938464)-->"C:\WINDOWS\$NtUninstallKB938464$\spuninst\spuninst.exe"
Security Update for Windows XP (KB938464-v2)-->"C:\WINDOWS\$NtUninstallKB938464-v2$\spuninst\spuninst.exe"
Security Update for Windows XP (KB941569)-->"C:\WINDOWS\$NtUninstallKB941569$\spuninst\spuninst.exe"
Security Update for Windows XP (KB946648)-->"C:\WINDOWS\$NtUninstallKB946648$\spuninst\spuninst.exe"
Security Update for Windows XP (KB950762)-->"C:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe"
Security Update for Windows XP (KB950974)-->"C:\WINDOWS\$NtUninstallKB950974$\spuninst\spuninst.exe"
Security Update for Windows XP (KB951066)-->"C:\WINDOWS\$NtUninstallKB951066$\spuninst\spuninst.exe"
Security Update for Windows XP (KB951376-v2)-->"C:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe"
Security Update for Windows XP (KB951698)-->"C:\WINDOWS\$NtUninstallKB951698$\spuninst\spuninst.exe"
Security Update for Windows XP (KB951748)-->"C:\WINDOWS\$NtUninstallKB951748$\spuninst\spuninst.exe"
Security Update for Windows XP (KB952004)-->"C:\WINDOWS\$NtUninstallKB952004$\spuninst\spuninst.exe"
Security Update for Windows XP (KB952954)-->"C:\WINDOWS\$NtUninstallKB952954$\spuninst\spuninst.exe"
Security Update for Windows XP (KB953839)-->"C:\WINDOWS\$NtUninstallKB953839$\spuninst\spuninst.exe"
Security Update for Windows XP (KB954211)-->"C:\WINDOWS\$NtUninstallKB954211$\spuninst\spuninst.exe"
Security Update for Windows XP (KB954600)-->"C:\WINDOWS\$NtUninstallKB954600$\spuninst\spuninst.exe"
Security Update for Windows XP (KB955069)-->"C:\WINDOWS\$NtUninstallKB955069$\spuninst\spuninst.exe"
Security Update for Windows XP (KB956391)-->"C:\WINDOWS\$NtUninstallKB956391$\spuninst\spuninst.exe"
Security Update for Windows XP (KB956572)-->"C:\WINDOWS\$NtUninstallKB956572$\spuninst\spuninst.exe"
Security Update for Windows XP (KB956744)-->"C:\WINDOWS\$NtUninstallKB956744$\spuninst\spuninst.exe"
Security Update for Windows XP (KB956802)-->"C:\WINDOWS\$NtUninstallKB956802$\spuninst\spuninst.exe"
Security Update for Windows XP (KB956803)-->"C:\WINDOWS\$NtUninstallKB956803$\spuninst\spuninst.exe"
Security Update for Windows XP (KB956841)-->"C:\WINDOWS\$NtUninstallKB956841$\spuninst\spuninst.exe"
Security Update for Windows XP (KB956844)-->"C:\WINDOWS\$NtUninstallKB956844$\spuninst\spuninst.exe"
Security Update for Windows XP (KB957095)-->"C:\WINDOWS\$NtUninstallKB957095$\spuninst\spuninst.exe"
Security Update for Windows XP (KB957097)-->"C:\WINDOWS\$NtUninstallKB957097$\spuninst\spuninst.exe"
Security Update for Windows XP (KB958644)-->"C:\WINDOWS\$NtUninstallKB958644$\spuninst\spuninst.exe"
Security Update for Windows XP (KB958687)-->"C:\WINDOWS\$NtUninstallKB958687$\spuninst\spuninst.exe"
Security Update for Windows XP (KB958690)-->"C:\WINDOWS\$NtUninstallKB958690$\spuninst\spuninst.exe"
Security Update for Windows XP (KB958869)-->"C:\WINDOWS\$NtUninstallKB958869$\spuninst\spuninst.exe"
Security Update for Windows XP (KB959426)-->"C:\WINDOWS\$NtUninstallKB959426$\spuninst\spuninst.exe"
Security Update for Windows XP (KB960225)-->"C:\WINDOWS\$NtUninstallKB960225$\spuninst\spuninst.exe"
Security Update for Windows XP (KB960715)-->"C:\WINDOWS\$NtUninstallKB960715$\spuninst\spuninst.exe"
Security Update for Windows XP (KB960803)-->"C:\WINDOWS\$NtUninstallKB960803$\spuninst\spuninst.exe"
Security Update for Windows XP (KB960859)-->"C:\WINDOWS\$NtUninstallKB960859$\spuninst\spuninst.exe"
Security Update for Windows XP (KB961371)-->"C:\WINDOWS\$NtUninstallKB961371$\spuninst\spuninst.exe"
Security Update for Windows XP (KB961373)-->"C:\WINDOWS\$NtUninstallKB961373$\spuninst\spuninst.exe"
Security Update for Windows XP (KB961501)-->"C:\WINDOWS\$NtUninstallKB961501$\spuninst\spuninst.exe"
Security Update for Windows XP (KB968537)-->"C:\WINDOWS\$NtUninstallKB968537$\spuninst\spuninst.exe"
Security Update for Windows XP (KB969059)-->"C:\WINDOWS\$NtUninstallKB969059$\spuninst\spuninst.exe"
Security Update for Windows XP (KB969898)-->"C:\WINDOWS\$NtUninstallKB969898$\spuninst\spuninst.exe"
Security Update for Windows XP (KB969947)-->"C:\WINDOWS\$NtUninstallKB969947$\spuninst\spuninst.exe"
Security Update for Windows XP (KB970238)-->"C:\WINDOWS\$NtUninstallKB970238$\spuninst\spuninst.exe"
Security Update for Windows XP (KB970430)-->"C:\WINDOWS\$NtUninstallKB970430$\spuninst\spuninst.exe"
Security Update for Windows XP (KB971468)-->"C:\WINDOWS\$NtUninstallKB971468$\spuninst\spuninst.exe"
Security Update for Windows XP (KB971486)-->"C:\WINDOWS\$NtUninstallKB971486$\spuninst\spuninst.exe"
Security Update for Windows XP (KB971557)-->"C:\WINDOWS\$NtUninstallKB971557$\spuninst\spuninst.exe"
Security Update for Windows XP (KB971633)-->"C:\WINDOWS\$NtUninstallKB971633$\spuninst\spuninst.exe"
Security Update for Windows XP (KB971657)-->"C:\WINDOWS\$NtUninstallKB971657$\spuninst\spuninst.exe"
Security Update for Windows XP (KB972270)-->"C:\WINDOWS\$NtUninstallKB972270$\spuninst\spuninst.exe"
Security Update for Windows XP (KB973346)-->"C:\WINDOWS\$NtUninstallKB973346$\spuninst\spuninst.exe"
Security Update for Windows XP (KB973354)-->"C:\WINDOWS\$NtUninstallKB973354$\spuninst\spuninst.exe"
Security Update for Windows XP (KB973507)-->"C:\WINDOWS\$NtUninstallKB973507$\spuninst\spuninst.exe"
Security Update for Windows XP (KB973525)-->"C:\WINDOWS\$NtUninstallKB973525$\spuninst\spuninst.exe"
Security Update for Windows XP (KB973869)-->"C:\WINDOWS\$NtUninstallKB973869$\spuninst\spuninst.exe"
Security Update for Windows XP (KB973904)-->"C:\WINDOWS\$NtUninstallKB973904$\spuninst\spuninst.exe"
Security Update for Windows XP (KB974112)-->"C:\WINDOWS\$NtUninstallKB974112$\spuninst\spuninst.exe"
Security Update for Windows XP (KB974318)-->"C:\WINDOWS\$NtUninstallKB974318$\spuninst\spuninst.exe"
Security Update for Windows XP (KB974392)-->"C:\WINDOWS\$NtUninstallKB974392$\spuninst\spuninst.exe"
Security Update for Windows XP (KB974571)-->"C:\WINDOWS\$NtUninstallKB974571$\spuninst\spuninst.exe"
Security Update for Windows XP (KB975025)-->"C:\WINDOWS\$NtUninstallKB975025$\spuninst\spuninst.exe"
Security Update for Windows XP (KB975467)-->"C:\WINDOWS\$NtUninstallKB975467$\spuninst\spuninst.exe"
Security Update for Windows XP (KB975560)-->"C:\WINDOWS\$NtUninstallKB975560$\spuninst\spuninst.exe"
Security Update for Windows XP (KB975561)-->"C:\WINDOWS\$NtUninstallKB975561$\spuninst\spuninst.exe"
Security Update for Windows XP (KB975562)-->"C:\WINDOWS\$NtUninstallKB975562$\spuninst\spuninst.exe"
Security Update for Windows XP (KB975713)-->"C:\WINDOWS\$NtUninstallKB975713$\spuninst\spuninst.exe"
Security Update for Windows XP (KB977165)-->"C:\WINDOWS\$NtUninstallKB977165$\spuninst\spuninst.exe"
Security Update for Windows XP (KB977816)-->"C:\WINDOWS\$NtUninstallKB977816$\spuninst\spuninst.exe"
Security Update for Windows XP (KB977914)-->"C:\WINDOWS\$NtUninstallKB977914$\spuninst\spuninst.exe"
Security Update for Windows XP (KB978037)-->"C:\WINDOWS\$NtUninstallKB978037$\spuninst\spuninst.exe"
Security Update for Windows XP (KB978251)-->"C:\WINDOWS\$NtUninstallKB978251$\spuninst\spuninst.exe"
Security Update for Windows XP (KB978262)-->"C:\WINDOWS\$NtUninstallKB978262$\spuninst\spuninst.exe"
Security Update for Windows XP (KB978338)-->"C:\WINDOWS\$NtUninstallKB978338$\spuninst\spuninst.exe"
Security Update for Windows XP (KB978542)-->"C:\WINDOWS\$NtUninstallKB978542$\spuninst\spuninst.exe"
Security Update for Windows XP (KB978601)-->"C:\WINDOWS\$NtUninstallKB978601$\spuninst\spuninst.exe"
Security Update for Windows XP (KB978706)-->"C:\WINDOWS\$NtUninstallKB978706$\spuninst\spuninst.exe"
Security Update for Windows XP (KB979309)-->"C:\WINDOWS\$NtUninstallKB979309$\spuninst\spuninst.exe"
Security Update for Windows XP (KB979482)-->"C:\WINDOWS\$NtUninstallKB979482$\spuninst\spuninst.exe"
Security Update for Windows XP (KB979559)-->"C:\WINDOWS\$NtUninstallKB979559$\spuninst\spuninst.exe"
Security Update for Windows XP (KB979683)-->"C:\WINDOWS\$NtUninstallKB979683$\spuninst\spuninst.exe"
Security Update for Windows XP (KB979687)-->"C:\WINDOWS\$NtUninstallKB979687$\spuninst\spuninst.exe"
Security Update for Windows XP (KB980195)-->"C:\WINDOWS\$NtUninstallKB980195$\spuninst\spuninst.exe"
Security Update for Windows XP (KB980218)-->"C:\WINDOWS\$NtUninstallKB980218$\spuninst\spuninst.exe"
Security Update for Windows XP (KB980232)-->"C:\WINDOWS\$NtUninstallKB980232$\spuninst\spuninst.exe"
Security Update for Windows XP (KB980436)-->"C:\WINDOWS\$NtUninstallKB980436$\spuninst\spuninst.exe"
Security Update for Windows XP (KB981322)-->"C:\WINDOWS\$NtUninstallKB981322$\spuninst\spuninst.exe"
Security Update for Windows XP (KB981852)-->"C:\WINDOWS\$NtUninstallKB981852$\spuninst\spuninst.exe"
Security Update for Windows XP (KB981957)-->"C:\WINDOWS\$NtUninstallKB981957$\spuninst\spuninst.exe"
Security Update for Windows XP (KB981997)-->"C:\WINDOWS\$NtUninstallKB981997$\spuninst\spuninst.exe"
Security Update for Windows XP (KB982132)-->"C:\WINDOWS\$NtUninstallKB982132$\spuninst\spuninst.exe"
Security Update for Windows XP (KB982214)-->"C:\WINDOWS\$NtUninstallKB982214$\spuninst\spuninst.exe"
Security Update for Windows XP (KB982665)-->"C:\WINDOWS\$NtUninstallKB982665$\spuninst\spuninst.exe"
Security Update for Windows XP (KB982802)-->"C:\WINDOWS\$NtUninstallKB982802$\spuninst\spuninst.exe"
Top 20 Solid Gold-->C:\WINDOWS\uninst.exe -f"C:\Program Files\Cosmi\Top20Solid\DeIsL1.isu" -c"C:\Program Files\Cosmi\Top20Solid\_ISREG32.DLL"
Trellix Web Express Site Building-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{D666E437-158C-43D0-AC69-F67F6C5EC2B8}\Setup.exe" UNINSTALL
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {B2AE9C82-DC7B-3641-BFC8-87275C4F3607} /qb+ REBOOTPROMPT=""
Update for Windows Internet Explorer 8 (KB972636)-->"C:\WINDOWS\ie8updates\KB972636-IE8\spuninst\spuninst.exe"
Update for Windows Internet Explorer 8 (KB976662)-->"C:\WINDOWS\ie8updates\KB976662-IE8\spuninst\spuninst.exe"
Update for Windows Internet Explorer 8 (KB976749)-->"C:\WINDOWS\ie8updates\KB976749-IE8\spuninst\spuninst.exe"
Update for Windows Internet Explorer 8 (KB980182)-->"C:\WINDOWS\ie8updates\KB980182-IE8\spuninst\spuninst.exe"
Update for Windows XP (KB2141007)-->"C:\WINDOWS\$NtUninstallKB2141007$\spuninst\spuninst.exe"
Update for Windows XP (KB2345886)-->"C:\WINDOWS\$NtUninstallKB2345886$\spuninst\spuninst.exe"
Update for Windows XP (KB2467659)-->"C:\WINDOWS\$NtUninstallKB2467659$\spuninst\spuninst.exe"
Update for Windows XP (KB951072-v2)-->"C:\WINDOWS\$NtUninstallKB951072-v2$\spuninst\spuninst.exe"
Update for Windows XP (KB951978)-->"C:\WINDOWS\$NtUninstallKB951978$\spuninst\spuninst.exe"
Update for Windows XP (KB955759)-->"C:\WINDOWS\$NtUninstallKB955759$\spuninst\spuninst.exe"
Update for Windows XP (KB955839)-->"C:\WINDOWS\$NtUninstallKB955839$\spuninst\spuninst.exe"
Update for Windows XP (KB967715)-->"C:\WINDOWS\$NtUninstallKB967715$\spuninst\spuninst.exe"
Update for Windows XP (KB968389)-->"C:\WINDOWS\$NtUninstallKB968389$\spuninst\spuninst.exe"
Update for Windows XP (KB971737)-->"C:\WINDOWS\$NtUninstallKB971737$\spuninst\spuninst.exe"
Update for Windows XP (KB973687)-->"C:\WINDOWS\$NtUninstallKB973687$\spuninst\spuninst.exe"
Update for Windows XP (KB973815)-->"C:\WINDOWS\$NtUninstallKB973815$\spuninst\spuninst.exe"
Windows Backup Utility-->MsiExec.exe /I{76EFFC7C-17A6-479D-9E47-8E658C1695AE}
Windows Feature Pack for Storage (32-bit) - IMAPI update for Blu-Ray-->"C:\WINDOWS\$NtUninstallKB952011$\spuninst\spuninst.exe"
Windows Internet Explorer 8-->"C:\WINDOWS\ie8\spuninst\spuninst.exe"
Windows Media Format 11 runtime-->"C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
Windows Media Format 11 runtime-->"C:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe"
Windows Media Player 11-->"C:\Program Files\Windows Media Player\Setup_wm.exe" /Uninstall
Windows Media Player 11-->"C:\WINDOWS\$NtUninstallwmp11$\spuninst\spuninst.exe"
Windows XP Service Pack 3-->"C:\WINDOWS\$NtServicePackUninstall$\spuninst\spuninst.exe"

======Security center information======

AV: AVG Anti-Virus Free Edition 2011

======System event log======

Computer Name: NEWCOMPUTER
Event Code: 49
Message: Configuring the Page file for crash dump failed. Make sure there is a page
file on the boot partition and that is large enough to contain all physical
memory.

Record Number: 911
Source Name: Ftdisk
Time Written: 20101230085546.000000-300
Event Type: error
User:

Computer Name: NEWCOMPUTER
Event Code: 45
Message: The system could not sucessfully load the crash dump driver.

Record Number: 910
Source Name: Ftdisk
Time Written: 20101230085546.000000-300
Event Type: error
User:

Computer Name: NEWCOMPUTER
Event Code: 49
Message: Configuring the Page file for crash dump failed. Make sure there is a page
file on the boot partition and that is large enough to contain all physical
memory.

Record Number: 882
Source Name: Ftdisk
Time Written: 20101229091753.000000-300
Event Type: error
User:

Computer Name: NEWCOMPUTER
Event Code: 45
Message: The system could not sucessfully load the crash dump driver.

Record Number: 881
Source Name: Ftdisk
Time Written: 20101229091753.000000-300
Event Type: error
User:

Computer Name: NEWCOMPUTER
Event Code: 49
Message: Configuring the Page file for crash dump failed. Make sure there is a page
file on the boot partition and that is large enough to contain all physical
memory.

Record Number: 818
Source Name: Ftdisk
Time Written: 20101229005514.000000-300
Event Type: error
User:

=====Application event log=====

Computer Name: NEWCOMPUTER
Event Code: 0
Message: Configuration section system.serviceModel already exists in c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Config\machine.config.

Record Number: 4300
Source Name: System.ServiceModel.Install 3.0.0.0
Time Written: 20100608235334.000000-240
Event Type: warning
User:

Computer Name: NEWCOMPUTER
Event Code: 0
Message: Could not detect IIS installation or IIS is disabled, skipping the Web Host Script Mappings component since it depends upon IIS to function properly.
If you believe this message is an error, check your IIS installation to make sure it is installed properly.

Record Number: 4298
Source Name: System.ServiceModel.Install 3.0.0.0
Time Written: 20100608235334.000000-240
Event Type: warning
User:

Computer Name: NEWCOMPUTER
Event Code: 1020
Message: Updates to the IIS metabase were aborted because IIS is either not installed or is disabled on this machine. To configure ASP.NET to run in IIS, please install or enable IIS and re-register ASP.NET using aspnet_regiis.exe /i.

Record Number: 4288
Source Name: ASP.NET 2.0.50727.0
Time Written: 20100608235302.000000-240
Event Type: warning
User:

Computer Name: NEWCOMPUTER
Event Code: 1020
Message: Updates to the IIS metabase were aborted because IIS is either not installed or is disabled on this machine. To configure ASP.NET to run in IIS, please install or enable IIS and re-register ASP.NET using aspnet_regiis.exe /i.

Record Number: 4272
Source Name: ASP.NET 2.0.50727.0
Time Written: 20100608235035.000000-240
Event Type: warning
User:

Computer Name: NEWCOMPUTER
Event Code: 1002
Message: Hanging application iexplore.exe, version 8.0.6001.18702, hang module hungapp, version 0.0.0.0, hang address 0x00000000.

Record Number: 4218
Source Name: Application Hang
Time Written: 20100603074306.000000-240
Event Type: error
User:

======Environment variables======

"ComSpec"=%SystemRoot%\system32\cmd.exe
"Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\QuickTime\QTSystem\
"windir"=%SystemRoot%
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"PROCESSOR_ARCHITECTURE"=x86
"PROCESSOR_LEVEL"=6
"PROCESSOR_IDENTIFIER"=x86 Family 6 Model 22 Stepping 1, GenuineIntel
"PROCESSOR_REVISION"=1601
"NUMBER_OF_PROCESSORS"=1
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"asl.log"=Destination=file;OnFirstLog=command,environment
"CLASSPATH"=.;C:\Program Files\Java\jre6\lib\ext\QTJava.zip
"QTJAVA"=C:\Program Files\Java\jre6\lib\ext\QTJava.zip

-----------------EOF-----------------
spcvrm
Regular Member
 
Posts: 20
Joined: January 5th, 2011, 7:36 pm
Advertisement
Register to Remove

Next

  • Similar Topics
    Replies
    Views
    Last post

Return to Infected? Virus, malware, adware, ransomware, oh my!



Who is online

Users browsing this forum: No registered users and 122 guests

Contact us:

Advertisements do not imply our endorsement of that product or service. Register to remove all ads. The forum is run by volunteers who donate their time and expertise. We make every attempt to ensure that the help and advice posted is accurate and will not cause harm to your computer. However, we do not guarantee that they are accurate and they are to be used at your own risk. All trademarks are the property of their respective owners.

Member site: UNITE Against Malware